Comment by pluralmonad
4 days ago
I have a separate removable SSD I can boot from to work with Claude in a dedicated environment. It is nice being able to offload environment set up and what not to the agent. That environment has wifi credentials for an isolated LAN. I am much more permissive of Claude on that system. I even automatically allow it WebSearch, but not WebFetch (much larger injection surface). It still cannot do anything requiring sudo.
Man, let me tell you about virtual machines, it’s gonna blow your mind.
Call me old fashioned but I like my tangible approach.
You also get to run both systems on bare metal. Nothing wrong with this.