Skip to main content
Code Guide

Claude Code Releases

Version history, changelog, and breaking changes

The latest version of Claude Code is v2.1.215, released Jul 19, 2026. This page tracks every Claude Code release, from new slash commands and features to breaking changes and environment variables. Each entry lists the version number, release date, and what changed.

← Back to Guide

Latest Release: v2.1.215

Released Jul 19, 2026

View All 188 Releases ↓

Environment Variables Reference

Config flags that Claude Code reads at startup. Set in your shell profile or before the claude command.

Variable Value Effect Since
CLAUDE_CODE_USE_MANTLE 1 Amazon Bedrock powered by Mantle support v2.1.97
CLAUDE_CODE_ENABLE_GATEWAY_MODEL_DISCOVERY 1 Enable /v1/models discovery from your gateway (opt-in) v2.1.131
CLAUDE_CODE_PACKAGE_MANAGER_AUTO_UPDATE set Auto-upgrade via Homebrew or WinGet with restart prompt v2.1.131
CLAUDE_CODE_ENABLE_AUTO_MODE 1 Enable auto mode on Bedrock, Vertex, and Foundry for Opus 4.7/4.8 v2.1.159
CLAUDE_CODE_DISABLE_ALTERNATE_SCREEN 1 Opt out of fullscreen alternate-screen renderer, keep output in scrollback v2.1.133
CLAUDE_CODE_NO_FLICKER 1 Flicker-free rendering for terminals that have rendering artifacts v2.1.90
ANTHROPIC_BASE_URL URL Point Claude Code at a compatible third-party gateway instead of api.anthropic.com v2.1.71
ANTHROPIC_BEDROCK_SERVICE_TIER default / flex / priority Select Bedrock service tier via X-Amzn-Bedrock-Service-Tier header v2.1.126
CLAUDE_CODE_CERT_STORE bundled Revert to bundled CA certs (default trusts OS CA store since v2.1.105) v2.1.105
CLAUDE_CODE_SUBPROCESS_ENV_SCRUB 1 Strip credentials from subprocess environments for security v2.1.84
MCP_TOOL_TIMEOUT ms Per-request fetch timeout for MCP tool calls v2.1.143
CLAUDE_CODE_SESSION_ID read-only Session ID passed to Bash subprocesses and MCP stdio servers v2.1.133
DISABLE_UPDATES set Disable automatic Claude Code update checks v2.1.119
CLAUDE_CODE_DISABLE_CRON set Disable scheduled cron tasks in Claude Code v2.1.72
CLAUDE_CODE_DISABLE_EXPERIMENTAL_BETAS 1 Disable experimental beta features (OAuth fix: required for some deployments) v2.1.126
CLAUDE_CODE_SKIP_BEDROCK_AUTH set Skip Bedrock authentication check (for custom auth proxies) v2.1.97

Note: showThinkingSummaries: true is a settings.json key, not an env var. Add it to ~/.claude/settings.json to restore thinking summaries (disabled by default since v2.1.90).

