
Managed Agent Zero Hosting
Managed Agent Zero hosting runs Agent Zero on infrastructure we operate instead of on a laptop or VPS you maintain. Mantlecore provisions the virtual machine, issues HTTPS, keeps the workspace on persistent storage and takes a daily off-site backup. You choose the model, credentials, tools and external services the agent can reach.
Plans start at $19 per month and include a 7-day free trial. A payment card is required at signup, and the trial itself is not charged. New accounts also receive $2 of managed AI credit.
Requirements
Starting at $19/mo with VM isolation, persistent storage, and daily backups.
About Agent Zero
Agent Zero is a general-purpose AI agent framework with full access to its own Linux environment — it writes and executes code, installs packages, browses the web, manages files, and interacts with external APIs. It can delegate subtasks to subordinate agents, create its own tools, and maintains persistent memory across sessions. Supports multiple LLM providers including OpenAI, Anthropic, Google, and local models.
What You Get With Agent Zero
Features
Use Cases
What we manage, and what stays yours
Managed hosting is a split of responsibility, so it is worth writing the split down rather than leaving it implied.
Deployment
- Mantlecore handles
- Provisioning the virtual machine and the supported Agent Zero environment on it
- You control
- Which plan and available Agent Zero version you deploy
Isolation
- Mantlecore handles
- One virtual machine per agent, each with its own guest kernel
- You control
- Tool permissions, credentials and which external services the agent can reach
HTTPS
- Mantlecore handles
- Certificates and TLS for your Agent Zero endpoint
- You control
- Who receives access credentials
Storage
- Mantlecore handles
- Persistent VM storage that survives stop, start and restart
- You control
- The files, projects and data created inside the workspace
Backups
- Mantlecore handles
- One off-site backup per day, retained for 7 days on Starter and 30 days on larger plans
- You control
- When to restore, and any recovery needed outside the VM
Snapshots
- Mantlecore handles
- An automatic snapshot taken immediately before any version change
- You control
- Your own manual snapshots: 1 on Starter, 3 and 5 on the larger plans
Updates
- Mantlecore handles
- Publishing verified versions, snapshotting before the change and rolling back automatically if the post-update health check fails
- You control
- When to apply an update and whether to roll back afterwards
Models
- Mantlecore handles
- Managed model access or support for your own provider API key
- You control
- Provider, model, credentials and budget
Why the VM boundary matters for Agent Zero
Agent Zero can run terminal commands, install software, work with files, use a browser and reach external services. That makes the runtime boundary part of the hosting decision, not an implementation detail.
A conventional container shares the host kernel with everything else on the machine. Each agent here gets its own virtual machine and its own guest kernel instead, so customer agent workloads do not share a kernel with one another.
That reduces one class of risk. It does not make every Agent Zero action safe. You still need scoped credentials, restricted permissions and human approval for anything irreversible. Restoring a machine cannot unsend a message, reverse a payment or undo a write that already reached an external service.
Keep the whole Agent Zero workspace
A useful Agent Zero workspace can include files, project context, installed packages, tools, settings and memory. Persistent storage keeps that state available across normal restarts instead of resetting the environment to a clean image.
Machine state is broader than chat memory. Packages, service configuration, permissions and scheduled processes all affect whether the agent comes back usable. Mantlecore's backups capture the machine state within the stated backup and retention limits, not only a memory file.
Choose managed hosting when you do not want to operate the VPS
Use A0 Launcher, Docker or a self-managed VPS if you want root control and are comfortable owning networking, firewalling, HTTPS, access control, monitoring, updates, backups and restore testing. That is a reasonable choice.
Use Mantlecore when you want Agent Zero running on a persistent, isolated VM without operating the host around it.
Managed hosting does not make Agent Zero more capable. It removes the infrastructure work between choosing the framework and keeping its workspace available.
Questions people actually ask
- What is managed Agent Zero hosting?
- It means Agent Zero runs on infrastructure operated by a provider rather than on your laptop or a VPS you maintain. Mantlecore handles VM provisioning, the host, HTTPS, persistent storage, backups and the supported update path. You keep control of the model, credentials, tools, data and services the agent can reach.
- Does each Agent Zero deployment get its own VM?
- Yes. Every Agent Zero deployment gets its own virtual machine with its own guest kernel rather than a customer container sharing the host kernel with other customer workloads. That boundary does not replace scoped credentials, network policy or approval for high-impact actions.
- Is this the same as running Agent Zero in Docker on a VPS?
- No. A normal Docker container shares the VPS host kernel. Mantlecore gives each customer agent its own VM and guest kernel and manages the surrounding host, HTTPS, backup and supported update path. Docker or a self-managed VPS remains a good option when you want root control and are prepared to operate those layers yourself.
- Will my Agent Zero files, projects and memory survive a restart?
- Yes. The workspace uses persistent storage, so files, project data, settings and memory are not discarded during a normal restart. A daily off-site backup is a separate recovery control, retained for 7 days on Starter and 30 days on the larger plans.
- Can I use my own model API key?
- Yes. You can bring a supported provider key or use managed model access and pay from credit. In either case, prompts and relevant context are sent to the model provider you select. That model traffic leaves the VM by design.
- Who controls the tools, credentials and services Agent Zero can reach?
- You do. Mantlecore operates the hosting layer, but you decide which credentials to provide, which tools to enable and which external services the agent may access. Use scoped credentials and keep human approval for actions involving production systems, money, private data or irreversible changes.
- What happens if an Agent Zero update fails?
- You decide when to update. Mantlecore takes a snapshot immediately before the version change. If the post-update health check fails, the update rolls back automatically. You can also choose to roll back later within the available snapshot path.
- Can a snapshot or backup reverse something Agent Zero already did elsewhere?
- No. A restore recovers machine state captured at that point. It cannot reverse an action already completed in an external system. A sent message, payment, published change or external database write remains done.
- How much does managed Agent Zero hosting cost?
- Plans start at $19 per month and include a 7-day free trial and $2 of managed AI credit for new accounts. A payment card is required at signup, although the trial itself is not charged. The pricing page contains the current plan limits and terms.
- Should I use Mantlecore, A0 Launcher or a self-managed VPS?
- Use A0 Launcher or a self-managed VPS if you want direct host control and are comfortable managing firewalling, HTTPS, access, monitoring, updates, backups and restore testing. Use Mantlecore if you want a persistent Agent Zero VM with those infrastructure responsibilities handled for you.
Keep reading
- Agent Zero vs OpenClaw
Choose between a Linux workbench and a messaging-first agent
- Backup and restore for a persistent AI agent
What recovery covers and where it stops
- Compare supported AI agents
See which framework fits the job
Ready to deploy Agent Zero?
Its own VM. Persistent workspace. Managed backups and update recovery.