• @[email protected]
    link
    fedilink
    32 days ago

    Well there are guardrails from what I understood, including :

    • executing commands (off by default)
    • executing commands without user confirmation (off by default)

    which are IMHO reasonable but if the person this happened to is right, there is no filesystem sandbox, e.g. limited solely to the project repository.

    • Scrubbles
      link
      fedilink
      English
      12 days ago

      Okay that changes things. If they turned off these guardrails than that was on them, never blindly trust an LLM like that