[{"data":1,"prerenderedAt":4},["ShallowReactive",2],{"readme:agent-sandbox":3},"\u003Cdiv align=\"center\">\n  \u003Cimg src=\"https:\u002F\u002Fraw.githubusercontent.com\u002Fkubernetes-sigs\u002Fagent-sandbox\u002FHEAD\u002Fsite\u002Fassets\u002Ficons\u002Fcolor_logo.svg\" alt=\"Agent Sandbox logo\" width=\"150\" \u002F>  \u003Ch1>Agent Sandbox\u003C\u002Fh1>\n\u003C\u002Fdiv>\u003Cp>\n  \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fkubernetes-sigs\u002Fagent-sandbox\u002Freleases\" rel=\"nofollow ugc noopener\">\u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Fgithub\u002Fv\u002Frelease\u002Fkubernetes-sigs\u002Fagent-sandbox\" alt=\"GitHub release\" \u002F>\u003C\u002Fa>\n  \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fkubernetes-sigs\u002Fagent-sandbox\u002Fblob\u002FHEAD\u002FLICENSE\" rel=\"nofollow ugc noopener\">\u003Cimg src=\"https:\u002F\u002Fimg.shields.io\u002Fbadge\u002FApache-2-blue.svg\" alt=\"Apache-2.0 license\" \u002F>\u003C\u002Fa>\n\u003C\u002Fp>\u003Cp>\u003Ca href=\"https:\u002F\u002Fagent-sandbox.sigs.k8s.io\" rel=\"nofollow ugc noopener\">Website\u003C\u002Fa> · \u003Ca href=\"https:\u002F\u002Fagent-sandbox.sigs.k8s.io\u002Fdocs\u002F\" rel=\"nofollow ugc noopener\">Docs\u003C\u002Fa> · \u003Ca href=\"https:\u002F\u002Fdeepwiki.com\u002Fkubernetes-sigs\u002Fagent-sandbox\" rel=\"nofollow ugc noopener\">DeepWiki\u003C\u002Fa> · \u003Ca href=\"https:\u002F\u002Fagent-sandbox.sigs.k8s.io\u002Fdocs\u002Fgetting_started\u002F\" rel=\"nofollow ugc noopener\">Getting Started\u003C\u002Fa> · \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fkubernetes-sigs\u002Fagent-sandbox\u002Fblob\u002FHEAD\u002Fexamples\u002F\" rel=\"nofollow ugc noopener\">Examples\u003C\u002Fa> · \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fkubernetes-sigs\u002Fagent-sandbox\u002Fblob\u002FHEAD\u002Froadmap.md\" rel=\"nofollow ugc noopener\">Roadmap\u003C\u002Fa>\u003C\u002Fp>\n\u003Cp>\u003Cstrong>agent-sandbox enables easy management of isolated, stateful, singleton workloads, ideal for use cases like AI agent runtimes and reinforcement learning.\u003C\u002Fstrong>\u003C\u002Fp>\n\u003Cp>This project is developing a \u003Ccode>Sandbox\u003C\u002Fcode> Custom Resource Definition (CRD) and controller for Kubernetes, under the umbrella of \u003Ca href=\"https:\u002F\u002Fgithub.com\u002Fkubernetes\u002Fcommunity\u002Ftree\u002Fmaster\u002Fsig-apps\" rel=\"nofollow ugc noopener\">SIG Apps\u003C\u002Fa>. The goal is to provide a declarative, standardized API for managing workloads that require the characteristics of a long-running, stateful, singleton container with a stable identity, much like a lightweight, single-container VM experience built on Kubernetes primitives.\u003C\u002Fp>\n\u003Cblockquote>\n\u003Cp>[!NOTE]\n\u003Cstrong>Scope:\u003C\u002Fstrong> Agent Sandbox is a \u003Cem>sandbox orchestrator\u003C\u002Fem>. It delegates low-level container isolation to secure \"Sandbox Runtimes\" (like gVisor or Kata Containers) by managing Pods configured to use these runtimes (via \u003Ccode>RuntimeClass\u003C\u002Fcode>).