Claude Code Updates & Release Notes

Follow

401 updates curated from 20 sources by the Releasebot Team. Last updated: Jul 20, 2026

Get this feed:
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 20, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.216

    Claude Code adds a broad stability and workflow update with new filesystem isolation controls, faster long-session performance, stronger session resume and background agent handling, and many fixes for permissions, worktrees, UI, shell parsing, telemetry, and VS Code text rendering.

    • Added sandbox.filesystem.disabled setting to skip filesystem isolation while keeping network egress control
    • Fixed a slowdown in long sessions where message normalization cost grew quadratically with the number of turns, causing multi-second stalls and slow resumes
    • Fixed auto mode denying commands with "HTTP 401" classifier errors after the OAuth token expired or rotated mid-session
    • Fixed AskUserQuestion telling Claude to continue even when your answer asked it to wait or explain first 6 free-text answers now get neutral wording
    • Fixed Claude Code on the web re-asking the same question and dropping your answer after the session sat idle for a few minutes
    • Fixed @-mentions silently attaching nothing after file-modifying hooks, vim dot-repeat of c-operators and paste, statusline running twice on resume, and resume-picker hangs on failure
    • Fixed resumed background agent sessions reverting to the default agent: the agent's prompt and tool restrictions are now restored
    • Fixed worktree-isolated subagents redirecting git into the shared checkout via git -C, --git-dir, or GIT_DIR/GIT_WORK_TREE
    • Fixed worktree sessions landing in another project's leftover worktree when the working directory did not match the selected project
    • Fixed background sessions whose worktree has no git repository being undeletable
    • Fixed claude daemon stop --any potentially terminating an unrelated process via a stale legacy daemon lockfile
    • Fixed Esc-Esc at an idle prompt not opening the rewind picker in long-running sessions with background tasks
    • Fixed Bash command permission checking for compound statements with redirects inside && lists or negations
    • Fixed pressing Ctrl+X twice in the agent list failing to delete a session, and deleted sessions reappearing when their background worker had died
    • Fixed background subagents getting cancelled when a high-priority message arrives during their startup window
    • Fixed mouse and focus garbage in the terminal while a GUI editor from /memory, /plan, /keybindings, or Ctrl+G is open; /memory no longer waits for the editor to close
    • Fixed Claude-in-Chrome 403-looping on reconnect when the session's OAuth token lacks a required scope
    • Fixed workflow saves and scheduled-task writes following a symlink at .claude, which could redirect writes outside the project
    • Fixed MCP re-authenticate revoking working credentials before the new sign-in succeeds, and the reconnect needs-auth message in background sessions pointing at an unusable command
    • Fixed read-only commands on Windows accessing network paths without a permission prompt
    • Fixed Bash command parsing of non-ASCII characters to match real shell word boundaries
    • Fixed PowerShell tool permission validation of commands containing invisible Unicode characters
    • Fixed dialogs in fullscreen mode stretching past the right-hand edge of their panel
    • Fixed the /config settings list in fullscreen mode clipping its keyboard-hint footer
    • Fixed the transcript-mode (Ctrl+O) footer hint wrapping on terminals narrower than 104 columns
    • Fixed the Prometheus metrics endpoint (OTEL_METRICS_EXPORTER=prometheus) emitting invalid # UNIT lines
    • Fixed skills and commands changed during a session not appearing in the slash menu until restart
    • Fixed plugin skills with a name frontmatter field losing their plugin prefix in slash-command autocomplete
    • Fixed telemetry misreporting permission denials: failed permission-prompt requests no longer count as user rejections, and user interrupts are now reported as user aborts instead of rejections
    • Improved the /fork confirmation to one line with the new session's name, claude attach id, and a note when the copy shares your checkout
    • Improved validation of git and gh command arguments in the PowerShell tool
    • Improved the /ultrareview diff-too-large error to show configured limits, measured diff size, and largest contributing files
    • Improved /code-review ultra empty-diff message to name the exact base ref and suggest passing an explicit base
    • Improved the spend limit adjustment prompt to show the server's reason when a spend limit change is rejected
    • /context now shows an explicit warning when the conversation exceeds the context window, and a failed /compact displays as an error
    • /rewind no longer restores or deletes files through symlinks or hard links at tracked paths and reports how many paths it skipped
    • Background sessions: /mcp and /install-github-app now park a "needs input" request in the agent view when no client is attached
    • Updated the bundled dataviz skill: reordered the default chart palette and fixed guidance that suggested direct labels for four-series charts
    • [VSCode] Fixed right-to-left text (Arabic, Hebrew, Persian) rendering in the wrong order when mixed with English or code
    • Fixed cloud sessions dropping the in-flight message when the session's container restarts mid-turn 6 the interrupted turn now re-runs on resume instead of leaving the session unresponsive
    Original source
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 19, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.215

    Claude Code changes /verify and /code-review to run only when invoked directly.

    • Claude no longer runs the /verify and /code-review skills on its own; invoke them with /verify or /code-review when you want them
    Original source
  • All of your release notes in one feed

    Join Releasebot and get updates from Anthropic and hundreds of other software products.

    Create account
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 18, 2026
    • Modified by Releasebot:
      Jul 20, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.214

    Claude Code fixes permission-check bypasses, PowerShell and Bash safety issues, and background session bugs, while adding EndConversation, progress heartbeats, richer observability, and better handling for large outputs, remote sessions, and Docker commands.

