You'll noticeTier: how much it should matter to you
2Useful: my rating, 1 to 5
1Signal: worth watching, 1 to 5
SandboxArea: what it touches
ImprovementsKind: in v2.1.296,
ImprovementsSection of the release
What
The sandbox is the restricted space Claude Code runs commands in. When a sandbox option is passed to Claude Code, it is now merged into the sandbox settings rather than handled separately:
Setting filesystem or network explicitly clears an inherited filesystem.disabled or inherited proxy ports.
When sandboxing is turned on, failIfUnavailable now defaults to true.
Passing both a settings file path and the sandbox option stops with the error "Cannot use both a settings file path and the sandbox option."
Why
Anyone passing the sandbox option, for example from a program built on Claude Code, now gets fail-closed behaviour by default: if the sandbox is not available, Claude Code does not carry on without it. Deny rules from different places also no longer silently cancel each other out.