I am a little confused about one point, you said the LLM unsets the envvars. But how can it do so if it does not have a tool available outside the bubble wrap? Did you disable the normal bash tool in pi yet?
Continue the conversation
Join the Discord to ask follow-up questions and connect with the community