Approving a database read that saves files now names the exact destination and flags paths outside your workspace.
What's wrong with this entry?
Because a read that saves files writes to your disk, the approval names the exact destination path and flags destinations outside the session's working paths as needing your own approval rather than automatic approval.
- The approved destination is remembered for the call, and execution refuses if
out_dirwas added, removed, or changed after you approved it. - The result line becomes a count of documents saved under the directory plus a skipped count.
- The parameter is only offered when the artifact database action itself is available in the session.
read_db saves only to local directories — out_dir names a network path
Strings lifted out of the shipped bundle, so the claim above can be checked against them.