{"version":"2.1.286","anchor":"secret-redaction-hardened-against-hidden-characters","canonical_anchor":"secret-redaction-hardened-against-hidden-characters","heading":"Secret hiding now catches values disguised with hidden or unusual characters","tier":"notice","area":"Secret Scrubbing","url":"https:\/\/changelogs.core-directive.com\/v\/2.1.286\/e\/secret-redaction-hardened-against-hidden-characters","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.286","markdown":"### Secret hiding now catches values disguised with hidden or unusual characters\n\nHiding of keys, tokens, passwords and Bearer or Basic values now copes with invisible characters, Unicode spaces, escaped quotes and wide colons\n\n**Unclear.** Where each of these redaction patterns is applied.\n\n**What**\n\nClaude Code hides secrets in text by replacing them with [redacted]. It covers values after words like key, token, password or credential, plus Bearer and Basic login values. These patterns were simpler before. They now also catch secrets written with:\n\n- Unicode spaces and invisible characters\n\n- escaped quote marks\n\n- fullwidth colons, the wider colon used in some Asian scripts\n\n**Why**\n\nFewer secrets slip through into logs and output when they are written in these less common ways.\n\n- Area: Secret Scrubbing\n- Tier: You'll notice\n- Useful: 1\/5\n- Signal: 1\/5"}