Airlock

Airlock console

Run your agents' code somewhere it can't hurt you.

Every command runs in a throwaway gVisor container: no network unless you allow it, hard memory, CPU, process and disk limits, and every outbound connection logged.

Sign in with GitHub

Invite-only preview. No invite yet? Sign in with GitHub and you can request one. Signing in only reads your public GitHub profile.

API key in seconds

Sign in, create a key, and call the sandbox from Python, curl or any agent framework.

Works with Claude Code

One claude mcp add line gives Claude Code a sandbox to run code in.

Internet only where approved

Sandboxes reach approved hosts like PyPI through an egress gateway that logs every connection.