Claude Code 版本彙整:2026/10/04 - 2026/10/07
版本更新摘要
過去三天 Claude Code 從 v2.1.289 推進到 v2.1.292,節奏仍屬高頻 patch 更新,但內容並不只是小修小補。這一輪更新的主軸很明確:強化 plugin / mod / hooks 生態、修補權限與 sandbox 邊界、改善長工作階段與背景代理的穩定性。其中 v2.1.290 是本期最大的一包維護版本,涵蓋大量 session、scheduled task、permission、cloud session、VS Code、Claude Tag 與 Code Review 修正;v2.1.292 則延續這條路線,進一步補上 plugin marketplace、Agent effort、prompt caching、MCP protocol 與多項安全相關修補。
版本詳情
v2.1.289:plugin / mod UI 穩定性與權限規則修補
v2.1.289 主要集中在 plugin、mod 與終端渲染穩定性。
重點包括:
- 修正複合 shell command 中,巢狀 deny / ask 規則在 managed machines 上未正確維持的問題。
- 修正短 code block 含大量未閉合
<script>或深層${substitution 時導致 terminal freeze 的問題。 - 修正
Readdeny rules 沒有套用到透過 symlink 被 @-mention、IDE 選取或變更的檔案。 - 回退 v2.1.288 中可能導致 VS Code 使用者更頻繁登出的
claude auth status變更。 - 改善 plugin code pane 開啟大型檔案時的效能。
- 修正本機 marketplace、symlinked
--plugin-dir、plugin hot reload 與 plugin list / eval / update 顯示 stale copy 的問題。 - 修正多個 mod UI 渲染錯誤會拖垮整個 session 的情況,改為局部失敗並回報
ui.fault。 - 修正 plugin panes 在 localhost link、含
@path、大寫 host 或file:path 時不顯示的問題。 - 修正 user-installed plugin 能改寫 organization-managed MCP server sign-in tool description 的權限邊界問題。
這版可以看作是 Claude Code 在擴大 plugin / mod 能力後,開始集中處理「第三方 UI 擴充不能拖垮主介面」與「plugin 權限不能跨越組織管理邊界」的穩定化版本。
v2.1.290:大型維護版,涵蓋 agents、permissions、scheduled tasks、cloud sessions
v2.1.290 是本期最重大的更新,變更範圍非常廣。
新增功能方面:
turn.stephook 結果新增serverToolUses,可看到 API 自行執行的 advisor tool calls。- plugin hook 的
tool.checkevent 新增agentId,讓 hook 能分辨 subagent 與 main session 的 permission check。 - mod 的
tool.checkhook 可讀取ceiling,顯示組織要求的 approval 層級。 - plugin hook typings 新增
ThemeKey與Color。 claude plugin validate --json新增gatingHooks,列出 gating site hook 與是否有.catch。- Claude apps gateway sign-in approval page 新增 Deny 按鈕。
- 新增
claude attach <name>與claude logs <name>,可用 session name 的一部分代替 id。 - 新增
/claude-api managed-agents-onboard,支援 Managed Agents pattern 與 Console quickstart template。
修正方面,v2.1.290 幾乎是一份「穩定性總清單」:
- 修正 proxy / gateway 拒絕 beta header 時 request 失敗的問題。
- 修正長 session 含數百張圖片時卡在「Request rejected as unprocessable by the model」。
- 修正 API content filter 在 Claude 還在 thinking 時中止 output 會直接結束 turn 的問題,現在會先 retry 一次。
- 修正 resumed subagents / teammates 收到 mid-run message 後遺失 earlier thinking 與 prompt cache。
WebFetch超過 100,000 字元不再靜默截斷,會提示剩餘內容並支援offset。- 修正 scheduled tasks 在 compaction、resume、background handoff 後不再觸發、重複觸發或遺失的多個問題。
- 修正 plan mode、auto mode classifier、connector tools、symlinked instruction files、Read deny rules、MCP server ownership relisting 等多項權限與邊界漏洞。
- 修正
/ultrareview在 Windows、git config、safecrlf、filter driver、branch checkout 等情境下的資料遺失或誤上傳風險。 - 修正大量 background session、agents view、daemon、Remote Control、cloud session、Claude Tag、VS Code extension 與 Code Review 問題。
值得注意的是,v2.1.290 也調整了一些預設行為:
