The OpenAI–Hugging Face Incident: Why a Sandbox Needs a Gate
An autonomous agent chained a package-proxy zero-day, privilege escalation, lateral movement, and stolen credentials into remote code execution on production infrastructure: thousands of small actions inside sandboxes that held at the boundary. Here is what was actually reported, and why per-tool-call governance is the layer that complements containment for the coding agents you run.