- Published on
A field guide to sandboxes for AI
Simon Willison on the isolation options for running untrusted code: containers, microVMs, gVisor, and WebAssembly, and what each one actually protects you from. Relevant the moment you let an agent execute something you did not write.