Mino — AI skill for Claude Code
Secure sandbox for AI coding agents.
How to install Mino
This entry records only its repository, not the path inside it, so there is no
exact command to give. Open dean0x/mino and copy the folder into
~/.claude/skills/, or the file into ~/.claude/agents/.
What Mino does
Secure sandbox for AI coding agents. Temporary credentials, filesystem isolation, persistent caching.
Alternatives in AI
- Coding Agent Template — Multi-agent AI coding platform powered by Vercel Sandbox and AI Gateway 1.8k ★
- Phantom — An AI co-worker with its own computer 1.3k ★
- Openclaw Backup — One-click backup & restore for OpenClaw instances — workspace, credentials, skills, agent history 660 ★
README
Mino
[](https://dean0x.github.io/x/mino/) [](https://opensource.org/licenses/MIT) [](https://www.rust-lang.org) [](https://crates.io/crates/mino) [](https://www.npmjs.com/package/@dean0x/mino) [](https://github.com/dean0x/mino/releases) [](https://github.com/dean0x/mino/actions/workflows/ci.yml)
Secure sandbox wrapper for AI coding agents using rootless Podman containers.
Wraps **any command** in isolated containers with temporary cloud credentials and SSH agent forwarding. Works with Claude Code, Aider, Cursor, or any CLI tool.
Why Mino?
AI coding agents are powerful but require significant system access. Mino provides defense-in-depth:
- Filesystem Isolation: Agent only sees your project directory, not
~/.ssh,~/.aws, or system files - Credential Scoping: Short-lived cloud tokens instead of permanent credentials
- Network Boundaries: Four network modes — bridge (default), host, none, or allowlisted egress via iptables — with built-in presets for common services
Features
- Rootless Containers: Podman containers with no root required (OrbStack VM on macOS, native on Linux)
- Temporary Credentials: Generates short-lived AWS/GCP/Azure tokens (1-12 hours)
- SSH Agent Forwarding: Git authentication without exposing private keys
- **Persisten
Related Skills
AI Agent Sandbox
A secure bubblewrap-based sandboxing solution for running Claude Code with strict filesystem isolation.
Orbstack Sandbox
Sandboxed OrbStack VMs for LLM coding agents — locks down host filesystem access so agents in permissive modes
Devsandbox
Run AI coding agents in a per-project sandbox that keeps your real dev environment. Your shell, mise-managed t
Paseo Vercel Sandbox
Run Paseo coding agents in persistent Vercel Sandboxes with AI Gateway
Vibeharness
Hackable, interactive LLM agent harness for the terminal — streaming REPL, tool-using agent loop, persistent P
Orb
Self-evolving AI agent framework — wraps Claude Code CLI with persistent memory, multi-profile isolation, and
Related Agents
Docker Sandbox
Isolated autonomous scanning agent — runs in a temporary worktree with restricted Bash access. Requires ROE au
Rememora Triage
Use this agent when triaging issues, feature requests, or bugs for the Rememora project — a cross-agent persis
Security Auditor Agent
You are a security engineer specializing in application security, vulnerability detection, and secure coding p