Claude Code Randomly Becomes Risk-Averse, Demanding Permission on Routine Tasks

A Reddit user on r/ClaudeAI reports a recurring issue where Claude Code abruptly becomes overly cautious, requesting permission for standard operations it normally handles without intervention. The user maintains a dedicated Proxmox VM for Claude Code, resetting it frequently (from once a week to ten times daily) to reinstall the same monorepo used since fall. The behavior shift occurred around 11:15 PST during a routine wipe-and-reinstall cycle: the tool alerted over a test account that always exists in the environment, then alerted again, instead of proceeding as it did less than 90 minutes prior.
The user notes no changes to the repo, the Antigravity extension, or the conversation prompt (simply “get to it”). The behavior seems to appear spontaneously without a triggering event, and the user asks if others experienced it starting at the same time (~45 minutes before the post).
This unpredictability undermines trust in Claude Code for automated CI-like workflows. Developers relying on Claude Code for repeated, scripted tasks (e.g., reinstall, run tests) may encounter sudden friction that breaks automation and requires manual oversight.
📖 Read the full source: r/ClaudeAI
👀 See Also

Claude Opus 4.6 Breaks CLAUDE.md File References
Users report that Claude Opus 4.6 no longer automatically loads files referenced in CLAUDE.md, forcing manual intervention for each file.

Claude-Code v2.1.78: Plugin State, Streaming Responses, and Critical Fixes
Claude-Code v2.1.78 adds plugin persistent state with ${CLAUDE_PLUGIN_DATA}, line-by-line response streaming, and fixes for API error loops, permission bypass issues, and sandbox security warnings.

Claude Code v2.1.172: Sub-Agents Now 5 Levels Deep, Bedrock Region Fixes, and Performance Gains
Claude Code v2.1.172 lets sub-agents spawn sub-agents up to 5 levels deep, fixes Bedrock region detection, adds plugin search, and improves performance in long conversations.

Anthropic Responds to Code Leak Involving Claude AI Agent
Anthropic is working to contain a leak of code related to its Claude AI agent, according to a WSJ report discussed on Hacker News with 13 points and 6 comments.