跳到主要内容
    ↑↓ 选择↵ 打开esc 关闭
    landstrip

    Landstrip

    opencode-landstrip·v0.19.7·工具与命令

    OS-level AI command sandboxing for OpenCode with Landstrip

    GitHub 星标

    81

    近 30 天 +8

    月装机量

    1,917

    近 7 天 178

    综合评分

    61.1

    生态多维模型

    最近提交

    5 小时前

    2026-10-05

    快速安装与配置

    opencode.json

    写入当前项目的 opencode.json,只对这个仓库生效。

    opencode.json

    {
      "$schema": "https://opencode.ai/config.json",
      "plugin": ["opencode-landstrip@0.19.7"]
    }

    OpenCode 启动时会通过内嵌运行时自动加载 npm 依赖并缓存至本地目录,无需手动在全局环境执行安装。

    landstrip runs commands in an OS-level sandbox using Landlock on Linux, Seatbelt on macOS, and AppContainer or restricted users on Windows.

    Quick start

    Install the CLI and native binary for your platform:

    npm install --save-dev @landstrip/landstrip-api
    

    For Linux or macOS, save this as policy.json. Windows requires explicit read grants for the program and its dependencies; see the manual below.

    {
      "filesystem": {
        "allowWrite": ["."],
        "denyWrite": ["**/.env", "**/*.pem"],
        "denyRead": ["~/.ssh"],
        "allowRead": ["~/.ssh/config"]
      },
      "network": {
        "allowNetwork": false,
        "allowLocalBinding": false
      }
    }
    
    npx landstrip run -p policy.json -- cargo test
    npx landstrip policy validate -p policy.json
    npx landstrip doctor
    

    See landstrip(1) for policy rules, merged-policy inspection, CLI options, and platform limits.

    Integrations

    • Node.js API: native binary access and trap types.
    • OpenCode: opencode-landstrip plugin.
    • Pi: pi-landstrip extension and subagents.

    Development

    Run make ci from the repository root.

    License

    • Native sandbox: LGPL-3.0-or-later.
    • Node.js API and agent extensions: Apache-2.0; see each package's LICENSE.

    同类生态推荐