{"version":"2.1.296","anchor":"remote-control-gate-helper-and-new-tengu-org-policy-denied-d","canonical_anchor":"remote-control-gate-helper-and-new-tengu-org-policy-denied-d","heading":"New check decides when organisation policy limits apply, and tengu_org_policy_denied fallback moves from 60 to 1","tier":"notice","area":"Policy Limits","scope":"org","heads_up":false,"url":"https:\/\/changelogs.core-directive.com\/v\/2.1.296\/e\/remote-control-gate-helper-and-new-tengu-org-policy-denied-d","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.296","markdown":"### New check decides when organisation policy limits apply, and tengu_org_policy_denied fallback moves from 60 to 1\n\nA new check decides when Claude Code waits for organisation policy limits, and the tengu_org_policy_denied fallback value moved from 60 to 1\n\n**Unclear.** It is not stated what this check controls or what the fallback value change does.\n\n**What**\n\nOrganisation policy limits are rules an organisation sets on what its members can do in Claude Code. A new check now decides whether those limits need to be applied to the current session. The check is skipped when any of these is true:\n\n- `CLAUDE_CODE_REMOTE` is set, which means the session is running in Anthropic's cloud\n\n- `DISABLE_LOGIN_COMMAND` is set\n\n- a trusted device token (`CLAUDE_TRUSTED_DEVICE_TOKEN`) is present\n\n- the user is not a claude.ai subscriber\n\nIn every other case, Claude Code waits for the policy limits to load, up to a time limit.\n\nThe built-in fallback for `tengu_org_policy_denied` also changed from 60 to 1. A fallback is the value Claude Code uses when it has no value from Anthropic's servers. What this setting controls was not traced, and nobody has yet checked what Anthropic's servers return for it.\n\n**Why**\n\nIn practice, claude.ai subscribers using Claude Code on their own machine may see Claude Code wait briefly for policy limits to load. Cloud sessions, trusted devices and setups with login disabled skip that wait. The new fallback value only matters when no server value is available, and its effect is not known.\n\n- Flag `tengu_org_policy_denied`: Not enough to say (read for one account on one subscription tier against v2.1.296; this account: no value returned, anonymous baseline: no value returned, compiled default: not a boolean we can read) These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.\n- Area: Policy Limits\n- Tier: You'll notice\n- Useful: 2\/5\n- Signal: 3\/5\n- Scope: org\n- Heads-up: no"}