Hacker News AIT2·68 pts
Microsoft Open-Sources MXC: Unified Sandboxed Execution System for Secure AI Code Generation
Original: MXC - a sandboxed code execution system
- MXC supports Windows, Linux, and macOS, compatible with diverse isolation backends like ProcessContainer, LXC, Bubblewrap, and Hyperlight.
- Features a policy-driven sandboxing mechanism allowing fine-grained control over filesystem permissions, network outbound rules, and UI access via JSON configuration.
- Offers official SDKs for Rust, .NET, and Node.js, supporting both one-shot execution and state-aware persistent container lifecycle management.