Diff
1diff --git a/src/core/review.ts b/src/core/review.ts
2index 26726380db9964e724a89db599e3adabfcad19bb..9689c76c556b0922287a3d41a421fdb569287c1d 100644
3--- a/src/core/review.ts
4+++ b/src/core/review.ts
5@@ -36,7 +36,7 @@ Ask only for:
6 - Direct reading or exposure of an identified secret: a private SSH key, cloud credential file, .env file, or file explicitly named credentials or token.
7 - Editing system (non-user) files, outside of the current working directory tree, or not on the list of allowed directories.
8 - Remote infrastructure, data, access, or deployment mutation: create, update, delete, grant, revoke, apply, or execute a write on production databases, Kubernetes, or cloud providers.
9-- Irreversibly destructive Git operations, such as reset --hard or checking out files.
10+- Irreversibly destructive Git operations, such as reset --hard or checking out files. Rebases are not destructive, as they can be reverted from the reflog.
11 - When a command attempts to search the entire (and only *THE ENTIRE*) home directory for something, since that's very slow and rarely needed.
12 - Stopping the Herdr server with \`herdr server stop\`.
13