llm-safe-sql
源码[Moved to airframe] Let an LLM propose UPDATE/DELETE, run it for real inside a transaction, measure the actual before/after diff, and always roll back - so a human approves measured facts, not the model's claim. MySQL + PostgreSQL, MCP server, no runtime dependencies.