|
|
|
|
|
by __MatrixMan__
443 days ago
|
|
I think that's stating it a big too strongly. You can just run the LLM as an unprivileged user and restrict their behavior like you would any other user. There are still bad things that can happen, but I wouldn't characterize them as "this security is full of holes". Unless you're trusting the output of the explicitly untrusted process in which case you're the hole. |
|
Basically, an LLM can have the ability to access the web or it can have access to private information but it can’t have both and still be secure.