{
  "data": {
    "similar": [
      {
        "grade": "BB",
        "json": "https://www.anchorterminal.com/tools/goose.json",
        "name": "goose",
        "score": 73.9,
        "shared": [
          "agent.harness",
          "agent.mcp-client",
          "agent.multi-agent"
        ],
        "slug": "goose"
      },
      {
        "grade": "BB",
        "json": "https://www.anchorterminal.com/tools/qwen-code.json",
        "name": "Qwen Code",
        "score": 72.4,
        "shared": [
          "agent.harness",
          "agent.mcp-client",
          "agent.multi-agent"
        ],
        "slug": "qwen-code"
      },
      {
        "grade": "BB",
        "json": "https://www.anchorterminal.com/tools/gemini-cli.json",
        "name": "Gemini CLI",
        "score": 72,
        "shared": [
          "agent.harness",
          "agent.mcp-client",
          "agent.multi-agent"
        ],
        "slug": "gemini-cli"
      },
      {
        "grade": "BB",
        "json": "https://www.anchorterminal.com/tools/openhands.json",
        "name": "OpenHands",
        "score": 70.8,
        "shared": [
          "agent.harness",
          "agent.mcp-client",
          "agent.multi-agent"
        ],
        "slug": "openhands"
      },
      {
        "grade": "B",
        "json": "https://www.anchorterminal.com/tools/opencode.json",
        "name": "OpenCode",
        "score": 67.7,
        "shared": [
          "agent.harness",
          "agent.mcp-client",
          "agent.multi-agent"
        ],
        "slug": "opencode"
      },
      {
        "grade": "C",
        "json": "https://www.anchorterminal.com/tools/claude-code.json",
        "name": "Claude Code",
        "score": 61.9,
        "shared": [
          "agent.harness",
          "agent.mcp-client",
          "agent.multi-agent"
        ],
        "slug": "claude-code"
      }
    ],
    "tool": {
      "slug": "kilo-code-cli",
      "name": "Kilo Code CLI",
      "vendor": "Kilo Code Inc.",
      "vendorUrl": "https://kilo.ai",
      "kind": "harness",
      "category": "agent-harnesses",
      "summary": "Open-source coding agent for the terminal, forked from opencode and built from the same repository as Kilo's VS Code and JetBrains extensions. It runs with your own provider key, a local model or the Kilo Gateway.",
      "url": "https://www.anchorterminal.com/tools/kilo-code-cli",
      "markdownUrl": "https://www.anchorterminal.com/tools/kilo-code-cli.md",
      "slimMarkdownUrl": "https://www.anchorterminal.com/tools/kilo-code-cli.min.md",
      "jsonUrl": "https://www.anchorterminal.com/api/v1/tools/kilo-code-cli.json",
      "repo": "https://github.com/Kilo-Org/kilocode",
      "license": "MIT",
      "transports": [],
      "packages": [
        {
          "registry": "npm",
          "name": "@kilocode/cli"
        },
        {
          "registry": "npm",
          "name": "@kilocode/sdk"
        }
      ],
      "auth": "mixed",
      "authNotes": "Your own provider key in `~/.config/kilo/kilo.jsonc` or the environment, a local model, or a Kilo account through `kilo auth login` for the Kilo Gateway and its free models. `kilo serve` runs unauthenticated unless `KILO_SERVER_PASSWORD` is set.",
      "pricing": "freemium",
      "pricingNotes": "The CLI is free and MIT-licensed, and needs no Kilo account with your own key or a local model. Kilo Gateway credits are billed at provider rates with a 5 per cent fee on credit purchases. Kilo Pass starts at $19 a month, Teams is $15 a user a month and Enterprise is quoted. The pricing page says the free tier needs no card.",
      "priceSummary": "$19 / mo",
      "where": "local",
      "x402": {
        "level": "no",
        "evidence": "No x402, MPP or L402 in the docs, the pricing page or the README (checked 2026-10-08).",
        "endpoints": []
      },
      "toolCount": null,
      "popularity": {
        "githubStars": 27539,
        "npmWeekly": 32804,
        "pypiWeekly": null,
        "asOf": "2026-10-08"
      },
      "docsUrl": "https://kilo.ai/docs/code-with-ai/platforms/cli",
      "llmsTxt": "https://kilo.ai/docs/llms.txt",
      "capabilities": [
        "agent.harness",
        "agent.mcp-client",
        "agent.multi-agent"
      ],
      "tags": [
        "harness",
        "coding-agent",
        "cli",
        "open-source",
        "typescript",
        "mcp",
        "llms-txt",
        "telemetry-default-on",
        "freemium",
        "no-card",
        "local"
      ],
      "lastRelease": "2026-10-07",
      "graded": true,
      "anchor": {
        "graded": true,
        "score": 75.4,
        "grade": "BB",
        "agentReady": true,
        "rank": 47,
        "ranked": true,
        "rankOf": 842,
        "categoryRank": 1,
        "methodology": "0.4",
        "run": "2026-10-01",
        "scores": {
          "ergonomics": 72,
          "maintenance": 87,
          "payments": 50,
          "reliability": 85,
          "schema": 90,
          "security": 66,
          "transparency": 76
        },
        "pending": [
          "performance",
          "tasks"
        ],
        "breakdown": [
          {
            "key": "reliability",
            "name": "Reliability",
            "weight": 16,
            "effectiveWeight": 20,
            "score": 85,
            "points": 17,
            "reason": "Local-package reading. `@kilocode/cli` on npm, a Homebrew tap, an AUR package, an install script and release binaries for Linux, macOS and Windows on x64 and arm64, with baseline and musl builds named (20). Public CI, and the 40 most recent completed workflow runs on main on 8 October 2026 all succeeded, the test, typecheck and VS Code test workflows among them (25). 448 open issues and 147 open pull requests, a workflow that closes issues after 60 quiet days and pull requests after 30, and open reports from 7 October of a turn that hangs after the loop exits (#14876) and of exhausted 503 retries ending a run with no visible error (#14877) (15). The CLI changelog is generated by Changesets with Minor and Patch headings and no dates or breaking-change headings, and the end of the fallback to `.opencode` configuration is recorded in the docs, not under a version (10). 7.8.8, past 1.0 (15)."
          },
          {
            "key": "performance",
            "name": "Performance",
            "weight": 10,
            "effectiveWeight": 0,
            "pending": true,
            "points": 0,
            "reason": "Pending. Latency is measured per call by our probes, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until the first probe window closes."
          },
          {
            "key": "schema",
            "name": "Schema \u0026 documentation",
            "weight": 13,
            "effectiveWeight": 16.25,
            "score": 90,
            "points": 14.63,
            "reason": "Framework reading. A JSON Schema for `kilo.jsonc` at `https://app.kilo.ai/config.json`, an OpenAPI file for the `kilo serve` API at `packages/sdk/openapi.json` and a CLI reference generated from the command definitions (25). `llms.txt` on kilo.ai and on the docs, the second listing a raw Markdown address for every page (10). The sandboxing page says when to use the sandbox, what it does not protect and how it differs from permissions (16). Permissions are `allow`, `ask` or `deny` with glob rules, `sandbox.network` and `--format` are enums, though the schema served on 8 October had no `sandbox` key (13). Config and CI samples and exit codes 0, 1 and 124, but we found no reference for the records `--format json` writes (11). A versioned changelog and dated GitHub releases (15)."
          },
          {
            "key": "ergonomics",
            "name": "Agent ergonomics",
            "weight": 13,
            "effectiveWeight": 16.25,
            "score": 72,
            "points": 11.7,
            "reason": "Framework reading, adapted to a harness driven by a pipeline. Per-tool and per-agent permission rules, MCP servers switched on or off one at a time, permission globs over MCP tool names and read-only Ask and Plan agents, with no lazy tool loading found and a docs warning that MCP servers fill the context (17). Exit code 124 is documented for a timeout and a `doom_loop` check stops repeated failures, but `kilo run` lists no flag for a turn, time or cost limit (11). Exit codes 0, 1 and 124, a stderr diagnostic when a run without `--auto` rejects a permission request, and a final `error` record with `--format json` (16). `--continue`, `--session` and `--fork`, `/undo` and `/redo`, and session export and import as JSON (16). `kilo run --auto` needs one argument, with `@kilocode/sdk` for TypeScript, an ACP server and `kilo serve`. We found no second-language SDK on a registry (12)."
          },
          {
            "key": "security",
            "name": "Security \u0026 auth",
            "weight": 14,
            "effectiveWeight": 17.5,
            "score": 66,
            "points": 11.55,
            "reason": "Harness reading of the framework checklist. 30 for what leaves the machine by default, 20 for approvals and sandboxing, 15 for prompt-injection posture, 15 for audit and 20 for the security programme. Telemetry is on by default and goes to PostHog in the United States, the source links the machine identifier to the account email after a Kilo sign-in, and it is turned off with `experimental.openTelemetry` or `KILO_TELEMETRY_LEVEL`. Provider keys stay on the machine (14). Shell commands ask by default outside a built-in allow list, reads of `.env` files and paths outside the project ask, and edits inside the project run without asking. An operating-system sandbox (Seatbelt on macOS, Bubblewrap on Linux, none on Windows) limits writes and blocks the network, refuses to run when it can't be enforced, and is off by default. `--auto` approves everything not explicitly denied (15). The sandboxing page covers prompt injection and its limits, project config can't weaken the sandbox, and `{env:VAR}` is resolved only in trusted config (11). Session export, `kilo stats` and OTLP export of traces and logs, with audit logs on the Enterprise plan (12). A valid security.txt (expires 2026-12-31), a disclosure policy that cites HackerOne's standards and safe harbour, CodeQL in CI and no published repository advisories, while SECURITY.md still says the CLI has no sandbox (14)."
