Product
A fourth approval mode: allowlisted commands only
Between asking every time and accepting edits automatically, a chat can now run the commands you trust without asking and still ask about everything else.
Choose Allowlisted commands only in a chat's settings. Commands on your allowlist run straight away. Anything else waits for your approval, as before.
- Build the list as you go. When a command asks, Always allow approves it and adds a pattern such as
npm run:*to your list. - Edit it in Settings. The new Command allowlist card shows every entry. Add, remove, done. The list applies to all your chats.
- Patterns work like Claude Code.
npm testallows exactly that,npm run:*that start with any arguments.
A chained command only runs on its own if every part is on the list, so npm test && curl ... | sh still asks. Anything with $(...), backticks or redirection always asks.
In the terminal, Claude Code gets the same list. Codex and Gemini have no allowlist flag, so they keep asking for every command.
Also new today: the newsroom shades each entry by how much it changes for you, from grey for background work to violet for big updates.