Sign in

Manu

@mdelapenya.bsky.social
15 followers 8 following 30 posts

Coding Agent Sandboxes and #testcontainers maintainer at @docker.com #OSS #Robot #golang #AQA #Castellanomanchego #Geek #GDG Toledo co-organizer Former #Liferay @elastic.co #AtomicJar Assisted by Bender Bending Rodríguez, I write at mdelapenya.xyz

PostsRepliesMedia
Manu @mdelapenya.bsky.social · 29/09/2026
Put a coding agent in a microVM and you usually lose your editor and your harness. Not with a @docker.com Sandbox: it answers as an SSH host, so VS Code, Cursor and @t3.gg's T3Code connect unchanged. Post 3 of Understanding Docker Sandboxes: mdelapenya.xyz/posts/2026-0... #sbx #codingAgents
mdelapenya.xyz
Understanding Docker Sandboxes: Isolate the Agent, Keep Your Tools
Putting the agent in a microVM usually costs you the editor and harness you work in. It does not have to. Every tool that speaks SSH attaches to a sandbox …
010
Manu @mdelapenya.bsky.social · 25/09/2026
A Dockerfile says everything about the inside of an image and nothing about what it may reach. For an agent, that second half is the whole problem. Docker Sandboxes Kits put the answer in the image itself, as one typed list. Post 2 of my #sbx series: mdelapenya.xyz/posts/2026-0...
mdelapenya.xyz
Containers Made Software Portable. Kits Make Authority Portable.
A Dockerfile answers everything about the inside of an image and nothing about what it is allowed to reach. For an application that was fine. For an agent it is …
000
Manu @mdelapenya.bsky.social · 23/09/2026
You have to be right every time. Agents only need to be right once. So "please be careful" is not a control. The boundary has to be somewhere the agent can't reach. My ContainerDays talk on @docker.com Sandboxes, as a post (drawings by @shelajev.bsky.social ): mdelapenya.xyz/posts/2026-0... #sbx
mdelapenya.xyz
YOLO Mode Can Be Safe
The argument I gave at ContainerDays Hamburg: the thing that makes a coding agent productive is the same thing that makes it dangerous, and you do not fix that …
001
Reposted by Manu
Johannes Rabauer @rabauer.dev · 16/09/2026
3 AI coding agents. 1 Java project. Everyone assumes that's chaos. @mdelapenya.bsky.social says otherwise. We put it to the test live, Thu Sep 17, 8pm CEST. youtube.com/watch?v=9-Wx...
youtube.com
Three Coding Agents, One Java Project. Take a look at biomelab.
Three coding agents. One Java project. Sounds like a recipe for merge conflicts and midnight debugging. What actually stops that from happening? Manuel de la Peña brings biomelab, his own desktop…
021
Manu @mdelapenya.bsky.social · 09/09/2026
Ryuk is the container starts before any of yours, and it deletes your Docker resources when your test process dies. I wrote about it in my last post: mdelapenya.xyz/posts/2026-0..., written as a guest post for @jespino.bsky.social internals-for-interns.com blog #golang #testcontainers #docker
mdelapenya.xyz
Understanding Testcontainers: The Ryuk Reaper
The extra container in your docker ps: what Ryuk is, the labels it uses to know what is yours, the TCP protocol it speaks with your tests, the timers and race …
010
Reposted by Manu
Jesús Espino @jespino.bsky.social · 07/09/2026
New guest post: my friend @mdelapenya.bsky.social write about Ryuk. → your tests hold a TCP connection open to it → it drops, 10s grace, then Ryuk deletes everything tagged with your session ID Check the blog post here: internals-for-interns.com/posts/testco... #golang #testing #docker
internals-for-interns.com
Understanding Testcontainers: The Ryuk Reaper | Internals for Interns
If you’ve used Testcontainers in any language (Go, Java, .NET, Python, Node, Rust), you’ve probably noticed an extra container hanging around in your docker ps output while your tests run. Its image i...
011
Manu @mdelapenya.bsky.social · 28/08/2026
A couple of months ago, I wrote a whole post about choosing the best terminal for agentic development. But I do not work in a terminal anymore. With @t3.gg's T3Codes agents run on four machines and I steer them from my phone. The work left my desk. mdelapenya.xyz/posts/2026-0... #AI #codingAgents
mdelapenya.xyz
Four Agents, Four Machines, One Developer
T3 Code is a control surface for the coding agents already installed on your machines. I put a server on four of them, kept the phone as a client, and my work …
000
Manu @mdelapenya.bsky.social · 15/08/2026
#testcontainers for #golang derives its session ID from your parent process. Bazel's docs say the parent process id is "unspecified". Post #8 of my internals series, on what to do about that. mdelapenya.xyz/posts/2026-0... #golang #testcontainers #bazel
mdelapenya.xyz
Understanding Testcontainers: Session IDs
Where the identifier that ties a test session together comes from: derived from the parent process, hashed, stamped on every resource as a label, and used to …
000
Manu @mdelapenya.bsky.social · 15/07/2026
Unit tests miss the parts of an AWS Lambda that only exist once deployed: the runtime, the zip, the function URL. Post #6 of my #testcontainers for #golang series deploys a real Go Lambda into @localstack.cloud, tested over HTTP. mdelapenya.xyz/posts/2026-0...
