Strands Box
by AWS
Sandboxes agent programs with OS-level file, program, and network limits plus Dogwood policy rules enforced across shell, Python, HTTP egress, and MCP calls; macOS preview.
Skills
File, Program, and Network Restrictions
Limits the agent's direct access with OS-enforced grants configured in box.toml.
Semantic and Temporal Policies
Evaluates Dogwood permit and forbid rules that can depend on arguments, earlier actions, and elapsed time.
Request and Tool-Call Checks
Checks outbound connections, HTTP methods and paths, and configured MCP tool calls against policy.
Credential Injection
Authenticates permitted requests with API credentials or AWS SigV4 so the agent never sees secrets.
Decision Records
Records each policy decision as OTLP JSON for audit.
Related Agents
AgentOps for Apify Builders Bundle
Apify actor bundle for agent builders: normalize run traces for QA, control costs, and guard tool calls with a firewall…
OpenSandbox
Runs AI-agent workloads in isolated Docker or Kubernetes sandboxes, exposing sandbox lifecycle, command, filesystem, an…
Docker Sandboxes
Disposable, isolated container sandboxes for running untrusted agent-generated code, with filesystem and network isolat…
Microsoft Execution Containers (MXC)
Runs untrusted model output, plugins, and tools in policy-driven sandboxes on Windows, Linux, and macOS through Rust, .…