2.1.211
Claude Code 2.1.211 - リリースノート
2026年7月15日
Claude Code
日本語サマリー
以下は Claude Code 2.1.211 のリリースノートの要約です。
⚠️ 破壊的変更・セキュリティ修正
- セキュリティ: チャットチャネルの権限プレビューにおける双方向オーバーライド文字やゼロ幅文字などの偽装対策を修正し、承認メッセージの視覚的な改ざんを防止しました。
- セキュリティ: Windows向けの同期ディレクトリ命名の強化、および Claude in Chrome のファイルアップロードパス検証を強化しました。
- 破壊的変更(動作変更): "always allow" 権限ルールの保存先がリポジトリルート(
/)に変更されました。これにより、git worktree で付与された承認が他のセッションやworktreeでも共有されるようになります。
💡 主な新機能・改善
- 新機能: stream-json 出力に subagent のテキストと思考を含めるための
--forward-subagent-textフラグおよびCLAUDE_CODE_FORWARD_SUBAGENT_TEXT環境変数を追加しました。 - 改善: 整数型の環境変数(タイムアウト、トークン予算など)が
1e6や64_000などの科学的表記や区切り文字表記をサポートするようになりました。 - 改善: バックグラウンドエージェントの結果報告を改善し、実行中のステータスを正しく報告し、完了を待つようにしました(架空の結果生成を防止)。
- 改善: ターミナルのレイアウトと描画パフォーマンスを向上し、非同期コンテンツ表示時の不要な 300ms 遅延を解消しました。
- 改善: Vim mode の NORMAL mode にて、本来のvim挙動と同様に
sおよびS(文字/行の置換)が動作するようになりました。
🐛 重要なバグ修正
- コスト・課金:
/clear実行後にセッションのコストカウンターがリセットされず、ステータスラインの表示が $0 から始まらなかった問題を修正しました。 - コスト・課金: Bedrock, Vertex, Mantle, Foundry において、末尾のシステムコンテキストブロックが毎回新しい入力トークンとして課金されていたプロンプトキャッシュのリグレッションを修正しました。
- 挙動: auto モードが
PreToolUsehook のask決定(unsandboxed Bash)を上書きしていた問題を修正し、hook のaskが必ずプロンプトとして扱われるようにしました。 - 挙動: 明示的にモデルを指定して起動した subagent が、履歴再開やフォローアップ時に親モデルへ戻ってしまう問題を修正しました。
- システム: Vertex と Bedrock 環境において、起動時にデフォルトの Opus モデルへアクセスを試行し、不要なフォールバック通知が出力される問題を修正しました。
- システム: 多数のセッションが同一の認証情報ストアを共有している際、スリープ復帰後に全セッションが同時にログアウトしてしまう問題を修正しました。
- システム: LLM gateway 認証(
ANTHROPIC_AUTH_TOKEN+ANTHROPIC_BASE_URL)を使用したバックグラウンドジョブが、デーモンの再起動後に「Not logged in」となる問題を修正しました。 - その他: git worktree を認識できなくなった
claude agentsのジョブが削除できなくなる問題や、ユーザーが停止したバックグラウンドエージェントが自動的に再起動してしまう問題を修正しました。
原文(Release Notes)
What's changed
- Added
--forward-subagent-textflag andCLAUDE_CODE_FORWARD_SUBAGENT_TEXTenvironment variable to include subagent text and thinking in stream-json output- Fixed permission previews relayed to chat channels not neutralizing bidirectional-override, zero-width, and look-alike quote characters, so tool inputs cannot visually alter the approval message
- Fixed auto mode overriding a PreToolUse hook's
askdecision for unsandboxed Bash — a hookasknow floors the decision at a prompt- Fixed parallel Claude Code sessions all logging out simultaneously after wake-from-sleep when many sessions share one credential store
- Fixed plugin MCP servers not reconnecting after an idle web session woke, leaving MCP calls failing until the next message
- Fixed Claude Code on Vertex and Bedrock attempting the default Opus model at startup and printing a spurious fallback notice when a model is explicitly configured
- Fixed subagents spawned with an explicit model override reverting to the parent's model when resumed or sent a follow-up message
- Fixed nested
.claude/rules/*.mdfiles loading even when setting sources exclude project settings- Fixed file upload validation: filenames ending in a DOS device suffix (
.prn) or trailing dot are now accepted, and files with multiple hard links are refused- Fixed file uploads to Claude in Chrome from remote and CLI sessions
- Fixed edits that leave the input as "?" being silently swallowed and toggling the shortcuts panel
- Fixed a startup hang when the Claude in Chrome extension is enabled but Chrome is not running
- Fixed a 300ms delay revealing async content (Settings tabs, Stats, diff views, and other loading states)
- Fixed reopening a just-stopped background session from the agents view starting a blank conversation under the same session id
- Fixed
/loophiding the session from/resumeafter a single use- Fixed screen reader users losing the audible terminal bell after
/terminal-setupor onboarding terminal setup- Fixed background jobs on LLM gateway auth (
ANTHROPIC_AUTH_TOKEN+ANTHROPIC_BASE_URL) coming back "Not logged in" after the daemon respawns them- Fixed
claude agentsjobs becoming permanently undeletable when git no longer recognizes their worktree — the row now shows why the delete was refused instead of silently reappearing- Fixed
/clearnot resetting the session cost counter — the statusline's cost now starts at $0 after/clear- Fixed Claude in Chrome setup pages failing to open in the browser on Windows
- Fixed headless print-mode sessions on Windows crashing or silently exiting when stdin is unreadable
- Fixed background session titles in the agents view showing the naming model's refusal text when the prompt contains a link
- Fixed background agents killed by the user auto-respawning, and revived agents re-running stale prompts from old sessions
- Fixed routines with no schedule reporting a next run time in the year 1
- Hardened synced skill/plugin directory naming on Windows and kept CCR web fetch/search proxies working after
/clear- Improved terminal layout and rendering performance
- Improved background agent result reporting — Claude now reports the status of still-running agents and waits for the real completion instead of fabricating results
- Improved the memory index over-limit warning to measure only loaded content, excluding frontmatter and HTML comments
- Updated integer environment variables (timeouts, token budgets, retry counts) to accept scientific notation and digit-separator spellings like
1e6and64_000- Updated documentation links to the current docs sites
- Changed "always allow" permission rules to save at the repository root, so approvals granted in a git worktree persist across sessions and worktrees
- Changed
/usage-creditsto ask for confirmation before sending a request to organization admins- Changed Vim mode
sandS(substitute char/line) to work in NORMAL mode, matching vim behavior- [VSCode] Updated the Remote Control banner to describe what it does
- Claude in Chrome: hardened file-upload path validation
- Claude in Chrome:
save_to_diskon screenshot actions now writes the image to disk and returns the path; previously it did nothing- Fixed a prompt-caching regression on Bedrock, Vertex, Mantle, and Foundry that billed the trailing system context block as fresh input tokens on every request.