Isolated containers for executing untrusted code are called sandboxes because CPUs are made of sand.
@niconiconi @lowqualityfacts might be interested in this one! 🏖️