{"version":"2.1.288","anchor":"tengu-violin-purfling-no-longer-read-at-the-agent-proxy-syst","canonical_anchor":"tengu-violin-purfling-no-longer-read-at-the-agent-proxy-syst","heading":"Agent proxy certificate setup reworked and no longer checks a server setting there","tier":"internal","area":"Sessions","scope":"org","heads_up":false,"url":"https:\/\/changelogs.core-directive.com\/v\/2.1.288\/e\/tengu-violin-purfling-no-longer-read-at-the-agent-proxy-syst","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.288","markdown":"### Agent proxy certificate setup reworked and no longer checks a server setting there\n\nSetting up trust for the agent proxy's certificate no longer checks a server switch there and now catches certificates listed in swapped order\n\n**Unclear.** It is not clear what the remaining use of the setting controls, or whether the trust step still depends on it in some other way.\n\n**What**\n\nThe agent proxy is a go-between that some network traffic passes through. To work, it needs a certificate, a digital credential, that your computer trusts. The step that adds this certificate to your computer's trusted list was reworked:\n\n- It no longer checks the server-side setting `tengu_violin_purfling` at this point.\n\n- It now reports a result.\n\n- It compares certificates by their exact contents, so it can tell when two certificates are in swapped order.\n\nThe same setting is still used elsewhere in Claude Code.\n\n**Why**\n\nThe trust step may now run without depending on that setting.\n\n- Flag `tengu_violin_purfling`: On for this account, and not off by default (read for one account on one subscription tier against v2.1.288; this account: on, anonymous baseline: on, compiled default: not a boolean we can read) These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.\n- Area: Sessions\n- Tier: Under the hood\n- Useful: 1\/5\n- Signal: 1\/5\n- Scope: org\n- Heads-up: no"}