{
  "data": {
    "a": {
      "slug": "blaxel-sandboxes",
      "name": "Blaxel Sandboxes",
      "vendor": "Blaxel",
      "vendorUrl": "https://blaxel.ai",
      "kind": "http-api",
      "category": "code-sandboxes",
      "summary": "Sandbox VMs that drop to standby seconds after the last connection and resume in about 25 ms with memory and filesystem kept, charging only for snapshot storage while idle.",
      "url": "https://www.anchorterminal.com/tools/blaxel-sandboxes",
      "markdownUrl": "https://www.anchorterminal.com/tools/blaxel-sandboxes.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/blaxel-sandboxes.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/blaxel-sandboxes.json",
      "repo": "https://github.com/blaxel-ai/sdk-python",
      "license": "MIT",
      "transports": [
        "http",
        "streamable-http"
      ],
      "remoteUrl": "https://api.blaxel.ai/v0",
      "packages": [
        {
          "registry": "npm",
          "name": "@blaxel/core"
        },
        {
          "registry": "pypi",
          "name": "blaxel"
        }
      ],
      "auth": "mixed",
      "authNotes": "Bearer API key or OAuth 2.0 token on api.blaxel.ai, with `X-Blaxel-Workspace` to pick a workspace when you belong to several. API keys can be set never to expire. OAuth client-credentials tokens last 2 hours. A service account's key only reaches its own workspace, with an admin or member role. The SDKs read `BL_API_KEY` and `BL_WORKSPACE`. The per-sandbox MCP server takes the same Bearer key.",
      "pricing": "usage",
      "pricingNotes": "Active sandboxes cost $0.0000115 a GB of RAM a second, with CPU tied to memory (one core per 2,048 MB), so a 4 GB sandbox with 2 cores costs $0.1656 an hour. Standby has no compute charge, only $0.20 a GB-month for memory and filesystem snapshots, and images cost $0.045 a GB-month. Up to $200 of free credits for new accounts. Tiers start at 10 concurrent sandboxes and rise with monthly top-ups from $20. Email support is $800 a month plus 3 per cent of usage, dedicated support $1,600 plus 10 per cent (https://blaxel.ai/pricing).",
      "priceSummary": "$0.1656 / session-hr",
      "where": "hosted",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 27,
        "npmWeekly": 353025,
        "pypiWeekly": 74970,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://docs.blaxel.ai",
      "llmsTxt": "https://docs.blaxel.ai/llms.txt",
      "capabilities": [
        "sandbox.code",
        "sandbox.fs",
        "sandbox.persist"
      ],
      "tags": [
        "hosted",
        "mcp",
        "llms-txt",
        "python",
        "typescript",
        "go"
      ],
      "lastRelease": "2026-09-30",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 60.7,
        "grade": "C",
        "agentReady": false,
        "rank": 343,
        "ranked": true,
        "rankOf": 629,
        "categoryRank": 8,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 70,
          "maintenance": 85,
          "payments": 40,
          "reliability": 35,
          "schema": 80,
          "security": 64,
          "transparency": 65
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "No compute charge in standby, only $0.20 a GB-month of snapshot storage. 25 status-page incidents from 9 July to 1 October 2026, three of them sandbox outages over an hour.",
        "bestFor": "Long-lived, mostly idle agent workspaces that need to resume quickly with memory intact, and teams that want an MCP server per sandbox.",
        "strengths": [
          "No compute charge in standby, only $0.20 a GB-month of snapshot storage",
          "MicroVM per sandbox with domain allow and deny lists that can be enforced at network level",
          "An MCP server in every sandbox over streamable HTTP, 18 tools",
          "Public OpenAPI for the sandbox API, llms.txt and an error-code reference with retryable flags",
          "Up to $200 of free credits, and account creation through Stripe Projects"
        ],
        "weaknesses": [
          "25 status-page incidents from 9 July to 1 October 2026, three of them sandbox outages over an hour",
          "No published request-rate limits, 429 guidance or SLA",
          "Domain filtering and secret injection are marked public preview, and egress is open by default",
          "No security.txt, and the privacy policy lives on a portal that blocks automated readers",
          "Billed by memory, and about half of it goes to the writable tmpfs layer"
        ],
        "agentNotes": [
          "Close WebSocket and terminal connections when done. An open connection keeps the sandbox active and billed",
          "Set a TTL or idle expiry on throwaway sandboxes. The default is to keep them",
          "Set `forbiddenDomains` or an allow list at creation, with `network.firewall` for tools that ignore proxy settings. Both can only be set when the sandbox is created",
          "Retry only on WORKLOAD_UNAVAILABLE. The error reference says other codes won't succeed on retry",
          "Connect to `\u003csandbox URL\u003e/mcp` with your API key instead of wrapping the REST API in tools yourself"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 60.7
          }
        ],
        "editorialScores": {
          "ergonomics": 70,
          "maintenance": 85,
          "payments": 40,
          "reliability": 35,
          "schema": 80,
          "security": 64,
          "transparency": 60
        },
        "provenanceScore": 70
      },
      "connect": {
        "install": "pip install blaxel  # or npm i @blaxel/core",
