← All posts / Tools

Claude Code Sessions Can Now Message Each Other: Anthropic's Cross-Session Update

Anthropic shipped cross-session messaging in Claude Code v2.1.224, letting parallel coding sessions discover and text each other — no more copy-pasting context between terminals.

Claude Code Sessions Can Now Message Each Other: Anthropic's Cross-Session Update

Claude Code Sessions Can Now Message Each Other: Anthropic’s Cross-Session Update

Breaking Down Terminal Isolation

If you’ve ever worked with multiple Claude Code sessions open across different terminal windows, you know the pain: one session discovers a breaking change, and you have to manually copy-paste the context into the other session to keep it on track. Anthropic’s latest update, shipped in Claude Code v2.1.224 between August 3 and 7, 2026, eliminates that friction entirely. Cross-session messaging is here, and it quietly changes how developers orchestrate parallel AI-assisted work.

The feature lets one Claude Code session discover and send plain-text messages to another session running on the same machine — or even on a different machine via cloud relay. Claude itself decides when a message is warranted, or you can prompt it to send one. No configuration toggle is required; if your session meets the requirements, messaging is simply on.

How It Works: Two Tools, Zero Boilerplate

The entire feature is powered by two tools that Claude operates autonomously: ListAgents and SendMessage. Users never call these tools directly. Instead, Claude uses ListAgents to discover which sessions are reachable, and SendMessage to deliver a text message to a specific session by name.

The mechanics are elegant in their simplicity. Each Claude Code session with cross-session messaging enabled binds a local inbox socket. Other sessions on the same machine deliver messages to that socket. The receiving Claude reads incoming messages between tool calls during an active turn — meaning a running tool is never interrupted. When the receiving session is idle, Claude Code starts a new turn with the message as input.

What arrives is plain text only. No conversation history, no file transfers, no structured protocol payloads. A message is simply a piece of text that one Claude writes to another — a summary of a finding, a heads-up about a breaking change, or a status update on a long-running migration.

To see which sessions Claude can reach, users can run the /list-agents command (also available as /peers). The listing covers four categories: subagents running inside the current session, other local sessions on the same machine, cloud sessions (Claude Code on the web), and Remote Control sessions on other machines. The /status command shows a “Peer address” row with the session’s own inbox address.

The Trust Model: Per-Session Permission Boundaries

Security-conscious developers will immediately ask: what stops one session from ordering another to execute dangerous commands? Anthropic has built a layered permission model into the feature.

First, permission boundaries remain strictly per-session. Claude is explicitly instructed never to ask another session for an action that was denied or blocked in its own session, or that its own permission settings would block. Any such work gets routed back to the human developer instead.

Second, the receiving session’s own permission prompts and rules apply to anything a message requests. If a message asks the receiving session to run a shell command, that session’s existing permission configuration governs whether it proceeds.

Third, the receiving session checks every incoming message against its inbound controls, configured via the crossSessionInbound setting. Three outcomes are possible: Delivered (passed to Claude), Held (set aside until approved or settings change), or Refused (dropped without delivery). An admin can set inbound to “refuse” entirely, in which case the inbox socket still exists but every message is silently dropped.

Administrators can also deny the SendMessage and ListAgents tools entirely through permission deny rules. This also disables messaging to subagents and agent-team teammates, since the same SendMessage tool serves all three use cases.

Cross-Machine Messaging: Cloud Relay with Constraints

Messages between sessions on the same machine travel over local Unix domain sockets — fast, private, and never leave the host. Messages between sessions on different machines take a different path: they route through Anthropic’s servers.

This cross-machine capability works through Remote Control and cloud sessions. Starting a conversation with a session on another machine requires Claude Code v2.1.225 or later and a target that appears in the session listing. Cross-machine messaging is effectively one-way for responses — the receiving session can reply via the same mechanism, but the topology differs from same-machine bidirectional chat.

