3 ms·
I don't really feel like permissions is the hard bit here. The hard bit is that for an agent to do any kind of useful work it needs access to a lot of stuff. Fu
by zaphar 18d ago
I don't really feel like permissions is the hard bit here. The hard bit is that for an agent to do any kind of useful work it needs access to a lot of stuff. Further, the stuff it needs access to probably has vulnerabilities the agent can do. We have not exactly designed our environments for a use case like this. I've gone through the sandboxing exercise for an agent and by the time I had given it enough permissions to do anything useful my sandbox looked like swiss cheese.
- recursivecaveat 18d agoI keep seeing the same contradiction: people consider certain activities like "write code that me or my customers run" or "read my email", to be table stakes abilities for an agent. At the same time, they expect some kind of sandbox that prevents even a malicious agent from doing damage. You already gave it the most broad and powerful possible capabilities at the beginning though, there's not even a barn left to close the door on.
- ppseprus 18d ago[flagged]
- ppseprus 18d ago[flagged]