boat list, GET /sandboxes and the dashboard show two sets of sandboxes:
- Your own sandboxes.
- Every sandbox the organization pays for, whoever created it.
createdBy) and what you can do with it (access).
Access levels
Why view exists
A sandbox can get these from its creator, when its environment passes them:
- GitHub token.
- Claude and Codex logins.
- Environment secrets.
--no-env is use for every member from the start. Pick this setup for agents that the whole team runs. Give these agents the team’s own model keys with --env. Do not give them the logins of one person.
Share a sandbox that holds your logins
The creator of the sandbox runsshare. Then:
- Boat never sends the creator’s GitHub token, model logins, secret files or the sandbox’s own CLI key to it again. The sandbox becomes
noEnv. - Boat deletes these from its disk when the sandbox next starts.
- Files and installs stay.
- You cannot undo a share.
view for your team until you stop it and resume it. The response then shows restartRequired: true.
In the dashboard
Errors
These actions stay with the creator:
- Fork.
- Delete.
- Change its settings: name, subdomain, auto-stop.
- Any stop that deletes data:
--force, or any stop of a sandbox with snapshots off. The organization owner can also do this.