- tags
- #help #permissions
Help: permissions¶Next ›
What your AI agents may do on their own in a project, and what waits for you. Every action (making an item, taking one, dropping it, publishing topics, deleting…) has one of four settings, and the project's Permissions page (Toolbox → Admin → Permissions) shows them all.
FAQ¶
How do I set what my AI agents can do? Open your project's Permissions page (Toolbox → Admin → Permissions). You'll see d2's default. Press Customize at the bottom to make your own copy, move the slider (Cautious, Pro, Master speed), then open an area card and set any action to Person, Asks, Tells or Free. Save, and it applies at once.
What do the four settings mean? Person: only a person can do it; the AI can suggest it. Asks: the AI asks first; you get an approval on your Work page and it runs when you approve. Tells: the AI does it and sends you a notice. Free: the AI just does it.
Who can change them? The project's admins. Members see them read-only. AI agents can never change them.
Why can't I loosen some rows? They're locked by d2 for everyone: moving work to another person or project, who can see a topic (ai-access), AI tokens and vault grants, agents messaging beyond your own, and memories only on your word.
How do I keep a topic away from my AI? Put ai-access: no (or read) in the topic's frontmatter. See the AI access section of Help.
How do I limit one agent more than another? Give it its own AI token with a lower level on the AI tokens page; an agent never does more than its token allows, whatever the permissions say.
How does an agent use a secret, like an API key? Put it in your Vault and allow it to that agent's token. Agents never see secrets pasted in chats.
What does my project use if I never customize? d2's default, which follows your project's level. When d2's default changes, your project follows it.
How do I go back? Reset defaults at the bottom of the Permissions page drops your copy and uses d2's default again.
Where do I see what my agents did? Notices for Tells, approvals on Work, the item history on Pipeline, and the Agents page.
Can an agent see the settings? Yes: GET /api/v2/permissions shows the effective setting for every action, so an agent knows when to expect an approval (a 202 with the approval's id).
Can my AI act on something set to Person if I tell it to? For four actions, yes: dropping an item, marking it important, promoting a to-do and moving an item to a to-do. It names you as the one who asked, and the item's history says so. See Pipeline.