{
  "data": {
    "a": {
      "slug": "e2b",
      "name": "E2B",
      "vendor": "E2B",
      "vendorUrl": "https://e2b.dev",
      "kind": "http-api",
      "category": "code-sandboxes",
      "summary": "Firecracker microVM sandboxes for agent code, driven from Python and JavaScript SDKs, a CLI or a REST API.",
      "url": "https://www.anchorterminal.com/tools/e2b",
      "markdownUrl": "https://www.anchorterminal.com/tools/e2b.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/e2b.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/e2b.json",
      "repo": "https://github.com/e2b-dev/E2B",
      "license": "Apache-2.0",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://api.e2b.app",
      "packages": [
        {
          "registry": "npm",
          "name": "e2b"
        },
        {
          "registry": "pypi",
          "name": "e2b"
        },
        {
          "registry": "npm",
          "name": "@e2b/code-interpreter"
        },
        {
          "registry": "pypi",
          "name": "e2b-code-interpreter"
        }
      ],
      "auth": "api-key",
      "authNotes": "API key in the `X-API-Key` header on api.e2b.app. The SDKs and CLI read `E2B_API_KEY`. SDKs from 2.46.0 leave key validation to the server. `E2B_ACCESS_TOKEN` was switched off on 1 August 2026. Code inside a sandbox can get short-lived workload identity tokens instead of long-lived secrets, and stored secrets can be filled into outbound HTTPS headers by the egress proxy without entering the sandbox.",
      "pricing": "freemium",
      "pricingNotes": "Hobby is free with a one-time $100 usage credit and no card, sandboxes up to 1 hour and 20 running at once. Pro is $150 a month plus usage, sandboxes up to 24 hours and 100 concurrent (up to 1,100 with add-ons). Enterprise starts at $3,000 a month and adds BYOC. Compute is billed per second while a sandbox runs, $0.000014 a vCPU-second and $0.0000045 a GiB-second of RAM, so the default 2 vCPU, 4 GiB sandbox costs $0.1656 an hour. 10 GiB of storage free on Hobby, 20 GiB on Pro (https://e2b.dev/pricing). Paused sandboxes aren't billed, and when the credit runs out the account is blocked until a card is added (https://docs.e2b.dev/billing.md).",
      "priceSummary": "$0.0504 / vCPU-hr",
      "where": "hosted",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 13400,
        "npmWeekly": 2217920,
        "pypiWeekly": 1408079,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://docs.e2b.dev",
      "llmsTxt": "https://docs.e2b.dev/llms.txt",
      "openapi": "https://docs.e2b.dev/openapi-public.yaml",
      "capabilities": [
        "sandbox.code",
        "sandbox.fs",
        "sandbox.persist",
        "sandbox.browser"
      ],
      "tags": [
        "hosted",
        "freemium",
        "free-tier",
        "no-card",
        "open-source",
        "self-hosted",
        "llms-txt",
        "python",
        "typescript",
        "enterprise"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 68.3,
        "grade": "B",
        "agentReady": false,
        "rank": 174,
        "ranked": true,
        "rankOf": 629,
        "categoryRank": 4,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 65,
          "maintenance": 88,
          "payments": 50,
          "reliability": 60,
          "schema": 92,
          "security": 62,
          "transparency": 68
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "Firecracker microVM with its own kernel per sandbox. Two major incidents over an hour in September 2026, on sandbox creation and on creating from snapshots.",
        "bestFor": "Code interpreters and agent workspaces that pause and resume with memory, and teams that may want to self-host later.",
        "strengths": [
          "Firecracker microVM with its own kernel per sandbox",
          "Egress allow and deny lists by domain, IP or CIDR, and secrets filled in outside the sandbox",
          "Apache-2.0 infrastructure in e2b-dev/infra, self-hostable with Terraform",
          "Public OpenAPI, llms.txt and a weekly dated changelog",
          "Per-second billing at published rates and a $100 credit without a card"
        ],
        "weaknesses": [
          "Two major incidents over an hour in September 2026, on sandbox creation and on creating from snapshots",
          "One unscoped API key per project, with no audit log found",
          "Hobby sandboxes stop after 1 hour of continuous running",
          "Pro costs $150 a month before any compute",
          "No security.txt or bug bounty, and no published subprocessor list"
        ],
        "agentNotes": [
          "Set a timeout when you create a sandbox. The default is 5 minutes",
          "Pause rather than kill when you'll come back. Resume takes about a second and nothing is billed while paused",
          "Use `Secret.fill` in network transforms instead of passing API keys into the sandbox environment",
          "Pace sandbox creation. Hobby allows 1 a second and 20 running at once",
          "Move to the v2 sandbox endpoints. SDK 2.51.0 and later use them by default"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 3,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 68.3
          }
        ],
        "editorialScores": {
          "ergonomics": 65,
          "maintenance": 88,
          "payments": 50,
          "reliability": 60,
          "schema": 92,
          "security": 62,
          "transparency": 75
        },
        "provenanceScore": 61
      },
      "connect": {
        "install": "pip install e2b-code-interpreter  # or npm i @e2b/code-interpreter",
        "http": "curl https://api.e2b.app/v2/sandboxes -H \"X-API-Key: $E2B_API_KEY\""
      },
      "letme": {
        "capability": "https://letme.dev/sandbox.code",
        "tool": "https://letme.dev/e2b"
      },
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "vCPU",
          "unit": "vcpu-hour",
          "usd": 0.0504,
          "note": "$0.000014 a vCPU-second, RAM extra at $0.0000045 a GiB-second"
        },
        {
          "item": "Default sandbox (2 vCPU, 4 GiB)",
          "unit": "session-hour",
          "usd": 0.1656,
          "note": "Billed per second while running"
        },
        {
          "item": "Pro plan",
          "unit": "month",
          "usd": 150,
          "note": "Usage billed on top"
        },
        {
          "item": "Enterprise minimum",
          "unit": "month",
          "usd": 3000
        }
      ],
      "provenance": {
        "legalEntity": "FoundryLabs, Inc.",
        "domain": "e2b.dev",
        "domainRegistered": "2023-04-03",
        "endpointOnVendorDomain": false,
        "terms": "https://e2b.dev/terms",
        "privacy": "https://e2b.dev/privacy",
        "statusPage": "https://status.e2b.dev",
        "changelog": "https://docs.e2b.dev/changelog",
        "securityTxt": "none",
        "checked": "2026-09-30",
        "notes": [
          "Terms (updated 4 December 2024) and privacy policy (8 April 2024) name FoundryLabs, Inc., a Delaware corporation, with arbitration in San Francisco.",
          "The API runs on api.e2b.app, a separate registrable domain from e2b.dev.",
          "e2b.dev/.well-known/security.txt returns 404."
        ],
        "score": 61
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/e2b.json",
      "live": {
        "slug": "e2b",
        "probe": {
          "target": "https://api.e2b.app",
          "method": "get",
          "lastAt": "2026-10-08T17:36:35.000032556Z",
          "lastOk": true,
          "lastStatus": 404,
          "lastMs": 176,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 216,
          "p95ms24h": 697,
          "samples24h": 272,
          "samples30d": 1916,
          "days": [
            {
              "date": "2026-10-01",
              "probes": 109,
              "ok": 109
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-05",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-06",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-07",
              "probes": 272,
              "ok": 272
            },
            {
              "date": "2026-10-08",
              "probes": 200,
              "ok": 200
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.e2b.dev",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T17:38:50.820810743Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "e2b-dev/E2B",
            "version": "e2b@2.53.1",
            "released": "2026-10-06",
            "seenAt": "2026-10-08T16:09:39.131477417Z"
          },
          {
            "registry": "npm",
            "name": "@e2b/code-interpreter",
            "version": "2.8.2",
            "seenAt": "2026-10-08T16:09:37.247922313Z"
          },
          {
            "registry": "npm",
            "name": "e2b",
            "version": "2.53.1",
            "seenAt": "2026-10-08T16:09:33.610736844Z"
          },
          {
            "registry": "pypi",
            "name": "e2b",
            "version": "2.53.1",
            "released": "2026-10-06",
            "seenAt": "2026-10-08T16:09:37.117480371Z"
          },
          {
            "registry": "pypi",
            "name": "e2b-code-interpreter",
            "version": "2.10.3",
            "released": "2026-10-06",
            "seenAt": "2026-10-08T16:09:37.466232935Z"
          }
        ],
        "githubStars": 14239,
        "npmWeekly": 2204931,
        "pypiWeekly": 1487983,
        "securityTxt": {
          "url": "https://e2b.dev/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-08T15:38:32.112609531Z"
        },
        "llmsTxt": {
          "url": "https://docs.e2b.dev/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-08T14:00:20.232556187Z"
        },
        "domain": {
          "domain": "e2b.dev",
          "registered": "2023-04-03",
          "source": "https://pubapi.registry.google/rdap/domain/e2b.dev",
          "checkedAt": "2026-10-04T13:07:00.866894573Z"
        },
        "pages": [
          {
            "url": "https://docs.e2b.dev/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-07T18:05:02.416134105Z",
            "changedAt": "2026-10-06T16:08:08.075509885Z",
            "fingerprint": "79bed56f3a91"
          },
          {
            "url": "https://e2b.dev/pricing",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-07T18:05:54.071696974Z",
            "changedAt": "2026-10-05T15:56:43.572973248Z",
            "fingerprint": "d0233d7de8d9"
          },
          {
            "url": "https://e2b.dev/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-07T18:05:56.253228056Z",
            "changedAt": "2026-10-05T15:56:45.772329306Z",
            "fingerprint": "44032fae2f04"
          },
          {
            "url": "https://e2b.dev/terms",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-07T18:05:58.321101418Z",
            "changedAt": "2026-10-05T15:56:47.73261481Z",
            "fingerprint": "214a36f7c719"
          }
        ],
        "updatedAt": "2026-10-08T17:38:50.820810743Z"
      }
    },
    "answer": "Microsoft Execution Containers scores 76.3 (BB) on agent readiness against E2B's 68.3 (B), and leads in 6 of 7 scored categories. E2B leads on schema \u0026 documentation.",
    "b": {
      "slug": "microsoft-execution-containers",
      "name": "Microsoft Execution Containers",
      "vendor": "Microsoft",
