How-to · Tools and permissions
Set Gemini's permissions
Choose what every Gemini session is allowed to run, and which tools it always refuses.
You want Gemini sessions to run Read only or Full, and possibly refuse specific tools outright.
- Open Settings and the Gemini tab.
- Scroll to Permissions.
- Choose Read only or Full — unsandboxed.
- Type a tool name and press Add to add it to Always refused.
- Press an added tool's own remove control to take it back out.
Every change saves the moment you make it. There is no separate save control. The setting freezes into a session's chain the moment it starts; a chain already running is unaffected by a later change.
See Settings for what each mode permits.