ComingUp
Bx – macOS native sandbox for AI and coding tools

Bx – macOS native sandbox for AI and coding tools

Apr 7, 2026 Security & Privacy
access_control macos sandboxing

Gallery

Bx – macOS native sandbox for AI and coding tools

About

Wrapper around Apple's macOS sandbox-exec tool, which usually sandboxes native apps. It is "allow-first" i.e. it will not overprotect everything, just crucial information and therefore allows most tools to run without issues. Limiting is done using a .gitignore like file schema. Further TOML config options available.I built it because Docker sandboxing requires config and planning. Build in sandboxing of AI tools instead is limited to the very tools themselves, instead I wanted to have a simple cage around Claude running inside VSCode. Also needed to protect files inside a folder like .env.local or keys.Install via: brew install holtwick/tap/bxRun like: bx claude .

Comments (0)

No comments yet. Be the first to comment!