Tembo Mark

Secure Sandbox Environment

Tembo operates in isolated environments to analyze and modify your code. Full repository access with enterprise-grade security.

Features

Process Isolation

Each task runs in a completely isolated environment with controlled network access.

Secure Execution

Your code and secrets are protected with enterprise-grade security measures.

Full Repository Access

Tembo can analyze your entire codebase and run build tools in the sandbox.

Pre-configured Tools

Common development tools and runtimes are pre-installed and ready to use.

Tembo Hooks

Execute custom commands at staged points during task execution for CI/CD integration.

Sandbox Types

Choose the right isolation level for your workload. Configure at the organization or task level.

Learn more

Small

Default

Lightweight Docker-based sandbox for general-purpose tasks.

  • Quick spin-up time
  • Broad language support
  • Efficient resource usage

Large

Full size VM isolation with system-level access for specialized configurations.

  • Complete isolation
  • Kernel-level access
  • Custom OS configurations

Pre-installed Tools

Common development tools ready to use out of the box. Need something else? Use Nix flakes for reproducible environments.

View all tools

Languages & Runtimes

Node.js 22
Python 3.12
Ruby 3.3
Go 1.24
Rust
Elixir 1.18
Erlang 28

Package Managers

pnpm
Bun
pip
Bundler
Hex
Cargo

Tools

Git
curl
HTTPie
ShellCheck
lsof
strace

Extensibility

Nix Support

Automatically detects and loads flake.nix files for reproducible, version-pinned development environments.

MCP Integration

Connect to custom tools, databases, APIs, and external data sources during task execution using Model Context Protocol servers.

Learn about MCP

Automate and log out.

Create tasks and automations, so you can focus on what matters most. Leave the repetitive work to Tembo.