SAFETY HARNESS FOR AGENTIC DEV · v0.3

Advanced and hardened
sandboxing for
agentic dev.

Typed MCP primitives, policy-gated, sandboxed by default. Three isolated bodies · host, VM, browser · wired behind a single gateway.

book a pilot github
aido-code in action · terminal session aido-code · live session
the stack

Five crates, one toolchain.

aido-runtime

host · 58 primitives

Typed MCP server. Policy engine, snapshots, simulate, audit.

58 MCP toolsdetails →

aido-vm

KVM · 29 vm_* tools

QEMU/KVM body. Screenshot, click, OCR, snapshots ~2s.

aido-browser

Chromium · 14 browser_*

Isolated Chromium over CDP. Allowlist, audit, rate-limit.

14 browser_*details →

aido-orchestrator

gateway · 101 unified

MCP gateway. Routes runtime + vm + browser behind one plug.

101 toolsdetails →

aido-code

agent · CLI + TUI + HTTP

LLM-driven coding agent. Claude / OpenAI / Mistral / Ollama.

~50 slash commandsdetails →