There's also SECCOMP_RET_USER_NOTIF, which is typically used by container runtimes for their sandboxing.
Also gVisor (aka runsc) is a container runtime as well. And it doesn't gatekeep syscalls but chooses to re-implement them in userland.
I wonder if there's any mechanism that works for intercepting static ELF's like Go programs and such.