A sandbox per thread
Each thread gets its own isolated sandbox running your real app stack — services, workers, databases — behind its own preview URL. Work in one thread can’t see another.
Giving an AI agent a real, complex product is a trust decision. Here is how Gentlybot earns it: isolated sandboxes, your own cloud and model accounts when you want them, encrypted secrets, opt-in autonomy, and a review trail for every change.
Each thread gets its own isolated sandbox running your real app stack — services, workers, databases — behind its own preview URL. Work in one thread can’t see another.
Sandboxes run as isolated containers or lightweight microVMs (with their own kernel) depending on the node, with CPU, memory, and disk limits enforced per sandbox.
Gently doesn’t keep a copy of your repositories. Code is cloned on demand into the sandbox for a run through your GitHub App installation, which you can revoke at any time.
Start on Gently’s managed capacity, or keep compute and model traffic inside your own accounts. The product works the same either way.
The default: managed sandbox capacity with per-thread microVM isolation, no infrastructure to run.
Run sandbox nodes in your own AWS account. Nodes carry no long-lived cloud credentials — artifacts move through short-lived presigned URLs only.
Bring your own model accounts or private deployments across Anthropic, OpenAI, and open-source families. Admins choose exactly which models each pool may use.
Owner, admin, member, and viewer roles scope who can manage integrations, projects, and billing — and who simply asks, plans, or reviews.
Autonomous behaviors — auto-fixing failing CI, addressing review comments, acting on security alerts — are individual toggles, all off by default, each with its own scoped GitHub permission.
Every run lives in a thread: the prompt, the plan, the evidence, the PR. Changes reach production only through your existing review and CI — never around them.
Workspace-level budgets with admin alerts at 50/80/100%, pause-or-cap overage behavior, and per-org concurrency limits.
We’re onboarding teams carefully and answer security reviews directly. Request access, mention your requirements — private cloud, model accounts, data handling — and we’ll walk through the details with your team.