741 B
741 B
trigger, description, allowAuto, denyAuto, alwaysReview, scopes
| trigger | description | allowAuto | denyAuto | alwaysReview | scopes | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| always_on | Control which shell commands the agent may run automatically. |
|
|
true |
|
Execution Rules
- Only auto-execute commands that are explicitly listed in
allowAuto. - Commands in denyAuto must always be blocked, even if manually requested.
- All shell operations that create, modify, or delete files in
backend/src/orbackend/test/orfrontend/app/require human review. - Alert if environment variables related to DB connection or secrets would be displayed or logged.