Domain 2File Management, Data Processing & Output

Permission Tiers

TL;DR

The three levels of the Cowork permission model: (1) folder scoping — Claude can only access what you grant; (2) operation type — reads and writes happen freely but deletions require explicit approval; (3) Computer Use — accessing applications outside the VM requires separate per-application permissions.

Definition

The three levels of the Cowork permission model: (1) folder scoping — Claude can only access what you grant; (2) operation type — reads and writes happen freely but deletions require explicit approval; (3) Computer Use — accessing applications outside the VM requires separate per-application permissions.

Exam Context

Understanding all three tiers is essential. Many candidates only know about deletion protection and miss the distinction between in-VM operations and Computer Use permissions.

Related Lessons

Related Terms in Domain 2