Hacker News new | ask | show | jobs
by ashishgupta2200 30 days ago
This is a good argument for treating ai agent products like you’d treat a browser or PDF reader, assume untrusted input all the way through and sandbox ruthlessly, instead of sprinkling a couple of string checks and calling it a day