        "http": "curl -X POST https://api.blaxel.ai/v0/sandboxes -H \"Authorization: Bearer $BL_API_KEY\" \\\n  -H \"Content-Type: application/json\" \\\n  -d '{\"metadata\":{\"name\":\"my-sandbox\"},\"spec\":{\"runtime\":{\"image\":\"blaxel/base-image:latest\",\"memory\":4096}}}'",
        "claudeCode": "claude mcp add --transport http blaxel-sandbox \"$BL_SANDBOX_URL/mcp\" --header \"Authorization: Bearer $BL_API_KEY\""
      },
      "letme": {
        "capability": "https://letme.dev/sandbox.code",
        "tool": "https://letme.dev/blaxel-sandboxes"
      },
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "Active sandbox, 4 GB (2 cores)",
          "unit": "session-hour",
          "usd": 0.1656,
          "note": "$0.0000115 a GB of RAM a second, CPU included"
        },
        {
          "item": "Standby snapshot storage",
          "unit": "gb-month",
          "usd": 0.2
        },
        {
          "item": "Image storage",
          "unit": "gb-month",
          "usd": 0.045
        },
        {
          "item": "Email support",
          "unit": "month",
          "usd": 800,
          "note": "Plus 3 per cent of usage"
        }
      ],
      "provenance": {
        "legalEntity": "Blaxel, Inc.",
        "domain": "blaxel.ai",
        "domainRegistered": "",
        "endpointOnVendorDomain": true,
        "terms": "https://blaxel.ai/legal/terms/2025-12-10-blaxel-terms-and-conditions.pdf",
        "privacy": "https://blaxel.ai/privacy",
        "statusPage": "https://status.blaxel.ai",
        "changelog": "https://docs.blaxel.ai/changelog",
        "securityTxt": "none",
        "checked": "2026-10-01",
        "notes": [
          "The standard terms (amended 10 December 2025) name Blaxel, Inc., formerly Beamlit, Inc., a Delaware corporation, under California law with venue in San Francisco.",
          "www.blaxel.ai/.well-known/security.txt returns 404.",
          "The status page runs on incident.io. Its incident feed lists 25 incidents from 9 July to 1 October 2026, including a critical workload outage in us-was-1 on 1 October, and shows 99.48 per cent uptime for Sandboxes over July to October.",
          "blaxel.ai/privacy links to a privacy policy on compliance.blaxel.ai, which disallows automated fetching.",
          "The .ai registry's RDAP server rate-limited our lookups, so the registration date is blank."
        ],
        "score": 70
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/blaxel-sandboxes.json",
      "live": {
        "slug": "blaxel-sandboxes",
        "probe": {
          "target": "https://api.blaxel.ai/v0",
          "method": "get",
          "lastAt": "2026-10-08T19:08:41.49235651Z",
          "lastOk": true,
          "lastStatus": 401,
          "lastMs": 47,
          "lastNote": "asks for credentials",
          "authRequired": true,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 66,
          "p95ms24h": 133,
          "samples24h": 272,
          "samples30d": 1933,
          "days": [
            {
              "date": "2026-10-01",
              "probes": 109,
              "ok": 109
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-05",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-06",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-07",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-08",
              "probes": 217,
              "ok": 217
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.blaxel.ai",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T19:06:27.855024961Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "blaxel-ai/sdk-python",
            "version": "v0.4.1",
            "released": "2026-07-28",
            "seenAt": "2026-10-08T16:02:54.624869774Z"
          },
          {
            "registry": "npm",
            "name": "@blaxel/core",
            "version": "0.3.25",
            "seenAt": "2026-10-08T16:02:47.128460348Z"
          },
          {
            "registry": "pypi",
            "name": "blaxel",
            "version": "0.4.13",
            "released": "2026-09-30",
            "seenAt": "2026-10-08T16:02:51.171485941Z"
          }
        ],
        "githubStars": 25,
        "npmWeekly": 337131,
        "pypiWeekly": 60966,
        "securityTxt": {
          "url": "https://blaxel.ai/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-08T15:38:50.937265777Z"
        },
        "llmsTxt": {
          "url": "https://docs.blaxel.ai/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-08T14:00:08.340091362Z"
        },
        "domain": {
          "domain": "blaxel.ai",
          "registered": "2025-02-17",
          "source": "https://rdap.identitydigital.services/rdap/domain/blaxel.ai",
          "checkedAt": "2026-10-04T13:09:20.159771679Z"
        },
        "pages": [
          {
            "url": "https://docs.blaxel.ai/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:18:21.73257692Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "a17f1aa593ad"
          },
          {
            "url": "https://blaxel.ai/pricing",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:46.024429017Z",
            "changedAt": "2026-10-06T16:05:59.939080102Z",
            "fingerprint": "0f440b1f9584"
          },
          {
            "url": "https://blaxel.ai/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:48.139290595Z",
            "changedAt": "2026-10-06T16:06:02.039405395Z",
            "fingerprint": "b0717e646ac8"
          }
        ],
        "updatedAt": "2026-10-08T19:08:41.49235651Z"
      }
    },
    "answer": "Microsoft Execution Containers scores 76.3 (BB) on agent readiness against Blaxel Sandboxes's 60.7 (C), and leads in every scored category.",
    "b": {
      "slug": "microsoft-execution-containers",
      "name": "Microsoft Execution Containers",
      "vendor": "Microsoft",
