displayName
Docker (default container)
kind
docker
description
Agent runs inside a docker container with a bind-mounted workspace and
an egress allowlist enforced at the docker-network level.
processLifecycleModel
docker-stop
signalPropagation
reliable
resourceLimits
cpu
2
memoryMb
4096
timeoutMs
3600000
networkAllowed
true
diskQuota
10Gi
isolation
container
networkPolicy
egress-allowlist
fsAccess
workspace-only
gpuAccess
none
sandboxImpl
docker