Skip to content
    ↑↓ select↵ openesc close
    landstrip

    Landstrip

    opencode-landstrip·v0.19.7·Tools & Commands

    OS-level AI command sandboxing for OpenCode with Landstrip

    GitHub stars

    81

    +8 in 30 days

    Monthly installs

    1,917

    178 in 7 days

    Composite score

    61.1

    Multi-signal model

    Last commit

    5 hours ago

    2026-10-05

    Install and configure

    opencode.json

    Writes to this project's opencode.json — applies to this repository only.

    opencode.json

    {
      "$schema": "https://opencode.ai/config.json",
      "plugin": ["opencode-landstrip@0.19.7"]
    }

    OpenCode loads npm dependencies through its embedded runtime on startup and caches them locally — no manual global install needed.

    landstrip runs commands in an OS-level sandbox using Landlock on Linux, Seatbelt on macOS, and AppContainer or restricted users on Windows.

    Quick start

    Install the CLI and native binary for your platform:

    npm install --save-dev @landstrip/landstrip-api
    

    For Linux or macOS, save this as policy.json. Windows requires explicit read grants for the program and its dependencies; see the manual below.

    {
      "filesystem": {
        "allowWrite": ["."],
        "denyWrite": ["**/.env", "**/*.pem"],
        "denyRead": ["~/.ssh"],
        "allowRead": ["~/.ssh/config"]
      },
      "network": {
        "allowNetwork": false,
        "allowLocalBinding": false
      }
    }
    
    npx landstrip run -p policy.json -- cargo test
    npx landstrip policy validate -p policy.json
    npx landstrip doctor
    

    See landstrip(1) for policy rules, merged-policy inspection, CLI options, and platform limits.

    Integrations

    • Node.js API: native binary access and trap types.
    • OpenCode: opencode-landstrip plugin.
    • Pi: pi-landstrip extension and subagents.

    Development

    Run make ci from the repository root.

    License

    • Native sandbox: LGPL-3.0-or-later.
    • Node.js API and agent extensions: Apache-2.0; see each package's LICENSE.

    Similar plugins