Azure Logic Apps Adds Sandboxed Code Interpreters to Agent Workflows

TL;DR · AI 摘要
Azure Logic Apps 添加了沙盒代码解释器到代理工作流中,提高了自动化流程的安全性和灵活性。
核心要点
- Azure Logic Apps 现在支持沙盒代码解释器,增强自动化流程安全。
- 沙盒环境隔离代码运行,防止潜在风险。
- 这将提高自动化流程的灵活性和可靠性。
结构提纲
按章节快速跳转。
- §介绍
Azure Logic Apps 添加了沙盒代码解释器到代理工作流中。
- ·功能介绍
沙盒环境隔离代码运行,防止潜在风险。
- ·应用场景
提高自动化流程的灵活性和可靠性。
增强自动化流程的安全性。
思维导图
用一张图看清主题之间的关系。
查看大纲文本(无障碍 / 无 JS 友好)
- Azure Logic Apps 添加沙盒代码解释器
- 沙盒环境隔离代码运行
- 提高自动化流程灵活性和可靠性
- 增强自动化流程安全性
金句 / Highlights
值得收藏与分享的关键句。
Azure Logic Apps 现在支持沙盒代码解释器,增强自动化流程安全。
沙盒环境隔离代码运行,防止潜在风险。
这将提高自动化流程的灵活性和可靠性。
Azure Logic Apps Adds Sandboxed Code Interpreters to Agent Workflows - InfoQ
[BT](https://www.infoq.com/int/bt/ "bt")
InfoQ Software Architects' Newsletter
A monthly overview of things you need to know as an architect or aspiring architect.
Enter your e-mail address
Select your country - [x] I consent to InfoQ.com handling my data as explained in this Privacy Notice.
Close
QCon San Francisco (Nov 16-20): What's next in AI? What's next in software? Learn from the teams already doing it.Register Now
Close
Toggle Navigation
Facilitating the Spread of Knowledge and Innovation in Professional Software Development
English edition
[Write for InfoQ](https://www.infoq.com/write-for-infoq/ "Write for InfoQ")
Search
Unlock the full InfoQ experience
Unlock the full InfoQ experience by logging in! Stay updated with your favorite authors and topics, engage with content, and download exclusive resources.
or
Don't have an InfoQ account?
- Stay updated on topics and peers that matter to youReceive instant alerts on the latest insights and trends.
- Quickly access free resources for continuous learningMinibooks, videos with transcripts, and training materials.
- Save articles and read at anytimeBookmark articles to read whenever youre ready.
NewsArticlesPresentationsPodcastsGuides
Topics
[Development](https://www.infoq.com/development/ "Development")
- [Java](https://www.infoq.com/java/ "Java")
- [Kotlin](https://www.infoq.com/kotlin/ "Kotlin")
- [.Net](https://www.infoq.com/dotnet/ ".Net")
- [C#](https://www.infoq.com/c_sharp/ "C#")
- [Swift](https://www.infoq.com/swift/ "Swift")
- [Go](https://www.infoq.com/golang/ "Go")
- [Rust](https://www.infoq.com/rust/ "Rust")
- [JavaScript](https://www.infoq.com/javascript/ "JavaScript")
Featured in Development
Dany Lepage discusses the architectural journey of porting a hit VR title to seven non-VR platforms. He explains how his team solved the challenges of cross-progression, diverse input paradigms, and maintaining release velocity across Steam, iOS, and PlayStation. Beyond the tech, he shares candid lessons on the "product fit" gap when translating immersive social presence to 2D screens.

All in developmentFollow Topic
[Architecture & Design](https://www.infoq.com/architecture-design/ "Architecture & Design")
- [Architecture](https://www.infoq.com/architecture/ "Architecture")
- [Enterprise Architecture](https://www.infoq.com/enterprise-architecture/ "Enterprise Architecture")
- [Scalability/Performance](https://www.infoq.com/performance-scalability/ "Scalability/Performance")
- [Design](https://www.infoq.com/design/ "Design")
- [Case Studies](https://www.infoq.com/Case_Study/ "Case Studies")
- [Microservices](https://www.infoq.com/microservices/ "Microservices")
- [Service Mesh](https://www.infoq.com/servicemesh/ "Service Mesh")
- [Patterns](https://www.infoq.com/DesignPattern/ "Patterns")
- [Security](https://www.infoq.com/Security/ "Security")
Featured in Architecture & Design
- #### Context is the Key to the Agentic Architecture Revolution: a Conversation with Baruch Sadogursky
Michael Stiefel spoke to Baruch Sadogursky about software architecture in the age of agentic AI. LLM can function, albeit stochastically, as reasoning machines capable of interpreting human ambiguity. With the appropriate rigorous context artifacts to control the LLM’s reasoning, software specifications can become the source of truth, while the code becomes a disposable intermediate language.

