# Claude Code 2.1.233: GitLab MR support, user identity forwarding, todo tools removed from newer models

> Claude Code adds GitLab merge request URL support to worktree and agents views, an opt-in user identity forwarding header for apps gateway, optional memory cgroup for Bash tool on Linux, and configurable WebFetch cache TTL. Several fixes target MCP v2 stream reconnection, cloud session loss, notification hooks, and a Windows NTLM credential-leak path through the \??\ device prefix. Notably, todo/task-tracking tools are removed from Opus 4.8, Sonnet 5, and newer models (opt-in via env var).

| | |
|---|---|
| **Tool** | Claude Code |
| **Version** | 2.1.233 |
| **Kind** | release |
| **Published** | 2026-08-14 |
| **Observed** | 2026-08-21 |
| **Significance** | 4/5 |
| **Breaking** | yes |
| **Categories** | feature, fix, breaking, security, capability |

## What changed


- **feat**: GitLab merge request URL support (`!N`) in `--worktree` flag and `claude agents` view
- **feat**: Opt-in `forward_user_identity` apps gateway setting on Anthropic upstreams — sends signed-in user identity as headers for per-user spend attribution
- **feat**: Opt-in memory cgroup support for Bash tool on Linux (`CLAUDE_CODE_TOOL_MEMORY_LIMIT`) — prevents runaway builds from stalling the session
- **feat**: `CLAUDE_CODE_WEBFETCH_CACHE_TTL_MS` env var to configure WebFetch session URL cache TTL (default unchanged: 15 min)
- **fix**: Cloud sessions no longer marked as lost when environment shuts down during permission prompt
- **fix**: MCP v2 connections no longer endlessly reopen subscriptions/listen against servers that terminate long-held streams (e.g. serverless hosts)
- **fix**: Notification hooks fire for permission prompts under Claude Desktop and VS Code
- **fix**: Idle sessions on Linux no longer keep one CPU core at 100% when sandboxing is enabled
- **fix**: Bundled skill aliases (`/checkup`, `/review`) no longer report "Unknown command" when a user/project skill shadows the bundled skill
- **fix**: Skill/command argument values no longer re-expanded as template markers
- **fix**: Windows NT `\??\` device prefix no longer bypasses UNC path validation — closes an NTLM credential-leak vector
- **fix (Windows)**: Auto mode no longer repeatedly stops for manual approval on `cd <dir> && <command> > file` Bash commands (2.1.232 regression)
- **change**: Todo/task-tracking tools (TaskCreate/Get/Update/List, TodoWrite) removed from Opus 4.8, Sonnet 5, Fable 5, Mythos 5, and newer models. Set `CLAUDE_CODE_ENABLE_TODO_TOOLS=1` to restore
- **revert**: 2.1.232 Bash permission changes for Cygwin-style symlinks on Windows and input redirections (`< file`) reverted; narrower version to return
- **improvement**: `claude self-hosted-runner` session start time improved — session branch created without rewriting working tree, two server round trips no longer block agent launch
- **improvement**: Apps gateway error forwarding — 400/413 errors from Vertex, Foundry, Claude Platform on AWS carry upstream's own message
- **improvement**: `claude plugin validate` checks bare `.claude/skills` directory, reports SKILL.md files with unparseable frontmatter
- **improvement**: Screen reader mode — `/effort` selector renders as numbered list, hint/dialog text no longer clipped
- **improvement**: Print mode — `[claude-code:unrecognized_model]` line written to stderr for unrecognized model IDs; map with `modelOverrides`
- **change**: GitHub app setup tip no longer shown for repos with gitlab.com or bitbucket.org origin; enterprise marketplace tip covers non-GitHub internal git hosts


## Sources

- [changelog_md](https://github.com/anthropics/claude-code/blob/main/CHANGELOG.md) — retrieved 2026-08-21


## Community

_No curated reactions recorded. Facts and community takes are kept in separate layers
and never blended._

---
Canonical: https://changelogs.info/claude-code/2-1-233
Entity: https://changelogs.info/claude-code
Event ID: `evt_2026-08-14_claude-code_2-1-233`
Licence: event synthesis © changelogs.info, CC BY 4.0. Linked sources belong to their vendors.
