Anthropic: Claude Code uses regex allowlisting and default read permissions
Kat Wu · Claude Code: Anthropic's CLI Agent · May 7, 2025 · at 26:05
Kat Wu and Boris Cherny of Anthropic discuss the safety and permission boundaries built into Claude Code, Anthropic's agentic CLI coding tool.
“We're spending a lot of time building out the permission system, so Robert on our team is leading out this work. We think it's really important to give developers the control to say, hey, these are like the allowed permissions. Generally, this includes stuff like the model's always allowed to read files or read anything, and then it's up to the user to say, hey, is it about to edit files? Is it about to run tests? These are like probably the safest three actions, and then there's like a long list of other actions that Users can either allow list or deny list based on regex matches with the action.”
quote is from the automated transcript, cleaned for reading: filler sounds and stutters are removed, nothing is rephrased. names can be misheard (the analysis reads context, assessments check outside sources). how →