sorry. At this point it's just a meme how people give llms open access to internet, literally all passwords and all tokens and then they are actually surprised when something bad happens "but I run it in docker"
even if docker sandbox escapes didn't exist it's just chef's kiss
Yup, very irresponsible. And then the horror stories.
ONLY agent API traffic allowed. Everything else gets blocked by iptables. ONLY agent API traffic + api.example.com and cdn.example.org. Everything else blocked by iptables.