    • Fixed single-segment dir/** allow rules like Edit(src/**) auto-approving writes to nested dir/ directories anywhere in the tree instead of only <cwd>/dir
    • Fixed a permission-check bypass affecting commands run in Windows PowerShell 5.1 sessions
    • Fixed Bash permission checks to fail closed on file-descriptor redirect forms that bash parses differently than the permission analyzer
    • Fixed Bash permission checks misjudging very long commands 6 commands over 10,000 characters now always prompt instead of running automatically
    • Fixed Bash permission checks treating zsh variable subscripts and modifiers in [[ ]] comparisons as inert text 6 these commands now prompt for approval
    • Fixed Bash permission checks to no longer auto-approve certain help and man commands that could run unsafe options, command substitutions, or backslash paths
    • Fixed permission prompts on remote sessions that could proceed before the local confirmation dialog
    • Added the EndConversation tool: Claude can end sessions with highly abusive users or jailbreak attempts, as on claude.ai since 2025 6 see https://www.anthropic.com/research/end-subset-conversations
    • Added a periodic progress heartbeat for long-running tool calls that previously went silent
    • Added an ISO modified timestamp to memory file frontmatter
    • Added message.uuid, client_request_id, and tool_source attributes to OpenTelemetry log events for message-level correlation and tool provenance
    • Added CLAUDE_CODE_OTEL_CONTENT_MAX_LENGTH to configure the 60 KB truncation limit on OpenTelemetry content attributes
    • Added reasoning effort to the subagentStatusLine payload, so custom agent rows can render model and effort
    • Added permission prompts for docker commands (including the Podman docker shim) carrying daemon-redirect flags (--url, --connection, --identity, and Podman's remote mode) that previously ran without one
    • Fixed a crash when a GrowthBook feature evaluates to null, and a bug where a malformed flag payload could wipe the cached feature flags
    • Fixed Bash tool killing the Claude session when a pkill -f pattern accidentally matched the CLI's own process (Linux)
    • Fixed unbounded memory growth when --settings points at a device file or multi-GB file; oversized (>2 MiB) settings files now fail at startup with a clear error
    • Fixed streaming turns failing with "Socket is closed" behind corporate proxies on Windows
    • Fixed stream-json output truncation at exit for slow-reading SDK/pipeline consumers; the exit drain now scales with queued bytes instead of a flat 2s cap
    • Fixed scheduled tasks refusing their own configured prompt as untrusted input 6 the fired prompt is now delivered as the session's assigned task
    • Fixed PowerShell tool commands hanging until timeout when a child process waited on standard input (Windows)
    • Fixed Python scripts under the PowerShell tool crashing with UnicodeDecodeError when reading non-UTF-8 data from standard input (Windows)
    • Fixed Python scripts run via the PowerShell tool crashing with UnicodeEncodeError on non-ASCII output, and PowerShell 7 error messages containing raw ANSI escape sequences (Windows)
    • Fixed the PowerShell tool reporting where.exe, fc.exe, and diff.exe as errors when they return a valid negative answer (Windows)
    • Fixed > and >> under the PowerShell tool on Windows PowerShell 5.1 writing UTF-16LE files that other tools couldn't read as UTF-8
    • Fixed a displaced background daemon deleting its successor's control socket on shutdown, which made the next client kill the healthy replacement daemon
    • Fixed background sessions parked with 16 or /background and left idle keeping the background daemon and a worker process alive indefinitely
    • Fixed completed background sessions being impossible to remove via claude rm or the agent view once the background service had gone idle
    • Fixed background sessions dispatched from a non-git folder being impossible to delete from the agents view
    • Fixed reopening a stopped background session failing to restore its saved conversation when an unreadable folder exists in the session store
    • Fixed the Remote Control "session ready" push notification firing for sessions where Remote Control was not explicitly enabled
    • Fixed truncated stream-json/JSON output and missing result message when piping large responses from claude -p
    • Fixed CLAUDE_CODE_MAX_OUTPUT_TOKENS and similar env vars silently using the mantissa of scientific-notation values (1e6 became 1)
    • Fixed very large markdown tables stalling rendering or using excessive memory; tables over 200 rows show the first 200 with a "0 N more rows" notice
    • Fixed the Edit tool failing on files modified after reading when the target text still matches uniquely
    • Fixed Read reporting empty files as "shorter than offset", Grep silently returning "No files found" for invalid regex patterns, Grep count mode under-reporting totals when paginated, and Glob crashing with an unclear error when the pattern, path, or working directory contained a null byte
    • Fixed apiKeyHelper script failures being hidden behind a generic 401 after ~10 silent retries; the script's own error is now shown within 3 attempts
    • Fixed Bedrock streaming requests failing with a misleading "Truncated event message received" when a gateway transforms the response 6 the error now names the content-type and points at the proxy
    • Fixed /upgrade showing a login flow instead of the upgrade URL when the browser fails to open
    • Fixed stream-json input killing the session on blank CRLF or whitespace-only lines from Windows-style SDK hosts
    • Fixed headless stream-json sessions hanging permanently when a control_request carried a non-string set_model payload; the CLI now answers with an error response
    • Fixed repeated "No completion record was found" notices on session resume 6 orphaned background tasks now collapse into a single summary
    • Fixed Remote Control clients attaching to a terminal-hosted session not seeing background agents and workflow progress until a task started or stopped
    • Fixed the Agent tool launching with no tools when a subagent's tools list resolves to nothing 6 it now returns a clear error naming the unrecognized entries
    • Fixed /usage showing stale cached bars over fresher data, and /mcp not reclassifying placeholder servers after config edits
    • Fixed Bedrock auth failing with "Session token not found or invalid" for AWS SSO profiles whose sso_region differs from the Bedrock region (2.1.207 regression)
    Original source
  • Jul 17, 2026
    • Date parsed from source:
      Jul 17, 2026
    • First seen by Releasebot:
      Jul 18, 2026
    Anthropic logo

    Claude Code by Anthropic

    Week 29 · July 13–17, 2026

    Claude Code adds live MCP connector data for published artifacts, screen reader mode for accessible sessions, and new sharing and collaboration options for Team and Enterprise. It also improves subagent workflows, background handling, permissions, and default model settings.

    Pull live data into published artifacts through MCP connectors, and use Claude Code with a screen reader in the new screen reader mode.

    Artifacts call your MCP connectors

    A published artifact can now call MCP connectors each time someone views it, so a dashboard shows live data and can take actions on demand rather than a snapshot from the session that built it. Each call runs through the viewing account’s own connections, and viewers approve access before the page’s first connector call. This week also adds public sharing links, editor roles for shared editing on Team and Enterprise plans, and artifacts created from Claude Tag sessions.

    Name the connector and the data you want in your prompt:

    Claude Code

    Build a dashboard artifact of open pull requests that pulls the live list through my GitHub connector when the page loads.

    Pull live data with MCP connectors

    Screen reader mode

    Screen reader mode replaces the visual terminal interface with plain, linear text: instead of boxes, spinners, and in-place redraws, Claude Code prints labeled lines that a screen reader such as VoiceOver or NVDA reads in order, so you can approve permissions and review output end to end. Turn it on per session with a flag, per shell with the CLAUDE_AX_SCREEN_READER environment variable, or everywhere with the axScreenReader setting.

    Start a session in screen reader mode:

    claude --ax-screen-reader
    

    Turn on screen reader mode

    Other wins

    /fork now copies your conversation into a new background session with its own row in claude agents while you keep working; the in-session forked subagent it used to launch is now /subtask

    Auto mode no longer needs the CLAUDE_CODE_ENABLE_AUTO_MODE opt-in on Amazon Bedrock, Google Cloud’s Agent Platform, and Microsoft Foundry; administrators can turn it off with disableAutoMode

    MCP tool calls that run longer than two minutes now move to the background automatically so the session stays usable; tune or disable the threshold with CLAUDE_CODE_MCP_AUTO_BACKGROUND_MS

    New claude auto-mode reset restores the default auto-mode configuration, and --yes skips the confirmation prompt

    New corporate launcher support: CLAUDE_CODE_PROCESS_WRAPPER or the processWrapper setting runs the processes Claude Code starts from its own binary, such as the background service and agent view sessions, through a required wrapper executable

    vimInsertModeRemaps setting maps two-key insert-mode sequences such as jj to Escape in vim mode

    --forward-subagent-text and CLAUDE_CODE_FORWARD_SUBAGENT_TEXT include subagent text and thinking blocks in stream-json output

    Session-wide caps stop runaway loops: WebSearch calls and subagent spawns each default to 200, tunable with CLAUDE_CODE_MAX_WEB_SEARCHES_PER_SESSION and CLAUDE_CODE_MAX_SUBAGENTS_PER_SESSION

    ”Always allow” permission rules save at the repository root, so approvals granted in a git worktree persist across sessions and worktrees

    Amazon Bedrock, Google Cloud’s Agent Platform, and Claude Platform on AWS now default to Claude Opus 4.8

    The collapsed tool summary line shows a live elapsed-time counter, so long-running tool calls visibly tick instead of looking stuck

    Full changelog for v2.1.207–v2.1.212

    Original source
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 17, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.212

    Claude Code adds background sessions for /fork, smarter /resume and /background flows, stronger safeguards for WebSearch, subagent spawns, and Bash execution, plus broader reliability fixes across web search, MCP, worktrees, telemetry, and remote sessions.

