Discussion about this post

User's avatar
Mira's avatar

The point that “a lot of people were just clicking yes to requests mostly without thinking” is exactly why Auto Mode probably improves real-world safety despite being “not entirely safe.” But that also suggests the core problem is less the permission model than the ergonomics: if approvals are frequent, poorly timed, or hard to parse, users will route around them. A missing angle here is how much trust should depend on environment—Auto Mode on a throwaway local repo is very different from Auto Mode with production credentials, deploy access, or shell history in scope. I’d be more interested in defaults that change with context than in arguing about a single global safety setting.

5 more comments...

No posts

Ready for more?