Skip to content
Closed
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
14 changes: 14 additions & 0 deletions docs/about/run-your-first-agent.mdx
Original file line number Diff line number Diff line change
Expand Up @@ -94,6 +94,20 @@ openshell rule reject my-agent \
--reason "Not needed for this task."
```

Approving a rule changes the policy that the other pending proposals were
evaluated against. The next `rule approve` for one of them re-evaluates it and
reports `proposal inputs changed; evaluation refreshed`. List the pending rules
again, review the refreshed proposal, and re-run the approval. To approve the
pending proposals in one batch, run:

```shell
openshell rule approve-all my-agent
```

`rule approve-all` skips security-flagged proposals unless you pass
`--include-security-flagged`, and skips proposals whose evaluation changed since
it listed them. It reports how many it skipped.

Approved rules hot-reload into the running sandbox without a restart, so the
agent can retry the request. To let the agent propose its own narrower rules,
or to approve proposals automatically when the prover finds no new risk, refer
Expand Down
Loading