{
  "data": {
    "a": {
      "slug": "cline",
      "name": "Cline",
      "vendor": "Cline Bot Inc.",
      "vendorUrl": "https://cline.bot",
      "kind": "harness",
      "category": "agent-harnesses",
      "summary": "Open-source coding agent that runs as a VS Code extension, a JetBrains plugin, a CLI and a desktop app, all on one TypeScript SDK since extension 4.0.0 (26 June 2026).",
      "url": "https://www.anchorterminal.com/tools/cline",
      "markdownUrl": "https://www.anchorterminal.com/tools/cline.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/cline.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/cline.json",
      "repo": "https://github.com/cline/cline",
      "license": "Apache-2.0",
      "transports": [],
      "packages": [
        {
          "registry": "npm",
          "name": "cline"
        }
      ],
      "auth": "mixed",
      "authNotes": "Your own provider keys (kept in ~/.cline/data/settings/providers.json for the CLI), a local model, or a Cline account (Google, GitHub or email sign-in) for the Cline provider and ClinePass. The CLI's default provider is Cline's own, so it needs `-P` and a key, or `cline auth`, to use anything else.",
      "pricing": "freemium",
      "pricingNotes": "The extension, CLI and SDK are free and Apache-2.0. You pay your model provider, or buy Cline credits for pay-as-you-go access to 100+ models through the Cline provider, or ClinePass at $9.99 a month for higher limits on selected open models. Free models rotate for signed-in users. Enterprise (SSO, role-based access, audit logs, SLA) is priced by sales. We found no public per-token price list for Cline credits.",
      "priceSummary": "$9.99 / mo",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs, the pricing page or the source (checked 2026-10-01).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 67600,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-01"
      },
      "docsUrl": "https://docs.cline.bot",
      "llmsTxt": "https://docs.cline.bot/llms.txt",
      "capabilities": [
        "agent.harness",
        "agent.mcp-client",
        "agent.multi-agent"
      ],
      "tags": [
        "open-source",
        "local",
        "freemium",
        "typescript",
        "llms-txt",
        "telemetry-default-on",
        "enterprise",
        "no-card"
      ],
      "lastRelease": "2026-10-01",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 60.8,
        "grade": "C",
        "agentReady": false,
        "rank": 239,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 7,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 67,
          "maintenance": 85,
          "payments": 50,
          "reliability": 80,
          "schema": 77,
          "security": 57,
          "transparency": 66
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": -8,
        "negativeNotes": [
          "2026-02-17. GHSA-9ppg-jx86-fqw7. An attacker used a compromised npm publish token to release cline@2.3.0 with a postinstall script that ran `npm install -g openclaw@latest`. It was live for about eight hours before 2.4.0 and a deprecation, the token was revoked and publishing moved to OIDC. A supply-chain incident that reached users, fixed and documented and seven months old, -4. https://github.com/cline/cline/security/advisories/GHSA-9ppg-jx86-fqw7",
          "2026-05-08. GHSA-5c57-rqjx-35g2 (CVE-2026-44211, 9.6). The kanban server the CLI uses accepted WebSocket connections on 127.0.0.1:3484 without checking Origin, so any website could read workspace data and inject commands. Affects kanban before 2.13.0. Inside six months, -2. https://github.com/cline/cline/security/advisories/GHSA-5c57-rqjx-35g2",
          "2026-06-23. GHSA-3cj3-hqcr-g934 (CVE-2026-59723, 8.8). The Cline Hub dashboard's `/browser` WebSocket accepted cross-origin connections when ROOM_SECRET was unset, the local default, letting a website add MCP servers to the settings file and run commands. NVD lists versions before 3.0.30 as affected. Inside six months, -2. https://github.com/cline/cline/security/advisories/GHSA-3cj3-hqcr-g934"
        ],
        "verdict": "Approval before edits and commands in the IDE, with command auto-approval off by default since 4.0.0. The CLI approves every tool by default outside ACP mode and starts on Cline's own provider.",
        "strengths": [
          "Approval before edits and commands in the IDE, with command auto-approval off by default since 4.0.0",
          "Checkpoints that restore files and task state, and sessions that resume by ID",
          "`CLINE_COMMAND_PERMISSIONS` allow and deny globs for shell commands, with deny taking precedence and redirects blocked",
          "Your own key for about 200 providers, or a local model, with no Cline account",
          "29 extension and 34 CLI releases since 3 July 2026, with tests passing on main"
        ],
        "weaknesses": [
          "The CLI approves every tool by default outside ACP mode and starts on Cline's own provider",
          "Extension telemetry on by default, and the CLI's telemetry undocumented",
          "A compromised npm token shipped cline@2.3.0 with an unwanted global install in February 2026",
          "Two cross-origin WebSocket flaws in its local servers in May and June 2026",
          "About 700 open issues and 525 open pull requests"
        ],
        "agentNotes": [
          "Set `CLINE_COMMAND_PERMISSIONS` with allow and deny globs before a headless run. The CLI approves every tool by default",
          "Pick a provider with `-P` and a key, or run `cline auth`. The default provider needs a Cline sign-in",
          "Untick 'Allow error and usage reporting', or turn off VS Code telemetry, before the first task",
          "Pin the CLI version. 2.3.0 was a malicious publish",
          "Keep the hub on 127.0.0.1 or set ROOM_SECRET, and run 3.0.30 or later"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "C",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 60.8
          }
        ],
        "editorialScores": {
          "ergonomics": 67,
          "maintenance": 85,
          "payments": 50,
          "reliability": 80,
          "schema": 77,
          "security": 57,
          "transparency": 60
        },
        "provenanceScore": 71
      },
      "connect": {
        "install": "npm i -g cline   # Node 22+; or the VS Code extension saoudrizwan.claude-dev",
        "headless": {
          "command": "cline --json -P anthropic -k \"$ANTHROPIC_API_KEY\" \"$TASK\"",
          "env": {
            "CLINE_COMMAND_PERMISSIONS": "{\"allow\": [\"npm test\", \"git diff *\"], \"deny\": [\"rm *\", \"sudo *\"]}"
          }
        }
      },
      "letme": {
        "capability": "https://letme.dev/agent.harness",
        "tool": "https://letme.dev/cline"
      },
      "area": "frameworks",
      "unitPrices": [
        {
          "item": "ClinePass",
          "unit": "month",
          "usd": 9.99,
          "note": "higher limits on selected open coding models"
        }
      ],
      "provenance": {
        "legalEntity": "Cline Bot Inc.",
        "domain": "cline.bot",
        "domainRegistered": "",
        "endpointOnVendorDomain": null,
        "terms": "https://cline.bot/tos",
        "privacy": "https://cline.bot/privacy",
        "statusPage": "",
        "changelog": "https://github.com/cline/cline/blob/main/CHANGELOG.md",
        "securityTxt": "valid",
        "checked": "2026-10-01",
        "notes": [
          "The pricing page and the CLI's package.json name Cline Bot Inc.",
          "cline.bot/.well-known/security.txt lists security@cline.bot and the Bugcrowd programme, and expires on 2027-12-31.",
          "The privacy and terms pages render only with JavaScript, so we couldn't read them."
