Head to head · Sandbox code · October 2026 research run
Freestyle vs Microsoft Execution Containers
Microsoft Execution Containers scores 76.3 (BB) on agent readiness against Freestyle's 58.5 (C), and leads in 6 of 7 scored categories. Freestyle leads on schema & documentation. Both do sandbox code.
Which one, for what
Good for Suited to long-running agent work that needs a full Linux VM, memory-preserving pause, snapshots to branch from and private networking.
Ahead on
- Schema & documentation, 86 against 81
Also in its favour
- A hosted endpoint, with nothing to install
Watch for
No terms of service or service agreement found on the site, and the privacy policy covers the website only
Microsoft Execution Containers BB
Good for A developer building an agent or tool host that must run model-written code on the user's own machine, above all on Windows, where it reaches Microsoft's process and session isolation.
Ahead on
- Reliability, 81 against 43
- Agent ergonomics, 74 against 69
- Security & auth, 69 against 53
- Payments & pricing, 60 against 45
- Maintenance & community, 92 against 71
- Transparency & trust, 83 against 41
Also in its favour
- Agent-ready, a grade of BB or better
- No key needed to call it
- Open source
Watch for
1.0.0 shipped on 6 October 2026, and the Node changelog still lists the V1 changes under Unreleased
Score by category
| Category | Weight this run | Freestyle | Microsoft Execution Containers | Edge |
|---|---|---|---|---|
| Reliability | 16%20 | 43 | 81 | Microsoft Execution Containers +38 |
| Performance | 10%pending | pending | pending | not scored in this run |
| Schema & documentation | 13%16.2 | 86 | 81 | Freestyle +5 |
| Agent ergonomics | 13%16.2 | 69 | 74 | Microsoft Execution Containers +5 |
| Security & auth | 14%17.5 | 53 | 69 | Microsoft Execution Containers +16 |
| Payments & pricing | 10%12.5 | 45 | 60 | Microsoft Execution Containers +15 |
| Task success | 10%pending | pending | pending | not scored in this run |
| Maintenance & community | 7%8.8 | 71 | 92 | Microsoft Execution Containers +21 |
| Transparency & trust | 7%8.8 | 41 | 83 | Microsoft Execution Containers +42 |
| Negative events | ≤15 | 0 | 0 | |
| Total | 58.5 · C | 76.3 · BB |
Facts side by side
| Fact | Freestyle | Microsoft Execution Containers |
|---|---|---|
| Kind | HTTP API | SDK + MCP |
| Vendor | Freestyle Cloud Inc. | Microsoft |
| Hosted endpoint | https://api.freestyle.sh/v5 | no (local only) |
| Transports | HTTP | |
| Auth | API key | None |
| Pricing | Freemium | Free |
| x402 | no | no |
| Licence | Proprietary service with no published terms of service found. The freestyle SDK and CLI package on npm is MIT | MIT |
| Read-only variant documented | no | yes |
| llms.txt | yes | no |
| Last release | 2026-09-27 | 2026-10-06 |
| Terms last updated | no document linked | no document linked |
| Privacy policy last updated | no document linked | couldn't be read |
| Customer content may train models | ||
| Terms restrict automated access | ||
| Terms restrict benchmarking | ||
| Terms or service can change without notice | ||
| Arbitration or class-action waiver | ||
| Popularity | 72k npm/wk | 1.5k stars, 472k npm/wk |
Verdicts
Freestyle
A public OpenAPI 3.1 file describes 88 operations with a stable error code on every failure, and per-VM identity tokens keep the team API key away from end users. No terms of service, product privacy policy, request rate limit or incident history was found, and the only SDK is TypeScript.
Microsoft Execution Containers
MXC puts nine operating-system sandbox backends behind one typed request, with network access denied by default and a JSON Schema for the stable 1.0.0 contract. Version 1.0.0 is two days old as of 8 October 2026. Enforcement varies by backend, and isolation_session cannot restrict networking at all.
Before you call either
Freestyle
- Send a
firewallobject on everyPOST /v5/vms. It is required, and a VM with no rules has no outbound internet - Ask the owner to run
freestyle loginin a browser once, then mint a key withfreestyle tokens create --output json - Do not retry an exec that answers 409
VM_NON_RESPONSIVE. The command may already have run - Keep
exec-awaitunder its 300,000 ms cap and use a PTY session orx-freestyle-background-after-secsfor longer work - Call the
/v5paths. The unversioned duplicates in the OpenAPI file are marked deprecated
Microsoft Execution Containers
- Import from
@microsoft/mxc-sdk/v1. The package root exports nothing. - Call
getPlatformSupport()first and stop ifisSupportedis false.getAvailableBackends()is advisory and launch-time validation still applies. - Set
network.egress.defaulttoallowonly when the task needs it. Omitted network policy resolves to deny in every direction. - Never pass
--auditto an executor for untrusted code. It turns off all sandbox security for the workload. - Read
ExecutionResult.warningsafter each run. Security warnings arrive there and are not written to stdout or stderr.
Questions
Which is better for AI agents, Freestyle or Microsoft Execution Containers?
Microsoft Execution Containers scores 76.3 (BB) on agent readiness against Freestyle's 58.5 (C), and leads in 6 of 7 scored categories. Freestyle leads on schema & documentation.
Can an agent call Freestyle and Microsoft Execution Containers without installing anything?
Freestyle has a hosted endpoint at https://api.freestyle.sh/v5. No hosted endpoint is listed for Microsoft Execution Containers.
Are Freestyle and Microsoft Execution Containers open source?
No open-source release is listed for Freestyle. Microsoft Execution Containers is open source (MIT).
Other comparisons with Freestyle or Microsoft Execution Containers
- Amazon Bedrock AgentCore Code Interpreter vs Freestyle
- Amazon Bedrock AgentCore Code Interpreter vs Microsoft Execution Containers
- Blaxel Sandboxes vs Freestyle
- Blaxel Sandboxes vs Microsoft Execution Containers
- Cloudflare Sandbox SDK vs Freestyle
- Cloudflare Sandbox SDK vs Microsoft Execution Containers
- Daytona vs Freestyle
- Daytona vs Microsoft Execution Containers
- Deno Sandbox vs Freestyle
- Deno Sandbox vs Microsoft Execution Containers
- E2B vs Freestyle
- E2B vs Microsoft Execution Containers
- Freestyle vs Modal Sandboxes
- Freestyle vs Morph Cloud
- Freestyle vs Runloop Devboxes
- Freestyle vs Sprites
- Freestyle vs Together Code Sandbox
- Freestyle vs Vercel Sandbox
- Microsoft Execution Containers vs Modal Sandboxes
- Microsoft Execution Containers vs Morph Cloud
- Microsoft Execution Containers vs Runloop Devboxes
- Microsoft Execution Containers vs Sprites
- Microsoft Execution Containers vs Together Code Sandbox
- Microsoft Execution Containers vs Vercel Sandbox
- Agent 37 Cloud vs Freestyle
- Agent 37 Cloud vs Microsoft Execution Containers
Machine-readable
- This page as Markdown
/compare/freestyle-vs-microsoft-execution-containers.md· slim.min.md· JSON.json(or sendAccept: text/markdown) - Each listing in full
/api/v1/tools/freestyle.json·/api/v1/tools/microsoft-execution-containers.json - From a terminal
anchor compare freestyle microsoft-execution-containers(the CLI) - Over MCP
compare_tools {"a": "freestyle", "b": "microsoft-execution-containers"}at/mcp, no key