          },
          {
            "key": "payments",
            "name": "Payments \u0026 pricing",
            "weight": 10,
            "effectiveWeight": 12.5,
            "score": 50,
            "points": 6.25,
            "reason": "No payment protocol (0). Scored on Kilo's paid options, as with Cline. Plan prices are public (Kilo Pass from $19 a month, Teams $15 a user a month, Enterprise by quote) and the gateway bills provider rates plus a 5 per cent fee on credit purchases, but the pricing page carries no per-token list (10). The CLI is MIT-licensed and free, and the pricing page says the free tier needs no card (20). Your own provider key or a local model works with no Kilo account, so an agent can install and run it without a sign-up (20)."
          },
          {
            "key": "tasks",
            "name": "Task success",
            "weight": 10,
            "effectiveWeight": 0,
            "pending": true,
            "points": 0,
            "reason": "Pending. Task success needs the category task suites run through each tool, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until then. A data provider's data-quality score is published on its listing now and becomes half of this category when it's scored."
          },
          {
            "key": "maintenance",
            "name": "Maintenance \u0026 community",
            "weight": 7,
            "effectiveWeight": 8.75,
            "score": 87,
            "points": 7.61,
            "reason": "7.8.8 on 7 October 2026 (30). 37 stable releases since 10 July 2026, JetBrains tags aside (20). The newest issues carry area and triage labels from automation, but the 15 newest open issues had no or one comment each on 8 October, against 448 open issues and 147 open pull requests (15). `@kilocode/sdk` and `@kilocode/plugin` are at 7.8.8 with the CLI, and the VS Code extension ships from the same release workflow (13). CI, CodeQL and Dependabot security updates run, with version updates switched off because most dependencies arrive through merges from opencode (9)."
          },
          {
            "key": "transparency",
            "name": "Transparency \u0026 trust",
            "weight": 7,
            "effectiveWeight": 8.75,
            "score": 76,
            "points": 6.65,
            "note": "editorial 61, provenance 90",
            "reason": "MIT, with opencode's copyright kept in the licence file (30). The privacy policy (29 May 2026) names Kilo Code Inc. as controller, says data is stored in the United States and lists Stripe, OpenRouter, model providers, AppsFlyer and Sentry, but it doesn't mention the CLI's PostHog telemetry. PRIVACY.md in the repository is dated March 2025 and is silent on telemetry too. The terms (30 September 2026) are a contract with Anaconda, Inc. and grant a perpetual licence to use uploaded Customer Data to improve the services (13). `kilo console` is marked deprecated with no removal date, and updated terms apply after 30 days. No written deprecation policy found (8). The docs say telemetry is on by default and name the opt-out key in two places, without listing what is collected or where it goes (10)."
          }
        ],
        "assessment": {
          "date": "2026-10-08",
          "basis": "public evidence",
          "confidence": "medium",
          "notes": {
            "ergonomics": "Framework reading, adapted to a harness driven by a pipeline. Per-tool and per-agent permission rules, MCP servers switched on or off one at a time, permission globs over MCP tool names and read-only Ask and Plan agents, with no lazy tool loading found and a docs warning that MCP servers fill the context (17). Exit code 124 is documented for a timeout and a `doom_loop` check stops repeated failures, but `kilo run` lists no flag for a turn, time or cost limit (11). Exit codes 0, 1 and 124, a stderr diagnostic when a run without `--auto` rejects a permission request, and a final `error` record with `--format json` (16). `--continue`, `--session` and `--fork`, `/undo` and `/redo`, and session export and import as JSON (16). `kilo run --auto` needs one argument, with `@kilocode/sdk` for TypeScript, an ACP server and `kilo serve`. We found no second-language SDK on a registry (12).",
            "maintenance": "7.8.8 on 7 October 2026 (30). 37 stable releases since 10 July 2026, JetBrains tags aside (20). The newest issues carry area and triage labels from automation, but the 15 newest open issues had no or one comment each on 8 October, against 448 open issues and 147 open pull requests (15). `@kilocode/sdk` and `@kilocode/plugin` are at 7.8.8 with the CLI, and the VS Code extension ships from the same release workflow (13). CI, CodeQL and Dependabot security updates run, with version updates switched off because most dependencies arrive through merges from opencode (9).",
            "payments": "No payment protocol (0). Scored on Kilo's paid options, as with Cline. Plan prices are public (Kilo Pass from $19 a month, Teams $15 a user a month, Enterprise by quote) and the gateway bills provider rates plus a 5 per cent fee on credit purchases, but the pricing page carries no per-token list (10). The CLI is MIT-licensed and free, and the pricing page says the free tier needs no card (20). Your own provider key or a local model works with no Kilo account, so an agent can install and run it without a sign-up (20).",
            "reliability": "Local-package reading. `@kilocode/cli` on npm, a Homebrew tap, an AUR package, an install script and release binaries for Linux, macOS and Windows on x64 and arm64, with baseline and musl builds named (20). Public CI, and the 40 most recent completed workflow runs on main on 8 October 2026 all succeeded, the test, typecheck and VS Code test workflows among them (25). 448 open issues and 147 open pull requests, a workflow that closes issues after 60 quiet days and pull requests after 30, and open reports from 7 October of a turn that hangs after the loop exits (#14876) and of exhausted 503 retries ending a run with no visible error (#14877) (15). The CLI changelog is generated by Changesets with Minor and Patch headings and no dates or breaking-change headings, and the end of the fallback to `.opencode` configuration is recorded in the docs, not under a version (10). 7.8.8, past 1.0 (15).",
            "schema": "Framework reading. A JSON Schema for `kilo.jsonc` at `https://app.kilo.ai/config.json`, an OpenAPI file for the `kilo serve` API at `packages/sdk/openapi.json` and a CLI reference generated from the command definitions (25). `llms.txt` on kilo.ai and on the docs, the second listing a raw Markdown address for every page (10). The sandboxing page says when to use the sandbox, what it does not protect and how it differs from permissions (16). Permissions are `allow`, `ask` or `deny` with glob rules, `sandbox.network` and `--format` are enums, though the schema served on 8 October had no `sandbox` key (13). Config and CI samples and exit codes 0, 1 and 124, but we found no reference for the records `--format json` writes (11). A versioned changelog and dated GitHub releases (15).",
            "security": "Harness reading of the framework checklist. 30 for what leaves the machine by default, 20 for approvals and sandboxing, 15 for prompt-injection posture, 15 for audit and 20 for the security programme. Telemetry is on by default and goes to PostHog in the United States, the source links the machine identifier to the account email after a Kilo sign-in, and it is turned off with `experimental.openTelemetry` or `KILO_TELEMETRY_LEVEL`. Provider keys stay on the machine (14). Shell commands ask by default outside a built-in allow list, reads of `.env` files and paths outside the project ask, and edits inside the project run without asking. An operating-system sandbox (Seatbelt on macOS, Bubblewrap on Linux, none on Windows) limits writes and blocks the network, refuses to run when it can't be enforced, and is off by default. `--auto` approves everything not explicitly denied (15). The sandboxing page covers prompt injection and its limits, project config can't weaken the sandbox, and `{env:VAR}` is resolved only in trusted config (11). Session export, `kilo stats` and OTLP export of traces and logs, with audit logs on the Enterprise plan (12). A valid security.txt (expires 2026-12-31), a disclosure policy that cites HackerOne's standards and safe harbour, CodeQL in CI and no published repository advisories, while SECURITY.md still says the CLI has no sandbox (14).",
            "transparency": "MIT, with opencode's copyright kept in the licence file (30). The privacy policy (29 May 2026) names Kilo Code Inc. as controller, says data is stored in the United States and lists Stripe, OpenRouter, model providers, AppsFlyer and Sentry, but it doesn't mention the CLI's PostHog telemetry. PRIVACY.md in the repository is dated March 2025 and is silent on telemetry too. The terms (30 September 2026) are a contract with Anaconda, Inc. and grant a perpetual licence to use uploaded Customer Data to improve the services (13). `kilo console` is marked deprecated with no removal date, and updated terms apply after 30 days. No written deprecation policy found (8). The docs say telemetry is on by default and name the opt-out key in two places, without listing what is collected or where it goes (10)."
