<!-- mobian-agent-page publisher="dailydev" canonical="https://daily.dev/posts/agent-permissions-in-antigravity-gxhyvuoo8" -->

---
title: Agent Permissions in Antigravity | daily.dev
description: Antigravity (AGY), Google&#x27;s AI coding agent tool, has a layered permission system spanning global, project, and conversation levels, each able to override the...
canonical: https://daily.dev/posts/agent-permissions-in-antigravity-gxhyvuoo8
twitter:card: summary_large_image
twitter:site: @dailydotdev
og:type: website
og:site_name: daily.dev
og:title: Agent Permissions in Antigravity | daily.dev
og:description: Antigravity (AGY), Google&#x27;s AI coding agent tool, has a layered permission system spanning global, project, and conversation levels, each able to override the...
og:url: https://daily.dev/posts/agent-permissions-in-antigravity-gxhyvuoo8
og:image: https://api.daily.dev/og/posts/GXHYvUoo8.png
og:image:alt: Agent Permissions in Antigravity
og:image:width: 1200
og:image:height: 630
og:locale: en
---

> ## Documentation Index
> Fetch the complete documentation index at: https://daily.dev/llms.txt
> Use this file to discover all available pages before exploring further.

# Agent Permissions in Antigravity

**[Medium](https://daily.dev/sources/medium_js)** · 6 min read · 1 upvotes · 0 comments

## Summary

Antigravity (AGY), Google's AI coding agent tool, has a layered permission system spanning global, project, and conversation levels, each able to override the one above it. Settings cover terminal command auto-execution, file access outside project folders, sandbox mode, artifact review, and browser JavaScript execution, plus fine-grained per-action rules for file, network, browser, terminal, and MCP tool access. These are persisted in JSON config files (config.json for global, per-project JSON files keyed by project UUID), and the post walks through each setting, its default values, and where it's stored, while noting that AGY CLI and standalone IDE store some permissions in different, less intuitive locations that weren't fully explored.

## Full article

daily.dev links to this article rather than hosting it. Read it at the original source: <https://medium.com/google-cloud/agent-permissions-in-antigravity-da9d326e63f4>

## Questions this post answers

### Where are Antigravity's global agent permission settings stored on disk?

Global permission settings are stored in the file ~/.gemini/config/config.json under the userSettings key. This includes fields like artifactReviewMode, autoExecutionPolicy, browserJsExecutionPolicy, enableTerminalSandbox, nonWorkspaceFileAccessPolicy, and a globalPermissionGrants object listing allow, ask, and deny rules for actions like read_file, command, and mcp.

_Anyone configuring or backing up an AI agent's permission setup can find similar deep dives curated on daily.dev._

### What are the three permissions controlled by the Security Preset dropdown in Antigravity?

The Security Preset dropdown bundles three underlying permissions: outside-of-folders file access policy, terminal command auto execution, and sandbox mode. Presets include Default (manual review of terminal commands and outside-folder files), Full Machine (manual command review with full file read/write), Turbo Mode (no command review, full file read/write), and Custom, which exposes the three permissions individually.

_Developers tuning agent autonomy versus safety trade-offs can track practical guides like this on daily.dev._

### How do project-level permissions relate to global permissions in Antigravity?

Project (workspace) permissions inherit from global (user) permissions but can override them, and conversation-level permissions can in turn override both project and global settings. Global settings live in ~/.gemini/config/config.json while project settings are saved per project UUID in ~/.gemini/config/projects/<project_id>.json, using slightly different field names and structure than the global config.

_Teams standardizing AI agent configs across projects can follow setup breakdowns like this via daily.dev._

## Similar posts on daily.dev

- [Google Antigravity's April update finally made it usable, and VS Code should be worried](https://daily.dev/posts/google-antigravity-s-april-update-finally-made-it-usable-and-vs-code-should-be-worried-3od7pzgye) · XDA Developers · 0 upvotes · 0 comments
- [Google Antigravity](https://daily.dev/posts/google-antigravity-uxjeuoy6z) · Hacker News · 27 upvotes · 2 comments
- [Power agent hubs or custom harnesses with the Antigravity SDK](https://daily.dev/posts/power-agent-hubs-or-custom-harnesses-with-the-antigravity-sdk-ye2wxwesl) · Google Cloud · 0 upvotes · 0 comments

---

Tags: [#ai-agents](https://daily.dev/tags/ai-agents), [#google-gemini](https://daily.dev/tags/google-gemini)