All in architecture-designFollow Topic
[AI Infrastructure](https://www.infoq.com/ai-ml-data-eng/ "AI Infrastructure")
- [Big Data](https://www.infoq.com/bigdata/ "Big Data")
- [Machine Learning](https://www.infoq.com/machinelearning/ "Machine Learning")
- [NoSQL](https://www.infoq.com/nosql/ "NoSQL")
- [Database](https://www.infoq.com/database/ "Database")
- [Data Analytics](https://www.infoq.com/data-analytics/ "Data Analytics")
- [Streaming](https://www.infoq.com/streaming/ "Streaming")
Featured in AI, ML & Data Engineering
Aaron Erickson discusses the evolution of AI workflows, shifting from "vibe checking" to building reliable, multi-agent frameworks. He explains how to combine deterministic software guardrails with agentic discovery, optimize agent hierarchies, leverage time-series foundation models, and implement rigorous evaluation pyramids to ensure architecture scales effectively in production.

All in ai-ml-data-engFollow Topic
[Culture & Methods](https://www.infoq.com/culture-methods/ "Culture & Methods")
- [Agile](https://www.infoq.com/agile/ "Agile")
- [Diversity](https://www.infoq.com/diversity/ "Diversity")
- [Leadership](https://www.infoq.com/leadership/ "Leadership")
- [Lean/Kanban](https://www.infoq.com/lean/ "Lean/Kanban")
- [Personal Growth](https://www.infoq.com/personal-growth/ "Personal Growth")
- [Scrum](https://www.infoq.com/scrum/ "Scrum")
- [Sociocracy](https://www.infoq.com/sociocracy/ "Sociocracy")
- [Software Craftmanship](https://www.infoq.com/software_craftsmanship/ "Software Craftmanship")
- [Team Collaboration](https://www.infoq.com/team-collaboration/ "Team Collaboration")
- [Testing](https://www.infoq.com/testing/ "Testing")
- [UX](https://www.infoq.com/ux/ "UX")
Featured in Culture & Methods
Sergiu Petean discusses the strategic journey of evolving DevOps into platform engineering within heavily regulated enterprise environments. He explains how to maximize efficiency using dynamic reference architectures, align platform KPIs directly with board-level business goals, reduce cognitive load via custom team topologies, and maintain innovation sovereignty through open-source technology.

All in culture-methodsFollow Topic
- [Infrastructure](https://www.infoq.com/infrastructure/ "Infrastructure")
- [Continuous Delivery](https://www.infoq.com/continuous_delivery/ "Continuous Delivery")
- [Automation](https://www.infoq.com/automation/ "Automation")
- [Containers](https://www.infoq.com/containers/ "Containers")
- [Cloud](https://www.infoq.com/cloud-computing/ "Cloud")
- [Observability](https://www.infoq.com/observability/ "Observability")
Featured in DevOps
Joseph Stein discusses engineering an enterprise AI-as-a-Service platform within a private cloud data center. He explains how to maximize underutilized GPU pools via multi-namespace scheduling, leverage Valkey and Lua for atomic priority queuing and backpressure management, mitigate OWASP Top 10 LLM risks via central proxy gateways, and scale batch pipelines using a custom S3-to-Kafka proxy.

