From 07dcb0e13580b21174ff1bf6a7e1d5ead3b61d60 Mon Sep 17 00:00:00 2001 From: GitHub Actions Date: Sat, 18 Jul 2026 01:20:23 +0000 Subject: [PATCH] chore: Update CHANGELOG.md and feed.xml --- CHANGELOG.md | 50 ++++++++++++++++++++++++++++++++ feed.xml | 81 ++++++++++++++++++++++++++++++++++------------------ 2 files changed, 104 insertions(+), 27 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index b5bb90ef..245fbdf9 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -1,5 +1,55 @@ # Changelog +## 2.1.214 + +- Fixed single-segment `dir/**` allow rules like `Edit(src/**)` auto-approving writes to nested `dir/` directories anywhere in the tree instead of only `/dir` +- Fixed a permission-check bypass affecting commands run in Windows PowerShell 5.1 sessions +- Fixed Bash permission checks to fail closed on file-descriptor redirect forms that bash parses differently than the permission analyzer +- Fixed Bash permission checks misjudging very long commands — commands over 10,000 characters now always prompt instead of running automatically +- Fixed Bash permission checks treating zsh variable subscripts and modifiers in `[[ ]]` comparisons as inert text — these commands now prompt for approval +- Fixed Bash permission checks to no longer auto-approve certain `help` and `man` commands that could run unsafe options, command substitutions, or backslash paths +- Fixed permission prompts on remote sessions that could proceed before the local confirmation dialog +- Added the EndConversation tool: Claude can end sessions with highly abusive users or jailbreak attempts, as on claude.ai since 2025 — see https://www.anthropic.com/research/end-subset-conversations +- Added a periodic progress heartbeat for long-running tool calls that previously went silent +- Added an ISO `modified` timestamp to memory file frontmatter +- Added `message.uuid`, `client_request_id`, and `tool_source` attributes to OpenTelemetry log events for message-level correlation and tool provenance +- Added `CLAUDE_CODE_OTEL_CONTENT_MAX_LENGTH` to configure the 60 KB truncation limit on OpenTelemetry content attributes +- Added reasoning effort to the `subagentStatusLine` payload, so custom agent rows can render model and effort +- Added permission prompts for `docker` commands (including the Podman `docker` shim) carrying daemon-redirect flags (`--url`, `--connection`, `--identity`, and Podman's remote mode) that previously ran without one +- Fixed a crash when a GrowthBook feature evaluates to null, and a bug where a malformed flag payload could wipe the cached feature flags +- Fixed Bash tool killing the Claude session when a `pkill -f` pattern accidentally matched the CLI's own process (Linux) +- Fixed unbounded memory growth when `--settings` points at a device file or multi-GB file; oversized (>2 MiB) settings files now fail at startup with a clear error +- Fixed streaming turns failing with "Socket is closed" behind corporate proxies on Windows +- Fixed stream-json output truncation at exit for slow-reading SDK/pipeline consumers; the exit drain now scales with queued bytes instead of a flat 2s cap +- Fixed scheduled tasks refusing their own configured prompt as untrusted input — the fired prompt is now delivered as the session's assigned task +- Fixed PowerShell tool commands hanging until timeout when a child process waited on standard input (Windows) +- Fixed Python scripts under the PowerShell tool crashing with UnicodeDecodeError when reading non-UTF-8 data from standard input (Windows) +- Fixed Python scripts run via the PowerShell tool crashing with UnicodeEncodeError on non-ASCII output, and PowerShell 7 error messages containing raw ANSI escape sequences (Windows) +- Fixed the PowerShell tool reporting `where.exe`, `fc.exe`, and `diff.exe` as errors when they return a valid negative answer (Windows) +- Fixed `>` and `>>` under the PowerShell tool on Windows PowerShell 5.1 writing UTF-16LE files that other tools couldn't read as UTF-8 +- Fixed a displaced background daemon deleting its successor's control socket on shutdown, which made the next client kill the healthy replacement daemon +- Fixed background sessions