Play / The map / The capabilities / Delete files anywhere the account can reach

Delete files anywhere the account can reach

delete.file.hostdelete × file at host reach (the machine, container or account it runs as). Family: filesystem. Effect: cannot be undone.

Granted by 4 of 9

ProfileControl on the pathEvidenceVia
Claude Code — web container● noneobservedshell (Bash)
Claude Code — local · confirm off● nonederivedshell (Bash), files (Read, Edit, Write)
Claude Code — local · confirm on● nonederivedshell (Bash), files (Read, Edit, Write)
GitHub Actions — hosted runner● noneobservedthe job's shell

What narrows it

The setting: the same container or account; and a backup that the agent cannot reach, because delete at host reach is irreversible

What it costs: as above, plus a backup outside the grant

Tier after: boundary

In the mandates

Edit the primitives · edit the reductions