I wouldn’t trust an agent outside of a capabilities-based OS, like if Genode was ready for production. I don’t even use AI at all, but if I was actually using agents, I’d want guarantees that not only do you not have access to certain things, you cannot properly conceive of how to access them, it is utterly beyond the agent.
If this was any other computer program that could execute arbitrary system commands unreliably, standard procedure would be to sandbox the living snot out of it.
It’s baffling to me that “AI” is somehow an excuse to ignore this. Hence that’s exactly what I mean: I’d want rock solid guarantees of containerization, and granular scoping.
I wouldn’t trust an agent outside of a capabilities-based OS, like if Genode was ready for production. I don’t even use AI at all, but if I was actually using agents, I’d want guarantees that not only do you not have access to certain things, you cannot properly conceive of how to access them, it is utterly beyond the agent.
Well, yes, exactly! You shouldn’t trust it.
If this was any other computer program that could execute arbitrary system commands unreliably, standard procedure would be to sandbox the living snot out of it.
It’s baffling to me that “AI” is somehow an excuse to ignore this. Hence that’s exactly what I mean: I’d want rock solid guarantees of containerization, and granular scoping.