Under the hoodTier: how much it should matter to you
1Useful: my rating, 1 to 5
0Signal: worth watching, 1 to 5
MCPArea: what it touches
Internal ChangesKind: in v2.1.286,
Internal ChangesSection of the release
What
This rule concerns remote sessions (CLAUDE_CODE_REMOTE) running in bypassPermissions mode, where Claude Code acts without asking permission. In those sessions, denials from the MCP server policy can be exempted when tengu_mcp_server_policy_bypass_exempt is on. Its built-in default is on unless it is switched off remotely. MCP servers are outside programs that give Claude Code extra tools.
Only internal names in this code changed. The logic is the same.
tengu_mcp_server_policy_bypass_exemptNot enough to say
Nothing here resolved what this flag was doing on this version, so nothing here should be read as on or off.
This account: no value returned · anonymous baseline: no value returned · compiled default in v2.1.286: on
These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.
The entry above is what we published on the day. These lines were added later, as Anthropic's own pages caught up, and they sit beside the original rather than replacing it.
Confirmed sinceAnthropic's documentation has since written up bypassPermissions, on Configure the sandboxed Bash tool.* **`bypassPermissions` mode**: the retry runs without a promptsandboxingsee the edit
How sure we are
One source agreesOne thing we can check says the same as this entry.
Anthropic's documentation agreesAnthropic's documentation has since written up bypassPermissions, on Configure the sandboxed Bash tool.