[{"data":1,"prerenderedAt":590},["ShallowReactive",2],{"navigation_docs":3,"-intro-comparison-vs-cloudflare-os":388,"-intro-comparison-vs-cloudflare-os-surround":585},[4,82,147,173,202,259,298,355],{"title":5,"icon":6,"redirect":7,"path":8,"stem":9,"children":10,"page":73},"Start","i-lucide-compass","\u002Fintro\u002Fquickstart","\u002Fintro","1.intro",[11,14,18,22,74,78],{"title":12,"path":7,"stem":13},"Quickstart","1.intro\u002F0.quickstart",{"title":15,"path":16,"stem":17},"Pipeline Applications","\u002Fintro\u002Fpipeline-app-walkthrough","1.intro\u002F1.pipeline-app-walkthrough",{"title":19,"path":20,"stem":21},"How Redgold works","\u002Fintro\u002Foverview","1.intro\u002F2.overview",{"title":23,"icon":24,"visibility":25,"redirect":26,"path":27,"stem":28,"children":29,"page":73},"Comparison","i-lucide-scale","private","\u002Fintro\u002Fcomparison\u002Fpositioning","\u002Fintro\u002Fcomparison","1.intro\u002F3.comparison",[30,33,37,41,45,49,53,57,61,65,69],{"title":31,"path":26,"stem":32},"Positioning","1.intro\u002F3.comparison\u002F1.positioning",{"title":34,"path":35,"stem":36},"vs Lovable","\u002Fintro\u002Fcomparison\u002Fvs-lovable","1.intro\u002F3.comparison\u002F10.vs-lovable",{"title":38,"path":39,"stem":40},"vs Cloudflare OS","\u002Fintro\u002Fcomparison\u002Fvs-cloudflare-os","1.intro\u002F3.comparison\u002F11.vs-cloudflare-os",{"title":42,"path":43,"stem":44},"vs a backend-as-a-service","\u002Fintro\u002Fcomparison\u002Fvs-baas","1.intro\u002F3.comparison\u002F2.vs-baas",{"title":46,"path":47,"stem":48},"vs serverless compute","\u002Fintro\u002Fcomparison\u002Fvs-serverless-compute","1.intro\u002F3.comparison\u002F3.vs-serverless-compute",{"title":50,"path":51,"stem":52},"vs a do-it-yourself data stack","\u002Fintro\u002Fcomparison\u002Fvs-diy-data-stack","1.intro\u002F3.comparison\u002F4.vs-diy-data-stack",{"title":54,"path":55,"stem":56},"vs Rama","\u002Fintro\u002Fcomparison\u002Fvs-rama","1.intro\u002F3.comparison\u002F5.vs-rama",{"title":58,"path":59,"stem":60},"vs Apache Spark","\u002Fintro\u002Fcomparison\u002Fvs-spark","1.intro\u002F3.comparison\u002F6.vs-spark",{"title":62,"path":63,"stem":64},"vs Apache DataFusion","\u002Fintro\u002Fcomparison\u002Fvs-datafusion","1.intro\u002F3.comparison\u002F7.vs-datafusion",{"title":66,"path":67,"stem":68},"vs Heroku","\u002Fintro\u002Fcomparison\u002Fvs-heroku","1.intro\u002F3.comparison\u002F8.vs-heroku",{"title":70,"path":71,"stem":72},"vs AI model providers","\u002Fintro\u002Fcomparison\u002Fvs-ai-providers","1.intro\u002F3.comparison\u002F9.vs-ai-providers",false,{"title":75,"path":76,"stem":77},"Common tasks","\u002Fintro\u002Fstarting-points","1.intro\u002F4.starting-points",{"title":79,"path":80,"stem":81},"FAQ","\u002Fintro\u002Ffaq","1.intro\u002F5.faq",{"title":83,"icon":84,"redirect":85,"path":86,"stem":87,"children":88,"page":73},"Examples","i-lucide-chef-hat","\u002Fcookbook\u002Foverview","\u002Fcookbook","10.cookbook",[89,91,95,99,103,107,111,115,119,123,127,131,135,139,143],{"title":83,"path":85,"stem":90},"10.cookbook\u002F1.overview",{"title":92,"path":93,"stem":94},"One-shot task in CI","\u002Fcookbook\u002Fone-shot-ci","10.cookbook\u002F10.one-shot-ci",{"title":96,"path":97,"stem":98},"Rate-limit retries","\u002Fcookbook\u002Fretry-rate-limits","10.cookbook\u002F11.retry-rate-limits",{"title":100,"path":101,"stem":102},"Connect GitHub review automation","\u002Fcookbook\u002Fconnect-github-app","10.cookbook\u002F12.connect-github-app",{"title":104,"path":105,"stem":106},"Delegate a task to another