
mitos
Millisecond microVM sandbox forking for AI agents on Kubernetes. Firecracker VMs that restore from memory snapshots in milliseconds, fork a running…

Millisecond microVM sandbox forking for AI agents on Kubernetes. Firecracker VMs that restore from memory snapshots in milliseconds, fork a running…

A secure low code deception runtime framework, leveraging AI for System Virtualization.

Sub-millisecond VM sandboxes for AI agents via copy-on-write forking

Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.

A local sandbox for your AI agents

A Microservices-based framework for the study of Network Security and Penetration Test techniques

Ephemeral microVM sandbox for AI agents with network allowlisting, secret injection via MITM proxy, and VM-level isolation. Boots in under a second,…

WASM sandbox with capability enforcement for AI agent code. Agents can only call explicitly provided tools with defined constraints. Sandboxed…

Kernel-level eBPF sandbox for securing LLM agent tool calls made through the Model Context Protocol (MCP)

Docker-based sandbox for coding agents with isolated environments, preinstalled agent tooling, service control, and workspace bootstrap for secure…

Ultrafast CLI on Apple Silicon macOS for fast, sandboxed development and LLM agents.

Lightweight, secure Linux sandboxes for untrusted processes. Runs in the browser and on the server.


A lightweight command sandbox for Linux, secure-by-default, built on Landlock.

Zero-trust sandbox for AI agents with kernel-level filesystem jail, transparent network proxy, and YAML-based policy engine to intercept and control…

Securekit is a protocol-agnostic security kernel that enforces zero-trust, sandboxed execution for AI tool use. It sits between any LLM or agent…

BPF LSM blocker for CVE-2026-31431 (Copy Fail) - zero-reboot remediation for OpenShift 4

Linux application sandboxing and distribution framework