Framework · experimental

hyperlight-dev/hyperagent

Pre-release code-acting agent runtime executing generated JavaScript handlers inside hardware-isolated Hyperlight micro-VMs with explicit host capabilities.

AI agentssandboxingsecure automation
Installation GuideInstruction Manual

What it contains

Pre-release code-acting agent runtime executing generated JavaScript handlers inside hardware-isolated Hyperlight micro-VMs with explicit host capabilities.

Typical uses

Experiment with bounded data/API/artifact automation while denying ambient shell/filesystem/network access by default.

Why people choose it

Inference: chosen when sandbox isolation is the main architectural requirement and pre-release risk is acceptable.

License
Unknown
Maintenance
active
Latest release
Unknown
Last meaningful update
Unknown
Maturity
experimental
Production readiness
prototype

Classification

Subject domains

AI agentssandboxingsecure automation

Task categories

AI agentssandboxingsecure automation

Project phases

implementationoperations

Secondary types

CLIsandboxed runtimeMCP client

Select when

  • Need hardware-isolated execution for generated code

Do not select when

  • Production use
  • macOS
  • No hardware virtualization
Implementation complexity
high
Setup effort
high
Learning curve
high
Confidence
high

Routing heuristic 72.0%

Routing specificity
4/5
Setup simplicity
1/5
Operational maturity
1/5
Composability
4/5
Local control
5/5
Security boundary clarity
5/5
First-party routing documentation
5/5

Strengths

None documented.

Poor-fit scenarios

  • Production use
  • macOS
  • No hardware virtualization

Limitations

None documented.

README.md

Validate/run JS handlers in micro-VM.

sandbox
README.md

Path-jailed file/domain-scoped HTTP capabilities.

filesHTTP
MCP bridge mcp_tool
README.md

Expose approved MCP tools as host modules.

MCP
README.md

pptx/pdf/xlsx/report/data/API/web/MCP guidance.

skills
Languages
None documented
Frameworks
None documented
Runtimes
Node.js 22+, GitHub Copilot SDK
Operating systems
Linux/KVM, Windows/WHP, WSL2/KVM, Azure Linux/MSHV
Installation methods
None documented
Interfaces
None documented
Required credentials
GitHub/Copilot authentication
External services
None documented
Hardware
hardware virtualization
Major dependencies
None documented

Compatibility notes

None documented.

One-sentence semantic summary

Pre-release code-acting agent runtime executing generated JavaScript handlers inside hardware-isolated Hyperlight micro-VMs with explicit host capabilities.

Capability keywords

micro-VM executionhandler validationdocumentsapproved HTTP/filesMCP

User intent phrases

  • Need hardware-isolated execution for generated code

Negative match phrases

  • Production use
  • macOS
  • No hardware virtualization

Differentiators

None documented.

Security considerations

  • README says pre-release/not production; avoid auto-approve for untrusted work.

Privacy considerations

None documented.

Uncertainty

Unresolved items

  • License not conclusively verified in the inspected first-party material.

Inference notes

None documented.

Evidence

Repository usage guidance

installation summary
Unknown
basic usage summary
Experiment with bounded data/API/artifact automation while denying ambient shell/filesystem/network access by default.
documented entry points
None documented
key configuration files
None documented
important directories
None documented
documentation paths
README.md
example paths
None documented

Relationships

No explicit repository relationships indexed.

Recommended combinations

Not part of a curated combination.

Routing rules

rule_039: Need hardware-isolated execution for generated code P961

Rationale

Pre-release code-acting agent runtime executing generated JavaScript handlers inside hardware-isolated Hyperlight micro-VMs with explicit host capabilities.

Required conditions

None documented.

Preferred

hyperlight-dev/hyperagent

Fallback

None