frontpage.
newsnewestaskshowjobs

Made with ♥ by @iamnishanth

Open Source @Github

fp.

Open in hackernews

Ask HN: Why are so many rolling out their own AI/LLM agent sandboxing solution?

5•ATechGuy•1h ago
Seeing a lot of people running coding agents (Claude Code, etc.) in custom sandboxes Docker/VMs, firejail/bubblewrap, scripts that gate file or network access.

Curious to know what's missing that makes people DIY this? And what would a "good enough" standard look like?

Comments

rvz•1h ago
This is no different to people rolling their own and DIY'ing custom cryptography, which is absolutely not recommended.

The question is how easy is it to bypass these DIY 'sandboxes'?

As long as there is a full OS running, you are one libc function away from a sandbox escape.

ATechGuy•1h ago
> As long as there is a full OS running, you are one libc function away from a sandbox escape.

Does this mean, all software in the world is just one function away from escape?

verdverm•1h ago
I started building my own agent when I became frustrated with copilot not reading my instruction files reliably. Looked at the code, and wouldn't you know they let the LLM decide...

Once started down this path, I knew I was going to need something for isolated exec envs. I ended up building something I think is quite awesome on Dagger. Let's me run in containers without running containers, can get a diff or rewind history, can persist and share wvia any OCI registry.

So on one hand, I needed something and chose a technology that would offer me interesting possibilities, and on the other I wanted to have features I don't expect the likes of Microsoft to deliver with Copilot, only one of which is my sandbox setup.

I'm not sure I would call it rolling my own completely, I'm building on established technology (OCI, OCR)

I don't expect a standard to arise, OCI is already widely adopted and makes sense, but there are other popular techs and there will be a ton of reimplementations by another name/claim. The other half of this is that AI providers are likely to want to run and charge money for this, I personally expect more attempts at vendor lock in in this space. In example, Anthropic bought Bun and I anticipate some product to come of this, isolation and/or canvas related

ATechGuy•1h ago
What was the first concrete thing you needed that existing sandboxing tools (Docker/VMs/bwrap) just didn't provide?
verdverm•49m ago
This question reads like HN market research and not genuine curiosity

Go look at what dagger provides over those technologies as a basis for advanced agent env capabilities. I use it for more than just sandboxing with my agent

I would also point out sandboxing is just one feature, that is approaching required status, for an agentic framework and unlikely to be an independent product or solution

Show HN: Autonomous outbound research and outreach drafts

https://www.prospecter.io
1•Greateste•6m ago•0 comments

Stiffer Colon Linked to Increased Risk of Early-Onset Cancer

https://scitechdaily.com/stiffer-colon-linked-to-increased-risk-of-early-onset-cancer/
1•caned•8m ago•0 comments

Verizon starts requiring 365 days of paid service before it will unlock phones

https://arstechnica.com/tech-policy/2026/01/verizon-starts-requiring-365-days-of-paid-service-bef...
2•voxadam•9m ago•0 comments

Amazon buyer unboxes "RTX 5080", turns out to be 5060 Ti

https://videocardz.com/newz/amazon-buyer-unboxes-rtx-5080-with-a-single-8-pin-connector-which-tur...
2•LeoNatan25•13m ago•1 comments

Nobody Gets Promoted for Great Docs

https://docsalot.dev/blog/why-most-developer-documentation-sucks
1•fazkan•14m ago•0 comments

AliSQL is a MySQL branch originated from Alibaba Group

https://github.com/alibaba/AliSQL
2•tanelpoder•21m ago•0 comments

Iceberg Sucks – But You Knew That Already

https://www.dataharness.org/2026/01/01/iceberg-sucks.html
1•jordepic•23m ago•0 comments

Show HN: MicroState – JavaScript City Builder

https://microstate.neocities.org
2•iaincollins•23m ago•0 comments

LLM architecture has evolved from GPT-2 to GPT-OSS

https://modal.com/blog/gpt-oss-arch
2•jxmorris12•23m ago•0 comments

The Dionne Quintuplets

https://en.wikipedia.org/wiki/Dionne_quintuplets
3•razodactyl•25m ago•0 comments

Whorl – Use Mentions in Thunderbird

https://github.com/dend/whorl
1•dend•29m ago•0 comments

Agent-Native Architectures

https://every.to/guides/agent-native
2•handfuloflight•33m ago•0 comments

Show HN: Linkedin2md – Convert LinkedIn Exports to Markdown for LLM Analysis

https://linkedin2md.daza.ar
1•juanmanueldaza•33m ago•0 comments

Full Transcript of Carney's Speech to World Economic Forum

https://globalnews.ca/news/11620877/carney-davos-wef-speech-transcript/
8•mefengl•36m ago•0 comments

Snap Settles Social Media Addiction Lawsuit Ahead of a Landmark Trial

https://www.nytimes.com/2026/01/20/technology/snap-social-media-addiction-lawsuit.html
1•1vuio0pswjnm7•38m ago•0 comments

Agentic AI and the Mythical Agent-Month

http://muratbuffalo.blogspot.com/2026/01/agentic-ai-and-mythical-agent-month.html
1•zdw•39m ago•0 comments

Show HN: I created my first mobile app, could use some support

https://apps.apple.com/us/app/accumoo/id6754406993
1•gangelo•40m ago•0 comments

Ask HN: Was Node.js a Mistake?

2•danver0•42m ago•0 comments

Semiconductor Fabs III: Ion Implantation

https://nomagicpill.substack.com/p/ion-implantation
3•nomagicpill•45m ago•0 comments

Golden Dome, an AI-powered weapon system in orbit

https://en.wikipedia.org/wiki/Golden_Dome_(missile_defense_system)
2•infinitewars•53m ago•0 comments

US science after a year of Trump

https://www.nature.com/immersive/d41586-026-00088-9/index.html
8•mcyc•54m ago•0 comments

Microsoft chief Satya Nadella warns AI boom could falter without wider adoption

https://www.ft.com/content/2a29cbc9-7183-4f68-a1d2-bc88189672e6
5•petethomas•57m ago•6 comments

Building a Real-Time HN Display for $15

https://medium.com/@lee.harding/building-a-real-time-hn-display-for-15-3ea1772051ff
4•mlhpdx•59m ago•1 comments

Opinions and Networking (latenighttakes)

1•iliakoliev•1h ago•0 comments

Help with Lineageos

1•ycombadmin2•1h ago•1 comments

Show HN: On-Device (Offline) AI SDK for iOS (LLMs, Vision and Stable Diffusion)

1•bigman1113•1h ago•0 comments

Running custom code on a PAX credit card machine by swapping the SoC

https://lucasteske.dev/2025/09/running-code-in-pax-machines
2•rmast•1h ago•0 comments

A Lament for Aperture

https://ikennd.ac/blog/2026/01/old-man-yells-at-modern-software-design/
1•firloop•1h ago•0 comments

Google temporarily disabled YouTube's advanced captions without warning

https://arstechnica.com/gadgets/2026/01/google-temporarily-disabled-youtubes-advanced-captions-wi...
1•zdw•1h ago•0 comments

Sandbox Your AI Dev Tools: A Practical Guide for VMs and Lima

https://www.metachris.dev/2025/11/sandbox-your-ai-dev-tools-a-practical-guide-for-vms-and-lima/
2•bonsai_spool•1h ago•0 comments