eugene1g/agent-safehouse

Sandbox your local AI agents so they can read/write only what they need

What it solves

macOS에서 실행되는 LLM 코딩 에이전트에게 보안 레이어를 제공하여, 에이전트가 필요하지 않은 민감한 파일이나 시스템 통합에 접근하는 것을 방지합니다. 에이전트가 지정된 작업 공간 외의 개인 데이터를 의도적 또는 의도적으로 접근하는 위험을 해결합니다.

How it works

Safehouse는 sandbox-exec를 사용하여 "deny-first" 보안 모델을 구현합니다. 모든 접근을 차단하는 것으로 시작하여, 필요한 경로와 권한만 명시적으로 허용하는 조합 가능한 정책 프로필을 채택합니다. 또한 macOS 특유의 경로 해석(예: /etc의 심볼릭 링크)을 처리하고, Git worktrees를 자동 감지하여 시스템을 손상시키지 않으면서 에이전트가 필요한 메타데이터 접근 권한을가져가도록 합니다.

Who it’s for

macOS에서 LLM 기반 코딩 에이전트를 사용하며, 보안 위험을 ลด을 줄이기 위해 에이전트의 환경을 최소 권한 모델로 제한하고 싶은 개발자. Highlights

  • Deny-first approach: Starts with a total block and allows only specific, required access.

  • Composable profiles: Includes pre-built profiles for popular coding agents and app-hosted workflows.

  • macOS integration: Specifically designed for macOS using sandbox-exec를 사용하여 시스템 경로 해석을 처리합니다.

  • Flexible overrides: Supports machine-specific local overrides and the ability to ability to add read-only directories via command-line flags.

(Note: The Japanese translation of the translation of the translation of the translation of the translation of the translation of the translation of the translation of the translation of the translation of the translation of the translation of the translation of the translation of the translation of the translation of the translation of command-line flags.)