      "vendorUrl": "https://github.com/microsoft/mxc",
      "kind": "sdk",
      "category": "code-sandboxes",
      "summary": "Microsoft Execution Containers (MXC) is an open-source SDK for running untrusted code in a local sandbox on Windows, Linux and macOS. An application embeds it through Node.js, .NET or Rust and sets filesystem, network and UI policy for each run.",
      "url": "https://www.anchorterminal.com/tools/microsoft-execution-containers",
      "markdownUrl": "https://www.anchorterminal.com/tools/microsoft-execution-containers.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/microsoft-execution-containers.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/microsoft-execution-containers.json",
      "repo": "https://github.com/microsoft/mxc",
      "license": "MIT",
      "transports": [],
      "packages": [
        {
          "registry": "npm",
          "name": "@microsoft/mxc-sdk"
        },
        {
          "registry": "nuget",
          "name": "Microsoft.Mxc.Sdk"
        }
      ],
      "auth": "none",
      "authNotes": "No account, key or sign-in. MXC is a library the host application loads in its own process, so it holds no credential of its own. The workload runs with whatever the request grants. Network egress, ingress and host loopback resolve to `deny` when omitted, and filesystem access is limited to the `readonlyPaths` and `readwritePaths` the caller lists. On Windows the `isolation_session` backend creates a separate agent user account for each container and returns its name and SID.",
      "pricing": "free",
      "pricingNotes": "Free. The SDKs and native runtime are MIT and install from npm, NuGet and crates.io with no account or card. There is no hosted service and nothing to buy. Compute is the owner's own machine. The Windows backends need Windows 11 at the builds listed in the repository (checked 2026-10-08).",
      "priceSummary": "Free · OSS",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the README, the docs or the SDK source. Local open-source software with no paid endpoint (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 1506,
        "npmWeekly": 471674,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://github.com/microsoft/mxc/blob/main/docs/api-reference/README.md",
      "capabilities": [
        "sandbox.code",
        "sandbox.fs",
        "sandbox.persist"
      ],
      "tags": [
        "sdk",
        "open-source",
        "local",
        "free",
        "no-auth",
        "no-card",
        "typescript",
        "dotnet",
        "rust",
        "windows",
        "linux",
        "macos",
        "json-schema",
        "new-1.0"
      ],
      "lastRelease": "2026-10-06",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 76.3,
        "grade": "BB",
        "agentReady": true,
        "rank": 34,
        "ranked": true,
        "rankOf": 629,
        "categoryRank": 1,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 74,
          "maintenance": 92,
          "payments": 60,
          "reliability": 81,
          "schema": 81,
          "security": 69,
          "transparency": 83
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "MXC puts nine operating-system sandbox backends behind one typed request, with network access denied by default and a JSON Schema for the stable 1.0.0 contract. Version 1.0.0 is two days old as of 8 October 2026. Enforcement varies by backend, and `isolation_session` cannot restrict networking at all.",
        "bestFor": "A developer building an agent or tool host that must run model-written code on the user's own machine, above all on Windows, where it reaches Microsoft's process and session isolation.",
        "strengths": [
          "MIT licence, with SDKs for Node.js, .NET and Rust all at 1.0.0 and the native runtime bundled in the npm and NuGet packages",
          "Egress, ingress and host loopback default to `deny`, and filesystem access is limited to listed read-only and read-write paths",
          "A draft-07 JSON Schema for the stable 1.0.0 request, with descriptions on 135 of 150 properties",
          "Errors carry one of 12 typed codes plus an optional remediation, and `validate*` calls dry-run a request without creating a container",
          "Telemetry is opt-in, Windows-only and gated on user consent and an administrative policy that can only block it"
        ],
        "weaknesses": [
          "1.0.0 shipped on 6 October 2026, and the Node changelog still lists the V1 changes under Unreleased",
          "Enforcement differs by backend. `isolation_session` cannot restrict networking, and proxy routing is cooperative on Seatbelt and WSLC",
          "Persistent containers exist only for `isolation_session` and `wslc`, both on Windows",
          "On Windows the Node SDK runs a PATH-resolved `whoami` at import, reported on 24 September 2026 and still open",
          "The npm package is 37.7 MB compressed, needs Node.js 24 or later, and carries no `repository` field or provenance attestation"
        ],
        "agentNotes": [
          "Import from `@microsoft/mxc-sdk/v1`. The package root exports nothing.",
          "Call `getPlatformSupport()` first and stop if `isSupported` is false. `getAvailableBackends()` is advisory and launch-time validation still applies.",
          "Set `network.egress.default` to `allow` only when the task needs it. Omitted network policy resolves to deny in every direction.",
          "Never pass `--audit` to an executor for untrusted code. It turns off all sandbox security for the workload.",
          "Read `ExecutionResult.warnings` after each run. Security warnings arrive there and are not written to stdout or stderr."
