Follow Discord

Claude Code v2.1.286

348 entries read Grouped into 290 v2.1.285 → v2.1.286 Mods API: +9 added · 0 removed · 4 changed · 2 docs only Markdown JSON Follow Unofficial

You can now rely on a built-in security plugin to keep your deny rules in force when other plugins try to lift them. It can also refuse plugins that did not come from your organization. Plugins can now build the system prompt themselves through a new prompt.compose hook, and Claude Code falls back to its own prompt if that fails. Setting CLAUDE_CODE_AUTO_MODE_TIER to any value, even "full", puts auto mode on its strict tier. With CLAUDE_CODE_ARTIFACT_SHARE set, Claude can share an artifact with your organisation or named colleagues after you confirm. A new notice offers a key, ctrl+y by default, to make a newer model your default.

This release has 16 entries in the build that are not switched on yet. On Linux, project hooks can run in a locked-down sandbox called bubblewrap, with no network and a hidden home folder. That sandbox waits on a server switch. Keepalive pings that hold a one-hour prompt cache open during idle pauses are also off unless switched on remotely. A background task for importing local memory notes is taking shape, with a "memory import" entry in the task list. Remote tool permission checks gain retries for timed-out safety checks, behind three switches.

Prompts rewritten by a hook on submit now reach Claude as rewritten. Resumed sessions restart interrupted turns by mistake less often. Resuming in --print mode with an SDK connection now always runs its cleanup step, even after a failure. The ultrareview details dialog no longer offers to open the review in a browser. Starting a remote session no longer sends file sync, folder seeding or sync consent options. The /plugin-types command is now hidden from command listings but still works.

Written by our agent from the shipped bundle, not by Anthropic.

Five to try today

Picked from 22 you can use now
  1. New CLAUDE_CODE_AUTO_MODE_TIER variable selects the strict auto mode tier

    Setting CLAUDE_CODE_AUTO_MODE_TIER to any value selects the "strict" auto mode tier, and it is passed on to processes Claude Code starts

    Sessions & agents
  2. Built-in claude-test plugin gets clearer start-up errors and no longer requires a terminal session

    The claude-test plugin now explains why it failed to start, gives new advice on duplicate copies, and drops its terminal-only message

    Elsewhere
  3. Early plugin sync at startup for remote sessions, behind an environment variable

    A new early plugin sync step at startup runs only when CLAUDE_CODE_CCR_EARLY_PLUGINS_SYNC is set, and not in interactive sessions or with a proxy auth helper

    Extensions
  4. A new own_record option for unattended permission handling

    A permission setting now accepts own_record for unattended sessions, and one more outcome now counts as stopped

    Permissions & safety
  5. Built-in security plugin keeps deny rules in force over other plugins

    A built-in plugin restores deny rules that other plugins lift, and can refuse plugins that did not come from your organization

    Permissions & safety

Want the reasoning? Read walks the 44 entries that probably matter to you, each one opening to what changed and why.

Read this release → Every row →
Reading as
Show only
Tier
Flag state
Names
Pick an entry · j / k steps through · rest on a row to peek
44 entries

What probably matters to you

Anything you can use today, anything that visibly changes, and anything worth poking at. One line each, open for detail.

◌In dev
Nothing to try yet
Useful4 Signal5
Group of 2 Auto Mode unclear

Auto-mode classifier learns about relayed messages in shared projects#

The auto-mode classifier gains rules for messages relayed from a project's coordinator or another thread, with a new env var, flag and killswitch

Unclear It is not traced where the member-session prompt or the gate check is actually used.

Details 0 0 Feedback
+New
You'll notice
Useful5 Signal4
Group of 2 Plugins Notable unclear

New built-in "You should know" plugin suggests learning topics, off by default#

New built-in plugin cc-plugin-you-should-know can suggest a learning topic above the prompt while Claude works; you have to turn it on

Unclear What the extra availability check tests, and what it falls back to, is not clear.

Details 0 0 Feedback
cc-plugin-you-should-know
+New
Use it now
Useful5 Signal4
Permissions Notable no docs found unclear

A new own_record option for unattended permission handling#

A permission setting now accepts own_record for unattended sessions, and one more outcome now counts as stopped

Unclear Which configuration this belongs to and what own_record does are not known.

Details 0 0 Feedback
own_record
+New
Use it now
Useful5 Signal4
Permissions Notable unclear

Built-in security plugin keeps deny rules in force over other plugins#

A built-in plugin restores deny rules that other plugins lift, and can refuse plugins that did not come from your organization

Unclear Whether this built-in plugin is active by default is not known.

