# 微軟推出新 Windows 功能，旨在提升裝置上代理工作負載的安全性。

*genai · news · 2026-06-02 · Firstpost*

## Key points

- Microsoft Execution Containers (MXC) 提供作業系統層級的隔離與治理，適用於裝置上的 AI 代理工作負載。
- 開發者可一次定義代理封裝政策，並由 Windows 在各部署環境中強制執行。
- 領先的開源 AI 代理框架 OpenClaw 將原生整合至 Windows，簡化開發流程。
- 基於 MXC 的 Nvidia OpenShell Runtime，實現 Windows 上安全的沙盒自主代理執行。

Concerned about the security implications of running AI agents locally on your device? Microsoft is introducing new Windows capabilities designed to make on-device agent workloads more secure, with built-in identity isolation and governance controls enforced directly by the operating system. Now available in preview, Microsoft Execution Containers (MXC) introduce a new policy layer that allows developers and IT administrators to define agent containment requirements once and rely on Windows to enforce them using native operating system primitives. The approach is designed to make running AI-generated code both easier and more secure. Microsoft also announced that OpenClaw, one of GitHub’s most popular open-source AI agent projects, is coming to Windows. Currently available in alpha on GitHub, OpenClaw will integrate more seamlessly with the Windows ecosystem, enabling developers to build and deploy AI agents more easily. With these advances, agents will be able to execute complex, multi-step workflows locally while operating within OS-enforced security boundaries rather than unmanaged environments. Nvidia OpenShell Runtime Comes to Windows Nvidia is also collaborating with Microsoft to bring the Nvidia OpenShell Runtime to Windows. Built on Microsoft Execution Containers (MXC), OpenShell is Nvidia’s open-source runtime for executing autonomous AI agents in sandboxed environments. Microsoft said that integrating MXC with OpenShell provides developers with a streamlined way to deploy autonomous, always-on AI agents while maintaining enterprise-grade security and governance. The platform includes features such as policy management, inference routing, and personally identifiable information (PII) protection, while giving IT teams centralized visibility and control across devices, virtual machines, and cloud environments.

**Companies:** Microsoft, Nvidia
**Countries:** United States

[Read the full story on Firstpost](https://www.firstpost.com/tech/microsoft-build-2026-windows-gets-built-in-ai-agent-sandboxing-with-mxc-openclaw-support-and-nvidia-openshell-14018109.html)

---

Canonical: https://newsio.io/zh-TW/n/93ea0c55-974a-4247-9e3f-51c6e41550a4/windows
Summarized by Newsio from Firstpost. https://newsio.io/how-it-works
