Follow Discord
Sweep 08 Oct 2026 · 18:53Z Build v2.1.295 516 read Stable v2.1.286 Latest v2.1.295 Next v2.1.295 Feeds RSS JSON llms.txt llms-full.txt Unofficial

Claude Code v2.1.290 ·

Shell command permission checks were tightened in several places

Claude Code's shell permission checks changed for sudo shell flags, += variable prefixes, command -v and backslashes

You'll notice Improvements
JSON All of v2.1.290
You'll noticeTier: how much it should matter to you
1Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
PermissionsArea: what it touches
ImprovementsKind: in v2.1.290,
ImprovementsSection of the release

Unclear The overall effect on any particular command is not clear.

What

Before running a shell command, Claude Code reads it to decide whether it can run automatically or needs your approval. Several parts of that reading changed:

  • The check for sudo options that open a shell, such as -s, -i, --shell and --login, now considers where the option sits in the command.
  • A variable set in front of a command with +=, which appends to it, is now recorded as an append.
  • The handling of command -v moved into its own check.
  • A new check counts whether a run of backslashes is odd or even, which decides whether the next character is escaped.
  • The message shown for a ${ …@P } expansion is now shorter.
Why

These affect which shell commands are allowed automatically and which are flagged for you to approve.

How sure we are
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtThe overall effect on any particular command is not clear.

See this entry in the whole of v2.1.290 →

Feedback