{
  "$schema_doc": "https://gtmstacker.com/registry/schema/entry.schema.json",
  "stability": "emerging",
  "generator": "agentic-media-registry",
  "generated_at": "2026-09-26T00:00:00Z",
  "id": "com.gtmstacker.registry/news/docker-sandbox-kit-spec",
  "type": "news",
  "slug": "docker-sandbox-kit-spec",
  "canonical_url": "https://gtmstacker.com/registry/news/docker-sandbox-kit-spec/",
  "title": "Docker Sandbox Kit Spec",
  "description": "Docker's Sandbox Kit Specification is a vendor-neutral spec (v3) that packages an AI agent's network rules, credentials, tools and volumes as a pinnable OCI image (a 'Kit') enforced by conforming runtimes. The Apache-2.0 spec is open (github.com/docker/sandbox-kit-spec); Docker Sandboxes is the first runtime and Docker plans to take it to the CNCF.",
  "category": "ai-infrastructure",
  "tags": [
    "ai-infrastructure",
    "mcp-agents",
    "news",
    "specification",
    "oci",
    "open-standard"
  ],
  "status": "active",
  "revision": 1,
  "content_hash": "690903f4e9c129e6e4d77935eefdf7071b32b54e8d1bf8bc1b9d7f35f65406b3",
  "date_published": "2026-09-24T00:00:00Z",
  "date_modified": "2026-09-24T00:00:00Z",
  "source": {
    "name": "docker · GitHub (sandbox-kit-spec)",
    "url": "https://github.com/docker/sandbox-kit-spec"
  },
  "license": "Apache-2.0",
  "one_liner": "Docker's Sandbox Kit Specification packages an AI agent's network rules, credentials, tools and volumes as a pinnable OCI image enforced by conforming runtimes.",
  "open_source": "yes",
  "self_hostable": "unknown",
  "pricing_model": "unknown",
  "aliases": [],
  "alternatives": [],
  "secondary_categories": [],
  "last_verified": "2026-09-26",
  "evidence": {
    "claim_type": "mixed",
    "source_id": "https://github.com/docker/sandbox-kit-spec",
    "note": "Apache-2.0 open spec; 73 stars, repo created 2026-09-16, published ~2026-09-24. A vendor-neutral specification (v3) packaging an AI agent's network rules, credentials, tools and volumes as a pinnable OCI image (a Kit), enforced by conforming runtimes; Docker Sandboxes is the first runtime and Docker is taking it to the CNCF (WebFetch 2026-09-26, github.com/docker/sandbox-kit-spec). A standard, not a runnable tool."
  },
  "caveats": "Spec facts verified from the repository README (WebFetch 2026-09-26). Filed as news because the item is a specification, not a runnable tool — but the spec itself is Apache-2.0 and open at github.com/docker/sandbox-kit-spec, so its openness is accurate. v3 is experimental (targeting a Q4 2026 final release); the CNCF donation is announced/planned, not completed. Surfaced via cross-corroboration in the 2026-09-26 X viral brief.",
  "lead": "Docker's Sandbox Kit Specification is a vendor-neutral spec (v3) that packages an AI agent's network rules, credentials, tools and volumes as a pinnable OCI image — a \"Kit\" — enforced by conforming runtimes. The Apache-2.0 spec is open (github.com/docker/sandbox-kit-spec); Docker Sandboxes is the first runtime, and Docker plans to take the spec to the CNCF.",
  "chunks": [
    {
      "index": 0,
      "heading_path": [],
      "est_tokens": 90,
      "text": "Docker's Sandbox Kit Specification is a vendor-neutral spec (v3) that packages an AI agent's network rules, credentials, tools and volumes as a pinnable OCI image — a \"Kit\" — enforced by conforming runtimes. The Apache-2.0 spec is open (github.com/docker/sandbox-kit-spec); Docker Sandboxes is the first runtime, and Docker plans to take the spec to the CNCF."
    },
    {
      "index": 1,
      "heading_path": [
        null,
        "Notes"
      ],
      "est_tokens": 565,
      "text": "a vendor-neutral spec (v3) that packages an AI agent's network rules, credentials, tools and volumes as a pinnable OCI image — a \"Kit\" — enforced by conforming runtimes. The Apache-2.0 spec is open (github.com/docker/sandbox-kit-spec); Docker Sandboxes is the first runtime, and Docker plans to take the spec to the CNCF.\n\n- What it is (spec facts, WebFetch 2026-09-26): a vendor-neutral specification, currently v3 and experimental, that packages a piece of a working environment — an agent's network rules, credentials, capabilities and volumes — into an OCI image pinned by digest, so a conforming runtime can install a Kit, grant it exactly what it declares, and combine it with other Kits. The spec's phrasing: \"Kits make authority reproducible\" — declarations live in the manifest of the image they describe. 73 stars; repo created 2026-09-16; published ~2026-09-24.\n- Open-source status — accurate and load-bearing: the specification itself is Apache-2.0 and open at github.com/docker/sandbox-kit-spec. This is filed as news because a spec is not a runnable tool; the runnable product is Docker Sandboxes (the `sbx` CLI runtime), referenced here via news.mentions.\n- Runtime and governance: Docker Sandboxes is positioned as the first conforming runtime, and Docker has stated it is taking the spec to the CNCF — a signal of intended vendor-neutral governance, though the donation is planned, not completed. v3 targets a Q4 2026 final release.\n- Surfaced via the 2026-09-26 X viral-posts brief (cross-corroboration); spec facts independently verified against the primary repo.\n- The GTM-stack read: as agents run more of a team's tooling, the hard problem becomes granting each agent exactly the authority it needs and no more — reproducibly. Packaging that authority (network, creds, tools, volumes) as a pinnable OCI image turns \"what can this agent touch\" into an artifact you can version, review and enforce, the same way you already ship containers. If runtimes converge on the standard, this is the substrate under agent execution; today it is an experimental v3 spec with one runtime, so track it as a direction, not a dependency.\n- Curated from the GTM Stacker signal registry (2026-09-26 pass); license/facts independently verified 2026-09-26."
