withastro / flue
View on GitHub →
The sandbox agent framework

Agents that run
in a real sandbox.

Flue gives every agent its own isolated environment to read, run, and revise — so the work happens somewhere safe to fail.

flue · sandbox● isolated
fs
filesystem
scoped, ephemeral workspace
mounted
sh
shell
run commands, capture output
● running
net
network
allow-list egress only
guarded
snapshot
reset to known-good in one call
ready
Sandbox capabilities are illustrative.