Wrap local coding agents in deny-by-default least-privilege sandboxes with Greywall
Run Claude Code, Codex, Cursor, or similar local agent CLIs inside a host-local sandbox that learns required access and blocks everything else by default.
Prerequisites
Greywall CLI, local shell access, a supported local coding agent such as Claude Code, Codex, Cursor, Aider, Gemini CLI, or OpenCode, Linux or macOS host
Installation
Use the upstream install or setup path that matches your environment:
Requirements and caveats from upstream:
- No containers required — kernel-enforced sandboxing without Docker overhead
- Greywall ships with built-in sandbox profiles for popular AI coding agents (Claude Code, Codex, Cursor, Aider, Goose, Gemini CLI, OpenCode, Amp, Cline, Copilot, Kilo, Auggie, Droid) and toolchains (Node, Python, Go, R...
Basic usage or getting-started notes:
Documentation
Source
1---2name: wrap-local-coding-agents-in-deny-by-default-least-privilege-3description: Run Claude Code, Codex, Cursor, or similar local agent CLIs inside a host-local sandbox that learns required access and blocks everything else by default.4---56# Wrap local coding agents in deny-by-default least-privilege sandboxes with Greywall78Run Claude Code, Codex, Cursor, or similar local agent CLIs inside a host-local sandbox that learns required access and blocks everything else by default.910## Prerequisites1112Greywall CLI, local shell access, a supported local coding agent such as Claude Code, Codex, Cursor, Aider, Gemini CLI, or OpenCode, Linux or macOS host1314## Installation1516Use the upstream install or setup path that matches your environment:17- brew tap greyhavenhq/tap18- brew install greywall19- go install github.com/GreyhavenHQ/greywall/cmd/greywall@latest20- git clone https://github.com/GreyhavenHQ/greywall2122Requirements and caveats from upstream:23- **No containers required** — kernel-enforced sandboxing without Docker overhead24- Greywall ships with built-in sandbox profiles for popular AI coding agents (Claude Code, Codex, Cursor, Aider, Goose, Gemini CLI, OpenCode, Amp, Cline, Copilot, Kilo, Auggie, Droid) and toolchains (Node, Python, Go, R...2526Basic usage or getting-started notes:27- greywall -- curl https://example.com28- **Homebrew (macOS):**29- bash3031- Source: https://github.com/GreyhavenHQ/greywall32- Extracted from upstream docs: https://raw.githubusercontent.com/GreyhavenHQ/greywall/HEAD/README.md3334## Documentation3536- https://docs.greywall.io/greywall/platform-support3738## Source3940- [Agent Skill Exchange](https://agentskillexchange.com/skills/wrap-local-coding-agents-in-deny-by-default-least-privilege-sandboxes-with-greywall/)