{"version":"2.1.288","anchor":"attestation-enforcement-flag-read-through-a-safer-helper-co","canonical_anchor":"attestation-enforcement-flag-read-through-a-safer-helper-co","heading":"Bridge attestation enforcement now falls back to on","tier":"internal","area":"Device Attestation","scope":"org","heads_up":false,"url":"https:\/\/changelogs.core-directive.com\/v\/2.1.288\/e\/attestation-enforcement-flag-read-through-a-safer-helper-co","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.288","markdown":"### Bridge attestation enforcement now falls back to on\n\nThe tengu_bridge_attestation_enforce flag now falls back to on instead of off when no trusted value is found, and its config has a new source order\n\n**Unclear.** What the switch falls back to when no value is present could not be determined.\n\n**What**\n\nClaude Code can receive requests from another device over a bridge. Attestation is a check that the device sending them is genuine. Whether that check is enforced is controlled by the feature flag `tengu_bridge_attestation_enforce`, a switch Anthropic controls from its servers. How the flag is read has changed:\n\n- It used to fall back to off when no value was available. It is now read through a helper whose safe value is on (`safe: true`).\n\n- The helper ignores a value from the server that differs from the safe value unless an extra check passes.\n\n- The settings object `tengu_bridge_attestation_enforce_config` is now resolved from the server payload, a saved copy on disk, or an override, and its `acceptLevel` is merged with a default.\n\nThe flag server returned on for this site's account and for an anonymous check, but no reading has been taken under this release yet. Nothing has been read about the config.\n\n**Why**\n\nWhen no trusted value is found, attestation enforcement now falls back to on rather than off, which changes the default security stance for bridged requests.\n\n- Flag `tengu_bridge_attestation_enforce`: On for this account, and not off by default (read for one account on one subscription tier against v2.1.288; this account: on, anonymous baseline: on, compiled default: not a boolean we can read) These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.\n- Flag `tengu_bridge_attestation_enforce_config`: Not enough to say (read for one account on one subscription tier against v2.1.288; this account: no value returned, anonymous baseline: no value returned, compiled default: not a boolean we can read) These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.\n- Area: Device Attestation\n- Tier: Under the hood\n- Useful: 2\/5\n- Signal: 2\/5\n- Scope: org\n- Heads-up: no"}