> ## Documentation Index
> Fetch the complete documentation index at: https://docs.strawberrybrowser.com/llms.txt
> Use this file to discover all available pages before exploring further.

# AI permissions

> Control what companions can do through permission mode, connected app tool permissions, folder access, and chat-specific approvals.

AI permissions let you decide what companions can do automatically and what requires approval.

Open AI permissions at `strawberry://settings/ai-permissions`.

## Permission mode

1. Open `strawberry://settings/ai-permissions`.
2. Under **Permission Mode**, choose:
   * **Default**: standard permission rules for each action type.
   * **Ask Always**: ask for confirmation before every action.

## Connected app tool permissions

Each connected app can have tool-level permissions.

1. Open `strawberry://settings/integrations`.
2. Open an integration's detail page.
3. In **Permissions**, set each action to:
   * **Ask every time**
   * **Always allow**
   * **Disable action**

You can also see configured permissions at `strawberry://settings/ai-permissions` under **Permanent Permissions**.

## Permanent and chat-specific permissions

* **Permanent permissions** apply across chat sessions. Manage them per integration.
* **Chat-specific permissions** apply only to one chat session and are cleared when that session ends.

## Folder access requests

When a companion needs access to local folders, Strawberry can ask for folder permissions. On Windows, folder grants are especially important for sandboxed file access.

Only grant folders that are relevant to the task.

## Sub-agent feedback requests

Sub-agents may ask for help when they need a decision, missing information, or approval. These requests can surface in chat and related UI.

## You stay in control

Use stricter permissions for workflows that can send messages, spend money, mutate business systems, delete data, or access sensitive local folders.

<Warning>
  Do not set broad "Always allow" permissions for tools you do not fully trust. A narrow permission
  setup is usually better than a convenient one for sensitive apps.
</Warning>
