* [vArmor v0.10.2](https://github.com/bytedance/vArmor) – Cloud-native container sandbox using AppArmor, BPF LSM, and Seccomp to harden containers and reduce kernel attack surface. * [Fence v0.1.60](https://github.com/fencesandbox/fence) – Lightweight, container-free sandbox for running commands with network and filesystem restrictions. * [gVisor release-20260525.0](https://github.com/google/gvisor) – Application kernel providing strong isolation between applications and the host operating system. * [K8E v1.35.5-20260602-rc1...](https://github.com/xiaods/k8e) – Lightweight CNCF-conformant Kubernetes distribution optimized for rapid deployment, enterprise high-availability, and secure AI agent sandboxing.