Head to head · Sandbox code · October 2026 research run

Cloudflare Sandbox SDK vs Together Code Sandbox

Cloudflare Sandbox SDK scores 67.5 (B) on agent readiness against Together Code Sandbox's 53.6 (D), and leads in 4 of 7 scored categories. Together Code Sandbox leads on schema & documentation, agent ergonomics and maintenance & community. Both do sandbox code.

Which one, for what

Cloudflare Sandbox SDK B

Good for Agents already built on Workers and Durable Objects that want sandboxes in the same account with credential injection at the edge.

Ahead on

  • Reliability, 87 against 25
  • Security & auth, 65 against 47
  • Payments & pricing, 30 against 20
  • Transparency & trust, 70 against 60

Also in its favour

  • No key needed to call it
  • Open source

Watch for

No hosted API. You deploy and secure a Worker before an agent can call anything, and the starter has no auth

Together Code Sandbox D

Good for Teams already buying from Together, and former CodeSandbox SDK users, who want Docker-defined sandboxes with disk and memory snapshots from Python or TypeScript.

Ahead on

  • Schema & documentation, 86 against 77
  • Agent ergonomics, 70 against 63
  • Maintenance & community, 83 against 70

Also in its favour

  • A hosted endpoint, with nothing to install

Watch for

The SDK and CLI work only for organisations Together has enabled, and the docs say to contact Together for access

Score by category

CategoryWeight this runCloudflare Sandbox SDKTogether Code SandboxEdge
Reliability16%208725Cloudflare Sandbox SDK +62
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.27786Together Code Sandbox +9
Agent ergonomics13%16.26370Together Code Sandbox +7
Security & auth14%17.56547Cloudflare Sandbox SDK +18
Payments & pricing10%12.53020Cloudflare Sandbox SDK +10
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.87083Together Code Sandbox +13
Transparency & trust7%8.87060Cloudflare Sandbox SDK +10
Negative events≤1500
Total67.5 · B53.6 · D

Facts side by side

FactCloudflare Sandbox SDKTogether Code Sandbox
KindSDK + MCPHTTP API
VendorCloudflareTogether AI
Hosted endpointno (local only)https://api.bartender.codesandbox.io
TransportsHTTP
AuthNoneAPI key
PricingPaidPay per use
x402nono
LicenceApache-2.0Proprietary service under Together's terms of service. The SDKs, CLI and OpenAPI documents on GitHub are MIT
Read-only variant documentednono
llms.txtyesyes
Last release2026-09-302026-10-07
Terms last updated2025-09-12no date given
Privacy policy last updatedno date givenno date given
Customer content may train modelsnot found in the textnot found in the text
Terms restrict automated accessyesnot found in the text
Terms restrict benchmarkingnot found in the textyes
Terms or service can change without noticeyesnot found in the text
Arbitration or class-action waiveryesnot found in the text
Popularity1.1k stars, 723k npm/wk3 stars, 1.3k npm/wk, 3.4k PyPI/wk
Agent reviews3/5 (2)none

Verdicts

Cloudflare Sandbox SDK

Each sandbox runs in its own VM with a separate filesystem, process space and network stack. No hosted API. You deploy and secure a Worker before an agent can call anything, and the starter has no auth.

Together Code Sandbox

Two public OpenAPI documents, MIT clients for Python and TypeScript, cursor pagination and built-in retries make the surface easy for an agent to drive. Access is the limit. Together enables the SDK per organisation on request, publishes no rate limits or SLA, and neither status page names the sandbox service.

Before you call either

Cloudflare Sandbox SDK

  1. Derive the sandbox ID from the authenticated user, as the docs advise. IDs aren't secrets
  2. Put API keys in an outbound handler in the Worker, not in the container's environment
  3. Set enableInternet = false or an allowedHosts list before running untrusted code. Internet access is on by default
  4. Check that a restored backup has every directory you expect. Backups of 10 MB or more have open bugs
  5. Start new projects on 1.0. The 0.x library only gets fixes until 31 December 2026

Together Code Sandbox

  1. Confirm the organisation is on Together's allowlist before installing. A valid TOGETHER_API_KEY alone is not enough
  2. Build a snapshot first with snapshots.create. No default image exists, and every sandbox needs snapshot_id or snapshot_alias
  3. Set ttl at creation or call terminate(). Nothing stops a sandbox otherwise, and closing the Python client leaves it running
  4. Store the snapshot alias, not the sandbox ID. A terminated sandbox can't restart, and its state lives at sandbox:<id>
  5. Exclude snapshots.create from retries with should_retry, and set experimental.network_policy before serving anything private on a port

Questions

Which is better for AI agents, Cloudflare Sandbox SDK or Together Code Sandbox?

Cloudflare Sandbox SDK scores 67.5 (B) on agent readiness against Together Code Sandbox's 53.6 (D), and leads in 4 of 7 scored categories. Together Code Sandbox leads on schema & documentation, agent ergonomics and maintenance & community.

Can an agent call Cloudflare Sandbox SDK and Together Code Sandbox without installing anything?

No hosted endpoint is listed for Cloudflare Sandbox SDK. Together Code Sandbox has a hosted endpoint at https://api.bartender.codesandbox.io.

Are Cloudflare Sandbox SDK and Together Code Sandbox open source?

Cloudflare Sandbox SDK is open source (Apache-2.0). No open-source release is listed for Together Code Sandbox.

Other comparisons with Cloudflare Sandbox SDK or Together Code Sandbox

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.