2.1.196
Claude Code 2.1.196 - リリースノート
2026年6月29日
Claude Code
日本語サマリー
以下は Claude Code 2.1.196 のリリースノートの要約です。
⚠️ セキュリティ修正
claude mcp list/getのセキュリティ向上: リポジトリの.claude/settings.jsonで自己承認された.mcp.jsonサーバーを起動しないように修正。信頼されていないワークスペースでは⏸ Pending approvalと表示されます。
🚀 新機能と改善
- 組織のデフォルトモデルをサポート: 管理者がコンソールで設定可能。ユーザーが未選択時、
/modelで "Org default"(または "Role default")として表示されます。 - バックグラウンドの信頼性向上: プロセスの停止、再起動、アップデートが発生しても、実行時間の長いコマンドやワークフローが維持されるよう改善(Windowsでのハンドオフも含む)。
- ストリーミングアイドルウォッチドッグをデフォルトで有効化: すべてのプロバイダーで、5分間イベントがない応答ストリームを中断・再試行します(
CLAUDE_ENABLE_STREAM_WATCHDOG=0で無効化可能)。 - UI/UXの向上: セッションの読みやすいデフォルト名の追加、チャット内の添付ファイルを Cmd/Ctrl-click で開く機能、
/code-reviewのトークン消費量を約25%削減する最適化、ターミナルUIの描画負荷軽減。 - agentsビューの操作改善: フォアグラウンドセッションからのビューを開く際の
←キーの押下回数を1回に変更。終了したセッションのステータス安定化や、停滞中のエージェントに "Needs attention" と表示。
🐛 バグ修正
- バックグラウンドジョブの復帰に関する致命的バグ修正: プローブの誤読により、バックグラウンドを復帰した際に会話が完全削除され、元のプロンプトが再実行される問題を修正(ファイルは削除されず別途保存されます)。
- 権限スキップの修正:
claude agents --dangerously-skip-permissionsが自動モードにフォールバックせず、正しくバイパスモードが適用されるよう修正。 claude agentsパネルの不具合修正: キーボードフォーカスのスタック、サブエージェントタイプの喪失、ステータスの誤表示、PRへのクリック可能なリンク表示などを修正。- Remoteセッションのクラッシュリカバリ: サーバー再起動で中断されたセッションが、次のワーカーで自動的に再開(レジューム)されるよう修正。
- MCP OAuthのスコープ修正: スコープ未指定時に全スコープを要求して GitLab 等のエンタープライズ IdP で
invalid_scopeエラーが発生する問題を修正。 - コマンド・機能の不具合修正: PowerShellでの
git diff/git grep終了時の誤失敗報告、Esc Escでのリワインドメニューが開かないリグレッション、/deep-researchの誤報告、/context(Bedrock) のトークン表示バグなどを修正。 - 音声入力の修正: ボイスモードでの高速タイピング時にスペースが欠落したり、誤って録音が開始される問題を修正。
原文(Release Notes)
What's changed
- Added support for organization default models — admins set it in the org console; it shows as "Org default" (or "Role default") in
/modelwhen you haven't picked one yourself- Added readable default names for sessions at start, making them easier to identify and message
- Added clickable file attachments in chat — Cmd/Ctrl-click reveals the file in Finder/Explorer
- Security:
claude mcp list/getno longer spawn.mcp.jsonservers that a repo self-approved via a committed.claude/settings.json; untrusted workspaces show⏸ Pending approval- Fixed waking a background job permanently deleting its conversation and re-running the original prompt when the transcript probe misread a real transcript; the file is now set aside, never deleted
- Fixed the rate-limit warning flickering off and rate-limit telemetry being over-counted when multiple parallel requests were in flight at the moment a usage limit was hit
- Fixed duplicate recap lines after a background session's turn: a schema-rejected StructuredOutput attempt no longer renders alongside its retry
- Fixed PowerShell
git diff/git grep,egrep/fgrep, and quoted search patterns containing|being reported as failures when they exit 1, matching Bash behavior- Fixed multiple
claude agentsside panel issues: keyboard focus getting stuck when opening an agent, background jobs losing their subagent types on every open, and sessions showing incorrect status while actively running- Fixed
claude agents --dangerously-skip-permissionssilently falling back to auto mode instead of showing the bypass disclaimer and applying bypass mode to spawned agents- Fixed mid-turn crash recovery for Remote sessions — sessions interrupted by a server restart now auto-resume on the next worker
- Fixed sessions moved with
/cdreappearing in the old directory's resume list after a non-graceful exit when the old path contained special characters- Fixed
claude plugin validateskipping local plugins whose source is "." and stopping after the first error class- Fixed Esc Esc at an idle prompt not opening the rewind menu (regression); use Ctrl+C or Ctrl+X Ctrl+K to stop background agents
- Fixed MCP OAuth requesting the authorization server's full
scopes_supportedcatalog when no scope is specified, causinginvalid_scopefailures on GitLab self-hosted and other enterprise IdPs- Fixed
/contextshowing 0 tokens for all tool groups on Bedrock- Fixed
/deep-researchmisreporting verifier failures as "all claims refuted" instead ofunverified- Fixed plugin dependency version pins not being honored when the marketplace was added as a local folder path backed by a git repo
- Fixed
claude agentssession status: completed rows no longer flip between "Done" and "Needs your input", stalled agents are now labeled "Needs attention", and results that mention a PR show a clickable link- Fixed voice dictation swallowing spaces and spuriously starting a recording during very fast typing when voice mode is enabled
- Improved background session reliability: long-running commands and workflows now survive the session's process being stopped, restarted, or updated — including on Windows, where background shells are handed off instead of being killed
- Improved background agents: workers killed by a daemon restart are now automatically resumed from where they left off the next time the agents view opens
- Improved
/code-reviewworkflow: merged five cleanup finders into one, cutting token usage by roughly 25%- Reduced per-frame rendering work in the terminal UI by skipping no-op subtree walks during streaming
- The streaming idle watchdog is now on by default for all providers — it aborts and retries when a response stream produces no events for 5 minutes. Set
CLAUDE_ENABLE_STREAM_WATCHDOG=0to disable.- Remote Control is now disabled when
ANTHROPIC_BASE_URLpoints at a non-Anthropic host, matching the existing behavior underCLAUDE_CODE_USE_BEDROCK/_VERTEX/_FOUNDRY- Changed opening the agents view from a foreground session to require a single
←press instead of two, matching the behavior in background sessions