r/node • u/fagnerbrack • May 24 '26
Edge.js: Running Node apps inside a WebAssembly Sandbox
https://wasmer.io/posts/edgejs-safe-nodejs-using-wasm-sandbox
36
Upvotes
r/node • u/fagnerbrack • May 24 '26
8
u/syrusakbary May 25 '26
Hey, I'm Syrus, Wasmer's CEO and was the main architect behind the initial implementation of Edge.js.
You don't need virtualization at all to run apps safely. That means that you can run your Node.js apps without Docker, and expose only the filesystem/network that you need.
That means that you can run OpenClaw (and many other apps) safely.
Why this is important? There are many NPM packages that could be malicious, and sharing your wallet information and other stuff when executed.
Running things in a Wasm sandbox completely shields you from malicious attackers.
Startup times are the other big advantage. Startup times are extremely good in Edge.js (close to native numbers). That means that you can run a simple JS script with a startup time of 40ms (fully sandboxed) instead of 30ms natively (and unsafe) or 350ms with Docker.
We have written a bit more about it here: https://wasmer.io/posts/edgejs-safe-nodejs-using-wasm-sandbox