Unclear Whether this screening is always on is not known, so it is unclear whether every user's sync holds these files back.
What
When settings are synced to a remote session, Claude Code now holds back content that looks like it contains a credential, such as a password or access key, and reports what it held back.
- The sync status line can now say that some files were kept on this machine because they look like they hold a credential.
- Settings summaries add
credentialTextsWithheld,settingsKeysWithheldanddroppedRulescounts. - If any credential-restriction rules were dropped, the summary is logged at level
warninginstead ofdebug. Before, a warning was used only for dropped rules or for settings that could not be read, were rejected or were too large. - The sync payload now includes
refiltered_credentialsandrefiltered_credential_restrictionsnext torefiltered_keys. - The managed-settings summary in usage reporting gains
credential_texts_withheld,rules_dropped_credential,restrictions_dropped_credential,withheld_credentialandclaude_md_withheld_credential.
Why
If something you expected in a remote session is missing, the status line and the logs now tell you it was held back because it looked like a credential, rather than leaving it unexplained.
Something disagreesSomething we can check disagrees with this entry, or the writer said they could not settle it.
The writer flagged doubt
Whether this screening is always on is not known, so it is unclear whether every user's sync holds these files back.