2 notes tagged security, newest first.
Coding agents should run unsupervised, but inside a dev environment that's safe to be wrong in. The agent boundary is the wrong line to defend.
GitHub had 3,800 internal repos exfiltrated via a poisoned VS Code extension. If your private repos have ever held a secret, rotate it today.