Full Changelog

Latest versions and breaking changes from Anthropic

Showing 12 of 188 releases

v2.1.215 Jul 19, 2026
  • Claude no longer runs the /verify and /code-review skills on its own; invoke them with /verify or /code-review when you want them
v2.1.214 Jul 18, 2026
  • Security: eight Bash permission-check fixes, commands over 10,000 characters now always prompt, file-descriptor redirects fail closed, zsh variable subscripts in [[ ]] prompt, and Edit(src/**)-style single-segment rules no longer auto-approve nested src/ directories anywhere in the tree
  • Added the EndConversation tool so Claude can end sessions with highly abusive users or jailbreak attempts, plus a periodic progress heartbeat for long-running tool calls that previously went silent
  • OpenTelemetry: added message.uuid, client_request_id, and tool_source log attributes for message-level correlation, and CLAUDE_CODE_OTEL_CONTENT_MAX_LENGTH to configure the 60 KB content truncation limit
  • Fixed background-session lifecycle bugs: idle sessions keeping the daemon alive, completed sessions being impossible to remove via claude rm, and a displaced daemon deleting its successor control socket
⚠️ Breaking:
  • Single-segment dir/** hook if: conditions now match only /dir; write **/dir/** for any-depth matching (deny/ask permission rules keep their any-depth match)
  • file commands using -m/--magic-file or -f/--files-from now require permission instead of being auto-allowed as read-only
  • docker commands (including the Podman shim) carrying daemon-redirect flags (--url, --connection, --identity, Podman remote mode) now prompt for permission
v2.1.212 Jul 16, 2026
  • /fork now copies your conversation into a new background session (its own row in claude agents) while you keep working; the in-session subagent it used to launch is now /subtask
  • Added a session-wide WebSearch cap (CLAUDE_CODE_MAX_WEB_SEARCHES_PER_SESSION, default 200) and a per-session subagent-spawn cap (CLAUDE_CODE_MAX_SUBAGENTS_PER_SESSION, default 200) to stop runaway loops; /clear resets the budget
  • MCP tool calls running longer than 2 minutes now move to the background automatically so the session stays usable (CLAUDE_CODE_MCP_AUTO_BACKGROUND_MS)
  • Security: fixed plan mode auto-running file-modifying Bash commands without a permission prompt, and worktree creation following a committed .claude/worktrees symlink to create files outside the repository
⚠️ Breaking:
  • Deprecated the Task tool's mode parameter (now ignored); subagents inherit the parent session's permission mode by default
v2.1.211 Jul 15, 2026
  • Added --forward-subagent-text and CLAUDE_CODE_FORWARD_SUBAGENT_TEXT to include subagent text and thinking in stream-json output
  • Security: permission previews relayed to chat channels now neutralize bidirectional-override, zero-width, and look-alike quote characters, so tool inputs cannot visually alter the approval message
  • Security: auto mode no longer overrides a PreToolUse hook's ask decision for unsandboxed Bash; an ask now floors the decision at a prompt
  • Fixed subagents with an explicit model override reverting to the parent's model when resumed, and nested .claude/rules/*.md loading even when setting sources exclude project settings
v2.1.210 Jul 14, 2026
  • Added a live elapsed-time counter to the collapsed tool summary line, so long-running tool calls visibly tick instead of looking stuck
  • Security: the Agent tool is hardened against indirect prompt injection via content a subagent read, and the ultracode keyword opt-in no longer fires on non-human input such as webhook payloads and relayed PR comments
  • Security: fixed worktree-isolated subagents being able to run git-mutating commands against the main repo checkout instead of their own worktree
  • Auto mode: the permission classifier now defaults to Sonnet 5 for external sessions, validated on the first request and pinned for the session
⚠️ Breaking:
  • Write(path), NotebookEdit(path), and Glob(path) permission rules now trigger a startup warning; use Edit(path) or Read(path) instead
v2.1.209 Jul 14, 2026
  • Fixed /model and other dialogs being blocked in claude agents background sessions (reverts an overly broad guard)
v2.1.208 Jul 13, 2026
  • Added screen reader mode: opt-in plain-text rendering via claude --ax-screen-reader, CLAUDE_AX_SCREEN_READER=1, or axScreenReader: true in settings
  • Added vimInsertModeRemaps for mapping two-key insert-mode sequences like jj to Escape, and CLAUDE_CODE_PROCESS_WRAPPER for running every Claude Code self-spawn through a corporate launcher
  • Fixed the context window and auto-compact indicator briefly resetting to 200k after an auto-update, causing a false 100% context used when resuming long-context sessions
  • Fixed very large markdown tables stalling rendering; tables over 200 rows now show the first 200 with a note about the remainder
v2.1.207 Jul 11, 2026
  • Bedrock, Vertex AI, and Claude Platform on AWS now default to Claude Opus 4.8
  • Fixed the terminal freezing and keystrokes lagging while streaming very long lists, tables, paragraphs, or code blocks
  • Auto mode is now available without the CLAUDE_CODE_ENABLE_AUTO_MODE opt-in on Bedrock, Vertex AI, and Foundry (disable via disableAutoMode)
  • Security: remote managed settings from a non-interactive run were being recorded as consented without ever showing the consent dialog, now fixed
⚠️ Breaking:
  • Plugins: ${user_config.*} in shell-form hook/monitor/headersHelper commands is now rejected (shell-injection fix); use exec form or $CLAUDE_PLUGIN_OPTION_
  • Plugins: option values (pluginConfigs) are no longer read from project-level .claude/settings.json; only user, --settings, and managed settings are honored
v2.1.206 Jul 9, 2026
  • Added a /doctor check that proposes trimming checked-in CLAUDE.md files by cutting content Claude can derive from the codebase
  • Changed /commit-push-pr to auto-allow git push to the repo configured push remote (remote.pushDefault, or the sole remote), not just origin
  • Background agents now upgrade in the background right after an update, instead of a slow stale-session upgrade on attach
  • Improved /code-review findings quality on claude-opus-4-8 across all effort levels
v2.1.205 Jul 8, 2026
  • /doctor is now a full setup checkup that can diagnose and fix issues (/checkup is its alias)
  • Improved the agent view: rows show a colored state word and a classifier-written headline instead of raw tool call text
  • Security: auto mode now blocks tampering with session transcript files, and asks before running rm -rf on a variable it cannot resolve
  • Fixed --json-schema silently producing unstructured output when the schema was invalid, and schemas using the format keyword being rejected
v2.1.204 Jul 8, 2026
  • Fixed hook events not streaming during SessionStart hooks in headless sessions, which could cause remote workers to be idle-reaped mid-hook
v2.1.203 Jul 7, 2026
  • Added a warning when your login is about to expire, plus a grey pause badge in the footer for manual permission mode
  • Fixed background-agent stability: macOS 15-20s stall on open/switch, sessions going permanently unresponsive on stale daemon tokens, crash-looping on deleted working directories, a silent auto-upgrade failure that killed every running session
  • Fixed worktree-isolated subagents sometimes running shell commands in the parent checkout instead of their own worktree
  • Reduced binary size by ~7 MB and startup memory by ~7 MB by loading a large bundled dependency lazily
v2.1.202 Jul 6, 2026
  • Added a Dynamic workflow size setting in /config for controlling how large Claude generally makes dynamic workflows
  • Added workflow.run_id and workflow.name OpenTelemetry attributes so a workflow run can be reconstructed from OTel data
  • Fixed images and files sent from the Remote Control mobile/web app without a caption being silently dropped
  • Changed /review back to a fast single-pass review; use /code-review for the multi-agent review
v2.1.201 Jul 3, 2026
  • Claude Sonnet 5 sessions no longer use the mid-conversation system role for harness reminders
v2.1.199 Jul 2, 2026
