Choose a permission mode
Switch between Manual, Accept edits, Plan and Auto, and answer what the agent asks before it acts.
The mode decides what the agent may do without asking you. It shows on the rule under the prompt, and each project starts in the mode you last left it in.
The modes
| Mode | Runs without asking |
|---|---|
| Manual | Reads and a few safe commands |
| Accept edits | Also file edits in the project. rm, rmdir, mv, cp and sed still ask. The default in a new project |
| Plan | Reads only. The agent works out a plan and asks before it starts |
| Auto | Routine work runs; a safety check blocks actions beyond your request, such as force pushes or sending secrets out |
Switch modes
Press shift+tab to step through the modes, or type /mode to pick one:
+- Mode Claude ----------------------------------------------------------------------------+ | 1. Manual | | Asks before every edit and every command outside a safe list | | > 2. Accept edits current | | Edits files in the project without asking; asks before risky commands | | 3. Plan | | Reads and plans; changes nothing until you approve the plan | | 4. Auto | | A safety classifier lets routine actions run and stops risky ones; commits and | | writes outside the project still ask | +------------------------------------------------------------------------------------------+ | Enter select · Up/Down move · Esc cancel | +------------------------------------------------------------------------------------------+
/mode plan switches straight away.
Auto needs a model that supports it, such as Opus or Sonnet. With another model the agent runs in Manual, and the rule under the prompt says so. The project keeps Auto for next time.
Answer a permission request
When the agent wants to do something the mode doesn't allow, the permission panel takes the prompt's place:
+- Permission -----------------------------------------------------------------+ | jinion wants to run a command | | $ pnpm add zod | | Adds zod to validate the request body. | | | +------------------------------------------------------------------------------+ | > 1. Yes | | 2. Yes, and don't ask again for `pnpm add:*` in this project | | 3. No | | Press n to tell jinion what to do instead | +------------------------------------------------------------------------------+ | Enter select · n note · Up/Down move · Esc stop the turn | +------------------------------------------------------------------------------+
| Choice | What happens |
|---|---|
| Yes | Runs it this once |
| Yes, and don't ask again for … | Saves the rule, such as pnpm add:*, for this project |
| No | Tells the agent no. Press n first to say what it should do instead |
esc | Stops the turn |
A long command scrolls in its own area above the choices: use shift+up and shift+down, or the wheel.
Rules you save live in the project's permissions.json. See The ~/.jinion folder.
Plan first
In Plan mode the agent reads, thinks and writes a plan without changing anything. When the plan is ready, it shows in the conversation and the plan panel asks how to go on:
+- Plan -----------------------------------------------------------------------------------+ | Ready to start? The plan is above. | | | +------------------------------------------------------------------------------------------+ | > 1. Yes, and use auto mode | | A safety classifier lets routine actions run and stops risky ones; commits and | | writes outside the project still ask | | 2. Yes, and accept edits | | Edits files in the project without asking; asks before risky commands | | 3. Yes, and approve each edit | | Asks before every edit and every command outside a safe list | | 4. No, keep planning | | Press n to say what should change | +------------------------------------------------------------------------------------------+ | Enter select · n note · Up/Down move · Esc stop the turn | +------------------------------------------------------------------------------------------+
Pick how freely to carry on, or keep planning and press n to say what should change.
What always asks
In every mode, Jinion asks before:
- a commit;
- a change to a file outside the project, through the file tools or through commands that write (
>,tee), change (rm,mv,chmod,sed -i) or copy (cp,ln) there.
These requests have no "don't ask again" choice. Temporary folders such as /tmp don't count as outside. In a
worktree, the project is the worktree, so a change to your own checkout asks too.