
capsule
Secure runtime to sandbox AI agent tasks. Run untrusted code in isolated WebAssembly environments.

Secure runtime to sandbox AI agent tasks. Run untrusted code in isolated WebAssembly environments.

Your agent is a security risk, so treat it like one. yoloAI does AI agent sandboxing right.

Run Firefox in a rootless Podman container with dropped capabilities, isolated networking, and ephemeral storage to contain sandbox escapes and…

Run Windows inside a Docker container with KVM acceleration, automatic installation, and customizable resources. Supports multiple Windows versions,…

Low-level unprivileged sandboxing tool used by Flatpak and similar projects

A security-focused library OS supporting kernel- and user-mode execution

Run Coding Agents in Sandboxes. Control Them Over HTTP. Supports Claude Code, Codex, OpenCode, and Amp.

Give coding agents a disposable Linux VM, not your laptop

Let your AI go full send. Your home directory stays home.

JIT-based userspace Linux kernel that runs containers natively on Apple Silicon macOS without a VM. Drop-in Docker Engine API replacement with…

Run untrusted AI code safely, fast

Zero-trust agentic AI platform. Supports SaaS and OnPrem (airgapped) deployments.

Manage OpenClaw in your team (Enterprise) by providing it compute infrastructure, tool integration, Authentication and security primitives

Qubes containerization on Windows

Cross Distribution Exploit Testing

Proof-of-concept demonstrating a Node.js permission model bypass (CVE-2026-21636) that allows network access via undici/fetch to local services,…

kali-linux-docker

An open-source, next-generation "runc" that empowers rootless containers to run workloads such as Systemd, Docker, Kubernetes, just like VMs.