Cross-Platform Micro-VM Sandbox for Agentic Workloads
Python
192
500 commits
updated Oct 3, 2026
NVX is an ultra-light micro-VM sandbox for running untrusted workloads with hardware-enforced isolation. It is built on top of OpenVMM and runs Linux as a guest.
NVX was jointly developed by the MSR Systems Research Group and Azure Research - Systems, building on research results from the Nanvix system.
This repository includes version pins for Linux and OpenVMM, along with the patches, guest source files, build tools, and benchmarks needed to use NVX.
Python 3.10 or newer is required. The commands below download the latest NVX release for the
selected platform, so no local build is required. A successful boot prints
NVX-GUEST-BOOT-OK: alpine and opens a root shell. Select Ubuntu userland
with the same NVX kernel by passing --guest ubuntu.
Exit cleanly from the guest with /sbin/nvx-exit 0. See the setup and
run guides for detailed prerequisites and runtime options.
ℹ️ For direct OpenVMM integration without the
scripts/nvx.pyruntime harness, see Run OpenVMM directly.
Requires KVM configured with read/write access to /dev/kvm.
git clone https://github.com/microsoft/nvx.git && cd nvx
python3 scripts/nvx.py download
python3 scripts/nvx.py run
Requires MSHV configured with read/write access to /dev/mshv.
git clone https://github.com/microsoft/nvx.git && cd nvx
python3 scripts/nvx.py download --hypervisor mshv
python3 scripts/nvx.py run --hypervisor mshv
Requires Windows Hypervisor Platform enabled.
git clone https://github.com/microsoft/nvx.git; Set-Location nvx
python scripts\nvx.py download
python scripts\nvx.py run
scripts/nvx.py command and option reference.Python
86.9%
Shell
6.9%
C
2.9%
PowerShell
2.8%
Cross-Platform Micro-VM Sandbox for Agentic Workloads
Python
192
500 commits
updated Oct 3, 2026
NVX is an ultra-light micro-VM sandbox for running untrusted workloads with hardware-enforced isolation. It is built on top of OpenVMM and runs Linux as a guest.
NVX was jointly developed by the MSR Systems Research Group and Azure Research - Systems, building on research results from the Nanvix system.
This repository includes version pins for Linux and OpenVMM, along with the patches, guest source files, build tools, and benchmarks needed to use NVX.
Python 3.10 or newer is required. The commands below download the latest NVX release for the
selected platform, so no local build is required. A successful boot prints
NVX-GUEST-BOOT-OK: alpine and opens a root shell. Select Ubuntu userland
with the same NVX kernel by passing --guest ubuntu.
Exit cleanly from the guest with /sbin/nvx-exit 0. See the setup and
run guides for detailed prerequisites and runtime options.
ℹ️ For direct OpenVMM integration without the
scripts/nvx.pyruntime harness, see Run OpenVMM directly.
Requires KVM configured with read/write access to /dev/kvm.
git clone https://github.com/microsoft/nvx.git && cd nvx
python3 scripts/nvx.py download
python3 scripts/nvx.py run
Requires MSHV configured with read/write access to /dev/mshv.
git clone https://github.com/microsoft/nvx.git && cd nvx
python3 scripts/nvx.py download --hypervisor mshv
python3 scripts/nvx.py run --hypervisor mshv
Requires Windows Hypervisor Platform enabled.
git clone https://github.com/microsoft/nvx.git; Set-Location nvx
python scripts\nvx.py download
python scripts\nvx.py run
scripts/nvx.py command and option reference.Python
86.9%
Shell
6.9%
C
2.9%
PowerShell
2.8%