Skip to main content

os-manager — Autonomous Claude Code Harness, Security Matrix & WSL2 Automation Suite

CI Status PyPI Version License: MIT Tests

Run Claude Code autonomously without fear of host destruction.
Open-source governance harness, 4-tier security matrix, auto-sandbox fallback, and background telemetry engine across Linux, WSL2, and macOS by @0xrizz.


⚡ Quickstart (10 Seconds)

Install and configure hooks, guardrails, and slash commands in a single command:

curl -fsSL https://raw.githubusercontent.com/0xrizz/os-manager/main/install.sh | bash

Or install via Python toolchain:

uv tool install 0xrizz-os-manager
osm check

🛡️ Core Features

  • 4-Tier Security Matrix: Deterministically blocks host sabotage (/mnt/c/Windows, /etc/shadow) with hard zero-trust vetoes (Exit Code 2).
  • Auto-Sandbox Fallback: Seamlessly reroutes risky operations (rm -rf, heavy purges) into rootless Podman containers without aborting turns.
  • Workstation Performance: Automated VHDX compaction, zero 9P latency enforcement on ext4, and fast cache cleanup.
  • Background Observability: Built-in Prometheus metrics exporter (127.0.0.1:9100) and nanosecond hook latency tracing.
  • Multi-Agent SSOT Bridge: Zero-copy relative symlinks synchronizing skills across Claude Code, Universal Agent, and Google Antigravity.

🏛️ Harness Architecture

 ══════════════════════════════════════════════════════════════════════════════════════════════════
                                CLAUDE-FIRST AGENT HARNESS TOPOLOGY                                  
 ══════════════════════════════════════════════════════════════════════════════════════════════════
                                               │
 ┌─────────────────────────────────────────────▼──────────────────────────────────────────────────┐
 │ HARNESS CONFIGURATION & GOVERNANCE LAYER                                                       │
 │ • .claude/settings.json (Permissions, Env, Hook Registrations)                                 │
 │ • CLAUDE.md & .claude/rules/ (WSL Boundaries, Safety Tiers, Error Recovery Protocols)         │
 └─────────────────────────────────────────────┬──────────────────────────────────────────────────┘
                                               │
        ┌──────────────────────────────────────┼──────────────────────────────────────┐
        ▼                                      ▼                                      ▼
 ┌──────────────┐                       ┌──────────────┐                       ┌──────────────┐
 │  LIFECYCLE   │                       │    CUSTOM    │                       │ MULTI-AGENT  │
 │    HOOKS     │                       │   COMMANDS   │                       │ INTEROP &    │
 │    ENGINE    │                       │   & SKILLS   │                       │  SUBAGENTS   │
 ├──────────────┤                       ├──────────────┤                       ├──────────────┤
 │•SessionStart │                       │• /diag       │                       │•.claude/     │
 │•PreToolUse   │                       │• /clean      │                       │  skills/     │
 │•PostToolUse  │                       │• /upgrade    │                       │•.agents/     │
 │•PostFailure  │                       │• /snapshot   │                       │  skills/     │
 │•PreCompact   │                       │• /dotfiles   │                       │•~/.gemini/   │
 │•SessionEnd   │                       │• /pair       │                       │  config/     │
 │              │                       │• /harness-   │                       │  skills/     │
 │              │                       │  check       │                       │•.claude/     │
 │              │                       │              │                       │  agents/     │
 └──────────────┘                       └──────────────┘                       └──────────────┘

💻 Custom Slash Commands

  • /diag: Compact Unicode health dashboard card and system status.
  • /clean: Safe space reclamation across APT, UV, PNPM, Bun, and /tmp.
  • /upgrade: Coordinated toolchain and runtime updates.
  • /snapshot: Disaster recovery point-in-time distro backups.
  • /pair: Spawns paired multi-agent Tmux workspace (Claude Code + Antigravity).

👤 Author & Maintainer

Maintained and developed by 0xrizz.


📄 License

This project is licensed under the MIT License. See LICENSE for details.

Download files

Download the file for your platform. If you're not sure which to choose, learn more about installing packages.

Source Distribution

0xrizz_os_manager-1.0.0.tar.gz (380.6 kB view details)

Uploaded Source

Built Distribution

If you're not sure about the file name format, learn more about wheel file names.

0xrizz_os_manager-1.0.0-py3-none-any.whl (9.8 kB view details)

Uploaded Python 3

File details

Details for the file 0xrizz_os_manager-1.0.0.tar.gz.

File metadata

  • Download URL: 0xrizz_os_manager-1.0.0.tar.gz
  • Upload date:
  • Size: 380.6 kB
  • Tags: Source
  • Uploaded using Trusted Publishing? No
  • Uploaded via: uv/0.12.5 {"installer":{"name":"uv","version":"0.12.5","subcommand":["publish"]},"python":null,"implementation":{"name":null,"version":null},"distro":{"name":"Debian GNU/Linux","version":"13","id":"trixie","libc":null},"system":{"name":null,"release":null},"cpu":null,"openssl_version":null,"setuptools_version":null,"rustc_version":null,"ci":null}

File hashes

Hashes for 0xrizz_os_manager-1.0.0.tar.gz
Algorithm Hash digest
SHA256 d7d4533b9e7f48ab4a8dbcbeb2c295a7a6f3b72d0e9e901b4cb5c054921f0638
MD5 f526a3d00afd23debbbef5264fa265cc
BLAKE2b-256 51f81eb3f54b4c62e55ba7c2e8a0ba1e211f28501551ead41168d70e42a449d8

See more details on using hashes here.

File details

Details for the file 0xrizz_os_manager-1.0.0-py3-none-any.whl.

File metadata

  • Download URL: 0xrizz_os_manager-1.0.0-py3-none-any.whl
  • Upload date:
  • Size: 9.8 kB
  • Tags: Python 3
  • Uploaded using Trusted Publishing? No
  • Uploaded via: uv/0.12.5 {"installer":{"name":"uv","version":"0.12.5","subcommand":["publish"]},"python":null,"implementation":{"name":null,"version":null},"distro":{"name":"Debian GNU/Linux","version":"13","id":"trixie","libc":null},"system":{"name":null,"release":null},"cpu":null,"openssl_version":null,"setuptools_version":null,"rustc_version":null,"ci":null}

File hashes

Hashes for 0xrizz_os_manager-1.0.0-py3-none-any.whl
Algorithm Hash digest
SHA256 4901d9ec74b233852e415e9816976c32839d291f173420c190595e5b21f7f78c
MD5 0a8ecc74f2d5efcb1499d2a963e4f5e0
BLAKE2b-256 ab24dfffd3a024bf54442212674e44dea7ed5e665165ff73a86644ec05f3dc72

See more details on using hashes here.

Supported by

AWS Cloud computing and Security Sponsor Datadog Monitoring Depot Continuous Integration Fastly CDN Google Download Analytics Sentry Error logging StatusPage Status page