ClaudeCage — security grade SAFE, quality 70/100

Security audit verdict: SAFE · quality 70/100

No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →

by PACHAKUTlQ · Agent Tool · ★ 143

Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h

🔒 Is ClaudeCage safe to install? View the security audit →

About ClaudeCage

[!note] Claude Code now officially supports bun runtime and bwrap-based sandbox. It is recommended to use these native features. ClaudeCage might still work. ClaudeCage English | 简体中文 Run the SOTA AI coding agent in a portable, secure sandbox. Claude Code is a state-of-the-art AI coding assistant. Unfortunately, its CLI is distributed as closed-source and obfuscated javascript. You don't know what it's doing. Is it reading your SSH keys? Is it indexing your photos? Is it planning some Skynet world domination from your folder? Probably not... but why risk it? ClaudeCage solves this by packaging the Claude Code CLI into a fully isolated, single-file container. It cannot access any part of your system except for the single project directory you are currently working in. Breaking change: the build output is now named (plus ), so it can act as a drop-in replacement for the original CLI (but sandboxed). Features Secure Sandbox: Powered by Linux namespaces, the process is heavily r

agentaiai-agentsai-securityanthropicanthropic-claudebubblewrapbunclaudeclaude-code

Quick Facts

Stars143
Forks11
LanguageShell
CategoryAgent Tool
LicenseAGPL-3.0
Quality Score69.7901156031401/100
Open Issues2
Last Updated2026-04-25
Created2025-06-29
Platformsclaude-code, cli
Est. Tokens~4k

Compatible Skills

These tools work well together with ClaudeCage for enhanced workflows:

  • clawgod — semantic(0.24)+complementary+same_lang+similar_pop+shared_platform (58%)
  • verify — semantic(0.22)+complementary+same_lang+similar_pop+shared_platform (58%)
  • ai-marketing-claude-code-skills — semantic(0.21)+complementary+same_lang+similar_pop+shared_platform (57%)
  • codex-settings — semantic(0.20)+complementary+same_lang+similar_pop+shared_platform (57%)

ClaudeCage alternative? Top 6 similar tools

Looking for a ClaudeCage alternative? If you're comparing ClaudeCage with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.

  • container by aerovato · ⭐ 348

    Persistent Linux workspaces for agentic development.

  • code-container by kevinMEH · ⭐ 249

    Safely run OpenCode, Codex, Claude Code with full permissions.

  • leash by strongdm · ⭐ 592

    Leash by StrongDM - take your AI agents for a walk

  • awesome-claude-skills by karanb192 · ⭐ 531

    🎯 The definitive collection of 50+ verified Awesome Claude Skills for Claude Code, Claude.ai, and API. Boost

  • sandstorm by tomascupr · ⭐ 448

    Run Claude agents in secure cloud sandboxes — via API, CLI, or Slack. One call. Full agent. Zero infrastructur

  • claude-cowork-linux by johnzfitch · ⭐ 405

    Run Claude Desktop’s Cowork mode natively on Linux — no macOS or VM required

More Agent Tool Tools

Explore other popular agent tool tools:

View all Agent Tool tools →

Popular Shell Agent Tools

Frequently Asked Questions

What is ClaudeCage?

ClaudeCage is Claude Code running in sandbox. Packed as single portable executable with no dependency. Has better performance than official version.. It is categorized as a Agent Tool with 143 GitHub stars.

What programming language is ClaudeCage written in?

ClaudeCage is primarily written in Shell. It covers topics such as agent, ai, ai-agents.

How do I install or use ClaudeCage?

You can find installation instructions and usage details in the ClaudeCage GitHub repository at github.com/PACHAKUTlQ/ClaudeCage. The project has 143 stars and 11 forks, indicating an active community.

What license does ClaudeCage use?

ClaudeCage is released under the AGPL-3.0 license, making it free to use and modify according to the license terms.

What are the best alternatives to ClaudeCage?

The top alternatives to ClaudeCage on Agent Skills Hub include container, code-container, leash. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.

How this security grade is produced

Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.

The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.

Sources & who's responsible:

View on GitHub → Browse Agent Tool tools