tao3k/omnibus-ncl · Archived

nsjail

Use when configuring Linux sandboxing with nsjail, generating security profiles, or configuring process isolation for skills.

First seen Jun 24, 2026

Installation

$ npx skills add tao3k/omnibus-ncl --skill nsjail

Stronger alternatives

This repository is archived — consider an actively maintained alternative.

Similar popular skills

Related neighbors and high-traction skills in the same topics — useful to compare before installing.

Also in this package

Other skills from tao3k/omnibus-ncl.

npx skills add tao3k/omnibus-ncl

Browse all from tao3k/omnibus-ncl

More details

Agent compatibility

Declared targets from SKILL.md / docs. Unmarked agents are not listed — the skill may still install via the CLI.

Claude Code Not declared
Cursor Not declared
Codex Not declared
GitHub Copilot Not declared
Windsurf Not declared
Gemini CLI Not declared
Cline Not declared
OpenCode Not declared

Repository health

License LICENSE
Default branch main
Open issues 0
Status Archived

Skill metadata

Parsed from SKILL.md frontmatter.

Version1.0.0
More metadata
retrieval
{"saliency_base":5.5,"decay_rate":0.05}
version
1.0.0
source
https://github.com/tao3k/xiuxian-artisan-workshop/tree/main/packages/ncl/sandbox/nsjail
routing_keywords
["nsjail","sandbox","linux","namespace","container","isolation","process","security","chroot","cgroups"]

Package contents

Files included with this skill beyond the listing page.

  • skill md SKILL.md 2,282 B
  • docs SUMMARY.md 139 B

History

  1. First seen on skills.sh
  2. First recorded snapshot · 1 installs

SKILL.md

Nsjail Skill

Linux sandboxing and process isolation using nsjail.

Commands

Command Description
[nsjailconfig](#nsjailconfig) Generate nsjail configuration
[nsjailprofile](#nsjailprofile) Generate nsjail profile
[nsjailrun](#nsjailrun) Run command in nsjail

nsjail_config

Generate an nsjail configuration.

nsjail_profile

Generate an nsjail profile.

nsjail_run

Run a command in nsjail.

Usage Examples

# Generate minimal nsjail config
@omni("nsjail.nsjail_config", {"skill_id": "data-processor", "mode": "local"})

# Generate standard profile
@omni("nsjail.nsjail_profile", {"profile_type": "standard", "skill_id": "web-scraper"})

# Run command in nsjail
@omni("nsjail.nsjail_run", {"cmd": ["python3", "script.py"], "mode": "local"})

Concepts

Topic Description Reference
Profile Types Sandbox profiles [profiles.md](references/profiles.md)
Resource Limits CPU/memory limits [rlimits.md](references/rlimits.md)
Network Policies Network isolation [network.md](references/network.md)

Best Practices

  • Start with minimal profile, escalate as needed
  • Use network deny unless required
  • Set appropriate timeouts
  • Use cgroups for resource control

Related Skills

Topic Description Reference
Seatbelt macOS sandboxing [seatbelt](../seatbelt/SKILL.md)
NCL Modules Nickel module patterns [nickel-modules.md](packages/ncl/nickel-modules.md)