{
  "data": {
    "a": {
      "slug": "cloudflare-sandbox-sdk",
      "name": "Cloudflare Sandbox SDK",
      "vendor": "Cloudflare",
      "vendorUrl": "https://developers.cloudflare.com/sandbox/",
      "kind": "sdk",
      "category": "code-sandboxes",
      "summary": "TypeScript library for running sandboxed Linux containers from a Cloudflare Worker.",
      "url": "https://www.anchorterminal.com/tools/cloudflare-sandbox-sdk",
      "markdownUrl": "https://www.anchorterminal.com/tools/cloudflare-sandbox-sdk.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/cloudflare-sandbox-sdk.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/cloudflare-sandbox-sdk.json",
      "repo": "https://github.com/cloudflare/sandbox-sdk",
      "license": "Apache-2.0",
      "transports": [],
      "packages": [
        {
          "registry": "npm",
          "name": "@cloudflare/sandbox"
        }
      ],
      "auth": "none",
      "authNotes": "There's no hosted API. The sandbox sits behind a Worker you deploy, so it has whatever auth you put in front of it, and the starter template has none. Deploying needs a Cloudflare account through Wrangler. Version 1.0 adds preview ports with custom hostnames and authentication.",
      "pricing": "paid",
      "pricingNotes": "Needs the Workers Paid plan, $5 a month minimum (https://developers.cloudflare.com/workers/platform/pricing/). Billed as Containers plus Workers and Durable Objects. Containers include 25 GiB-hours of memory, 375 vCPU-minutes and 200 GB-hours of disk a month, then $0.0000025 a GiB-second of memory, $0.000020 a vCPU-second of CPU used and $0.00000007 a GB-second of disk, in 10 ms steps while the container runs. Egress is $0.025 a GB in North America and Europe after 1 TB (https://developers.cloudflare.com/containers/pricing/). Durable Objects add $0.15 per million requests and $12.50 per million GB-seconds after the included amounts (https://developers.cloudflare.com/workers/platform/pricing/).",
      "priceSummary": "$0.072 / vCPU-hr",
      "where": "local",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 1100,
        "npmWeekly": 722733,
        "pypiWeekly": null,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://developers.cloudflare.com/sandbox/",
      "llmsTxt": "https://developers.cloudflare.com/sandbox/llms.txt",
      "capabilities": [
        "sandbox.code",
        "sandbox.fs",
        "sandbox.persist"
      ],
      "tags": [
        "hosted",
        "typescript",
        "open-source",
        "llms-txt"
      ],
      "lastRelease": "2026-09-30",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 67.8,
        "grade": "B",
        "agentReady": false,
        "rank": 137,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 4,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 63,
          "maintenance": 70,
          "payments": 30,
          "reliability": 87,
          "schema": 77,
          "security": 65,
          "transparency": 73
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "Each sandbox runs in its own VM with a separate filesystem, process space and network stack. No hosted API. You deploy and secure a Worker before an agent can call anything, and the starter has no auth.",
        "strengths": [
          "Each sandbox runs in its own VM with a separate filesystem, process space and network stack",
          "Outbound handlers hold credentials in the Worker and inject them, so the container never sees them",
          "Egress can be turned off or limited to a deny-by-default `allowedHosts` list",
          "CPU billed on use at $0.000020 a vCPU-second, with a monthly allowance on Workers Paid",
          "Apache-2.0, with CodeQL and passing CI on main"
        ],
        "weaknesses": [
          "No hosted API. You deploy and secure a Worker before an agent can call anything, and the starter has no auth",
          "Open bugs on backups that drop directories (#859) and restores of archives of 10 MB or more (#884)",
          "Needs Workers Paid at $5 a month, with no card-free route",
          "TypeScript only",
          "Two models to learn while 0.x and 1.0 overlap until 31 December 2026"
        ],
