Rendered at 18:58:14 GMT+0000 (Coordinated Universal Time) with Cloudflare Workers.
compiotr 1 days ago [-]
How is this different from docker sbx or microsandbox.dev? Not saying we don't need more alternatives, just asking to see if there is a reason to switch.
I _think_ (disclaimer: I have only read the documention of the two tools) they overlap quite a bit. The main idea is to get VM isolation for your agents env.
3stacks 2 days ago [-]
Oh awesome, I just started building something like this but nice to use something off the shelf for once.
I used a project called toolgate to autoapprove "safe" tool calls but request permission on riskier calls declaratively. But there's so many unnecessary tool permission requests
nibbleyou 14 hours ago [-]
Would you mind sharing a link to toolgate. Google search found a lot of matches but none that matched your description.
darkamaul 2 days ago [-]
I use coop daily and found it super convenient for my use case (ie letting agents go on with no access to my other projects or personal files)
I would recommend anyone that has desire to provide stricter boundaries to agents to give it a try - while remembering that a motivated agent would probably be able to escape it :)
bargava 14 hours ago [-]
I use cco [1]. There's also drydock [2] - but this is macOS only.
Yes, that's how I am using it. However there is an experimental qemu microvm backend and a push for podman support if that is more interesting for you.
messh 22 hours ago [-]
How is this better than say using bubblewrap sandbox solutions. Is it safer, is that the advantage?
vladde 1 days ago [-]
sidenote: coop is also a large swedish grocery chain, pronounced the same way :)
not only in Sweden, in Germany and Switzerland as well. I guess it has the same origins in the trade unionist purchasing cooperatives at the turn of the century from the 19th to the 20th
I used a project called toolgate to autoapprove "safe" tool calls but request permission on riskier calls declaratively. But there's so many unnecessary tool permission requests
I would recommend anyone that has desire to provide stricter boundaries to agents to give it a try - while remembering that a motivated agent would probably be able to escape it :)
--
[1] https://github.com/nikvdp/cco [2] https://github.com/sricola/drydock
https://www.coop.se/