
Scott talks with Mark Cavage about the resurgence of sandboxes as critical infrastructure for AI-assisted development.
Sandboxing is having a moment. As agents move from chat windows into terminals, repos, and production-adjacent workflows, the question is no longer “What can AI generate?” but “Where can it safely run?” In this episode, Scott talks with Mark Cavage, President of Docker, about the resurgence of sandboxes as critical infrastructure for the agent era and the thinking behind Docker’s newly released sandbox feature. They explore why isolation, reproducibility, and least-privilege execution are becoming table stakes for AI-assisted development. From protecting local machines to enabling trustworthy automation loops, Scott and Mark dig into how modern sandboxes differ from traditional containers, what developers should expect from secure agent runtimes, and why the future of “AI that does things” will depend as much on boundaries as it does on model capability.
Host: Scott Hanselman
Guest: Mark Cavage
Organizations: Docker
Explore listener stats, chart rankings, contacts and more on the Hanselminutes with Scott Hanselman podcast page.