What
When the server refuses a request because the device is not trusted, Claude Code now tells apart the kinds of refusal instead of treating them as one:
- The device's login token was refused.
- The server wants the request to be signed.
When extra sign-in checks are in force, it can also report that the device cannot be enrolled. Before, every such refusal was handled as a single untrusted-device error.
Why
This affects the errors you can see in Remote Control and when signing in to cloud features, where a clearer reason makes the problem easier to fix.
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubt
The wording a user sees for each of these cases is not known.