Ankündigung des Herstellerserreichbar
Auto Mode Default in Claude Code
Anthropics Ankündigung vom 14.08.2026, mit der der Auto-Modus zur Voreinstellung auf den Plänen Pro, Max und Team wurde. Der Beitrag begründet den Schritt mit eigenen Messungen: Freigabefragen werden zu 97 Prozent bejaht, während dieselben Menschen einem vorgelegten Plan in 39 Prozent der Fälle widersprechen. In einem Versuch mit 1.053 bezahlten Fachleuten erkannte die menschliche Prüfung 13,6 Prozent der gefährlichen Befehle, der Klassifikator 89 Prozent, und die menschliche Quote fiel im Lauf einer Sitzung von 17 auf 5 Prozent. Der Beitrag sagt selbst, wie weit seine Zahlen reichen: Die Fehlerquote gegen Angriffe ist an einem eigens dafür gebauten Angriffssatz gemessen. Über den Alltag sagt sie nichts.
geprüft 24.09.2026
Worauf sich diese Seite beruft, wörtlich, abgerufen am 03.09.2026:
Starting on August 14, new sessions on Pro, Max, and Team plans will run in auto mode.
bestätigt 24.09.2026users approve 97% of permission prompts in Claude Code.
bestätigt 24.09.2026when Claude presents a plan for approval, users reject 39% of them.
bestätigt 24.09.2026But for individual permissions requests, the rejection rate is only 3%.
bestätigt 24.09.2026In a controlled experiment with 1,053 paid professional testers, human review caught just 13.6% of dangerous commands, while auto mode caught 89%.
bestätigt 24.09.2026they blocked about 17% of dangerous commands early in a session, dropping to about 5% after 50 or more prior prompts
bestätigt 24.09.2026Head to head, auto mode blocked 800 commands that a human approved, while humans blocked only 6 that auto mode allowed.
bestätigt 24.09.2026The 7% miss rate is measured against this set and should not be taken as the miss rate on real traffic.
bestätigt 24.09.2026These attacks are synthetic and adversarial by design, built to find where the classifier fails
bestätigt 24.09.202649.5% of active CLI users have manually created a Bash allow-rule
bestätigt 24.09.2026These arbitrary rules are set aside while in auto mode, since they would let commands skip the classifier entirely.
bestätigt 24.09.2026When running with auto mode, tool results are scanned by probes for potentially malicious instructions, and auto mode checks that actions are aligned with user intent.
bestätigt 24.09.2026that are essentially equivalent in practice
bestätigt 24.09.202625% of interactive sessions start in bypass permissions mode.
bestätigt 24.09.2026and that share is growing roughly 5 percentage points every 5 weeks
bestätigt 24.09.2026
Anthropic macht den Auto-Modus in Claude Code zur Voreinstellung08 Berechtigungen und Rechtemodi