GBox MCP Server
Gives agents a sandboxed cloud box to run shell commands, browse, and use a desktop safely.
🛡️ AgentReady threat assessment
MAESTRO 7-layer threat model + OWASP AIVSS risk score for GBox MCP Server, derived from its capabilities.
AIVSS 6.1 · Medium
View MAESTRO 7-layer threat model →Overview
GBox provides self-hostable sandboxed environments (terminal, browser, Android/desktop) that an agent can drive via MCP to execute code, run commands, and automate a GUI without touching the host. Security surface: intentionally an isolation boundary, but it does grant an agent arbitrary code execution inside the box and network egress from it.
Key features
- Isolated sandbox for command/code execution
- Browser and desktop/Android automation boxes
- Self-hostable, session-scoped environments
Use cases
- Let an agent run untrusted code safely
- Automate a GUI or browser in a sandbox