AGENT_SANDBOXES
THE INFRASTRUCTURE OF AGENCY
Have we reached peak agent sandbox yet? YC batches, cloud giants, indie devs, and probably some guy's mom are all building them.
Agent Sandboxes TL;DR
Isolation Tech TL;DR
This page covers every provider we could find, split into three categories:
- Sandbox-native companies - it's their whole product
- Platforms with sandboxes - sandboxes alongside other infrastructure
- Open-source / self-hosted - projects you can run yourself
Provider Overview
Sandbox-native providers
Daytona
ISOLATION
OCI Containers
Kata / gVisor optional
PRICING MODEL
Usage-based
AGPL-3.0 self-host
E2B
ISOLATION
Firecracker microVMs
PRICING MODEL
Usage + Plan
ISOLATION
Firecracker microVMs
PRICING MODEL
Usage-based
Runloop
PRICING MODEL
Usage + Plan
PRICING MODEL
Usage + Plan
Terminal Use
Winter 2026 Y
![]()
Celesto AI
ISOLATION
Firecracker microVMs
Platforms with sandboxes
Modal
PRICING MODEL
Usage + Plan
ISOLATION
Firecracker microVMs
PRICING MODEL
Usage-based
Northflank
ISOLATION
Kata Containers
gVisor fallback
PRICING MODEL
Usage-based
Namespace
PRICING MODEL
Usage-based
Claude Managed Agents
by Anthropic
PRICING MODEL
Usage-based
$0.08/session-hr + tokens
ISOLATION
Firecracker microVMs
PRICING MODEL
Usage + Plan
ISOLATION
Containers + V8 Isolates
PRICING MODEL
Usage-based
Open source / Self-hosted
Daytona
ISOLATION
OCI Containers
Kata / gVisor optional
ISOLATION
OCI Containers
Kata / gVisor / Firecracker optional
ISOLATION
libkrun microVMs
![]()
Zeroboot
ISOLATION
Firecracker + KVM
E2B
ISOLATION
Firecracker microVMs
ISOLATION
Browser (V8/Web APIs)
![]()
ISOLATION
Firecracker microVMs
![]()
ISOLATION
libkrun (KVM / Hypervisor.framework)
