logoalt Hacker News

gos9yesterday at 7:50 PM1 replyview on HN

How is a dedicated Mac not a sandbox?


Replies

KaiserProyesterday at 8:01 PM

Because the bit thats import is your context (ie email, credit card, privileged data), not the place where you do the execution.

Having a separate machine thats isolated is all well and good, but that doesn't protect you from someone convincing your openclaw to give them your credit card.

show 1 reply