Hacker News new | ask | show | jobs
by ithkuil 83 days ago
The sandbox only limits what processes spawned by Claude can do. Claude itself can read from any directory you tell it to read from (i.e. that's a different permission mechanism)