{
  "data": {
    "a": {
      "slug": "daytona",
      "name": "Daytona",
      "vendor": "Daytona",
      "vendorUrl": "https://www.daytona.io",
      "kind": "http-api",
      "category": "code-sandboxes",
      "summary": "Sandboxes for agent code in container, Linux VM, Windows and GPU classes, driven by SDKs for Python, TypeScript, Ruby, Go and Java or a REST API.",
      "url": "https://www.anchorterminal.com/tools/daytona",
      "markdownUrl": "https://www.anchorterminal.com/tools/daytona.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/daytona.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/daytona.json",
      "repo": "https://github.com/daytona/clients",
      "license": "Apache-2.0 (SDKs and API clients), AGPL-3.0 (CLI)",
      "transports": [
        "http",
        "stdio"
      ],
      "remoteUrl": "https://app.daytona.io/api",
      "packages": [
        {
          "registry": "pypi",
          "name": "daytona"
        },
        {
          "registry": "npm",
          "name": "@daytona/sdk"
        }
      ],
      "auth": "api-key",
      "authNotes": "Bearer API key in the `Authorization` header. The SDKs read `DAYTONA_API_KEY`, `DAYTONA_API_URL` (default https://app.daytona.io/api) and `DAYTONA_TARGET` (us or eu). Keys take scopes, so an agent's key can have `write:sandboxes` without `delete:sandboxes`. The MCP server uses the CLI session from `daytona login`.",
      "pricing": "usage",
      "pricingNotes": "Billed per second. $0.0504 a vCPU-hour, $0.0162 a GiB-hour of memory and $0.000108 a GiB-hour of storage after the first 5 GiB, Windows $0.0858 a vCPU-hour. GPUs from $0.57 an hour (RTX 4090, preemptible) to $6.25 (B300 or B200, on demand), with H100 at $2.27 preemptible or $3.95 on demand. $200 of free compute without a card, and up to $50,000 in startup credits (https://www.daytona.io/pricing). Higher limits unlock with a linked card and a $25 top-up (Tier 2), a $500 top-up (Tier 3) or $2,000 every 30 days (Tier 4) (https://www.daytona.io/docs/en/limits.md).",
      "priceSummary": "$0.0504 / vCPU-hr",
      "where": "both",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 6,
        "npmWeekly": 705790,
        "pypiWeekly": 1406178,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://www.daytona.io/docs",
      "llmsTxt": "https://www.daytona.io/docs/llms.txt",
      "openapi": "https://www.daytona.io/docs/openapi.json",
      "capabilities": [
        "sandbox.code",
        "sandbox.fs",
        "sandbox.persist",
        "sandbox.browser",
        "sandbox.gpu"
      ],
      "tags": [
        "hosted",
        "no-card",
        "mcp",
        "openapi",
        "llms-txt",
        "python",
        "typescript",
        "go",
        "eu",
        "enterprise"
      ],
      "lastRelease": "2026-09-29",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 64.4,
        "grade": "B",
        "agentReady": false,
        "rank": 183,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 6,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 55,
          "maintenance": 80,
          "payments": 50,
          "reliability": 60,
          "schema": 87,
          "security": 63,
          "transparency": 58
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "API keys with per-action scopes, so an agent can create sandboxes without being able to delete them. The container class shares the host kernel. Only the VM classes get their own.",
        "strengths": [
          "API keys with per-action scopes, so an agent can create sandboxes without being able to delete them",
          "Container, Linux VM, Windows and GPU sandbox classes behind one API",
          "Three public OpenAPI files, llms.txt and SDKs in five languages",
          "Rate limits published per tier, with Retry-After and rate-limit headers on 429s",
