Sypha AI Docs
Sypha CLI

Enterprise Access Control

One dashboard policy, enforced live in every team member's CLI — fail-closed and always overriding local settings.

On a Teams plan, admins govern the CLI from the Sypha dashboard. The policy is enforced live in every member's CLI within ~10 seconds, fail-closed, and always overrides local settings.

Access Control applies on Teams plans. Individual/free users are unaffected.

What admins control

Tool approvals

15 permission settings — which tools apply silently, prompt for approval, or are denied.

Feature access

Whether Terminal, Browser, and MCP are available at all.

Providers

Which model providers members are allowed to connect and use.

How it's enforced

For members

Run /access-control to view your team's live policy, and /permissions to see per-tool settings (admin-restricted tools are shown locked 🔒).

On this page