> ## Documentation Index
> Fetch the complete documentation index at: https://allhandsai-cookbook-preview-pr-12.mintlify.site/llms.txt
> Use this file to discover all available pages before exploring further.

# Enterprise Cookbook

> Runnable examples for building on the OpenHands API with OpenHands Cloud or OpenHands Enterprise.

Standalone, runnable examples for teams building on the OpenHands API with OpenHands Cloud or
OpenHands Enterprise. Each page is generated from an example in
[OpenHands/enterprise-cookbook](https://github.com/OpenHands/enterprise-cookbook), where you
will find the full source.

## Sandbox lifecycle

Create, attach to, and tear down sandboxes.

<CardGroup cols={2}>
  <Card title="Archive Sandbox" icon="box-archive" href="/cookbook/archive-sandbox">
    Delete conversations to release their Persistent Volume Claims (PVCs) and free storage resources.
  </Card>

  <Card title="Clone and Attach" icon="code-branch" href="/cookbook/clone-and-attach">
    Clone a repository and run its setup script in a sandbox, then attach a conversation to the prepared environment.
  </Card>

  <Card title="Start Sandbox" icon="play" href="/cookbook/start-sandbox">
    Start a sandbox without a conversation and run commands via the agent-server REST API.
  </Card>
</CardGroup>

## Conversation monitoring & reacting

Observe conversations and react to their state.

<CardGroup cols={2}>
  <Card title="Conversation Tags" icon="tags" href="/cookbook/conversation-tags">
    Attach key-value metadata to a conversation with tags and read it back from AppConversation.tags.
  </Card>
</CardGroup>

## Secrets & authentication

Inject credentials and manage identity.

<CardGroup cols={2}>
  <Card title="GPG Commit Signing" icon="file-signature" href="/cookbook/gpg-commit-signing">
    Configure GPG commit signing on every conversation with a SessionStart hook that imports a key from a custom secret.
  </Card>

  <Card title="Per-Conversation Secrets" icon="user-secret" href="/cookbook/per-conversation-secrets">
    Inject per-conversation secrets via REST API as bash env vars and to template an MCP server config bundled in a plugin.
  </Card>

  <Card title="Service Account GitHub PAT" icon="id-card" href="/cookbook/service-account-github-pat">
    Use one OpenHands account as a service account, overriding the managed GITHUB\_TOKEN with each user's PAT per conversation.
  </Card>
</CardGroup>

## Guardrails

Constrain what the agent can do with hooks.

<CardGroup cols={2}>
  <Card title="Command Blacklist" icon="shield-halved" href="/cookbook/command-blacklist">
    Block known-dangerous shell commands with a PreToolUse hook bundled in a plugin. Everything not on the blocklist runs normally.
  </Card>
</CardGroup>


This documentation is built and hosted on [Mintlify](https://mintlify.com), a developer documentation platform.