Architecture
How it's built
Five deployment models, one codebase. From a single binary on your laptop to multi-region enterprise fleets.
> tool_os Cloud
Multi-tenant SaaS — zero infrastructure, instant access
Request Flow
Browser Client
app.toolos.dev
CloudFront
CDN + Edge
ALB
Load Balancer
EKS
Multi-Tenant Pods
↓
Data & AI Layer
DynamoDB
Single-table, org-scoped
S3
Artifacts & Assets
LLM Routing
Policy-based selection
↓
AI Providers
Anthropic
Claude
OpenAI
GPT
Customer Keys
BYO Provider
Authentication
GitHub OAuth
Magic Link
Zero to productive in 30 seconds. No infrastructure to manage. Sign in and start building with AI-powered development tools immediately.
Org-scoped data isolation. Every organization's data is logically separated at the database level with row-level security scoping.
Bring your own AI. Use our hosted inference or bring your own API keys. Routing policy optimizes for cost, speed, or quality automatically.
Spatial OS Desktop Preview
> tool_os Enterprise
Self-hosted, single-tenant — your cloud, your data, your rules
Customer Environment
Customer VPC — AWS / GCP / Azure
→
→
Customer Cloud
AWS / GCP / Azure
K8s Cluster
EKS / GKE / AKS
> tool_os Pods
Helm chart deploy
↓
Customer-Owned Infrastructure
DynamoDB / Postgres
Customer-managed
Object Storage
S3 / GCS / Blob
↓
Customer LLM Infrastructure
Ollama
GPU Nodes
vLLM
GPU Nodes
Cloud APIs
Optional BYO keys
🔒 Data never leaves the VPC — fully air-gapped capable
Your cloud, your control. Deploy via Helm into any Kubernetes cluster. Single-tenant isolation with no external dependencies.
Air-gap ready. Run fully disconnected with on-premise LLMs. Designed for SCIF-grade security requirements from day one.
Customer owns everything. Database, storage, GPU infrastructure, and networking stay entirely within the customer's security boundary.
Spatial OS Desktop Preview
> tool_os Dev
Single binary, no cloud required — AI on your machine
Developer Machine
Local Machine — macOS / Linux / Windows
→
→
Developer
> tool_os Binary
Rust, ~15MB
Web UI
localhost:9900
↓
Local Resources
Local Filesystem
Projects & Config
Local Ollama
GPU Inference
↓ optional
Cloudflare Tunnel
Share with team
One binary, instant start. Download, run, open browser. No Docker, no Kubernetes, no cloud account needed. Works offline.
Full Spatial OS experience. The same windowed desktop environment as Cloud and Enterprise, running entirely on your machine.
Optional connectivity. Share your workspace with teammates via Cloudflare Tunnel. Go from solo to collaborative in one command.
Spatial OS Desktop Preview
> tool_os Platform
Multi-region enterprise — centralized control, distributed execution
Admin Console
Platform Operators
↓
Control Plane — us-east-1
Org Mgmt
Tenants & Users
RBAC
Policies & Roles
Cost Tracking
Per-team billing
Audit Log
Compliance
↓ manages fleet
Workspace Clusters
Cluster A — us-east-1
Team 1
Engineering
Cluster B — us-west-2
Team 2
Data Science
Cluster C — eu-west-1
EU Org
GDPR Compliant
↓ all route through
Brain — Centralized LLM Routing
Routing Engine
Fallback chains
Cost Optimizer
Budget enforcement
Model Selection
Task-optimized
↓
Anthropic
OpenAI
Ollama
Custom
Multi-region by design. Deploy workspace clusters in any region while maintaining centralized governance from a single control plane.
Cost control at scale. Per-team budgets, usage tracking, and intelligent routing that automatically optimizes spend across AI providers.
Centralized Brain. One routing engine manages fallback chains, model selection, and cost optimization across all workspace clusters.
Spatial OS Desktop Preview
ToolOS
The browser is the operating system — AI-native from the ground up
Architecture Rings
Shell: Spatial OS
Windowed desktop, taskbar, themes, app management
Ring 3: Universal Bridge
MCP, OpenAI, Anthropic, Ollama — normalized
Ring 2: Routing
Policy-driven model selection & cost optimization
Ring 1: RBAC
Entity model, permissions, quarantine
Core
Chat
Files
Notebook
Canvas
Mission Control
App Designer
Terminal
Anthropic
OpenAI
MCP
Ollama
Core — Rust runtime
RBAC & Guardrails
Intelligent Routing
Universal Bridge
Spatial OS Shell
Browser IS the operating system. A full windowed desktop environment in the browser. Drag windows, manage tasks, customize themes — everything you expect from an OS.
Universal AI bridge. Every provider — Anthropic, OpenAI, Ollama, MCP — normalized behind a single protocol. Write once, route anywhere.
Governance built in. RBAC, entity model, quarantine, and audit aren't add-ons. They're ring 1 — the foundation everything runs on top of.
Spatial OS Desktop — Full Vision