Skip to content

Containarium

v0.16.11 Feature

This release adds 2 notable features for engineering teams evaluating rollout.

Published 18d Virtualization
✓ No known CVEs patched
Read the diff → Tool health → What is this tool? →

✓ No known CVEs patched in this version

Topics

agent-native agentic-ai cloud-cost-efficiency dev-environment lxc lxc-container
+2 more
multi-tenant ssh

Summary

AI summary

Adds mcp-server and agent-box binaries to enable platform admin and in‑container operations.

Changes in this release

Feature Medium

MCP client can be wired into Claude Code via JSON configuration.

MCP client can be wired into Claude Code via JSON configuration.

Source: llm_adapter@2026-05-21

Confidence: high

Feature Medium

MCP client can invoke agent-box for in-the-box file and shell operations using SSH.

MCP client can invoke agent-box for in-the-box file and shell operations using SSH.

Source: llm_adapter@2026-05-21

Confidence: high

Feature Low

Three binaries are shipped: containarium, mcp-server, agent-box.

Three binaries are shipped: containarium, mcp-server, agent-box.

Source: granite4.1:30b@2026-05-22-audit

Confidence: high

Feature Low

Quick install script available for Linux hosts via curl and bash.

Quick install script available for Linux hosts via curl and bash.

Source: granite4.1:30b@2026-05-22-audit

Confidence: high

Feature Low

Manual installation instructions provided for any binary on any platform.

Manual installation instructions provided for any binary on any platform.

Source: granite4.1:30b@2026-05-22-audit

Confidence: high

Full changelog

Containarium v0.16.11

The open-source, self-hostable, agent-native sandbox.

Binaries

Three binaries ship in this release:

| Binary | Where it runs | What it does |
|---|---|---|
| containarium | The host (and your laptop, for the CLI) | The platform daemon + CLI. create, list, expose-port, ssh-config, etc. |
| mcp-server | Your laptop | The platform MCP — outside-the-box admin (create_container, list_containers, expose_port, list_backends). Wire it into Claude Code / Cursor. |
| agent-box | Inside each Containarium container | The in-the-box MCP — shell_exec, read_file, write_file, etc. Reached over stdio, typically via SSH. |

Quick install (Linux host)

curl -fsSL https://raw.githubusercontent.com/footprintai/containarium/main/hacks/install.sh | sudo bash

Manual install (any binary, any platform)

# containarium CLI / daemon (Linux x86_64 example)
curl -L -o /usr/local/bin/containarium \
  https://github.com/footprintai/containarium/releases/download/v0.16.11/containarium-linux-amd64
chmod +x /usr/local/bin/containarium

# platform MCP (your laptop, e.g. macOS arm64)
curl -L -o /usr/local/bin/mcp-server \
  https://github.com/footprintai/containarium/releases/download/v0.16.11/mcp-server-darwin-arm64
chmod +x /usr/local/bin/mcp-server

# agent-box (drop into your container image, Linux x86_64)
curl -L -o /usr/local/bin/agent-box \
  https://github.com/footprintai/containarium/releases/download/v0.16.11/agent-box-linux-amd64
chmod +x /usr/local/bin/agent-box

Verify checksums via SHA256SUMS.txt.

MCP client setup

Wire the platform MCP into Claude Code (~/.claude.json):

{
  "mcpServers": {
    "containarium": {
      "command": "/usr/local/bin/mcp-server",
      "env": {
        "CONTAINARIUM_SERVER_URL": "http://your-host:8080",
        "CONTAINARIUM_JWT_TOKEN": "<your-token>"
      }
    }
  }
}

Wire agent-box for in-the-box file/shell ops:

{
  "mcpServers": {
    "containarium-box": {
      "command": "ssh",
      "args": ["user@your-box", "agent-box"]
    }
  }
}

See README.md for the full agent-native walkthrough.

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track Containarium

Get notified when new releases ship.

Sign up free

About Containarium

All releases →

Beta — feedback welcome: [email protected]