Ask HN: The new wave of AI agent sandboxes?

In the last couple of months, several new solutions for sandboxing AI agents have launched (microVMs, WASM runtimes, browser isolation, hardened tool containers, etc.). Curious to hear from people using them in production. Are they working as advertised, or are there still major tradeoffs around security, cost, and performance?

Here's my list of sandboxing solutions launched in the last year alone: E2B, AIO Sandbox, Sandboxer, AgentSphere, Yolobox, Exe.dev, yolo-cage, SkillFS, ERA Jazzberry Computer, Vibekit, Daytona, Modal, Cognitora, YepCode, Run Compute, CLI Fence, Landrun, Sprites, pctx-sandbox, pctx Sandbox, Agent SDK, Lima-devbox, OpenServ, Browser Agent Playground, Flintlock Agent, Quickstart, Bouvet Sandbox, Arrakis, Cellmate (ceLLMate), AgentFence, Tasker, DenoSandbox, Capsule (WASM-based), Volant, Nono, NetFence

12 points | by ATechGuy 22 days ago

14 comments

  • jossclimb 13 days ago
    I would recommend nono - it's practically 0 seconds of latency, developed by the creator of sigstore which is used by google, github, and secures a lot of the open source software supply chain.

    What I like most is, its like a runtime `nono run ... agent` and there is not managing vms, containers ,mounts.

  • ex-aws-dude 21 days ago
    A tool so good that it requires 37 different sandboxes
  • agcat 22 days ago
    I know there are too many of them, found this benchmarks that my partner did - https://github.com/nickaggarwal/sandbox-test/blob/main/FULL_.... He is planning to add a few more of them.
    • ATechGuy 21 days ago
      This is very useful. Thanks for sharing!
  • a3ka 11 days ago
    [dead]
  • aimemobe 12 days ago
    [dead]
  • qasim157 19 days ago
    [dead]
  • Mooshux 19 days ago
    [dead]
  • JohnsonLai928 16 days ago
    [dead]
  • olivercoleai 21 days ago
    [dead]
  • QubridAI 21 days ago
    They work, but with tradeoffs. MicroVMs are secure but slower & costly. WASM is fast & cheap but limited. Ultimately, to date, there isn't a perfect solution. A majority of people employ a hybrid solution.
  • aimarketintel 21 days ago
    [flagged]
  • reprex_me 19 days ago
    [dead]
  • allinonetools_ 19 days ago
    [flagged]
  • cochinescu 21 days ago
    [flagged]