Go hard on agents, not on your filesystem: https://jai.scs.stanford.edu/

Discussion: http://news.ycombinator.com/item?id=47550282

jai - easy containment for AI agents

Super-lightweight Linux sandbox for AI agents