# Simon Willison - Introducing Deno Sandbox (Highlights)

## Metadata
**Review**:: [readwise.io](https://readwise.io/bookreview/58076311)
**Source**:: #from/readwise #from/reader
**Zettel**:: #zettel/fleeting
**Status**:: #x
**Authors**:: [[Simon Willison]]
**Full Title**:: Introducing Deno Sandbox
**Category**:: #articles #readwise/articles
**Category Icon**:: 📰
**URL**:: [simonwillison.net](https://simonwillison.net/2026/Feb/3/introducing-deno-sandbox/#atom-everything)
**Host**:: [[simonwillison.net]]
**Highlighted**:: [[2026-02-04]]
**Created**:: [[2026-02-07]]
## Highlights
- Outbound API calls to `api.openai.com` run through a proxy which is aware of those placeholders and replaces them with the original secret.
In this way the secret itself is not available to code within the sandbox, which limits the ability for malicious code (e.g. from a prompt injection) to exfiltrate those secrets. ([View Highlight](https://read.readwise.io/read/01kgmr3jp70wgwhngy07fky12y)) ^984971383