
capsule
Secure runtime to sandbox AI agent tasks. Run untrusted code in isolated WebAssembly environments.
ai-securitycloud-securitycontainer-security+5
295

Secure runtime to sandbox AI agent tasks. Run untrusted code in isolated WebAssembly environments.

wasm2c sandbox escape. An untrusted WebAssembly module breaks out of the generated C sandbox and executes an arbitrary shell command on the host.

Top-level repository for LFI: Practical, Efficient, and Secure Software-based Sandboxing