approvals
builderforce approvals
Section titled “builderforce approvals”Manage exec approvals for the local host, gateway host, or a node host.
By default, commands target the local approvals file on disk. Use --gateway to target the gateway, or --node to target a specific node.
Related:
- Exec approvals: Exec approvals
- Nodes: Nodes
Common commands
Section titled “Common commands”builderforce approvals getbuilderforce approvals get --node <id|name|ip>builderforce approvals get --gatewayReplace approvals from a file
Section titled “Replace approvals from a file”builderforce approvals set --file ./exec-approvals.jsonbuilderforce approvals set --node <id|name|ip> --file ./exec-approvals.jsonbuilderforce approvals set --gateway --file ./exec-approvals.jsonAllowlist helpers
Section titled “Allowlist helpers”builderforce approvals allowlist add "~/Projects/**/bin/rg"builderforce approvals allowlist add --agent main --node <id|name|ip> "/usr/bin/uptime"builderforce approvals allowlist add --agent "*" "/usr/bin/uname"
builderforce approvals allowlist remove "~/Projects/**/bin/rg"--nodeuses the same resolver asbuilderforce nodes(id, name, ip, or id prefix).--agentdefaults to"*", which applies to all agents.- The node host must advertise
system.execApprovals.get/set(macOS app or headless node host). - Approvals files are stored per host at
~/.builderforce/exec-approvals.json.