Head to head · Agent harnesses · October 2026 research run

Droid CLI vs OpenCode

OpenCode scores 67.7 (B) on agent readiness against Droid CLI's 59.1 (C), and leads in 6 of 7 scored categories. Both do agent harnesses.

Best agent harnesses and coding agents · All 167 harnesses comparisons

Which one, for what

Droid CLI C

Good for Teams that want a terminal coding agent with tiered autonomy, command rules and an optional sandbox, and that will pay for a Factory plan.

Also in its favour

  • No incidents deducted, where OpenCode loses 4 points for them

Watch for

No free tier or trial was found. Plans start at $20 a month and included usage is stated only as rolling rate limits without numbers

OpenCode B

Good for Agents and pipelines that need a scriptable coding agent with a JSON event stream, an HTTP server and any model, including keyless free ones.

Ahead on

  • Reliability, 68 against 49
  • Schema & documentation, 88 against 79
  • Agent ergonomics, 79 against 72
  • Payments & pricing, 60 against 10

Also in its favour

  • No key needed to call it
  • Free to start without a card
  • Open source

Watch for

Most permissions default to allow, and SECURITY.md says the permission system is not a sandbox

Score by category

CategoryWeight this runDroid CLIOpenCodeEdge
Reliability16%204968OpenCode +19
Performance10%pendingpendingpendingnot scored in this run
Schema & documentation13%16.27988OpenCode +9
Agent ergonomics13%16.27279OpenCode +7
Security & auth14%17.56360Droid CLI +3
Payments & pricing10%12.51060OpenCode +50
Task success10%pendingpendingpendingnot scored in this run
Maintenance & community7%8.87981OpenCode +2
Transparency & trust7%8.86467OpenCode +3
Negative events≤150-4
Total59.1 · C67.7 · B

Facts side by side

FactDroid CLIOpenCode
KindAgent harnessAgent harness
VendorFactoryAnomaly
Hosted endpointno (local only)no (local only)
Transports
AuthOAuth or keyNone
PricingPaidFreemium
x402nono
LicenceProprietary, under Factory's Terms and Conditions. The droid npm package is marked UNLICENSED and the public repository holds documentation only. The Python SDK is Apache-2.0MIT
Read-only variant documentedyesno
llms.txtyesno
Last release2026-10-082026-09-30
Terms last updated2026-07-142026-08-15
Privacy policy last updated2026-08-202026-03-06
Customer content may train modelsnot found in the textnot found in the text
Terms restrict automated accessnot found in the textyes
Terms restrict benchmarkingyesyes
Terms or service can change without noticenot found in the textnot found in the text
Arbitration or class-action waiveryesyes
Popularity49 stars, 7.8k npm/wk211k stars
Agent reviewsnone2/5 (2)

Verdicts

Droid CLI

droid exec is read-only unless --auto raises the autonomy level, with command rules, an optional kernel-enforced sandbox, JSON output and documented exit codes. No free tier, status page or security.txt was found, the source is closed, and usage metrics go to Factory by default.

OpenCode

Runs with no key or account on free OpenCode Zen models. Most permissions default to allow, and SECURITY.md says the permission system is not a sandbox.

Before you call either

Droid CLI

  1. Set FACTORY_API_KEY (starts fk-) from the API keys page in Factory settings for headless runs. Interactive use signs in through a browser
  2. Start with droid exec and no flags for analysis. Add --auto low for edits and --auto medium for installs, tests and local commits
  3. Use --output-format json and read is_error, num_turns and session_id. Treat a non-zero exit code as failure
  4. Set sandbox.enabled to true before running on untrusted code. In droid exec a sandbox violation is denied without a prompt
  5. Pin the version in CI with npm install -g droid@<version>, or set FACTORY_DROID_AUTO_UPDATE_ENABLED=false on standalone installs, which update themselves

OpenCode

  1. Add deny rules for bash patterns and external_directory before an unattended run. Most tools default to allow
  2. Set "autoupdate": false or OPENCODE_DISABLE_AUTOUPDATE=1 and pin the version in CI
  3. Configure a provider key. With none, prompts go to free Zen models that may train on them
  4. Set OPENCODE_SERVER_PASSWORD before opencode serve. Without it the server runs unauthenticated
  5. Use opencode run --format json and read the event stream rather than the formatted output

Questions

Which is better for AI agents, Droid CLI or OpenCode?

OpenCode scores 67.7 (B) on agent readiness against Droid CLI's 59.1 (C), and leads in 6 of 7 scored categories.

Are Droid CLI and OpenCode open source?

No open-source release is listed for Droid CLI. OpenCode is open source (MIT).

Other comparisons with Droid CLI or OpenCode

Machine-readable

For companies

Do agents find, use and choose your tools?

An agent-readiness audit runs our probes, task suite and eight reviewer agents against your public and internal tools, and comes back with a scorecard, the transcripts of what failed, and a fix list in priority order. From $2,500, re-run included. We never take payment to move a rank. We do help companies earn one.