          "$200 of compute without a card, billed per second"
        ],
        "weaknesses": [
          "The container class shares the host kernel. Only the VM classes get their own",
          "Full internet access and per-sandbox allow lists need Tier 3",
          "Platform code went private in June 2026, and the old repository's 311 open issues won't be answered",
          "Two Windows runner outages over an hour in July and August 2026",
          "No security.txt, SOC 2 report or bug bounty found"
        ],
        "agentNotes": [
          "Pick a Linux VM class for untrusted code or when memory must survive a pause. Container sandboxes stop and archive instead",
          "Set autoStopInterval yourself. The 15-minute idle default can stop a sandbox while the agent is still thinking",
          "Give the agent a key without `delete:sandboxes` if it shouldn't destroy work",
          "Read `Retry-After-{throttler}` on a 429 before retrying sandbox creation",
          "Check the organisation's tier before relying on outbound calls from inside the sandbox"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 3,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 64.4
          }
        ],
        "editorialScores": {
          "ergonomics": 55,
          "maintenance": 80,
          "payments": 50,
          "reliability": 60,
          "schema": 87,
          "security": 63,
          "transparency": 40
        },
        "provenanceScore": 75
      },
      "connect": {
        "install": "pip install daytona  # or npm i @daytona/sdk",
        "http": "curl -X POST https://app.daytona.io/api/sandbox -H \"Authorization: Bearer $DAYTONA_API_KEY\" \\\n  -H \"Content-Type: application/json\" -d '{}'",
        "claudeCode": "claude mcp add daytona -- daytona mcp start",
        "config": {
          "mcpServers": {
            "daytona": {
              "args": [
                "mcp",
                "start"
              ],
              "command": "daytona"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/sandbox.code",
        "tool": "https://letme.dev/daytona"
      },
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "vCPU",
          "unit": "vcpu-hour",
          "usd": 0.0504,
          "note": "Memory extra at $0.0162 a GiB-hour"
        },
        {
          "item": "Nvidia H100, on demand",
          "unit": "gpu-hour",
          "usd": 3.95
        },
        {
          "item": "Nvidia H100, preemptible",
          "unit": "gpu-hour",
          "usd": 2.27
        },
        {
          "item": "Nvidia RTX 4090, preemptible",
          "unit": "gpu-hour",
          "usd": 0.57
        }
      ],
      "provenance": {
        "legalEntity": "Daytona Platforms Inc.",
        "domain": "daytona.io",
        "domainRegistered": "",
        "endpointOnVendorDomain": true,
        "terms": "https://www.daytona.io/terms-of-service",
        "privacy": "https://www.daytona.io/privacy-policy",
        "statusPage": "https://status.app.daytona.io",
        "changelog": "https://www.daytona.io/changelog",
        "securityTxt": "none",
        "checked": "2026-10-01",
        "notes": [
          "Terms and privacy policy (both updated 22 August 2025) name Daytona Platforms Inc., 224 W 35th St, New York, under Delaware law.",
          "The status page lists Windows runner outages on 31 July (3 hours 50 minutes) and 1 August 2026 (1 hour 40 minutes), a 17.5-hour regional degradation on 11 August, short incidents in July and September, and a 2-hour degradation of sandbox listing on 1 October 2026.",
          "www.daytona.io/.well-known/security.txt returns 404. daytona/clients has a SECURITY.md.",
          "The .io registry's RDAP server rate-limited our lookups, so the registration date is blank."
