Most local coding agents force a false choice: YOLO the desktop, or approve every tool call until you give up.

Cue is built for a third path. It is a Windows 11 Electron coding agent (MIT) that uses Codex CLI for the model path on the host, runs workspace actions under AppContainer workers, and freezes a human-readable execution envelope before anything mutates your files. You describe a goal, review the scope, approve once, then inspect a ledger — or hit Stop.

This post is about that control loop. If you want the sandbox-primitive deep dive (why AppContainer is Cue’s floor), that lives in Day1 — one link at the end. Here we stay on what using it feels like.

GitHub: https://github.com/zenovis2-create/cue

Demo (34s): https://github.com/zenovis2-create/cue/blob/main/docs/assets/cue-demo-en.mp4