logoalt Hacker News

bootloopedtoday at 4:01 PM1 replyview on HN

It weirds me out a bit that Claude is able to reach outside the sandbox during a session. According to the docs this is with user consent. I would feed better with a more rigid safety net, which is why I've been explicitly invoking claude with sandbox-exec.


Replies

SignalStackDevtoday at 6:05 PM

[dead]