/sandbox
A Claude Code slash command, read out of the shipped bundle. No mined inventory carries it: everything below comes from what this site has written about it.
What it is
Toggle [sandbox mode](/docs/en/sandboxing). Available on supported platforms only
Anthropic's own wording. Read off Commands, captured 2026-08-28.
Presence across releases
The miner has never read a build containing this name. It is here because a changelog entry of ours names it, which is evidence that it existed and not evidence of which releases carried it. The inventory starts at v2.1.138 and everything older than that was never mined.
Changelog entries naming it
-
v2.1.227Sandbox refusal now tells you how to turn sandboxing on
Sandbox refusals now hand you the exact setting to enable and point at /sandbox.
named in this entry
-
v2.1.221/sandbox install provisions and trusts the managed TLS CA on Windows
On Windows, sandboxed HTTPS now works after /sandbox install without a manual certificate trust step.
named in this entry
-
v2.1.221Windows sandbox install provisions a persistent TLS-inspection CA
On Windows, /sandbox install now sets up the certificate needed for sandboxed HTTPS, reporting partial success on failure.
named in this entry
-
v2.1.221/sandbox install error classification by code, and a longer timeout
Windows sandbox install failures now report the real cause, and the timeout message correctly says two minutes.
named in this entry
-
v2.1.221/sandbox reports whether the TLS inspection CA is trusted
The /sandbox status now shows whether the HTTPS inspection certificate is trusted and how to fix it.
named in this entry
-
v2.1.221Windows sandbox TLS termination can now use the managed sandbox CA
Windows sandbox TLS interception could use a persistent managed certificate authority, but that path is disabled here.
named in this entry
-
v2.1.221srt-win helper rewritten with async spawning, timeouts and typed errors
Windows sandbox setup no longer freezes the UI and reports specific failure reasons with timeouts.
named in this entry
Documentation pages
- Commands reference table Claude Code CLI
- spawn.sh: called once per claimed work item mentions it Claude Developer Platform
- Set up Claude Code for your organization mentions it Claude Code CLI
- Use Claude Code features in the SDK mentions it Claude Code CLI
- Intercept and control agent behavior with hooks mentions it Claude Code CLI
- Agent SDK reference - Python mentions it Claude Code CLI
- Securely deploying AI agents mentions it Claude Code CLI
- Handle approvals and user input mentions it Claude Code CLI
- Manage multiple agents with agent view mentions it Claude Code CLI
- Best practices for Claude Code mentions it Claude Code CLI
- Claude apps gateway for Amazon Bedrock, Claude Platform on AWS, Google Cloud, and Microsoft Foundry mentions it Claude Code CLI
- Communications kit mentions it Claude Code CLI
- Let Claude use your computer from the CLI mentions it Claude Code CLI
A reference table page is one whose own table defines this name, and it is where the description above came from. A page that mentions it carries the name somewhere in its text and may say nothing about it at all. Every page carrying it.
Read out of the published npm bundle release by release, and out of Anthropic's own documentation as this site captured it. Nothing on this page is a description anybody here wrote about what the slash command does. All slash commands.