Legwork: an MCP server that lets your AI find and sandbox-install GitHub tools
Status_Record5772 · reddit · 2026-10-11
Legwork is an MIT-licensed MCP server: when your AI hits a task without a tool, it searches GitHub, picks a repo and, after approval, installs it as an MCP tool in a sandbox. Models write wrappers from READMEs when no MCP server exists, kept only if a sandbox self-test passes; 37 reviewed tools cache and install in 1 minute with no API key. Sandboxing uses sandbox-exec on macOS and bubblewrap+seccomp on Linux — read-only folder access, no env vars, no network by default, never falls back to unsandboxed. Works with Claude Code, Cursor, Codex and more. Motivation: two of the ten most-starred new AI repos one week carried the same malware.
More from coding & agent
- Meta & CMU's IdeaScientist uses RL agents for cross-domain research ideation, lifting novelty from 36.3% to 67.0% — ZeYanjie · 2026-10-11
- Agents on a trading MCP server backtest 6x more than humans but almost never deploy — QuanTradin · 2026-10-11
- A notes MCP server that lets Claude Code, Codex and Gemini share one notebook — lovegrover · 2026-10-11
- Google's TabFM: a zero-shot foundation model that predicts table data in one forward pass — Prompt Engineering · 2026-10-11
- O'Reilly 'Agent Memory' book enters early release with first two chapters live — danielrock · 2026-10-11
- saccade: A Local-First Python Library for Video Transcripts, Frames, and Semantic Search — Dapper_Ad599 · 2026-10-11