  • Stacked slash-skill invocations like /skill-a /skill-b now load all leading skills (up to 5), not just the first
  • Transient server rate-limit errors (429s unrelated to usage limit) now retried automatically with backoff for subscribers; CLAUDE_CODE_RETRY_WATCHDOG raises default retries to 300 and lifts the CLAUDE_CODE_MAX_RETRIES cap
  • Fixed streaming responses discarded on mid-stream server errors (partial output now kept); subagents cut off by rate limits now return partial work to the parent; API errors in subagents reported instead of shown as success
  • Fixed the Linux background-agent daemon killing itself and all agents every ~50s after an unclean shutdown; SSL certificate errors now fail immediately with actionable guidance
v2.1.196 Jun 29, 2026
  • Added organization default models (shows as "Org default" or "Role default" in /model); readable default session names; clickable file attachments in chat (Cmd/Ctrl-click reveals in Finder/Explorer)
  • Security: claude mcp list/get no longer spawn .mcp.json servers self-approved by a committed .claude/settings.json; untrusted workspaces show pending approval
  • Fixed waking a background job permanently deleting its conversation on a transcript misread; rate-limit warning flicker/over-counting; duplicate recap lines after StructuredOutput retry
  • Improved background session reliability across process stop/restart/update; /code-review merged five cleanup finders (~25% token reduction); streaming idle watchdog on by default
v2.1.195 Jun 26, 2026
  • Fixed hook matchers with hyphenated identifiers (e.g. code-reviewer, mcp__brave-search) accidentally substring-matching; use mcp__brave-search__.* to match all tools from a server
  • Fixed voice dictation on macOS (silence after input device change) and auto-submit for languages without spaces (Japanese, Chinese, Thai)
  • Fixed background agent daemon socket failures, blank screen on crash restart, jobs disappearing when written by newer version
  • Added CLAUDE_CODE_DISABLE_MOUSE_CLICKS; Remote session startup shows provisioning checklist
v2.1.193 Jun 25, 2026
  • ⭐ claude_code.assistant_response OpenTelemetry event logs model responses; set OTEL_LOG_ASSISTANT_RESPONSES=0 if you log prompts and want to exclude responses
  • autoMode.classifyAllShell routes all Bash/PowerShell through auto-mode classifier; denial reasons shown in transcript, toast, and /permissions
  • Live file path autocomplete in bash mode (!); startup notice when MCP servers need auth
  • Automatic memory-pressure reaping for idle background shell commands (disable: CLAUDE_CODE_DISABLE_BG_SHELL_PRESSURE_REAP=1)
v2.1.191 Jun 24, 2026
  • ⭐ /rewind now works after /clear to resume a conversation from before the clear
  • Reduced CPU usage during streaming by ~37% by coalescing text updates to 100ms intervals
  • MCP server reliability: capability discovery retries transient errors; OAuth headless paste-URL fallback; HTTP 404 errors show URL
  • Fixed background agents resurrecting after stop; 20+ bug fixes including scroll jump and welcome splash overflow
v2.1.190 Jun 24, 2026
  • Bug fixes and reliability improvements
v2.1.187 Jun 23, 2026
  • ⭐ sandbox.credentials setting blocks sandboxed commands from reading credential files and secret environment variables
  • ⭐ Org-configured model restrictions enforced in model picker, --model, /model, and ANTHROPIC_MODEL with explanatory message
  • Fixed remote MCP tool calls hanging indefinitely; now abort after 5 min with error (override: CLAUDE_CODE_MCP_TOOL_IDLE_TIMEOUT)
  • Fixed --resume failing after no-model -p runs; fixed structured output looping; 15+ bug fixes
v2.1.186 Jun 23, 2026
  • ⭐ `claude mcp login/logout ` authenticates MCP servers from the CLI without the interactive /mcp menu; --no-browser flag for SSH sessions
  • `!` bash commands now auto-trigger Claude to respond to output; opt-out via "respondToBashCommands": false in settings.json
  • Background subagents surface permission prompts in main session instead of auto-denying; dialog shows which agent is asking
  • Fixed Agent(type) deny rules and Agent(x,y) allowed-types restrictions not enforced for named subagent spawns; 25+ bug fixes
v2.1.185 Jun 22, 2026
  • Improved stream-stall hint: reads "Waiting for API response · will retry in …" (was "No response from API · Retrying in …"), triggers after 20s instead of 10s
v2.1.183 Jun 19, 2026
  • ⭐ Auto mode safety: destructive git ops (reset --hard, checkout -- ., clean -fd) and git commit --amend and terraform/pulumi/cdk destroy are blocked unless explicitly requested
  • Model deprecation warnings on stderr in print mode (-p) and for models set in agent frontmatter
  • `attribution.sessionUrl` setting omits the claude.ai session link from commits and PRs in web/Remote Control sessions
  • 10+ bug fixes: thinking 400 errors on subagent spawns, WebSearch empty in subagents, tmux pane launch failures
v2.1.181 Jun 18, 2026
  • ⭐ `/config key=value` syntax sets any setting inline from the prompt (e.g. `/config thinking=false`) — works in interactive, -p, and Remote Control
  • `sandbox.allowAppleEvents` opt-in for macOS sandboxed commands
  • Improved streaming: long paragraphs appear line-by-line instead of waiting for the first line break
  • Improved subagent panel: idle agents auto-hide after 30s, list caps at 5 rows with scroll hints; 30+ bug fixes
v2.1.179 Jun 17, 2026
  • Fixed mid-stream connection drops: partial responses preserved, spinner no longer stuck at "running tool"
  • Fixed mouse-wheel scrolling in WSL2 under Windows Terminal and VS Code (regression in 2.1.172)
  • 6+ bug fixes: sandbox denyRead/allowRead glob performance, feedback survey rating, welcome banner stacking, Ctrl+O subagent transcript, prompt focus
v2.1.178 Jun 17, 2026
  • ⭐ Tool(param:value) syntax for permission rules to match tool input parameters, e.g. Agent(model:opus) to block Opus subagents
  • Nested .claude/skills directories load when working on files there; directory-qualified names on clash prevent conflicts
  • Improved auto mode: subagent spawns evaluated by classifier before launch
  • 10+ bug fixes: subagent transcript, compaction fallback model, stale auth credentials, MCP disallowedTools server specs, vim undo
v2.1.176 Jun 15, 2026
  • ⭐ Session titles generated in the language of your conversation; `language` setting pins a specific language
  • `footerLinksRegexes` setting: regex-matched link badges in the footer row
  • Improved Bedrock credential caching: cached until Expiration instead of fixed 1 hour
  • 15+ bug fixes: availableModels alias enforcement, Fable 5 auto mode fallback, hook if path conditions, Linux sandbox symlink, tmux clipboard, Remote Control model switch
v2.1.175 Jun 15, 2026
  • ⭐ `enforceAvailableModels` managed setting: constrains Default model to allowlist; blocks user/project settings from widening a managed list
v2.1.174 Jun 15, 2026
  • `wheelScrollAccelerationEnabled` setting to disable mouse-wheel scroll acceleration in fullscreen mode
  • Fixed /model picker hiding the model family that Default resolves to (Opus/Sonnet row visible per plan type)
  • [VSCode] Usage attribution in /usage dialog: cache misses, long context, subagents, per-skill/agent/plugin/MCP breakdowns
  • 8+ bug fixes: Fable 5 billing banner, Bedrock GovCloud prefix, background session env inheritance, exit pause on macOS/Linux
v2.1.173 Jun 11, 2026
  • Fixed Fable 5 model names with [1m] suffix not normalized (1M context included by default)
  • Fixed spurious "sandbox dependencies missing" startup warning on Windows
v2.1.172 Jun 11, 2026
  • ⭐ Sub-agents can now spawn their own sub-agents (up to 5 levels deep)
  • Amazon Bedrock reads AWS region from ~/.aws config files when AWS_REGION not set
  • Search bar added when browsing marketplace plugins in /plugin
  • 20+ bug fixes: 1M context stuck, model picker availableModels issues, permission rule wildcards, VS Code PowerShell rendering
v2.1.169 Jun 9, 2026
  • ⭐ --safe-mode flag: start with all customizations disabled for troubleshooting
  • ⭐ /cd command: change working directory mid-session without breaking prompt cache
  • disableBundledSkills setting to hide built-in skills, workflows, and slash commands
