superradcompany/microsandbox

Rustdocs.microsandbox.dev
macOSWindowsLinux

🧱 Easy fast local-first microVM runtime and library

agentsdockerlinuxmacossandboxvirtualizationvmsecurityself-hostedrustwindowsnodejs
Sterne-Wachstum
Sterne
8.1k
Forks
428
Wochenwachstum
+81
Issues
47
5k
Nov. 2024Juni 2025Jan. 2026Sept. 2026
Artefaktecrates.io
README

——   easy, fast, local microVMs for untrusted workloads   ——


GitHub release Discord Apache 2.0 License

Microsandbox runs untrusted workloads inside fast, local microVMs: AI agents, user code, plugins, CI jobs, dev environments, scrapers, and automation.

  • Hardware Isolation: Hardware-level isolation with microVM technology.
  • Cross Platform: Runs on Linux, macOS, and Windows.
  • OCI Compatible: Runs standard container images from Docker Hub, GHCR, or any OCI registry.
  • Docker-Like Workflows: Familiar image, command, shell, and volume workflows.
  • Instant Startup: Average boot times[^boot-time] under 100 milliseconds.
  • Embeddable: Spawn VMs right within your code. No setup server. No long-running daemon.
  • Secrets That Can't Leak: Unexploitable secret keys that never enter the VM.
  • Long-Running: Sandboxes can run in detached mode. Great for long-lived sessions.
  • Agent-Ready: Your agents can create their own sandboxes with our Agent Skills and MCP server.

rocket-darkrocket  Getting Started

  Install the SDK

npm i microsandbox                                       # 🟦 TypeScript
cargo add microsandbox                                   # 🦀 Rust
uv add microsandbox                                      # 🐍 Python
go get github.com/superradcompany/microsandbox/sdk/go    # 🐹 Go

  Install the CLI

Boot a microVM in a single command:

npx microsandbox run debian

Or install the msb command globally:

curl -fsSL https://install.microsandbox.dev | sh        # 🍎 macOS / 🐧 Linux
irm https://install.microsandbox.dev/windows | iex      # 🪟 Windows
 We also support other package managers →

brew install superradcompany/tap/microsandbox
npm i -g microsandbox
uv tool install microsandbox
cargo install microsandbox

Then you can run msb directly:

msb run debian

Requirements:

  • macOS macOS: Apple Silicon.
  • Linux Linux: KVM enabled.
  • Windows Windows: WHP enabled.

Warning: Microsandbox is still beta software. Expect breaking changes, missing features, and rough edges.


sdk-darksdk  SDK

The SDK lets you create and control sandboxes directly from your application. Sandbox.builder("...").create() boots a microVM as a child process. No infrastructure required.

  Run Code in a Sandbox

import { Sandbox } from "microsandbox";

await using sandbox = await Sandbox.builder("my-sandbox")
  .image("python")
  .cpus(1)
  .memory(512)
  .create();

const output = await sandbox.exec("python", [
  "-c",
  "print('Hello from a microVM!')",
]);

console.log(output.stdout());
 Rust Example →
use microsandbox::Sandbox;

#[tokio::main]
async fn main() -> Result<(), Box<dyn std::error::Error>> {
    let sandbox = Sandbox::builder("my-sandbox")
        .image("python")
        .cpus(1)
        .memory(512)
        .create()
        .await?;

    let output = sandbox
        .exec("python", ["-c", "print('Hello from a microVM!')"])
        .await?;

    println!("{}", output.stdout()?);

    sandbox.stop().await?;

    Ok(())
}
 Python Example →
import asyncio
from microsandbox import Sandbox

async def main():
    sandbox = await Sandbox.create(
        "my-sandbox",
        image="python",
        cpus=1,
        memory=512,
    )

    output = await sandbox.exec("python", ["-c", "print('Hello from a microVM!')"])

    print(output.stdout_text)

    await sandbox.stop()

asyncio.run(main())
 Ruby Example →
require "microsandbox"

sandbox = Microsandbox::Sandbox.create(
  "my-sandbox",
  image: "python",
  cpus: 1,
  memory: 512,
  network: {
    allowed_hosts: ["api.openai.com"],
    allowed_ports: [443]
  },
  secrets: [{
    env: "OPENAI_API_KEY",
    value: ENV.fetch("OPENAI_API_KEY"),
    allowed_host: "api.openai.com"
  }]
)

output = sandbox.exec("python", ["-c", "print('Hello from a microVM!')"])
puts output.stdout

sandbox.stop

See the Ruby SDK guide for installation, lifecycle, networking, and backend details.

