Resource limits
Permissively-licensed Rust image decoder library with in-process sandboxing
Sandbox for AI coding agents (bubblewrap on Linux, sandbox-exec on macOS)
Capability-aware sandbox layer for Koda — kernel-enforced FS/net/exec policies (refs #934)
Solti SDK jobs execution crate.
A code runner for online judge
Process sandbox for running untrusted code — Linux namespaces, seccomp, firejail, bubblewrap, rlimits
CLI, stream mode renderer, interactive TUI, scheduler, store, and API
ayb makes it easy to create, host, and share embedded databases like SQLite and DuckDB
A virtio-fs vhost-user device daemon
Process hardening and security measures for VT Code
Post-quantum secure secrets manager with ML-KEM-1024, ML-DSA-87, zero-knowledge proofs, Shamir sharing, and memory protection. The ultimate security vault.
Rate limiting library for Ruby
Retrieve and adjust rlimits
Temporary users and groups, rlimits