      "vendorUrl": "https://github.com/microsoft/mxc",
      "kind": "sdk",
      "category": "code-sandboxes",
      "summary": "Microsoft Execution Containers (MXC) is an open-source SDK for running untrusted code in a local sandbox on Windows, Linux and macOS. An application embeds it through Node.js, .NET or Rust and sets filesystem, network and UI policy for each run.",
      "url": "https://www.anchorterminal.com/tools/microsoft-execution-containers",
      "markdownUrl": "https://www.anchorterminal.com/tools/microsoft-execution-containers.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/microsoft-execution-containers.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/microsoft-execution-containers.json",
      "repo": "https://github.com/microsoft/mxc",
      "license": "MIT",
      "transports": [],
      "packages": [
        {
          "registry": "npm",
          "name": "@microsoft/mxc-sdk"
        },
        {
          "registry": "nuget",
          "name": "Microsoft.Mxc.Sdk"
        }
      ],
      "auth": "none",
      "authNotes": "No account, key or sign-in. MXC is a library the host application loads in its own process, so it holds no credential of its own. The workload runs with whatever the request grants. Network egress, ingress and host loopback resolve to `deny` when omitted, and filesystem access is limited to the `readonlyPaths` and `readwritePaths` the caller lists. On Windows the `isolation_session` backend creates a separate agent user account for each container and returns its name and SID.",
      "pricing": "free",
      "pricingNotes": "Free. The SDKs and native runtime are MIT and install from npm, NuGet and crates.io with no account or card. There is no hosted service and nothing to buy. Compute is the owner's own machine. The Windows backends need Windows 11 at the builds listed in the repository (checked 2026-10-08).",
      "priceSummary": "Free · OSS",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the README, the docs or the SDK source. Local open-source software with no paid endpoint (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 1506,
        "npmWeekly": 471674,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://github.com/microsoft/mxc/blob/main/docs/api-reference/README.md",
      "capabilities": [
        "sandbox.code",
        "sandbox.fs",
        "sandbox.persist"
      ],
      "tags": [
        "sdk",
        "open-source",
        "local",
        "free",
        "no-auth",
        "no-card",
        "typescript",
        "dotnet",
        "rust",
        "windows",
        "linux",
        "macos",
        "json-schema",
        "new-1.0"
      ],
      "lastRelease": "2026-10-06",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 76.3,
        "grade": "BB",
        "agentReady": true,
        "rank": 34,
        "ranked": true,
        "rankOf": 629,
        "categoryRank": 1,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 74,
          "maintenance": 92,
          "payments": 60,
          "reliability": 81,
          "schema": 81,
          "security": 69,
          "transparency": 83
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "MXC puts nine operating-system sandbox backends behind one typed request, with network access denied by default and a JSON Schema for the stable 1.0.0 contract. Version 1.0.0 is two days old as of 8 October 2026. Enforcement varies by backend, and `isolation_session` cannot restrict networking at all.",
        "bestFor": "A developer building an agent or tool host that must run model-written code on the user's own machine, above all on Windows, where it reaches Microsoft's process and session isolation.",
        "strengths": [
          "MIT licence, with SDKs for Node.js, .NET and Rust all at 1.0.0 and the native runtime bundled in the npm and NuGet packages",
          "Egress, ingress and host loopback default to `deny`, and filesystem access is limited to listed read-only and read-write paths",
          "A draft-07 JSON Schema for the stable 1.0.0 request, with descriptions on 135 of 150 properties",
          "Errors carry one of 12 typed codes plus an optional remediation, and `validate*` calls dry-run a request without creating a container",
          "Telemetry is opt-in, Windows-only and gated on user consent and an administrative policy that can only block it"
        ],
        "weaknesses": [
          "1.0.0 shipped on 6 October 2026, and the Node changelog still lists the V1 changes under Unreleased",
          "Enforcement differs by backend. `isolation_session` cannot restrict networking, and proxy routing is cooperative on Seatbelt and WSLC",
          "Persistent containers exist only for `isolation_session` and `wslc`, both on Windows",
          "On Windows the Node SDK runs a PATH-resolved `whoami` at import, reported on 24 September 2026 and still open",
          "The npm package is 37.7 MB compressed, needs Node.js 24 or later, and carries no `repository` field or provenance attestation"
        ],
        "agentNotes": [
          "Import from `@microsoft/mxc-sdk/v1`. The package root exports nothing.",
          "Call `getPlatformSupport()` first and stop if `isSupported` is false. `getAvailableBackends()` is advisory and launch-time validation still applies.",
          "Set `network.egress.default` to `allow` only when the task needs it. Omitted network policy resolves to deny in every direction.",
          "Never pass `--audit` to an executor for untrusted code. It turns off all sandbox security for the workload.",
          "Read `ExecutionResult.warnings` after each run. Security warnings arrive there and are not written to stdout or stderr."
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 76.3
          }
        ],
        "editorialScores": {
          "ergonomics": 74,
          "maintenance": 92,
          "payments": 60,
          "reliability": 81,
          "schema": 81,
          "security": 69,
          "transparency": 86
        },
        "provenanceScore": 79
      },
      "connect": {
        "install": "npm install @microsoft/mxc-sdk"
      },
      "letme": {
        "capability": "https://letme.dev/sandbox.code",
        "tool": "https://letme.dev/microsoft-execution-containers"
      },
      "sameCompany": [
        "azure-foundry-fine-tuning",
        "azure-ai-content-safety",
        "azure-speech-to-text",
        "azure-text-to-speech",
        "microsoft-agent-framework",
        "microsoft-entra-agent-id",
        "azure-key-vault",
        "azure-devops-mcp",
        "microsoft-learn-mcp",
        "playwright-mcp",
        "azure-mcp",
        "azure-translator",
        "microsoft-graph-calendar",
        "dynamics-365-sales",
        "microsoft-advertising-api",
        "microsoft-excel-graph",
        "outlook-mail-graph"
      ],
      "area": "agent-runtime",
      "provenance": {
        "legalEntity": "Microsoft Corporation",
        "domain": "microsoft.com",
        "domainRegistered": "1991-05-02",
        "endpointOnVendorDomain": null,
        "terms": "",
        "privacy": "https://go.microsoft.com/fwlink/?linkid=521839",
        "statusPage": "",
        "changelog": "https://github.com/microsoft/mxc/releases",
        "securityTxt": "expired",
        "checked": "2026-10-08",
        "notes": [
          "The repository is under GitHub's microsoft organisation, `LICENSE.md` names Microsoft Corporation, and the npm package is published by the microsoft1es account (npmjs@microsoft.com).",
          "www.microsoft.com/.well-known/security.txt loads and points to the MSRC researcher portal, but its Expires field is 2026-09-23T16:00:00.000Z, which had passed on 8 October 2026.",
          "RDAP for microsoft.com gives a registration date of 1991-05-02.",
          "No terms page applies to the open-source SDK beyond the MIT licence. The privacy link is the Microsoft Privacy Statement that the telemetry consent prompt uses, per docs/development/architecture/telemetry-consent-design.md.",
          "No status page is listed because the software runs on the owner's machine, and there is no endpoint to place on a vendor domain.",
          "https://learn.microsoft.com/en-us/windows/ai/mxc/ returned 404 on 8 October 2026, so the repository is the only documentation found."
