An open API service indexing awesome lists of open source software.

Projects in Awesome Lists tagged with process-isolation

A curated list of projects in awesome lists tagged with process-isolation .

https://github.com/google/nsjail

A lightweight process isolation tool that utilizes Linux namespaces, cgroups, rlimits and seccomp-bpf syscall filters, leveraging the Kafel BPF language for enhanced security.

chroot linux linux-namespaces process-isolation seccomp-bpf-policies security

Last synced: 23 Apr 2025

https://github.com/afshinm/zerobox

Lightweight, cross-platform process sandboxing powered by OpenAI Codex's runtime. Sandbox any command with file, network, and credential controls.

ai-agents cli llm llm-sandbox mcp mcp-security openclaw process-isolation rust sandbox security security-tools vault

Last synced: 18 Apr 2026

https://github.com/jbe2277/wpfpluginsample

Sample application that shows how to create a Plugin Framework for a WPF application

csharp dotnet plugin process-isolation wpf

Last synced: 12 May 2025

https://github.com/gunjan5/container-from-scratch

:o: zero :arrow_right: to :package: container in :hourglass: in :hamster: Golang

container docker golang isolation linux meep namespace pid-namespaces process-isolation scratch uid

Last synced: 16 Oct 2025

https://github.com/ehsaniara/joblet

Joblet is a micro-container runtime for running Linux jobs with: Process and filesystem isolation (PID namespace, chroot) Fine-grained CPU, memory, and IO throttling (cgroups v2) Secure job execution with mTLS and RBAC Built-in scheduler, SSE log streaming, and multi-core pinning Ideal for: Agentic AI Workloads (Untrusted code)

cgroups containerization golang linux linux-namespaces namespaces process-isolation resource-management system system-call-isolation

Last synced: 22 Apr 2026

https://github.com/rapidlua/sandals

A lightweight process isolation tool, requiring absolutely no privileges to run

cgroups-v2 chroot linux linux-namespaces process-isolation sandbox seccomp-bpf security

Last synced: 30 Mar 2025

https://github.com/nmicic/compartment

Kernel-enforced sandboxing for untrusted processes. Two zero-dependency core tools, one shared profile format, plus an optional BPF-LSM module.

bpf-lsm defense-in-depth ebpf hardening landlock linux linux-security-module namespace privilege-separation process-isolation sandboxing seccomp security syscall-filtering

Last synced: 21 May 2026

https://github.com/gforien/os-from-scratch

Projet INSA 5e année : Implémenter en C et assembleur ARMv7 les mécanismes fondamentaux d'un OS : gestion de la stack, context-switch, paging...

armv7 memory-management os process-isolation

Last synced: 21 Mar 2025

https://github.com/arthurweinmann/experiment-process-containers

:warning: OLD EXPERIMENT I used to learn Rust and linux namespaces :warning: A port of the excellent process isolation library NsJail to rust with experimental features to decrease the startup latency further

containers linux-namespaces nsjail process-isolation rust

Last synced: 17 Nov 2025

https://github.com/mikeyfennelly1/mrun

A low-level OCI compliant container runtime for modern Linux.

containerization go linux process-isolation

Last synced: 16 Jan 2026

https://github.com/kkimj/domainprocessisolation-aarch64

EFFICIENT DOMAIN-LEVEL PROCESS ISOLATION ON AARCH64​, Customized Linux Kernel

aarch64 arm-ds armv8 fvp linux-kernel process-isolation

Last synced: 15 May 2026

https://github.com/chrischtel/glassbox

Modern C++23 sandboxing and process isolation library. Provides a clean API for launching processes with resource limits, timeouts, and controlled execution. Currently Windows-only (Job Objects), with Linux/macOS planned.

linux mac process-isolation sandbox security-tools timeout windows

Last synced: 07 May 2026