Bolt.new Clone App - White-Label AI Code Generation Platform

A launch-ready, self-hosted AI app builder. Users describe software in plain language and receive complete, runnable projects – generated, edited, previewed and deployed entirely in the browser, with no server-side sandbox and no code leaving your infrastructure.

Twenty-two LLM providers behind one model picker, credit metering that makes AI spend forecastable, and an admin console that controls providers, pricing, plans and feature flags without a code change.

Go Live in 6 Days with Browser-NativeMulti-ProviderCredit-MeteredSelf-HostedOperator-GovernedWhite-Label

⚡ Platform at a Glance

22 LLM Providers, One Picker

Anthropic, OpenAI, Google, Mistral, Groq, xAI, Ollama and sixteen more behind a single unified selector - plus OpenRouter for 365+ additional models.

Runs in the Browser, Not on Your Server

WebContainers give every user a full Node.js environment client-side. Generated code executes, previews and hot-reloads locally - no remote sandbox, no cold start, no per-preview infrastructure bill.

Credit Metering Per Model, Per Plan

Input and output rates set individually for every provider and model on every tier, with an append-only transaction ledger behind each balance.

Central Keys, Never Exposed

The auth proxy injects operator-managed provider keys into requests server-side. Users on paid plans consume them without ever receiving the key in their browser.

Admin Console Over Everything

Providers, per-plan model access, credit pricing, users, 45+ feature flags, environment variables and the template library - all operator-configurable at runtime.

Six Deploy Targets Built In

Vercel, Netlify, GitHub, GitLab, Cloudflare Pages and ZIP export, with framework auto-detection across ten frameworks.

🚀 Ready to launch your own AI code generation platform?

More than 6,000+ Companies Trust us Worldwide

Live in Action

Bolt.new Clone Demo - Builder Workspace, Pro, Enterprise & Admin Console

Don’t just take our word for it – open the Miracuves Bolt.new Clone yourself. Four working logins across every tier, no setup required. Generate an app from a prompt, watch it run in the browser, then sign in as the operator and change what any tier is allowed to use.

BUILDER WORKSPACE

Bolt.new Clone - Free Tier

The core build loop - describe an app in plain language, watch multi-file code generate, run it live in the browser, then edit in CodeMirror with a real terminal beside it.

  • Open the web app in your browser
  • Login with the demo credentials below
  • Explore: Chat, Editor, Terminal, Preview
  • Try: demo@mxbolt.com | demo1234

PRO DEVELOPER

All 22 Providers & Deployment

The paid build surface - every provider and model unlocked, the full template library, prompt enhancement, custom system prompts, MCP tools and one-click deployment.

  • Open the web app in your browser
  • Login with the demo credentials below
  • Explore: Providers, Templates, Deploy, MCP
  • Try: pro@mxbolt.com | pro1234

ENTERPRISE TEAM

Unlimited Credits & Team Scope

The enterprise surface - credit metering bypassed entirely, extended context windows, white-label branding, custom agents and programmatic API access.

  • Open the web app in your browser
  • Login with the demo credentials below
  • Explore: Unlimited usage, Branding, API
  • Try: enterprise@mxbolt.com | ent1234

ADMIN CONSOLE

Operator Control Plane

Where the platform is actually run - provider keys, per-plan model and pricing configuration, user and credit administration, feature flags and environment variables.

  • Open the admin panel in your browser
  • Login with the demo credentials below
  • Explore: Keys, Plans, Users, Flags
  • Try: admin@mxbolt.com | admin1234

Watch It Work

Bolt.new Clone Video Demo: Generation, Preview & Operator Console Walkthrough

Want a guided tour? Book a 30-minute call with our team and map your launch – provider strategy, credit pricing, plan design, deployment targets and go-live sequencing.

Every Screen Mapped

Bolt.new Clone App Flows - Builder, Deployment, Admin & Integration Screens

Understand exactly how each part of the platform works. The build loop, the deployment path, the operator console and the integration layer are separate surfaces with distinct users – walk through each before you commit.

Templates-MXBolt-08-01-2026_09_11_PM
Pricing-MXBolt-08-01-2026_09_11_PM
mxbolt-mimeld-com-chat-msg-n2d4Lb1kThZG2we4Fz128Mxu-0-08-01-2026_09_14_PM
mxbolt-mimeld-com-chat-msg-n2d4Lb1kThZG2we4Fz128Mxu-0-08-01-2026_09_14_PM (1)
MXBolt-08-01-2026_09_13_PM
MXBolt-08-01-2026_09_13_PM (1)
MXBolt-08-01-2026_09_12_PM
MXBolt-08-01-2026_09_11_PM
MXBolt-08-01-2026_09_11_PM (1)
Log-In-MXBolt-08-01-2026_09_12_PM
Documentation-MXBolt-08-01-2026_09_17_PM
Admin-Dashboard-MXBolt-08-07-2026_12_07_PM
Admin-Dashboard-MXBolt-08-07-2026_12_07_PM (5)
Admin-Dashboard-MXBolt-08-07-2026_12_07_PM (4)
Admin-Dashboard-MXBolt-08-07-2026_12_07_PM (3)
Admin-Dashboard-MXBolt-08-07-2026_12_07_PM (2)
Admin-Dashboard-MXBolt-08-07-2026_12_07_PM (1)
Admin-Dashboard-MXBolt-08-07-2026_12_06_PM

Want a guided walkthrough of any specific flow?

Client Voices

Bolt.new Clone Client Reviews - Real Platforms, Real Results

Feedback from operators who launched AI build platforms with Miracuves. Client identities withheld under NDA.

Proof in Production

Bolt.new Clone Case Study - Self-Hosted AI Build Platform Deployment

How an enterprise platform team stood up a governed AI code generation environment on the Miracuves Bolt.new Clone. Client identity withheld under NDA.

Case Study

Confidential Deployment
Internal AI Build Platform

A self-hosted AI code generation platform deployed on the Miracuves Bolt.new Clone, with shared provider keys and per-team credit governance from day one.

Name withheld under NDA Client
India Region
Developer Tools & AI Platforms Industry
22
LLM providers unified
6
Deployment targets live
5 wks
Brief to go-live
Challenges
  • Giving engineers AI tooling without sending proprietary code to a third-party SaaS
  • Central provider keys so individual teams never handle raw API credentials
  • Per-team credit metering that made AI spend forecastable instead of a surprise
🎯 Goal
  • Stand up an AI code generation platform without building auth, billing and governance from zero
  • Give the platform team real controls over models, cost and access
  • Make AI spend attributable to a team and a model
🛠 Solution by Miracuves
  • Browser-native execution with no server-side sandbox
  • Credit metering, plan tiers & shared provider keys
  • Operator-configurable models, pricing and feature flags
  • Generate, edit, preview, deploy & export in one workspace
  • Express auth proxy with a Cloudflare workerd runtime

"The admin panel is what got this past our security review. Central keys, per-plan models, and nothing leaving our network."

PE
Head of Platform Engineering Enterprise platform team - name withheld under NDA
Talk to our team See how a governed AI build platform was deployed end to end.
Visit the client

The Basics

What Is a Bolt.new Clone App?

A Bolt.new Clone App is a ready-made AI code generation platform that recreates the prompt-to-running-app experience: a user describes software in natural language, the AI writes a complete multi-file project, and that project boots and runs immediately inside the browser. Around that core sit the things a commercial deployment actually needs – accounts and sessions, subscription tiers, credit metering per model, an operator console for providers and pricing, and one-click deployment to the platforms your users already ship on. You own the source, run it on your own infrastructure, and set your own commercial terms.

Bolt.new Cross Platform USage

Built for Web, Desktop & API

Browser-first, with packaged Electron builds for macOS, Windows and Linux, and programmatic API access on the enterprise tier.

White-Label & Rebrandable

Your name, colours, theme and domain. Enterprise-tier white-label branding is a first-class feature, not a find-and-replace exercise.

Governed From Day One

Roles, plans, credit metering, provider permissions and feature flags are in the product already - not a phase-two project.

Built for Web, Desktop & API

What Is a Bolt.new Clone Script?

A Bolt.new Clone Script is the underlying source code and architecture that makes that possible – the Remix application, the Express authentication proxy, the Cloudflare workerd runtime, the PostgreSQL schema and the provider abstraction layer that turns twenty-two different LLM APIs into one interface.

  • With the Miracuves Bolt.new clone script, you:
  • Own 100% of the source code
  • Launch in 6 days instead of waiting months
  • Avoid long-term vendor lock-in
  • Add custom providers, models and workflows over time
MXBolt 08 01 2026 09 12 PM

In simple words: it is a shortcut to launching an AI app-builder product without spending a year building the generation pipeline, the provider routing, the billing model and the governance layer that make it sellable.

Everything Included

Bolt.new Clone Features - Generation, Providers, Workbench, Deployment & Governance

The platform covers the full path from prompt to deployed application, plus the commercial layer around it. Readiness is stated per capability using the same language as the technical documentation – Included, Supported, or Configuration required – so nothing surprises you after purchase.

Natural Language to Running App

Describe it, and the AI writes the full project, then boots it in the browser.

  • Complete multi-file projects from a single description
  • Frontend, backend routing, config and dependency manifests
  • Streaming responses with multi-segment continuation

Multi-File Project Awareness

The AI reads and modifies across the whole file tree at once.

  • Reads and modifies across the whole file tree at once
  • Context selection against the model token budget
  • Older turns truncated before system prompt or recent messages

WebContainers Runtime

A complete Node.js environment executing inside the user’s browser.

  • A real Node.js environment running client-side
  • npm install and shell commands in the browser
  • Boots in three to five seconds, no remote sandbox

Live Preview With Hot Reload

File writes reach the preview pane in under half a second.

  • Hot reload into the preview pane in under half a second
  • No build step, no deploy, no waiting
  • Framework-aware for ten frameworks

CodeMirror 6 Editor & Diff View

Every AI change is reviewable before anything lands in your project.

  • Multi-file tabs with syntax highlighting
  • Visual diff of every AI change before you accept it
  • Ten-plus language modes supported

Terminal With Error Feedback

A real shell whose failures can be returned to the AI for correction.

  • A real shell inside the container
  • Multiple terminals on paid tiers
  • Failed commands returned to the AI for correction

22 LLM Providers

One unified selector across every major provider, plus local models via Ollama.

  • 22 providers behind one BaseProvider contract
  • Four on Free, all twenty-two on Pro and Enterprise
  • Documented four-step key resolution chain

OpenRouter Model Access

Hundreds of additional models, free and paid, from a searchable catalogue.

  • 365+ additional models through OpenRouter
  • Each tagged free or paid with context length
  • Catalogue cached five minutes with static fallback

Template Library

Starter projects across eight categories, gated per plan by the operator.

  • 30+ starter projects across eight categories
  • Landing pages, web apps, dashboards, e-commerce
  • Social, games, AI tools and education

Prompt & Context Tooling

Enhancement, custom system prompts and budget-aware context selection.

  • Prompt enhancement rewrites a vague brief
  • Custom system prompts on paid tiers
  • Per-project AI behaviour configuration

Six Deployment Targets

Ship to the platforms your users already use, or export the project as a ZIP.

  • Vercel, Netlify, GitHub, GitLab, Cloudflare Pages, ZIP
  • Framework auto-detection across ten frameworks
  • Deployment status polling with the live URL surfaced

Git, Supabase & MCP Integration

Import repositories, generate database schemas, and extend the AI with external tools.

  • GitHub and GitLab import through an SSRF-protected proxy
  • Supabase schema, RLS policies and client code
  • MCP tools over stdio, SSE and streamable-HTTP

Note for buyers: Every capability above is white-label and operator-configurable through 45+ feature flags across eight categories. Deployment targets, Supabase and MCP require the user’s own account or endpoint – the documentation marks these Integration required, and so do we.

How Operators Earn

Bolt.new Clone Revenue Models - Subscriptions, Credits, Seats & Licensing

The commercial model is built into the schema rather than bolted on. Three subscription tiers, per-model credit pricing you control, and an enterprise tier that bypasses metering for organizations that account for AI spend centrally.

Tiered Subscriptions

Free, Pro and Enterprise with distinct provider access, credit allocations, template libraries and deployment permissions.

Per-Model Credit Pricing

Set input and output credit rates for every provider and model on every plan. A cheap open-source model and a frontier model can price honestly against each other.

Margin on Shared Keys

You buy provider capacity at wholesale and meter it to users in credits. The spread between your API cost and your credit price is the business.

Enterprise Seat Licensing

Unlimited-credit accounts with seat allocation, for organizations that would rather pay a flat platform fee than meter individuals.

Bonus & Promotional Credits

Admins grant credit blocks for trials, onboarding or retention, each written to the transaction ledger with a stated reason.

White-Label Reselling

Enterprise-tier branding lets agencies and platform vendors deploy the product under their own name for their own customers.

Important: The platform meters, prices and ledgers usage – it does not process payments. There is no built-in checkout. Connecting a payment provider such as Stripe is operator work at deployment, and the documentation states this plainly.

Run It Without a Dev Team

Bolt.new Clone Admin Console - Providers, Pricing, Users & Feature Flags

The operator console is the reason this is a product rather than a demo. Everything that determines cost, access and behaviour is configurable at runtime by an authenticated admin – no redeploy, no code change.

Admin Console Sections

Live Dashboard

Total users, active today, new signups this week, plan distribution and credits consumed.

Provider Key Management

Create, update, rotate and deactivate API keys across all 22 providers, with masked previews.

Plan-Provider Configuration

Assign models from any provider to any plan, with per-model input and output credit rates.

Per-Request Token Ceilings

Cap context size per plan and model, independently of the model’s native window.

User Administration

Search by email, username or plan, and change any user’s tier from one screen.

Credit Adjustments

Add or deduct credits with a mandatory reason, written to the transaction ledger.

Account Suspension

Deactivate an account instantly without deleting its history or transaction record.

45+ Feature Flags

Eight categories, validated server-side - a modified cookie changes nothing.

Environment Variables

Read and set runtime configuration with sensitive values masked in the interface.

  • Environment variables readable and settable with secrets masked in the UI
  • Template library management including categories, covers and per-plan gating
  • Subscription records with status, period and cancellation state

Template Library Control

Manage templates, categories, preview covers and which plans may use them.

  • Platform statistics: total users, active today, new signups this week
  • Plan distribution across Free, Pro and Enterprise
  • Credits consumed and purchased, with per-provider request volume and top models

Access control: Admin authentication uses a separate session with its own cookie and a shorter 24-hour expiry, validated with a timing-safe comparison. If no admin password is configured, admin login fails outright rather than falling back to a default.

Transparent Pricing

How Much Does It Cost to Build an AI App Builder Like Bolt.new in 2026?

Building an AI code generation platform with Miracuves typically starts from around $3,399 for a launch-ready white-label Bolt.new Clone and increases based on provider strategy, credit pricing design, deployment targets, integrations and infrastructure complexity.

Most Popular
Professional
ReadyMade Turnkey Solution
$3,399/- one-time
⚡ Go-live: 6 days
Best for: Dev-tool startups, agencies, AI product teams & internal platform groups
You get the solution as you see our demo with your own branding and self-hosted on your end.
Get Started →
Enterprise
Custom, Compliance & High-Scale
Custom quote
⚡ Go-live: Based on final scope
Best for: Enterprises, universities, regulated engineering orgs & white-label operators
Get it built as you situation demand and business need , as per custom needs.
Request a Quote →
Still deciding?

Not sure which option
is right for you?

Talk to us - we'll understand your goals, timeline, and budget, and point you to exactly what you need. No upselling, just honest advice.

Free 30-min call
Reply within 24 hrs
No pressure, no commitment

The Full Package

What's Included - Bolt.new Clone Source Code, Apps & Deployment

You receive the complete platform and its documentation set, not a stripped demo build.

Web Application

The complete Remix and React build-and-preview workspace, on your own domain.

  • Remix 2.15 and React 18.3 with UnoCSS styling
  • CodeMirror 6 editor and xterm.js terminal
  • 25 nanostores with localStorage persistence

Desktop Builds

Electron packaging for macOS, Windows and Linux, with auto-update.

  • Electron 33 packaging for macOS, Windows and Linux
  • Auto-update support and native logging
  • Built from the same codebase as the web app

Authentication Proxy

The Express service owning sessions, credits and provider key injection.

  • Express 5.2 authentication proxy
  • Sessions, rate limiting and database operations
  • Server-side provider key injection

AI Runtime

The workerd process carrying generation, streaming, MCP and deployment.

  • Cloudflare workerd AI runtime
  • LLM streaming with recovery and MCP orchestration
  • Deployment and git proxying

Database & Provider Layer

The full PostgreSQL schema and the abstraction covering all 22 providers.

  • PostgreSQL schema across six tables
  • Provider abstraction covering all 22 providers
  • Parameterized queries throughout, no ORM

API & Integration Layer

REST endpoints across eleven modules plus every third-party integration service.

  • REST endpoints across eleven modules
  • GitHub, GitLab, Vercel, Netlify and Supabase integration code
  • MCP client over three transports

Branding & Re-Skinning

Your name, logo, colours, theme and domain applied throughout.

  • Your name, logo, colours, theme and domain
  • Enterprise white-label branding included
  • No visible Miracuves branding anywhere in the product

Deployment & Support

Cloud setup, Docker and Kubernetes configs, plus post-launch support and updates.

  • Cloud setup on your preferred provider
  • Docker Compose and Kubernetes manifests included
  • 60 days platform guidance, 6 months priority bug fixes, 1 year of updates

Scope note: There is no mobile application. The platform is browser-first with packaged desktop builds – that is what the product is, and we would rather say so than let you discover it later. Native mobile is available as custom development if your roadmap requires it.

Know Your Buyer

Who Is Our Bolt.new Clone App Built For?

This suits anyone whose business depends on turning descriptions into working software – whether you sell that capability, or supply it internally.

If you need AI-assisted development with control over models, cost and where code executes, this is the shape of product you are looking for.

Where It Fits

Bolt.new Clone Use Cases - Dev Tools, Agencies, Enterprise Platforms & Education

The same codebase serves quite different operators depending on which layer leads. A commercial product leans on credit metering and tiers; an internal platform leans on governance and unlimited seats; an education deployment leans on templates and cost control. Each is configuration rather than a fork.

Commercial AI App Builder

Sell AI app generation as a metered product, with credit pricing set per model and per plan so your margin tracks provider economics instead of guessing at them.

Agency Prototyping Platform

Compress client prototyping from weeks to days, deploying under your own brand with central provider keys so no individual account handles raw API credentials.

Enterprise Internal Developer Tool

Supply AI-assisted development across an engineering organization, where browser-side execution and self-hosting are what satisfy the security review rather than a policy exception.

Education & Training Environment

Give every student a consistent zero-install environment, with faculty-authored assignment templates, per-plan gating and ZIP export for submission.

Vertical AI Product

Use the generation pipeline as the layer beneath a vertical AI product, swapping models and pricing as the market moves without touching the application above it.

White-Label Platform Licensing

Deploy repeatedly under different brands for different markets, with white-label branding, per-deployment provider strategy and independent commercial terms.

One platform, many configurations. Every use case above runs on the same schema and the same four roles. What changes is the plan structure, the credit pricing, the provider mix and the branding – not a fork you then maintain separately.

Market Timing

Why Launch an AI Code Generation Platform in 2026?

AI-assisted development stopped being a novelty and became infrastructure. The unresolved questions are commercial and operational – which models, at what cost, running where, and who can use them. Those are exactly the questions this platform answers, and exactly what the hosted alternatives will not let you control.

Own the Tooling, Not Rent It

Hosted AI coding tools price per seat and bind you to their model choices. Self-hosting makes cost a function of usage and keeps model selection yours.

Code Never Leaves the Browser

Generation happens in the AI pipeline; execution happens client-side in WebContainers. For teams with IP or compliance constraints, this is the deciding argument.

Multi-Provider Is the Hedge

Model quality, pricing and availability move constantly. Twenty-two providers behind one interface means a pricing change is a config edit, not a migration.

Zero Preview Infrastructure

Competitors run remote VMs or containers for every preview session. Browser-native execution removes that cost line entirely.

Sell It, Or Supply It

The same build works as a commercial product with metered tiers, or an internal platform with unlimited enterprise accounts and central governance.

Governance Is the Differentiator

Provider keys, per-plan model access, credit ceilings and feature flags are what turn an AI demo into something procurement will actually approve.

Platform by the Numbers

22B+
LLM Providers
30+
Starter Templates
6% ↑YoY
Deploy Targets
45B+ USD
Feature Flags

The window is open because the incumbents optimized for individual developers, not for the organizations that have to pay for them, govern them and pass a security review with them.

Under the Hood

Bolt.new Clone Tech Stack - Remix, workerd, PostgreSQL & WebContainers

The architecture is deliberately asymmetric: an Express proxy owns everything that touches the database, and a Cloudflare workerd runtime owns everything that touches the AI pipeline. The workerd runtime is fast and edge-friendly but cannot open raw TCP connections, which PostgreSQL requires – so rather than compromise on either, the Express proxy acts as the database bridge and forwards everything else through. That produces three concrete properties: database credentials exist only in the Express process and workerd can never expose them, the two tiers scale independently, and if the database goes down authentication degrades to 503 while the AI pipeline keeps working for users on their own keys.

Frontend

Remix 2.15 · React 18.3 · UnoCSS · CodeMirror 6 · xterm.js · nanostores

  • Server-rendered Remix application with Vite and hot module replacement
  • 25 nanostores with localStorage persistence and cross-tab synchronization
  • CodeMirror 6 editor and an xterm.js terminal in an integrated workbench

Browser Runtime

StackBlitz WebContainers

  • A complete Node.js environment executing inside the browser
  • npm install, shell commands and a real filesystem API, client-side
  • Boots in three to five seconds; preview hot-reload under half a second

Auth & Data Layer

Express 5.2 · PostgreSQL · postgres.js

  • Session management, rate limiting, credit metering and provider key injection
  • Six tables accessed through parameterized tagged-template queries, no ORM
  • Connection pooling capped at ten with idle and connect timeouts

AI Pipeline

Cloudflare workerd · Vercel AI SDK 4.3

  • Provider abstraction over 22 LLM SDKs behind one BaseProvider contract
  • Streaming with a 45-second timeout, two retries and structured error annotation
  • Context selection against the model token budget before each call

Integrations

GitHub · GitLab · Vercel · Netlify · Supabase · MCP

  • Repository import and push through an SSRF-protected proxy
  • Deployment with framework auto-detection across ten frameworks
  • MCP client over stdio, SSE and streamable-HTTP with an approval step

Desktop & Deployment

Electron 33 · Docker · Kubernetes · Cloudflare Pages

  • Packaged builds for macOS, Windows and Linux with auto-update
  • Docker Compose and Kubernetes manifests included
  • Runs on 2 vCPU and 4 GB comfortably; 1 vCPU and 2 GB is the floor

Note for tech buyers: The stack is deliberately conventional – Remix, Express, PostgreSQL and plain SQL, with no ORM and no framework your team has to learn before they can change anything. Adding a provider is two files. Adding a plan is a type union and a config row. Your engineers can own this on day one.

End to End

How the Bolt.new Clone Works - Prompt, Generate, Preview, Iterate & Deploy

An AI builder looks simple from the outside and runs on a tightly sequenced identity, generation, execution and metering pipeline underneath. Here is the path from registration to a deployed application and a billed account.

User Journey - From Signup to Deployed App

Log-In-MXBolt-08-01-2026_09_12_PM
Signup & Provisioning

A user registers and the platform provisions their account, tier and starting balance before they touch the workbench.

  • Email, username and password validated at the API boundary
  • Password hashed with bcrypt at 12 salt rounds
  • Session token generated with 256 bits of entropy, stored as a SHA-256 hash
  • Free tier assigned with a welcome credit balance
1
Log-In-MXBolt-08-01-2026_09_12_PM
Templates-MXBolt-08-01-2026_09_11_PM
Choosing a Starting Point

They pick a template or start blank. The template seeds the browser runtime with a complete, working project rather than an empty folder.

  • 30+ templates across eight categories, each with its own generation prompt
  • Category filtering plus search across name, description and tags
  • Per-plan template gating configured by the operator
  • The chosen template seeds the WebContainer with a full project structure
2
Templates-MXBolt-08-01-2026_09_11_PM
mxbolt-mimeld-com-chat-msg-n2d4Lb1kThZG2we4Fz128Mxu-0-08-01-2026_09_14_PM (1)
Prompt & Generation

They describe what they want. The request is routed, keyed, metered and dispatched to the selected model.

  • Conversation history, file state and model configuration serialized
  • The Express proxy injects operator provider keys for eligible plans
  • workerd invokes the selected model through the Vercel AI SDK
  • Response streams back as interleaved text and action commands
3
mxbolt-mimeld-com-chat-msg-n2d4Lb1kThZG2we4Fz128Mxu-0-08-01-2026_09_14_PM (1)
mxbolt-mimeld-com-chat-msg-n2d4Lb1kThZG2we4Fz128Mxu-0-08-01-2026_09_14_PM
Execution & Live Preview

The action commands execute inside the browser. Nothing runs on your servers, and the preview updates as the files land.

  • File writes, shell commands and dependency installs run in the WebContainer
  • Changes hot-reload into the preview pane in under half a second
  • Every change reviewable as a visual diff before acceptance
  • Terminal output available for any command that fails
4
mxbolt-mimeld-com-chat-msg-n2d4Lb1kThZG2we4Fz128Mxu-0-08-01-2026_09_14_PM
MXBolt-08-01-2026_09_13_PM
Iteration & Metering

They refine through follow-up prompts or direct edits, and the platform accounts for what was actually consumed.

  • Full multi-file awareness carried across follow-up turns
  • Failed terminal commands can be returned to the AI for correction
  • Cost computed from actual input and output token counts
  • Balance validated server-side, then written to an append-only ledger
5
MXBolt-08-01-2026_09_13_PM
MXBolt-08-01-2026_09_13_PM (1)
Deployment & Export

They ship it - to a hosting platform, a git remote, or straight to disk.

  • Vercel, Netlify, GitHub, GitLab, Cloudflare Pages or ZIP export
  • Framework auto-detected across ten frameworks
  • Deployment status polled and the live URL surfaced in the workbench
  • Full project archive downloadable at any point
6
MXBolt-08-01-2026_09_13_PM (1)

Visual Flow Diagram

Register Template Prompt Generate Preview Iterate Deploy

How It's Built

Bolt.new Clone Platform Architecture & Backend Flow

Request Routing

The Express proxy intercepts auth, credit, admin and provider routes; everything else forwards to workerd. One public entry point, two runtimes.

Provider Key Injection

On a chat request the proxy resolves the user’s plan, fills any provider gap with an operator key, rewrites the header and forwards. The browser never receives it.

Credit Metering

Cost is computed from actual input and output token counts against the plan-model rate, deducted server-side, and written to an append-only ledger with the balance after.

Streaming & Recovery

A switchable stream aggregates multi-step responses with cumulative usage tracking, wrapped in a 45-second timeout and two automatic retries.

Feature Gating

Flags resolve from a cookie set at session validation, then re-validate server-side in workerd - under a millisecond, with no database round trip and no client trust.

Browser Execution

Generated code never runs on your servers. WebContainers execute it client-side, which is both the cost argument and the compliance argument.

Performance Targets

Built to Scale - Stateless Runtime, Pooled Reads & Growth Headroom

Most of what feels expensive in a code-generation product – editing, file operations, preview, terminal – costs you nothing here, because it happens in the user’s browser. Your infrastructure carries only AI relay traffic and database access.

Where the Load Actually Goes

That inverts the usual scaling problem. The workerd tier is stateless and replicates freely. The Express tier scales horizontally behind a load balancer. PostgreSQL is the one component that needs real capacity planning, and it is handling six tables.

Connection pooling is capped at ten with idle and connect timeouts, and every lookup path – email, username, session token hash, transactions by user – carries an index.

Documented Benchmarks

The technical documentation states 500 concurrent users and 200 concurrent streaming sessions on a single instance, with p95 database query latency of 8ms and 2.3ms of auth-proxy overhead per request.

Idle memory is 128MB for the proxy and 256MB for workerd, growing roughly 5MB per active streaming session. Store hydration from localStorage completes in under 50ms.

Graceful Degradation

If PostgreSQL becomes unavailable, the auth proxy returns 503 for authentication endpoints while continuing to forward everything else. Users running on their own provider keys keep working through the outage.

Provider model catalogues cache for five minutes with a static fallback, so an upstream outage does not empty the model picker mid-session.

Streaming Resilience

Each streaming attempt carries a 45-second timeout with up to two automatic retries and exponential backoff. On unrecoverable failure the pipeline emits a structured error annotation rather than dropping the stream, so the client can surface something useful.

Stateless AI Runtime

workerd instances hold no session state and replicate freely behind a load balancer.

Zero Preview Infrastructure

Browser-side execution means preview and sandbox cost scales with your users’ machines, not your cloud bill.

Pooled Database Access

Connections capped at ten with idle and connect timeouts, plus indexes on every lookup path.

Graceful Degradation

If PostgreSQL is unavailable, auth returns 503 while the AI pipeline keeps serving users on their own keys.

Cached Model Catalogues

Dynamic model lists cache for five minutes with a static fallback, so a provider outage does not empty your model picker.

Multi-Region Ready

Cloudflare Pages deployment and a stateless runtime make geographic distribution a deployment decision rather than a rewrite.

Built for Customization & Long-Term Growth

There is no ORM and no proprietary framework layer. Every database access is a literal SQL statement, every provider is a class implementing one contract, and every plan is a type union plus configuration rows. Your engineers can read the whole data path in an afternoon.

That matters more than it sounds. The parts of this product most likely to change – which models you offer, what they cost, who can use them – are configuration, not code. The parts most likely to be audited are plain enough to actually audit.

Honest scaling note: Rate limiting is currently an in-memory map, which means limits reset on restart and are not shared across instances. Moving to a Redis-backed limiter is documented as the multi-instance step, and we will tell you that before you scale out, not after.

Built to Be Audited

Bolt.new Clone Security - OWASP-Mapped, Proxy-Isolated & Independently Assessed

The platform ships with a formal VAPT and compliance report mapped against the OWASP Top 10 (2021), NIST CSF 2.0 and SOC 2 control objectives – not a security page, an actual assessment with findings, severities and remediation status. The strengths it identifies as exceeding industry norms at this maturity level: parameterized queries throughout via postgres.js tagged templates, session tokens carrying 256 bits of entropy and stored only as SHA-256 hashes, timing-safe constant-time comparison for admin credentials, SSRF protection on the git proxy with domain whitelisting and private-IP and metadata-endpoint blocking, server-side credit validation that client tampering cannot reach, a separate admin session with its own cookie and validation path, JSON body parsing scoped to specific routes rather than applied globally, and rate limiting on authentication endpoints.

Parameterized Queries Throughout

Every database access uses postgres.js tagged templates. The assessment found no string-interpolated SQL across any of the six tables.

Session Tokens Hashed at Rest

256 bits of entropy from crypto.randomBytes, stored as a SHA-256 hash. Database read access does not yield a usable session.

Timing-Safe Admin Comparison

A constant-time XOR comparison for admin credentials, with no default password - if none is configured, admin login is disabled entirely.

SSRF-Protected Git Proxy

Domain whitelisting with wildcard matching, private IP range blocking, and cloud metadata endpoint protection.

Keys Never Reach the Browser

Operator provider keys are injected server-side at the proxy and are never present in any response body sent to the client.

Five Security Headers Shipped

X-Frame-Options, X-Content-Type-Options, X-XSS-Protection, Referrer-Policy and Permissions-Policy on every response. CSP and HSTS are deployment additions.

What is configuration required before production: Content-Security-Policy and HSTS headers are not set by default and must be added. Demo accounts must be disabled. Two-factor authentication, database and provider-key encryption at rest, persistent audit logging, CSRF token validation and admin IP restriction are documented hardening steps rather than shipped defaults. We state this because it is in the assessment, and you would find it in a security review anyway.

Go Further

Bolt.new Clone Add-Ons - Mobile, Payments, Compliance & Enterprise Scale

Out of the box the platform is complete and demonstrable. The modules below are what operators most often add – either because they need a third-party account, or because their scale, security review or procurement process demands it.

Native Mobile Applications

There is no mobile app today. Native iOS and Android builds for project monitoring and review are available as custom development.

Payment Processing

The platform meters and prices usage but does not process payments. Stripe or another provider is wired in at deployment, including webhook signature verification.

SSO & Two-Factor

SAML or OIDC single sign-on and TOTP two-factor authentication are additive. Neither ships enabled, and the assessment lists 2FA as a planned control.

Audit Logging & Retention

A dedicated audit datastore for admin actions, plus retention, export and deletion automation, are recommended in the documentation and built on request.

Distributed Rate Limiting

Redis-backed rate limiting and cache for multi-instance deployments, replacing the in-memory map that resets on restart.

CSP & HSTS Hardening

Content-Security-Policy and Strict-Transport-Security are not set by default. Both are named as immediate deployment actions and we configure them on request.

Encryption at Rest

Database-level encryption and application-side encryption of stored provider keys are documented hardening steps rather than shipped defaults.

Team Collaboration

Real-time collaborative editing, shared team workspaces and project version history are roadmap items available as custom scope.

Building an AI Product? We Have the Whole Market Covered.

The Bolt.new Clone is one platform in a broader AI and no-code suite. If your roadmap extends beyond code generation, these connect naturally.

A person using a laptop with digital icons representing Chat AI, Wi-Fi, cloud, email, and documents around their head, symbolizing integrated technology services.
ChatGPT Clone

Conversational AI platform with threaded chat, model routing, prompt libraries and usage-based billing.

Explore Solution
wix clone
Wix Clone

Drag-and-drop website builder with a visual editor, templates, hosting and domain management.

Explore Solution
Person holding a smartphone with Squarespace app login screen, laptop showing website design in background
Squarespace Clone

Design-led site builder with commerce, blogging, scheduling and integrated hosting.

Explore Solution
Futuristic illustration showing human interacting with AI hologram representing Apple AI Realm ecosystem by Miracuves.
Apple AI ReALM Clone

On-device AI reference resolution for context-aware assistants and conversational interfaces.

Explore Solution

The Commercial Case

Marketability, Revenue Potential & Business Prospects

An AI code generation platform is not only a developer tool – it is a metered infrastructure business. Your cost is provider tokens; your revenue is credits, seats or licences. The margin lives in the spread, and the admin console is what lets you tune it.

Metered by Design

Credit accounting per model per plan means your pricing can track provider economics instead of guessing at them.

Low Marginal Infrastructure

Preview and execution run on the user’s machine. Your per-user infrastructure cost is AI relay and a database row.

Provider Arbitrage

Route cheap workloads to fast open-source models and premium requests to frontier models, priced accordingly on every tier.

Procurement-Ready Governance

Central keys, per-plan access and feature flags are what enterprise buyers ask for before they ask about features.

Example Revenue Scenarios

These are business patterns, not promises. Actual outcomes depend on your audience, provider costs, credit pricing and go-to-market. What the platform gives you is the control surface to run any of these models.

Scenario A – Niche Developer Tool

1K Users

Indie or vertical dev-tool product

A focused audience on Pro subscriptions with metered credits.

Revenue comes from subscriptions plus the margin between wholesale provider capacity and retail credit pricing. Free-tier users run on their own keys and cost you almost nothing.

Scenario B – Agency & Studio Platform

50 Teams

White-label prototyping platform

Agencies deploy under their own brand for client work.

Seat-based enterprise licensing with unlimited credits, where the buyer values speed to prototype and central key management over per-token accounting.

Scenario C – Enterprise Internal Platform

500 Seats

Governed internal developer tooling

A platform team supplies AI tooling to the whole engineering org.

Not sold externally at all – the return is measured in engineering time saved and in code that never leaves the network, which is often what unlocks the budget in the first place.

Why Miracuves

Miracuves vs Other Bolt.new Clone Developers

There are many ways to get an AI code generation platform: open-source forks, freelancers, agencies, or owning a documented product.

Why Founders Choose Miracuves

The Commercial Layer Ships With It

Auth, subscription tiers, credit metering with a transaction ledger, and an operator console. Forking an open-source builder leaves every one of those as your problem.

Governance Is Real Screens

Provider keys, per-plan model access, credit pricing, user administration and 45+ server-validated feature flags - configurable at runtime, not in a config file.

Multi-Provider Done Properly

One BaseProvider contract across 22 SDKs with a documented key-resolution chain. Adding a provider is two files, not a refactor.

Full Source-Code Ownership

The complete Remix, Express, workerd and PostgreSQL codebase is yours to modify and deploy. No per-seat fee, no vendor who can change terms.

Documented to Enterprise Standard

PRD, feature catalogue, ERD, schema interpretation, API collection, technical dossier, security handbook and a formal VAPT report - enough to survive procurement, not just a demo.

Honest Readiness Language

Included, Supported and Configuration required are stated per capability - including that CSP, HSTS, 2FA, payments and encryption at rest are deployment work. Nothing surprises you after purchase.

Compare & Discover Why Clients Choose Us as
#1 Ready-Made Clone Solution Partner

Criteria Miracuves Bolt.new Clone Generic Clone Script Custom Dev Agency
Time to Launch 6 days (Production) Unknown / DIY 6-9+ months
Source-Code Ownership ✔ Full Often limited / encrypted Usually yes
Feature Depth (Bolt.new-like) High (generation, provider routing & credit governance) Basic (prompt & feed only) Depends on budget
Security & Compliance Strong (ISO mindset, GDPR-ready) Minimal Varies widely
Scalability & Performance Cloud & CDN-optimised Rarely considered Depends on architecture
Monetization Options Multiple (ads, gifts, subs) Limited / needs custom work Custom (more time & cost)
Admin & Analytics Full-fledged dashboard Very basic or missing Custom build (extra cost)
Cost vs Speed vs Quality Balanced Cheap but risky High cost, slow
Ongoing Support & Updates Available with clear plans Usually none Depends on contract

Forking an open-source AI builder gets you a demo. What it does not get you is accounts, plans, credit metering, provider governance or anything a buyer will sign off on. Here is where we differ.

Industries

Industries We Serve

The Bolt.new Clone suits any organization that benefits from turning descriptions into working software under its own control. Developer-tool companies sell it directly as a metered product. Agencies and studios use it to compress client prototyping from weeks to days while keeping the work under their own brand. Enterprise platform teams supply AI-assisted development internally, where browser-side execution is what satisfies the security review. Universities and training providers give every student a consistent zero-install environment. AI product startups use it as the generation layer beneath a vertical product. Consultancies bundle it into delivery. SaaS vendors embed it as an in-product app builder for their own customers. White-label operators deploy it repeatedly under different brands for different markets.

Miracuves’ Bolt.new Clone is built as a governance-first AI code generation platform adaptable to any commercial model – metered where your business requires it, and white-labelled entirely under your brand.

Changelog

Bolt.new Clone Release Log - Version History & Updates

Version Date What's New
v2026.3 Aug 2026 Multiple bug fixes across generation, provider routing, credit deduction and the operator console.
v2026.2 Jun 2026 BYOK support added - users can supply their own provider API keys on any plan, alongside operator-managed shared keys.
v2026.1 Mar 2026 Initial release - AI code generation platform with 22 providers, browser runtime, credit metering, six deploy targets and an operator console.

Blog & Resources

Bolt.new Clone App - Latest Insights & Guides

Stay updated with the latest trends, guides and case studies on AI code generation, multi-provider LLM architecture and developer platform economics.

FAQ

Bolt.new Clone FAQ - Pricing, Providers, Deployment & Governance

Everything you need to know about the Miracuves Bolt.new Clone.

Let's build together

Let's turn your idea into
a live platform.

Get a free consultation, a clear timeline, and honest answers. We'd rather earn your trust than rush a sale.

Reply in 24 hrs
Free consultation
No lock-in contracts
Full source code ownership