Skip to main content
In the scope of an organization, boat list, GET /sandboxes and the dashboard show two sets of sandboxes:
  • Your own sandboxes.
  • Every sandbox the organization pays for, whoever created it.
Each sandbox shows who created it (createdBy) and what you can do with it (access).

Access levels

Why view exists

A sandbox can get these from its creator, when its environment passes them:
  • GitHub token.
  • Claude and Codex logins.
  • Environment secrets.
Anyone with a shell in that sandbox could act as that person. So a teammate gets a shell only when none of these are on the sandbox. A sandbox created with --no-env is use for every member from the start. Pick this setup for agents that the whole team runs. Give these agents the team’s own model keys with --env. Do not give them the logins of one person.

Share a sandbox that holds your logins

The creator of the sandbox runs share. Then:
  • Boat never sends the creator’s GitHub token, model logins, secret files or the sandbox’s own CLI key to it again. The sandbox becomes noEnv.
  • Boat deletes these from its disk when the sandbox next starts.
  • Files and installs stay.
  • You cannot undo a share.
A sandbox that runs when you share it still has your logins in the memory of its programs. It stays view for your team until you stop it and resume it. The response then shows restartRequired: true.

In the dashboard

Errors

These actions stay with the creator:
  • Fork.
  • Delete.
  • Change its settings: name, subdomain, auto-stop.
  • Any stop that deletes data: --force, or any stop of a sandbox with snapshots off. The organization owner can also do this.