Control agent permissions and approvals
Choose what your assistant can read or change and understand its execution mode.
Last updated 9 September 2026
On this page
Access has several layers
A connection is limited by its workspace, selected apps, capabilities, your current role, and product availability. Giving read access does not automatically grant editing, publishing, or sending. An assistant cannot expand its own grants.
Choose an execution mode
Read-only: the assistant can inspect permitted records but cannot change product data.
Approve changes: the assistant prepares a proposal for a change and asks for confirmation before executing it.
Automatic: permitted changes can execute without a separate UserGist proposal approval. Your assistant can still apply its own confirmation rules.
Review live effects
Publishing an article makes its content public. Activating an experience can make it eligible for customers. Sending a push contacts a device. Changes to a shared segment or app-default brand can affect other live experiences. Review the target and expected effect, not only the action’s name.
Manage or stop access
Use AI connections to review your connection, change its access, or revoke it. Owners and admins can revoke workspace connections, but cannot expand another member’s grants. Revocation does not undo content already published or notifications already dispatched.
If a change times out
Ask the assistant to check the operation’s status before trying again. An interrupted response does not prove the action failed. Repeating an uncertain action as a new operation can create duplicates or send twice.
Related guides
Connect your assistant to UserGist
