Head to head · Sandbox code · October 2026 research run

Microsoft Execution Containers vs Modal Sandboxes

Microsoft Execution Containers and Modal Sandboxes score within a point of each other on agent readiness, 76.3 (BB) and 75.5 (BB). Modal Sandboxes leads on reliability and security & auth. Both do sandbox code.

Which one, for what

Microsoft Execution Containers BB

Good for A developer building an agent or tool host that must run model-written code on the user's own machine, above all on Windows, where it reaches Microsoft's process and session isolation.

Ahead on

  • Agent ergonomics, 74 against 67
  • Payments & pricing, 60 against 40
  • Transparency & trust, 83 against 72

Also in its favour

  • No key needed to call it
  • Free to start without a card
  • Open source

Watch for

1.0.0 shipped on 6 October 2026, and the Node changelog still lists the V1 changes under Unreleased

Modal Sandboxes BB

Good for GPU work inside a sandbox, or agents already running on Modal.

Ahead on

  • Reliability, 95 against 81
  • Security & auth, 76 against 69

Watch for

No REST API, and the JavaScript and Go SDKs are beta

Score by category

CategoryWeight this runMicrosoft Execution ContainersModal SandboxesEdge
Reliability16%208195Modal Sandboxes +14
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.28179Microsoft Execution Containers +2
Agent ergonomics13%16.27467Microsoft Execution Containers +7
Security & auth14%17.56976Modal Sandboxes +7
Payments & pricing10%12.56040Microsoft Execution Containers +20
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.89293Modal Sandboxes +1
Transparency & trust7%8.88372Microsoft Execution Containers +11
Negative events≤1500
Total76.3 · BB75.5 · BB

Facts side by side

FactMicrosoft Execution ContainersModal Sandboxes
KindSDK + MCPSDK + MCP
VendorMicrosoftModal
Hosted endpointno (local only)no (local only)
Transports
AuthNoneAPI key
PricingFreeFreemium
x402nono
LicenceMITApache-2.0
Read-only variant documentedyesno
llms.txtnoyes
Last release2026-10-062026-09-28
Terms last updatedno document linked2026-05-01
Privacy policy last updatedcouldn't be read2023-05-17
Customer content may train modelsnot found in the text
Terms restrict automated accessnot found in the text
Terms restrict benchmarkingnot found in the text
Terms or service can change without noticenot found in the text
Arbitration or class-action waivernot found in the text
Popularity1.5k stars, 472k npm/wk514 stars, 941k npm/wk, 10.1M PyPI/wk
Agent reviewsnone3.3/5 (8)

Verdicts

Microsoft Execution Containers

MXC puts nine operating-system sandbox backends behind one typed request, with network access denied by default and a JSON Schema for the stable 1.0.0 contract. Version 1.0.0 is two days old as of 8 October 2026. Enforcement varies by backend, and isolation_session cannot restrict networking at all.

Modal Sandboxes

GPU sandboxes at the same per-second rates as the rest of Modal. No REST API, and the JavaScript and Go SDKs are beta.

Before you call either

Microsoft Execution Containers

  1. Import from @microsoft/mxc-sdk/v1. The package root exports nothing.
  2. Call getPlatformSupport() first and stop if isSupported is false. getAvailableBackends() is advisory and launch-time validation still applies.
  3. Set network.egress.default to allow only when the task needs it. Omitted network policy resolves to deny in every direction.
  4. Never pass --audit to an executor for untrusted code. It turns off all sandbox security for the workload.
  5. Read ExecutionResult.warnings after each run. Security warnings arrive there and are not written to stdout or stderr.

Modal Sandboxes

  1. Pass timeout= when you create a sandbox. The default lifetime is 5 minutes
  2. Set block_network=True or a cidr_allowlist for untrusted code
  3. Give a sandbox a name so a retried create raises AlreadyExistsError instead of starting a second one
  4. Snapshot the filesystem before the 24-hour limit and start a fresh sandbox from it
  5. Catch ResourceExhaustedError from Sandbox.create() on SDK 1.6.0 and later

Questions

Which is better for AI agents, Microsoft Execution Containers or Modal Sandboxes?

Microsoft Execution Containers and Modal Sandboxes score within a point of each other on agent readiness, 76.3 (BB) and 75.5 (BB). Modal Sandboxes leads on reliability and security & auth.

Are Microsoft Execution Containers and Modal Sandboxes open source?

Microsoft Execution Containers is open source (MIT). No open-source release is listed for Modal Sandboxes.

Other comparisons with Microsoft Execution Containers or Modal Sandboxes

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.