Extracted system-prompt fragments from every version of Claude Code β archived version by version, with the new changes written up as news.
Each version lives in its own folder (Claude_Code_vX.Y.ZZZ/). The numbered .md files inside represent separate sections of the prompt (identity strings, agent prompts, tool descriptions, output styles, etc.).
Methodology note: Fragments are extracted from the
claude.exebinary. Numeric prefixes can be re-numbered between versions, so the same number does not mean the same section β match sections by title/content. Also, extraction can sometimes leak binary string-table garbage into files (MIME lists, HTML-entity tables, symbol names), so a larger file size doesn't always mean more real content.
| Version | Folder | Sections |
|---|---|---|
| v2.1.187 | Claude_Code_v2.1.187/ |
33 |
| v2.1.195 | Claude_Code_v2.1.195/ |
26 |
| v2.1.199 | Claude_Code_v2.1.199/ |
27 |
| v2.1.201 | Claude_Code_v2.1.201/ |
26 |
| v2.1.205 | Claude_Code_v2.1.205/ |
54 |
| v2.1.216 | Claude_Code_v2.1.216/ |
53 |
| v2.1.220 | Claude_Code_v2.1.220/ |
64 |
βββββββββ βββββββββ ββ ββ βββββββββ ββ ββ
βββ βββ βββ βββ βββ βββ βββ βββ βββ βββ
βββ ββ βββ βββ βββ βββ βββ βββ βββ βββ
βββ βββ βββ βββββββββββββ βββββββββββ βββββββββββββ
βββ ββββββββββββ βββββββββββββ ββββββββββ βββββββββββββ
βββ ββ βββ βββ βββ βββ βββ βββ βββ βββ
βββ βββ βββ βββ βββ βββ βββ βββ βββ βββ
βββββββββ βββ ββ βββ ββ ββββββββββ βββ ββ
ββββββββββ ββββββ βββ ββββββββββ ββββββββ
βββββββββββ βββββββββββ βββββββββββββββββββ
βββ βββ βββββββββββ ββββββ βββββββββ
βββ βββ βββββββββββ ββββββ βββββββββ
βββββββββββββββββββ ββββββββββββββββββββββββββββ
ββββββββββββββββββ βββ βββββββ βββββββ ββββββββ
βββββββ βββββββ βββββββ ββββββββ
βββββββββββββββββββββββββββββββββ
βββ βββ ββββββ βββββββββ
βββ βββ ββββββ βββββββββ
βββββββββββββββββββββββββββββββββ
βββββββ βββββββ βββββββ ββββββββ
βββ ββββββββββ ββββββ βββ βββ
βββ ββββββββββββββββββββββββ βββ
βββ βββ βββββββββββββββββββββ βββ
βββ βββ βββββββββββββββββββββββββ
ββββββββββββββββββββ ββββββ ββββββ
βββββββ βββββββ βββ ββββββ βββββ
Binary shrunk 258 MB β 253 MB (-5 MB) despite 11 new sections. 224,458 strings extracted. Major expansion in context management, autonomous loop, and tool prompts.
| Section | Size | Description |
|---|---|---|
managed_agents_ruby.txt |
102.0 KB | Managed Agents Ruby SDK full README (embedded docs) |
managed_agents_events.txt |
80.5 KB | Managed Agents Events & Steering documentation |
typescript_api_guide.txt |
32.4 KB | Claude API TypeScript SDK guide |
available_tools_guidance.txt |
13.3 KB | "Check this list before writing" β tool selection guidance |
advisor_tool_prompt.txt |
9.8 KB | Advisor tool (stronger reviewer model) full prompt |
plan_mode_reminder.txt |
7.9 KB | "REMEMBER: You can ONLY explore and plan" β plan mode enforcement |
browser_guidelines.txt |
7.4 KB | Claude-in-Chrome browser automation guidelines |
mcp_tab_group_tool.txt |
7.3 KB | MCP tab group management tool |
continue_session_prompt.txt |
6.3 KB | Session continuation β restricts tool usage during resume |
claude_md_structure.txt |
4.9 KB | CLAUDE.md workflow structure definition |
screenshot_tool_prompt.txt |
4.1 KB | Screenshot tool description for Chrome automation |
context_management.txtβ 9.8 KB β 37.0 KB (+277%). Full background job session management, multi-session context windowing, compact service architecture.web_fetch.txtβ 4.0 KB β 13.8 KB (+247%). Extended content extraction pipeline and readability processing.agents_sdk.txtβ 4.5 KB β 13.7 KB (+207%). SDK agent identity expanded with sub-agent coordination.default_agent_prompt.txtβ 4.5 KB β 13.7 KB (+202%). Richer tool-specific descriptions.autonomous_loop.txtβ 7.6 KB β 17.2 KB (+126%). Revised escalation logic, enhanced PR maintenance workflow.memory_selection.txtβ 1.3 KB β 8.0 KB (+513%). Massive expansion in memory selection rules.tool_denial_user.txtβ 1.9 KB β 8.3 KB (+343%). Extended user-facing denial messages.exit_plan_mode.txtβ 1.0 KB β 4.1 KB (+330%). Plan mode exit expanded.
