I want a lightweight sandbox with all my dev stuff that LLMs can't escape before I turn on computer use

I have been looking at this sandbox tool, but haven't quite figured out how I want to deploy it, and anyways I haven't found an agent I like yet.

https://github.com/kstenerud/yoloai

VSCode dev containers work well.

Fun fact: no dev containers in Cursor.