{
  "schema_version": "newruntime-agent-readable-v0.1",
  "type": "post",
  "slug": "pillar-sandbox-escapes",
  "title": "Coding Agent Sandboxes Break in Places Teams Do Not Expect",
  "description": "Pillar shows that agent sandboxes must be assessed not only around the agent process, but around files, configs, allowlisted commands, and local daemons the host later trusts.",
  "status": "published",
  "published_at": "2026-07-21",
  "topics": [
    "agent-security",
    "coding-agents",
    "sandbox"
  ],
  "source_urls": [
    "https://www.pillar.security/blog/the-week-of-sandbox-escapes"
  ],
  "routes": {
    "html": "https://newruntime.com/posts/pillar-sandbox-escapes/",
    "markdown": "https://newruntime.com/posts/pillar-sandbox-escapes.md",
    "json": "https://newruntime.com/posts/pillar-sandbox-escapes.json"
  },
  "source_format": "markdown"
}