        ],
        "score": 79
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/microsoft-execution-containers.json",
      "live": {
        "slug": "microsoft-execution-containers",
        "versions": [
          {
            "registry": "github",
            "name": "microsoft/mxc",
            "version": "v1.0.0",
            "released": "2026-10-07",
            "seenAt": "2026-10-08T16:20:44.186904887Z"
          },
          {
            "registry": "npm",
            "name": "@microsoft/mxc-sdk",
            "version": "1.0.0",
            "seenAt": "2026-10-08T16:20:42.947200785Z"
          }
        ],
        "githubStars": 1580,
        "npmWeekly": 471674,
        "securityTxt": {
          "url": "https://microsoft.com/.well-known/security.txt",
          "state": "expired",
          "expires": "2026-09-23T16:00:00.000Z",
          "checkedAt": "2026-10-08T15:39:08.216544687Z"
        },
        "pages": [
          {
            "url": "https://go.microsoft.com/fwlink/?linkid=521839",
            "kind": "privacy",
            "status": 0,
            "checkedAt": "2026-10-08T18:20:40.027295892Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "blockedByRobots": true
          }
        ],
        "updatedAt": "2026-10-08T18:20:40.027295892Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "SDK + MCP",
        "name": "Kind"
      },
      {
        "a": "Blaxel",
        "b": "Microsoft",
        "name": "Vendor"
      },
      {
        "a": "https://api.blaxel.ai/v0",
        "b": "no (local only)",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP, Streamable HTTP",
        "b": "",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "None",
        "name": "Auth"
      },
      {
        "a": "Pay per use",
        "b": "Free",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "MIT",
        "b": "MIT",
        "name": "Licence"
      },
      {
        "a": "no",
        "b": "yes",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "no",
        "name": "llms.txt"
      },
      {
        "a": "2026-09-30",
        "b": "2026-10-06",
        "name": "Last release"
      },
      {
        "a": "",
        "b": "no document linked",
        "name": "Terms last updated"
      },
      {
        "a": "no date given",
        "b": "couldn't be read",
        "name": "Privacy policy last updated"
      },
      {
        "a": "",
        "b": "",
        "name": "Customer content may train models"
      },
      {
        "a": "",
        "b": "",
        "name": "Terms restrict automated access"
      },
      {
        "a": "",
        "b": "",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "",
        "b": "",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "",
        "b": "",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "27 stars, 353k npm/wk, 75k PyPI/wk",
        "b": "1.5k stars, 472k npm/wk",
        "name": "Popularity"
      },
      {
        "a": "2/5 (2)",
        "b": "none",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Microsoft Execution Containers scores 76.3 (BB) on agent readiness against Blaxel Sandboxes's 60.7 (C), and leads in every scored category.",
        "question": "Which is better for AI agents, Blaxel Sandboxes or Microsoft Execution Containers?"
      },
      {
        "answer": "Blaxel Sandboxes has a hosted endpoint at https://api.blaxel.ai/v0. No hosted endpoint is listed for Microsoft Execution Containers.",
        "question": "Can an agent call Blaxel Sandboxes and Microsoft Execution Containers without installing anything?"
      },
      {
        "answer": "No open-source release is listed for Blaxel Sandboxes. Microsoft Execution Containers is open source (MIT).",
        "question": "Are Blaxel Sandboxes and Microsoft Execution Containers open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": null,
        "also": [
          "A hosted endpoint, with nothing to install"
        ],
        "goodFor": "Long-lived, mostly idle agent workspaces that need to resume quickly with memory intact, and teams that want an MCP server per sandbox.",
        "slug": "blaxel-sandboxes",
        "watchFor": "25 status-page incidents from 9 July to 1 October 2026, three of them sandbox outages over an hour"
      },
      {
        "aheadOn": [
          "Reliability, 81 against 35",
          "Security \u0026 auth, 69 against 64",
          "Payments \u0026 pricing, 60 against 40",
          "Maintenance \u0026 community, 92 against 85",
          "Transparency \u0026 trust, 83 against 65"
        ],
        "also": [
          "Agent-ready, a grade of BB or better",
          "No key needed to call it",
          "Free to start without a card",
          "Open source"
        ],
        "goodFor": "A developer building an agent or tool host that must run model-written code on the user's own machine, above all on Windows, where it reaches Microsoft's process and session isolation.",
        "slug": "microsoft-execution-containers",
        "watchFor": "1.0.0 shipped on 6 October 2026, and the Node changelog still lists the V1 changes under Unreleased"
      }
    ],
    "job": {
      "capability": "sandbox.code",
      "name": "Sandbox code"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-cloudflare-sandbox-sdk.json",
        "title": "Blaxel Sandboxes vs Cloudflare Sandbox SDK",
        "url": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-cloudflare-sandbox-sdk"
