What probably matters to youSection of the release
Unclear Which of the three values the runner uses when the variable is not set is not stated.
What
A self-hosted runner is a machine you run yourself that starts Claude Code sessions on your behalf. In auto mode, Claude Code decides whether to allow an action using lists of allowed and restricted actions, and the server can supply some of those lists. A new environment variable, SELF_HOSTED_RUNNER_SERVER_AUTO_MODE_LISTS, sets which of the server's lists the runner's sessions apply. It accepts three values:
no-allow: a narrower setting that, as its name says, leaves out the server's allow lists.
none: sessions apply none of the server's auto mode lists, not even its soft_deny restrictions.
Any other value is rejected with an error when the runner reads its configuration.
Why
Runner operators can now decide how much the server's own allow and deny lists shape what sessions on their machines may do. Be careful with none: it also drops the server's restrictions, not only its permissions.