Coop – Isolated VM Environments for Running Claude Code and Codex Trail of Bits released coop, a Rust CLI that manages disposable virtual machines where Claude Code and Codex have full tool access, including Docker, git, compilers, and package managers, without risking the host machine. The tool, pronounced "coop" to rhyme with "loop," supports macOS arm64 and Linux x86_64, with Linux arm64 builds available but untested, and requires Lima on macOS and Firecracker on Linux. Isolated VM environments for running Claude Code and Codex. Pronunciation: "coop" /kuːp/ — one syllable, rhymes with "loop", like the thing you keep chickens in. Not "co-op". coop is a Rust CLI that manages disposable virtual machines where Claude Code and Codex have full tool access: Docker, git, compilers, package managers, all without risk to your host machine. Each VM is isolated, reproducible, and cheap to create and destroy. Install the latest release: curl -fsSL https://raw.githubusercontent.com/trailofbits/coop/main/install.sh | bash Or build from source requires Rust https://rustup.rs/ : cargo build --release cp target/release/coop /usr/local/bin/ Then build the VM template image: coop setup On Linux, coop setup also installs Firecracker and fetches a guest kernel. On macOS, install Lima first brew install lima — setup fails without it. coop is tested on macOS arm64 Apple Silicon and Linux x86 64; Linux arm64 builds are available but untested. Each backend has its own host requirements — see Prerequisites /trailofbits/coop/blob/main/docs/getting-started.md prerequisites . Keep coop updated: coop update See coop update /trailofbits/coop/blob/main/docs/commands.md update and the updates config section /trailofbits/coop/blob/main/docs/configuration.md updates-section . Start an instance for the current project and launch an agent CLI: cd ~/code/my-project coop up coop claude or coop codex