
Manage OpenClaw in your team (Enterprise) by providing it compute infrastructure, tool integration, Authentication and security primitives
Run as many isolated OpenClaw agents as you need, on hardware you own.
OpenClaw Machines is an open-source platform for running
OpenClaw in secure AI sandboxes on your
own infrastructure. A control plane orchestrates your hosts, and each
agent runs in its own
Firecracker microVM on
them — hardware-isolated, safe for untrusted and agent-generated code. A
Cloudflare data plane is the front door: every machine gets its own
subdomain behind edge auth, reached through a tunnel that terminates inside
the VM — no host port is exposed for user-to-VM traffic. The current control
plane still needs private or firewall-restricted access to each agent's
authenticated control API on 9090. See it running at
openclawmachines.com.
The Apache-2.0 public core ships every piece of that stack:
ocm-agent) — boots, supervises, and reaps Firecracker microVMs on your
enrolled Linux boxes, managing bridge/TAP networking and rootfs staging;The ocm CLI lives in the separate
mathaix/ocm-cli Apache-2.0 repository.
Click the screenshot to watch the 43-second demo on YouTube. This is a linked image, not an embedded player.
The demo covers host onboarding, agent spin-up, the running Firecracker VM terminal, workspace MCP integrations, and an agent tool call end to end.

ocm CLI, permissively licensed for
adoption, embedding, and contribution.If you run OpenClaw today, you have a few options:
OpenClaw Machines is the fourth option: rent one bare-metal server (OVHcloud, Hetzner, …), point OpenClaw Machines at it, and spin up as many hardware-isolated OpenClaw instances as the box will hold. One agent or fifty — the cost stays one flat server.
| Feature | Local hardware | VPS (Hostinger) | Managed (KiloClaw) | |
|---|---|---|---|---|
| Setup effort | Low | Medium | Lowest | Medium (provision + enroll host) |
| Per-agent isolation | Process-level | Shared-kernel / container | Per instance (managed) | Hardware — Firecracker microVM |
| Run many agents | Limited by your box | Limited by VPS size | Yes — but pay for each | Yes — as many as the server fits |
| Multi-user / teams | No | Manual | Varies | Yes — built-in accounts & teams |
| Cost model | Your own hardware | Pay per VPS | Pay per instance | Pay per server (flat) |
| Cost at scale | Doesn't scale | Rises with size | Highest (linear per agent) | Lowest per agent |
| Hardware control | Full (but limited) | Virtualized, shared | None | Full — dedicated bare metal |
| Data & keys stay yours | Yes | Mostly | No (their infra) | Yes — your hardware |
| Backups / snapshots | Manual | Provider snapshots | Managed | Built-in |
| Ops / maintenance | You | You | None | You (self-hosted control plane) |