agent","\u002Fcookbook\u002Fdelegate-agent-task","10.cookbook\u002F13.delegate-agent-task",{"title":108,"path":109,"stem":110},"Validate a pipeline application change","\u002Fcookbook\u002Fvalidate-pipeline-app","10.cookbook\u002F14.validate-pipeline-app",{"title":112,"path":113,"stem":114},"Verify a managed application deployment","\u002Fcookbook\u002Fverify-managed-deploy","10.cookbook\u002F15.verify-managed-deploy",{"title":116,"path":117,"stem":118},"First API call","\u002Fcookbook\u002Ffirst-api-call","10.cookbook\u002F2.first-api-call",{"title":120,"path":121,"stem":122},"Python client","\u002Fcookbook\u002Fmodel-api-python","10.cookbook\u002F3.model-api-python",{"title":124,"path":125,"stem":126},"Anthropic Messages","\u002Fcookbook\u002Fanthropic-messages","10.cookbook\u002F4.anthropic-messages",{"title":128,"path":129,"stem":130},"Check credits","\u002Fcookbook\u002Fcheck-credits","10.cookbook\u002F5.check-credits",{"title":132,"path":133,"stem":134},"Query data via MCP","\u002Fcookbook\u002Fmcp-query-data","10.cookbook\u002F6.mcp-query-data",{"title":136,"path":137,"stem":138},"Drive an agent via MCP","\u002Fcookbook\u002Fmcp-drive-agent","10.cookbook\u002F7.mcp-drive-agent",{"title":140,"path":141,"stem":142},"Install the client","\u002Fcookbook\u002Finstall-client","10.cookbook\u002F8.install-client",{"title":144,"path":145,"stem":146},"Use another API host","\u002Fcookbook\u002Fpoint-client-at-host","10.cookbook\u002F9.point-client-at-host",{"title":148,"icon":149,"redirect":150,"path":151,"stem":152,"children":153,"page":73},"Agent operations","i-lucide-network","\u002Ffleet\u002Foverview","\u002Ffleet","11.fleet",[154,157,161,165,169],{"title":155,"path":150,"stem":156},"Running agent work","11.fleet\u002F0.overview",{"title":158,"path":159,"stem":160},"Workstreams and issues","\u002Ffleet\u002Fworkstreams-and-issues","11.fleet\u002F1.workstreams-and-issues",{"title":162,"path":163,"stem":164},"Agent lifecycle","\u002Ffleet\u002Fagent-lifecycle","11.fleet\u002F2.agent-lifecycle",{"title":166,"path":167,"stem":168},"Supervision and recovery","\u002Ffleet\u002Fsupervision","11.fleet\u002F3.supervision",{"title":170,"path":171,"stem":172},"An application workstream from request to delivery","\u002Ffleet\u002Fapplication-workstream","11.fleet\u002F4.application-workstream",{"title":174,"icon":175,"redirect":176,"path":177,"stem":178,"children":179,"page":73},"Architecture","i-lucide-layers","\u002Finfrastructure\u002Foverview","\u002Finfrastructure","3.infrastructure",[180,182,186,190,194,198],{"title":174,"path":176,"stem":181},"3.infrastructure\u002F0.overview",{"title":183,"path":184,"stem":185},"A request through the platform","\u002Finfrastructure\u002Frequest-path","3.infrastructure\u002F11.request-path",{"title":187,"path":188,"stem":189},"Agent work and durable state","\u002Finfrastructure\u002Fagent-work","3.infrastructure\u002F12.agent-work",{"title":191,"path":192,"stem":193},"Data and pipelines","\u002Finfrastructure\u002Fdata","3.infrastructure\u002F3.data",{"title":195,"path":196,"stem":197},"AI and agents","\u002Finfrastructure\u002Fai","3.infrastructure\u002F4.ai",{"title":199,"path":200,"stem":201},"Managed deployment","\u002Finfrastructure\u002Fdeployment","3.infrastructure\u002F7.deployment",{"title":203,"icon":204,"redirect":205,"path":206,"stem":207,"children":208,"page":73},"API","i-lucide-book-marked","\u002Freference\u002Fauthentication","\u002Freference","4.reference",[209,212,216,220,224,228,232,236,240,244,248],{"title":210,"path":205,"stem":211},"Authentication","4.reference\u002F1.authentication",{"title":213,"path":214,"stem":215},"Security