Keep the valid restrictions alive
Use when
Managed
Claude
Code
deployments
restrict
plugin
sources
with
strictKnownMarketplaces
or
blockedMarketplaces.
Version
2.1.277
repairs
a
failure
where
one
malformed
entry
silently
disabled
the
whole
enterprise
marketplace
policy.
Action
Require
that
repair
or
a
reviewed
equivalent.
Before
rollout,
run
claude
doctor
on
a
test
machine
with
the
candidate
managed
policy;
resolve
unexpected
stripped-entry
warnings.
Preserve
the
intended
allowlist:
an
absent
strictKnownMarketplaces
key
means
unrestricted,
whereas
[]
blocks
marketplace
additions.
Never
delete
the
policy
to
silence
validation
errors.
Add
a
malformed-sibling
case
to
existing
policy
acceptance,
rather
than
building
another
configuration
system.
Acceptance check
In
an
authorized
disposable
fixture,
use
owned
inert
catalogs
A
and
B.
First
prove
the
valid
allowlist
admits
A
and
denies
B;
separately,
prove
the
valid
blocklist
denies
B
while
A
remains
usable.
Append
{"source":"github","repo":17}
to
each
array,
one
policy
at
a
time.
Require
a
diagnostic
identifying
the
rejected
entry,
unchanged
valid-entry
enforcement,
and
no
denied-source
fetch
or
materialization.
Cover
fresh
addition
and
fetch/update
from
B
registered
before
policy.
Retain
version,
exact
configuration,
diagnostics,
request
logs,
and
filesystem
comparisons.
Remove
the
malformed
entry
and
recheck
A.
A
warning
without
enforcement
fails;
blocking
everything
also
fails
the
positive
control.
Evidence
Anthropic’s dated release explicitly names the repair. Current documentation describes managed-entry tolerance, diagnostics, and source checks before network/filesystem operations. Issue 77315 includes a maintainer-account reproduction of stale editor schema rejecting runtime-valid Git URLs: editor validation alone is not deployment evidence. A separate public reproduction records policy errors alongside successful marketplace installation, reinforcing the need to inspect effects.
Caveat
Those historical reports do not independently validate this repair. No public parser implementation, passing regression output, or post-fix canary was inspected. Entirely invalid fields and invalid JSON need separate acceptance; do not infer universal fail-closed parsing. Marketplace admission does not establish plugin safety, revoke loaded code, or govern every sideloaded customization. This fixture is our unexecuted adaptation, not an upstream test. No installation, policy change, or evaluation is authorized by this newsletter.