Landrun is a lightweight, secure sandbox for running Linux processes using Landlock, a kernel-native security module. It allows for fine-grained filesystem and network access controls without requiring root or containers. Landrun is designed to be practical and easy to use, with a simple command-line interface and support for various features such as file access, TCP restrictions, and IPC scoping. The tool is auditable and can be integrated with systemd to run services with enhanced security.