3 ms·
Models start going to extreme, damaging lengths to achieve ambiguous prompts[0]. Having good sandboxes is now a must IMO. But sbx is a bit annoying to use with
by espadrine 2mo ago
Models start going to extreme, damaging lengths to achieve ambiguous prompts[0]. Having good sandboxes is now a must IMO.
But sbx is a bit annoying to use with OpenCode for instance (which has zero sandboxing by default, unlike codex CLI or Claude Code). You cannot easily change ~/.config/opencode/opencode.jsonc AFAIK.
[0]: Black Hat OpenAI-Hugging Face incident: https://www.youtube.com/watch?v=87DyyMV0kCY&t=1021s https://www.youtube.com/watch?v=87DyyMV0kCY&t=1021s
- eli 2mo agoThat incident was with a model that had the guardrails disabled. Still obviously you should run all untrusted code in a sandbox, but extreme actions like that would be very unusual with the model that shipped.
- dbmikus 2mo agoWhat's your problem with the OpenCode config? My startup (https://github.com/gofixpoint/amika https://github.com/gofixpoint/amika) copies agent configs into local or cloud sandboxes We run OpenCode currently, but need to improve the setup for users, so would like understand more of the issues you have sandboxing it, if you can share