 Go Example →
package main

import (
    "context"
    "fmt"
    "log"

    microsandbox "github.com/superradcompany/microsandbox/sdk/go"
)

func main() {
    ctx := context.Background()

    // Downloads the microsandbox runtime to ~/.microsandbox/ on first run.
    if err := microsandbox.EnsureInstalled(ctx); err != nil {
        log.Fatal(err)
    }

    sandbox, err := microsandbox.CreateSandbox(ctx, "my-sandbox",
        microsandbox.WithImage("python"),
        microsandbox.WithCPUs(1),
        microsandbox.WithMemory(512),
    )
    if err != nil {
        log.Fatal(err)
    }
    defer sandbox.Stop(ctx)

    output, err := sandbox.Exec(ctx, "python", []string{"-c", "print('Hello from a microVM!')"})
    if err != nil {
        log.Fatal(err)
    }

    fmt.Println(output.Stdout())
}

The first call to create() pulls the image if it isn't cached locally, so it may take longer depending on your connection. Subsequent runs reuse the cache.


SDK Docs


cli-darkcli  CLI

The msb CLI provides a complete interface for managing sandboxes, images, and volumes.

  Run a Command

msb run python -- python3 -c "print('Hello from a microVM!')"

  Named Sandboxes

# Create and start a named sandbox
msb create --name app python
# Execute commands
msb exec app -- python -c "import this"
msb exec app -- curl https://example.com
# Lifecycle
msb stop app
msb start app
msb rm app

  Image Management

msb pull python           # Pull an image
msb image ls              # List cached images
msb image rm python       # Remove an image

  Configuration File

msb run --conf sandbox.yaml -- octocat
# sandbox.yaml
image: python:3.12
network:
  allow:
    - api.github.com
scripts:
  octocat: |
    python - <<'PY'
    import urllib.request

    request = urllib.request.Request(
        "https://api.github.com/octocat",
        headers={"User-Agent": "microsandbox-example"},
    )
    with urllib.request.urlopen(request) as response:
        print(response.read().decode())
    PY

  Install & Uninstall Sandboxes

msb install ubuntu               # Install ubuntu sandbox as 'ubuntu' command
ubuntu                           # Opens Ubuntu in a microVM
msb uninstall ubuntu             # Uninstall the ubuntu sandbox

  Status & Inspection

msb ls                         # List all sandboxes
msb ps app                     # Show sandbox status
msb inspect app                # Detailed sandbox info
msb metrics app                # Live CPU/memory/network stats

[!TIP]

Run:
· msb --help for quick help menu.
· msb --tree for complete command hierarchy and descriptions.
· msb <command> --tree for a specific command tree.


CLI Docs


beaker-darkbeaker  Examples

Practical ways to put microsandbox to work:

Docker in a Sandbox: Run Docker without touching the host daemon.
OpenCode: Give a coding agent an isolated project workspace.
Playwright: Run headless browser jobs inside a microVM.
Warm Workers: Snapshot a toolchain and launch clean workers.
Migration Rehearsal: Test a database migration, then restore the baseline.
GitHub Actions Runner: Run each self-hosted job in a disposable microVM.
Documents to PDF: Convert untrusted documents in a fresh offline worker.


Browse Examples


people-darkpeople  Community Showcase

  Agent frameworks & runtimes

Eve by Vercel: Agent framework that ships microsandbox as a sandbox backend.
Agentic Coding Quickstart by U.S. GSA: From zero to a running AI coding agent with USAi in minutes.
Condukt and Once by Tuist: Elixir agentic engine, and cacheable actions that run in fresh sandboxes.
langchain-microsandbox by kenwoodjw: Microsandbox integration for LangChain Deep Agents.
Smithers by Smithers: Agent workflows with full observability, rewind, fork, and replay.
wrap by Tobi Lütke: Run coding agents and project commands in isolated Arch Linux microVMs.
Agent VM by Wiren Board: Run AI agents in safe VMs scoped to a local folder.

  Tools & infrastructure

h5i by h5i: Secure, auditable browser for AI agents, written in pure Rust.
Devsy by Devsy: Deploy devcontainers onto any cloud, Kubernetes cluster, or Docker host.
OpenWork by Different AI: Open-source Claude Cowork alternative with a microsandbox image.

