‹ BackHN Continuity

Thread

Unsurprisingly, Meta's new Muse AI agent blatantly ignores users permissions

163 points · 43 comments · dkobia

  1. ParanoidShroom · · focus · HN ↗
    How is this possible? Apple messages are just free for anyone to read?
    1. ryandrake · · focus · HN ↗
      At least on Unix-like systems, if it's free for you to read, then it's free for any process you run as you to read. Sure, macOS has grafted its own weird "permissions" layer on top of the existing OS level permissions, but at the end of the day, when you run an app on Unix, you're allowing it to act as you, with all the powers your user has.

      This used to work when you could trust the software you ran on your system to have access to everything you have access to on your computer. I'd argue that time has largely passed, for most third-party commercial developers and even for some OS vendors.

      Best solution is to simply not run software made by blatantly untrustworthy developers. Second best solution would be to run such software as a severely sandboxed user who basically doesn't have access to anything important on your system.

      1. graemep · · focus · HN ↗
        I do not know about all Unix like OSes, but Linux has sandboxes you can run as you main user. Not as safe as running as a separate user and sandboxing, or running in a VM, but reasonably solid.

        > I'd argue that time has largely passed, for most third-party commercial developers and even for some OS vendors.

        Agreed, but what can you do about your OS vendor?

        1. brigade · · focus · HN ↗
          App store apps are required to run in a sandbox that denies file accesses without user permission.

          Muse is not available in the macOS app store. Almost certainly because of the sandboxing requirements.

Open on Hacker News to reply ↗

Unofficial Hacker News client; not affiliated with Y Combinator.