讀原文(在新分頁開啟原站)連到 高見龍
摘要
介紹了「KeSi」工具如何透過規則控制 Shell 指令的執行許可權。它將 dangerous 命令(如 rm -rf)分類為拒絕、詢問或允許,並建立白名單與黑名單機制。透過解析指令內容而非僅依賴命令名稱,有效防止模型執行未經授權的操作,確保 AI 行為的安全可控。
This article introduces the 'KeSi' tool, which controls Shell command execution permissions by classifying dangerous commands as deny, ask, or allow. It establishes whitelist and blacklist mechanisms to prevent AI from executing unauthorized operations, ensuring safe and controllable AI behavior.
重點
- 建立白名單與黑名單控制指令執行許可權。
- 將 dangerous 命令分類為拒絕、詢問或允許。
- 透過解析指令內容防止模型執行未經授權的操作。
提到的工具與公司
- KeSi
- read_file
- list_files
- edit_file
- write_file
- run_command
適合誰看
AI 安全開發者、系統架構師、程式設計師。
摘要依據
- 依據
- 文章全文
為什麼排在這裡
- 人氣
- 0.50
- 新鮮
- 0.83
在主題頁與搜尋結果裡,名次由相關、人氣、新鮮三個分數決定;這一頁沒有搜尋的關鍵字,所以沒有相關分數。排序怎麼算
相關內容
- Day 11 - 執行 shell 指令文章 ・ 高見龍
- Why AI Agents Break the GenAI Security Model with Devvret Rishi - #770Podcast ・ The TWIML AI Podcast ・ 56 分鐘(在新分頁開啟原站)
- Engineers, DELETE the BASH Tool: Agentic Security For Pi Agent and Claude Code影片 ・ IndyDevDan ・ 31 分鐘(在新分頁開啟原站)
- Day 15 - 把 agent 關在工作目錄文章 ・ 高見龍
- EP121 从 Agent Skills 到 Clawdbot(OpenClaw),论 AI 助理的执行权与失控边界Podcast ・ 硬地骇客 ・ 48 分鐘(在新分頁開啟原站)
- How we built Claude Code auto mode: a safer way to skip permissions文章 ・ Anthropic Engineering Blog
摘要由 AI 根據原文產生,可能有誤;完整內容請看原站。讀原文(在新分頁開啟原站)
