Back to products
Beta
Citadea SandBox
Ephemeral, isolated environments for AI agents
A safe place for agents to run code they wrote and data they fetched, destroyed the moment they are done.
Overview
Isolated compute pods designed for AI agents to execute generated code or parse external data with strict network isolation and auto-destruction after execution. Untrusted code runs safely, sandboxed web access included, every action audited.
Isolation you can trust with untrusted code
Each SandBox is a strictly network-isolated pod that auto-destructs after execution. Agents can run generated code or parse external data with sandboxed web access, and every action is recorded in a full audit trail.
Compared to Modal and E2B sandboxes.
What's included
- Strict network isolation
- Auto-destruction after execution
- Untrusted code execution
- Sandboxed web access
- Native MCP integration
- Full action audit trail
Quickstart
$ citadea sandbox create --agent <name>Benchmarks
< 10 ms
Provision time
L3/L4
Isolation
Use cases
Agent-generated codeSandboxed web scrapingSecurity testingUntrusted execution
Integrations
MCPLangChainAutoGenCitadea CLI
Frequently asked
Configurable from 30 seconds to 24 hours, with auto-destruction by default.