Or lets just go the next step and create a fully customizable sandbox with enable/disabled commands and scopes. Even go as far as different permission levels for each script, defining the directory(s) it has access to and such...

Of course this would be exceedingly complex, but I see no other way everyone would be happy.