
GoTEE
Go Trusted Execution Environment (TEE)

Go Trusted Execution Environment (TEE)

GoTEE - example application

The materials of "Hypervisor 101 in Rust", a one-day long course, to quickly learn hardware-assisted virtualization technology and its application…

Lightweight, secure Linux sandboxes for untrusted processes. Runs in the browser and on the server.

The fastest LoongArch sandbox

Rex is a safe and usable kernel extension framework that allows loading and executing Rust kernel extension programs in the place of eBPF.

Rust library and format specification for creating and loading Independent Guest Virtual Machine (IGVM) files, supporting hardware-isolated VMs with…

Ultrafast CLI on Apple Silicon macOS for fast, sandboxed development and LLM agents.


WASM sandbox with capability enforcement for AI agent code. Agents can only call explicitly provided tools with defined constraints. Sandboxed…

Run Coding Agents in Sandboxes. Control Them Over HTTP. Supports Claude Code, Codex, OpenCode, and Amp.

Secure runtime to sandbox AI agent tasks. Run untrusted code in isolated WebAssembly environments.

Sub-millisecond VM sandboxes for AI agents via copy-on-write forking

RISC-V emulator in Rust that boots Linux with JIT on ARM64/x86_64 and Sv39 virtual memory

Automate the creation of a lab environment complete with security tooling and logging best practices

A Microservices-based framework for the study of Network Security and Penetration Test techniques