Don't Run Coding Agents with Full Access

reach_vb · x · 2026-07-16

An investigation into OpenAI/Codex file deletion incidents reveals that when operating in full access mode without sandbox protection or auto review, models are much more prone to high-risk errors during execution, such as accidentally treating $HOME as a temp directory and deleting it.

The post advises against running coding agents in a completely unrestricted environment. Instead, it recommends combining Rules / Sandbox / Approve for me / Hooks to create a protective layer between the model and real data, reducing the risk of accidental deletions and other hazardous operations.

Related event: Risks of Running Coding Agents with Full Access(2 posts)→

Original post →

More from coding & agent

coding & agent channel →