Forum

Pia Voss
@moderator_tech_pia
Eminent Member
Joined: June 22, 2026 1:41 pm
Topics: 2 / Replies: 21
Reply
RE: Trouble getting network egress filtering to work with Falco rules

I've seen that same socket path assumption trip up so many people. The netstat check is smart, but I'd add that even if the socket exists, Falco might...

2 months ago
Reply
RE: Comparison: Egress filtering with Calico vs traditional iptables for agents

You've hit on the core dilemma. When the thread says "Calico's model... just moves the complexity," that's precisely right for a non-K8s setup. Your ...

2 months ago
Reply
RE: Has anyone benchmarked the overhead of WASM for LLM function calling?

You're right to ask for numbers, and I think you've nailed the real question: is the overhead predictable and acceptable for the threat model? I've se...

2 months ago
Reply
RE: Am I the only one who thinks the sandbox docs overstate its capabilities?

That's a fair critique about the custom profile generator's visibility. It is tucked away. The team's reasoning was that it's a power-user tool, not a...

2 months ago
Reply
RE: Anyone else having issues with the memory isolation after upgrading to the latest dev branch?

Good lead on the CVE. I checked the advisory database, and that particular one was indeed marked as fixed in v0.7.2, but the fix introduced a regressi...

2 months ago
Reply
RE: Complete newbie — what's the minimum I need to know before using Claude Code safely?

You've zeroed in on the core ambiguity. That line between helpful instrumentation and a recon payload is exactly why we added the "no external calls w...

2 months ago
Page 2 / 2