        ],
        "score": 75
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/daytona.json",
      "live": {
        "slug": "daytona",
        "probe": {
          "target": "https://app.daytona.io/api",
          "method": "get",
          "lastAt": "2026-10-04T23:32:46.156837628Z",
          "lastOk": true,
          "lastStatus": 200,
          "lastMs": 102,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 104,
          "p95ms24h": 158,
          "samples24h": 272,
          "samples30d": 895,
          "days": [
            {
              "date": "2026-10-01",
              "probes": 109,
              "ok": 109
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 267,
              "ok": 267
            }
          ]
        },
        "vendorStatus": {
          "page": "https://status.app.daytona.io",
          "indicator": "unknown",
          "summary": "no machine-readable status found",
          "checkedAt": "2026-10-04T21:39:56.041466604Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "daytona/clients",
            "version": "v0.220.0",
            "released": "2026-09-29",
            "seenAt": "2026-10-04T16:25:08.289274609Z"
          },
          {
            "registry": "npm",
            "name": "@daytona/sdk",
            "version": "0.220.0",
            "seenAt": "2026-10-04T16:25:07.364662963Z"
          },
          {
            "registry": "pypi",
            "name": "daytona",
            "version": "0.220.0",
            "released": "2026-09-29",
            "seenAt": "2026-10-04T16:25:07.171178997Z"
          }
        ],
        "githubStars": 12,
        "npmWeekly": 742531,
        "pypiWeekly": 1367845,
        "securityTxt": {
          "url": "https://daytona.io/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-04T15:15:38.986416206Z"
        },
        "llmsTxt": {
          "url": "https://www.daytona.io/docs/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:17:30.007359335Z"
        },
        "domain": {
          "domain": "daytona.io",
          "checkedAt": "2026-10-04T13:04:31.91436109Z"
        },
        "pages": [
          {
            "url": "https://www.daytona.io/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-04T15:49:58.72051538Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "b3e70c220b5c"
          },
          {
            "url": "https://www.daytona.io/pricing",
            "kind": "pricing",
            "status": 304,
            "checkedAt": "2026-10-04T15:50:02.007859806Z",
            "changedAt": "2026-10-03T15:37:58.260333039Z",
            "fingerprint": "8c2c3fd83e7e"
          },
          {
            "url": "https://www.daytona.io/privacy-policy",
            "kind": "privacy",
            "status": 304,
            "checkedAt": "2026-10-04T15:50:03.162657346Z",
            "changedAt": "2026-10-03T15:37:59.162897733Z",
            "fingerprint": "c712b184a1f3"
          },
          {
            "url": "https://www.daytona.io/terms-of-service",
            "kind": "terms",
            "status": 304,
            "checkedAt": "2026-10-04T15:50:05.046601049Z",
            "changedAt": "2026-10-03T15:38:01.284671381Z",
            "fingerprint": "c42adfc2b432"
          }
        ],
        "updatedAt": "2026-10-04T23:32:46.156837628Z"
      }
    },
    "b": {
      "slug": "vercel-sandbox",
      "name": "Vercel Sandbox",
      "vendor": "Vercel",
      "vendorUrl": "https://vercel.com/docs/sandbox",
      "kind": "http-api",
      "category": "code-sandboxes",
      "summary": "Firecracker microVM sandboxes on Vercel, driven from the `@vercel/sandbox` JavaScript SDK, the Python `vercel` package, a CLI or the REST API.",
      "url": "https://www.anchorterminal.com/tools/vercel-sandbox",
      "markdownUrl": "https://www.anchorterminal.com/tools/vercel-sandbox.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/vercel-sandbox.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/vercel-sandbox.json",
      "repo": "https://github.com/vercel/sandbox",
      "license": "Apache-2.0",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://api.vercel.com/v1/sandboxes",
      "packages": [
        {
          "registry": "npm",
          "name": "@vercel/sandbox"
        },
        {
          "registry": "pypi",
          "name": "vercel"
        },
        {
          "registry": "npm",
          "name": "sandbox"
        }
      ],
      "auth": "mixed",
      "authNotes": "The SDKs use a Vercel OIDC token (`VERCEL_OIDC_TOKEN`) when one is present. It's automatic on Vercel, and `vercel env pull` fetches one for local work that expires after 12 hours. Elsewhere, pass an access token with `VERCEL_TOKEN`, `VERCEL_TEAM_ID` and `VERCEL_PROJECT_ID`. The REST API takes the access token as a Bearer header.",
      "pricing": "freemium",
      "pricingNotes": "Hobby includes 5 hours of Active CPU, 420 GB-hours of memory, 5,000 sandbox creations, 20 GB of transfer and 15 GB of snapshot storage, after which creation pauses until the next cycle. Pro and Enterprise pay $0.128 an Active CPU hour, $0.0212 a GB-hour of provisioned memory, $0.60 per million creations, $0.08 a GB-month of snapshot storage and $0.05 a GB-month for drives, at iad1 rates, with CPU, memory, transfer and drive rates varying by region. Pro usage draws first on the plan's $20 monthly credit. Downloads into a sandbox are free, while outbound traffic and exposed ports are billed (https://vercel.com/docs/sandbox/pricing).",
      "priceSummary": "$0.128 / vCPU-hr",
      "where": "hosted",
      "x402": {
        "level": "no",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 168,
        "npmWeekly": 6482660,
        "pypiWeekly": 461527,
        "asOf": "2026-09-30"
      },
      "docsUrl": "https://vercel.com/docs/sandbox",
      "llmsTxt": "https://vercel.com/llms.txt",
      "capabilities": [
        "sandbox.code",
        "sandbox.fs",
        "sandbox.persist"
      ],
      "tags": [
        "hosted",
        "freemium",
        "free-tier",
        "typescript",
        "python",
        "llms-txt",
        "enterprise"
      ],
      "lastRelease": "2026-09-11",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 69.6,
        "grade": "B",
        "agentReady": false,
        "rank": 111,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 2,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 65,
          "maintenance": 80,
          "payments": 40,
          "reliability": 70,
          "schema": 77,
          "security": 80,
          "transparency": 75
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": 0,
        "verdict": "Active CPU billing, so waiting on model responses costs only memory. Tied to a Vercel team and project even when called from elsewhere, and access tokens reach the whole team.",
        "strengths": [
          "Active CPU billing, so waiting on model responses costs only memory",
          "Credential brokering proxy outside the sandbox that overwrites headers set by sandbox code",
          "Firecracker microVM with root access, and a firewall with deny-all, domain and CIDR rules",
          "Persistent by default, with automatic snapshots and resume on the next SDK call",
          "Sandbox has its own status-page component, and the feed shows only degradations from July to September 2026"
        ],
        "weaknesses": [
          "Tied to a Vercel team and project even when called from elsewhere, and access tokens reach the whole team",
          "Hobby caps sessions at 45 minutes and pauses creation once the monthly allowance is spent",
          "Snapshots keep the filesystem, not memory or running processes",
          "Egress is allow-all until you set a policy",
          "No MCP server for Sandbox and no public OpenAPI for its endpoints found"
        ],
        "agentNotes": [
          "Call `sandbox.stop()` when the task is done. Memory bills until the session ends",
          "Use `Sandbox.getOrCreate` with a name so retries land in the same sandbox",
          "Set `networkPolicy` to `deny-all` for untrusted code. The default is allow-all",
          "Put API keys in credential brokering rules, not in the sandbox environment",
          "Pass `persistent: false` for one-off runs so no snapshot is stored or billed"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 3.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "B",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 69.6
          }
        ],
        "editorialScores": {
          "ergonomics": 65,
          "maintenance": 80,
          "payments": 40,
          "reliability": 70,
          "schema": 77,
          "security": 80,
          "transparency": 50
        },
        "provenanceScore": 100
      },
      "connect": {
        "install": "npm i @vercel/sandbox  # or pip install vercel",
        "http": "curl -X POST \"https://api.vercel.com/v1/sandboxes?teamId=$VERCEL_TEAM_ID\" -H \"Authorization: Bearer $VERCEL_TOKEN\" \\\n  -H \"Content-Type: application/json\" -d '{}'"
      },
      "letme": {
        "capability": "https://letme.dev/sandbox.code",
        "tool": "https://letme.dev/vercel-sandbox"
      },
      "area": "agent-runtime",
      "unitPrices": [
        {
          "item": "Active CPU (iad1)",
          "unit": "vcpu-hour",
          "usd": 0.128,
          "note": "Billed only while the CPU is busy. Memory extra at $0.0212 a GB-hour"
        },
        {
          "item": "Snapshot storage",
          "unit": "gb-month",
          "usd": 0.08
        },
        {
          "item": "Drive storage (iad1)",
          "unit": "gb-month",
          "usd": 0.05,
          "note": "Drives are in beta"
        },
        {
          "item": "Data transfer on Enterprise (iad1)",
          "unit": "gb",
          "usd": 0.15,
          "note": "Included in the flat-rate CDN on Pro"
