Permissions, Costs, and Not Getting Burned
Terminal agents ask permission before they change things, and this is your main safety net. Some let you approve a single action; some let you approve a whole category, such as all file edits in this folder. There is usually a setting that approves everything automatically. Leave it off until you know exactly what the agent is likely to do and you are working in a folder you have backed up.
Costs work in two ways. Some agents are included in a monthly subscription to the company that makes them. Others bill by usage, which means longer sessions, bigger folders and more back-and-forth cost more. Long sessions that keep re-reading a big folder are the usual way people get a surprise bill. Check whether your plan has a spending cap and set one if it does.
Be careful with secrets. Anything in the folder the agent can read, such as passwords, API keys and private client files, can be sent to the AI company as part of the request. Keep credentials out of the working folder, and do not point an agent at a folder full of other people’s private data without thinking about it first.
And remember the agent can be wrong. It can confidently make a change that looks right and is not. The safety habit is the same each time: small requests, read the change, test the result.
Takeaway: keep automatic approval off, watch how you are billed, and keep secrets out of any folder an agent can read.
Tools, prices and features in this area change quickly. Last reviewed September 2026.