Conversation

Jarkko Sakkinen

I created a proof-of-concept fork of pi-hashline-readmap plugin, integrating sandbox to its compressed bash output pipeline:

https://github.com/jarkkojs/pi-hashline-readmap

It's a bit more non-trivial integration example because bash hook cannot just be repealed and replaced.

With a very thin and unintrusive layer that Landlock LSM provides and SECCOMP notifications further help to make more robust Landstrip provides very lean integration path for sandboxing coding agents in Linux. And yeah, stuff like below can be described with this.
1
0
2

This is what it does:

 Extension "command:hindsight:setup" error: EACCES: permission denied, open '/home/jarkko/.hindsight/config.json'
0
0
1