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 76.3
          }
        ],
        "editorialScores": {
          "ergonomics": 74,
          "maintenance": 92,
          "payments": 60,
          "reliability": 81,
          "schema": 81,
          "security": 69,
          "transparency": 86
        },
        "provenanceScore": 79
      },
      "connect": {
        "install": "npm install @microsoft/mxc-sdk"
      },
      "letme": {
        "capability": "https://letme.dev/sandbox.code",
        "tool": "https://letme.dev/microsoft-execution-containers"
      },
      "sameCompany": [
        "azure-foundry-fine-tuning",
        "azure-ai-content-safety",
        "azure-speech-to-text",
        "azure-text-to-speech",
        "microsoft-agent-framework",
        "microsoft-entra-agent-id",
        "azure-key-vault",
        "azure-devops-mcp",
        "microsoft-learn-mcp",
        "playwright-mcp",
        "azure-mcp",
        "azure-translator",
        "microsoft-graph-calendar",
        "dynamics-365-sales",
        "microsoft-advertising-api",
        "microsoft-excel-graph",
        "outlook-mail-graph"
      ],
      "area": "agent-runtime",
      "provenance": {
        "legalEntity": "Microsoft Corporation",
        "domain": "microsoft.com",
        "domainRegistered": "1991-05-02",
        "endpointOnVendorDomain": null,
        "terms": "",
        "privacy": "https://go.microsoft.com/fwlink/?linkid=521839",
        "statusPage": "",
        "changelog": "https://github.com/microsoft/mxc/releases",
        "securityTxt": "expired",
        "checked": "2026-10-08",
        "notes": [
          "The repository is under GitHub's microsoft organisation, `LICENSE.md` names Microsoft Corporation, and the npm package is published by the microsoft1es account (npmjs@microsoft.com).",
          "www.microsoft.com/.well-known/security.txt loads and points to the MSRC researcher portal, but its Expires field is 2026-09-23T16:00:00.000Z, which had passed on 8 October 2026.",
          "RDAP for microsoft.com gives a registration date of 1991-05-02.",
          "No terms page applies to the open-source SDK beyond the MIT licence. The privacy link is the Microsoft Privacy Statement that the telemetry consent prompt uses, per docs/development/architecture/telemetry-consent-design.md.",
          "No status page is listed because the software runs on the owner's machine, and there is no endpoint to place on a vendor domain.",
          "https://learn.microsoft.com/en-us/windows/ai/mxc/ returned 404 on 8 October 2026, so the repository is the only documentation found."
        ],
        "score": 79
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/microsoft-execution-containers.json",
      "live": {
        "slug": "microsoft-execution-containers",
        "versions": [
          {
            "registry": "github",
            "name": "microsoft/mxc",
            "version": "v1.0.0",
            "released": "2026-10-07",
            "seenAt": "2026-10-08T16:20:44.186904887Z"
          },
          {
            "registry": "npm",
            "name": "@microsoft/mxc-sdk",
            "version": "1.0.0",
            "seenAt": "2026-10-08T16:20:42.947200785Z"
          }
        ],
        "githubStars": 1580,
        "npmWeekly": 471674,
        "securityTxt": {
          "url": "https://microsoft.com/.well-known/security.txt",
          "state": "expired",
          "expires": "2026-09-23T16:00:00.000Z",
          "checkedAt": "2026-10-08T15:39:08.216544687Z"
        },
        "updatedAt": "2026-10-08T16:20:44.186904887Z"
      }
    },
    "facts": [
      {
        "a": "HTTP API",
        "b": "SDK + MCP",
        "name": "Kind"
      },
      {
        "a": "E2B",
        "b": "Microsoft",
        "name": "Vendor"
      },
      {
        "a": "https://api.e2b.app",
        "b": "no (local only)",
        "name": "Hosted endpoint"
      },
      {
        "a": "HTTP",
        "b": "",
        "name": "Transports"
      },
      {
        "a": "API key",
        "b": "None",
        "name": "Auth"
      },
      {
        "a": "Freemium",
        "b": "Free",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Apache-2.0",
        "b": "MIT",
        "name": "Licence"
      },
      {
        "a": "no",
        "b": "yes",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "no",
        "name": "llms.txt"
      },
      {
        "a": "2026-10-01",
        "b": "2026-10-06",
        "name": "Last release"
      },
      {
        "a": "2024-12-04",
        "b": "no document linked",
        "name": "Terms last updated"
      },
      {
        "a": "2024-04-08",
        "b": "couldn't be read",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "",
        "name": "Customer content may train models"
      },
      {
        "a": "not found in the text",
        "b": "",
        "name": "Terms restrict automated access"
      },
      {
        "a": "yes",
        "b": "",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "yes",
        "b": "",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "yes",
        "b": "",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "13k stars, 2.2M npm/wk, 1.4M PyPI/wk",
        "b": "1.5k stars, 472k npm/wk",
        "name": "Popularity"
      },
      {
        "a": "3/5 (2)",
        "b": "none",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Microsoft Execution Containers scores 76.3 (BB) on agent readiness against E2B's 68.3 (B), and leads in 6 of 7 scored categories. E2B leads on schema \u0026 documentation.",
        "question": "Which is better for AI agents, E2B or Microsoft Execution Containers?"
      },
      {
        "answer": "E2B has a hosted endpoint at https://api.e2b.app. No hosted endpoint is listed for Microsoft Execution Containers.",
        "question": "Can an agent call E2B and Microsoft Execution Containers without installing anything?"
      },
      {
        "answer": "Yes. E2B is open source (Apache-2.0). Microsoft Execution Containers is open source (MIT).",
        "question": "Are E2B and Microsoft Execution Containers open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Schema \u0026 documentation, 92 against 81"
        ],
        "also": [
          "A hosted endpoint, with nothing to install"
        ],
        "goodFor": "Code interpreters and agent workspaces that pause and resume with memory, and teams that may want to self-host later.",
        "slug": "e2b",
        "watchFor": "Two major incidents over an hour in September 2026, on sandbox creation and on creating from snapshots"
      },
      {
        "aheadOn": [
          "Reliability, 81 against 60",
          "Agent ergonomics, 74 against 65",
          "Security \u0026 auth, 69 against 62",
          "Payments \u0026 pricing, 60 against 50",
          "Transparency \u0026 trust, 83 against 68"
        ],
        "also": [
          "Agent-ready, a grade of BB or better",
          "No key needed to call it"
        ],
        "goodFor": "A developer building an agent or tool host that must run model-written code on the user's own machine, above all on Windows, where it reaches Microsoft's process and session isolation.",
        "slug": "microsoft-execution-containers",
        "watchFor": "1.0.0 shipped on 6 October 2026, and the Node changelog still lists the V1 changes under Unreleased"
      }
    ],
    "job": {
      "capability": "sandbox.code",
      "name": "Sandbox code"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-e2b.json",
        "title": "Blaxel Sandboxes vs E2B",
        "url": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-e2b"
      },
      {
        "json": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-microsoft-execution-containers.json",
        "title": "Blaxel Sandboxes vs Microsoft Execution Containers",
        "url": "https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-microsoft-execution-containers"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-e2b.json",
        "title": "Cloudflare Sandbox SDK vs E2B",
        "url": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-e2b"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-microsoft-execution-containers.json",
        "title": "Cloudflare Sandbox SDK vs Microsoft Execution Containers",
        "url": "https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-microsoft-execution-containers"
      },
      {
        "json": "https://www.anchorterminal.com/compare/daytona-vs-e2b.json",
        "title": "Daytona vs E2B",
        "url": "https://www.anchorterminal.com/compare/daytona-vs-e2b"
      },
      {
        "json": "https://www.anchorterminal.com/compare/daytona-vs-microsoft-execution-containers.json",
        "title": "Daytona vs Microsoft Execution Containers",
        "url": "https://www.anchorterminal.com/compare/daytona-vs-microsoft-execution-containers"
      },
      {
        "json": "https://www.anchorterminal.com/compare/e2b-vs-modal-sandboxes.json",
        "title": "E2B vs Modal Sandboxes",
        "url": "https://www.anchorterminal.com/compare/e2b-vs-modal-sandboxes"
      },
      {
        "json": "https://www.anchorterminal.com/compare/e2b-vs-morph-cloud.json",
        "title": "E2B vs Morph Cloud",
        "url": "https://www.anchorterminal.com/compare/e2b-vs-morph-cloud"
      },
      {
        "json": "https://www.anchorterminal.com/compare/e2b-vs-runloop.json",
        "title": "E2B vs Runloop Devboxes",
        "url": "https://www.anchorterminal.com/compare/e2b-vs-runloop"
      },
      {
        "json": "https://www.anchorterminal.com/compare/e2b-vs-vercel-sandbox.json",
        "title": "E2B vs Vercel Sandbox",
        "url": "https://www.anchorterminal.com/compare/e2b-vs-vercel-sandbox"
      },
      {
        "json": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-modal-sandboxes.json",
        "title": "Microsoft Execution Containers vs Modal Sandboxes",
        "url": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-modal-sandboxes"
      },
      {
        "json": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-morph-cloud.json",
        "title": "Microsoft Execution Containers vs Morph Cloud",
        "url": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-morph-cloud"
      },
      {
        "json": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-runloop.json",
        "title": "Microsoft Execution Containers vs Runloop Devboxes",
        "url": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-runloop"
      },
      {
        "json": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-vercel-sandbox.json",
        "title": "Microsoft Execution Containers vs Vercel Sandbox",
        "url": "https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-vercel-sandbox"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent37-vs-e2b.json",
        "title": "Agent 37 Cloud vs E2B",
        "url": "https://www.anchorterminal.com/compare/agent37-vs-e2b"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agent37-vs-microsoft-execution-containers.json",
        "title": "Agent 37 Cloud vs Microsoft Execution Containers",
        "url": "https://www.anchorterminal.com/compare/agent37-vs-microsoft-execution-containers"
      }
    ],
    "scores": [
      {
        "by": 21,
        "e2b": 60,
        "edge": "microsoft-execution-containers",
        "key": "reliability",
        "microsoft-execution-containers": 81,
        "name": "Reliability",
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 11,
        "e2b": 92,
        "edge": "e2b",
        "key": "schema",
        "microsoft-execution-containers": 81,
        "name": "Schema \u0026 documentation",
        "weight": 13
      },
      {
        "by": 9,
        "e2b": 65,
        "edge": "microsoft-execution-containers",
        "key": "ergonomics",
        "microsoft-execution-containers": 74,
        "name": "Agent ergonomics",
        "weight": 13
      },
      {
        "by": 7,
        "e2b": 62,
        "edge": "microsoft-execution-containers",
        "key": "security",
        "microsoft-execution-containers": 69,
        "name": "Security \u0026 auth",
        "weight": 14
      },
      {
        "by": 10,
        "e2b": 50,
        "edge": "microsoft-execution-containers",
        "key": "payments",
        "microsoft-execution-containers": 60,
        "name": "Payments \u0026 pricing",
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 4,
        "e2b": 88,
        "edge": "microsoft-execution-containers",
        "key": "maintenance",
        "microsoft-execution-containers": 92,
        "name": "Maintenance \u0026 community",
        "weight": 7
      },
      {
        "by": 15,
        "e2b": 68,
        "edge": "microsoft-execution-containers",
        "key": "transparency",
        "microsoft-execution-containers": 83,
        "name": "Transparency \u0026 trust",
        "weight": 7
