Skip to main content

Introduction to Cosmonic

What is Cosmonic Control?

Cosmonic Control is a Kubernetes-native control plane for securely running microservices, agentic workflows, MCP servers, and other sensitive or untrusted code in WebAssembly (Wasm) component sandboxes. Ultra-dense workloads easily deploy on any cloud or edge, including your own on-premises environment, mitigating risks like prompt injection, lateral movement, and remote code execution.

Built on the Incubating CNCF project wasmCloud, Cosmonic Control helps platform engineering teams reduce costs by scaling to zero and maximizing node density, all while providing enterprise-grade security for agents, functions, and other code—and integrating seamlessly with existing cloud-native tooling.

How does it work?

CI to CD to Kubernetes and Cosmonic Control

  • Teams compile code to WebAssembly component sandboxes, using open source tooling and streamlined pipelines for builds, attestation, and publication.
  • Workloads can be deployed declaratively with any GitOps.
  • Sandboxed workloads are deployed to Cosmonic Control hosts with routing via our ingress proxy.

For more information, see the Architecture documentation.

Join the community

We're proud members of the wasmCloud community. Join us on the wasmCloud Slack or in the weekly wasmCloud community meeting.