EveryDev.ai
Subscribe
Home
Tools

4,288+ AI tools

  • New
  • Trending
  • Featured
  • Rate tools
  • Compare
  • Arena
Categories
  • Agents3186
  • Coding2210
  • Infrastructure966
  • Projects660
  • Marketing625
  • Research579
  • MCP518
  • Design497
  • Analytics490
  • Testing382
  • Security360
  • Data320
  • Integration242
  • Prompts239
  • Communication225
  • Extensions210
  • Voice191
  • Learning188
  • Commerce167
  • DevOps145
  • Web99
  • Finance34
AI Tools by Topic
  • AI Coding Assistants
  • Agent Frameworks
  • MCP Servers
  • AI Prompt Tools
  • Vibe Coding Tools
  • AI Design Tools
  • AI Database Tools
  • AI Website Builders
  • AI Testing Tools
  • LLM Evaluations
Follow Us
  • X / Twitter
  • LinkedIn
  • Reddit
  • Discord
  • Threads
  • Bluesky
  • Mastodon
  • YouTube
  • GitHub
  • Instagram
Get Started
  • Users
  • Rate Tools
  • About
  • Editorial Standards
  • Corrections & Disclosures
  • Community Guidelines
  • Advertise
  • Contact Us
  • Newsletter
  • Submit a Tool
  • Start a Discussion
  • Write A Blog
  • Share A Build
  • Terms of Service
  • Privacy Policy
Explore with AI
  • ChatGPT
  • Gemini
  • Claude
  • Grok
  • Perplexity
Agent Experience
  • llms.txt
Theme
With AI, Everyone is a Dev. EveryDev.ai © 2026
    1. Home
    2. Tools
    3. Microsoft Execution Containers (MXC)
    Microsoft Execution Containers (MXC) icon

    Microsoft Execution Containers (MXC)

    Agent Harness
    Featured

    Policy-driven sandboxed execution layer from Microsoft for containing untrusted code and AI agent workloads on Windows, macOS, and Linux.

    Visit Website

    At a Glance

    Pricing
    Open Source

    MXC SDK and runtime for sandboxed execution of untrusted code on Windows, Linux, and macOS, released under the MIT License.

    Engagement

    Available On

    Windows
    macOS
    Linux
    API
    SDK

    Resources

    WebsiteDocsGitHubllms.txt

    Topics

    Agent HarnessApplication SecurityAI Development Libraries

    Alternatives

    Defending Code Reference HarnessSWE-smithCrust
    Developer
    Microsoft ResearchRedmond, WAEst. 1991$32.5B raised

    Listed Oct 2026

    About Microsoft Execution Containers (MXC)

    Microsoft Execution Containers (MXC) is a policy-driven execution layer for running untrusted or dynamically generated code, such as model output, plugins, tools, agent harnesses, or whole agents. Microsoft's Windows Developer Blog announced it as generally available on October 7, 2026, and the repository lists SDK v1.0.0 published the same day. Developers declare the files, network destinations, and UI access a workload needs, and MXC enforces that boundary with a suitable container backend.

    What It Is

    MXC is an SDK dependency that builds into an application. The application specifies a container type, containment rules, and a workload command; MXC validates the request, selects the backend, and launches the workload in isolation. The policy stays outside the control of the agent workload, so the agent or generated code cannot grant itself extra access. Rust, .NET, and Node SDKs are available, along with standalone executor binaries such as wxc-exec.exe that accept JSON container-creation requests.

    Containment backends and policy model

    A unified JSON configuration schema separates workload requirements from platform-specific containment details. MXC maps requests to backends per platform: process containers (AppContainer on Windows, Seatbelt on macOS, Bubblewrap on Linux), a Windows-only session container with a separate account, desktop, clipboard, and input, a WSL container, and an experimental MicroVM. The repository also lists Windows Sandbox, LXC, and Hyperlight, some of them experimental. Policies cover the following areas:

    • Containment type
    • Process launch settings
    • File system (read-only, read-write, denied paths)
    • Network (inbound, outbound, proxy, and loopback controls)
    • User interface (clipboard, display, GUI)

    Learning and refining policy

    Writing a least-privilege policy is hard when an agent's needs are unknown. On Windows, process containers support three operating modes: Enforcement, Learning (blocks and records denied access in a JSON activity report), and Permissive (allows and records). A debug console mode and an audit mode help authors find access-denied failures and reconstruct policies. The audit mode turns off sandbox security and should not be used for untrusted code.

