Unclear It is not clear whether every rule with a wildcard inside a host name part is refused, or only ones involving punycode.
What
Permission rules can allow or block web addresses using a wildcard, a placeholder that matches anything. Matching has changed:
- Host name parts written in punycode are protected during matching. Punycode is how domain names with non-English letters are stored, as text starting with
xn--. - A rule whose wildcard sits inside a single part of a host name is refused and matches nothing.
Why
This tightens domain allow and deny rules so a wildcard cannot slip into a lookalike or international domain name it was not meant to cover.
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubt
It is not clear whether every rule with a wildcard inside a host name part is refused, or only ones involving punycode.
Anthropic's release notes agree
Fixed URL allow and deny patterns with a wildcard inside an xn-- host label matching differently from one process to the next