Microsoft.Agents.AI.Hyperlight
1.23.0-preview.260928.1
Prefix Reserved
dotnet add package Microsoft.Agents.AI.Hyperlight --version 1.23.0-preview.260928.1
NuGet\Install-Package Microsoft.Agents.AI.Hyperlight -Version 1.23.0-preview.260928.1
<PackageReference Include="Microsoft.Agents.AI.Hyperlight" Version="1.23.0-preview.260928.1" />
<PackageVersion Include="Microsoft.Agents.AI.Hyperlight" Version="1.23.0-preview.260928.1" />
<PackageReference Include="Microsoft.Agents.AI.Hyperlight" />
paket add Microsoft.Agents.AI.Hyperlight --version 1.23.0-preview.260928.1
#r "nuget: Microsoft.Agents.AI.Hyperlight, 1.23.0-preview.260928.1"
#:package Microsoft.Agents.AI.Hyperlight@1.23.0-preview.260928.1
#addin nuget:?package=Microsoft.Agents.AI.Hyperlight&version=1.23.0-preview.260928.1&prerelease
#tool nuget:?package=Microsoft.Agents.AI.Hyperlight&version=1.23.0-preview.260928.1&prerelease
Microsoft.Agents.AI.Hyperlight
First-class CodeAct support for the Microsoft Agent Framework, backed by the Hyperlight VM-isolated sandbox.
The package exposes two entry points:
HyperlightCodeActProvider— anAIContextProviderthat injects anexecute_codetool and CodeAct guidance into every agent invocation. Only oneHyperlightCodeActProvidermay be attached to a given agent; it enforces this through a fixedStateKeysvalue soChatClientAgent's state-key uniqueness validation rejects duplicate registrations.HyperlightExecuteCodeFunction— a standaloneAIFunctionfor static/manual wiring when the sandbox configuration is fixed for the agent's lifetime.
Both surfaces support:
- Provider-owned tools exposed inside the sandbox via
call_tool(...)(multiple allowed). - Opt-in filesystem mounts and outbound network allow-list.
CodeActApprovalModecontrol:NeverRequire(default; approval propagates from tools wrapped inApprovalRequiredAIFunction) andAlwaysRequire.- Snapshot/restore per run so the guest starts from a known clean state every invocation.
Requirements
- The
Hyperlight.HyperlightSandbox.ApiNuGet package, published from thesrc/sdk/dotnetSDK in hyperlight-dev/hyperlight-sandbox (the .NET API was added in PR #46, now merged). Until the package is published to nuget.org the project restore will fail; this project is intentionallyIsPackable=falsein the meantime. - A Hyperlight Python guest module when using
SandboxBackend.Wasm.
Network access and guest packages
HyperlightCodeActProviderOptions.AllowedDomains controls outbound requests
from the sandbox. It does not install guest packages or expose host-installed
dependencies to guest code.
CreateForWasm(modulePath) selects an existing .wasm or .aot guest module;
it does not build a guest or install Python packages. The Agent Framework
integration does not provide a custom guest build or package installation
workflow. Package availability depends on the selected module and backend;
the default JavaScript backend does not run Python code.
For operations requiring application dependencies or external APIs, register
an AIFunction in Tools and invoke it from the guest with call_tool(...).
Keep credentials and authorization in the host function. These functions run
outside the guest, so AllowedDomains does not restrict their network requests;
enforce any required destination policy in the host function.
Status
Preview. API may change until the underlying Hyperlight SDK reaches a stable release.
| Product | Versions Compatible and additional computed target framework versions. |
|---|---|
| .NET | net8.0 is compatible. net8.0-android was computed. net8.0-browser was computed. net8.0-ios was computed. net8.0-maccatalyst was computed. net8.0-macos was computed. net8.0-tvos was computed. net8.0-windows was computed. net9.0 is compatible. net9.0-android was computed. net9.0-browser was computed. net9.0-ios was computed. net9.0-maccatalyst was computed. net9.0-macos was computed. net9.0-tvos was computed. net9.0-windows was computed. net10.0 is compatible. net10.0-android was computed. net10.0-browser was computed. net10.0-ios was computed. net10.0-maccatalyst was computed. net10.0-macos was computed. net10.0-tvos was computed. net10.0-windows was computed. |
-
net10.0
- Hyperlight.HyperlightSandbox.Api (>= 0.6.0)
- Microsoft.Agents.AI.Abstractions (>= 1.23.0)
- Microsoft.Extensions.AI.Abstractions (>= 10.10.1)
-
net8.0
- Hyperlight.HyperlightSandbox.Api (>= 0.6.0)
- Microsoft.Agents.AI.Abstractions (>= 1.23.0)
- Microsoft.Extensions.AI.Abstractions (>= 10.10.1)
- System.Text.Json (>= 10.0.12)
-
net9.0
- Hyperlight.HyperlightSandbox.Api (>= 0.6.0)
- Microsoft.Agents.AI.Abstractions (>= 1.23.0)
- Microsoft.Extensions.AI.Abstractions (>= 10.10.1)
- System.Text.Json (>= 10.0.12)
NuGet packages
This package is not used by any NuGet packages.
GitHub repositories (1)
Showing the top 1 popular GitHub repositories that depend on Microsoft.Agents.AI.Hyperlight:
| Repository | Stars |
|---|---|
|
rwjdk/agent-framework-samples
Samples demonstrating the Microsoft Agent Framework in C#
|
| Version | Downloads | Last Updated |
|---|---|---|
| 1.23.0-preview.260928.1 | 180 | 9/29/2026 |
| 1.22.0-preview.260918.1 | 502 | 9/18/2026 |
| 1.21.0-preview.260911.1 | 324 | 9/11/2026 |
| 1.20.0-preview.260831.1 | 318 | 8/31/2026 |
| 1.19.0-preview.260822.1 | 988 | 8/22/2026 |
| 1.18.0-preview.260818.1 | 175 | 8/18/2026 |
| 1.17.0-preview.260804.1 | 7,545 | 8/4/2026 |
| 1.16.0-preview.260730.1 | 589 | 7/30/2026 |
| 1.15.0-preview.260722.1 | 612 | 7/22/2026 |
| 1.14.0-preview.260721.1 | 155 | 7/21/2026 |
| 1.13.0-preview.260703.1 | 1,645 | 7/3/2026 |
| 1.12.0-preview.260629.1 | 144 | 6/30/2026 |
| 1.11.1-preview.260625.1 | 175 | 6/25/2026 |
| 1.11.0-preview.260623.1 | 330 | 6/23/2026 |
| 1.10.0-preview.260610.1 | 574 | 6/10/2026 |
| 1.9.0-preview.260603.1 | 400 | 6/3/2026 |
| 1.8.0-preview.260528.1 | 389 | 5/28/2026 |
| 1.7.0-preview.260526.1 | 203 | 5/26/2026 |
| 1.6.2-preview.260521.1 | 341 | 5/22/2026 |
| 1.6.1-preview.260514.1 | 217 | 5/14/2026 |