{"id":92929,"title":"VibeKit 🖖 The Safety Layer for Your Coding Agent","tagline":"Open-source sandboxing and observability for Claude Code, Gemini CLI, et al.","body":"Hey YC! 👋\\\nWe’re building **VibeKit**, an open-source safety layer for Claude Code, Gemini CLI, and other coding agents.\n\n![uploaded image](/media/?type=post\u0026id=92929\u0026key=user_uploads/1367556/58ed677f-4f55-4d10-a0ef-b32fb2508117)\n\n## ❌ The Problem\n\nWe love coding with AI agents — until the day Anthropic emailed us to say they had found our API keys in a public GitHub repo and revoked them.\n\nThe leak came from our own coding agent. That’s when we realized most developers have no way to see — let alone control — what their AI agents are doing:\n\n* Which files they read or write\n* What shell commands they run\n* What data leaves their machine\n* Whether secrets get exposed in API calls\n\n## 🖖 The VibeKit Solution\n\nVibeKit is a **universal CLI wrapper** that runs any coding agent in a **local, isolated Docker sandbox**,\n\n![uploaded image](/media/?type=post\u0026id=92929\u0026key=user_uploads/1367556/76cf29ec-d566-42e9-861b-fad1a9bd4889)\n\nIt comes with:\n\n* **Secret redaction** before anything leaves your machine\n* **Full observability** into file changes, commands, API calls, and outbound data\n* **Offline-first**, open-source (MIT), and works with any agent — Claude, GPT-4o, Gemini, etc.\n\n![uploaded image](/media/?type=post\u0026id=92929\u0026key=user_uploads/1367556/20caa134-7f4a-434d-acac-6e5405eeb82b)\n\n## 💻 Try it out\n\n```\n# Install globally\nnpm install -g vibekit\n\n# Run Claude Code with VibeKit\nvibekit claude\n```\n\nThen watch _everything_ your AI is doing — safely.\n\n🎥 **Demo video:** [https://youtu.be/vDwJ4xcdRBM\\\\](https://youtu.be/vDwJ4xcdRBM%5C)\n\n📂 GitHub: [https://github.com/superagent-ai/vibekit\\\\](https://github.com/superagent-ai/vibekit%5C)\n\n📖 Docs: [https://docs.vibekit.sh](https://docs.vibekit.sh/)\n\n## 🙏 Our Ask\n\nIf you use coding agents day-to-day:\n\n* **Run them through VibeKit** — see what they’re _really_ doing.\n* Share your weirdest or most alarming finds with us — we’re building a public library of “agent fails.”\n\n💌 Contact: [founders@vibekit.sh](mailto:founders@vibekit.sh)\n\n---","slug":"OAr-vibekit-the-safety-layer-for-your-coding-agent","created_at":"2025-08-12T19:06:49.796Z","updated_at":"2026-05-24T19:22:53.742Z","total_vote_count":11,"url":"https://www.ycombinator.com/launches/OAr-vibekit-the-safety-layer-for-your-coding-agent","share_image_url":"https://www.ycombinator.com/media/?type=post\u0026id=92929\u0026key=user_uploads/1367556/58ed677f-4f55-4d10-a0ef-b32fb2508117","company":{"id":29374,"name":"Superagent","slug":"superagent","url":"https://superagent.sh/","logo":"https://bookface-images.s3.amazonaws.com/small_logos/a5fb7dd012389ddf81869040550578bb786988ed.png","batch":"Winter 2024","industry":"B2B","tags":["Artificial Intelligence","Security","Open Source","AI"],"search_path":"https://bookface.ycombinator.com/company/29374"}}