Skip to main content
Early access. Cloud sessions and managed agent runs are not open to every account yet: we are letting accounts in gradually while we test. They run in a cloud sandbox operated by Mutagent, so there is nothing to host. A sandbox with nothing to do for 15 minutes stops; send the session a message and it wakes up, delivers your message and carries on in the same conversation.
A cloud sandbox is an isolated Linux machine that the platform starts for a Helix Cloud session or a managed agent run. Helix runs inside it.
  • It has the API keys of the workspace’s active LLM providers, and the variables and secrets of the Environment the run loads with --env.
  • A managed agent run also has the agent’s package: its prompt, tools, skills and files.
  • You address the session in it by its session reference, which starts with hs1_. A restore, or a wake after an idle stop, starts a new session, so it has a new reference. Messages sent to the old reference still reach it.
Sandboxes are managed by the platform. You work with the session in a sandbox through mutagent helix and mutagent helix session; you do not sign in to the machine.

What the platform manages

If the final checkpoint could not be saved, restore uses the newest checkpoint that was saved.

What you control

Model keys do not go in an Environment. Names the platform sets in the sandbox are reserved, and an Environment cannot override them. mutagent env set refuses a variable named like an LLM provider key, such as ANTHROPIC_API_KEY. To see what a run will get, check each input from the CLI. Each needs a sign-in with a workspace selected:

Sessions

Watch, send to, stop, checkpoint and restore a session.

Sandbox providers

Where a sandbox runs, and what a sandbox provider decides.