You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Copy file name to clipboardExpand all lines: docs/documentation.md
+17Lines changed: 17 additions & 0 deletions
Display the source diff
Display the rich diff
Original file line number
Diff line number
Diff line change
@@ -283,6 +283,7 @@ Overrides are session-scoped. For durable policy, edit configuration.
283
283
{
284
284
"Application": {
285
285
"Permissions": {
286
+
"auto_approve_all_tools": false,
286
287
"file_read": "Allow",
287
288
"file_write": "Ask",
288
289
"file_delete": "Ask",
@@ -317,6 +318,22 @@ Overrides are session-scoped. For durable policy, edit configuration.
317
318
318
319
The `network` shortcut applies to built-in `webfetch` tools, including `web_run` and `headless_browser`. `headless_browser` renders pages through an installed Chromium-family browser such as Microsoft Edge, Google Chrome, or Chromium.
319
320
321
+
### Auto-Approve All Tools
322
+
323
+
For trusted workspaces, you can disable approval prompts for all tools:
324
+
325
+
```json
326
+
{
327
+
"Application": {
328
+
"Permissions": {
329
+
"auto_approve_all_tools": true
330
+
}
331
+
}
332
+
}
333
+
```
334
+
335
+
This keeps workspace path checks, profile restrictions, sandbox-mode restrictions, and built-in deny rules active. Use explicit `rules` or shortcut settings when you need to override a specific deny policy.
0 commit comments