docs: mark RUN COMMAND as trusted-only

This commit is contained in:
Hermes Agent
2026-09-22 20:47:12 +00:00
parent 3ef86e6479
commit 51b69bc291
5 changed files with 40 additions and 0 deletions
+10
View File
@@ -42,3 +42,13 @@ python3 tools/validate_http_hardening.py
```
This validator uses a local HTTP server to check marker-like response text, status `200`, and the oversized-response diagnostic.
## External command trust boundary
`RUN COMMAND` intentionally executes a shell command with the user's permissions. It is a trusted-code capability, not a sandbox or an untrusted-script safety feature. Claro does not attempt a fragile blacklist sanitizer; users must review scripts before running them.
Focused documentation verification:
```text
python3 tools/validate_trusted_command_docs.py
```