Skip to content
Discussion options

You must be logged in to vote

Good question to be sceptical about, and the honest answer has four separate layers rather than one "safe mode" switch. None of them relies on the model behaving well — that is the design premise.

1. It can mutate, and every mutating path stops for a human

It is not read-only. That is the deliberate difference from read-only diagnostic tools: it can scale, restart, patch and delete. But every mutating command passes through one chokepoint that requires an explicit human approval in the same session — you type yes or /approve. There is no "the model was confident so it proceeded" path.

This applies to every role, including superadmin. From v4/docs/security.md § 2:

Even superadmin and admi…

Replies: 1 comment

Comment options

MSKazemi
Aug 10, 2026
Maintainer Author

You must be logged in to vote
0 replies
Answer selected by MSKazemi
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
1 participant