Docs › Agent

Approvals and permissions

The three approval modes, what each one asks about, and the commands that always need a human.

The agent asks before it changes anything. How much it asks is up to you, from the mode control under the composer.

ModeAsks before
Ask (default)Every edit, every command, every connector call.
Auto-approve readsEdits, commands and connector calls. Reading and searching happen without asking.
Bypass permissionsNothing, except the cases below.

What always asks

Some actions need a human even in Bypass mode. Bypass means "do not ask me about edits and builds". It does not mean "do not ask me before force-pushing".

Saving a memory always asks too, in every mode. A memory goes into the system prompt of every future session in that project, so an unreviewed one is a standing instruction you never agreed to.

Undoing a run

Every run can be reverted from its summary card, which puts each file back to what it was before the run started. Checkpoints go further: they snapshot the whole workspace, so you can return to any earlier point.

All documentation

Get started

Agent

Context

Workspaces

Connectors

Extending AstraCode

CLI

Reference