Hazmat: OS-level containment for AI coding agents on macOS

Lobste.rs AI
Generative AI AI Tools

Blog post with the full write-up and threat model: Comments