freshcrate
Skin:/
Home > MCP Servers > CoWork-OS

CoWork-OS

Operating System for your personal AI Agents with Security-first approach. Multi-channel (WhatsApp, Telegram, Discord, Slack, iMessage), multi-provider (Claude, GPT, Gemini, Ollama), fully self-hosted

Why this rank:Strong adoptionRecent releaseHealthy release cadence

Description

Operating System for your personal AI Agents with Security-first approach. Multi-channel (WhatsApp, Telegram, Discord, Slack, iMessage), multi-provider (Claude, GPT, Gemini, Ollama), fully self-hosted.

README

CoWork OS

CoWork OS is a local-first option for production workflows.
Security-hardened, local-first AI operating system โ€” 34 LLM provider options, 17 messaging channels, 138 built-in skills

npm CI License: MIT macOS Windows

Getting Started ยท Use Cases ยท Release Notes 0.5.35 ยท Platform Updates ยท Documentation ยท Changelog ยท Security ยท Contributing

CoWork OS Interface

Why CoWork OS?

  • Inbox Agent โ€” local-first email triage with AI classification, action-needed / suggested-actions / commitments views, draft handling, follow-up creation, and background sync.
  • Core Automation Runtime โ€” Always-on cognition is now a strict core made of Memory, Heartbeat, and Subconscious, owned by automation profiles for generic operator agents rather than by persona templates or device/trigger state.
  • Digital Twin Personas โ€” Pre-built opt-in persona presets for every role. Twins stay visible and activatable, but they no longer own heartbeat, subconscious, or memory runtime state.
  • Zero-Human Company Ops โ€” Configure CoWork OS as a founder-directed autonomous company shell with venture workspace kits, automation-profile-backed operator agents, strategic planner loops, and Mission Control ops monitoring.
  • Managed Devices โ€” Run and inspect tasks across saved remote machines from a dedicated Devices tab with connection controls, summaries, remote task feeds, and remote file attachment picking.
  • Automations Control Center โ€” A single Automations section now separates Core Automation, Triggered Work, Remote/Device Work, and optional Twin surfaces instead of blending them into one runtime.
  • 34 LLM provider options โ€” 13 built-in providers plus 21 compatible/gateway options, including Claude, OpenAI, Google, Ollama, AWS Bedrock, and OpenRouter. Bring your own keys or run local models.
  • 17 messaging channels โ€” WhatsApp, Telegram, Discord, Slack, Teams, Google Chat, Feishu/Lark, WeCom, iMessage, Signal, X, and more. Chat with your AI from anywhere.
  • 44 MCP connectors โ€” Pre-built enterprise integrations across CRM, support, productivity, analytics, and payments, with native connector support for the most common internal surfaces.
  • 18 bundled role-specific packs โ€” including Mobile Development, Game Development, and 5 Financial packs, with 55+ skills, in-app Plugin Store for installing community packs, remote registry, and enterprise admin policies for organization-wide control.
  • 138 built-in skills โ€” Documents, code review, web search, image generation, cloud integrations, game development, mobile development, financial analysis, infrastructure-as-code, and more, including bundled workflows such as llm-wiki for persistent research vaults and manim-video for programmatic technical animation.
  • Profiles & portability โ€” run separate CoWork profiles with isolated app data, export/import complete profile bundles, and keep credentials, channels, skills, and sessions separated by profile.
  • Active Context sidebar โ€” Always-visible panel showing 44 available MCP connectors with branded Lucide icons and enabled skills, auto-refreshed every 30 seconds.
  • Agent teams โ€” Multi-agent collaboration with shared checklists, graph-backed runs, collaborative mode, multi-LLM synthesis, persistent teams, and ACP-targeted delegation for local or remote specialists.
  • External agent orchestration โ€” Discover ACP agents, delegate work to A2A-compatible remote endpoints, and keep remote calls under the same approval and policy model as other governed actions, with persisted ACP tasks, restart-safe resume, remote cancel support, and the shared orchestration graph as the runtime backbone.
  • Think With Me mode โ€” Socratic brainstorming that helps you clarify thinking without executing actions.
  • Chat mode โ€” Direct LLM chat with no tools, no step timeline, same-session follow-ups, and chat-only streaming for supported providers.
  • Build Mode โ€” Go from idea to working prototype with a phased canvas workflow (Concept โ†’ Plan โ†’ Scaffold โ†’ Iterate) and named checkpoints.
  • AI Playbook โ€” Auto-captures what worked from successful tasks and injects relevant patterns into future prompts. Repeated patterns auto-promote to governed, one-click-approvable skills via the Playbook-to-Skill pipeline.
  • Evolving Intelligence โ€” The layered memory runtime keeps curated hot memory prompt-visible by default, leaves archive recall off by default, and adds explicit search_sessions / memory_topics_load recall paths for recent runs and topical packs. Adaptive Style Engine learns your communication preferences from message patterns and feedback. Evolution Metrics dashboard quantifies improvement over time (correction rate, knowledge growth, style alignment).
  • Operator Runtime Visibility โ€” Task completion now shows what Cowork learned, semantic batch labels and follow-up completions stay visible, unified recall spans tasks/messages/files, persistent shell sessions preserve operator state, and model routing/fallback is visible in the UI and Mission Control.
  • Configurable fallback chains โ€” LLM and web-search providers can run in an explicit ordered fallback chain, including Exa for search, immediate failover on retryable provider errors, provider/model-level failover visibility in the UI, and a configurable cooldown before retrying the primary LLM route.
  • Provider-aware prompt caching โ€” Prompt caching is on by default for supported routes. CoWork keeps stable system sections cacheable, keeps volatile turn context out of the cached prefix, uses Anthropic automatic caching when available, falls back to explicit Claude breakpoints on OpenRouter, and derives stable OpenAI-family cache keys for GPT routes such as Azure gpt-5.4 / gpt-5.4-mini.
  • Usage Insights โ€” Dashboard showing task stats, cost/token tracking by model, activity heatmaps, top skills, per-pack analytics, per-persona success/retry metrics, and task-result satisfaction signals.
  • ChatGPT History Import โ€” Import your full ChatGPT conversation history. CoWork OS instantly knows your preferences, past projects, and context โ€” no cold start. All data stays encrypted on your machine and never leaves it.
  • Computer use (macOS) โ€” Native desktop control via computer_* tools with a single active session, safety overlay, Esc to abort, per-app session consent (not per click), and a Settings onboarding panel for Accessibility + Screen Recording. Prefer browser and shell tools for web and repo work; computer use is routed as a last-resort lane in policy and planning guidance. Documentation: docs/computer-use.md.
  • Security-first โ€” Approval workflows, sandboxed execution, configurable guardrails, encrypted storage, and a verified suite of 4,932 automated tests across 390 test files.
  • Structured guidance โ€” In plan-mode flows, the agent can pause with short multiple-choice prompts instead of ambiguous free-text follow-ups.
  • Runtime resilience โ€” Main interactive tasks run without an implicit turn window, while explicit turn caps, lifetime safety fuses, context-overflow recovery, and safe path normalization keep long-running work moving without silent file drift.
  • Local-first & BYOK โ€” Your data and API keys stay on your machine. No telemetry. No middleman.