    • /fork now copies your conversation into a new background session (its own row in claude agents) while you keep working; the in-session subagent it used to launch is now /subtask
    • Added claude auto-mode reset to restore the default auto-mode configuration, with a confirmation prompt (pass --yes to skip)
    • Added a session-wide limit on WebSearch tool calls (default 200, tunable via CLAUDE_CODE_MAX_WEB_SEARCHES_PER_SESSION) to stop runaway search loops
    • Added a per-session cap on subagent spawns (default 200, override with CLAUDE_CODE_MAX_SUBAGENTS_PER_SESSION) to stop runaway delegation loops; /clear resets the budget
    • MCP tool calls running longer than 2 minutes now move to the background automatically so the session stays usable; configure the threshold or disable with CLAUDE_CODE_MCP_AUTO_BACKGROUND_MS
    • Typing /resume in the agent view now opens a picker of past sessions — including sessions deleted from the list — and resumes your pick as a background session
    • Fixed plan mode auto-running file-modifying Bash commands (e.g. touch, rm) without a permission prompt or SDK canUseTool callback
    • Fixed worktree creation following a repository-committed symlink at .claude/worktrees, which could create files outside the repository
    • Fixed a continue:false hook's halt being dropped when the tool fails or completes mid-stream, and hook infrastructure errors being misreported as user rejections
    • Fixed SIGTERM during a running Bash tool orphaning the command's process tree in print/SDK mode; the CLI now aborts the turn, kills the tree, and exits 143
    • Fixed /background and claude --bg failing with "EUNKNOWN: unknown error, uv_spawn" on Windows when Group Policy blocks PowerShell 5.1; the daemon now prefers PowerShell 7
    • Fixed shell mode (!) not executing commands containing file paths while the path autocomplete popup was open
    • Fixed auto-mode denial notifications rendering broken characters when a long denial reason was truncated mid-emoji
    • Fixed Ctrl+J not inserting a newline in the agent view dispatch input on terminals with extended key reporting, and surfaced the newline shortcut in the ? help overlay
    • Fixed /ultrareview rejecting PR references like #123, PR 123, and pasted PR URLs; error hints now name the command you actually typed
    • Fixed /ultrareview <branch> not fetching the branch from origin when it exists remotely; it now suggests the closest branch name on typos
    • Fixed /ultrareview skipping the billing confirmation in a new conversation after /clear
    • Fixed /ultrareview's "not a git repository" error on Claude Desktop now suggesting the project's repository folder instead of terminal commands
    • Fixed hosted (host-managed) sessions failing at startup when repository settings configured mTLS certs, extra CA bundles, or OAuth scopes; these transport settings are now ignored with a warning
    • Fixed a spurious "File has not been read yet" error when editing a file that had been read with offset/limit before resuming a session
    • Fixed ExitWorktree failing with "no active EnterWorktree session" after resuming a session with --continue/--resume in print/SDK mode
    • Fixed the workflow agent grid staying empty for Remote Control clients that join a session mid-run
    • Fixed streaming-mode control requests being marked complete before their handler finished, which could lose the request on session restart
    • Fixed background sessions created with /fork losing their live-parent protection after a state write failure
    • Fixed reopening a stopped background session from the agent view failing silently — it now resumes the session, or shows why it can't and lets you force a restart
    • Fixed agent teams: a stopping teammate could send the leader duplicate idle notifications when team initialization re-ran within a session
    • Fixed the plan-approval dialog footer splitting "ctrl+g to edit in " apart when the file path is long
    • Fixed the welcome banner keeping its old panel widths after a combined width+height terminal resize in fullscreen mode
    • Fixed diff previews losing their line numbers and +/- markers in narrow layouts
    • Fixed @-mentions attaching nothing after a partial file read, plugin uninstall targeting the wrong marketplace, and false "Command timed out" on exit code 143
    • Fixed OpenTelemetry HTTP exports being rejected with 411/400 by Azure Monitor and other endpoints that don't accept chunked transfer encoding
    • Fixed OTLP event log records missing trace_id/span_id when TRACEPARENT is set in SDK/headless mode
    • Fixed conversations with many images incorrectly failing with "Request too large" errors, and improved the error message to explain the actual cause
    • Fixed web search and web fetch returning "API Error" text as search results or page content when the API was overloaded
    • Improved web search and web fetch reliability by retrying 529 errors and rate-limited requests with bounded backoff
    • Improved prompt caching: the mid-conversation system block now works behind LLM gateways and custom base URLs (Bedrock, Vertex, 1P)
    • Improved background agent attach: cold-attaching now instantly shows the formatted transcript while the session boots, instead of a blank wait
    • Reduced token usage in inter-agent messaging: SendMessage bodies are no longer duplicated into replayed history and tool results
    • Changed /fork to name the copy after your prompt when the session has no title, so the row is recognizable in the agent view
    • Changed bare /btw to reopen the side-question panel on your most recent exchange so you can browse earlier answers
    • Changed the footer hint to pulse N done for a moment when a background agent finishes while nothing needs your input
    • Deprecated the Task tool's mode parameter (now ignored); subagents inherit the parent session's permission mode by default
    • Changed Enterprise forceLoginMethod to be enforced for VS Code extension, SDK, setup-token, and install-github-app logins, not just the terminal
    • Changed session transcripts to record the reasoning effort level on each assistant message
    • Changed headless/SDK sessions to apply a set_model control request mid-turn; the next model round-trip uses the new model instead of waiting for the next turn
    • Changed agent view / claude agents --json: sessions waiting on a sandbox, MCP-input, or managed-settings prompt now show as "Needs input" instead of "Working"
    • Updated the auth status panel title from "Cloud authentication" to "Authentication"
    • Corrected an earlier release note (2.1.200): tmux through the 3.6 series lacks synchronized output; newer tmux with support is detected
    Original source
  • Similar to Claude Code with recent updates:

  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 16, 2026
    • Modified by Releasebot:
      Jul 18, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.211

    Claude Code adds subagent text streaming, improves background agent reliability, and fixes a wide range of bugs across permissions, uploads, sessions, Chrome, Windows, and cloud models. It also boosts terminal performance, refines usage and memory handling, and hardens prompt caching.

