Agent skill

Bailian Sandbox

by modelstudioai in modelstudioai/cli

阿里云百炼 Sandbox 沙箱实例与模版生命周期管理入口:用户要创建、查询、连接、暂停、恢复或释放百炼沙箱, 或查看内置基础镜像、上传模版挂载文件、创建、更新、查询、删除沙箱模版、查看模版构建状态时,使用 bl sandbox。

Apache-2.0Auto-check passedMedia & Creative

Install Bailian Sandbox

skills CLI
$ npx skills add modelstudioai/cli --skill bailian-sandbox -a claude-code

Project install by default; add -g for ~/.claude/skills/.

GitHub CLI
$ gh skill install modelstudioai/cli bailian-sandbox --agent claude-code

Project scope by default; add --scope user for a personal install. Needs GitHub CLI 2.90.0 or later (public preview).

Manual copy
$ git clone --depth 1 https://github.com/modelstudioai/cli.git skills-src && mkdir -p .claude/skills && cp -r skills-src/skills/bailian-sandbox .claude/skills/bailian-sandbox && rm -rf skills-src

Use ~/.claude/skills/ instead of .claude/skills for a personal install. The folder must contain SKILL.md.

Claude Code skills documentation · loads skills from .claude/skills/

Facts

Skill name
bailian-sandbox
GitHub stars
541
Token cost
~2.1k tokens
SKILL.md length
990 words
Files
4 (incl. assets)
Skills in repo
8
Repo updated
First seen
Licence
Apache-2.0

At a glance

阿里云百炼 Sandbox 沙箱实例与模版生命周期管理入口:用户要创建、查询、连接、暂停、恢复或释放百炼沙箱, 或查看内置基础镜像、上传模版挂载文件、创建、更新、查询、删除沙箱模版、查看模版构建状态时,使用 bl sandbox。

  • Tasks that involve Browser automation
  • SKILL.md covers Scope and setup, Choose the operation, Connect to an instance and Operational boundaries, plus 2 more sections
  • Reaches workspace.cn-beijing.maas.aliyuncs.com

What it does

Bailian Sandbox is an agent skill from modelstudioai/cli. 阿里云百炼 Sandbox 沙箱实例与模版生命周期管理入口:用户要创建、查询、连接、暂停、恢复或释放百炼沙箱, 或查看内置基础镜像、上传模版挂载文件、创建、更新、查询、删除沙箱模版、查看模版构建状态时,使用 bl sandbox。 用户要访问已创建实例、打开 WebShell、连接 browser-use 浏览器自动化或 VNC 实时画面时,先获取连接信息,再连接数据面。 不用于宿主执行沙箱设置、E2B 官方云资源或通用文件传输。 agents.yaml 托管 Agent / Session / Environment 管理交给 bailian-managed-agent。 官方安装:bl skill init(与共享协议 bailian-protocol 同装)。

Its SKILL.md is about 2.1k tokens, which your agent loads only when the skill is triggered. The skill folder holds 5 other files, including assets (for example `assets/instance-connections.md`, `reference/index.md` and `reference/sandbox.md`).

It sits in Media & Creative, covering Browser automation. It works with Model Context Protocol. The repository describes itself as: Official Model Studio CLI(阿里云百炼 CLI)built for AI Agent frameworks, exposing models, search, multimodal, and workflow capabilities as structured tool calls. The licence is Apache-2.0.

When your agent uses it

  • Tasks that involve Browser automation

Example prompts

  • “/bailian-sandbox”

What it can do on your machine

Read from SKILL.md and the folder at commit 8bbbbc7. It shows what the files ask for, not the result of running them.

  • Tool permissions

    Pre-approves nothing: there is no allowed-tools line, so your agent's usual permission prompts apply.

    From allowed-tools in the SKILL.md frontmatter.

  • Runs code

    No scripts in the folder and no shell commands in SKILL.md.

    From the folder's file list and the shell code blocks in SKILL.md.

  • Network

    Hosts in commands or code, which the agent is likely to contact:

    • workspace.cn-beijing.maas.aliyuncs.com

    From URLs in SKILL.md, links to its own repository left out.

