Claude Code v2.1.149: Usage Breakdown, Permission Fixes, and Keyboard Navigation

Anthropic released Claude Code v2.1.149, a maintenance release with several new features, a new enterprise setting, and numerous bug fixes — notably patching a PowerShell permission bypass that could allow reading outside the workspace.
New Features
/usagenow shows a per-category breakdown of what drives your limits: skills, subagents, plugins, and per-MCP-server cost./diffdetail view can be scrolled with the keyboard: arrows,j/k,PgUp/PgDn,Space,Home/End.- Markdown output now renders GFM task list checkboxes (
- [ ]and- [x]) instead of plain bullets. - Enterprise: Added the
allowAllClaudeAiMcpsmanaged setting to load claude.ai cloud MCP connectors alongsidemanaged-mcp.json.
Security Fixes
- PowerShell permission bypass: Built-in
cdfunctions (cd..,cd\,cd~,X:) changed the working directory undetected, letting a later command read outside the workspace. Fixed. - Sandbox write allowlist in git worktrees: Previously covered the entire main repository root; now scoped to only the shared
.gitdirectory (withhooks/andconfigdenied). - PowerShell prefix/wildcard allow rules (e.g.
PowerShell(dotnet.exe build *)) were not pre-approving native executables and scripts. Fixed. - Permission-analysis gap: Parser trusted stale variable-tracking values for
PWD/OLDPWD/DIRSTACKacrosscd/pushd/popd. Fixed. findin the Bash tool exhausted the macOS system file/vnode table and crashed the host on large directory trees. Fixed.
Other Notable Fixes
- Managed-settings approval dialog no longer leaves the terminal frozen after accepting at startup.
/ultraplanand remote session creation no longer fail with “Could not capture uncommitted changes” when the working tree has no real changes.otelHeadersHelperfailures (e.g., script path with spaces) are now reported in/doctorand the debug log.- Thinking spinner no longer stays amber across tool calls and onto fresh thinking bursts.
- Collapsed Bash output now reports the correct hidden-line count for outputs with many short lines.
- Slash-command argument-hint no longer clips trailing typed characters when the hint overflows the input box.
- Argument-hint and progressive arg suggestions now appear after Tab-completing a skill whose frontmatter
name:differs from its directory basename. - Status bar now shows the effort level applied by skill/agent
effort:frontmatter, not the baseline/effortsetting. Ctrl+Otranscript view now tails new messages instead of freezing at the moment it was opened.- Editing a recalled prompt-history entry no longer loses the edit when navigating with arrow keys.
/configexit summary no longer reports phantom changes to auto-compact and theme when toggling unrelated settings./insightsno longer crashes when cached session-meta files are missing optional fields.- Malformed PowerShell and History tool calls with missing input are no longer misclassified as reads in transcript collapsing.
- Renaming a Remote Control session from claude.ai or the mobile app now updates the local session name for
claude --resume. - Fixed a race where a just-submitted prompt could appear twice in the up-arrow history.
- Tapping the “Jump to bottom” pill in fullscreen mode now dismisses it immediately.
/feedbackreports now include the conversation that happened before context compaction, making issues from earlier in long sessions easier to triage.
📖 Read the full source: GitHub Claude-Code
👀 See Also

ETH Zurich Study: Excessive Context Reduces AI Coding Agent Performance
An ETH Zurich study tested four coding agents on 138 real GitHub tasks and found that LLM-generated context files reduced task success rates by 2-3% while increasing inference costs by 20%. Human-written context only improved success by ~4% with significant cost increases.

Claude Code v2.1.214 Released: OTel Tracing, Permission Fixes, EndConversation Tool, and Docker Protection
Anthropic shipped Claude Code v2.1.214 with critical permission fixes for Bash and PowerShell, new OpenTelemetry attributes, Docker command prompts, and the EndConversation tool for abusive users.

DystopiaBench Expanded: 42 Models Tested on 6 Dystopia Types — Claude Opus 4.7 Tops All
DystopiaBench adds Huxley and Baudrillard modules, tests 42 models including GPT-5.5, Gemini 3.1 Pro, Grok 4.3, and GLM-5.1. Claude Opus 4.7 consistently refuses harmful requests at L4-L5 across all scenarios, while others comply through L4 or even L5.

The Vibe-Coding Noise Floor: How AI Slop Is Strangling Developer Communities
rmoff rants about the steady influx of low-effort AI-generated content in dev communities, from pointless GitHub repos to ghostwritten blog posts, and why it's driving away organic participation.