Ask HN: Secure wrapper for coding agents?

I believe someone recently posted sort of a secure harness/wrapper for running coding agents in a secure sandbox. I can't find the project.

Of course I can make my own wrapper with systemd-nspawn, kata or bspawn, but I believe I saw a decently well-maintained project just a while back. Does anyone have a suggestion or link? It's become extremely hard to find things on GitHub with all the generated projects.

8 points | by rjzzleep 5 hours ago

4 comments

  • ca_tech 11 minutes ago
    If you are running MacOS, I would recommend Agent Safehouse. Well maintained and is built on existing sandbox-exec so you are not locked in and can always build your own rules independent of the CLI tool.

    https://github.com/eugene1g/agent-safehouse/ https://agent-safehouse.dev/

    Originally posted on HN https://news.ycombinator.com/item?id=47301085

    • atombender 1 minute ago
      Seconding this. I've been running Safehouse for months and love that it can wrap any process (it's just a wrapper around the native macOS sandbox API, after all). The only thing I miss is the ability to limit network access, which isn't supported by the API.
  • aborsy 24 minutes ago
    Docker has introduced sandboxes for this purpose.
  • sanju3026 4 hours ago
    I believe you're looking for Era. It uses libkrun for local microVM isolation and was built specifically to solve the "LLM hallucinated a destructive bash command" problem without the overhead of a massive VM.

    Another one that handles this gracefully is Yolobox, which uses rootless Podman. Both are actively maintained and cut through the noise of the thousands of generic wrapper repos out there right now.

  • rohityin 3 hours ago
    Have you thought About docker?