Remix.run Logo
myaccountonhn 2 hours ago

I do it, and run claude as a separate unix User.

__MatrixMan__ 2 hours ago | parent | next [-]

This is the only kind of agent security that makes sense to me. Constrain it like you would any other subprocess. Unprivileged OS users, SELinux, firewalls, VMs... Unikernels? eBPF?

dist-epoch an hour ago | parent [-]

Escalations to root are a dime the bucket.

mlperson an hour ago | parent | prev [-]

Me too.