Hacker News new | ask | show | jobs
by jkukul 86 days ago
Enabling Claude Code's sandbox (as OP suggested) does exactly that. It's a system-level filesystem sandbox that only permits access to specified locations for any process, including the python interpreter.