Dokumentationerreichbar
Anthropic, Security
code.claude.com (externe Seite)
Die Sicherheitsseite der Herstellerdokumentation. Sie beschreibt, was Claude Code im manuellen Modus von sich aus zurückhält: Es fragt, bevor es Dateien ändert oder Befehle ausführt, die das System verändern, und bevor es Pfade außerhalb seines Arbeitsverzeichnisses liest. Wie sich der Auto-Modus beim Lesen fremder Pfade verhält, stand bis September 2026 hier, seither beschreibt das die Quelle "Anthropic, Choose a permission mode: The first read outside the working directories". Dazu zwei Einschränkungen, die diese Seite offenlegt: Eine Allowlist hebt die Prüfung auf verdächtige Shell-Befehle nicht auf, und im nicht-interaktiven Lauf mit dem Schalter für einen einzelnen Auftrag entfällt die Vertrauensabfrage für ein fremdes Verzeichnis ganz.
geprüft 24.09.2026
Worauf sich diese Seite beruft, wörtlich, abgerufen am 03.09.2026:
In Manual mode, Claude Code starts with read-only permissions.
bestätigt 24.09.2026In Manual mode, Claude Code also asks you before reading paths outside this boundary with the Read, Grep, and Glob tools.
bestätigt 24.09.2026Claude Code only has the permissions you grant it.
bestätigt 24.09.2026You're responsible for reviewing proposed code and commands for safety before approval.
bestätigt 24.09.2026Trust verification is disabled when running non-interactively with the -p flag
bestätigt 24.09.2026In Manual mode, suspicious bash commands require manual approval even if previously allowlisted
bestätigt 24.09.2026In Manual mode, unmatched commands require approval by default
bestätigt 24.09.2026While these protections significantly reduce risk, no system is completely immune to all attacks.
bestätigt 24.09.2026