Docker and Sandboxing AI Agents

Docker and Sandboxing AI Agents

Author: Software Engineering Daily July 30, 2026 Duration: 50:50

The most useful coding agents can mutate their environments by downloading packages, writing files, and connecting to services across the network. However, that freedom also presents dangers, and promises to usher in a new wave of security threats.

Docker recently announced Docker Sandboxes, which give each agent its own isolated micro VM while preserving the familiar ergonomics of a container. A standard container shares the host’s kernel, but a micro VM emulates hardware and runs its own kernel, giving a stronger security boundary around code that cannot be trusted.

Mark Cavage is the President and COO of Docker, and he previously worked at companies including Stripe, AWS and Oracle. In this episode, Mark joins Gregor Vand for a wide-ranging conversation that includes why agents break the immutability assumptions containers were built on, how micro VMs differ from both containers and traditional VMs, and the still-unsolved challenge of giving agents scoped, trustworthy access to sensitive services and data.

Sponsorship inquiries: sponsor@softwareengineeringdaily.com

The post Docker and Sandboxing AI Agents appeared first on Software Engineering Daily.


Every day, the world of technology evolves, and Software Engineering Daily provides a crucial, in-depth look at how that happens. This podcast sits at the intersection of code, infrastructure, and the people who build it, offering long-form conversations that go far beyond surface-level news. Each episode features a detailed technical interview with engineers, founders, and researchers who are actively shaping the landscape. Listeners will hear concrete discussions about system design, programming languages, DevOps practices, and the architectural decisions behind major platforms. The focus is on the how and the why-the practical challenges and trade-offs faced by professionals in the field. It’s a resource for developers seeking to understand not just what tools to use, but the underlying principles that make them effective. By dedicating time to a single topic per episode, the podcast allows for a thorough exploration that is both educational and genuinely insightful. Tune in for a consistent and substantive dive into the mechanics of modern software, where every conversation is an opportunity to deepen your technical understanding and stay engaged with the pulse of the industry.
Author: Language: en-us Episodes: 50

Software Engineering Daily
Podcast Episodes
Rebuilding the Cloud for AI Agent Code [not-audio_url] [/not-audio_url]

Duration: 49:57
For two decades, the cloud has been shaped by human developers writing code and managing its deployment. Now a growing share of production code is generated by LLMs with little human review. Because that code is not full…
SED News: The Kimi Moment, Runaway AI, and Tokenmaxxing [not-audio_url] [/not-audio_url]

Duration: 48:28
SED News is a monthly podcast from Software Engineering Daily where hosts Gregor Vand and Sean Falconer break down the biggest stories shaping software engineering, Silicon Valley, and the broader tech industry. In this…
The Terminal as an Agentic Interface [not-audio_url] [/not-audio_url]

Duration: 52:21
The terminal has been a constant in software development for decades. It has remained largely unchanged while everything around it transformed. However, as AI agents have become central to the developer workflow, the ter…
AI-Powered Threats to the Software Supply Chain [not-audio_url] [/not-audio_url]

Duration: 57:21
Open source software underpins virtually every modern application. That ubiquity is a superpower for developers, but it is also an expanding attack surface. Software supply chain attacks were once rare but are now happen…
The Startup Scene in Southeast Asia [not-audio_url] [/not-audio_url]

Duration: 43:50
Golden Gate Ventures is one of Southeast Asia’s most established early-stage venture firms, having backed companies across the region since 2011. They have invested in companies that are now household names in the region…
NanoClaw and the Rise of Personal AI Agents [not-audio_url] [/not-audio_url]

Duration: 1:03:35
AI agents have shown remarkable potential to function as persistent digital assistants that are capable of monitoring data, managing communications, and taking action autonomously over long periods. OpenClaw was one of t…
Agentic DevOps at AWS [not-audio_url] [/not-audio_url]

Duration: 51:56
AI agents have become capable of reasoning across large amounts of data, calling tools, and taking sequences of actions autonomously. These qualities make them well suited to some of the most persistent pain points in De…
AURA and Open-Source Agents for Production Operations [not-audio_url] [/not-audio_url]

Duration: 53:04
AI agents have transformed how software gets written, but the operational side of running software in production has not yet experienced a similar revolution. The same teams responsible for keeping systems healthy, inves…
Eric Ries on Why Good Companies Go Bad [not-audio_url] [/not-audio_url]

Duration: 50:28
Eric Ries is the creator of the Lean Startup method and the author of the New York Times bestseller The Lean Startup, which transformed how a generation of founders and engineers think about building products. It introdu…
SED News: Restricted Models, IDE Wars, and the DeepMind Mafia [not-audio_url] [/not-audio_url]

Duration: 51:58
SED News is a monthly podcast from Software Engineering Daily where hosts Gregor Vand and Sean Falconer break down the biggest stories shaping software engineering, Silicon Valley, and the broader tech industry. In this…