    }
  ],
  "alternates": {
    "markdown": "https://gtmstacker.com/registry/news/docker-sandbox-kit-spec/index.md",
    "html": "https://gtmstacker.com/registry/news/docker-sandbox-kit-spec/",
    "json": "https://gtmstacker.com/registry/news/docker-sandbox-kit-spec/index.json"
  },
  "jsonld": {
    "@context": "https://schema.org",
    "@graph": [
      {
        "@type": "WebSite",
        "@id": "https://gtmstacker.com/#website",
        "url": "https://gtmstacker.com/",
        "name": "GTM Stacker Agent Registry",
        "description": "A daily-updated, agent-native registry of open-source tool discoveries, tool updates, and curated news for the go-to-market / RevOps engineering niche. Machine-readable first: agents can discover, parse, page, and delta-sync it without scraping HTML.",
        "inLanguage": "en",
        "publisher": {
          "@id": "https://gtmstacker.com/#organization"
        }
      },
      {
        "@type": "Organization",
        "@id": "https://gtmstacker.com/#organization",
        "name": "GTM Stacker",
        "url": "https://gtmstacker.com",
        "description": "The growth-systems practice of Theo Popov: AI-native enrichment, outbound, content engines and internal tooling for startups and venture programs. Its agent-native media property, the GTM Stacker Agent Registry, maintains a daily-updated catalog of open-source go-to-market and RevOps tools that both people and AI engines can discover, compare, and cite.",
        "foundingDate": "2024-08",
        "knowsAbout": [
          "go-to-market engineering",
          "RevOps",
          "sales automation",
          "marketing operations",
          "open-source software",
          "AI agents"
        ],
        "founder": {
          "@type": "Person",
          "@id": "https://gtmstacker.com/#founder",
          "name": "Theo Popov",
          "jobTitle": "Growth Operations & GTM Systems",
          "url": "https://gtmstacker.com/about/",
          "sameAs": [
            "https://www.linkedin.com/in/theo-popov",
            "https://x.com/Theo_Popov",
            "https://github.com/theopopov"
          ],
          "worksFor": {
            "@id": "https://gtmstacker.com/#organization"
          }
        },
        "sameAs": [
          "https://www.linkedin.com/company/gtmstacker",
          "https://www.youtube.com/@gtmstacker",
          "https://www.instagram.com/gtmstacker/",
          "https://www.tiktok.com/@gtmstacker"
        ],
        "mainEntityOfPage": "https://gtmstacker.com/registry/about/"
      },
      {
        "@type": "NewsArticle",
        "@id": "https://gtmstacker.com/registry/news/docker-sandbox-kit-spec/#article",
        "headline": "Docker's Sandbox Kit Specification packages an AI agent's authority — network rules, credentials, tools and volumes — as a pinnable OCI Kit image, and Docker is taking it to the CNCF",
        "description": "Docker's Sandbox Kit Specification is a vendor-neutral spec (v3) that packages an AI agent's network rules, credentials, tools and volumes as a pinnable OCI image (a 'Kit') enforced by conforming runtimes. The Apache-2.0 spec is open (github.com/docker/sandbox-kit-spec); Docker Sandboxes is the first runtime and Docker plans to take it to the CNCF.",
        "url": "https://gtmstacker.com/registry/news/docker-sandbox-kit-spec/",
        "isPartOf": {
          "@id": "https://gtmstacker.com/#website"
        },
        "datePublished": "2026-09-24T00:00:00Z",
        "dateModified": "2026-09-24T00:00:00Z",
        "author": {
          "@id": "https://gtmstacker.com/#organization"
        },
        "publisher": {
          "@id": "https://gtmstacker.com/#organization"
        }
      },
      {
        "@type": "BreadcrumbList",
        "@id": "https://gtmstacker.com/registry/news/docker-sandbox-kit-spec/#breadcrumb",
        "itemListElement": [
          {
            "@type": "ListItem",
            "position": 1,
            "name": "GTM Stacker Registry",
            "item": "https://gtmstacker.com/registry/"
          },
          {
            "@type": "ListItem",
            "position": 2,
            "name": "AI Infrastructure",
            "item": "https://gtmstacker.com/registry/category/ai-infrastructure/"
          },
          {
            "@type": "ListItem",
            "position": 3,
            "name": "Docker Sandbox Kit Spec",
            "item": "https://gtmstacker.com/registry/news/docker-sandbox-kit-spec/"
          }
        ]
      }
    ]
  },
  "news": {
    "headline": "Docker's Sandbox Kit Specification packages an AI agent's authority — network rules, credentials, tools and volumes — as a pinnable OCI Kit image, and Docker is taking it to the CNCF",
    "mentions": [
      "Docker Sandboxes"
    ]
  }
}
