safe-shell-sandbox 0.1.2

OS-level isolation — Seatbelt sandbox, domain-filtering proxy
Documentation

safe-shell-sandbox

OS-level isolation for safe-shell.

  • macOS Seatbelt (sandbox-exec) filesystem isolation
  • Domain-filtering HTTP proxy with HTTPS CONNECT tunnel support
  • Kernel-enforced read blocking for sensitive paths
  • Localhost port restriction (only proxy port allowed)

This is an internal crate. Install safe-shell for the CLI tool.