          },
          "sources": [
            {
              "what": "repository README (install, autonomous mode)",
              "url": "https://github.com/Kilo-Org/kilocode",
              "seen": "2026-10-08"
            },
            {
              "what": "CLI docs (permissions, autonomous mode, exit codes, telemetry)",
              "url": "https://kilo.ai/docs/code-with-ai/platforms/cli",
              "seen": "2026-10-08"
            },
            {
              "what": "CLI command reference (docs source)",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/code-with-ai/platforms/cli-reference.md",
              "seen": "2026-10-08"
            },
            {
              "what": "sandboxing (docs source)",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/getting-started/settings/sandboxing.md",
              "seen": "2026-10-08"
            },
            {
              "what": "auto-approving actions and defaults (docs source)",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/getting-started/settings/auto-approving-actions.md",
              "seen": "2026-10-08"
            },
            {
              "what": "settings page, telemetry default (docs source)",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/getting-started/settings/index.md",
              "seen": "2026-10-08"
            },
            {
              "what": "MCP in the CLI (docs source)",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/automate/mcp/using-in-cli.md",
              "seen": "2026-10-08"
            },
            {
              "what": "telemetry client source",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-telemetry/src/client.ts",
              "seen": "2026-10-08"
            },
            {
              "what": "default permission rules in source",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/packages/opencode/src/kilocode/agent/index.ts",
              "seen": "2026-10-08"
            },
            {
              "what": "CLI changelog",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/packages/opencode/CHANGELOG.md",
              "seen": "2026-10-08"
            },
            {
              "what": "releases (GitHub API)",
              "url": "https://api.github.com/repos/Kilo-Org/kilocode/releases?per_page=100",
              "seen": "2026-10-08"
            },
            {
              "what": "workflow runs on main (GitHub API)",
              "url": "https://api.github.com/repos/Kilo-Org/kilocode/actions/runs?branch=main\u0026status=completed\u0026per_page=40",
              "seen": "2026-10-08"
            },
            {
              "what": "open issues",
              "url": "https://github.com/Kilo-Org/kilocode/issues",
              "seen": "2026-10-08"
            },
            {
              "what": "repository security advisories (none published)",
              "url": "https://github.com/Kilo-Org/kilocode/security/advisories",
              "seen": "2026-10-08"
            },
            {
              "what": "SECURITY.md",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/SECURITY.md",
              "seen": "2026-10-08"
            },
            {
              "what": "PRIVACY.md",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/PRIVACY.md",
              "seen": "2026-10-08"
            },
            {
              "what": "auto-close workflow",
              "url": "https://github.com/Kilo-Org/kilocode/blob/main/.github/workflows/kilo-auto-close.yml",
              "seen": "2026-10-08"
            },
            {
              "what": "npm package",
              "url": "https://registry.npmjs.org/@kilocode/cli/latest",
              "seen": "2026-10-08"
            },
            {
              "what": "pricing",
              "url": "https://kilo.ai/pricing",
              "seen": "2026-10-08"
            },
            {
              "what": "terms of service",
              "url": "https://kilo.ai/terms",
              "seen": "2026-10-08"
            },
            {
              "what": "privacy policy",
              "url": "https://kilo.ai/privacy",
              "seen": "2026-10-08"
            },
            {
              "what": "security disclosure page",
              "url": "https://kilo.ai/security",
              "seen": "2026-10-08"
            },
            {
              "what": "security.txt",
              "url": "https://kilo.ai/.well-known/security.txt",
              "seen": "2026-10-08"
            },
            {
              "what": "llms.txt for the docs",
              "url": "https://kilo.ai/docs/llms.txt",
              "seen": "2026-10-08"
            },
            {
              "what": "config JSON Schema",
              "url": "https://app.kilo.ai/config.json",
              "seen": "2026-10-08"
            },
            {
              "what": "status page incidents",
              "url": "https://status.kilo.ai/api/v2/incidents.json",
              "seen": "2026-10-08"
            },
            {
              "what": "trust centre (trust.kilo.ai redirects here)",
              "url": "https://trust.anaconda.com/",
              "seen": "2026-10-08"
            },
            {
              "what": "domain registration (RDAP)",
              "url": "https://rdap.org/domain/kilo.ai",
              "seen": "2026-10-08"
            }
          ],
          "openQuestions": [
            "The terms of 30 September 2026 are a contract with Anaconda, Inc. on behalf of itself and affiliates including Kilo Code Inc., and trust.kilo.ai redirects to trust.anaconda.com. We didn't read an announcement of the relationship, and the lead named only Kilo Code as vendor",
            "Whether the SOC 2 Type 2 report listed on Anaconda's trust centre covers Kilo's services. The page has a Kilo Code section we couldn't read in full",
            "Which properties the PostHog events carry. We read the event names and the client, not every call site",
            "Whether Kilo runs a paid bug bounty. The security page cites HackerOne's standards and names no rewards",
            "Unchecked: the Kilo Pass Pro and Expert prices, which the pricing page draws by script. Only the $19 entry price was in the page text",
            "Unchecked: where exit code 124 is set. The docs list it and `kilo run` shows no timeout flag",
            "Unchecked: the first release date of `@kilocode/cli` on npm, and whether a Python SDK is published (the repository has a publish workflow for one)",
            "The repository is a fork of opencode. How quickly upstream security fixes reach Kilo releases wasn't measured"
          ]
        },
        "negative": 0,
        "verdict": "Shell commands ask before running by default, and an optional operating-system sandbox blocks writes outside the workspace and outbound network. Telemetry to PostHog is on by default and the sandbox is off, so an unattended `kilo run --auto` approves everything not denied unless both are configured first.",
        "bestFor": "Developers who want an open-source terminal agent with per-tool permission rules, an optional sandbox and a choice of provider, and the same engine in VS Code and JetBrains.",
        "strengths": [
          "Permission rules of `allow`, `ask` or `deny` per tool with glob patterns, and shell commands asking by default outside a built-in allow list",
          "A sandbox on macOS and Linux that limits writes, blocks network by default and refuses to run when it can't be enforced",
          "Project config can't weaken the sandbox or read environment variables through `{env:VAR}`",
          "Your own provider key or a local model works with no Kilo account",
          "37 stable releases since 10 July 2026, with the last 40 workflow runs on main passing on 8 October 2026"
        ],
        "weaknesses": [
          "Telemetry to PostHog is on by default, and the privacy policy and PRIVACY.md don't mention it",
          "The sandbox is off by default and unavailable on Windows",
          "`kilo run` lists no flag for a turn, time or cost limit",
          "The terms grant a perpetual licence to use uploaded Customer Data to improve Kilo's services",
          "SECURITY.md still says the CLI has no sandbox, and the changelog has no dates or breaking-change headings"
        ],
        "agentNotes": [
          "Set `sandbox.enabled` to true in the global `kilo.jsonc` before `kilo run --auto`. `--auto` approves every permission request not explicitly denied",
          "Set `experimental.openTelemetry` to false, or `KILO_TELEMETRY_LEVEL` to a value other than `all`, to stop telemetry",
          "Add needed hosts to `sandbox.allowed_hosts` in global config. MCP tool calls are unavailable while network restriction is on",
          "Without `--auto` a non-interactive run rejects every permission prompt and exits 1",
          "Put provider keys in global config or the environment. `{env:VAR}` in a project `kilo.json` is ignored"
        ],
        "metrics": {
          "kind": "local",
          "measured": false
        },
        "reviewCount": 0,
        "avgRating": 0,
        "history": [
          {
            "basis": "public evidence",
            "confidence": "medium",
            "grade": "BB",
            "methodology": "0.4",
            "pending": [
              "performance",
              "tasks"
            ],
            "run": "2026-10-01",
            "runLabel": "October 2026 research run",
            "score": 75.4
          }
        ],
        "editorialScores": {
          "ergonomics": 72,
          "maintenance": 87,
          "payments": 50,
          "reliability": 85,
          "schema": 90,
          "security": 66,
          "transparency": 61
        },
        "provenanceScore": 90
      },
      "connect": {
        "install": "npm install -g @kilocode/cli   # or: brew install Kilo-Org/tap/kilo",
        "headless": {
          "command": "kilo run --auto --format json \"$TASK\""
        }
      },
      "letme": {
        "capability": "https://letme.dev/agent.harness",
        "tool": "https://letme.dev/kilo-code-cli"
      },
      "notable": [
        "`kilo run --auto` approves every permission request that no rule explicitly denies, and without `--auto` a non-interactive run rejects each request and exits 1 (https://kilo.ai/docs/code-with-ai/platforms/cli)",
        "The sandbox is off by default, limits writes to the workspace and blocks outbound network when on, and has no Windows backend (https://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/getting-started/settings/sandboxing.md)",
        "Telemetry is on by default and is turned off with `experimental.openTelemetry` set to false (https://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/getting-started/settings/index.md)",
        "The telemetry client posts to PostHog at us.i.posthog.com and links the machine identifier to the account email after sign-in (https://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-telemetry/src/client.ts)",
        "The terms are a contract with Anaconda, Inc. on behalf of itself and affiliates including Kilo Code Inc. (https://kilo.ai/terms)",
        "The CLI is a fork of opencode, and the licence file keeps opencode's 2025 copyright beside Kilo Code's (https://github.com/Kilo-Org/kilocode/blob/main/LICENSE)"
      ],
      "area": "frameworks",
      "details": [
        {
          "label": "Interfaces",
          "value": "Terminal CLI and TUI, `kilo serve` HTTP server, ACP server (`kilo acp`), TypeScript SDK. The same repository ships the VS Code extension and JetBrains plugin"
        },
        {
          "label": "Install",
          "value": "npm, pnpm, bun, an install script, a Homebrew tap, AUR, and release binaries for Linux, macOS and Windows"
        },
        {
          "label": "Models",
          "value": "Your own provider keys, local models, or the Kilo Gateway, which the vendor says carries 500+ models"
        },
        {
          "label": "Approvals",
          "value": "`allow`, `ask` or `deny` per tool with glob rules. Shell commands ask outside a built-in allow list, edits in the project run without asking, `.env` reads and outside paths ask"
        },
        {
          "label": "Sandbox",
          "value": "Off by default. Seatbelt on macOS and Bubblewrap on Linux, write limits plus `sandbox.network` deny with `sandbox.allowed_hosts`. None on Windows"
        },
        {
          "label": "MCP client",
          "value": "Local (stdio) and remote (HTTP) servers under `mcp` in `kilo.json`, OAuth through `kilo mcp auth`, permission globs over tool names"
        },
        {
          "label": "Headless",
          "value": "`kilo run` with `--auto`, `--format json`, `--continue`, `--session` and `--fork`. Exit codes 0, 1 and 124"
        },
        {
          "label": "Agents",
          "value": "Code, Plan, Ask and Debug, custom agents, and subagents"
        },
        {
          "label": "Telemetry",
          "value": "PostHog, on by default. Off with `experimental.openTelemetry` false or `KILO_TELEMETRY_LEVEL`. Optional OTLP export when `OTEL_EXPORTER_OTLP_ENDPOINT` is set"
        },
        {
          "label": "Releases in 90 days",
          "value": "37 stable (10 July to 8 October 2026)"
        }
      ],
      "unitPrices": [
        {
          "item": "Kilo Pass, entry tier",
          "unit": "month",
          "usd": 19,
          "note": "monthly model credits with bonus credits, optional"
        },
        {
          "item": "Teams plan",
          "unit": "seat-month",
          "usd": 15,
          "note": "model use billed separately at provider rates"
        }
      ],
      "provenance": {
        "legalEntity": "Kilo Code Inc. (the terms are a contract with Anaconda, Inc. on behalf of itself and its affiliates, including Kilo Code Inc.)",
        "domain": "kilo.ai",
        "domainRegistered": "2017-12-16",
        "endpointOnVendorDomain": null,
        "terms": "https://kilo.ai/terms",
        "privacy": "https://kilo.ai/privacy",
        "statusPage": "https://status.kilo.ai",
        "changelog": "https://github.com/Kilo-Org/kilocode/blob/main/packages/opencode/CHANGELOG.md",
        "securityTxt": "valid",
        "checked": "2026-10-08",
        "notes": [
          "The terms (last updated 30 September 2026) name the CLI among the services they cover and are made with Anaconda, Inc. The privacy policy (29 May 2026) names Kilo Code Inc. as data controller.",
          "kilo.ai/.well-known/security.txt lists security@kilo.ai and the policy at kilo.ai/security, names the CLI in scope and expires on 2026-12-31.",
          "trust.kilo.ai redirects to trust.anaconda.com, which has a Kilo Code section.",
          "status.kilo.ai is a Statuspage site for the website, gateway and cloud platform. The CLI runs on the owner's machine.",
          "PRIVACY.md in the repository is a separate short policy for the CLI dated March 2025."
