What
In auto mode, a classifier (an automated check) decides whether Claude may run an action without asking you first. It receives your permission settings, including the always-ask rules that normally make Claude stop and ask.
- When the gate
tengu_mutable_teapotis on, rules coming frommcpServerPolicy(the policy that controls MCP servers, the external tool servers Claude Code can connect to) are removed from the always-ask rules before they are sent to the classifier. - When the gate is off, the always-ask rules are sent as before.
- The gate is read once and stays the same for the whole session.
The gate is a remotely controlled switch. Nothing has been read about it, so which way it is set is unknown.
Why
This changes what the auto-mode classifier sees. Where the gate is on, MCP server policy ask rules are no longer part of the classifier's input. If your organisation relies on those rules, it is worth knowing they may not reach the classifier.
tengu_mutable_teapot Not enough to sayNothing here resolved what this flag was doing on this version, so nothing here should be read as on or off.
This account: no value returned · anonymous baseline: no value returned · compiled default in v2.1.282: on
These values were read against a different version of Claude Code, so treat them as the nearest reading available instead of one taken on this release.
Read once, for one account on one subscription tier, against v2.1.282. It isn't a statement about your account. What a flag value here can and cannot tell you
It is not confirmed where the rules without the MCP server policy end up being used.