← all repositories

eugene1g/agent-safehouse

A macOS sandboxing tool for AI coding agents that uses deny-first policy profiles to restrict file and system access.

1.8k stars Shell Coding Assistants
agent-safehouse
Velocity · 7d
+16
★ / day
Trend
steady
star history

Agent Safehouse restricts AI coding agents to only access files and integrations they explicitly need, using macOS’s sandbox-exec with composable deny-first policy profiles. It includes pre-built profiles for major coding agents and app-hosted agent workflows while keeping normal development usage practical. Developers install it via Homebrew or standalone script to add a hardening layer against unintended agent file access.

heatdrop uses Google Analytics to see which pages get read — nothing else. Your call. How we handle data.