    • Added --forward-subagent-text flag and CLAUDE_CODE_FORWARD_SUBAGENT_TEXT environment variable to include subagent text and thinking in stream-json output
    • Fixed permission previews relayed to chat channels not neutralizing bidirectional-override, zero-width, and look-alike quote characters, so tool inputs cannot visually alter the approval message
    • Fixed auto mode overriding a PreToolUse hook's ask decision for unsandboxed Bash — a hook ask now floors the decision at a prompt
    • Fixed parallel Claude Code sessions all logging out simultaneously after wake-from-sleep when many sessions share one credential store
    • Fixed plugin MCP servers not reconnecting after an idle web session woke, leaving MCP calls failing until the next message
    • Fixed Claude Code on Vertex and Bedrock attempting the default Opus model at startup and printing a spurious fallback notice when a model is explicitly configured
    • Fixed subagents spawned with an explicit model override reverting to the parent's model when resumed or sent a follow-up message
    • Fixed nested .claude/rules/*.md files loading even when setting sources exclude project settings
    • Fixed file upload validation: filenames ending in a DOS device suffix (.prn) or trailing dot are now accepted, and files with multiple hard links are refused
    • Fixed file uploads to Claude in Chrome from remote and CLI sessions
    • Fixed edits that leave the input as "?" being silently swallowed and toggling the shortcuts panel
    • Fixed a startup hang when the Claude in Chrome extension is enabled but Chrome is not running
    • Fixed a 300ms delay revealing async content (Settings tabs, Stats, diff views, and other loading states)
    • Fixed reopening a just-stopped background session from the agents view starting a blank conversation under the same session id
    • Fixed /loop hiding the session from /resume after a single use
    • Fixed screen reader users losing the audible terminal bell after /terminal-setup or onboarding terminal setup
    • Fixed background jobs on LLM gateway auth (ANTHROPIC_AUTH_TOKEN + ANTHROPIC_BASE_URL) coming back "Not logged in" after the daemon respawns them
    • Fixed claude agents jobs becoming permanently undeletable when git no longer recognizes their worktree — the row now shows why the delete was refused instead of silently reappearing
    • Fixed /clear not resetting the session cost counter — the statusline's cost now starts at $0 after /clear
    • Fixed Claude in Chrome setup pages failing to open in the browser on Windows
    • Fixed headless print-mode sessions on Windows crashing or silently exiting when stdin is unreadable
    • Fixed background session titles in the agents view showing the naming model's refusal text when the prompt contains a link
    • Fixed background agents killed by the user auto-respawning, and revived agents re-running stale prompts from old sessions
    • Fixed routines with no schedule reporting a next run time in the year 1
    • Hardened synced skill/plugin directory naming on Windows and kept CCR web fetch/search proxies working after /clear
    • Improved terminal layout and rendering performance
    • Improved background agent result reporting — Claude now reports the status of still-running agents and waits for the real completion instead of fabricating results
    • Improved the memory index over-limit warning to measure only loaded content, excluding frontmatter and HTML comments
    • Updated integer environment variables (timeouts, token budgets, retry counts) to accept scientific notation and digit-separator spellings like 1e6 and 64_000
    • Updated documentation links to the current docs sites
    • Changed "always allow" permission rules to save at the repository root, so approvals granted in a git worktree persist across sessions and worktrees
    • Changed /usage-credits to ask for confirmation before sending a request to organization admins
    • Changed Vim mode s and S (substitute char/line) to work in NORMAL mode, matching vim behavior
    • [VSCode] Updated the Remote Control banner to describe what it does
    • Claude in Chrome: hardened file-upload path validation
    • Claude in Chrome: save_to_disk on screenshot actions now writes the image to disk and returns the path; previously it did nothing
    • Fixed a prompt-caching regression on Bedrock, Vertex, Mantle, and Foundry that billed the trailing system context block as fresh input tokens on every request.
    Original source
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 15, 2026
    • Modified by Releasebot:
      Jul 17, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.210

    Claude Code improves reliability and usability with a long list of fixes and polish, including clearer tool call status, stronger agent and worktree isolation, better permission and auto mode behavior, more stable sessions, and accessibility and clipboard improvements across the app.

    • Added a live elapsed-time counter to the collapsed tool summary line so long-running tool calls visibly tick instead of looking stuck
    • Added a startup warning for Write(path), NotebookEdit(path), and Glob(path) permission rules — use Edit(path) or Read(path) instead
    • Fixed isolation: 'worktree' subagents being able to run git-mutating commands against the main repo checkout instead of their own isolated worktree
    • Fixed the ultracode keyword opt-in firing on non-human-originated input such as webhook payloads and relayed PR comments
    • Fixed a rendered text fragment leaking into crash telemetry when a UI component returned content outside a styled text element
    • Fixed paste markers leaking into external editors opened from Claude Code, which could appear as stray È/É characters around pasted text
    • Fixed claude attach sometimes failing with "job not found" or "agent is still starting" errors during session transitions — attach now waits for the daemon to settle, and terminal resizes during a slow attach are applied once it completes
    • Fixed a session crash when a tool's result renderer returned a numeric bigint value or plain text instead of a UI element
    • Fixed a hook callback timeout being misreported to the model as a user rejection, which made unattended sessions stop and wait
    • Fixed Claude assuming a cd took effect after its command was moved to the background; the tool result now states the working directory is unchanged
    • Fixed plugin-provided MCP servers being torn down when MCP servers are re-synced mid-session
    • Fixed plan approvals without edits being labeled "(edited by user)" and overwriting the plan file with a stale snapshot
    • Fixed /doctor skipping its auto-mode-default proposal on Bedrock, Vertex, and Foundry, where auto mode no longer needs an opt-in
    • Fixed Grep content mode claiming "No matches found" when paginating past the end of results
    • Fixed unmatched $1/$2 positional placeholders in skills and commands being silently stripped; they are now preserved verbatim
    • Fixed plugin cache writes leaving temp files behind on failure and failing on locked-file renames on Windows and network filesystems
    • Fixed background workers crash-looping when a client resets its connection to the background service
    • Fixed claude agents --effort ultracode not reaching dispatched sessions; the value was silently dropped
    • Fixed pressing ← to open the agents view dropping the task tracker when returning to the session
    • Fixed the agents dashboard retaining pasted images from abandoned reply drafts after their session was deleted
    • Fixed killed background sessions leaving a permanent git worktree lock behind; the periodic sweep now releases locks whose owning process is gone
    • Fixed SDK MCP servers registered via an initialize control request waiting until the next turn to start connecting
    • Fixed returning to the agents view from a session leaving overlapping ghost frames with CLAUDE_CODE_DISABLE_ALTERNATE_SCREEN=1
    • Fixed late-appearing .claude/* symlinks not being reconciled into the sandbox deny-write list
    • Hardened the Agent tool against indirect prompt injection via content a subagent read
    • Improved the Bash/PowerShell tool message when a command hits its timeout and is auto-backgrounded, so the model can distinguish a hang from an explicit background request
    • Improved auto mode: the permission classifier now defaults to Sonnet 5 for external sessions, validated on the session's first request and pinned for the session
    • Improved the bundled dataviz skill's chart color validation with perceptual OKLab color difference and recalibrated color-blindness thresholds
    • Memory writes that leave a MEMORY.md index over its read limit now produce an explicit error instead of silent truncation
    • Screen reader mode now announces permission mode changes aloud when cycling modes with Shift+Tab
    • The agents footer hint now shows how many background agents are waiting on your input, with a brief color emphasis when the count changes
    • Agent view: the session you pressed ← from stays visibly marked even after mouse hover or arrow keys move the selection
    • Fixed the API retry indicator ("Retrying in 0s · attempt N/10") staying on screen after the retry succeeded
    • Fixed AWS awsCredentialExport credentials with a short remaining lifetime causing credential refreshes every minute, and now accepts the JSON shape from aws configure export-credentials
    • Fixed claude mcp get/list showing ✓ Connected when tools/list fails; they now show ! Connected · tools fetch failed with the error detail
    • Fixed /remote-control leaving a stale "connecting…" line; it now confirms in the transcript once connected
    • Fixed ExitWorktree refusing to remove a clean worktree with "Could not verify worktree state" when bare git cannot be resolved on Windows
    • Fixed settings changes (such as /effort or /model) failing with ENOENT when ~/.claude/settings.json is a relative symlink under a symlinked ~/.claude
    • Fixed IDE selection line numbers in context reminders being off by one (IntelliJ and VS Code)
    • Fixed Ctrl+C in fullscreen after a native terminal selection (modifier+drag) overwriting the clipboard with the app's prior selection
    • Fixed Ctrl+V showing "No image found in clipboard" instead of pasting when the clipboard contains text
    • Fixed agent creation failing with "EEXIST: file already exists" when the agents directory already exists (Windows/OneDrive)
    • Fixed AskUserQuestion preview content being cut off at the dialog edge instead of word-wrapping
    • Fixed AskUserQuestion multi-select questions silently dropping a typed "Other" free-text answer when submitting
    • Fixed /stats "Most active day" and daily token chart dates showing one day early in UTC-negative timezones
    • Fixed /copy and copy-on-select on Linux not detecting a clipboard utility installed after Claude Code started
    • Fixed tab-indented code rendering with incorrect indentation in the Write (create-file) preview
    • Fixed user prompts queued mid-turn not showing a full-width background highlight in the transcript
    • Fixed the activity spinner's pulse dwelling on the wrong glyph size in Ghostty
    Original source
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 15, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.208

