Why did a command get refused under --yolo?
Because approval and confinement are separate: the call was approved to run, but the policy determined it was out of scope. Read the refusal reason, it names the violated or missing capability.
Docs · Sandbox & Permissions
Confinement that survives yolo.
Direct answer
Every tool call resolves through one declarative policy covering reads, writes, execution, network and environment. Approval decides whether an action is attempted; the sandbox decides whether it is possible. Learn the three profiles before your first unattended run, and remember that --yolo never widens confinement.
Sandbox & Permissions
Sandbox & Permissions
Questions
Because approval and confinement are separate: the call was approved to run, but the policy determined it was out of scope. Read the refusal reason, it names the violated or missing capability.
Yes, through policy scopes in config rather than by disabling the sandbox. Prefer the narrowest addition that unblocks the task, and remove it when done.
Yes. Network access is part of the policy; strict denies it, and the computer/project profiles gate the tools that reach out (fetch and search) through the same policy object.
25.6 MB median RSS. 25 agents ran in parallel on a Core 2 Duo with 4 GB RAM. Hundreds on your machine. Zero cloud required on the Ollama path.
Requires Rust/cargo to build from source. Linux and macOS today, Windows not yet supported. Pre-1.0, public beta. Pricing TBD.