| ▲ | myaccountonhn 2 hours ago | |||||||
I do it, and run claude as a separate unix User. | ||||||||
| ▲ | __MatrixMan__ 2 hours ago | parent | next [-] | |||||||
This is the only kind of agent security that makes sense to me. Constrain it like you would any other subprocess. Unprivileged OS users, SELinux, firewalls, VMs... Unikernels? eBPF? | ||||||||
| ||||||||
| ▲ | mlperson an hour ago | parent | prev [-] | |||||||
Me too. | ||||||||