Follow Discord
Sweep 02 Oct 2026 · 18:55Z Build v2.1.288 509 read Stable v2.1.285 Latest v2.1.287 Next v2.1.288 Feeds RSS JSON llms.txt llms-full.txt Unofficial

Claude Code v2.1.287 ·

Plugins from the plugin directory are checked against the reviewed version

Directory plugin installs must now match the reviewed commit and recorded repository, or Claude Code refuses them

You'll notice Improvements
JSON All of v2.1.287
You'll noticeTier: how much it should matter to you
2Useful: my rating, 1 to 5
3Signal: worth watching, 1 to 5
PluginsArea: what it touches
ImprovementsKind: in v2.1.287,
ImprovementsSection of the release
What

When you install a plugin from the plugin directory, Claude Code now checks it more strictly:

  • the listing must name a repository, and the repository address must not be too long
  • the listing is checked against plugin-directory-bindings.json and installed_plugins.json in your plugins folder
  • a download that is not at the reviewed commit (the exact version that was checked) is rejected, and its temporary download folder is removed
  • an install is refused if the listing now names a different repository than the one recorded
  • an install is refused if plugin-directory-bindings.json cannot be read

These refusals come with their own failure codes, such as directory_identity_changed, directory_listing_not_installable, directory_unavailable and directory_binding_unreadable.

Why

If a directory listing is pointed at a different repository, it can no longer quietly replace a plugin you already installed with code from somewhere else.

How sure we are
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtIt is not clear what switches on installs from the plugin directory.

See this entry in the whole of v2.1.287 →

Feedback