MCP低风险未认领
LLM Sandbox
Securely run LLM-generated code in isolated containers across 7 languages and 3 container backends.
vndeevndee/llm-sandbox
server.json
{
"$schema": "https://static.modelcontextprotocol.io/schemas/2025-10-17/server.schema.json",
"name": "io.github.vndee/llm-sandbox",
"description": "Securely run LLM-generated code in isolated containers across 7 languages and 3 container backends.",
"title": "LLM Sandbox",
"repository": {
"url": "https://github.com/vndee/llm-sandbox",
"source": "github"
},
"version": "0.3.43",
"websiteUrl": "https://vndee.github.io/llm-sandbox/",
"packages": [
{
"registryType": "pypi",
"registryBaseUrl": "https://pypi.org",
"identifier": "llm-sandbox",
"version": "0.3.43",
"runtimeHint": "uvx",
"transport": {
"type": "stdio"
},
"runtimeArguments": [
{
"description": "Install the MCP server extra. The base llm-sandbox package intentionally ships no container or MCP dependencies, so the extra is required for the server to start.",
"isRequired": true,
"value": "llm-sandbox[mcp-docker]",
"type": "named",
"name": "--from"
}
],
"environmentVariables": [
{
"description": "Container backend to use. Must match the installed extra: mcp-docker, mcp-podman, or mcp-k8s.",
"default": "docker",
"choices": [
"docker",
"podman",
"kubernetes"
],
"name": "BACKEND"
},
{
"description": "Docker or Podman socket URL, e.g. unix:///var/run/docker.sock",
"name": "DOCKER_HOST"
},
{
"description": "Path to kubeconfig file when BACKEND=kubernetes.",
"name": "KUBECONFIG"
},
{
"description": "Kubernetes namespace used for sandbox pods when BACKEND=kubernetes.",
"default": "default",
"name": "NAMESPACE"
},
{
"description": "Commit the container after a run so installed libraries persist between sessions.",
"default": "true",
"name": "COMMIT_CONTAINER"
},
{
"description": "Keep the base image after the session ends to avoid re-pulling it on the next run.",
"default": "true",
"name": "KEEP_TEMPLATE"
},
{
"description": "Network mode for the sandbox container. Set to 'none' for hardened isolation. Docker and Podman backends only.",
"name": "SANDBOX_NETWORK_MODE"
},
{
"description": "Mount the sandbox root filesystem read-only. Recommended: true. Docker and Podman backends only.",
"name": "SANDBOX_READ_ONLY"
},
{
"description": "Comma-separated Linux capabilities to drop. Recommended: ALL. Docker and Podman backends only.",
"name": "SANDBOX_CAP_DROP"
},
{
"description": "Comma-separated container security options, e.g. no-new-privileges. Docker and Podman backends only.",
"name": "SANDBOX_SECURITY_OPT"
},
{
"description": "Memory limit for the sandbox container, e.g. 4g. Docker and Podman backends only.",
"name": "SANDBOX_MEMORY"
},
{
"description": "Fractional CPU allocation for the sandbox container, e.g. 1.5. Docker and Podman backends only.",
"name": "SANDBOX_CPUS"
}
]
}
]
}权限
声明检测
运行代码—
python安装—
pypi:llm-sandbox@0.3.43安装时运行脚本—无
网络无无
需要的凭据无无
工作区外的路径—无
智能体工具—无
检查
低风险 · 没有发现需要提醒的地方。
未经人工审核 · 已做规则检查;模型审核尚未开启。
版本
- #10.3.43最新2026年10月7日
LLM Sandbox在 Codeg 中打开