        ],
        "score": 90,
        "checks": [
          {
            "check": "Legal entity named",
            "value": "Kilo Code Inc. (the terms are a contract with Anaconda, Inc. on behalf of itself and its affiliates, including Kilo Code Inc.)",
            "points": 20,
            "max": 20,
            "state": "ok"
          },
          {
            "check": "Domain age",
            "value": "kilo.ai, registered 2017-12-16 (8 years)",
            "points": 11,
            "max": 15,
            "state": "part"
          },
          {
            "check": "Endpoint on the vendor's domain",
            "value": "no hosted endpoint",
            "points": 0,
            "max": 0,
            "state": "na"
          },
          {
            "check": "Terms of service",
            "value": "read, states 6 of the 7 things a reader expects, and has 2 clauses that cost points",
            "points": 5.1,
            "max": 10,
            "state": "part"
          },
          {
            "check": "Privacy policy",
            "value": "read, states 8 of the 8 things a reader expects",
            "points": 10,
            "max": 10,
            "state": "ok"
          },
          {
            "check": "Status page",
            "value": "status.kilo.ai",
            "points": 10,
            "max": 10,
            "state": "ok"
          },
          {
            "check": "Changelog",
            "value": "published",
            "points": 10,
            "max": 10,
            "state": "ok"
          },
          {
            "check": "security.txt",
            "value": "valid",
            "points": 10,
            "max": 10,
            "state": "ok"
          }
        ],
        "policies": [
          {
            "kind": "terms",
            "url": "https://kilo.ai/terms",
            "state": "read",
            "readAt": "2026-10-08",
            "statedDate": "2026-09-30",
            "words": 10676,
            "points": 5.1,
            "max": 10,
            "expected": [
              {
                "key": "terms.date",
                "label": "Gives the date it was last updated",
                "found": true,
                "quote": "Last updated September 30, 2026.",
                "says": "Last updated 2026-09-30"
              },
              {
                "key": "terms.law",
                "label": "Names the governing law or courts",
                "found": true,
                "quote": "These Terms are governed by the laws of the State of Delaware without regard to conflict of law principles.",
                "says": "The law of the State of Delaware"
              },
              {
                "key": "terms.liability",
                "label": "States a limit on its liability",
                "found": true,
                "quote": "…ANY PORTION OF THE SERVICE OR OTHERWISE UNDER THESE TERMS, WHETHER IN CONTRACT, TORT, OR OTHERWISE, IS LIMITED TO THE GREATER OF: (a) THE AMOUNT YOU HAVE PAID TO KILO FOR ACCESS TO AND USE OF THE SERVICE IN THE 6 MONTHS PRIOR TO THE EVENT OR CIRCUMSTANCE GIVING RISE TO THE CLAIM OR, IF GREATER, (b) USD 100.",
                "says": "Capped at the greater of USD 100 and the fees paid in the 6 months before the claim"
              },
              {
                "key": "terms.termination",
                "label": "Says how the agreement or account can be ended",
                "found": true,
                "quote": "Kilo may suspend or terminate access to the Services, including Fee-based portions of the Services, for any Account for which any amount is due but unpaid."
              },
              {
                "key": "terms.changes",
                "label": "Says how changes to the terms are announced",
                "found": true,
                "quote": "Notwithstanding any provision in these Terms to the contrary, Kilo agrees that if it makes any future change to this Arbitration Agreement (other than a change to the Notice Address) while you are a user of the Services, you may reject any such change by sending Kilo written notice within thirty (30) calendar days of…",
                "says": "Gives thirty calendar days of notice before a change"
              },
              {
                "key": "terms.use",
                "label": "Lists what users may not do",
                "found": true,
                "quote": "During a skipped Subscription Period, you will not be charged the Subscription Fee and will not receive Monthly Credits (defined in Section 4(F))."
              },
              {
                "key": "terms.sla",
                "label": "Refers to a service level or uptime commitment",
                "found": false
              }
            ],
            "toKnow": [
              {
                "key": "terms.automated",
                "label": "Restricts automated access",
                "found": true,
                "quote": "(vi) use any spider, crawler, scraper or other automatic device, process or software that intercepts, mines, scrapes, extracts or otherwise accesses the Services to monitor, extract, copy or collect information or data from or through the Services",
                "costsPoints": true
              },
              {
                "key": "terms.nonotice",
                "label": "Says the terms or the service can change without notice",
                "found": true,
                "quote": "Kilo reserves the right to modify or discontinue all or any portion of the Services at any time (including by limiting or discontinuing certain features of the Services), temporarily or permanently, without notice to you.",
                "costsPoints": true
              },
              {
                "key": "terms.cutoff",
                "label": "Says access can be ended without notice or for any reason",
                "found": true,
                "quote": "In addition, Kilo may, at its sole discretion, terminate these Terms or your Account on the Services, or suspend or terminate your access to the Services, at any time for any reason or no reason, with or without notice, and without any liability to you arising from such termination."
              },
              {
                "key": "terms.arbitration",
                "label": "Requires arbitration or waives class actions",
                "found": true,
                "quote": "You agree that, by entering into these Terms, you and Kilo are each waiving the right to a trial by jury or to participate in any class action or other representative proceeding."
              }
            ],
            "notes": [
              {
                "date": "2026-10-08",
                "text": "Uploading Customer Data, including source code, grants Kilo a perpetual, irrevocable, sublicensable and transferable licence to use it to run and improve the Services and Kilo's other products.",
                "quote": "you grant Kilo a perpetual, irrevocable, fully-paid, royalty-free, worldwide, sublicensable, transferable right and license to use such Customer Data to provide and improve the Services and Kilo’s other products and services, including for development, diagnostic and corrective purposes"
              },
              {
                "date": "2026-10-08",
                "text": "Customer Data sent to an AI model through the Services is used by that model under the model provider's own terms, which the customer is responsible for reviewing.",
                "quote": "You agree that any Customer Data provided to any AI Model through the Services will be used by the applicable AI Model in accordance with the applicable AI Model Terms."
              },
              {
                "date": "2026-10-08",
                "text": "Purchased Credits expire one year after purchase or when the account is deleted, whichever comes first, and the terms say Credits are non-refundable.",
                "quote": "All Credits must be used before the sooner of (i) one (1) year after the date of purchase or (ii) the deletion of your Account or other access to the Services."
              }
            ]
          },
          {
            "kind": "privacy",
            "url": "https://kilo.ai/privacy",
            "state": "read",
            "readAt": "2026-10-08",
            "statedDate": "2026-05-29",
            "words": 4169,
            "points": 10,
            "max": 10,
            "expected": [
              {
                "key": "privacy.date",
                "label": "Gives the date it was last updated",
                "found": true,
                "quote": "Last Updated: May 29, 2026",
                "says": "Last updated 2026-05-29"
              },
              {
                "key": "privacy.collected",
                "label": "Says what personal data is collected",
                "found": true,
                "quote": "and/or any of its affiliates (\"Kilo Code\" or \"we\" or \"us\") and describes how we process your personal information in connection with the Services, and how we collect information through the use of cookies and related technologies."
