Expand description
chat_attach: send a file with a chat session’s reply.
The tool checks the file, copies it into the channels’ media outbox, and reports the copy; the chat client that owns the session sends it after the reply text and sends nothing from anywhere else. Because model input can carry injected instructions, the tool refuses anything that is not a regular file, anything over the size limit, and every known secret location, judged after symlinks resolve. This stops a model from mailing out keys by path; a model with a shell can still copy data elsewhere, so it is a guard, not a sandbox.
Structs§
- Chat
Attach Config - Where
chat_attachmay read from, and where its copies go.