Exec with approval
Execute shell commands with per-command user approval. Read + write filesystem; no unscoped network.
id policy/exec-with-approvalv1.0.0by convergent-systems-key
Rule
Execute shell commands with per-command user approval. Read + write filesystem; no unscoped network.
- Grants
- read-fileswrite-filesexec-commandsuser-prompt
- Elevation
user-approved- Audited
- yes
Used by
- agent/runbook-executor — Runbook Executor
Author convergent-systems-key. Source convergent-systems-co/agent-atoms (original ↗). License Apache-2.0. Re-typed from capability-declaration by scripts/migrate-policy-tool.py.