Remix.run Logo
aussieguy1234 7 hours ago

If you're on Linux, you can run AI agents in Firejail to limit access to certain folders/files.

nezhar 6 hours ago | parent [-]

Looks interesting. How does this compare to a container?

subsection1h 4 hours ago | parent | next [-]

Containers aren't a sandbox:

https://news.ycombinator.com/item?id=46405993

aussieguy1234 6 hours ago | parent | prev [-]

It uses Linux kernel namespaces instead of chroot (containers are just fancy Liunx chroot)

samlinnfer 4 hours ago | parent [-]

Ackually, “containers” on linux are usually implemented using linux namespaces instead of chroot.