Sessionboxer 1.4.0
Install: npx sessionboxer@1.4.0 serve, brew install talayolabs/tap/sessionboxer, the installers on the
release, docker compose up, or curl -fsSL https://sessionboxer.talayolabs.com/install.sh | sh. The Sandbox
image changed: Stop → Resume existing sessions.
- The agent knows it runs inside Sessionboxer: a
sessionboxerMCP in every box (whoami,docs, PRs, snapshot, queue, title,verify,notify, terminals,ui_open),.sessionboxer/session.json, a marker in the chat for every action; policy off / this Session / all Sessions in Settings → Agent tools. (cb1a172) - Agents work across Sessions: list, create (you Allow or Deny in the chat), fork with their own handoff, message another Session (marked from Session X on both sides), wait, stop own children, schedules; children show child of … in the sidebar. (5f94bcf)
- The
sessionboxerMCP in Windows and macOS Sessions too; the guide's The agent and Sessionboxer itself section (ADR-0062); Windows/macOS VMs no longer refuse to boot on a false low-RAM check. (834f2ff) - Windows Sessions run the agent inside the VM: agent, MCP servers, git and the Terminal (PowerShell) are Windows-native, repositories in
C:\workspace; reinstall the Windows base once. (cc50730) - macOS Sessions run the agent inside the VM the same way (zsh Terminal,
/Users/agent/workspace); an existing base is reprovisioned from Global settings → macOS VMs. (d38f65e) - Environment per session: Docker · Linux, QEMU · Windows (a Windows VM next to the box, its desktop over RDP; Linux hosts with KVM, base installed once from Global settings). (8a6350b)
- QEMU · macOS as a third environment: a macOS VM (dockur/macos, OpenCore) next to the box, its desktop over VNC; Linux hosts with KVM and AVX2, Apple's licence terms apply. (4078b03)
- New session toolbar: Environment, Agent and Model dropdowns with logos; every native
<select>replaced by the themed list; a Runtime item first in the set-up checklist. (4d4a065) - New session: picking an unconnected Agent opens Connect a Provider, picking an environment that is not installed opens its install dialog. (f4f9eb3)
- Sign in with Claude Code, Codex, Cursor or Devin from Settings in your own browser; a login already on the server's machine is copied with one click. (7cbe0c3)
- One USB device of the host per Session (Connect USB device… menu; WSL2 via usbipd). (52ce83a)
- Global settings as a split view with
#/settings/<section>deep links and one Save. (f6126ef) - An in-repo design system: Radix Primitives for menus, dialogs and tooltips;
--vscode-*aliases from the same palette as the VS Code theme. (8d4505f) - Long conversations no longer lose messages on reload (the 5,000-event cap is gone); the Code pane keeps each Session's own tabs and layout. (7a12588)
- No more messages missing after the tab was in the background: a dead push socket is detected and the transcript refetched. (054616a)
Images: ghcr.io/talayolabs/sessionboxer-sandbox:1.4.0, ghcr.io/talayolabs/sessionboxer:1.4.0 (linux/amd64, linux/arm64).
npm: npx sessionboxer@1.4.0 serve, or npm i -g sessionboxer@1.4.0 then sessionboxer serve. Full instructions: https://github.com/talayolabs/sessionboxer#install
Desktop app (needs Docker, not Node): the Sessionboxer-1.4.0-* files below — Linux AppImage/deb (x64, arm64), macOS dmg/zip (mac-arm64 for Apple silicon, mac-x64 for Intel), Windows installer/zip (x64); SHA256SUMS alongside.
The builds are not code-signed yet, so macOS says the dmg is damaged and can't be opened. Before opening it, clear the quarantine flag on the download: xattr -d com.apple.quarantine ~/Downloads/Sessionboxer-1.4.0-mac-*.dmg, then open the dmg and drag Sessionboxer to Applications. If the app itself is still refused, xattr -dr com.apple.quarantine /Applications/Sessionboxer.app or right-click → Open. On Windows choose More info → Run anyway in SmartScreen.