Skip to content

pixi-sandbox

Offline sandboxes for pixi projects — pack, publish to an orphan branch, restore on an airlock with zero network.
CICoverageLicense: MITRustPixiPlatformsPRs WelcomeRelease

pixi-sandbox packs one or more pixi environments plus vendored Cargo crates into a directory, publishes it as an orphan branch, and restores it on a machine that cannot reach the internet.

Because pixi discovers pixi-<command> on PATH, installing pixi-sandbox unlocks native subcommands: pixi sandbox pack, doctor, publish, restore.
pixi project
.pixi/envs/*
pixi.lock
Cargo.lock
devdocs
pack
orphan branch
sandbox/developer-linux-64
manifest.json
sharded blobs
262 MB → 110 MB dedup
fetch
airlock
.pixi/envs/*
vendor/
offline verified
offline
1
Pack

Resolves envs via pixi-pack, vendors crates, fetches pinned tools (sha256-verified), writes manifest.json with every blob’s digest.

2
Verify

doctor –verify checks every sha256, reports all failures, writes nothing. Same code path as restore.

3
Publish & Restore

Force-push as orphan branch. Airlock does git fetch + pixi-sandbox restore –output-path . → offline pixi install –frozen –offline + pixi run –frozen – cargo build –offline.

Zero-Network Restore

Verified restore in network-severed environments (unshare -rn) without touching external channels.

Git-Native Transport

Published to orphan branch. Whole files content-addressed by Git, free dedup across envs.

Automatic Sharding

Splits files >95 MiB into .partNNN chunks to respect GitHub's 100 MiB blob limit.

Strict Verification

Cryptographically verifies every payload against embedded SHA-256 pins before writing.

Cargo Vendoring

Bundles Cargo workspace dependencies alongside Pixi conda envs for offline cargo build.

Pure Rust CLI

Static musl binaries, no Python deps. Works as pixi sandbox pack/doctor/publish/restore.

Terminal window
pixi global install --channel https://prefix.dev/archont561/archont561 --channel conda-forge pixi-sandbox
pixi-sandbox init

Commit the generated configuration, restore launcher, and project-owned publishing workflow. The workflow calls the installed CLI directly on native runners; composite Actions and the repository reusable publisher have been retired from new refs.

This docs site uses Astro Icon with Iconify — 300k+ open source icons, one framework.

lucide
mdi
tabler
simple
shield
git

Browse all: icon-sets.iconify.design — sets like lucide, mdi, tabler, simple-icons are included.