[View this post on daily.dev](https://daily.dev/posts/agent-permissions-in-antigravity-gxhyvuoo8)

```json
{"@context":"https://schema.org","@graph":[{"@type":"Organization","@id":"https://daily.dev/#organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180},"sameAs":["https://twitter.com/dailydotdev","https://github.com/dailydotdev","https://www.linkedin.com/company/daily-dev-ltd"]},{"@type":"WebSite","@id":"https://daily.dev/#website","url":"https://daily.dev","name":"daily.dev","publisher":{"@id":"https://daily.dev/#organization"},"potentialAction":{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https://daily.dev/search?q={search_term_string}"},"query-input":"required name=search_term_string"}}]}
{"@context":"https://schema.org","@type":"TechArticle","headline":"Agent Permissions in Antigravity","url":"https://daily.dev/posts/agent-permissions-in-antigravity-gxhyvuoo8","mainEntityOfPage":{"@type":"WebPage","@id":"https://daily.dev/posts/agent-permissions-in-antigravity-gxhyvuoo8"},"datePublished":"2026-09-17T11:21:59.520Z","dateModified":"2026-09-17T11:47:56.700Z","description":"Antigravity (AGY), Google's AI coding agent tool, has a layered permission system spanning global, project, and conversation levels, each able to override the...","image":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/a828e6d4a1fe0ef6da1647ae570f112a?_a=AQAEuop","thumbnailUrl":"https://media.daily.dev/image/upload/f_auto,q_auto/v1/posts/a828e6d4a1fe0ef6da1647ae570f112a?_a=AQAEuop","isAccessibleForFree":true,"articleSection":"Medium","inLanguage":"en","publisher":{"@type":"Organization","name":"daily.dev","url":"https://daily.dev","logo":{"@type":"ImageObject","url":"https://daily.dev/apple-touch-icon.png","width":180,"height":180}},"author":{"@type":"Organization","name":"Medium","logo":"https://media.daily.dev/image/upload/t_logo,f_auto/v1/logos/medium","url":"https://daily.dev/sources/medium_js"},"commentCount":0,"discussionUrl":"https://daily.dev/posts/agent-permissions-in-antigravity-gxhyvuoo8","interactionStatistic":[{"@type":"InteractionCounter","interactionType":{"@type":"LikeAction"},"userInteractionCount":1},{"@type":"InteractionCounter","interactionType":{"@type":"CommentAction"},"userInteractionCount":0}],"keywords":"ai-agents,google-gemini","timeRequired":"PT6M"}
{"@context":"https://schema.org","@type":"BreadcrumbList","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https://daily.dev"},{"@type":"ListItem","position":2,"name":"Medium","item":"https://daily.dev/sources/medium_js"},{"@type":"ListItem","position":3,"name":"Agent Permissions in Antigravity"}]}
{"@context":"https://schema.org","@type":"FAQPage","@id":"https://daily.dev/posts/agent-permissions-in-antigravity-gxhyvuoo8#faq","mainEntity":[{"@type":"Question","name":"Where are Antigravity's global agent permission settings stored on disk?","acceptedAnswer":{"@type":"Answer","text":"Global permission settings are stored in the file ~/.gemini/config/config.json under the userSettings key. This includes fields like artifactReviewMode, autoExecutionPolicy, browserJsExecutionPolicy, enableTerminalSandbox, nonWorkspaceFileAccessPolicy, and a globalPermissionGrants object listing allow, ask, and deny rules for actions like read_file, command, and mcp. Anyone configuring or backing up an AI agent's permission setup can find similar deep dives curated on daily.dev."}},{"@type":"Question","name":"What are the three permissions controlled by the Security Preset dropdown in Antigravity?","acceptedAnswer":{"@type":"Answer","text":"The Security Preset dropdown bundles three underlying permissions: outside-of-folders file access policy, terminal command auto execution, and sandbox mode. Presets include Default (manual review of terminal commands and outside-folder files), Full Machine (manual command review with full file read/write), Turbo Mode (no command review, full file read/write), and Custom, which exposes the three permissions individually. Developers tuning agent autonomy versus safety trade-offs can track practical guides like this on daily.dev."}},{"@type":"Question","name":"How do project-level permissions relate to global permissions in Antigravity?","acceptedAnswer":{"@type":"Answer","text":"Project (workspace) permissions inherit from global (user) permissions but can override them, and conversation-level permissions can in turn override both project and global settings. Global settings live in ~/.gemini/config/config.json while project settings are saved per project UUID in ~/.gemini/config/projects/<project_id>.json, using slightly different field names and structure than the global config. Teams standardizing AI agent configs across projects can follow setup breakdowns like this via daily.dev."}}]}
```