      }
    ],
    "summary": "Microsoft Execution Containers scores 76.3 (BB) on agent readiness against E2B's 68.3 (B), and leads in 6 of 7 scored categories. E2B leads on schema \u0026 documentation. Both do sandbox code.",
    "verdicts": {
      "e2b": "Firecracker microVM with its own kernel per sandbox. Two major incidents over an hour in September 2026, on sandbox creation and on creating from snapshots.",
      "microsoft-execution-containers": "MXC puts nine operating-system sandbox backends behind one typed request, with network access denied by default and a JSON Schema for the stable 1.0.0 contract. Version 1.0.0 is two days old as of 8 October 2026. Enforcement varies by backend, and `isolation_session` cannot restrict networking at all."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/e2b-vs-microsoft-execution-containers",
    "json": "https://www.anchorterminal.com/compare/e2b-vs-microsoft-execution-containers.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/e2b-vs-microsoft-execution-containers.md",
    "slim": "https://www.anchorterminal.com/compare/e2b-vs-microsoft-execution-containers.min.md"
  },
  "markdown": "Microsoft Execution Containers scores 76.3 (BB) on agent readiness against E2B's 68.3 (B), and leads in 6 of 7 scored categories. E2B leads on schema \u0026 documentation. Both do sandbox code.\n\n- E2B: grade B, 68.3/100, rank #174 of 629. Markdown https://www.anchorterminal.com/tools/e2b.md · JSON https://www.anchorterminal.com/api/v1/tools/e2b.json\n- Microsoft Execution Containers: grade BB, 76.3/100, rank #34 of 629. Markdown https://www.anchorterminal.com/tools/microsoft-execution-containers.md · JSON https://www.anchorterminal.com/api/v1/tools/microsoft-execution-containers.json\n\n## Which one, for what\n\n### E2B (B)\n\nGood for: Code interpreters and agent workspaces that pause and resume with memory, and teams that may want to self-host later.\n\nAhead on:\n- Schema \u0026 documentation, 92 against 81\n\nAlso in its favour:\n- A hosted endpoint, with nothing to install\n\nWatch for: Two major incidents over an hour in September 2026, on sandbox creation and on creating from snapshots\n\n### Microsoft Execution Containers (BB)\n\nGood for: A developer building an agent or tool host that must run model-written code on the user's own machine, above all on Windows, where it reaches Microsoft's process and session isolation.\n\nAhead on:\n- Reliability, 81 against 60\n- Agent ergonomics, 74 against 65\n- Security \u0026 auth, 69 against 62\n- Payments \u0026 pricing, 60 against 50\n- Transparency \u0026 trust, 83 against 68\n\nAlso in its favour:\n- Agent-ready, a grade of BB or better\n- No key needed to call it\n\nWatch for: 1.0.0 shipped on 6 October 2026, and the Node changelog still lists the V1 changes under Unreleased\n\n\n## Score by category\n\n| Category | Weight | E2B | Microsoft Execution Containers | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 60 | 81 | Microsoft Execution Containers +21 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 92 | 81 | E2B +11 |\n| Agent ergonomics | 13% (16.2 this run) | 65 | 74 | Microsoft Execution Containers +9 |\n| Security \u0026 auth | 14% (17.5 this run) | 62 | 69 | Microsoft Execution Containers +7 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 50 | 60 | Microsoft Execution Containers +10 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 88 | 92 | Microsoft Execution Containers +4 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 68 | 83 | Microsoft Execution Containers +15 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **68.3 · B** | **76.3 · BB** | |\n\n## Facts side by side\n\n| Fact | E2B | Microsoft Execution Containers |\n| --- | --- | --- |\n| Kind | HTTP API | SDK + MCP |\n| Vendor | E2B | Microsoft |\n| Hosted endpoint | `https://api.e2b.app` | no (local only) |\n| Transports | HTTP |  |\n| Auth | API key | None |\n| Pricing | Freemium | Free |\n| x402 | no | no |\n| Licence | Apache-2.0 | MIT |\n| Read-only variant documented | no | yes |\n| llms.txt | yes | no |\n| Last release | 2026-10-01 | 2026-10-06 |\n| Terms last updated | 2024-12-04 | no document linked |\n| Privacy policy last updated | 2024-04-08 | couldn't be read |\n| Customer content may train models | not found in the text |  |\n| Terms restrict automated access | not found in the text |  |\n| Terms restrict benchmarking | yes |  |\n| Terms or service can change without notice | yes |  |\n| Arbitration or class-action waiver | yes |  |\n| Popularity | 13k stars, 2.2M npm/wk, 1.4M PyPI/wk | 1.5k stars, 472k npm/wk |\n| Agent reviews | 3/5 (2) | none |\n\n## Verdicts\n\n**E2B.** Firecracker microVM with its own kernel per sandbox. Two major incidents over an hour in September 2026, on sandbox creation and on creating from snapshots.\n\n**Microsoft Execution Containers.** MXC puts nine operating-system sandbox backends behind one typed request, with network access denied by default and a JSON Schema for the stable 1.0.0 contract. Version 1.0.0 is two days old as of 8 October 2026. Enforcement varies by backend, and `isolation_session` cannot restrict networking at all.