Pages
Policy Config — Tool Allow-List
Source: c65 policy-definitions.md P5 — list-editor shape
‹ Policy Catalog
Tool Allow-List
BetaAgents may only invoke tools on the approved list — the scope of what an agent's hands can touch.
Action & Autonomy
medium
P5Satisfies
OWASP LLM
OWASP ASI
CSF 2.0
ISO 27001
SOC 2
Underlying control— show
tool: allowlisted = falseedit as custom control →Approved tools
5 entries · patterns supported (* and ?)
| Tool | Scope | Added by | Last matched | |
|---|---|---|---|---|
| Readbuiltin | global | seed | 1m ago | |
| Writebuiltin | global | seed | 6m ago | |
| Bashci agents only | agent | mark | 4m ago | |
| WebSearchbuiltin | global | seed | 2h ago | |
| github-mcp:*all tools on the approved server | global | jess | 12m ago | |
| you |
Exceptions
Scoped carve-outs with a reason and an expiry — accepted risk, on the record.
| Scope | Value | Reason | Expires | |
|---|---|---|---|---|
| No exceptions — the policy applies everywhere. | ||||
Remediation shown on findings: Add the tool to the allow-list with a scope, or remove the agent's access to it.