Files
chemenu/kb/concepts/workflows/Claude Code Auto Mode.md
T
torben 7f74303a00
CI / verify (push) Successful in 52s
Release / release (push) Successful in 36s
kb/concepts/ bekommt Areas: layout: fuer concept, Area-Titel aus jedem Type-Spec, Schwellen-Empfehlung im lint (schliesst #59)
Files changed:
- CHANGES.md
- README.md
- VERSION
- kb/concepts/Ambient Environment Dependency.md
- kb/concepts/Anti-Cramming Heuristic.md
- kb/concepts/Audit Trail.md
- kb/concepts/BM25.md
- kb/concepts/Bulk Operations.md
- kb/concepts/CI Integration.md
- kb/concepts/COLLECTION.md
- kb/concepts/CPPC.md
- kb/concepts/Checkpoint Audit.md
- kb/concepts/Claude Code Auto Mode.md
- kb/concepts/Command Round-Trip Integrity.md
- kb/concepts/Confidence Scoring.md
- kb/concepts/Consolidation Tiers.md
- kb/concepts/Content Quality Control.md
- kb/concepts/Context Isolation.md
- kb/concepts/Contradiction Resolution.md
- kb/concepts/Cross-platform Agent Skills.md
- kb/concepts/Crystallization.md
- kb/concepts/Delete Rather Than Anonymize.md
- kb/concepts/Denylist over Allowlist.md
- kb/concepts/Detect-Repair Asymmetry.md
- kb/concepts/Diff-Reviewable Agent Edits.md
- kb/concepts/Dual Licensing by File Plan.md
- kb/concepts/Entity Extraction.md
- kb/concepts/Episodic Memory.md
- kb/concepts/Event-Driven Automation.md
- kb/concepts/Filter on Ingest.md
- kb/concepts/Forgetting.md
- kb/concepts/Graph Traversal.md
- kb/concepts/Green Suite Blind Spot.md
- kb/concepts/Hooks.md
- kb/concepts/Hybrid Search.md
- kb/concepts/INDEX.md
- kb/concepts/Implementation Spectrum.md
- kb/concepts/Index Scaling.md
- kb/concepts/Issue Label Scheme.md
- kb/concepts/Iteration and Cost Limits.md
- kb/concepts/KB Migration.md
- kb/concepts/KB Stack Versioning.md
- kb/concepts/Knowledge Compounding.md
- kb/concepts/Knowledge Graph.md
- kb/concepts/LLM Wiki Pattern.md
- kb/concepts/Lint Workflow.md
- kb/concepts/MCP-Leseserver.md
- kb/concepts/Mass-Update Gate.md
- kb/concepts/Memory Lifecycle.md
- kb/concepts/Mesh Sync.md
- kb/concepts/Modbus.md
- kb/concepts/Multi-Agent Collaboration.md
- kb/concepts/Naming Convention Conflict.md
- kb/concepts/OKF Compatibility.md
- kb/concepts/Optional Instance Context File.md
- kb/concepts/Personalization Plane.md
- kb/concepts/Privacy and Governance.md
- kb/concepts/Procedural Memory.md
- kb/concepts/Publish-Remote Gate.md
- kb/concepts/Quality Scoring.md
- kb/concepts/Quality and Self-Correction.md
- kb/concepts/RAG.md
- kb/concepts/Reciprocal Rank Fusion.md
- kb/concepts/SSD TRIM.md
- kb/concepts/Scale Ceiling.md
- kb/concepts/Self-Healing.md
- kb/concepts/Semantic Lint Automation.md
- kb/concepts/Semantic Memory.md
- kb/concepts/Session Orientation.md
- kb/concepts/Shared vs Private.md
- kb/concepts/Split Merge Reclassify.md
- kb/concepts/Split Threshold.md
- kb/concepts/Structural Enforcement over Documented Rule.md
- kb/concepts/Stub Threshold.md
- kb/concepts/Supersession.md
- kb/concepts/Three-Layer Architecture.md
- kb/concepts/Token Economics.md
- kb/concepts/Typed Relationships.md
- kb/concepts/User Management.md
- kb/concepts/Vector Search.md
- kb/concepts/Work Coordination.md
- kb/concepts/Workflow Extraction.md
- kb/concepts/Workflow Orchestration.md
- kb/concepts/Working Memory.md
- kb/concepts/Write-Once Frontmatter Fields.md
- kb/concepts/architectures/Consolidation Tiers.md
- kb/concepts/architectures/Context Isolation.md
- kb/concepts/architectures/Cross-platform Agent Skills.md
- kb/concepts/architectures/Episodic Memory.md
- kb/concepts/architectures/Hybrid Search.md
- kb/concepts/architectures/Implementation Spectrum.md
- kb/concepts/architectures/Knowledge Graph.md
- kb/concepts/architectures/LLM Wiki Pattern.md
- kb/concepts/architectures/MCP-Leseserver.md
- kb/concepts/architectures/Memory Lifecycle.md
- kb/concepts/architectures/OKF Compatibility.md
