The scary: Utter lack of any kind of sandboxing here scares me. This thing is supposed to digest text from all kinds of sources, and runs nodejs for all kinds of tasks under the covers all the time.
The weird: the javascript it's supposed to run is included as part of the prompt, for the LLM to write to a file via tool calls.
The naive: "Never actually send emails - only create drafts" yeaah the text generator really doesn't work like that.
https://github.com/rowboatlabs/rowboat/blob/f68887496bcb608e...
https://github.com/rowboatlabs/rowboat/blob/f68887496bcb608e...