        "agentNotes": [
          "Derive the sandbox ID from the authenticated user, as the docs advise. IDs aren't secrets",
          "Put API keys in an outbound handler in the Worker, not in the container's environment",
          "Set `enableInternet = false` or an `allowedHosts` list before running untrusted code. Internet access is on by default",
          "Check that a restored backup has every directory you expect. Backups of 10 MB or more have open bugs",
          "Start new projects on 1.0. The 0.x library only gets fixes until 31 December 2026"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 3,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 67.8
          }
        ],
        "editorialScores": {
          "ergonomics": 63,
          "maintenance": 70,
          "payments": 30,
          "reliability": 87,
          "schema": 77,
          "security": 65,
          "transparency": 45
        },
        "provenanceScore": 100
      },
      "connect": {
        "install": "npm create cloudflare@latest -- my-sandbox --template=cloudflare/sandbox-sdk/examples/minimal"
      },
      "letme": {
        "capability": "https://letme.dev/sandbox.code",
        "tool": "https://letme.dev/cloudflare-sandbox-sdk"
      },
      "sameCompany": [
        "cloudflare-mcp",
        "cloudflare-r2",
        "cloudflare-clef"
      ],
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "Container CPU",
          "unit": "vcpu-hour",
          "usd": 0.072,
          "note": "$0.000020 a vCPU-second of CPU used, after 375 vCPU-minutes a month"
        },
        {
          "item": "Workers Paid plan",
          "unit": "month",
          "usd": 5,
          "note": "Minimum charge"
        },
        {
          "item": "Egress, North America and Europe",
          "unit": "gb",
          "usd": 0.025,
          "note": "After 1 TB a month"
        }
      ],
      "provenance": {
        "legalEntity": "Cloudflare, Inc.",
        "domain": "cloudflare.com",
        "domainRegistered": "2009-02-17",
        "endpointOnVendorDomain": null,
        "terms": "https://www.cloudflare.com/terms/",
        "privacy": "https://www.cloudflare.com/privacypolicy/",
        "statusPage": "https://www.cloudflarestatus.com",
        "changelog": "https://developers.cloudflare.com/changelog/?product=sandbox",
        "securityTxt": "valid",
        "checked": "2026-10-01",
        "notes": [
          "The self-serve subscription agreement (updated 12 September 2025) names Cloudflare, Inc., 101 Townsend St., San Francisco.",
          "There's no vendor endpoint to check. Sandboxes are reached through a Worker on your own route or workers.dev subdomain.",
          "security.txt lists HackerOne and a disclosure policy, but we didn't see an Expires field.",
          "The GitHub README still says the SDK is in active development and APIs may change before v1.0, while npm has 1.0.0 (published 2026-09-30) and the changelog announces 1.0. The GitHub releases page showed 0.12.4 (21 July 2026) as its newest release when checked."
        ],
        "score": 100
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/cloudflare-sandbox-sdk.json",
      "live": {
        "slug": "cloudflare-sandbox-sdk",
        "vendorStatus": {
          "page": "https://www.cloudflarestatus.com",
          "indicator": "minor",
          "summary": "Minor Service Outage",
          "checkedAt": "2026-10-05T03:18:57.572882265Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "cloudflare/sandbox-sdk",
            "version": "@cloudflare/sandbox@0.12.10",
            "released": "2026-09-23",
            "seenAt": "2026-10-04T16:24:02.293431378Z"
          },
          {
            "registry": "npm",
            "name": "@cloudflare/sandbox",
            "version": "1.0.0",
            "seenAt": "2026-10-04T16:24:01.356030499Z"
          }
        ],
        "githubStars": 1144,
        "npmWeekly": 797840,
        "securityTxt": {
          "url": "https://cloudflare.com/.well-known/security.txt",
          "state": "valid",
          "checkedAt": "2026-10-04T15:15:51.95928161Z"
        },
        "llmsTxt": {
