3 ms·
I have been running Claude Code using its built-in /sandbox feature with this config: "sandbox": { "enabled": true, "failIfUnavailable": true, "a
by DanielHB 2mo ago
I have been running Claude Code using its built-in /sandbox feature with this config:
"sandbox": {
"enabled": true,
"failIfUnavailable": true,
"autoAllowBashIfSandboxed": true,
"allowUnsandboxedCommands": false,
"filesystem": {
"allowWrite": [
"."
],
"denyRead": [
"~/*"
],
"allowRead": [
".",
// a few more dirs
]
}
},
"defaultMode": "auto"
But that doesn't feel nearly safe enough.
What is the most pragmatic way to run agentic AI properly isolated?
I am guessing:
1) Run the harness inside a docker container
2) Volume-mount my project folder (and depending on the dev stack the dependencies folder) into the container
3) Install dependencies from outside the container (no private registry keys)?
4) Run git commands from outside the container (no git ssh key)
Anything I am missing?