16-fix stability pass: agents panel bugs, background session survival across restarts, and MCP OAuth scopes resolved — plus org-wide model defaults and tighter MCP security.
/model when you haven't picked one yourself/code-review workflow: merged five cleanup finders into one, cutting token usage by roughly 25%git diff/git grep, egrep/fgrep, and quoted search patterns containing | being reported as failures when they exit 1, matching Bash behaviorclaude agents side panel issues: keyboard focus getting stuck when opening an agent, background jobs losing their subagent types on every open, and sessions showing incorrect status while actively runningclaude agents --dangerously-skip-permissions silently falling back to auto mode instead of showing the bypass disclaimer and applying bypass mode to spawned agents/cd reappearing in the old directory's resume list after a non-graceful exit when the old path contained special charactersclaude plugin validate skipping local plugins whose source is "." and stopping after the first error classscopes_supported catalog when no scope is specified, causing invalid_scope failures on GitLab self-hosted and other enterprise IdPs/context showing 0 tokens for all tool groups on Bedrock/deep-research misreporting verifier failures as "all claims refuted" instead of unverifiedclaude agents session status: completed rows no longer flip between "Done" and "Needs your input", stalled agents are now labeled "Needs attention", and results that mention a PR show a clickable link← press instead of two, matching the behavior in background sessionsclaude mcp list/get no longer spawn .mcp.json servers that a repo self-approved via a committed .claude/settings.json; untrusted workspaces show ⏸ Pending approvalCLAUDE_ENABLE_STREAM_WATCHDOG=0 to disable.ANTHROPIC_BASE_URL points at a non-Anthropic host, matching the existing behavior under CLAUDE_CODE_USE_BEDROCK/_VERTEX/_FOUNDRY