parked with `←` or `/background` and left idle keeping the background daemon and a worker process alive indefinitely +- Fixed completed background sessions being impossible to remove via `claude rm` or the agent view once the background service had gone idle +- Fixed background sessions dispatched from a non-git folder being impossible to delete from the agents view +- Fixed reopening a stopped background session failing to restore its saved conversation when an unreadable folder exists in the session store +- Fixed the Remote Control "session ready" push notification firing for sessions where Remote Control was not explicitly enabled +- Fixed `/install-github-app` and the `/mcp` settings menu being blocked in agent-view sessions — they're now refused only in background sessions with no terminal attached +- Fixed plugins enabled via the `--settings` CLI flag not loading (regression since v2.1.181) +- Fixed feature flags going stale in long-running sessions after the OAuth token rotates +- Fixed `/ultrareview` refusing to run in repos with no merge base — it now offers to review all tracked files +- Fixed `claude update` and `claude doctor` hanging silently, and the `/status` System diagnostics section going blank, when a shell-config path is a directory +- Fixed memory frontmatter values being silently truncated at an inline `#` when memory files are saved +- Fixed session cost and token telemetry double-counting on streams that emit multiple cumulative `message_delta` frames +- Fixed a spurious "check your network" warning that appeared while the advisor was thinking +- Fixed hooks with exit code 2 not blocking as documented when the hook's stdout JSON fails schema validation +- Fixed OTel log events emitted outside the turn's async context missing the interaction span's trace context +- Fixed MCP transient errors during prompts/resources refresh clearing the server's slash commands and resources +- Improved the `claude rc` workspace-trust error in the home directory to say trust there is never saved and to suggest running from a project directory +- Changed single-segment `dir/**` hook `if:` conditions to match only `/dir`; write `**/dir/**` for any-depth matching. `deny`/`ask` permission rules keep their any-depth match. +- Changed `file` commands using `-m`/`--magic-file` or `-f`/`--files-from` to require permission instead of being auto-allowed as read-only +- Changed keep-alive connection pooling to disable after a stale-connection error, so retries open a fresh socket +- Changed SessionStart hooks to report source `"fork"` when a session begins as a fork instead of `"resume"` + ## 2.1.212 - `/fork` now copies your conversation into a new background session (its own row in `claude agents`) while you keep working; the in-session subagent it used to launch is now `/subtask` diff --git a/feed.xml b/feed.xml index a1fb4916..c409bdeb 100644 --- a/feed.xml +++ b/feed.xml @@ -6,7 +6,60 @@ Anthropic - 2026-07-17T00:26:21Z + 2026-07-18T01:20:23Z + + https://github.com/anthropics/claude-code/releases/tag/v2.1.214 + Claude Code v2.1.214 + + 2026-07-18T01:20:23Z + <p>• Fixed single-segment dir/ allow rules like Edit(src/) auto-approving writes to nested dir/ directories anywhere in the tree instead of only &lt;cwd&gt;/dir</p> +<p>• Fixed a permission-check bypass affecting commands run in Windows PowerShell 5.1 sessions</p> +<p>• Fixed Bash permission checks to fail closed on file-descriptor redirect forms that bash parses differently than the permission analyzer</p> +<p>• Fixed Bash permission checks misjudging very long commands — commands over 10,000 characters now always prompt instead of running automatically</p> +<p>• Fixed Bash permission checks treating zsh variable subscripts and modifiers in [[ ]] comparisons as inert text — these commands now prompt for approval</p> +<p>• Fixed Bash permission checks to no longer auto-approve certain help and man commands that could run unsafe options, command substitutions, or backslash paths</p> +<p>• Fixed permission prompts on remote sessions that could proceed before the local confirmation dialog</p> +<p>• Added the EndConversation tool: Claude can end