How to Choose the Approval Method for Local Agent?
Understand the practical meanings and limitations of step-by-step approval, delegated judgment, and full access.
First Understand the Options Provided in the Interface
In the permission selector, "Ask for approval" means requesting approval before executing commands and modifying files, while "Full access" means no need for step-by-step inquiries. Some accounts or within the current feature availability may also show "Approve for me," which only asks for confirmation on operations detected as potentially unsafe. Whether this option appears depends on the interface and should not be assumed as a feature all users necessarily have.
Select and Check Requests Before Tasks
You can adjust this in the permission selector in the input area or in Settings → Agent → Default Agent Permissions. When first connecting to your own computer, it is suitable to use the approval-required mode to verify the execution directory and commands. After receiving a request, read the operation details before allowing or denying it; if the approval session prompts a connection failure, you should reconnect first rather than resubmitting repeatedly or switching to full access to bypass the issue.
Approval Does Not Replace Isolation or System Authorization
Automatic judgment does not guarantee identification of all risks, and full access does not mean administrator privileges are granted. Local execution still uses the system permissions of the launching user without container isolation; you need to control the scope of important files and external requests yourself. If you no longer want the task to continue, you can stop the Agent and check the final status. Modifications already executed will not be automatically reverted because you later deny another operation.