Claude Code v2.1.290 ·
The sandbox can withhold git folder access for remote working folders
Sandbox setup now works out the git folder for your working folder and can withhold write access to it when that folder is remote
You'll noticeTier: how much it should matter to you
1Useful: my rating, 1 to 5
2Signal: worth watching, 1 to 5
SandboxArea: what it touches
ImprovementsKind: in v2.1.290,
ImprovementsSection of the release
Unclear The exact condition under which the git folder access is withheld is not clear.
What
The sandbox limits which files commands run by Claude Code may change. Its setup now:
- works out the git folder for the current working folder
- notes which cleanup paths for bare git repositories were vouched for on your own machine
- can withhold write access to the git folder when the working folder is remote, and records when that happens
- postpones one Linux-only step in some cases
Before, the sandbox always granted write access to the working folder's git folder and treated all cleanup paths the same way.
Why
This tightens what a sandboxed command may write in remote sessions.
How sure we are
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtThe exact condition under which the git folder access is withheld is not clear.
See this entry in the whole of v2.1.290 →