Topic

AI Agents

Agent infrastructure and operator practice.

OpenClaw bounds credential refresh without surrendering token ownership

OpenClaw proposes a 360-second runtime deadline for stuck OAuth refreshes while retaining the cross-agent lock until uncancellable provider work settles. Companion changes centralize diagnostic redaction and add a guarded kill-switch for Codex native-hook relay fan-out.

Hermes strips inherited credentials before child processes start

Hermes proposes removing the BWS token and every password-shaped variable from child-process environments, backed by a campaign inventory of process launch sites. A related gateway patch…

Paperclip isolates Codex accounts at the gateway boundary

Paperclip proposes isolated multi-account Codex authentication, resolves per-user connection grants at gateway execution and adds device-login building blocks without leaking callback…

ZeroClaw adds DAG execution before it adds a stop button

ZeroClaw proposes sequential and parallel DAG plan execution while operators report that running SOP jobs have no cancellation path and a global concurrency ceiling silently overrides…

NanoClaw turns agent templates into versioned plugins

NanoClaw proposes Agent Plugins 1.0.0 directories, explicit single-writer file surfaces and clearer package limits for its hardened image. Together the records turn customization from…

PicoClaw finds configuration that the runtime does not honor

PicoClaw operators report that custom shell allow patterns can still fail at execution, configured models can disappear from the list command, and model-specific token limits need a…

IronClaw teaches its agent to stop claiming unverified state

IronClaw proposes suppressing assertions about automation status, extension authorization and recalled memory when the runtime lacks evidence. Related trace work reduces raw logprobs to…