Agent sandbox: prompt when commands use absolute paths or parent traversal

Feature request for product/service

Cursor IDE

Describe the request

When “Auto-Run in Sandbox” is selected: Mandate a prompt when Agent commands use absolute paths or parent traversal

Request:
Require explicit user approval when the agent runs commands that use absolute paths or “..” (parent directory traversal).
Allowlist’ed commands that stay within the workspace using relative paths would run without prompting.

Clarification:
Unless “Run Everything” is selected, even commands in the Allowlist should be subject to this level of scrutiny.