
Hazmat: Open-Source Tool for Secure AI Coding Agent Containment
AI agentscybersecurityGitHubopen sourceAI securitysoftwareagentic AI
Hazmat is an open-source tool designed to contain AI coding agents by running them in a separate user account on a local machine. It supports multiple AI agent frameworks, including Claude Code, Codex, OpenCode, Cursor Agent, and custom scripts. The tool addresses security risks posed by AI agents operating with the same permissions as the user, which could expose sensitive data like SSH keys, cloud credentials, and configuration files. Hazmat was announced in August 2026 and is available as an open-source project on GitHub. No specific vulnerabilities, CVE IDs, or quantitative impact metrics were provided in the report.