Safe YOLO Mode: Running LLM agents in vms with Libvirt and Virsh
9 points
1 day ago
| 2 comments
| metachris.dev
| HN
KaiserPro
1 hour ago
[-]
Whilst it is safer to run inside a Vm/container, it doesn't make it safe.

Yes, having your entire filesystem deleted is much less likely now (bonus points for zfs snapshots of the image for each operation) Your context is still vulnerable, as anything the VM has access too.

reply
dk8996
1 hour ago
[-]
Interesting. Im looking for solution to run multiple OpenClaw bots in the cloud, with security and isolation in mind.
reply
ews
54 minutes ago
[-]
I ended up using guix shells (container mode) for my agents and sharing just the directories they need
reply