Contain what breaks
Agent code can behave unpredictably. Serverless sandboxes run in hardware-isolated microVMs with their own kernel, filesystem, and network. On CKS, administrators set the permitted runtime classes, so every workload stays inside the containment your policy allows.
Keep work close to your AI
Run sandboxes on the same CoreWeave storage, Kubernetes, and network as your training and inference. Your agents reach the models and data they need locally. Sensitive work stays inside your environment, with no public path in.
Set the policy once
Define network access, runtime classes, resource limits, security posture, and lifetime at the cluster level. Every sandbox request must fit that policy, and templates or workload overrides cannot bypass it.



























