Website · Join the waitlist · Changelog · Security
A self-hostable Rust service that runs coding agents on your own Linux VM and saves their session history. Supports Codex, Claude Code, Pi, and Cursor. Agents make their own model calls with your own logins. One Cargo package; one service per VM. No Cloudroom account or hosted service is required. Don't want to run your own VM? Hosted Cloudroom is invite-only for now. Join the waitlist.
Architecture design. Some components and integrations shown are planned, not yet implemented.
- Install on Ubuntu 24.04 with one script, or build from source.
- HTTP API reference: every endpoint, event, and error code.
- Linux builds: CI-tested binaries for each release.
- Agents run as a separate Linux user with no admin rights. The core removes every Linux privilege before an agent starts, so
sudodoes not work. - Agents start with an empty environment. They cannot read the core's token, database password, or history files.
- Every API request needs a secret token; the installer generates a random 256-bit one. The API listens only on localhost unless you opt in behind an HTTPS proxy.
- History is saved to PostgreSQL outside the VM, over TLS with full certificate checks. Agents call model providers directly.
- Command Guard blocks a few catastrophic commands, such as deleting a home folder or formatting a disk.
Agents run without approval prompts and share one Linux user, so use one VM per trusted user. See cloudroom.dev/security. Report vulnerabilities privately as described in SECURITY.md.
Download the Cloudroom GUI beta for Apple Silicon Macs, with a Linux alpha. Downloads are public, but hosted cloud access remains invite-only (join the waitlist). The core does not require the GUI.
Requires Rust 1.89+, Git, and the supported harness runtimes.
cargo build --locked --release
cargo test --locked --all-targetsApply the two SQL files in docs/database/ to a dedicated PostgreSQL database as its owner.
The service never applies migrations. Keep database and core credentials server-side.
- Installation and workload protection
- Harness configuration and verification
- Session lifecycle
- Diagnostics
- Dashboard API
Issues and pull requests are welcome. Open an issue first for larger changes. Accepted changes ship in the next release. Each release's notes list what changed.
This is pre-release software, not a claim that all planned features are complete. Licensed under Apache 2.0.
