autoresearchclaw-requires-dedicated-container-for-sandbox
AutoResearchClaw executes generated experiment code (Python, R, etc.) as part of its pipeline, which must run in an isolated sandbox — not inside the oracle-hermes container. The correct deployment is a dedicated researchclaw container on oracle-network alongside oracle-hermes, oracle-mirofish, and oracle-graphiti-mcp, using either Docker-in-Docker or host Docker socket mount for nested experiment containers. Installing inside an existing container risks dependency conflicts and removes the security boundary around arbitrary code execution.
Related
- 2026-04-04-oracle-001-self-architecture-analysis
- autoresearchclaw-sandboxed-experiment-execution-with-ast-val
- oracle
- docker
- clawteam-openclaw-multi-agent-swarm-evaluation
- autoresearchclaw-requires-dedicated-container-for-experiment
- researchclaw-dedicated-container-oracle-network-deployment
- autoresearchclaw-must-run-in-isolated-container-not-hermes
- researchclaw-container-requires-docker-socket-for-experiment
- autoresearchclaw-requires-dedicated-container-sandbox
- researchclaw-dedicated-container-required-for-sandbox
- autoresearchclaw-oracle-dedicated-container-isolation
- autoresearchclaw-container-topology-oracle-network
- oracle-container-naming-follows-oracle-prefix-on-oracle-netw
- researchclaw-experiment-sandbox-mandatory-dedicated-containe
- researchclaw-dedicated-container-mandatory-for-experiment-sa
- researchclaw-container-isolation-required-for-experiment-cod
- researchclaw-container-requires-docker-socket-mount
- researchclaw-must-run-in-dedicated-container-for-experiment
- researchclaw-requires-dedicated-container-with-docker-socket
- oracle-researchclaw-dedicated-container-rationale
- researchclaw-dedicated-container-isolation-requirement
- researchclaw-dedicated-container-required-for-experiment-san
- researchclaw-must-run-in-dedicated-container-for-sandboxing
- autoresearchclaw-dedicated-container-not-inside-hermes
- researchclaw-requires-dedicated-container-not-hermes-install
- researchclaw-dedicated-container-for-experiment-sandboxing
- autoresearchclaw-must-run-in-dedicated-container-for-sandbox
- researchclaw-dedicated-container-oracle-network-topology
- autoresearchclaw-experiment-sandbox-requires-docker-isolatio
- researchclaw-dedicated-container-not-inside-hermes
- oracle-network-container-topology-pattern