2.1.246
Claude Code 2.1.246 - リリースノート
2026年8月25日
Claude Code
日本語サマリー
Claude Code 2.1.246 リリースノート要約
⚠️ 重要な修正(セキュリティ関連)
- APIキーの誤送信修正:
ANTHROPIC_BASE_URLでサードパーティゲートウェイを使用している場合、テレメトリ・メトリクスリクエストに対して設定されたAPIキーが Anthropic に送られてしまう問題を修正。認証情報は各ホストにのみ送信されるようになりました - Bash 権限チェック強化: 末尾に
&&や||が残る不正な形式のコマンドに対して、常に承認を要求するよう修正
主な新機能・改善
- Bash allow ルールの警告追加: サブコマンド前にワイルドカードがあるルール(例:
Bash(git * main))は、サブコマンド前に挿入されたオプションにもマッチするため、起動時に警告を表示 /permissionsに Auto mode タブを追加: auto mode classifier ルールの表示・編集が可能に- ターン完了時刻の表示: ターン終了時の表示に完了時刻が追加(例:
✻ Sautéed for 23s · done 6:05 PM) /cdの改善: 移動後すぐに新しいディレクトリのプロジェクト設定・hooks・.mcp.jsonサーバー・skills・agents が反映されるように(従来は--resumeまで反映されなかった)- 非対話セッションの自動継続:
-p、SDK、クラウドセッションで、サーバーエラーや接続断で途切れた応答を自動的に継続するように - subagent の結果改善:
maxTurns制限で停止した subagent は部分結果として返され、SendMessageでの継続ヒントを表示
主なバグ修正
- パフォーマンス: base64 文字列など非常に長い1行を含む diff によるトランスクリプトの重大な遅延を修正(該当行はマーカー付きで省略表示)
- メモリリーク修正: フルスクリーンおよび Ctrl+O トランスクリプト表示で、セッション長に伴うメモリ増加を解消
- Write ツール: 巨大ファイルの上書き後に "Out of memory" や長時間フリーズが発生する問題を修正
- セッション再開: サードパーティ API プロキシ由来の無効な tool block を含む履歴で再開時に 400 エラーが毎ターン発生する問題を修正
- バックグラウンドセッション: 起動ディレクトリ削除後・スリープ復帰後・npm 再インストール中(EACCES エラー)に45秒でオープン失敗する問題を修正
- テーマ修正:
/rename実行時にpromptBorderの色がデフォルトのシアンに置き換わる問題、カスタムテーマのdiffAdded/diffRemovedが無視される問題を修正 - プラグイン修正: UTF-8 BOM 付き
plugin.jsonでのインストール失敗、claude plugin updateの bare name 失敗、/reload-pluginsの skills 誤報告(skills/*/SKILL.md)などを修正 - インストーラー:
curl -fsSL https://claude.ai/install.sh | bashが一部 Team/Enterprise ユーザーに "Raw mode is not supported" で失敗する問題を修正
原文(Release Notes)
What's changed
- Added a startup warning for Bash allow rules with a wildcard before the subcommand (e.g.
Bash(git * main)), since they also match options inserted before the subcommand- Added an Auto mode tab to
/permissionsfor viewing and editing auto mode classifier rules- Added the turn's completion time to the end-of-turn duration line, e.g.
✻ Sautéed for 23s · done 6:05 PM- Fixed fullscreen mode showing a blank transcript after resizing the terminal and jumping to the bottom until the next keypress
- Fixed a severe transcript slowdown when a diff contained a very long single line (e.g. a base64 string); such lines now render truncated with a marker
- Fixed erratic fullscreen scrolling when positioned at an earlier message, including jump-to-bottom getting stuck mid-transcript
- Fixed background sessions failing to open after 45 seconds when Claude Code's starting directory had been deleted, the machine had slept, or the host is slow to start processes
- Fixed background sessions failing to open with "Couldn't start the background service … EACCES" when another Claude Code process was re-installing the npm package at that moment
- Fixed markdown rendering being disabled for a whole message when its first 500 characters contained no markdown, and for
+/N)lists and setext headings- Fixed MCP tool calls interrupted by an incoming message in headless/remote sessions being reported to the model as "completed with no output" instead of an explicit interrupted error
- Fixed MCP tool arguments being sent as JSON strings when the parameter's schema is empty (
{}), instead of their real type- Fixed a command interrupted mid-run showing as "Ran 1 shell command" with no sign it was cut
- Fixed pressing ← or running
/backgroundduring a dynamic workflow restarting its finished subagents; it now asks first and says how many subagents would restart- Fixed opening a just-started session in
claude agentswhile its worker was still booting (common on Windows) stopping it with "was stopped while the respawn was in flight"- Fixed
claude agentslisting a backgrounded named session twice; backgrounding the same conversation again now numbers the new row (e.g.my-session (2))- Fixed the background retention sweep removing git worktrees under
.claude/worktrees/that you created yourself when an old background-session record pointed at them- Fixed auto mode tool calls being denied as "temporarily unavailable" on very large sessions by scaling the safety-check deadline with prompt size
- Fixed the plugin cache creating duplicate SHA-named directories for the same plugin
- Fixed plugin skills whose frontmatter
namealready includes the<plugin>:prefix showing it doubled in the slash menu (e.g./plugin:plugin:skill)- Fixed
claude plugin updatefailing for an installed plugin given its bare name (only the fully-qualified name worked)- Fixed plugin installation failing when
plugin.jsonwas saved with a UTF-8 byte-order mark (BOM)- Fixed
/reload-pluginsreporting 0 skills for plugins that define skills underskills/*/SKILL.md- Fixed hook error messages showing a literal
${CLAUDE_PLUGIN_ROOT}instead of the resolved plugin path- Fixed
/renamereplacing the theme's prompt border color (including a custom theme'spromptBorder) with the default cyan; the border now keeps your theme's color unless you pick one with/color- Fixed custom theme diff colors (
diffAdded/diffRemovedand their dimmed variants) being ignored in diffs and the/themepreview- Fixed a
keybindings.jsonbinding with an unknown action name silently deadening that key; it is now skipped so the default binding keeps working, and a warning is logged under--debug- Fixed
/statsactivity heatmap showing each day's activity one cell off (Sunday's count under Monday) in timezones east of UTC- Fixed
