Experimenting with sandbox-runtime configuration for Claude Code on Linux.
- Enable sandbox per-project using
/sandboxcommand in Claude Code CLI - Allow Docker commands to run unsandboxed (so containers work)
- Allow sandboxed commands to communicate with Docker via
/var/run/docker.sock