> ## Documentation Index
> Fetch the complete documentation index at: https://docs.tensorlake.ai/llms.txt
> Use this file to discover all available pages before exploring further.

# Detach Filesystem

> Detach the filesystem mounted at a guest path from a running sandbox. Returns `200 OK` once the removal is persisted; the unmount applies asynchronously on the live sandbox.

Detach the [filesystem](/sandboxes/mount-filesystems) mounted at a guest path from a running sandbox.

* This path accepts either the sandbox ID or the sandbox name.
* `200 OK` means the removal is persisted; the unmount applies asynchronously on the live sandbox moments later.
* Tensorlake returns `404 Not Found` when no filesystem is mounted at the given path.
* Tensorlake returns `409 Conflict` when the sandbox is not running.


## OpenAPI

````yaml delete /sandboxes/{sandbox_id}/file_systems
openapi: 3.1.0
info:
  title: Tensorlake API
  description: >-
    Tensorlake Cloud APIs for Sandboxes, Document Ingestion, and Serverless
    Workflows
  license:
    name: ''
  version: 0.1.0
servers:
  - url: https://api.tensorlake.ai/
security:
  - bearerAuth: []
tags:
  - name: Tensorlake Cloud API
    description: >-
      Tensorlake Cloud APIs for Sandboxes, Document Ingestion, and Serverless
      Workflows
paths:
  /sandboxes/{sandbox_id}/file_systems:
    parameters:
      - name: sandbox_id
        in: path
        description: The sandbox ID or sandbox name.
        required: true
        schema:
          type: string
    delete:
      tags:
        - sandboxes
      summary: Detach a filesystem
      description: >-
        Detach the filesystem mounted at a guest path from a running sandbox.
        Returns `200 OK` once the removal is persisted; the unmount applies
        asynchronously on the live sandbox.
      operationId: detach_file_system
      requestBody:
        content:
          application/json:
            schema:
              $ref: '#/components/schemas/DetachFileSystemRequest'
        required: true
      responses:
        '200':
          description: >-
            Filesystem detach accepted and persisted; the returned sandbox no
            longer lists the `file_systems` entry
          content:
            application/json:
              schema:
                $ref: '#/components/schemas/SandboxInfo'
        '400':
          description: Invalid mount path
          content:
            text/plain: {}
        '401':
          description: Unauthorized. Invalid or missing credentials
        '403':
          description: Forbidden. You do not have permission to access this resource
        '404':
          description: Sandbox not found, or no filesystem is mounted at the given path
          content:
            text/plain: {}
        '409':
          description: Sandbox is not running
          content:
            text/plain: {}
        '500':
          description: Internal server error
          content:
            text/plain: {}
components:
  schemas:
    DetachFileSystemRequest:
      type: object
      required:
        - mount_path
      properties:
        mount_path:
          type: string
          description: Absolute guest mount path of the filesystem to detach.
    SandboxInfo:
      type: object
      required:
        - id
        - namespace
        - status
        - created_at
        - resources
        - timeout_secs
        - allow_unauthenticated_access
      properties:
        id:
          type: string
        namespace:
          type: string
        image:
          type: string
        status:
          $ref: '#/components/schemas/SandboxStatus'
        pending_reason:
          type:
            - string
            - 'null'
          description: Present when `status` is `pending`.
        outcome:
          type:
            - string
            - 'null'
          description: >-
            Platform-specific termination outcome string returned for completed
            sandboxes.
        termination_reason:
          type:
            - string
            - 'null'
          description: >-
            Typed reason the sandbox terminated (e.g. `FileSystemNotFound`,
            `ImageNotFound`). Present on failed terminations.
        error_details:
          type:
            - string
            - 'null'
          description: Human-readable detail accompanying `termination_reason`.
        created_at:
          type: integer
          format: int64
          description: Milliseconds since Unix epoch.
        container_id:
          type:
            - string
            - 'null'
        executor_id:
          type:
            - string
            - 'null'
        resources:
          $ref: '#/components/schemas/ContainerResourcesInfo'
        timeout_secs:
          type: integer
          format: int64
        ingress_endpoint:
          type:
            - string
            - 'null'
          description: Canonical server-provided base for sandbox-specific ingress.
        sandbox_url:
          type:
            - string
            - 'null'
          description: Sandbox-specific management URL derived from `ingress_endpoint`.
        pool_id:
          type:
            - string
            - 'null'
        network_policy:
          oneOf:
            - type: 'null'
            - $ref: '#/components/schemas/SandboxNetworkAccessControl'
        allow_unauthenticated_access:
          type: boolean
          description: Whether sandbox ingress may route requests without auth validation.
        exposed_ports:
          type:
            - array
            - 'null'
          items:
            type: integer
            format: int32
            minimum: 1
            maximum: 65535
          description: >-
            Additional routable ingress ports. When `null`, only the management
            port `9501` is routable.
        template_id:
          type:
            - string
            - 'null'
        name:
          type:
            - string
            - 'null'
        file_systems:
          type: array
          description: Filesystems currently mounted into the sandbox.
          items:
            $ref: '#/components/schemas/FileSystemMount'
    SandboxStatus:
      type: string
      enum:
        - pending
        - running
        - snapshotting
        - suspending
        - suspended
        - terminated
    ContainerResourcesInfo:
      type: object
      required:
        - cpus
        - memory_mb
        - disk_mb
      properties:
        cpus:
          type: number
          format: double
          description: CPU allocation in cores.
        memory_mb:
          type: integer
          format: int64
          description: Memory allocation in MiB.
        disk_mb:
          type: integer
          format: int64
          description: Ephemeral root filesystem size in MiB.
    SandboxNetworkAccessControl:
      type: object
      properties:
        allow_internet_access:
          type: boolean
          default: true
          description: >-
            Allows internet access, including DNS requests. If false, all
            outbound traffic except destinations in allow_out is blocked,
            including DNS requests. If allow_out is non-empty and this is true,
            only the listed destinations and DNS requests are allowed.
        allow_out:
          type: array
          description: >-
            Allowed domains, IPv4 addresses, or IPv4 CIDRs. A non-empty list
            allows the listed destinations and DNS requests when
            allow_internet_access is true. Hostname rules are followed across
            DNS changes. A destination also matched by deny_out is blocked.
          items:
            type: string
        deny_out:
          type: array
          description: >-
            Denied domains, IPv4 addresses, or IPv4 CIDRs. Takes precedence over
            allow_out; a destination matched by both is blocked.
          items:
            type: string
    FileSystemMount:
      type: object
      required:
        - file_system_id
        - mount_path
      properties:
        file_system_id:
          type: string
          description: >-
            Filesystem name within the project — the name created with `tl fs
            create <name>`. ASCII letters, digits, `_`, and `-` only.
        mount_path:
          type: string
          description: >-
            Absolute guest mount path (e.g. `/mnt/skills`). Must not be `/` or
            contain `..`; paths are normalized, and mount paths must be unique
            and non-nested within the sandbox.
        read_only:
          type: boolean
          default: false
          description: >-
            Mount the filesystem read-only. Writes inside the guest fail with
            `EROFS`; the mount's storage credential carries no write scope.
            Fail-closed — sandboxes requesting read-only mounts are only placed
            on fleets that can enforce them.
        prefetch:
          type: boolean
          default: false
          description: >-
            Download the filesystem's full tree in the background after the
            mount is ready. The mount is usable immediately with lazy reads
            meanwhile. Best-effort — never blocks or fails the sandbox, and
            older fleets skip it silently.
  securitySchemes:
    bearerAuth:
      type: http
      scheme: bearer

````