Follow Discord
Sweep 08 Oct 2026 · 18:53Z Build v2.1.295 516 read Stable v2.1.286 Latest v2.1.295 Next v2.1.295 Feeds RSS JSON llms.txt llms-full.txt Unofficial

Claude Code v2.1.290 ·

Remote tool calls now obey the session's read-deny rules

Tool calls served to a remote session are now refused when a read-deny rule matches the path, or when the rules cannot be checked

You'll notice Improvements
JSON All of v2.1.290
You'll noticeTier: how much it should matter to you
2Useful: my rating, 1 to 5
2Signal: worth watching, 1 to 5
PermissionsArea: what it touches
ImprovementsKind: in v2.1.290,
ImprovementsSection of the release

Unclear Exactly which tools these checks cover is not clear.

What

Permission rules decide what Claude may do. A deny rule blocks an action outright, and an ask rule makes Claude ask you first. When a computer offers its tools to a session, Claude Code checks each incoming call against that session's rules. Before, it checked only general deny rules. It now also:

  • refuses a call with denied_by_session_read_deny when a rule blocking reads of a path matches
  • refuses a call when its rules cannot be checked at all
  • applies ask rules to paths that a tool reads
Why

Tools offered to a session could get around rules that block reading certain files. Those rules now hold for remote calls too.

How sure we are
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtExactly which tools these checks cover is not clear.

See this entry in the whole of v2.1.290 →

Feedback