API Free WeekHundreds of APIs are free to call this week.Browse free APIs

AGENT SANDBOX

A dedicated sandbox for every agent run.

Let your agent write code, run commands, and work with files. Give every task a place to run — and a lifecycle you control.

  • E2B-compatible
  • Model-neutral
  • One SandBase key
sandbox / task lifecycle

ILLUSTRATIVE LIFECYCLE

01
CREATE

Choose a template. Open a workspace.

02
RUN

Execute commands. Work with files.

03
COLLECT

Bring the results into your app.

04
STOP

End the sandbox when work is done.

YOUR AGENT. YOUR WORKFLOW.

WHY SANDBOX

Sandbox every agent run.
Make room to build.

Agents turn ideas into code. Give that code a dedicated environment, a clear task, and an explicit end — so execution becomes part of your product.

01 / FILESYSTEM

A workspace for every task.

Give generated code a dedicated place to work. Send in the files it needs, run the task, and bring the results back to your application.

  • Read and write files through the SDK
  • Run commands inside the sandbox
  • Collect the artifacts your task produces
02 / NETWORK

Make connectivity a choice.

Choose the network controls your task needs. Available settings and enforcement depend on the selected provider and template.

  • Plan access around the task
  • Check provider network capabilities
  • Keep secrets out of prompts and code
03 / LIFETIME

Built for a beginning. And an end.

Create a sandbox for a task, collect the results, then shut it down. Pause and resume where supported when the work needs more time.

  • Create and stop through an API
  • Set a timeout for the task
  • Pause and resume where supported

COMPARE

Not a cloud PC.
More than a container.

Familiar building blocks, a different workflow. A sandbox gives agent applications an API for the environment where their work happens.

Compare environments

Typical workflows across execution environments
At a glanceCloud PCVirtual machineDockerAgent sandbox
Typical userPeopleOps & engineersDevelopersAgent applications
WorkspaceInteractive desktopWhole machineContainerTask environment
LifecycleUsually persistentManaged by youManaged by youAPI-managed
InterfaceScreen & keyboardMachine & shellContainer toolsSDK & API
Your focusRemote workInfrastructurePackaging codeRunning agent tasks

PRODUCT VS CHASSIS

Build your own agent.
Bring your own vision.

A finished AI product gives you a ready-made workflow. An execution layer gives you the building blocks to make the experience your own.

FINISHED PRODUCT

The car

  • A ready-made end-user experience
  • A workflow chosen by the product
  • Execution managed behind the scenes
  • Use the tools the product provides

SANDBASE

The chassis

  • Your application, your agent workflow
  • Choose the models and tools you need
  • Create and manage environments by API
  • Connect with your SandBase API key

WHERE IT FITS

The execution layer
in your agent stack.

Keep the product, the agent loop, and the runtime working together. SandBase connects your application to sandbox execution through a familiar interface.

  1. L1

    Your AI product

    The experience your users see. Your workflows, your interface, your choice of model.

    Applications · assistants · agents
  2. L2

    Agent orchestration

    Connect model decisions to tools, execution, and the next step in a task.

    Models · tools · workflows
  3. L3

    SandBase Sandbox

    An E2B-compatible gateway for creating and managing execution environments.

    One SandBase key · SDK & API
  4. L4

    Provider infrastructure

    The runtime and isolation technology behind the selected provider and template.

    Compute · networking · isolation
Command execution
SandBase API keys
Sandbox lifecycles
Files & templates

USE CASES

Who runs agents
in a sandbox.

Different teams, one pattern: give your agent a dedicated place to turn a plan into an output.

01 / AI product teams

Run the code your agent writes.

Give code execution its own environment. Turn generated scripts into useful results for your application.

02 / Platform engineers

Bring execution into your stack.

Connect sandbox lifecycles to your existing workflow with a familiar SDK and your SandBase API key.

03 / Solo builders

Go from an idea to a working run.

Try a command, work with files, and collect an output without building the execution plumbing from scratch.

SECURITY BOUNDARIES

Honest about
the boundary.

A sandbox is part of your security design. Isolation, network controls, and persistence depend on the selected provider and template.

A deliberate filesystem boundary

Transfer only the files a task needs. A working directory alone is not a security control.

Provider-aware networking

Check the network controls your provider and template support before running sensitive workloads.

An explicit lifecycle

Collect outputs and stop environments when work is complete. Use timeouts as part of your workflow.

Permissions you verify

Review template privileges and isolation guarantees. Do not assume every runtime has the same defaults.

FAQ

Sandbox questions.

The things to know before your agent runs its first command.

What is an agent sandbox?

A dedicated execution environment where an agent can run commands and work with files. Your application creates it, sends in work, collects results, and ends the environment when the task is complete.

How is this different from running Docker?

Docker is a building block for running containers. SandBase provides an E2B-compatible gateway for managing sandbox lifecycles and accessing commands and files through an SDK. The underlying isolation depends on the provider and template.

Persistent or disposable — which should I use?

Create a fresh environment for independent tasks and collect the results before stopping it. For longer work, use pause and resume where the selected provider supports them. Confirm state-retention behavior before relying on persistence.

Can I use the E2B SDK?

Yes. Follow the Sandbox quickstart to configure the SDK for SandBase, select a template, and run your first command using your SandBase API key.

Which models can my agent use?

Sandbox execution is separate from model selection. Your application chooses the model and sends the resulting commands or files to the sandbox.

Is the working directory a security boundary?

No. A directory path or a prompt instruction does not enforce isolation. Review the selected provider’s runtime, networking, template permissions, and data-handling behavior for your workload.

How is it priced?

See the current quickstart and your workspace terms for availability and pricing. Check the resources and provider you plan to use before running your workload.

FROM IDEA TO EXECUTION

Give every run a sandbox.
Build what comes next.