Demonstrate three separate permission controls:
toolslimits which tools the model can see.allowed_toolspre-approves the read-only tools.can_use_toolevaluates the remainingBashrequest at runtime.
Complete the repository setup, then:
python -m venv .venv
source .venv/bin/activate
pip install -r requirements.txt
python main.py /path/to/git/repositoryThe callback allows only git status --short, git status --porcelain, and
their --no-pager equivalents. It denies every other shell command. The sample
does not modify the repository.