/forkfrom an already-forked or backgrounded session starting the new session with an empty conversation- Fixed prompts beginning with
/--(e.g. Lean doc comments) being rejected as an unknown slash command instead of being sent to Claude- Fixed the
@file picker staying open after the typed text stopped matching a real path- Fixed the status line's cost and duration resetting to zero after navigating to the agents view and back
- Fixed fullscreen mode moving keyboard focus onto the control under the pointer when you clicked the terminal window only to bring it back into focus
- Fixed path completion failing when the completion token or working directory contained a null byte
- Windows/macOS: Fixed headless sessions not cleaning up stale entries in
~/.claude/sessionsleft by sessions that exited uncleanly- Fixed the UI stopping with a render error on the first tool call when a third-party Anthropic-compatible endpoint (
ANTHROPIC_BASE_URL) streams atool_useblock without anid- Fixed the Write tool reporting "Out of memory" or freezing for a long time after overwriting a very large existing file, even though the file had been written
- Fixed
claude plugin install <name>exiting silently (or hanging in a terminal) instead of reporting an error when~/.claude/plugins/known_marketplaces.jsonis empty or corrupted- Fixed resumed sessions failing every turn with a 400 when the saved history contains tool blocks the Anthropic API does not accept (typically written by a third-party API proxy)
- Fixed
curl -fsSL https://claude.ai/install.sh | bashfailing with "Raw mode is not supported" for some Team/Enterprise users with server-managed settings- Fixed sessions that ended in plan mode resuming outside plan mode in the VS Code extension, and in
claude -p --continue/--resumewith a permission prompt tool, when no permission mode was set- Fixed the
Notificationhook not firing while the sandbox "Network request outside of sandbox" permission prompt is waiting- Fixed Bash permission checks to always require approval for malformed commands with a dangling
&&or||operator- Fixed
--strict-mcp-configsessions prompting to approve.mcp.jsonservers they would never load, which left background sessions waiting at startup- Fixed telemetry and metrics requests to Anthropic carrying the API key configured for a third-party gateway (
ANTHROPIC_BASE_URL); a credential is now only sent to its own host- Fixed a visible API error on the first prompt after idle when
apiKeyHelperreturns short-lived JWTs: an expired cached token is now refreshed before sending, and 401/403 auth errors retry quietly- Fixed memory growing with session length in the fullscreen and Ctrl+O transcript views: each rendered message row no longer retains a full copy of the transcript-wide tool lookups
- Fixed
/ultrareviewruns and cloud sessions launched at the same time from one repository (e.g. from several worktrees) sometimes starting with another launch's uncommitted changes- Fixed the task progress count (e.g.
3/5) shown for background cloud sessions such as/autofix-proccasionally missing a task- Fixed Remote Control sessions keeping their placeholder name in claude.ai and the Claude app until the second prompt; the auto-generated title now appears after the first prompt
- Fixed MCP tools marked
requiresUserInteractionstill offering "Yes, and don't ask again" in their permission prompt; the option wrote an allow rule the tool then ignored- Fixed the self-hosted runner ending its live sessions or exiting when a work-poll response is malformed (e.g. an intercepting proxy's HTML page); it now retries the poll
- Improved
/cd: the new directory's project settings, hooks,.mcp.jsonservers (behind the usual approval prompt), skills, and agents now take effect right after the move instead of on--resume- Improved Bash tool latency on bash shells by replaying snapshot functions without a base64 subshell per function
- Improved subagent results: a subagent that stops at its
maxTurnslimit now returns its output marked as partial, with a hint to continue it viaSendMessage, instead of appearing finished- Improved non-interactive sessions (
-p, SDK, cloud sessions) to automatically continue a response cut off mid-stream by a server error, connection loss, or stall instead of ending with an error- Improved attribution of usage telemetry to your organization for workload identity federation sessions, events sent while
apiKeyHelperruns at startup, and after a login token expired while idle- Changed
/code-reviewso Claude can also start it on its own on Bedrock, Vertex AI, and Foundry, through the Claude apps gateway, and when telemetry or non-essential traffic is disabled/goal: Changed idle sessions to start at most three check-ins on long-running background work per goal; your next message allows three more- Changed
claude installandclaude updateto defer a pending managed-settings consent prompt to the next interactive session instead of prompting mid-command- Changed OpenTelemetry plugin events for plugins synced from claude.ai:
plugin_id_hashnow reflects the plugin's real marketplace, andenabled_viaisadmin-installfor admin-installed plugins- Fixed the command sandbox's filesystem configuration not respecting
--setting-sources