Database Query Blocklist
A second, narrower safety net. If you ever allow the agent to run raw database reads, the query blocklist stops queries that touch sensitive columns — like password hashes — from returning that data. The database query blocklist protects against…