Researcher: Agents that can work in a sandbox shouldn't have outbound access at all

moniquejmorrow · x · 2026-10-02

AI researcher moniquejmorrow proposes a security design principle: if an agent's task can be completed entirely inside an approved environment, it should not have outbound network access.

Leaving the channel open and simply instructing the agent not to use it makes containment depend on the model's adherence to directions rather than architectural guarantees. Real constraints should be enforced by the environment, not by the model's obedience.

Related event: Security Researcher: Agent Least Privilege Must Be Enforced by Architecture(2 posts)→

Original post →

More from coding & agent

coding & agent channel →