AI PLATE/ DocsBack to AI Plate
Documentation / Governance
YOUR AI PLATE HANDBOOK

Security & permissions

Control tool execution, approvals, autonomy presets, and session-specific grants in the desktop app.

Desktop source reviewed October 5, 2026

What the permission tab controls

Open the desktop app Settings → Security & Permissions tab to govern automated tool execution. The policy is applied by the runtime before a tool runs; it is not a Windows permission dialog and it does not replace operating-system security.

Each tool is classified into a capability category and evaluated as allow, ask, or deny. The policy badge beside the settings tab shows the active autonomy mode.

Choose an autonomy preset

PresetBehavior
Strict ControlAsk before shell, Python, file writes, file deletion, network access, storage, and custom tools. RAG and reasoning remain allowed.
Balanced (Standard)Allow file writes, network, storage, RAG, and reasoning; ask before shell, Python, file deletion, and custom tools.
Full AutonomyAllow every capability without interactive approval.

Selecting a preset fills the capability matrix. The selection is only staged in the settings form until you choose Apply Security Policy.

Customize individual capabilities

CapabilityExamplesAvailable policies
Terminal & Shellexecute_command, shell toolsAsk, Auto-Execute, Block
Python Sandboxrun_sandboxed_scriptAsk, Auto-Execute, Block
File & Artifact Writessave_artifact, write_fileAsk, Auto-Execute, Block
Destructive File Deletiondelete_artifact, clear_artifacts, clean_sandboxAsk, Auto-Execute, Block
Web Search & Networkweb_search, read_web_pageAsk, Auto-Execute, Block
Vector Memory & RAGquery_knowledge_base, document searchAsk, Auto-Execute, Block
Plugin Storagectx.storage.get / setAsk, Auto-Execute, Block
Reasoning Scratchpadrecord_reasoning_stepAsk, Auto-Execute, Block
Custom Dynamic Pluginsuser-installed custom tool handlersAsk, Auto-Execute, Block

When a tool requires approval

  • AI Plate classifies the requested tool and reads the policy for its capability.
  • With Auto-Execute, the tool runs immediately. With Block Action, it is refused.
  • With Ask for Approval, AI Plate shows the tool, arguments, capability, and risk level for an interactive decision.
  • Approving once permits that request. Choosing “Always Allow this Session” adds that exact tool to the current session whitelist.
  • An unanswered approval expires after three minutes and is denied.

Review and revoke session grants

The Active Session Whitelist section lists tools approved with “Always Allow this Session”, grouped by chat session with their capability, risk level, and grant time.

  • Revoke removes one tool from one session.
  • Clear Session removes all grants for a selected session.
  • Clear All removes grants across every session.
  • Session grants are temporary in-memory permissions; they are separate from the saved global policy and are cleared when the security policy is reset.

Persistence and security boundaries

The global mode and capability choices are stored in the application SQLite metadata and restored when AI Plate starts. Reset to Defaults restores Balanced and clears the session whitelists.

Implementation sources

Paths in your AI Plate source checkout:

  • ui/index.html
  • ui/app.js
  • core/security-manager.ts
  • core/types.ts
  • electron/ipc-bridge.ts
AI Plate product & developer documentation · Static reference, no API keys collected.