Same Permissions As A Person
The assistant, your agents, and any MCP client all run under a real user account and its folder permissions. AI never sees more than the user it acts for is allowed to see. There is no separate AI-permission system to get wrong.

