Open-source personal agent that keeps your credentials in an encrypted enclave, not in the prompt
IronClaw is an Apache-2.0 agent runtime published by NEAR AI under the NEAR Foundation. Its distinguishing design choice is credential handling: secrets live in an encrypted vault inside a hardware enclave, so the agent can act on your accounts without the model seeing the keys. Typical jobs are inbox triage, meeting prep, monitoring and delegated developer chores, wired to Gmail, Google Drive, Sheets, Calendar, Docs, Slides, GitHub, Discord, Telegram and Signal, and it can build and sandbox new tools against any API on the fly. It is model-agnostic across Anthropic, OpenAI, Gemini, Mistral, Ollama, OpenRouter and others. Hosted plans are $5, $20 and $200 a month with matching credit balances, or you can self-host from the repository.
$5/month Starter includes $5 of model credits; Basic $20/month includes $20 and up to 2 agent instances; Pro+ $200/month includes $200 and up to 5 instances. The source is Apache-2.0 on GitHub, so self-hosting costs only your own model spend.
Use tool ↗IronClaw takes the part of personal agents everyone hand-waves, what happens to your credentials, and answers it with an encrypted enclave vault plus open source you can read. The repository is busy and drew over 12,000 stars within months of its February 2026 start. That youth is also the risk: a six-month-old agent runtime touching your inbox and GitHub is an early adopter's tool.
Watch out: Granting one agent Gmail, Drive, GitHub and Signal access concentrates a lot of blast radius; scope the tokens narrowly even with enclave storage.
No reviews yet — be the first to review IronClaw.
Reviews are tied to your EffectHub account — one review per tool, so the rating for IronClaw reflects real users.
No questions yet — ask the first one about IronClaw.
Questions about IronClaw are tied to your EffectHub account, so answers can reach you and the section stays free of spam.