← All agents

Replit Agent

hardened-systemcloud

Mid-migration from hardened seccomp-bpf containers to ; a given user may be on either backend today.

Replit Agent runs in Replit's cloud (GCP) in hardened shared-kernel containers with seccomp-bpf, and is mid-migration to ('killing containers… no shared kernel'), so a given user may be on either backend today. Nix is used for reproducibility, not as the security boundary. gVisor is not confirmed by any primary source, do not attribute it. Cloud Armor guards prod; the sandbox's own default is undisclosed.

Secrets

secrets: managed

Replit Secrets are injected into the workspace as environment variables.

Sources