
What happened
Claude Code 2.1.295 gives command and HTTP hooks an onFailure: "block" option that halts execution on launch failure, timeout, or unexpected exit codes, and also fixes long-run issues like remote MCP reconnects and pagination.
Why it matters
Where hooks handle auditing, approvals, or secret checks, the default behavior on failure becomes the safety boundary itself, so teams need to classify each hook as a boundary or mere observation.
What to watch
Anthropic's 2026 Usage Policy update takes effect on November 12.
WHO IT HITSEngineering and platform teams that wire command or HTTP hooks into approval, audit, and secret-scanning pipelines now have to decide per hook whether a failed check should stop the run or just be logged, since the new option makes stopping an explicit choice. Compliance and security staff at companies using Claude for health, financial, or employment decisions may also need to build in human sign-off and AI-use disclosure.
Summaries like this, in your inbox every morning.
The Claude Code change lands alongside a broader question the article raises: when a hook that guards audits, approvals, or secret checks fails, continuing is itself a silent form of permission. The release adds state notifications showing whether Claude Code is working, waiting for input, or finished, plus a warning when a plugin tries to modify a config file it cannot read — visible signals that pair with the new stop rule.
Anthropic's policy update draws the same line in prose. It consolidates rules on deceptive activity into one section, covering fake-account amplification and the building of tools and infrastructure for influence operations. In the election area it narrows its scope to deception and vote suppression, dropping a blanket ban on personalized voting and campaign activity — a change that reduces as well as expands the boundary. For agents that assemble their own procedures, the article argues that authority settings, sandboxes, and audit logs pick up the freedom that specifications drop.
On the research side, the article notes that pairings of models with people dominate: Anthropic Cyber Mission's OSS Scanner scans with strong models and sends vulnerability explanations, reproduction examples, and possible fixes to maintainers, with an expected true-positive rate above 90% but no human review before delivery, so severity misjudgments are possible.
Pick your industry and the AI tools you use, and get news related to your work every day.
Free · 30 seconds with Google · unsubscribe anytimeWhat is AIToday? →
Ask AI anything about this article. The AI reads this article, earlier AIToday articles, and Wikipedia, and cites its sources. Q&As are published on this page for other readers too.
Stanford and Carnegie Mellon researchers tracked 1182 Character.AI users from September 2024 to August 2025, t…

A study presented at USENIX Security Symposium 2026 examined 196,682 resumes from hiring platforms and detecte…

Anthropic's October 8, 2026 update adds a ban on sustained and unnecessary abusive or cruel behavior toward Cl…

Anthropic launched OSS Scanner, which runs security audits on open source projects using its most capable mode…

The engineer ran Claude Code headless, one process per stage, isolating each task in its own git worktree; of…

A ~260-line Node.js script hashes the current working files into a fingerprint, stores it in .git/review-stamp…
