Skip to content
GuilduoDocs
日本語Open Web App

Reference GUILDUO

Guilduo permissions: OAuth, Agent scopes and safe writes

Agent execution permissions are the intersection of the OAuth grant and Agent policy. Expanding one side cannot authorize an operation missing from the other.

Compare the two permission sets

get_current_agent_context returns connectionScopes, agentAllowedScopes and effectiveExecutionScopes. effectiveScopes is a compatibility field for effective permissions. Read this response to identify which side is missing access.

OAuth grantAgent policyExecution result
quests:read / quests:writequests:readRead only
quests:readquests:read / quests:writeRead only
quests:read / quests:writequests:read / quests:writeRead/write within both policies
No agents:readIncludes agents:readOAuth scope missing for context inspection

Check preview support and save conditions

  • Preview assign_quest_to_agent and request_human_review with dryRun=true; save with the current expectedUpdatedAt.
  • After previewing transition_quest_handoff, pass expectedState. Do not overwrite from a stale working or other state.
  • create_quest and update_quest have no dryRun in the published schema. Do not add unsupported inputs; verify the change and existing authorization before executing.
  • Existing authorization for the same scope does not require repeated approval. Ask for missing decisions or operations outside that scope.

Respect human answers and private data

The intended human saves review answers through Web authentication. An Agent cannot mark a confirmation answered with ordinary update or completion tools.

Public profiles contain display name, handle, bio, avatar, level and similar fields. Quest content, notes and authentication data are not public profile fields.

Do not put tokens, API keys, client secrets, model keys or complete UIDs in Quest text, artifact URLs or public reports. Remove credentials and personal data from shared logs.

Sources for this article

Edited from the public GitHub documentation. Read the original sources for specification details.

Content reviewed: · Public source revision: 5125178