disclosure policy","\u002Freference\u002Fsecurity-disclosure","4.reference\u002F11.security-disclosure",{"title":217,"path":218,"stem":219},"Model API","\u002Freference\u002Fllm-api","4.reference\u002F2.llm-api",{"title":221,"path":222,"stem":223},"MCP server","\u002Freference\u002Fmcp","4.reference\u002F2.mcp",{"title":225,"path":226,"stem":227},"Data platform preview","\u002Freference\u002Fdata-platform-preview","4.reference\u002F3.data-platform-preview",{"title":229,"path":230,"stem":231},"Terminal client","\u002Freference\u002Fcli","4.reference\u002F6.cli",{"title":233,"path":234,"stem":235},"Pipeline manifest preview","\u002Freference\u002Fpipeline-preview","4.reference\u002F7.pipeline-preview",{"title":237,"path":238,"stem":239},"Limits and retries","\u002Freference\u002Flimits","4.reference\u002F8.limits",{"title":241,"path":242,"stem":243},"API contract details","\u002Freference\u002Fapi-contracts","4.reference\u002F9.api-contracts",{"title":245,"path":246,"stem":247},"Errors","\u002Freference\u002Ferrors","4.reference\u002F9.errors",{"title":249,"icon":250,"visibility":251,"path":252,"stem":253,"children":254,"page":73},"Public API","i-lucide-route","public","\u002Freference\u002Froutes","4.reference\u002Froutes",[255],{"title":256,"path":257,"stem":258},"V1 routes","\u002Freference\u002Froutes\u002Fv1","4.reference\u002Froutes\u002Fv1",{"title":260,"icon":261,"visibility":25,"redirect":262,"path":263,"stem":264,"children":265,"page":73},"Develop","i-lucide-code","\u002Fdevelop\u002Fpipeline-apps\u002Foverview","\u002Fdevelop","5.develop",[266,270,286,290,294],{"title":267,"path":268,"stem":269},"Author a batch transform","\u002Fdevelop\u002Fauthor-a-batch-transform","5.develop\u002F10.author-a-batch-transform",{"title":271,"visibility":251,"redirect":262,"path":272,"stem":273,"children":274,"page":73},"Pipeline Apps","\u002Fdevelop\u002Fpipeline-apps","5.develop\u002F11.pipeline-apps",[275,278,282],{"title":276,"path":262,"stem":277},"Pipeline apps","5.develop\u002F11.pipeline-apps\u002F1.overview",{"title":279,"path":280,"stem":281},"Collaborative board walkthrough","\u002Fdevelop\u002Fpipeline-apps\u002Fcollaborative-board","5.develop\u002F11.pipeline-apps\u002F2.collaborative-board",{"title":283,"path":284,"stem":285},"Release and security lifecycle","\u002Fdevelop\u002Fpipeline-apps\u002Frelease-lifecycle","5.develop\u002F11.pipeline-apps\u002F3.release-lifecycle",{"title":287,"path":288,"stem":289},"Build a vertical","\u002Fdevelop\u002Fbuild-a-vertical","5.develop\u002F5.build-a-vertical",{"title":291,"path":292,"stem":293},"Managed application artifacts","\u002Fdevelop\u002Fscaffold-a-narrow-app","5.develop\u002F7.scaffold-a-narrow-app",{"title":295,"path":296,"stem":297},"Import your data","\u002Fdevelop\u002Fimport-your-data","5.develop\u002F8.import-your-data",{"title":299,"icon":300,"redirect":301,"path":302,"stem":303,"children":304,"page":73},"Guides","i-lucide-layout-grid","\u002Fapplications\u002Fai-agents\u002Foverview","\u002Fapplications","7.applications",[305,309,329,341],{"title":306,"path":307,"stem":308},"Application maturity catalog","\u002Fapplications\u002Fcatalog","7.applications\u002F0.catalog",{"title":310,"visibility":251,"path":311,"stem":312,"children":313,"page":73},"AI Agents","\u002Fapplications\u002Fai-agents","7.applications\u002F1.ai-agents",[314,317,321,325],{"title":315,"path":301,"stem":316},"Coding agents","7.applications\u002F1.ai-agents\u002F01.overview",{"title":318,"path":319,"stem":320},"GitHub App