{"version":"2.1.287","anchor":"secret-redaction-redactonly-rules-and-prefilters","canonical_anchor":"secret-redaction-redactonly-rules-and-prefilters","heading":"Secret redaction gains redactOnly rules and prefilters","tier":"internal","area":"Secret Redaction","scope":null,"heads_up":null,"url":"https:\/\/changelogs.core-directive.com\/v\/2.1.287\/e\/secret-redaction-redactonly-rules-and-prefilters","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.287","markdown":"### Secret redaction gains redactOnly rules and prefilters\n\nClaude Code's secret scrubber can now hold some rules back until asked and run a quick prefilter check before each rule\n\n**Unclear.** It is not clear which rules are marked redact-only, so it is not clear which secrets are affected.\n\n**What**\n\nClaude Code has a redactor that finds secrets such as keys and passwords and hides them from output. Its rules have changed:\n\n- Each secret pattern can now be marked `redactOnly` and can carry a `prefilter`, a quick regular expression (a text-matching pattern) checked before the full rule runs.\n\n- The methods that redact text in context take a flag that switches the `redactOnly` rules on, and a new `redactOnlyRules` method exists.\n\nBefore this release, all low-confidence rules always ran and there was no prefilter.\n\n**Why**\n\nThis can change which secrets get hidden in a given place, because some rules now run only when asked for. The prefilters let the scrubber skip rules that cannot match, which may make scrubbing faster.\n\n- Area: Secret Redaction\n- Tier: Under the hood\n- Useful: 1\/5\n- Signal: 2\/5"}