What we learned from building the sandboxes our agents run in
theonly1me
13 points
1 comment
October 06, 2026
Related Discussions
Found 5 related stories in 101.4ms across 8,687 title embeddings via pgvector HNSW
- Docker Sandboxes – Disposable, isolated sandboxes for AI agents etoxin · 512 pts · August 10, 2026 · 66% similar
- Snapshots, copy-on-write, and the economics of agent sandboxes nikhilunni · 15 pts · July 23, 2026 · 65% similar
- The Sandboxing Manifesto for Agentic Execution spirosoik · 18 pts · July 21, 2026 · 59% similar
- Building an (almost) fully self-hosted, sandboxed, agentic software factory jakelsaunders94 · 94 pts · August 21, 2026 · 58% similar
- Run Minecraft in a Windows sandbox for computer use agents someguy101010 · 23 pts · August 25, 2026 · 57% similar
Discussion Highlights (1 comments)
theonly1me
I work on AI tooling at QA Wolf and I recently wrote this post. Everyone is giving agents their own sandboxes these days, so that part isn't new. But I wanted to share the "why" and what we learned from building them. We first built them the way you build anything else in the cloud, but agent sessions don't behave like cloud jobs and a lot of cloud habits were wrong for them. A few examples: 1. We first built a microservice that was responsible for managing each agent session, and thought we could scale it horizontally. That doesn't work, not if you want to give your agents a real file system and tools that need to be installed on that machine. We later gave each machine its own sandbox. 2. Our agents power our UI, but also live in Slack, Github threads and wait for people to reply. Our sandboxes had a 1-minute timeout and a cold-start. So once a sandbox died, it took anywhere from 10 to 30 seconds to spawn, because of which the users had to wait longer before they received a response from our AI on the UI or in the threads. Now, we maintain warm pools of sandboxes which can be acquired by a session in milliseconds and each sandbox is kept alive for 5 minutes after each reply. The post is fairly high level, but if you want more detail on any part of it, I'm happy to talk about it here.