+− THE DAILY DIFFdev & AI news
NEEDS REVIEW

Deno joins Cloudflare; Deno Deploy closes in six months

Deno's entire team is joining Cloudflare.

Deno's entire team is joining Cloudflare. Deno Deploy will operate for six months before closing, with migration support for paying customers moving to Workers. The current team will maintain the open-source runtime for another year, while JSR continues operating. This October 9 Daily Diff separates those commitments from the future work to merge workerd and celld for distributed self-hosting. Supporting stories explain Microsoft's MXC sandbox SDK and Bevy 0.20's real graphics demos, hardware requirements and quality tradeoffs. Niko's verdict is NEEDS REVIEW: plan the hosting migration and identify the runtime's maintenance owner.

Read the written edition (English) ↗

What this video covers

  • Deno is an open-source JavaScript and TypeScript runtime. Deno Deploy is a separate managed hosting service; their support and shutdown plans differ.
  • Deno Deploy will operate for six months before shutting down. The announcement offers migration support to paying customers moving to Cloudflare Workers, without establishing universal drop-in compatibility.
  • The current team promises one more year of monthly runtime bug fixes and security updates, then ends its own runtime development. Deno remains open source and others can continue development.
  • JSR will keep operating with infrastructure moving to Cloudflare. rusty_v8 support continues, with work toward integrating it into workerd.
  • The workerd/celld merger aims to improve self-hosting Workers and Durable Objects. Cloudflare acknowledges that workerd's current Durable Objects implementation is single-instance and cannot provide the intended distributed scaling. The merged platform is future work.
  • Microsoft MXC is an embedded SDK for sandboxed execution of untrusted code across Windows, Linux and macOS, with Rust, .NET and Node SDKs. Its 1.0 release was published October 7; the repository includes June public-release history.
  • MXC's OS-native process sandboxes and VM backends have different security boundaries. Audit mode explicitly disables sandbox security for trusted policy analysis and must not be used for untrusted workloads.
  • Bevy 0.20, released October 8, is a free, open-source Rust game engine. Experimental Solari requires ray-query support. Metal/macOS support ships without a built-in Mac denoiser; the episode makes no DLSS-on-Mac or universal-hardware claim.
  • Bevy makes ReSTIR optional and off by default for performance. This can reduce shadow quality or lose moving shadows in scenes with many lights, so existing scenes need review. Improved shadow lag and reflection shimmer are separate release improvements.

Transcript

What survives Deno joining Cloudflare?

0:00 Open source sounds permanent. Deno's entire team is joining Cloudflare, and Deno Deploy gets six months before shutdown. In this video, what survives? Who moves your app? And can Cloudflare make leaving easier? It's Friday, October ninth, and this is The Daily Diff. Keep one question open, because the escape hatch has a missing piece. Deno is an open source runtime,

0:20 the program that runs JavaScript and TypeScript outside your browser. It includes tools for testing and packaging your code. Deno Deploy is the separate hosting service that runs your applications on somebody else's servers. Those have different futures. Ryan Dahl, who created Node, announced the move today. Microsoft has a sandbox for the code your agent wants to run,

0:38 and yesterday Bevy shipped prettier Rust game graphics. Apparently Friday's migration ticket comes with ray traced emotional support. Here's the hosting deadline in Deno's own announcement.

Who has six months to migrate?

0:48 Deploy keeps operating for six months, then shuts down. Paying customers get migration support to Cloudflare Workers. If Deploy hosts your business, that calendar now belongs in your incident planning, alongside the coffee budget. Workers runs server side code on Cloudflare's network. Moving there means checking your app's assumptions. Inventory database connections, background jobs and stored data. Migration help needs a compatibility review before you promise the boss a

1:12 painless weekend. Everybody else gets the shutdown notice. That's a useful distinction when somebody forwards the headline with the reassuring words, should be fine, and immediately goes offline.

What happens to the runtime and JSR?

1:21 The runtime gets another year of monthly bug fixes and security updates from this team. Then their development ends. The source stays open, and other maintainers can continue it. Your existing executable keeps running, but its future support now needs an owner. JSR, the package registry for JavaScript and TypeScript, continues operating while its infrastructure moves to Cloudflare. The team also keeps supporting rusty vee eight, its Rust bindings to Google's JavaScript engine, and plans to integrate that work into Cloudflare's runtime.

1:49 So the dinosaur logo survives, the hosting has a deadline, and the people building the runtime have chosen another project. An open license preserves your ability to take over the work. Unfortunately, it ships without the spare engineering team required to do that. The new focus is merging workerd and celld to simplify self hosting Workers and

Why build self-hosted Workers?

2:07 Durable Objects. A Durable Object is an individually addressable piece of server code with its own database, useful for keeping a chat room's messages and connections together. Use one object per room, and the platform can distribute rooms across machines. Dahl describes celld as a Rust binary with object storage as its only external service dependency. That's the ambition, fewer infrastructure projects attached to each application. That sounds attractive if you've ever built a chat app and accidentally founded

2:34 a database administration department. Developers could operate the same programming model themselves. The operational escape hatch still needs the work we'll come back to.

What is Microsoft's MXC sandbox?

2:42 Microsoft's Execution Container, or M X C, is a software kit your application embeds to run untrusted code inside a sandbox. That means restricting what a plugin or an agent's generated program can access, instead of handing it your whole laptop and hoping the prompt was polite. It supports Windows, Linux and macOS, with SDKs for Rust, dot net and Node. You specify the workload and policy. Version one arrived on October seventh, and the repository has a June public

3:10 release commit. Today's attention came later. The clever part is a common interface over different boundaries. The dangerous part is assuming they're identical because the API looks tidy. It can also put the complicated bit just far enough away that nobody checks it. Linux defaults to Bubblewrap, and macOS uses Seatbelt. Windows defaults to a process container. Other backends include virtual machines, with some marked experimental. An operating system process sandbox and a separate virtual machine have

3:36 different security boundaries. Choose the backend for the workload you're actually running. And read the audit mode warning. Audit turns off all sandbox security for the workload being analyzed. It's for learning what a trusted tool needs, so you can author its policy. Putting an unknown agent script through that mode would defeat the reason you installed the sandbox. Bevy is a free, open source game engine built in Rust.

What changed in Bevy's lighting?

3:57 Version zero point twenty arrived yesterday. Its experimental Solari renderer simulates light bouncing around a scene in real time, with improved moving shadows and less shimmery reflections as the camera moves. Solari needs ray query support. It now runs on macOS through Metal, although the Mac version has no built in denoiser. The light sampling technique called ReSTIR is off by default for performance. That can reduce shadow quality and lose shadows in motion in scenes

4:21 with many lights. Test your scene before celebrating. There are more interface widgets and a shader language extension called wesl. You can scrub a number input by dragging, a refreshingly small demo after discovering where your servers will live. If you'd rather read this than hear me say it, the diff lands in your inbox every morning, free at the daily diff dot dev, link below. Here's that missing piece.

What is still missing from the exit?

4:41 Open source workerd supports Durable Objects on a single instance, which limits scaling. Merging celld is meant to fill that gap. Cloudflare's self hosting push could make an exit easier, but the finished distributed platform remains future work.

Why NEEDS REVIEW on Deno's move?

4:54 So today's verdict, needs review. I'd put the Deploy migration on the calendar now and demand a named maintenance owner before building more around the runtime. Subscribe, hit the bell, and tell me in the comments if you'd have stamped it differently. And that's the diff for today. I'm Niko from Axrisi. Merge responsibly.

Sources

  1. Deno is joining CloudflareDeno / Ryan Dahl
  2. Deno is joining Cloudflare — joint self-hosting planCloudflare / Ryan Dahl and Kenton Varda
  3. Microsoft eXecution Container README and audit warningMicrosoft on GitHub
  4. MXC SDK v1.0.0 releaseMicrosoft on GitHub
  5. Bevy 0.20 release notesBevy Contributors
  6. Solari in Bevy 0.20 — technical explanation and real demosJMS55
  7. Solari 0.20 source: experimental status and required ray-query featuresBevy on GitHub
  8. Deno is joining Cloudflare discussionHacker News
  9. Microsoft MXC discussionHacker News
  10. Bevy 0.20 discussionHacker News

Related videos