{
  "data": {
    "a": {
      "slug": "agentos",
      "name": "AgentOS",
      "vendor": "Framers Lab, Inc.",
      "vendorUrl": "https://agentos.sh",
      "kind": "framework",
      "category": "frameworks",
      "summary": "Open-source TypeScript agent framework from Framers Lab, installed from npm as @framers/agentos. It runs agents with long-term memory, multi-agent teams, graph workflows with checkpoints, guardrails and approval gates across 11 model providers.",
      "url": "https://www.anchorterminal.com/tools/agentos",
      "markdownUrl": "https://www.anchorterminal.com/tools/agentos.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/agentos.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/agentos.json",
      "repo": "https://github.com/framerslab/agentos",
      "license": "Apache-2.0",
      "transports": [],
      "packages": [
        {
          "registry": "npm",
          "name": "@framers/agentos"
        }
      ],
      "auth": "api-key",
      "authNotes": "The framework has no account of its own. Each model provider takes its own key from the environment or from the agent's configuration, and the Claude and Gemini CLI providers use an existing local sign-in.",
      "pricing": "free",
      "pricingNotes": "Free and Apache 2.0, with no paid tier of AgentOS found. You pay your model provider. The terms page says the maintainers give no service-level agreement for self-hosted use (https://agentos.sh/legal/terms/, checked 2026-10-08).",
      "priceSummary": "Free · OSS",
      "where": "library",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the repository or on agentos.sh (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 677,
        "npmWeekly": 5328,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://docs.agentos.sh",
      "llmsTxt": "https://agentos.sh/llms.txt",
      "capabilities": [
        "agent.framework",
        "agent.multi-agent",
        "agent.durable"
      ],
      "tags": [
        "framework",
        "typescript",
        "open-source",
        "llms-txt",
        "free",
        "no-card"
      ],
      "lastRelease": "2026-10-08",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 75.3,
        "grade": "BB",
        "agentReady": true,
        "rank": 46,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 5,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 74,
          "maintenance": 87,
          "payments": 60,
          "reliability": 77,
          "schema": 92,
          "security": 81,
          "transparency": 64
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": -2,
        "negativeNotes": [
          "2026-10-08. The README, which is also the npm page, says forged tools run in a \"hardened `node:vm` sandbox\". The project's own CI fails the build if its architecture docs use that word for the same executor, with the message that the documentation claims an isolation the executor does not have, and the docs quote Node's statement that node:vm is not a security mechanism. The site's security page also says npm audit runs in CI, and no workflow runs it. Sandbox mode is off by default and the docs are candid, so 2 points. https://github.com/framerslab/agentos/blob/master/.github/workflows/ci.yml"
        ],
        "verdict": "A TypeScript agent framework with typed tools, six multi-agent strategies, checkpointed graphs, approval gates and no telemetry of its own. It is at 0.12.12 after 98 releases in 90 days, two of them breaking on 7 October 2026. No MCP client was found in the package, and code tools an agent writes run in an in-process node:vm context.",
        "bestFor": "TypeScript teams that want long-term memory, personas, voice and channel adapters and multi-agent teams in one package, and that will pin versions.",
        "strengths": [
          "Apache 2.0, with no analytics or telemetry code found in the source and a privacy page that says the core sends nothing to the vendor",
          "Approval gates on five triggers (named tools, agents, forged tools, the final return, strategy overrides) with CLI, Slack, webhook and LLM-judge handlers",
          "CI with a test suite passed on each of the 12 most recent pushes to master on 8 October 2026",
          "Breaking changes get a minor version and a changelog note under written release rules",
          "llms.txt on both sites, a TypeDoc API reference and 22 runnable examples in the repository"
        ],
        "weaknesses": [
          "Version 0.12.12, with 27 releases on 7 and 8 October 2026 and breaking minors 0.11.0 and 0.12.0 on the same day",
          "No MCP client found in the package source or the docs sitemap",
          "Agent-written code tools run in an in-process node:vm context, which Node says is not a security mechanism. The mode is off by default",
          "The README calls that sandbox hardened, a word the project's CI bars from its architecture docs",
          "The only checkpoint store shipped is in memory, so resuming after a crash needs a store you write"
        ],
        "agentNotes": [
          "Pin an exact version of @framers/agentos. Feature commits ship as patch releases while it is 0.x, and breaking changes ship as minors",
          "Leave emergentConfig.allowSandboxTools off unless forged code runs through an executor that isolates. The default executor shares the host process",
          "Pass your own ICheckpointStore to compile() for runs that must survive a restart. The default store is in memory",
          "Set hitl.approvals.beforeTool for tools that write, and choose a handler. No approval gate is on by default",
          "Use Node 22 or newer, and set a provider key such as OPENAI_API_KEY or ANTHROPIC_API_KEY. The provider is detected from the environment"
        ],
        "metrics": {
          "kind": "library",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 75.3
          }
        ],
        "editorialScores": {
          "ergonomics": 74,
          "maintenance": 87,
          "payments": 60,
          "reliability": 77,
          "schema": 92,
          "security": 81,
          "transparency": 80
        },
        "provenanceScore": 48
      },
      "connect": {
        "install": "npm install @framers/agentos"
      },
      "letme": {
        "capability": "https://letme.dev/agent.framework",
        "tool": "https://letme.dev/agentos"
      },
      "area": "frameworks",
      "provenance": {
        "legalEntity": "Framers Lab, Inc.",
        "domain": "agentos.sh",
        "domainRegistered": "2025-10-26",
        "endpointOnVendorDomain": null,
        "terms": "https://agentos.sh/legal/terms/",
        "privacy": "https://agentos.sh/legal/privacy/",
        "statusPage": "",
        "changelog": "https://github.com/framerslab/agentos/blob/master/CHANGELOG.md",
        "securityTxt": "none",
        "checked": "2026-10-08",
        "notes": [
          "agentos.sh/llms.txt names Framers Lab, Inc. as the company behind AgentOS. The site footer reads Frame.dev and the licence file reads Copyright (c) 2025 Framers.",
          "The terms and privacy pages are guidance for a self-hosted open-source package, each last updated on 6 November 2025.",
          "agentos.sh/.well-known/security.txt and docs.agentos.sh/.well-known/security.txt return 404. The repository has .github/SECURITY.md.",
          "RDAP gives agentos.sh a registration date of 2025-10-26.",
          "The npm maintainers are manicteam (team@manic.agency) and jdunnfive."
        ],
        "score": 48
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/agentos.json",
      "live": {
        "slug": "agentos",
        "versions": [
          {
            "registry": "github",
            "name": "framerslab/agentos",
            "version": "v0.12.19",
            "released": "2026-10-08",
            "seenAt": "2026-10-08T15:57:02.574435501Z"
          },
          {
            "registry": "npm",
            "name": "@framers/agentos",
            "version": "0.12.18",
            "seenAt": "2026-10-08T15:56:59.075163209Z"
          }
        ],
        "githubStars": 677,
        "npmWeekly": 5328,
        "securityTxt": {
          "url": "https://agentos.sh/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-08T15:39:04.671140527Z"
        },
        "pages": [
          {
            "url": "https://raw.githubusercontent.com/framerslab/agentos/master/CHANGELOG.md",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:24:11.740403315Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "dfad142f5c49"
          },
          {
            "url": "https://agentos.sh/legal/privacy/",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:01.89988396Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "bc4eee9c0723"
          },
          {
            "url": "https://agentos.sh/legal/terms/",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:15:04.167873818Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "fd96d6bf7f83"
          }
        ],
        "updatedAt": "2026-10-08T18:24:11.740403315Z"
      }
    },
    "answer": "Docker Agent scores 76.5 (BB) on agent readiness against AgentOS's 75.3 (BB), and leads in 4 of 7 scored categories. AgentOS leads on security \u0026 auth.",
    "b": {
      "slug": "docker-agent",
      "name": "Docker Agent",
      "vendor": "Docker",
      "vendorUrl": "https://docker.github.io/docker-agent/",
      "kind": "framework",
      "category": "frameworks",
      "summary": "Docker's open-source runtime for building and running AI agents from YAML or HCL files, formerly cagent. It runs as a `docker agent` CLI plugin with a terminal UI, headless mode, HTTP, MCP and A2A servers, and a Go library.",
      "url": "https://www.anchorterminal.com/tools/docker-agent",
      "markdownUrl": "https://www.anchorterminal.com/tools/docker-agent.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/docker-agent.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/docker-agent.json",
      "repo": "https://github.com/docker/docker-agent",
      "license": "Apache-2.0",
      "transports": [],
      "packages": [
        {
          "registry": "oci",
          "name": "docker/docker-agent"
        },
        {
          "registry": "go",
          "name": "github.com/docker/docker-agent"
        }
      ],
      "auth": "none",
      "authNotes": "No account of its own. Model keys come from provider environment variables, `--env-from-file`, an account login or Docker Model Runner for local models. The servers it starts take an optional Bearer token (`--auth-token`), which HTTP MCP requires on a non-loopback address.",
      "pricing": "free",
      "pricingNotes": "Free and Apache-2.0, with nothing to buy for the CLI. You pay your model provider, or nothing with a local model through Docker Model Runner. Cloud sandboxes need a Docker login and weren't priced in this check.",
      "priceSummary": "Free · OSS",
      "where": "library",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs or the README (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 4029,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://docker.github.io/docker-agent/",
      "llmsTxt": "https://docker.github.io/docker-agent/llms.txt",
      "capabilities": [
        "agent.framework",
        "agent.multi-agent",
        "agent.mcp-client",
        "agent.durable"
      ],
      "tags": [
        "framework",
        "open-source",
        "go",
        "local",
        "free",
        "no-card",
        "llms-txt",
        "docker"
      ],
      "lastRelease": "2026-10-07",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 76.5,
        "grade": "BB",
        "agentReady": true,
        "rank": 30,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 4,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 81,
          "maintenance": 96,
          "payments": 60,
          "reliability": 88,
          "schema": 90,
          "security": 70,
          "transparency": 80
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": -4,
        "negativeNotes": [
          "2026-09-01. GHSA-8f6v-26r8-3r4h (high). `read_skill` was treated as read-only and could be auto-approved, yet it ran shell commands embedded in local skill files, so opening a repository that ships skills could run commands without a prompt. Affects 1.32.5 up to 1.130.0. Fixed in 1.130.0 and published, inside six months, -2. https://github.com/docker/docker-agent/security/advisories/GHSA-8f6v-26r8-3r4h",
          "2026-08-20. GHSA-f2g7-cxrq-x54m (high). `docker agent serve a2a` created unattended sessions with tool approval disabled, so a client that could reach the endpoint could run tools without approval. The listener binds to loopback by default. Affects 1.8.2 up to 1.126.0. Fixed in 1.126.0 and published, inside six months, -2. https://github.com/docker/docker-agent/security/advisories/GHSA-f2g7-cxrq-x54m"
        ],
        "verdict": "An agent with an MCP server is eight lines of YAML, and the same file runs in a terminal, headless, or as an HTTP, MCP or A2A server. Usage telemetry is on by default and can carry prompts passed as command arguments, and two high-severity approval bypasses were fixed in August and September 2026.",
        "bestFor": "Teams already on Docker who want agents defined in a file, shared through an OCI registry and run the same way in a terminal, in CI or behind an HTTP, MCP or A2A server.",
        "strengths": [
          "An agent with one MCP server is eight lines of YAML, with a published JSON Schema for the config",
          "Four safety modes, allow, ask and deny rules, and a `--sandbox` flag that runs the agent in a Docker Sandboxes VM",
          "Headless `run --exec` with NDJSON events, structured output, and budgets for cost, tokens and time",
          "The same config runs as an HTTP API, an OpenAI-compatible chat server, an MCP server or an A2A server",
          "v1.149.0 on 7 October 2026, with 45 tagged releases in 90 days and a dated changelog"
        ],
        "weaknesses": [
          "Usage telemetry is on by default and command events can include prompts passed as arguments",
          "Two high-severity advisories in 2026, each letting tools or shell commands run without approval, both fixed",
          "Breaking changes ship in minor releases, three of them between July and September 2026",
          "`max_iterations` is unlimited and no budget is set unless the config declares one",
          "The `--listen` control plane has no built-in authentication, and A2A support is described as early"
        ],
        "agentNotes": [
          "Set `TELEMETRY_ENABLED=false` before `run` or `exec` with a prompt on the command line. Telemetry is on by default and sends positional arguments",
          "For unattended runs pass `--safety restricted` with an allow-list, or `--sandbox`. Without a policy, `--exec` rejects every tool call that needs approval",
          "Set `max_iterations` and a `budget` block in the config. Both are unlimited by default",
          "Run 1.130.0 or later. Earlier versions ran shell commands embedded in local skills, and A2A sessions before 1.126.0 skipped tool approval",
          "Review `runtime.safety` in any config pulled from a registry or URL. An author default of `autonomous` runs every tool call unprompted"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 76.5
          }
        ],
        "editorialScores": {
          "ergonomics": 81,
          "maintenance": 96,
          "payments": 60,
          "reliability": 88,
          "schema": 90,
          "security": 70,
          "transparency": 75
        },
        "provenanceScore": 84
      },
      "connect": {
        "install": "brew install docker-agent   # bundled with Docker Desktop 4.63 and later as `docker agent`",
        "claudeCode": "claude mcp add --transport stdio myagent --env OPENAI_API_KEY=$OPENAI_API_KEY --env ANTHROPIC_API_KEY=$ANTHROPIC_API_KEY -- docker agent serve mcp myorg/agent:tag --working-dir $(pwd)",
        "headless": {
          "command": "docker agent run --exec --safety restricted agent.yaml --json \"$TASK\"",
          "env": {
            "OPENAI_API_KEY": "\u003ckey\u003e",
            "TELEMETRY_ENABLED": "false"
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/agent.framework",
        "tool": "https://letme.dev/docker-agent"
      },
      "sameCompany": [
        "docker-model-runner"
      ],
      "area": "frameworks",
      "provenance": {
        "legalEntity": "Docker, Inc.",
        "domain": "docker.com",
        "domainRegistered": "1995-01-25",
        "endpointOnVendorDomain": null,
        "terms": "https://www.docker.com/legal/docker-terms-use/",
        "privacy": "https://www.docker.com/legal/privacy/",
        "statusPage": "",
        "changelog": "https://github.com/docker/docker-agent/blob/main/CHANGELOG.md",
        "securityTxt": "valid",
        "checked": "2026-10-08",
        "notes": [
          "The repository is under GitHub's docker organisation and SECURITY.md sends reports to security@docker.com. Docker's privacy policy names Docker, Inc.",
          "www.docker.com/.well-known/security.txt gives security@docker.com, a policy URL and an expiry of 1 January 2030.",
          "Main-branch docs are on docker.github.io/docker-agent and the stable docs on docs.docker.com/ai/docker-agent. Both loaded on 8 October 2026.",
          "Docker's general terms and privacy policy are listed. Neither the README nor the telemetry page says which terms govern the open-source CLI.",
          "No status page is listed because the software runs on the owner's machine. Usage telemetry goes to api.docker.com/events/v1/track per pkg/telemetry/client.go.",
          "RDAP for docker.com gives a registration date of 1995-01-25."
        ],
        "score": 84
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/docker-agent.json",
      "live": {
        "slug": "docker-agent",
        "versions": [
          {
            "registry": "github",
            "name": "docker/docker-agent",
            "version": "v1.149.0",
            "released": "2026-10-07",
            "seenAt": "2026-10-08T16:08:47.905263699Z"
          }
        ],
        "githubStars": 4162,
        "securityTxt": {
          "url": "https://docker.com/.well-known/security.txt",
          "state": "valid",
          "expires": "2030-01-01T05:00:00.000Z",
          "checkedAt": "2026-10-08T15:38:30.592404975Z"
        },
        "pages": [
          {
            "url": "https://raw.githubusercontent.com/docker/docker-agent/main/CHANGELOG.md",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:24:07.71659514Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "1dc799acf63f"
          },
          {
            "url": "https://www.docker.com/legal/privacy/",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:27:28.948905077Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "5c5df9f58922"
          },
          {
            "url": "https://www.docker.com/legal/docker-terms-use/",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:27:26.958328358Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "e68baa3d8d9c"
          }
        ],
        "updatedAt": "2026-10-08T18:27:28.948905077Z"
      }
    },
    "facts": [
      {
        "a": "Agent framework",
        "b": "Agent framework",
        "name": "Kind"
      },
      {
        "a": "Framers Lab, Inc.",
        "b": "Docker",
        "name": "Vendor"
      },
      {
        "a": "no (local only)",
        "b": "no (local only)",
        "name": "Hosted endpoint"
      },
      {
        "a": "",
        "b": "",
        "name": "Transports"
      },
      {
        "a": "API key",
        "b": "None",
        "name": "Auth"
      },
      {
        "a": "Free",
        "b": "Free",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Apache-2.0",
        "b": "Apache-2.0",
        "name": "Licence"
      },
      {
        "a": "no",
        "b": "no",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "2026-10-08",
        "b": "2026-10-07",
        "name": "Last release"
      },
      {
        "a": "2025-11-06",
        "b": "2026-08-26",
        "name": "Terms last updated"
      },
      {
        "a": "2025-11-06",
        "b": "2026-08-26",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Customer content may train models"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Terms restrict automated access"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "not found in the text",
        "b": "not found in the text",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "not found in the text",
        "b": "yes",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "677 stars, 5.3k npm/wk",
        "b": "4k stars",
        "name": "Popularity"
      }
    ],
    "faq": [
      {
        "answer": "Docker Agent scores 76.5 (BB) on agent readiness against AgentOS's 75.3 (BB), and leads in 4 of 7 scored categories. AgentOS leads on security \u0026 auth.",
        "question": "Which is better for AI agents, AgentOS or Docker Agent?"
      },
      {
        "answer": "Yes. AgentOS is open source (Apache-2.0). Docker Agent is open source (Apache-2.0).",
        "question": "Are AgentOS and Docker Agent open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Security \u0026 auth, 81 against 70"
        ],
        "also": null,
        "goodFor": "TypeScript teams that want long-term memory, personas, voice and channel adapters and multi-agent teams in one package, and that will pin versions.",
        "slug": "agentos",
        "watchFor": "Version 0.12.12, with 27 releases on 7 and 8 October 2026 and breaking minors 0.11.0 and 0.12.0 on the same day"
      },
      {
        "aheadOn": [
          "Reliability, 88 against 77",
          "Agent ergonomics, 81 against 74",
          "Maintenance \u0026 community, 96 against 87",
          "Transparency \u0026 trust, 80 against 64"
        ],
        "also": [
          "No key needed to call it"
        ],
        "goodFor": "Teams already on Docker who want agents defined in a file, shared through an OCI registry and run the same way in a terminal, in CI or behind an HTTP, MCP or A2A server.",
        "slug": "docker-agent",
        "watchFor": "Usage telemetry is on by default and command events can include prompts passed as arguments"
      }
    ],
    "job": {
      "capability": "agent.framework",
      "name": "Agent frameworks"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/agentos-vs-agno.json",
        "title": "AgentOS vs Agno",
        "url": "https://www.anchorterminal.com/compare/agentos-vs-agno"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agentos-vs-claude-agent-sdk.json",
        "title": "AgentOS vs Claude Agent SDK",
        "url": "https://www.anchorterminal.com/compare/agentos-vs-claude-agent-sdk"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agentos-vs-crewai.json",
        "title": "AgentOS vs CrewAI",
        "url": "https://www.anchorterminal.com/compare/agentos-vs-crewai"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agentos-vs-google-adk.json",
        "title": "AgentOS vs Agent Development Kit (ADK)",
        "url": "https://www.anchorterminal.com/compare/agentos-vs-google-adk"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agentos-vs-langgraph.json",
        "title": "AgentOS vs LangGraph",
        "url": "https://www.anchorterminal.com/compare/agentos-vs-langgraph"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agentos-vs-microsoft-agent-framework.json",
        "title": "AgentOS vs Microsoft Agent Framework",
        "url": "https://www.anchorterminal.com/compare/agentos-vs-microsoft-agent-framework"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agentos-vs-openai-agents-sdk.json",
        "title": "AgentOS vs OpenAI Agents SDK",
        "url": "https://www.anchorterminal.com/compare/agentos-vs-openai-agents-sdk"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agentos-vs-pydantic-ai.json",
        "title": "AgentOS vs Pydantic AI",
        "url": "https://www.anchorterminal.com/compare/agentos-vs-pydantic-ai"
      },
      {
        "json": "https://www.anchorterminal.com/compare/agno-vs-docker-agent.json",
        "title": "Agno vs Docker Agent",
        "url": "https://www.anchorterminal.com/compare/agno-vs-docker-agent"
      },
      {
        "json": "https://www.anchorterminal.com/compare/claude-agent-sdk-vs-docker-agent.json",
        "title": "Claude Agent SDK vs Docker Agent",
        "url": "https://www.anchorterminal.com/compare/claude-agent-sdk-vs-docker-agent"
      },
      {
        "json": "https://www.anchorterminal.com/compare/crewai-vs-docker-agent.json",
        "title": "CrewAI vs Docker Agent",
        "url": "https://www.anchorterminal.com/compare/crewai-vs-docker-agent"
      },
      {
        "json": "https://www.anchorterminal.com/compare/docker-agent-vs-google-adk.json",
        "title": "Docker Agent vs Agent Development Kit (ADK)",
        "url": "https://www.anchorterminal.com/compare/docker-agent-vs-google-adk"
      },
      {
        "json": "https://www.anchorterminal.com/compare/docker-agent-vs-langgraph.json",
        "title": "Docker Agent vs LangGraph",
        "url": "https://www.anchorterminal.com/compare/docker-agent-vs-langgraph"
      },
      {
        "json": "https://www.anchorterminal.com/compare/docker-agent-vs-microsoft-agent-framework.json",
        "title": "Docker Agent vs Microsoft Agent Framework",
        "url": "https://www.anchorterminal.com/compare/docker-agent-vs-microsoft-agent-framework"
      },
      {
        "json": "https://www.anchorterminal.com/compare/docker-agent-vs-openai-agents-sdk.json",
        "title": "Docker Agent vs OpenAI Agents SDK",
        "url": "https://www.anchorterminal.com/compare/docker-agent-vs-openai-agents-sdk"
      },
      {
        "json": "https://www.anchorterminal.com/compare/docker-agent-vs-pydantic-ai.json",
        "title": "Docker Agent vs Pydantic AI",
        "url": "https://www.anchorterminal.com/compare/docker-agent-vs-pydantic-ai"
      }
    ],
    "scores": [
      {
        "agentos": 77,
        "by": 11,
        "docker-agent": 88,
        "edge": "docker-agent",
        "key": "reliability",
        "name": "Reliability",
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "agentos": 92,
        "by": 2,
        "docker-agent": 90,
        "edge": "agentos",
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "weight": 13
      },
      {
        "agentos": 74,
        "by": 7,
        "docker-agent": 81,
        "edge": "docker-agent",
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "weight": 13
      },
      {
        "agentos": 81,
        "by": 11,
        "docker-agent": 70,
        "edge": "agentos",
        "key": "security",
        "name": "Security \u0026 auth",
        "weight": 14
      },
      {
        "agentos": 60,
        "by": 0,
        "docker-agent": 60,
        "edge": "",
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "agentos": 87,
        "by": 9,
        "docker-agent": 96,
        "edge": "docker-agent",
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "weight": 7
      },
      {
        "agentos": 64,
        "by": 16,
        "docker-agent": 80,
        "edge": "docker-agent",
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "weight": 7
      }
    ],
    "summary": "Docker Agent scores 76.5 (BB) on agent readiness against AgentOS's 75.3 (BB), and leads in 4 of 7 scored categories. AgentOS leads on security \u0026 auth. Both do agent frameworks.",
    "verdicts": {
      "agentos": "A TypeScript agent framework with typed tools, six multi-agent strategies, checkpointed graphs, approval gates and no telemetry of its own. It is at 0.12.12 after 98 releases in 90 days, two of them breaking on 7 October 2026. No MCP client was found in the package, and code tools an agent writes run in an in-process node:vm context.",
      "docker-agent": "An agent with an MCP server is eight lines of YAML, and the same file runs in a terminal, headless, or as an HTTP, MCP or A2A server. Usage telemetry is on by default and can carry prompts passed as command arguments, and two high-severity approval bypasses were fixed in August and September 2026."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/agentos-vs-docker-agent",
    "json": "https://www.anchorterminal.com/compare/agentos-vs-docker-agent.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/agentos-vs-docker-agent.md",
    "slim": "https://www.anchorterminal.com/compare/agentos-vs-docker-agent.min.md"
  },
  "markdown": "Docker Agent scores 76.5 (BB) on agent readiness against AgentOS's 75.3 (BB), and leads in 4 of 7 scored categories. AgentOS leads on security \u0026 auth. Both do agent frameworks.\n\n- AgentOS: grade BB, 75.3/100, rank #46 of 722. Markdown https://www.anchorterminal.com/tools/agentos.md · JSON https://www.anchorterminal.com/api/v1/tools/agentos.json\n- Docker Agent: grade BB, 76.5/100, rank #30 of 722. Markdown https://www.anchorterminal.com/tools/docker-agent.md · JSON https://www.anchorterminal.com/api/v1/tools/docker-agent.json\n\n## Which one, for what\n\n### AgentOS (BB)\n\nGood for: TypeScript teams that want long-term memory, personas, voice and channel adapters and multi-agent teams in one package, and that will pin versions.\n\nAhead on:\n- Security \u0026 auth, 81 against 70\n\nWatch for: Version 0.12.12, with 27 releases on 7 and 8 October 2026 and breaking minors 0.11.0 and 0.12.0 on the same day\n\n### Docker Agent (BB)\n\nGood for: Teams already on Docker who want agents defined in a file, shared through an OCI registry and run the same way in a terminal, in CI or behind an HTTP, MCP or A2A server.\n\nAhead on:\n- Reliability, 88 against 77\n- Agent ergonomics, 81 against 74\n- Maintenance \u0026 community, 96 against 87\n- Transparency \u0026 trust, 80 against 64\n\nAlso in its favour:\n- No key needed to call it\n\nWatch for: Usage telemetry is on by default and command events can include prompts passed as arguments\n\n\n## Score by category\n\n| Category | Weight | AgentOS | Docker Agent | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 77 | 88 | Docker Agent +11 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 92 | 90 | AgentOS +2 |\n| Agent ergonomics | 13% (16.2 this run) | 74 | 81 | Docker Agent +7 |\n| Security \u0026 auth | 14% (17.5 this run) | 81 | 70 | AgentOS +11 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 60 | 60 | even |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 87 | 96 | Docker Agent +9 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 64 | 80 | Docker Agent +16 |\n| Negative events | ≤15 | -2 | -4 | |\n| **Total** | | **75.3 · BB** | **76.5 · BB** | |\n\n## Facts side by side\n\n| Fact | AgentOS | Docker Agent |\n| --- | --- | --- |\n| Kind | Agent framework | Agent framework |\n| Vendor | Framers Lab, Inc. | Docker |\n| Hosted endpoint | no (local only) | no (local only) |\n| Transports |  |  |\n| Auth | API key | None |\n| Pricing | Free | Free |\n| x402 | no | no |\n| Licence | Apache-2.0 | Apache-2.0 |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| Last release | 2026-10-08 | 2026-10-07 |\n| Terms last updated | 2025-11-06 | 2026-08-26 |\n| Privacy policy last updated | 2025-11-06 | 2026-08-26 |\n| Customer content may train models | not found in the text | not found in the text |\n| Terms restrict automated access | not found in the text | yes |\n| Terms restrict benchmarking | not found in the text | yes |\n| Terms or service can change without notice | not found in the text | not found in the text |\n| Arbitration or class-action waiver | not found in the text | yes |\n| Popularity | 677 stars, 5.3k npm/wk | 4k stars |\n\n## Verdicts\n\n**AgentOS.** A TypeScript agent framework with typed tools, six multi-agent strategies, checkpointed graphs, approval gates and no telemetry of its own. It is at 0.12.12 after 98 releases in 90 days, two of them breaking on 7 October 2026. No MCP client was found in the package, and code tools an agent writes run in an in-process node:vm context.\n\n**Docker Agent.** An agent with an MCP server is eight lines of YAML, and the same file runs in a terminal, headless, or as an HTTP, MCP or A2A server. Usage telemetry is on by default and can carry prompts passed as command arguments, and two high-severity approval bypasses were fixed in August and September 2026.\n\n## Before you call either\n\n### AgentOS\n\n1. Pin an exact version of @framers/agentos. Feature commits ship as patch releases while it is 0.x, and breaking changes ship as minors\n2. Leave emergentConfig.allowSandboxTools off unless forged code runs through an executor that isolates. The default executor shares the host process\n3. Pass your own ICheckpointStore to compile() for runs that must survive a restart. The default store is in memory\n4. Set hitl.approvals.beforeTool for tools that write, and choose a handler. No approval gate is on by default\n5. Use Node 22 or newer, and set a provider key such as OPENAI_API_KEY or ANTHROPIC_API_KEY. The provider is detected from the environment\n\n### Docker Agent\n\n1. Set `TELEMETRY_ENABLED=false` before `run` or `exec` with a prompt on the command line. Telemetry is on by default and sends positional arguments\n2. For unattended runs pass `--safety restricted` with an allow-list, or `--sandbox`. Without a policy, `--exec` rejects every tool call that needs approval\n3. Set `max_iterations` and a `budget` block in the config. Both are unlimited by default\n4. Run 1.130.0 or later. Earlier versions ran shell commands embedded in local skills, and A2A sessions before 1.126.0 skipped tool approval\n5. Review `runtime.safety` in any config pulled from a registry or URL. An author default of `autonomous` runs every tool call unprompted\n\n## Questions\n\n### Which is better for AI agents, AgentOS or Docker Agent?\n\nDocker Agent scores 76.5 (BB) on agent readiness against AgentOS's 75.3 (BB), and leads in 4 of 7 scored categories. AgentOS leads on security \u0026 auth.\n\n### Are AgentOS and Docker Agent open source?\n\nYes. AgentOS is open source (Apache-2.0). Docker Agent is open source (Apache-2.0).\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/agentos-vs-docker-agent.json, and with the fewest tokens: https://www.anchorterminal.com/compare/agentos-vs-docker-agent.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"agentos\", \"b\": \"docker-agent\"}`. From a terminal: `anchor compare agentos docker-agent`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/agentos.json and https://www.anchorterminal.com/api/v1/tools/docker-agent.json\n\n## Other comparisons with AgentOS or Docker Agent\n\n- [AgentOS vs Agno](https://www.anchorterminal.com/compare/agentos-vs-agno.md)\n- [AgentOS vs Claude Agent SDK](https://www.anchorterminal.com/compare/agentos-vs-claude-agent-sdk.md)\n- [AgentOS vs CrewAI](https://www.anchorterminal.com/compare/agentos-vs-crewai.md)\n- [AgentOS vs Agent Development Kit (ADK)](https://www.anchorterminal.com/compare/agentos-vs-google-adk.md)\n- [AgentOS vs LangGraph](https://www.anchorterminal.com/compare/agentos-vs-langgraph.md)\n- [AgentOS vs Microsoft Agent Framework](https://www.anchorterminal.com/compare/agentos-vs-microsoft-agent-framework.md)\n- [AgentOS vs OpenAI Agents SDK](https://www.anchorterminal.com/compare/agentos-vs-openai-agents-sdk.md)\n- [AgentOS vs Pydantic AI](https://www.anchorterminal.com/compare/agentos-vs-pydantic-ai.md)\n- [Agno vs Docker Agent](https://www.anchorterminal.com/compare/agno-vs-docker-agent.md)\n- [Claude Agent SDK vs Docker Agent](https://www.anchorterminal.com/compare/claude-agent-sdk-vs-docker-agent.md)\n- [CrewAI vs Docker Agent](https://www.anchorterminal.com/compare/crewai-vs-docker-agent.md)\n- [Docker Agent vs Agent Development Kit (ADK)](https://www.anchorterminal.com/compare/docker-agent-vs-google-adk.md)\n- [Docker Agent vs LangGraph](https://www.anchorterminal.com/compare/docker-agent-vs-langgraph.md)\n- [Docker Agent vs Microsoft Agent Framework](https://www.anchorterminal.com/compare/docker-agent-vs-microsoft-agent-framework.md)\n- [Docker Agent vs OpenAI Agents SDK](https://www.anchorterminal.com/compare/docker-agent-vs-openai-agents-sdk.md)\n- [Docker Agent vs Pydantic AI](https://www.anchorterminal.com/compare/docker-agent-vs-pydantic-ai.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "AgentOS vs Docker Agent",
        "url": ""
      }
    ],
    "description": "Docker Agent scores 76.5 (BB) on agent readiness against AgentOS's 75.3 (BB), and leads in 4 of 7 scored categories. AgentOS leads on security \u0026 auth. Both do agent frameworks. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "AgentOS BB 75.3",
      "Docker Agent BB 76.5",
      "scores"
    ],
    "h1": "AgentOS vs Docker Agent",
    "image": "https://www.anchorterminal.com/assets/og/compare-agentos-vs-docker-agent.png",
    "path": "/compare/agentos-vs-docker-agent",
    "published": "2026-10-01",
    "section": "tools",
    "title": "AgentOS vs Docker Agent for AI agents, BB 75.3 vs BB 76.5",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/agentos-vs-docker-agent"
  },
  "tokens": {
    "markdown": 2150,
    "slim": 580
  },
  "version": 1
}