- kb/concepts/architectures/Optional Instance Context File.md
- kb/concepts/architectures/Personalization Plane.md
- kb/concepts/architectures/Procedural Memory.md
- kb/concepts/architectures/RAG.md
- kb/concepts/architectures/Scale Ceiling.md
- kb/concepts/architectures/Semantic Memory.md
- kb/concepts/architectures/Three-Layer Architecture.md
- kb/concepts/architectures/Token Economics.md
- kb/concepts/architectures/Working Memory.md
- kb/concepts/decisions/Delete Rather Than Anonymize.md
- kb/concepts/decisions/Denylist over Allowlist.md
- kb/concepts/decisions/Diff-Reviewable Agent Edits.md
- kb/concepts/decisions/Dual Licensing by File Plan.md
- kb/concepts/decisions/Issue Label Scheme.md
- kb/concepts/decisions/KB Stack Versioning.md
- kb/concepts/decisions/Structural Enforcement over Documented Rule.md
- kb/concepts/patterns/Audit Trail.md
- kb/concepts/patterns/BM25.md
- kb/concepts/patterns/Command Round-Trip Integrity.md
- kb/concepts/patterns/Confidence Scoring.md
- kb/concepts/patterns/Contradiction Resolution.md
- kb/concepts/patterns/Entity Extraction.md
- kb/concepts/patterns/Filter on Ingest.md
- kb/concepts/patterns/Forgetting.md
- kb/concepts/patterns/Graph Traversal.md
- kb/concepts/patterns/Mesh Sync.md
- kb/concepts/patterns/Quality Scoring.md
- kb/concepts/patterns/Reciprocal Rank Fusion.md
- kb/concepts/patterns/Self-Healing.md
- kb/concepts/patterns/Shared vs Private.md
- kb/concepts/patterns/Typed Relationships.md
- kb/concepts/patterns/Vector Search.md
- kb/concepts/patterns/Work Coordination.md
- kb/concepts/problems/Ambient Environment Dependency.md
- kb/concepts/problems/Detect-Repair Asymmetry.md
- kb/concepts/problems/Green Suite Blind Spot.md
- kb/concepts/problems/Naming Convention Conflict.md
- kb/concepts/problems/Write-Once Frontmatter Fields.md
- kb/concepts/protocols/CPPC.md
- kb/concepts/protocols/Modbus.md
- kb/concepts/protocols/SSD TRIM.md
- kb/concepts/workflows/Anti-Cramming Heuristic.md
- kb/concepts/workflows/Bulk Operations.md
- kb/concepts/workflows/CI Integration.md
- kb/concepts/workflows/Checkpoint Audit.md
- kb/concepts/workflows/Claude Code Auto Mode.md
- kb/concepts/workflows/Content Quality Control.md
- kb/concepts/workflows/Crystallization.md
- kb/concepts/workflows/Event-Driven Automation.md
- kb/concepts/workflows/Hooks.md
- kb/concepts/workflows/Index Scaling.md
- kb/concepts/workflows/Iteration and Cost Limits.md
- kb/concepts/workflows/KB Migration.md
- kb/concepts/workflows/Knowledge Compounding.md
- kb/concepts/workflows/Lint Workflow.md
- kb/concepts/workflows/Mass-Update Gate.md
- kb/concepts/workflows/Multi-Agent Collaboration.md
- kb/concepts/workflows/Privacy and Governance.md
- kb/concepts/workflows/Publish-Remote Gate.md
- kb/concepts/workflows/Quality and Self-Correction.md
- kb/concepts/workflows/Semantic Lint Automation.md
- kb/concepts/workflows/Session Orientation.md
- kb/concepts/workflows/Split Merge Reclassify.md
- kb/concepts/workflows/Split Threshold.md
- kb/concepts/workflows/Stub Threshold.md
- kb/concepts/workflows/Supersession.md
- kb/concepts/workflows/User Management.md
- kb/concepts/workflows/Workflow Extraction.md
- kb/concepts/workflows/Workflow Orchestration.md
- kb/index.md
- kb/log.md
- tools/CONTRACT.md
- tools/README.md
- tools/chemenu/catalog.py
- tools/chemenu/commands/index_build.py
- tools/chemenu/lint_core.py
- tools/chemenu/tests/conftest.py
- tools/chemenu/tests/test_cite_cmd.py
- tools/chemenu/tests/test_git_publish.py
- tools/chemenu/tests/test_index_build.py
- tools/chemenu/tests/test_lint.py
- tools/chemenu/tests/test_new_page.py
- tools/chemenu/tests/test_provenance.py
- tools/chemenu/tests/test_type_resolver.py
- tools/chemenu/tests/test_xref.py
- types/concept.md
- types/type-spec.md
2026-09-08 10:07:46 +02:00

