i don't see the issue. you can view the script before you run it. shoot, you can feed the script to an LLM and have it do a security check beforehand