sessions with highly abusive users or jailbreak attempts, as on claude.ai since 2025 — see https://www.anthropic.com/research/end-subset-conversations</p> +<p>• Added a periodic progress heartbeat for long-running tool calls that previously went silent</p> +<p>• Added an ISO modified timestamp to memory file frontmatter</p> +<p>• Added message.uuid, client_request_id, and tool_source attributes to OpenTelemetry log events for message-level correlation and tool provenance</p> +<p>• Added CLAUDE_CODE_OTEL_CONTENT_MAX_LENGTH to configure the 60 KB truncation limit on OpenTelemetry content attributes</p> +<p>• Added reasoning effort to the subagentStatusLine payload, so custom agent rows can render model and effort</p> +<p>• Added permission prompts for docker commands (including the Podman docker shim) carrying daemon-redirect flags (--url, --connection, --identity, and Podman's remote mode) that previously ran without one</p> +<p>• Fixed a crash when a GrowthBook feature evaluates to null, and a bug where a malformed flag payload could wipe the cached feature flags</p> +<p>• Fixed Bash tool killing the Claude session when a pkill -f pattern accidentally matched the CLI's own process (Linux)</p> +<p>• Fixed unbounded memory growth when --settings points at a device file or multi-GB file; oversized (&gt;2 MiB) settings files now fail at startup with a clear error</p> +<p>• Fixed streaming turns failing with "Socket is closed" behind corporate proxies on Windows</p> +<p>• Fixed stream-json output truncation at exit for slow-reading SDK/pipeline consumers; the exit drain now scales with queued bytes instead of a flat 2s cap</p> +<p>• Fixed scheduled tasks refusing their own configured prompt as untrusted input — the fired prompt is now delivered as the session's assigned task</p> +<p>• Fixed PowerShell tool commands hanging until timeout when a child process waited on standard input (Windows)</p> +<p>• Fixed Python scripts under the PowerShell tool crashing with UnicodeDecodeError when reading non-UTF-8 data from standard input (Windows)</p> +<p>• Fixed Python scripts run via the PowerShell tool crashing with UnicodeEncodeError on non-ASCII output, and PowerShell 7 error messages containing raw ANSI escape sequences (Windows)</p> +<p>• Fixed the PowerShell tool reporting where.exe, fc.exe, and diff.exe as errors when they return a valid negative answer (Windows)</p> +<p>• Fixed &gt; and &gt;&gt; under the PowerShell tool on Windows PowerShell 5.1 writing UTF-16LE files that other tools couldn't read as UTF-8</p> +<p>• Fixed a displaced background daemon deleting its successor's control socket on shutdown, which made the next client kill the healthy replacement daemon</p> +<p>• Fixed background sessions parked with ← or /background and left idle keeping the background daemon and a worker process alive indefinitely</p> +<p>• Fixed completed background sessions being impossible to remove via claude rm or the agent view once the background service had gone idle</p> +<p>• Fixed background sessions dispatched from a non-git folder being impossible to delete from the agents view</p> +<p>• Fixed reopening a stopped background session failing to restore its saved conversation when an unreadable folder exists in the session store</p> +<p>• Fixed the Remote Control "session ready" push notification firing for sessions where Remote Control was not explicitly enabled</p> +<p>• Fixed /install-github-app and the /mcp settings menu being blocked in agent-view sessions — they're now refused only in background sessions with no terminal attached</p> +<p>• Fixed plugins enabled via the --settings CLI flag not loading (regression since v2.1.181)</p> +<p>• Fixed feature flags going stale in long-running sessions after the OAuth token rotates</p> +<p>• Fixed /ultrareview refusing to run in repos with no merge base — it now offers to review all tracked files</p> +<p>• Fixed claude update and claude doctor hanging silently, and the /status System diagnostics section going blank, when a shell-config path is a directory</p> +<p>• Fixed memory frontmatter values being silently truncated at an inline # when memory files are