Back to catalog

GITHUB TOPIC

sandbox

33projects include this topic

The "sandbox" topic on GitHub groups 33 open-source projects in the DeepSeek Harness (DSH) ecosystem, led by sandbase-harness with 634 GitHub stars. sandbase-harness — Local-first AI agent runtime with sandboxed sessions, MCP tools, memory, credentials, audit/replay, and a built-in console. Every project here is indexed by DSH Universe with live GitHub data — stars, activity and install status — so you can compare and install directly.

{count} projects

Exact GitHub Topic match

Models & MCPInfrastructure

Local-first AI agent runtime with sandboxed sessions, MCP tools, memory, credentials, audit/replay, and a built-in console. Run OpenAI, Anthropic, MiniMax, DeepSeek V4, and OpenAI-compatible models on your infrastructure.

Outside plugin validation
agent-frameworkagent-observabilityagent-pluginsagent-runtime
Security & governancePlugin

Second-model AI auto-review for DeepSeek Harness approval requests: a read-only reviewer subagent returns structured allow/deny verdicts with reasons, fail-closed by default, fully auditable from the session log (approval/asked -> autoReview/verdict -> approval/decided).

Structure check pending
ai-safetyapprovalauto-reviewcordis
Security & governanceInfrastructure

axern

cofy-x

Open-source sandboxes for AI agents, untrusted code execution, and durable services.

Outside plugin validation
agent-sandboxagentic-infrastructureai-agentscloud-native
Security & governancePlugin

dsh-win32

sjh9714

Fix and diagnose DeepSeek Harness on native Windows. Official PowerShell, Workspace Write, shortcuts, and legacy preset repair. No WSL.

Structure check pending
ai-agentdeepseekdeepseek-harnessdeepseek-harness-plugin
DSH PluginsPlugin

MiniDSH

earthwalker17

Minimal surface, complete architecture: a small, local-first coding-agent harness that re-derives the invariants of DeepSeek Harness with fewer concepts. Independent educational project, not affiliated with DeepSeek.

Structure check pending
agent-harnessai-agentanthropiccli
Security & governanceInfrastructure

A deepseek harness plugin for tensorlake sandbox

Outside plugin validation
ai-agentsai-infrastructuredeepseekdeepseek-harness
Security & governancePlugin

dsh-yolo-mode

SeverusZh

dsh-yolo-mode - an LLM-powered auto-approval plugin for DeepSeek Harness sandbox escalations (built-in presets + custom permission levels, fail-closed)

Structure check pending
approvaldeepseek-harnessdshdsh-plugin
Development toolsPlugin

Prevents the model from rewriting specified paths in the workspace. Also lets you open up writes to certain external directories without opening the sandbox.

Structure check pending
deepseek-harnessdshdsh-plugingit
Security & governancePlugin

dsh-autogate

wangxing-git

DeepSeek Harness auto-approval plugin: deterministic rules + LLM safety review layered on top of the workspace-write sandbox; auto mode never loosens the sandbox, fail-closed. Safe auto-approval for DeepSeek Harness — deterministic rules + LLM review on top of the workspace-write sandbox. Auto mode without ever granting full-access.

Structure check pending
auto-approvaldeepseekdeepseek-harnessdsh
Security & governancePlugin

DSH plugin developer sandbox: spawn isolated DeepSeek Harness web mirror instances (own DSH_HOME/port/profile) that mount the plugin under development, with optional host API/model inheritance. GUI panel + sandbox_* agent tools.

Structure check pending
deepseek-harnessdeveloper-toolsdshdsh-plugin
Security & governancePlugin

Blaxel sandbox execution plugin for DeepSeek Harness

Structure check pending
blaxeldeepseek-harnessdsh-pluginremote-execution
Security & governancePlugin

dsh-worlds

frozo-ai

Remote execution worlds for DeepSeek Harness: run the agent's Bash, terminals, LSP and file tools inside a container. Zero dependencies.

Structure check pending
deepseek-harnessdockerdshdsh-plugin
Security & governancePlugin

Codex-style automated approval review for DeepSeek Harness: an isolated reviewer subagent decides sandbox escalations by intrinsic risk and user authorization. Community Beta — not an official DeepSeek AI plugin.

Structure check pending
auto-reviewdeepseek-harnessdshdsh-plugin
Security & governancePlugin

QuickJS/WASM-isolated workflow engine for DeepSeek Harness with bounded resource controls

Structure check pending
agentic-aideepseek-harnessdsh-pluginquickjs
Security & governancePlugin

OS-isolated capability capsules for third-party DeepSeek Harness plugins

Structure check pending
agentbubblewrapcapability-securitydeepseek-harness
Security & governancePlugin

Deterministic DeepSeek Harness plugin that explains Windows sandbox spawn EPERM failures in context

Structure check pending
deepseek-harnessdeveloper-toolsdsh-pluginsandbox
Security & governancePlugin

按单命令前缀自动放行 DSH 沙箱提权请求, 含管道与链式的命令一律转人工审批.

