Y
Hacker News
new
|
ask
|
show
|
jobs
by
vitro
105 days ago
Then, run the agent vm-sandboxed, with tests mounted as a read-only directory, if your directory structure allows it.
1 comments
jsw97
105 days ago
Or, less securely, hash the tests and check the hash with a hook, post tool use. Or a commit hook.
link