docs: clarify sandboxing config option

This commit is contained in:
Peter Steinberger
2026-01-08 21:51:21 +01:00
parent d55750189e
commit 13ddd40a59
3 changed files with 9 additions and 1 deletions

View File

@@ -8,7 +8,10 @@ status: active
# Sandboxing
Clawdbot can run **tools inside Docker containers** to reduce blast radius.
The Gateway stays on the host; tool execution runs in an isolated sandbox.
This is **optional** and controlled by configuration (`agent.sandbox` or
`routing.agents[id].sandbox`). If sandboxing is off, tools run on the host.
The Gateway stays on the host; tool execution runs in an isolated sandbox
when enabled.
This is not a perfect security boundary, but it materially limits filesystem
and process access when the model does something dumb.

View File

@@ -89,6 +89,10 @@ It also warns if your configured model is unknown or missing auth.
Bun is supported for faster TypeScript execution, but **WhatsApp requires Node** in this ecosystem. The wizard lets you pick the runtime; choose **Node** if you use WhatsApp.
### Is there a dedicated sandboxing doc?
Yes. See [Sandboxing](/gateway/sandboxing). For Docker-specific setup (full gateway in Docker or sandbox images), see [Docker](/install/docker).
## Where things live on disk
### Where does Clawdbot store its data?

View File

@@ -80,6 +80,7 @@ Use these hubs to discover every page, including deep dives and reference docs t
- [Heartbeat](https://docs.clawd.bot/gateway/heartbeat)
- [Doctor](https://docs.clawd.bot/gateway/doctor)
- [Logging](https://docs.clawd.bot/gateway/logging)
- [Sandboxing](https://docs.clawd.bot/gateway/sandboxing)
- [Dashboard](https://docs.clawd.bot/web/dashboard)
- [Control UI](https://docs.clawd.bot/web/control-ui)
- [Remote access](https://docs.clawd.bot/gateway/remote)