{"version":"2.1.295","anchor":"plugin-agents-carry-provenance-agent-mode-narrowing","canonical_anchor":"plugin-agents-carry-provenance-agent-mode-narrowing","heading":"Plugin agents record their source, and subagents can be held to a stricter mode","tier":"internal","area":"Subagents","scope":"individual","heads_up":false,"url":"https:\/\/changelogs.core-directive.com\/v\/2.1.295\/e\/plugin-agents-carry-provenance-agent-mode-narrowing","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.295","markdown":"### Plugin agents record their source, and subagents can be held to a stricter mode\n\nAgents from plugins now record which plugin they came from, and a subagent's own mode can be limited to stricter ones\n\n**Unclear.** It is not stated in which cases subagents get the stricter-only behaviour.\n\n**What**\n\nPlugins are add-on packages for Claude Code, and some supply agents. Agents loaded from plugins now carry a record of where they came from.\n\nA subagent is a helper that Claude Code starts to handle part of a task. Each one runs in a permission mode, which sets how freely it may act without asking. A subagent can declare its own mode, and that mode used to always apply. There is now an option under which the declared mode is used only if it is stricter than the mode of the agent that started it.\n\n**Why**\n\nThis may stop a subagent from giving itself more freedom than the session that started it.\n\n- Area: Subagents\n- Tier: Under the hood\n- Useful: 2\/5\n- Signal: 2\/5\n- Scope: individual\n- Heads-up: no"}