Sandboxing AI Tools with Guix Containers

26 points by munen


Sanity

Interesting. I’m using firejail after a tip from someone here, and have one emacs instance with net access and only access to a few select directories, and one with filesystem access but no net access. I copy-paste code back and forth when I use llm’s, I don’t like giving full access to private code to openai etc. Maybe a bit paranoid, but there have been so many scary attacks these last few years, I feel like it’s only a matter of time until somone finds the url to archive.openai.com/management/heapdump