{"version":"2.1.292","anchor":"unsandboxed-env-var-prefixes-gate-tengu-umber-plover","canonical_anchor":"unsandboxed-env-var-prefixes-gate-tengu-umber-plover","heading":"Changed safety check for Bash commands that start by setting a variable","tier":"notice","area":"Bash Tool","scope":"individual","heads_up":false,"url":"https:\/\/changelogs.core-directive.com\/v\/2.1.292\/e\/unsandboxed-env-var-prefixes-gate-tengu-umber-plover","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.292","markdown":"### Changed safety check for Bash commands that start by setting a variable\n\nClaude Code's safety check for Bash commands that begin by setting environment variables now depends on extra conditions, including a remote switch\n\n**Unclear.** Which commands this applies to, and whether it approves more or fewer of them, is not stated.\n\n**What**\n\nSome shell commands start by setting an environment variable (a named value the command can read), as in `NAME=value command`. Claude Code checks these before running them with the Bash tool, the tool it uses to run shell commands. It used to reject such a command whenever a variable failed a single check on its name. For some commands it now rejects only when the variable is not otherwise considered safe and any of these holds:\n\n- the remote switch tengu_umber_plover is off\n\n- a \"relaxed\" mode is in use\n\n- the fallback for running outside the sandbox (the walled-off area Claude Code can run commands in) has not been closed by a trusted source\n\ntengu_umber_plover falls back to on when the server sends nothing.\n\n**Why**\n\nThis changes which Bash commands that set variables up front can be approved without asking you.\n\n- Flag `tengu_umber_plover`: Not enough to say (read for one account on one subscription tier against v2.1.292; this account: no value returned, anonymous baseline: no value returned, compiled default: on) These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.\n- Area: Bash Tool\n- Tier: You'll notice\n- Useful: 1\/5\n- Signal: 2\/5\n- Scope: individual\n- Heads-up: no"}