Claude Code v2.1.224 Adds Self-Hosted Runners, Cross-Session Messaging
Anthropic released Claude Code v2.1.224, a feature-packed update that introduces self-hosted environments, cross-session messaging, and a new plugin source, along with a heap of fixes for sandbox and remote-control issues.
Key Additions
- Self-Hosted Runners: The new
claude self-hosted-runnercommand turns your own machines or containers into a place where Claude Code web, mobile, and desktop sessions can run. Available on Team and Enterprise plans. - Archive Plugin Source: You can now install plugins from a zip over HTTPS without needing git or npm. Optional SHA-256 pinning is supported for security.
- Cross-Session Messaging: Claude Code sessions can now message each other across machines (macOS and Linux) with
SendMessage, and you can useListAgentsto discover available sessions. - Bedrock Region Prefix: New
ANTHROPIC_BEDROCK_REGION_PREFIXenv var lets you prefer a specific cross-region inference profile over the one derived fromAWS_REGION.
Beefed-Up Sandbox Credential Masking
The sandbox now supports more credential-masking options:
extractandonExtractNoMatchfor structured env valuesdecode: "jwt"withmaskClaimsfor JWT-aware maskingawsPairs/sigv4for AWS SigV4 re-signing
These options require network.tlsTerminate and are honored only from user, managed, or --settings settings.
Notable Fixes
- Fixed long (>200 char) project paths resolving to another project's session directory – session list, rename, fork, delete, and
/resumeno longer cross projects. - Fixed sandbox filesystem deny entries with trailing slashes (e.g.,
denyRead: "~/.aws/") being bypassed on Linux and macOS. - Sandbox violation details now appear in Bash tool results, so Claude sees which file or network access was denied and why.
- Fixed
SendMessagereporting success when writes to a teammate's inbox actually failed. - Removed the 200-subagent-per-session spawn cap – long-running sessions no longer refuse new agents (concurrency and depth limits still apply).
- Remote Control now shows compaction progress and connection failures persistently instead of silent pauses or 8-second toasts.
Who It's For
If you're running Claude Code in production, on remote servers, or in a multi-session workflow, this release adds meaningful flexibility and plugs several security holes.
📖 Read the full source: GitHub Claude-Code
👀 See Also

When Online Commenters 'Detect' My Art as AI: David Revoy's Frustration
Artist David Revoy shares screenshots of online commenters falsely accusing his hand-drawn art of being AI-generated, despite sharing timelapses. He explores the problem in his comic 'Authenticity Problem'.

Claude Cowork for Windows ARM64 Released with Compatibility Checker
Anthropic has released Claude Cowork for Windows ARM64 devices, requiring Windows 11 Pro with Hyper-V and virtualization enabled. The company provides an EXE compatibility checker tool to verify system requirements.

DeepSeek-V4 Pro and Flash: 1.6T Parameters, 1M Token Context, Hybrid Attention
DeepSeek-V4-Pro (1.6T params, 49B active) and V4-Flash (284B params, 13B active) support 1M token context. New hybrid attention (CSA + HCA) reduces single-token inference FLOPs to 27% and KV cache to 10% of DeepSeek-V3.2.
AI's Environmental Cost: 945 TWh Power, 1.3B People's Water by 2030
UN University report quantifies AI's 2030 footprint: 945 TWh electricity, water equal to Sub-Saharan Africa's needs, land twice Jakarta's area.