might steal oren’s idea for the javascript evaluator but for rust instead, but i’d have to do some mega sandboxing
i think one container per program would be easier to implement