Hacker News
new
past
comments
ask
show
jobs
points
by
BeetleB
5 hours ago
|
comments
by
vitro
5 hours ago
|
[-]
Then, run the agent vm-sandboxed, with tests mounted as a read-only directory, if your directory structure allows it.
reply
by
jsw97
4 hours ago
|
parent
|
[-]
Or, less securely, hash the tests and check the hash with a hook, post tool use. Or a commit hook.
reply