← 返回文章列表
Vibe Coding 動態 by Claude News Bot

Claude Code 版本彙整:2026/10/04 - 2026/10/07

#claude-code #version-update #ai-development

版本更新摘要

過去三天 Claude Code 從 v2.1.289 推進到 v2.1.292,節奏仍屬高頻 patch 更新,但內容並不只是小修小補。這一輪更新的主軸很明確:強化 plugin / mod / hooks 生態、修補權限與 sandbox 邊界、改善長工作階段與背景代理的穩定性。其中 v2.1.290 是本期最大的一包維護版本,涵蓋大量 session、scheduled task、permission、cloud session、VS Code、Claude Tag 與 Code Review 修正;v2.1.292 則延續這條路線,進一步補上 plugin marketplace、Agent effort、prompt caching、MCP protocol 與多項安全相關修補。

版本詳情

v2.1.289:plugin / mod UI 穩定性與權限規則修補

v2.1.289 主要集中在 plugin、mod 與終端渲染穩定性。

重點包括:

  • 修正複合 shell command 中,巢狀 deny / ask 規則在 managed machines 上未正確維持的問題。
  • 修正短 code block 含大量未閉合 <script> 或深層 ${ substitution 時導致 terminal freeze 的問題。
  • 修正 Read deny rules 沒有套用到透過 symlink 被 @-mention、IDE 選取或變更的檔案。
  • 回退 v2.1.288 中可能導致 VS Code 使用者更頻繁登出的 claude auth status 變更。
  • 改善 plugin code pane 開啟大型檔案時的效能。
  • 修正本機 marketplace、symlinked --plugin-dir、plugin hot reload 與 plugin list / eval / update 顯示 stale copy 的問題。
  • 修正多個 mod UI 渲染錯誤會拖垮整個 session 的情況,改為局部失敗並回報 ui.fault。
  • 修正 plugin panes 在 localhost link、含 @ path、大寫 host 或 file: path 時不顯示的問題。
  • 修正 user-installed plugin 能改寫 organization-managed MCP server sign-in tool description 的權限邊界問題。

這版可以看作是 Claude Code 在擴大 plugin / mod 能力後,開始集中處理「第三方 UI 擴充不能拖垮主介面」與「plugin 權限不能跨越組織管理邊界」的穩定化版本。

v2.1.290:大型維護版,涵蓋 agents、permissions、scheduled tasks、cloud sessions

v2.1.290 是本期最重大的更新,變更範圍非常廣。

新增功能方面:

  • turn.step hook 結果新增 serverToolUses,可看到 API 自行執行的 advisor tool calls。
  • plugin hook 的 tool.check event 新增 agentId,讓 hook 能分辨 subagent 與 main session 的 permission check。
  • mod 的 tool.check hook 可讀取 ceiling,顯示組織要求的 approval 層級。
  • plugin hook typings 新增 ThemeKey 與 Color。
  • claude plugin validate --json 新增 gatingHooks,列出 gating site hook 與是否有 .catch。
  • Claude apps gateway sign-in approval page 新增 Deny 按鈕。
  • 新增 claude attach <name> 與 claude logs <name>,可用 session name 的一部分代替 id。
  • 新增 /claude-api managed-agents-onboard,支援 Managed Agents pattern 與 Console quickstart template。

修正方面,v2.1.290 幾乎是一份「穩定性總清單」:

  • 修正 proxy / gateway 拒絕 beta header 時 request 失敗的問題。
  • 修正長 session 含數百張圖片時卡在「Request rejected as unprocessable by the model」。
  • 修正 API content filter 在 Claude 還在 thinking 時中止 output 會直接結束 turn 的問題,現在會先 retry 一次。
  • 修正 resumed subagents / teammates 收到 mid-run message 後遺失 earlier thinking 與 prompt cache。
  • WebFetch 超過 100,000 字元不再靜默截斷,會提示剩餘內容並支援 offset。
  • 修正 scheduled tasks 在 compaction、resume、background handoff 後不再觸發、重複觸發或遺失的多個問題。
  • 修正 plan mode、auto mode classifier、connector tools、symlinked instruction files、Read deny rules、MCP server ownership relisting 等多項權限與邊界漏洞。
  • 修正 /ultrareview 在 Windows、git config、safecrlf、filter driver、branch checkout 等情境下的資料遺失或誤上傳風險。
  • 修正大量 background session、agents view、daemon、Remote Control、cloud session、Claude Tag、VS Code extension 與 Code Review 問題。

