# Drop

> Sandbox programs and agents on Linux — A Linux sandbox that isolates untrusted programs and coding agents while keeping your usual work environment.

- Page: https://tesign.com/en/item/drop-sandbox/
- JSON: https://tesign.com/en/item/drop-sandbox/index.json
- Korean Markdown: https://tesign.com/item/drop-sandbox/index.md
- Generated: 2026-09-25 03:06 UTC

## Numbers

- 173 Show HN points — observed 2026-09-23 10:33 UTC
- Star total = the value last checked on GitHub (stars_checked_at) + increases observed via GH Archive since. The 24h · 7d · 30d gains are GH Archive hourly events summed to the reference time (as_of). No score of ours.

## AT A GLANCE

- LICENSE: Licence unconfirmed
- USAGE: Apache-2.0 (github.com/wrr/drop)
- LANGUAGE: [unconfirmed]
- PLATFORM: linux · cli
- CATEGORY: SECURITY · DEV TOOLS
- Tags: 리눅스 · 샌드박스 · 보안 · cli
- How to start: Install to use
- SOURCES: Show HN https://droprun.sh/
- INSTALL: https://droprun.sh/

## Signals and evidence

- NEW · 0h OLD WHEN SEEN

## TESIGN TAKE

Isolation tools are usually annoying enough that people stop using them; this one keeps your normal environment so there is little reason not to.

## WHY IT MATTERS

Running third-party programs or coding agents under your own account means one compromised dependency can compromise the whole system. Drop gives you disposable isolated environments that are as easy as a Python virtualenv.

## BUILD FROM THIS

- Instead of a new OS it reuses your existing distribution, so installed programs work inside the sandbox, your username is kept, and only the configuration files you select are readable. drop init creates an environment and drop run enters it.

## WHO IT'S FOR

- Developers who run coding agents or unfamiliar tools on Linux.

## START IN 5 MINUTES

```
# Follow the install guide at droprun.sh, then run drop init and drop run in your project folder.
```

## CAVEATS

- Linux only. The configuration files you select stay readable inside the sandbox, so check what you expose.

## RECEIPT

- FIRST SEEN BY TESIGN: 2026-09-22 14:31 UTC
- AT SOURCE: 2026-09-22 13:52 UTC
- KEPT: 2026-09-25 03:06 UTC
- Published on TESIGN: 2026-09-25 03:06 UTC
- Text last updated: 2026-09-25 03:06 UTC

## How to read this

- This file was produced by the same build, from the same data, as the tesign.com item page. The text is editorial; the numbers are stored observations.
- null in the JSON means not observed — never zero. The Markdown writes [unconfirmed] for it.
- Star total = the value last checked on GitHub (stars_checked_at) + increases observed via GH Archive since. The 24h · 7d · 30d gains are GH Archive hourly events summed to the reference time (as_of). No score of ours.
- A summary, not legal advice.

[Image] https://tesign.com/img/drop-sandbox-a039835568.png
