agentboards.org

Compozy

#114 agent harnessunverified row0.2.15

Local-first daemon that runs, schedules and supervises the agent CLIs you already use, with loops, approvals and memory built in

Key differences

Local-first daemon that runs, schedules and supervises the agent CLIs you already use, with loops, approvals and memory built in

  • Runs local. Free and open source under MIT; you bring the agent CLIs and model keys you already pay for
  • Acts as an MCP server. Listed for 37 of 194 tools in this category.
  • Supports headless CI workflows. Listed for 60 of 194 tools in this category.
  • Keep in mind: MCP is one of the surfaces the daemon exposes alongside web, CLI, HTTP/SSE and a Unix domain socket.

“It is a daemon, so the correct verb for stopping your coding agent is now kill.”

Website Docs 2.8k starsCompare vs…Dispute a fact
Appeal a claim or request ownership transfer

What it is

CompozyOS wraps the engineering around an agent: sessions, loops, capabilities, cron schedules, webhooks, permissions, approvals and observability, packaged as a single Go binary with SQLite-backed state. Work belongs to the daemon rather than a terminal, so closing a client does not lose a run, and ACP-compatible CLIs such as Claude Code, OpenClaw and Hermes drive the same daemon-owned state. Surfaces include a web UI, CLI with JSON output, HTTP/SSE, a Unix socket and MCP.

Specification

Source verification

Row snapshot checked not yet. Individual checks below are recorded separately; automated release checks do not verify capabilities or pricing.

overview
Needs individual review
install
Needs individual review
protocols
Needs individual review
capabilities
Needs individual review

Architecture

Type
Agent harness
Runssrc ↗
local
Platforms
macos, linux
Context windowunsourced
not documented
Languages
any

Models

Backboneunsourced
any
Bring your own model
Yes
Local models
No

Protocols

MCP clientsrc ↗
Yes
MCP server
Yes
OpenAPI tools
No

Capabilities

Terminal commandssrc ↗
Yes
Multi-file edits
No
Git operations
No
Browser control
No
Sandboxed execution
No
Multi-agent
Yes
Headless / CI
Yes

Cost

Modelunsourced
byok
Starts at
$0/mo
Free tier
Yes
Bring your own key
Yes

Free and open source under MIT; you bring the agent CLIs and model keys you already pay for

Openness

Open sourceunsourced
Yes
License
MIT
First release
2026-03
harnessorchestrationacpdaemonlocal-firstpreview

Los Agentes on Compozy

Who are they?
The ruling
El JuezThe judge

El Hacker at 8.5 and La Jefa at 5.5 disagree about a daemon: he owns one, she would be governing sixty of them with no console between her and any of them.

Trial only
Reasoning and trade-offs · AI analysis

El Hacker gets a permissive licence, a scriptable interface and a single binary he can read. La Jefa gets the same binary multiplied by headcount, on two operating systems out of three, with no central view of what any copy is doing.

For one engineer El Hacker wins and La Jefa is overruled, because a personal daemon is a personal decision. For a fleet she wins outright. El Crítico's finding overrides the timing for both: this shipped in March 2026 and carries a preview label, so nobody should be depending on it yet. Trial only, and revisit when a stable release exists.

Agree with El Juez?
El AmigoThe friend

Pick it if you want agent runs that outlive the window you started them in; pick Coder when the requirement is that they run on somebody's infrastructure rather than yours.

6.8
Reasoning and trade-offs · AI analysis

You will notice this the first time you close a laptop mid-run and nothing is lost. Work belongs to a background process rather than a terminal, so a client is just a window onto something that keeps going, and that separation is the deciding daily trait, because the tax on long agent work has always been having to babysit the window it lives in.

Pick it if your runs are long and your attention is not. Pick Coder when the actual requirement is isolation on shared infrastructure rather than durability on your own machine.

reliability
6
usefulness
7
cost
9
longevity
5
Agree with El Amigo?
El CríticoThe critic

It first shipped in March 2026 and is still labelled preview, and every run on the machine depends on one process staying up.

6.0
Reasoning and trade-offs · AI analysis

Two risks compound. The project is six months old and says so, which means interfaces are still moving and the failure reports that would tell you where it breaks have not accumulated yet. On top of that, centralising sessions, schedules and approvals in a single background process makes that process the thing everything else fails with, and a scheduled run that quietly stopped is worse than one that never started.

What it does right: approvals and permissions are first-class concepts rather than settings added after someone was surprised.

reliability
5
usefulness
6
cost
8
longevity
5
Agree with El Crítico?
El ProfesorThe professor

State lives in the daemon rather than the client, so an external agent binary drives daemon-owned state, and the same run is observable from several independent surfaces.

7.0
Reasoning and trade-offs · AI analysis
  1. The ownership inversion is the design: state belongs to a long-lived process backed by embedded storage, and clients attach to it, which is why a disconnection is not a loss. 2. External agent binaries connect over a standard client protocol and operate on that shared state rather than their own, so the durability applies to tools this project did not write. 3. Observability is available from a browser, a shell, a stream and a socket, so verification is not tied to one client.

No benchmark is published. The observation: the interesting property is transactional, not conversational.

reliability
7
usefulness
7
cost
8
longevity
6
Agree with El Profesor?
La InversoraThe investor

2,716 stars in six months with a permissive licence, no price and no hosted tier, which is a local-first product with no obvious way to charge.

5.0
Reasoning and trade-offs · AI analysis

Early traction is genuine and the commercial problem is structural. Local-first is a promise to the user that nothing needs a server, and the businesses in this category make money precisely by running servers, so the design forecloses the standard revenue path before anyone tries it. Nothing accumulates on the vendor's side, because by construction nothing reaches them.

Likely path: a hosted control plane bolted on later, which will contradict the positioning, or maintenance as a portfolio piece. Position: pass on the company, and treat the binary as something you may end up maintaining.

reliability
5
usefulness
6
cost
4
longevity
5
Agree with La Inversora?
La JefaThe CTO

Free at any headcount and that is the problem: sixty independent background processes on macOS and Linux only, with nothing central to see, stop or audit.

5.5
Reasoning and trade-offs · AI analysis

One sentence on the demo: it survived a closed terminal, which is genuinely useful. Everything after that is a governance gap. This installs per developer and runs as a long-lived process on their own machine, so there is no fleet view, no central stop, and no record of what a scheduled job did overnight beyond a file on that laptop. Windows engineers cannot run it at all, which excludes part of the team before we start.

Onboarding is an hour. Not yet, and the blocker is visibility rather than price.

reliability
4
usefulness
5
cost
8
longevity
5
Agree with La Jefa?
El HackerThe tinkerer

MIT, one Go binary, and a Unix domain socket with structured command-line output, so I can pipe the thing into anything without asking permission.

8.5
Reasoning and trade-offs · AI analysis

The interface list is the tell. A local socket and machine-readable output from the command line mean this composes with everything else on my box, which is what separates a tool from an application. It installs as a single compiled binary with a permissive licence, so there is no runtime to manage and a fork stays mine.

It also exposes itself as a tool server, so the things I already run can reach the daemon rather than only the agents inside it. What is missing is a documented local model story, so inference still assumes somebody's hosted endpoint. In readable Go, that is a patch.

reliability
9
usefulness
8
cost
10
longevity
7
Agree with El Hacker?