Gemini CLI PR isolates settings dir in sandbox containers to stop OAuth credential leaks

jvargassanchez-dot · ghdev · 2026-09-05

A gemini-cli PR addresses a security gap: when running inside Docker/Podman sandboxes, the host's /.gemini directory was mounted directly into the container, potentially exposing OAuth tokens, account credentials, and auth stores.

Key changes:

Original post →

More from coding & agent

coding & agent channel →