Sandboxed terminals (Seatbelt / seccomp + Landlock) by Anysphere
Runs agent shell commands in OS-level sandboxes with restricted filesystem access.
Receipts · 2
- Engineering blog cursor.com
- Engineering blog cursor.com
Show quotes (2) Hide quotes
-
“Seccomp blocks unsafe syscalls, while Landlock enforces filesystem restrictions.” — cursor.com, Feb 18, 2026
-
“A mistaken agent can delete databases, ship broken code, or leak secrets.” — cursor.com, Feb 18, 2026
Source last verified Jul 26, 2026