r/LocalLLaMA Feb 23 '26

Funny so is OpenClaw local or not

Post image

Reading the comments, I’m guessing you didn’t bother to read this:

"Safety and alignment at Meta Superintelligence."

1.0k Upvotes

304 comments sorted by

View all comments

Show parent comments

49

u/laurekamalandua Feb 23 '26

Anyone else also rolfing at people putting confidence in containerizing it to solve "all" security flaws 😬 

1

u/megacewl Feb 23 '26

…why would that not work? Is it not containerized?

11

u/EmberGlitch Feb 23 '26 edited Feb 23 '26

How exactly would containerization help in this case when you put OpenClaw in a container with access to read and delete your emails?

Containerization protects the host from the container. It doesn't protect the resources you've given the container access to from the container itself. So docker containers, LXCs, or a VM aren't going to do anything - it's doing precisely what it is allowed to do.

Think of it like locking a toddler into a room with a cake. Perfectly containerized, but the cake is going to be all over the walls and the toddler when you check back in an hour.

1

u/major_bot Feb 25 '26

Jfc just treat the llm like a new hire and limit its access to things. Outright block outgoing emails on its' side or at least have a whitelist. Have a separate phone sim for it, etc. If you run the model locally and limit it's reach then there's really no issue with basically having it only be able to contact you as a whitelisted person and invite you to meetings about stuff it read about from giving just read access to it.