policy tool subcommand.
Reference data
Before creating policies, pull the available user groups, models, guardrails, and tool types:Generic commands (Cost / Model / Security)
Cost policies
Set a monthly spend limit per user group:Model policies
Control which AI models are available to a group:Security policies
Apply guardrails for PII, secrets detection, and model routing:Tool policies
Tool policies control shell commands and MCP tool calls. They use a separate backend and are reached viaunbound policy tool.
List and inspect
Discover available targets
Create a terminal command policy
Create an MCP tool policy
BLOCK, WARN, AUDIT, REQUIRE_SLACK_APPROVAL
Update a tool policy
See Tool Policies for the full list of actions, NL rules, and canonical group targeting. All commands support
--json for machine-readable output.
Tool Policies
Dashboard reference for actions, NL rules, and Slack approvals
Cost Policies
Dashboard reference for budget limits and spend controls

