SIDJUA V1.0: Self-Hosted Governance Platform for AI Agents

SIDJUA V1.0 is a self-hosted governance platform for AI agents that runs on Docker containers, including on Raspberry Pi hardware. The tool is AGPL-3.0 licensed and has no cloud dependencies.
Quick Start
For Mac and Linux: docker pull ghcr.io/goetzkohlberg/sidjua
For Windows with Docker Desktop and WSL2: There's a known issue where the security profile file isn't found correctly. To work around this, open docker-compose.yml and comment out the two lines under security_opt:
security_opt:
# - "seccomp=seccomp-profile.json"
# - "no-new-privileges:true"Then run docker compose up -d. This disables some container hardening but is acceptable for home use. A proper fix is scheduled for V1.0.1 on March 31.
Key Features
- Mandatory governance checkpoints: Every agent task must pass rules before execution
- Encrypted API keys and secrets: AES-256-GCM with argon2-hashing, per-agent encryption
- Network isolation: Outbound validator blocks access to private IP ranges
- Default-deny security: Agent modules without sandboxes get denied, not warned
- State backup and restore: Single API call, rate-limited and auto-pruned
- Server-side LLM credential injection: OpenAI, Anthropic, etc. credentials never touch browser/client
- Granular budget limits: Per-agent and per-division cost controls
- Division isolation: Unknown or unauthorized divisions get rejected at system entry
- Runtime reorganization: Reassign roles and move agents between divisions without restart
Version Roadmap
- V1.0.1 (March 31): Fixes Windows Docker issue and adds 25 security hardening tasks from triple audit
- V1.0.2 (April 10): Adds random master key generation, inter-process authentication, and module secrets migration from plaintext to encrypted store
All fixes in V1.0.1 were cross-validated by three independent AI code auditors: xAI Grok, OpenAI GPT-5.4, and DeepSeek.
📖 Read the full source: r/LocalLLaMA
👀 See Also

Pneuma: An AI-Generated Desktop Environment Where Software Materializes from Descriptions
Pneuma is a desktop computing environment where you describe what you want—a CPU monitor, game, notes app, or data visualizer—and a working program materializes in seconds. The system generates self-contained Rust modules, compiles them to WebAssembly, and executes them in sandboxed Wasmtime instances with GPU rendering via wgpu.

Alternative AI Coding Agents After Claude's Plan Removal
A Reddit user tested several AI coding agent alternatives after Claude discontinued its coding plan, including Kimi ($20/month), Minimax ($10/month), Z.AI GLM ($10/month), Stepfun ($6-10/month), Mistral ($15/month), and Arcee Trinity (API-based).

AutoBe: How Weak Local LLMs Fixed an AI Backend Generator's Architecture
AutoBe is an open-source AI agent that generates complete backend apps using TypeScript, NestJS, and Prisma. The team discovered their initial 100% compilation success produced unmaintainable code, then rebuilt with modular generation—crashing success to 40%—and used weak local LLMs like qwen3-30b-a3b-thinking to debug schema ambiguities.

Claude-Skills Maintainer Seeks Feedback on 181 Agent Skills Library
Reza, maintainer of claude-skills, is asking the community for feedback on his open-source library containing 181 agent skills, 250 Python tools, and 15 agent personas that work across 11 AI coding tools. He's questioning whether the isolated skill approach is effective and wants input on missing skills, persona-based agents, and tool integrations.