{"id":"wassette","name":"Wassette","homepage":"https://microsoft.github.io/wassette/","repo_url":"https://github.com/microsoft/wassette","category":"infrastructure","subcategories":["webassembly","sandboxing","mcp-runtime"],"tags":["webassembly","wasm","sandbox","security","rust","microsoft","mcp","wasmtime","oci"],"what_it_does":"A security-focused runtime by Microsoft that executes WebAssembly Components via MCP, enabling AI agents to dynamically load and run sandboxed tools from an OCI registry without leaving the chat interface, using Wasmtime for browser-grade isolation.","use_cases":["Extending AI agents with new sandboxed tools dynamically during chat sessions","Running untrusted or third-party tools in isolation without risk to the host system","Distributing reusable WebAssembly tool components via OCI container registries","Building secure multi-tool agent environments where tool code is isolated from agent state"],"not_for":["General-purpose MCP servers that don't need WebAssembly sandboxing","Production deployments requiring enterprise SLAs (currently early-stage)","Teams unfamiliar with WebAssembly component model tooling"],"best_when":"You need to run dynamically loaded, potentially untrusted tools in an AI agent context and want strong isolation guarantees without containerization overhead.","avoid_when":"Your tools are trusted first-party code — the sandboxing overhead isn't worth it for internal tools. Use standard MCP servers instead.","alternatives":["docker-mcp","standard-mcp-servers","toolhouse"],"af_score":72.0,"security_score":85.0,"reliability_score":null,"package_type":"mcp_server","discovery_source":["github"],"priority":"low","status":"evaluated","version_evaluated":"latest","last_evaluated":"2026-03-01T09:50:06.387223+00:00","performance":{"latency_p50_ms":null,"latency_p99_ms":null,"uptime_sla_percent":null,"rate_limits":null,"data_source":"llm_estimated","measured_on":null}}