CLI Reference
`bot approvals`
CLI reference for `bot approvals` (exec approvals for gateway or node hosts)
bot approvals
Manage exec approvals for the local host, gateway host, or a node host.
By default, commands target the local approvals file on disk. Use --gateway to target the gateway, or --node to target a specific node.
Related:
- Exec approvals: Exec approvals
- Nodes: Nodes
Common commands
bot approvals get
bot approvals get --node <id|name|ip>
bot approvals get --gatewayReplace approvals from a file
bot approvals set --file ./exec-approvals.json
bot approvals set --node <id|name|ip> --file ./exec-approvals.json
bot approvals set --gateway --file ./exec-approvals.jsonAllowlist helpers
bot approvals allowlist add "~/Projects/**/bin/rg"
bot approvals allowlist add --agent main --node <id|name|ip> "/usr/bin/uptime"
bot approvals allowlist add --agent "*" "/usr/bin/uname"
bot approvals allowlist remove "~/Projects/**/bin/rg"Notes
--nodeuses the same resolver asbot nodes(id, name, ip, or id prefix).--agentdefaults to"*", which applies to all agents.- The node host must advertise
system.execApprovals.get/set(macOS app or headless node host). - Approvals files are stored per host at
~/.bot/exec-approvals.json.