2 ms·
...or...just hear me out now...we could limit it in the harness. Don't give it shell access, just predefined tools.
by weebull 2mo ago
...or...just hear me out now...we could limit it in the harness.
Don't give it shell access, just predefined tools.
- killerstorm 2mo agoWhat if it puts malicious code into test file and you allow `npm run test `?
- mikesir87 2mo agoDisclaimer - on the Docker DevRel team One of the demos I run is how easy it is to circumvent the harness limits. For example, I can configure a harness not to access file `secrets.txt`. But, then I can immediately have it create a Python file that can read any file and have it read `secrets.txt`. At the end of the day, "please" isn't security. You want to know that the agent can only do and access the things it should access.