can someone explain me how can this exist without being a security nightmare?
From what I saw it's on a read only filesystem which looks like a great idea but what else?
It's implemented on Google cloud as a cloud function.
So, for whoever made this, the risk would be mostly about running up their bill I suppose? Some risk to Google if it's possible to escape their container, though I suppose they've done a bit of work in that space.