Follow Discord
Sweep 08 Oct 2026 · 18:53Z Build v2.1.295 516 read Stable v2.1.286 Latest v2.1.295 Next v2.1.295 Feeds RSS JSON llms.txt llms-full.txt Unofficial

Claude Code v2.1.293 ·

Managed MCP policy fails closed and gains a policy-only server entry

If the managed MCP server list cannot be read, every MCP server is now blocked; entries can also be policy-only

Group of 2 You'll notice Improvements
JSON All of v2.1.293
You'll noticeTier: how much it should matter to you
3Useful: my rating, 1 to 5
2Signal: worth watching, 1 to 5
MCPArea: what it touches
ImprovementsKind: in v2.1.293,
ImprovementsSection of the release

Unclear What Claude Code does when the managed MCP server list fails to be read is not shown.

What

Organisations can supply MCP servers to every user through managedMcpServers in managed settings. MCP servers are outside programs that give Claude extra tools. This release changes how that list is read and enforced.

  • If the list cannot be parsed, the fallback is now MANAGED_MCP_SERVERS_PARSE_FAILED instead of an empty list, and the tool policy becomes {'*':'blocked'}, which blocks every server.
  • Policy is now matched to a server by its identity, its url or name, and merges in settings from organisation plugins.
  • An entry can use the transport MCP_TRANSPORT_POLICY_ONLY. Such entries only carry policy. They are left out when Claude Code collects the network hosts it must reach, and an exported helper filters them out.
  • The helper that works out those hosts was replaced. Custom web search URLs now use singleHostEgress and GitHub hosts use egressAddress.

Why

A broken managed server list now locks MCP servers down instead of leaving them unrestricted. If MCP tools suddenly stop working in a managed setup, check that the managed settings file is valid.

How sure we are
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubtWhat Claude Code does when the managed MCP server list fails to be read is not shown.

See this entry in the whole of v2.1.293 →

Feedback