selinux-agent-confinement
CommunitySecure AI agents with SELinux confinement.
AuthorWarGloom
Version1.0.0
Installs0
System Documentation
What problem does it solve?
This Skill addresses the security risks of AI coding agents accessing sensitive user data by creating SELinux policies to confine their access to specific directories.
Core Features & Use Cases
- SELinux Policy Creation: Generates SELinux policy modules (
.te,.fc,.if) for confining AI agents. - Access Control: Restricts agents to explicitly labeled project directories while protecting the rest of the home directory.
- Use Case: You want to use an AI coding assistant like
opencodeoraiderbut are concerned about it accessing your SSH keys or personal documents. This skill helps you set up SELinux rules to ensure the agent can only interact with your project files.
Quick Start
Use the selinux-agent-confinement skill to set up SELinux rules for the opencode agent on Fedora.
Dependency Matrix
Required Modules
None requiredComponents
references
💻 Claude Code Installation
Recommended: Let Claude install automatically. Simply copy and paste the text below to Claude Code.
Please help me install this Skill: Name: selinux-agent-confinement Download link: https://github.com/WarGloom/opencode-selinux/archive/main.zip#selinux-agent-confinement Please download this .zip file, extract it, and install it in the .claude/skills/ directory.
Agent Skills Search Helper
Install a tiny helper to your Agent, search and equip skill from 223,000+ vetted skills library on demand.