coipond

Coi — DevOps skill for Claude Code

DevOps community

Give the agent a machine.

How to install Coi

This entry records only its repository, not the path inside it, so there is no exact command to give. Open coipond/coi and copy the folder into ~/.claude/skills/, or the file into ~/.claude/agents/.

What Coi does

Give the agent a machine. Just not yours. Each AI coding agent gets its own isolated machine with root, Docker, and systemd - active defense detects and stops threats automatically.

Alternatives in DevOps

  • Claude Code Router — Use Claude Code as the foundation for coding infrastructure, allowing you to decide how to interact with the m 30.1k ★
  • Mirrord — Run any process, on your machine or in an AI agent's environment, as if it were a pod in your Kubernetes clust 5.3k ★
  • Cccc — Coordinate your coding agents like a group chat — read receipts, delivery tracking, and remote ops from your p 1.1k ★

README

Coi (Code on Incus) logo

Coi (Code on Incus)

[![License: MIT](https://img.shields.io/badge/License-MIT-yellow.svg)](https://opensource.org/licenses/MIT) [![Go Version](https://img.shields.io/github/go-mod/go-version/coipond/coi)](https://golang.org/) [![Latest Release](https://img.shields.io/github/v/release/coipond/coi)](https://github.com/coipond/coi/releases) [![Join the chat at https://slack.karafka.io](https://raw.githubusercontent.com/karafka/misc/master/slack.svg)](https://slack.karafka.io)

**Give the agent a machine. Just not yours.**

`coi` runs your AI coding tool (Claude Code, Codex, opencode, pi, omp) inside its own isolated Linux system: a full-OS container with root access, systemd, Docker, and the freedom to install anything. The agent works like it would on a real server, but it cannot touch your host, cannot see your credentials, and if it does something dangerous, `coi` pauses or kills the container on its own.

One command drops you into a coding session. Your project is mounted, file permissions just work, and your SSH keys, tokens, and environment variables never enter the container unless you explicitly say so.

BetterStack video about Coi
Watch the BetterStack video about Coi

![Demo](misc/demo.gif)

Get Started in Three Commands

# 1. Install
curl -fsSL https://raw.githubusercontent.com/coipond/coi/master/install.sh | bash

# 2. Build the base image (first time only, ~5-10 min)
coi build

# 3. Start coding, from any project directory
cd your-project
coi shell

Your agent now runs in an isolated container with your project at `/workspace`, correct file ownership (no more `chown`), Docker and `gh` available inside, and every workspace change saved back to the hos