sassy_shell_confirm
Confirm and run a shell command blocked for approval by providing its single-use token and required confirm phrase. Finishes the two-step approval flow with audit logging.
Instructions
Mutating: executes a sassy_shell command that was returned as confirmation_required instead of hard-blocked, because interceptor.destructiveAction is set to 'confirm'. Tokens are single-use and expire after 60 seconds; each is bound to the exact command, shell, and working directory that produced it, so replay against anything different is rejected. HIGH-tier commands also require confirm_phrase to match the phrase shown in the original confirmation_required response. Execution is audit-logged as pattern_confirm_executed. Use it only as the second step of the confirm flow; it cannot start a command on its own.
Input Schema
| Name | Required | Description | Default |
|---|---|---|---|
| token | Yes | ||
| confirm_phrase | No |
Output Schema
| Name | Required | Description | Default |
|---|---|---|---|
| result | Yes |