6.1 KiB

type, concept_type, tags, created, modified, related, sources, confidence, confidence_base, provenance, summary
type concept_type tags created modified related sources confidence confidence_base provenance summary
types/concept.md workflow
claude-code
permissions
auto-mode
harness
classifier
2026-08-31 2026-08-31
mechanism
Claude Code
contradicts
Diff-Reviewable Agent Edits
Source - Conversation - Auto Mode and Tool Choice Session 2026-08-31
0.50 0.50 sourced auto-Berechtigungsmodus von Claude Code: ein Klassifikator genehmigt Aktionen vor der Ausfuehrung statt nachzufragen; die Beschreibung stammt weit ueberwiegend aus zweiter Hand ueber einen Doku-Subagenten

Claude Code Auto Mode

Typ: Workflow

Definition

auto ist ein Berechtigungsmodus von Claude Code, kein Performance-Modus. Statt vor jeder Aktion eine Freigabe zu erfragen, lässt der Modus eine Aktion vorab bewerten und genehmigt sie, wenn sie in den erlaubten Bereich fällt. Er ist einer von sechs Werten für --permission-mode, neben acceptEdits, bypassPermissions, manual, dontAsk und plan1 .

Belegschichten

Diese Seite ist ungewöhnlich uneinheitlich belegt, und das ist keine Nachlässigkeit, sondern der Zustand der Quelle. Wer die Seite benutzt, muss die Schicht mitlesen:

Aussage Schicht
Die sechs --permission-mode-Werte, die Version, der Inhalt von ~/.claude/settings.json, der dangerouslyDisableSandbox-Parameter am Bash-Werkzeug Lokal in der Sitzung bezeugt
Klassifikator, Blocklist, Verfügbarkeit ab Version und Plan, Schaltwege, permissions.defaultMode-Falle, Konfigurationsschlüssel Aus zweiter Hand: ein claude-code-guide-Subagent hat die Claude-Code-Dokumentation durchsucht und berichtet. Niemand in der Sitzung hat die Dokumentation selbst gelesen
Ein Zusammenhang zwischen Bash-Präferenz und Sandbox Unbelegt. Als Spekulation geäußert und vom Subagenten nicht bestätigt - steht hier nur, damit die Vermutung nicht ein zweites Mal für einen Befund gehalten wird

confidence_base ist deshalb auf 0.50 gesetzt: eine einzelne, junge Quelle, deren substanzieller Teil über einen Vermittler kam.