mdelapenya.xyz
Understanding Testcontainers: Testing AWS Lambdas Locally with LocalStack
Using the LocalStack module in testcontainers-go to write an integration test for a real Go AWS Lambda: compiling the bootstrap zip before startup, provisioning …
511
Manu @mdelapenya.bsky.social · 07/07/2026
Post #5 of the #testcontainers for #golang internals series: the "network" package. One file, three quiet decisions: multi-network workaround, aliases only on user-defined networks, entry point still wrapping a deprecated function. mdelapenya.xyz/posts/2026-0... #golang #testcontainers
mdelapenya.xyz
Understanding Testcontainers: Networks
How testcontainers-go models container networks: the default bridge, the network/ package, the four request-side helpers for attaching containers, aliases that …
000
Manu @mdelapenya.bsky.social · 26/06/2026
~169M Docker Hub pulls attributed to #testcontainers for #golang in the last 365 days. One User-Agent header is what makes that number knowable. Please read more about how I check the #testcontainers impact in the @docker.com ecosystem here: mdelapenya.xyz/posts/2026-0...
mdelapenya.xyz
A Year of testcontainers-go on Docker Hub
A short look at the trail testcontainers-go leaves on Docker Hub: the two images it pulls in normal operation, the User-Agent header that makes the pulls …
010
Manu @mdelapenya.bsky.social · 25/06/2026
I went through the #testcontainers for #golang "modules/" tree to map the shape across 65 modules. One "Run(ctx, img, opts...)" signature, one wrapper embedding "testcontainers.Container", one "go.mod" If you want to understand the module system, please read it: mdelapenya.xyz/posts/2026-0...
mdelapenya.xyz
Understanding Testcontainers: The Module Layer
65 modules in testcontainers-go, all built on the same Run we have been tracing for three posts. The standard module skeleton, the Container wrapper type, the …
110
Manu @mdelapenya.bsky.social · 19/06/2026
I went back to read "lifecycle.go" in #testcontainers for #golang and realised how much of the library is built on its lifecycle hook system. File copy, log streaming, the wait strategy, the startup logger.... Two types, eleven stages, five defaults: mdelapenya.xyz/posts/2026-0...
mdelapenya.xyz
Understanding Testcontainers: The Lifecycle Hook System
The library's whole feature set, from file copy to wait strategies to log consumers, is implemented as lifecycle hooks. Two hook function types, eleven stages, …
020
Manu @mdelapenya.bsky.social · 16/06/2026
I've just updated my talks page: do you like the commit log view? mdelapenya.xyz/talks/
mdelapenya.xyz
Talks and Public Speaking
As an OSS maintainer, I have the opportunity to speak at conferences and meetups about my work, and I’m always happy to do so. I’ve been organizing …
000
Manu @mdelapenya.bsky.social · 16/06/2026
New in #testcontainers for #golang: "wait.ForAny". Race-to-first-result across strategies, parallel goroutines, eager-fail. The OR-shaped sibling of "ForAll". Full tour of every wait strategy: mdelapenya.xyz/posts/2026-0... #golang #testcontainers #docker
mdelapenya.xyz
Understanding Testcontainers: The Wait Strategy Taxonomy
Every wait strategy testcontainers-go ships, how the engine wires them in as a single PostStarts lifecycle hook, and the four functional options for plugging …
010
Manu @mdelapenya.bsky.social · 12/06/2026
New guest post by Enin Kaduk: testing #Helm charts in ephemeral #k3s with #testcontainers for Go and #sk8s, and #OSS project by @docker.com. The image-loading section is the trap everyone hits once. mdelapenya.xyz/posts/2026-0... #golang #testcontainers #kubernetes #dhi
mdelapenya.xyz
Testing Helm charts with sk8s and testcontainers-go
How DHI (Docker Hardened Images) uses testcontainers-go and sk8s to test Helm charts in ephemeral k3s clusters: scaffolding, image loading, and one-cluster …
030
Manu @mdelapenya.bsky.social · 10/06/2026
I'm a core maintainer of @testcontainers for #go. Today I start a series on the library's internals. Part 1 is how Run, GenericContainer, and functional options actually work. mdelapenya.xyz/posts/2026-0... #golang #testcontainers
mdelapenya.xyz
Understanding Testcontainers: From GenericContainer to Functional Options
How testcontainers-go's API surface is shaped: the older `GenericContainer(ctx, req)` primitive that takes a request struct, the modern `Run(ctx, img, opts...)` …
030
Manu @mdelapenya.bsky.social · 22/05/2026
The line between phone (consume) and laptop (produce) held because production needed a toolchain. Now coding agents have the toolchain. The phone is enough: I sent a message in Telegram, and a PR appeared on GitHub. mdelapenya.xyz/posts/2026-0... #AI #Claude #nanoclaw
mdelapenya.xyz
I Sent a Message on Telegram. A Pull Request Appeared on GitHub.
