It got itself in a loop and killed the running backend process, then searched my filesystem for the changes it thought it needed (not the ones I gave it) in order to run its own copy of the backend.
That is precisely _not_ what I _told_ it to do. The other part of this is that I find, unless explicitly told to ask questions, they don't do a good job of gathering evidence before making such decisions. I'd much rather have my agent ask me a clarifying question than start killing processes at will.
"Eager" is good. "Overeager" is definitionally bad.
Being overeager is not what we want. How to prevent it is a different issue.
P.S. The response completely ignores this argument. If I say "fix X" and it does so illegally or destructively or harmfully to myself or others, that's over eager by definition. Again, how to prevent that is another matter.
> I think everyone has different examples in their mind
Yeah, some have examples in mind that go out of their way not to engage the issue -- that's a form of bad faith.
That being said, I think everyone has different examples in their mind. So I think it's possible we're all arguing over different issues.
That rules shouldn't be broken is implied by what a rule is. If I tell it to not violate its permissions, do I also need to tell it to obey when I tell it not to violate its permissions, and so on?