Details 0 0 Feedback
cc-plugin-sec-default@builtinpluginConfigs
+New
Use it now
Useful4 Signal3
Group of 5 SDK Notable no docs found unclear

SDK MCP server manifests now report per-server outcomes and have rules for remote sessions#

SDK hosts passing MCP server manifests now get a per-server outcome, a freshness marker, and separate rules for remote sessions

Unclear It is unclear whether Claude Code has a separate switch that must be on before it uses remote manifests.

Details 0 0 Feedback
sdkMcpServerManifestsOriginhost_per_send
◌In dev
Nothing to try yet
Useful4 Signal4
Remote Control unclear

Groundwork for a relay connection type and Chrome tab grouping#

Claude Code now recognises a relay connection type and stores a Chrome tab group key

Unclear What relay connections are used for, and how the Chrome tab group key is used, is not known.

Details 0 0 Feedback
◌In dev
Nothing to try yet
Useful4 Signal4
Prompt Cache unclear

Groundwork for keeping the prompt cache warm#

Claude Code gained a cache keepalive part that can switch itself off for your login or for a while after a refusal

Unclear What starts the keepalive and whether it is switched on is not established.

Details 0 0 Feedback
·Internal
Under the hood
Useful4 Signal4
Subagents unclear

Forked agents can swap individual tools and share a retry budget#

Forked agents can now replace some of the main conversation's tools with altered copies and receive a count of API attempts left

Unclear It is not clear which parts of Claude Code pass tool replacements to a forked agent, or whether this is in use yet.

Details 0 0 Feedback
+New
Use it now
Useful5 Signal3
Models Notable no docs found unclear

Notice offering to make a newer model your default#

A new announcement says your saved model is your default and offers a key, ctrl+y by default, to make a newer model the default instead

Unclear It is unclear when exactly the notice appears, since what marks a newer model as pending was not traced.

Details 0 0 Feedback
chat:defaultToNewerModel
+New
You'll notice
Useful5 Signal3
Artifacts Notable unclear

Artifacts can be shared with your organization or with people#

The artifact tool can now share an artifact with your organization or with named people, as view-only or with commenting

Unclear What makes the artifact tool available, and so whether sharing is reachable for everyone, is not known.

Details 0 0 Feedback
+New
You'll notice
Useful5 Signal3
Sessions Notable unclear

Resuming an old session can offer to switch to a newer model#

A prompt can offer to continue a resumed old session on a newer model of the same family; it is off unless switched on remotely

Unclear How long the session must be idle and how often the question may be asked are not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful3 Signal4
Linux unclear

A feature that used to need macOS can now run on Linux#

A check that only allowed a locked or person mode on macOS now also allows it on Linux when a further check passes

Unclear It is not clear which feature this availability check belongs to.

Details 0 0 Feedback
◌In dev
Nothing to try yet
Useful3 Signal4
Prompt Cache unclear

Early groundwork for prompt composition and cache keep-alive#

Claude Code now contains a new prompt composition hook point and a cache keep-alive beta setting, with no sign they are in use

Unclear Whether any of these are switched on or used yet is not clear.

Details 0 0 Feedback
◌In dev
Nothing to try yet
Useful3 Signal4
Claude Test unclear

Groundwork for test runs, comment reads and remote image handling#

Claude Code gained internal tracking for drafting and running tests, reading comments, and blank images from MCP servers in remote sessions

Unclear What each of these pieces does in practice is not traced.

Details 0 0 Feedback
◌In dev
Nothing to try yet
Useful3 Signal4
Auto Mode unclear

Permission checks for tools run remotely get retries and stricter shell handling#

Remote tool permission checks can retry a timed-out safety check and treat unreadable shell commands as needing a person, behind three switches

Unclear What each of the three switches controls on its own, and exactly how the settings file exception works, is not clear.

Details 0 0 Feedback
+New
Use it now
Useful4 Signal3
Plugins unclear

Plugins can submit a prompt marked as coming from the user#

Plugins that submit prompts can now pass an asUser flag, which marks the queued prompt as sent on the user's behalf

Unclear How Claude Code treats a prompt marked as sent on the user's behalf is not clear.

Details 0 0 Feedback
asUser
+New
Use it now
Useful4 Signal3
SDK no docs found unclear

SDK control request list gains send_task_message#

A request named send_task_message joins interrupt and stop_task in Claude Code's list of control requests

Unclear What this list of control request names is used for is not known.