  • 15+ bug fixes: enterprise MCP policy enforcement, macOS UI stall, Windows Git popup, agents --json
v2.1.168 Jun 6, 2026
  • Bug fixes and reliability improvements
v2.1.167 Jun 6, 2026
  • Bug fixes and reliability improvements
v2.1.166 Jun 6, 2026
  • `fallbackModel` setting: up to 3 fallback models tried in order when primary is overloaded or unavailable; `--fallback-model` works in interactive sessions too
  • Glob patterns in deny rule tool-name position (`"*"` denies all tools); hardened `SendMessage`: relayed messages no longer carry user authority
  • `MAX_THINKING_TOKENS=0`, `--thinking disabled`, and per-model toggle now disable thinking on models that think by default via Claude API
  • 15+ bug fixes: JetBrains 2026.1+ flickering, Kitty protocol Shift+non-ASCII input, PowerShell hang, orphaned `--bg-pty-host` CPU spin
v2.1.165 Jun 5, 2026
  • Bug fixes and reliability improvements
v2.1.163 Jun 4, 2026
  • `requiredMinimumVersion`/`requiredMaximumVersion` managed settings: Claude Code refuses to start outside the allowed version range
  • `/plugin list` with `--enabled`/`--disabled` filters; Stop/SubagentStop hooks can return `additionalContext` to continue the turn
  • Skills: `\$` escape for literal `$` in command bodies; stdio MCPs receive `CLAUDE_CODE_SESSION_ID` on `--resume`
  • 10+ bug fixes: `claude -p` background hang, bazel/EDR bash regression, Windows EEXIST fix, managed settings on fresh config
v2.1.162 Jun 3, 2026
  • `claude agents --json` now includes `waitingFor` showing what a waiting session is blocked on (e.g. permission prompt)
  • Clicking a slash command fills it into the prompt instead of running immediately; press Enter to run
  • Remote Control shows as a persistent footer pill; Windsurf renamed to Devin Desktop in `/ide`, `/terminal-setup`, `/scroll-speed`
  • Quieter startup: notices group by severity, session info and announcements share a single line; 25+ bug fixes
v2.1.161 Jun 2, 2026
  • `OTEL_RESOURCE_ATTRIBUTES` values included as labels on metric datapoints for custom dimensions (team, repo)
  • `claude agents` rows show `done/total` for fanned-out work; `/mcp` collapses unused claude.ai connectors
  • Parallel tool calls: failed Bash no longer cancels other calls in the same batch
  • 20+ bug fixes: managed-settings policies fix for third-party providers, MCP secrets no longer printed to terminal, `isolation: worktree` in background sessions fixed
v2.1.160 Jun 1, 2026
  • ⭐ Renamed dynamic-workflow trigger keyword from `workflow` to `ultracode` (violet shimmer in prompt); asking in your own words still works
  • Security: added prompt before writing to shell startup files (`.zshenv`, `.zlogin`) and `~/.config/git/`; `acceptEdits` mode prompts before build-tool config files
  • Edit no longer requires separate Read after single-file `grep`/`egrep`/`fgrep`
  • Removed `CLAUDE_CODE_OPUS_4_6_FAST_MODE_OVERRIDE` (deprecated in 2.1.154, now no-op); JetBrains plugin suggestion removed from startup; 20+ bug fixes
⚠️ Breaking:
  • `workflow` keyword no longer triggers dynamic workflows; use `ultracode` instead
v2.1.159 May 31, 2026
  • Internal infrastructure improvements (no user-facing changes)
v2.1.158 May 30, 2026
  • ⭐ Auto mode now available on Bedrock, Vertex, and Foundry for Opus 4.7 and Opus 4.8; opt in with `CLAUDE_CODE_ENABLE_AUTO_MODE=1`
v2.1.157 May 29, 2026
  • ⭐ Plugins in `.claude/skills` directories auto-load without marketplace required; `claude plugin init ` scaffolds new plugins
  • Autocomplete for `/plugin` arguments; `agent` field in `settings.json` honored for dispatched sessions with `--agent ` override; `EnterWorktree` switches between worktrees mid-session
  • 20+ bug fixes: corrupted images no longer crash requests, sandbox network prompts fixed in desktop/IDE/SDK auto mode, `--resume` improvements, WSL image paste fixes, right-click paste duplicate, long conversation performance improved
v2.1.156 May 28, 2026
  • Fixed Opus 4.8 thinking blocks being modified, which was causing API errors
v2.1.154 May 28, 2026
  • ⭐ Opus 4.8 with high effort default; `/effort xhigh` for hardest tasks; fast mode at 2x rate / 2.5x speed
  • ⭐ Dynamic workflows: Claude orchestrates tens to hundreds of background agents in one session; run `/workflows` to monitor
  • Lean system prompt default for all models except Haiku/Sonnet/Opus 4.7+; `/simplify` reworked to cleanup-only (reuse/simplification/efficiency/altitude); `! ` in claude agents runs background shell sessions
  • Streaming tool execution always-on including Bedrock/Vertex/Foundry; plugin `defaultEnabled: false` option; 30+ bug fixes
⚠️ Breaking:
  • `CLAUDE_CODE_OPUS_4_6_FAST_MODE_OVERRIDE` deprecated (removed 2026-06-01); use `/model claude-opus-4-6[1m]` then `/fast on`
  • `/simplify` now runs cleanup-only review instead of full code-review fix
v2.1.153 May 28, 2026
  • `/model` now saves as default for new sessions (IDE parity); press `s` in the picker to switch current session only
  • `skipLfs` for plugin marketplace git sources; status line commands get `COLUMNS`/`LINES` env vars; `claude agents` autocomplete includes built-in skills + slash commands; PR column shows `PR #N` / `N PRs`
  • 25+ bug fixes: stateful MCP reconnect loop (regression 2.1.147), API gateway credential leak, subagent MCP ignoring enterprise policies, Agent tool worktree silently discarding outputs, Windows installer false success
⚠️ Breaking:
  • `modelPicker:setAsDefault` keybinding renamed to `modelPicker:thisSessionOnly` in keybindings.json
v2.1.152 May 27, 2026
  • `/code-review --fix` applies review findings to working tree after review; `/simplify` now invokes `/code-review --fix`
  • Skills/commands can set `disallowed-tools` frontmatter to remove tools while the skill is active; `/reload-skills` re-scans directories without restart
  • New `MessageDisplay` hook event to transform or hide assistant message text
  • Auto mode no longer requires opt-in; `--fallback-model` for session-level fallback; `SessionStart` can set session title + trigger skill reload; 35+ bug fixes
v2.1.150 May 23, 2026
  • Internal infrastructure improvements (no user-facing changes)
v2.1.149 May 23, 2026
  • /usage per-category breakdown: skills, subagents, plugins, and per-MCP-server cost
  • Markdown GFM task list checkboxes (- [ ]/- [x]) now render natively
  • Security: PowerShell cd permission bypass fixed + sandbox worktree write allowlist corrected
  • Enterprise: allowAllClaudeAiMcps managed setting for claude.ai cloud MCP connectors
  • 20+ bug fixes: /diff keyboard scrolling, transcript view freeze, slash-command arg hints, /insights crash
v2.1.148 May 22, 2026
  • Hotfix: Bash tool returning exit code 127 on every command (regression from 2.1.147)
v2.1.147 May 22, 2026
  • ⭐ Pinned background sessions (Ctrl+T in claude agents): stay alive when idle, auto-restart on CC updates, shed under memory pressure only after non-pinned sessions
  • /code-review --comment: post findings as inline GitHub PR comments
  • Improved auto-updater: retries transient network failures, reports specific error categories and OS error codes, shows current version on failure
  • Bug fixes: prompt history no consecutive duplicates, PowerShell hook if conditions matching, pasted text [Pasted text #N] placeholder, plugin component counts doubled, slash commands + tab/newline treated as unknown, 25+ additional fixes
v2.1.146 May 21, 2026
  • /simplify renamed to /code-review with optional effort level (e.g. /code-review high)
  • Auto mode no longer suppresses AskUserQuestion when the user or a skill explicitly relies on it
  • Bug fixes: Windows PowerShell "command line is invalid" regression (2.1.124), MCP paginated resources/prompts, /background refusing skill-only commands, backgrounded sessions re-prompting for already-granted permissions, 15+ total
v2.1.145 May 20, 2026
  • claude agents --json: list live sessions as JSON for scripting (tmux-resurrect, status bars, session pickers)
  • /plugin Discover/Browse now previews commands, agents, skills, hooks, MCP/LSP before installation; tab title shows awaiting-input count
  • Security fix: permission-prompt bypass for bare variable assignments to non-allowlisted env vars in Bash now requires explicit approval
