Nayan fc6fd58022 feat(core): sandbox edits to the project under --safe
Under --safe, PreToolUse denies any edit or command that resolves outside the
project root. It is a guard rail on the agent's own tool calls rather than an OS
sandbox, which is the right altitude for the threat it addresses: a model
wandering out of the repo, not a hostile one.
2026-07-30 11:02:00 +05:30
S
Description
No description provided
MIT
6.2 MiB
Languages
TypeScript 93.9%
CSS 3%
JavaScript 2.3%
Shell 0.5%
Makefile 0.3%