• utopiah@lemmy.ml
    link
    fedilink
    arrow-up
    9
    arrow-down
    1
    ·
    edit-2
    7 hours ago

    As mentioned on another Lemmy server IMHO and as the vibe coder mentions in his video the main problem isn’t that LLMs suck in general (hallucinations, ecological costs, lack of openness for the most popular ones, performance, etc) but rather that this specific tool made by Google does not sandbox anything by default.

    • Scrubbles@poptalk.scrubbles.tech
      link
      fedilink
      English
      arrow-up
      1
      ·
      7 minutes ago

      Oh my god really? Cursor explicitly asks you each command and could only do this in “yolo” mode. Not having these guardrails is insane

      • utopiah@lemmy.ml
        link
        fedilink
        arrow-up
        1
        ·
        4 minutes ago

        Well there are guardrails from what I understood, including :

        • executing commands (off by default)
        • executing commands without user confirmation (off by default)

        which are IMHO reasonable but if the person this happened to is right, there is no filesystem sandbox, e.g. limited solely to the project repository.