Block Wildcard Agent Permissions

The mechanizable slice of excessive agency, enforced at two points: at commit (the git hook, over staged changes) and at agent tool-use (over a tool call's arguments, as the agent writes) -- agent permission grants that allow everything. A settings file whose shell grant or allow-list is a bare wildcard hands the agent unlimited tool authority for every future session, in a file reviewers rarely read as code. The agent-world twin of block-wildcard-iam: scope grants to what the task needs (e.g. Bash(git status:*)). Escape: 'pragma: allowlist broad-agency' on the same line.

open-coder-ai Updated

File contents

open-coder-ai/context-report/tree/main/.agents/policies/block-wildcard-agent-permissions/skills/block-wildcard-agent-permissions commit beeb4f8381

Frequently asked questions

npx skillmds@latest add open-coder-ai/block-wildcard-agent-permissions