          "url": "https://developers.cloudflare.com/sandbox/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:17:31.097149892Z"
        },
        "domain": {
          "domain": "cloudflare.com",
          "registered": "2009-02-17",
          "source": "https://rdap.verisign.com/com/v1/domain/cloudflare.com",
          "checkedAt": "2026-10-04T13:06:22.743038628Z"
        },
        "pages": [
          {
            "url": "https://developers.cloudflare.com/changelog/?product=sandbox",
            "kind": "deprecations",
            "status": 200,
            "checkedAt": "2026-10-04T15:42:50.869019575Z",
            "changedAt": "2026-10-04T15:42:50.869019575Z",
            "fingerprint": "aa7b5fb58872"
          },
          {
            "url": "https://developers.cloudflare.com/containers/pricing/",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-04T15:42:52.872169011Z",
            "changedAt": "2026-10-03T15:31:01.576635047Z",
            "fingerprint": "a81e9d7bb64a"
          },
          {
            "url": "https://developers.cloudflare.com/workers/platform/pricing/",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-04T15:43:00.847585458Z",
            "changedAt": "2026-10-04T15:43:00.847585458Z",
            "fingerprint": "ea6eab1a375f"
          }
        ],
        "updatedAt": "2026-10-05T03:18:57.572882265Z"
      }
    },
    "b": {
      "slug": "e2b",
      "name": "E2B",
      "vendor": "E2B",
      "vendorUrl": "https://e2b.dev",
      "kind": "http-api",
      "category": "code-sandboxes",
      "summary": "Firecracker microVM sandboxes for agent code, driven from Python and JavaScript SDKs, a CLI or a REST API.",
      "url": "https://www.anchorterminal.com/tools/e2b",
      "markdownUrl": "https://www.anchorterminal.com/tools/e2b.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/e2b.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/e2b.json",
      "repo": "https://github.com/e2b-dev/E2B",
      "license": "Apache-2.0",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://api.e2b.app",
      "packages": [
        {
          "registry": "npm",
          "name": "e2b"
        },
        {
          "registry": "pypi",
          "name": "e2b"
        },
        {
          "registry": "npm",
          "name": "@e2b/code-interpreter"
        },
        {
          "registry": "pypi",
          "name": "e2b-code-interpreter"
        }
      ],
      "auth": "api-key",
      "authNotes": "API key in the `X-API-Key` header on api.e2b.app. The SDKs and CLI read `E2B_API_KEY`. SDKs from 2.46.0 leave key validation to the server. `E2B_ACCESS_TOKEN` was switched off on 1 August 2026. Code inside a sandbox can get short-lived workload identity tokens instead of long-lived secrets, and stored secrets can be filled into outbound HTTPS headers by the egress proxy without entering the sandbox.",
      "pricing": "freemium",
      "pricingNotes": "Hobby is free with a one-time $100 usage credit and no card, sandboxes up to 1 hour and 20 running at once. Pro is $150 a month plus usage, sandboxes up to 24 hours and 100 concurrent (up to 1,100 with add-ons). Enterprise starts at $3,000 a month and adds BYOC. Compute is billed per second while a sandbox runs, $0.000014 a vCPU-second and $0.0000045 a GiB-second of RAM, so the default 2 vCPU, 4 GiB sandbox costs $0.1656 an hour. 10 GiB of storage free on Hobby, 20 GiB on Pro (https://e2b.dev/pricing). Paused sandboxes aren't billed, and when the credit runs out the account is blocked until a card is added (https://docs.e2b.dev/billing.md).",
      "priceSummary": "$0.0504 / vCPU-hr",
      "where": "hosted",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 13400,
        "npmWeekly": 2217920,
        "pypiWeekly": 1408079,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://docs.e2b.dev",
      "llmsTxt": "https://docs.e2b.dev/llms.txt",
      "openapi": "https://docs.e2b.dev/openapi-public.yaml",
      "capabilities": [
        "sandbox.code",
        "sandbox.fs",
        "sandbox.persist",
        "sandbox.browser"
      ],
      "tags": [
        "hosted",
        "freemium",
        "free-tier",
        "no-card",
        "open-source",
        "self-hosted",
        "llms-txt",
        "python",
        "typescript",
        "enterprise"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 68.5,
        "grade": "B",
        "agentReady": false,
        "rank": 122,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 3,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 65,
          "maintenance": 88,
          "payments": 50,
          "reliability": 60,
          "schema": 92,
          "security": 62,
          "transparency": 71
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "Firecracker microVM with its own kernel per sandbox. Two major incidents over an hour in September 2026, on sandbox creation and on creating from snapshots.",
        "strengths": [
          "Firecracker microVM with its own kernel per sandbox",
          "Egress allow and deny lists by domain, IP or CIDR, and secrets filled in outside the sandbox",
          "Apache-2.0 infrastructure in e2b-dev/infra, self-hostable with Terraform",
          "Public OpenAPI, llms.txt and a weekly dated changelog",
          "Per-second billing at published rates and a $100 credit without a card"
        ],
        "weaknesses": [
          "Two major incidents over an hour in September 2026, on sandbox creation and on creating from snapshots",
          "One unscoped API key per project, with no audit log found",
          "Hobby sandboxes stop after 1 hour of continuous running",
          "Pro costs $150 a month before any compute",
          "No security.txt or bug bounty, and no published subprocessor list"
        ],
        "agentNotes": [
          "Set a timeout when you create a sandbox. The default is 5 minutes",
          "Pause rather than kill when you'll come back. Resume takes about a second and nothing is billed while paused",
          "Use `Secret.fill` in network transforms instead of passing API keys into the sandbox environment",
          "Pace sandbox creation. Hobby allows 1 a second and 20 running at once",
          "Move to the v2 sandbox endpoints. SDK 2.51.0 and later use them by default"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 3,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 68.5
          }
        ],
        "editorialScores": {
          "ergonomics": 65,
          "maintenance": 88,
          "payments": 50,
          "reliability": 60,
          "schema": 92,
          "security": 62,
          "transparency": 75
        },
        "provenanceScore": 67
      },
      "connect": {
        "install": "pip install e2b-code-interpreter  # or npm i @e2b/code-interpreter",
        "http": "curl https://api.e2b.app/v2/sandboxes -H \"X-API-Key: $E2B_API_KEY\""
      },
      "letme": {
        "capability": "https://letme.dev/sandbox.code",
        "tool": "https://letme.dev/e2b"
      },
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "vCPU",
          "unit": "vcpu-hour",
          "usd": 0.0504,
          "note": "$0.000014 a vCPU-second, RAM extra at $0.0000045 a GiB-second"
        },
        {
          "item": "Default sandbox (2 vCPU, 4 GiB)",
          "unit": "session-hour",
          "usd": 0.1656,
          "note": "Billed per second while running"
        },
        {
          "item": "Pro plan",
          "unit": "month",
          "usd": 150,
          "note": "Usage billed on top"
        },
        {
          "item": "Enterprise minimum",
          "unit": "month",
          "usd": 3000
        }
      ],
      "provenance": {
        "legalEntity": "FoundryLabs, Inc.",
        "domain": "e2b.dev",
        "domainRegistered": "2023-04-03",
        "endpointOnVendorDomain": false,
        "terms": "https://e2b.dev/terms",
        "privacy": "https://e2b.dev/privacy",
        "statusPage": "https://status.e2b.dev",
        "changelog": "https://docs.e2b.dev/changelog",
        "securityTxt": "none",
        "checked": "2026-09-30",
        "notes": [
          "Terms (updated 4 December 2024) and privacy policy (8 April 2024) name FoundryLabs, Inc., a Delaware corporation, with arbitration in San Francisco.",
          "The API runs on api.e2b.app, a separate registrable domain from e2b.dev.",
          "e2b.dev/.well-known/security.txt returns 404."
