E2B launches Secrets: inject API keys into agent requests without exposing them in the sandbox
badphilosopher · x · 2026-10-08
E2B released E2B Secrets, letting agents call credential-requiring external services while keeping keys outside the sandbox.
- Problem: passing secrets as env vars means sandbox code can read, log, or exfiltrate them—sandbox isolation doesn't protect credentials you place inside.
- How it works: secrets are stored with E2B and referenced by name; HTTPS requests from the sandbox are intercepted outside it, and E2B injects the resolved secret into configured request headers before forwarding.
- Details: keys can be rotated without restarting sandboxes; SDK stores secrets over TLS; the post includes a full example calling Claude with an Anthropic API key scoped to a workspace.
A key step toward production-grade agents that safely work with your services and data.
More from coding & agent
- Naveen Rao: Let Agents Probe Every PowerPoint Feature, Then Rewrite the App — NaveenGRao · 2026-10-08
- Coding agents can build funnels but can't grasp why humans buy, marketer argues — boringmarketer · 2026-10-08
- AWS open-sources Strands Box, an OS-level sandbox for AI agents — TheNickWalsh · 2026-10-08
- Testing NVIDIA's Free Nemotron 3 Ultra as a Coding Agent in OpenCode — Aj_Networks · 2026-10-08
- Sierra launches fleming-1, a model that detects when a phone caller is an AI agent — venusatuluri · 2026-10-08
- Merged 145 PRs in a day with orchestrator agents, cloud agents, and cross-model review — vinvan · 2026-10-08