Claude Code 2.1.221: permission bypass fixed, Focus view in VSCode, credential masking

Version 2.1.221 patches a permission bypass and adds a few new modes:
• zsh could run hidden commands inside [[ ]] conditions without going through the Bash permission check. Those commands now require approval. • VSCode gets a Focus view: tool activity collapses into a per-step summary, toggled with Ctrl+Alt+F. • Linux and WSL get a mask mode for credential files. The sandbox reads a stub copy and the proxy swaps in the real value on the way out. On macOS you get a hard deny instead of masking. • A prompt-audit subcommand in the claude-api skill checks prompts and tool descriptions for tricks written for older models.
The release follows 2.1.219, which made Opus 5 the default Opus model.
Related stories
- Worktree isolation was leaking git commands into the main copy
- Claude Opus 5 is the new default Opus model in Claude Code v2.1.219
- Claude Code 2.1.282 ignores telemetry set by project files
- Claude Code opens network hosts one command at a time
- Claude Code 2.1.223 patches a Bash permission bypass
- Claude Code v2.1.214 closes a Bash permission bypass
Comments
No comments yet. Be the first.
Join the conversation
Sign in with Google to leave a comment. Your name and avatar come from your Google profile, and the comment appears after moderation.
