sha256:d372693c06e41f6645af444b030980ef587ac476fe6ba30943ed54bb26878e60
Last pushed
9 days by cdupuis
Type
Sandbox Kit
Manifest digest
sha256:d372693c06e41f6645af444b030980ef587ac476fe6ba30943ed54bb26878e60
schemaVersion: "3"
displayName: gstack (mixin)
description: Garry Tan's Claude Code skill pack as a mixin — the gstack checkout at a pinned commit with its setup run, Bun, and the headless-Chromium browse bundle, in an overlay. Layer it onto a shell base that already carries Claude Code and run `claude`.
version: 1.57.10.0
kind: mixin
provides:
- [email protected]
requires:
- claude
capabilities:
- type: com.docker.sandbox/network-policy@1
config:
runtime:
allow:
- api.anthropic.com
- claude.ai
- console.anthropic.com
- platform.claude.com
- downloads.claude.ai
- claude.com
- github.com
- raw.githubusercontent.com
- registry.npmjs.org
- '*.npmjs.org'
- huggingface.co
- '*.huggingface.co'
- type: com.docker.sandbox/credential@1
optional: true
config:
apiKey:
inject:
- domain: api.anthropic.com
format: '%s'
header: x-api-key
- domain: claude.ai
format: '%s'
header: x-api-key
- domain: console.anthropic.com
format: '%s'
header: x-api-key
name: ANTHROPIC_API_KEY
proxyManaged: true
oauth:
credentialFile:
path: ~/.claude/.credentials.json
structure:
claudeAiOauth:
accessToken: '{{.AccessToken}}'
expiresAt: '{{.ExpiresAt}}'
refreshToken: '{{.RefreshToken}}'
scopes: '{{.Scopes}}'
sentinels:
accessToken: sk-ant-oat01-proxy-managed
refreshToken: sk-ant-ort01-proxy-managed
tokenEndpoint:
host: platform.claude.com
path: /v1/oauth/token
phase: runtime
service: anthropic
description: Anthropic API access (API key or claude.ai OAuth)
- type: com.docker.sandbox/agent-context@1
config:
contentFile: /usr/share/sandbox/kit/gstack-mixin/gstack-mixin-context.md
args:
bunVersion:
default: 1.3.10
description: Bun release the gstack binaries are built with
pattern: ^[0-9]+\.[0-9]+\.[0-9]+$
buildArg: BUN_VERSION
ref:
default: a5833c413f98b13f105beac96262e8098b628461
description: gstack commit to check out and run ./setup from
pattern: ^[0-9a-f]{40}$
buildArg: GSTACK_REF
version:
default: 1.57.10.0
description: gstack's own VERSION at the pinned ref; the build verifies it matches
pattern: ^[0-9]+(\.[0-9]+)*$
buildArg: GSTACK_VERSION