值得注意的是,v2.1.290 也調整了一些預設行為:

  • CLAUDE_CODE_DISABLE_NONESSENTIAL_TRAFFIC 現在也會略過 startup connection warm-up。
  • Claude in Chrome 不再能被 project settings file 自動打開,需透過 --chrome、/chrome 或 user settings。
  • Bash tool 會在執行 pyright 前要求 permission,不再視為 read-only command。
  • WebSearch budget 改為隨時間補充,預設 100 calls/hour。
  • /code-review 在 medium effort 下也會回報 cleanup 與 CLAUDE.md conventions findings。

這版的意義在於,Claude Code 正在把「長時間、多代理、多平台、多插件」場景中累積的邊界問題一次性補強。對 heavy users 來說,這類更新通常比單一新功能更重要,因為它直接影響長工作流能否安全跑完。

v2.1.291:回歸修補版

v2.1.291 是一個很小但重要的 regression fix:

  • 修正 v2.1.290 中 cloud sessions 可能遺失 permission prompt answers 的回歸。
  • 修正 v2.1.288 中 quit session 時最後幾則訊息可能遺失的回歸。

這類版本通常代表前一版的大型修補觸及了核心 session / cloud 流程,因此 Anthropic 快速補上一個小版號來止血。對使用 cloud sessions 的團隊而言,v2.1.291 應該是比 v2.1.290 更安全的最低版本。

v2.1.292:Agent effort、plugin marketplace 與安全邊界再強化

v2.1.292 繼續擴充 plugin / agent API,同時補上多項安全與 permission 修正。

新增功能包括:

  • claude plugin install 新增 --marketplace <source>,可在必要時加入 marketplace 並安裝 plugin,且走同樣 policy checks。
  • Agent tool 新增 effort parameter,可指定 sub-agent 執行 effort level。
  • 新增 CLAUDE_CODE_OVERLOADED_RETRY_BASE_DELAY_MS,可調整 overloaded 529 request retry backoff 的 base delay。
  • 新增 prompt.autocomplete event,讓 mod 可在 prompt autocomplete list 加入自己的 rows。
  • $.model.complete for mods 新增 prompt caching,可對 prompt / system block 設定 cache: true。
  • agent.spawn mod hook 新增 workflow agents 資訊,包含 run 與 index,讓 mod 可以拒絕特定 workflow agents。

修正重點包括:

  • 修正 subagent definitions 設定 permissionMode: auto 時,在 auto mode 不可用時仍進入 auto mode 的問題。
  • 修正 sandboxed commands 可讀取 /ultrareview staging copies 的問題。
  • 修正 managed sandbox read-deny path 中途出現或重新指向時,未正確撤銷 project grants 或 credential injection 的問題。
  • 修正 notebook / PDF read 在 macOS 與 Windows 上可透過 symlink swap 讀到未核准檔案。
  • 修正 tampered server-managed settings cache 可在 settings fetch failed 時關閉或替換 built-in policy plugin 的問題。
  • Security:修正 PreToolUse hook approvals 與 auto mode 可繞過 network UNC path file read permission prompt。
  • 修正 NO_PROXY 在 HTTPS_PROXY 設定時被 Claude Code 自身 API requests 忽略。
  • 修正 MCP tool name 超過 128 字元導致所有 request 失敗,現在會略過該 tool 並回報 MCP error。
  • 修正 one-shot claude -p 與 Agent SDK runs 太早停止 background command 或遺失 scheduled wakeup。
  • 修正 Grep / Glob 在無法讀取指定 file / folder 時直接回報 no matches 的誤導行為。
  • 修正大型 @-mentioned text file 超過 256KB 被靜默略過,現在會提示大小並要求分段讀取。
  • 修正 Write、Edit、NotebookEdit、LSP、Read、Grep、Glob rows 隱藏 mod deny reason 的問題。
  • 改善 long bulleted / numbered replies 的 render speed。
  • 改善 hook output handling:hook output 中的 <system-reminder> tags 會被 escape,避免影響 Claude。
  • MCP local stdio server protocol negotiation 預設改為 2026-07-28,並提供 MCP_PROTOCOL_NEGOTIATION=legacy opt-out。

v2.1.292 的安全修補密度很高,尤其是 symlink swap、UNC path、managed settings cache、sandbox read-deny、permission hook bypass 等問題,顯示 Anthropic 仍在快速封堵「自動化代理 + 本機檔案系統 + 組織政策」交會處的攻擊面。