    Enterprise management and ecosystem

    Microsoft says Intune policy for MXC process containers on Windows 11 and Entra and Agent 365 identity and management for local agents are coming soon. It also says Windows 365 support for MXC is generally available. According to the blog, GitHub Copilot, OpenClaw, OpenAI Codex, Replit, LM Studio, and Unsloth AI already support MXC, and NVIDIA has integrated OpenShell into it.

    Microsoft Execution Containers (MXC) - 1

    Community Discussions

    Be the first to start a conversation about Microsoft Execution Containers (MXC)

    Share your experience with Microsoft Execution Containers (MXC), ask questions, or help others learn from your insights.

    Pricing

    OPEN SOURCE

    Open Source (MIT)

    MXC SDK and runtime for sandboxed execution of untrusted code on Windows, Linux, and macOS, released under the MIT License.

    • Rust, .NET, and Node SDKs
    • Multiple containment backends (ProcessContainer, Bubblewrap, Seatbelt, LXC, WSLC, and others; some experimental)
    • Filesystem, network, and UI policy controls
    • Diagnostics and audit mode

    Capabilities

    Key Features

    • Sandboxed execution of untrusted code and AI agent workloads
    • Cross-platform support for Windows, Linux, and macOS
    • Multiple containment backends from process sandboxes to microVMs
    • Unified versioned JSON configuration schema
    • Filesystem, network, and UI policy controls
    • Enforcement, Learning, and Permissive operating modes
    • JSON activity reports for least-privilege policy authoring
    • Persistent container lifecycle: provision, start, execute, stop, deprovision
    • Rust, .NET, and Node SDKs
    • Debug console and audit diagnostics
    • Windows 365 Cloud PC support

    Integrations

    GitHub Copilot
    OpenClaw
    OpenAI Codex
    Replit
    LM Studio
    Unsloth AI
    NVIDIA OpenShell
    Microsoft Intune
    Microsoft Entra
    Microsoft Agent 365
    Windows 365
    API Available
    View Docs

    Ratings & Reviews

    No ratings yet

    Be the first to rate Microsoft Execution Containers (MXC) and help others make informed decisions.

    Rate other tools you’ve used

    Developer

    Microsoft Research

    Microsoft Research advances the state of the art in computer science and related fields through fundamental research and applied innovation. The team behind AutoGen focuses on building frameworks that enable developers to create sophisticated AI applications with multiple collaborating agents. Microsoft Research publishes open-source tools and conducts cutting-edge research across AI, systems, and human-computer interaction.

    Founded 1991
    Redmond, WA
    $32.5B raised
    1,000 employees

    Used by

    Microsoft product teams and Microsoft…
    Xbox Games Studios and Ninja Theory…
    National University of Singapore…
    BKW (Aurora 1.5 proof point through…
    Read more about Microsoft Research
    WebsiteGitHubLinkedInX / Twitter
    7 tools in directory

    Similar Tools

    Defending Code Reference Harness icon

    Defending Code Reference Harness

    An open-source reference implementation for autonomous vulnerability discovery and remediation using Claude, covering threat modeling, scanning, triage, patching, and a sandboxed autonomous pipeline.

    SWE-smith icon

    SWE-smith

    An open-source toolkit for generating training data and task instances for software engineering agents, enabling fine-tuning of LMs on real GitHub repositories.

    Crust icon

    Crust

    A TypeScript-first, Bun-native CLI framework with composable modules for building type-safe command-line interfaces.

    Browse all tools

    Related Topics

    Agent Harness

    Infrastructure, orchestrators, and task runners that wrap around LLM coding agents — covering session management, context delivery, worktree isolation, architecture enforcement, and issue-to-PR pipelines.

    214 tools

    Application Security

    AI tools for securing software applications and identifying vulnerabilities.

    131 tools

    AI Development Libraries

    Programming libraries and frameworks that provide machine learning capabilities, model integration, and AI functionality for developers.

    341 tools
    Browse all topics
    Back to all toolsSuggest an edit
    ratings
    discussions