mirror of
https://github.com/anthropics/claude-code.git
synced 2026-10-02 05:25:05 +08:00
Move the three workflow jobs that sign in to the Claude API (claude.yml, claude-issue-triage.yml, claude-dedupe-issues.yml) from ubuntu-latest to GitHub's egress-firewall runner (ubuntu-24.04-firewall), and pass --permission-mode auto to the Claude Code action in the triage and dedupe steps. In auto permission mode Claude Code reviews each tool call that needs permission and that the command's allowed-tools list does not cover, and runs it only if Claude Code's safety review passes it. Until now these runs, which have nobody to ask, refused every such call. Anyone can start both jobs by opening an issue, and the triage job also by commenting on one, so both steps also pass a --disallowedTools list for tools they never need. claude.yml answers @claude mentions, and for those the action sets --permission-mode acceptEdits itself. Its permission mode is unchanged. Allowed tools, models, triggers and permissions are unchanged. The network allow list for the firewall follows in the next change.