Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
1 change: 1 addition & 0 deletions lib/setup/__tests__/steps-c.test.ts
Original file line number Diff line number Diff line change
Expand Up @@ -1480,6 +1480,7 @@ describe("apply steps C: plugins, git.identity, fast-browser, herdr, extension,
test("BASE_PERMISSIONS is exactly the seven declared entries, verbatim", () => {
expect(BASE_PERMISSIONS).toEqual([
"mcp__plugin_fast-browser_fast-browser",
"mcp__plugin_mattstack_mattstack",
"EnterWorktree",
"Bash(glab *)",
"Bash(glab mr approve *)",
Expand Down
7 changes: 6 additions & 1 deletion lib/setup/base-permissions.ts
Original file line number Diff line number Diff line change
@@ -1,5 +1,9 @@
/**
* rt's own baseline `permissions.allow` set. Lives apart from
* rt's own baseline `permissions.allow` set. Plugin MCP servers are allowed
* at server level under their REAL namespace, `mcp__plugin_<marketplace>_<plugin>`,
* never a guessed `mcp__<name>`: the first tool call of a default-mode pane
* otherwise raises a per-tool, per-directory prompt that strands unattended
* workers in every fresh worktree. Lives apart from
* `steps/claude-permissions.ts` for the same reason `base-plugins.ts` lives
* apart from `steps/plugins.ts`: a future validator can watch exactly what
* `claude.permissions` unions in without importing a step, and there is
Expand All @@ -11,6 +15,7 @@
*/
export const BASE_PERMISSIONS: string[] = [
"mcp__plugin_fast-browser_fast-browser",
"mcp__plugin_mattstack_mattstack",
"EnterWorktree",
"Bash(glab *)",
"Bash(glab mr approve *)",
Expand Down
Loading