I mean, it's "run a subset that is supported by wasi" not "untrusted code"
Traceback (most recent call last):
File "/src/code.py", line 3, in <module>
print(os.listdir('/'))
^^^^^^^^^^^^^^^
FileNotFoundError: [Errno 44] No such file or directory: '/'
OT1H, I do appreciate the sandbox-y nature of run fake code, but OTOH I would think a much less explodey way of shimming out untrusted code would be an in-memory filesystem so things blow up lessI guess put another way: who is the target audience for this?