Claude Code v2.1.288 ·
Read-deny rules can no longer be dodged with trailing spaces or invisible characters
Read-deny rules now also catch paths with trailing spaces or a trailing invisible byte order mark character
You'll noticeTier: how much it should matter to you
2Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
PermissionsArea: what it touches
Bug FixesKind: in v2.1.288,
Bug FixesSection of the release
What
Read-deny rules are settings that stop Claude from reading certain files. Two ways of slipping a path past them are now closed:
- Paths that end in whitespace are also checked with
/. added on the end.
- A trailing byte order mark (U+FEFF, an invisible character) in a path is treated as a space before the check.
Before, the check used the path only exactly as given.
Why
This hardens deny rules, so a file you have blocked stays blocked even when its path is written in an unusual way.
See this entry in the whole of v2.1.288 →