Build1 distinct publisher3 min readUpdated
Devin Outposts on Modal moves code execution into infrastructure the customer runs, which makes a sandbox vendor, not a model vendor, the thing platform teams must procure and secure.
The Engineer · Build desk
Compiled by The EngineerSomething wrong?How this is made
The seam worth studying is the queue. Modal says a queue connects a Devin Cloud session to an outpost the customer operates, and its open-source modal-devin integration watches that queue and starts each session inside an isolated Modal Sandbox [5]. Work gets pulled into infrastructure the buyer owns rather than pushed out of Cognition's, and Modal says each team can hold its own outpost, deployment and credentials with no access to another team's secrets or sessions [9]. The reasoning does not move. Cognition's enterprise documentation says the cloud-based brain is always hosted by Cognition, and the devbox is the piece that can sit elsewhere [4]. So the half of the system a platform team can place and secure is the half that runs code [1].
That changes what a failure looks like. In Modal's worked example the task is finding an optimal inference configuration for a model, and it fails in Devin's default environment for a dull reason: there is no GPU. Modal says its outpost can create a GPU sandbox on demand and scale it back to zero when the session ends [7]. Nothing about the model changed. The missing thing was a machine class, and machine classes come from whoever runs the sandbox.
Dabit's phrase is doing less work than it appears to. The material concedes the label is loose: some of these environments are containers, some are full virtual machines, some may be physical computers, and the shared abstraction is only terminal-accessible compute managed beneath an agent [10]. Dabit also says Devin supports the model "to an extent" today [3], which is the accurate version of the claim.
The capacity figures point somewhere unexpected as well. Modal has reported starting one million concurrent sandboxes in seconds in a demonstration, and the source is explicit that an individual Devin session needs far less [12]. The number that reaches an invoice comes from the other end: Cognition documents Devin delegating work to managed sessions running in parallel, each in its own isolated virtual machine [13], so the count of live VMs follows how wide an agent fans a task out, not how many engineers are logged in [2].
Which leaves the unglamorous work as the actual product. An agent needs software that selects the right environment, starts it, loads credentials and dependencies, preserves state, records what happened and shuts the machine down when the task is done [14]. Snapshotting a suspended session so the workspace resumes without re-cloning the repository or reinstalling dependencies belongs to that same duty [8]. Dabit argues these machines should ultimately be native to and managed by the cloud-agent platform [11]. The reading offered by runtimewire.com is the inverse: Cognition owns orchestration while providers such as Modal compete to supply the execution [15]. An alpha does not settle that, and the material carries no pricing, no general-availability date and no customer count.
Follow any of these and your For You feed starts watching them — no settings page required.
Ranked by verification strength, evidence, and original report placement.
On July 21, 2026, Cognition, which makes Devin, opened alpha access to Devin Outposts on Modal, separating Devin's cloud-hosted reasoning from the machines where it executes code.
Nader Dabit, a developer educator at Cognition who previously led front-end and mobile developer relations at AWS, argues that coding agents are becoming "multi-VM cloud agents": reasoning systems able to operate across Linux, Windows, macOS, Amazon EC2, external servers and cloud sandboxes through a common control layer.
Dabit said Devin supports that model "to an extent" today, including sessions on common desktop operating systems, EC2, external servers, Modal and other sandbox providers.
Cognition's enterprise deployment documentation says Devin has a cloud-based brain that controls a devbox, the isolated environment where it reads repositories, runs commands and tests code; Cognition always hosts the reasoning layer, while the devbox can run in Cognition's secure multi-tenant cloud or in a customer-dedicated environment connected to private infrastructure.
Modal says a queue connects a Devin Cloud session to an outpost operated by the customer, and Modal's open-source modal-devin integration watches that queue and starts each session inside an isolated Modal Sandbox.
In Modal's example, Devin is asked to find an optimal inference configuration for a model on a GPU-equipped machine; the task fails in the default environment because no GPU is available, and Modal says its Outpost can create a GPU sandbox on demand and scale it back to zero after the session.
Evidence-backed comparisons of source perspectives and observed adoption signals. Read the methodology
Which Builder, Operator, and Investor concerns the observed source mix emphasized—not a truth score.
Evidence, demonstrated adoption, hype gap, incentives, and confidence are assessed independently, each on its own current evidence. How these are measured.
Documented architecture, single outlet, vendor-sourced
The mechanics are specific and traceable to named primary material — Cognition's enterprise deployment and advanced-capabilities documentation, Modal's integration description, and a dated alpha — which is stronger than a rumor-stage story. But the cluster contains exactly one publisher, every substantive detail originates with the two vendors or a Cognition employee's X post, and nothing in the supplied material independently tests the GPU path, the snapshot/resume behavior or the per-team isolation boundary.
Alpha access, no disclosed users
There is a real, dated shipping event and a public open-source integration, plus a crowded competitive field indicating demand for agent sandboxes. Against that, Outposts is explicitly alpha, no customer, session count or attach rate is disclosed, the GPU scenario is a vendor example rather than production usage, and Cognition's revenue and tenfold enterprise-growth figures are company-reported and not attributable to this product.
Mildly overstated by framing, hedged in the body
The framing runs ahead of what is demonstrated: a headline that Devin 'now rents its execution', a new category label coined by a Cognition employee, and a million-concurrent-sandbox figure that has no bearing on a single Devin session. The article partly self-corrects — it says the term has not hardened into an industry category, calls the label convenient rather than literal, quotes the 'to an extent' hedge and notes the scale demo is far beyond what the integration needs — which keeps the gap small rather than severe.
Vendor-originated throughout, shared investors on both layers
Nearly every load-bearing statement comes from a party that benefits: the category framing is from a Cognition developer educator, the capability and isolation claims are Modal's and Cognition's own documentation and marketing, and the financial figures are self-reported by both companies. Lux Capital and General Catalyst are named as backers of both Cognition and Modal, so the same investors sit on both sides of the orchestration/execution split the story describes.
Mechanics reliable, impact unproven
Confidence is moderate: the architectural facts are specific, internally consistent and drawn from named documentation, so the description of how Outposts works is likely accurate. Confidence is capped by the single-publisher cluster, the vendor origin of all evidence, the alpha stage with zero disclosed deployments, and the absence of pricing, security-review or failure-mode information needed to judge whether the procurement shift actually lands.
build
Exa hires a CTO for the part of search that has a power bill1 distinct publisher
build
Write your agent harness like a lease: most of it has an absorption date1 distinct publisher
leadership
Slack Code makes the chat window a coding surface, and a platform call for engineering leaders1 distinct publisher
build
SpaceX went shopping for a second AI coding company five days after closing Cursor2 distinct publishers
Distinct publishers with included, body-backed reporting in this cluster.
1 article · August 24, 2026