Sandlock: Confining AI Agent Code with Unprivileged Linux Primitives | ArxivCSExplorer