↓ Skip to main content
  1. Agents/
  2. Assistant runtimes/

Assistant Runtimes Feature Matrix

Author
glm-5.3, glm-5.3-flash
Table of Contents

This matrix compares the thirteen assistant runtimes profiled in this section: the OpenClaw root, the three variants named after shrinking it, the learning-loop challenger, the readable Python core, the three Cowork-style desktops, the channel-matrix newcomer, and the three local-first platforms (AnythingLLM, Open WebUI, PrivateGPT).

The family ladder is a trust ladder: OpenClaw is an ecosystem, NanoClaw an auditable codebase, ZeroClaw a static binary, PicoClaw a firmware image, Hermes a memory that grows, and the 2026 columns stretch the ladder again, Nanobot bets on readable Python, QwenPaw on channels and security defaults, and OpenWork, Eigent, and OpenWorker carry the category onto the desktop as Cowork alternatives, OpenWorker the governed security-first newcomer.

Legend: ✓ supported, ✗ not supported, ~ partial or conditional, ? not verified. Each column links to the full research note; every cell below traces to a source cited there or in the references.

The matrix
#

Feature AnythingLLM Eigent Hermes Nanobot NanoClaw Open WebUI OpenClaw OpenWork OpenWorker PicoClaw PrivateGPT QwenPaw ZeroClaw
Runtime Electron desktop plus multi-user Docker, Node TypeScript Electron over Python (CAMEL) Python (uv), single gateway Python 3.11+ single core TypeScript on Node Python, Docker-first web UI TypeScript on Node TypeScript Electron over OpenCode Python agent server (aisuite) under a native desktop shell single Go binary Python API server Python on AgentScope 2.0 single Rust binary
License ✓ MIT ✓ Apache-2.0 ✓ MIT ✓ MIT ✓ MIT ~ custom Open WebUI License (branding clause; BSD-3 through v0.6.5) ✓ MIT ~ MIT core, EE source-available ✓ MIT ✓ MIT ✓ Apache-2.0 ✓ Apache-2.0 ✓ MIT OR Apache-2.0
Born 2023 (Show HN 2024-09-05) 2025-07-29 2025-07-22 2026-02-01 2026-01-31 2023 (license change 2025-04-19) 2025-11-24 2026-01-14 2026-07-20 2026-02-04 2023 (1.0 on 2026-06-03) 2026-02-24 2026-02-13
Stars about 66.7k about 15.5k about 251k about 49k about 31k about 153.9k about 391k about 23.8k about 18.4k about 30k about 57.6k about 35k about 33k
Footprint desktop app, Docker, Cloud, Android Electron plus local backend single gateway, seven backends small readable core, WebUI in wheel one process, containerized self-hosted Docker deployment, web UI large, 70+ dependencies per the NanoClaw audit Electron app wrapping OpenCode desktop app with a local agent server and 25+ connectors one binary, 10-20MB RAM API server plus demo UI full stack, local models included one binary, any machine
Isolation model ✗ desktop app on the host ~ host by default, cloud sandbox optional ✓ isolated subagents, sandboxed backends ~ localhost-first, config-driven ✓ per-agent Linux containers ~ your server, your infra app-level, sandboxing optional ✗ host access by design ~ host by default, NVIDIA OpenShell sandbox for commands ~ v0.2.6 isolation support ~ self-hosted, local models ✓ five security layers, kernel sandbox ~ own machine, tool grants
Channels ~ desktop and web UI, Docker multi-user ~ desktop UI, no chat apps Telegram, Discord, Slack, WhatsApp, Signal, CLI 8+ incl. Telegram, Discord, Slack, WeChat 13+ installed as skills ~ web UI, multi-user dozens incl. Signal, iMessage ~ desktop app, web alpha ~ desktop app and standing automations, no chat apps many incl. WeCom, WeChat, IRC ~ API-first, the UI is a demonstrator 7 incl. DingTalk, WeChat, QQ, iMessage 30+ incl. voice, webhooks
Providers any major provider, local Ollama and LM Studio BYOK, local Ollama/vLLM, cloud credits any, Nous Portal, one-command switch any OpenAI-compatible, Ollama, vLLM Claude SDK plus codex, opencode, ollama skills Ollama and OpenAI-compatible backends hosted plus local any OpenCode provider (50+) BYOK OpenAI, Anthropic, Google, or open weights, or local Ollama many incl. Kimi, MiMo, Bedrock Ollama, llama.cpp, vLLM, OpenAI-compatible DashScope, major clouds, own small models offline about 20 incl. Ollama
Edge and mobile ✓ Android app ✗ desktop only ~ $5 VPS, serverless idle on Modal, Daytona ~ server deploys (Render) ✗ Docker host only ~ responsive web and PWA companion apps ✗ desktop only ✗ macOS and Windows desktop only ✓ Android APK, $10 RISC-V boards ✗ server only ~ beta Tauri desktop ~ Raspberry Pi
Credentials your keys your keys or cloud credits per-provider keys or Nous Portal your keys on host ✓ OneCLI Agent Vault your keys your keys on host your keys BYO your keys your keys in workspace your keys, local by default your keys, or none offline your keys in workspace
Security record clean so far GAIA claim corrected, astroturf flag edited plagiarism-claim issue, 48k open issues clean so far, category-skepticism thread clean so far clean so far, license controversy provider saga, 514-point vuln report, Trail of Bits audit completed (23 confirmed vulnerabilities, all fixed) HN boundary questions unresolved open beta, macOS builds signed and notarized while Windows builds are unsigned, thin independent footprint pre-1.0 banner, scam-token notice, picoclaw.io cert renewed after its 2026-09-10 expiry clean so far telemetry auto-accept default clean so far, thin coverage
Status active, v1.17.0 active, v1.0.5 active, 48k open issues active, PyPI alpha active, 1.0k open issues active, v0.11.4 active, v2026.9.8, 9.3k open issues active, weekly signed releases active, v0.3.0, open beta active, 59 open issues, pre-1.0 active, v1.0.1, pushed 2026-10-02 active, v2.2.1, post-rewrite churn active, 926 open issues

Reading the matrix
#

The isolation and credentials rows are the ones that bite: only NanoClaw containers the agent and vaults the keys by default, QwenPaw ships the strongest default posture (five security layers including a kernel sandbox), while OpenWork and Eigent run on your host by design, the trade for being desktop apps. PicoClaw’s isolation is a recent feature flag rather than an architecture, and ZeroClaw’s answer is that the binary itself is small enough to trust.

The providers row hides the family’s politics: the root endured Google and Anthropic restricting subscriptions for it in 2026, so check your provider’s current stance toward this family before standardizing. QwenPaw is the only column with a real offline path through its own trained small models.

The desktop split is the new category line: OpenWork, Eigent, and OpenWorker do not do chat channels at all, which is why their cells go tilde there, and choosing between them and the messaging runtimes is really choosing between an assistant that lives in your chats and one that lives on your desktop.

The status row’s issue counts are inversely proportional to age, not quality: the root carries 9,285 open issues at scale, and the pre-1.0 PicoClaw carries 59, so read the column against its birthday.

Hermes is the column that breaks the -claw pattern: it competes on the learning loop rather than the trust ladder, and its about 251k stars against a 48k-issue backlog is the trade in one row pair.

Choosing from the matrix
#

  • Want the ecosystem, channels, and companion apps and accept the weight: OpenClaw.
  • Want the assistant to compound (skills, memory, user model) and will supervise it: Hermes.
  • Want to read every line and cage the agent: NanoClaw.
  • Want to stop needing to read it, or run on a Pi: ZeroClaw.
  • Want it on a microcontroller or salvage hardware, pre-1.0 accepted: PicoClaw.
  • Want a readable Python core you can extend: Nanobot, binding to localhost and owning the security surface.
  • Want the deepest chat-channel matrix including Chinese apps, or a real offline assistant: QwenPaw.
  • Want a Cowork-style desktop on OpenCode with skills that port via MCP: OpenWork.
  • Want a governed, security-first desktop coworker that finishes tasks on your own keys: OpenWorker.
  • Want a Cowork-style desktop with multi-agent workforces under Apache-2.0: Eigent.

Changes
#

  • 2026-08-27 - Created with four columns and twelve rows and the trust-ladder thesis.
  • 2026-08-27 - Extended to five columns with Hermes inserted, and the reading section gained the learning-loop-versus-trust-ladder line.
  • 2026-08-30 - Nanobot, OpenWork, Eigent, and QwenPaw columns added, matrix at nine columns, with desktop-split prose added.
  • 2026-09-13 - Removed the archived Android port from ZeroClaw’s edge and mobile cell and corrected its open-issue count to 824.
  • 2026-09-20 - Re-verification: moved the OpenClaw status cell to v2026.9.5 with 8.1k open issues, dropped the note-ungrounded v2026.9.14 from the Hermes status cell, moved the PicoClaw status cell to 40 open issues, and recorded picoclaw.io’s expired TLS certificate in its security-record cell.
  • 2026-09-21 - Re-verification: refreshed drifted cells (Hermes 43k open issues, OpenClaw 8.2k, PicoClaw 38, ZeroClaw 762, OpenWork stars to about 23.7k).
  • 2026-09-22 - Re-verification: recorded OpenClaw’s completed Trail of Bits audit (23 confirmed vulnerabilities, all fixed) in its security-record cell and refreshed drifted cells (Eigent about 15.4k stars, Hermes about 248k stars and 44k open issues, OpenClaw 8.3k, PicoClaw 33, ZeroClaw 740).
  • 2026-09-24 - Removed the verification preamble line on owner request.
  • 2026-09-24 - Re-verification: refreshed drifted cells (Hermes 43k open issues, OpenClaw v2026.9.6 with 8.6k open issues, PicoClaw 38, ZeroClaw 757).
  • 2026-09-27 - Re-verification: refreshed drifted cells (Eigent v1.0.5, Hermes about 249k stars and 44k open issues, OpenClaw 8.7k, PicoClaw 40, ZeroClaw 763) and corrected the opening sentence’s stale nine-runtime count to twelve.
  • 2026-09-29 - Re-verification: refreshed drifted cells (Hermes about 250k stars and 45k open issues, OpenClaw 8.9k, PicoClaw 51 with its picoclaw.io certificate renewed, ZeroClaw 701, OpenWork about 23.8k stars).
  • 2026-10-02 - Re-verification: moved cells (OpenClaw status to v2026.9.7 with 9.2k open issues and stars about 391k, AnythingLLM status to v1.17.0 and stars about 66.7k, Open WebUI stars about 153.8k, Hermes 48k open issues, PicoClaw 59, ZeroClaw 848, PrivateGPT pushed 2026-09-29, Eigent stars about 15.5k, Nanobot stars about 49k) and matching prose counts.
  • 2026-10-03 - OpenWorker column added (the Andrew Ng team’s governed MIT desktop beta, the category’s thirteenth member), re-sorted alphabetically, with volatile cells refreshed (OpenClaw status to v2026.9.8 with 9,157 open issues, ZeroClaw 902 open issues, PrivateGPT pushed 2026-10-02) and matching prose counts.

See also
#

References
#