Cloud sessions (Claude Code on the web) appear in the listing only when the local session has cloud access, which requires a claude.ai login on the first-party Anthropic API and an organization policy that permits cloud sessions.

Practical Use Cases: From Worktree Coordination to Migration Watchdogs

The official documentation highlights four primary scenarios where cross-session messaging shines:

Handing over findings. When one session discovers a breaking change — say, a renamed export that another session’s code depends on — Claude can automatically summarize the finding and warn the affected session before the developer even notices the conflict.

Coordinating parallel worktrees. Developers working on the same repository across multiple git worktrees can have their sessions inform each other what landed. One session merges a PR; Claude tells the others so they don’t waste time building on stale assumptions.

Getting status from long-running work. A session running a database migration or a lengthy test suite can report back to the session you’re actively watching. No more switching terminals to check progress.

Messaging across machines. A session on your laptop can reach a session on your desktop server, or one running in Claude Code on the web.

The developer community has responded enthusiastically. Reddit threads and blog posts within days of the release described scenarios from fan-out task distribution — where one session delegates subtasks to several others — to pipeline patterns where sessions hand off work sequentially. One popular description called it a “hive mind” for terminal-based AI agents.

Loop Prevention and Rate Limiting

A natural concern with autonomous inter-agent messaging is runaway loops: two sessions endlessly pinging each other. Anthropic addressed this with multiple safeguards.

Claude Code rate-limits repeated messages per sender and drops identical repeats arriving within a short window. Additionally, each session caps accepted messages waiting for Claude to read them at 50. A message loop between two sessions therefore stops on its own — the rate limiter chokes off repetition before it spirals.

Availability and Platform Constraints

Cross-session messaging requires Claude Code v2.1.224 or later and is available on macOS and Linux, including Linux inside WSL 2. Notably absent: native Windows support. Anthropic’s documentation is explicit that Claude Code doesn’t offer cross-session messaging on Windows.

Several provider platforms also lack the feature. It’s not available on Amazon Bedrock, Claude Platform on AWS, Google Cloud’s Agent Platform, or Microsoft Foundry. The feature depends on a feature-flag evaluation that certain environment variables can disable: CLAUDE_CODE_DISABLE_NONESSENTIAL_TRAFFIC, DISABLE_TELEMETRY, DO_NOT_TRACK, or DISABLE_GROWTHBOOK — if any of these are set to values that turn off the flag evaluation, cross-session messaging stays off.

To confirm a session has the feature, developers can run /list-agents. If the command isn’t recognized, the session doesn’t have messaging enabled, and the version and environment requirements need to be checked.

What This Means for the Agent Ecosystem

Cross-session messaging represents a significant step in the evolution of AI coding tools from isolated single-session assistants toward coordinated multi-agent systems. Where tools like Cursor and GitHub Copilot have focused on within-editor AI assistance, Claude Code is building toward an architecture where multiple AI agents can collaborate on complex software engineering tasks in parallel.

The design choices are telling. By restricting messages to plain text — no structured protocols, no direct tool invocation across sessions — Anthropic keeps the attack surface small while still enabling meaningful coordination. The per-session permission model means that compromising one session doesn’t cascade into control over others. And the autonomous nature of the feature (Claude decides when to message) reduces cognitive load on developers juggling multiple terminals.

The feature also complements Claude Code’s existing multi-agent capabilities. For sessions that Claude spawns and supervises, there are dedicated agent teams. For monitoring many sessions at once, there’s agent view. For steering a session from a phone, there’s Remote Control. Cross-session messaging fills the gap for independent sessions that a developer launches and steers manually but wants to keep loosely coordinated.

As the AI development tooling landscape continues to heat up in mid-2026, features like this one — practical, well-scoped, and security-conscious — will increasingly differentiate platforms that understand real developer workflows from those that simply bolt AI onto existing editors.


This article covers the cross-session messaging feature shipped in Claude Code v2.1.224, released August 3–7, 2026. For the latest details, consult the official documentation.