Product wants to expose a generic SQL or shell tool because it looks powerful in demos. How would you respond?

Instruction: Describe how you would push back on a broad high-risk tool request.

Context: Tests how the candidate diagnoses the problem, chooses the safest next step, and reasons through recovery. Describe how you would push back on a broad high-risk tool request.

Official answer available

Preview the opening of the answer, then unlock the full walkthrough.

I would push back because raw power is not the same thing as a good product surface. Generic SQL and shell tools collapse many actions, permissions, and side effects into one broad interface that is hard to constrain, audit, and trust.

If there is a legitimate...

Related Questions