An easy-to-use, secure macOS sandbox for Claude and other AI coding agents
See the codePaper · Site · Note from the developer
SideKernel is a usable sandbox for AI coding agents (e.g. Claude Code). "Usable" means it tries stays out of your way and to feel as if its not there. It is developed as a capstone project for Georgia Tech's MSc in Cybersecurity.
Beyond AI agents, SideKernel is useful for trying out software without installing it on your host (e.g. untrusted npm packages).
sk-drop <path>, or by dragging and dropping them into Claude.save command creates a personal layer that persists files, configs and installations across sandboxes.[!NOTE] SideKernel is still in research preview and not yet ready for production use. Use it responsibly. Please read the Paper or the sidekernel.com to learn more.
Tested on M1 and M4 (macOS 26.2); other Apple silicon chips should work.
Install with brew (recommended)
brew tap minoansecurity/sidekernel https://github.com/minoansecurity/sidekernel && brew trust --formula minoansecurity/sidekernel/sidekernel
brew install sidekernel
Install directly from source:
rustup target add aarch64-unknown-linux-musl
git clone https://github.com/minoansecurity/sidekernel
cd sidekernel
make install
The first run builds the root filesystem so it might take a minute or two.
On the host (from a project folder):
sk # launch an ephemeral microVM, current directory mounted
sidekernel # (alias: sk)
sclaude # launch a sandbox and start Claude Code directly
Coming soon: scodex, sgemini, sgrok, and more.
Inside the sandbox:
sk-drop <host-path> # copy a host file into the sandbox (requires approval on the host)
sk-net on/off # block all outbound traffic
save # persist installed packages across sandboxes
fightsong # Print's Georgia Tech's fight song on the terminal 🐝 (alias: ramblinwreck)
You can also drag and drop files directly into Claude Code.
SideKernel is open-source software, licensed under the Apache License, Version 2.0.
Swift
61.3%
Rust
32.1%
Shell
4.9%
An easy-to-use, secure macOS sandbox for Claude and other AI coding agents
See the codePaper · Site · Note from the developer
SideKernel is a usable sandbox for AI coding agents (e.g. Claude Code). "Usable" means it tries stays out of your way and to feel as if its not there. It is developed as a capstone project for Georgia Tech's MSc in Cybersecurity.
Beyond AI agents, SideKernel is useful for trying out software without installing it on your host (e.g. untrusted npm packages).
sk-drop <path>, or by dragging and dropping them into Claude.save command creates a personal layer that persists files, configs and installations across sandboxes.[!NOTE] SideKernel is still in research preview and not yet ready for production use. Use it responsibly. Please read the Paper or the sidekernel.com to learn more.
Tested on M1 and M4 (macOS 26.2); other Apple silicon chips should work.
Install with brew (recommended)
brew tap minoansecurity/sidekernel https://github.com/minoansecurity/sidekernel && brew trust --formula minoansecurity/sidekernel/sidekernel
brew install sidekernel
Install directly from source:
rustup target add aarch64-unknown-linux-musl
git clone https://github.com/minoansecurity/sidekernel
cd sidekernel
make install
The first run builds the root filesystem so it might take a minute or two.
On the host (from a project folder):
sk # launch an ephemeral microVM, current directory mounted
sidekernel # (alias: sk)
sclaude # launch a sandbox and start Claude Code directly
Coming soon: scodex, sgemini, sgrok, and more.
Inside the sandbox:
sk-drop <host-path> # copy a host file into the sandbox (requires approval on the host)
sk-net on/off # block all outbound traffic
save # persist installed packages across sandboxes
fightsong # Print's Georgia Tech's fight song on the terminal 🐝 (alias: ramblinwreck)
You can also drag and drop files directly into Claude Code.
SideKernel is open-source software, licensed under the Apache License, Version 2.0.
Swift
61.3%
Rust
32.1%
Shell
4.9%