<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Permission on 安橙的博客</title><link>https://blog.ans20xx.com/tags/permission/</link><description>Recent content in Permission on 安橙的博客</description><generator>Hugo -- 0.161.1</generator><language>zh</language><lastBuildDate>Sat, 16 May 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://blog.ans20xx.com/tags/permission/index.xml" rel="self" type="application/rss+xml"/><item><title>Day 09 · 权限与安全 — 四档信任阶梯 · 工具白名单 · 敏感文件保护</title><link>https://blog.ans20xx.com/posts/ai/cc-day09/</link><pubDate>Sat, 16 May 2026 00:00:00 +0000</pubDate><guid>https://blog.ans20xx.com/posts/ai/cc-day09/</guid><description>把 Claude Code 的能力锁在你想给的范围里——理解 default / acceptEdits / plan / bypassPermissions 四档权限模式的取舍,用 allow / deny 规则做白名单与黑名单,用 Hooks 兜底拦截危险命令和敏感文件读取。一句 rm -rf 和一个泄漏的 .env,可能让你和 Claude 的全部信任崩盘。</description></item></channel></rss>