automation","\u002Fapplications\u002Fai-agents\u002Fgithub-app-automation","7.applications\u002F1.ai-agents\u002F04.github-app-automation",{"title":322,"path":323,"stem":324},"agent-cli assistance","\u002Fapplications\u002Fai-agents\u002Fagent-cli-assistance","7.applications\u002F1.ai-agents\u002F05.agent-cli-assistance",{"title":326,"path":327,"stem":328},"Agent REST control","\u002Fapplications\u002Fai-agents\u002Frest-agent-control","7.applications\u002F1.ai-agents\u002F06.rest-agent-control",{"title":330,"visibility":251,"path":331,"stem":332,"children":333,"page":73},"Tickets","\u002Fapplications\u002Ftickets","7.applications\u002F2.tickets",[334,337],{"title":330,"path":335,"stem":336},"\u002Fapplications\u002Ftickets\u002Foverview","7.applications\u002F2.tickets\u002F01.overview",{"title":338,"path":339,"stem":340},"API walkthrough","\u002Fapplications\u002Ftickets\u002Fapi-walkthrough","7.applications\u002F2.tickets\u002F02.api-walkthrough",{"title":342,"icon":343,"visibility":251,"path":344,"stem":345,"children":346,"page":73},"Case studies","i-lucide-book-open-check","\u002Fapplications\u002Fcase-studies","7.applications\u002F6.case-studies",[347,351],{"title":348,"path":349,"stem":350},"Case study: owner-scoped tickets","\u002Fapplications\u002Fcase-studies\u002Ftickets","7.applications\u002F6.case-studies\u002F01.tickets",{"title":352,"path":353,"stem":354},"Case study: repository review and correction","\u002Fapplications\u002Fcase-studies\u002Frepository-review","7.applications\u002F6.case-studies\u002F02.repository-review",{"title":356,"icon":357,"redirect":358,"path":359,"stem":360,"children":361,"page":73},"Resources","i-lucide-library","\u002Fresources\u002Fglossary","\u002Fresources","9.resources",[362,365,369,373,377,380,384],{"title":363,"path":358,"stem":364},"Glossary","9.resources\u002F1.glossary",{"title":366,"path":367,"stem":368},"Terms of Service","\u002Fresources\u002Fterms","9.resources\u002F2.terms",{"title":370,"path":371,"stem":372},"Privacy Policy","\u002Fresources\u002Fprivacy","9.resources\u002F3.privacy",{"title":374,"path":375,"stem":376},"Acceptable Use Policy","\u002Fresources\u002Facceptable-use","9.resources\u002F4.acceptable-use",{"title":79,"path":378,"stem":379},"\u002Fresources\u002Ffaq","9.resources\u002F5.faq",{"title":381,"path":382,"stem":383},"Documentation feedback","\u002Fresources\u002Fdocs-feedback","9.resources\u002F6.docs-feedback",{"title":385,"path":386,"stem":387},"Refund and Cancellation Policy","\u002Fresources\u002Frefund-cancellation","9.resources\u002F7.refund-cancellation",{"id":389,"title":38,"access":251,"audience":390,"body":391,"description":576,"extension":577,"last_verified":578,"links":579,"maturity":580,"meta":581,"navigation":582,"path":39,"seo":583,"stem":40,"__hash__":584},"docs\u002F1.intro\u002F3.comparison\u002F11.vs-cloudflare-os.md","developer",{"type":392,"value":393,"toc":569},"minimark",[394,398,401,406,552,556,559,562,566],[395,396,397],"p",{},"Cloudflare OS is an open-source platform that gives every employee an agent\nworkspace with an isolated code-execution runtime, a governance framework for\ninternal data access, and a platform for personal, modifiable apps. Each app is\na \"file\" that can be a full full-stack application — client code, server code,\nan API, and durable state — where the server runs as a Dynamic Worker (a V8\nisolate created at runtime) instantiated as a Durable Object Facet with its own\nSQLite database. Agents and apps start with zero access; capabilities are\ngranted per resource as typed bindings, credential-holding gatekeeper Workers\nenforce policy, and the platform tracks every resource an agent has observed.