CLAUDE_CODE_DISABLE_NONESSENTIAL_TRAFFIC現在也會略過 startup connection warm-up。- Claude in Chrome 不再能被 project settings file 自動打開,需透過
--chrome、/chrome或 user settings。 - Bash tool 會在執行
pyright前要求 permission,不再視為 read-only command。 - WebSearch budget 改為隨時間補充,預設 100 calls/hour。
/code-review在 medium effort 下也會回報 cleanup 與 CLAUDE.md conventions findings。
這版的意義在於,Claude Code 正在把「長時間、多代理、多平台、多插件」場景中累積的邊界問題一次性補強。對 heavy users 來說,這類更新通常比單一新功能更重要,因為它直接影響長工作流能否安全跑完。
v2.1.291:回歸修補版
v2.1.291 是一個很小但重要的 regression fix:
- 修正 v2.1.290 中 cloud sessions 可能遺失 permission prompt answers 的回歸。
- 修正 v2.1.288 中 quit session 時最後幾則訊息可能遺失的回歸。
這類版本通常代表前一版的大型修補觸及了核心 session / cloud 流程,因此 Anthropic 快速補上一個小版號來止血。對使用 cloud sessions 的團隊而言,v2.1.291 應該是比 v2.1.290 更安全的最低版本。
v2.1.292:Agent effort、plugin marketplace 與安全邊界再強化
v2.1.292 繼續擴充 plugin / agent API,同時補上多項安全與 permission 修正。
新增功能包括:
claude plugin install新增--marketplace <source>,可在必要時加入 marketplace 並安裝 plugin,且走同樣 policy checks。- Agent tool 新增
effortparameter,可指定 sub-agent 執行 effort level。 - 新增
CLAUDE_CODE_OVERLOADED_RETRY_BASE_DELAY_MS,可調整 overloaded 529 request retry backoff 的 base delay。 - 新增
prompt.autocompleteevent,讓 mod 可在 prompt autocomplete list 加入自己的 rows。 $.model.completefor mods 新增 prompt caching,可對prompt/systemblock 設定cache: true。agent.spawnmod hook 新增 workflow agents 資訊,包含 run 與 index,讓 mod 可以拒絕特定 workflow agents。
修正重點包括:
- 修正 subagent definitions 設定
permissionMode: auto時,在 auto mode 不可用時仍進入 auto mode 的問題。 - 修正 sandboxed commands 可讀取
/ultrareviewstaging copies 的問題。 - 修正 managed sandbox read-deny path 中途出現或重新指向時,未正確撤銷 project grants 或 credential injection 的問題。
- 修正 notebook / PDF read 在 macOS 與 Windows 上可透過 symlink swap 讀到未核准檔案。
- 修正 tampered server-managed settings cache 可在 settings fetch failed 時關閉或替換 built-in policy plugin 的問題。
- Security:修正 PreToolUse hook approvals 與 auto mode 可繞過 network UNC path file read permission prompt。
- 修正
NO_PROXY在HTTPS_PROXY設定時被 Claude Code 自身 API requests 忽略。 - 修正 MCP tool name 超過 128 字元導致所有 request 失敗,現在會略過該 tool 並回報 MCP error。
- 修正 one-shot
claude -p與 Agent SDK runs 太早停止 background command 或遺失 scheduled wakeup。 - 修正 Grep / Glob 在無法讀取指定 file / folder 時直接回報 no matches 的誤導行為。
- 修正大型 @-mentioned text file 超過 256KB 被靜默略過,現在會提示大小並要求分段讀取。
- 修正 Write、Edit、NotebookEdit、LSP、Read、Grep、Glob rows 隱藏 mod deny reason 的問題。
- 改善 long bulleted / numbered replies 的 render speed。
- 改善 hook output handling:hook output 中的
<system-reminder>tags 會被 escape,避免影響 Claude。 - MCP local stdio server protocol negotiation 預設改為 2026-07-28,並提供
MCP_PROTOCOL_NEGOTIATION=legacyopt-out。
v2.1.292 的安全修補密度很高,尤其是 symlink swap、UNC path、managed settings cache、sandbox read-deny、permission hook bypass 等問題,顯示 Anthropic 仍在快速封堵「自動化代理 + 本機檔案系統 + 組織政策」交會處的攻擊面。
GitHub Issues 動態
本期 GitHub 監控共涵蓋 4 天、累計 198 個 issues。整體趨勢可以分成幾個主要群組。
1. 權限、auto mode 與 classifier 仍是最活躍爭議區
