Aegis uses a YAML policy engine to authorize tool execution before any Gitea API call is made.
WRITE_MODE=true
WRITE_REPOSITORY_WHITELIST
WRITE_ALLOW_ALL_TOKEN_REPOS=true
defaults: read: allow write: deny tools: deny: - search_code repositories: acme/service-a: tools: allow: - get_file_contents - list_commits paths: allow: - src/* deny: - src/secrets/*
403
access_denied
Start
Operating
Internals
Security
Reference
Deleting the wiki page "Policy" cannot be undone. Continue?