Details 0 0 Feedback
send_task_message
+New
Use it now
Useful5 Signal2
SDK Notable unclear

Queued messages can be sent immediately in print and SDK mode#

In print and SDK mode, a message waiting in the queue can now be pushed to the front and delivered during a running turn

Unclear What decides whether send-now is available is not known.

Details 0 0 Feedback
queued_turn_count
·Internal
Under the hood
Useful2 Signal4
Remote Control unclear

Remote session connections now report who is allowed to write to the session#

When connecting to a remote session, Claude Code now reads whether only the owner's account or only others may write to it, and logs the answer

Unclear It is not clear whether anything other than the log record uses this value.

Details 0 0 Feedback
·Internal
Under the hood
Useful2 Signal4
Person Files unclear

Scan results now report settings for person files#

A scan result in Claude Code now includes whether person files can be written and details about how they are cited

Unclear It is not clear which feature these fields belong to or what switches it on.

Details 0 0 Feedback
+New
You'll notice
Useful4 Signal2
Sessions unclear

Dialog offering to resume a session on a newer model#

Claude Code includes a dialog that lets you keep the current model or resume on a newer one

Unclear Where this dialog appears and what switches it on is not known.

Details 0 0 Feedback
↑Improved
Use it now
Useful3 Signal2
Background Tasks unclear

CLAUDE_DISABLE_ADOPT now covers more handoff checks#

Setting CLAUDE_DISABLE_ADOPT now turns off handoff behaviour in several more places, including background exit and agent checks

Unclear It is not clear what the handoff does for a user in each of the newly covered places.

Details 0 0 Feedback
CLAUDE_DISABLE_ADOPT
Were these the right ones to put at the top? 0 answered
Below the fold

Everything else

Smaller changes and internals, grouped as the pipeline found them. Nothing is dropped, it is only further down.

124 entries

Improvementsopen

6 more of these are in What probably matters to you, above.

↑Improved
You'll notice
Useful2 Signal3
Group of 2 Artifacts unclear

Artifact comment writes get their own permission path#

Artifact comments get a separate commentWrite permission, allowed in turns not started by a human, and unasked writes are now tracked

Unclear What turns this permission on, and which feature it belongs to, is not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful3 Signal3
Permissions unclear

Unattended runs are stricter about which permission mode they use#

For unattended runs, Claude Code keeps a session's permission mode only in certain cases and otherwise uses the default

Unclear What calls this check, and so which runs are affected, is not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful3 Signal3
Models unclear

/model can now refuse a switch or ask you to confirm it#

/model now runs a check first that can block a model switch with a message or ask for extra confirmation, sometimes with a reason

Unclear What makes the check refuse or ask for confirmation is not known.

Details 0 0 Feedback
/model
↑Improved
You'll notice
Useful3 Signal3
Plugins unclear

Plugins can send messages that read as if you typed them#

Text from a plugin marked to act as the user is now passed on as plain text, without the plugin's name wrapped around it

Unclear What sets a plugin message to act as the user.

Details 0 0 Feedback
↑Improved
You'll notice
Useful3 Signal2
Group of 2 Fullscreen UI unclear

Scrollbar gains clickable arrows with press-and-hold repeat#

The terminal scrollbar can now show clickable arrows at each end that scroll on click and keep scrolling while held

Unclear Which scrollbars actually show the arrows.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal3
Plugin Marketplace

Plugin marketplaces named npm are now ignored#

A plugin marketplace registered under the name npm, in any capitalisation, is now ignored because that name is reserved

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal3
Tether unclear

Long-idle tether threads start fresh instead of continuing#

If a tether thread has been idle as long as the server keeps it, Claude Code now starts a new thread rather than continuing the old one

Unclear Whether the tether feature is in use for readers is not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal3
Git unclear

Git and commit instructions can add a pre-ship line based on your loaded skills#

The git and commit instructions Claude receives can now include an extra line about checks before shipping, depending on which skills are loaded

Unclear It is not clear whether the extra line actually shows up in the instructions Claude receives.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Group of 2 Remote Control unclear

Ultrareview findings can arrive in the session instead of a tracking link#

Review launches can pass findingsArriveInSession, and the launch message can say findings arrive here instead of giving a Track link

Unclear Whether a failed download is reported to Claude or to you some other way is not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful3 Signal2
Status Panel unclear

Status panel reads machine status, and its lists get scroll arrows#

The Status panel now reads a machine status alongside account status, and its lists gain scroll arrows and clickable more-above and more-below markers

Unclear It is unclear what the machine status contains and whether it shows up as a new row.

