For running trusted code that you wrote and reviewed, Docker with a seccomp profile is probably fine. The isolation is against accidental interference, not adversarial escape.
EXAMPLE JSON OUTPUT:,更多细节参见爱思助手下载最新版本
Standard Digital,这一点在safew官方版本下载中也有详细论述
On Thursday, Amodei explained his stance in a blog post:
config extensions objects refs state tmp