# Tinfoil

Official pricing: https://tinfoil.sh  
Category: paas · Isolation: vm

## Pricing regimes (raw)

- **Native product; see regime notes** (resource): $0.06/vCPU-h, $0.01/GiB-h [alt]
- **Confidential GPU enclave (monthly contract)** (resource): $0.06/vCPU-h, $0.01/GiB-h [alt, sales]

## Features

Yes: persistent disk, volumes, ≥24 h sessions, custom image (Docker or snapshot), your own Docker/OCI image, full VM (own kernel), SSH, HTTPS preview URLs, custom domains, egress allowlist, open internet, open source, SOC 2, HIPAA, SSO, GPU, Python, Node.js, gVisor or VM (no shared kernel), inbound access rules, firewall inside (nftables), extra volumes

No: snapshots, memory snapshots, fork/clone, pause/resume, idle auto-stop, start from your own snapshot, Docker inside, nested virtualization, browser, desktop GUI, computer-use API, browser + desktop control, anti-bot stealth, CAPTCHA solving, residential IPs, preinstalled agents, public IPv4, static egress IP, private networking, self-hosting, BYOC, arm64, Windows, macOS, HTTP method/path egress rules, wake on request, live resize, live fork (no pause), memory fork, EU data residency, MCP server, automatic snapshots, snapshots on demand, agent harness API, hosted agent API (their own agent), secret proxy, secret proxy for any API, shared volumes

Unknown: everything else. Evidence (source + quote) per feature: https://battleships.dev/data/providers/tinfoil.json → feature_evidence

## Caveats

- Containers pricing is published: $20/mo base + $0.06/h per core + $0.01/h per GB, billed per hour; GPUs are monthly contracts (H200 $2,000/mo, B200 $5,000/mo), access on request. Token inference and $20/mo Chat are separate products.
- Null values mean unknown, not free/unlimited. No model-token cost, tax or unverified ancillary charge included.
- Native browser/device/task/credit prices with unknown CPU/RAM are deliberately non-priceable. Check regime before interpreting any partial resource estimate.
- Deployment model: tinfoil-config.yml must live in a public GitHub repo and releases are measured/published; resources are fixed in the config ('create, start, and relaunch requests cannot override them'). No load balancing; each container instance is one enclave. Not an SDK-per-call ephemeral sandbox.
- Stopped containers keep saved config; whether stopped containers or stopped/unattached volumes are billed is not published. 'Stopped and unattached volumes still count toward your storage allocation'.
- Researchers can get discounted pricing (contact). Enterprise: dedicated infrastructure, SLAs, invoiced billing, custom pricing.

## How this provider charges


YC: Spring 2025; directory status **Active**. Research scope: public-product-researched. Source: https://www.ycombinator.com/companies/tinfoil

Tinfoil Containers

## Regime table

| Regime | When it applies | How billed | Numbers | Source |
|---|---|---|---|---|
| Native product; see regime notes | Incomplete or non-resource economics: rates remain null, never interpreted as free. | resource; CPU alloc, memory alloc | Unknown or native-unit billing; see facts below | https://tinfoil.sh |
| Current applicable tariff unverified | Plan limits apply | Monthly fee; credits only as stated | fee=None; included usage=$None; concurrent=None; max session h=None | https://tinfoil.sh |
| Retained disk / GiB-month | Lifecycle/scope must be checked | Native add-on | unverified, not $0 | https://tinfoil.sh |
| Snapshots / GiB-month | Lifecycle/scope must be checked | Native add-on | unverified, not $0 | https://tinfoil.sh |
| Egress / GiB | Lifecycle/scope must be checked | Native add-on | unverified, not $0 | https://tinfoil.sh |
| IPv4 / month | Lifecycle/scope must be checked | Native add-on | unverified, not $0 | https://tinfoil.sh |

## Verified billing facts and gotchas

1. Custom Docker workloads inside confidential enclaves are relevant separately from token inference and $20/mo chat. Containers pricing not published on captured pricing page. GPU confidential-compute support does not establish sandbox GPU-hour tariff.

## Worked example

Requested: 4 vCPU/8 GiB, 50 simultaneous × 8 h/day × 22 days = **8,800 instance-hours**, 30% CPU; 50 GiB snapshots and 100 GiB egress. A month is 730 hours only when explicitly used in rate conversion.

**Total: unknown.** This product does not publish a verified complete 4-vCPU/8-GiB tariff and/or the service bills a different unit. Fifty concurrent instances and eight-hour sessions are not automatically supported. Neither 30% utilization nor retained snapshots can be converted into free resources. Use the native plan terms above and request the missing CPU/RAM, retention, egress and concurrency quote.

## Sources and coverage

- https://www.ycombinator.com/companies/tinfoil
- https://tinfoil.sh/
- https://tinfoil.sh/pricing
- https://tinfoil.sh/llms.txt

Page captures and documentation indexes/bundles are in `raw/`; provider JSON lists the evidence paths. HN query results were captured separately as `<id>--hn.txt`; they are discovery leads, not current tariff authority. Downloaded docs do not imply every feature was verified; unsupported assertions remain null.
