Dokumentationerreichbar
Anthropic, Development containers
code.claude.com (externe Seite)
Die Anleitung zum Dev-Container samt der Beispielfassung mit einer Firewall, die alles verbietet, was nicht ausdrücklich erlaubt ist. Wertvoll ist sie vor allem, weil sie ihre eigene Grenze benennt: Der Container hält niemanden davon ab, alles auszuleiten, was in ihm erreichbar ist, und dazu gehören die Zugangsdaten von Claude Code selbst. Ebenso steht dort, dass das eingehängte Projektverzeichnis unmittelbar auf dem Rechner des Benutzers liegt, ein Schreibzugriff darin also die Grenze gar nicht erst berührt. Die Beispielfassung bezeichnet sich ausdrücklich als Ausgangspunkt, den jeder an seine eigene Umgebung anpasst.
geprüft 24.09.2026
Worauf sich diese Seite beruft, wörtlich, abgerufen am 03.09.2026:
While the dev container provides substantial protections, no system is completely immune to all attacks.
bestätigt 24.09.2026dev containers do not prevent a malicious project from exfiltrating anything accessible inside the container, including the Claude Code credentials stored in
bestätigt 24.09.2026Claude can still modify any file in the bind-mounted workspace, which appears directly on your host, and reach anything the container's network policy allows.
bestätigt 24.09.2026