Zero, your trustworthy AI teammate for real work.
-
Updated
Aug 2, 2026 - TypeScript
An AI sandbox is a secure, isolated runtime environment designed to execute AI-generated code, run autonomous agents, and evaluate large language model (LLM) outputs without risk to the host system. Sandboxes prevent untrusted code from accessing the network, filesystem, or other sensitive resources. Common approaches include container-based isolation (Docker, gVisor), WebAssembly runtimes, and MicroVM hypervisors. AI sandboxes are foundational to agentic AI systems where LLMs write and execute code on behalf of users.
Zero, your trustworthy AI teammate for real work.
ClawLess — A serverless browser-based runtime for Claw AI Agents powered by WebContainers
Lightweight MicroVM engine built on Cloud Hypervisor. Features include OCI and cloud image support, instant snapshot and clone via reflink, Windows 11 guest support, CNI networking with TC redirect, memory balloon, hugepages, and a Docker-like CLI. Designed for AI sandboxing, cloud desktops, and ephemeral dev environments.
Agent-Sandbox is an E2B compatible easy-to-use enterprise-grade sandboxes for AI Agents. Allows Agents to securely run untrusted LLM-generated Code, Browser use, Computer use, and deploy Website etc.
Slightly less YOLO version of pi-coding-agent in Docker container sandbox
Open-source agent sandbox infrastructure for parallel coding agents: isolated workspaces, MCP/CLI control, observability, and atomic publication.
Autonomous AI Dev Team On Coder
AI coding agent sandbox: run agents locally in isolated Docker containers behind an egress firewall — self-hosted & free
Agent Reference Stack for Kubernetes (kars) - an open source stack from Microsoft for running AI agents safely on Kubernetes. Multi-runtime, Foundry-aware, hardened per-agent sandboxes, governed egress, end-to-end encrypted inter-agent mesh.
mkenv is a fast, secure, reproducible local isolated development environment generator.
DAG workflow orchestrator — process, WASM, and Firecracker microVM processors over NATS
A modular, distributed AI runtime for personal automation, research, and autonomous workflows. Built with Node.js and Python, it connects Android (Termux) edge instances with Proxmox core servers. Features multi-project context memory, a modular tool sandbox, and an organic, trace-based reasoning policy layer.
Local AI voice assistant powered by Whisper, Ollama, and edge-tts. Fully offline, no API keys.
Official Python SDK for Baponi - sandboxed code execution for AI agents
Collection of AI CLI wrappers: Run AI CLI tools (OpenAI Codex, Google Gemini, OpenCode, Claude Code) inside Docker to keep your host clean while persisting CLI auth/config on your machine.
agentmoat moves Kubernetes workloads from the default runc runtime to gVisor (runsc), the user-space kernel that defends against the kernel-exploit step of a container-escape chain.
An agent sandbox with VFS and bash command-line interface for server-side AI agents. Built with .NET.