Eval docs now warn that scores from untrusted suites granted Bash should be treated as advisory.
What's wrong with this entry?
The eval sandbox documentation now warns that the harness judges a run from the child process's output and files, which a shell-granted process running as you can also reach. Scores from an untrusted suite run with --allow-tools Bash, or any other grant that can execute code, should be treated as advisory unless the run had operating-system-level isolation.
- Text only; the sandbox itself behaves as before.
treat scores from an untrusted suite run
Strings lifted out of the shipped bundle, so the claim above can be checked against them.
Related
Other releases about the same thing. Found by shared names or similar wording; neither means one caused the other.
-
v2.1.234
Every session now gets the
cdpermission warning in the Bash toolBoth mention tool bash
-
v2.1.234
Command lessons are recorded with the command that produced them
Both mention tool bash
-
v2.1.238
Directory tracking for backgrounded commands no longer breaks early
Both mention tool bash