No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by pocketenv-io · Codex Skill · ★ 70
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is pocketenv safe to install? View the security audit →
Pocketenv is an open sandbox platform — for agents, for tinkerers, for anyone tired of being locked into one provider's ecosystem. Spin up isolated environments, run code, test weird ideas. No drama. [!NOTE] heads up — still in early dev Things will break. APIs will change. We move fast. You've been warned (and we appreciate your patience). Install Bash: npm: Homebrew (macOS/Linux): Nix (Flakes):
| Stars | 70 |
| Forks | 5 |
| Language | TypeScript |
| Category | Codex Skill |
| License | MPL-2.0 |
| Quality Score | 66.6158633790277/100 |
| Open Issues | 1 |
| Last Updated | 2026-04-15 |
| Created | 2024-02-02 |
| Platforms | claude-code, docker, node |
| Est. Tokens | ~527k |
Looking for a pocketenv alternative? If you're comparing pocketenv with other codex skill tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
Isolated VM environment for running Claude Code and Codex
Your own Claude Code UI, sandbox, in-browser VS Code, terminal, multi-provider support (Anthropic, OpenAI, Git
OpenHermit is the open-source platform for deploying fleets of AI agents as production services — durable stat
CLI tool for running coding agents inside hardware-isolated microVMs
On-demand Linux computers you can hand to an AI — real Firecracker microVMs with a browser, terminal, coding a
Self-hosted AI coding workspace to run and orchestrate Claude Code, Codex, Copilot, Cursor, Grok and OpenCode
Explore other popular codex skill tools:
pocketenv is the universal sandbox runtime for agents and humans.. It is categorized as a Codex Skill with 70 GitHub stars.
pocketenv is primarily written in TypeScript. It covers topics such as agent, atproto, claude-code.
You can find installation instructions and usage details in the pocketenv GitHub repository at github.com/pocketenv-io/pocketenv. The project has 70 stars and 5 forks, indicating an active community.
pocketenv is released under the MPL-2.0 license, making it free to use and modify according to the license terms.
The top alternatives to pocketenv on Agent Skills Hub include coop, claudex, openhermit. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: