Anton Gladkov · 2026-04-13 · source ↗ · whole document (49)
А ну и напоследок - у кодекса появилось оказывается ДОХУИЩЕ флажков которыми мож
permissions.<name>.network.denied_domains: network denylist.
permissions.<name>.network.allow_unix_sockets: allow specific Unix sockets.
permissions.<name>.network.allow_local_binding: allow local bind/listen.
permissions.<name>.network.dangerously_allow_non_loopback_proxy: allow non-loopback proxy listener.
permissions.<name>.network.dangerously_allow_all_unix_sockets: allow arbitrary Unix sockets.
sandbox_workspace_write.writable_roots: extra writable roots in workspace-write mode.
sandbox_workspace_write.network_access: network access inside workspace-write mode.
sandbox_workspace_write.exclude_tmpdir_env_var: remove $TMPDIR from writable roots.
sandbox_workspace_write.exclude_slash_tmp: remove /tmp from writable roots.
profile: default named profile at startup.
profiles.<name>.*: profile-scoped overrides.
profiles.<name>.service_tier: per-profile tier.
profiles.<name>.plan_mode_reasoning_effort: per-profile plan reasoning.
profiles.<name>.web_search: per-profile search mode.
profiles.<name>.personality: per-profile personality.
profiles.<name>.model_catalog_json: per-profile model catalog.
profiles.<name>.model_instructions_file: per-profile instruction file.