\nIt deploys into your own Cloudflare account and runs on Cloudflare's edge.",[395,399,400],{},"Redgold shares the goal: agents that author and modify applications inside a\nplatform whose security model makes that safe. The substrate differs. A Redgold\napplication is a checked-in Rust serde schema encoded with CBOR, a pipeline manifest, an edge route, and\nexecutor-run transform code over engine storage, deployed through GitOps onto\nyour own Kubernetes cluster. The agents are persistent coding-agent workspaces\nin isolated pods operating the same platform, and the data layer is a\ncontent-addressed Lance\u002FParquet and Postgres engine rather than per-app SQLite.",[402,403,405],"h2",{"id":404},"criteria","Criteria",[407,408,409,425],"table",{},[410,411,412],"thead",{},[413,414,415,419,422],"tr",{},[416,417,418],"th",{},"Criterion",[416,420,421],{},"Redgold",[416,423,424],{},"Cloudflare OS",[426,427,428,445,456,470,486,497,511,525,539],"tbody",{},[413,429,430,434,442],{},[431,432,433],"td",{},"Product unit",[431,435,436,437,441],{},"A pipeline application: schemas, dataflows, routes, transforms, datasets, and a signed release installed per workspace (",[438,439,440],"a",{"href":262},"pipeline apps",")",[431,443,444],{},"A personal app \"file\": client + server + API + durable state, one Dynamic Worker instance per app",[413,446,447,450,453],{},[431,448,449],{},"Instance model",[431,451,452],{},"One installation pins one immutable release per workspace; state lives in owner-scoped engine datasets, shared by grant",[431,454,455],{},"One isolate per app instance with its own SQLite (Durable Object Facet); sharing the app shares state, sharing a blueprint copies code with fresh state",[413,457,458,461,467],{},[431,459,460],{},"Untrusted code isolation",[431,462,463,464,441],{},"Tiered: built-in operators and trusted native (cdylib) transforms in process, capability-limited WASM UDFs in the Wasmtime sandbox, and untrusted native\u002FPython UDFs fail closed into Firecracker microVMs (",[438,465,466],{"href":176},"infrastructure overview",[431,468,469],{},"V8 isolates (Dynamic Workers) with outbound networking disabled, millisecond cold starts, defense-in-depth below V8",[413,471,472,475,478],{},[431,473,474],{},"Capability model",[431,476,477],{},"Release-pinned capability consent per installation, dataset grants for shared records, runtime write enforcement against the signed release",[431,479,480,481,485],{},"Zero default access; typed capability bindings in ",[482,483,484],"code",{},"env",", gatekeeper Workers holding credentials, observation tracking gating shares and writes",[413,487,488,491,494],{},[431,489,490],{},"Agent-modifiable apps",[431,492,493],{},"Agents author the bounded artifact set (schema, pipeline, surface, UDF, release); validators reject unknown operations and undeclared capabilities before publication",[431,495,496],{},"The workspace agent edits the app's own code directly; every user runs their own copy, so modification needs no upstream fork",[413,498,499,502,508],{},[431,500,501],{},"Data model",[431,503,504,505,441],{},"Content-addressed Rust serde rows encoded with CBOR over a Lance\u002FParquet cold tier and a Postgres hot tier, owner-scoped reads (",[438,506,507],{"href":192},"data and pipelines",[431,509,510],{},"Per-app SQLite in the facet; company data reached through gatekeepers and MCP portals",[413,512,513,516,522],{},[431,514,515],{},"Deploy target",[431,517,518,519,441],{},"Your own Kubernetes cluster via CI builds and ArgoCD reconciliation (",[438,520,521],{"href":200},"managed deployment",[431,523,524],{},"Your own Cloudflare account, on Cloudflare's edge runtime",[413,526,527,530,536],{},[431,528,529],{},"Model access",[431,531,532,533,441],{},"Model API with routing and rate limits next to the agent fleet (",[438,534,535],{"href":218},"LLM API",[431,537,538],{},"Any model through Cloudflare AI Gateway with per-person\u002Fteam attribution and budgets",[413,540,541,544,549],{},[431,542,543],{},"Maturity",[431,545,546,547,441],{},"Early, single-operator; app contracts and installation runtime are developer preview (",[438,548,440],{"href":262},[431,550,551],{},"Newly open-sourced after internal use; managed dashboard product on the roadmap",[402,553,555],{"id":554},"category-boundary","Category boundary",[395,557,558],{},"Cloudflare OS centers on the end-user workspace: conversation-first, with\ndocuments, workflows, and personal apps materializing out of it, each app a\ncheap disposable isolate the user's agent can rewrite freely. Its data story is\nper-app state plus governed reach into existing company systems through\ngatekeepers. Redgold centers on the data platform underneath that loop: typed\nrecords as the ground truth, pipelines and transforms over shared engine\ndatasets, signed releases installed into workspaces, and a coding-agent fleet\nthat operates the cluster itself — build, deploy, review, and ingestion\nincluded. Cloudflare OS apps live on state the app owns; Redgold applications\nlive on datasets the platform owns and grants.",[395,560,561],{},"The security models rhyme — both make agent-authored code safe by construction,\nwith capability grants instead of ambient authority — but enforce at different\nlayers. Cloudflare OS isolates each app instance in its own sandbox and\ncontrols who can reach the instance. Redgold pins what an installed release may\ndo (signed artifacts, capability consent, runtime write enforcement) and\nscopes what any caller may read at the engine (owner-scoped datasets, explicit\ngrants), with the sandbox tier reserved for untrusted transform code.",[402,563,565],{"id":564},"when-redgold-fits","When Redgold fits",[395,567,568],{},"Redgold fits when the applications are data-and-pipeline shaped — ingestion,\ntransforms, and queryable datasets on infrastructure you control — and when\nthe agents should operate that infrastructure, from CI to deploy to the data\nlayer, rather than live inside a workspace product. If the goal is giving every\nemployee a safe personal-app workspace over existing SaaS systems on managed\nedge compute, Cloudflare OS is the more direct tool. If the per-instance\nsandbox model appeals but the workload is heavy data processing on your own\ncluster with typed schemas and GitOps, the Redgold shape is the trade being\noffered.",{"title":570,"searchDepth":571,"depth":571,"links":572},"",2,[573,574,575],{"id":404,"depth":571,"text":405},{"id":554,"depth":571,"text":555},{"id":564,"depth":571,"text":565},"Redgold against Cloudflare OS across agent workspaces, personal modifiable apps, sandboxing, and infrastructure ownership.","md","2026-08-14",null,"available",{"toc":582,"visibility":251},true,{"title":38,"description":576},"njZ4P5vuGjEgStKwbOc-4WwlBjx-Ua6dlzbhU0R0uSI",[586,588],{"title":34,"path":35,"stem":36,"description":587,"children":-1},"Redgold against Lovable and similar AI app builders across generation, backend, data, and infrastructure ownership.",{"title":42,"path":43,"stem":44,"description":589,"children":-1},"Redgold against Supabase, Firebase, and similar hosted app backends.",1789873213246]