I can trivially write code that safely puts untrusted data into an SQL database full of private data. The equivalent with an LLM is impossible.
It's trivial to not let an AI agent use curl. Or, better yet, only allow specific domains to be accessed.
It's trivial to not let an AI agent use curl. Or, better yet, only allow specific domains to be accessed.