astrid
View on GitHubAstrid is a portable, capability-secure operating system for composable software.
Astrid is a Rust user-space runtime (heading toward an OS) that runs LLM agents and tools as sandboxed WASM capsules with cryptographic, per-principal capability grants. The kernel is a dumb event router with no LLM or tool state; use it to compose secure agent systems, MCP tools, and services.
Use Cases
Run untrusted LLM agents behind OS-grade capability sandboxesBuild composable agent systems from WASM capsulesHost capability-checked MCP tools and gatewaysIsolate per-principal agent state, secrets, and audit chainsHeadless scripted agent runs via astrid -p promptsInstall/upgrade agent capsules live on a running daemonMount durable per-principal agent storage via FUSE/FSKitAudit every agent tool call with signed hash-linked logs
Built With
- Language
- Rust
- Frameworks
- Wasmtime · WebAssembly Component Model · WIT · MCP · FUSE · FSKit
Tags
agent-runtime · wasm · sandbox · capability-security · mcp · rust · microkernel · wasmtime · ipc · llm · audit-log · ed25519 · content-addressed-storage · cli · multi-agent · os