MCP Approval Gate
Your AI agent wants to run a command. Chau7 lets you accept, deny, audit, or scope permissions per agent.
What is MCP Approval Gate in Chau7?
The MCP Approval Gate in Chau7 is a safety feature that intercepts AI tool calls made through the MCP protocol and presents them for your review before execution. Chau7 shows the tool name and parameters in an approval dialog with Accept, Deny, Always Allow, and Audit Only options.
A new Audit Only mode allows tool calls to execute while logging every action for review. MCPProfile.agentAllowlist lets you scope approval profiles to specific AI agents, so different agents can have different permission levels.
The Chau7 approval gate operates at the MCP protocol layer, so it works with any agent that connects through MCP. Whether you use Claude, custom agents, or any future MCP-compatible assistant, Chau7 gates the tool calls the same way.
How do I control which MCP actions AI can execute in Chau7?
Chau7's MCP Approval Gate uses context-based approval rules (directory, git repo, etc.) combined with MCPProfile.agentAllowlist to scope profiles to specific AI agents. Different agents can have different permission levels. When you choose Always Allow for a tool call, the command name is added to a flat allowlist.
The allowlist persists across sessions, so you build up trusted commands over time without repeated prompts. Chau7 gives you control over what MCP tool calls can execute in your terminal.
Can I approve MCP tool calls before they run in Chau7?
Yes. When an AI agent connected via MCP requests a tool action in Chau7, the approval gate intercepts the request and presents it for your review. The approval dialog in Chau7 shows the tool name and parameters.
You can Accept, Deny, Always Allow, or Audit Only the request. Chau7 does not execute any gated tool call until you explicitly approve it. Audit Only allows execution while logging the action for later review.
Does Chau7's approval gate slow down AI workflows?
Chau7's approval gate only pauses execution for tools that match your approval rules. Read-only operations and pre-approved tools execute instantly in Chau7.
Trusted workflows run at full speed because you control exactly which actions require review in Chau7. The gate is designed to be invisible for safe operations and present only when a tool call warrants human oversight.
Can I approve tools once and remember the decision in Chau7?
Yes. When approving a tool call in Chau7, you can choose Always Allow to add the command name to a flat allowlist. The allowlist stores command names, not per-tool/per-agent/per-parameter combinations.
The allowlist persists across sessions. Over time, trusted tool calls execute without prompting, while new command names still require explicit approval.
Questions this answers
- What is MCP Approval Gate in Chau7 terminal?
- How do I control which MCP actions AI can execute in Chau7?
- Can I approve MCP tool calls before they run in Chau7?
- Does Chau7's approval gate slow down AI workflows?
- Can I approve tools once and remember the decision in Chau7?
Frequently asked questions
What is MCP Approval Gate in Chau7 terminal?
The MCP Approval Gate in Chau7 is a safety feature that intercepts AI tool calls made through the MCP protocol and presents them for your review before execution. Chau7 shows the tool name and parameters, letting you Accept, Deny, Always Allow, or Audit Only each request. Audit Only allows execution while logging every action for review.
How do I control which MCP actions AI can execute in Chau7?
Chau7's MCP Approval Gate uses context-based approval rules (directory, git repo, etc.) and MCPProfile.agentAllowlist to scope profiles to specific AI agents. Different agents can have different permission levels. When you choose Always Allow, the command name is added to a flat allowlist that persists across sessions.
Can I approve MCP tool calls before they run in Chau7?
Yes. When an AI agent requests a tool action through MCP, Chau7 intercepts the request and presents an approval dialog showing the tool name and parameters. You can Accept, Deny, Always Allow, or Audit Only the request.
Does Chau7's approval gate slow down AI workflows?
Chau7's approval gate only pauses execution for tools that match your approval rules. Read-only operations and pre-approved tools execute instantly in Chau7. Trusted workflows run at full speed because you control exactly which actions require review.
Can I approve tools once and remember the decision in Chau7?
Yes. When approving a tool call in Chau7, you can choose Always Allow to add the command name to a flat allowlist. The allowlist persists across sessions.