>commands and file writes get logged but don't happen. You review in a TUI, approve what's safe, then it actually executes.
This what claude already does out of the box.