  • Bug fixes: MCP paginated resources/templates/prompts, Read tool truncates instead of hard error, /review GraphQL fix, task list ordering, agent team non-ASCII names
v2.1.144 May 19, 2026
  • /resume now lists background sessions (started via --bg or agent view) alongside interactive ones, marked with bg
  • /model is now session-only by default: press d in the picker to set a default model for new sessions
  • "extra usage" renamed to "usage credits" across CLI; /extra-usage/usage-credits (old name still works)
  • Bug fixes: 75s startup hang on unreachable API (now 15s timeout), terminal rendering corruption, macOS Full Disk Access crash, MCP paginated tools/list, 40+ total
v2.1.143 May 16, 2026
  • ⭐ Plugin dependency enforcement: claude plugin disable refuses when another enabled plugin depends on the target (with disable-chain hint); enable force-enables transitive deps
  • ⭐ Projected context cost (per-turn and per-invocation token estimates) added to the /plugin marketplace browse pane
  • worktree.bgIsolation: "none": background sessions edit working copy directly without EnterWorktree
  • Bug fixes: stop hook block loop (warns after 8 blocks), Esc/Ctrl+C cancels /loop wakeup, background sessions preserve model+effort after idle wake
v2.1.141 May 14, 2026
  • ⭐ Hook terminalSequence output field: emit desktop notifications, window titles, and bells from hooks without a controlling terminal
  • claude agents --cwd <path> scopes session list to a directory; agents with lingering shells move to Completed
  • Rewind "Summarize up to here": compress earlier context; /bg preserves permission mode; spinner warms amber after 10s
  • 50+ bug fixes: Bedrock cross-account auth, MCP 403 needs-auth hint, Remote Control token rotation race, vim Ctrl+C, markdown table regression
v2.1.140 May 13, 2026
  • Agent tool subagent_type matching now case- and separator-insensitive ("Code Reviewer" resolves to code-reviewer)
  • Plugins warn when a default component folder is silently ignored due to plugin.json key conflict
  • Bug fixes: /goal hang with disableAllHooks, symlinked settings hot-reload regression, claude --bg connection drop
v2.1.138 May 11, 2026
  • Internal fixes
v2.1.137 May 11, 2026
  • [VSCode] Fixed extension failing to activate on Windows
v2.1.136 May 11, 2026
  • settings.autoMode.hard_deny: auto mode classifier rules that block unconditionally regardless of user intent or allow exceptions
  • CLAUDE_CODE_ENABLE_FEEDBACK_SURVEY_FOR_OTEL to re-enable session quality survey for enterprises capturing responses via OpenTelemetry
  • Fixed MCP servers disappearing after /clear in VS Code/JetBrains/Agent SDK; MCP OAuth concurrent refresh token race fixed (no more daily re-auth for multi-server users)
  • 40+ UI/terminal fixes: plan mode write blocking, extended thinking redacted-block API 400 fix, --resume with underscores in project path, WSL2 image paste via PowerShell fallback
v2.1.133 May 8, 2026
  • worktree.baseRef setting (fresh | head): fresh (default) branches from origin/<default>; set head to keep local HEAD with unpushed commits. Note: reverts 2.1.128 behavior: set worktree.baseRef: "head" to restore it
  • Hooks receive active effort level via effort.level JSON field and $CLAUDE_EFFORT env var in Bash subcommands
  • Fixed subagents not discovering project/user/plugin skills via Skill tool
  • Fixed parallel sessions dead-ending at 401 after refresh-token race; HTTP(S)_PROXY/NO_PROXY/mTLS now respected for full MCP OAuth flow
⚠️ Breaking:
  • worktree.baseRef defaults to fresh (branches from origin/<default>), reverting 2.1.128: set worktree.baseRef: "head" to keep local HEAD
v2.1.132 May 8, 2026
  • CLAUDE_CODE_SESSION_ID env var now passed to Bash tool subprocess environment (matches session_id in hook JSON input)
  • CLAUDE_CODE_DISABLE_ALTERNATE_SCREEN=1 to opt out of the fullscreen alternate-screen renderer and keep output in native scrollback
  • Fixed unbounded memory growth (10GB+ RSS) when a stdio MCP server writes non-protocol data to stdout
  • 20+ terminal/TUI/MCP fixes: SIGINT graceful shutdown, --resume emoji crash, fullscreen blank after sleep, JetBrains scroll runaway, mouse wheel speed in Cursor/VS Code, pasting / swallow, statusline context token counts, Alt+T on macOS, MCP tools/list failure silent 0-tools
v2.1.131 May 6, 2026
  • Fixed VS Code extension failing to activate on Windows (hardcoded createRequire build path in bundled SDK)
  • Fixed Mantle endpoint authentication failing with missing x-api-key header
v2.1.129 May 6, 2026
  • --plugin-url <url> flag to fetch a plugin .zip archive from URL for the current session; CLAUDE_CODE_PACKAGE_MANAGER_AUTO_UPDATE for Homebrew/WinGet auto-upgrade with restart prompt
  • Ctrl+R history picker restored to all-projects default (pre-2.1.124 behavior): press Ctrl+S to narrow to current project or session; skillOverrides setting now works
  • Gateway /v1/models discovery now opt-in via CLAUDE_CODE_ENABLE_GATEWAY_MODEL_DISCOVERY=1; third-party deployments no longer see first-party spinner tips
  • 20+ bug fixes: 1h prompt cache TTL downgrade, OAuth refresh race after sleep, Bash(mkdir *) allow rules, /context wasting ~1.6k tokens, /clear tab title reset, agent panel hidden regression, Bash(touch *) allow rules
v2.1.128 May 5, 2026
  • EnterWorktree now creates branch from local HEAD: unpushed commits no longer dropped; --plugin-dir accepts .zip plugin archives
  • --channels works with console (API key) auth; /mcp shows tool count per server and flags 0-tool servers
  • Parallel bash tool call fix: a failing read-only command no longer cancels sibling calls; sub-agent summaries now include prompt cache (~3x cache_creation reduction)
  • 35+ bug fixes: 1M-context false "Prompt is too long", MCP stdio corrupted args with spaces, MCP images dropped on structured+content blocks, clipboard whitespace in code blocks
v2.1.126 May 1, 2026
  • /model picker lists models from your gateway's /v1/models endpoint when ANTHROPIC_BASE_URL points at a compatible gateway
  • claude project purge [path]: delete all Claude Code state for a project (transcripts, tasks, history, config entry); supports --dry-run, -y, -i, --all
  • claude auth login accepts pasted OAuth code when browser callback can't reach localhost (WSL2, SSH, containers); Windows PowerShell 7 now detected + primary shell
  • Security: Fixed allowManagedDomainsOnly/allowManagedReadPathsOnly ignored when higher-priority settings lacked sandbox block; 40+ bug fixes (image paste crash >2000px, Stream idle timeout after sleep, CJK text on Windows, OAuth timeout, Agent SDK hang)
v2.1.123 Apr 29, 2026
  • Fixed OAuth authentication failing with 401 retry loop when CLAUDE_CODE_DISABLE_EXPERIMENTAL_BETAS=1 is set
v2.1.122 Apr 28, 2026
  • ANTHROPIC_BEDROCK_SERVICE_TIER env var to select Bedrock service tier (default/flex/priority) via X-Amzn-Bedrock-Service-Tier header
  • Pasting a PR URL into /resume search finds the session that created it (GitHub, GitLab, Bitbucket, GitHub Enterprise)
  • Fixes: Vertex AI/Bedrock output_config errors, image resize corrected (2576→2000px max), remote control idle redraw flood, !exit/!quit bash mode crash, ToolSearch missing late-connecting MCP tools
v2.1.121 Apr 27, 2026
  • alwaysLoad MCP server config option: tools skip tool-search deferral and are always available
  • claude plugin prune removes orphaned auto-installed plugin deps; PostToolUse hooks can now replace output for all tools (previously MCP-only)
  • Type-to-filter search in /skills; MCP servers auto-retry 3x on startup; --dangerously-skip-permissions skips .claude/ dirs
  • Critical fixes: unbounded memory growth (multi-GB RSS) with images; /usage memory leak (~2GB); Bash tool unusable when start dir deleted; --resume crash on corrupted sessions
v2.1.120 Apr 24, 2026
  • ⭐ Windows: Git for Windows (Git Bash) no longer required: PowerShell used as shell tool when absent
  • claude ultrareview [target] subcommand for non-interactive CI/script use (--json for raw output)
  • Skills can reference effort level with ${CLAUDE_EFFORT}; AI_AGENT env var for gh traffic attribution
