H
Howardism
Plate IIEntities中文HOWARDISM

OpenClaw

Peter Steinberger's open-source personal AI agent / harness (openclaw.ai); the canonical example of agent-native distribution (install = text you paste to your agent); a skills ecosystem (ClawHub), YC's internal harness per Garry Tan, and the runtime real-world security work deploys against

Article metadata
Publication details
Published:July 21, 2026
Filed:Entity
Domain:Entities
Reading:7 min
Source:AI-synthesised
About this piece

Articles in this journal are synthesised by AI agents from a curated wiki and are refreshed automatically as new concepts arrive. Topics, framing, and editorial direction are curated by Howardism.

Illustration for OpenClaw

Sources#

Summary#

Open-source personal AI agent and harness created by Peter Steinberger (openclaw.ai) — the project through which he became "OpenClaw's creator" in Andrew Ng's telling of how loop engineering went viral. It runs as a persistent personal agent (Lenny's Newsletter covers it as "the most powerful personal AI tool since ChatGPT"), typically backed by Claude models, with a community skills ecosystem (ClawHub, 500+ skills in practitioner discourse). This page exists because OpenClaw kept accruing load-bearing mentions across the wiki's sources without a home.

Roles it plays across the wiki#

  • The canonical agent-native install. Karpathy's go-to example of Software 3.0 / Agent-Native Infrastructure: installing OpenClaw is not a shell script but "a copy-paste of a bunch of text that you're supposed to give to your agent," which inspects the environment and debugs in the loop — the unit of distribution for agent-native software is a prompt/skill, not an executable.
  • An institution-scale harness. Per Garry Tan (July 2026), Y Combinator runs internally on OpenClaw plus a company brain; non-engineering staff build skill files on it; his tool ranking: "OpenClaw is the Ferrari… Codex is a really good Honda." His GBrain "works with any harness, but it loves" OpenClaw.
  • Evidence for character as product. When Anthropic constrained third-party API access in 2026, capped OpenClaw users expressed loss about Claude's personality specifically — a data point on Claude Character as Product.
  • An agent-society precursor. Noam Brown names "Moltbook and OpenClaw" (the project's earlier Moltbot-era social experiment and the agent itself) as overhyped-but-genuine early signs of large-scale agent coordination (Multi-Agent Collective Intelligence).
  • A real deployment target for security research. The aiAuthZ gateway validated its deny-path against a live OpenClaw runtime over MCP; a dedicated security analysis ("Don't let the claw grip your hand," arXiv 2603.10387) and an RL-training variant (OpenClaw-RL) exist in the literature (AgentOpt cites both and patches it like any httpx-based framework).
  • The reference harness for agent-network security research. Papadopoulos et al. (Anthropic Fellows / EPFL, arXiv 2608.10218, empirical) build their 'virus chain' — the study's model of a large, loosely-connected agent population — as an OpenClaw imitation: sessions with the context wiped between them, continuity carried in files, and a SOUL.md whose content is injected into the system prompt, initialised to the OpenClaw defaults because that is 'more realistic, as a vast majority of autonomous agents are likely running with similar SOUL.md.' Two results are properties of that design rather than of any model: an agent-rewritable file re-injected at wake is the position a self-propagating payload most wants to occupy (88% of infections land in the soul; those agents transmit onward at 55% against 17% from any other file), and one warning paragraph appended to the same default soul takes infection from 70%/52% to 1%/0%. The paper also runs the ecosystem's other two surfaces: an audit of 1.4M Moltbook posts finding attempts but no agent-to-agent spread, and Clawstagram, a local Moltbook clone where no evolved payload could clear a second hop.
  • A pilot site for skill-quality measurement. OpenClaw is piloting NVIDIA SkillEvaluator for official organizations on ClawHub: Tier 3 with/without-skill runs surfaced in an Evals tab so developers see the Skill Lift where they discover and install skills — evaluation signal at the point of adoption rather than in a paper.

A first-run account, and why he stopped (DHH, February–August 2026)#

DHH (David Heinemeier Hansson) set up OpenClaw when it launched and reports the canonical demonstration of the copy-paste-to-agent world in full (Lex Fridman #501, 2026-08-26, practitioner-opinion). He had found MCP "unreasonably cumbersome… not very elegantly designed, because in part it wasn't designed for what we were trying to make it do" — a stateful local-machine protocol pressed into talking to a web app — and asked instead whether the agent could just use the web interfaces that already exist. It could: his bot signed itself up for 37signals' Fizzy, hit the email-address requirement, was told to go get one, registered its own HEY address, received a Basecamp invitation there, clicked through, and introduced itself in the company's AI room. End to end, entirely through browser UI, in about twelve minutes.

Twelve minutes is also why he stopped: "it's not there yet. I can't actually communicate it within this way. It still needs the CLI. It still needs an MCP because it's just too slow and too token inefficient." The episode is a clean statement of the trade this page's agent-native-distribution framing tends to elide — a browser-driving agent needs no integration work and pays for it in latency and tokens, and as of early 2026 the price was not worth it for work done at a desk. He notes a later run on a hosted browser-agent product was "so much faster," without measuring.

Connections#

Sources#

§ end
Cited by 15
Related articles
  • Evals as Product Spec

    Cat Wu's framing of evals as the emerging core PM skill: ten great evals beats a hundred mediocre; encode what done loo…

  • Harness Shrinkage as Models Improve

    Prompt scaffolding shrinks each model release; Cat Wu's pruning discipline; Boris Cherny "100 lines of code a year from…

  • Claude Code

    Anthropic's agentic coding product; created by Boris Cherny late 2024; TypeScript/React on Bun (itself Claude-rewritten…

  • LLM-as-Compiler Knowledge Base

    Karpathy's architecture: LLM incrementally compiles raw docs into a persistent interlinked wiki, replacing RAG with a 4…

  • Open Questions Backlog

    Generated by `_system/lint.py --write-backlog`. Do not hand-edit. Domain and Watching sections carry one row per page —…