git_operations.txtβ 2.1 KB β 0.3 KB (-85%). Git rules trimmed, likely consolidated.git_workflow.txtβ 1.3 KB β 0.3 KB (-76%). Workflow guidance condensed.auto_mode_process.txtβ 1.5 KB β 0.7 KB (-56%). Process flow simplified.claude_md_override.txtβ 4.0 KB β 2.5 KB (-36%). Override rules condensed.
Binary grew 247 MB β 258 MB (+11 MB). 217,961 strings extracted. One section removed, autonomous loop expanded, blast radius completely restructured.
- New model identity strings: Fable 5, Opus 4.6+, Sonnet 4.6+ β Updated model tier references.
statusline_agent.txtβ Expanded 7Γ for agent status formatting.
blast_radius.txtβ 4.4 KB β 16.1 KB (+266%). Now bundles the full system harness: System, Language, Output, Tools, Tone, Care sections in one file.autonomous_loop.txtβ 4.9 KB β 7.8 KB (+58%). New escalation rule for 3 consecutive idle ticks, detailed PR maintenance workflow via GraphQL.default_agent_prompt.txtβ 1.5 KB β 4.7 KB (+219%). Tool-specific descriptions added.explore_agent.txtβ 1.0 KB β 2.5 KB (+153%). Exploration guidelines refined.todo_list_usage.txtβ 2.0 KB β 4.2 KB (+111%). Task tracking rules expanded.
context_management.txtβ 24.2 KB β 10.0 KB (-59%). Restructured, now references background job sessions.
creating_pull_requests.txtβ Pull request creation instructions removed (merged into other sections).
4-version jump. 28 new sections extracted. Major expansion in autonomous mode, new tool categories (MCP, skills, hooks, cron, web fetch), new agent identities (Agent SDK), and new guidance sections (plan vs memory, sandbox failures, commit/PR workflow, scratchpad directory).
- Agent identity expansion:
agents_sdk,default_agent_prompt,capability_statement,interactive_agent_introβ Identity now split into four variants: CLI identity, Agent SDK identity, subagent default prompt, and interactive-mode intro. "You are highly capable" capability statement added as standalone section. autonomous_loop_tickβ New dynamic pacing section for autonomous loop. Separate from main autonomous_loop content.- Auto-mode trifecta:
auto_mode_classifier,auto_mode_classifier_intro,auto_mode_processβ Classifier now has its own standalone prompt, an intro/denial explanation, AND a classification review process section. - Git/GitHub workflow:
commit_messages_pr,creating_pull_requests,git_workflowβ Commit message format, PR creation guidelines, and general git workflow extracted as separate sections. - Plan mode expansion:
plan_agent_specialist,plan_artifact_tool,plan_mode_instructions,plan_rejected_detail,plan_tool,plan_vs_memory,todo_list_usage,custom_workflow_bodyβ Plan mode now has specialist agent prompts, artifact publishing, memory vs plan guidance, todo-list usage rules, and custom workflow body override. - Hook system:
hooks,hook_condition,stop_conditionβ Full hook event table (PostToolUse, etc.), condition evaluation prompt, and stop-condition verification prompt. - MCP & Skills:
mcp,skills,knowledge_mcp_searchβ MCP resource listing, skills delegation prompt, and MCP search strategy guidance. - Web fetch:
web_fetch,web_fetch_toolβ Web fetch tool description + IMPORTANT usage notes (HTTPS upgrade, redirect handling). - Chrome integration:
chrome_browser_important,claude_in_chromeβ Chrome browser IMPORTANT usage note + Claude in Chrome extension integration. - Sandbox:
sandbox_failureβ Sandbox failure detection and recovery guidance. - Context & memory:
injected_context_notice,memory_selection,scratchpad_directory,todo_reminderβ Context injection notice, memory selection prompt, scratchpad directory convention, and todo reminder (returned from v2.1.199). - Tools:
advisor_tool,send_message_tool,statusline_agent,tool_denial_userβ Advisor tool description, SendMessage tool, statusline agent, and user-refusal handling. team_communicationβ Agent teammate communication section (extracted fromteam_comm).
