Unclear Which policy values apply and whether the check is enforced by default are not settled.
In a remote session, other apps or screens can attach to watch or drive the session. Claude Code now keeps track of these attached clients and checks each one against a device-attestation policy, which is a rule about how far a device must prove it can be trusted. A client below the policy's minimum is refused. A client that is leaving is still allowed to leave, even if it falls below the minimum.
The streaming connection that carries the session's events also changed. It now reports a connection that returns an unexpected kind of content, once for each pair of content types, and it has a renewal process that stops when the connection closes.
This is a security change for cloud sessions: who can attach to a session now depends on how trustworthy their device is.
tengu_ccr_sse_keepalive_max_interval_s Not enough to sayNothing here resolved what this flag was doing on this version, so nothing here should be read as on or off.
This account: no value returned · anonymous baseline: no value returned · compiled default in v2.1.290: not a boolean we can read
These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.
tengu_ccr_event_hold_enabled Not enough to sayNothing here resolved what this flag was doing on this version, so nothing here should be read as on or off.
This account: no value returned · anonymous baseline: no value returned · compiled default in v2.1.290: on
These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.
tengu_ccr_upload_hold_marker Not enough to sayNothing here resolved what this flag was doing on this version, so nothing here should be read as on or off.
This account: no value returned · anonymous baseline: no value returned · compiled default in v2.1.290: off
These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.
Read once, for one account on one subscription tier, against v2.1.290. It isn't a statement about your account. What a flag value here can and cannot tell you
Which policy values apply and whether the check is enforced by default are not settled.