{"scopes":[{"scope":"config.read","grants":"Read (sanitized) configuration","writes":false},{"scope":"logs.read","grants":"Read recent (sanitized) log lines","writes":false},{"scope":"automation.read","grants":"List automations / scheduled tasks","writes":false},{"scope":"memory.metadata","grants":"See that memory exists + counts — NOT contents","writes":false},{"scope":"config.suggest","grants":"Propose config changes (host approves each)","writes":true},{"scope":"automation.suggest","grants":"Propose automation edits (host approves each)","writes":true},{"scope":"tool.execute","grants":"Run a scoped tool (explicit trust)","writes":true},{"scope":"config.apply","grants":"Apply config changes directly (auto-apply — explicit trust)","writes":true},{"scope":"automation.apply","grants":"Apply automation edits directly (auto-apply — explicit trust)","writes":true}],"hard_blocked":["memory.read","email.read","messages.read","contacts.read","calendar.read","files.read"],"note":"Request the least privilege that fits the task. *.apply (auto-apply) needs explicit user trust. Hard-blocked scopes (memory/email/messages/contacts/calendar/files .read) are refused for everyone."}