Found 464 repositories(showing 30)
superagent-ai
Run Claude Code, Gemini, Codex — or any coding agent — in a clean, isolated sandbox with sensitive data redaction and observability baked in.
poco-ai
A more beautiful and easier-to-use alternative to OpenClaw. It features a nicer Web UI, built-in IM support, and a sandboxed runtime for improved safety. Under the hood, it is powered by a Claude Code–based agent.
rivet-dev
Run Coding Agents in Sandboxes. Control Them Over HTTP. Supports Claude Code, Codex, OpenCode, and Amp.
trailofbits
Sandboxed devcontainer for running Claude Code in bypass mode safely. Built for security audits and untrusted code review.
dzhng
Run Claude Agent (Claude Code) in a sandbox, control it via websocket
textcortex
Run Claude Code safely in local Docker containers without having to approve every permission (Archived, see Spritz repo for the continuation of this project)
Mng-dev-ai
Your own Claude Code UI, sandbox, in-browser VS Code, terminal, multi-provider support (Anthropic, OpenAI, GitHub Copilot, OpenRouter), custom skills, and MCP servers.
PleasePrompto
Control Claude Code, Codex CLI and Gemini CLI from Telegram. Live streaming, persistent memory, cron jobs, webhooks, Docker sandboxing.
webcoyote
Run AI agents isolated in a macOS user account and sandbox-exec. Configured to run Claude Code, OpenAI Codex, Cursor Agent, Google Gemini.
PACHAKUTlQ
Claude Code running in sandbox. Packed as single portable executable with no dependency. Has better performance than official version.
spring-ai-community
Autonomous CLI agent integrations for the Spring AI ecosystem with Claude Code, Gemini CLI, and secure sandbox execution
runtm-ai
Open-source sandboxes where coding agents build and deploy. Spin up isolated environments where Claude Code, Cursor, and other agents code and deploy software.
khoj-ai
Research, create, automate. Work so fast it feels like play. Get an ai co-worker on your machine. It can read-write files, code safely in sandbox, use your browser. Customize it with skills. Integrate with Jira, Linear, Slack etc. via MCP. Chat with Claude, GPT, Kimi, GLM, DeepSeek, Gemini
airutorg
Airut is a system for running Claude Code tasks from email and Slack. It handles workspace provisioning, container isolation, network sandboxing, session persistence, and cleanup — a secure foundation for autonomous agentic development.
juancgarza
A ChatGPT Canvas/Claude Artifacts-style interface for Claude Code running in E2B sandboxes. Build, create, and code anything with AI-powered development in secure, isolated environments.
neko-kai
macOS sandbox-exec config for Claude Code that restricts filesystem READ access for enhanced security
yoloshii
Enhanced MCP code execution. Agent framework-agnostic (optimized for Claude Code). Skills framework (99.6% token reduction), multi-transport, sandboxing
micahflee
sandboxed Claude Code
Greitas-Kodas
A macOS sandbox wrapper for Claude Code that provides secure, isolated execution environment
baryhuang
A Python-based MCP server that lets Claude run boto3 code to query and manage AWS resources. Execute powerful AWS operations directly through Claude with proper sandboxing and containerization. No need for complex setups - just pass your AWS credentials and start interacting with all AWS services.
espennilsen
A desktop coding agent with a GUI. Electron + React app powered by Anthropic's Claude — chat-driven development with sandboxed file editing, git integration, dependency-aware task management, persistent memory, and an iOS/iPad companion for remote control.
e2b-dev
Claude Code Sandbox with FastAPI Backend
prabureddy
🚀 Autonomous AI Research Engineer powered by MCP | Give it a task, watch it research the web, query your knowledge base, write & execute code, generate visualizations, and produce comprehensive reports with self-evaluation | Built for Claude Desktop | Python 3.10+ | RAG + Web Scraping + Code Sandbox | 5-min setup ⚡
agentic-dev3o
macOS Seatbelt sandbox CLI for developers. Protect credentials (SSH, AWS, GPG) from malicious npm packages, supply chain attacks, and untrusted build scripts. Deny-by-default filesystem isolation. Perfect for Claude Code agentic workflows with --dangerously-skip-permissions.
CaptainMcCrank
Run Claude Code in security sandboxes (Bubblewrap, Firejail, Apple Container)
trancethehuman
Running Claude Code on cloud sandboxes
2mawi2
Manage sandboxed parallel claude code sessions on git worktrees
paulpham157
Run Claude Code on Daytona sandboxes
suomela
Cursor CLI + Claude Code + Codex Sandbox
RhysSullivan
Demo of Claude Code in Vercel Sandbox in Discord