  • Credentials

    Names no API keys, tokens, secrets or passwords.

    From names ending in _API_KEY, _TOKEN, _SECRET, _KEY or _PASSWORD in SKILL.md.

Context cost

Bailian Sandbox loads about 2.1k tokens when it runs. Until then it costs about 89 tokens; SKILL.md has 990 words of instructions outside code blocks.

Always · name and description, kept in context so the agent knows when to use it
~89
When it runs · the whole SKILL.md, loaded when a task matches
~2.1k

Estimates: characters ÷ 4, the usual rule of thumb; real counts depend on the model's tokenizer. Scripts and assets cost tokens only if the agent reads them.

Safety

Auto-check passed

The automated check found no risky patterns in SKILL.md.

Automated static check — not a guarantee. Review scripts before installing. It scans the text of SKILL.md for risky patterns (piping downloads into a shell, reading credential files, hidden Unicode, destructive commands); files beside SKILL.md are not scanned.

SKILL.md

The full file from modelstudioai/cli at commit 8bbbbc7, republished under its Apache-2.0 licence (© modelstudioai). 990 words, ~2,096 tokens.

Download SKILL.mdSave it as .claude/skills/bailian-sandbox/SKILL.md (or your agent's skills folder). This skill also uses 3 other files; get the full folder from GitHub.
name
bailian-sandbox
description
阿里云百炼 Sandbox 沙箱实例与模版生命周期管理入口:用户要创建、查询、连接、暂停、恢复或释放百炼沙箱, 或查看内置基础镜像、上传模版挂载文件、创建、更新、查询、删除沙箱模版、查看模版构建状态时,使用 `bl sandbox`。 用户要访问已创建实例、打开 WebShell、连接 browser-use 浏览器自动化或 VNC 实时画面时,先获取连接信息,再连接数据面。 不用于宿主执行沙箱设置、E2B 官方云资源或通用文件传输。 agents.yaml 托管 Agent / Session / Environment 管理交给 bailian-managed-agent。 官方安装:`bl skill init`(与共享协议 bailian-protocol 同装)。
metadata.version
2.1.0

Bailian Sandbox (bl sandbox)

Before running bl, read the shared bailian-protocol for consent, high-risk confirmation, version checks, authentication, and error handling. If it is missing, stop execution and prompt the user to install the full family with bl skill init.

Scope and setup

  • Manage Sandbox instances and templates through Bailian's E2B-compatible REST control plane. No E2B SDK or E2B API key is required; authentication uses the Bailian API Key as an Authorization Bearer token.
  • Resolve Base URL through the same CLI chain as Managed Agent: --base-url > DASHSCOPE_BASE_URL > login/profile base_url. Use an origin such as https://workspace.cn-beijing.maas.aliyuncs.com; the CLI strips URL paths/query/fragment and appends /api/v1/agentstudio/sandbox for lifecycle operations, or /api/v1/agentstudio/files for template file uploads. The saved API Key is reused. Profile capability fallback follows the shared protocol for both the key and Base URL.
  • If no Base URL is configured, resolve the workspace from --workspace-id, then BAILIAN_WORKSPACE_ID, then configured workspace_id, and use https://{workspace_id}.cn-beijing.maas.aliyuncs.com/api/v1/agentstudio/sandbox. With a configured Base URL, the workspace flag is optional. The service currently supports cn-beijing and requires prior Sandbox SLR authorization.
  • No agents.yaml or local IaC state is required. get / connect return instance connection information; neither opens an interactive shell or browser. For WebShell, CDP, or VNC, use that information with the runtime APIs described below. Do not invent bl sandbox exec, webshell, or browser subcommands.

Choose the operation

User intentCommand family
Discover built-in base image presetsbl sandbox official-images (offline, no authentication)
Upload a local file for template mountsbl sandbox file upload
Inspect or create instancesbl sandbox list / get / create
Connect, pause, or resume an instancebl sandbox connect / pause / resume
Release an instancebl sandbox delete
Inspect or build templatesbl sandbox template list / get / create / update
Check a submitted template buildbl sandbox template build-status
Delete a templatebl sandbox template delete

Read reference/index.md and the relevant section of reference/sandbox.md for exact flags, usage, and examples, or run the matching command with --help. Do not guess flags.

