logoalt Hacker News

simonwtoday at 3:01 AM3 repliesview on HN

Which agent sandbox do you recommend?


Replies

flexagoontoday at 5:08 AM

If you're on Linux, the easiest way IMO is to just run the agent in bwrap

I do it like this

https://github.com/flexagoon/dotfiles/blob/main/dot_config/f...

But I'm sure it's simple enough that you can just ask the agent itself to make you a command for it with proper bwrap configuration

fspoetteltoday at 6:35 AM

nono works great with pi: https://nono.sh/

mik3ytoday at 4:35 AM

I've been enjoying Moat [1]. Proxies credentials, networking, etc; uses MacOS containers if available; and setup worked without much fuss. I haven't tried others, though.

[1] https://majorcontext.com/moat/