Developer 3s Key Decision Metrics
On 2026-10-01 Cloudflare open-sourced Cloudflare OS (github.com/cloudflare/cloudflare-os, Apache-2.0): a browser agent workspace with company context/skills, modifiable Gadgets, and a Gatekeeper capability-security layer (zero default access, observation-following policy, deferred simulated approvals). Deploy via starter or https://os.cloudflare.app/deploy; inference through AI Gateway.
Key Takeaways
- ✓Announced 2026-10-01; github.com/cloudflare/cloudflare-os Apache-2.0; >10k stars near launch (GitHub API)
- ✓Trio: context-grounded agent workspace + Gatekeepers + per-user Gadgets (Dynamic Worker Facets + SQLite)
- ✓Security: zero default access; credentials isolated; egress only via bindings; observation log follows sharing/egress
- ✓Gatekeepers can simulate side effects and defer bulk approval vs sync HITL or auto-approve
- ✓Try: pnpm run-local, os.cloudflare.app/deploy, cloudflare-os-starter; AI Gateway for models/budgets; early access
Finished reading? Explore benchmark rankings & pricing
Real-world SWE-bench scores & $20/mo vs API cost break-even calculator
Project Links & Resources
Direct AccessIn-Depth Technical Analysis
Core Background & Industry Pain Points
Coding agents already close the write–test loop; giving the same leverage to non-engineering roles needs company context plus safe reach into internal systems. API keys do not scale. MCP can limit which tools an agent may call, but not which underlying resources it has observed—so shared dashboards can leak data. After an internal v1 from May 2026, Cloudflare open-sourced Cloudflare OS on 2026-10-01 as a rebuild meant to become “Your Company OS.”
Architecture Highlights & Internals
Three pillars: (1) an agent workspace with curated context/skills and an isolated Code Mode runtime; (2) Gatekeepers—service-specific Workers that hold OAuth, narrow scope, mask fields, log observations, and mediate side effects; (3) Gadgets—per-user full-stack apps (sandboxed client + Dynamic Worker Facet with SQLite) over Cap'n Web RPC, callable by both humans and agents. Default access is zero; credentials never enter the agent. Side effects can be simulated so agents keep planning while humans approve later in bulk. All inference goes through AI Gateway for model choice, attribution, and budgets.
Authoritative Benchmarks & Measured Scores
No SWE-bench/Terminal-Bench numbers—do not invent. Anchors: blog, cloudflare/cloudflare-os (Apache-2.0, >10k stars near launch per GitHub API), cloudflare-os-starter, deploy at https://os.cloudflare.app/deploy. README: early access / v2 rewrite. Stack: Durable Objects, Dynamic Workers, Facets; workerd self-host docs still COMING SOON.
Developer Hands-on Guide
Read the blog/README; pnpm run-local or deploy via wizard/starter with Access + AI Gateway + Gatekeeper OAuth; introduce capabilities per resource; review observation logs before sharing. Managed dashboard product, containers, and Slack workspaces are roadmap items.

Discussion & Comments
0Sign in to join the discussion
Connect with AI developers to exchange benchmark insights.