# 1.8.9b5 — Claude Station approvals reach the browser

An opt-in preview on the 1.8.9 fix line. Stable remains 1.8.8.

## Fixed

- A real Claude PermissionRequest Hook could send `approval_needed` while the
  OIP invocation still said `running`. O Chat hid the approval card and Claude
  waited for a decision the owner could not give. Station now emits a
  revisioned `awaiting_approval` state before asking and resumes `running`
  after the answer (#1747).
- Station browser turns always use Claude's native default permission mode for
  owner review. The provider profile endpoint now refuses changes for that
  Work Room, so it cannot claim to enable Auto while continuing to ask.

The production O Chat browser test used a real Haiku session: after terminal
handover the browser displayed **Allow once**, Claude wrote the exact requested
file, and its reply appeared. The Work Room showed the completed turn on a
390px phone. O Chat now uses `@connectonion/react@0.4.4-rc.7`.

## Known limits

- Station can ask the owner only about verified workspace file edits. Bash,
  MCP tools, user questions and plan changes do not yet have Happy-style
  browser decisions; permission-requiring calls outside the file-edit policy
  are denied.
- Complete one terminal turn before taking browser control of a new Station.
  A blank native session can fail before the first browser message is
  acknowledged; see [issue #1776](https://github.com/openonion/connectonion/issues/1776).

## Install

```sh
python -m pip install --upgrade 'connectonion==1.8.9b5'
co --version
```
