frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Ask HN: How are you sandboxing coding agents?

7•m-hodges•2h ago
I've seen people rely on built-in sandboxes, use git worktrees (sometimes inside devcontainers), or run the whole agent inside a Linux VM with minimal host mounts. On Linux, I’ve also seen firejail/bubblewrap mentioned.

For folks actually using these tools day-to-day:

What’s your default setup?

Have you had any "learned the hard way" moments?

What tradeoff (safety vs convenience vs parallelism) has mattered most in practice?

I'm less interested in theoretical best practices than what's actually holding up under real use.

Comments

netcoyote•2h ago
I use a Mac, and wanted to be able to run MacOS programs like Xcode and iOS simulator, so I wrote a couple of different sandbox projects:

- SandVault (https://github.com/webcoyote/sandvault) runs the AI agent in a low-privilege account

- ClodPod (https://github.com/webcoyote/clodpod) runs the AI agent inside a MacOS VM

In both cases I map my code directories using shares/mounts.

I find that I use the low-privilege account solution more because it's easier to setup and doesn't require the overhead of a full VM

sixhobbits•37m ago
I have time machine and just let them fly with --dangerously-skip-permissions on my Mac. Worst thing it's done is back up a database, delete the database, and then run git clean locally which also wiped out the backup, so I'm not saying there are no dangers but honestly I've made worse mistakes and probably more frequently so I generally trust Claude with about the same level of access as me now.

Most common is deleting files etc but if you're using git and have backups it's barely noticeable

gl-prod•29m ago
I spin a Firecracker VM with a custom image that has all the things I need.
stavros•11m ago
I wrote a small utility that wraps commands in Docker: https://github.com/skorokithakis/dox
jomcgi•8m ago
I have a web ui for managing / interacting with opencode sessions. Everything runs as a pod in my homelab cluster so I can let them "bypass" permissions and just restrict the pods.

I wanted something like Claude code web with access to more models / local LLMs / my monorepo tooling, so far it's been great.

The output is a PR so it's hard for it to break anything.

The biggest benefit is probably that it makes it easier to start stuff when I'm out - feels like a much better use of downtime like I'm not waiting to get home to start a session after I have an idea.

The monorepo tooling is a bit win too, for a bunch of things I just have 1 way to do it and clear instructions for them to use the binaries that get bundled into new sessions so it gets things "right" more often.

Ask HN: What's your health/fitness/wellness routine?

1•akhilnchauhan•2m ago•0 comments

Reasoning tools knowledgebase of thinking patterns from various domains

https://github.com/dvdarkin/reasoning-tools
1•dvdarkin•4m ago•1 comments

Show HN: Snapalabra – A daily exercise for learning new vocabulary

1•detectivestory•5m ago•0 comments

Dev-db: TypeScript-first mock database generator with realistic data in seconds

https://github.com/calvin-kimani/dev-db
1•kimanicalvin•7m ago•0 comments

Show HN: An AI pipeline to find anomalies in FDA medical device reports

https://maude-analysis.onrender.com/
1•smugesh•8m ago•0 comments

Show HN: AgentCmds – A directory of slash commands for AI agents

https://agentcmds.work/
1•ho_ba•17m ago•1 comments

Progressive disclosure is essential as AI capabilities grow, so does complexity

https://1984.design/psychology-of-design/progressive-disclosure/
1•kaizenb•17m ago•0 comments

GNU Taler v1.3 Released

https://www.taler.net/en/news/2025-13.html
3•midzer•19m ago•0 comments

My web framework is 1 py file, my CRM is 1 shell script, SQLite the 1 dependency

https://github.com/danielfalbo/prev.py/blob/main/prev.py
1•danielfalbo•20m ago•0 comments

Map of my personal data infrastructure (2021)

https://beepb00p.xyz/myinfra.html
1•Tomte•20m ago•0 comments

Before Electric Vehicles Became Political, There Was the Toyota Prius

https://www.nytimes.com/2025/12/27/business/electric-vehicles-poilitics-republicans-conservatives...
1•fleahunter•28m ago•0 comments

Maia Chess

https://www.maiachess.com/
1•plaguna•28m ago•0 comments

The US Must Stop Underestimating Drone Warfare

https://www.wired.com/story/the-us-must-stop-underestimating-drone-warfare/
1•fleahunter•29m ago•1 comments

Stop the slop by disabling AI features in Chrome

https://www.theregister.com/2025/12/26/disable_ai_features_chrome/
1•abdelhousni•31m ago•0 comments

AI's trillion-dollar opportunity: Context graphs

https://foundationcapital.com/context-graphs-ais-trillion-dollar-opportunity/
1•Arindam1729•32m ago•0 comments

Formulaic Delimiters in the Iliad and the Odyssey

https://glthr.com/formulaic-delimiters-in-the-iliad-and-the-odyssey
1•glth•39m ago•0 comments

Russian drones, missiles pound Ukraine ahead of Zelenskiy-Trump meeting

https://www.reuters.com/world/europe/russian-drones-missiles-pound-ukraine-before-zelenskiy-trump...
1•JamesAdir•39m ago•0 comments

Real 2025 PostgreSQL cryptojacking incident and AI-assisted recovery

https://substack.com/inbox/post/182685208
1•levelZero•42m ago•1 comments

Spotify leak: why so many 2-minute songs

https://writingcosmo.substack.com/p/the-2m-peak
2•tsterin•43m ago•0 comments

Keeping a suspense file gives you superpowers (2024)

https://pluralistic.net/2024/10/26/one-weird-trick/#todo
1•thunderbong•46m ago•0 comments

Commandments of LLM Use

https://www.mostlylucid.net/blog/graphrag-minimum-viable-implementation
1•haraldooo•47m ago•0 comments

The Physics of Dissonance and Harmony

https://www.youtube.com/watch?v=tCsl6ZcY9ag
1•fanf2•49m ago•0 comments

Show HN: Doculearn – How much of your Gen-AI code do you understand?

https://doculearnapp.com
1•williamai_•52m ago•0 comments

Show HN: One Minute News: Your Minimalist Anti-Clickbait News Platform

https://oneminutenews.org/
2•zfoong•52m ago•0 comments

The power of box dimension attacks on the Epstein files

2•fusionlove•54m ago•0 comments

How to Annotate Everything (2019)

https://beepb00p.xyz/annotating.html
1•Tomte•58m ago•0 comments

CloudFlare is ruining the internet (for me)

https://www.slashgeek.net/2016/05/17/cloudflare-is-ruining-the-internet-for-me/
14•nomilk•58m ago•1 comments

Training intensity distribution of marathon runners across performance levels

https://researchprofiles.herts.ac.uk/en/publications/the-training-intensity-distribution-of-marat...
1•DyslexicAtheist•1h ago•1 comments

Eise.app – Easy (Planetary) Image Stacker in the Browser for Astrophotography

https://eise.app/
2•grgergo•1h ago•0 comments

AIChat: All-in-One LLM CLI Tool

https://github.com/sigoden/aichat
1•modinfo•1h ago•0 comments