
vm2
Isolated JavaScript sandbox for Node.js that runs untrusted code with restricted access to built-in modules and host resources via Proxy-based…

Isolated JavaScript sandbox for Node.js that runs untrusted code with restricted access to built-in modules and host resources via Proxy-based…

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

Sandbox untrusted code with safe access to the host.

Source code of a multiple series of tutorials about the hypervisor. Available at: https://rayanfam.com/tutorials

A secure low code deception runtime framework, leveraging AI for System Virtualization.

Run Coding Agents in Sandboxes. Control Them Over HTTP. Supports Claude Code, Codex, OpenCode, and Amp.

Secure code execution

Secure runtime to sandbox AI agent tasks. Run untrusted code in isolated WebAssembly environments.

WASM sandbox with capability enforcement for AI agent code. Agents can only call explicitly provided tools with defined constraints. Sandboxed…

Run untrusted AI code safely, fast

GO sandbox to run untrusted code

CVE-2020-0890 | Windows Hyper-V Denial of Service Vulnerability proof-of-concept code

Let your AI go full send. Your home directory stays home.

HyperDeceit is the ultimate all-in-one library that emulates Hyper-V for Windows, giving you the ability to intercept and manipulate operating system…



Macro-header for compile-time C obfuscation (tcc, win x86/x64)

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)