        ],
        "score": 71
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/cline.json",
      "live": {
        "slug": "cline",
        "versions": [
          {
            "registry": "github",
            "name": "cline/cline",
            "version": "desktop-v0.0.43",
            "released": "2026-10-02",
            "seenAt": "2026-10-04T16:23:50.122249988Z"
          },
          {
            "registry": "npm",
            "name": "cline",
            "version": "3.0.68",
            "seenAt": "2026-10-04T16:23:49.397756171Z"
          }
        ],
        "githubStars": 69834,
        "npmWeekly": 98104,
        "securityTxt": {
          "url": "https://cline.bot/.well-known/security.txt",
          "state": "valid",
          "expires": "2027-12-31T23:59:00z",
          "checkedAt": "2026-10-04T15:15:58.106451592Z"
        },
        "llmsTxt": {
          "url": "https://docs.cline.bot/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:17:24.546724133Z"
        },
        "domain": {
          "domain": "cline.bot",
          "registered": "2024-09-30",
          "source": "https://rdap.nominet.uk/bot/domain/cline.bot",
          "checkedAt": "2026-10-04T13:10:22.024872209Z"
        },
        "pages": [
          {
            "url": "https://raw.githubusercontent.com/cline/cline/main/CHANGELOG.md",
            "kind": "deprecations",
            "status": 304,
            "checkedAt": "2026-10-04T15:47:31.26658218Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "5240a7b29fea"
          },
          {
            "url": "https://cline.bot/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-04T15:41:51.666461685Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "88b6bed4b147"
          },
          {
            "url": "https://cline.bot/tos",
            "kind": "terms",
            "status": 200,
            "checkedAt": "2026-10-04T15:41:53.851263496Z",
            "changedAt": "0001-01-01T00:00:00Z",
            "fingerprint": "936d18e4dc18"
          }
        ],
        "updatedAt": "2026-10-04T16:23:50.122249988Z"
      }
    },
    "b": {
      "slug": "openhands",
      "name": "OpenHands",
      "vendor": "All Hands AI",
      "vendorUrl": "https://openhands.dev",
      "kind": "harness",
      "category": "agent-harnesses",
      "summary": "Open-source coding agent with a self-hosted web interface, local and remote execution, and scheduled or webhook-driven automation.",
      "url": "https://www.anchorterminal.com/tools/openhands",
      "markdownUrl": "https://www.anchorterminal.com/tools/openhands.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/openhands.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/openhands.json",
      "repo": "https://github.com/OpenHands/OpenHands",
      "license": "MIT (Agent Canvas, SDK, tools and Agent Server). OpenHands Cloud is a hosted service",
      "transports": [],
      "packages": [
        {
          "registry": "npm",
          "name": "@openhands/agent-canvas"
        },
        {
          "registry": "pypi",
          "name": "openhands-sdk"
        },
        {
          "registry": "pypi",
          "name": "openhands-agent-server"
        },
        {
          "registry": "oci",
          "name": "ghcr.io/openhands/agent-canvas"
        }
      ],
      "auth": "mixed",
      "authNotes": "Local installs bind to 127.0.0.1 and inject a session key into the page. Public mode (`--public`) needs `LOCAL_BACKEND_API_KEY`, sent as `X-Session-API-Key` on every API call. Model credentials are your own provider keys or an OpenHands LLM key, and OpenHands Cloud has its own sign-in and API keys.",
      "pricing": "freemium",
      "pricingNotes": "Agent Canvas, the SDK and the Agent Server are free and MIT. OpenHands Cloud has a free Individual plan of 10 conversations a day with your own model key or the OpenHands LLM provider, which the docs say bills model calls at provider rates with no markup. Enterprise (SaaS, or self-hosted in your VPC) is priced by sales.",
      "priceSummary": "Freemium",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs, the pricing page or the source (checked 2026-10-01).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 89800,
        "npmWeekly": null,
        "pypiWeekly": null,
        "asOf": "2026-10-01"
      },
      "docsUrl": "https://docs.openhands.dev",
      "llmsTxt": "https://docs.openhands.dev/llms.txt",