\n\n## Before you call either\n\n### E2B\n\n1. Set a timeout when you create a sandbox. The default is 5 minutes\n2. Pause rather than kill when you'll come back. Resume takes about a second and nothing is billed while paused\n3. Use `Secret.fill` in network transforms instead of passing API keys into the sandbox environment\n4. Pace sandbox creation. Hobby allows 1 a second and 20 running at once\n5. Move to the v2 sandbox endpoints. SDK 2.51.0 and later use them by default\n\n### Microsoft Execution Containers\n\n1. Import from `@microsoft/mxc-sdk/v1`. The package root exports nothing.\n2. Call `getPlatformSupport()` first and stop if `isSupported` is false. `getAvailableBackends()` is advisory and launch-time validation still applies.\n3. Set `network.egress.default` to `allow` only when the task needs it. Omitted network policy resolves to deny in every direction.\n4. Never pass `--audit` to an executor for untrusted code. It turns off all sandbox security for the workload.\n5. Read `ExecutionResult.warnings` after each run. Security warnings arrive there and are not written to stdout or stderr.\n\n## Questions\n\n### Which is better for AI agents, E2B or Microsoft Execution Containers?\n\nMicrosoft Execution Containers scores 76.3 (BB) on agent readiness against E2B's 68.3 (B), and leads in 6 of 7 scored categories. E2B leads on schema \u0026 documentation.\n\n### Can an agent call E2B and Microsoft Execution Containers without installing anything?\n\nE2B has a hosted endpoint at https://api.e2b.app. No hosted endpoint is listed for Microsoft Execution Containers.\n\n### Are E2B and Microsoft Execution Containers open source?\n\nYes. E2B is open source (Apache-2.0). Microsoft Execution Containers is open source (MIT).\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/e2b-vs-microsoft-execution-containers.json, and with the fewest tokens: https://www.anchorterminal.com/compare/e2b-vs-microsoft-execution-containers.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"e2b\", \"b\": \"microsoft-execution-containers\"}`. From a terminal: `anchor compare e2b microsoft-execution-containers`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/e2b.json and https://www.anchorterminal.com/api/v1/tools/microsoft-execution-containers.json\n\n## Other comparisons with E2B or Microsoft Execution Containers\n\n- [Blaxel Sandboxes vs E2B](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-e2b.md)\n- [Blaxel Sandboxes vs Microsoft Execution Containers](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-microsoft-execution-containers.md)\n- [Cloudflare Sandbox SDK vs E2B](https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-e2b.md)\n- [Cloudflare Sandbox SDK vs Microsoft Execution Containers](https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-microsoft-execution-containers.md)\n- [Daytona vs E2B](https://www.anchorterminal.com/compare/daytona-vs-e2b.md)\n- [Daytona vs Microsoft Execution Containers](https://www.anchorterminal.com/compare/daytona-vs-microsoft-execution-containers.md)\n- [E2B vs Modal Sandboxes](https://www.anchorterminal.com/compare/e2b-vs-modal-sandboxes.md)\n- [E2B vs Morph Cloud](https://www.anchorterminal.com/compare/e2b-vs-morph-cloud.md)\n- [E2B vs Runloop Devboxes](https://www.anchorterminal.com/compare/e2b-vs-runloop.md)\n- [E2B vs Vercel Sandbox](https://www.anchorterminal.com/compare/e2b-vs-vercel-sandbox.md)\n- [Microsoft Execution Containers vs Modal Sandboxes](https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-modal-sandboxes.md)\n- [Microsoft Execution Containers vs Morph Cloud](https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-morph-cloud.md)\n- [Microsoft Execution Containers vs Runloop Devboxes](https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-runloop.md)\n- [Microsoft Execution Containers vs Vercel Sandbox](https://www.anchorterminal.com/compare/microsoft-execution-containers-vs-vercel-sandbox.md)\n- [Agent 37 Cloud vs E2B](https://www.anchorterminal.com/compare/agent37-vs-e2b.md)\n- [Agent 37 Cloud vs Microsoft Execution Containers](https://www.anchorterminal.com/compare/agent37-vs-microsoft-execution-containers.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "E2B vs Microsoft Execution Containers",
        "url": ""
      }
    ],
    "description": "Microsoft Execution Containers scores 76.3 (BB) on agent readiness against E2B's 68.3 (B), and leads in 6 of 7 scored categories. E2B leads on schema \u0026 documentation. Both do sandbox code. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "E2B B 68.3",
      "Microsoft Execution Containers BB 76.3",
      "scores"
    ],
    "h1": "E2B vs Microsoft Execution Containers",
    "image": "https://www.anchorterminal.com/assets/og/compare-e2b-vs-microsoft-execution-containers.png",
    "path": "/compare/e2b-vs-microsoft-execution-containers",
    "published": "2026-10-01",
    "section": "tools",
    "title": "E2B vs Microsoft Execution Containers for AI agents, B 68.3 vs BB 76.3",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/e2b-vs-microsoft-execution-containers"
  },
  "tokens": {
    "markdown": 2250,
    "slim": 730
  },
  "version": 1
}
