Dev Ditches Approval-Gated Assistants, Runs One Inside a VM Instead

davidcrawshaw · x · 2026-10-09

In the thread on over-restrictive AI assistants, davidcrawshaw reports his assistant refused to use an MCP tool citing permissions. His workaround: run the assistant inside an execution VM, which works far better than fine-grained approval gates.

Related event: Ex-Docker Engineer Slams AI Assistant dots Over Permission Overload(2 posts)→

Original post →

More from coding & agent

coding & agent channel →