    Claude Code adds screen reader mode, vim insert remaps, mouse support, stronger corporate launcher handling, and a smarter /doctor checkup. It also improves agent and background sessions, auto-update memory use, and fixes a wide range of CLI, remote control, and rendering issues.

    • Added screen reader mode: opt-in plain-text rendering for screen reader users. Run claude --ax-screen-reader, set CLAUDE_AX_SCREEN_READER=1, or add "axScreenReader": true to settings.
    • Added vimInsertModeRemaps setting: map two-key insert-mode sequences like jj to Escape in vim mode
    • Added CLAUDE_CODE_PROCESS_WRAPPER: agent view and the background service now honor a corporate launcher by running every Claude Code self-spawn through a required wrapper executable
    • Added mouse-click support for multi-select menus and "Other" input rows in fullscreen mode
    • Fixed fast mode staying off after switching back to a model that supports it 1 now restores automatically when enabled in settings
    • Fixed replies typed to a background agent being lost when delivery fails 1 the text is now saved and delivered when the session restarts
    • Fixed background-session attach failing permanently ("Couldn't start the background daemon") after an update replaced the binary a running claude agents process was launched from
    • Fixed the context window (and auto-compact indicator) briefly resetting to 200k after the CLI auto-updates, causing a false "100% context used" when resuming long-context sessions
    • Fixed supervised and background sessions crashing when a server closed an HTTP/2 connection with a GOAWAY while requests were in flight
    • Fixed truncated stream-json/JSON output and missing result message when piping large responses from claude -p
    • Fixed CLAUDE_CODE_MAX_OUTPUT_TOKENS and similar env vars silently using the mantissa of scientific-notation values (1e6 became 1)
    • Fixed very large markdown tables stalling rendering or using excessive memory; tables over 200 rows show the first 200 with a " N more rows" notice
    • Fixed the Edit tool failing on files modified after reading when the target text still matches uniquely
    • Fixed Read reporting empty files as "shorter than offset", Grep silently returning "No files found" for invalid regex patterns, Grep count mode under-reporting totals when paginated, and Glob crashing with an unclear error when the pattern, path, or working directory contained a null byte
    • Fixed apiKeyHelper script failures being hidden behind a generic 401 after ~10 silent retries; the script's own error is now shown within 3 attempts
    • Fixed Bedrock streaming requests failing with a misleading "Truncated event message received" when a gateway transforms the response 1 the error now names the content-type and points at the proxy
    • Fixed /upgrade showing a login flow instead of the upgrade URL when the browser fails to open
    • Fixed stream-json input killing the session on blank CRLF or whitespace-only lines from Windows-style SDK hosts
    • Fixed headless stream-json sessions hanging permanently when a control_request carried a non-string set_model payload; the CLI now answers with an error response
    • Fixed repeated "No completion record was found" notices on session resume 1 orphaned background tasks now collapse into a single summary
    • Fixed Remote Control clients attaching to a terminal-hosted session not seeing background agents and workflow progress until a task started or stopped
    • Fixed the Agent tool launching with no tools when a subagent's tools list resolves to nothing 1 it now returns a clear error naming the unrecognized entries
    • Fixed /usage showing stale cached bars over fresher data, and /mcp not reclassifying placeholder servers after config edits
    • Fixed "Change directory" in SDK hosts (e.g. Claude Desktop) failing with "A turn is in progress" on idle sessions that have a running background task
    • Fixed the workflow save dialog showing ~/.claude/workflows/ instead of the CLAUDE_CONFIG_DIR location for user-scope saves
    • Fixed desktop sessions getting stuck showing "running" after a slash command was sent mid-turn
    • Fixed keyboard input being ignored in the agents view when a setup prompt appeared before a bare claude --resume on Windows
    • Fixed claude rm leaving the removed job in the daemon roster, causing the row to reappear in claude agents
    • Fixed /remote-control showing "Unknown command" when logged out 1 it now explains how to sign in
    • Fixed left arrow not stepping back out of a phase or agent in the workflow detail view
    • Fixed the agent view rendering one line too high and clipping its header when the job list slightly overflowed the screen
    • Fixed background tasks in the web and mobile Remote Control panels showing stale "Running" status by forwarding full task state on every membership change
    • Improved auto mode to ask before running rm -rf on a variable it can't resolve from context
    • Auto-update binary downloads now stream to disk instead of buffering in memory, cutting the updater's peak memory usage by roughly 400 MB
    • Background task notifications now explicitly state that no human input has occurred, preventing fabricated in-transcript approvals from being acted on
    • Improved agent view: sessions that edit, merge, comment on, or push to an existing PR now link it in claude agents
    • Improved agent view: rows now show a colored state word and a classifier-written headline instead of raw tool call text, and the peek opens with full status including the exact ask for blocked sessions
    • /doctor is now a full setup checkup that can diagnose and fix issues; /checkup is its alias
    • Reserved the "Claude Browser" MCP server name (alongside "Claude Preview") ahead of the Claude Desktop pane rename; user-configured MCP servers can no longer register under either name
    • Fixed Cowork VM-mode local-agent sessions failing to start with "Not logged in Please run /login" on CLI 2.1.203+
    Original source
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 14, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.209

    Claude Code fixes blocked /model and other dialogs in claude agents background sessions.