Details 0 0 Feedback
↑Improved
You'll notice
Useful3 Signal2
Subagents unclear

Agent status can spot when an agent is waiting for your approval#

Claude Code now checks an agent's last message for phrases like 'awaiting your approval' and marks it as asking you

Unclear Where the asking status is shown or used is not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful3 Signal1
Group of 5 Worktrees unclear

Worktree removal on exit now runs after the session ends#

Choosing to remove a worktree when you exit now runs the removal during shutdown, can be interrupted, and reports if it was skipped

Unclear When removal ignores a lost terminal and when the resume hint leaves out the worktree is not clear.

Details 0 0 Feedback
↑Improved
You'll notice
Useful3 Signal1
Group of 4 Models unclear

Fast mode handles models that reject it, with a notice when it falls back#

When a model rejects fast mode, Claude Code now uses standard speed for that model for the session and shows a warning

Unclear It is not clear who sees the warning, because two conditions that can skip it are not explained.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Remote Control unclear

Remote Control waits for attached photos to finish arriving#

When a message sent over Remote Control has files still arriving, Claude Code now waits for them before a tool runs or the turn ends

Unclear How long Claude Code waits before giving up on a missing file is not stated.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
API Requests unclear

Better recovery when the API rejects several beta features at once#

Claude Code now spots every rejected beta feature in an API error, including thinking display settings, instead of checking for just one

Unclear How Claude Code uses the list once it has it is not clear.

Details 0 0 Feedback
↑Improved
You'll notice
Useful1 Signal2
Group of 3 Memory unclear

Pinned auto-memory entries are now treated as ordinary auto-memory#

The separate AutoMemPinned memory type now becomes AutoMem, its own label is gone, and relevant memories are no longer logged as reads

Unclear Whether this removes read tracking or only moves it elsewhere is not clear.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Cloud Sessions unclear

Cloud sessions explain when your computer's tools are withheld#

Cloud sessions now say when your computer's tools are withheld because the sandbox is starting or unavailable, or settings are unreadable

Unclear Which setting controls this is not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Sessions unclear

Resuming a remote session waits for its saved state to load#

When resuming without the interactive screen, Claude Code holds the session until saved state loads, with a time limit

Unclear What difference this makes on screen is not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Message Queue unclear

Send now can target one specific queued message#

The send-now path can now push one chosen queued message into the running turn, in prompt mode, instead of only the queue as a whole

Unclear It is not clear whether any key or button lets you pick a single queued message yet.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
MCP unclear

Some MCP tool calls can move to the background without a timer#

An MCP tool call can now be moved to the background even when no auto-background timer is set, if a new check says the call can be moved

Unclear It is not clear what the new check looks at to decide that a call can be moved.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Sessions unclear

Resumed sessions choose their starting point differently#

When resuming a session, Claude Code uses a new check to decide whether to continue from the newest message or the recorded last point

Unclear How the new check decides between the two points is not shown.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Artifacts unclear

Sharing an artifact is refused if the permission check breaks#

If the permission check for sharing an artifact fails before the confirmation appears, Claude Code refuses the share and nothing is shared

Unclear It is not clear what controls whether the artifact sharing feature is available.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Attachments unclear

Attachment size limits now depend on the connection type#

Image and document attachment size limits are set per connection type, with 1.5 MB images and 3,380,000-byte documents on session and relay

Unclear It is not clear whether these limits are actually applied yet, or what the limits were before.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Elsewhere unclear

Self-hosted runners can ask for a fresh model token right away#

On self-hosted runners, Claude Code can now request a fresh inference token immediately instead of waiting for the next scheduled refresh

Unclear What triggers an immediate refresh is not shown.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Remote Control unclear

Organization policy blocks on remote features now come with a specific reason#

A single check now matches Remote Control and cloud sessions to their organization policies and returns a clear message when one is turned off

Unclear It is not clear which parts of Claude Code call this check.

Details 0 0 Feedback
allow_remote_controlallow_remote_sessions
↑Improved
You'll notice
Useful2 Signal2
Input unclear

Quick submit of typed input can now work for other agents' turns#

The feature that quickly submits typed input is now tied to a specific agent and handles cases where interrupting to submit is not possible

Unclear It is not clear which parts of Claude Code use it under a different name.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
System Prompt unclear

Instruction to restate your request now asks for it within the answer#

An agent's instruction to restate what you said now asks it to do so in the first sentence of its answer, not as a separate recap

Unclear It is not clear which mode or agent uses this instruction, or whether it reaches any prompt currently sent.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Claude Test unclear