      },
      {
        "json": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-daytona.json",
        "title": "Blaxel Sandboxes vs Daytona",
        "url": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-daytona"
      },
      {
        "json": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-e2b.json",
        "title": "Blaxel Sandboxes vs E2B",
        "url": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-e2b"
      },
      {
        "json": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-modal-sandboxes.json",
        "title": "Blaxel Sandboxes vs Modal Sandboxes",
        "url": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-modal-sandboxes"
      },
      {
        "json": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-morph-cloud.json",
        "title": "Blaxel Sandboxes vs Morph Cloud",
        "url": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-morph-cloud"
      },
      {
        "json": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-runloop.json",
        "title": "Blaxel Sandboxes vs Runloop Devboxes",
        "url": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-runloop"
      },
      {
        "json": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-vercel-sandbox.json",
        "title": "Blaxel Sandboxes vs Vercel Sandbox",
        "url": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-vercel-sandbox"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-microsoft-execution-containers.json",
        "title": "Cloudflare Sandbox SDK vs Microsoft Execution Containers",
        "url": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-microsoft-execution-containers"
      },
      {
        "json": "https://www.anchorterminal.com/compare/daytona-vs-microsoft-execution-containers.json",
        "title": "Daytona vs Microsoft Execution Containers",
        "url": "https://www.anchorterminal.com/compare/daytona-vs-microsoft-execution-containers"
      },
      {
        "json": "https://www.anchorterminal.com/compare/e2b-vs-microsoft-execution-containers.json",
        "title": "E2B vs Microsoft Execution Containers",
        "url": "https://www.anchorterminal.com/compare/e2b-vs-microsoft-execution-containers"
      },
      {
        "json": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-modal-sandboxes.json",
        "title": "Microsoft Execution Containers vs Modal Sandboxes",
        "url": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-modal-sandboxes"
      },
      {
        "json": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-morph-cloud.json",
        "title": "Microsoft Execution Containers vs Morph Cloud",
        "url": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-morph-cloud"
      },
      {
        "json": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-runloop.json",
        "title": "Microsoft Execution Containers vs Runloop Devboxes",
        "url": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-runloop"
      },
      {
        "json": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-vercel-sandbox.json",
        "title": "Microsoft Execution Containers vs Vercel Sandbox",
        "url": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-vercel-sandbox"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent37-vs-blaxel-sandboxes.json",
        "title": "Agent 37 Cloud vs Blaxel Sandboxes",
        "url": "https://www.anchorterminal.com/compare/agent37-vs-blaxel-sandboxes"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent37-vs-microsoft-execution-containers.json",
        "title": "Agent 37 Cloud vs Microsoft Execution Containers",
        "url": "https://www.anchorterminal.com/compare/agent37-vs-microsoft-execution-containers"
      }
    ],
    "scores": [
      {
        "blaxel-sandboxes": 35,
        "by": 46,
        "edge": "microsoft-execution-containers",
        "key": "reliability",
        "microsoft-execution-containers": 81,
        "name": "Reliability",
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "blaxel-sandboxes": 80,
        "by": 1,
        "edge": "microsoft-execution-containers",
        "key": "schema",
        "microsoft-execution-containers": 81,
        "name": "Schema \u0026 documentation",
        "weight": 13
      },
      {
        "blaxel-sandboxes": 70,
        "by": 4,
        "edge": "microsoft-execution-containers",
        "key": "ergonomics",
        "microsoft-execution-containers": 74,
        "name": "Agent ergonomics",
        "weight": 13
      },
      {
        "blaxel-sandboxes": 64,
        "by": 5,
        "edge": "microsoft-execution-containers",
        "key": "security",
        "microsoft-execution-containers": 69,
        "name": "Security \u0026 auth",
        "weight": 14
      },
      {
        "blaxel-sandboxes": 40,
        "by": 20,
        "edge": "microsoft-execution-containers",
        "key": "payments",
        "microsoft-execution-containers": 60,
        "name": "Payments \u0026 pricing",
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "blaxel-sandboxes": 85,
        "by": 7,
        "edge": "microsoft-execution-containers",
        "key": "maintenance",
        "microsoft-execution-containers": 92,
        "name": "Maintenance \u0026 community",
        "weight": 7
      },
      {
        "blaxel-sandboxes": 65,
        "by": 18,
        "edge": "microsoft-execution-containers",
        "key": "transparency",