        ],
        "score": 67
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/e2b.json",
      "live": {
        "slug": "e2b",
        "probe": {
          "target": "https://api.e2b.app",
          "method": "get",
          "lastAt": "2026-10-05T03:17:25.432169919Z",
          "lastOk": true,
          "lastStatus": 404,
          "lastMs": 640,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 208,
          "p95ms24h": 684,
          "samples24h": 273,
          "samples30d": 938,
          "days": [
            {
              "date": "2026-10-01",
              "probes": 109,
              "ok": 109
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-05",
              "probes": 38,
              "ok": 38
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.e2b.dev",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-05T03:19:00.081618149Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "e2b-dev/E2B",
            "version": "e2b@2.52.0",
            "released": "2026-10-01",
            "seenAt": "2026-10-04T16:26:00.111403217Z"
          },
          {
            "registry": "npm",
            "name": "@e2b/code-interpreter",
            "version": "2.8.0",
            "seenAt": "2026-10-04T16:25:58.219240858Z"
          },
          {
            "registry": "npm",
            "name": "e2b",
            "version": "2.52.0",
            "seenAt": "2026-10-04T16:25:57.300487346Z"
          },
          {
            "registry": "pypi",
            "name": "e2b",
            "version": "2.52.0",
            "released": "2026-10-01",
            "seenAt": "2026-10-04T16:25:58.102980494Z"
          },
          {
            "registry": "pypi",
            "name": "e2b-code-interpreter",
            "version": "2.10.1",
            "released": "2026-10-01",
            "seenAt": "2026-10-04T16:25:59.558821824Z"
          }
        ],
        "githubStars": 14158,
        "npmWeekly": 2206823,
        "pypiWeekly": 1455625,
        "securityTxt": {
          "url": "https://e2b.dev/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-04T15:15:56.659139974Z"
        },
        "llmsTxt": {
          "url": "https://docs.e2b.dev/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:17:31.181154301Z"
        },
        "domain": {
          "domain": "e2b.dev",
          "registered": "2023-04-03",
          "source": "https://pubapi.registry.google/rdap/domain/e2b.dev",
          "checkedAt": "2026-10-04T13:07:00.866894573Z"
        },
        "pages": [
          {
            "url": "https://docs.e2b.dev/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-04T15:43:36.049541817Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "6144e11d9a0f"
          },
          {
            "url": "https://e2b.dev/pricing",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-04T15:44:25.826627767Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "9315b9c222a9"
          },
          {
            "url": "https://e2b.dev/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-04T15:44:28.012557957Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "7cea0e859599"
          },
          {
            "url": "https://e2b.dev/terms",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-04T15:44:29.980992298Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "dc202679f513"
          }
        ],
        "updatedAt": "2026-10-05T03:19:00.081618149Z"
      }
    },
    "summary": "E2B has a score of 68.5 (B) against Cloudflare Sandbox SDK's 67.8 (B). Both do sandbox code. The largest gap is reliability, 27 points."
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-e2b",
    "json": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-e2b.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-e2b.md",
    "slim": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-e2b.min.md"
  },
  "markdown": "E2B has a score of 68.5 (B) against Cloudflare Sandbox SDK's 67.8 (B). Both do sandbox code. The largest gap is reliability, 27 points.\n\n- Cloudflare Sandbox SDK: grade B, 67.8/100, rank #137 of 452. Markdown https://www.anchorterminal.com/tools/cloudflare-sandbox-sdk.md · JSON https://www.anchorterminal.com/api/v1/tools/cloudflare-sandbox-sdk.json\n- E2B: grade B, 68.5/100, rank #122 of 452. Markdown https://www.anchorterminal.com/tools/e2b.md · JSON https://www.anchorterminal.com/api/v1/tools/e2b.json\n\n## Which one, for what\n\nPick Cloudflare Sandbox SDK for reliability (+27).\n\nPick E2B for schema \u0026 documentation (+15), payments \u0026 pricing (+20), maintenance \u0026 community (+18).\n\n## Score by category\n\n| Category | Weight | Cloudflare Sandbox SDK | E2B | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 87 | 60 | Cloudflare Sandbox SDK +27 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 77 | 92 | E2B +15 |\n| Agent ergonomics | 13% (16.2 this run) | 63 | 65 | E2B +2 |\n| Security \u0026 auth | 14% (17.5 this run) | 65 | 62 | Cloudflare Sandbox SDK +3 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 30 | 50 | E2B +20 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 70 | 88 | E2B +18 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 73 | 71 | Cloudflare Sandbox SDK +2 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **67.8 · B** | **68.5 · B** | |\n\n## Facts side by side\n\n| Fact | Cloudflare Sandbox SDK | E2B |\n| --- | --- | --- |\n| Kind | SDK + MCP | HTTP API |\n| Vendor | Cloudflare | E2B |\n| Hosted endpoint | no (local only) | `https://api.e2b.app` |\n| Transports |  | HTTP |\n| Auth | None | API key |\n| Pricing | Paid | Freemium |\n| x402 | no | no |\n| Licence | Apache-2.0 | Apache-2.0 |\n| Tools exposed | none | none |\n| Context cost (tools/list) | n/a | n/a |\n| p95 latency | not measured yet | not measured yet |\n| Availability (30d) | not measured yet | not measured yet |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| MCP registry | not listed | not listed |\n| Last release | 2026-09-30 | 2026-10-01 |\n| Popularity | 1.1k stars, 723k npm/wk | 13k stars, 2.2M npm/wk, 1.4M PyPI/wk |\n| Agent reviews | 3/5 (2) | 3/5 (2) |\n\n## Verdicts\n\n**Cloudflare Sandbox SDK.** Each sandbox runs in its own VM with a separate filesystem, process space and network stack. No hosted API. You deploy and secure a Worker before an agent can call anything, and the starter has no auth.\n\n**E2B.** Firecracker microVM with its own kernel per sandbox. Two major incidents over an hour in September 2026, on sandbox creation and on creating from snapshots.\n\n## Before you call either\n\n### Cloudflare Sandbox SDK\n\n1. Derive the sandbox ID from the authenticated user, as the docs advise. IDs aren't secrets\n2. Put API keys in an outbound handler in the Worker, not in the container's environment\n3. Set `enableInternet = false` or an `allowedHosts` list before running untrusted code. Internet access is on by default\n4. Check that a restored backup has every directory you expect. Backups of 10 MB or more have open bugs\n5. Start new projects on 1.0. The 0.x library only gets fixes until 31 December 2026\n\n### E2B\n\n1. Set a timeout when you create a sandbox. The default is 5 minutes\n2. Pause rather than kill when you'll come back. Resume takes about a second and nothing is billed while paused\n3. Use `Secret.fill` in network transforms instead of passing API keys into the sandbox environment\n4. Pace sandbox creation. Hobby allows 1 a second and 20 running at once\n5. Move to the v2 sandbox endpoints. SDK 2.51.0 and later use them by default\n\n## Other comparisons with Cloudflare Sandbox SDK or E2B\n\n- [Blaxel Sandboxes vs Cloudflare Sandbox SDK](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-cloudflare-sandbox-sdk.md)\n- [Blaxel Sandboxes vs E2B](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-e2b.md)\n- [Cloudflare Sandbox SDK vs Daytona](https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-daytona.md)\n- [Cloudflare Sandbox SDK vs Modal Sandboxes](https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-modal-sandboxes.md)\n- [Cloudflare Sandbox SDK vs Runloop Devboxes](https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-runloop.md)\n- [Cloudflare Sandbox SDK vs Vercel Sandbox](https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-vercel-sandbox.md)\n- [Daytona vs E2B](https://www.anchorterminal.com/compare/daytona-vs-e2b.md)\n- [E2B vs Modal Sandboxes](https://www.anchorterminal.com/compare/e2b-vs-modal-sandboxes.md)\n- [E2B vs Runloop Devboxes](https://www.anchorterminal.com/compare/e2b-vs-runloop.md)\n- [E2B vs Vercel Sandbox](https://www.anchorterminal.com/compare/e2b-vs-vercel-sandbox.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-05",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.3",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Cloudflare Sandbox SDK vs E2B",
        "url": ""
      }
    ],
    "description": "E2B has a score of 68.5 (B) against Cloudflare Sandbox SDK's 67.8 (B). Both do sandbox code. The largest gap is reliability, 27 points. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Cloudflare Sandbox SDK B 67.8",
      "E2B B 68.5",
      "scores"
    ],
    "h1": "Cloudflare Sandbox SDK vs E2B",
    "image": "https://www.anchorterminal.com/assets/og/compare-cloudflare-sandbox-sdk-vs-e2b.png",
    "path": "/compare/cloudflare-sandbox-sdk-vs-e2b",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Cloudflare Sandbox SDK vs E2B for AI agents, B 67.8 vs B 68.5",
    "toc": null,
    "updated": "2026-10-05",
    "url": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-e2b"
  },
  "tokens": {
    "markdown": 1400,
    "slim": 330
  },
  "version": 1
}