    • Fixed /model and other dialogs being blocked in claude agents background sessions (reverts an overly broad guard)
    Original source
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 14, 2026
    • Modified by Releasebot:
      Jul 17, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.208

    Claude Code adds screen reader mode, vim insert remaps, corporate process wrapper support, and mouse-click handling in fullscreen menus. It also improves background agents, fixes many CLI and SDK bugs, and boosts performance, memory use, and session reliability.

    Added

    • Added screen reader mode: opt-in plain-text rendering for screen reader users. Run claude --ax-screen-reader, set CLAUDE_AX_SCREEN_READER=1, or add "axScreenReader": true to settings.
    • Added vimInsertModeRemaps setting: map two-key insert-mode sequences like jj to Escape in vim mode
    • Added CLAUDE_CODE_PROCESS_WRAPPER: agent view and the background service now honor a corporate launcher by running every Claude Code self-spawn through a required wrapper executable
    • Added mouse-click support for multi-select menus and "Other" input rows in fullscreen mode

    Fixed

    • Fixed fast mode staying off after switching back to a model that supports it — it now restores automatically when enabled in settings
    • Fixed replies typed to a background agent being lost when delivery fails — the text is now saved and delivered when the session restarts
    • Fixed background-session attach failing permanently ("Couldn't start the background daemon") after an update replaced the binary a running claude agents process was launched from
    • Fixed the context window (and auto-compact indicator) briefly resetting to 200k after the CLI auto-updates, causing a false "100% context used" when resuming long-context sessions
    • Fixed supervised and background sessions crashing when a server closed an HTTP/2 connection with a GOAWAY while requests were in flight
    • Fixed truncated stream-json/JSON output and missing result message when piping large responses from claude -p
    • Fixed CLAUDE_CODE_MAX_OUTPUT_TOKENS and similar env vars silently using the mantissa of scientific-notation values (1e6 became 1)
    • Fixed very large markdown tables stalling rendering or using excessive memory; tables over 200 rows show the first 200 with a "… N more rows" notice
    • Fixed the Edit tool failing on files modified after reading when the target text still matches uniquely
    • Fixed Read reporting empty files as "shorter than offset", Grep silently returning "No files found" for invalid regex patterns, Grep count mode under-reporting totals when paginated, and Glob crashing with an unclear error when the pattern, path, or working directory contained a null byte
    • Fixed apiKeyHelper script failures being hidden behind a generic 401 after ~10 silent retries; the script's own error is now shown within 3 attempts
    • Fixed Bedrock streaming requests failing with a misleading "Truncated event message received" when a gateway transforms the response — the error now names the content-type and points at the proxy
    • Fixed /upgrade showing a login flow instead of the upgrade URL when the browser fails to open
    • Fixed stream-json input killing the session on blank CRLF or whitespace-only lines from Windows-style SDK hosts
    • Fixed headless stream-json sessions hanging permanently when a control_request carried a non-string set_model payload; the CLI now answers with an error response
    • Fixed repeated "No completion record was found" notices on session resume — orphaned background tasks now collapse into a single summary
    • Fixed Remote Control clients attaching to a terminal-hosted session not seeing background agents and workflow progress until a task started or stopped
    • Fixed the Agent tool launching with no tools when a subagent's tools list resolves to nothing — it now returns a clear error naming the unrecognized entries
    • Fixed /usage showing stale cached bars over fresher data, and /mcp not reclassifying placeholder servers after config edits
    • Fixed "Change directory" in SDK hosts (e.g. Claude Desktop) failing with "A turn is in progress" on idle sessions that have a running background task
    • Fixed the workflow save dialog showing ~/.claude/workflows/ instead of the CLAUDE_CONFIG_DIR location for user-scope saves
    • Fixed /release-notes adding the viewed notes to the model's context — "Show all" previously injected the entire changelog into every subsequent request
    • Fixed a memory leak in the agent view where pasted images were retained for the screen's lifetime after sending peek replies
    • Fixed SDK sessions losing agents defined via the initialize request when a plugin refresh ran before the client attached
    • Fixed several memory leaks in long sessions: MCP stdio server stderr accumulating up to 64 MB per server, LSP documents staying open indefinitely (now LRU with 50-doc cap), async hook output retained after backgrounding, and unbounded growth in headless/SDK sessions from large tool-result payloads
    • Fixed a memory blowup when reading files with extremely long single lines using offset/limit — the read now returns a clean error instead of loading the whole line
    • Fixed multi-second per-turn slowdowns in sessions with many permission deny/ask rules — rule matchers are now compiled once and cached
    • Improved input responsiveness while agent task lists update — task updates no longer re-render the entire UI
    • Reduced per-tool-call CPU overhead in print/SDK sessions with many MCP tools by caching tool-pool assembly (up to 7x faster tool rounds at high tool counts)
    • Reduced memory usage by bounding the file edit read cache to 16 MB instead of pinning up to 1,000 full files
    • Reduced session transcript size (up to 79x in edit-heavy sessions) and bounded checkpoint disk usage by pruning superseded file-history backups
    • Reduced memory usage when resuming sessions with background agents or forks spawned from large conversations
    • Completed background agents now stay listed in /tasks until cleanup instead of vanishing the moment they finish
    • Attaching to a stopped background agent now shows its transcript immediately while the session warms up, instead of a blank "Session is starting" screen
    • Background sessions: an older daemon no longer silently restarts workers spawned by a newer version onto the older binary
    • Agent view: Ctrl+X now deletes renamed-branch worktrees, never destroys unpushed commits, keeps the session row when a worktree is kept, and reused worktree names reset to the current base
    • Catastrophic removals (e.g. rm -rf ~) in commands containing $(…)/backticks/<(…) now prompt in --dangerously-skip-permissions and auto mode, matching the plain form
    • /install-github-app and the /mcp settings menu no longer open in background sessions
    • MCP servers configured with an empty URL now show as "not configured" in /mcp instead of a config error
    • /usage now shows your last-known usage bars with an "as of" note when the usage endpoint is rate-limited, instead of an error screen
    • Fixed Bedrock auth failing with "Session token not found or invalid" for AWS SSO profiles whose sso_region differs from the Bedrock region (2.1.207 regression)
    Original source
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 11, 2026
    • Modified by Releasebot:
      Jul 17, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.207

    Claude Code adds auto mode for Bedrock, Vertex AI, and Foundry, defaults AWS and platform models to Claude Opus 4.8, and improves agent view, Remote Control, and background sessions while fixing freezes, crashes, credential issues, and security consent bugs.

