setup: baseline-allow the mattstack MCP server - #285
Merged
Merged
Conversation
The first tool call of a default-mode pane raises a per-tool, per-directory permission prompt that strands unattended workers in every fresh worktree. A server-level allow suppresses it everywhere; the namespace is mcp__plugin_mattstack_mattstack, not mcp__mattstack. Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
|
Warning Review limit reachedNext included review available in 15 minutes. View limit detailsLimit details: You’ve used the included review currently available. Your 81 included PR review attempts over the past 7 days set your current allowance at 1 review per hour. Your organization has reached its usage spending cap. Adjust your spending cap in the billing tab. Review configuration: ⚙️ Run configurationConfiguration used: defaults Review profile: CHILL Plan: Advanced Run ID: 📒 Files selected for processing (2)
Comment |
m4ttheweric
added a commit
that referenced
this pull request
Sep 17, 2026
…ce (#285) The first tool call of a default-mode pane raises a per-tool, per-directory permission prompt that strands unattended workers in every fresh worktree. A server-level allow suppresses it everywhere; the namespace is mcp__plugin_mattstack_mattstack, not mcp__mattstack. Co-authored-by: Claude Fable 5 <noreply@anthropic.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Closes the durable half of RT-174. Two headless worker panes stranded yesterday on the mattstack MCP server's first-tool-call permission prompt; the click-through persists only per tool, per directory, so fresh worktrees prompt forever.
One entry added to
BASE_PERMISSIONS, under the server's real namespacemcp__plugin_mattstack_mattstack(the plugin prefix is part of the name;mcp__mattstack__*does not exist). Server-level, so every tool of the server is covered, matching the existing fast-browser entry one line above. The module docblock now records the namespace rule so the next server added here does not repeat the guess.Mechanism and both verification legs are on RT-174: a scratch pane reproduced the prompt and identified the write target; a second fresh-directory pane with the allow seeded ran
gate_listwith zero prompts. Matt's live machine is already seeded by hand; this makes Install seed every future machine.Verification:
bun test lib/setup/ commands/__tests__/green including the updated verbatim-list pin (updated RED-first),tscclean, no em or en dashes in added lines.Proposing to skip the CodeRabbit wait per the trivial-PR convention: a one-entry list addition plus its test pin.
🤖 Generated with Claude Code