At first, it feels harmless. If the agent is just reading files, editing local code, running tests, or helping me understand something inside my editor, using my own environment makes sense. In that situation, the agent is still under my supervision.
It is helping me work. I still review what it does. I still decide what leaves my machine. The problem starts when the agent stops only helping and s