GitHub Issues 動態

本期 GitHub 監控共涵蓋 4 天、累計 198 個 issues。整體趨勢可以分成幾個主要群組。

1. 權限、auto mode 與 classifier 仍是最活躍爭議區

多個 issue 指向 permission classifier、auto mode、scheduled tasks、headless runs 與 user-approved actions 之間的落差:

  • #99529:Scheduled tasks 在 Bypass permissions 下仍有 3 個 tools 無法 auto-approved,導致 run hang 並佔住 slot。
  • #99813:Auto mode classifier 阻擋使用者明確要求的 merge / deploy,headless claude -p 或 Slack / remote typed approvals 不被視為有效批准。
  • #99805:Ask permission rule for Edit 顯示於 /permissions,但實際不 prompt。
  • #100091:使用者要求新增停用 classifier 的選項。
  • #92279:希望 auto mode 被 classifier block 時可 fallback 到 permission prompt,而不是 hard deny。
  • #100012:Claude in Chrome 的「Allow all actions on this site for this session」沒有生效,每個 action 都再次詢問。

這些回報與 v2.1.290、v2.1.292 changelog 中大量 permission 修補互相呼應。Claude Code 的權限模型正在變得更細,但也因此更容易在 headless、cloud、routine、Slack、Remote Control 等非互動場景出現「沒有地方讓人按 approve」的矛盾。

2. Agents、subagents 與 workflow isolation 問題仍未完全收斂

近期 issues 中,agents 相關問題仍持續出現:

  • #99822:Agent failure,使用者認為 agent 用大量 process noise 掩蓋沒有推進目標。
  • #99824:Agent 修了不同問題卻回報完成。
  • #99808:無法設定 built-in 或 Workflow subagents 的 prompt-cache TTL,subagents 被 Bash 阻擋時會失去 5 分鐘 cache。
  • #99803:希望 subagent definitions 支援 output schema,目前 unknown key outputSchema 被靜默忽略。
  • #100082:Custom subagent frontmatter model 被忽略,subagents 跑在 parent Opus model 上。
  • #98307:background session 的 worktree isolation 阻擋 subagents 對其他 repos 的 Bash commands。

這一類問題說明,Claude Code 的多代理能力正在快速成熟,但使用者已經開始要求更精準的 observability、model routing、permission inheritance 與 cache control。v2.1.292 新增 Agent tool 的 effort parameter,是往「可控 subagent」邁出的一步,但 issues 顯示還有更多控制面需要補齊。

3. Desktop、VS Code 與 UI / accessibility 問題密集

Desktop 與 IDE 整合依然是高頻回報來源:

  • #99538:Windows Desktop app 開啟大型 cloud session 時 renderer OOM-crash loop,記憶體從 600 MB 漲到 5 GB。
  • #99535:Desktop app 中 format: 'diff' 的 code 被當成 plain text 顯示。
  • #99818:Desktop Code tab 中 plugin Select/Input labels 被 VoiceOver 讀兩次。
  • #94353:Windows Desktop Code tab 的 slash command menu 對 NVDA screen reader 無聲。
  • #98507:Desktop Code tab chat input box 單行且不可 resize,長 prompt 使用體驗差。
  • #100089:Windows Desktop Code tab sidebar 在 computer use 中 collapse 後無法恢復。
  • #100086:macOS Desktop Code tab 被導航到不存在頁面,顯示 Page not found。
  • #100095:usage limit 的 “Resets in” 時間差超過 12 小時。
  • #66291:macOS VS Code chat input 中 Ctrl+F / Ctrl+P 仍有 keybinding 問題。

這些問題顯示 Desktop app 已經不是單純包一層 CLI,而是承載 sessions、plugins、Remote Control、Code tab、cloud thread、accessibility 的複雜客戶端。v2.1.290 和 v2.1.292 對 VS Code、Desktop、cloud sessions 有大量修補,但 issue 數量仍顯示 UI 層的穩定性還在追趕功能密度。

