anthropics / anthropics/claude-code
extend network egress allowlist for a scheduled Claude Code cloud environment
- 主要语言
- Python
- 星标
- 145k
- 派生
- 23.1k
- PR 合并指标
- PR 指标待抓取
描述
**Account:** yajie.zhu@icloud.com (individual account)
**Environment:** `schedule_job_search` (id `env_01767zSP9SMpwGGTEoVtLnFS`)
**Routine:** "Daily job scrape - ai-job-search" (id `trig_01MbVDsvLjSNnEpzhq1QvHSc`), repo `YajieZhu018/ai-job-search`, fires daily at 10:00 UTC
## Problem
The scheduled routine scrapes job postings and then fetches each posting's full text to score it against my profile. Starting around 2026-08-22, this fetch step has been failing with `EGRESS_BLOCKED` / `CONNECT tunnel failed, response 403` for a growing list of job-board and ATS domains, confirmed on every run from 2026-08-22 through 2026-08-25. This means most newly-found postings can never be scored — they sit at `status: "new"` indefinitely — so the daily shortlist has shrunk sharply even though the raw number of postings found per day hasn't.
I could not find a self-service way to edit this environment's network policy under my individual account's settings. Requesting the domains below be added to the egress allowlist for environment `env_01767zSP9SMpwGGTEoVtLnFS`.
## Domains to allowlist
ATS platforms (used by many different employers — wildcard where possible):
```
*.myworkdayjobs.com
*.jobs.personio.com
*.jobs.personio.de
jobs.ashbyhq.com
job-boards.greenhouse.io
jobs.smartrecruiters.com
jobs.gem.com
*.teamtailor.com
```
Job aggregators / boards:
```
www.arbeitnow.com
www.arbeitsagentur.de
www.adzuna.de
www.adzuna.co.uk
careers-page.com
himalayas.app
```
Direct company career sites seen in recent runs:
```
www.google.com
cast.ai
jobsearch.harman.com
sumup.com
```
## Evidence
Example error from a run log (session `cse_013ezDnoTbMLv3pMAnQAtWnv`, 2026-08-25):
```
tool_result ERROR: {"error_type":"EGRESS_BLOCKED","domain":"jobs.ashbyhq.com","message":"Access to jobs.ashbyhq.com is blocked by the network egress proxy."}
```
Confirmed via the proxy's own status endpoint (`$HTTPS_PROXY/__agentproxy/status`) as a gateway policy rejection, not a transient or certificate issue — same pattern for every domain listed above, across 4 consecutive daily runs.
## Ask
Please add the above domains to the egress allowlist for environment `env_01767zSP9SMpwGGTEoVtLnFS`, or let me know how to self-manage this allowlist for an individual account if that's possible.
贡献指南
这个仓库没有索引到贡献指南
调研方向
No repository file, test, or entry point is identified in the report. Start by determining whether individual-account egress policy is managed in this repository or by the service; done would mean the listed domains are allowlisted for the named environment or documented self-service configuration is provided.
由索引模型根据 Issue 内容生成。
评估
- 领域
- cloud, infrastructure, networking
- Issue 类型
- 功能
- 难度
- 5/5
- 预计耗时
- 一周以上
- 活跃度
- 活跃
- 描述清晰度
- 描述清楚
- 新手友好度
- 25/100