[Bug] Safety classifier unavailability blocks Bash/Skill/Agent/MCP tools with no MCP bypass
Bug Description
Title: Persistent "auto mode cannot determine safety" outages blocking Bash/Skill/Agent/MCP tools
Summary: Throughout a coding session, any tool call requiring the safety
classifier is intermittently — and at times persistently — rejected with:
"claude-opus-4-8[1m] is temporarily unavailable, so auto mode cannot determine
the safety of <tool> right now." Read-only file operations continue to work.
Affected tools observed: Bash, Skill, Agent (subagent launch), and MCP tool
calls (an Atlassian Confluence/Jira connector). The block is not limited to
write/exec tools — read-only MCP calls (e.g. fetching a wiki page) are rejected
too.
Frequency/impact: Started as brief intermittent blips, then became more
frequent and longer-lasting, with several consecutive retries failing in a row.
It has blocked: git commit/push, a Skill invocation, subagent launches, and
reading/updating an Atlassian page — forcing manual workarounds (running shell
commands via the "!" prefix) and stalling MCP-based work entirely, since there
is no "!" equivalent for MCP tools. The classifier recovers on its own, then
regresses.
Environment: Claude Code CLI; model Opus 4.8 (1M context); macOS.
Environment Info
- Platform: darwin
- Terminal: ghostty
- Version: 2.1.217
- Feedback ID: 78863f80-a158-49eb-85b0-aabe006d7871
Errors
[]