Cloudflare open-sources rebuilt Cloudflare OS
Cloudflare open-sourced a rebuilt Cloudflare OS organizations can deploy on their systems, with an agent workspace, Gatekeepers for access control and apps that run as Cloudflare Workers.
Cloudflare has open-sourced a rebuilt Cloudflare OS that organizations can install on their own systems. The platform includes an agent workspace, a security and governance layer built around Gatekeepers, and a way to ship personal apps as Cloudflare Workers.
Cloudflare developed the first version for internal use and in May gave access to all employees, CEO Matthew Prince wrote. Workers outside engineering used it to draft documents, build slides and automate repeatable tasks, the company added.
The new release is redesigned so other organizations can deploy it and connect the platform to their internal systems and data.
Cloudflare OS centers on three components. The agent workspace grounds each conversation in company-curated context and skills and provides an isolated runtime where an agent can write and run code.
A security and governance layer sits between agents and systems of record. Agents begin with no access and must request specific resources. A Gatekeeper, implemented as a service-specific Cloudflare Worker, mediates those requests and issues credentials without exposing them to the agent. Cloudflare wrote, “The credential never touches the agent or its code.”
Model Context Protocol (MCP) can tell an agent which tools it may call but not which underlying resources the agent has actually seen. The platform records every agent observation and verifies a person’s permissions before they can open a workspace or view agent outputs.
Apps and tools that agents build become Cloudflare Workers. They run on Cloudflare’s Dynamic Workers and Durable Object Facets and communicate with clients using Cap’n Web, the company’s open-source object-capability RPC system. In its announcement, Cloudflare wrote, “If you can build a tool to do a job yourself, agents can use your tool to do the job when you’re not there.”
Cloudflare published the platform’s code as open source while continuing to operate the runtime for agents, apps and governance on its managed edge infrastructure. Organizations can deploy the code on their own systems and connect it to internal data; the company acknowledged that the runtime model and central control are items organizations will consider when adopting the platform.
Cloudflare wrote that the release is intended to let other organizations adapt the agent workspace, Gatekeepers and logging to their environments while limiting agent access to sensitive systems.
The material on GNcrypto is intended solely for informational use and must not be regarded as financial advice. We make every effort to keep the content accurate and current, but we cannot warrant its precision, completeness, or reliability. GNcrypto does not take responsibility for any mistakes, omissions, or financial losses resulting from reliance on this information. Any actions you take based on this content are done at your own risk. Always conduct independent research and seek guidance from a qualified specialist. For further details, please review our Terms, Privacy Policy and Disclaimers.