I described a blog post idea on Telegram. Twenty minutes later, a pull request existed on GitHub. I never opened a terminal, never touched git, never ran a …
121
Manu @mdelapenya.bsky.social · 30/04/2026
Since the latest release of @docker.com sandboxes, it's possible to fully customize a sandbox with kits. A kit is a spec.yml file with commands to be executed in the sandbox, network policies to add by default, and secrets injection mechanism, among many other cool things!
110
Manu @mdelapenya.bsky.social · 30/04/2026
Every PR I open goes through four people. A scribe writes the description. A lawyer handles the review. A detective investigates CI failures. A nurse watches the build. None of them are people. mdelapenya.xyz/posts/2026-0... #AI #SoftwareDevelopment
mdelapenya.xyz
My PR Has a Lawyer, a Nurse, a Detective, and a Scribe
Four Claude Code skills I use on every pull request: one writes the description, one handles review comments, one investigates CI failures, and one watches the …
010
Manu @mdelapenya.bsky.social · 27/04/2026
My bills arrive as emails with PDFs. They all go to the trash. I turned my Synology NAS into a personal AI that reads them, stores them in SQLite, and answers from Telegram. Then it crashed on week 8. mdelapenya.xyz/posts/2026-0... #AI #nanoclaw
mdelapenya.xyz
A Personal AI That Reads My Bills
I built a personal AI assistant on my Synology NAS that parses my electricity bills, grocery receipts, bank statements, and parking tickets. It runs on …
000
Manu @mdelapenya.bsky.social · 24/04/2026
I never touch main. Every task starts with `c` (new git worktree), ends with Shift+P (submit PR). #biomelab 's kanban shows me the shape of my day: cards, not branches. And Docker Sandboxes! mdelapenya.xyz/posts/2026-0...
mdelapenya.xyz
My Daily Workflow with biomelab
How I use biomelab as my daily command center: kanban board, keyboard-driven worktrees, sandboxes, and never touching main. The workflow that makes me feel …
110
Manu @mdelapenya.bsky.social · 22/04/2026
Renfe necesitó dos webs para mostrar sus trenes en tiempo real. Yo lo hice en una sola app, en un par de días, dentro de un Docker Sandbox. Con API abierta y Cercanías incluido. Dinero público, datos públicos, lo que le gusta a @gomezobregon.com mdelapenya.xyz/posts/2026-0... #Renfe #OpenData
mdelapenya.xyz
Por qué construí un visor de trenes en tiempo real
Renfe tardó años y 164 millones de euros en renovar su web. Yo construí un visor de trenes en tiempo real en un par de días dentro de un Docker Sandbox. Esta es …
010
Manu @mdelapenya.bsky.social · 20/04/2026
I new feature for #biomelab: #kanban board for the ongoing worktrees! Each repo now defines a board with 4 states: created, sent, In Review, and Merged, allowing you to see the current state of the tasks you and your agents create! Download the nightly and share your feedback! biomelab.dev#kanban
biomelab.dev
biomelab - Your Worktrees. Your Agents. One Dashboard.
A terminal dashboard for managing git worktrees and AI coding agents in parallel. Sandbox isolation, PR status, live agent detection.
000
Manu @mdelapenya.bsky.social · 16/04/2026
Well, it's live! biomelab.dev I've building this project to make my workday more prolific. If you are into #agentic development workflows, using git worktrees for parallel task, you probably want to take a look at this project, which helps me in monitoring the ongoing work.
biomelab.dev
biomelab - Your Worktrees. Your Agents. One Dashboard.
A terminal dashboard for managing git worktrees and AI coding agents in parallel. Sandbox isolation, PR status, live agent detection.
100
Reposted by Manu
Philippe Charrière 💜 @k33gorg.bsky.social · 03/04/2026
My colleague @mikegcoleman.com wrote a ✨ great user guide for @docker.com SBX (Docker Sandboxes: run your AI agents with complete peace of mind). Read it and bookmark it! github.com/mikegcoleman...
github.com
GitHub - mikegcoleman/sbx-quickstart: A quickstart for Docker Sandboxes (sbx)
A quickstart for Docker Sandboxes (sbx). Contribute to mikegcoleman/sbx-quickstart development by creating an account on GitHub.
0119
Manu @mdelapenya.bsky.social · 14/04/2026
I built a real-time train tracker inside a @docker.com #Sandbox. The agent never touched my host. Here's what the workflow actually looks like, with real terminal logs. Full tutorial with all the commands, real terminal logs, and the network policy setup: mdelapenya.xyz/posts/2026-0... #docker #ai
mdelapenya.xyz
Building a Real App Inside a Docker Sandbox
A step-by-step guide to building a real app inside a Docker Sandbox: from sbx create to network policies, port forwarding, and shipping. Safe and practical.
020
Manu @mdelapenya.bsky.social · 29/11/2024
Hello blue!
000