    • Auto mode is now available without CLAUDE_CODE_ENABLE_AUTO_MODE opt-in on Bedrock, Vertex AI, and Foundry; disable via disableAutoMode in settings
    • Fixed the terminal freezing and keystrokes lagging while streaming responses containing very long lists, tables, paragraphs, or code blocks
    • Fixed remote managed settings from a non-interactive run (claude -p, the SDK) being permanently recorded as consented without ever showing the security consent dialog
    • Fixed spurious prompt-injection warnings triggered by benign system-generated conversation updates
    • Fixed the auto-updater overwriting a custom launcher script or symlink at ~/.local/bin/claude on every release; /doctor now reports an externally managed launcher
    • Fixed compound commands with cd prompting for permission when the only output redirect was to /dev/null
    • Fixed the transcript jumping above the start of the answer when a response finishes streaming
    • Fixed extensions.worktreeConfig being left in the repo's .git/config (breaking go-git tools like tea) after the last worktree.sparsePaths worktree was removed
    • Fixed malformed bracket patterns in rules globs, skill paths, .ignore, and .worktreeinclude breaking file reads, file suggestions, and worktree creation
    • Fixed a crash loop in agent teams where a malformed teammate mailbox message caused repeated errors every second until the mailbox file was manually deleted
    • Fixed background sessions auto-named by accepting a plan not showing that name on their agent-view row
    • Fixed background sessions that entered a git worktree resuming blank after a cold reopen from the agent list
    • Fixed Remote Control task status updates being lost when the connection recovered from a network interruption or credential refresh
    • Fixed Remote Control sessions hosted by the desktop app not showing background agent and workflow progress on mobile and web
    • Fixed Deep research runs labeling every Fetch-phase agent "unknown" — chips now show the source hostname
    • Fixed Bedrock repeatedly requesting fresh AWS SSO credentials from IAM Identity Center on every API request
    • Improved agent view: pasting the same text again now expands the collapsed [Pasted text #N] placeholder instead of adding a second one
    • Improved agent view: blocked session peeks now lead with the question and show a worded staleness clock (waiting 3m) instead of the same timestamp twice
    • Changed Bedrock, Vertex, and Claude Platform on AWS to default to Claude Opus 4.8
    • Changed auto mode to no longer read autoMode from .claude/settings.local.json (repo-resident); use ~/.claude/settings.json instead
    • Fixed an indefinite hang on Windows when AWS credential resolution stalls (e.g. a stuck credential_process): the 60-second stall guard now fires instead of waiting forever.
    • Plugin hooks/monitors/MCP headersHelper: ${user_config.*} in shell-form commands is now rejected (shell-injection fix). Hooks: use exec form (args array) or $CLAUDE_PLUGIN_OPTION_<KEY>; monitors and headersHelper: read the value inside the script (config file or the server's env block).
    • Plugin option values (pluginConfigs) are no longer read from project-level .claude/settings.json; only user, --settings, and managed settings are honored
    • Changed `/revi
    Original source
  • Jul 10, 2026
    • Date parsed from source:
      Jul 10, 2026
    • First seen by Releasebot:
      Jul 11, 2026
    Anthropic logo

    Claude Code by Anthropic

    Week 28 · July 6–10, 2026

    Claude Code adds a built-in desktop browser, upgrades /doctor into a fix-it setup checkup, and improves auto mode safety, agent view, and background agent updates. It also trims auto-update memory use, adds /login gateway support, and boosts code review quality.

    Browse external sites from the Desktop app’s built-in browser, run a full setup checkup with /doctor, and pick up auto mode transcript protections and agent view upgrades.

    In-app browser on Desktop

    Claude Code on desktop now has a built-in browser. Claude can pull up docs, designs, or any other site, and read, click through, and interact with pages the same way it does with your local dev server previews. The browser is sandboxed and configurable: you choose whether browsing sessions persist, and safety classifiers review actions on external sites.

    /doctor is a full setup checkup

    v2.1.205

    /doctor now diagnoses issues and can fix them, instead of printing a read-only report. It checks installation health, finds unused skills, MCP servers, and plugins versus their context cost, deduplicates local CLAUDE.md files against checked-in ones, proposes trimming CLAUDE.md content Claude could derive from the codebase, and flags slow hooks. It reports findings first and asks for confirmation before changing anything. /checkup is its alias.

    Run a checkup from any session:

    /doctor

    Other wins

    Auto mode now blocks tampering with session transcript files, and asks before running rm -rf on a variable it can’t resolve from context

    /cd now suggests directory paths as you type, matching /add-dir

    /commit-push-pr auto-allows git push to the repo’s configured push remote in addition to origin

    Gateway: /login now supports Anthropic-operated public gateway endpoints

    EnterWorktree asks for confirmation before entering a git worktree outside the project’s .claude/worktrees/ directory

    Background agents upgrade to a new version in the background right after a Claude Code update, instead of paying a slow stale-session upgrade when you attach

    Agent view rows now show a colored state word and a classifier-written headline instead of raw tool call text, and sessions that edit, merge, comment on, or push to an existing PR link it in claude agents

    Auto-update binary downloads now stream to disk instead of buffering in memory, cutting the updater’s peak memory usage by roughly 400 MB

    Background task notifications now explicitly state that no human input has occurred, preventing fabricated in-transcript approvals from being acted on

    Improved /code-review findings quality on Opus 4.8 across all effort levels

    Original source
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 10, 2026
    • Modified by Releasebot:
      Jul 16, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.206

    Claude Code ships a broad update with smarter navigation and login flows, new `/doctor` and gateway support, stronger safety prompts, faster background agents, and major performance and memory improvements across sessions, MCP tools, worktrees, and the UI, plus many fixes for resume, permissions, and auth.

