A curated repo comparing sandboxing technologies for secure, fast AI agent execution. Covers microVMs, containers, WebAssembly, and more with tradeoffs on security vs speed.
pve-microvm patches Proxmox VE to expose QEMU microvm machine type for hardware-isolated VMs with container-like boot times, supporting 21 guest OSes and full PVE features.
microvm.nix offers declarative MicroVMs on NixOS/macOS using eight hypervisors, enabling version-controlled, reproducible VM deployments with fixed RAM and flexible storage.