All in devopsFollow Topic
[Events](https://events.infoq.com/ "Events")
Helpful links
- [About InfoQ](https://www.infoq.com/about-infoq "About InfoQ")
- [InfoQ Editors](https://www.infoq.com/infoq-editors "InfoQ Editors")
- [Write for InfoQ](https://www.infoq.com/write-for-infoq "Write for InfoQ")
- [About C4Media](https://c4media.com/ "About C4Media")
- [Diversity](https://c4media.com/diversity "Diversity")
Choose your language

[InfoQ Homepage](https://www.infoq.com/ "InfoQ Homepage")[News](https://www.infoq.com/news "News")Azure Logic Apps Adds Sandboxed Code Interpreters to Agent Workflows
[Cloud](https://www.infoq.com/Cloud/ "Cloud")
Online InfoQ Architect Certification (June 10): Peer conversations that change how you think.
Azure Logic Apps Adds Sandboxed Code Interpreters to Agent Workflows
May 27, 2026 3 min read
by
- Steef-Jan Wiggers
Follow Cloud Queue Lead Editor | Domain Architect | Cloud Expert
#### Write for InfoQ
Feed your curiosity.Help 550k+ global
senior developers
each month stay ahead.Get in touch
Log in to listen to this article
Audio ready to play
0:00 0:00
Normal 1.25x 1.5x
Like
Microsoft has introduced code interpreters for Azure Logic Apps, enabling AI agents within Logic Apps workflows to generate and execute Python, JavaScript, C#, and PowerShell code in Hyper-V isolated sandboxes. The code interpreters run as tools within the Logic Apps agent loop, meaning an LLM can receive a natural-language instruction, generate code to fulfill it, execute that code in a secure sandbox, and return the results, all within a single governed workflow.
The capability is powered by Azure Container Apps (ACA) dynamic sessions. Each code interpreter session runs in its own Hyper-V boundary, a hardware-level isolation primitive that Microsoft also uses for its own untrusted workloads. When network isolation is enabled on the ACA session pool, data never leaves the defined network boundaries. The Logic Apps team writes:
This brings the power of a code interpreter, similar to ChatGPT's advanced data analysis tool, right into the Logic Apps runtime. Instead of writing code or manually manipulating spreadsheets, users can now describe their intent in natural language and get executable results within the same workflow.
The practical use case is straightforward. An enterprise has sales data in a spreadsheet. A Logic Apps agent workflow receives the file, uses a document analysis tool to extract the data, generates Python code to compute trends and create visualizations, executes that code in a sandboxed session, and returns the results. The person asking the question does not need to know Python. The generated code runs in isolation, not on the host process, so a hallucinated import os; os.remove('/') cannot damage anything.
This positions Logic Apps differently within Microsoft's own agent platform landscape. Somnath Saha, an Azure Solution Architect at COFCO International, analyzed the three-way choice facing enterprise architects:
- Logic Apps Agent Loop for integration-heavy workflows with 450+ connectors;
- Microsoft Foundry for pro-code multi-agent orchestration with full model control;
- and Copilot Studio for low-code conversational agents embedded in Microsoft 365.
Saha argued that Logic Apps occupies a distinct niche:
Logic Apps Agent Loop is best suited when your scenario requires orchestrating across multiple enterprise systems, ERP, CRM, databases, APIs, with built-in governance, retry logic, and audit trails. It is the integration architect's agent platform.
Mattias Lögdberg, Founder of DevUP Solutions and Microsoft MVP, confirmed to InfoQ that architects have full control over model selection:
Behind the scenes right now, it’s the OpenAI service. So first, you can choose the models available for selection based on which models are deployed in that service. After that, you can control exactly what model to use per workflow/agent, so you have full control of what model to use.
The addition of a code interpreter strengthens that positioning. Integration workflows frequently need to transform, analyze, or enrich data mid-flow. Previously, this required calling out to an Azure Function or an external API. Now the agent can generate and execute the transformation code inline, within the same workflow and the same security boundary.

_(Source: Microsoft Tech Community blog post - Logic Apps agent workflow with tool branches for expense processing, including human review via adaptive card.)_
The sandboxing approach is worth comparing across hyperscalers for teams evaluating where to run agent-generated code. Cloudflare uses container-based isolation on its edge network, with V8 isolates for lighter workloads. Google's GKE Agent Sandbox uses gVisor kernel interception as an open-source Kubernetes primitive. Microsoft's approach uses Hyper-V microVMs, which provide the strongest boundary of the three; however, they require Azure Container Apps infrastructure. Each makes a different tradeoff between isolation strength, portability, and operational overhead.
The code interpreter supports file operations alongside code execution. Agents can upload files to the ACA session, reference them as data sources in generated code, and download results. This creates a complete data pipeline within the agent loop: ingest a file, analyze it with generated code, produce a report or visualization, and return it to the user or pass it to the next workflow step.
Logic Apps code interpreters are available now in public preview. A prerequisite is an Azure Container Apps code interpreter session pool, which can be created through the Azure portal or CLI. The Logic Apps agent labs include a step-by-step walkthrough for configuring the integration.
About the Author

