awesome-repositories.com
Blog
awesome-repositories.com

Descubre los mejores repositorios open-source con nuestra búsqueda potenciada por IA.

ExplorarBúsquedas curadasAlternativas open-sourceSoftware autohospedableBlogMapa del sitio
ProyectoAcerca deCómo clasificamosPrensaServidor MCP
Aviso legalPrivacidadTérminos
© 2026 Bringes Technology SRL·VAT RO45896025·hello@awesome-repositories.com
·
NVIDIA avatar

NVIDIA/OpenShell

0
View on GitHub↗
7,276 estrellas·886 forks·Rust·Apache-2.0·12 vistasdocs.nvidia.com/openshell/latest↗

OpenShell

OpenShell es un framework de seguridad y runtime de ejecución en sandbox para agentes de IA autónomos. Proporciona entornos aislados utilizando contenedores y máquinas virtuales para proteger la infraestructura anfitriona y los datos sensibles del acceso no autorizado durante la ejecución del agente.

El sistema se distingue por combinar el passthrough acelerado por hardware para el acceso a la GPU del anfitrión con una puerta de enlace de seguridad que intercepta las llamadas a la API del modelo. Esta puerta de enlace gestiona las credenciales eliminando la información del llamador e inyectando secretos de backend, asegurando que las claves de API sensibles permanezcan fuera del sistema de archivos local.

La plataforma cubre áreas de capacidad amplias, incluyendo la aplicación de políticas declarativas para restricciones de sistema de archivos y red, gestión de credenciales de agentes y monitoreo de actividad en tiempo real. Admite el aprovisionamiento de entornos a través de imágenes de contenedor personalizadas, directorios locales o catálogos comunitarios.

Features

  • Agent Execution Environments - Provides isolated runtimes using containers and virtual machines specifically configured to execute autonomous AI agents securely.
  • Container-Based Sandboxes - Implements isolated execution environments using containers to protect the host system from autonomous agent activity.
  • Agent Gateways - Provides a secure API gateway to manage credentials and prevent data exfiltration for AI agent workflows.
  • AI Execution Sandboxes - Provides secure execution environments specifically designed for running autonomous AI coding agents.
  • Autonomous AI Agent Frameworks - Provides a functional framework for running autonomous AI agents within secure, isolated sandboxes.
  • Inference API Proxies - Provides a proxy to intercept model API calls for secure credential management and request routing.
  • Runtime Credential Injection - Injects sensitive secrets into containerized environments as runtime variables to keep keys off the local filesystem.
  • Security Policy Enforcers - Uses declarative YAML rules to enforce mandatory access control policies on filesystem and system calls.
  • Declarative Policy Managers - Enforces filesystem and network restrictions on autonomous agents via predefined declarative security rules.
  • Sandboxed Execution Environments - Provisions isolated runtime environments that restrict AI agent access to host system resources.
  • Agent Action Guardrails - Implements security mechanisms and declarative rules that restrict autonomous agent operations via sandboxing and access controls.
  • Declarative Policy Enforcers - Enforces filesystem and network restrictions and blocks dangerous system calls using declarative security rules.
  • Request Interception Middleware - Implements architectural middleware to intercept model API requests for credential stripping and secret injection.
  • AI Security Orchestrators - Manages isolated connections and enforces security boundaries between AI agents and external services.
  • AI Request Routing - Secures and manages the flow of requests to AI services through a controlled routing layer.
  • Hardware Acceleration - Exposes host GPU resources to containerized sandboxes to enable hardware-accelerated AI workloads.
  • GPU Accelerated Sandboxes - Provides isolated execution environments equipped with GPU hardware for AI model inference.
  • Sandbox - Provides a real-time dashboard for streaming logs and terminal data to monitor sandbox environment status and gateway health.
  • Real-Time Monitoring Dashboards - Provides a centralized dashboard for real-time observation of logs and terminal data from sandboxed environments.
  • Security and Sandboxing - Private runtime for autonomous agents.

Historial de estrellas

Gráfico del historial de estrellas de nvidia/openshellGráfico del historial de estrellas de nvidia/openshell

Búsqueda con IA

Explora más repositorios increíbles

Describe lo que necesitas en lenguaje sencillo: la IA clasifica miles de proyectos open-source curados por relevancia.

Start searching with AI

Alternativas open-source a OpenShell

Proyectos open-source similares, clasificados según cuántas características comparten con OpenShell.
  • qwibitai/nanoclawAvatar de qwibitai

    qwibitai/nanoclaw

    29,956Ver en GitHub↗

    Nanoclaw is an LLM agent orchestrator and multi-platform chat gateway designed to deploy and manage isolated AI agents. It provides a containerized runtime that executes agents within sandboxed Linux containers, ensuring filesystem and state isolation through dedicated workspaces and host bind-mounts. The project distinguishes itself through a unified routing pipeline that connects agents to diverse messaging platforms, including WhatsApp, Discord, Slack, Telegram, Signal, and iMessage. It integrates the Model Context Protocol to extend agent capabilities via managed external data and functio

    TypeScriptai-agentsai-assistantclaude-code
    Ver en GitHub↗29,956
  • yaoapp/yaoAvatar de YaoApp

    YaoApp/yao

    7,544Ver en GitHub↗

    Yao is an LLM agent framework and low-code web app builder designed for orchestrating autonomous AI agents. It provides a platform to design, deploy, and coordinate agents with specialized personas that can plan tasks, utilize external tools, and execute multi-stage pipelines. The project distinguishes itself through a Model Context Protocol server for connecting assistants to external binaries and HTTP services, and a gRPC remote execution engine that allows agents to manage remote servers and devices. It includes a model-agnostic provider bridge that supports dynamic switching between vario

    Goagentagentic-aiagents
    Ver en GitHub↗7,544
  • microsoft/agent-governance-toolkitAvatar de microsoft

    microsoft/agent-governance-toolkit

    4,522Ver en GitHub↗

    The agent-governance-toolkit is a framework for enforcing security policies, managing zero-trust identities, and sandboxing the execution of autonomous AI agents. It provides a governance layer designed to control the behavior of agents through the use of a security policy engine, cryptographic identity management, and a runtime execution sandbox. The project distinguishes itself through a multi-tier privilege ring system and a cryptographic identity mesh that secures communication between autonomous entities. It implements a decay-based trust scoring mechanism to track entity reliability and

    Python
    Ver en GitHub↗4,522
  • nvidia/nemoclawAvatar de NVIDIA

    NVIDIA/NemoClaw

    21,237Ver en GitHub↗

    NemoClaw is an LLM agent orchestrator and sandboxed execution environment designed to deploy and manage the lifecycles of large language model agents. It provides a secure runtime that isolates persistent agents from the underlying host system to ensure operational security. The system includes a secure LLM inference gateway that acts as a managed routing layer, securing communication between AI agents and inference engines to prevent unauthorized access. It also integrates with NVIDIA OpenShell to run specialized agents within a secure shell environment. Operational control is provided thro

    TypeScriptai-agentsnvidiaopenclaw
    Ver en GitHub↗21,237
Ver las 30 alternativas a OpenShell→

Preguntas frecuentes

¿Qué hace nvidia/openshell?

OpenShell es un framework de seguridad y runtime de ejecución en sandbox para agentes de IA autónomos. Proporciona entornos aislados utilizando contenedores y máquinas virtuales para proteger la infraestructura anfitriona y los datos sensibles del acceso no autorizado durante la ejecución del agente.

¿Cuáles son las características principales de nvidia/openshell?

Las características principales de nvidia/openshell son: Agent Execution Environments, Container-Based Sandboxes, Agent Gateways, AI Execution Sandboxes, Autonomous AI Agent Frameworks, Inference API Proxies, Runtime Credential Injection, Security Policy Enforcers.

¿Qué alternativas de código abierto existen para nvidia/openshell?

Las alternativas de código abierto para nvidia/openshell incluyen: qwibitai/nanoclaw — Nanoclaw is an LLM agent orchestrator and multi-platform chat gateway designed to deploy and manage isolated AI… yaoapp/yao — Yao is an LLM agent framework and low-code web app builder designed for orchestrating autonomous AI agents. It… microsoft/agent-governance-toolkit — The agent-governance-toolkit is a framework for enforcing security policies, managing zero-trust identities, and… nvidia/nemoclaw — NemoClaw is an LLM agent orchestrator and sandboxed execution environment designed to deploy and manage the lifecycles… zenml-io/zenml — ZenML is an orchestration platform designed for building, deploying, and monitoring reproducible machine learning… kortix-ai/suna — Suna is an orchestration platform designed for the deployment, management, and governance of autonomous AI agents. It…