\u003C\u002Fp>\n\u003C\u002Fblockquote>\n\u003Ch2>Overview\u003C\u002Fh2>\n\u003Ch3>Core: Sandbox\u003C\u002Fh3>\n\u003Cp>The \u003Ccode>Sandbox\u003C\u002Fcode> CRD is the core of agent-sandbox. It provides a declarative API for managing a single, stateful pod with a stable identity and persistent storage. This is useful for workloads that don't fit well into the stateless, replicated model of Deployments or the numbered, stable model of StatefulSets.\u003C\u002Fp>\n\u003Cp>Key features of the \u003Ccode>Sandbox\u003C\u002Fcode> CRD include:\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Cstrong>Stable Identity:\u003C\u002Fstrong> Each Sandbox has a stable hostname and network identity.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Persistent Storage:\u003C\u002Fstrong> Sandboxes can be configured with persistent storage that survives restarts.\u003C\u002Fli>\n\u003Cli>\u003Cstrong>Lifecycle Management:\u003C\u002Fstrong> The Sandbox controller manages the lifecycle of the pod, including creation, scheduled deletion, pausing and resuming.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch3>Extensions\u003C\u002Fh3>\n\u003Cp>The \u003Ccode>extensions\u003C\u002Fcode> module provides additional CRDs and controllers that build on the core \u003Ccode>Sandbox\u003C\u002Fcode> API to provide more advanced features.\u003C\u002Fp>\n\u003Cul>\n\u003Cli>\u003Ccode>SandboxTemplate\u003C\u002Fcode>: Provides a way to define reusable templates for creating Sandboxes, making it easier to manage large numbers of similar Sandboxes.\u003C\u002Fli>\n\u003Cli>\u003Ccode>SandboxClaim\u003C\u002Fcode>: Allows users to create Sandboxes from a \u003Ccode>SandboxWarmPool\u003C\u002Fcode>, abstracting away the details of the underlying Sandbox configuration.\u003C\u002Fli>\n\u003Cli>\u003Ccode>SandboxWarmPool\u003C\u002Fcode>: Manages a pool of pre-warmed Sandboxes that can be quickly allocated to users, reducing the time it takes to get a new Sandbox up and running.\u003C\u002Fli>\n\u003C\u002Ful>\n\u003Ch2>Architecture\u003C\u002Fh2>\n\u003Cp>agent-sandbox follows the Kubernetes controller pattern. Users create a Sandbox custom resource, and the controller manages the underlying runtime resources.\u003C\u002Fp>\n\u003Ch3>Architecture Diagram\u003C\u002Fh3>\n\u003Cpre>\u003Ccode class=\"language-mermaid\">flowchart LR\n\n    User[User]\n\n    Claim[SandboxClaim]\n    Template[SandboxTemplate]\n    Sandbox[Sandbox]\n\n    Pod[Pod]\n    Runtime[Sandbox Runtime]\n\n    WarmPool[SandboxWarmPool]\n\n    subgraph Extensions[Extensions]\n      Claim\n      Template\n      WarmPool\n    end\n\n    %% User paths\n    User --&gt;|creates| Sandbox\n    User --&gt;|creates| Claim\n\n    %% Claim workflow\n    WarmPool --&gt;|references| Template\n    Claim --&gt;|adopts| Sandbox\n\n    %% Pod handling\n    Claim --&gt;|adopts sandboxes from| WarmPool\n    Sandbox --&gt;|creates Pod| Pod\n\n    %% Runtime\n    Pod --&gt; Runtime\n\n    %% Warm pool\n    WarmPool --&gt;|pre-warms sandboxes| Sandbox\n\u003C\u002Fcode>\u003C\u002Fpre>\n\u003Ch2>Installation\u003C\u002Fh2>\n\u003Ch3>Standard Install (Core + Extensions)\u003C\u002Fh3>\n\u003Cp>Recommended for most users:\u003C\u002Fp>\n\u003Cpre>\u003Ccode class=\"language-sh\"># Quick install (latest release):\nkubectl apply -f https:\u002F\u002Fgithub.com\u002Fkubernetes-sigs\u002Fagent-sandbox\u002Freleases\u002Fla\n\u003C\u002Fcode>\u003C\u002Fpre>\n",1790587586606]