anthropics / anthropics/claude-code

Browser pane: no way to grant persistent site permission — per-action prompts persist despite launchPreviewAllowedOrigins, tool allowlist, and bypassPermissions

Open
#93,156 0 comments 0 reactions 0 assignees View on GitHub
area:desktop area:permissions enhancement platform:windows
Dominant language
Python
Stars
145k
Forks
23.1k
PR merge metrics
PR metrics pending

Description

## Summary

The in-app Browser pane requires approval for every single action against an origin, and there appears to be no way to grant persistent permission. The dialog offers only "Deny" and "Allow once" — there is no "Allow always".

## Dialog

> **Allow Claude to access example.com?**
> Site-level permissions are disabled for this site. You'll be asked for each action.
> `{ "origin": "https://example.com" }`
> [Deny] [Allow once]

## Already tried — none of it suppresses the prompt

1. Allowlisted all 19 browser tools in `~/.claude/settings.json` → `permissions.allow` (`mcp__Claude_Browser__navigate`, `__computer`, `__read_page`, `__browser_batch`, `__find`, `__form_input`, …)
2. Added the origin to `preferences.launchPreviewAllowedOrigins` in `%APPDATA%\Claude\claude_desktop_config.json`
3. Set the project folder permission mode to `bypassPermissions`

All three are in place simultaneously. The per-action prompt still fires on every browser tool call.

## Expected

Either an "Allow always" button in the dialog, or for `launchPreviewAllowedOrigins` — which reads as though it is intended for exactly this — to grant persistent per-origin access.

## Actual

Approval is required indefinitely, once per step. Driving a page (navigate → read → click → screenshot) costs one click per action, which makes browser-based verification impractical for real work.

## Environment

- Claude Desktop (Code tab), MSIX install
- Windows 11 Pro, build 10.0.26200.7171

Contributor guide

No contributing guide indexed for this repository

Research direction

Start with the Browser pane's site-permission dialog and compare its behavior with permissions.allow, launchPreviewAllowedOrigins in claude_desktop_config.json, and bypassPermissions. Trace how these settings are evaluated for the listed browser tools. Done means a site can be granted persistent access, or the configuration is corrected to provide that behavior, with verification that prompts no longer appear for every action.

Written by the indexing model from the issue text.

Assessment

Domain
authorization, desktop
Issue type
Feature
Difficulty
5/5
Estimated time
Over a week
Activity status
Active
Clarity
Mostly clear
Newbie friendliness
35/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.