# Claude Code v2.1.265 发布：新增插件目录支持与多项修复

- 来源：Claude Code：GitHub Releases（RSS）
- 作者：ashwin-ant
- 发布时间：2026-09-09 04:37
- AIHOT 分数：43
- AIHOT 链接：https://aihot.news/items/cmtt5ilqd01kirocptx5421ee
- 原文链接：https://github.com/anthropics/claude-code/releases/tag/v2.1.265

## AI 摘要

Claude Code v2.1.265 发布，新增将 --plugin-dir 指向插件文件夹的支持，并限制工具结果落盘上限为 1 GB。该版本修复了恢复前台子代理时破坏提示缓存复用、插件路径反斜杠绕过符号链接检查、VS Code 与 SDK 会话偶发需重新登录等问题，同时改进了大仓库 --worktree 启动的并行检出性能。

## 正文

What's changed

Added user.email and user.groups to the telemetry Claude Desktop and Cowork send through a Claude apps gateway, matching terminal sessions

Added support for pointing --plugin-dir at a folder of plugins: each child folder with a manifest loads, and children added or removed while running are picked up

Added a 1 GB cap on tool results saved to disk; the in-conversation preview says when a saved file was truncated

Fixed resuming a foreground-spawned subagent changing its tool list and system prompt prefix, which broke prompt-cache reuse for that agent

Fixed agent teammates and resumed subagents moving SubagentStart hook context and preloaded skills out of the prompt prefix on later turns, which broke prompt-cache reuse

Fixed resume after the previous process died while a tool was running: the last prompt is no longer rewritten, and the interrupted tool call is kept and marked interrupted

Fixed /model opusplan[1m] being rejected with "Model not found"

Fixed syntax-highlighted code in permission prompts and messages sometimes omitting a character after a Ruby ?, Erlang $, or Perl $ sigil

Fixed the fullscreen transcript jumping by one row whenever the slash-command or @-file suggestion list opened or closed

Fixed a plugin path containing a backslash bypassing the symlink containment check on macOS and Linux

Fixed plugin directories whose names begin with two dots being wrongly refused as outside the plugin root

Fixed VS Code and SDK sessions occasionally requiring re-login when a session was closed while refreshing its token

Fixed Remote Control sessions sending the end-of-turn signal before the reply's last message, which could show a reply as finished in the Claude app before its last part arrived

Fixed background (--bg) sessions occasionally being retired mid-turn when a message arrived just before the idle timeout

Fixed Claude Code's own git status and diff probes running clean filters configured by a nested repository inside the working tree

Fixed the advisor tool and its instructions being re-decided per request from the request's model; the decision is now made once and announced in the conversation when it changes

Fixed artifact publish accepting connector tool names the connector doesn't expose; the publish is now refused when none of the declared tools exist, and warned when only some don't

Fixed /add-dir <subdirectory> refusing to load a subdirectory's agents when managed settings lock only skills to plugins, and promising agents when only agents are locked

Fixed two-key keyboard shortcuts cancelling silently when the second key arrived more than a second later, as happens inside tmux; they now wait 3 seconds and show a notice when they time out

Fixed forked skills (context: fork) not streaming their kickoff prompt and, with --forward-subagent-text, their text turns as progress events in stream-json

Fixed a plugin's default component folder that the OS cannot check, such as a symlink loop, being silently skipped; it is now reported in /plugin with the error code

Fixed the Claude apps gateway's OTLP telemetry relay pausing all forwarding to a collector for 30 seconds after it rejected a few payloads as malformed or too large

Fixed /plugin Discover/Browse and claude plugin list --json --available showing no description or display name for marketplace plugins whose metadata lives only in their plugin.json

Fixed /login showing "no gateway URL is configured" when re-run in a session that signed in to a Claude apps gateway set by managed settings

Fixed /model claiming a model was "saved as your default" when the settings file couldn't be written; it now says the save failed and why

Fixed /clear from Remote Control waiting on SessionStart hooks and on open terminal dialogs before completing

Fixed the /config dialog changing height when switching between its tabs

Fixed resuming a workflow run after its container restarted; a resume whose run journal is missing now fails with a clear error instead of rerunning every agent

Fixed the claude-api skill's error-code reference: model access failures return 404 and unavailable beta headers return 400, not 403

Fixed non-interactive sessions (-p with stream-json input, Agent SDK, cloud sessions) resetting the shell working directory at each new user message; a cd now persists across turns

Fixed MCP servers configured as http that only speak the legacy HTTP+SSE transport never connecting; Claude Code now falls back to SSE as the MCP spec describes

Fixed some claude.ai connectors in cloud sessions showing as needing authentication even though they are connected in claude.ai (servers that answer an unsupported request with HTTP 401)

Fixed remote sessions keeping their sandbox container alive while a connector approval or sign-in link waits for you

Fixed resumed sessions showing long model-facing recovery instructions in "background task didn't finish" notices instead of a short status line

Windows: Fixed Read, Write and Edit refusing every file ("symlink resolution changed after permission was checked") when running inside an AppContainer or restricted-token sandbox

Improved --worktree startup on large repositories: the new worktree is now checked out in parallel (git 2.32+)

Improved /workflows agent detail: tool calls are marked running, failed or done, the subagent's task list is shown when it has one, and Enter unfolds the listed calls with their inputs and results

Improved slash commands typed mid-prompt: matches now show in a list (Tab opens it outside fullscreen) instead of a single suggestion, and a plugin skill is now found by its bare name

Improved remote MCP servers that need sign-in: Claude Code no longer registers an OAuth client with them until you actually authenticate

Improved the time to resume long sessions that read many files

Improved the error shown when an image over the size limits cannot be decoded: it now names the cause and how to fix it instead of only citing the limit

Improved the Artifact tool's read of an artifact someone else wrote: the summary now treats the page as untrusted content and flags embedded instructions rather than relaying them

Updated the .claude folder permission option to say what it actually allows: editing files in the project's .claude folder (or ~/.claude) for the session

Changed machines with forceLoginGatewayUrl in managed settings to be Claude apps gateway sessions from startup, like forceLoginMethod: "gateway"; a leftover claude.ai login or API key is not used

Changed image processing to use the runtime's built-in image support; the CLI no longer extracts a native image module to the temp directory

Changed plugin display metadata to prefer the marketplace entry over plugin.json on the Installed tab and claude plugin details, filling gaps from plugin.json

Changed Claude apps gateway sessions to export OpenTelemetry directly to a collector the gateway's managed settings name in OTEL_EXPORTER_OTLP_ENDPOINT, instead of through the gateway's relay; sessions without a named collector still use the relay

[VSCode] Added automatic archiving of sessions inactive for a set period (new "Archive inactive sessions" setting, default 14 days)

[VSCode] Fixed the sidebar chat coming back blank after Reload Window or a restart when the conversation had been open for more than 10 minutes

[VSCode] Fixed the timeline dot sitting below the text on the "Remote Control is active" message
