Hacker News

Favorites Setup
Comment by 3eb7988a1663 | original | Mxc: Microsoft Execution Containers version 1.0.0
[−]3eb7988a1663 · 2026-10-10 Sat 16:23 UTC · link
Can I use this as a generic app permissions boundary or do I have to somehow fake it as an "agent"? We are well past the point where I need to be able to lock down that my music player has no ability to read my SSH keys or whatever.

Naturally, this will be gated to corporate customers - the plebs do not get access to better security unless they pay for a top tier license.

[−]tuwtuwtuwtuw · 2026-10-10 Sat 17:36 UTC · link
There are many things that would be good to lock down. NPM install comes to mind.

I wonder if I will be able to integrate this with dev containers somehow, so my dev container could run in stricter isolation.

[−]tomrod · 2026-10-10 Sat 17:44 UTC · link
I've seen folks using the VS Code workspaces concept for this. It's a bit limited but a good step in the direction I prefer.
[−]tuwtuwtuwtuw · 2026-10-10 Sat 18:30 UTC · link
VS Code workspaces doesn't seem to offer any protection:

https://code.visualstudio.com/docs/editing/workspaces/worksp...

Maybe you use GitHub codespaces?

[−]tomrod · 2026-10-10 Sat 18:43 UTC · link
No, I did mean VS Code workspaces. Now I'm going to go down this rabbit hole to better understand the boundary limits :)
[−]tuwtuwtuwtuw · 2026-10-10 Sat 19:52 UTC · link
I did some reading of the docs and can't see anything in VS Code workspaces that would help.
[−]tomrod · 2026-10-10 Sat 17:43 UTC · link
FANTASTIC question here. I've been locking down agents by running them as untrusted users (mostly linux here) as even docker boundaries aren't really great. Firecracker is a step in the right direction (older tech, sure, but useful). I really want a local hashicorp-like vault that I can give agents specific access permissions and it can take forever to review and manage those access boundaries.
[−]trollbridge · 2026-10-11 Sun 08:07 UTC · link
Indeed, Linux users pretty much provide enough protection and if you are willing to fiddle with SELinux you can get whatever you need.
[−]doctorpangloss · 2026-10-10 Sat 18:57 UTC · link
I guess buy a Mac then.