Structure check pending
approvaldeepseek-harnessdshdsh-plugin
Security & governancePlugin

Session access-mode plugin (Default / No Edit / Auto) for DeepSeek Harness (DSH). dsh-plugin

Structure check pending
access-controldeepseek-harnessdshdsh-plugin
DSH PluginsPlugin

Codex-style Auto Review inspired plugin for DeepSeek Harness, with native bridge and Linux sandbox integration

Structure check pending
agent-securityauto-reviewcodex-stylecordis
Security & governancePlugin

dsh-neev-sandbox

NeevCloudAI

Run DeepSeek Harness against a gVisor-isolated cloud sandbox — files, Bash, PTY and LSP all move off your machine. Drop-in plugin, no fork, optional persistence.

Structure check pending
ai-agentscode-executiondeepseek-harnessdsh
Security & governancePlugin

dsh-cross-platform

Wang-Lin-Chang

Linux backend for dsh-witness/dsh-anchor: chattr + bubblewrap sandbox recipes. Every claim carries an experiment number.

Structure check pending
bubblewrapcross-platformdeepseek-harnessdsh
Security & governancePlugin

dsh-macos

Wang-Lin-Chang

macOS backend for dsh-witness/dsh-anchor: uchg + sandbox-exec sandbox recipes. Every claim carries an experiment number.

Structure check pending
cross-platformdeepseek-harnessdshdsh-plugin
Security & governancePlugin

Crash-resilient remote execution world for DeepSeek Harness: ctx.fs/ctx.subprocess over an E2B sandbox with heartbeat keep-alive, transparent recovery, and workspace sync.

Structure check pending
agentdeepseek-harnessdsh-plugine2b
Security & governancePlugin

GPT/Codex sandbox escalation parameter compatibility plugin for DSH | Fail-closed GPT/Codex sandbox escalation compatibility for DeepSeek Harness

Structure check pending
ai-agentscodexcordisdeepseek-harness
Security & governancePlugin

DSH Web GUI plugin: session-scoped "Allow for this session" option in the approval dialog (per-mode standing grants, localStorage) + right-panel auto-open guard

Structure check pending
approvaldeepseek-harnessdshdsh-plugin
Security & governancePlugin

dsh-silent-pwsh

chengyimingvb

Stops the annoying black popup when DeepSeek-Harness runs tasks

Structure check pending
deepseekdeepseek-harnessdshdsh-plugin
Security & governancePlugin

Run DeepSeek Harness (dsh) command execution in OpenSandbox containers: an OpenSandbox-backed ctx.subprocess and container-world ctx.sandbox for dsh.

Structure check pending
agentcontainercordisdeepseek-harness
Security & governancePlugin

DeepSeek Harness(DSH)插件:Python 快捷执行工具,源码经 stdin 直灌 `python -X utf8 -u -`,一步返回结果,全链路 UTF-8,支持后台作业与沙箱提权。

Structure check pending
ai-agentcordisdeepseek-harnessdsh-plugin
Security & governancePlugin

dsh-plugin-validator

DshMarketPlace

Sandboxed install validation for DeepSeek Harness plugins — installs each one into a fresh profile in a throwaway container and reports what the harness recorded

Structure check pending
deepseek-harnessdockerdshdsh-plugin
Security & governancePlugin

dsh-tool-runseal

runseal-labs

RunSeal sandbox plugin: OS-native policy-enforced boundary for dsh (Windows/macOS/Linux) | RunSeal sandbox provider for DeepSeek Harness — OS-native policy-enforced command execution

Structure check pending
deepseek-harnessdsh-pluginpluginrunseal
Security & governancePlugin

Container-isolated backend for the DeepSeek Harness code-execution seam: Code Mode programs run in a fresh container with no network, a read-only rootfs, and kernel-enforced memory, CPU, and pid ceilings

Structure check pending
code-modecontainercordisdeepseek-harness
Security & governancePlugin

Permission matrix for DeepSeek Harness: 3 sandbox modes x 4 approval strategies = 9 presets, with global and LLM-robot defaults, three-tier risk policies, audit log and git checkpoint.

Structure check pending
approvaldeepseek-harnessdshdsh-plugin
Development toolsPlugin

Remote-only OpenKapsel workspace bridge for the DeepSeek Harness: replaces host filesystem and shell tools with a fail-closed remote tool set. Self-hosted alternative to cloud agent sandboxes.

Structure check pending
agent-sandboxai-agentscordisdeepseek-harness