I thought node.js policies were basically just SubResource Integrity hashes? Are they planning for something more?
I’ve been looking into the isolated-vm module recently and it looks pretty nice. Fly.io built their run-untrusted-code service on top of it.