Replace custom sandbox with Unix user permissions. Each Telegram user maps to a Unix user. run_bash executes via sudo -u <user>. read_file respects Unix permissions. Remove command blocklist. Skills from /home/<user>/skills/ + shared. See t-703 for background.
Ava verified: commit found in live history referencing this task/feature. Moving to Verified.