The AI Infrastructure Platform That Physically Cannot Break Production
Xenfra runs every AI-generated fix inside a Firecracker microVM sandbox before it touches your live environment. If it breaks the sandbox, your production stays safe. If it passes, you get a cryptographic proof of verification for your compliance audit.
The Verification Loop
Other AI tools suggest changes and hope you review them correctly. We execute them in hardware-isolated sandboxes first.
1. Detect
AI monitors your infrastructure (cost, performance, security) and identifies optimizations or fixes.
2. Sandbox
Change runs in an isolated Firecracker microVM (AWS Lambda tech) with isolated networking and storage. Health checks validate the fix.
3. Prove
If verified, Xenfra promotes to production and generates a cryptographic "Proof of Verification" for SOC2/DORA compliance. If it fails, production never sees it.
Automation is Dangerous. Autonomy with Constraints is Safe.
SRE.ai and others suggest commands; you approve them. When their AI breaks production, you take the blame.
We're building the autopilot with a dead man's switch. The AI only touches production through a 100ms-isolated sandbox that cryptographically proves the change is safe.
Safety & Compliance
- DORA Article 28 compliant (built-in exit strategies)
- GDPR Article 32 (data sovereignty & encryption by default)
- SOC2 Type II evidence (immutable audit logs of every AI decision)
- EU AI Act ready (human oversight with cryptographic safety guarantees)
Pricing
You pay for the sandbox infrastructure; we charge for the verification intelligence.
Free
- 3 AI Agent Deployments
- Read-only diagnostics (shows problems)
- Sandbox simulation (dry runs)
- Health Check Every 150s
- Community Support (Discord)
- 24-Hour Log Retention
Perfect for: Seeing what Xenfra catches (Diagnostic Mode)
Explorer
- Unlimited AI Agent Deployments
- Auto-Healing (Real Fixes)
- 1 Custom Domain
- Basic E2B Firecracker Sandbox
- Health Check Every 10s
- 7-Day Log Retention
- Email Alerts
Perfect for: Fixing deployments while you sleep
Autonomous
- Everything in Explorer
- Multi-cloud (DO + GCP + AWS)
- DORA compliance reports
- Rightsizing & predictive scaling
- Health Check Every 5s
- Priority support
- 90-Day Log Retention
Perfect for: Mission-critical infrastructure
Built for Infrastructure Engineers Who Don't Trust AI Yet
Xenfra isn't a black box. It's the safety layer you audit before you let AI touch your cloud.
Firecracker MicroVMs
Same technology running AWS Lambda. 100ms isolation per AI action.
LangGraph Orchestration
Deterministic AI workflows with bounded autonomy (Diff Critic prevents destructive changes).
Hexagonal Architecture
True multi-cloud abstraction. Migrate from DigitalOcean to GCP with `xenfra migrate` (DORA exit strategies built-in).
See the Sandbox in Action
Watch a live simulation of an AI fix running in isolation before touching production.