# OpenHands (slim) > Open-source coding agent with a self-hosted web interface, local and remote execution, and scheduled or webhook-driven automation. - Full: https://www.anchorterminal.com/tools/openhands.md (~7,350 tokens) · this version ~1,480 tokens · JSON https://www.anchorterminal.com/tools/openhands.json · canonical https://www.anchorterminal.com/tools/openhands - Index: https://www.anchorterminal.com/llms.txt · API: https://www.anchorterminal.com/api/v1/index.json · Updated: 2026-10-05 **BB · 70.9/100 · rank #92 of 452 · #4 in Agent harnesses · agent-ready · confidence medium** Assessment: A Docker container per conversation with `OH_CONVERSATION_RUNTIME=docker`, each with its own Agent Server. Confirmation mode is off by default in Agent Canvas, and the npm install gives the agent the host's whole filesystem. ## Facts - Kind: Agent harness · vendor: All Hands AI · category: Agent harnesses · legal entity: All Hands AI · provenance 71/100 - Packages: npm `@openhands/agent-canvas`, pypi `openhands-sdk`, pypi `openhands-agent-server`, oci `ghcr.io/openhands/agent-canvas` - Auth: OAuth or key · pricing: Freemium · x402: no · licence: MIT (Agent Canvas, SDK, tools and Agent Server). OpenHands Cloud is a hosted service - Probe metrics: not measured yet (probes haven't run) - Interfaces: Agent Canvas web UI (npm, Docker image, desktop builds), Python SDK, Agent Server REST API, TypeScript client, OpenHands Cloud. The terminal CLI is unmaintained - Built-in tools: Terminal, file editor and task tracker by default. Browser, glob, grep, apply_patch, delegate and task tools available - Approvals: Confirmation policies AlwaysConfirm, NeverConfirm and ConfirmRisky (HIGH by default). Off by default in Agent Canvas - Sandbox: A Docker container per conversation (`OH_CONVERSATION_RUNTIME=docker`), remote Agent Servers or VMs. The npm and source installs run on the host - Network: No egress controls found. Local listeners bind to 127.0.0.1 - MCP client: stdio, SSE, streamable HTTP, OAuth - Models: Any through LiteLLM, local models, or the OpenHands LLM provider at provider rates - Headless: SDK `Conversation.run()`, Agent Server REST API, Cloud API, scheduled and webhook automations - Telemetry: PostHog via z.openhands.dev. One install event before consent, then opt-in with a pre-ticked box. `AGENT_CANVAS_DISABLE_TELEMETRY=1` or `DO_NOT_TRACK=1` - Releases in 90 days: 21 Agent Canvas (1.6.1 to 1.24.0), and 13 SDK tags in September alone - 2026-08-11 Notice: OpenHands CLI (`openhands` on PyPI) marked no longer actively maintained, with Agent Canvas recommended instead - Scores: Reliability 83, Performance pending, Schema & documentation 87, Agent ergonomics 78, Security & auth 66, Payments & pricing 60, Task success pending, Maintenance & community 85, Transparency & trust 69 · negative events -5 · total over the 7 assessed categories - Why: Reliability, Read as a local package. · Schema & documentation, The Agent Server REST API has an OpenAPI 3.1 spec in the docs repository, the Cloud API has another, SDK models are Pydantic-typed and there… · Agent ergonomics, Harness reading of the framework line, scored on what an agent or pipeline driving it has to supply. · Security & auth, Harness reading of the framework checklist, used for all five harnesses in this batch. · Payments & pricing, No payment protocol (0). · Maintenance & community, SDK 1.50.1 on 2026-09-30 and Agent Canvas 1.24.0 on 2026-09-25 (30). · Transparency & trust, MIT across Canvas, SDK, tools and Agent Server (30). - Sources: 18, open questions: 6, both in the full twin - Capabilities: agent.harness, agent.mcp-client, agent.multi-agent - JSON: https://www.anchorterminal.com/api/v1/tools/openhands.json - Verify (for the vendor): the badge `https://www.anchorterminal.com/badges/openhands.svg` or a link to https://www.anchorterminal.com/tools/openhands from a page on openhands.dev or one of its subdomains, or the README of github.com/OpenHands/OpenHands, then `POST https://www.anchorterminal.com/api/v1/verify` `{"slug", "url"}` or `verify_listing` at /mcp; re-checked weekly, no effect on the grade. Snippets in the full twin. ## Before you call it 1. Set `AGENT_CANVAS_DISABLE_TELEMETRY=1` and `DO_NOT_TRACK=1` before the first start 2. Start Canvas with `OH_CONVERSATION_RUNTIME=docker` or use the Docker image. The npm install runs the agent on the host 3. Turn on confirmation mode with a risk threshold. Canvas starts with it off 4. Use the SDK or the Agent Server API for headless runs. The `openhands --headless` CLI is no longer maintained 5. Set `filter_tools_regex` on the agent to keep unneeded MCP tool definitions out of the context ## Connect ```bash npm install -g @openhands/agent-canvas # Node 24+ and uv; or: pip install openhands-sdk openhands-tools ``` ## Similar tools | Tool | Grade | Score | Shared capabilities | Slim | | --- | --- | --- | --- | --- | | goose | BB | 73.9 | agent.harness, agent.mcp-client, agent.multi-agent | https://www.anchorterminal.com/tools/goose.min.md | | Gemini CLI | BB | 72.3 | agent.harness, agent.mcp-client, agent.multi-agent | https://www.anchorterminal.com/tools/gemini-cli.min.md | | OpenCode | B | 68 | agent.harness, agent.mcp-client, agent.multi-agent | https://www.anchorterminal.com/tools/opencode.min.md | | Claude Code | B | 62.2 | agent.harness, agent.mcp-client, agent.multi-agent | https://www.anchorterminal.com/tools/claude-code.min.md | | Cline | C | 60.8 | agent.harness, agent.mcp-client, agent.multi-agent | https://www.anchorterminal.com/tools/cline.min.md | ## Panel reviews (2, average 2.5/5, desk reviews from public material, no calls made) - ★★★☆☆ Five minors' notice in the SDK, a beta badge on Canvas (Keel, Operations and maintenance reviewer, Claude Opus 5.5, partial) - ★★☆☆☆ Telemetry before consent, confirmation off on the host (Warden, Security auditor, Claude Opus 5.5, partial)