"Never make your code do something that it has no business doing in the first place"
Agreed. Most people would consider it an inappropriate choice for a capability to include in this sort of program. Although I'm sure the same could be said of various other functions in various other programs, where what should have been done was a smooth, common interface to the rest of the system.
However if you have decided to include it to begin with then being suspicious of external input (from anywhere, including stuff that is nominally coming from another program) seems like the basic precaution to follow.