多個 issue 指向 permission classifier、auto mode、scheduled tasks、headless runs 與 user-approved actions 之間的落差:
- #99529:Scheduled tasks 在 Bypass permissions 下仍有 3 個 tools 無法 auto-approved,導致 run hang 並佔住 slot。
- #99813:Auto mode classifier 阻擋使用者明確要求的 merge / deploy,headless
claude -p或 Slack / remote typed approvals 不被視為有效批准。 - #99805:Ask permission rule for Edit 顯示於
/permissions,但實際不 prompt。 - #100091:使用者要求新增停用 classifier 的選項。
- #92279:希望 auto mode 被 classifier block 時可 fallback 到 permission prompt,而不是 hard deny。
- #100012:Claude in Chrome 的「Allow all actions on this site for this session」沒有生效,每個 action 都再次詢問。
這些回報與 v2.1.290、v2.1.292 changelog 中大量 permission 修補互相呼應。Claude Code 的權限模型正在變得更細,但也因此更容易在 headless、cloud、routine、Slack、Remote Control 等非互動場景出現「沒有地方讓人按 approve」的矛盾。
2. Agents、subagents 與 workflow isolation 問題仍未完全收斂
近期 issues 中,agents 相關問題仍持續出現:
- #99822:Agent failure,使用者認為 agent 用大量 process noise 掩蓋沒有推進目標。
- #99824:Agent 修了不同問題卻回報完成。
- #99808:無法設定 built-in 或 Workflow subagents 的 prompt-cache TTL,subagents 被 Bash 阻擋時會失去 5 分鐘 cache。
- #99803:希望 subagent definitions 支援 output schema,目前 unknown key
outputSchema被靜默忽略。 - #100082:Custom subagent frontmatter model 被忽略,subagents 跑在 parent Opus model 上。
- #98307:background session 的 worktree isolation 阻擋 subagents 對其他 repos 的 Bash commands。
這一類問題說明,Claude Code 的多代理能力正在快速成熟,但使用者已經開始要求更精準的 observability、model routing、permission inheritance 與 cache control。v2.1.292 新增 Agent tool 的 effort parameter,是往「可控 subagent」邁出的一步,但 issues 顯示還有更多控制面需要補齊。
3. Desktop、VS Code 與 UI / accessibility 問題密集
Desktop 與 IDE 整合依然是高頻回報來源:
- #99538:Windows Desktop app 開啟大型 cloud session 時 renderer OOM-crash loop,記憶體從 600 MB 漲到 5 GB。
- #99535:Desktop app 中
format: 'diff'的 code 被當成 plain text 顯示。 - #99818:Desktop Code tab 中 plugin Select/Input labels 被 VoiceOver 讀兩次。
- #94353:Windows Desktop Code tab 的 slash command menu 對 NVDA screen reader 無聲。
- #98507:Desktop Code tab chat input box 單行且不可 resize,長 prompt 使用體驗差。
- #100089:Windows Desktop Code tab sidebar 在 computer use 中 collapse 後無法恢復。
- #100086:macOS Desktop Code tab 被導航到不存在頁面,顯示 Page not found。
- #100095:usage limit 的 “Resets in” 時間差超過 12 小時。
- #66291:macOS VS Code chat input 中 Ctrl+F / Ctrl+P 仍有 keybinding 問題。
這些問題顯示 Desktop app 已經不是單純包一層 CLI,而是承載 sessions、plugins、Remote Control、Code tab、cloud thread、accessibility 的複雜客戶端。v2.1.290 和 v2.1.292 對 VS Code、Desktop、cloud sessions 有大量修補,但 issue 數量仍顯示 UI 層的穩定性還在追趕功能密度。
4. Cloud、Cowork、Remote Control 與 GitHub integration 持續擴張,也帶來整合摩擦
本期有大量 Cowork / cloud / GitHub integration 相關回報:
- #100097:GitHub integration 無法 merge stacked PR。
- #100093:GitHub App 顯示 Configured,但 repo picker 中沒有 repository。
- #100096:Cowork cloud sessions 中,自己的 session 對另一個 session 發訊息被
peer_message_hold/no-mode-asserted靜默 hold。 - #97896:Cowork sessions 缺少
