2.1.166
Claude Code 2.1.166 - リリースノート
2026年6月6日
Claude Code
日本語サマリー
本リリースに明確な破壊的変更やセキュリティ上の重大な脆弱性修正はありませんが、権限に関する重要なセキュリティ強化が含まれています。
- 権限強化(セキュリティ): 他の Claude セッションからの
SendMessage経由のメッセージはユーザー権限を引き継がなくなりました。リレーされた権限リクエストは拒否され、auto モードではブロックされます。 - フォールバックモデルの追加: プライマリモデルが利用不可の際に順番に試行される
fallbackModel設定を追加。--fallback-modelがインタラクティブセッションにも適用されるようになりました。予期せぬAPIエラー時のリトライも追加されています。 - ツール制御の強化: deny ルールのツール名指定での glob pattern サポートを追加(
"*"ですべてのツールを拒否可能)。未知のツール名に対しては起動時に警告を出します。 - Thinking 機能の無効化修正:
MAX_THINKING_TOKENS=0、--thinking disabledなどにより、Claude API経由のデフォルトで thinking を使用するモデルできちんと無効化されるよう修正されました(3Pプロバイダーを除く)。 claude agentsの改善: リストに URL を入力すると、最初のプロンプトにその URL を含むセッションでフィルタリング可能になりました。複数行プロンプト入力時のカーソル不具合なども修正されています。- 画像処理・トークン消費の修正: 処理不可能な画像を送信した際に発生していた "image could not be processed" の繰り返しエラーと、余分なトークン消費を修正しました。
- 各種動作不具合の修正: 起動時のバックエンド障害によるリモートセッションのスタック、macOSでの
claude --bg-pty-hostの CPU 100% 占有問題などを解消しました。 - JetBrains IDE の修正: IntelliJ, PyCharm, WebStorm などの 2026.1+ におけるターミナルの画面ちらつきを、synchronized output の有効化により修正しました。
- ターミナル入力の修正: Kitty keyboard protocol を使用するターミナル(WezTerm, Ghostty, kitty)での、Shift + 非ASCII文字の入力ドロップを修正しました。
- 設定・ポリシー評価の修正: 無効なエントリがある際の managed settings のポリシー適用不良や、
${VAR}変数利用時のallowedMcpServers/deniedMcpServersの一致ミスを修正しました。
原文(Release Notes)
What's changed
- Added
fallbackModelsetting to configure up to three fallback models tried in order when the primary model is overloaded or unavailable;--fallback-modelnow also applies to interactive sessions- Added glob pattern support in deny rule tool-name position (
"*"denies all tools); allow rules reject non-MCP globs, and unknown tool names in deny rules warn at startup- Hardened cross-session messaging: messages relayed via
SendMessagefrom other Claude sessions no longer carry user authority — receivers refuse relayed permission requests, and auto mode blocks themMAX_THINKING_TOKENS=0,--thinking disabled, and the per-model thinking toggle now disable thinking on models that think by default via the Claude API (3P providers unchanged)- Claude Code now retries a turn once on the fallback model when the API rejects an unexpected non-retryable error; auth, rate-limit, request-size, and transport errors still surface immediately
claude updatenow announces the target version before downloading instead of going silentclaude agents: typing a URL into the list now filters to the session whose first prompt contained it- Fixed a recurring "image could not be processed" error and extra token usage when an unprocessable image was sent in a session
- Fixed remote sessions becoming permanently stuck when a brief backend disruption occurred during worker registration at startup
- Fixed flickering in JetBrains IDE terminals (IntelliJ, PyCharm, WebStorm, etc.) on 2026.1+ by enabling synchronized output
- Fixed Shift+non-ASCII characters (e.g. Shift+ä → Ä) being dropped in terminals using the Kitty keyboard protocol (WezTerm, Ghostty, kitty)
- Fixed PowerShell command validation occasionally hanging far past its time budget on Windows when a killed process's children held its output pipes
- Fixed orphaned
claude --bg-pty-hostprocesses spinning at 100% CPU after the daemon dies while connected on macOS- Fixed voice mode requiring
/loginto clear a stale auth check after toggling/voice- Fixed managed settings with an invalid entry silently disabling enforcement of their remaining valid policies
- Fixed managed-settings
allowedMcpServers/deniedMcpServerspredicates not matching when they use${VAR}references- Fixed background agent sessions that entered a git worktree crash-looping with "No conversation found" when reopened from
claude agents- Fixed duplicated thinking text in the Ctrl+O transcript view while streaming
- Fixed
/doctorshowing a contradictory failed "Not inside a remote session" check when run inside a remote session- Fixed the cursor sticking at the end of the first line when typing a multiline prompt in the
claude agentsdispatch and reply inputs- Fixed blank lines appearing between background agent rows in the task list on terminals without Unicode support