You should not, under any circumstances, let an LLM touch the Terraform CLI. It's completely irresponsible to give an error-prone system like an LLM that kind of access.

This is what I can't get over - who in their right mind would _ever_ give an agent enough access to delete prod data?

Someone who should be immediately fired.

This is the purpose of sandbox environments.