用 Codex 或 Claude 帮你安装 复制这段 Prompt,粘贴到 Codex、Claude 或其他助手里,让它检查 Skill 页面并帮你完成安装。
直接命令不会经过审查 Prompt;运行前请先检查来源。
npx skills add https://github.com/bobo070314/openclaw-config --skill sandbox-executor命令会保持在同一行。复制前请横向滚动并检查完整内容。
想先保存到本地?可下载 SkillsMP 当前能够提供的文件。
基于 SOC 职业分类
正在显示 SKILL.md
| name | sandbox-executor |
| description | Isolated Docker sandbox execution for AI-generated code |
| version | 0.2.0 |
| category | safety |
| enabled | true |
Isolated execution gateway. Every AI-generated script execution MUST go through this.
| Guarantee | Mechanism |
|---|---|
| Immutable root FS | --read-only |
| No network | --network none (opt-in) |
| Memory cap | --memory 512m |
| CPU cap | --cpus 1 |
| Fork bomb protection | --pids-limit 100 |
| No privilege escalation | --security-opt no-new-privileges |
| Non-root | USER sandbox |
| Ephemeral /tmp | --tmpfs /tmp:rw,noexec,nosuid,size=64M |
# Basic execution
python skills/sandbox-executor/run.py security-audit --target workspace/test.py
# With network (explicit opt-in)
python skills/sandbox-executor/run.py web-scraper --url https://example.com --allow-network
# Force rebuild image
python skills/sandbox-executor/run.py any-skill --build
All executions are logged to .deploy/logs/sandbox.jsonl with structured JSON entries.