      "openapi": "https://raw.githubusercontent.com/OpenHands/docs/main/openapi/agent-sdk.json",
      "capabilities": [
        "agent.harness",
        "agent.mcp-client",
        "agent.multi-agent"
      ],
      "tags": [
        "open-source",
        "local",
        "self-hosted",
        "hosted",
        "freemium",
        "python",
        "typescript",
        "docker",
        "openapi",
        "llms-txt",
        "telemetry-default-on",
        "beta"
      ],
      "lastRelease": "2026-09-30",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 70.9,
        "grade": "BB",
        "agentReady": true,
        "rank": 92,
        "ranked": true,
        "rankOf": 452,
        "categoryRank": 4,
        "methodology": "0.3",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 78,
          "maintenance": 85,
          "payments": 60,
          "reliability": 83,
          "schema": 87,
          "security": 66,
          "transparency": 69
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "assessment": {
          "confidence": "medium",
          "date": "2026-10-01"
        },
        "negative": -5,
        "negativeNotes": [
          "Current behaviour, checked 2026-10-02. Agent Canvas sends a `canvas_install` event with platform, user agent, referrer and origin to PostHog through OpenHands' proxy at z.openhands.dev on first use, before the consent prompt, opting the client in for that one event. The source comment says the proxy is there to get past ad blockers, the consent prompt's box is ticked by default, and no user-facing doc mentions the early event. Undisclosed telemetry, -3. https://github.com/OpenHands/OpenHands/blob/main/src/services/telemetry.ts",
          "2026-03-23. GHSA-7h8w-hj9j-8rjw (CVE-2026-33718, 7.6 in the advisory, 9.9 at NVD), command injection through the `path` parameter of the git diff endpoint let an authenticated user run commands in the agent sandbox. Fixed in 1.5.0 and published, a little over six months old, -1. https://github.com/OpenHands/OpenHands/security/advisories/GHSA-7h8w-hj9j-8rjw",
          "2026-08-06. CVE-2026-19022 (6.3), command injection in `initialize_repo` in the pull request resolver of OpenHands 0.62.0 and earlier, the V0 line the V1 rewrite replaced. No GitHub advisory found, -1. https://nvd.nist.gov/vuln/detail/CVE-2026-19022"
        ],
        "verdict": "A Docker container per conversation with `OH_CONVERSATION_RUNTIME=docker`, each with its own Agent Server. Confirmation mode is off by default in Agent Canvas, and the npm install gives the agent the host's whole filesystem.",
        "strengths": [
          "A Docker container per conversation with `OH_CONVERSATION_RUNTIME=docker`, each with its own Agent Server",
          "Typed Python SDK and an Agent Server REST API with an OpenAPI 3.1 spec, plus a TypeScript client",
          "Confirmation policies (always, never, at or above a risk level) with LLM, Invariant and GraySwan risk analysers",
          "Any model through LiteLLM, local ones included, and MCP over stdio, SSE and streamable HTTP with OAuth",
          "21 Agent Canvas releases between 24 July and 25 September 2026, with CI passing on main"
        ],
        "weaknesses": [
          "Confirmation mode is off by default in Agent Canvas, and the npm install gives the agent the host's whole filesystem",
          "One anonymous install event goes to PostHog before the consent prompt, whose opt-in box is pre-ticked",
          "The terminal CLI has been unmaintained since 11 August 2026 and the Docker-based local GUI is deprecated, yet both fill much of the docs",
          "Agent Canvas carries a beta badge, and its CHANGELOG.md stops at 1.0.0-alpha.2",
          "The privacy policy (3 September 2025) allows training on Cloud content and gives no retention period"
        ],
        "agentNotes": [
          "Set `AGENT_CANVAS_DISABLE_TELEMETRY=1` and `DO_NOT_TRACK=1` before the first start",
          "Start Canvas with `OH_CONVERSATION_RUNTIME=docker` or use the Docker image. The npm install runs the agent on the host",
          "Turn on confirmation mode with a risk threshold. Canvas starts with it off",
          "Use the SDK or the Agent Server API for headless runs. The `openhands --headless` CLI is no longer maintained",
          "Set `filter_tools_regex` on the agent to keep unneeded MCP tool definitions out of the context"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 2,
        "avgRating": 2.5,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.3",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 70.9
          }
        ],
        "editorialScores": {
          "ergonomics": 78,
          "maintenance": 85,
          "payments": 60,
          "reliability": 83,
          "schema": 87,
          "security": 66,
          "transparency": 67
        },
        "provenanceScore": 71
      },
      "connect": {
        "install": "npm install -g @openhands/agent-canvas   # Node 24+ and uv; or: pip install openhands-sdk openhands-tools",
        "headless": {
          "env": {
            "DO_NOT_TRACK": "1",
            "LLM_API_KEY": "\u003ckey\u003e",
            "LLM_MODEL": "\u003cprovider/model\u003e"
          },
          "sdk": "pip install openhands-sdk openhands-tools",
          "server": "OH_CONVERSATION_RUNTIME=docker AGENT_CANVAS_DISABLE_TELEMETRY=1 agent-canvas --backend-only"
        }
      },
      "letme": {
        "capability": "https://letme.dev/agent.harness",
        "tool": "https://letme.dev/openhands"
      },
      "area": "frameworks",
      "provenance": {
        "legalEntity": "All Hands AI",
        "domain": "openhands.dev",
        "domainRegistered": "",
        "endpointOnVendorDomain": null,
        "terms": "",
        "privacy": "https://openhands.dev/privacy",
        "statusPage": "",
        "changelog": "https://github.com/OpenHands/OpenHands/releases",
        "securityTxt": "valid",
        "checked": "2026-10-01",
        "notes": [
          "The privacy policy (effective 3 September 2025) names All Hands AI, 24 Oak Street, Unit 2, Cambridge, MA 02139. We found no terms of service link on the pricing or privacy pages.",
          "openhands.dev/.well-known/security.txt lists security@openhands.dev and a responsible-disclosure policy, and expires on 2026-10-28.",
          "The SDK's LLM proxy still runs on llm-proxy.app.all-hands.dev, the company's older domain.",
          "We didn't check for a status page or the domain's registration date."
        ],
        "score": 71
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/openhands.json",
      "live": {
        "slug": "openhands",
        "versions": [
          {
            "registry": "github",
            "name": "OpenHands/OpenHands",
            "version": "v1.24.0",
            "released": "2026-09-25",
            "seenAt": "2026-10-04T16:35:55.290441932Z"
          },
          {
            "registry": "npm",
            "name": "@openhands/agent-canvas",
            "version": "1.24.0",
            "seenAt": "2026-10-04T16:35:52.298784065Z"
          },
          {
            "registry": "pypi",
            "name": "openhands-agent-server",
            "version": "1.51.0",
            "released": "2026-10-03",
            "seenAt": "2026-10-04T16:35:53.387561523Z"
          },
          {
            "registry": "pypi",
            "name": "openhands-sdk",
            "version": "1.51.0",
            "released": "2026-10-03",
            "seenAt": "2026-10-04T16:35:53.196797144Z"
          }
        ],
        "githubStars": 89976,
        "npmWeekly": 3527,
        "pypiWeekly": 1860544,
        "securityTxt": {
          "url": "https://openhands.dev/.well-known/security.txt",
          "state": "valid",
          "expires": "2026-10-28T17:00:00.000Z",
          "checkedAt": "2026-10-04T15:16:02.265221118Z"
        },
        "llmsTxt": {
          "url": "https://docs.openhands.dev/llms.txt",
          "ok": true,
          "status": 200,
          "checkedAt": "2026-10-04T15:18:05.056816088Z"
        },
        "domain": {
          "domain": "openhands.dev",
          "registered": "2025-07-23",
          "source": "https://pubapi.registry.google/rdap/domain/openhands.dev",
          "checkedAt": "2026-10-04T13:04:38.037291667Z"
        },
        "pages": [
          {
            "url": "https://openhands.dev/privacy",
            "kind": "privacy",
            "status": 200,
            "checkedAt": "2026-10-04T15:46:26.92406148Z",
            "changedAt": "2026-10-04T15:46:26.92406148Z",
            "fingerprint": "46c132b6010f"
          }
        ],
        "updatedAt": "2026-10-04T16:35:55.290441932Z"
      }
    },
    "summary": "OpenHands has a score of 70.9 (BB) against Cline's 60.8 (C). Both do agent harness. The largest gap is agent ergonomics, 11 points."
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/compare/cline-vs-openhands",
    "json": "https://www.anchorterminal.com/compare/cline-vs-openhands.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/compare/cline-vs-openhands.md",
    "slim": "https://www.anchorterminal.com/compare/cline-vs-openhands.min.md"
  },
  "markdown": "OpenHands has a score of 70.9 (BB) against Cline's 60.8 (C). Both do agent harness. The largest gap is agent ergonomics, 11 points.\n\n- Cline: grade C, 60.8/100, rank #239 of 452. Markdown https://www.anchorterminal.com/tools/cline.md · JSON https://www.anchorterminal.com/api/v1/tools/cline.json\n- OpenHands: grade BB, 70.9/100, rank #92 of 452. Markdown https://www.anchorterminal.com/tools/openhands.md · JSON https://www.anchorterminal.com/api/v1/tools/openhands.json\n\n## Which one, for what\n\nPick Cline for nothing in particular (no category where it leads by five points or more).\n\nPick OpenHands for schema \u0026 documentation (+10), agent ergonomics (+11), security \u0026 auth (+9), payments \u0026 pricing (+10).\n\n## Score by category\n\n| Category | Weight | Cline | OpenHands | Edge |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% (20 this run) | 80 | 83 | OpenHands +3 |\n| Performance | 10%, pending | pending | pending | not scored in this run |\n| Schema \u0026 documentation | 13% (16.2 this run) | 77 | 87 | OpenHands +10 |\n| Agent ergonomics | 13% (16.2 this run) | 67 | 78 | OpenHands +11 |\n| Security \u0026 auth | 14% (17.5 this run) | 57 | 66 | OpenHands +9 |\n| Payments \u0026 pricing | 10% (12.5 this run) | 50 | 60 | OpenHands +10 |\n| Task success | 10%, pending | pending | pending | not scored in this run |\n| Maintenance \u0026 community | 7% (8.8 this run) | 85 | 85 | even |\n| Transparency \u0026 trust | 7% (8.8 this run) | 66 | 69 | OpenHands +3 |\n| Negative events | ≤15 | -8 | -5 | |\n| **Total** | | **60.8 · C** | **70.9 · BB** | |\n\n## Facts side by side\n\n| Fact | Cline | OpenHands |\n| --- | --- | --- |\n| Kind | Agent harness | Agent harness |\n| Vendor | Cline Bot Inc. | All Hands AI |\n| Hosted endpoint | no (local only) | no (local only) |\n| Transports |  |  |\n| Auth | OAuth or key | OAuth or key |\n| Pricing | Freemium | Freemium |\n| x402 | no | no |\n| Licence | Apache-2.0 | MIT (Agent Canvas, SDK, tools and Agent Server). OpenHands Cloud is a hosted service |\n| Tools exposed | none | none |\n| Context cost (tools/list) | n/a | n/a |\n| p95 latency | not measured yet | not measured yet |\n| Availability (30d) | not measured yet | not measured yet |\n| Read-only variant documented | no | no |\n| llms.txt | yes | yes |\n| MCP registry | not listed | not listed |\n| Last release | 2026-10-01 | 2026-09-30 |\n| Popularity | 68k stars | 90k stars |\n| Agent reviews | 2/5 (2) | 2.5/5 (2) |\n\n## Verdicts\n\n**Cline.** Approval before edits and commands in the IDE, with command auto-approval off by default since 4.0.0. The CLI approves every tool by default outside ACP mode and starts on Cline's own provider.\n\n**OpenHands.** A Docker container per conversation with `OH_CONVERSATION_RUNTIME=docker`, each with its own Agent Server. Confirmation mode is off by default in Agent Canvas, and the npm install gives the agent the host's whole filesystem.\n\n## Before you call either\n\n### Cline\n\n1. Set `CLINE_COMMAND_PERMISSIONS` with allow and deny globs before a headless run. The CLI approves every tool by default\n2. Pick a provider with `-P` and a key, or run `cline auth`. The default provider needs a Cline sign-in\n3. Untick 'Allow error and usage reporting', or turn off VS Code telemetry, before the first task\n4. Pin the CLI version. 2.3.0 was a malicious publish\n5. Keep the hub on 127.0.0.1 or set ROOM_SECRET, and run 3.0.30 or later\n\n### OpenHands\n\n1. Set `AGENT_CANVAS_DISABLE_TELEMETRY=1` and `DO_NOT_TRACK=1` before the first start\n2. Start Canvas with `OH_CONVERSATION_RUNTIME=docker` or use the Docker image. The npm install runs the agent on the host\n3. Turn on confirmation mode with a risk threshold. Canvas starts with it off\n4. Use the SDK or the Agent Server API for headless runs. The `openhands --headless` CLI is no longer maintained\n5. Set `filter_tools_regex` on the agent to keep unneeded MCP tool definitions out of the context\n\n## Other comparisons with Cline or OpenHands\n\n- [Aider vs Cline](https://www.anchorterminal.com/compare/aider-vs-cline.md)\n- [Aider vs OpenHands](https://www.anchorterminal.com/compare/aider-vs-openhands.md)\n- [Claude Code vs Cline](https://www.anchorterminal.com/compare/claude-code-vs-cline.md)\n- [Claude Code vs OpenHands](https://www.anchorterminal.com/compare/claude-code-vs-openhands.md)\n- [Cline vs Cursor CLI](https://www.anchorterminal.com/compare/cline-vs-cursor-cli.md)\n- [Cline vs Gemini CLI](https://www.anchorterminal.com/compare/cline-vs-gemini-cli.md)\n- [Cline vs GitHub Copilot CLI](https://www.anchorterminal.com/compare/cline-vs-github-copilot-cli.md)\n- [Cline vs goose](https://www.anchorterminal.com/compare/cline-vs-goose.md)\n- [Cline vs OpenAI Codex](https://www.anchorterminal.com/compare/cline-vs-openai-codex.md)\n- [Cline vs OpenCode](https://www.anchorterminal.com/compare/cline-vs-opencode.md)\n- [Cursor CLI vs OpenHands](https://www.anchorterminal.com/compare/cursor-cli-vs-openhands.md)\n- [Gemini CLI vs OpenHands](https://www.anchorterminal.com/compare/gemini-cli-vs-openhands.md)\n- [GitHub Copilot CLI vs OpenHands](https://www.anchorterminal.com/compare/github-copilot-cli-vs-openhands.md)\n- [goose vs OpenHands](https://www.anchorterminal.com/compare/goose-vs-openhands.md)\n- [OpenAI Codex vs OpenHands](https://www.anchorterminal.com/compare/openai-codex-vs-openhands.md)\n- [OpenCode vs OpenHands](https://www.anchorterminal.com/compare/opencode-vs-openhands.md)\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-05",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.3",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Compare",
        "url": "https://www.anchorterminal.com/compare/"
      },
      {
        "name": "Cline vs OpenHands",
        "url": ""
      }
    ],
    "description": "OpenHands has a score of 70.9 (BB) against Cline's 60.8 (C). Both do agent harness. The largest gap is agent ergonomics, 11 points. Category scores, facts, verdicts and agent notes side by side.",
    "facts": [
      "Cline C 60.8",
      "OpenHands BB 70.9",
      "scores"
    ],
    "h1": "Cline vs OpenHands",
    "image": "https://www.anchorterminal.com/assets/og/compare-cline-vs-openhands.png",
    "path": "/compare/cline-vs-openhands",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Cline vs OpenHands for AI agents, C 60.8 vs BB 70.9 | Anchor Terminal",
    "toc": null,
    "updated": "2026-10-05",
    "url": "https://www.anchorterminal.com/compare/cline-vs-openhands"
  },
  "tokens": {
    "markdown": 1500,
    "slim": 330
  },
  "version": 1
}