cyber_riskβ Now includes Fable 5 / Mythos 5 identity paragraph and model tier description with link to anthropic.com/news.autonomous_loopβ Clean extraction with full autonomous stewardship, PR maintenance, repeated invocation, and "spirit of the task" guidance.blast_radiusβ Full reversibility policy with destructive/hard-to-reverse/shared-state action examples.git_operationsβ Full git workflow with commit steps, parallel tool calls, and PR workflow.
identity_cli+identity_sdk+identity_agentβagents_sdk+default_agent_prompt+interactive_agent_introsimple_mode_introβinteractive_agent_intro(merged with system_harness)team_commβteam_communicationplan_mode_guardβplan_rejectedchrome_browserβchrome_browser_importantcoordinator,explore_agent,session_title,fable_unavailable,output_style_proactive,compact_service,context_management,exit_plan_mode,policy_spec,claude_md_overrideβ content matches v2.1.201, extraction format differences only.
system_harnessβ merged intointeractive_agent_introfable5_descriptionβ merged intocyber_risk(same binary chunk)tool_denial_guidanceβ split intotool_denial_guidance+tool_denial_usertodo_reminderβ returned (was dropped in v2.1.201, confirmed real in v2.1.205)plan_agentβ returned (was dropped after v2.1.187)memory_selectionβ returned (was dropped after v2.1.187)statusline_agentβ returned (was dropped after v2.1.195)auto_mode_classifier_introβ returned (was not extracted since v2.1.195)
Only verified / meaningful prompt changes are listed below. Most of the large byte increases in the v2.1.195 extraction (verification_agent 30 KB, auto_mode_classifier 28 KB, identity/fable 15 KB, todo_reminder, statusline) are extraction noise, not real prompt text, and have been filtered out.
34_autonomous_loopβ Autonomous / timer-invoked triggering. New fragment: "You're being invoked on a timer whileβ¦" Claude Code can now invoke itself on a timer, without user interaction. Lines up with scheduled cloud agents / routines and continuous agent-loop behavior.35_agent_sdk_identityβ Claude Agent SDK identity. New identity fragment: "running within the Claude Agent SDK." Signals an official SDK-embedded variant of Claude Code.- New identity strings (inside
identity_strings): in addition to the single line,- "You are Claude Code, Anthropic's official CLI for Claude, running within the Claude Agent SDK."
- "You are a Claude agent, built on Anthropic's Claude Agent SDK."
04_doing_tasks_sectionβ "Reversibility & blast radius" safety policy. This section was empty in the previous version; now it's populated: for actions that are hard to reverse or affect shared systems (git push, deleting branches, sending messages), ask the user first by default; a one-time approval doesn't count as standing approval.- New model strings (inside
claude_fable_unavailable): real model labels are now visible β "Fable 5, Opus 4.7+", "Fable 5, Opus 4.6+, Sonnet 4.6" β plus a "Use sparingly for the hardest tasks" (excessive tokens / overthinking) warning.
14_auto_mode_critiqueβ grew from a single sentence into a 4-point structured rubric: Clarity, Completeness, Conflicts, Actionability. Reviews user-written allow/deny rules far more systematically.
