Self-hostable sandbox for agent code execution — SandboxManager, control-plane, 4 SDKs, MCP server, running inside real Kubernetes pod isolation
The missing batteries-included, self-hostable sandbox for agent code execution.
Most "agent sandbox" projects give you raw isolation — a pod, a VM, a container — and leave you to build the actual tool surface an LLM agent needs on top of it. boxkite is the other half: a complete bash/python/file/search/process tool surface (15 ready-to-wire, framework-agnostic tools — LangChain, LangGraph, CrewAI, AutoGen, or plain OpenAI-style function calling — plus an opt-in git tool set of 8 more) running inside real Kubernetes pod isolation, built on industry-standard hardening practices — non-root execution, all Linux capabilities dropped, a read-only root filesystem, network egress denied by default, and output scrubbed for leaked API keys and cloud credentials before it ever reaches your agent. boxkite itself is early-stage (v0.1.0) — the isolation approach is proven, the project's production track record is not, yet.
Self-host it, point your agent framework at it, and you have a real sandbox in minutes instead of weeks. Everything here — the sandbox runtime, the hosted-API control-plane, all four client SDKs, and the MCP server — is self-hostable end to end; there's no piece of this product held back for a separate, closed hosted offering.
Who this is for: boxkite is a self-hostable sandbox for teams building their own agent products that need isolated, multi-tenant code execution at scale — one Kubernetes pod per session, many sessions, many tenants. It is not a single-user local dev-session sandbox like the built-in bash tool in an IDE or CLI coding agent — if you just want yo
From the project README.
Add the radar badge to your README — it shows your project was picked up by MCP Radar and links to this page:
[](https://mcp.liqiwa.com/s/EvAlssment--boxkite.html)
Turn scattered notes, docs and transcripts into a queryable Markdown wiki — an LLM knowledge-base compiler with MCP access, no embeddings, self-hosted.
alxgntv/substack-api-mcpMCP server for Substack posts (FastMCP + substack-api-client)
sm18lr88/STT-MCPFast, local speech-to-text MCP server
simonw/mcp-explorerCLI tool for exploring an MCP server
sandeepbazar/ocm-mcp-serverAn MCP server that lets AI agents operate a multi-cluster Kubernetes fleet through an Open Cluster Management hub, with policy, approval, and audit between the model and your clusters.
Vladimir-Human/ru-marketplace-mcpДевять российских маркетплейсов и китайский Taobao как MCP-серверы: Wildberries, Ozon, Яндекс Маркет, Детский мир, Авито, Мегамаркет, Lamoda, DNS, Ситилинк. Плюс сравнение цен по всем сразу. Только чт
The top new MCP servers of the week, every Monday. No spam, unsubscribe anytime.