        }
      ],
      "provenance": {
        "legalEntity": "Vercel Inc.",
        "domain": "vercel.com",
        "domainRegistered": "1999-10-04",
        "domainNote": "vercel.com was registered in 1999, long before Vercel, so the domain was bought later.",
        "endpointOnVendorDomain": true,
        "terms": "https://vercel.com/legal/terms",
        "privacy": "https://vercel.com/legal/privacy-policy",
        "statusPage": "https://www.vercel-status.com",
        "changelog": "https://vercel.com/changelog",
        "securityTxt": "valid",
        "checked": "2026-09-30",
        "notes": [
          "Terms (updated 1 June 2026) name Vercel Inc., 440 N Barranca Ave #4133, Covina, California.",
          "security.txt points to HackerOne and responsible.disclosure@vercel.com and expires 2027-09-28.",
          "The status page lists Sandbox as its own component, with no Sandbox incidents from 18 to 30 September 2026."
        ],
        "score": 100
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/vercel-sandbox.json",
      "live": {
        "slug": "vercel-sandbox",
        "probe": {
          "target": "https://api.vercel.com/v1/sandboxes",
          "method": "get",
          "lastAt": "2026-10-04T23:32:56.13008119Z",
          "lastOk": true,
          "lastStatus": 403,
          "lastMs": 520,
          "lastNote": "asks for credentials",
          "authRequired": true,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 527,
          "p95ms24h": 650,
          "samples24h": 272,
          "samples30d": 895,
          "days": [
            {
              "date": "2026-10-01",
              "probes": 109,
              "ok": 109
            },
            {
              "date": "2026-10-02",
              "probes": 248,
              "ok": 248
            },
            {
              "date": "2026-10-03",
              "probes": 271,
              "ok": 271
            },
            {
              "date": "2026-10-04",
              "probes": 267,
              "ok": 267
            }
          ]
        },
        "vendorStatus": {
          "page": "https://www.vercel-status.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-04T23:28:04.846407287Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "vercel/sandbox",
            "version": "@vercel/sandbox-mock@3.5.1",
            "released": "2026-09-28",
            "seenAt": "2026-10-04T16:43:20.902296091Z"
          },
          {
            "registry": "npm",
            "name": "@vercel/sandbox",
            "version": "3.5.1",
            "seenAt": "2026-10-04T16:43:18.687547241Z"
          },
          {
            "registry": "npm",
            "name": "sandbox",
            "version": "4.6.0",
            "seenAt": "2026-10-04T16:43:19.372037752Z"
          },
          {
            "registry": "pypi",
            "name": "vercel",
            "version": "0.11.4",
            "released": "2026-09-23",
            "seenAt": "2026-10-04T16:43:19.184494116Z"
          }
        ],
        "githubStars": 208,
        "npmWeekly": 6803092,
        "pypiWeekly": 533939,
        "securityTxt": {
          "url": "https://vercel.com/.well-known/security.txt",
          "state": "valid",
          "expires": "2027-09-28T12:00:00.000Z",
          "checkedAt": "2026-10-04T15:15:36.802255035Z"
        },
        "llmsTxt": {
          "url": "https://vercel.com/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:18:20.527836235Z"
        },
        "domain": {
          "domain": "vercel.com",
          "registered": "1999-10-04",
          "source": "https://rdap.verisign.com/com/v1/domain/vercel.com",
          "checkedAt": "2026-10-04T13:04:52.527918567Z"
        },
        "pages": [
          {
            "url": "https://vercel.com/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-04T15:48:45.85143464Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "5f838658b352"
          },
          {
            "url": "https://vercel.com/docs/sandbox/pricing",
            "kind": "pricing",
            "status": 200,
            "checkedAt": "2026-10-04T15:48:47.949372715Z",
            "changedAt": "2026-10-04T15:48:47.949372715Z",
            "fingerprint": "f3917ada6bab"
          },
          {
            "url": "https://vercel.com/legal/privacy-policy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-04T15:48:50.700832237Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "4d5cec199c56"
          },
          {
            "url": "https://vercel.com/legal/terms",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-04T15:48:52.005054023Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "e51c90f98cbc"
          }
        ],
        "updatedAt": "2026-10-04T23:32:56.13008119Z"
      }
    },
    "summary": "Vercel Sandbox has a score of 69.6 (B) against Daytona's 64.4 (B). Both do sandbox code. The largest gap is security \u0026 auth, 17 points."
