Head to head · Agent multi agent · October 2026 research run
Paperclip vs Qwen Code
Qwen Code scores 72.4 (BB) on agent readiness against Paperclip's 59 (C), and leads in 4 of 7 scored categories. Paperclip leads on security & auth. Both do agent multi agent.
Which one, for what
Good for Someone running several coding or operations agents who wants one place for tasks, budgets, approvals and history across harnesses.
Ahead on
- Security & auth, 64 against 53
Watch for
claude_local defaults dangerouslySkipPermissions to true and codex_local defaults to bypassing approvals and the sandbox, with agents running on the host
Qwen Code BB
Good for Developers and CI jobs that want an open-source harness tied to no single model vendor, with run budgets and SDKs.
Ahead on
- Schema & documentation, 91 against 81
- Agent ergonomics, 85 against 70
- Maintenance & community, 88 against 78
Also in its favour
- Agent-ready, a grade of BB or better
- No incidents deducted, where Paperclip loses 10 points for them
Watch for
The default approval mode is Auto, where an LLM classifier approves tool calls, and sandboxing and folder trust are both off by default
Score by category
| Category | Weight this run | Paperclip | Qwen Code | Edge |
|---|---|---|---|---|
| Reliability | 16%20 | 66 | 69 | Qwen Code +3 |
| Performance | 10%pending | pending | pending | not scored in this run |
| Schema & documentation | 13%16.2 | 81 | 91 | Qwen Code +10 |
| Agent ergonomics | 13%16.2 | 70 | 85 | Qwen Code +15 |
| Security & auth | 14%17.5 | 64 | 53 | Paperclip +11 |
| Payments & pricing | 10%12.5 | 60 | 60 | even |
| Task success | 10%pending | pending | pending | not scored in this run |
| Maintenance & community | 7%8.8 | 78 | 88 | Qwen Code +10 |
| Transparency & trust | 7%8.8 | 65 | 63 | Paperclip +2 |
| Negative events | ≤15 | -10 | 0 | |
| Total | 59 · C | 72.4 · BB |
Facts side by side
| Fact | Paperclip | Qwen Code |
|---|---|---|
| Kind | Agent harness | Agent harness |
| Vendor | Paperclip Labs, Inc. | Alibaba (Qwen team) |
| Hosted endpoint | no (local only) | no (local only) |
| Transports | ||
| Auth | OAuth or key | API key |
| Pricing | Free | Free |
| x402 | no | no |
| Licence | MIT | Apache-2.0 |
| Read-only variant documented | no | no |
| llms.txt | yes | yes |
| Last release | 2026-10-05 | 2026-10-05 |
| Terms last updated | 2026-07-23 | 2026-10-01 |
| Privacy policy last updated | 2026-07-23 | 2026-10-01 |
| Customer content may train models | yes, with an opt-out | not found in the text |
| Terms restrict automated access | not found in the text | not found in the text |
| Terms restrict benchmarking | not found in the text | not found in the text |
| Terms or service can change without notice | not found in the text | not found in the text |
| Arbitration or class-action waiver | yes | not found in the text |
| Popularity | 99k stars, 60k npm/wk | 28k stars, 105k npm/wk |
Verdicts
Paperclip
Board approvals, budgets with a hard stop and an activity log sit above whichever harnesses do the work, and eleven stable versions shipped in 90 days. The Claude Code and Codex adapters skip permission prompts and the sandbox by default, and twelve security advisories, five of them critical, have been published since April 2026.
Qwen Code
Apache-2.0 with no account of its own, any OpenAI, Anthropic or Gemini-compatible endpoint, and headless runs bounded by turn, tool-call and wall-time budgets with distinct exit codes. Out of the box, Auto mode lets an LLM classifier approve tool calls, with the sandbox and folder trust both off. Usage statistics are on by default.
Before you call either
Paperclip
- Set
PAPERCLIP_TELEMETRY_DISABLED=1orDO_NOT_TRACK=1before the first start. Telemetry is on by default - Set
dangerouslySkipPermissionsanddangerouslyBypassApprovalsAndSandboxto false on agents that read untrusted input, or run them in a sandbox provider - Install with Node.js 24.11 or newer, and install and sign in to each harness CLI on the host first. Paperclip assumes they are there
- Use
--bind lanor--bind tailnetat onboarding for anything beyond one machine. The defaultlocal_trustedmode treats every request as the board admin - Treat 409 on task checkout as owned by another agent and pick different work. The API docs say not to retry
Qwen Code
- Pass
--approval-modeon every run. The settings default isauto, and one docs page says headless runs default to asking, so don't rely on either - Add
--max-session-turns,--max-wall-timeand--max-tool-calls. All three are unlimited by default. Exit 53 is the turn limit and 55 a budget --yolodoesn't turn on a sandbox. Add--sandbox, or on Linux settools.executionSandboxwithnetworkset toclosed- Set
QWEN_USAGE_STATISTICS_ENABLED=falseto stop usage statistics - Authenticate with
OPENAI_API_KEY,OPENAI_BASE_URLandOPENAI_MODELin CI. The browser sign-in is discontinued
Questions
Which is better for AI agents, Paperclip or Qwen Code?
Qwen Code scores 72.4 (BB) on agent readiness against Paperclip's 59 (C), and leads in 4 of 7 scored categories. Paperclip leads on security & auth.
Are Paperclip and Qwen Code open source?
Yes. Paperclip is open source (MIT). Qwen Code is open source (Apache-2.0).
Other comparisons with Paperclip or Qwen Code
- Aider vs Qwen Code
- Amp vs Qwen Code
- Claude Code vs Qwen Code
- Cline vs Qwen Code
- Cursor CLI vs Qwen Code
- Devin vs Qwen Code
- Pi vs Qwen Code
- Gemini CLI vs Qwen Code
- GitHub Copilot CLI vs Qwen Code
- goose vs Qwen Code
- Kiro CLI vs Qwen Code
- OpenAI Codex vs Qwen Code
- OpenCode vs Qwen Code
- OpenHands vs Qwen Code
- Prime Agent vs Qwen Code
- Amp vs Paperclip
- Claude Code vs Paperclip
- Cline vs Paperclip
- Devin vs Paperclip
- Gemini CLI vs Paperclip
- GitHub Copilot CLI vs Paperclip
- goose vs Paperclip
- Kiro CLI vs Paperclip
- OpenCode vs Paperclip
- OpenHands vs Paperclip
- Paperclip vs Prime Agent
Machine-readable
- This page as Markdown
/compare/paperclip-vs-qwen-code.md· slim.min.md· JSON.json(or sendAccept: text/markdown) - Each listing in full
/api/v1/tools/paperclip.json·/api/v1/tools/qwen-code.json - From a terminal
anchor compare paperclip qwen-code(the CLI) - Over MCP
compare_tools {"a": "paperclip", "b": "qwen-code"}at/mcp, no key