Ideas & Media

Stable workflow entry points for the newest high-impact capabilities.

  • Ideas panel โ€” curated launchpad of pre-written workflow prompts and capability-aware starting points, with deep links into common tasks.
  • Research vaults (llm-wiki) โ€” first-class workspace-local knowledge bases inspired by Andrej Karpathy's LLM Wiki concept, with deterministic raw-source capture, Obsidian-friendly notes, filed-back outputs, vault search, and vault-health analysis. Learn more
  • Document editing sessions โ€” inline PDF region editing, DOCX block replacement, version browsing, and document-aware file viewing for active editing sessions.
  • Image generation โ€” configurable provider ordering across Gemini, OpenAI, Azure OpenAI, and OpenRouter.
  • Video generation โ€” text-to-video and image-to-video routing with polling tools and inline preview.
  • Programmatic technical video โ€” bundled manim-video skill for Manim CE explainers, equation walkthroughs, algorithm visualizations, and animated architecture/data stories. Learn more

See Core Automation, I Gave CoWork OS A Subconscious, And Now It Self-Improves 24/7 | Full Guide, Features, Heartbeat v3, Providers, and Plugin Packs for current runtime details.

Latest Release

0.5.35 packages Managed Agents and Managed Sessions, optional Supermemory integration, the Task Trace Debugger, the bundled novelist skill, explicit-only main-task turn budgets, and the latest renderer, briefing, and release-hardening updates into the latest release. Start with Release Notes 0.5.35, then Features, Getting Started, Channels, and the Changelog.

Quick Start

Download the App

Download the latest release from GitHub Releases:

Platform Download Install
macOS .dmg Drag CoWork OS into Applications
Windows .exe (NSIS installer) Run the installer and follow the prompts

macOS first launch: The app is currently unsigned. On first open, macOS will block it โ€” go to System Settings > Privacy & Security > Open Anyway, or run: xattr -dr com.apple.quarantine "/Applications/CoWork OS.app"

Windows first launch: Windows SmartScreen may show a warning for unrecognized apps. Click More info > Run anyway to proceed.

Works out of the box โ€” defaults to OpenRouter's free model router, no API key needed.

Or Install via npm

npm install -g cowork-os
cowork-os

Windows npm install notes:

  • Run npm install -g cowork-os / npm uninstall -g cowork-os from %USERPROFILE% (or another neutral directory), not from %APPDATA%\npm\node_modules\cowork-os, to avoid EBUSY lock errors.
  • On Windows ARM64, first launch may take longer while native modules are rebuilt; this can run multiple fallback steps before the app opens.
  • If native rebuild fails, install Visual Studio Build Tools 2022 (C++) and Python 3, then retry.
  • If startup logs show ERR_FILE_NOT_FOUND ... dist/renderer/index.html, reinstall the latest package and check Troubleshooting.

Or Build from Source

git clone https://github.com/CoWork-OS/CoWork-OS.git
cd CoWork-OS
npm install && npm run setup
npm run build && npm run package

Windows prerequisites: Native module setup may require Visual Studio Build Tools 2022 (C++) and Python 3. On Windows ARM64, setup automatically falls back to x64 Electron emulation when ARM64 native prebuilds are unavailable.

npm run setup also installs local git hooks (.githooks/) including a pre-commit secret scan. If needed, reinstall hooks with npm run hooks:install.

See the Development Guide for prerequisites and details.

How It Works

  1. Create a task or start from Ideas โ€” Describe what you want ("organize my Downloads by file type", "create a quarterly report spreadsheet") or begin from a curated Ideas prompt. No workspace needed โ€” a temp folder is used automatically if you don't select one.
  2. Choose a mode โ€” Pick Chat, Execute, Plan, Analyze, or Verified for the runtime behavior, then optionally toggle Autonomous (auto-approve actions), Collaborative (multi-agent perspectives), or Multi-LLM (compare providers with a judge) per task.
  3. Monitor execution โ€” Watch the real-time task timeline as the agent plans, executes, and produces artifacts. Parallel tool bursts are grouped into lane summaries, and shell commands run in a live terminal view where you can see output in real-time, stop execution, or provide input (e.g. y/n) directly.
  4. Respond when needed โ€” Destructive operations require explicit approval (unless Autonomous mode is on), and plan-mode tasks can pause for structured multiple-choice input before continuing.

Features

Agent Runtime

Task-based execution with dynamic re-planning, five runtime modes (Chat, Execute, Plan, Analyze, Verified) plus orchestration toggles (Autonomous, Collaborative, Multi-LLM, Think With Me), a shared turn kernel, metadata-driven tool scheduling, graph-backed delegation, typed worker roles, optional workflow-pipeline execution with per-phase model routing, agent teams with persistence, agent comparison, git worktree isolation, AI playbook, and performance reviews. Learn more

Skills now follow an additive runtime model: CoWork can proactively shortlist or apply a relevant skill, but the original task remains canonical. Skills add context and scoped execution modifiers instead of replacing the task prompt. Learn more

Research Vaults (llm-wiki)

CoWork OS includes llm-wiki as a bundled, first-class research-vault workflow inspired by Andrej Karpathy's LLM Wiki idea: keep a /raw corpus, build durable linked notes on top, and make the result easy for agents to traverse later.

You can launch it from the GUI with a normal prompt such as Build a persistent Obsidian-friendly research vault for GRPO papers, from the welcome/onboarding starter cards, or with /llm-wiki when you want explicit slash syntax.

llm-wiki creates and maintains a workspace-local markdown wiki with:

  • immutable raw/ source captures
  • deterministic ingest helpers for articles, papers, repos, datasets, and images
  • durable Obsidian-friendly notes and maps
  • deterministic vault-first search across notes, raw captures, and filed slide decks
  • filed-back Marp slide decks and SVG charts under outputs/
  • SCHEMA.md, index.md, log.md, and inbox.md
  • a GUI vault browser on the welcome screen for core files, recent notes, recent queries, outputs, and raw captures
  • deterministic vault analysis for orphans, broken links, bridge pages, surprising cross-section links, and suggested follow-up questions

It works in desktop and gateway channels, supports inline chaining, and writes inspectable run artifacts alongside the persistent vault. GUI-first prompts can start the flow even before you supply a topic, in which case CoWork asks one short scoping question first. Learn more

Operator Runtime Visibility makes the runtime's learning and routing visible: task detail surfaces now show the learning progression, unified recall spans tasks/messages/files/workspace notes/memory/KG, shell sessions preserve operator state, and live routing/fallback events are surfaced in Mission Control and the task UI. Learn more

Subconscious runs now use the same runtime with stricter safeguards: they start only after memory services are initialized, write durable target-scoped artifacts under .cowork/subconscious/, auto-dispatch across mapped workflows, require isolated git worktrees for code-change dispatch by default, and skip non-git workspaces when isolation is required. See Subconscious Reflective Loop and Troubleshooting.

