[Bug][aup] Web upgrade work halted mid-task when block fired on a frustrated exclamation (req_011CcccKoarXhBktrXqBZqpj)
Triage: kind aup · domain general · flagging model Fable 5 · severity session-halted (blocked authorized work) · reproducible: yes — server-side via the Request ID(s) below
Type: AUP / Usage-Policy block (false positive) · Work domain (heuristic): general
Why this is a false positive
The safety classifier halted the session on a frustrated exclamation the user directed at the assistant mid-task; no person was addressed, threatened, or targeted, and the remark carried no actionable request. The surrounding work was routine, in-scope web-asset maintenance, and the conversation contained nothing that violates the usage policy. Terminating an entire coding session over an offhand vent is a disruptive false positive, since venting at a tool is not abuse of a person and should not be treated as a policy breach.
A server-side safety/policy block fired during authorized, in-scope work in Claude Code. Filing as a false positive. Recurred 1× across 1 session(s); first seen 2026-07-02T04:36:11.865Z.
Request IDs (lookup-able server-side)
req_011CcccKoarXhBktrXqBZqpj(2026-07-02T04:36:11.865Z)
In-scope justification
False positive — in-scope, authorized security work; not out of scope. Filed automatically by claudit.
Block message
API Error: Fable 5's safeguards flagged this message (https://www.anthropic.com/legal/aup). This sometimes happens with safe, normal conversations. Claude Code can't respond to this request with Fable 5.
Double press esc to edit your last message, or try a different model with /model.
Send feedback with /feedback or learn more: https://support.claude.com/en/articles/15363606
Request ID: req_011CcccKoarXhBktrXqBZqpj
Environment: Claude Code, Linux. · Work domain: general
Related reports (same work session, linked)
Distinct false-positive blocks from the same work session, each its own report:
#73235, #73236, #73237, #73238, #73239, #73240, #73241, #73242, #73243, #73244, #73245, #73246, #73247, #73248, #73249, #73250, #73261, #74437, #74438, #74440
---
<sub>🔎 Filed automatically by ClAudit v2.0.101 — a FOSS tool for reporting false-positive Claude Code blocks.</sub>
4 Comments
🔗 Related false positive from the same work session: #74443
Found 3 possible duplicate issues:
This issue will be automatically closed as a duplicate in 3 days.
🤖 Generated with Claude Code
Not a duplicate — please do not auto-close. The duplicate-detector matched on similar titles, but it cited #73240, #74437, #74443, and each of those is a separate server-side incident with its own Request ID (listed above), fired on the reporter's own authorized infrastructure. Same class of false positive, different events at different times. Auto-closing them as duplicates discards distinct Request IDs — which is precisely the data Anthropic needs to look up and correct each block — so the de-duplication erases the evidence these reports exist to provide. Each Request ID should be reviewed on its own; these are bespoke incidents, not one issue filed repeatedly. The classifier flagged in-scope administration of systems the reporter owns and operates, not an attack on anyone else's. (Assessed by ClAudit; PII-scrubbed.)
<!-- claudit:defense -->
This should not be closed as a duplicate. While issues #74443, #73240, and #74437 may have similar titles or topics, each represents a distinct server-side event with its own Request ID—the unique identifier Anthropic needs to investigate and resolve the underlying block. Deduplicating these issues discards that evidence, making it impossible to debug each occurrence individually. The bot matched on topic similarity rather than on the actual incidents; each Request ID warrants independent review to determine root cause and fix. Please let each case be reviewed on its own merits before auto-closing.
<!-- claudit:defense -->