Probity Sandboxes
Run supported coding agents inside dedicated microVMs with Brig.
Probity by NOFire AI
AI agent governance for security. Isolated coding-agent execution for developers.
Explore Probity● Launching supported agent CLI...
Preparing isolated agent environment...
Booting lightweight Linux VM
Network: shared
Isolation: one lightweight VM
Starting isolated agent session
Run supported coding agents inside dedicated microVMs with Brig.
Independent observation, security findings, signed evidence, and SIEM delivery.
Free, Apache-2.0 microVM sandbox for AI coding agents on Mac and Linux.
Two products. One foundation.
Probity Sandboxes uses Brig to run coding agents inside microVMs. Probity AI Governance observes supported AI-agent workloads outside the agent boundary and delivers the record into the existing SOC.
Sandbox view
● Launching supported agent CLI
Agent environment ready
VM booted
$ brig info claude
Governance record
A common systems foundation
Isolated coding-agent execution for developers. Independent observation and signed evidence for security.
01
Each supported coding-agent CLI launches inside its own lightweight VM boundary.
$ brig run claude
agent session isolated
isolation lightweight-vm
02
Boundary and host observations remain independent from agent-authored session context.
03
Keep existing OCI images, agent tools, runners, and security workflows.
04
Apache-2.0 foundations aligned with OCI and cloud-native standards.
License
Apache 2.0
Packaging
OCI
Sandbox CLI
Brig
Model
Open standards
One evidence model
Probity correlates agent intent, tool use, boundary activity, and host observation without treating the agent-authored session as the source of truth.
Supported workload evidence
Independent recordUseful autonomy. Clear accountability.
Developers
Launch supported coding-agent CLIs while isolation stays part of the execution model.
Platform teams
Add independent observation to supported developer machines, runners, and agent environments without replacing the surrounding stack.
Security teams
Receive security findings with integrity status and declared coverage in the existing SOC workflow.
Built by open-source systems creators
Probity is powered by NOFire AI and built by the creators of urunc, an Apache-2.0 cloud-native runtime that is now a CNCF Sandbox project.
Open-source lineage
The Probity product family
Choose the product that fits the boundary you need to secure, or use both as part of the same open systems foundation.
See it in action
Explore the right combination of isolated coding-agent execution and independent AI-agent governance for your team.