Skip to content

Add sandbox mode with restricted file reads #30

@t-kalinowski

Description

@t-kalinowski

The sandbox should support file-read restrictions, not only restricted writes and restricted network.

When harness-specific sandbox settings are available, mcp-repl should detect them and match them. Otherwise, a sensible default would be workspace-read.

This should also leave room for a future mcp-repl configuration layer that exposes sandbox options more explicitly.

Source: #28

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions