{"version":"2.1.285","anchor":"skill-archive-extraction-hardened","canonical_anchor":"skill-archive-extraction-hardened","heading":"Downloaded skills are unpacked more carefully","tier":"notice","area":"Skills","url":"https:\/\/changelogs.core-directive.com\/v\/2.1.285\/e\/skill-archive-extraction-hardened","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.285","markdown":"### Downloaded skills are unpacked more carefully\n\nClaude Code now refuses anything but plain files when unpacking a downloaded skill, and stops if it cannot safely leave an entry out\n\n**What**\n\nA skill is a packaged set of instructions Claude can follow, and some skills arrive as a downloaded archive (a single bundled file). Before, Claude Code unpacked everything in the archive after a simple check of the names. Now it:\n\n- lists every entry in the archive in detail first\n\n- separates plain files from special entries, such as links\n\n- leaves special entries out and rejects anything that is not a plain file\n\n- refuses to unpack the archive at all if it cannot safely leave an entry out\n\n**Why**\n\nThis makes it harder for a harmful skill archive to write files outside the places it should.\n\n- Area: Skills\n- Tier: You'll notice\n- Useful: 1\/5\n- Signal: 1\/5"}