    Release notes

    • Added directory path suggestions to /cd, matching /add-dir behavior
    • Added a /doctor check that proposes trimming checked-in CLAUDE.md files by cutting content Claude could derive from the codebase
    • /commit-push-pr now auto-allows git push to the repo's configured push remote (remote.pushDefault, or the sole remote when only one is configured) in addition to origin
    • Gateway: /login now supports Anthropic-operated public gateway endpoints
    • EnterWorktree now asks for confirmation before entering a git worktree outside the project's .claude/worktrees/ directory
    • Background agents now upgrade to a new version in the background right after a Claude Code update, instead of paying a slow stale-session upgrade when you attach
    • Fixed an expired login failing every model with a misleading "There's an issue with the selected model" error instead of prompting to run /login
    • Fixed claude --resume and --continue not responding to keyboard input on startup
    • Fixed MCP servers configured via --mcp-config or .mcp.json ignoring a per-server request_timeout_ms, which caused long-running MCP tool calls to time out at the 60s default in fresh sessions
    • Fixed CLAUDE_CODE_EXTRA_BODY being silently ignored by claude agents / --bg background workers; the shell-exported override now follows the dispatching session
    • Fixed OAuth MCP servers requiring manual re-authentication after a single failed token refresh
    • Fixed --permission-prompt-tool pointing at an MCP server crashing with "MCP tool not found" on cold start before the server finishes connecting
    • Fixed /model picker rows printing a price for a different model than the row named, and stopped quoting first-party list prices on providers that don't bill them
    • Fixed server-provided model rows being misplaced in the /model picker when an entitlement or allowlist restriction drops the row they were positioned against
    • Fixed desktop sessions getting stuck showing "running" after a slash command was sent mid-turn
    • Fixed keyboard input being ignored in the agents view when a setup prompt appeared before a bare claude --resume on Windows
    • Fixed claude rm leaving the removed job in the daemon roster, causing the row to reappear in claude agents
    • Fixed /remote-control showing "Unknown command" when logged out — it now explains how to sign in
    • Fixed left arrow not stepping back out of a phase or agent in the workflow detail view
    • Fixed the workflow save dialog showing ~/.claude/workflows/ instead of the CLAUDE_CONFIG_DIR location for user-scope saves
    • Fixed /release-notes adding the viewed notes to the model's context — "Show all" previously injected the entire changelog into every subsequent request
    • Fixed a memory leak in the agent view where pasted images were retained for the screen's lifetime after sending peek replies
    • Fixed SDK sessions losing agents defined via the initialize request when a plugin refresh ran before the client attached
    • Fixed several memory leaks in long sessions: MCP stdio server stderr accumulating up to 64 MB per server, LSP documents staying open indefinitely (now LRU with 50-doc cap), async hook output retained after backgrounding, and unbounded growth in headless/SDK sessions from large tool-result payloads
    • Fixed a memory blowup when reading files with extremely long single lines using offset/limit — the read now returns a clean error instead of loading the whole line
    • Fixed multi-second per-turn slowdowns in sessions with many permission deny/ask rules — rule matchers are now compiled once and cached
    • Improved input responsiveness while agent task lists update — task updates no longer re-render the entire UI
    • Reduced per-tool-call CPU overhead in print/SDK sessions with many MCP tools by caching tool-pool assembly (up to 7x faster tool rounds at high tool counts)
    • Reduced memory usage by bounding the file edit read cache to 16 MB instead of pinning up to 1,000 full files
    • Reduced session transcript size (up to 79x in edit-heavy sessions) and bounded checkpoint disk usage by pruning superseded file-history backups
    • Reduced memory usage when resuming sessions with background agents or forks spawned from large conversations
    • Completed background agents now stay listed in /tasks until cleanup instead of vanishing the moment they finish
    • Attaching to a stopped background agent now shows its transcript immediately while the session warms up, instead of a blank "Session is starting" screen
    • Background sessions: an older daemon no longer silently restarts workers spawned by a newer version onto the older binary
    • Agent view: Ctrl+X now deletes renamed-branch worktrees, never destroys unpushed commits, keeps the session row when a worktree is kept, and reused worktree names reset to the current base
    • Catastrophic removals (e.g. rm -rf ~) in commands containing $(…)/backticks/<(…) now prompt in --dangerously-skip-permissions and auto mode, matching the plain form
    • /install-github-app and the /mcp settings menu no longer open in background sessions
    • MCP servers configured with an empty URL now show as "not configured" in /mcp instead of a config error
    • /usage now shows your last-known usage bars with an "as of" note when the usage endpoint is rate-limited, instead of an error screen
    • Fixed Bedrock auth failing with "Session token not found or invalid" for AWS SSO profiles whose sso_region differs from the Bedrock region (2.1.207 regression)
    Original source
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 8, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.205

    Claude Code improves agent workflows, auto mode safety, and Windows reliability with new transcript protection, smarter PR linking and background task handling, a full /doctor setup checkup, and lower-memory auto-update downloads.

    • Added an auto mode rule that blocks tampering with session transcript files
    • Fixed --json-schema silently producing unstructured output when the schema was invalid, and schemas using the format keyword being rejected
    • Fixed a message sent while Claude was working being silently lost when the turn ended at the --max-turns limit
    • Fixed Windows worktree removal deleting files outside the worktree when an NTFS junction or directory symlink existed inside it
    • Fixed background agents staying shown as "failed" or "completed" in the agent list after being resumed with SendMessage
    • Fixed background jobs flipping from "needs input" back to "working" in the agent list when the agent's turn contained no readable text
    • Fixed claude attach erroring when a background agent was mid-upgrade restart instead of waiting for it to come back
    • Fixed session-to-PR linking missing a PR created in a Bash call whose output exceeded the 30K inline limit
    • Fixed claude mcp add-from-claude-desktop getting stuck when a server name contains unsupported characters; invalid names are now reported and remaining servers still import
    • Fixed a plugin LSP server that fails to initialize preventing a valid LSP server from another plugin handling the same file extension
    • Fixed a Windows crash when the directory Claude was launched from is deleted, locked, or unmounted while a command is running
    • Fixed a crash when a file watcher was closed while a directory scan was still in flight
    • Fixed project verify skills being rewritten on every session instead of only when a documented command changed
    • Fixed the agent view rendering one line too high and clipping its header when the job list slightly overflowed the screen
    • Fixed background tasks in the web and mobile Remote Control panels showing stale "Running" status by forwarding full task state on every membership change
    • Improved auto mode to ask before running rm -rf on a variable it can't resolve from context
    • Auto-update binary downloads now stream to disk instead of buffering in memory, cutting the updater's peak memory usage by roughly 400 MB
    • Background task notifications now explicitly state that no human input has occurred, preventing fabricated in-transcript approvals from being acted on
    • Improved agent view: sessions that edit, merge, comment on, or push to an existing PR now link it in claude agents
    • Improved agent view: rows now show a colored state word and a classifier-written headline instead of raw tool call text, and the peek opens with full status including the exact ask for blocked sessions
    • /doctor is now a full setup checkup that can diagnose and fix issues; /checkup is its alias
    • Reserved the "Claude Browser" MCP server name (alongside "Claude Preview") ahead of the Claude Desktop pane rename; user-configured MCP servers can no longer register under either name
    • Fixed Cowork VM-mode local-agent sessions failing to start with "Not logged in Please run /login" on CLI 2.1.203+
    Original source
  • July 2026
    • No date parsed from source.
    • First seen by Releasebot:
      Jul 8, 2026
    Anthropic logo

    Claude Code by Anthropic

    2.1.204

    Claude Code fixes SessionStart hook event streaming in headless sessions to prevent remote workers from being idle-reaped mid-hook.

    • Fixed hook events not streaming during SessionStart hooks in headless sessions, which could cause remote workers to be idle-reaped mid-hook
    Original source
Releasebot

Curated by the Releasebot team

Releasebot is an aggregator of official product update announcements from hundreds of software vendors and thousands of sources.

Our editorial process involves the manual review and audit of release notes procured with the help of automated systems.