NVIDIA OpenShellNVIDIA
|
nonoAlways Further
|
|||||
Related Products
|
||||||
About
NVIDIA OpenShell is an open, secure runtime for autonomous AI agents that governs how agents execute, what they can access, and where inference traffic goes. Security is enforced in the environment rather than inside the model or application: nothing is permitted by default, permissions are granted through policy, and enforcement happens outside the agent process so it cannot be bypassed through prompting. Each agent runs in an isolated sandbox with no direct network access, limited file access, and kernel-level monitoring of system calls. A gateway acts as the control plane, authenticating users, managing sandbox lifecycles, and delivering policies, settings, credentials, and inference configuration. A supervisor runs outside each sandbox, evaluates network requests against policy at the binary, destination, method, and path levels, and provides credentials only when allowed.
|
About
nono is an open source, kernel-enforced sandbox for AI coding agents and LLM workloads. Unlike policy-based guardrails that intercept and filter operations, nono uses OS security primitives — Landlock on Linux and Seatbelt on macOS — to make unauthorised operations structurally impossible at the syscall level.
Wrap any AI agent — Claude Code, OpenCode, OpenClaw, or any CLI process — with a single command. nono applies default-deny filesystem access, blocks destructive commands (rm, dd, chmod, sudo), isolates credentials and API keys, and cascades all restrictions to child processes. No escape mechanism exists once restrictions are applied.
Built-in profiles get you running in seconds. Secrets inject securely from the system keystore and are zeroised on exit. Audit logging, atomic rollbacks, and Sigstore-attested policy signing are on the roadmap.
Apache 2.0. From the creator of Sigstore.
|
|||||
Platforms Supported
Windows
Not Supported
Mac
Not Supported
Linux
Not Supported
Cloud
Supported
On-Premises
Not Supported
iPhone
Not Supported
iPad
Not Supported
Android
Not Supported
Chromebook
Not Supported
|
Platforms Supported
Windows
Not Supported
Mac
Supported
Linux
Supported
Cloud
Not Supported
On-Premises
Not Supported
iPhone
Not Supported
iPad
Not Supported
Android
Not Supported
Chromebook
Not Supported
|
|||||
Audience
Developers, platform teams, and security or IT teams seeking to run autonomous AI agents with sandboxing, policy enforcement, credential controls, inference routing, and auditable access boundaries
|
Audience
Developers & AI power users — Anyone running Claude Code, Cursor, OpenCode, or other CLI-based AI coding agents on their local machine who wants to prevent agents from accessing credentials, deleting files, or touching paths outside the project directory. CISO, Security engineers & DevSecOps teams — Teams responsible for establishing safe agent usage policies across engineering organisations. nono provides kernel-enforced, auditable enforcement without requiring infrastructure changes. Platform & ML engineers — Engineering teams building or evaluating agentic AI workflows who need runtime isolation as part of their agent stack. Software companies adopting AI tooling — Organisations in software development, fintech, healthcare, and any regulated industry where developer workstations hold sensitive credentials, proprietary code, or compliance-relevant data that must not be accessible to autonomous agents. Open source contributors & researchers — Security researchers and OSS contributors working with or studying AI agent threat models, kernel sandboxing, and runtime security primitives.
|
|||||
Support
Phone Support
Not Supported
24/7 Live Support
Not Supported
Online
Supported
|
Support
Phone Support
Not Supported
24/7 Live Support
Not Supported
Online
Not Supported
|
|||||
API
Offers API
Not Supported
|
API
Offers API
Not Supported
|
|||||
Screenshots and Videos |
Screenshots and VideosNo images available
|
|||||
Pricing
No information available.
Free Version
Not Supported
Free Trial
Not Supported
|
Pricing
No information available.
Free Version
Supported
Free Trial
Not Supported
|
|||||
Reviews/
|
Reviews/
|
|||||
Training
Documentation
Supported
Webinars
Supported
Live Online
Not Supported
In Person
Not Supported
|
Training
Documentation
Supported
Webinars
Not Supported
Live Online
Not Supported
In Person
Not Supported
|
|||||
Company InformationNVIDIA
Founded: 1993
United States
www.nvidia.com/en-us/ai/openshell/
|
Company InformationAlways Further
Founded: 2025
United Kingdom
alwaysfurther.ai/
|
|||||
Alternatives |
Alternatives |
|||||
|
|
||||||
|
|
||||||
|
|
||||||
|
|
||||||
Categories |
Categories |
|||||
Integrations
Claude Code
Not Supported
NVIDIA Open Agent Safety Platform
Supported
OpenAI Codex
Not Supported
OpenClaw
Not Supported
OpenCode
Not Supported
|
Integrations
Claude Code
Supported
NVIDIA Open Agent Safety Platform
Not Supported
OpenAI Codex
Supported
OpenClaw
Supported
OpenCode
Supported
|
|||||
|
|
|