execute
Runs one guarded SQL DML/DDL statement in its own transaction, blocking unsafe writes and requiring confirmation for large or catch-all changes before commit and audit logging.
Instructions
Runs ONE DML/DDL statement (UPDATE, INSERT, DELETE, ALTER, CREATE) in its own transaction, behind guardrails. Blocked: DELETE/UPDATE without their own WHERE (anywhere in the statement), TRUNCATE, DROP (except snapshot tables), ALTER ... DROP COLUMN, DO/CALL, BEGIN/COMMIT, SET and EXPLAIN. Requires i_understand=true when the statement changes more than GUARD_MAX_ROWS rows (default 1000), has a WHERE made only of constants (e.g. WHERE 1=1), or hides DML inside a WITH. Rolled back if it leaves a sequence behind MAX of its key. Commits only when every check passes, and writes an audit log entry.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| sql | Yes | One SQL statement (no BEGIN/COMMIT) | |
| description | Yes | Short description of what the statement does (stored in the audit log) | |
| i_understand | No | Boolean true confirms a large or catch-all operation. Strings are rejected. |