  Guides & showcases

Awesome Microsandbox by ya-luotao: Curated list of SDKs, integrations, tools, and resources.
msb-omarchy by ya-luotao: Omarchy desktop with graphics inside a microVM on Apple Silicon.


Share a Project


agents-darkagents  AI Agents

  Agent Skills

Teach any AI coding agent how to use microsandbox by installing the Agent Skills. Works with Claude Code, Cursor, Codex, Gemini CLI, GitHub Copilot, and more.

npx skills add superradcompany/skills

  MCP Server

Connect any MCP-compatible agent to microsandbox with the MCP server. Provides structured tool calls for sandbox lifecycle, command execution, filesystem access, volumes, and monitoring.

# Claude Code
claude mcp add --transport stdio microsandbox -- npx -y microsandbox-mcp

docs-darkdocs  Documentation

For guides, API references, and examples, visit the microsandbox documentation.


contributing-darkcontributing  Contributing

Interested in contributing to microsandbox? Check out our CONTRIBUTING.md for guidelines and DEVELOPMENT.md for build, test, and release instructions.


license-darklicense  License

This project is licensed under the Apache License 2.0.


acknowledgements-darkacknowledgements  Acknowledgements

Special thanks to all our contributors, testers, and community members who help make microsandbox better every day! We'd like to thank the following projects and communities that made microsandbox possible: libkrun and smoltcp


Backed by Y Combinator


[^boot-time]: Boot time refers to guest boot on an M1 machine.

Ähnliche Repositories
Significant-Gravitas/AutoGPT

AutoGPT is the vision of accessible AI for everyone, to use and to build on. Our mission is to provide the tools, so that you can focus on what matters.

PythonPyPIOtheraiopenai
agpt.co
187.2k46k
langflow-ai/langflow

Langflow is a powerful tool for building and deploying AI-powered agents and workflows.

PythonPyPIMIT Licensereact-flowchatgpt
langflow.org
154.5k10.1k
langchain-ai/langchain

The agent engineering platform.

PythonPyPIlibraryMIT Licenseaianthropic
docs.langchain.com/langchain/
146k24.4k
Shubhamsaboo/awesome-llm-apps

100+ AI Agents, Agent Skills and RAG Apps - Free and Open Source.

PythonPyPIawesomeApache License 2.0llmsrag
theunwindai.com
136.9k20.1k
dair-ai/Prompt-Engineering-Guide

🐙 Guides, papers, lessons, notebooks and resources for prompt engineering, context engineering, RAG, and AI Agents.

MDXMIT Licensedeep-learningprompt-engineering
promptingguide.ai
78.2k8.6k
ruvnet/ruflo

🌊 The original agent meta-harness. Deploy intelligent multi-player swarms, coordinate autonomous workflows, and build conversational AI systems. Features adaptive memory, self-learning intelligence, RAG integration, and native Claude Code / Codex / Hermes and many more Integrated

TypeScriptnpmskillMIT Licenseclaude-codeswarm
cognitum.one
71.8k8.5k
mem0ai/mem0

The Memory Layer for AI Agents - Drop-in memory infrastructure for AI agents and apps. Context that persists. Built for production.

PythonPyPIappApache License 2.0aichatgpt
mem0.ai
65k7.6k
usestrix/strix

Open-source AI penetration testing tool to find and fix your app’s vulnerabilities.

PythonPyPIApache License 2.0agentsartificial-intelligence
strix.ai
61.6k6.7k
microsoft/autogen

A programming framework for agentic AI

PythonPyPIlibraryCreative Commons Attribution 4.0 Internationalchatgptllm-agent
microsoft.github.io/autogen/
60.9k9.2k
crewAIInc/crewAI

Framework for orchestrating role-playing, autonomous AI agents. By fostering collaborative intelligence, CrewAI empowers agents to work together seamlessly, tackling complex tasks.

PythonPyPIMIT Licenseagentsai
crewai.com
58.3k8.4k
FlowiseAI/Flowise

Build AI Agents, Visually

TypeScriptnpmOtherartificial-intelligencechatgpt
flowiseai.com
55.5k25k
rohitg00/ai-engineering-from-scratch

Learn it. Build it. Ship it for others.

PythonPyPItutorialMIT Licenseagentsai
aiengineeringfromscratch.com
53.8k9.4k