To save the origin in an isolated Profile, use bl auth login --config sandbox --api-key <key> --base-url <origin>. For a one-command override, use bl sandbox list --base-url <origin>. Custom gateways also apply to template build-status polling.

For built-in template images, discover the preset ID or Chinese name through sandbox official-images, then pass it to template create/update with --image. This fills both fromImage and imageName; --image-name alone remains a display name, not an image selector. Presets override the body's image fields; explicit --from-image / --image-name override the corresponding preset fields. Presets are pinned cn-beijing image URLs, not a live catalog or an availability guarantee for other environments. Omitting --image does not change existing defaults or update a template's image implicitly. See the generated reference for the catalog and exact flags.

Connect to an instance

For requests to access a running instance, open WebShell, control a browser, or show its live desktop, read assets/instance-connections.md. It contains the connection workflow, API payloads, verification steps, and official documentation links.

  • Obtain fresh JSON with bl sandbox get --sandbox-id <id> --show-credentials --output json. Use envdAccessToken as X-Access-Token; the control-plane Bailian API Key is a different credential.
  • WebShell uses the returned envdUrl and envd PTY RPCs. The official browser template uses port 3000 on {port}-{sandboxID}.{domain} for CDP and VNC. These ports and paths come from the template contract, not fields returned by get; do not apply them to other images without checking their documentation.
  • When the user asks to open or access the instance, complete the connection and verify a terminal command or rendered browser page. Returning connection JSON or a successful health check alone does not complete that request. A local proxy URL is a host-side access page, not a URL returned by the Sandbox API.
Show full SKILL.md (377 more words)Show less

Operational boundaries

  • Mutating commands act on remote resources. Only perform the requested operation and scope; read-only discovery does not authorize creating, pausing, resuming, or deleting resources.
  • Instance and template deletion are high-risk. Follow the shared protocol: show the exact target and risk, then wait for explicit confirmation before adding --yes. Treat requires_confirmation as a stop signal, not a reason to retry automatically.
  • Connection credentials are redacted by default. A request to connect to or access the instance needs the tokens: use --show-credentials for that operation, capture the result privately, and keep tokens out of chat summaries, logs, URLs, and committed files.
  • Template create/update wait by polling the build-status endpoint, not template details. --async returns after the submission response with templateID / buildID; it does not mean the build is ready. Use those IDs with template build-status to check completion.
  • Global --timeout limits HTTP requests and total template-build polling. --instance-timeout sets instance lifetime; these are different limits. A polling timeout does not prove the remote build failed or stopped; check its status before submitting another build.
  • --body accepts a JSON object inline or through @path; explicit flags override body fields. For local template mounts, first use bl sandbox file upload: it sends multipart file and fixed source=sandbox_template directly to /api/v1/agentstudio/files with the Bailian API Key. Use the returned id as mntConfig[].originFileId, with mountPath and optional originFileName, in template create/update --body. The upload and template must use the same workspace. This is not the temporary OSS upload from bl file upload or a transfer into a running instance.
  • File upload returns immediately after the upload response and does not poll security review. status=checking is not ready to mount; only use files whose status is available. --quiet returns the File ID only; inspect the normal/JSON response for status. Upload alone does not authorize creating a template or instance.

Common hand-offs

Refer to sibling skills by name: read them if installed; otherwise use the command's --help or prompt bl skill init.

  • Managed Agent / Session / Environment resources or agents.yaml IaC → bailian-managed-agent (bl managed-agent --help).
  • Workspace discovery or CLI login/configuration → bailian-cli (bl workspace --help / bl auth --help / bl config --help).

references

© modelstudioai, Apache-2.0. Rendered from Markdown: HTML in the file is shown as text, images as links, and headings moved down two levels. Raw file

Files

SKILL.md and 3 other files (assets) in skills/bailian-sandbox of modelstudioai/cli.

