Write action approval is a new organization-wide setting for Agent0. With it on, Agent0 Chat stops and asks you before it does anything that writes: posting a Slack message, creating an automation, calling a write tool on one of your MCP servers.
You get a card in the conversation with the action, Agent0's reason for it, and the exact arguments. Approve and it runs. Deny and Agent0 carries on without it. Reads aren't affected, so it keeps querying your telemetry while you decide. That way you can give Agent0 real work without handing it the last call on anything it changes, and Chat Details keeps a record of who decided what.
An organization admin turns it on in Settings → Agent0, and it's off until they do. It covers Agent0 Chat and the Agent0 panel inside Dash0. Agent0 running from Slack, Linear, an agentic workflow, or MCP won't ask, and GitHub and git actions follow the GitHub connector's own permissions instead. Approvals are single use, so reloading the page or clicking twice can't fire the same action again.
The docs have the full flow.