  • Fixes: Esc during stdio MCP call closing server (regression 2.1.105), /rewind keyboard input after --resume, scrollback duplication, false-positive rm permission prompts in auto mode
v2.1.119 Apr 24, 2026
  • /config settings (theme, editor mode, verbose) now persist to ~/.claude/settings.json and participate in project/local/policy override precedence
  • --from-pr now accepts GitLab merge-request, Bitbucket pull-request, and GitHub Enterprise PR URLs
  • --print honors agent tools:/disallowedTools: frontmatter; --agent honors permissionMode; PowerShell auto-approve; PostToolUse hooks include duration_ms
  • Security: blockedMarketplaces enforces hostPattern/pathPattern; prUrlTemplate setting; 30+ bug fixes including CRLF paste, Glob/Grep on macOS, /plan mode fix, TaskList ordering, stale worktree reuse
v2.1.118 Apr 23, 2026
  • ⭐ Vim visual mode (v) and visual-line mode (V) with selection, operators, and visual feedback
  • /cost and /stats merged into /usage: both remain as typing shortcuts that open the relevant tab
  • ⭐ Custom named themes from /theme or hand-edit JSON in ~/.claude/themes/; plugins can ship themes via themes/ directory
  • Hooks can invoke MCP tools directly via type: "mcp_tool"; DISABLE_UPDATES env var; wslInheritsWindowsSettings policy; 15+ bug fixes
v2.1.117 Apr 22, 2026
  • ⭐ Default effort changed to high for Pro/Max subscribers on Opus 4.6 and Sonnet 4.6 (was medium)
  • ⭐ Fixed Opus 4.7 sessions showing inflated /context percentages and autocompacting too early: was computing against 200K instead of native 1M context window
  • Native macOS/Linux builds: Glob and Grep tools replaced by embedded bfs and ugrep: faster searches without extra tool round-trip (Windows/npm unchanged)
  • /model selections persist across restarts; startup header shows model source pin; plugin dependency fixes; 15+ bug fixes
v2.1.116 Apr 21, 2026
  • /resume up to 67% faster on large sessions (40MB+); handles sessions with many dead-fork entries more efficiently
  • Thinking spinner shows inline progress: "still thinking", "thinking more", "almost done thinking": replaces the separate hint row
  • Security: sandbox auto-allow no longer bypasses the dangerous-path check for rm/rmdir targeting /, $HOME, or critical system directories
  • Agent frontmatter hooks: now fire when running as main-thread agent via --agent; /config search matches option values; many terminal, scrolling, and UI bug fixes
v2.1.114 Apr 18, 2026
  • Fixed crash in permission dialog when an agent teams teammate requested tool permission
v2.1.113 Apr 18, 2026
  • ⭐ CLI now spawns a native Claude Code binary via per-platform optional dependency instead of bundled JavaScript
  • sandbox.network.deniedDomains setting: block specific domains even when a wildcard allowedDomains would permit them
  • Security hardening: macOS /private/{etc,var,tmp,home} paths flagged for Bash(rm:*) rules; deny rules match env/sudo/watch/ionice/setsid wrappers; Bash(find:*) no longer auto-approves -exec/-delete
  • Keyboard improvements (Ctrl+A/E logical line, Ctrl+Backspace on Windows); /loop Esc cancels wakeups; subagents fail with clear error after 10 min; many bug fixes
v2.1.111 Apr 16, 2026
  • ⭐ Claude Opus 4.7 xhigh effort level (between high and max); Auto mode for Max subscribers no longer requires --enable-auto-mode
  • /ultrareview skill: cloud-based parallel multi-agent code review; invoke without args for current branch or /ultrareview <PR#>
  • /less-permission-prompts skill: scans transcripts and proposes a prioritized read-only allowlist for settings.json
  • Plan files named after prompts; read-only bash with glob patterns and cd <dir> && no longer trigger prompts; interactive /effort slider; many bug fixes
v2.1.110 Apr 16, 2026
  • /tui command and tui setting: run /tui fullscreen for flicker-free rendering in the same conversation
  • ⭐ Push notification tool: Claude can send mobile push notifications when Remote Control and "Push when Claude decides" config are enabled
  • --resume/--continue now resurrects unexpired scheduled tasks
  • /focus command for focus view; Ctrl+O reverts to verbose transcript toggle; autoScrollEnabled config; session recap for telemetry-disabled users; 30+ bug fixes
v2.1.109 Apr 15, 2026
  • Improved extended-thinking indicator with a rotating progress hint for better visibility during long thinking phases
v2.1.108 Apr 15, 2026
  • ENABLE_PROMPT_CACHING_1H env var: opt into 1-hour prompt cache TTL on API key, Bedrock, Vertex, and Foundry; FORCE_PROMPT_CACHING_5M to force 5-minute TTL
  • /recap command: provides context when returning to a session after a break; configurable in /config
  • Built-in slash commands (/init, /review, /security-review) now discoverable and invokable via the Skill tool; /undo alias for /rewind
  • /resume picker defaults to current directory sessions (Ctrl+A for all); improved model-switch warning mid-conversation; reduced memory footprint for file reads and syntax highlighting
v2.1.107 Apr 14, 2026
  • Show thinking hints sooner during long operations for better real-time feedback
v2.1.105 Apr 13, 2026
  • ⭐ PreCompact hook support: hooks can block compaction by exiting with code 2 or returning {"decision":"block"}
  • EnterWorktree tool gains path parameter to switch into an existing worktree; /proactive alias for /loop; background monitor support for plugins
  • WebFetch strips <style>/<script> contents; stalled API streams abort after 5 min then retry non-streaming; /doctor status icons with f-to-fix
  • Multiple bug fixes: queued image drops, screen blank on wrapped prompts, MCP tools missing on headless first turn, 429 raw JSON error display
v2.1.101 Apr 10, 2026
  • /team-onboarding command: generates a teammate ramp-up guide from your local Claude Code usage
  • OS CA certificate store trusted by default: enterprise TLS proxies work without extra config (CLAUDE_CODE_CERT_STORE=bundled to revert)
  • /ultraplan and remote-session features auto-create a default cloud environment (no web setup required first)
  • 40+ bug fixes: --resume context loss, Bedrock SigV4 auth 403, sub-agents in worktrees denied file access, RemoteTrigger run action, Grep ENOENT self-heal, hardcoded 5-min timeout removed, LSP command injection fix
v2.1.97 Apr 9, 2026
  • ⭐ Focus view toggle (Ctrl+O) in NO_FLICKER mode: shows prompt, tool summary with edit diffstats, and final response
  • refreshInterval status line setting + workspace.git_worktree JSON input field
  • 30+ bug fixes: NO_FLICKER (15 fixes), /resume (6 fixes), MCP 50 MB/hr buffer leak, permissions hardening, 429 exponential backoff
v2.1.96 Apr 8, 2026
  • Fixed Bedrock auth regression: AWS_BEARER_TOKEN_BEDROCK and CLAUDE_CODE_SKIP_BEDROCK_AUTH no longer fail with 403
v2.1.94 Apr 7, 2026
  • ⭐ Amazon Bedrock powered by Mantle support: set CLAUDE_CODE_USE_MANTLE=1
  • Default effort changed from medium to high for API-key, Bedrock/Vertex/Foundry, Team, and Enterprise users
  • Plugin skills now use frontmatter name for stable invocation naming across install methods
  • Compact Slacked #channel header with clickable link for Slack MCP tool calls
v2.1.92 Apr 4, 2026
  • Interactive Bedrock setup wizard from login screen: step-by-step AWS auth, region config, credential verification, and model pinning
  • forceRemoteSettingsRefresh policy setting: fail-closed managed settings enforcement (blocks startup until fresh fetch)
  • Per-model and cache-hit cost breakdown in /cost for subscription users
  • /release-notes is now an interactive version picker
  • Linux sandbox: apply-seccomp helper now in npm + native builds: restores unix-socket blocking
v2.1.91 Apr 3, 2026
  • MCP tool result size override via _meta["anthropic/maxResultSizeChars"] (up to 500K): large DB schemas pass through without truncation
  • disableSkillShellExecution setting: disable inline shell execution in skills and plugin commands
  • Plugins can ship bin/ executables for direct Bash tool invocation
  • Edit tool uses shorter old_string anchors: reduces output tokens
v2.1.90 Apr 2, 2026
  • /powerup: interactive animated lessons teaching Claude Code features with live demos
  • Fixed infinite loop crashing sessions when rate-limit dialog repeatedly auto-opened
