Metadata-Version: 2.5
Name: claude-sandbox
Version: 4.0.0b1
Summary: Sandboxed Claude Code, Codex and Pi: a bubblewrap jail with an egress allowlist, via uvx
Project-URL: Homepage, https://github.com/DiamondLightSource/claude-sandbox
Project-URL: Documentation, https://diamondlightsource.github.io/claude-sandbox/
License-Expression: Apache-2.0
Classifier: Environment :: Console
Classifier: Operating System :: POSIX :: Linux
Classifier: Topic :: Security
Requires-Python: >=3.9
Description-Content-Type: text/markdown

# claude-sandbox

Sandboxed Claude Code, Codex and Pi. A bubblewrap jail hides host
credentials, an egress allowlist stops lateral movement, and a managed
integrity guard refuses to run an agent outside the jail.

This wheel is a front door only. It ships the project's bash launcher and
installer unchanged and execs them. The security-critical code is bash and
lives at <https://github.com/DiamondLightSource/claude-sandbox>.

```bash
cd ~/src/my-project
uvx claude-sandbox            # sandboxed claude in a per-project container
uvx claude-sandbox pi         # or codex; shell for an unsandboxed bash
uvx claude-sandbox install    # inside a devcontainer, as root: install the sandbox
```

The wheel version pins the container image it launches. Documentation:
<https://diamondlightsource.github.io/claude-sandbox/>.
