Skip to main content

Give agents an operating system as a library.

Each agent gets files, processes, shell, and networking in one lightweight OS. One package, with WebAssembly isolation instead of a separate microVM fleet.

Documentation

The sandbox for your agent framework.

Eve, Flue, and Rivet Actors run their tools in agentOS. To run a coding agent such as Pi, see Agents.

Tiny runtime.
Isolation built on WebAssembly.

Powered byWebAssemblyandV8 isolates.

The same technology poweringChromeandCloudflare Workers.

Linux-compatiblewith POSIX files, processes, and networking.

Cold starts

92× faster

4.8 ms p50

agentOS
4.8 ms p50

Sandbox
440 ms p50

Memory per instance

47× smaller

~22 MB per instance

agentOS
~22 MB

Sandbox
~1024 MB

Cost per execution-second

254× cheaper

$0.000000073/s

Metering 100,000 concurrent VMs

agentOS$0.09
Sandbox$22.20

Library, not extra infrastructure

Install agentOS from npm and run it inside the backend process you already operate.

WebAssembly + V8, not a microVM

V8 isolates run JavaScript while WebAssembly contains compiled tools inside the same compact runtime.

Direct function calls, not extra APIs

Connect agents to your application with ordinary JavaScript calls instead of another network service.

Scoped access, not exposed credentials

Bind trusted host functions without ever giving the agent your raw secrets.

One process, not a VM per agent

Many isolated agent operating systems share one compact runtime instead of duplicating a full microVM stack.

Runs anywhere, no nested virtualization

Deploy on standard Linux infrastructure without a hypervisor or nested virtualization.

Execution

Run Bash, Node.js, Python, and registry software inside the same isolated VM.

  • Native JavaScript performance

    Run Node.js on native V8 isolates with the full JIT, not JavaScript compiled to WASM.

  • Built-in type checks

    Type-check agent-generated code and return diagnostics so the agent can fix errors.

  • Host functions

    Expose typed backend functions without giving credentials to the VM.

  • Subprocesses

    Spawn, stream, signal, and manage child processes with Linux-like semantics.

  • Network requests & servers

    Make outbound requests or serve HTTP from inside the VM under explicit permissions.

Explore execution docs
The agent writes one program instead of a chain of tool calls.

Filesystem

Every agent gets its own persistent POSIX filesystem. Mount S3, Google Drive, host directories, or a full sandbox at a normal path, then use familiar files and shell tools everywhere.

Explore the filesystem
StorageFilesystem path
Host directory
/workspace
S3
/data
Google Drive
/documents

Mounted into one persistent POSIX filesystem.

Develop locally. Deploy when ready.

Deploy on Rivet Cloud, or self-host Rivet inside your own infrastructure.

Local & Self-Host

Install agentOS and run it locally while you build. When you ship, run the same open-source control plane as a Rust binary or container on your own infrastructure.

Open the quickstartRead self-hosting docs

Rivet Cloud

Deploy agentOS on Rivet Cloud with managed infrastructure and persisted Actor data.

Open the dashboard

BYOC

Run the control plane inside your own VPC, fully managed by Rivet. Your data never leaves your cloud and there is no inbound management connection.

Read the BYOC docs

Turn your backend into the agent platform.

Open source under Apache 2.0. One npm install away.

Documentation