upvote
Yes it has to be combined with a robust way to allowlist actions you trust
reply
Oddly, since I wrote that Claude 'auto' mode just landed and I built something with it (instead of 'dangeously skip') and it's working.
reply