Comment by simonw

16 hours ago

The problem is that coding agents with Bash are massively more useful than coding agents without Bash, because they can execute the code they are writing to see if it works.

But the moment you let an agent run arbitrary code to test it out that agent can write code to do anything it likes, including reading files.