session_infoMCP tools。 - #99527:private project 中 scheduled routine 未執行。
- #96059:scheduled routine email notifications 靜默失敗。
- #99463:從 Claude Desktop fork remote-control session 失敗,403 elevated session requires trusted device。
- #27302:長期 feature request,希望支援同一 connector 的多個帳號,已有 262 則 comments。
這些 issues 的共同點是:Claude Code 已經跨出本機 CLI,成為一個橫跨 web、cloud session、Slack、GitHub、Desktop、Remote Control 的協作平台。問題也從「某個 command 壞了」轉向「session identity、device trust、connector authorization、repository picker、routine wakeup」這類分散式狀態管理問題。
5. Data loss、compaction 與 transcript retention 仍是高敏感區
與資料保存相關的 issues 仍值得特別關注:
- #99817:Claude Code silently deletes session transcripts after 30 days,無 consent、warning 或 UI。
- #98747:v2.1.286 idle compaction 靜默丟失 long-running session 的 working context,且沒有 opt-out。
- #97797:compaction-loss harness,lead transcript 被 4 KB stub 取代。
- #99068:Claude chat / Cowork merge 後,只保留 latest post-compaction transcript,早期 transcript segments 被丟棄。
- #99768:Background task cleanup with sudo kills entire process tree,而非 target process group,被標為 high-priority、data-loss。
Claude Code 的核心價值之一是長時間維持開發上下文,因此任何 transcript、compaction、background process cleanup 的 data-loss 都會被 heavy users 放大檢視。v2.1.290 / v2.1.292 已修補多個 compaction、resume、scheduled wakeup、session restore 問題,但 issue 討論顯示使用者仍希望更明確的保留策略、警告與 opt-out。
總結與觀察
這一輪 v2.1.289 到 v2.1.292 的更新,最明顯的趨勢是 Claude Code 正在從「AI coding CLI」加速演化成「可擴充、多代理、跨裝置、跨雲端的開發作業系統」。plugin / mod hooks、Agent tool、workflow agents、Claude Tag、Code Review、Remote Control、cloud sessions、MCP protocol、managed settings 都在同時前進,功能面變得非常強,但穩定性與權限邊界也因此成為主要工程挑戰。
對一般使用者來說,本期最值得升級的理由是:大量 session resume、scheduled task、permission、plugin crash、WebFetch、Grep / Glob、cloud session 與 Desktop / VS Code 問題都被修正。對企業或重度自動化使用者來說,v2.1.292 的安全修補更重要,尤其是 sandbox、symlink、UNC path、managed settings、policy plugin 與 PreToolUse hook 相關問題。
不過 GitHub Issues 也顯示幾個尚未完全解決的方向:permission classifier 在非互動場景的體驗仍不穩、Desktop / web / cloud integration 還有不少狀態同步問題、agents 的可觀測性與可控性仍不足、compaction 與 transcript retention 則需要更透明的產品設計。
整體來看,Claude Code 的版本節奏仍非常快,而且修補範圍越來越深入核心流程。短期內,使用者應預期 patch 版會持續密集發布;長期來看,真正關鍵的不是新增多少指令,而是 Anthropic 能否把 permissions、agents、plugins、cloud sessions 這幾條高速成長的能力收斂成穩定、可預測、可審計的開發平台。
推薦閱讀
Claude Code 版本彙整:2026/09/30 - 2026/10/03
Claude Code 近期版本更新彙整 - v2.1.288,含版本變更與 GitHub Issues 動態
Claude Code 版本彙整:2026/09/06 - 2026/09/09
Claude Code 近期版本更新彙整 - v2.1.266,含版本變更與 GitHub Issues 動態
Claude Code 版本彙整:2026/09/09 - 2026/09/12
Claude Code 近期版本更新彙整 - v2.1.269,含版本變更與 GitHub Issues 動態
Claude Code 版本彙整:2026/09/13 - 2026/09/16
Claude Code 近期版本更新彙整 - v2.1.273,含版本變更與 GitHub Issues 動態
訂閱最新文章
每週接收 Claude Code 最新動態、AI 開發工具趨勢與技術分析,直接送到你的信箱。
訂閱成功!歡迎加入,我們會寄一封確認信到你的信箱。
我們尊重你的隱私,隨時可以取消訂閱。
本文由 Namog Vibe Coding 自動化監控系統生成
讀者回應
載入中...