Authorize a scope

Sentinel will not attack anything without written permission. This record is that permission: what to test, what it may try, and when the permission runs out.

Which agent are you testing?
What is it allowed to try?

The run can never go outside this list — it is checked at every step, not just when the run starts. Sensible defaults are already picked for the agent you chose.

Recorded on the permission record.

How long does permission last?

After this, the scope stops authorizing runs.

Advanced

Leave blank to test this instance’s built-in agent. Any HTTP endpoint speaking the same contract works.

One per line. Checked every time the scope is validated.

Add who is authorizing, and how long for.