The entire v2.1.195 folder was searched for the distinctive sentences of these sections; none had moved to another file. Whether this is an extraction-scope difference or a genuine removal can't be confirmed from this data alone.
17_output_style_learning(Learning output style)26_plan_agent(read-only planning specialist prompt)31_memory_selection(memory selector prompt)32_github_issue_title(GitHub issue title generator)33_team_coordination(team/teammate prompt)09_agent_env_notes,30_builtin_agentsβ no longer separate files (chrome content lives on in21_chrome_browser_automation)06_tone_conciseness,25_js_prompt_assembliesβ were already empty/placeholders; not a real loss
01_cyber_risk,03_system_harness,05_executing_actions,07_git_operations,10_explore_agent,19_session_title,21_chrome_browser_automation,24_tool_prompts,28_context_management: only a few dozen bytes of difference β no meaningful content change.08_default_agent_prompt,12_coordinator_system_prompt(Β§2),02_simple_mode_intro: the v2.1.195 extraction is cut off mid-sentence; read this as an extraction truncation, not a content removal.
Extraction format changed from numbered
.mdto descriptive.txtfilenames. Section count increased to 27 (new sections extracted, some merged).
auto_critiqueβ Auto-mode rule critique logic extracted as standalone sectionblast_radiusβ "Reversibility & blast radius" safety policy (was04_doing_tasks_sectionin v2.1.195, now independent)claude_md_overrideβ CLAUDE.md / project instructions override mechanismexit_plan_modeβ Plan mode exit tool descriptionpolicy_specβ<policy_spec>Bash command prefix detection rulestool_denial_guidanceβ Tool denial recovery guidance
coordinatorβ Now includes full Β§2 tools, Β§3 workers, Β§4 workflow, Β§5 concurrency, Β§6 verification sectionsautonomous_loopβ Fuller extraction with timer invocation and repeated invocation sectionsexplore_agentβ Longer extraction with tool descriptions
01_cyber_risk_instructionβcyber_risk02_simple_mode_introβsimple_mode_intro03_system_harness_sectionβsystem_harness07_git_operationsβgit_operations10_explore_agentβexplore_agent12_coordinator_system_promptβcoordinator14_auto_mode_critiqueβauto_critique19_session_titleβsession_title20_todo_reminderβtodo_reminder21_chrome_browser_automationβchrome_browser22_identity_stringsβ split intoidentity_cli,identity_sdk,identity_agent23_claude_fable_unavailableβfable_unavailable+fable5_description24_tool_promptsβ absorbed into individual agent files28_context_managementβcontext_management29_plan_mode_guardβplan_mode_guard34_autonomous_loopβautonomous_loop35_agent_sdk_identityβ absorbed intoidentity_sdk
06_tone_conciseness,09_agent_env_notes,11_verification_agent,13_auto_mode_classifier_intro,15_output_style_proactive,16_output_style_explanatory,17_output_style_learning,18_compact_service,25_js_prompt_assemblies,26_plan_agent,27_statusline_agent,30_builtin_agents,31_memory_selection,32_github_issue_title,33_team_coordinationβ extraction scope differences or content merges
Patch-level bump (2 versions). Most sections are identical or near-identical. Key meaningful changes below.
autonomous_loopβ Major expansion. Now includes new guidance on broader scope: "following through on the spirit of the task they gave you, not just its literal scope", persistence ("Only stop if the original task is provably complete or the user said to stop"), and browser notification rules ("Keep the message under 200 characters, one line, no markdown. Lead with what they'd act on"). The "Repeated invocations" section was rewritten to bias toward broader scope exploration before quitting.
simple_mode_introβ Rewritten intro text; now starts with "You work alongside the user on software engineering tasks" instead of the previous identity-first formatplan_mode_guardβ Wording changed around what tools are allowed in plan mode; exception clause expanded
blast_radius,cyber_risk,fable5_descriptionβ Extraction format differences, core content unchanged- Remaining sections show byte-level differences consistent with extraction noise rather than content changes
todo_reminderβ Not found in v2.1.201 extraction (was HTML entity false-positive in v2.1.199)