From ce1ea28c88569c394de684017a43207d35630456 Mon Sep 17 00:00:00 2001 From: Param Harrison Date: Wed, 23 Sep 2026 19:42:20 +0300 Subject: [PATCH] Drop the permissions.allow block claude -p ignores Project allow rules do not apply under -p (untrusted folder). The factory runner now passes per-stage allow rules with --settings; the deny list and guard hook stay here. Co-Authored-By: Claude Sonnet 5 --- .claude/settings.json | 15 --------------- 1 file changed, 15 deletions(-) diff --git a/.claude/settings.json b/.claude/settings.json index 6bc0abc..c36b406 100644 --- a/.claude/settings.json +++ b/.claude/settings.json @@ -1,20 +1,5 @@ { "permissions": { - "allow": [ - "Bash(bun *)", - "Bash(git status *)", - "Bash(git diff *)", - "Bash(git add *)", - "Bash(git commit *)", - "Bash(git log *)", - "Bash(git show *)", - "Bash(git worktree list)", - "Bash(cat *)", - "Bash(ls *)", - "Bash(grep *)", - "Bash(find *)", - "Bash(mkdir -p *)" - ], "deny": [ "Bash(gh *)", "Bash(git push*)",