Simon Willison tasked Claude Code with evaluating SmolVM as a secure sandbox for Python and JavaScript. The goal required strict RAM and CPU limits to prevent infinite loops. However, the experiment failed immediately because the Claude Code container cannot run the SmolVM environment. This highlights current limitations in nested virtualization for AI agents.