Error message for when Claude Test cannot connect its browser helper#

Claude Code contains an error saying Claude Test did not start because its browser helper did not connect, with steps to try

Unclear It is not clear when this message is shown, whether /claude-test is available to readers, or what replaced the skill file this message took the place of.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Sandbox unclear

Sandbox status now reports two more ways Linux isolation can be weaker#

The sandbox status now says whether seccomp is unavailable and whether ripgrep has been overridden, on platforms other than macOS and Windows

Unclear Where this sandbox status is shown or used is not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Plugin Marketplace no docs found unclear

More specific advice when a plugin marketplace cannot be found#

When a plugin marketplace is hidden, Claude Code now gives advice based on the reason instead of always saying to remove and re-add it

Unclear The wording of the reason-specific messages is not known.

Details 0 0 Feedback
registrationHiddenReason
↑Improved
You'll notice
Useful2 Signal2
Message Queue unclear

Changed wrapper for messages you send while Claude is working#

Messages sent while Claude is still working can now be wrapped in text telling the model where they came from

Unclear Where this wrapper is used, and whether it is active by default, is not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Managed Settings unclear

Managed settings and policy folders are listed as protected paths#

Claude Code now lists the managed settings folder, managed-settings.d and policy settings paths among the paths it protects

Unclear It is not clear whether the new protected-path list is actually used by the write check yet.

Details 0 0 Feedback
managed-settings.jsonmanaged-settings.d/
↑Improved
You'll notice
Useful2 Signal2
Memory unclear

Memory recall tries another model when the first one refuses#

When the model picking relevant memories refuses a request, Claude Code now tries the next model on a list instead of giving up

Unclear Which models are on the candidate list is not stated.

Details 0 0 Feedback
↑Improved
You'll notice
Useful1 Signal2
Group of 2 Managed Settings unclear

More policy features are denied when the org policy check fails open#

The plugin directory and connector suggestions are now denied for HIPAA orgs when the org policy check can't complete

Unclear Which features are marked to be denied, and the exact condition that triggers the refusal, are not known.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Permissions unclear

Deny rules from settings now apply even when local rules are not honored#

When Claude Code is not honoring local permission rules, it now still applies deny rules from settings and stops sandbox auto-allow

Unclear It is not clear which features or kinds of call run in the mode where local rules are not honored.

Details 0 0 Feedback
↑Improved
You'll notice
Useful2 Signal2
Cloud Sessions unclear

Clearer wording on which permission rules claude --cloud sends#

The claude --cloud settings-sync text now says it sends your portable permission rules and shows on each launch whether they were sent

Unclear It is not clear whether what the sync actually sends changed, or only its description.

Details 0 0 Feedback
claude --cloud
↑Improved
You'll notice
Useful2 Signal2
Background Tasks unclear

Background tasks waiting on approval can be marked as blocked#

A background task whose result asks for approval is now classed as blocked, unless that result is out of date

Unclear Which screen shows this blocked state is not established.

Details 0 0 Feedback

Continues on page 2 →

Verbatim
Official · Anthropic

Anthropic’s official release notes

Published verbatim by Anthropic for v2.1.286. Text is unmodified from the upstream changelog. Everything else on this page came out of the bundle instead, which is why the two lists don't match.

Of these 88 bullets, 14 name something an entry on this page also names, 16 name something no entry here does, and 58 name nothing specific enough to line up either way. The pairings are made on names both sides wrote down, a flag or a setting or a slash command, so read one as probably the same thing rather than as a fact, and read the middle number as candidates rather than as a miss count.

