Claude Code 2.1.233: GitLab MR support, memory limits, and security fixes
Claude Code v2.1.233 is out. This release adds GitLab merge request support, opt-in memory limits for Bash commands, and fixes a Windows NTLM credential-leak vector, among other improvements.
Key updates
- GitLab MR support: The
--worktreeflag and theclaude agentsview now accept GitLab merge request URLs, displaying MRs as!N. - Memory cgroup for Bash: On Linux, set
CLAUDE_CODE_TOOL_MEMORY_LIMITto enable memory limits for Bash tool commands, preventing runaway builds from stalling the session. - WebFetch cache TTL: New env var
CLAUDE_CODE_WEBFETCH_CACHE_TTL_MSlets you configure the WebFetch URL cache TTL (default unchanged: 15 minutes). - Identity forwarding: Opt-in
forward_user_identitygateway setting for Anthropic upstreams sends user identity headers for spend attribution.
Fixes and improvements
- Security fix: Fixed Windows paths with
\??\device prefix bypassing UNC path validation, closing an NTLM credential-leak vector. - Linux idle CPU spin: Fixed idle sessions keeping a CPU core at 100% when sandboxing is enabled.
- MCP v2: Fixed endless reconnection of subscriptions/listen stream against servers with timeouts (e.g., serverless).
- Skill aliases: Bundled aliases like
/checkupand/reviewno longer report "Unknown command" when shadowed by user/project skills. - Self-hosted runner: Faster session start by avoiding working tree rewrite and reducing round trips.
- Apps gateway errors: 400/413 errors from Vertex, Foundry, and AWS Claude Platform now carry upstream messages, fixing auto-compact issues.
Notable changes
- Todo tools removed on new models:
TaskCreate/Get/Update/ListandTodoWriteare no longer available on Opus 4.8, Sonnet 5, Fable 5, Mythos 5, and newer. SetCLAUDE_CODE_ENABLE_TODO_TOOLS=1to re-enable. - GitHub tip: No longer shown for repos with origin on GitLab or Bitbucket.
- Windows Bash: Fixed auto mode stopping on
cd && command(2.1.232 regression). Cygwin symlink and input redirection changes reverted for now. - Diagnostics: Unrecognized model IDs now print
[claude-code:unrecognized_model]to stderr; usemodelOverridesto silence.
For the full release notes, see the source.
📖 Read the full source: GitHub Claude-Code
👀 See Also

Claude MAX Plan Now Includes 1M Token Context Window at No Extra Cost
The Claude MAX plan has been automatically upgraded to include a 1 million token context window without additional API-based usage charges, with users reporting significantly reduced token usage and elimination of context window management overhead.

Reddit discussion argues AI competition is closed vs open source, not US vs China
A r/LocalLLaMA post argues that framing AI competition as America vs China is a false narrative used to influence investors and politicians, with the real battle being between closed and open source models. The author notes Chinese labs are open sourcing models primarily for market relevance, not magnanimity, and could go closed source as market conditions change.

Claude Code v2.1.186: MCP CLI Auth, Bash Auto-Reply, and 20+ Fixes
Claude Code v2.1.186 adds claude mcp login/logout for headless MCP auth, automatic responses to bash commands, and fixes over 20 bugs including sleep recovery, subagent permissions, and session cost display.

OpenClaw v2026.6.10: Automatic Fast Mode, Model Routing Fixes, and Trusted Tool Policies
OpenClaw v2026.6.10 adds automatic fast mode, fixes model routing for Z.ai GLM-5, improves session identity across channels, and makes trusted tool policies more reliable.