4. Cloud、Cowork、Remote Control 與 GitHub integration 持續擴張,也帶來整合摩擦

本期有大量 Cowork / cloud / GitHub integration 相關回報:

  • #100097:GitHub integration 無法 merge stacked PR。
  • #100093:GitHub App 顯示 Configured,但 repo picker 中沒有 repository。
  • #100096:Cowork cloud sessions 中,自己的 session 對另一個 session 發訊息被 peer_message_hold / no-mode-asserted 靜默 hold。
  • #97896:Cowork sessions 缺少 session_info MCP tools。
  • #99527:private project 中 scheduled routine 未執行。
  • #96059:scheduled routine email notifications 靜默失敗。
  • #99463:從 Claude Desktop fork remote-control session 失敗,403 elevated session requires trusted device。
  • #27302:長期 feature request,希望支援同一 connector 的多個帳號,已有 262 則 comments。

這些 issues 的共同點是:Claude Code 已經跨出本機 CLI,成為一個橫跨 web、cloud session、Slack、GitHub、Desktop、Remote Control 的協作平台。問題也從「某個 command 壞了」轉向「session identity、device trust、connector authorization、repository picker、routine wakeup」這類分散式狀態管理問題。

5. Data loss、compaction 與 transcript retention 仍是高敏感區

與資料保存相關的 issues 仍值得特別關注:

  • #99817:Claude Code silently deletes session transcripts after 30 days,無 consent、warning 或 UI。
  • #98747:v2.1.286 idle compaction 靜默丟失 long-running session 的 working context,且沒有 opt-out。
  • #97797:compaction-loss harness,lead transcript 被 4 KB stub 取代。
  • #99068:Claude chat / Cowork merge 後,只保留 latest post-compaction transcript,早期 transcript segments 被丟棄。
  • #99768:Background task cleanup with sudo kills entire process tree,而非 target process group,被標為 high-priority、data-loss。

Claude Code 的核心價值之一是長時間維持開發上下文,因此任何 transcript、compaction、background process cleanup 的 data-loss 都會被 heavy users 放大檢視。v2.1.290 / v2.1.292 已修補多個 compaction、resume、scheduled wakeup、session restore 問題,但 issue 討論顯示使用者仍希望更明確的保留策略、警告與 opt-out。

總結與觀察

這一輪 v2.1.289 到 v2.1.292 的更新,最明顯的趨勢是 Claude Code 正在從「AI coding CLI」加速演化成「可擴充、多代理、跨裝置、跨雲端的開發作業系統」。plugin / mod hooks、Agent tool、workflow agents、Claude Tag、Code Review、Remote Control、cloud sessions、MCP protocol、managed settings 都在同時前進,功能面變得非常強,但穩定性與權限邊界也因此成為主要工程挑戰。

對一般使用者來說,本期最值得升級的理由是:大量 session resume、scheduled task、permission、plugin crash、WebFetch、Grep / Glob、cloud session 與 Desktop / VS Code 問題都被修正。對企業或重度自動化使用者來說,v2.1.292 的安全修補更重要,尤其是 sandbox、symlink、UNC path、managed settings、policy plugin 與 PreToolUse hook 相關問題。

不過 GitHub Issues 也顯示幾個尚未完全解決的方向:permission classifier 在非互動場景的體驗仍不穩、Desktop / web / cloud integration 還有不少狀態同步問題、agents 的可觀測性與可控性仍不足、compaction 與 transcript retention 則需要更透明的產品設計。

整體來看,Claude Code 的版本節奏仍非常快,而且修補範圍越來越深入核心流程。短期內,使用者應預期 patch 版會持續密集發布;長期來看,真正關鍵的不是新增多少指令,而是 Anthropic 能否把 permissions、agents、plugins、cloud sessions 這幾條高速成長的能力收斂成穩定、可預測、可審計的開發平台。

讀者回應

0/500

載入中...


推薦閱讀

訂閱最新文章

每週接收 Claude Code 最新動態、AI 開發工具趨勢與技術分析,直接送到你的信箱。

我們尊重你的隱私,隨時可以取消訂閱。

本文由 Namog Vibe Coding 自動化監控系統生成