#### Steef-Jan Wiggers
Steef-Jan Wiggers is one of InfoQ's senior cloud editors and works as a Domain Architect at VGZ in the Netherlands. His current technical expertise focuses on implementing integration platforms, Azure DevOps, AI, and Azure Platform Solution Architectures. Steef-Jan is a regular speaker at conferences and user groups and writes for InfoQ. Furthermore, Microsoft has recognized him as a Microsoft Azure MVP for the past sixteen years.
Show more Show less
#### This content is in the Cloud topic
Follow Topic
##### Related Topics:
Followers: 4107
Follow Topic
Followers: 10246
Follow Topic
Followers: 5077
Follow Topic
Followers: 5925
Follow Topic
Followers: 2140
Follow Topic
Followers: 0
Follow Topic
Followers: 41
Follow Topic
Followers: 148
Follow Topic
Followers: 3
Follow Topic
Followers: 3
Follow Topic
Followers: 51
Follow Topic
* #### Related Editorial
- ##### Microsoft Azure Enhances Observability with OpenTelemetry Support for Logic Apps and Functions
* #### Related Sponsors
- #### Related Sponsor
Move from complexity to control. Run and scale your Jakarta EE, Spring, and Quarkus applications on a unified platform that replaces infrastructure chaos with deployment simplicity and total autonomy. **Learn More**.
Related Content
May 11, 2026 
- ##### Cloudflare Completes Its Agent Infrastructure Stack with Browser Run Rebuild and Six-Layer Platform
May 22, 2026
May 15, 2026 
May 13, 2026
- ##### InfoQ Online Certification Program: New AI Engineering and Organizational Architecture Cohorts
May 26, 2026
May 18, 2026
May 15, 2026
May 21, 2026
May 08, 2026
Related Sponsors
- #### Cutting Java Costs in 2026 Without Slowing Delivery
Java teams face rising cloud costs and complexity. This fact sheet shows what actually reduces spend in 2026—from container and Kubernetes optimization to Java-focused platforms—and includes real examples with projected savings.
- #### The Essential Guide to AI Tools for Jakarta EE Developers
Enterprise Java teams face growing delivery pressure. This guide shows how AI tools reduce boilerplate, automate tasks, and improve code quality, with real examples of code generation, testing, and workflows for Jakarta EE developers.
- Sponsored by