Output Completion UX

Completion state and file availability are now explicit:

  • High-signal completion toast: finished tasks with outputs show Task complete with filename/count and actions for Open file, Show in Finder, and View in Files
  • Right-sidebar focus: if you are viewing the completed task and the panel is collapsed, the Files panel auto-opens and highlights the primary output
  • Unseen-output badge: if completion happens in another task/view, the collapsed right-panel toggle shows a numeric badge until you open Files
  • Filename-first rows with clear location context: Files rows stay filename-only, with output folder context shown separately (or Workspace root)
  • Artifact parity: artifact-only outputs are treated the same as normal file outputs in completion toasts, timeline details, and Files panel
  • Semantic completion labels: completed tool batches and verifier verdicts now feed the richer completion text shown in timelines, feed relays, and export surfaces

Guided Input & Runtime Recovery

Long-running tasks now have clearer operator handoffs and stronger recovery defaults:

  • Structured input cards: plan-mode tasks can pause with 1-3 short multiple-choice prompts, with answers captured inline in the desktop UI or via the Control Plane web dashboard
  • Adaptive turn recovery: main execute-mode tasks are uncapped at the turn-window level by default, still reserve room for a final answer, and use lifetime/emergency safety stops plus bounded follow-up recovery instead of strategy-assigned 30/30 style windows; explicit maxTurns / windowTurnCap still opt tasks into capped behavior
  • Context overflow retry: context-capacity failures trigger compaction and retry instead of immediate hard failure when the model context window is exceeded
  • Path repair: /workspace/... aliases and drifted relative paths can be normalized back into the active workspace or pinned task root, with strict-fail policies available when you want hard enforcement
  • Parallel timeline lanes: read-only tool batches render as grouped timeline rows so the UI stays readable even when searches/fetches run concurrently

Mission Control

Centralized orchestration and monitoring cockpit with a Kanban board, real-time activity feed, core automation profile visibility, and a Core Harness view for traces, failure clusters, evals, experiments, and learnings. Learn more | Core Automation

Devices

The Devices tab turns CoWork OS into a multi-machine control surface. Save and reconnect remote CoWork nodes, inspect device summaries (activity, apps, storage, alerts, resource signals), launch tasks against a selected machine, browse that machine's remote workspaces, and attach files directly from the remote filesystem before dispatching a task. Learn more

Automations

Automations are now organized around a hard boundary: Memory + Heartbeat + Subconscious form the core runtime, while Triggers, Devices, Scheduled Tasks, Webhooks, and Daily Briefing remain separate ingress or execution surfaces. The home dashboard surfaces recent automation runs so you can monitor background systems without hunting through tabs. Learn more

Zero-Human Company Ops

CoWork OS can be configured as a founder-operated autonomous company shell: venture workspace kit context, a dedicated Settings > Companies control surface, company-linked operator agents, automation profiles, strategic planner issue generation, and Mission Control ops monitoring. Create the company in Companies, activate operator personas such as Company Planner and Founder Office Operator, then attach automation where needed and monitor the company loop from Mission Control. Learn more | Core Automation

Digital Twin Personas

Role-specific AI twins that handle cognitive overhead as optional persona presets. Pick a template (Software Engineer, Engineering Manager, Product Manager, VP, Founder Office Operator, Company Planner, and more), customize it, and activate it as a role preset with recommended skills and prompt/personality defaults. Twins can be linked to a company for company-aware operations, but they no longer own heartbeat or subconscious policy directly. Learn more

Live Canvas & Build Mode

Agent-driven visual workspace for interactive HTML/CSS/JS content, data visualization, and iterative image annotation. Build Mode adds a phased idea-to-prototype workflow with named checkpoints and revert support. Learn more

Multichannel Gateway

Unified AI gateway across 17 channels with security modes, rate limiting, ambient mode, scheduled tasks, and chat commands. Slack now supports multiple workspaces, Telegram supports group-routing policies and allowlists, Discord can be limited to specific guilds, and Feishu/Lark plus WeCom are now first-class channels. Learn more

Inbox Agent

Local-first inbox workspace that turns email into an action queue. It keeps cached mail visible on restart, syncs in the background, and surfaces the right next step for each thread: triage, draft, cleanup, commitment tracking, and scheduling. Learn more

  • Action cards: Unread, Action Needed, Suggested Actions, Open Commitments
  • Mailbox views: Inbox, Sent, All, plus Recent/Priority sorting
  • Workflow buttons: Cleanup, Follow-up, Prep thread, Extract todos, Schedule, Refresh intel
  • Draft handling: Send or discard generated replies before anything is posted externally
  • Commitment tracking: Accept commitments into real follow-up tasks, then mark them done or dismiss them
  • Background sync: Load from the local database immediately and refresh in the background without blanking the inbox on restart

Infrastructure

Built-in cloud infrastructure tools โ€” no external processes or MCP servers needed. The agent can spin up sandboxes, register domains, and make payments natively.

  • Cloud Sandboxes (E2B): Create, manage, and execute commands in isolated Linux VMs. Expose ports, read/write files โ€” all from natural language.
  • Domain Registration (Namecheap): Search available domains, register, and manage DNS records (A, AAAA, CNAME, MX, TXT).
  • Crypto Wallet: Built-in USDC wallet on Base network. Auto-generated, encrypted in OS keychain. Balance displayed in sidebar.
  • x402 Payments: Machine-to-machine HTTP payment protocol. Agent can pay for API access automatically with EIP-712 signed USDC transactions (requires approval).

All infrastructure operations that involve spending (domain registration, x402 payments) require explicit user approval. Configure in Settings > Infrastructure. Learn more

Web Scraping

Advanced web scraping powered by Scrapling with anti-bot bypass, stealth browsing, and structured data extraction. Three fetcher modes โ€” fast HTTP with TLS fingerprinting, stealth with Cloudflare bypass, and full Playwright browser. Includes batch scraping, persistent sessions, proxy support, and five built-in skills (web scraper, price tracker, site mapper, lead scraper, content monitor). Configure in Settings > Web Scraping. Learn more

Integrations

  • Cloud Storage: 6 integrations, including Notion, Box, OneDrive, Google Workspace, Dropbox, and SharePoint
  • 44 MCP Connectors: pre-built enterprise integrations for CRM, support, productivity, analytics, and payments (Salesforce, Jira, HubSpot, Zendesk, Stripe, Tavily, Grafana, Metabase, Socket, and more), with connector notifications available as trigger inputs for automations
  • Developer Tools: glob/grep/edit_file, Playwright browser automation, MCP client/host/registry

