Cloudflare has moved its Sandboxes and Containers to general availability, offering persistent isolated Linux environments designed for AI agent workloads. Key new features include secure credential injection via an egress proxy (zero-trust model where agents never see tokens), PTY terminal support over WebSocket, persistent code interpreters with state across calls, filesystem watching via Linux inotify, and snapshot-based session recovery enabling near-instant warm starts (2s vs 30s cold boot). Pricing shifts to active CPU billing at $0.00002 per vCPU-second. Figma is already running production AI agent workloads on the platform. The offering competes with E2B, Daytona, Modal, and Vercel's sandbox products, differentiating through Cloudflare's global edge network and a two-tier architecture combining lightweight V8 isolates with full container-based sandboxes.

4m read timeFrom infoq.com
Post cover image

Sort: