That's why I run it inside a sandbox - https://github.com/ashishb/amazing-sandbox
Dagger also made something: https://github.com/dagger/container-use
Does the lack of pip confuse Claude, that would seemingly be pretty big
Dagger also made something: https://github.com/dagger/container-use