Learn more

Active Context Sidebar

Real-time overview of your active integrations, always visible in the right panel. Shows connected MCP connectors (44 available) and native integrations with branded Lucide icons (HubSpot, Salesforce, Google Workspace, Discord, GitHub, Postgres, and more) and green status dots, plus enabled skills from active packs. Each section shows 4 items with internal scrolling for more. Auto-refreshes every 30 seconds. Learn more

Usage Insights

Dashboard with task metrics, cost/token tracking by model, prompt-cache read telemetry (cachedTokens and cache-read rate where available), activity heatmaps (day-of-week and hourly), top skills usage, per-pack analytics, persona-level success/retry/cost breakdowns, and task-result thumbs up/down quality signals with 7/14/30-day period selection. Access from Settings > Usage Insights. Learn more

LLM Providers

34 provider options, with 13 built-in providers and 21 compatible/gateway providers. Use cloud APIs or run fully offline with Ollama, configure an ordered fallback chain for runtime failover, and get default-on prompt caching on supported Claude and GPT-style routes. Claude supports both direct API keys and Claude subscription tokens from claude setup-token, with live Refresh Models support in Settings. Learn more

Plugin Platform & Customize

Unified plugin platform with 18 bundled role-specific packs (Engineering, DevOps, Product, Sales, QA, Finance, and more), each bundling skills, agent roles, connectors, and "Try asking" prompts. Packs can link to Digital Twin personas as optional role presets.

  • Search & filter: Real-time sidebar search across pack names, descriptions, categories, and skill names
  • Per-skill control: Enable or disable individual skills within a pack without toggling the whole pack
  • Persistent toggles: Pack and skill states survive app restarts
  • Update detection: Background version checks against the registry with visual indicators
  • "Try asking" in chat: Empty chat shows randomized prompt suggestions from active packs
  • Plugin Store: In-app marketplace for browsing, installing (Git/URL), and scaffolding custom packs, now with install-time security scanning and quarantine handling for imported packs
  • Skill Store & external skills: Desktop GUI support for CoWork Registry skills, direct ClawHub installs, and generic external skill imports from Git repos, raw manifests, and SKILL.md bundles, with managed scan reports and quarantine for unsafe imports
  • External skill directories: Add shared read-only skill folders without importing or copying those skills into CoWork's managed directory
  • Remote Registry: Community pack catalog with search and category filtering
  • Admin Policies: Organization-level controls โ€” allow/block/require packs, restrict installations, set agent limits, distribute org-managed packs from a shared directory
  • Per-pack analytics: Usage Insights dashboard groups skill usage by parent pack

Access from Settings > Customize. Learn more

Best-Fit Workflows

CoWork OS ships purpose-built packs and Tier-1 connectors for three operational lanes where governed AI delivery has the clearest ROI:

Lane Pack Connectors
Support Ops Customer Support Pack Zendesk, ServiceNow
IT Ops DevOps Pack ServiceNow, Jira, Linear
Sales Ops Sales CRM Pack HubSpot, Salesforce

These are the workflows where approval gates, local data control, and measurable outcome delivery pay off most โ€” and where CoWork OS is a vendor-swap-friendly alternative to point solutions or BPO tooling. Learn more

Extensibility

  • 138 built-in skills across developer, productivity, communication, documents, game development, mobile development, financial analysis, infrastructure-as-code, and more
  • Custom skills in ~/Library/Application Support/cowork-os/skills/ (macOS) or %APPDATA%\cowork-os\skills\ (Windows)
  • 18 bundled plugin packs with 55+ role-specific skills and Digital Twin integration
  • Plugin Store โ€” browse, install from Git/URL, scaffold custom packs, and review quarantine/report state for imported packs
  • Skill Store โ€” browse CoWork Registry skills, search ClawHub, import external skills from Git, raw JSON, or raw SKILL.md, and review quarantine/report state for imported skills
  • MCP support โ€” client, host, and registry

Voice Mode

Text-to-speech (ElevenLabs, OpenAI, Web Speech API), speech-to-text (Whisper), and outbound phone calls. Learn more

Knowledge Graph

Built-in structured entity and relationship memory backed by SQLite. The agent builds a knowledge graph of your workspace โ€” people, projects, technologies, services, and their relationships โ€” with 10 dedicated tools, FTS5 search, multi-hop graph traversal, temporal validity on edges (valid_from / valid_to), historical as_of queries, auto-extraction from task results, and confidence scoring with decay. Learn more

Memory & Context

Persistent memory with privacy protection, FTS5 search, LLM compression, and a contract-driven workspace kit (.cowork/) for durable human-edited context. The runtime now makes memory explicit as a four-layer wake-up model: L0 Identity and L1 Essential Story are prompt-visible by default, while L2 Topic Packs and L3 Deep Recall stay tool-driven through memory_topics_load, search_sessions, search_memories, and exact-span search_quotes. Runtime-native checkpoints capture both compact structured summaries and verbatim evidence packets before compaction, on meaningful task completion, and periodically during long runs.

The workspace kit separates workspace-wide files such as AGENTS.md, USER.md, MEMORY.md, TOOLS.md, SOUL.md, IDENTITY.md, RULES.md, VIBES.md, and LORE.md from project-scoped files such as .cowork/projects/<projectId>/CONTEXT.md and .cowork/projects/<projectId>/ACCESS.md. Special files get dedicated lifecycle handling: BOOTSTRAP.md is a one-time onboarding checklist tracked through .cowork/workspace-state.json, while HEARTBEAT.md is reserved for recurring Heartbeat v3 checklist work instead of general task context.

Every tracked file follows a shared parser/linter model with freshness windows, secret detection, missing-file status, and revision snapshots stored under .cowork/**/.history/. Workspace kit health is surfaced in the app and can be checked locally with npm run kit:lint for human-readable output or JSON export. Import your ChatGPT history to eliminate the cold-start problem โ€” CoWork OS knows you from day one. All imported data is stored locally and encrypted on your machine. Optional Supermemory integration adds an external provider lane with supermemory_profile, supermemory_search, supermemory_remember, and supermemory_forget, plus optional prompt-time profile injection and background mirroring of non-private local memory captures. Proactive session compaction automatically generates comprehensive structured summaries when context reaches 90% capacity, and checkpoint capture preserves exact supporting spans so recall quality survives compaction. Learn more | Supermemory | Context Compaction

Agent Personas
Role-specific agent personas and intent-first task startup

Architecture

โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚                    Security Layers                               โ”‚
โ”‚  Channel Access Control โ”‚ Guardrails & Limits โ”‚ Approval Flows   โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
                              โ†•
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚                    React UI (Renderer)                           โ”‚
โ”‚  Task List โ”‚ Timeline โ”‚ Approval Dialogs โ”‚ Live Canvas           โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
                              โ†• IPC
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚                 Agent Daemon (Main Process)                      โ”‚
โ”‚  Task Queue โ”‚ Agent Executor โ”‚ Tool Registry โ”‚ Cron Service      โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
                              โ†•
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚                    Execution Layer                               โ”‚
โ”‚  File Ops โ”‚ Skills โ”‚ Browser โ”‚ LLM Providers (30+) โ”‚ MCP        โ”‚
โ”‚  Infrastructure (E2B Sandboxes โ”‚ Domains โ”‚ Wallet โ”‚ x402)       โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜
                              โ†•
โ”Œโ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”
โ”‚  SQLite DB โ”‚ Knowledge Graph โ”‚ MCP Host โ”‚ WebSocket โ”‚ Remote Access  โ”‚
โ””โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”€โ”˜

See Architecture for the full technical deep-dive.

Security

ZeroLeaks Security Assessment
Top security score on ZeroLeaks โ€” outperforming many commercial solutions
View Full Report

  • Configurable guardrails: Token budgets, cost limits, iteration caps, dangerous command blocking
  • Approval workflows: User consent required for destructive operations
  • Sandbox isolation: macOS sandbox-exec (native), Docker containers, or process-level isolation on Windows
  • Encrypted storage: OS keychain + AES-256 fallback
  • 4,932 automated tests in the suite across 390 test files (4,854 passed, 78 skipped), including 135+ security unit tests under tests/security/ and 250+ control-plane and WebSocket protocol tests

See Security Guide and Security Architecture for details.

Deployment

Mode Platform Guide
Desktop App macOS, Windows Getting Started
Headless / Server Linux VPS VPS Guide
Self-Hosted Docker / systemd Self-Hosting
Remote Access Tailscale / SSH Remote Access

Screenshots

Live Canvas
Live Canvas for visual, iterative build workflows

Spreadsheet Output
Structured spreadsheet outputs generated directly in chat

Connector Setup
Enterprise connector setup with OAuth and credential management

Usage Insights Dashboard
Usage Insights dashboard with performance, efficiency, and activity trends

Extensions Manager
Extensions manager for installed plugin packs and lifecycle controls

Customize Skill Packs
Pack-level customization with per-skill toggles and suggested prompts

Roadmap

Planned

  • VM sandbox using macOS Virtualization.framework
  • Network egress controls with proxy
  • Linux desktop support

See CHANGELOG.md for the full history of completed features.

Documentation

Guide Description
Getting Started First-time setup and usage
Beginner's Guide Practical guide to what CoWork OS is for and which workflows to try first
Release Notes 0.5.19 What is new in the latest release
Use Case Showcase Comprehensive guide to what you can build and automate
Features Complete feature reference
Chat Mode Direct chat-only mode with no tools and same-session follow-ups
Platform Updates Detailed implementation notes for integration setup, skill proposals, workspace-kit contracts, and bootstrap lifecycle
Channels Messaging channel setup (17 channels)
X Mention Triggers Configure do: mention-triggered task ingress on desktop and headless
Providers LLM and search provider configuration, costs, and fallback chains
Migration Guide Migration checklist and compatibility notes
Development Build from source, project structure
Architecture Technical architecture deep-dive
Skills Runtime Model Canonical prompt invariant, additive skill application, routing shortlist model, and use_skill contract
LLM Wiki First-class research vault workflow, slash syntax, vault layout, analyzer outputs, and Obsidian-friendly knowledge-base behavior
manim-video Skill Bundled Manim CE workflow for technical animation, project scaffolding, and draft-to-production render flow
Core Automation Runtime boundary for Memory + Heartbeat + Subconscious, automation profiles, and the core harness
Heartbeat v3 Default two-lane heartbeat architecture, signals, Pulse, Dispatch, and automation-profile-backed operator semantics
Security Guide Security model and best practices
Enterprise Connectors MCP connector development
Self-Hosting Docker and systemd deployment
VPS/Linux Headless server deployment
Remote Access Tailscale, SSH tunnels, WebSocket API
Knowledge Graph Structured entity/relationship memory
Context Compaction Proactive session compaction with structured summaries and chat-history summarization
Mission Control Agent orchestration dashboard
Subconscious Loop Architecture and operating model for the core reflective evidence -> hypotheses -> critique -> winner -> backlog -> dispatch loop
Zero-Human Company Ops Founder-directed company planning, operators, and Mission Control ops workflows
Plugin Packs Plugin platform, Customize panel, and Plugin Store
Skill Store & External Skills ClawHub support, external skill imports, and managed-skill install flows
Best-Fit Workflows Support Ops, IT Ops, and Sales Ops โ€” where CoWork OS delivers the strongest ROI
Admin Policies Enterprise admin policies and organization pack management
Digital Twins Optional role-based persona presets and cognitive offload without core-runtime ownership
Digital Twins Guide Comprehensive guide with scenarios and expanded job areas
Windows npm Smoke Test Clean Windows install/launch validation checklist for npm releases
Troubleshooting Common issues and fixes
Uninstall Uninstall instructions

Data Handling

  • Stored locally: Task metadata, timeline events, artifacts, workspace config, memories (SQLite)
  • Sent to provider: Task prompt and context you choose to include
  • Not sent: Your API keys (stored via OS keychain), private memories

Compliance

Users must comply with their model provider's terms: Anthropic ยท AWS Bedrock

Contributing

See CONTRIBUTING.md for guidelines.

License

MIT License. See LICENSE.


"Cowork" is an Anthropic product name. CoWork OS is an independent open-source project and is not affiliated with, endorsed by, or sponsored by Anthropic. If requested by the rights holder, we will update naming/branding.

