Tool permissions are switches that decide whether the agent can change or delete files in the workspace (the isolated file environment of your agent).
Available permissions
| Permission | Description |
|---|
| Allow file changes | The agent can create and edit files in the workspace |
| Allow file deletion | The agent can permanently delete files |
Recommendations
If the agent shouldn’t change files autonomously — turn off «Allow file changes». The agent will propose edits, but only you apply them.
- Enable file deletion only when the agent must do it explicitly (e.g. cleaning temp files on schedule)
- For agents that only read and answer — both can stay off