I.e. in theory the most secure might be a virtual machine with no network access. But then how do you access the LLM provider? Etc.
I.e. in theory the most secure might be a virtual machine with no network access. But then how do you access the LLM provider? Etc.
It's been a real education. I talked to one of the people behind Caja and learned a lot.
Why did you not embed your language into another one, with type system that is superset of what you need?
For example, there's capabilities expressed in Haskell: https://github.com/tweag/capability
Capabilities there are tracked at type level and are subject to type erasure, if possible.
Bluefin is used in production, and as far as I know capability is not.
You can expose an HTTP proxy over a vsock into the VM.