saved</p> +<p>• Fixed session cost and token telemetry double-counting on streams that emit multiple cumulative message_delta frames</p> +<p>• Fixed a spurious "check your network" warning that appeared while the advisor was thinking</p> +<p>• Fixed hooks with exit code 2 not blocking as documented when the hook's stdout JSON fails schema validation</p> +<p>• Fixed OTel log events emitted outside the turn's async context missing the interaction span's trace context</p> +<p>• Fixed MCP transient errors during prompts/resources refresh clearing the server's slash commands and resources</p> +<p>• Improved the claude rc workspace-trust error in the home directory to say trust there is never saved and to suggest running from a project directory</p> +<p>• Changed single-segment dir/ hook if: conditions to match only &lt;cwd&gt;/dir; write /dir/** for any-depth matching. deny/ask permission rules keep their any-depth match.</p> +<p>• Changed file commands using -m/--magic-file or -f/--files-from to require permission instead of being auto-allowed as read-only</p> +<p>• Changed keep-alive connection pooling to disable after a stale-connection error, so retries open a fresh socket</p> +<p>• Changed SessionStart hooks to report source "fork" when a session begins as a fork instead of "resume"</p> + https://github.com/anthropics/claude-code/releases/tag/v2.1.212 Claude Code v2.1.212 @@ -545,30 +598,4 @@ <p>• Improved plugin auto-rename: marketplace renames maps are now followed automatically, updating your settings to the new name</p> <p>• Improved /add-dir message when the directory is already a working directory</p> - - https://github.com/anthropics/claude-code/releases/tag/v2.1.191 - Claude Code v2.1.191 - - 2026-06-24T21:58:06Z - <p>• Added /rewind support for resuming a conversation from before /clear was run</p> -<p>• Fixed scroll position jumping to the bottom while reading earlier output during a streaming response</p> -<p>• Fixed background agents resurrecting after being stopped — stopping an agent from the tasks panel is now permanent</p> -<p>• Fixed /voice showing a generic "not available" message when disabled by an organization's policy — it now explains the restriction</p> -<p>• Fixed /login URL opening truncated in Windows Terminal when it wraps across lines</p> -<p>• Fixed Cmd+click on links in fullscreen mode for Ghostty over ssh/tmux</p> -<p>• Fixed claude agents sending builtin slash commands like /usage to background sessions as prompt text instead of showing a hint</p> -<p>• Fixed claude agents job rows showing full filesystem paths for pasted images instead of the [Image #N] placeholder</p> -<p>• Fixed hooks with comma-separated matchers (e.g. "Bash,PowerShell") silently never firing</p> -<p>• Fixed /permissions Recently-denied tab: approving a denial now persists on close instead of being silently discarded</p> -<p>• Fixed the agent panel jumping by one row when scrolling the roster past the overflow cap</p> -<p>• Fixed the welcome splash art overflowing the default 80×24 macOS Terminal window</p> -<p>• Fixed managed settings: forceRemoteSettingsRefresh now takes effect when set via MDM or file policy, and the fetch sends Cache-Control: no-cache to prevent proxies from serving stale responses</p> -<p>• Improved sandbox network permission dialog: hosts you allow with "Yes" are now remembered for the rest of the session instead of re-prompting on every connection</p> -<p>• Improved MCP server reliability: capability discovery (tools/list, prompts/list, resources/list) now retries transient network errors with short backoff</p> -<p>• Improved MCP OAuth: discovery and token requests now retry once after transient network errors, and headless environments skip the browser popup and go straight to the paste-the-URL prompt</p> -<p>• Improved MCP error messages: HTTP 404 errors now show the URL and point to your MCP config</p> -<p>• Improved vim mode prompt-history search (NORMAL /) to hint how to reach slash commands</p> -<p>• Reduced CPU usage during streaming responses by ~37% by coalescing text updates to 100ms</p> -<p>• Reduced long-session memory growth from terminal output cache</p> -