Skip to content

Add integration tests for pixi in a sandbox to this repo #5529

Description

@pavelzw

We want to use pixi in a sandbox (claude code) and sometimes run into panics because of that. The most recent thing @borchero found was https://github.com/servo/core-foundation-rs/blob/6f844cf1a1a18e25b70fcdf1bcdc458555bd2eff/core-foundation/src/lib.rs#L102

I think it would be cool if we had an integration test that lets the compiled binary run in a sandbox so we can catch potential issues.

Activity

  1. baszalmstra commented on Feb 20, 2026

    @baszalmstra
    Contributor

    Good idea! Do you think you could contribute this?

  2. suleman1412 commented on Mar 4, 2026

    @suleman1412
    Contributor

    Hi @baszalmstra! I was investigating this issue.
    From my understanding, the ask is that pixi should not panic when run in a sandboxed environment (like Claude Code). Failures are expected and fine - but the process shouldn't crash unexpectedly.

    To test this, I used bwrap on Linux to implement filesystem and network restrictions similar to what Claude Code uses:

    • Read-only root filesystem
    • Only current directory writable
    • No access to home directory
    • Network blocked

    But, pixi handles sandbox restrictions gracefully with error messages - no panics occur.

    So, is this the right approach? What's the specific scenario that caused the original panic?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions