• @[email protected]
    link
    fedilink
    14
    edit-2
    3 days ago

    As mentioned on another Lemmy server IMHO and as the vibe coder mentions in his video the main problem isn’t that LLMs suck in general (hallucinations, ecological costs, lack of openness for the most popular ones, performance, etc) but rather that this specific tool made by Google does not sandbox anything by default.

    • Scrubbles
      link
      fedilink
      English
      22 days ago

      Oh my god really? Cursor explicitly asks you each command and could only do this in “yolo” mode. Not having these guardrails is insane

      • @[email protected]
        link
        fedilink
        32 days ago

        Well there are guardrails from what I understood, including :

        • executing commands (off by default)
        • executing commands without user confirmation (off by default)

        which are IMHO reasonable but if the person this happened to is right, there is no filesystem sandbox, e.g. limited solely to the project repository.

        • Scrubbles
          link
          fedilink
          English
          12 days ago

          Okay that changes things. If they turned off these guardrails than that was on them, never blindly trust an LLM like that