|
|
|
|
|
by qznc
18 days ago
|
|
As opencode is inside your container, credentials and API keys are also inside the container. Prompt injection when your agent fetches some web site could have your agent leak this credentials to someone. Also, do you restrict networking or does your container have full access to your internal network? |
|
I don't use Claude or any other paid agent at the moment, so if that were to change I'd probably modify the way I run this, but with this simple set up I'm not too worried about credentials leaking.