Security model
OmniRun uses Firecracker microVMs for hardware-level isolation. Each sandbox runs its own Linux kernel, unlike containers which share the host kernel.
Isolation stack
Layers from your code down to the host. The full security overview covers the controls and their limits.
Isolation stack
// Isolation layers (top → bottom)
'Your Code' // Userspace
'Guest Kernel' // Dedicated per sandbox
'microVM' // Minimal VMM
'KVM' // Hardware virtualization
'Host OS' // Hardened hostTry it — Isolation Check
Benchmarks
Sandboxes are restored from a Firecracker snapshot, so a new sandbox is typically ready in under a second.
| Sandbox create (snapshot restore) | Under 1 s, typical |
|---|
Sandboxes resume from a Firecracker memory snapshot instead of cold-booting a kernel. Time from API call to a ready sandbox is typically under a second for the base templates; it varies with template size and host load. This is an operational observation, not a published benchmark: measure it for your own workload with the example below.
Try it — Benchmark