SkillAgentSearch skills...

sandbox-next

Build or maintain Cloudflare Sandbox apps on @cloudflare/sandbox@next (SDK 1.0 preview). Use sandbox-migrate-to-next when porting a stable app.

Install / Use

npx skills add cloudflare/skills --skill sandbox-next

Installs into whichever agent you are using.

About this skill
📄

SKILL.md

Installable skill definition

Quality Score

86/100

Category

Legal

Supported Platforms

Universal

Our assessment of sandbox-next

sandbox-next scores 86/100 on our quality scale, 58th of 128 Legal skills we index (top 46%).

Its SKILL.md is 6.6 KB long, split into 5 sections with 1 code example: a thorough specification that gives an agent plenty to work with.

With 2,898 GitHub stars, it is one of the more widely adopted skills in the catalogue.

Substance
29/30
Structure
15/20
Description
15/15
Adoption
15/20
Freshness
15/15

Maintenance, license and trust

  • The repository was last updated 6 days ago, so sandbox-next is actively maintained.
  • It is released under the Apache-2.0 license, a permissive license that allows use, modification and commercial use with attribution.
  • Its trust signals score 100/100, with no cautions. These come from repository metadata, not a code audit — read the skill file before letting an agent act on it.

sandbox-next compared with similar skills

All 4 of these similar skills score higher than sandbox-next; compare them before choosing.

SkillScoreStarsUpdatedFormat
sandbox-next (this skill)by cloudflare862.9k6d agoSKILL.md
Agent-Reachby Panniantong10086.1k13d agoCLAUDE.md
headroomby headroomlabs-ai10074.1ktodayCLAUDE.md
crawl4aiby unclecode10084.4k4d agoMCP Server
Scraplingby D4Vinci10084.4ktodayMCP Server

Frequently asked questions

How do I install sandbox-next?
Run npx skills add cloudflare/skills --skill sandbox-next. The install tabs above show the steps for each supported agent.
Which AI agents does sandbox-next work with?
It is written for Universal, as a SKILL.md file. Other agents that read the same format can often use it too.
Is sandbox-next safe to use?
It is Apache-2.0-licensed and scores 100/100 on trust signals. Skills are instructions an agent will follow, so read the file before installing it and do not approve commands you do not understand.
Is sandbox-next still maintained?
The repository was last updated 6 days ago, so sandbox-next is actively maintained.

name: sandbox-next description: Build or maintain Cloudflare Sandbox apps on @cloudflare/sandbox@next (SDK 1.0 preview). Use sandbox-migrate-to-next when porting a stable app.

Sandbox SDK — @next (1.0 preview)

Isolated Linux environments on Cloudflare Containers, driven from Workers.

Prefer preview docs and installed @next types over memory. APIs change; this skill is a gate, a contract, and a retrieval map—not a full manual.

We recommend new projects on this line. Apps still on the default package use sandbox-stable. Port only when asked, via sandbox-migrate-to-next.

1. Gate — confirm the package line

Before writing code, inspect the app:

| Check | Must match | | ----- | ---------- | | npm dependency | @cloudflare/sandbox@next (or another preview tag) | | Container image | Same line (e.g. cloudflare/sandbox:next, next-python) |

| If you find… | Action | | ------------ | ------ | | Default @cloudflare/sandbox (no @next) | Stop. Load sandbox-stable. Do not apply this skill’s APIs. | | User wants to port stable → @next | Stop. Load sandbox-migrate-to-next. | | Self-deployed bridge only | Bridge is not on the 1.0 preview line yet. Keep bridge on stable package + image. Bridge (stable) |

Never mix an @next Worker package with a stable container image (or the reverse).

Skills install: Agent setup · cloudflare/skills

2. Contract — non-negotiables

  • sandbox.exec(argv) takes an argv list and resolves when the process starts. It returns a handle, not a finished command result.
  • Collect results with handle methods: output(), logs(), waitForExit(), waitForPort(), waitForLog(), kill(signal?).
  • No implicit shell. Shell syntax needs an explicit shell, e.g. ["/bin/bash", "-lc", script].
  • Each launch is independent. A cd / export in one exec is not visible to the next. Pass cwd and env per launch, or one shell script.
  • Process handles have no stdin. Interactive use → terminals (createTerminal + connect).
  • Local wait timeout / AbortSignal cancel the wait only. They do not kill the process. Use kill or exec’s remote timeout.
  • getProcess / listProcesses / getTerminal / listTerminals do not start a container; they return null / [] when none is up.
  • Process and terminal IDs belong to the current container, not forever to a sandbox ID. For work that must survive replace, store the full job (argv, cwd, env, app state)—not only an id.
  • Non-secret config only in setEnvVars / launch env. Live credentials stay in the Worker; use outbound handlers when the sandbox calls external APIs.
  • Do not invent removed stable APIs (gitCheckout on core, string-exec completion, session execution, sandbox.terminal(request)).
  • Do not use one retry loop for every error (see Errors docs).

Minimal shape:

import { getSandbox, proxyToSandbox, Sandbox } from "@cloudflare/sandbox";

export { Sandbox };

const sandbox = getSandbox(env.Sandbox, "user-123");
const process = await sandbox.exec(["python3", "-c", "print(2 + 2)"]);
const result = await process.output({ encoding: "utf8" });
// result.stdout, result.exitCode

Task-specific API documentation: references/api-quick-ref.md

Examples index (next branch): references/examples.md

3. Retrieve — open the doc for the task

Fetch the page before implementing. Installed @next types win over guesses.

| You need to… | Open | | ------------ | ---- | | Orient / choose preview | 1.0 preview overview | | First Worker, wrangler, Dockerfile | Get started | | exec, handles, readiness, durability | Process execution | | Process API signatures | Processes API | | Sandbox ID vs container vs sleep/destroy | Lifecycle | | cwd / env / setEnvVars | Environment | | Interactive PTY / browser terminal | Terminals · Terminals API | | Python/JS code interpreter | Interpreter · Interpreter API | | Extensions model | Extensions | | Error classes and recovery | Errors · Errors API | | Common failures | Troubleshooting | | API hub | API reference | | Files, mounts, backups, ports, tunnels, proxyToSandbox | Main docs for shared surfaces (ignore stable-only session/transport/sandbox.terminal): Files · Storage / mounts · Ports · Tunnels · Backups · Outbound traffic · Expose services · Production | | Example apps | examples on next | | Still on stable package | sandbox-stable · Main Sandbox docs | | Porting an existing stable app | sandbox-migrate-to-next · Migrate |

4. Before you ship

  • Lockfile and Dockerfile on the same @next line
  • Typecheck against installed @next types
  • No live secrets in sandbox env
  • Production preview hostnames need wildcard DNS on a custom domain when using those URL patterns

Related Skills

View on GitHub
GitHub Stars2.9k
CategoryLegal
Updated6d ago
Forks290

Languages

Shell

Trust signals

100/100

From repository metadata: license, adoption, age and documentation. Not a code audit — see the Safety scan above for what the skill file itself contains.

No cautions