  • Fixed --resume causing full prompt-cache miss for users with deferred tools (regression since v2.1.69)
  • PowerShell tool hardened: trailing & bypass, debugger hang, TOCTOU fixed; SSE transport now linear-time
v2.1.89 Apr 1, 2026
  • "defer" permission decision for PreToolUse hooks: headless sessions pause at tool call and resume with -p --resume
  • PermissionDenied hook: fires after auto mode classifier denials; return {retry: true} to let the model retry
  • Named subagents now appear in @ mention typeahead; CLAUDE_CODE_NO_FLICKER=1 for flicker-free rendering
  • Massive bugfix batch: CRLF on Windows, StructuredOutput cache (50% failure rate), autocompact thrash circuit breaker, memory leaks
⚠️ Breaking:
  • Thinking summaries disabled by default: add showThinkingSummaries: true to settings.json to restore
v2.1.87 Mar 30, 2026
  • Fixed messages in Cowork Dispatch not getting delivered
v2.1.86 Mar 28, 2026
  • X-Claude-Code-Session-Id header on API requests: proxies aggregate by session without parsing the body
  • Reduced @ file mention token overhead: raw string content no longer JSON-escaped; Read tool uses compact line-number format with dedup
  • Improved prompt cache hit rate for Bedrock, Vertex, Foundry by removing dynamic content from tool descriptions
  • Fixed marketplace plugin scripts failing with "Permission denied" on macOS/Linux (regression since v2.1.83); many other bugfixes
v2.1.85 Mar 27, 2026
  • Conditional if field for hooks: filter when they run using permission rule syntax (e.g. Bash(git *)) to reduce process spawning overhead
  • CLAUDE_CODE_MCP_SERVER_NAME/_URL env vars for headersHelper scripts: one helper serves multiple MCP servers
  • PreToolUse hooks can now satisfy AskUserQuestion headlessly (return updatedInput + permissionDecision: allow)
  • Fixed /compact failing with "context exceeded" on very large conversations; improved scroll performance (yoga-layout → TypeScript)
v2.1.83 Mar 25, 2026
  • managed-settings.d/ drop-in directory: teams deploy independent policy fragments that merge alphabetically
  • CwdChanged and FileChanged hook events for reactive environment management (direnv, auto-toolchain)
  • Transcript search: press / in transcript mode (Ctrl+O); CLAUDE_CODE_SUBPROCESS_ENV_SCRUB=1 strips credentials from subprocesses
  • Security: fixed --mcp-config bypassing managed allowedMcpServers/deniedMcpServers policy; fixed macOS exit hang
v2.1.81 Mar 22, 2026
  • --bare flag for scripted -p calls: skips hooks, LSP, plugin sync, skill walks (requires API key; no OAuth)
  • --channels permission relay: channel servers can forward tool approval prompts to your phone
  • MCP read/search tool calls collapse into "Queried {server}" line; plan mode hides "clear context" by default
  • Fixed worktree session resume switching back to worktree; fixed concurrent sessions repeatedly re-authenticating on OAuth refresh
v2.1.80 Mar 20, 2026
  • rate_limits field in statusline scripts for Claude.ai usage (5h + 7d windows with used_percentage and resets_at)
  • effort frontmatter for skills/slash commands to override effort level; source: 'settings' plugin marketplace (inline in settings.json)
  • --channels research preview: MCP servers can push messages into your session
  • Fixed --resume dropping parallel tool results; ~80MB memory reduction on startup for large repos
v2.1.79 Mar 19, 2026
  • --console flag for claude auth login (Anthropic Console / API billing auth); "Show turn duration" toggle in /config
  • VSCode: /remote-control to bridge session to claude.ai/code; session tabs get AI-generated titles from first message
  • Fixed claude -p hanging without explicit stdin; fixed enterprise users unable to retry on rate limit (429) errors
  • Fixed SessionEnd hooks not firing on interactive /resume switch; ~18MB startup memory improvement
v2.1.78 Mar 18, 2026
  • StopFailure hook event fires when turn ends due to API error (rate limit, auth failure); ${CLAUDE_PLUGIN_DATA} for persistent plugin state
  • effort, maxTurns, disallowedTools frontmatter for plugin-shipped agents; response text now streams line-by-line
  • ⚠️ 3 security fixes: silent sandbox disable, MCP deny rules bypassed, protected dirs writable in bypassPermissions mode
  • Fixed infinite loop when API errors triggered stop hooks re-feeding blocking errors; fixed --resume truncating history on large sessions with subagents
v2.1.77 Mar 17, 2026
  • Opus 4.6 output limits raised: default max output to 64k tokens; upper bound for Opus 4.6 and Sonnet 4.6 to 128k tokens
  • allowRead sandbox setting to re-allow reads within denyRead regions; /copy N for Nth-latest response; /branch replaces /fork
  • Security fix: PreToolUse hooks returning "allow" could bypass enterprise deny permission rules
  • Fixed auto-updater accumulating GBs of memory from overlapping downloads; fixed --resume silently truncating recent history
  • Breaking: Agent tool no longer accepts resume parameter: use SendMessage({to: agentId}) instead
⚠️ Breaking:
  • Agent tool: resume parameter removed: use SendMessage({to: agentId})
v2.1.72 Mar 9, 2026
  • Agent model override restored: model parameter back on Agent tool for per-invocation overrides
  • SDK 12x token savings: fixed query() prompt cache invalidation (up to 12× input token cost reduction)
  • CLAUDE.md HTML comments now hidden from Claude when auto-injected; /plan accepts optional description
  • Simplified effort levels: low/medium/high (removed max), new symbols ○ ◐ ●; ExitWorktree tool added
  • CLAUDE_CODE_DISABLE_CRON env var; lsof, fd, pgrep added to bash auto-approval allowlist
v2.1.68 Mar 4, 2026
  • Opus 4.6 now defaults to medium effort for Max and Team subscribers
  • Re-introduced ultrathink keyword to enable high effort for the next turn
  • Breaking: Opus 4 and Opus 4.1 removed from Claude Code first-party API: auto-migrated to Opus 4.6
⚠️ Breaking:
  • Opus 4 and Opus 4.1 removed from Claude Code first-party API
v2.1.66 Mar 4, 2026
  • Reduced spurious error logging
v2.1.62 Feb 27, 2026
  • Fixed prompt suggestion cache regression that reduced cache hit rates
v2.1.61 Feb 27, 2026
  • Fixed concurrent writes corrupting config file on Windows
v2.1.58 Feb 26, 2026
  • Remote Control expanded to more users
v2.1.56 Feb 25, 2026
  • VSCode: Fixed another cause of extension crash on Windows
v2.1.55 Feb 25, 2026
  • Fixed BashTool failing on Windows with EINVAL error
v2.1.53 Feb 25, 2026
  • Stability fixes: Windows panics/crashes, WebAssembly crashes on Linux x64 & Windows x64/ARM64
  • Fixed graceful shutdown leaving stale sessions with Remote Control
  • Fixed --worktree flag sometimes ignored on first launch
v2.1.52 Feb 24, 2026
  • VSCode: Fixed extension crash on Windows
v2.1.49 Feb 20, 2026
  • --worktree / -w flag + subagent isolation: "worktree" for isolated git worktrees
  • Agent definitions support background: true to always run as background task
  • ConfigChange hook event for enterprise security auditing of config changes
  • Simple mode includes file edit tool; Sonnet 4.6 now has 1M context on Max plan
v2.1.47 Feb 19, 2026
  • VS Code plan preview auto-updates as Claude iterates
  • ctrl+f kills all background agents; ESC cancels main thread only
  • last_assistant_message field in Stop/SubagentStop hook inputs
  • 70+ bug fixes: PDF compaction, Unicode quotes, parallel file edits, OSC 8 hyperlinks
v2.1.46 Feb 19, 2026
  • Fixed orphaned Claude Code processes after terminal disconnect on macOS
  • Support for using claude.ai MCP connectors in Claude Code
v2.1.45 Feb 17, 2026
  • Claude Sonnet 4.6 model support
  • spinnerTipsOverride setting for customizable spinner tips
  • SDK: SDKRateLimitInfo / SDKRateLimitEvent for rate limit tracking
  • Fixed Agent Teams on Bedrock/Vertex/Foundry; memory improvements
v2.1.44 Feb 17, 2026
  • Fixed auth refresh errors
  • Fixed AWS auth refresh hanging (3-minute timeout)
  • Fixed structured-outputs beta header on Vertex/Bedrock
v2.1.42 Feb 14, 2026
  • Startup performance: deferred Zod schema construction
  • Improved prompt cache hit rates (date moved out of system prompt)
  • Opus 4.6 effort callout for eligible users
v2.1.41 Feb 13, 2026
