- Posted on
- Featured Image
Practical guide to harden Linux AI agents with least‑privilege, OS‑level controls and copy‑paste Bash: sandbox with Podman or bubblewrap, enforce default‑deny outbound egress via nftables, load secrets at runtime with sops/age, detect prompt injection and data leaks using canaries/lints, and log/audit with auditd and systemd—complete with apt/dnf/zypper installs—so injected pages can’t exfiltrate keys.