Cloudflare Sandboxes: a scenario-based guide to sandboxing agent-written code
irvinebroque · x · 2026-10-12
Developer irvinebroque curated Cloudflare Sandboxes docs by use case: the full @cloudflare/sandbox SDK for running untrusted agent-generated code in isolation (with control over internet access), lighter VFS+bash options when you just need to execute code, a browser sandbox option, and monitoring tooling.
Key details from the docs: containers run in dedicated microVMs with their own kernel and network, started by a Durable Object in your Worker that dispatches commands, with HTTP reaching instances only through the Worker. The Durable Object scheduling policy is in public beta and requires the Workers Paid plan.
Related event: Cloudflare Unveils Sandboxes and an Execution Ladder for LLM Agents(2 posts)→
More from coding & agent
- Decision 3.0 ported to Core ML: 1,000 PRs triaged on-device at 0.12s each — emax · 2026-10-12
- Dev claims open-source Schematic Tracer beats Cadence and Synopsys, built in 3 days — dosco · 2026-10-12
- mitsuhiko floats folding effect into code mode as durable execution wins praise — mitsuhiko · 2026-10-12
- Buddy 2.1: open-source Android app lets Claude Code drive your phone on your subscription — 3amae404 · 2026-10-12
- Dev asks Grok to build itself a Vision Pro app, creates conversational room bots — Baconbrix · 2026-10-12
- When nobody says NO, who authorized YES? Rethinking AI agent governance — Portotify · 2026-10-12