Ouijit, command terminals running coding agents
Lima VM sandboxing for agent code execution is a genuinely thoughtful security approach.
Locki: AI sandboxing without the taste of sand
Single VM with LXC isolation beats spawning full VMs per worktree—starts in 10 seconds.
Developers running AI coding agents on real projects
Daytona · E2B · GitHub Codespaces
So here it is. Fresh container start takes <10s. Works best with VSCode, which will neatly show changes from all worktrees in the sidebar, letting you review, edit and commit them easily. Let me know what you think!
Lima VM sandboxing for agent code execution is a genuinely thoughtful security approach.
Eleven-year-old game with source code now available, but this isn't really new.
Dual MCP server architecture lets agents safely exec shell commands inside isolated LXC containers.
direnv auto-activation with bubblewrap sandboxing isolates agents per project.
Useful curated list of agent sandbox options, but it's just links with no implementation.
Native macOS sandboxing stops AI agents from reading your SSH keys without Docker overhead.