Y
HN Search
Hacker News Search
new
|
comments
|
top
|
jobs
cristianleo
searching PlanetScale…
1.
▲
2.
▲
3.
▲
4.
▲
5.
▲
6.
▲
4 ms
·
1.
▲
by
cristianleo
5mo ago
You hit the nail on the head. Mounting `/var/run/docker.sock` is basically giving the agent root access to the host, which defeats the purpose of the sandbox. Armorer avoids the DinD problem entirely. The control plane (Armor
2.
▲
Show HN: Armorer – A secure local control plane to sandbox AI agents in Docker
(github.com)
3 points
by
cristianleo
5mo ago
|
2 comments
3.
▲
Show HN: Armorer – A secure local control plane for AI agents
4 points
by
cristianleo
5mo ago
|
1 comments