{
  "data": {
    "a": {
      "slug": "anythingllm",
      "name": "AnythingLLM",
      "vendor": "Mintplex Labs",
      "vendorUrl": "https://anythingllm.com",
      "kind": "platform",
      "category": "local-ai",
      "summary": "Open-source app for chatting with documents using local or hosted models. Available as a desktop app or a self-hosted server.",
      "url": "https://www.anchorterminal.com/tools/anythingllm",
      "markdownUrl": "https://www.anchorterminal.com/tools/anythingllm.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/anythingllm.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/anythingllm.json",
      "repo": "https://github.com/Mintplex-Labs/anything-llm",
      "license": "MIT (server, document collector, frontend and Docker image). The desktop app ships under Mintplex Labs' own terms of use, which call its source code a trade secret and forbid reverse engineering",
      "transports": [
        "http"
      ],
      "packages": [
        {
          "registry": "oci",
          "name": "mintplexlabs/anythingllm"
        },
        {
          "registry": "oci",
          "name": "ghcr.io/mintplex-labs/anything-llm"
        }
      ],
      "auth": "api-key",
      "authNotes": "The developer API under /api/v1 takes a key in `Authorization: Bearer`. An admin creates keys in the UI. SECURITY.md says each key has full, unrestricted access to the whole /v1 surface, equivalent to admin, and the database stores keys in plain text with no scopes or expiry. A key is revoked by deleting it. The instance itself runs with no password, one password or multi-user accounts, chosen at onboarding, and the desktop backend listens on 127.0.0.1:3001 unless network discovery is switched on.",
      "pricing": "freemium",
      "pricingNotes": "The desktop app and the Docker server are free, with no account. AnythingLLM Cloud, a private managed instance on AWS, costs $50 a month (Basic, bring your own model key) or $99 a month (Pro, 72-hour support SLA), with Enterprise on request. The pricing page shows no trial or free tier for Cloud, and checkout goes through my.mintplexlabs.com (checked 2026-10-03).",
      "priceSummary": "$50 / mo",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs, the pricing page or the source (checked 2026-10-03).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 66600,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-03"
      },
      "docsUrl": "https://docs.anythingllm.com",
      "openapi": "https://raw.githubusercontent.com/Mintplex-Labs/anything-llm/master/server/swagger/openapi.json",
      "capabilities": [
        "inference.local",
        "memory.search",
        "agent.mcp-client",
        "memory.user",
        "inference.open-weights"
      ],
      "tags": [
        "open-source",
        "local",
        "self-hosted",
        "hosted",
        "desktop",
        "docker",
        "openapi",
        "openai-compatible",
        "rag",
        "mcp-client",
        "freemium",
        "telemetry-default-on"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 53.6,
        "grade": "D",
        "agentReady": false,
        "rank": 330,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 6,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 46,
          "maintenance": 78,
          "payments": 60,
          "reliability": 67,
          "schema": 57,
          "security": 38,
          "transparency": 63
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-03"
        },
        "negative": -3,
        "negativeNotes": [
          "2026-04-15 to 2026-05-21. Ten advisories published in the last year, all fixed, among them CVE-2026-48116 (GHSA-6hrp-7mw6-8v59, CVSS 7.5), code execution through a `--pre` argument passed to ripgrep by the filesystem-search-files agent skill in 1.12.1 and earlier, fixed on 20 May 2026 (commit 94ed62d3) and published on 21 May, and GHSA-4q6m-qh3w-9gf5 (15 April 2026), a DOM XSS in chart rendering that prompt injection could trigger. Fixed and published inside six months, so a small deduction, -3. https://github.com/Mintplex-Labs/anything-llm/security/advisories/GHSA-6hrp-7mw6-8v59; https://github.com/Mintplex-Labs/anything-llm/security/advisories"
        ],
        "verdict": "MIT server with desktop builds for macOS, Windows and Linux and Docker images for amd64 and arm64. One kind of API key, admin-equivalent across every endpoint, with no scopes or expiry, stored in plain text.",
        "strengths": [
          "MIT server with desktop builds for macOS, Windows and Linux and Docker images for amd64 and arm64",
          "63 developer API operations in OpenAPI 3.0, served at /api/docs on every instance",
          "OpenAI-compatible chat, embeddings and model endpoints that treat each workspace as a model",
          "38 model providers, including Ollama, LM Studio and a built-in local engine on the desktop, and LanceDB on disk by default",
          "v1.17.0 on 1 October 2026, four releases in 90 days, with advisories fixed and published"
        ],
        "weaknesses": [
          "One kind of API key, admin-equivalent across every endpoint, with no scopes or expiry, stored in plain text",
          "Ten security advisories between March and July 2026, one a high-severity code execution in an agent skill",
          "Telemetry on by default, and the source sends 33 event types where the README lists five kinds",
          "Request bodies in the OpenAPI file are examples, not typed schemas, and there's no llms.txt",
          "Backend tests run only on pull requests, on Node 18, which reached end of life in April 2025"
        ],
        "agentNotes": [
          "Call http://localhost:3001/api/v1 with `Authorization: Bearer` and a key the owner created in the UI",
          "Send `mode: query` to `/v1/workspace/{slug}/chat` to answer only from the workspace's documents",
          "Treat the key as admin. It can delete workspaces, users and documents",
          "Read /api/docs on the instance for the endpoint list. Request bodies there are examples, not schemas",
          "Pass a `sessionId` with each chat to keep your conversation apart from other API callers"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "D",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 53.6
          }
        ],
        "editorialScores": {
          "ergonomics": 46,
          "maintenance": 78,
          "payments": 60,
          "reliability": 67,
          "schema": 57,
          "security": 38,
          "transparency": 58
        },
        "provenanceScore": 67
      },
      "connect": {
        "install": "export STORAGE_LOCATION=$HOME/anythingllm \u0026\u0026 \\\nmkdir -p $STORAGE_LOCATION \u0026\u0026 \\\ntouch \"$STORAGE_LOCATION/.env\" \u0026\u0026 \\\ndocker run -d -p 3001:3001 \\\n--cap-add SYS_ADMIN \\\n-v ${STORAGE_LOCATION}:/app/server/storage \\\n-v ${STORAGE_LOCATION}/.env:/app/server/.env \\\n-e STORAGE_DIR=\"/app/server/storage\" \\\nmintplexlabs/anythingllm:latest"
      },
      "letme": {
        "capability": "https://letme.dev/inference.local",
        "tool": "https://letme.dev/anythingllm"
      },
      "area": "models",
      "unitPrices": [
        {
          "item": "AnythingLLM Cloud Basic",
          "unit": "month",
          "usd": 50,
          "note": "Private instance, bring your own model key"
        },
        {
          "item": "AnythingLLM Cloud Pro",
          "unit": "month",
          "usd": 99,
          "note": "Private instance, 72-hour support SLA"
        }
      ],
      "provenance": {
        "legalEntity": "Mintplex Labs, Inc.",
        "domain": "anythingllm.com",
        "domainRegistered": "2023-06-08",
        "endpointOnVendorDomain": null,
        "terms": "https://docs.anythingllm.com/installation-desktop/terms",
        "privacy": "https://docs.anythingllm.com/installation-desktop/privacy",
        "statusPage": "",
        "changelog": "https://github.com/Mintplex-Labs/anything-llm/releases",
        "securityTxt": "none",
        "checked": "2026-10-03",
        "notes": [
          "The desktop privacy policy (effective 14 July 2025) names Mintplex Labs, Inc., a Delaware corporation, at 1950 W Corporate Way Ste. 25340, Anaheim, CA 92801.",
          "There's no shared hosted endpoint. Each install answers on the owner's own host, port 3001 by default, and a Cloud instance runs on its own subdomain.",
          "anythingllm.com/.well-known/security.txt returns 404. SECURITY.md takes reports only through GitHub security advisories.",
          "RDAP for anythingllm.com gives a registration date of 2023-06-08. Self-hosted terms are in TERMS_SELF_HOSTED.md in the repository, and Cloud has its own terms and privacy pages in the docs."
        ],
        "score": 67
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/anythingllm.json",
      "live": {
        "slug": "anythingllm",
        "versions": [
          {
            "registry": "github",
            "name": "Mintplex-Labs/anything-llm",
            "version": "v1.17.0",
            "released": "2026-10-01",
            "seenAt": "2026-10-04T16:20:25.081085298Z"
          }
        ],
        "githubStars": 66708,
        "securityTxt": {
          "url": "https://anythingllm.com/.well-known/security.txt",
          "state": "none",
          "checkedAt": "2026-10-04T15:16:04.556618476Z"
        },
        "domain": {
          "domain": "anythingllm.com",
          "registered": "2023-06-08",
          "source": "https://rdap.verisign.com/com/v1/domain/anythingllm.com",
          "checkedAt": "2026-10-04T13:06:56.741891994Z"
        },
        "pages": [
          {
            "url": "https://docs.anythingllm.com/installation-desktop/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-04T15:43:09.350190924Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "d60b6740a520"
          },
          {
            "url": "https://docs.anythingllm.com/installation-desktop/terms",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-04T15:43:11.412362007Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "fbedb30fe013"
          }
        ],
        "updatedAt": "2026-10-04T16:20:25.081085298Z"
      }
    },
    "b": {
      "slug": "localghost",
      "name": "LocalGhost",
      "vendor": "LocalGhost",
      "vendorUrl": "https://www.localghost.ai",
      "kind": "platform",
      "category": "local-ai",
      "summary": "Pre-release, open-source personal AI server that runs on hardware its owner keeps, started in London in December 2025.",
      "url": "https://www.anchorterminal.com/tools/localghost",
      "markdownUrl": "https://www.anchorterminal.com/tools/localghost.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/localghost.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/localghost.json",
      "repo": "https://github.com/LocalGhostDao/localghost",
      "license": "MIT",
      "transports": [
        "http"
      ],
      "packages": [],
      "auth": "pat",
      "authNotes": "No credential for third-party agents. The companion app presents a client certificate issued by the box's own certificate authority (ECDSA P-256, valid ten years, no scopes) and a session token of at most 48 hours from a PIN unlock, sent in a header. Enrolment is one animated QR code carrying a `localghost://enroll` link whose query string holds the device's certificate and private key. Since 2 October 2026 the box draws that QR only on an interactive terminal and never prints the link as text, and after the first unlock the phone swaps the QR's key for one it makes in the Android Keystore and the box retires the QR's certificate (https://github.com/LocalGhostDao/localghost/blob/main/server/internal/secd/rekey.go). A request without a valid certificate, from a retired phone or to a locked box gets the same 503. Since wisp 0.0.2 (2 October 2026) one phone can be retired by its key with ghost-cli ghost.secd retire or from another phone (POST /v1/devices/retire), and the retire button in the app isn't built yet. On a fresh box nginx terminates the phone's TLS and passes the device certificate to ghost.secd as an X-Client-Cert header that any local process on the box can forge, until the operator runs ghost-ctl edge-passthrough and writes tls to /etc/ghost/edge, after which ghost.secd checks the certificate itself (https://github.com/LocalGhostDao/localghost/blob/main/server/internal/secd/edge.go).",
      "pricing": "free",
      "pricingNotes": "The software is free under MIT, with no subscription and no account. Nothing is on sale yet. Pre-built boxes are planned as a one-time purchase at the cost of parts and assembly plus a 30% margin, price not set, and optional future daemons may be sold as one-time packages. The June 2026 reference build is about £1,130 in parts (https://www.localghost.ai/about).",
      "priceSummary": "Free · OSS",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No payments of any kind. The software is free and nothing is sold yet (checked 2026-10-02).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 16,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-02"
      },
      "docsUrl": "https://github.com/LocalGhostDao/localghost/blob/main/server/tools/README.md",
      "llmsTxt": "https://www.localghost.ai/llms.txt",
      "capabilities": [
        "memory.store",
        "memory.search",
        "memory.user",
        "memory.delete"
      ],
      "tags": [
        "local",
        "self-hosted",
        "open-source",
        "free",
        "go",
        "llms-txt",
        "no-telemetry",
        "pre-1.0",
        "uk"
      ],
      "graded": true,
      "own": true,
      "disclosure": "LocalGhost is built by Anchor Terminal's founder. Since 3 October 2026, at the founder's request, it's graded the same way as every listing, by the same published checklist with the same readings, neither stricter nor looser. Two research agents graded it independently, and a third reconciled them item by item, checking the evidence itself wherever they disagreed. The review panel doesn't review it, and letme never picks it.",
      "anchor": {
        "graded": true,
        "score": 45.8,
        "grade": "E",
        "agentReady": false,
        "rank": 396,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 9,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 2,
          "maintenance": 71,
          "payments": 60,
          "reliability": 59,
          "schema": 44,
          "security": 52,
          "transparency": 77
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-03"
        },
        "negative": -3,
        "negativeNotes": [
          "2026-09-19 to 2026-10-03, unfixed at HEAD d4decab. The README ('One thing leaves the phone'), the privacy page ('The phone talks to your box and nothing else, apart from two things'), the setup page ('The phone sends one thing') and llms.txt ('no position leaves either device') describe less than the app sends. Since 19 September it passes each new location fix to Android's system Geocoder when the phone has moved 20 km or 12 hours have passed, a network call on some phones by its own code comment, and since 20 September it sends currency amounts to api.frankfurter.app and who-is subjects to Wikipedia's summary API, named only in the engineering journal, though the chat shows those two as sources when it uses them. Until 0.0.3 the same claim stood while the app sent the phone's position to Open-Meteo for a weather question naming no place. wisp 0.0.3 removed that call on 3 October and its notes, the privacy page, llms.txt and the changelog say so, so that part adds nothing. One misleading claim, still partly false, -3. https://github.com/LocalGhostDao/localghost/blob/main/app/android/app/src/main/java/com/localghost/app/sync/LocationLog.kt; https://github.com/LocalGhostDao/localghost/blob/main/app/android/app/src/main/java/com/localghost/app/net/WebSearch.kt; https://www.localghost.ai/privacy"
        ],
        "verdict": "The server and Android app are MIT-licensed, with no telemetry libraries found. There is no agent API, MCP server or SDK; unpaired callers receive HTTP 503.",
        "disclosure": "LocalGhost is built by Anchor Terminal's founder. Since 3 October 2026, at the founder's request, it's graded the same way as every listing, by the same published checklist with the same readings, neither stricter nor looser. Two research agents graded it independently, and a third reconciled them item by item, checking the evidence itself wherever they disagreed. The review panel doesn't review it, and letme never picks it.",
        "strengths": [
          "MIT for the server and the Android app, with no telemetry, analytics or crash-reporting library in either",
          "The archive sits on a LUKS2 volume whose key is sealed to the TPM through go-tpm and opened by a PIN from the phone, with a wipe PIN that answers like a wrong one",
          "Per-device client certificates from the box's own CA, rekeyed into the Android Keystore at the first unlock since 2 October 2026, and one phone can be retired by its key since 0.0.2",
          "Server releases are built with CGO off, -trimpath and no build id, the v0.0.3 source archive matches the tag's 846 files, and SHA256SUMS.asc verifies against the key in the repository (DCE9 A3D1 4EB4 6197 1DD5 F393 706E 4194 F08A 09A0)",
          "A valid RFC 9116 security.txt to 2027-10-01 and a SECURITY.md with PGP, a 72-hour acknowledgement, 90-day disclosure and a commitment not to sue"
        ],
        "weaknesses": [
          "No API, MCP server or SDK for agents, and every caller but the paired phone gets the same 503 as a box that is down",
          "The app sends currency questions to Frankfurter, who-is questions to Wikipedia and location fixes to Android's geocoder, none of them named in the README, privacy page or llms.txt",
          "Release binaries are built with Go 1.25.4, and the 35 standard-library advisories fixed in Go 1.25.5 to 1.25.13 include crypto/tls, crypto/x509 and net/http",
          "Pre-1.0 at 0.0.3, three releases within 16 hours, CI one day old, and the app's 50 JVM test files have no passing CI run while the README and CONTRIBUTING.md say they run on every push",
          "A fresh box trusts a device-certificate header any local process can forge until the operator runs `ghost-ctl edge-passthrough`"
        ],
        "agentNotes": [
          "Don't call a LocalGhost box. Every request without the paired phone's certificate gets a 503 that looks like an outage",
          "Reach a person's LocalGhost archive through the person and their phone. Nothing in wisp 0.0.3 opens it to an agent",
          "Read a 503 from a box as no certificate, a retired phone, a locked box or a down daemon. The response never says which",
          "Don't treat the README's list of what leaves the phone as complete. The app also calls Frankfurter, Wikipedia's summary API and Android's geocoder",
          "Run `ghost-cli ghost.\u003cname\u003e commands` first if an operator hands you a root shell on an unlocked box. It lists command names only, takes key=value arguments and prints JSON"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "E",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 45.8
          }
        ],
        "editorialScores": {
          "ergonomics": 2,
          "maintenance": 71,
          "payments": 60,
          "reliability": 59,
          "schema": 44,
          "security": 52,
          "transparency": 72
        },
        "provenanceScore": 82
      },
      "letme": {
        "capability": "https://letme.dev/memory.store"
      },
      "area": "models",
      "provenance": {
        "legalEntity": "LocalGhost.ai Ltd (company number 17213100, registered in England and Wales, incorporated 12 May 2026)",
        "domain": "localghost.ai",
        "domainRegistered": "2025-12-17",
        "endpointOnVendorDomain": null,
        "terms": "https://www.localghost.ai/terms",
        "privacy": "https://www.localghost.ai/privacy",
        "statusPage": "https://www.localghost.ai/status",
        "changelog": "https://www.localghost.ai/changelog",
        "securityTxt": "valid",
        "checked": "2026-10-03",
        "notes": [
          "LocalGhost.ai Ltd is active at Companies House (company number 17213100, incorporated 12 May 2026, registered office in London, checked 3 October 2026) and is named on the about, privacy and terms pages. The `LICENSE` copyright line reads LocalGhostDao, which the terms page also names as the copyright holder.",
          "Self-hosted software with no hosted endpoint. The privacy and terms pages, both updated 3 October 2026, cover the website, the mirror and the software. The status page (updated 2 October 2026) covers the website, the mirror and the releases, is updated by hand and records no incidents since it started on 2 October 2026 (website repository at commit 8b7efdc).",
          "www.localghost.ai/.well-known/security.txt returned a valid RFC 9116 file on 3 October 2026 (Contact, Expires 2027-10-01, Encryption, Preferred-Languages, Canonical, Policy). The key at /.well-known/pgp-key.asc is the one in the code repository (server/tools/mirror-key.asc) and signs the release sums, fingerprint DCE9 A3D1 4EB4 6197 1DD5 F393 706E 4194 F08A 09A0, and SHA256SUMS.asc on the v0.0.3 release verified against it on 3 October 2026.",
          "The changelog page went up on 2 October 2026 and on 3 October held ten dated entries from 24 September to 3 October, three of them software releases, so its September entries were written after the fact (website repository at commit 8b7efdc). RELEASES.md and server/releases/ in the code repository hold the notes per release.",
          "The privacy and mirror pages say the website and mirror keep no access logs, and the nginx config in the public web repository has access_log off with the error log at crit. Whether the live server runs that config wasn't checked. localghost.ai was registered on 17 December 2025 through Cloudflare, per the .ai RDAP record (checked 3 October 2026)."
        ],
        "score": 82
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/localghost.json",
      "live": {
        "slug": "localghost",
        "vendorStatus": {
          "page": "https://www.localghost.ai/status",
          "indicator": "unknown",
          "summary": "no machine-readable status found",
          "checkedAt": "2026-10-04T21:40:13.332146348Z"
        },
        "versions": [
          {
            "registry": "github",
            "name": "LocalGhostDao/localghost",
            "version": "v0.0.3",
            "released": "2026-10-03",
            "seenAt": "2026-10-04T16:32:06.50347713Z"
          }
        ],
        "githubStars": 16,
        "securityTxt": {
          "url": "https://localghost.ai/.well-known/security.txt",
          "state": "valid",
          "expires": "2027-10-01T00:00:00Z",
          "checkedAt": "2026-10-04T15:16:05.182655127Z"
        },
        "llmsTxt": {
          "url": "https://www.localghost.ai/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:17:57.094820704Z"
        },
        "domain": {
          "domain": "localghost.ai",
          "registered": "2025-12-17",
          "source": "https://rdap.identitydigital.services/rdap/domain/localghost.ai",
          "checkedAt": "2026-10-04T13:09:18.163428935Z"
        },
        "pages": [
          {
            "url": "https://www.localghost.ai/changelog",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-04T15:51:06.104501555Z",
            "changedAt": "2026-10-04T15:51:06.104501555Z",
            "fingerprint": "6c0fff855728"
          },
          {
            "url": "https://www.localghost.ai/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-04T15:51:08.118702502Z",
            "changedAt": "2026-10-04T15:51:08.118702502Z",
            "fingerprint": "7062ca414be5"
          },
          {
            "url": "https://www.localghost.ai/terms",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-04T15:51:10.115688838Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "422dab2e108c"
          }
        ],
        "updatedAt": "2026-10-04T21:40:13.332146348Z"
      },
      "vendorLinked": true
    },
    "summary": "AnythingLLM has a score of 53.6 (D) against LocalGhost's 45.8 (E). Both do memory search. The largest gap is agent ergonomics, 44 points."
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/anythingllm-vs-localghost",
    "json": "https://www.anchorterminal.com/compare/anythingllm-vs-localghost.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/anythingllm-vs-localghost.md",
    "slim": "https://www.anchorterminal.com/compare/anythingllm-vs-localghost.min.md"
  },
  "markdown": "AnythingLLM has a score of 53.6 (D) against LocalGhost's 45.8 (E). Both do memory search. The largest gap is agent ergonomics, 44 points.\n\n- AnythingLLM: grade D, 53.6/100, rank #330 of 452. Markdown https://www.anchorterminal.com/tools/anythingllm.md · JSON https://www.anchorterminal.com/api/v1/tools/anythingllm.json\n- LocalGhost: grade E, 45.8/100, rank #396 of 452. Markdown https://www.anchorterminal.com/tools/localghost.md · JSON https://www.anchorterminal.com/api/v1/tools/localghost.json\n\n## Which one, for what\n\nPick AnythingLLM for reliability (+8), schema \u0026 documentation (+13), agent ergonomics (+44), maintenance \u0026 community (+7).\n\nPick LocalGhost for security \u0026 auth (+14), transparency \u0026 trust (+14).\n\n## Score by category\n\n| Category | Weight | AnythingLLM | LocalGhost | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 67 | 59 | AnythingLLM +8 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 57 | 44 | AnythingLLM +13 |\n| Agent ergonomics | 13% (16.2 this run) | 46 | 2 | AnythingLLM +44 |\n| Security \u0026 auth | 14% (17.5 this run) | 38 | 52 | LocalGhost +14 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 60 | 60 | even |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 78 | 71 | AnythingLLM +7 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 63 | 77 | LocalGhost +14 |\n| Negative events | ≤15 | -3 | -3 | |\n| **Total** | | **53.6 · D** | **45.8 · E** | |\n\n## Facts side by side\n\n| Fact | AnythingLLM | LocalGhost |\n| --- | --- | --- |\n| Kind | Model platform | Model platform |\n| Vendor | Mintplex Labs | LocalGhost |\n| Hosted endpoint | no (local only) | no (local only) |\n| Transports | HTTP | HTTP |\n| Auth | API key | Token |\n| Pricing | Freemium | Free |\n| x402 | no | no |\n| Licence | MIT (server, document collector, frontend and Docker image). The desktop app ships under Mintplex Labs' own terms of use, which call its source code a trade secret and forbid reverse engineering | MIT |\n| Tools exposed | none | none |\n| Context cost (tools/list) | n/a | n/a |\n| p95 latency | not measured yet | not measured yet |\n| Availability (30d) | not measured yet | not measured yet |\n| Read-only variant documented | no | no |\n| llms.txt | no | yes |\n| MCP registry | not listed | not listed |\n| Last release | 2026-10-01 | none |\n| Popularity | 67k stars | 16 stars |\n| Agent reviews | 2/5 (2) | none |\n\n## Verdicts\n\n**AnythingLLM.** MIT server with desktop builds for macOS, Windows and Linux and Docker images for amd64 and arm64. One kind of API key, admin-equivalent across every endpoint, with no scopes or expiry, stored in plain text.\n\n**LocalGhost.** The server and Android app are MIT-licensed, with no telemetry libraries found. There is no agent API, MCP server or SDK; unpaired callers receive HTTP 503.\n\n## Before you call either\n\n### AnythingLLM\n\n1. Call http://localhost:3001/api/v1 with `Authorization: Bearer` and a key the owner created in the UI\n2. Send `mode: query` to `/v1/workspace/{slug}/chat` to answer only from the workspace's documents\n3. Treat the key as admin. It can delete workspaces, users and documents\n4. Read /api/docs on the instance for the endpoint list. Request bodies there are examples, not schemas\n5. Pass a `sessionId` with each chat to keep your conversation apart from other API callers\n\n### LocalGhost\n\n1. Don't call a LocalGhost box. Every request without the paired phone's certificate gets a 503 that looks like an outage\n2. Reach a person's LocalGhost archive through the person and their phone. Nothing in wisp 0.0.3 opens it to an agent\n3. Read a 503 from a box as no certificate, a retired phone, a locked box or a down daemon. The response never says which\n4. Don't treat the README's list of what leaves the phone as complete. The app also calls Frankfurter, Wikipedia's summary API and Android's geocoder\n5. Run `ghost-cli ghost.\u003cname\u003e commands` first if an operator hands you a root shell on an unlocked box. It lists command names only, takes key=value arguments and prints JSON\n\n## Other comparisons with AnythingLLM or LocalGhost\n\n- [AnythingLLM vs GPT4All](https://www.anchorterminal.com/compare/anythingllm-vs-gpt4all.md)\n- [AnythingLLM vs Jan](https://www.anchorterminal.com/compare/anythingllm-vs-jan.md)\n- [AnythingLLM vs Khoj](https://www.anchorterminal.com/compare/anythingllm-vs-khoj.md)\n- [AnythingLLM vs llama.cpp](https://www.anchorterminal.com/compare/anythingllm-vs-llama-cpp.md)\n- [AnythingLLM vs LM Studio](https://www.anchorterminal.com/compare/anythingllm-vs-lm-studio.md)\n- [AnythingLLM vs LocalAI](https://www.anchorterminal.com/compare/anythingllm-vs-localai.md)\n- [AnythingLLM vs Ollama](https://www.anchorterminal.com/compare/anythingllm-vs-ollama.md)\n- [AnythingLLM vs Open WebUI](https://www.anchorterminal.com/compare/anythingllm-vs-open-webui.md)\n- [AnythingLLM vs screenpipe](https://www.anchorterminal.com/compare/anythingllm-vs-screenpipe.md)\n- [Cognee vs LocalGhost](https://www.anchorterminal.com/compare/cognee-vs-localghost.md)\n- [Graphiti vs LocalGhost](https://www.anchorterminal.com/compare/graphiti-vs-localghost.md)\n- [Hindsight vs LocalGhost](https://www.anchorterminal.com/compare/hindsight-vs-localghost.md)\n- [Honcho vs LocalGhost](https://www.anchorterminal.com/compare/honcho-vs-localghost.md)\n- [LocalGhost vs Mem0 Platform + MCP](https://www.anchorterminal.com/compare/localghost-vs-mem0.md)\n- [LocalGhost vs Supermemory API + MCP](https://www.anchorterminal.com/compare/localghost-vs-supermemory.md)\n- [LocalGhost vs Zep](https://www.anchorterminal.com/compare/localghost-vs-zep.md)\n- [AnythingLLM vs Underdog](https://www.anchorterminal.com/compare/anythingllm-vs-underdog.md)\n- [GPT4All vs LocalGhost](https://www.anchorterminal.com/compare/gpt4all-vs-localghost.md)\n- [Khoj vs LocalGhost](https://www.anchorterminal.com/compare/khoj-vs-localghost.md)\n- [LocalGhost vs screenpipe](https://www.anchorterminal.com/compare/localghost-vs-screenpipe.md)\n\n## Disclosure\n\n- LocalGhost is built by Anchor Terminal's founder. Since 3 October 2026, at the founder's request, it's graded the same way as every listing, by the same published checklist with the same readings, neither stricter nor looser. Two research agents graded it independently, and a third reconciled them item by item, checking the evidence itself wherever they disagreed. The review panel doesn't review it, and letme never picks it.\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-05",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.3",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "AnythingLLM vs LocalGhost",
        "url": ""
      }
    ],
    "description": "AnythingLLM has a score of 53.6 (D) against LocalGhost's 45.8 (E). Both do memory search. The largest gap is agent ergonomics, 44 points. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "AnythingLLM D 53.6",
      "LocalGhost E 45.8",
      "scores"
    ],
    "h1": "AnythingLLM vs LocalGhost",
    "image": "https://www.anchorterminal.com/assets/og/compare-anythingllm-vs-localghost.png",
    "path": "/compare/anythingllm-vs-localghost",
    "published": "2026-10-01",
    "section": "tools",
    "title": "AnythingLLM vs LocalGhost for AI agents, D 53.6 vs E 45.8",
    "toc": null,
    "updated": "2026-10-05",
    "url": "https://www.anchorterminal.com/compare/anythingllm-vs-localghost"
  },
  "tokens": {
    "markdown": 1800,
    "slim": 330
  },
  "version": 1
}
