zerobox 0.2.4

Sandbox any command with file, network, and credential controls.
{
  "$schema": "./schema.json",
  "description": "Anthropic Claude CLI agent.",
  "use": [
    "workspace",
    "cache-macos",
    "claude-cache-linux",
    "claude-macos",
    "claude-linux",
    "node-runtime",
    "rust-runtime",
    "python-runtime",
    "go-runtime",
    "linux-sysfs-read",
    "nix-runtime",
    "git-config"
  ],
  "allow_read": [
    "$HOME/.claude",
    "$HOME/.claude.json",
    "$HOME/.claude.json.lock",
    "$HOME/.cache/claude",
    "$HOME/.local/state/claude"
  ],
  "allow_write": [
    "$HOME/.claude",
    "$HOME/.claude.json",
    "$HOME/.claude.json.lock",
    "$HOME/.cache/claude",
    "$HOME/.local/state/claude"
  ],
  "allow_net": [
    "api.anthropic.com",
    "statsig.anthropic.com",
    "platform.claude.com",
    "claude.ai",
    "sentry.io",
    "api.openai.com",
    "generativelanguage.googleapis.com",
    "aiplatform.googleapis.com",
    "api.groq.com",
    "api.mistral.ai",
    "api.cohere.com",
    "api.together.xyz",
    "api.fireworks.ai",
    "api.deepseek.com",
    "api.perplexity.ai",
    "inference.cerebras.ai",
    "openrouter.ai",
    "api.x.ai",
    "registry.npmjs.org",
    "pypi.org",
    "files.pythonhosted.org",
    "crates.io",
    "static.crates.io",
    "index.crates.io",
    "rubygems.org",
    "packagist.org",
    "repo.maven.apache.org",
    "repo1.maven.org",
    "plugins.gradle.org",
    "registry.yarnpkg.com",
    "cdn.jsdelivr.net",
    "unpkg.com",
    "esm.sh",
    "github.com",
    "api.github.com",
    "codeload.github.com",
    "raw.githubusercontent.com",
    "objects.githubusercontent.com",
    "github-releases.githubusercontent.com",
    "ghcr.io",
    "pkg-containers.githubusercontent.com",
    "rekor.sigstore.dev",
    "fulcio.sigstore.dev",
    "tuf-repo-cdn.sigstore.dev",
    "oauth2.sigstore.dev",
    "docs.python.org",
    "docs.rs",
    "doc.rust-lang.org",
    "developer.mozilla.org",
    "nodejs.org",
    "go.dev",
    "pkg.go.dev",
    "learn.microsoft.com"
  ],
  "allow_env": [
    "PATH",
    "HOME",
    "USER",
    "SHELL",
    "TERM",
    "LANG",
    "ANTHROPIC_API_KEY",
    "ANTHROPIC_BASE_URL",
    "ANTHROPIC_MODEL",
    "CLAUDE_CONFIG_DIR",
    "CLAUDE_CODE_TMPDIR"
  ]
}