Honestly this is such an easy-to-fix problem. Claude should be a separate user, with different group permissions than the actual user. Shutdown files to more restricted permissions so Claude can’t see it. Not sure why this wasn’t implemented from jump street.
Almost like we thought about how to prevent unwanted access to files 50 years ago and need to make modern tools conform to these longstanding practices.
Claude edited its own claude(.)md file to work around the restrictions put in place to prevent it from modifying files outside its workspace.
I think you need to put hard permissions beyond md files and prompts to prevent LLMs and AI coding agents to gain access to resources they are not supposed to.
Apr 4
at
6:06 PM
Relevant people
Log in or sign up
Join the most interesting and insightful discussions.