logoalt Hacker News

Giving an LLM your prod database is easy. Taking access away is the hard part

4 pointsby venkat971today at 3:33 AM2 commentsview on HN

Comments

duttishtoday at 6:36 AM

It seems they're conflating two different risks? Read-only connection is a solution to Integrity risk, while they straight away start talking about Confidentiality risk instead.

They're also problematic, but different kinds of problematic and I don't see how this is different from managing employees database access.

Then there's no mention of handling Availability risk management. An employee or agent querying the entire order table joined with... and the entire db cluster is choked for two hours.

show 2 replies
Priya_17_today at 5:58 AM

[flagged]

Stack_overloadtoday at 5:39 AM

[dead]