E2B
E2B · Coding agent · US · e2b.dev
services/e2b.yamlVendor data-handling terms
E2B runs sandboxes in which AI agents execute code. The policy covers website and account data; sandbox contents are not addressed.
“We collect this information for the improvement of the app service and the legal basis for collecting and processing this data is consent and the expiration period for such data is currently set for 13 months.”
“We cannot delete your personal information except by also deleting your user account.”
“Your data may be transferred to, stored and processed outside of your jurisdiction, specifically the USA.”
Domains and endpoints
observed means seen in Unseen deployments; vendor-documented means listed by the vendor. Vendors do not publish complete lists.
| Host | Role | Source |
|---|---|---|
| api.e2b.dev | api | observed |
| e2b.dev | app | observed |
Assessment
Reasoning: Cloud sandboxes for running agent-generated code. Whatever an agent uploads into a sandbox lands on E2B's US infrastructure, and the policy says nothing about sandbox contents, isolation or wiping. Developer infrastructure that needs a contract before internal data goes in.
Flags: Sandbox contents not addressed in the policy · US processing · Assessed 2026-09-16. The assessment is Unseen's; the terms above are the vendor's.
Changelog
- 2026-09-16Documented. Use, retention and transfer terms verified against the E2B privacy policy.
- 2026-09-15Listed from the Unseen catalogue with observed domains.
Corrections
Pull request on GitHub, or the form below. Changes are reviewed and recorded in the changelog.