Skip to content
Trending storyWatching

NVIDIA open-sources OpenShell 0.1.0 to add runtime permissions and sandboxing for AI agents

1 report1 sourceupdated 2 days ago

What happened

Summary

NVIDIA 把 OpenShell 0.1.0 开源了,它是一个专门管 AI Agent 能碰哪些系统和数据的运行时。你不用改 Agent 本身的代码,OpenShell 就能在外部拦住不该做的 API 操作、保护密钥,还能用形式化逻辑验证权限有没有越界。它由网关、监督器和沙箱三块组成:网关管 Agent 集群,监督器按策略检查对外请求,沙箱在系统内...

Coverage

Follow the reports to see the story from different sides.

Sep 28
  1. AI HOT (Curated Pool)Pick
    NVIDIA open-sources OpenShell 0.1.0 to add runtime permissions and sandboxing for AI agents

    NVIDIA released OpenShell 0.1.0, an open-source runtime that enforces which systems and data an AI agent can access without rewriting the agent. It bundles sandboxed execution, controlled service access, credential management, and formal policy analysis so teams can restrict API operations and protect credentials outside the agent workload. Cadence, Slack, and Gecko Robotics are already adopting it for chip design, enterprise automation, and physical robot governance. Three components—Gateway, Supervisor, and Sandbox—manage agent fleets, inspect outbound requests against policy, and apply kernel-level filesystem and process controls. A policy prover uses formal logic to verify that permissions stay within defined boundaries. It supports Codex, Claude Code, Pi, Hermes, and runs on Docker and Kubernetes.

Heat over time

Not enough continuous observations to draw a trend yet.