  • Added a count such as "2 of 5" to the permission prompt when several permission requests stack up No entry names this
  • Added mouse support for the "N more" rows of lists in fullscreen mode: click one to jump to that end of the list, with hover and pressed states Probably non-string-tool-results-get-converted-to-text-before-sending
  • Fixed several Claude Code processes and IDE extensions each opening a login browser when gcpAuthRefresh or awsAuthRefresh credentials expire Nothing to match on
  • Fixed claude --resume and --continue sometimes losing every turn after a batch of parallel tool calls when the earlier session crashed or was killed No entry names this
  • Fixed API 400 errors after a tool or hook returned an object, number or boolean instead of text, including in resumed sessions Nothing to match on
  • Fixed cloud sessions with very large histories never waking up because the container was stopped while the transcript was still loading Nothing to match on
  • Fixed the Claude apps gateway's spend meter pricing 1-hour prompt cache writes at the cheaper 5-minute rate, and counting only the first model call's input tokens on streamed turns that run a server-side tool such as web search Nothing to match on
  • Fixed macOS sessions still showing "Not logged in" or "Login expired" after /login succeeds in another Claude Code window when a leftover ~/.claude/.credentials.json exists Probably auth-source-classification-changed-login-managed-key, ultrareview-stop-message-and-other-small-changes, oauth-provider-docs-tls-and-client-guarantees-text-updated
  • Fixed every turn failing when the Anthropic API refuses the model your default or a model alias resolves to: Claude Code now retries once on the previous model of the same tier Nothing to match on
  • Fixed Remote Control sessions (including claude remote-control) staying connected after your organization's policy turns Remote Control off; they now disconnect with a notice Probably remote-control-tears-down-when-org-policy-starts-refusing-it
  • Fixed refusal and --fallback-model retries failing when the fallback model can't run fast; they now run at standard speed, with a one-time notice in interactive sessions No entry names this
  • Fixed headless sessions repeating the "MCP servers require authentication" reminder after a successful re-authentication when the MCP discovery cache is enabled No entry names this
  • Fixed claude auth status reporting a Console sign-in's stored API key as claude.ai; it now reports api_key, and the VS Code extension treats that session as an API key session Probably auth-source-classification-changed-login-managed-key, mcp-discover-prior-tracking-generalized-beyond-claudeai-prox
  • Fixed /status listing an Anthropic profile beside an API key as if both were in effect; the profile is now marked as not in use No entry names this
  • Fixed Claude not being told when a file attached to a message sent over Remote Control did not arrive, and a file sometimes getting only 10 seconds for its last download try Nothing to match on
  • Fixed a Remote Control message that arrived while Claude Code was exiting being marked delivered and then never answered; it now stays queued for the session's next run Nothing to match on
  • Fixed MCP error messages showing a credential's value when "Bearer" or "Basic" came before its key name Probably bearer-token-redaction-regex-handles-percent-encoded-tokens
  • Fixed percent-encoded Bearer tokens being only partly masked in error messages Nothing to match on
  • Fixed redacted logs and transcripts showing a secret whose key name has an invisible character inside, such as a zero-width space Nothing to match on
  • Fixed logs and transcripts showing part of a URL password that contains punctuation such as ), quotes, ], & or a second @, or that runs past a / to a bracketed host such as [::1] in an ssh URL No entry names this
  • Fixed the session transcript in the zip that /feedback saves to disk containing invalid JSON lines after secret redaction No entry names this
  • Fixed MCP connectors listing no tools for up to a day after their server dropped the older MCP handshake Nothing to match on
  • Fixed a repeat MCP sign-in request from Claude replacing the pending sign-in link, which could stop that link from working Nothing to match on
  • Fixed /usage not crediting an MCP server for a tool call made while that server was still connecting or had only just connected, such as right after a restart No entry names this
  • Fixed plugins enabled on claude.ai occasionally going missing from Claude Code for a session after a transient server error Nothing to match on
  • Fixed a message typed into a running subagent showing twice in its transcript after the subagent read it Nothing to match on
  • Fixed subagent hand-back messages showing a raw task id instead of the agent's name when the subagent had no registered name Nothing to match on
  • Fixed foreground subagents sometimes missing the task-tracking tools (TaskCreate/Get/Update/List, TodoWrite) in sessions that have them enabled Nothing to match on
  • Fixed subagents spawned with worktree isolation loading the project CLAUDE.md and its imports a second time from the worktree copy on their first file read Nothing to match on #98052Worktree-isolated subagents load the project CLAUDE.md (and its @imports) twice; the only workaround exclude pattern that doesn't drop subfolder CLAUDE.md files is non-obvious Closed
  • Fixed Workflow tool subagents being restarted from their original prompt when a connection stalled for a few minutes mid-response Nothing to match on
