Hacker Timesnew | past | comments | ask | show | jobs | submitlogin

You should ALWAYS run your agent as separate, unprivileged, UNIX user, never in your main account.

If you absolutely need to run it as your own user, you should bubblewrap it. I do this for things like Steam, games, or other "blackbox" closed source programs that cannot be reasonably trusted.

 help



You should also check that mountpoints like external disks and network resources aren't publicly accessible to other users than your own.



Consider applying for YC's Fall 2026 batch! Applications are open till July 27.

Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: