Signals

2026-05-27 / Claude Code

Three de-facto security advisories without a separate advisory surface

Edited by Michael Ruescher

What this changes for operators

  • Windows operators on 2.1.148 or earlier with PowerShell allowlists, git worktree workflows, or enterprise login pinning should upgrade to 2.1.149+ before deploying new agents.
  • Operators monitoring for security-advisory-shape events (RSS, CVE feeds) need to recognize that Anthropic ships these as ordinary changelog entries; the changelog is the de-facto advisory surface.
  • Source-contract owners should decide whether to amend sources/claude-code.yml to add an explicit security advisory surface or to document the changelog as carrying that role.

Signal metadata

Source findings

Featured in

Run: 2026-05-27-weekly-digest-2026-05-13_2026-05-27-frontier-v0

Schema: bitter.frontier_signals.v0 / ID: 2026-05-27-claude-code-powershell-and-worktree-sandbox-fixes

Research evidence and publication history are open in the repository.