risky_steps
Check what coding agents really did: force pushes, recursive deletes, dropped tables, sudo changes. Use before trusting their work or audit for dangerous actions.
Instructions
Risky things agents did, each with when, which agent and the command: force pushes, recursive deletes, git changes thrown away, dropped database tables, scripts piped from the internet, sudo and permission changes, force-stopped programs, changes to .env and other secret files, and the same command failing again and again. Use it for "did my agents do anything dangerous?" or before trusting their work. For a project (default: this one, the last 24 hours) or one session (all of it).
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| since | No | Only work since then: minutes ago ("90") or a time ("2026-10-04T09:00"). | |
| project | No | The project: its folder's path (best: dotpals matches where each agent works, so same-named folders, a monorepo's packages and worktrees stay apart) or its name. Default: the folder this server runs in. | |
| session | No | A session ID from agents_now (or its first characters). Default: the newest session in the project. |