Related Content
May 07, 2026
- ##### Anthropic Traces Six Weeks of Claude Code Quality Complaints to Three Overlapping Product Changes
May 14, 2026
May 07, 2026
May 11, 2026
May 05, 2026
May 03, 2026
**The InfoQ** Newsletter
A round-up of last week’s content on InfoQ sent out every Tuesday. Join a community of over 250,000 senior developers. View an example
Enter your e-mail address
Select your country - [x] I consent to InfoQ.com handling my data as explained in this Privacy Notice.
- ##### [Pip 26.1 Ships Dependency Cooldowns and Experimental Lockfile Support to Combat Supply Chain Attacks](https://www.infoq.com/news/2026/05/pip-261-dependency-cooldowns/ "Pip 26.1 Ships Dependency Cooldowns and Experimental Lockfile Support to Combat Supply Chain Attacks")
- ##### [Cloudflare and Stripe Let AI Agents Create Accounts, Buy Domains, and Deploy to Production](https://www.infoq.com/news/2026/05/cloudflare-stripe-agent-commerce/ "Cloudflare and Stripe Let AI Agents Create Accounts, Buy Domains, and Deploy to Production")
- ##### [Google Introduces Cloud Fraud Defense as Successor to reCAPTCHA](https://www.infoq.com/news/2026/05/cloud-fraud-defense-recaptcha/ "Google Introduces Cloud Fraud Defense as Successor to reCAPTCHA")
- ##### [Uber Improves Restaurant Recommendations Using Real-Time Signals and Listwise Ranking](https://www.infoq.com/news/2026/05/uber-eats-ranking-system/ "Uber Improves Restaurant Recommendations Using Real-Time Signals and Listwise Ranking")
- ##### [Designing a Multi-Agent System for Engineering Support at Scale: a Case Study from Grab](https://www.infoq.com/news/2026/05/grab-multi-agent-support-system/ "Designing a Multi-Agent System for Engineering Support at Scale: a Case Study from Grab")
- ##### [OpenAI Outlines WebRTC Architecture for Low-Latency Voice AI at Scale](https://www.infoq.com/news/2026/05/openai-voice-ai-scale/ "OpenAI Outlines WebRTC Architecture for Low-Latency Voice AI at Scale")
- ##### [From Legacy to Sovereignty: Driving the Future of Insurance through Platform Engineering](https://www.infoq.com/presentations/insurance-platform-engineering/ "From Legacy to Sovereignty: Driving the Future of Insurance through Platform Engineering")
- ##### [How Platform Engineering Using Golden Bricks Can Enable Fast and Smooth Delivery](https://www.infoq.com/news/2026/05/platform-golden-bricks/ "How Platform Engineering Using Golden Bricks Can Enable Fast and Smooth Delivery")
- ##### [Product Thinking for Cloud Native Engineers](https://www.infoq.com/presentations/product-cloud-native/ "Product Thinking for Cloud Native Engineers")
- ##### [Designing AI Platforms for Reliability: Tools for Certainty, Agents for Discovery](https://www.infoq.com/presentations/ai-platforms-reliability/ "Designing AI Platforms for Reliability: Tools for Certainty, Agents for Discovery")
- ##### [InfoQ Online Certification Program: New AI Engineering and Organizational Architecture Cohorts](https://www.infoq.com/news/2026/05/online-cohort-certification-prog/ "InfoQ Online Certification Program: New AI Engineering and Organizational Architecture Cohorts")
- ##### [Google Expands SynthID Adoption for AI Watermarking, Previews Content Detection API](https://www.infoq.com/news/2026/05/google-synthid-content-detection/ "Google Expands SynthID Adoption for AI Watermarking, Previews Content Detection API")
- ##### [Platform Engineering Labs Expands formae with Kubernetes Support, Native Helm Integration](https://www.infoq.com/news/2026/05/formae-k8s-helm-integration/ "Platform Engineering Labs Expands formae with Kubernetes Support, Native Helm Integration")
- ##### [Realtime and Batch Processing of GPU Workloads](https://www.infoq.com/presentations/realtime-gpu-workloads/ "Realtime and Batch Processing of GPU Workloads")
- ##### [Discord Rebuilds Database Operations around Automation to Manage ScyllaDB at Massive Scale](https://www.infoq.com/news/2026/05/discord-scylladb-automation/ "Discord Rebuilds Database Operations around Automation to Manage ScyllaDB at Massive Scale")
**The InfoQ** Newsletter
A round-up of last week’s content on InfoQ sent out every Tuesday. Join a community of over 250,000 senior developers. View an example
- Get a quick overview of content published on a variety of innovator and early adopter technologies
- Learn what you don’t know that you don’t know
- Stay up to date with the latest information from the topics you are interested in
Enter your e-mail address
Select your country - [x] I consent to InfoQ.com handling my data as explained in this Privacy Notice.
#### Events
- ##### QCon AI Boston
June 1-2, 2026
June 10, 2026
July 25, 2026
- ##### QCon San Francisco
November 16-20, 2026
#### Follow us on
Youtube 232K FollowersLinkedin 26K FollowersInstagram NewRSS 19K ReadersX 57.1k FollowersFacebook 21K LikesBluesky New
#### Stay in the know
The InfoQ PodcastEngineering Culture PodcastThe Software Architects' Newsletter
General Feedback [feedback@infoq.com](mailto:feedback@infoq.com) Advertising [sales@infoq.com](mailto:sales@infoq.com) Editorial [editors@infoq.com](mailto:editors@infoq.com) Marketing [marketing@infoq.com](mailto:marketing@infoq.com)
InfoQ.com and all content copyright © 2006-2026 C4Media Inc.
Privacy Notice, Terms And Conditions, Cookie Policy
Close
[BT](https://www.infoq.com/int/bt/ "bt")