Fetching from the wire…
Tools2026-08-08 · source-backed
Self-hosted environments went public beta August 6 for Team/Enterprise, off by default: create a named environment in admin settings, deploy long-lived runners inside your network, and sessions started from web, mobile, desktop, claude --cloud or scheduled routines execute on your hosts. All traffic is outbound HTTPS to api.anthropic.com. Repo checkouts, build artifacts and secrets stay local; prompts, responses and tool results still leave for inference. The sizing detail that decides your bill: a runner locks to the first user who claims it, so minimum fleet size equals peak concurrent users. --drain-grace-sec defaults to 0, and --retire-at is required for signal-less kills like spot reclamation. Excluded: ZDR orgs, and no Bedrock, Google Agent Platform, Microsoft Foundry, or gateway routing.
Each link below shares sources, entities, or timing with this story.
If you're on Pro, Max, or Team, the permission prompt you've been hitting Enter on for a year goes away Friday. Anthropic confirmed auto mode becomes the default, replacing per-call approval with a classifier that inspects each tool call for irreversible, destructive, or out-o...
Three separate Anthropic changes over about two weeks point the same direction, and none of them announced themselves as a strategy. Claude Code 2.1.238 added claude self-hosted-runner --defer-shutdown-max-min, which keeps serving attached sessions on SIGTERM, parks whatever's...
Anthropic's own docs confirm prompts, model responses, tool results (which include code Claude reads) and session transcripts still travel to and are retained by Anthropic. Inference can't be routed through Amazon Bedrock, Google Cloud's Agent Platform, Microsoft Foundry, or a...
Two days from now, on August 14, auto mode becomes the default permission mode for new Pro, Max, and Team sessions (Claude Code Docs, Week 32). Not opt-in. Default. Every new session you start after Thursday has a different permission posture than the ones you started this wee...
Per the changelog, Anthropic shipped a Trusted Devices control letting Team/Enterprise admins require device verification before a member can view or steer local Claude Code sessions remotely. v2.1.195 adds CLAUDE_CODE_DISABLE_MOUSE_CLICKS, which kills fullscreen click/drag/ho...
Beta for Claude Enterprise as of August 11: server-hosted transcripts covering prompts and responses, web and MCP tool-call content, skills and artifacts content captured as transcript text, plus verified user ID and email, org ID, session and per-message IDs, timestamps (Anth...
MindPattern daily
One email a day at 7 AM. Sources and a take on every story. Unsubscribe anytime.