Release History

VersionChangesUrgencyDate
v0.5.48## [0.5.48] - 2026-05-28 ### Added - **Release notes for 0.5.48**: see [Release Notes 0.5.48](docs/release-notes-0.5.48.md). - **Side Chat**: `/side [question]` opens a right-side read-only side conversation for the selected running task, with hidden parent context, live parent-status snapshots for progress questions, and tools denied. - **Secure MCP Tunnels**: added self-hosted outbound-only private MCP access with a relay, local tunnel client, separate client/caller tokens, policy enforcementHigh5/28/2026
v0.5.47# Release Notes 0.5.47 Release `0.5.47` is a reliability-focused release for longer-running CoWork OS sessions. It reduces main-thread memory search pressure, improves multi-agent and multi-task renderer stability, tightens permission/privacy behavior, and keeps the macOS desktop artifact on the unsigned fallback distribution path. ## Highlights - **Multi-agent and multi-task stability**: task-event appends now replace high-frequency transient progress events in batches, cap noisy renderer evHigh5/21/2026
v0.5.46## [0.5.46] - 2026-05-17 ### Added - **Everyday Agent**: added the Everyday Agent runtime service, schema, IPC/preload handlers, admin access controls, renderer panel, task-surface wiring, CSS, and focused tests for always-on personal-agent workflows. - **Durable Runtime Context**: added durable context services, memory pressure analysis, memory nudges, external memory provider support, transcript/user-profile synthesis upgrades, memory feature settings, and documentation for long-lived agent cHigh5/17/2026
v0.5.45## [0.5.45] - 2026-05-14 ### Added - **Release notes for 0.5.45**: see [Release Notes 0.5.45](docs/release-notes-0.5.45.md). - **Claude-for-Legal workflows**: documented and registered bundled legal practice plugin packs, slash commands, editable picker flows, demand-letter intake cards, management-command exclusions, and safety behavior. - **Finance and legal plugin packs**: added legal practice packs, finance-core packs, fund administration, KYC operations, and expanded equity research, finanHigh5/14/2026
v0.5.44# Release Notes 0.5.44 Release `0.5.44` is a broad reliability and platform release. It expands Browser V2 and channel documentation, improves Browser Use approvals and gateway routing, adds DeepSeek and NanoGPT provider coverage, fixes several active-runtime bugs found during log review, and hardens the release pipeline that produced the macOS, Windows, Linux server, npm, and GitHub release artifacts. ## Highlights - **Browser V2 and Browser Workbench docs**: added the canonical Browser V2 aHigh5/5/2026
v0.5.42# Release Notes 0.5.42 Release `0.5.42` is a Windows installer hotfix for `0.5.41`. ## Fixed - **Windows installer architecture**: the Windows release artifact is now built as an x64 app package, so standard Windows PCs install `CoWork OS.exe` correctly and desktop shortcuts point to a runnable executable. - **Release packaging guardrail**: added an explicit `package:win:x64` packaging command so Windows release artifacts are not accidentally built with the host Mac architecture. ## Notes THigh4/30/2026
v0.5.40## [0.5.40] - 2026-04-26 ### Added - **Release notes for 0.5.40**: see [Release Notes 0.5.40](docs/release-notes-0.5.40.md). - **Chronicle Desktop Research Preview**: opt-in recent-screen context for vague desktop references, with consent-gated passive capture, pause/resume controls, per-task toggles, observation management, promoted `screen_context` evidence, and optional linked background memory generation. - **Workflow Intelligence docs and product framing**: added the canonical Workflow IntHigh4/26/2026
v0.5.35## [0.5.35] - 2026-04-12 ### Added - **Release notes for 0.5.35**: see [Release Notes 0.5.35](docs/release-notes-0.5.35.md). - **Managed Agents and Managed Sessions**: CoWork now includes versioned managed-agent definitions, durable managed-session runtime plumbing, and Mission Control/control-plane surfaces for operating longer-lived reusable agents. - **Optional Supermemory integration**: Supermemory can now act as an external memory lane with setup flows, tool exposure, runtime metadataHigh4/12/2026
v0.5.34## [0.5.34] - 2026-04-08 ### Added - **Release notes for 0.5.34**: see [Release Notes 0.5.34](docs/release-notes-0.5.34.md). - **Core automation profiles**: automation profiles now own the always-on runtime surface, replacing the older heartbeat-centric ownership path. - **Core automation pipelines**: the runtime now persists traces, failures, failure clusters, eval cases, harness experiments, learnings, memory candidates, regression gates, and memory-distill runs as first-class data. - *High4/8/2026
v0.5.23## [0.5.23] - 2026-04-05 ### Added - **Release notes for 0.5.23**: see [Release Notes 0.5.23](docs/release-notes-0.5.23.md). - **Subconscious reflective loop**: CoWork now includes a new reflective automation subsystem with persisted targets, backlog items, hypotheses, critiques, dispatch records, artifact storage, migration support, and a dedicated settings surface under Automations. - **Provider-aware prompt caching**: stable prompt sections can now be cached across Anthropic, OpenRouter ClauMedium4/5/2026
v0.5.22## [0.5.22] - 2026-04-03 ### Added - **Release notes for 0.5.22**: see [Release Notes 0.5.22](docs/release-notes-0.5.22.md). - **Session checklist primitive**: execution-style tasks can create a session-local ordered checklist via `task_list_create`, maintain it with `task_list_update`, inspect it with `task_list_list`, and surface it read-only in the task UI with verification nudge state. - **Shared turn/runtime kernel**: task steps, follow-ups, subagents, and verification now run through a caMedium4/3/2026
v0.5.21# Release Notes 0.5.21 ## Summary Release `0.5.21` republishes the current runtime refresh as a publishable build. The codebase changes are the same feature set shipped in `0.5.20`: shared turn kernel, metadata-driven tool scheduling, normalized orchestration graph, typed worker roles, stricter verification, semantic batch summaries, and the UI/completion updates that surface them. ## New Features - Shared `TurnKernel` for steps, follow-ups, subagents, and verification flows. - MetaMedium4/1/2026
v0.5.19## Overview Release `0.5.19` expands production operations with **isolated app profiles** (export/import), **enterprise messaging** (Feishu/Lark and WeCom), a **stronger multichannel gateway** (multiple Slack workspaces per profile, Telegram group routing, Discord guild filtering, aligned Signal and email policies), **ordered LLM and search failover** (including **Exa**), **optional external skill directories**, and **ACP lifecycle and trust hardening** (persisted tasks, remote cancel, scopedMedium3/30/2026
v0.5.18# Release Notes 0.5.18 This release covers all product changes merged after `v0.5.14` on 2026-03-29. ## Overview The 0.5.18 release adds operator runtime visibility, Discord supervisor mode, a Skill Store with external skill imports, and Microsoft OAuth for Outlook email. It hardens mailbox security and email parsing, consolidates the Devices and Dispatch surfaces, improves Mission Control with an all-workspaces view, and delivers significant renderer performance work. The release also ships Medium3/30/2026
