Skip to main content
Sign inDownload

Chat modes

Appenda owns the permission ladder in the agent composer. This is not Cursor's ask / agent / edit modes.

Ask is the default for new chats. Risky table tools pause for an approval card.

Modes

ModeMeaning
read_onlyTable reads only
askDefault for new chats. Risky tools pause for an approval card
allow_sessionAfter you confirm, allow risky tools for this chat session
full_accessWidest session allowance for Appenda tools. Native adapter shell/terminal stays off

Switch modes from the Ask dropdown on the left side of the composer.

Role ceilings

Settings → Permissions sets which modes each role may pick:

RoleTypical ceiling
ViewerRead only
EditorAllow session
Admin / CreatorFull access

Members cannot pick a mode above their role ceiling. Only workspace admins (and roles with manage team) change ceilings in Permissions, not from the chat itself.

Escalation confirm

Choosing Allow session or Full access opens an in-app confirm dialog before the wider posture applies. Read only and Ask switch immediately.

How chat modes work with approvals

Chat modes and approvals solve different layers:

LayerWhere it livesWhat it controls
Chat modeComposer dropdownSession posture for this chat tab
PermissionsSettings → PermissionsPer-role tool classes (Deny / Require approval / Allow)
Runtime cardsIn the chatA single tool call that still needs your answer

Think of chat mode as the default posture for the tab. Permissions are the workspace ceiling no mode can bypass.

When you still see an approval card

SituationWhy
Mode is Ask or Read onlyMost mutating appenda.* tools pause until you choose Allow once, Allow for session, Always allow, or Deny
Mode is Allow session or Full accessA tool class is still Require approval for your role (for example enrichment on Editor)
Paid or destructive pathsIntegrations, enrichment runs, and destructive deletes can prompt even in Full access
Adapter filesystem / terminalDenied by default for all roles; not unlocked by Full access

Allow for session on a card remembers that tool for the current chat tab. Always allow saves a durable grant when your role may grant approvals. Full access auto-approves most Appenda gateway tools, but it does not override paid integration preview steps or workspace Deny rules.

How the two layers combine

  1. Your role picks which modes appear in the dropdown.
  2. You pick a mode for this chat (with confirm when escalating).
  3. Each tool call is checked against Permissions and the active mode.
  4. If anything is still ambiguous, Appenda pauses the turn and shows a card.

Full access and Appenda tools

Full access auto-approves appenda.* gateway tools for the session. It does not unlock Claude bypassPermissions or native Bash/filesystem inside the adapter.

FAQs

Why don't I see all four modes in the dropdown?
Your role ceiling limits the list. Editors typically see Read only, Ask, and Allow session but not Full access. Viewers may only see Read only. Ask a workspace admin to review Settings → Permissions if you need a higher ceiling. You cannot raise your own ceiling from the composer.
Why is Full access missing but my teammate has it?
They likely have Admin, Creator, or Owner, or an admin raised the mode ceiling for their role. Mode options are per role, not per person, unless admins customized role bundles in Permissions.
Why do approval cards still appear when I use Allow session or Full access?
Chat mode widens the session default. It does not disable Require approval tool classes. Enrichment, list import, table admin, and paid integrations may still pause. See Approvals for what each card action does.
Why does switching to Allow session or Full access open a confirm dialog?
Escalation confirm is intentional. Wider modes let the agent run more tools without stopping. Appenda asks once before the posture changes.
Why is my chat stuck on Read only?
Common causes: your role ceiling is Read only (typical for Viewer), an admin lowered the mode ceiling for your role in Permissions, or you have not finished provider sign-in and Appenda agent access yet. The composer stays gated until entitlement is satisfied.
Who can change which modes my role may use?
Workspace admins edit Settings → Permissions per role tab. Members pick a mode within their ceiling. They do not edit the ceiling itself.