  • Fixed /compact, /clear, and /rewind typed while viewing a background agent's or teammate's transcript silently acting on the main conversation: a dialog now names the target and asks first Probably agent-view-slash-commands-compact-clear-rewind-now-prom, fallback-model-switch-warns-about-a-smaller-context-window #97857[BUG] `/compact` typed inside the subagent view compacts the main conversation instead Open
  • Fixed background jobs showing done while waiting for your approval Nothing to match on
  • Fixed the commit attribution reminder being re-sent inside tool output when a model fallback lasts only one turn Nothing to match on #92386Unrelated <system-reminder> injected into Bash tool result, instructing to add Claude attribution to commits Open
  • Fixed a click on the space between words of a collapsed row (such as "Thought for 4s") highlighting the row without expanding it in fullscreen mode No entry names this
  • Fixed a row with no details, such as an action row with a long name, pushing every other row's details to the right in list screens Nothing to match on
  • Fixed files with very long names not reaching a cloud session when attached to it Nothing to match on
  • Fixed plugin errors for a marketplace Claude Code refuses to load: they now say why and how to fix it instead of "not found" No entry names this
  • Fixed /plugin's Discover tab showing a marketplace name unquoted in its "Checking … for new plugins" line when its rows already show that name in quotes Probably hook-descriptions-reworded, plugin-installenabledisableuninstall-in-plugin-ui-now-re, claude-test-plugin-conflict-message-and-runner-rewritten, plugin-types-command-hidden, you-should-know-builtin-plugin-side-agent-suggests-things
  • Improved commit guidance: when your project or user skills include one named verify, Claude is now told to run it right before committing, except for docs-only and tests-only commits Nothing to match on
  • Improved send now (ctrl+enter) in a subagent's view: it now moves the subagent's running command to the background so your message is read right away Nothing to match on
  • Improved replies from background agents to your messages so they no longer open with a separate recap of what you said Nothing to match on
  • Improved claude.ai artifact link reads: WebFetch now asks the same questions as the Artifact tool's read (no artifact prompt while the session's network access is on, one per artifact while it is off), and an auto-mode yes no longer counts where only you can answer Nothing to match on
  • Improved fetch, skill, file read, sandbox network, Claude in Chrome, workflow script and notebook edit permission prompts to match the look of file edit prompts Nothing to match on
  • Improved Bash, PowerShell and Monitor permission prompts to show the command between dashed lines, matching file edit prompts Nothing to match on
  • Improved list scrollbars in fullscreen mode: in most lists the bar no longer shifts as the "N more" rows come and go, and it now has ↑/↓ arrows you can click or hold to scroll Probably non-string-tool-results-get-converted-to-text-before-sending
  • Improved the external editor (Ctrl+G): editors that take a line number now open on the line your cursor is on in the prompt Nothing to match on
  • Improved slash command suggestion responsiveness while typing when many skills or plugin commands are installed; command descriptions now match by word prefix Nothing to match on
  • Improved the output style picker: it now opens on your current style instead of Default, with each style's description on the line under its name; number keys no longer pick a style Nothing to match on
  • Improved /hooks: the closing line of a hook's detail screen now says "this hook" instead of "it" Probably hooks-dialog-now-opens-on-a-flat-list-of-configured-hooks
  • Improved the model fallback notice and the autocompact-thrashing error to say when a fallback dropped the context window from 1M to 200K tokens Nothing to match on
  • Improved responsiveness of SDK and -p sessions when a host re-sends an MCP server enable for a server that is already connected Nothing to match on
  • Improved the protocol page a Claude apps gateway serves at /protocol: it now says not to reject unknown input and matches what Claude Code sends today No entry names this
  • Changed prompts sent while nothing is running or queued to show in the normal text color right away instead of gray Nothing to match on
  • Changed how failed API requests are retried: one limit now covers a whole model call, so with the default retry settings a failing call sends at most 14 requests Nothing to match on
  • Changed --bare to connect only the MCP servers named on the command line, send the model no system reminders, and start no background tasks; under --bare, a shell command that reaches its timeout now stops instead of moving to the background Probably bare-sessions-refuse-plugin-toolregister
  • Changed the send-now key (ctrl+enter) to move a skill's own shell command to the background instead of ending it Nothing to match on
  • Changed the WebFetch error for a rate-limited domain safety check to tell Claude not to retry it in a loop Nothing to match on
  • Changed plugin installs to refuse npm sources that are git repositories or folders, and to install plugin dependencies only from registry packages Nothing to match on
  • Changed list screens (/artifacts, /mcp, /skills, /hooks and others) to always line up each row's details in one column after the names Probably mcp-oauth-tool-reuses-an-in-progress-sign-in, mcp-reconnect-and-ccr-diagnostics-additions, hooks-dialog-now-opens-on-a-flat-list-of-configured-hooks
  • Changed the overflow rows of lists to read "↑ N more" / "↓ N more" instead of "N more above" / "N more below" No entry names this
