All you need is a separate limited user account on your computer. Multi-user Unix-y systems were designed for this kind of thing for decades.
My entire development environment is literally just "sudo".
All you need is a separate limited user account on your computer. Multi-user Unix-y systems were designed for this kind of thing for decades.
My entire development environment is literally just "sudo".
I use my personal laptop for $WORK and everything work related is done via the VM.
or just have a linux vps and ssh in for $5 a month
I'm not seeing your point. Are you saying that I shouldn't use sudo because I might accidentally "run the wrong command"?
I know all the commands that I run and what they do.
> your kernel is not isolate
Am I more afraid of an npm package exploiting a zero day kernel vulnerability on my mac? Or just stealing my AWS keys and installing a crypto miner? Sudo suits my threat model just fine.
My m3 MacBook pro is a million times more powerful dev machine than a cheap $5 vps. Why would I waste my time with that.
https://www.reddit.com/r/ClaudeAI/comments/1n1moqy/how_did_c...
https://www.reddit.com/r/ClaudeCode/comments/1sa3fx8/claude_...
https://old.reddit.com/r/ClaudeAI/comments/1jfidvb/claude_tr...
Claude can run whatever commands it wants and the only harm it can do is nuke its own home directory. That's the whole point.