5/ v0.5.7 also tightens network and agent edges:
- plain-HTTP secret substitution covers more request shapes
- violation logs include more context
- SDK users can access raw agent socket paths
- fixes for early proxy exits, IPv6 DAD, and memory balloon stats
4/ Metrics got more useful for running sandboxes.
msb metrics and SDK metrics now report guest-aware CPU, memory, disk, and network samples from runtime/VMM sources, so the numbers match what the sandbox is actually doing.
1/ Microsandbox v0.5.7 is out.
The headline: persistent sandbox storage is now a one-command flow.
No separate volume create step:
msb run --mount-named docker-data:/var/lib/docker docker:dind
Changelog: docs.microsandbox.dev/changelog/2026…
these all builds up to something big and exciting ... local-first, but fully cloud compatible sandboxes, just as we promised! can't wait to share all the details sooon. 😃
we're gradually inviting folks to our private beta. interested? join the waitlist: microsandbox.dev/#waitlist
🧵microsandbox 0.5.5 is out, and we're grinning. 🎉
you can now stream live per-sandbox metrics to any OTLP backend, offline import images from docker, amongst other things we're excited about.
👇
reminder: if your user can run docker, your user is root.
microsandbox has no daemon and runs rootless. nothing on your host is sitting there doing root favors.
you get a hardware-isolated microVM, full stop.
native SSH support now in [email protected]. 🍻
previously, you'd run sshd inside the sandbox and expose a port. well, no more. point your existing ssh/sftp clients straight at it.
available in all SDKs and CLI today. 🪅
in microsandbox, the real API key never enters the sandbox. the guest only ever sees a deterministic placeholder.
policy at the network boundary decides whether each outbound request gets the real value, gets blocked, gets passed through inert, or terminates the runtime.
why secret injection alone isn't enough for agents:
67 Followers 274 Following...then the Lord spoke to Job out of the whirlwind, saying "IF YOU CAN'T HANDLE ME AT MY WORST, YOU DON'T DESERVE ME AT MY BEST."
↓ usually more on mastodon...
447 Followers 3K FollowingDesign engineer worked with and contributed to @trycua @daytonaio @Cardano_CF @Stacks
dribbble: https://t.co/57aysEKylo
github: https://t.co/cJ6sEee7ID