Least-privilege inference for an agent sandbox
Keep tool execution in E2B, Modal, Kubernetes, or another sandbox specialist. InferCrane records only the external sandbox identity and issues an expiring inference credential restricted to one stable endpoint. This page describes externally owned sandboxes. For InferCrane-managed lifecycle backed by a dedicated Brezel project, see Native Brezel sandboxes.Issue access
Create the sandbox with its native API or control plane first. Then connect its external identity:Inspect, rotate, and revoke
401 from a newly issued credential. Rotation and revocation may take that same bounded
interval to reach every replica.