  • SKILL.md
  • assets/instance-connections.md
  • reference/index.md
  • reference/sandbox.md

Open the folder on GitHubat commit 8bbbbc7

Compare with similar skills

Bailian Sandbox next to the 5 skills that share the most tags, products or categories with it. Stars are the repository's; “used in” counts other GitHub owners with a copy.

Bailian Sandbox compared with similar skills
SkillStarsUsed inTokensAuto-checkLicenceRepo updated
Bailian Sandbox this skillmodelstudioai/cli541—~2.1kAutomated safety check: PassApache-2.0
Md2wechatgeekjourneyx/md2wechat-skill3.7k—~3.8kAutomated safety check: PassCustom licence
Next Dev Loopsanity-io/ui1768 repos~2kAutomated safety check: PassMIT
Skyvern Browser AutomationSkyvern-AI/skyvern23k—~1.9kAutomated safety check: PassAGPL-3.0
Zerotoken OpenclawAMOS144/ZeroToken4551 repos~2.9kAutomated safety check: PassMIT
Unbrowseunbrowse-ai/unbrowse776—~3.3kAutomated safety check: PassMIT

Similar skills

  • Md2wechat

    geekjourneyx/md2wechat-skill

    Convert Markdown to WeChat Official Account HTML. An agent skill from geekjourneyx/md2wechat-skill.

    3.7k GitHub stars~3.8k tokensUpdated 13 days ago
    Media & CreativeAuto-check passed
  • Next Dev Loop

    sanity-io/ui

    Official

    Verify Next.js runtime behavior after editing app code. An agent skill from sanity-io/ui.

    176 GitHub starsUsed in 8 repos~2k tokens
    Productivity & AutomationAuto-check passed
  • Skyvern Browser Automation

    Skyvern-AI/skyvern

    Automates websites with Skyvern's AI browser agent to fill forms, extract data, download files, log in and run multi-step workflows through SDKs, REST, MCP or a CLI.

    23k GitHub stars~1.9k tokensUpdated today
    Productivity & AutomationAuto-check passed
  • Zerotoken Openclaw

    AMOS144/ZeroToken

    A skill your agent uses when using ZeroToken MCP via OpenClaw for browser automation, trajectory recording and low-token replay, especially for recurring or scheduled browser tasks.

    455 GitHub starsUsed in 1 repo~2.9k tokens
    Productivity & AutomationAuto-check passed
  • Unbrowse

    unbrowse-ai/unbrowse

    Search and call websites through Unbrowse's hosted API or remote MCP, reuse indexed site tools, read pages, and learn missing routes in its cloud browser.

    776 GitHub stars~3.3k tokensUpdated yesterday
    Agent WorkflowsAuto-check passed
  • AIPex Browser Control

    AIPexStudio/AIPex

    Lets an agent drive Chrome through the AIPex extension and its MCP bridge: navigation, clicking, form filling, screenshots, tab management and downloads.

    1.3k GitHub stars~1.8k tokensUpdated 1 mo ago
    Productivity & AutomationAuto-check passed

More from modelstudioai/cli

All 8 skills in this repo
  • Bailian Media Generation

    modelstudioai/cli

    Chinese-language entry point into Alibaba Cloud Bailian's image, video and speech generation and understanding, routed through separate image, video, speech and vision commands.

    541 GitHub stars~2k tokensUpdated 7 days ago
    Auto-check passed
  • Bailian Shared Protocol

    modelstudioai/cli

    Shared execution protocol for the Alibaba Cloud Bailian bl skill family, covering consent, version checks, authentication and install, issue reporting and output conventions.

    541 GitHub stars~2.9k tokensUpdated 7 days ago
    Auto-check passed
  • Aliyun Model Studio CLI

    modelstudioai/cli

    Hub for the bl CLI of Alibaba Cloud Model Studio (Bailian): app calls, knowledge bases, model catalog, usage and quota, workspaces, MCP market, auth and skill installs.

    541 GitHub stars~4.2k tokensUpdated 7 days ago
    Auto-check passed
  • Drives fine-tuning on Alibaba Cloud Model Studio with the bl CLI: validate and upload data, create a job, watch it, export results and deploy the model.

