Section 01
导读 / 主楼:sandbox-shell: A macOS Sandbox Isolation Solution for AI Programming Workflows
Introduction / Main Floor: sandbox-shell: A macOS Sandbox Isolation Solution for AI Programming Workflows
A macOS sandbox CLI designed specifically for AI programming tools like Claude Code, which implements default-deny filesystem isolation via Seatbelt to protect sensitive data such as SSH keys and AWS credentials from supply chain attacks.