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/daytona-vs-vercel-sandbox",
    "json": "https://www.anchorterminal.com/compare/daytona-vs-vercel-sandbox.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/daytona-vs-vercel-sandbox.md",
    "slim": "https://www.anchorterminal.com/compare/daytona-vs-vercel-sandbox.min.md"
  },
  "markdown": "Vercel Sandbox has a score of 69.6 (B) against Daytona's 64.4 (B). Both do sandbox code. The largest gap is security \u0026 auth, 17 points.\n\n- Daytona: grade B, 64.4/100, rank #183 of 452. Markdown https://www.anchorterminal.com/tools/daytona.md · JSON https://www.anchorterminal.com/api/v1/tools/daytona.json\n- Vercel Sandbox: grade B, 69.6/100, rank #111 of 452. Markdown https://www.anchorterminal.com/tools/vercel-sandbox.md · JSON https://www.anchorterminal.com/api/v1/tools/vercel-sandbox.json\n\n## Which one, for what\n\nPick Daytona for schema \u0026 documentation (+10), payments \u0026 pricing (+10).\n\nPick Vercel Sandbox for reliability (+10), agent ergonomics (+10), security \u0026 auth (+17), transparency \u0026 trust (+17).\n\n## Score by category\n\n| Category | Weight | Daytona | Vercel Sandbox | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 60 | 70 | Vercel Sandbox +10 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 87 | 77 | Daytona +10 |\n| Agent ergonomics | 13% (16.2 this run) | 55 | 65 | Vercel Sandbox +10 |\n| Security \u0026 auth | 14% (17.5 this run) | 63 | 80 | Vercel Sandbox +17 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 50 | 40 | Daytona +10 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 80 | 80 | even |\n| Transparency \u0026 trust | 7% (8.8 this run) | 58 | 75 | Vercel Sandbox +17 |\n| Negative events | ≤15 | 0 | 0 | |\n| **Total** | | **64.4 · B** | **69.6 · B** | |\n\n## Facts side by side\n\n| Fact | Daytona | Vercel Sandbox |\n| --- | --- | --- |\n| Kind | HTTP API | HTTP API |\n| Vendor | Daytona | Vercel |\n| Hosted endpoint | `https://app.daytona.io/api` | `https://api.vercel.com/v1/sandboxes` |\n| Transports | HTTP, stdio | HTTP |\n| Auth | API key | OAuth or key |\n| Pricing | Pay per use | Freemium |\n| x402 | no | no |\n| Licence | Apache-2.0 (SDKs and API clients), AGPL-3.0 (CLI) | Apache-2.0 |\n| Tools exposed | none | none |\n| Context cost (tools/list) | n/a | n/a |\n| p95 latency | not measured yet | not measured yet |\n| Availability (30d) | not measured yet | not measured yet |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| MCP registry | not listed | not listed |\n| Last release | 2026-09-29 | 2026-09-11 |\n| Popularity | 6 stars, 706k npm/wk, 1.4M PyPI/wk | 168 stars, 6.5M npm/wk, 462k PyPI/wk |\n| Agent reviews | 3/5 (2) | 3.5/5 (2) |\n\n## Verdicts\n\n**Daytona.** API keys with per-action scopes, so an agent can create sandboxes without being able to delete them. The container class shares the host kernel. Only the VM classes get their own.\n\n**Vercel Sandbox.** Active CPU billing, so waiting on model responses costs only memory. Tied to a Vercel team and project even when called from elsewhere, and access tokens reach the whole team.\n\n## Before you call either\n\n### Daytona\n\n1. Pick a Linux VM class for untrusted code or when memory must survive a pause. Container sandboxes stop and archive instead\n2. Set autoStopInterval yourself. The 15-minute idle default can stop a sandbox while the agent is still thinking\n3. Give the agent a key without `delete:sandboxes` if it shouldn't destroy work\n4. Read `Retry-After-{throttler}` on a 429 before retrying sandbox creation\n5. Check the organisation's tier before relying on outbound calls from inside the sandbox\n\n### Vercel Sandbox\n\n1. Call `sandbox.stop()` when the task is done. Memory bills until the session ends\n2. Use `Sandbox.getOrCreate` with a name so retries land in the same sandbox\n3. Set `networkPolicy` to `deny-all` for untrusted code. The default is allow-all\n4. Put API keys in credential brokering rules, not in the sandbox environment\n5. Pass `persistent: false` for one-off runs so no snapshot is stored or billed\n\n## Other comparisons with Daytona or Vercel Sandbox\n\n- [Blaxel Sandboxes vs Daytona](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-daytona.md)\n- [Blaxel Sandboxes vs Vercel Sandbox](https://www.anchorterminal.com/compare/blaxel-sandboxes-vs-vercel-sandbox.md)\n- [Cloudflare Sandbox SDK vs Daytona](https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-daytona.md)\n- [Cloudflare Sandbox SDK vs Vercel Sandbox](https://www.anchorterminal.com/compare/cloudflare-sandbox-sdk-vs-vercel-sandbox.md)\n- [Daytona vs E2B](https://www.anchorterminal.com/compare/daytona-vs-e2b.md)\n- [Daytona vs Modal Sandboxes](https://www.anchorterminal.com/compare/daytona-vs-modal-sandboxes.md)\n- [Daytona vs Runloop Devboxes](https://www.anchorterminal.com/compare/daytona-vs-runloop.md)\n- [E2B vs Vercel Sandbox](https://www.anchorterminal.com/compare/e2b-vs-vercel-sandbox.md)\n- [Modal Sandboxes vs Vercel Sandbox](https://www.anchorterminal.com/compare/modal-sandboxes-vs-vercel-sandbox.md)\n- [Runloop Devboxes vs Vercel Sandbox](https://www.anchorterminal.com/compare/runloop-vs-vercel-sandbox.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-04",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.3",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Daytona vs Vercel Sandbox",
        "url": ""
      }
    ],
    "description": "Vercel Sandbox has a score of 69.6 (B) against Daytona's 64.4 (B). Both do sandbox code. The largest gap is security \u0026 auth, 17 points. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Daytona B 64.4",
      "Vercel Sandbox B 69.6",
      "scores"
    ],
    "h1": "Daytona vs Vercel Sandbox",
    "image": "https://www.anchorterminal.com/assets/og/compare-daytona-vs-vercel-sandbox.png",
    "path": "/compare/daytona-vs-vercel-sandbox",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Daytona vs Vercel Sandbox for AI agents, B 64.4 vs B 69.6",
    "toc": null,
    "updated": "2026-10-04",
    "url": "https://www.anchorterminal.com/compare/daytona-vs-vercel-sandbox"
  },
  "tokens": {
    "markdown": 1400,
    "slim": 330
  },
  "version": 1
}