    541 GitHub stars~1.8k tokensUpdated 7 days ago
    Auto-check passed
  • Manages Alibaba Cloud Bailian knowledge bases with the bl command line: create bases, upload documents, deploy search services, fix chunks and handle data center files.

    541 GitHub stars~1.5k tokensUpdated 7 days ago
    Auto-check passed
  • Bailian Managed Agent CLI

    modelstudioai/cli

    Manages Alibaba Cloud Bailian managed agents as infrastructure as code with the bl managed-agent command, previewing every change before apply or destroy.

    541 GitHub stars~3.5k tokensUpdated 7 days ago
    Auto-check: notes

Questions about Bailian Sandbox

What does Bailian Sandbox do?

阿里云百炼 Sandbox 沙箱实例与模版生命周期管理入口:用户要创建、查询、连接、暂停、恢复或释放百炼沙箱, 或查看内置基础镜像、上传模版挂载文件、创建、更新、查询、删除沙箱模版、查看模版构建状态时,使用 bl sandbox。. Bailian Sandbox is an agent skill from modelstudioai/cli.

When should I use Bailian Sandbox?

Bailian Sandbox fits situations like: tasks that involve Browser automation.

How do I install Bailian Sandbox in Claude Code?

Run `npx skills add modelstudioai/cli --skill bailian-sandbox -a claude-code`. Or copy the skill folder (skills/bailian-sandbox in modelstudioai/cli) into .claude/skills/bailian-sandbox in your project. Claude Code loads it when a task matches its description.

How do I install Bailian Sandbox in Codex?

Run `npx skills add modelstudioai/cli --skill bailian-sandbox -a codex`. Or copy the skill folder (skills/bailian-sandbox in modelstudioai/cli) into .agents/skills/bailian-sandbox in your project. Codex loads it when a task matches its description.

Can I use Bailian Sandbox in Cursor, Gemini CLI or GitHub Copilot?

Cursor, Gemini CLI, GitHub Copilot and OpenCode also load SKILL.md folders. With the skills CLI, run `npx skills add modelstudioai/cli --skill bailian-sandbox -a cursor` (or -a gemini-cli, github-copilot or opencode for the others). To copy it by hand, put the folder in .cursor/skills/bailian-sandbox, .gemini/skills/bailian-sandbox, .github/skills/bailian-sandbox and .opencode/skills/bailian-sandbox in your project.

What does Bailian Sandbox need to run?

SKILL.md names no scripts, command-line tools or credentials: Bailian Sandbox is instructions for the agent only.

Does Bailian Sandbox access the network?

SKILL.md names 1 domain. In commands or code: workspace.cn-beijing.maas.aliyuncs.com; the agent is likely to contact it when it follows the instructions. This is read from the text; nothing was executed.

Is Bailian Sandbox safe to install?

Our automated static check of SKILL.md found no risky patterns, such as piping downloads into a shell, reading credential files or hidden Unicode. It is not a guarantee. Review the folder before installing.

What licence does Bailian Sandbox use?

Bailian Sandbox is published under the Apache-2.0 licence (the repository's licence). It allows redistribution, so the full SKILL.md is shown on this page.

How many tokens does Bailian Sandbox use?

About 2.1k tokens (SKILL.md is roughly 8.4k characters). Agents keep only the skill's name and description in context until a task matches; then they load SKILL.md in full.

What are the alternatives to Bailian Sandbox?

Skills that share tags, products or a category with Bailian Sandbox: Md2wechat (geekjourneyx/md2wechat-skill, 3.7k stars), Next Dev Loop (sanity-io/ui, 176 stars), Skyvern Browser Automation (Skyvern-AI/skyvern, 23k stars) and Zerotoken Openclaw (AMOS144/ZeroToken, 455 stars). The comparison table on this page puts their stars, adoption, token cost, safety result and licence side by side.

Who maintains Bailian Sandbox?

modelstudioai (a GitHub organization) maintains it in modelstudioai/cli, which has 541 GitHub stars. The repository holds 8 skills in this directory. The repository was last updated on September 30, 2026.

Source: modelstudioai/cli on GitHub. Facts on this page come from the repository at the commit we read; the author's words are quoted as theirs.