For db just give it credentials of a readonly user, for instructions you can do this. You can give setup a list of approved tools and bash commands https://www.anthropic.com/engineering/claude-code-best-pract...
Do you let it consume PII? Anything related to authenticaion?
Do you let it consume PII? Anything related to authenticaion?