As much as I hate vibe-coded "slop". I feel like this is idiotic. I and most good engs with decades of experience do use AI now to type nearly all the actual "code", but we read EVERY SINGLE line, always fix and rework every feature before a commit to make it clean, optimized, and de-slopified.
But still, we wouldn't be allowed to use codeberg because "generative ai" was used significantly for most lines of code?
AFAICT they are dealing with resource exhaustion from slopcoding agents hammering them with copycat garbage. It's existential. If you use AI to help you thoughtfully write code, review it with humans, and respect their service, I don't think they will have a problem with you.
Maybe not... I personally wouldn't use a service that would boot me off if they did find out because I spoke about it online or committed too much code one week or something.
right, but say you give the agent access to github and it can push as you, or make a gist; now it can easily exfiltrate your secret.
And that's just an easy case - really if it has any network access at all it can come up with a clever way to route a request through the network such that the key comes back somewhere in the request. If you scan for it inbound too, the machine can obfuscate it.
Our agents are trained to be so intensely helpful and they have such intricate knowledge of how things work that they will do some incredibly clever tricks to do what you ask them to do.
The agent has no access to the secret. It has a placeholder that is replaced at a higher level. When it makes the network request the secret is substituted but that is outside of the caller's worldview.
microsandbox maintainer here. the custom certificate is installed in the guest's trusted root CA list, so it should work across any program, except where the program opts to explicitly pin certificates for a destination.
Yes, I read it. That means that it doesn’t work in those cases. Btw, as a developer it’s very easy to have something like that. It’s not as trivial as it seems at all. I encountered with similar problems all the time, with similar solutions (mainly for security theater reasons) in the past. There are websites which simply doesn’t work if you replace certificates, regardless of browser or CA for example.
Yes, I've worked with people who have run into issues with "security" solutions like ZScaler. I have tried it with some APIs (like GitHub) and it does work. Not to say it will work in your case.
This is what I currently do, but my software uses docker and docker mounts act as a bypass for the file system restrictions, plus docker processes started outside the sandbox allow network proxy escape.
Currently, I don't allow the agent access to docker, start docker myself, and then do short-lived sandbox-free sessions when the agent needs to do things that interact directly with docker; but that's annoying.
Operating systems ought to be providing us the utilities we need to safely sandbox processes (agent or otherwise), but they appear to not be interested in the job
> projects that mostly consist of code written by "generative AI"-tools
And "mostly" here seems egregiously undefined to me
https://codeberg.org/Codeberg/org/commit/96fac426a32d1ba91ff...
reply