nono
Sandboxes
OS Sandbox
Kernel isolation for Linux, macOS & Windows
Python Sandbox
Isolate Python AI agents
Node.js Sandbox
Isolate Node.js AI agents
Features
Kernel Isolation
Irrevocable allow-lists at the OS level
Undo & Rollback
Atomic filesystem snapshots
Audit Trail
Cryptographic audit log
Provenance
Sigstore supply chain integrity
Runtime Supervisor
Dynamic permission supervisor
Blog
Docs
GitHub
Blog
/
credentials
Articles tagged
#credentials
1 article
security
credentials
proxy
Credential Protection for AI Agents: The Phantom Token Pattern
How nono uses a credential injection proxy to protect API keys for AI agents.
Mar 2, 2026
14 min read