Skip to content

fix(claude): private child cwd and account-scoped data - #2

Merged
StevenACZ merged 1 commit into
mainfrom
fix/recovery-cwd-account-identity
Sep 18, 2026
Merged

StevenACZ merged 1 commit into
mainfrom
fix/recovery-cwd-account-identity

Conversation

@StevenACZ

Copy link
Copy Markdown
Owner

Recovery, codex app-server and TokenGaugeCapture run in a private empty working directory so Claude Code stops indexing protected folders (no more TCC prompts on wake). Account identity from ~/.claude.json scopes snapshots, captures and history by a SHA-256 fingerprint; the Claude card shows the active account label.

…data by account

Recovery, codex app-server and TokenGaugeCapture now run inside
~/Library/Application Support/TokenGauge/recovery (empty, 0700) instead of
the home directory, so Claude Code no longer indexes protected folders and
macOS stops attributing iCloud, Documents and Desktop prompts to TokenGauge.

Account identity is read from ~/.claude.json on every refresh; a changed
account invalidates the cached token with one Keychain re-read. Snapshots,
status-line captures, quota samples and pace samples carry a SHA-256
fingerprint of the account uuid so a foreign snapshot is never shown as live
and pace continuity stays per account. The Claude card header shows the
active account label.
@StevenACZ
StevenACZ merged commit 7b2aff8 into main Sep 18, 2026
2 checks passed
@StevenACZ
StevenACZ deleted the fix/recovery-cwd-account-identity branch September 22, 2026 23:06
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant