OpenClaw logo

OpenClaw

Actif

Self-hosted, MIT-licensed AI assistant you message from the chat apps you already use

Conditionnel

OpenClaw is a credible free way to run a personal AI agent on your own hardware: MIT licensed, no paid tier, reachable from 29 chat channels, and able to browse, read and write files and run shell commands. Conditional because that reach is the risk: its docs disclaim it as a boundary between mutually adversarial users, and Unit 42 found malicious ClawHub skills, warning that installing a skill grants complete control over the agent's identity. Right for technical users who will harden and audit it; wrong for unmanaged shared deployments.

IA native

A self-hosted gateway routes chat messages to an AI agent that browses the web, reads and writes files, and runs shell commands

Est-ce fait pour vous ?

Recommandé pour

  • Running a personal AI agent on hardware you control: the README says state, memory and credentials live on your hardware, and the site says state lives on your machine, not a vendor cloud
  • Talking to an agent from apps you already use, with openclaw.ai naming WhatsApp, Telegram, Discord, Slack, Signal and iMessage among its 29 channels, in DMs and group chats
  • Choosing your own model provider, from Anthropic, OpenAI, Google and DeepSeek to local runtimes such as Ollama, LM Studio, llama.cpp and vLLM
  • Zero software cost: MIT licensed, stewarded by an independent 501(c)(3), with no paid tier, hosted service or token
  • Hands-on computer errands, which OpenClaw's site describes as browsing the web, filling forms, reading and writing files and running shell commands
  • Starting from restrictive defaults: on a regular host install the gateway binds to loopback, most channels answer unknown DM senders with a pairing code, and group access is allowlisted, with an openclaw security audit command to detect drift

Déconseillé pour

  • Sharing one agent or gateway between people who do not trust each other: the security docs state OpenClaw is not a hostile multi-tenant security boundary for mutually adversarial users
  • Installing community skills without auditing them: Unit 42 identified five malicious skills on ClawHub that had not been blocked between February and May 2026, and warns that installation results in complete control over the agent's identity; OpenClaw deleted all five after Unit 42 reported them
  • Deployments nobody will keep patched: CVE-2026-25253, rated 8.8 High, let versions before 2026.1.29 take a gatewayUrl from a query string and open a WebSocket connection without prompting, sending a token
  • Non-technical users: installation runs through a shell script, PowerShell or npm and requires Node 24.16+ or 26.1+
  • Anyone who wants a vendor-hosted service, since the README states the project has none

Notre expérience

We haven't tested OpenClaw ourselves. This profile is based on public documentation, user reviews, and community feedback.

Tarifs

Open source
Open source (MIT)$0
  • No subscription, no hosted tier, no token
  • Bring hosted, subscription-backed, gateway or local models
  • Uses an API key from your chosen model provider
  • Prepared cloud workers incur provider running-machine charges until deleted
Voir tous les tarifs

Recettes de flux de travail

Install and harden a personal gateway

Get OpenClaw running on your own machine before connecting anyone else

  1. Install with curl -fsSL https://openclaw.ai/install.sh | bash on macOS, Linux or WSL2, iwr -useb https://openclaw.ai/install.ps1 | iex on Windows, or npm install -g openclaw@latest --allow-scripts=openclaw (omit --allow-scripts on npm 11.15 and earlier)
  2. Add an API key from your chosen model provider
  3. Read the security guide, exposure runbook and sandboxing guide before connecting other users
  4. Apply a hardened baseline config that keeps the gateway local, paired and tool-restricted
  5. Run openclaw security audit to check the deployment has not drifted

Aucun changement de verdict pour l’instant

L’horloge tourne dès le premier jour : les changements apparaîtront ici à mesure que notre verdict évolue.

Journal de vérification

Aucune vérification pour le moment

Nous n’avons pas encore enregistré de vérification pour cette entrée. Dès qu’une vérification s’exécute, son historique apparaît ici.

Comment nous évaluons

Vous le voulez en marche dans votre entreprise ?

Nous avons testé cet outil et nous construisons avec des outils comme lui chaque jour. Dites-nous le flux de travail : nous l’installons, nous l’intégrons et nous vous le livrons fonctionnel.

La conversation tourne sur Gnosari, l’un des outils de ce répertoire. Une vraie conversation, pas un script de vente.