It's trivially easy to get Claude Code to go out of its sandbox using prompting alone.
Side note: I wish Anthropic would open source claude code. filing an issue is like tossing toilet paper into the wind.