Kernpunkte

  • Lokal belegt. Auf Claude Code 2.1.251 nennt claude --help sechs Werte für --permission-mode; auto ist einer davon1 . Das Bash-Werkzeug der Sitzung führt einen dangerouslyDisableSandbox-Parameter, ist also standardmäßig sandboxed, und das Scratchpad-Verzeichnis wird als ohne Berechtigungsabfragen nutzbar beschrieben1 .
  • Arbeitsweise, aus zweiter Hand. Dem Subagentenbericht zufolge lässt auto ein separates Klassifikator-Modell (voreingestellt Claude Sonnet 5) Aktionen vor der Ausführung bewerten, statt nachzufragen. Es genehmigt Leseoperationen und Dateiänderungen innerhalb des Arbeitsverzeichnisses selbsttätig, prüft alles übrige gegen eine feste Blocklist (Löschungen, Force-Pushes, Offenlegung von Zugangsdaten) und fällt bei Unsicherheit auf eine Rückfrage zurück - außer in nicht-interaktiven -p-Läufen, wo es diese Rückfrage nicht geben kann.
  • Verfügbarkeit, aus zweiter Hand. Eingebaute Voreinstellung auf den Plänen Pro, Max und Team ab Version 2.1.228 (macOS/Linux/WSL) beziehungsweise 2.1.233 (Windows)1 .
  • Umschalten. Shift+Tab wechselt die Modi in einer laufenden Sitzung; claude --permission-mode auto beim Start; permissions.defaultMode in ~/.claude/settings.json für eine Maschine, oder Managed Settings für eine Organisation. Einen /auto-Slash-Command gibt es nicht - die gegenteilige Behauptung fiel in derselben Sitzung und wurde dort zurückgenommen.
  • Dokumentierte Falle. Ein "auto" als permissions.defaultMode in einer Projekt-Datei .claude/settings.json oder .claude/settings.local.json wird ignoriert. Nur die globale Datei und Managed Settings nehmen den Wert an1 .
  • Konfigurationsfläche rund um den Modus: autoMode.environment, permissions.allow/permissions.deny, disableAutoMode1 .
  • Die Bash-Präferenz ist nicht dokumentiert. Der Modus injiziert eine Anweisung in die Sitzung, die das Bash-Werkzeug den dedizierten Read/Edit/Write-Werkzeugen vorzieht. Weder ihr Text noch eine Begründung stehen in der öffentlichen Dokumentation, und es wurde keine Einstellung gefunden, die sie einzeln abschaltet, ohne auto ganz zu verlassen. Was in diesem Wiki daraus folgt, steht auf Diff-Reviewable Agent Edits.

Wann zu verwenden

Als Standardmodus für Sitzungen an diesem Repository. Die Empfehlung der Sitzung war, in auto zu bleiben: der Ausstieg kostet Berechtigungsabfragen auf allem, während das einzige konkret benannte Problem - die Bash-Präferenz - durch eine stehende Arbeitsregel gelöst ist. In dieser Instanz enthält ~/.claude/settings.json ohnehin nur theme, inputNeededNotifEnabled und agentPushNotifEnabled und kein permissions.defaultMode1 ; auto ist hier also die eingebaute Voreinstellung, keine getroffene Wahl.

Wann NICHT zu verwenden

  • Wenn Berechtigungsabfragen ausdrücklich auf Shell-Kommandos statt auf Edits liegen sollen. Der dafür genannte Gegenwert ist permissions.defaultMode: "acceptEdits" in der globalen Settings-Datei - praktisch die Umkehrung dieses Modus.
  • Als Erklärung dafür, warum die Bash-Präferenz existiert. Diese Seite kennt den Grund nicht, und eine plausible Ableitung wäre an dieser Stelle eine erfundene Tatsache.

Verwandte Concepts

Beziehungen

Siehe auch

Fußnoten

Beziehungen