  • claude auth login/status/logout CLI subcommands
  • Windows ARM64 native binary support
  • /rename auto-generates session name from context
  • Multiple stability fixes (FIFOs, background tasks, permissions)
v2.1.39 Feb 11, 2026
  • Guard against recursive Claude Code launches
  • Fixed Agent Teams model for Bedrock/Vertex/Foundry
  • OTel speed attribute for fast mode
  • Stability fixes (rendering, session close, fatal errors)
v2.1.38 Feb 10, 2026
  • Fixed Tab key queueing slash commands
  • Security: Heredoc delimiter command smuggling fix
  • Security: Blocked writes to .claude/skills in sandbox
v2.1.37 Feb 8, 2026
  • Fixed /fast not available after enabling /extra-usage
v2.1.36 Feb 8, 2026
  • ⭐ Fast mode now available for Opus 4.6
v2.1.34 Feb 7, 2026
  • Fixed crash with agent teams setting changes
  • Security fix: sandbox-excluded commands bypass
v2.1.33 Feb 6, 2026
  • Agent teams fixes (tmux sessions, availability warnings)
  • TeammateIdle and TaskCompleted hook events
  • Agent frontmatter: memory field, Task(agent_type) syntax
  • VSCode: Remote sessions, branch/message count in picker
v2.1.32 Feb 5, 2026
  • ⭐ Opus 4.6 available
  • Agent teams preview (experimental)
  • Automatic memory recording
v2.1.30 Feb 2, 2026
  • ⭐ PDF page range support (pages: "1-5")
  • ⭐ Pre-configured OAuth for MCP servers (Slack)
  • ⭐ New /debug command for troubleshooting
  • Task tool metrics (tokens, duration, tool uses)
v2.1.29 Jan 31, 2026
  • Fixed startup performance with saved hook context
  • Improved session recovery speed for long-duration sessions
v2.1.27 Jan 29, 2026
  • --from-pr flag to resume sessions linked to GitHub PRs
  • Sessions auto-linked to PRs via gh pr create
  • Windows/VSCode stability fixes
v2.1.21 Jan 28, 2026
  • Skills/commands can specify required/recommended Claude Code version
  • New TaskCreate fields: category, checklist, parentId
  • Automatic Claude Code update checking at session start
  • Tasks appear in /context with 'Disable tasks' shortcut
v2.1.20 Jan 27, 2026
  • TaskUpdate: status='deleted' for task removal
  • PR review status indicator (colored dot + link)
v2.1.19 Jan 25, 2026
  • New: CLAUDE_CODE_ENABLE_TASKS env var (toggle task systems)
  • New: Argument shorthand $0, $1 in custom commands
  • [VSCode] Session forking/rewind for all users
  • Fixed: Multiple session resuming issues with git worktrees
v2.1.18 Jan 24, 2026
  • ⭐ Customizable keyboard shortcuts with /keybindings
  • Per-context keybindings, chord sequences
v2.1.17 Jan 23, 2026
  • Fix: Crashes on processors without AVX instruction support
v2.1.16 Jan 22, 2026
  • ⭐ New task management system with dependency tracking
  • [VSCode] Native plugin management support
  • [VSCode] OAuth users can browse/resume remote sessions
  • Fixed: OOM crashes with heavy subagent usage
v2.1.15 Jan 22, 2026
  • ⚠️ Deprecation notice for npm installations
  • UI rendering performance improved with React Compiler
  • Fixed: MCP stdio server timeout causing UI freezes
v2.1.14 Jan 21, 2026
  • History-based autocomplete in bash mode (! + Tab)
  • Search in installed plugins list
  • Git commit SHA pinning for plugins
  • Multiple fixes: context window, memory, autocomplete
v2.1.12 Jan 18, 2026
  • Bug fix: Message rendering
v2.1.11 Jan 17, 2026
  • Fix: Excessive MCP connection requests for HTTP/SSE transports
v2.1.10 Jan 17, 2026
  • New Setup hook event (--init, --maintenance flags)
  • Keyboard shortcut 'c' to copy OAuth URL
  • File suggestions show as removable attachments
v2.1.9 Jan 16, 2026
  • auto:N syntax for MCP tool search threshold
  • plansDirectory setting for custom plan locations
  • Session URL attribution to commits/PRs
v2.1.7 Jan 15, 2026
  • showTurnDuration setting
  • MCP tool search auto mode enabled by default
  • Inline agent response in task notifications
⚠️ Breaking:
  • Security fix: Wildcard permission rules now properly handle compound commands (cd && rm) requiring multiple rules
  • OAuth/API Console: console.anthropic.com → platform.claude.com (credential migration required)
v2.1.6 Jan 14, 2026
  • Search in /config command
  • Date range filtering in /stats
  • Auto-discovery of nested .claude/skills
⚠️ Breaking:
  • Security fix: Prevented shell line continuation from bypassing permission checks
v2.1.5 Jan 13, 2026
  • URL validation for remote sessions
  • Fixed: Agent tools with binary outputs now handle properly
v2.1.4 Jan 13, 2026
  • Agent tool output encoding improvements
  • Fixed: Remote sessions error handling
v2.1.3 Jan 10, 2026
  • /info command displays MCP server list
  • MCP tool discovery improvements
v2.1.2 Jan 9, 2026
  • Enhanced error messages for MCP server failures
  • Fixed: Bash tool permission edge cases
⚠️ Breaking:
  • Security fix: Command injection vulnerability in bash processing
v2.1.1 Jan 9, 2026
  • Improved agent task output formatting
  • Fixed: Permission prompt edge cases
v2.1.0 Jan 8, 2026
  • Skill hot-reload without restart
  • Vim motions support in editor
  • /plan command for structured planning
⚠️ Breaking:
  • OAuth/API Console URL changed: console.anthropic.com → platform.claude.com
v2.0.70 Jan 7, 2026
  • Agent task UI improvements
  • Fixed: Skill command parsing
⚠️ Breaking:
  • Removed # shortcut for quick memory (use /memory command instead)
v2.0.69 Jan 6, 2026
  • MCP server status indicators
  • Enhanced bash command history
v2.0.68 Jan 5, 2026
  • Agent tool output formatting
  • Fixed: Skill discovery edge cases
v2.0.67 Jan 4, 2026
  • Improved error messages for permission denials
  • Fixed: MCP tool schema validation
v2.0.66 Jan 3, 2026
  • Enhanced agent task progress indicators
  • Fixed: Bash tool timeout handling
v2.0.65 Jan 2, 2026
  • MCP server health checks
  • Fixed: Skill argument parsing
v2.0.64 Jan 1, 2026
  • Improved agent task error recovery
  • Fixed: Permission prompt display
v2.0.63 Dec 31, 2025
  • Enhanced bash autocomplete suggestions
  • Fixed: MCP tool discovery
v2.0.62 Dec 30, 2025
  • Agent tool output formatting improvements
  • Fixed: Skill hot-reload edge cases
v2.0.61 Dec 29, 2025
  • Improved error messages for MCP server failures
  • Fixed: Permission prompt edge cases
v2.0.60 Dec 28, 2025
  • Enhanced agent task progress indicators
  • Fixed: Bash tool timeout handling
v2.0.59 Dec 27, 2025
  • MCP server health checks
  • Fixed: Skill argument parsing
v2.0.58 Dec 26, 2025
  • Improved agent task error recovery
  • Fixed: Permission prompt display
v2.0.57 Dec 25, 2025
  • Enhanced bash autocomplete suggestions
  • Fixed: MCP tool discovery
v2.0.56 Dec 24, 2025
  • Agent tool output formatting improvements
  • Fixed: Skill hot-reload edge cases
v2.0.55 Dec 23, 2025
  • Improved error messages for MCP server failures
  • Fixed: Permission prompt edge cases
v2.0.54 Dec 22, 2025
  • Enhanced agent task progress indicators
  • Fixed: Bash tool timeout handling
v2.0.53 Dec 21, 2025
  • MCP server health checks
  • Fixed: Skill argument parsing
v2.0.52 Dec 20, 2025
  • Improved agent task error recovery
  • Fixed: Permission prompt display
v2.0.51 Dec 19, 2025
  • Enhanced bash autocomplete suggestions
  • Fixed: MCP tool discovery
v2.0.50 Dec 18, 2025
  • Agent tool output formatting improvements
  • Fixed: Skill hot-reload edge cases
v2.0.49 Dec 17, 2025
  • Improved error messages for MCP server failures
  • Fixed: Permission prompt edge cases
v2.0.48 Dec 16, 2025
  • Enhanced agent task progress indicators
  • Fixed: Bash tool timeout handling
v2.0.47 Dec 15, 2025
  • MCP server health checks
  • Fixed: Skill argument parsing

⚠ Recent Breaking Changes

  • Syntax Indexed argument syntax changed: $ARGUMENTS.0 → $ARGUMENTS[0] (v2.1.19)
  • Install npm installations deprecated - use native installer (v2.1.15)
  • Security Command injection fix in bash processing (v2.1.2)
  • Security Wildcard permission rules compound commands fix (v2.1.7)
  • Security Shell line continuation permission bypass fix (v2.1.6)
  • Security Heredoc delimiter command smuggling prevention (v2.1.38)
  • OAuth OAuth/API Console: console.anthropic.com → platform.claude.com (v2.1.0, v2.1.7)
  • Removed Removed # shortcut for quick memory (v2.0.70)
View All Releases on GitHub →