Privileged status
Helper status, Full Disk Access diagnostics, and the list of privileged actions. Available to every signed-in role so a blocked dashboard can explain the missing grant.
In: cookie
Query Parameters
Request a fresh permission check in the daemon and menu bar. Without this flag, a granted or inconclusive Full Disk Access result stays cached until a recheck or restart, and a refusal is retried at most every 10 seconds.
falseResponse Body
application/json
application/json
curl -X GET "https://example.com/api/system/privileged"{ "escalated": true, "helperRoot": true, "needsElevation": true, "fullDiskAccess": true, "fullDiskAccessStatus": "granted", "needsFullDiskAccess": true, "daemonExecutable": "string", "fullDiskAccessDetail": "string", "categories": [ "string" ], "actions": [ { "key": "string", "category": "string", "label": "string", "kind": "string", "note": "string", "current": "string", "enabled": true, "minutes": 0 } ]}Apply a privileged action POST
Apply one allowlisted privileged action. `choice` is `on`/`off`/`set`, with an optional integer `value` for `set` (minutes). Requires the **admin** role.
Create a local workflow POST
Publishes instructions and optional base64 supporting files. Bundles allow 64 MiB, 512 files including SKILL.md, and 16 directory levels. Each supporting file is limited to 16 MiB. Requires the admin role.