sbx create docker-agent
| Description | Create a sandbox for docker-agent |
|---|---|
| Usage | sbx create docker-agent PATH [PATH...] [flags] |
Description
Create a sandbox with access to a host workspace for docker-agent.
The workspace path is required and will be mounted inside the sandbox at the same path as on the host. Additional workspaces can be provided as extra arguments. Append ":ro" to mount them read-only.
Use "sbx run --name SANDBOX" to attach to the agent after creation.
Global options
| Option | Default | Description |
|---|---|---|
--clone
|
Run the agent on a private in-container clone of the host Git repository (mounted read-only) instead of bind-mounting the workspace; the agent's commits are accessible via the sandbox-<name> git remote on the host | |
--cpus
|
0
|
Number of CPUs to allocate to the sandbox (0 = auto: all host CPUs) |
-D, --debug
|
Enable debug logging | |
--deny-network
|
Add a per-sandbox network deny rule at creation time. Can be specified multiple times. The rule applies only to the new sandbox and can be listed or removed later with `sbx policy ls <NAME>` / `sbx policy rm network --sandbox <NAME> --resource <HOST>`. Safe under centralized governance because a local deny can only narrow, never widen, egress. | |
--kit
|
experimental Kit reference (directory, ZIP, or OCI). Can be specified multiple times | |
-m, --memory
|
Memory limit in binary units (e.g., 1024m, 8g). Default: 50% of host memory, max 32 GiB | |
--name
|
Name for the sandbox (default: <agent>-<workdir>, letters, numbers, hyphens, periods, plus signs and minus signs only) | |
-p, --publish
|
Publish a sandbox port to the host (can be repeated): [[HOST_IP:]HOST_PORT:]SANDBOX_PORT[/PROTOCOL] | |
-q, --quiet
|
Suppress verbose output | |
-t, --template
|
Container image to use for the sandbox (default: agent-specific image) |
Examples
# Create in the current directory
sbx create docker-agent .
# Create with a specific path
sbx create docker-agent /path/to/project
# Create with additional read-only workspaces
sbx create docker-agent . /path/to/docs:ro