5 prompts to hack himself: Docker's microVM sandboxes for coding agents explained
AI Engineer · youtube · 2026-10-03
At AI Engineer World's Fair, Docker PM Rowan Christmas showed how his own coding agent surfaced browser history and bank data in just 5 prompts. His fix: Docker Sandboxes (sbx), one-command microVMs with isolated kernels, filesystem isolation, secret placeholders, default-deny networking and audit trails — compatible with Claude Code, Codex and more. He also previews agent identity, delegation chains and policy-based governance, with L7 and per-repo controls coming.
More from coding & agent
- Obol ships free self-hosted gateway: per-agent keys, budgets, MCP policy — ToBeContinuedHermit · 2026-10-03
- 'Cursor is cooked' takes it back: the hot take that aged like milk — gabriberton · 2026-10-03
- Anthropic releases free workshop on building collaborative multi-agent workflows — s_mohinii · 2026-10-03
- Jevbox: open-source self-organizing document drive with hierarchical search, no vector DB — rickasaurus · 2026-10-03
- AI will write 748 tests — except they are all the wrong ones — chrisalbon · 2026-10-03
- Reddit user ditches Zellij for Herdr to juggle multiple agent CLI sessions — leebase65 · 2026-10-03