logoalt Hacker News

donkeylazy456today at 6:22 AM2 repliesview on HN

I don't like that we need to handle docker(container) ourselves for sandboxing such a light task load. The app should provide itself.


Replies

bossyTeachertoday at 6:42 AM

>The app should provide itself.

The whole point of the container is trust. You can't delegate that unfortunately, ultimately, you need to be in control which is why the current crop of AI is so limited

essephtoday at 6:33 AM

The problem is you can't trust the app, therefore it must be sandboxed.