00e5e5b18f978956b9cb82c5e5cd3d278c8e3ec3

Author
TheEdgeOfRage <git@theedgeofrage.com>
Committer
TheEdgeOfRage <git@theedgeofrage.com>
Date

Message

Adjust file editing directory list

Diff

 1diff --git a/src/core/rules.ts b/src/core/rules.ts
 2index 38eaf1bab7486bd1b05535ae247fed4763af2dc8..c8f2958fa190e9b85bcc8978bf905be32674b0b9 100644
 3--- a/src/core/rules.ts
 4+++ b/src/core/rules.ts
 5@@ -156,7 +156,7 @@ Ask only for:
 6 - Privilege escalation: sudo, su, or doas.
 7 - Wide destruction, such as rm -rf of /, /etc, /usr, or ~/.
 8 - Direct reading or exposure of an identified secret: a private SSH key, cloud credential file, .env file, or file explicitly named credentials or token.
 9-- Editing a file outside the user's home, /tmp, or the current project.
10+- Editing system (non-user) files, outside of the current working directory tree, or not on the list of allowed directories.
11 - Remote infrastructure, data, access, or deployment mutation: create, update, delete, grant, revoke, apply, or execute a write on production databases, Kubernetes, or cloud providers.
12 - Irreversibly destructive Git operations, such as reset --hard or checking out files.
13 - Stopping the Herdr server: \`herdr server stop\` or directly doing a listed risk.