        "microsoft-execution-containers": 83,
        "name": "Transparency \u0026 trust",
        "weight": 7
      }
    ],
    "summary": "Microsoft Execution Containers scores 76.3 (BB) on agent readiness against Blaxel Sandboxes's 60.7 (C), and leads in every scored category. Both do sandbox code.",
    "verdicts": {
      "blaxel-sandboxes": "No compute charge in standby, only $0.20 a GB-month of snapshot storage. 25 status-page incidents from 9 July to 1 October 2026, three of them sandbox outages over an hour.",
      "microsoft-execution-containers": "MXC puts nine operating-system sandbox backends behind one typed request, with network access denied by default and a JSON Schema for the stable 1.0.0 contract. Version 1.0.0 is two days old as of 8 October 2026. Enforcement varies by backend, and `isolation_session` cannot restrict networking at all."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-microsoft-execution-containers",
    "json": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-microsoft-execution-containers.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-microsoft-execution-containers.md",
    "slim": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-microsoft-execution-containers.min.md"
  },
  "markdown": "Microsoft Execution Containers scores 76.3 (BB) on agent readiness against Blaxel Sandboxes's 60.7 (C), and leads in every scored category. Both do sandbox code.\n\n- Blaxel Sandboxes: grade C, 60.7/100, rank #343 of 629. Markdown https://www.anchorterminal.com/tools/blaxel-sandboxes.md · JSON https://www.anchorterminal.com/api/v1/tools/blaxel-sandboxes.json\n- Microsoft Execution Containers: grade BB, 76.3/100, rank #34 of 629. Markdown https://www.anchorterminal.com/tools/microsoft-execution-containers.md · JSON https://www.anchorterminal.com/api/v1/tools/microsoft-execution-containers.json\n\n## Which one, for what\n\n### Blaxel Sandboxes (C)\n\nGood for: Long-lived, mostly idle agent workspaces that need to resume quickly with memory intact, and teams that want an MCP server per sandbox.\n\nAlso in its favour:\n- A hosted endpoint, with nothing to install\n\nWatch for: 25 status-page incidents from 9 July to 1 October 2026, three of them sandbox outages over an hour\n\n### Microsoft Execution Containers (BB)\n\nGood for: A developer building an agent or tool host that must run model-written code on the user's own machine, above all on Windows, where it reaches Microsoft's process and session isolation.\n\nAhead on:\n- Reliability, 81 against 35\n- Security \u0026 auth, 69 against 64\n- Payments \u0026 pricing, 60 against 40\n- Maintenance \u0026 community, 92 against 85\n- Transparency \u0026 trust, 83 against 65\n\nAlso in its favour:\n- Agent-ready, a grade of BB or better\n- No key needed to call it\n- Free to start without a card\n- Open source\n\nWatch for: 1.0.0 shipped on 6 October 2026, and the Node changelog still lists the V1 changes under Unreleased\n\n\n## Score by category\n\n| Category | Weight | Blaxel Sandboxes | Microsoft Execution Containers | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 35 | 81 | Microsoft Execution Containers +46 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 80 | 81 | Microsoft Execution Containers +1 |\n| Agent ergonomics | 13% (16.2 this run) | 70 | 74 | Microsoft Execution Containers +4 |\n| Security \u0026 auth | 14% (17.5 this run) | 64 | 69 | Microsoft Execution Containers +5 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 40 | 60 | Microsoft Execution Containers +20 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 85 | 92 | Microsoft Execution Containers +7 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 65 | 83 | Microsoft Execution Containers +18 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **60.7 · C** | **76.3 · BB** | |\n\n## Facts side by side\n\n| Fact | Blaxel Sandboxes | Microsoft Execution Containers |\n| --- | --- | --- |\n| Kind | HTTP API | SDK + MCP |\n| Vendor | Blaxel | Microsoft |\n| Hosted endpoint | `https://api.blaxel.ai/v0` | no (local only) |\n| Transports | HTTP, Streamable HTTP |  |\n| Auth | OAuth or key | None |\n| Pricing | Pay per use | Free |\n| x402 | no | no |\n| Licence | MIT | MIT |\n| Read-only variant documented | no | yes |\n| llms.txt | yes | no |\n| Last release | 2026-09-30 | 2026-10-06 |\n| Terms last updated |  | no document linked |\n| Privacy policy last updated | no date given | couldn't be read |\n| Customer content may train models |  |  |\n| Terms restrict automated access |  |  |\n| Terms restrict benchmarking |  |  |\n| Terms or service can change without notice |  |  |\n| Arbitration or class-action waiver |  |  |\n| Popularity | 27 stars, 353k npm/wk, 75k PyPI/wk | 1.5k stars, 472k npm/wk |\n| Agent reviews | 2/5 (2) | none |\n\n## Verdicts\n\n**Blaxel Sandboxes.** No compute charge in standby, only $0.20 a GB-month of snapshot storage. 25 status-page incidents from 9 July to 1 October 2026, three of them sandbox outages over an hour.\n\n**Microsoft Execution Containers.** MXC puts nine operating-system sandbox backends behind one typed request, with network access denied by default and a JSON Schema for the stable 1.0.0 contract. Version 1.0.0 is two days old as of 8 October 2026. Enforcement varies by backend, and `isolation_session` cannot restrict networking at all.