nolabs, Inc

@nolabs.ai

nolabs, the agent security experts.

Kexin wrapped a GitHub triage bot with nono and documented what each feature does. Sandbox profile. Signed instruction file. Phantom token credential injection - real tokens never enter the sandboxed. Security comes from the launch wrapper. launched.https://nono.sh/blog/wrapping-github-bot-with-nono

If you're building with AI agents and haven't thought through what happens when the agent's permissions are broader than they need to be, this conversation is a good starting point. nono.sh?utm_source=t...

Next-Generation Agent Security | nono

Kernel-enforced isolation, network filtering, immutable auditing, and atomic rollbacks for AI agents - built into the nono CLI and native SDKs.

nono.sh

Luke Hinds@lukehinds.bsky.social · 5mo ago

We built nono.sh because kernel-level enforcement is the only layer that can't be bypassed by the agent itself. Talked through the reasoning with @wearedevelopers - link: www.youtube.com/watch?v=xVK2...

Most AI coding agents run with your full user permissions - SSH keys, AWS credentials, API tokens all exposed. nono is a kernel-level sandbox that changes this. Filesystem, network, and credentials enforced outside the agent's trust domain. nono.sh #AISecurity #infosec #opensource

nono - Next-Generation Agent Security

Kernel-enforced isolation, network filtering, immutable auditing, and atomic rollbacks for AI agents - built into the nono CLI and native SDKs.

nono.sh

How do you train an SEO-focused agent from scratch? Our co-founder Stephen Parkinson covers the full process - dataset generation, live tool execution setup, and more. Part two dropping soon. deepfabric.dev

Bild