              },
              {
                "key": "privacy.retention",
                "label": "Says how long data is kept",
                "found": true,
                "quote": "errors, session replays, uptime data, and attachments are generally retained for 30 to 90 days, logs, profiles, crons, application metrics, and most spans are generally retained for 30 days, and some sampled span data may be retained for up to 13 months on Business or Enterprise plans.",
                "says": "Names a period of 90 days"
              },
              {
                "key": "privacy.processors",
                "label": "Says who else receives the data",
                "found": true,
                "quote": "If you are a customer of Kilo Code, this Privacy Policy does not apply to personal information or other data and information that we process on your behalf (if any) as your service provider (collectively, “Customer Data”)."
              },
              {
                "key": "privacy.sale",
                "label": "Says whether personal data is sold or shared for advertising",
                "found": true,
                "quote": "Kilo Code may sell, transfer or otherwise share some or all of our business or assets, including your personal information, in connection with a business transaction (or potential business transaction) such as a corporate divestiture, merger, consolidation, acquisition, reorganization or sale of assets, or in the even…"
              },
              {
                "key": "privacy.rights",
                "label": "Says what rights people have over their data",
                "found": true,
                "quote": "Right to withdraw consent at any time (if processing is based on consent)."
              },
              {
                "key": "privacy.contact",
                "label": "Gives a privacy contact",
                "found": true,
                "quote": "If you have any questions about this Privacy Policy or our privacy and security practices or you wish to make a complaint about our compliance with applicable privacy laws, contact us at support@kilo.ai.",
                "says": "support@kilo.ai"
              },
              {
                "key": "privacy.transfers",
                "label": "Says where data is transferred or stored",
                "found": true,
                "quote": "…we will take steps to ensure your personal information is adequately protected by safeguards such as Standard Contractual Clauses (“SCCs”) approved by the EU Commission or by the UK Government.",
                "says": "Relies on standard contractual clauses"
              }
            ],
            "notes": [
              {
                "date": "2026-10-08",
                "text": "The policy does not cover data Kilo processes on a customer's behalf as a service provider, which the separate terms of service govern.",
                "quote": "If you are a customer of Kilo Code, this Privacy Policy does not apply to personal information or other data and information that we process on your behalf (if any) as your service provider (collectively, “Customer Data”)."
              },
              {
                "date": "2026-10-08",
                "text": "Kilo reserves the right to publish a support or feedback request sent to it, and says it will not publish personal information with the request.",
                "quote": "If you send us a request (for example via a support email or via one of our feedback mechanisms), we reserve the right to publish your request in order to help us clarify or respond to your request or to help us support other users."
              }
            ]
          }
        ]
      },
      "pageJsonUrl": "https://www.anchorterminal.com/tools/kilo-code-cli.json",
      "live": {
        "slug": "kilo-code-cli",
        "vendorStatus": {
          "page": "https://status.kilo.ai",
          "indicator": "maintenance",
          "summary": "Service Under Maintenance",
          "checkedAt": "2026-10-09T09:25:16.387062715Z"
        },
        "updatedAt": "2026-10-09T09:25:16.387062715Z"
      }
    },
    "verify": {
      "accepts": "a page on kilo.ai or one of its subdomains, or the README of github.com/Kilo-Org/kilocode",
      "badgeUrl": "https://www.anchorterminal.com/badges/kilo-code-cli.svg",
      "body": {
        "slug": "kilo-code-cli",
        "url": "the page with the badge or the link"
      },
      "docs": "https://www.anchorterminal.com/builders/#verify",
      "effect": "none, it never changes a grade, rank or review",
      "endpoint": "https://www.anchorterminal.com/api/v1/verify",
      "listingUrl": "https://www.anchorterminal.com/tools/kilo-code-cli",
      "mcpTool": "verify_listing",
      "recheck": "weekly; two failed checks in a row and it lapses, a later pass restores it",
      "snippets": {
        "html": "\u003ca href=\"https://www.anchorterminal.com/tools/kilo-code-cli\"\u003e\u003cimg src=\"https://www.anchorterminal.com/badges/kilo-code-cli.svg\" alt=\"Kilo Code CLI on Anchor Terminal\" height=\"20\"\u003e\u003c/a\u003e",
        "markdown": "[![Kilo Code CLI on Anchor Terminal](https://www.anchorterminal.com/badges/kilo-code-cli.svg)](https://www.anchorterminal.com/tools/kilo-code-cli)",
        "link": "\u003ca href=\"https://www.anchorterminal.com/tools/kilo-code-cli\"\u003eKilo Code CLI on Anchor Terminal\u003c/a\u003e"
      }
    }
  },
  "kind": "anchor.page",
  "links": {
    "api": "https://www.anchorterminal.com/api/v1/index.json",
    "html": "https://www.anchorterminal.com/tools/kilo-code-cli",
    "json": "https://www.anchorterminal.com/tools/kilo-code-cli.json",
    "llms": "https://www.anchorterminal.com/llms.txt",
    "markdown": "https://www.anchorterminal.com/tools/kilo-code-cli.md",
    "slim": "https://www.anchorterminal.com/tools/kilo-code-cli.min.md"
  },
  "markdown": "## Overview\n\n**Grade BB · 75.4/100 · rank #47 of 842 · #1 in Agent harnesses · agent-ready · confidence medium**\n\n\n## Assessment\n\nShell commands ask before running by default, and an optional operating-system sandbox blocks writes outside the workspace and outbound network. Telemetry to PostHog is on by default and the sandbox is off, so an unattended `kilo run --auto` approves everything not denied unless both are configured first.\n\n## Facts\n\n| Field | Value |\n| --- | --- |\n| Vendor | Kilo Code Inc. (https://kilo.ai) |\n| Kind | Agent harness |\n| Category | Agent harnesses (https://www.anchorterminal.com/categories/agent-harnesses) |\n| Auth | OAuth or key · Your own provider key in `~/.config/kilo/kilo.jsonc` or the environment, a local model, or a Kilo account through `kilo auth login` for the Kilo Gateway and its free models. `kilo serve` runs unauthenticated unless `KILO_SERVER_PASSWORD` is set. |\n| Pricing | Freemium ($19 / mo) · The CLI is free and MIT-licensed, and needs no Kilo account with your own key or a local model. Kilo Gateway credits are billed at provider rates with a 5 per cent fee on credit purchases. Kilo Pass starts at $19 a month, Teams is $15 a user a month and Enterprise is quoted. The pricing page says the free tier needs no card. |\n| x402 | No · No x402, MPP or L402 in the docs, the pricing page or the README (checked 2026-10-08). |\n| Licence | MIT |\n| Packages | npm: `@kilocode/cli`; npm: `@kilocode/sdk` |\n| Source | https://github.com/Kilo-Org/kilocode |\n| Docs | https://kilo.ai/docs/code-with-ai/platforms/cli |\n| llms.txt | https://kilo.ai/docs/llms.txt |\n| Last release | 2026-10-07 |\n| GitHub stars | 27,539 (as of 2026-10-08) |\n| npm downloads / week | 32,804 |\n| Interfaces | Terminal CLI and TUI, `kilo serve` HTTP server, ACP server (`kilo acp`), TypeScript SDK. The same repository ships the VS Code extension and JetBrains plugin |\n| Install | npm, pnpm, bun, an install script, a Homebrew tap, AUR, and release binaries for Linux, macOS and Windows |\n| Models | Your own provider keys, local models, or the Kilo Gateway, which the vendor says carries 500+ models |\n| Approvals | `allow`, `ask` or `deny` per tool with glob rules. Shell commands ask outside a built-in allow list, edits in the project run without asking, `.env` reads and outside paths ask |\n| Sandbox | Off by default. Seatbelt on macOS and Bubblewrap on Linux, write limits plus `sandbox.network` deny with `sandbox.allowed_hosts`. None on Windows |\n| MCP client | Local (stdio) and remote (HTTP) servers under `mcp` in `kilo.json`, OAuth through `kilo mcp auth`, permission globs over tool names |\n| Headless | `kilo run` with `--auto`, `--format json`, `--continue`, `--session` and `--fork`. Exit codes 0, 1 and 124 |\n| Agents | Code, Plan, Ask and Debug, custom agents, and subagents |\n| Telemetry | PostHog, on by default. Off with `experimental.openTelemetry` false or `KILO_TELEMETRY_LEVEL`. Optional OTLP export when `OTEL_EXPORTER_OTLP_ENDPOINT` is set |\n| Releases in 90 days | 37 stable (10 July to 8 October 2026) |\n| Capabilities | agent.harness, agent.mcp-client, agent.multi-agent |\n| Tags | harness, coding-agent, cli, open-source, typescript, mcp, llms-txt, telemetry-default-on, freemium, no-card, local |\n| JSON | https://www.anchorterminal.com/api/v1/tools/kilo-code-cli.json |\n\n## Score breakdown (methodology v0.4, October 2026 research run)\n\nAssessed 2026-10-08 from public evidence against the published checklist (https://www.anchorterminal.com/benchmark/#checklist). Confidence: medium. Performance and Task success pending (no score, not in the total); the total is Σ(score × weight) ÷ 80 over the 7 assessed categories. \"This run\" is each category's share of the 100 points.\n\n| Category | Weight | This run | Score (0–100) | Points |\n| --- | --- | --- | --- | --- |\n| Reliability | 16% | 20 | 85 | 17.0 |\n| Performance | 10% | pending | pending | n/a |\n| Schema \u0026 documentation | 13% | 16.2 | 90 | 14.6 |\n| Agent ergonomics | 13% | 16.2 | 72 | 11.7 |\n| Security \u0026 auth | 14% | 17.5 | 66 | 11.6 |\n| Payments \u0026 pricing | 10% | 12.5 | 50 | 6.2 |\n| Task success | 10% | pending | pending | n/a |\n| Maintenance \u0026 community | 7% | 8.8 | 87 | 7.6 |\n| Transparency \u0026 trust (editorial 61, provenance 90) | 7% | 8.8 | 76 | 6.7 |\n| Negative events | up to −15 | up to −15 | none recorded | 0 |\n| **Total** | | | | **75.4 → BB** |\n\n### Why each score\n\n- Reliability 85: Local-package reading. `@kilocode/cli` on npm, a Homebrew tap, an AUR package, an install script and release binaries for Linux, macOS and Windows on x64 and arm64, with baseline and musl builds named (20). Public CI, and the 40 most recent completed workflow runs on main on 8 October 2026 all succeeded, the test, typecheck and VS Code test workflows among them (25). 448 open issues and 147 open pull requests, a workflow that closes issues after 60 quiet days and pull requests after 30, and open reports from 7 October of a turn that hangs after the loop exits (#14876) and of exhausted 503 retries ending a run with no visible error (#14877) (15). The CLI changelog is generated by Changesets with Minor and Patch headings and no dates or breaking-change headings, and the end of the fallback to `.opencode` configuration is recorded in the docs, not under a version (10). 7.8.8, past 1.0 (15).\n- Performance: Pending. Latency is measured per call by our probes, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until the first probe window closes.\n- Schema \u0026 documentation 90: Framework reading. A JSON Schema for `kilo.jsonc` at `https://app.kilo.ai/config.json`, an OpenAPI file for the `kilo serve` API at `packages/sdk/openapi.json` and a CLI reference generated from the command definitions (25). `llms.txt` on kilo.ai and on the docs, the second listing a raw Markdown address for every page (10). The sandboxing page says when to use the sandbox, what it does not protect and how it differs from permissions (16). Permissions are `allow`, `ask` or `deny` with glob rules, `sandbox.network` and `--format` are enums, though the schema served on 8 October had no `sandbox` key (13). Config and CI samples and exit codes 0, 1 and 124, but we found no reference for the records `--format json` writes (11). A versioned changelog and dated GitHub releases (15).\n- Agent ergonomics 72: Framework reading, adapted to a harness driven by a pipeline. Per-tool and per-agent permission rules, MCP servers switched on or off one at a time, permission globs over MCP tool names and read-only Ask and Plan agents, with no lazy tool loading found and a docs warning that MCP servers fill the context (17). Exit code 124 is documented for a timeout and a `doom_loop` check stops repeated failures, but `kilo run` lists no flag for a turn, time or cost limit (11). Exit codes 0, 1 and 124, a stderr diagnostic when a run without `--auto` rejects a permission request, and a final `error` record with `--format json` (16). `--continue`, `--session` and `--fork`, `/undo` and `/redo`, and session export and import as JSON (16). `kilo run --auto` needs one argument, with `@kilocode/sdk` for TypeScript, an ACP server and `kilo serve`. We found no second-language SDK on a registry (12).\n- Security \u0026 auth 66: Harness reading of the framework checklist. 30 for what leaves the machine by default, 20 for approvals and sandboxing, 15 for prompt-injection posture, 15 for audit and 20 for the security programme. Telemetry is on by default and goes to PostHog in the United States, the source links the machine identifier to the account email after a Kilo sign-in, and it is turned off with `experimental.openTelemetry` or `KILO_TELEMETRY_LEVEL`. Provider keys stay on the machine (14). Shell commands ask by default outside a built-in allow list, reads of `.env` files and paths outside the project ask, and edits inside the project run without asking. An operating-system sandbox (Seatbelt on macOS, Bubblewrap on Linux, none on Windows) limits writes and blocks the network, refuses to run when it can't be enforced, and is off by default. `--auto` approves everything not explicitly denied (15). The sandboxing page covers prompt injection and its limits, project config can't weaken the sandbox, and `{env:VAR}` is resolved only in trusted config (11). Session export, `kilo stats` and OTLP export of traces and logs, with audit logs on the Enterprise plan (12). A valid security.txt (expires 2026-12-31), a disclosure policy that cites HackerOne's standards and safe harbour, CodeQL in CI and no published repository advisories, while SECURITY.md still says the CLI has no sandbox (14).\n- Payments \u0026 pricing 50: No payment protocol (0). Scored on Kilo's paid options, as with Cline. Plan prices are public (Kilo Pass from $19 a month, Teams $15 a user a month, Enterprise by quote) and the gateway bills provider rates plus a 5 per cent fee on credit purchases, but the pricing page carries no per-token list (10). The CLI is MIT-licensed and free, and the pricing page says the free tier needs no card (20). Your own provider key or a local model works with no Kilo account, so an agent can install and run it without a sign-up (20).\n- Task success: Pending. Task success needs the category task suites run through each tool, which haven't run yet, so this run doesn't score it. Its weight is shared across the assessed categories until then. A data provider's data-quality score is published on its listing now and becomes half of this category when it's scored.\n- Maintenance \u0026 community 87: 7.8.8 on 7 October 2026 (30). 37 stable releases since 10 July 2026, JetBrains tags aside (20). The newest issues carry area and triage labels from automation, but the 15 newest open issues had no or one comment each on 8 October, against 448 open issues and 147 open pull requests (15). `@kilocode/sdk` and `@kilocode/plugin` are at 7.8.8 with the CLI, and the VS Code extension ships from the same release workflow (13). CI, CodeQL and Dependabot security updates run, with version updates switched off because most dependencies arrive through merges from opencode (9).\n- Transparency \u0026 trust 76: MIT, with opencode's copyright kept in the licence file (30). The privacy policy (29 May 2026) names Kilo Code Inc. as controller, says data is stored in the United States and lists Stripe, OpenRouter, model providers, AppsFlyer and Sentry, but it doesn't mention the CLI's PostHog telemetry. PRIVACY.md in the repository is dated March 2025 and is silent on telemetry too. The terms (30 September 2026) are a contract with Anaconda, Inc. and grant a perpetual licence to use uploaded Customer Data to improve the services (13). `kilo console` is marked deprecated with no removal date, and updated terms apply after 30 days. No written deprecation policy found (8). The docs say telemetry is on by default and name the opt-out key in two places, without listing what is collected or where it goes (10).\n\nFix list for a coding agent, everything this grade says the listing lacks, the biggest gain first (17 items): https://www.anchorterminal.com/fixes/kilo-code-cli.md (JSON https://www.anchorterminal.com/fixes/kilo-code-cli.json)\n\n### What we couldn't check\n\n- The terms of 30 September 2026 are a contract with Anaconda, Inc. on behalf of itself and affiliates including Kilo Code Inc., and trust.kilo.ai redirects to trust.anaconda.com. We didn't read an announcement of the relationship, and the lead named only Kilo Code as vendor\n- Whether the SOC 2 Type 2 report listed on Anaconda's trust centre covers Kilo's services. The page has a Kilo Code section we couldn't read in full\n- Which properties the PostHog events carry. We read the event names and the client, not every call site\n- Whether Kilo runs a paid bug bounty. The security page cites HackerOne's standards and names no rewards\n- Unchecked: the Kilo Pass Pro and Expert prices, which the pricing page draws by script. Only the $19 entry price was in the page text\n- Unchecked: where exit code 124 is set. The docs list it and `kilo run` shows no timeout flag\n- Unchecked: the first release date of `@kilocode/cli` on npm, and whether a Python SDK is published (the repository has a publish workflow for one)\n- The repository is a fork of opencode. How quickly upstream security fixes reach Kilo releases wasn't measured\n\n### Sources\n\n- repository README (install, autonomous mode): \u003chttps://github.com/Kilo-Org/kilocode\u003e (seen 2026-10-08)\n- CLI docs (permissions, autonomous mode, exit codes, telemetry): \u003chttps://kilo.ai/docs/code-with-ai/platforms/cli\u003e (seen 2026-10-08)\n- CLI command reference (docs source): \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/code-with-ai/platforms/cli-reference.md\u003e (seen 2026-10-08)\n- sandboxing (docs source): \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/getting-started/settings/sandboxing.md\u003e (seen 2026-10-08)\n- auto-approving actions and defaults (docs source): \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/getting-started/settings/auto-approving-actions.md\u003e (seen 2026-10-08)\n- settings page, telemetry default (docs source): \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/getting-started/settings/index.md\u003e (seen 2026-10-08)\n- MCP in the CLI (docs source): \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/automate/mcp/using-in-cli.md\u003e (seen 2026-10-08)\n- telemetry client source: \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-telemetry/src/client.ts\u003e (seen 2026-10-08)\n- default permission rules in source: \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/opencode/src/kilocode/agent/index.ts\u003e (seen 2026-10-08)\n- CLI changelog: \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/opencode/CHANGELOG.md\u003e (seen 2026-10-08)\n- releases (GitHub API): \u003chttps://api.github.com/repos/Kilo-Org/kilocode/releases?per_page=100\u003e (seen 2026-10-08)\n- workflow runs on main (GitHub API): \u003chttps://api.github.com/repos/Kilo-Org/kilocode/actions/runs?branch=main\u0026status=completed\u0026per_page=40\u003e (seen 2026-10-08)\n- open issues: \u003chttps://github.com/Kilo-Org/kilocode/issues\u003e (seen 2026-10-08)\n- repository security advisories (none published): \u003chttps://github.com/Kilo-Org/kilocode/security/advisories\u003e (seen 2026-10-08)\n- SECURITY.md: \u003chttps://github.com/Kilo-Org/kilocode/blob/main/SECURITY.md\u003e (seen 2026-10-08)\n- PRIVACY.md: \u003chttps://github.com/Kilo-Org/kilocode/blob/main/PRIVACY.md\u003e (seen 2026-10-08)\n- auto-close workflow: \u003chttps://github.com/Kilo-Org/kilocode/blob/main/.github/workflows/kilo-auto-close.yml\u003e (seen 2026-10-08)\n- npm package: \u003chttps://registry.npmjs.org/@kilocode/cli/latest\u003e (seen 2026-10-08)\n- pricing: \u003chttps://kilo.ai/pricing\u003e (seen 2026-10-08)\n- terms of service: \u003chttps://kilo.ai/terms\u003e (seen 2026-10-08)\n- privacy policy: \u003chttps://kilo.ai/privacy\u003e (seen 2026-10-08)\n- security disclosure page: \u003chttps://kilo.ai/security\u003e (seen 2026-10-08)\n- security.txt: \u003chttps://kilo.ai/.well-known/security.txt\u003e (seen 2026-10-08)\n- llms.txt for the docs: \u003chttps://kilo.ai/docs/llms.txt\u003e (seen 2026-10-08)\n- config JSON Schema: \u003chttps://app.kilo.ai/config.json\u003e (seen 2026-10-08)\n- status page incidents: \u003chttps://status.kilo.ai/api/v2/incidents.json\u003e (seen 2026-10-08)\n- trust centre (trust.kilo.ai redirects here): \u003chttps://trust.anaconda.com/\u003e (seen 2026-10-08)\n- domain registration (RDAP): \u003chttps://rdap.org/domain/kilo.ai\u003e (seen 2026-10-08)\n\n## Who's behind it (provenance 90/100, checked 2026-10-08)\n\n| Check | Finding | Points |\n| --- | --- | --- |\n| Legal entity named | Kilo Code Inc. (the terms are a contract with Anaconda, Inc. on behalf of itself and its affiliates, including Kilo Code Inc.) | 20/20 |\n| Domain age | kilo.ai, registered 2017-12-16 (8 years) | 11/15 |\n| Endpoint on the vendor's domain | no hosted endpoint | n/a |\n| Terms of service | read, states 6 of the 7 things a reader expects, and has 2 clauses that cost points | 5.1/10 |\n| Privacy policy | read, states 8 of the 8 things a reader expects | 10/10 |\n| Status page | status.kilo.ai | 10/10 |\n| Changelog | published | 10/10 |\n| security.txt | valid | 10/10 |\n\nThe terms (last updated 30 September 2026) name the CLI among the services they cover and are made with Anaconda, Inc. The privacy policy (29 May 2026) names Kilo Code Inc. as data controller.\n\nkilo.ai/.well-known/security.txt lists security@kilo.ai and the policy at kilo.ai/security, names the CLI in scope and expires on 2026-12-31.\n\ntrust.kilo.ai redirects to trust.anaconda.com, which has a Kilo Code section.\n\nstatus.kilo.ai is a Statuspage site for the website, gateway and cloud platform. The CLI runs on the owner's machine.\n\nPRIVACY.md in the repository is a separate short policy for the CLI dated March 2025.\n\n### Terms and privacy, as read\n\nA reading by a fixed set of rules, each answered with the vendor's own sentence. Not legal advice.\n\n**Terms of service** (https://kilo.ai/terms), read 2026-10-08, dated 2026-09-30, states 6 of the 7 things a reader expects.\n\n- To know. Restricts automated access (costs points). \"(vi) use any spider, crawler, scraper or other automatic device, process or software that intercepts, mines, scrapes, extracts or otherwise accesses the Services to monitor, extract, copy or collect information or data from or through the Services\"\n- To know. Says the terms or the service can change without notice (costs points). \"Kilo reserves the right to modify or discontinue all or any portion of the Services at any time (including by limiting or discontinuing certain features of the Services), temporarily or permanently, without notice to you.\"\n- To know. Says access can be ended without notice or for any reason. \"In addition, Kilo may, at its sole discretion, terminate these Terms or your Account on the Services, or suspend or terminate your access to the Services, at any time for any reason or no reason, with or without notice, and without any liability to you arising from such termination.\"\n- To know. Requires arbitration or waives class actions. \"You agree that, by entering into these Terms, you and Kilo are each waiving the right to a trial by jury or to participate in any class action or other representative proceeding.\"\n- Gives the date it was last updated. Last updated 2026-09-30.\n- Names the governing law or courts. The law of the State of Delaware.\n- States a limit on its liability. Capped at the greater of USD 100 and the fees paid in the 6 months before the claim.\n- Says how changes to the terms are announced. Gives thirty calendar days of notice before a change.\n- Not found in the text. Refers to a service level or uptime commitment.\n- Also in the text (2026-10-08). Uploading Customer Data, including source code, grants Kilo a perpetual, irrevocable, sublicensable and transferable licence to use it to run and improve the Services and Kilo's other products. \"you grant Kilo a perpetual, irrevocable, fully-paid, royalty-free, worldwide, sublicensable, transferable right and license to use such Customer Data to provide and improve the Services and Kilo’s other products and services, including for development, diagnostic and corrective purposes\"\n- Also in the text (2026-10-08). Customer Data sent to an AI model through the Services is used by that model under the model provider's own terms, which the customer is responsible for reviewing. \"You agree that any Customer Data provided to any AI Model through the Services will be used by the applicable AI Model in accordance with the applicable AI Model Terms.\"\n- Also in the text (2026-10-08). Purchased Credits expire one year after purchase or when the account is deleted, whichever comes first, and the terms say Credits are non-refundable. \"All Credits must be used before the sooner of (i) one (1) year after the date of purchase or (ii) the deletion of your Account or other access to the Services.\"\n\n**Privacy policy** (https://kilo.ai/privacy), read 2026-10-08, dated 2026-05-29, states 8 of the 8 things a reader expects.\n\n- Gives the date it was last updated. Last updated 2026-05-29.\n- Says how long data is kept. Names a period of 90 days.\n- Gives a privacy contact. support@kilo.ai.\n- Says where data is transferred or stored. Relies on standard contractual clauses.\n- Also in the text (2026-10-08). The policy does not cover data Kilo processes on a customer's behalf as a service provider, which the separate terms of service govern. \"If you are a customer of Kilo Code, this Privacy Policy does not apply to personal information or other data and information that we process on your behalf (if any) as your service provider (collectively, “Customer Data”).\"\n- Also in the text (2026-10-08). Kilo reserves the right to publish a support or feedback request sent to it, and says it will not publish personal information with the request. \"If you send us a request (for example via a support email or via one of our feedback mechanisms), we reserve the right to publish your request in order to help us clarify or respond to your request or to help us support other users.\"\n\n## Live (updated 2026-10-09 09:25 UTC)\n\n- Vendor status page: maintenance, Service Under Maintenance\n- Always current: https://www.anchorterminal.com/api/v1/live/kilo-code-cli.json\n\n## Probe metrics\n\nNot measured yet. Our benchmark probes haven't run, so there's no availability, latency or error rate from a run and Performance is pending. Live uptime, where we poll the endpoint, is under Live and doesn't change the score.