Skip to content

Commit 5a3ade7

Browse files
authored
chore: add security notice for --dangerously-skip-permissions in Claude module (#116)
Let's be upfront about how our module works so operators/template authors can evaluate the security implications. Signed-off-by: Danny Kopping <[email protected]>
1 parent b1a1103 commit 5a3ade7

File tree

1 file changed

+5
-0
lines changed

1 file changed

+5
-0
lines changed

registry/coder/modules/claude-code/README.md

Lines changed: 5 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -22,6 +22,11 @@ module "claude-code" {
2222
}
2323
```
2424

25+
> **Security Notice**: This module uses the [`--dangerously-skip-permissions`](https://docs.anthropic.com/en/docs/claude-code/cli-usage#cli-flags) flag when running Claude Code. This flag
26+
> bypasses standard permission checks and allows Claude Code broader access to your system than normally permitted. While
27+
> this enables more functionality, it also means Claude Code can potentially execute commands with the same privileges as
28+
> the user running it. Use this module _only_ in trusted environments and be aware of the security implications.
29+
2530
## Prerequisites
2631

2732
- Node.js and npm must be installed in your workspace to install Claude Code

0 commit comments

Comments
 (0)