ToolsAlibaba OpenSandbox: General-Purpose AI Agent SandboxGitHub·high signalXBlueskyLinkedInCopy link6.3K stars. Isolated execution environments for agents with multi-language SDKs. Supports Docker, K8s, gVisor, Firecracker.SourceSource pageGitHub↳ Follow the threadStack layer / Threat patternGemini CLI ships an external-context processor to stop indirect prompt injection through build filesGitHubPolicy dependency / Stack layergit-ai is a Git extension that tracks which code in your repo was AI-generated, at 140 open PRs to 71 issuesGitHub TrendingStack layer / ContrastAlibaba's open-code-review shipped v1.12.1 today and claims 4.7x the precision of Claude Code at a fourteenth of the tokensGitHub TrendingThreat pattern / ContrastGemini CLI decoupled its sandbox from your host config directories entirelyGitHubStack layer / Threat patterntech-leads-club/agent-skills is a validated skill registry pitched on security rather than on breadthGitHub TrendingStack layer / ContrastSureForge encodes a research-plan-verify-review gate sequence as a plain-text agent skillGitHubStack layer / Threat patternDSPy adds LocalInterpreter, a persistent CPython worker that the release notes explicitly refuse to call a sandboxGitHubPolicy dependency / Stack layerAgent Framework stops forwarding headers across redirects and revalidates file skill paths before useGitHub