logoalt Hacker News

mkespertoday at 9:40 AM1 replyview on HN

When the agent uses your GH credentials to nuke all your projects or put out a lot of crap, this separation will not save you.


Replies

nopurposetoday at 10:03 AM

whitelisting `gh` args should solve it. Event opencode's primitive permission system allows that.