Claudebox MCP Server

A runtime harness for Claude Code - the agentic coding CLI from Anthropic - running in a fully isolated Docker container with every dev tool pre-installed, passwordless sudo, docker-in-docker support, and --permission-mode bypassPermissions enabled by default.

People who need cloud infrastructure tools inside Claude, Cursor, VS Code, or another MCP client. The project is written in Shell.

VERIFIED ACTIVE

LAST COMMIT 2026-08-13 · ★ 19 · #107 OF 141 MAINTAINED CLOUD INFRASTRUCTURE · VERIFIED 2026-08-25

WTFPL · Shell · how we verify → /methodology

01 · Install Claudebox

before you install - you'll need

Set CLAUDEBOX_FULL, CLAUDE_CODE_OAUTH_TOKEN, ANTHROPIC_API_KEY before connecting.

Docker

docker run -i --rm docker.io/psyb0t/claudebox:v2.3.9

Claude Desktop - add to config

{
  "mcpServers": {
    "psyb0t-docker-claudebox": {
      "command": "docker",
      "args": [
        "run",
        "-i",
        "--rm",
        "docker.io/psyb0t/claudebox:v2.3.9"
      ]
    }
  }
}
Using another client? Same JSON, different key

Claude Desktop · mcpServers

Cursor · mcpServers

VS Code · servers

Windsurf · mcpServers

Zed · context_servers

Cline · mcpServers

Roo Code · mcpServers

Continue · mcpServers

LibreChat · mcpServers

Gemini CLI · mcpServers

Codex CLI · mcp_servers

Full setup guides: every client.

02 · Evidence

Security posture

What to check before giving this server access to your agent - from the registry, GitHub, and our own probes. We don't score safety; we show what's verifiable.

runs as container (OCI image) - can be sandboxed away from your filesystem

license WTFPL - declared in the repository

registry namespace io.github.psyb0t is GitHub-verified and matches the repo owner

03 · What Claudebox can do

Prose above is summarized from the project's README and registry record - no invented capabilities.

Latest releases

v2.3.9 · 2026-08-13

v2.3.8 · 2026-08-09

v2.3.7 · 2026-08-01

04 · Who maintains Claudebox

Claudebox is maintained by psyb0t. We track 13 MCP servers from psyb0t - 13 actively maintained, 110 combined GitHub stars, oldest repo from Jun 2025. Full record: all servers from psyb0t.

  1. Stealthy Auto Browse Self-hosted MCP server for stealth browser automation with human-like OS-level input. ★ 72
  2. Talkies Self-hosted MCP server for speech: ASR transcription, TTS synthesis, and file staging tools. ★ 5
  3. HybridS3 Self-hosted S3-compatible object storage server with an MCP interface for AI agents. ★ 4
  4. Audiolla Self-hosted MCP server: audio stems, mastering, MIR analysis, DSP, MIDI, speech tools. ★ 2
  5. Pibox Self-hosted MCP server: pi-coding-agent tools (run_prompt, file ops) over streamable HTTP. ★ 2
  6. Predictalot Self-hosted MCP server for time-series forecasting and tabular ML via foundation models. ★ 2

05 · Facts

category
cloud infrastructure - ranked #107 of 141 actively-maintained cloud infrastructure servers as of 2026-08-25.
release cadence
10+ releases in the last 90 days (latest 2026-08-13)
registry
io.github.psyb0t/claudebox (active, first published 2026-07-26 · 7 versions)
packages
oci:docker.io/psyb0t/claudebox:v2.3.9

06 · Claudebox FAQ

What is Claudebox?

A runtime harness for Claude Code - the agentic coding CLI from Anthropic - running in a fully isolated Docker container with every dev tool pre-installed, passwordless sudo, docker-in-docker support, and --permission-mode bypassPermissions enabled by default.

Is Claudebox still maintained?

Yes - as of 2026-08-25, its last commit was 2026-08-13 and it shipped 10+ releases in the last 90 days. We re-verify nightly.

How do I install Claudebox?

Run `docker run -i --rm docker.io/psyb0t/claudebox:v2.3.9`. The README documents 3 environment variables (CLAUDEBOX_FULL, CLAUDE_CODE_OAUTH_TOKEN, ANTHROPIC_API_KEY) to set first. Set CLAUDEBOX_FULL, CLAUDE_CODE_OAUTH_TOKEN, ANTHROPIC_API_KEY before connecting. You can also paste the ready-made client config above.

07 · Alternatives to Claudebox

More cloud infrastructure MCP servers · Hybrid S3 · Talkies · DynamoDB · Fly Io · GCS