A thread you can test
Permissions, Sandbox & Security
3 notes move from the word to a real choice at work — understand it first, then decide whether to use it.
Each note stands alone, or becomes the next step in this thread.
THE QUESTION THIS PAGE ANSWERS
ANSWER FIRSTWhat is Permissions, Sandbox & Security, and which AI decisions does it change?
Comparing workspace, devbox, read-only, strict, off, and custom Profile boundaries This page keeps the related concepts, common mistakes, and practical notes in one reading thread.
First decide whether you are blocked by a definition, a choice, or verification; then choose the closest of the 3 notes below.
Start with “Five Sandbox Profiles,” then restate the conclusion using your own task.
Do not treat every method in a topic as interchangeable. The answer changes with the input, risk, and acceptance bar.
THIS QUESTION THREAD
Put the word back inside the choice it changes.
Five Sandbox Profiles
Comparing workspace, devbox, read-only, strict, off, and custom Profile boundaries
From Tool Request to Restricted Execution
Tracing the full authorization chain through ToolKind, permission decisions, and platform sandboxing
Hooks: Only Explicit Deny Blocks
Verifying lifecycle events, matchers, PreToolUse blocking, and fail-open semantics on errors