logoalt Hacker News

cassianolealtoday at 9:55 AM1 replyview on HN

> not even a container

Genuinely curious, what specific threats are you thinking about when you make this choice?


Replies

neilvtoday at 2:27 PM

Mainly routine software supply chain attacks to unexamined dependencies pulled in by a mess of vibe-coding.

(Though it would also give some protection against growth hacking or kludge expedience that goes a little too naughty. We're already seeing some questionable behavior there, as some rush to get their functionality working first.)

Since containers are for fairly trusted code, and relatively easy to break out of, compared to a good VM.