AgentENV keeps agent sandboxes inside trusted networks
AgentENV is an MIT-licensed platform for running Firecracker-based agent environments, with snapshot and fork support plus an E2B-compatible API. Why it matters: Fast sandbox creation can make parallel agent runs cheaper to operate, but the project says it has no authorization and its API must stay off the public network. The trust boundary is part of the deployment, not a later hardening task.
Try this: Before a trial, inspect the API exposure and network policy. Run one non-production sandbox behind an authorization proxy, then verify that its endpoint cannot be reached from the public internet.