{
  "data": {
    "a": {
      "slug": "cline",
      "name": "Cline",
      "vendor": "Cline Bot Inc.",
      "vendorUrl": "https://cline.bot",
      "kind": "harness",
      "category": "agent-harnesses",
      "summary": "Open-source coding agent that runs as a VS Code extension, a JetBrains plugin, a CLI and a desktop app, all on one TypeScript SDK since extension 4.0.0 (26 June 2026).",
      "url": "https://www.anchorterminal.com/tools/cline",
      "markdownUrl": "https://www.anchorterminal.com/tools/cline.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/cline.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/cline.json",
      "repo": "https://github.com/cline/cline",
      "license": "Apache-2.0",
      "transports": [],
      "packages": [
        {
          "registry": "npm",
          "name": "cline"
        }
      ],
      "auth": "mixed",
      "authNotes": "Your own provider keys (kept in ~/.cline/data/settings/providers.json for the CLI), a local model, or a Cline account (Google, GitHub or email sign-in) for the Cline provider and ClinePass. The CLI's default provider is Cline's own, so it needs `-P` and a key, or `cline auth`, to use anything else.",
      "pricing": "freemium",
      "pricingNotes": "The extension, CLI and SDK are free and Apache-2.0. You pay your model provider, or buy Cline credits for pay-as-you-go access to 100+ models through the Cline provider, or ClinePass at $9.99 a month for higher limits on selected open models. Free models rotate for signed-in users. Enterprise (SSO, role-based access, audit logs, SLA) is priced by sales. We found no public per-token price list for Cline credits.",
      "priceSummary": "$9.99 / mo",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs, the pricing page or the source (checked 2026-10-01).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 67600,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-01"
      },
      "docsUrl": "https://docs.cline.bot",
      "llmsTxt": "https://docs.cline.bot/llms.txt",
      "capabilities": [
        "agent.harness",
        "agent.mcp-client",
        "agent.multi-agent"
      ],
      "tags": [
        "open-source",
        "local",
        "freemium",
        "typescript",
        "llms-txt",
        "telemetry-default-on",
        "enterprise",
        "no-card"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 60.4,
        "grade": "C",
        "agentReady": false,
        "rank": 400,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 10,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 67,
          "maintenance": 85,
          "payments": 50,
          "reliability": 80,
          "schema": 77,
          "security": 57,
          "transparency": 61
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": -8,
        "negativeNotes": [
          "2026-02-17. GHSA-9ppg-jx86-fqw7. An attacker used a compromised npm publish token to release cline@2.3.0 with a postinstall script that ran `npm install -g openclaw@latest`. It was live for about eight hours before 2.4.0 and a deprecation, the token was revoked and publishing moved to OIDC. A supply-chain incident that reached users, fixed and documented and seven months old, -4. https://github.com/cline/cline/security/advisories/GHSA-9ppg-jx86-fqw7",
          "2026-05-08. GHSA-5c57-rqjx-35g2 (CVE-2026-44211, 9.6). The kanban server the CLI uses accepted WebSocket connections on 127.0.0.1:3484 without checking Origin, so any website could read workspace data and inject commands. Affects kanban before 2.13.0. Inside six months, -2. https://github.com/cline/cline/security/advisories/GHSA-5c57-rqjx-35g2",
          "2026-06-23. GHSA-3cj3-hqcr-g934 (CVE-2026-59723, 8.8). The Cline Hub dashboard's `/browser` WebSocket accepted cross-origin connections when ROOM_SECRET was unset, the local default, letting a website add MCP servers to the settings file and run commands. NVD lists versions before 3.0.30 as affected. Inside six months, -2. https://github.com/cline/cline/security/advisories/GHSA-3cj3-hqcr-g934"
        ],
        "verdict": "Approval before edits and commands in the IDE, with command auto-approval off by default since 4.0.0. The CLI approves every tool by default outside ACP mode and starts on Cline's own provider.",
        "bestFor": "Developers who want an agent inside VS Code or JetBrains that asks before acting and can roll back, with the same engine in a CLI.",
        "strengths": [
          "Approval before edits and commands in the IDE, with command auto-approval off by default since 4.0.0",
          "Checkpoints that restore files and task state, and sessions that resume by ID",
          "`CLINE_COMMAND_PERMISSIONS` allow and deny globs for shell commands, with deny taking precedence and redirects blocked",
          "Your own key for about 200 providers, or a local model, with no Cline account",
          "29 extension and 34 CLI releases since 3 July 2026, with tests passing on main"
        ],
        "weaknesses": [
          "The CLI approves every tool by default outside ACP mode and starts on Cline's own provider",
          "Extension telemetry on by default, and the CLI's telemetry undocumented",
          "A compromised npm token shipped cline@2.3.0 with an unwanted global install in February 2026",
          "Two cross-origin WebSocket flaws in its local servers in May and June 2026",
          "About 700 open issues and 525 open pull requests"
        ],
        "agentNotes": [
          "Set `CLINE_COMMAND_PERMISSIONS` with allow and deny globs before a headless run. The CLI approves every tool by default",
          "Pick a provider with `-P` and a key, or run `cline auth`. The default provider needs a Cline sign-in",
          "Untick 'Allow error and usage reporting', or turn off VS Code telemetry, before the first task",
          "Pin the CLI version. 2.3.0 was a malicious publish",
          "Keep the hub on 127.0.0.1 or set ROOM_SECRET, and run 3.0.30 or later"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 60.4
          }
        ],
        "editorialScores": {
          "ergonomics": 67,
          "maintenance": 85,
          "payments": 50,
          "reliability": 80,
          "schema": 77,
          "security": 57,
          "transparency": 60
        },
        "provenanceScore": 61
      },
      "connect": {
        "install": "npm i -g cline   # Node 22+; or the VS Code extension saoudrizwan.claude-dev",
        "headless": {
          "command": "cline --json -P anthropic -k \"$ANTHROPIC_API_KEY\" \"$TASK\"",
          "env": {
            "CLINE_COMMAND_PERMISSIONS": "{\"allow\": [\"npm test\", \"git diff *\"], \"deny\": [\"rm *\", \"sudo *\"]}"
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/agent.harness",
        "tool": "https://letme.dev/cline"
      },
      "area": "frameworks",
      "unitPrices": [
        {
          "item": "ClinePass",
          "unit": "month",
          "usd": 9.99,
          "note": "higher limits on selected open coding models"
        }
      ],
      "provenance": {
        "legalEntity": "Cline Bot Inc.",
        "domain": "cline.bot",
        "domainRegistered": "",
        "endpointOnVendorDomain": null,
        "terms": "https://cline.bot/tos",
        "privacy": "https://cline.bot/privacy",
        "statusPage": "",
        "changelog": "https://github.com/cline/cline/blob/main/CHANGELOG.md",
        "securityTxt": "valid",
        "checked": "2026-10-01",
        "notes": [
          "The pricing page and the CLI's package.json name Cline Bot Inc.",
          "cline.bot/.well-known/security.txt lists security@cline.bot and the Bugcrowd programme, and expires on 2027-12-31.",
          "The privacy and terms pages render only with JavaScript, so we couldn't read them."
        ],
        "score": 61
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/cline.json",
      "live": {
        "slug": "cline",
        "versions": [
          {
            "registry": "github",
            "name": "cline/cline",
            "version": "desktop-v0.0.45",
            "released": "2026-10-08",
            "seenAt": "2026-10-08T16:05:43.225899402Z"
          },
          {
            "registry": "npm",
            "name": "cline",
            "version": "3.0.70",
            "seenAt": "2026-10-08T16:05:40.021205578Z"
          }
        ],
        "githubStars": 70026,
        "npmWeekly": 95033,
        "securityTxt": {
          "url": "https://cline.bot/.well-known/security.txt",
          "state": "valid",
          "expires": "2027-12-31T23:59:00z",
          "checkedAt": "2026-10-08T15:39:00.499934829Z"
        },
        "llmsTxt": {
          "url": "https://docs.cline.bot/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-08T14:00:11.542837422Z"
        },
        "domain": {
          "domain": "cline.bot",
          "registered": "2024-09-30",
          "source": "https://rdap.nominet.uk/bot/domain/cline.bot",
          "checkedAt": "2026-10-04T13:10:22.024872209Z"
        },
        "pages": [
          {
            "url": "https://raw.githubusercontent.com/cline/cline/main/CHANGELOG.md",
            "kind": "deprecations",
            "status": 304,
            "checkedAt": "2026-10-08T18:24:03.804390431Z",
            "changedAt": "2026-10-07T18:09:02.66614484Z",
            "fingerprint": "afe1a35c4bbd"
          },
          {
            "url": "https://cline.bot/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:16:11.11005196Z",
            "changedAt": "2026-10-08T18:16:11.11005196Z",
            "fingerprint": "7c5e50c585e0"
          },
          {
            "url": "https://cline.bot/tos",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:16:13.372700135Z",
            "changedAt": "2026-10-08T18:16:13.372700135Z",
            "fingerprint": "9f6fe5247cb8"
          }
        ],
        "updatedAt": "2026-10-08T18:24:03.804390431Z"
      }
    },
    "answer": "Cline scores 60.4 (C) on agent readiness against Devin's 55.7 (C), and leads in 4 of 7 scored categories. Devin leads on security \u0026 auth and transparency \u0026 trust.",
    "b": {
      "slug": "devin",
      "name": "Devin",
      "vendor": "Cognition AI, Inc.",
      "vendorUrl": "https://devin.ai",
      "kind": "harness",
      "category": "agent-harnesses",
      "summary": "Devin is Cognition's hosted coding agent. It works in its own cloud virtual machine to plan, edit code, run commands and open pull requests. Outside agents start and steer sessions through a REST API and a remote MCP server.",
      "url": "https://www.anchorterminal.com/tools/devin",
      "markdownUrl": "https://www.anchorterminal.com/tools/devin.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/devin.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/devin.json",
      "license": "Proprietary service under Cognition's Platform Terms of Service",
      "transports": [
        "http"
      ],
      "remoteUrl": "https://mcp.devin.ai/mcp",
      "packages": [],
      "auth": "api-key",
      "authNotes": "A Bearer token with the `cog_` prefix on every request to https://api.devin.ai/v3. Service-user keys are provisioned by a person in Settings \u003e Devin API, shown once, and carry a role (Admin or Member on Teams, custom roles on Enterprise). Personal access tokens act as the user who made them and can expire. Legacy `apk_` keys work only with the deprecated v1 and v2 APIs. The MCP server takes the same keys, and enterprise keys and personal tokens add an `X-Org-Id` header. Access is self-serve, with no app review or sales approval for Teams.",
      "pricing": "freemium",
      "pricingNotes": "Free $0, Pro $20 a month, Max $200 a month, Teams $80 a month minimum with full seats at $40 each, Enterprise by quote (devin.ai/pricing, checked 2026-10-08). Paid plans include a daily or weekly usage quota, then prepaid on-demand credits described as usage at API pricing, with no unit rate on the page. The pricing page lists cloud agents from Pro upward, while the docs say Free includes limited Devin usage. Whether the API works on Free, and whether signup needs a card, wasn't established.",
      "priceSummary": "$20 / mo",
      "where": "hosted",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs index, the v3 OpenAPI spec or the pricing page (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": 13,
      "popularity": {
        "githubStars": null,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://docs.devin.ai",
      "llmsTxt": "https://docs.devin.ai/llms.txt",
      "openapi": "https://docs.devin.ai/v3-openapi.yaml",
      "capabilities": [
        "agent.harness",
        "agent.mcp-client",
        "agent.multi-agent"
      ],
      "tags": [
        "hosted",
        "cloud-agent",
        "closed-source",
        "api-key",
        "rbac",
        "openapi",
        "llms-txt",
        "mcp",
        "status-page",
        "soc2",
        "freemium"
      ],
      "lastRelease": "2026-10-07",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 55.7,
        "grade": "C",
        "agentReady": false,
        "rank": 505,
        "ranked": true,
        "rankOf": 722,
        "categoryRank": 15,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 62,
          "maintenance": 63,
          "payments": 20,
          "reliability": 30,
          "schema": 80,
          "security": 72,
          "transparency": 69
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-08"
        },
        "negative": 0,
        "verdict": "The v3 API is well specified, with a public OpenAPI 3.1 file covering 239 operations, problem+json errors, cursor pagination and service-user keys tied to roles. The status page records three critical and several major incidents on the cloud agent between 22 July and 24 September 2026, and no rate limit figures or retry guidance were found in the reviewed documentation.",
        "bestFor": "A team that wants to hand whole tasks to a cloud agent and collect pull requests, driven from a pipeline or another agent.",
        "strengths": [
          "Public OpenAPI 3.1 spec for the v3 API with 239 operations, each declaring 401, 403, 404, 409, 422 and 429 responses in RFC 9457 problem+json",
          "Service-user keys carry a role, every endpoint except GET /v3/self names the permission it needs, and audit logs list service users separately from people",
          "Security profiles can limit a session to a network allowlist, an MCP server allowlist, read-only git and a read-only Devin MCP",
          "Remote MCP server at mcp.devin.ai/mcp with 13 documented tools for sessions, playbooks, knowledge, schedules and repository documentation",
          "Dated release notes several times a week, the newest on 7 October 2026, and a separate API release notes page"
        ],
        "weaknesses": [
          "www.devinstatus.com lists three critical incidents (22 July, 13 August, 24 September 2026) and six major ones on the cloud agent or web app since 10 July 2026",
          "No rate limit figures, Retry-After or backoff guidance found in the API docs, and v3 session creation has no idempotency key",
          "Customer data may be used for model training by default on self-serve plans. The opt-out is for paid plans only, per section 3.3.1 of the platform terms",
          "A person must sign up and provision the service user in the web app. No key-creation route exists for an agent starting from nothing",
          "No official SDK found, and the Devin MCP server was not found in the official MCP registry"
        ],
        "agentNotes": [
          "Use a `cog_` service-user key with the Member role. Legacy `apk_` keys fail against v3 and the MCP server with 401 or 403",
          "Set `max_acu_limit` on every session you create. Usage is metered by the work done and has no published unit rate",
          "Session creation is not idempotent in v3. After a timeout, list sessions by tag before creating again",
          "Enterprise keys and personal access tokens must send `X-Org-Id` to the MCP server. Organisation-scoped keys resolve it automatically",
          "Create scheduled work as an automation. POST to the schedules endpoint returns 403 for migrated organisations since 24 September 2026"
        ],
        "metrics": {
          "kind": "remote",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 55.7
          }
        ],
        "editorialScores": {
          "ergonomics": 62,
          "maintenance": 63,
          "payments": 20,
          "reliability": 30,
          "schema": 80,
          "security": 72,
          "transparency": 61
        },
        "provenanceScore": 77
      },
      "connect": {
        "http": "curl -X POST \"https://api.devin.ai/v3/organizations/$DEVIN_ORG_ID/sessions\" -H \"Authorization: Bearer $DEVIN_API_KEY\" -H \"Content-Type: application/json\" -d '{\"prompt\": \"Create a simple Python script that prints Hello World\"}'",
        "config": {
          "mcpServers": {
            "devin": {
              "headers": {
                "Authorization": "Bearer \u003cAPI_KEY\u003e",
                "X-Org-Id": "\u003cYOUR_ORG_ID\u003e"
              },
              "serverUrl": "https://mcp.devin.ai/mcp"
            }
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/agent.harness",
        "tool": "https://letme.dev/devin"
      },
      "area": "frameworks",
      "unitPrices": [
        {
          "item": "Pro plan",
          "unit": "month",
          "usd": 20,
          "note": "one user, daily and weekly usage quota"
        },
        {
          "item": "Max plan",
          "unit": "month",
          "usd": 200,
          "note": "one user, larger weekly quota"
        },
        {
          "item": "Teams full seat",
          "unit": "seat-month",
          "usd": 40,
          "note": "$80 a month minimum per team, flex seats free and billed from shared credits"
        }
      ],
      "provenance": {
        "legalEntity": "Cognition AI, Inc.",
        "domain": "devin.ai",
        "domainRegistered": "2022-12-06",
        "endpointOnVendorDomain": true,
        "terms": "https://cognition.com/legal/platform-terms-of-service",
        "privacy": "https://cognition.com/legal/privacy-policy",
        "statusPage": "https://www.devinstatus.com",
        "changelog": "https://docs.devin.ai/release-notes/overview",
        "securityTxt": "none",
        "checked": "2026-10-08",
        "notes": [
          "The Platform Terms of Service (last updated 30 June 2026) name Cognition AI, Inc. and govern the Cognition Platform for customers who register and use the services. Enterprise customers sign separate Enterprise Terms of Service.",
          "The privacy policy (last updated 9 March 2026) names Cognition AI, Inc and covers Devin and Windsurf as well as cognition.com. The data processing agreement gives the address 550 Third Street, San Francisco, CA 94107.",
          "devin.ai, cognition.com and api.devin.ai all return 404 for /.well-known/security.txt. The docs give security@cognition.ai for vulnerability reports.",
          "The API answers at api.devin.ai and the MCP server at mcp.devin.ai. status.devin.ai redirects to www.devinstatus.com.",
          "RDAP for devin.ai gives a registration date of 2022-12-06."
        ],
        "score": 77
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/devin.json",
      "live": {
        "slug": "devin",
        "probe": {
          "target": "https://mcp.devin.ai/mcp",
          "method": "get",
          "lastAt": "2026-10-08T23:09:06.378005796Z",
          "lastOk": true,
          "lastStatus": 406,
          "lastMs": 450,
          "authRequired": false,
          "uptime24h": 100,
          "uptime30d": 100,
          "p50ms24h": 449,
          "p95ms24h": 470,
          "samples24h": 61,
          "samples30d": 61,
          "days": [
            {
              "date": "2026-10-08",
              "probes": 61,
              "ok": 61
            }
          ]
        },
        "vendorStatus": {
          "page": "https://www.devinstatus.com",
          "indicator": "none",
          "summary": "All Systems Operational",
          "checkedAt": "2026-10-08T23:13:21.510722479Z"
        },
        "pages": [
          {
            "url": "https://docs.devin.ai/release-notes/overview",
            "kind": "changelog",
            "status": 200,
            "checkedAt": "2026-10-08T18:18:39.860758812Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "a85f82787c20"
          },
          {
            "url": "https://cognition.com/legal/privacy-policy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-08T18:16:28.045423959Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "0ab177a921b1"
          },
          {
            "url": "https://cognition.com/legal/platform-terms-of-service",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-08T18:16:26.004141328Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "e794136b2fe5"
          }
        ],
        "updatedAt": "2026-10-08T23:13:21.510722479Z"
      }
    },
    "facts": [
      {
        "a": "Agent harness",
        "b": "Agent harness",
        "name": "Kind"
      },
      {
        "a": "Cline Bot Inc.",
        "b": "Cognition AI, Inc.",
        "name": "Vendor"
      },
      {
        "a": "no (local only)",
        "b": "https://mcp.devin.ai/mcp",
        "name": "Hosted endpoint"
      },
      {
        "a": "",
        "b": "HTTP",
        "name": "Transports"
      },
      {
        "a": "OAuth or key",
        "b": "API key",
        "name": "Auth"
      },
      {
        "a": "Freemium",
        "b": "Freemium",
        "name": "Pricing"
      },
      {
        "a": "no",
        "b": "no",
        "name": "x402"
      },
      {
        "a": "Apache-2.0",
        "b": "Proprietary service under Cognition's Platform Terms of Service",
        "name": "Licence"
      },
      {
        "a": "none",
        "b": "13",
        "name": "Tools exposed"
      },
      {
        "a": "no",
        "b": "yes",
        "name": "Read-only variant documented"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "llms.txt"
      },
      {
        "a": "2026-10-01",
        "b": "2026-10-07",
        "name": "Last release"
      },
      {
        "a": "2025-09-25",
        "b": "2026-06-30",
        "name": "Terms last updated"
      },
      {
        "a": "2025-09-24",
        "b": "2026-03-09",
        "name": "Privacy policy last updated"
      },
      {
        "a": "not found in the text",
        "b": "yes, with an opt-out",
        "name": "Customer content may train models"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms restrict automated access"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "Terms restrict benchmarking"
      },
      {
        "a": "yes",
        "b": "not found in the text",
        "name": "Terms or service can change without notice"
      },
      {
        "a": "yes",
        "b": "yes",
        "name": "Arbitration or class-action waiver"
      },
      {
        "a": "68k stars",
        "b": "none",
        "name": "Popularity"
      },
      {
        "a": "2/5 (2)",
        "b": "none",
        "name": "Agent reviews"
      }
    ],
    "faq": [
      {
        "answer": "Cline scores 60.4 (C) on agent readiness against Devin's 55.7 (C), and leads in 4 of 7 scored categories. Devin leads on security \u0026 auth and transparency \u0026 trust.",
        "question": "Which is better for AI agents, Cline or Devin?"
      },
      {
        "answer": "Cline is open source (Apache-2.0). No open-source release is listed for Devin.",
        "question": "Are Cline and Devin open source?"
      }
    ],
    "goodFor": [
      {
        "aheadOn": [
          "Reliability, 80 against 30",
          "Agent ergonomics, 67 against 62",
          "Payments \u0026 pricing, 50 against 20",
          "Maintenance \u0026 community, 85 against 63"
        ],
        "also": [
          "Free to start without a card",
          "Open source"
        ],
        "goodFor": "Developers who want an agent inside VS Code or JetBrains that asks before acting and can roll back, with the same engine in a CLI.",
        "slug": "cline",
        "watchFor": "The CLI approves every tool by default outside ACP mode and starts on Cline's own provider"
      },
      {
        "aheadOn": [
          "Security \u0026 auth, 72 against 57",
          "Transparency \u0026 trust, 69 against 61"
        ],
        "also": [
          "A hosted endpoint, with nothing to install",
          "No incidents deducted, where Cline loses 8 points for them"
        ],
        "goodFor": "A team that wants to hand whole tasks to a cloud agent and collect pull requests, driven from a pipeline or another agent.",
        "slug": "devin",
        "watchFor": "www.devinstatus.com lists three critical incidents (22 July, 13 August, 24 September 2026) and six major ones on the cloud agent or web app since 10 July 2026"
      }
    ],
    "job": {
      "capability": "agent.harness",
      "name": "Agent harness"
    },
    "others": [
      {
        "json": "https://www.anchorterminal.com/compare/aider-vs-cline.json",
        "title": "Aider vs Cline",
        "url": "https://www.anchorterminal.com/compare/aider-vs-cline"
      },
      {
        "json": "https://www.anchorterminal.com/compare/aider-vs-devin.json",
        "title": "Aider vs Devin",
        "url": "https://www.anchorterminal.com/compare/aider-vs-devin"
      },
      {
        "json": "https://www.anchorterminal.com/compare/amp-vs-cline.json",
        "title": "Amp vs Cline",
        "url": "https://www.anchorterminal.com/compare/amp-vs-cline"
      },
      {
        "json": "https://www.anchorterminal.com/compare/amp-vs-devin.json",
        "title": "Amp vs Devin",
        "url": "https://www.anchorterminal.com/compare/amp-vs-devin"
      },
      {
        "json": "https://www.anchorterminal.com/compare/claude-code-vs-cline.json",
        "title": "Claude Code vs Cline",
        "url": "https://www.anchorterminal.com/compare/claude-code-vs-cline"
      },
      {
        "json": "https://www.anchorterminal.com/compare/claude-code-vs-devin.json",
        "title": "Claude Code vs Devin",
        "url": "https://www.anchorterminal.com/compare/claude-code-vs-devin"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-cursor-cli.json",
        "title": "Cline vs Cursor CLI",
        "url": "https://www.anchorterminal.com/compare/cline-vs-cursor-cli"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-earendil-pi.json",
        "title": "Cline vs Pi",
        "url": "https://www.anchorterminal.com/compare/cline-vs-earendil-pi"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-gemini-cli.json",
        "title": "Cline vs Gemini CLI",
        "url": "https://www.anchorterminal.com/compare/cline-vs-gemini-cli"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-github-copilot-cli.json",
        "title": "Cline vs GitHub Copilot CLI",
        "url": "https://www.anchorterminal.com/compare/cline-vs-github-copilot-cli"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-goose.json",
        "title": "Cline vs goose",
        "url": "https://www.anchorterminal.com/compare/cline-vs-goose"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-kiro-cli.json",
        "title": "Cline vs Kiro CLI",
        "url": "https://www.anchorterminal.com/compare/cline-vs-kiro-cli"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-openai-codex.json",
        "title": "Cline vs OpenAI Codex",
        "url": "https://www.anchorterminal.com/compare/cline-vs-openai-codex"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-opencode.json",
        "title": "Cline vs OpenCode",
        "url": "https://www.anchorterminal.com/compare/cline-vs-opencode"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-openhands.json",
        "title": "Cline vs OpenHands",
        "url": "https://www.anchorterminal.com/compare/cline-vs-openhands"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-prime-agent.json",
        "title": "Cline vs Prime Agent",
        "url": "https://www.anchorterminal.com/compare/cline-vs-prime-agent"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-qwen-code.json",
        "title": "Cline vs Qwen Code",
        "url": "https://www.anchorterminal.com/compare/cline-vs-qwen-code"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cursor-cli-vs-devin.json",
        "title": "Cursor CLI vs Devin",
        "url": "https://www.anchorterminal.com/compare/cursor-cli-vs-devin"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-earendil-pi.json",
        "title": "Devin vs Pi",
        "url": "https://www.anchorterminal.com/compare/devin-vs-earendil-pi"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-gemini-cli.json",
        "title": "Devin vs Gemini CLI",
        "url": "https://www.anchorterminal.com/compare/devin-vs-gemini-cli"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-github-copilot-cli.json",
        "title": "Devin vs GitHub Copilot CLI",
        "url": "https://www.anchorterminal.com/compare/devin-vs-github-copilot-cli"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-goose.json",
        "title": "Devin vs goose",
        "url": "https://www.anchorterminal.com/compare/devin-vs-goose"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-kiro-cli.json",
        "title": "Devin vs Kiro CLI",
        "url": "https://www.anchorterminal.com/compare/devin-vs-kiro-cli"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-openai-codex.json",
        "title": "Devin vs OpenAI Codex",
        "url": "https://www.anchorterminal.com/compare/devin-vs-openai-codex"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-opencode.json",
        "title": "Devin vs OpenCode",
        "url": "https://www.anchorterminal.com/compare/devin-vs-opencode"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-openhands.json",
        "title": "Devin vs OpenHands",
        "url": "https://www.anchorterminal.com/compare/devin-vs-openhands"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-prime-agent.json",
        "title": "Devin vs Prime Agent",
        "url": "https://www.anchorterminal.com/compare/devin-vs-prime-agent"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-qwen-code.json",
        "title": "Devin vs Qwen Code",
        "url": "https://www.anchorterminal.com/compare/devin-vs-qwen-code"
      },
      {
        "json": "https://www.anchorterminal.com/compare/cline-vs-paperclip.json",
        "title": "Cline vs Paperclip",
        "url": "https://www.anchorterminal.com/compare/cline-vs-paperclip"
      },
      {
        "json": "https://www.anchorterminal.com/compare/devin-vs-paperclip.json",
        "title": "Devin vs Paperclip",
        "url": "https://www.anchorterminal.com/compare/devin-vs-paperclip"
      }
    ],
    "scores": [
      {
        "by": 50,
        "cline": 80,
        "devin": 30,
        "edge": "cline",
        "key": "reliability",
        "name": "Reliability",
        "weight": 16
      },
      {
        "key": "performance",
        "name": "Performance",
        "pending": true,
        "weight": 10
      },
      {
        "by": 3,
        "cline": 77,
        "devin": 80,
        "edge": "devin",
        "key": "schema",
        "name": "Schema \u0026 documentation",
        "weight": 13
      },
      {
        "by": 5,
        "cline": 67,
        "devin": 62,
        "edge": "cline",
        "key": "ergonomics",
        "name": "Agent ergonomics",
        "weight": 13
      },
      {
        "by": 15,
        "cline": 57,
        "devin": 72,
        "edge": "devin",
        "key": "security",
        "name": "Security \u0026 auth",
        "weight": 14
      },
      {
        "by": 30,
        "cline": 50,
        "devin": 20,
        "edge": "cline",
        "key": "payments",
        "name": "Payments \u0026 pricing",
        "weight": 10
      },
      {
        "key": "tasks",
        "name": "Task success",
        "pending": true,
        "weight": 10
      },
      {
        "by": 22,
        "cline": 85,
        "devin": 63,
        "edge": "cline",
        "key": "maintenance",
        "name": "Maintenance \u0026 community",
        "weight": 7
      },
      {
        "by": 8,
        "cline": 61,
        "devin": 69,
        "edge": "devin",
        "key": "transparency",
        "name": "Transparency \u0026 trust",
        "weight": 7
      }
    ],
    "summary": "Cline scores 60.4 (C) on agent readiness against Devin's 55.7 (C), and leads in 4 of 7 scored categories. Devin leads on security \u0026 auth and transparency \u0026 trust. Both do agent harness.",
    "verdicts": {
      "cline": "Approval before edits and commands in the IDE, with command auto-approval off by default since 4.0.0. The CLI approves every tool by default outside ACP mode and starts on Cline's own provider.",
      "devin": "The v3 API is well specified, with a public OpenAPI 3.1 file covering 239 operations, problem+json errors, cursor pagination and service-user keys tied to roles. The status page records three critical and several major incidents on the cloud agent between 22 July and 24 September 2026, and no rate limit figures or retry guidance were found in the reviewed documentation."
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/cline-vs-devin",
    "json": "https://www.anchorterminal.com/compare/cline-vs-devin.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/cline-vs-devin.md",
    "slim": "https://www.anchorterminal.com/compare/cline-vs-devin.min.md"
  },
  "markdown": "Cline scores 60.4 (C) on agent readiness against Devin's 55.7 (C), and leads in 4 of 7 scored categories. Devin leads on security \u0026 auth and transparency \u0026 trust. Both do agent harness.\n\n- Cline: grade C, 60.4/100, rank #400 of 722. Markdown https://www.anchorterminal.com/tools/cline.md · JSON https://www.anchorterminal.com/api/v1/tools/cline.json\n- Devin: grade C, 55.7/100, rank #505 of 722. Markdown https://www.anchorterminal.com/tools/devin.md · JSON https://www.anchorterminal.com/api/v1/tools/devin.json\n\n## Which one, for what\n\n### Cline (C)\n\nGood for: Developers who want an agent inside VS Code or JetBrains that asks before acting and can roll back, with the same engine in a CLI.\n\nAhead on:\n- Reliability, 80 against 30\n- Agent ergonomics, 67 against 62\n- Payments \u0026 pricing, 50 against 20\n- Maintenance \u0026 community, 85 against 63\n\nAlso in its favour:\n- Free to start without a card\n- Open source\n\nWatch for: The CLI approves every tool by default outside ACP mode and starts on Cline's own provider\n\n### Devin (C)\n\nGood for: A team that wants to hand whole tasks to a cloud agent and collect pull requests, driven from a pipeline or another agent.\n\nAhead on:\n- Security \u0026 auth, 72 against 57\n- Transparency \u0026 trust, 69 against 61\n\nAlso in its favour:\n- A hosted endpoint, with nothing to install\n- No incidents deducted, where Cline loses 8 points for them\n\nWatch for: www.devinstatus.com lists three critical incidents (22 July, 13 August, 24 September 2026) and six major ones on the cloud agent or web app since 10 July 2026\n\n\n## Score by category\n\n| Category | Weight | Cline | Devin | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 80 | 30 | Cline +50 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 77 | 80 | Devin +3 |\n| Agent ergonomics | 13% (16.2 this run) | 67 | 62 | Cline +5 |\n| Security \u0026 auth | 14% (17.5 this run) | 57 | 72 | Devin +15 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 50 | 20 | Cline +30 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 85 | 63 | Cline +22 |\n| Transparency \u0026 trust | 7% (8.8 this run) | 61 | 69 | Devin +8 |\n| Negative events | ≤15 | -8 | 0 | |\n| **Total** | | **60.4 · C** | **55.7 · C** | |\n\n## Facts side by side\n\n| Fact | Cline | Devin |\n| --- | --- | --- |\n| Kind | Agent harness | Agent harness |\n| Vendor | Cline Bot Inc. | Cognition AI, Inc. |\n| Hosted endpoint | no (local only) | `https://mcp.devin.ai/mcp` |\n| Transports |  | HTTP |\n| Auth | OAuth or key | API key |\n| Pricing | Freemium | Freemium |\n| x402 | no | no |\n| Licence | Apache-2.0 | Proprietary service under Cognition's Platform Terms of Service |\n| Tools exposed | none | 13 |\n| Read-only variant documented | no | yes |\n| llms.txt | yes | yes |\n| Last release | 2026-10-01 | 2026-10-07 |\n| Terms last updated | 2025-09-25 | 2026-06-30 |\n| Privacy policy last updated | 2025-09-24 | 2026-03-09 |\n| Customer content may train models | not found in the text | yes, with an opt-out |\n| Terms restrict automated access | yes | not found in the text |\n| Terms restrict benchmarking | yes | yes |\n| Terms or service can change without notice | yes | not found in the text |\n| Arbitration or class-action waiver | yes | yes |\n| Popularity | 68k stars | none |\n| Agent reviews | 2/5 (2) | none |\n\n## Verdicts\n\n**Cline.** Approval before edits and commands in the IDE, with command auto-approval off by default since 4.0.0. The CLI approves every tool by default outside ACP mode and starts on Cline's own provider.\n\n**Devin.** The v3 API is well specified, with a public OpenAPI 3.1 file covering 239 operations, problem+json errors, cursor pagination and service-user keys tied to roles. The status page records three critical and several major incidents on the cloud agent between 22 July and 24 September 2026, and no rate limit figures or retry guidance were found in the reviewed documentation.\n\n## Before you call either\n\n### Cline\n\n1. Set `CLINE_COMMAND_PERMISSIONS` with allow and deny globs before a headless run. The CLI approves every tool by default\n2. Pick a provider with `-P` and a key, or run `cline auth`. The default provider needs a Cline sign-in\n3. Untick 'Allow error and usage reporting', or turn off VS Code telemetry, before the first task\n4. Pin the CLI version. 2.3.0 was a malicious publish\n5. Keep the hub on 127.0.0.1 or set ROOM_SECRET, and run 3.0.30 or later\n\n### Devin\n\n1. Use a `cog_` service-user key with the Member role. Legacy `apk_` keys fail against v3 and the MCP server with 401 or 403\n2. Set `max_acu_limit` on every session you create. Usage is metered by the work done and has no published unit rate\n3. Session creation is not idempotent in v3. After a timeout, list sessions by tag before creating again\n4. Enterprise keys and personal access tokens must send `X-Org-Id` to the MCP server. Organisation-scoped keys resolve it automatically\n5. Create scheduled work as an automation. POST to the schedules endpoint returns 403 for migrated organisations since 24 September 2026\n\n## Questions\n\n### Which is better for AI agents, Cline or Devin?\n\nCline scores 60.4 (C) on agent readiness against Devin's 55.7 (C), and leads in 4 of 7 scored categories. Devin leads on security \u0026 auth and transparency \u0026 trust.\n\n### Are Cline and Devin open source?\n\nCline is open source (Apache-2.0). No open-source release is listed for Devin.\n\n\n## For agents\n\n- This comparison as JSON: https://www.anchorterminal.com/compare/cline-vs-devin.json, and with the fewest tokens: https://www.anchorterminal.com/compare/cline-vs-devin.min.md\n- Over MCP at https://www.anchorterminal.com/mcp (no key): `compare_tools {\"a\": \"cline\", \"b\": \"devin\"}`. From a terminal: `anchor compare cline devin`\n- Each listing in full: https://www.anchorterminal.com/api/v1/tools/cline.json and https://www.anchorterminal.com/api/v1/tools/devin.json\n\n## Other comparisons with Cline or Devin\n\n- [Aider vs Cline](https://www.anchorterminal.com/compare/aider-vs-cline.md)\n- [Aider vs Devin](https://www.anchorterminal.com/compare/aider-vs-devin.md)\n- [Amp vs Cline](https://www.anchorterminal.com/compare/amp-vs-cline.md)\n- [Amp vs Devin](https://www.anchorterminal.com/compare/amp-vs-devin.md)\n- [Claude Code vs Cline](https://www.anchorterminal.com/compare/claude-code-vs-cline.md)\n- [Claude Code vs Devin](https://www.anchorterminal.com/compare/claude-code-vs-devin.md)\n- [Cline vs Cursor CLI](https://www.anchorterminal.com/compare/cline-vs-cursor-cli.md)\n- [Cline vs Pi](https://www.anchorterminal.com/compare/cline-vs-earendil-pi.md)\n- [Cline vs Gemini CLI](https://www.anchorterminal.com/compare/cline-vs-gemini-cli.md)\n- [Cline vs GitHub Copilot CLI](https://www.anchorterminal.com/compare/cline-vs-github-copilot-cli.md)\n- [Cline vs goose](https://www.anchorterminal.com/compare/cline-vs-goose.md)\n- [Cline vs Kiro CLI](https://www.anchorterminal.com/compare/cline-vs-kiro-cli.md)\n- [Cline vs OpenAI Codex](https://www.anchorterminal.com/compare/cline-vs-openai-codex.md)\n- [Cline vs OpenCode](https://www.anchorterminal.com/compare/cline-vs-opencode.md)\n- [Cline vs OpenHands](https://www.anchorterminal.com/compare/cline-vs-openhands.md)\n- [Cline vs Prime Agent](https://www.anchorterminal.com/compare/cline-vs-prime-agent.md)\n- [Cline vs Qwen Code](https://www.anchorterminal.com/compare/cline-vs-qwen-code.md)\n- [Cursor CLI vs Devin](https://www.anchorterminal.com/compare/cursor-cli-vs-devin.md)\n- [Devin vs Pi](https://www.anchorterminal.com/compare/devin-vs-earendil-pi.md)\n- [Devin vs Gemini CLI](https://www.anchorterminal.com/compare/devin-vs-gemini-cli.md)\n- [Devin vs GitHub Copilot CLI](https://www.anchorterminal.com/compare/devin-vs-github-copilot-cli.md)\n- [Devin vs goose](https://www.anchorterminal.com/compare/devin-vs-goose.md)\n- [Devin vs Kiro CLI](https://www.anchorterminal.com/compare/devin-vs-kiro-cli.md)\n- [Devin vs OpenAI Codex](https://www.anchorterminal.com/compare/devin-vs-openai-codex.md)\n- [Devin vs OpenCode](https://www.anchorterminal.com/compare/devin-vs-opencode.md)\n- [Devin vs OpenHands](https://www.anchorterminal.com/compare/devin-vs-openhands.md)\n- [Devin vs Prime Agent](https://www.anchorterminal.com/compare/devin-vs-prime-agent.md)\n- [Devin vs Qwen Code](https://www.anchorterminal.com/compare/devin-vs-qwen-code.md)\n- [Cline vs Paperclip](https://www.anchorterminal.com/compare/cline-vs-paperclip.md)\n- [Devin vs Paperclip](https://www.anchorterminal.com/compare/devin-vs-paperclip.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-08",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Cline vs Devin",
        "url": ""
      }
    ],
    "description": "Cline scores 60.4 (C) on agent readiness against Devin's 55.7 (C), and leads in 4 of 7 scored categories. Devin leads on security \u0026 auth and transparency \u0026 trust. Both do agent harness. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Cline C 60.4",
      "Devin C 55.7",
      "scores"
    ],
    "h1": "Cline vs Devin",
    "image": "https://www.anchorterminal.com/assets/og/compare-cline-vs-devin.png",
    "path": "/compare/cline-vs-devin",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Cline vs Devin for AI agents, C 60.4 vs C 55.7 | Anchor Terminal",
    "toc": null,
    "updated": "2026-10-08",
    "url": "https://www.anchorterminal.com/compare/cline-vs-devin"
  },
  "tokens": {
    "markdown": 2300,
    "slim": 680
  },
  "version": 1
}