\n\n## Prices\n\n| Item | Price | Unit | Note |\n| --- | --- | --- | --- |\n| Kilo Pass, entry tier | $19 | per month (plan) | monthly model credits with bonus credits, optional |\n| Teams plan | $15 | per seat per month | model use billed separately at provider rates |\n\nAcross all listings: https://www.anchorterminal.com/prices/index.md\n\n## Strengths\n\n- Permission rules of `allow`, `ask` or `deny` per tool with glob patterns, and shell commands asking by default outside a built-in allow list\n- A sandbox on macOS and Linux that limits writes, blocks network by default and refuses to run when it can't be enforced\n- Project config can't weaken the sandbox or read environment variables through `{env:VAR}`\n- Your own provider key or a local model works with no Kilo account\n- 37 stable releases since 10 July 2026, with the last 40 workflow runs on main passing on 8 October 2026\n\n## Weaknesses\n\n- Telemetry to PostHog is on by default, and the privacy policy and PRIVACY.md don't mention it\n- The sandbox is off by default and unavailable on Windows\n- `kilo run` lists no flag for a turn, time or cost limit\n- The terms grant a perpetual licence to use uploaded Customer Data to improve Kilo's services\n- SECURITY.md still says the CLI has no sandbox, and the changelog has no dates or breaking-change headings\n\n## Before you call it (notes for agents)\n\n1. Set `sandbox.enabled` to true in the global `kilo.jsonc` before `kilo run --auto`. `--auto` approves every permission request not explicitly denied\n2. Set `experimental.openTelemetry` to false, or `KILO_TELEMETRY_LEVEL` to a value other than `all`, to stop telemetry\n3. Add needed hosts to `sandbox.allowed_hosts` in global config. MCP tool calls are unavailable while network restriction is on\n4. Without `--auto` a non-interactive run rejects every permission prompt and exits 1\n5. Put provider keys in global config or the environment. `{env:VAR}` in a project `kilo.json` is ignored\n\n## Connect\n\nInstall:\n\n```bash\nnpm install -g @kilocode/cli   # or: brew install Kilo-Org/tap/kilo\n```\n\nHeadless / CI:\n\n```json\n{\n  \"command\": \"kilo run --auto --format json \\\"$TASK\\\"\"\n}\n```\n\n## Similar tools\n\nRanked by shared capabilities, then score. Same-category tools with no shared capability key are listed last.\n\n| Tool | Grade | Score | Rank | Shared capabilities | x402 | Markdown |\n| --- | --- | --- | --- | --- | --- | --- |\n| goose | BB | 73.9 | 80 | agent.harness, agent.mcp-client, agent.multi-agent | no | https://www.anchorterminal.com/tools/goose.md |\n| Qwen Code | BB | 72.4 | 103 | agent.harness, agent.mcp-client, agent.multi-agent | no | https://www.anchorterminal.com/tools/qwen-code.md |\n| Gemini CLI | BB | 72 | 110 | agent.harness, agent.mcp-client, agent.multi-agent | no | https://www.anchorterminal.com/tools/gemini-cli.md |\n| OpenHands | BB | 70.8 | 138 | agent.harness, agent.mcp-client, agent.multi-agent | no | https://www.anchorterminal.com/tools/openhands.md |\n| OpenCode | B | 67.7 | 223 | agent.harness, agent.mcp-client, agent.multi-agent | no | https://www.anchorterminal.com/tools/opencode.md |\n| Claude Code | C | 61.9 | 409 | agent.harness, agent.mcp-client, agent.multi-agent | no | https://www.anchorterminal.com/tools/claude-code.md |\n\n## Panel reviews (0)\n\nReviewed by the Anchor panel (https://www.anchorterminal.com/reviewers/index.md): .\n\nDesk reviews, written from public documentation, pricing, terms, source and status history on 1 October 2026. No calls made. For a desk review, the outcome says whether the reviewer's questions could be answered from public material: success, partial or failure. How reviews work: https://www.anchorterminal.com/reviews/how-it-works.md\n\n## Notable\n\n- `kilo run --auto` approves every permission request that no rule explicitly denies, and without `--auto` a non-interactive run rejects each request and exits 1 (source: \u003chttps://kilo.ai/docs/code-with-ai/platforms/cli\u003e)\n- The sandbox is off by default, limits writes to the workspace and blocks outbound network when on, and has no Windows backend (source: \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/getting-started/settings/sandboxing.md\u003e)\n- Telemetry is on by default and is turned off with `experimental.openTelemetry` set to false (source: \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-docs/pages/getting-started/settings/index.md\u003e)\n- The telemetry client posts to PostHog at us.i.posthog.com and links the machine identifier to the account email after sign-in (source: \u003chttps://github.com/Kilo-Org/kilocode/blob/main/packages/kilo-telemetry/src/client.ts\u003e)\n- The terms are a contract with Anaconda, Inc. on behalf of itself and affiliates including Kilo Code Inc. (source: \u003chttps://kilo.ai/terms\u003e)\n- The CLI is a fork of opencode, and the licence file keeps opencode's 2025 copyright beside Kilo Code's (source: \u003chttps://github.com/Kilo-Org/kilocode/blob/main/LICENSE\u003e)\n\n## Compare\n\n- [Aider vs Kilo Code CLI](https://www.anchorterminal.com/compare/aider-vs-kilo-code-cli.md): D 46.9 vs BB 75.4\n- [Amp vs Kilo Code CLI](https://www.anchorterminal.com/compare/amp-vs-kilo-code-cli.md): C 57.1 vs BB 75.4\n- [Claude Code vs Kilo Code CLI](https://www.anchorterminal.com/compare/claude-code-vs-kilo-code-cli.md): C 61.9 vs BB 75.4\n- [Cline vs Kilo Code CLI](https://www.anchorterminal.com/compare/cline-vs-kilo-code-cli.md): C 60.4 vs BB 75.4\n- [Cursor CLI vs Kilo Code CLI](https://www.anchorterminal.com/compare/cursor-cli-vs-kilo-code-cli.md): F 35.3 vs BB 75.4\n- [Devin vs Kilo Code CLI](https://www.anchorterminal.com/compare/devin-vs-kilo-code-cli.md): C 55.7 vs BB 75.4\n- [Pi vs Kilo Code CLI](https://www.anchorterminal.com/compare/earendil-pi-vs-kilo-code-cli.md): B 68.4 vs BB 75.4\n- [Gemini CLI vs Kilo Code CLI](https://www.anchorterminal.com/compare/gemini-cli-vs-kilo-code-cli.md): BB 72 vs BB 75.4\n- [GitHub Copilot CLI vs Kilo Code CLI](https://www.anchorterminal.com/compare/github-copilot-cli-vs-kilo-code-cli.md): C 57.6 vs BB 75.4\n- [goose vs Kilo Code CLI](https://www.anchorterminal.com/compare/goose-vs-kilo-code-cli.md): BB 73.9 vs BB 75.4\n- [Kilo Code CLI vs Kiro CLI](https://www.anchorterminal.com/compare/kilo-code-cli-vs-kiro-cli.md): BB 75.4 vs C 59.9\n- [Kilo Code CLI vs OpenAI Codex](https://www.anchorterminal.com/compare/kilo-code-cli-vs-openai-codex.md): BB 75.4 vs BB 73\n- [Kilo Code CLI vs OpenCode](https://www.anchorterminal.com/compare/kilo-code-cli-vs-opencode.md): BB 75.4 vs B 67.7\n- [Kilo Code CLI vs OpenHands](https://www.anchorterminal.com/compare/kilo-code-cli-vs-openhands.md): BB 75.4 vs BB 70.8\n- [Kilo Code CLI vs Prime Agent](https://www.anchorterminal.com/compare/kilo-code-cli-vs-prime-agent.md): BB 75.4 vs C 60.5\n- [Kilo Code CLI vs Qwen Code](https://www.anchorterminal.com/compare/kilo-code-cli-vs-qwen-code.md): BB 75.4 vs BB 72.4\n- [Kilo Code CLI vs Paperclip](https://www.anchorterminal.com/compare/kilo-code-cli-vs-paperclip.md): BB 75.4 vs C 59\n\n## Verify this listing\n\nFor the vendor. The badge or a plain link to this page verifies the listing, from a page on kilo.ai or one of its subdomains, or the README of github.com/Kilo-Org/kilocode. It shows the listing is the vendor's and that the vendor knows it's here, and it never changes a grade, rank or review. The vendor sends the page's address to `POST https://www.anchorterminal.com/api/v1/verify` as `{\"slug\": \"kilo-code-cli\", \"url\": \"…\"}`, or calls the `verify_listing` tool at https://www.anchorterminal.com/mcp. We fetch the page once, then again every week; two failed checks in a row and the verification lapses, and a later pass restores it. What we check: https://www.anchorterminal.com/builders/index.md#verify\n\nHTML badge:\n\n```html\n\u003ca href=\"https://www.anchorterminal.com/tools/kilo-code-cli\"\u003e\u003cimg src=\"https://www.anchorterminal.com/badges/kilo-code-cli.svg\" alt=\"Kilo Code CLI on Anchor Terminal\" height=\"20\"\u003e\u003c/a\u003e\n```\n\nMarkdown badge, for a README:\n\n```markdown\n[![Kilo Code CLI on Anchor Terminal](https://www.anchorterminal.com/badges/kilo-code-cli.svg)](https://www.anchorterminal.com/tools/kilo-code-cli)\n```\n\nPlain link:\n\n```html\n\u003ca href=\"https://www.anchorterminal.com/tools/kilo-code-cli\"\u003eKilo Code CLI on Anchor Terminal\u003c/a\u003e\n```\n\n## Share this listing\n\nFor the vendor. Sharing assets for social media, two PNGs of 1200 × 630 that say Kilo Code CLI is listed on Anchor Terminal, with the vendor's logo and this page's address and no grade or score.\n\n- Dark: https://www.anchorterminal.com/assets/share/kilo-code-cli-dark.png\n- Light: https://www.anchorterminal.com/assets/share/kilo-code-cli-light.png\n",
  "meta": {
    "attribution": "Anchor Terminal (https://www.anchorterminal.com)",
    "docs": "https://www.anchorterminal.com/docs/",
    "generatedAt": "2026-10-09",
    "license": "CC-BY-4.0",
    "method": "https://www.anchorterminal.com/benchmark/",
    "methodology": "0.4",
    "openapi": "https://www.anchorterminal.com/openapi.json",
    "preview": false,
    "run": "2026-10-01",
    "runLabel": "October 2026 research run"
  },
  "page": {
    "breadcrumbs": [
      {
        "name": "Home",
        "url": "https://www.anchorterminal.com/"
      },
      {
        "name": "Terminal",
        "url": "https://www.anchorterminal.com/tools/"
      },
      {
        "name": "Agent harnesses",
        "url": "https://www.anchorterminal.com/categories/agent-harnesses"
      },
      {
        "name": "Kilo Code CLI",
        "url": ""
      }
    ],
    "description": "Open-source coding agent for the terminal, forked from opencode and built from the same repository as Kilo's VS Code and JetBrains extensions. It runs with your own provider key, a local model or the Kilo Gateway.",
    "facts": [
      "rank #47 of 842",
      "OAuth or key auth",
      "0 desk reviews"
    ],
    "h1": "Kilo Code CLI",
    "image": "https://www.anchorterminal.com/assets/og/tools-kilo-code-cli.png",
    "path": "/tools/kilo-code-cli",
    "published": "2026-10-01",
    "section": "tools",
    "title": "Kilo Code CLI review for AI agents, grade BB (75.4/100)",
    "toc": null,
    "updated": "2026-10-09",
    "url": "https://www.anchorterminal.com/tools/kilo-code-cli"
  },
  "tokens": {
    "markdown": 7700,
    "slim": 1380
  },
  "version": 1
}
