{"version":"2.1.296","anchor":"sdk-permission-answers-refused-if-they-lose-denyask-tighten","canonical_anchor":"sdk-permission-answers-refused-if-they-lose-denyask-tighten","heading":"Permission answers from SDK hosts are refused if they drop deny or ask rules","tier":"notice","area":"Agents","scope":"individual","heads_up":true,"url":"https:\/\/changelogs.core-directive.com\/v\/2.1.296\/e\/sdk-permission-answers-refused-if-they-lose-denyask-tighten","release_url":"https:\/\/changelogs.core-directive.com\/v\/2.1.296","markdown":"### Permission answers from SDK hosts are refused if they drop deny or ask rules\n\nClaude Code now refuses a permission answer from a host program if it would lose deny or ask rules that answer added\n\n**What**\n\nAn SDK host is a program that runs Claude Code through its software development kit and answers its permission questions. Those answers can add permission rules, such as \"deny\" (never allow) or \"ask\" (check with the user first). Previously the updated rules in an answer were applied without further checking.\n\nNow Claude Code refuses:\n\n- a permission answer whose result drops deny or ask rules that it added\n\n- a sandbox network answer, meaning an answer about network access from the restricted environment commands run in, when a deny or ask rule it added, or may have added, is not among the session's rules; a log line records the refusal\n\n**Why**\n\nThis tightens the permission flow for programs that embed Claude Code, so a stricter rule an answer asked for cannot quietly go missing.\n\n- Area: Agents\n- Tier: You'll notice\n- Useful: 2\/5\n- Signal: 2\/5\n- Scope: individual\n- Heads-up: yes"}