Strengthen Agent Sandbox Isolation
Run agents in rootless, strongly isolated sandboxes with fine-grained filesystem, command, privilege, resource, network, X11, and D-Bus controls. Restrict access to approved workspaces and data, protect credentials such as Xauthority, and prevent shell or socket-based bypasses and sensitive-data exfiltration.
Explore challenge
The problem
Run agents in rootless, strongly isolated sandboxes with fine-grained filesystem, command, privilege, resource, network, X11, and D-Bus controls. Restrict access to approved workspaces and data, protect credentials such as Xauthority, and prevent shell or socket-based bypasses and sensitive-data exfiltration.
Start with these discussions
- Hey! Someone should check wasmer sandboxes works on web so... could fit for this harness?github · ▲2 · 1 comments
- Support rootless container toolchains under `workspace-write`github · ▲1 · 1 comments
- bwrap sandbox can be bypassed by accessing X11 socket or dbusgithub · ▲1 · 0 comments