  • Changed /hooks to open on one list of your configured hooks grouped by event, so viewing a hook takes one Enter instead of three Probably hooks-dialog-now-opens-on-a-flat-list-of-configured-hooks
  • Changed the theme picker to a scrolling list that fits your terminal instead of pushing the preview off screen; number keys no longer pick a theme Nothing to match on
  • Changed /exit's Remove worktree to run after Claude Code stops the servers and shells it started there, which on Windows could keep the folder from being deleted No entry names this
  • Changed the claude-api skill's Managed Agents examples to create environments with limited networking No entry names this
  • Removed the browser link from /ultrareview and claude ultrareview output Probably ultrareview-stop-message-and-other-small-changes, stop-ultrareview-dialog-uses-confirmcancel-control-with-key, ultrareview-detail-dialog-drops-open-in-browser-and-shows, ultrareview-launch-message-can-say-findings-arrive-in-the-se
  • Windows: Fixed claude --bg and the agents view refusing a folder that claude already trusts when its trust record was saved with different letter case Probably background-session-workspace-trust-and-gate-blocked-reasons
  • [VSCode] Added bookmarks: save Claude's responses and keep them in view in a Bookmarks side panel Nothing to match on
  • [VSCode] Added the questions Claude asks and your answers to the conversation: after you answer a question card, a Questions row shows each question with your picks Nothing to match on
  • [VSCode] Added option previews to question cards in the chat panel: the highlighted choice's mockup or snippet shows beside or under the options Nothing to match on
  • [VSCode] Added rows under a message that open to the terminal output, browser tab, browser instructions and selected code sent with it Nothing to match on
  • [VSCode] Fixed a second copy of a conversation opening in a tab when it was already open in the side bar; the side bar now switches to it Nothing to match on
  • [VSCode] Fixed settings dialogs reporting a failed save, without re-checking, when Claude Code printed more than 1 MB of output Nothing to match on
  • [VSCode] Fixed an endless "Teleporting session…" spinner when the extension stops responding No entry names this
  • [VSCode] Improved the Manage plugins dialog: it says when a turned-off plugin is still on because of other settings, and explains a plugin folder clash Nothing to match on
  • [VSCode] Changed Stop and Escape to end only the current turn; background agents keep running and can be stopped one by one from the agent map Nothing to match on
  • [VSCode] Changed the "✻ Claude Code" status bar item to show in every window, so you can open Claude when no file is open No entry names this
  • [Cloud sessions] Fixed an answered question card or approved tool call getting no reply when the session had gone idle after Claude sent a message Nothing to match on
  • [Cloud sessions] Fixed clearing an organization environment's setup script in admin settings leaving new cloud sessions still running the old script Nothing to match on
  • [Cloud sessions] Fixed the Runner actions menu on the self-hosted environments admin page closing on its own a few seconds after it opened Nothing to match on
  • [Cloud sessions] Fixed routine runs whose cloud session never started showing as Succeeded in the Runs pane, the routine's page and the sidebar; they now show as Failed Nothing to match on
  • [Cloud sessions] Fixed clicking an audio or video file in a cloud session's Outputs card opening an empty file search instead of playing the file Nothing to match on
  • [Cloud sessions] Changed a routine's page to read "Due" with the scheduled time, instead of a next run time in the past, when a scheduled run is late and hasn't started Nothing to match on
  • [Claude Tag] Added an Add channel button to Claude Tag's spend limits page in admin settings, so a limit can be set on any channel, including a private one, from its channel ID or Slack link Nothing to match on
  • [Claude Tag] Fixed memory recall finding nothing in organizations that cannot use the default Sonnet model Nothing to match on
  • [Claude Tag] Fixed a Slack channel losing its Claude settings when an Enterprise Grid admin moves it to another workspace and the first post afterward doesn't mention Claude Nothing to match on
  • [Claude Tag] Fixed Claude in a Slack thread occasionally starting over on a fresh machine, losing work it hadn't pushed, when your reply answered a question it had just asked Nothing to match on
  • [Claude Tag] Fixed public channel names on Claude Tag's spend limits page in admin settings showing as raw Slack IDs in larger organizations Nothing to match on
  • [Claude Tag] Improved the titles of sessions started from Slack as shown on claude.ai: they now read as the words you typed, without Slack user IDs or escape codes Nothing to match on

A model matched these bullets to the GitHub issues they fix, so a link can be wrong.

System prompt

The appended system-reminder blocks moved: 1 line added.

Claude Code, interactive mode

Documentation

What the docs did around this release

928 documentation changes were recorded within 24 hours either side of this release, nearest first. The closest 12 are below. They're here because they happened near this release in time. That's not a claim that this release caused the edit, or that the page documents anything in it.

Switches

Every name in this release

The 66 literal strings found in the bundle, with the number of entries that name each one. Picking one searches for it. A name is here because this build's code mentions it, which is not the same as it working or being finished.

Slash commands

CLI flags

Environment variables

Settings and names in the code

Feedback