No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by the-void-ia · Agent Tool · ★ 88
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is void-box safe to install? View the security audit →
Hardware-isolated micro-VMs for AI agents — bring any model, run any pipeline, audit every step. void-box runs each agent stage inside its own micro-VM — Claude, Codex, Ollama, or any tool you put on PATH — with hardware isolation, OTLP telemetry, and sub-second snapshot/restore. Docs · Examples · Getting Started · Architecture ⭐ Star us on GitHub — it helps the project a lot! ⭐ <img src=
| Stars | 88 |
| Forks | 6 |
| Language | Rust |
| Category | Agent Tool |
| License | Apache-2.0 |
| Quality Score | 61.5235578108163/100 |
| Open Issues | 19 |
| Last Updated | 2026-09-04 |
| Created | 2026-02-12 |
| Platforms | claude-code, rust |
| Est. Tokens | ~24k |
These tools work well together with void-box for enhanced workflows:
Looking for a void-box alternative? If you're comparing void-box with other agent tool tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
See your agent think. Zero-config observability & governance for 30 AI agent runtimes: Claude Code, OpenAI Cod
AURA is a production-tested SRE agent platform you can deploy in minutes. AURA handles the guardrails, APIs,
A self-hosted workspace where people and coding agents work together across projects, sessions, and providers.
Open-source sandboxes where coding agents build and deploy. Spin up isolated environments where Claude Code, C
Unified local observability for AI coding assistants
Isolated VM environment for running Claude Code and Codex
Explore other popular agent tool tools:
void-box is Composable agent runtime with enforced isolation boundaries. It is categorized as a Agent Tool with 88 GitHub stars.
void-box is primarily written in Rust. It covers topics such as agent-isolation, agentic-workflow, ai-agents.
You can find installation instructions and usage details in the void-box GitHub repository at github.com/the-void-ia/void-box. The project has 88 stars and 6 forks, indicating an active community.
void-box is released under the Apache-2.0 license, making it free to use and modify according to the license terms.
The top alternatives to void-box on Agent Skills Hub include clawmetry, aura, clay. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: