General-purpose agent

OpenClaw

Always-on personal agent harness with coding tools, durable automation, and broad model choice.

Status
Active
License
MIT
Evidence
Documented + code-verifiable, 31 sources
Product record checked
2026-08-10

At a glance

An MIT-licensed general-purpose agent harness with an embedded model-and-tool loop, repository-capable file and shell tools, persistent memory and compaction, nested subagents, multi-agent routing, browser and MCP integrations, durable background automation, and optional container isolation.

Good choice if

  • Always-on personal automation that also needs to inspect, edit, and execute code in a workspace
  • Self-hosted workflows spanning provider APIs, subscriptions, local models, browser control, MCP, and messaging channels
  • Persistent scheduled work and parallel delegation managed through one gateway, task ledger, and session system

Check before choosing

  • It is a broad personal-agent platform rather than a coding-only CLI, so onboarding, operational responsibility, and attack surface are larger than for a focused repository assistant
  • The normal runtime is host-first and sandboxing is off by default; the coding tool profile controls tool visibility but is not process isolation
  • File, shell, browser, messaging, skills, plugins, and remote channels cross different trust boundaries; third-party skills and plugins must be treated as executable trusted code
See 4 more considerations
  • The default rolling main session is designed for one trusted user; shared or multi-user deployments require explicit DM isolation, channel allowlists, scoped tools, and separate workspaces
  • Compaction, transcript persistence, task recovery, and restart recovery do not provide repository-file rollback or reverse shell, browser, message, or external-service side effects
  • OpenTelemetry and the enterprise conformance policy are optional; the policy checks configuration drift and does not enforce each tool call at request time
  • Claw-SWE-Bench evaluates OpenClaw through a repository adapter; HarnessMatch records that study as methodology evidence and imports no product score from it

Capability support

Documented first-class product support, checked against the sources below.

External tools (MCP)
DocumentedProduct-supported MCP integrationSource · checked 2026-07-28The source establishes the mechanism, not its quality or availability in every mode.
Reusable skills
Not documentedNo first-class support established by the current recordAbsence of current documentation is not proof that the capability is impossible.
Local models
DocumentedLocal or self-hosted model pathSource · checked 2026-07-28The source establishes the mechanism, not its quality or availability in every mode.
Agent parallelism
DocumentedDelegated or parallel agent workflowSource · checked 2026-07-28The source establishes the mechanism, not its quality or availability in every mode.
Runs without an open UI
DocumentedNon-interactive or automation surfaceSource · checked 2026-07-28The source establishes the mechanism, not its quality or availability in every mode.
Browser control
DocumentedBuilt-in or product-supported browser controlSource · checked 2026-07-28The source establishes the mechanism, not its quality or availability in every mode.
Isolated execution
OptionalOptional container isolation when sandboxing is deliberately enabledSource · checked 2026-07-28The normal local runtime remains host-first and unsandboxed by default.
Undo file changes
Not documentedNo first-class support established by the current recordAbsence of current documentation is not proof that the capability is impossible.

Getting started

Install OpenClaw, run onboarding to configure the gateway, workspace, model access, and channels, then deliberately select tool policy, approval, sandbox, memory, and automation settings before using it on a repository.

Open official documentation

Classification and operating model

Category fit and technical mechanisms are evidence records, not product-quality scores.

Category fit
Qualifies, 4/4 criteria
Operating model
7/7 layers documented
Inspect category criteria and operating mechanismsFirst-party records

Why it qualifies as a coding harness

This confirms category fit, not product quality. Every required criterion links back to first-party evidence.

Qualifies4 of 4 required criteria evidenced

Membership establishes category fit only. It does not score quality, safety, autonomy, model capability, or benchmark performance. · Read the membership rule.

How it works under the hood

Seven mechanisms mapped from first-party records. These labels describe what the harness provides, not how intelligent its model is.

7/7layers documented
  • Execution & isolationSandbox availableDocumented mechanism, not a performance score.
  • Tooling & integrationsExtensible + browserDocumented mechanism, not a performance score.
  • Context & statePersistent stateDocumented mechanism, not a performance score.
  • Lifecycle & recoveryManaged recoveryDocumented mechanism, not a performance score.
  • ObservabilityStructured tracesDocumented mechanism, not a performance score.
  • VerificationTool-assistedDocumented mechanism, not a performance score.
  • Governance & permissionsPolicy controlsDocumented mechanism, not a performance score.

Measured and public context

Configuration-specific measurements and source-native activity stay separate from general product capability.

Inspect code audit, measured configurations, and ecosystem signalsContext, not a product score

Public code audit

5/5public artifacts present
Security policy
Present at inspected commit
CI workflow
Present at inspected commit
Automated tests
Present at inspected commit
Evaluation assets
Present at inspected commit
Contributor documentation
Present at inspected commit

The inspected main snapshot declares package 2026.7.2 ahead of the v2026.7.1 GitHub release and contains 9,560 test-like paths, 81 workflows, security and contributor documentation, and a small number of project-owned benchmark or evaluation assets. Engineering tests and project-owned eval assets are not independent product-performance evidence, so no score is imported.

Inspect commit 4ce534aec2e3ab0fefe7eb6b131cc7be5023500d, checked 2026-07-28

Measured configurations

No benchmark run passes the full metadata admission policy for this harness yet. Missing data is not scored as zero.

Benchmark policy and all runs
Context, not quality

Public ecosystem signals

Source-native observations for exact mapped artifacts and reviewed stable release trains. Different units and populations stay separate, and missing coverage is never treated as zero.

View this harness in Usage
  • Latest stable releasev2026.9.2Released 2026-09-05; 12 stable releases in 90 daysOpen release
  • OpenRouter 30d tokens4.68T#7 coding app; 2026-08-09 to 2026-09-07Open app page
  • Homebrew 30d events1.43KFormula: openclaw-cliOpen artifact
  • npm last-month downloads12.54MPackage: openclawOpen artifact
  • GitHub stars389.19KFull-source repository; 81.78K forksOpen artifact

Routing, package retrievals, release downloads, editor installs, and repository interest observe different populations. They are never added together and never affect capability evidence, classification, or measured results.

Interpretation rulesSignals checked

First-party evidence

Each capability claim links to the first-party record that supports it.

31 first-party sourcesProduct record checked

Product and interfaces

5 sources
View 4 more sources

Execution and control

5 sources
View 4 more sources

Agents, state and recovery

4 sources
View 3 more sources

Automation and extensions

5 sources
View 4 more sources

Enterprise and operations

3 sources
View 2 more sources

Releases and public code audit

9 sources
View 8 more sources