<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Sandboxing on CuraDevOps</title><link>https://curadevops.metacog.co.kr/tags/sandboxing/</link><description>Recent content in Sandboxing on CuraDevOps</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Wed, 19 Aug 2026 11:17:39 +0000</lastBuildDate><atom:link href="https://curadevops.metacog.co.kr/tags/sandboxing/index.xml" rel="self" type="application/rss+xml"/><item><title>Docker: AI coding agents can execute attacker code via pre-approved commands</title><link>https://curadevops.metacog.co.kr/insights/2026-08-19-coding-agent-horror-stories-the-command-you-already-approved/</link><pubDate>Wed, 19 Aug 2026 11:17:39 +0000</pubDate><guid>https://curadevops.metacog.co.kr/insights/2026-08-19-coding-agent-horror-stories-the-command-you-already-approved/</guid><description>&lt;ul>
&lt;li>&lt;strong>Platform/SRE — Skip&lt;/strong>&lt;/li>
&lt;li>&lt;strong>CI/CD — Learn:&lt;/strong> Illustrates a prompt-injection attack vector where malicious repo content hijacks an AI agent&amp;rsquo;s pre-approved command scope; informs how to think about sandboxing agent-assisted pipeline steps, but no deadline or active exploit anchor.&lt;/li>
&lt;li>&lt;strong>Leader — Learn:&lt;/strong> Useful framing for setting policy on where and how AI coding agents are permitted to run in the development workflow, particularly around isolation boundaries — but no decision is forced today.&lt;/li>
&lt;/ul></description></item><item><title>Docker Sandboxes: Isolated environments for AI agent execution</title><link>https://curadevops.metacog.co.kr/insights/2026-08-10-docker-sandboxes-disposable-isolated-sandboxes-for-ai-agents/</link><pubDate>Mon, 10 Aug 2026 11:42:22 +0000</pubDate><guid>https://curadevops.metacog.co.kr/insights/2026-08-10-docker-sandboxes-disposable-isolated-sandboxes-for-ai-agents/</guid><description>&lt;ul>
&lt;li>&lt;strong>Platform/SRE — Learn:&lt;/strong> Docker Sandboxes offers a managed isolation layer for AI agent workloads, which may influence how platform teams design compute sandboxing; no GA production-readiness signals or EOL pressure make this worth evaluating rather than acting on now.&lt;/li>
&lt;li>&lt;strong>CI/CD — Learn:&lt;/strong> Disposable sandboxed environments could inform future pipeline isolation strategies for AI-assisted CI steps, but no concrete deprecation, supply-chain, or pipeline-breaking change warrants action today.&lt;/li>
&lt;li>&lt;strong>Leader — Skip&lt;/strong>&lt;/li>
&lt;/ul></description></item><item><title>axern: open-source sandboxes for AI agents and untrusted code execution</title><link>https://curadevops.metacog.co.kr/insights/2026-08-03-cofy-x-axern-61/</link><pubDate>Mon, 03 Aug 2026 13:34:40 +0000</pubDate><guid>https://curadevops.metacog.co.kr/insights/2026-08-03-cofy-x-axern-61/</guid><description>&lt;ul>
&lt;li>&lt;strong>Platform/SRE — Learn:&lt;/strong> Sandboxing untrusted workloads and durable AI agent services is an emerging platform-design pattern worth tracking, but at 61 stars with no GA signal this is too early to evaluate for production use.&lt;/li>
&lt;li>&lt;strong>CI/CD — Learn:&lt;/strong> Isolated execution of untrusted code is conceptually relevant to pipeline security, but this project has no demonstrated adoption or GA status—file it as a pattern to revisit when it matures.&lt;/li>
&lt;li>&lt;strong>Leader — Skip&lt;/strong>&lt;/li>
&lt;/ul></description></item><item><title>Running NanoClaw in a Docker Shell Sandbox</title><link>https://curadevops.metacog.co.kr/insights/2026-07-22-running-nanoclaw-in-a-docker-shell-sandbox/</link><pubDate>Wed, 22 Jul 2026 12:23:02 +0000</pubDate><guid>https://curadevops.metacog.co.kr/insights/2026-07-22-running-nanoclaw-in-a-docker-shell-sandbox/</guid><description>&lt;ul>
&lt;li>&lt;strong>Platform/SRE — Skip&lt;/strong>&lt;/li>
&lt;li>&lt;strong>CI/CD — Learn:&lt;/strong> Docker shell sandboxes offer a pattern for isolating build or testing environments; worth evaluating if pipeline isolation or reproducibility is a current concern.&lt;/li>
&lt;li>&lt;strong>Leader — Skip&lt;/strong>&lt;/li>
&lt;/ul></description></item></channel></rss>