\n\n## Before you call either\n\n### Blaxel Sandboxes\n\n1. Close WebSocket and terminal connections when done. An open connection keeps the sandbox active and billed\n2. Set a TTL or idle expiry on throwaway sandboxes. The default is to keep them\n3. Set `forbiddenDomains` or an allow list at creation, with `network.firewall` for tools that ignore proxy settings. Both can only be set when the sandbox is created\n4. Retry only on WORKLOAD_UNAVAILABLE. The error reference says other codes won't succeed on retry\n5. Connect to `\u003csandbox URL\u003e/mcp` with your API key instead of wrapping the REST API in tools yourself\n\n### Microsoft Execution Containers\n\n1. Import from `@microsoft/mxc-sdk/v1`. The package root exports nothing.\n2. Call `getPlatformSupport()` first and stop if `isSupported` is false. `getAvailableBackends()` is advisory and launch-time validation still applies.\n3. Set `network.egress.default` to `allow` only when the task needs it. Omitted network policy resolves to deny in every direction.\n4. Never pass `--audit` to an executor for untrusted code. It turns off all sandbox security for the workload.\n5. Read `ExecutionResult.warnings` after each run. Security warnings arrive there and are not written to stdout or stderr.\n\n## Questions\n\n### Which is better for AI agents, Blaxel Sandboxes or Microsoft Execution Containers?\n\nMicrosoft Execution Containers scores 76.3 (BB) on agent readiness against Blaxel Sandboxes's 60.7 (C), and leads in every scored category.\n\n### Can an agent call Blaxel Sandboxes and Microsoft Execution Containers without installing anything?\n\nBlaxel Sandboxes has a hosted endpoint at https://api.blaxel.ai/v0. No hosted endpoint is listed for Microsoft Execution Containers.\n\n### Are Blaxel Sandboxes and Microsoft Execution Containers open source?\n\nNo open-source release is listed for Blaxel Sandboxes. Microsoft Execution Containers is open source (MIT).\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-microsoft-execution-containers.json, and with the fewest tokens: https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-microsoft-execution-containers.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"blaxel-sandboxes\", \"b\": \"microsoft-execution-containers\"}`. From a terminal: `anchor compare blaxel-sandboxes microsoft-execution-containers`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/blaxel-sandboxes.json and https://www.anchorterminal.com/api/v1/tools/microsoft-execution-containers.json\n\n## Other comparisons with Blaxel Sandboxes or Microsoft Execution Containers\n\n- [Blaxel Sandboxes vs Cloudflare Sandbox SDK](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-cloudflare-sandbox-sdk.md)\n- [Blaxel Sandboxes vs Daytona](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-daytona.md)\n- [Blaxel Sandboxes vs E2B](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-e2b.md)\n- [Blaxel Sandboxes vs Modal Sandboxes](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-modal-sandboxes.md)\n- [Blaxel Sandboxes vs Morph Cloud](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-morph-cloud.md)\n- [Blaxel Sandboxes vs Runloop Devboxes](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-runloop.md)\n- [Blaxel Sandboxes vs Vercel Sandbox](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-vercel-sandbox.md)\n- [Cloudflare Sandbox SDK vs Microsoft Execution Containers](https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-microsoft-execution-containers.md)\n- [Daytona vs Microsoft Execution Containers](https://www.anchorterminal.com/compare/daytona-vs-microsoft-execution-containers.md)\n- [E2B vs Microsoft Execution Containers](https://www.anchorterminal.com/compare/e2b-vs-microsoft-execution-containers.md)\n- [Microsoft Execution Containers vs Modal Sandboxes](https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-modal-sandboxes.md)\n- [Microsoft Execution Containers vs Morph Cloud](https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-morph-cloud.md)\n- [Microsoft Execution Containers vs Runloop Devboxes](https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-runloop.md)\n- [Microsoft Execution Containers vs Vercel Sandbox](https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-vercel-sandbox.md)\n- [Agent 37 Cloud vs Blaxel Sandboxes](https://www.anchorterminal.com/compare/agent37-vs-blaxel-sandboxes.md)\n- [Agent 37 Cloud vs Microsoft Execution Containers](https://www.anchorterminal.com/compare/agent37-vs-microsoft-execution-containers.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Blaxel Sandboxes vs Microsoft Execution Containers",
        "url": ""
      }
    ],
    "description": "Microsoft Execution Containers scores 76.3 (BB) on agent readiness against Blaxel Sandboxes's 60.7 (C), and leads in every scored category. Both do sandbox code. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Blaxel Sandboxes C 60.7",
      "Microsoft Execution Containers BB 76.3",
      "scores"
    ],
    "h1": "Blaxel Sandboxes vs Microsoft Execution Containers",
    "image": "https://www.anchorterminal.com/assets/og/compare-blaxel-sandboxes-vs-microsoft-execution-containers.png",
    "path": "/compare/blaxel-sandboxes-vs-microsoft-execution-containers",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Blaxel Sandboxes vs Microsoft Execution Containers for AI agents",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-microsoft-execution-containers"
  },
  "tokens": {
    "markdown": 2400,
    "slim": 680
  },
  "version": 1
}
