Audit, document, and replace risky shell/git/install commands such as curl-pipe-shell, rm -rf, git reset --hard, chmod 777, or forceful installers. Use before adding examples, install docs, cleanup scripts, or agent-executable commands.