Running Claude Code without web search and constantly having to respond to it's permissions prompts is so slow though! I wanted something that let me get the best of both worlds, so I (well, Claude mostly) ended up building cco, which runs Claude Code in a customized docker env that gives it access to all it's tools, but also keeps it safely away from the rest of your computer.
So far it's neatly solved my yolo mode misgivings, maybe it can solve yours too. It doesn't guarantee your computer will be 100% safe, but running Claude Code inside cco should definitely be safer.