Skip to content
worth noting AI agents

Claude Managed Agents now applies allowed_hosts to web tools as well

only one source so far

In Claude Managed Agents, the allowed_hosts list now also applies to web_search and web_fetch in cloud environments with restricted networking. Servers that are not allowed are omitted from search results, and the tool returns an error when fetching a page.

According to the release notes for Claude Managed Agents, the allowed_hosts list of permitted servers now also applies to the web_search and web_fetch tools in cloud environments with restricted networking. When a request targets a URL on a server that the list does not allow, web_fetch returns a url_not_allowed error to the agent. The web_search tool omits results from such servers. If the allowed_hosts list is empty, neither tool returns any pages or search results.

The allow_package_managers and allow_mcp_servers options do not add any permitted servers for these web tools. Access must be allowed through allowed_hosts; however, this also makes the server accessible from the sandbox environment. Environments with unrestricted networking and self-hosted environments do not apply these restrictions to web tools.

What changed

Why it matters

Agent workflows that need web sources now also depend on the contents of allowed_hosts in restricted cloud environments. Network settings therefore directly affect which source material an agent obtains and whether it can search or fetch pages at all.

What was added since the original report

Verified updates

  1. New verified information

    The allow_package_managers and allow_mcp_servers options do not allow hosts for web_search or web_fetch.; Adding a host to allowed_hosts makes it accessible to both the web tools and the sandbox.

    • The allow_package_managers and allow_mcp_servers options do not allow hosts for web_search or web_fetch.
    • Adding a host to allowed_hosts makes it accessible to both the web tools and the sandbox.

Two audiences, two different impacts

What this means

01

For individuals

When debugging an agent in a restricted cloud environment, a url_not_allowed error may indicate that the target server is not allowed. Missing search results may also be related to the allowed_hosts configuration.

What to do If you encounter a url_not_allowed error, check whether the target server is on the allowed_hosts list.
More practical updates →
02

For a business

Corporate management of network permissions now also covers web search and retrieval. Allowing a server for these tools also extends access from the sandbox environment, which is important when approving network permissions.

Risks and compliance
What to decide Before adding a server to allowed_hosts, check whether access from the sandbox environment is also approved.
More business impacts →
allowed_hosts Claude Managed Agents web_fetch Web Search

Check the original

Event sources

only one source so far · 1 publisher, 0 independent. We count feeds from the same owner only once.

2
Claude Platform Release Notes primary source · first detected In Claude Managed Agents, a cloud environment with limited networking now also applies its allowed_hosts to the web_search and web_fetch tools. A web_fetch call for a URL on a host… Claude Platform Release Notes primary source In Claude Managed Agents, a cloud environment with limited networking now also applies its allowed_hosts to the web_search and web_fetch tools. A web_fetch call for a URL on a host…