Claude Code v2.1.233 retires Todo/Task tools on Opus 4.8 / Sonnet 5 / Fable 5 / Mythos 5, patches Windows NTLM credential-leak

Anthropic

Tools official + media 3 src. ~1 min

On August 14, 2026, Anthropic shipped Claude Code v2.1.233. It adds GitLab merge-request URL support for `--worktree` and the `claude agents` view (MRs shown as `!N`), an opt-in `forward_user_identity` apps-gateway setting for per-user spend attribution, opt-in Linux Bash memory cgroup limits via `CLAUDE_CODE_TOOL_MEMORY_LIMIT`, and a `CLAUDE_CODE_WEBFETCH_CACHE_TTL_MS` env var. It also fixes an MCP v2 `subscriptions/listen` reconnect loop on serverless hosts, a Windows `\??\` UNC-path validation bypass that leaked NTLM credentials, a Linux idle-CPU-100% regression when sandboxing was on, and missing notification hooks for permission prompts in Claude Desktop and VS Code.

Why it matters

First model-tier retirement of the Todo toolset and a meaningful Windows security fix; downstream tools and skill authors relying on TodoWrite on Opus 4.8 / Sonnet 5 must explicitly re-enable it.

Importance: 3/5

security fix + breaking tool retirement (default base 2)

Sources