macOS Seatbelt sandbox CLI for developers. Protect credentials (SSH, AWS, GPG) from malicious npm packages, supply chain attacks, and untrusted build scripts. Deny-by-default filesystem isolation. Perfect for Claude Code agentic workflows with --dangerously-skip-permissions.
Stars
17
Forks
1
Watchers
17
Open Issues
3
Overall repository health assessment
No package.json found
This might not be a Node.js project
23
commits
5
commits
1
commits
1
commits
fix(profile): use correct config path and merge seatbelt rules (#28)
0f89bb8View on GitHubConfigure GITLEAKS_LICENSE in security scan workflow (#27)
7dcfd95View on GitHubfeat: add allow_exec_sugid config option for setuid binary execution (#26)
eede442View on GitHubdeps: bump the rust-dependencies group with 3 updates (#25)
c23b0f1View on GitHubfeat(profile): add opencode profile and improve config handling (#24)
4f3ab60View on GitHubdeps: bump the rust-dependencies group with 4 updates (#23)
8861838View on GitHubfix(claude): add XDG state and cache paths for Claude Code 2.x (#20)
c708012View on GitHubdeps: bump the rust-dependencies group with 2 updates (#21)
55b57fcView on GitHubdocs: rewrite for clarity and supply chain focus (#18)
79e1993View on GitHubfeat: add allow_list_dirs for Bun runtime compatibility (#17)
b644da0View on GitHubfix(security): enable Claude OAuth refresh and tighten sandbox access
6a46bc1View on GitHub