cpuos

Base profile

Browser sandbox template

Plan a Chromium and Playwright sandbox for browser agents: isolate sessions, scope destinations and return screenshots and structured observations.

When to use this profile

Use a browser profile when an agent needs rendered pages, page interaction or screenshots. Create a fresh browser context for each user task. The model should receive the relevant observation and a bounded screenshot, not every cookie, response body and console message from the session. Reserve heavier browser concurrency for a separately measured resource profile.

Prepare a repeatable environment

  • Pin Playwright and install its matching browser binary during image preparation.
  • Create one ephemeral context per task and define a download directory under /work/output.
  • Use a destination allowlist and a staging account for authenticated workflows.
Command inside a prepared Linux guest
node /work/browse.mjs

Return results the agent can use

  • Screenshots tied to the relevant URL and step.
  • A compact page observation or structured extraction.
  • A trace on failure, with secrets and user data removed before sharing.

Visit a controlled fixture page, extract a known label and save a screenshot. Verify that a second session has no cookies from the first and that disallowed destinations are denied.

Resources and boundaries

Start with 2 vCPU and 4 GB of RAM, then measure peak memory and task duration on a representative fixture. These are workload planning values, not a benchmark or a provisioned configuration. Use the sandbox cost calculator to estimate running time and retained snapshots.

  • Page content is untrusted input and can contain prompt injection.
  • Do not use a shared browser profile or persistent personal cookies.
  • Browser subprocesses increase RAM demand; test with your actual tab count and page complexity.

Keep model inference separate from this execution profile. A hosted model or gpuOS can decide the next action while the CPU environment runs it. The quickstart describes the account workflow and the proposed runtime contract.

Questions

Is this a separate built-in template?
This page documents the browser base profile shown in the cpuOS product catalog. Runtime provisioning requires a connected execution service; creating an account does not provision a microVM.
Can I run the command now?
The command runs in a Linux environment where the listed dependencies and input files are prepared. cpuOS SDK examples describe a proposed contract; confirm runtime access and package versions before integration.
How should I choose CPU and memory?
Use the starting profile to run a representative fixture, measure peak memory and elapsed time, and add room for package installation, worker processes and larger inputs. Enforce a task timeout separately.

Related guides

Plan your browser task

Create a workspace and choose a profile. Connect an execution backend before running code.

gpuOS · where models think

Need the model too? Run it on gpuOS

gpuOS serves open models on your own GPUs behind one OpenAI-compatible API. The model reasons on gpuOS, the agent acts in a cpuOS sandbox.