v0.5.14# Release Notes 0.5.14 This page summarizes the product changes included in `0.5.14`, based on changes merged after `v0.5.13` on 2026-03-28. ## Overview The 0.5.14 release turns Inbox Agent into a cross-channel relationship workspace. It adds manual contact identity linking, reply routing through the most active connected channel, Mission Control handoff for inbox threads, and mailbox-native automation flows. The release also consolidates Google Workspace helpers, refreshes inbox and settingsMedium3/29/2026
v0.5.13# Release Notes 0.5.13 This page summarizes the product changes included in `0.5.13`, based on changes merged after `v0.5.12` on 2026-03-22. ## Overview The 0.5.13 release ships the Inbox Agent as a full AI-powered email workspace, introduces the R&D Council system for multi-LLM collaborative research, adds AcpxRuntimeRunner for Codex task execution via an external acpx binary, and brings task replay, computer use tooling, and batch image processing to the platform. On the infrastructure sideMedium3/28/2026
v0.5.12# Release Notes 0.5.12 This page summarizes the product changes included in `0.5.12`, based on changes merged after `v0.5.11` on 2026-03-20. ## Overview The 0.5.12 release restructures the heartbeat system into a signal-driven Pulse/Dispatch pipeline, introduces the Ideas panel as a curated workflow entry point, adds Azure Anthropic as a new built-in provider, expands image generation routing to OpenRouter, adds document editing sessions and video generation, and tightens task routing, memoryLow3/22/2026
v0.5.11# Release Notes 0.5.11 This page summarizes the product changes included in `0.5.11`, based on the changes merged after `v0.5.1` on 2026-03-18. ## Overview The branch adds a broader operating surface around mission control, health, QA, connector profiling, and autonomous follow-up, while also refreshing the core agent runtime and documentation. ## What Changed ### New operator surfaces - **Mission Control**: new dashboard surfaces for agent board, feed, ops, overview, issue detail, task deLow3/20/2026
v0.5.1# CoWork OS v0.5.1 Release Notes **Release Date:** 2026-03-18 **Previous Release:** v0.5.0 (2026-03-15) This patch release covers 69 commits since `v0.5.0`, focused on connector consolidation, tool-catalog correctness, collaborative task UX, local AI, research channels, runtime polish, and follow-on fixes around remote access, WhatsApp, renderer behavior, and development startup. --- ## Highlights - **Connector catalog consolidation** โ€” shipped MCP connectors are now curated to the supporteLow3/18/2026
v0.5.0# CoWork OS v0.5.0 Release Notes **Release Date:** 2026-03-15 **Previous Release:** v0.4.13 (2026-03-05) This is a major feature release with 463 commits across agent orchestration, autonomous self-improvement, workspace memory, managed devices, a new semantic timeline, company operations infrastructure, and more. --- ## Highlights - **Sub-Agent Orchestrator** โ€” Delegated execution lanes with confirmation gates, risk classification, and capability-based model selection - **Autonomous Self-ILow3/15/2026
v0.4.13## [0.4.13] - 2026-03-05 ### Added - **Universal workflow slash skills**: `/simplify` and `/batch` now work across desktop and gateway channels, including inline chaining (`then run /simplify`) and shared parsing/normalization. - **Zero-config web search fallback**: DuckDuckGo now acts as a built-in last-resort search provider, so `web_search` works even without paid API keys. - **Structured input requests**: propose-mode tasks can use `request_user_input` to pause for persisted multiple-choiceLow3/5/2026
v0.4.12## [0.4.12] - 2026-02-28 ### Added - **Agentic Work Unit (AWU) metric**: Usage Insights now tracks agent efficiency via AWU โ€” successfully completed tasks measured against tokens and cost consumed. Shows AWU count, tokens/AWU, cost/AWU, AWUs per dollar, and period-over-period trend comparison. - **All Workspaces aggregation**: Usage Insights defaults to "All Workspaces" view, aggregating metrics across every workspace. Individual workspace filtering remains available via dropdown. - **CompletioLow2/28/2026
v0.4.11## 0.4.11 No changelog entry found for 0.4.11. Low2/27/2026
v0.4.10## 0.4.10 No changelog entry found for 0.4.10. Low2/27/2026
v0.4.9## 0.4.9 This is the first recommended **Windows install baseline** for normal users using the documented GitHub/npm installation flow. ### Highlights - Windows first-run install reliability improvements for native setup (`better-sqlite3`) with clearer fallback behavior. - Startup resilience fixes that prevent Windows black-screen startup from missing renderer assets. - Runtime resource-path fixes for npm-installed (non-packaged) runs so bundled skills/templates/plugins load correctly. - WindoLow2/26/2026
v0.3.95## Highlights **CoWork OS v0.3.95** builds on v0.3.94 with a complete restructuring of temp workspace lifecycle management, managed workspace paths for cron jobs, sandbox cleanup improvements, and several stability fixes. This release supersedes v0.3.94 โ€” all features from both releases are included below. --- ## What's New in v0.3.95 ### ๐Ÿ—๏ธ Temp Workspace Restructuring - **Scoped temp workspace identity** โ€” Temp workspaces now use scope prefixes (`ui`, `gateway`, `hooks`, `tray`) for contLow2/26/2026
v0.3.94## Highlights **CoWork OS v0.3.94** is a major feature release adding financial intelligence packs, a citation engine for research tasks, multi-phase workflow pipelines, deep work mode, and 20+ new skills โ€” plus enterprise OAuth connectors, document generation tools, and executor stability fixes. --- ### ๐Ÿฆ Financial Intelligence (5 new plugin packs + 8 skills) Five new plugin packs for finance professionals, each with a dedicated agent role and 5 specialized skills: - **Equity Research** โ€”Low2/26/2026
v0.3.93## v0.3.93 ### Highlights This release brings the **Plugin Store**, **Admin Policies**, a **Placeholder Engine** with persona-aware prompts, **task source tracking**, and a comprehensive **UI font consolidation** โ€” along with critical packaging fixes for npm installs. --- ### New Features #### Plugin Store & Pack Management - Built-in **Plugin Store** UI for browsing and installing plugin packs directly from the app - Plugin pack install orchestration with temp-dir-then-rename strategy for Low2/24/2026
v0.3.91## What's New in 0.3.91 ### Major Features - **Proactive Suggestions** โ€” The app now proactively suggests relevant actions and next steps based on your current context, with edge case handling for robust behavior. - **Digital Twin Persona Templates** โ€” Create and manage digital twin personas that capture your preferences, expertise, and communication style for more personalized agent interactions. - **Knowledge Graph System** โ€” Full knowledge graph with FTS5 full-text search and graph traverLow2/24/2026
v0.3.90## What's New in 0.3.90 ### Major Features - **Git Worktree Isolation** โ€” Tasks can run in isolated git worktrees with automatic branch creation (`cowork/<task-slug>`), auto-commit, merge back to base branch, conflict detection, and worktree cleanup after completion. - **Collaborative Mode** โ€” Auto-create ephemeral multi-agent teams for a task. Multiple agents work in parallel, sharing their analysis and reasoning in real-time via the Collaborative Thoughts Panel, with a leader agent synthesiLow2/23/2026
v0.3.89## What's New in v0.3.89 ### Declarative Plugin System - **Plugin Packs** โ€” New `pack` plugin type for bundling skills, agent roles, and connectors in a single JSON manifest with no TypeScript required - **Declarative Connectors** โ€” Define tools as JSON with HTTP, shell, or script handlers. Community contributions no longer need compiled code. - **5 Built-in Plugin Packs** โ€” Ships with ready-to-use packs for Sales/CRM, DevOps, Data Analysis, Content Marketing, and Customer Support (20+ skills,Low2/20/2026
v0.3.88## What's New in v0.3.88 ### New Features - **Vision/Image Support Across LLM Providers** โ€” All LLM providers (OpenAI, Anthropic, Google, etc.) now support image/vision inputs, enabling multimodal task workflows - **LOOM Email Protocol** โ€” New gateway integration supporting the LOOM email protocol alongside existing IMAP/SMTP - **Conway Terminal Integration** โ€” Added Conway Terminal support with payment safety caps for secure financial operations - **Image Attachments in Agent Executor** โ€” AgeLow2/19/2026
v0.3.87## What's New ### Features - **Codebase map** in workspace context pack (PR #20) - **Agent role restrictions** with stage presets (PR #21) - **ChatGPT history import** with guided wizard (PR #22) - **read_files tool** for glob-based context attach (PR #23) - **Task telemetry export** to JSON (PR #24) - **Child task control tools** โ€” cancel, pause, resume agents (PR #25) ### Fixes - CI: resolved all 102 ESLint errors (0 remaining) - CI: fixed Electron binary install for test runner (8 test failLow2/17/2026
v0.3.86## [0.3.86] - 2026-02-14 ### Added - **ACP and Canvas control-plane endpoints**: introduced ACP task-delegation handlers and new canvas APIs (`canvas.list/get/snapshot/content/push/eval/checkpoint.*`) with corresponding protocol constants and IPC wiring. - **Canvas checkpoint tooling**: added `canvas_checkpoint`, `canvas_restore`, and `canvas_checkpoints` tools, plus in-memory checkpoint history and restore flows in `CanvasManager`. - **Renderer i18n support**: added language resources and UI sLow2/14/2026
v0.3.85## [0.3.85] - 2026-02-14 ### Fixed - **Hoisted Electron detection in setup**: `npm run setup` now treats `../electron` as valid in npm-hoisted installs, so first-time setup no longer triggers unnecessary full dependency bootstrap. - **Native setup install scope**: missing `better-sqlite3` recovery and rebuild now run from the actual install root (not inside `node_modules/cowork-os`), reducing first-run reify pressure that caused frequent macOS `SIGKILL`. - **Release publish gating**: npm/GitHubLow2/14/2026
v0.3.84## [0.3.84] - 2026-02-14 ### Fixed - **Release smoke-test module resolution**: installability validation now runs Electron with `cwd` set to the installed `cowork-os` package directory so `require('better-sqlite3')` resolves correctly after setup. - **Release continuity**: keeps the 0.3.82 npm SIGKILL regression fix while restoring end-to-end GitHub release packaging path after CI validation. Low2/14/2026
v0.3.79## [0.3.79] - 2026-02-14 ### Fixed - **macOS install reliability carry-forward**: retained the 0.3.71 SIGKILL workaround for first-time users by documenting and reinforcing the `npm install --ignore-scripts` + `npm run --prefix node_modules/cowork-os setup` flow. - **Release workflow hardening**: ensured the macOS release job always creates or reopens the GitHub release as a draft before packaging so `electron-builder` can attach DMG/zip assets without immutable-release failures. - **Version alLow2/14/2026
v0.3.78## What's changed in 0.3.78 ### Fixed - Restore missing `src/electron/agent/executor-helpers.ts` source file required by packaging and CI. - Fix TypeScript strictness errors in `executor.ts` (implicit `any` usages). - Align `remote-client.ts` TLS fingerprint callback typing with current `ws` typings. - Keep `README` install flow aligned to user-tested `/tmp` first-run commands and bump release metadata. Low2/14/2026
v0.3.75## What's fixed - Restored the installable Electron patch resolution from `v0.3.71` by aligning the published lockfile to Electron `40.2.1`. - Kept release publish workflow/docs behavior aligned to reduce release publish mismatch. ## Installability notes - Local install path now has improved default success versus earlier `0.3.74` behavior, with one-step install still environment-sensitive in very low-memory contexts. - If you still hit `SIGKILL` during install, use: - `npm install --ignore-Low2/14/2026
v0.3.74## 0.3.74 release notes ### Fixed - Release pipeline fixed to publish draft GitHub releases regardless of tag variant by resolving both `v<version>` and trigger refs. - Release metadata and docs synchronized for `0.3.74`, including install and release workflow reliability notes. - CI now publishes all three jobs successfully, including npm, GitHub Packages, and macOS desktop assets. ### Install reliability notes - If `npm install cowork-os@0.3.74` exits with `SIGKILL` during `scripts/postinstaLow2/14/2026
v0.3.72## What's Changed in 0.3.72 ### Added - Session workspace isolation and cleanup - Session-based temporary workspace IDs - Dedicated temp folder creation and automatic cleanup behavior - Autonomous mode path for task execution where approval prompts can be skipped when explicitly enabled - Companion-mode handling for short conversational prompts - Search provider execution ordering now prefers Brave when available and supports fallback across configured providers - Shared PDF parsing compatiLow2/14/2026
v0.3.71Release v0.3.71Low2/11/2026
v0.3.69### Fixed - `npm install -g cowork-os` could fail on macOS with `fsevents` (`binding.gyp not found`) due an npm 11 rebuild edge case triggered by `playwright`. - Switched runtime browser dependency to `playwright-core` via npm alias (`playwright` package name preserved in code) to avoid the failing `fsevents` install path. - Added launcher self-heal: on first run, `cowork-os` now verifies direct runtime dependencies and repairs missing packages with a script-free npm install pass before boot. - Low2/11/2026
v0.3.66Release v0.3.66Low2/11/2026
v0.3.62Release v0.3.62Low2/11/2026
v0.3.61Release v0.3.61Low2/11/2026
v0.3.59## What's New in v0.3.50 ### Headless Deployments - Added Node.js daemon entrypoint for running CoWork OS without the Electron desktop shell - Added headless mode and environment import support for non-GUI runtime flows - Added Docker and VPS deployment support with updated self-hosting documentation ### Apple Tools - Added Apple Calendar tools - Added Apple Reminders tools ### Gateway Ambient Mode and Scheduling - Added gateway ambient mode and self-message capture support - Added `/schedLow2/11/2026
v0.3.29## What's New in v0.3.29 ### Image Generation (Multi-Provider) Generate images directly from tasks via the new `generate_image` tool with automatic provider selection: - **Gemini** โ€” gemini-image-fast (2.5 Flash) and gemini-image-pro (3 Pro) - **OpenAI** โ€” gpt-image-1, gpt-image-1.5, DALL-E 3, DALL-E 2 - **Azure OpenAI** โ€” deployment-based image generation Model alias resolution makes it easy to request models conversationally (e.g. "gpt-1.5", "dalle-3"). The agent auto-selects the best confLow2/9/2026
v0.3.28Release v0.3.28Low2/5/2026
v0.3.27Release v0.3.27Low2/5/2026
v0.3.26Release v0.3.26Low2/5/2026
v0.3.25## What's New in v0.3.25 This release introduces **Google Workspace Integration** with unified access to Gmail, Google Calendar, and Google Drive, along with significant improvements to gateway channels and agent reliability. ### ๐Ÿš€ Highlights - **Google Workspace Integration** - Gmail, Calendar, and Drive with shared OAuth - **Gateway Channel Enhancements** - Better cleanup, Matrix direct rooms, Slack groups - **Agent Transient Error Retry** - Automatic retry with exponential backoff - **SmaLow2/5/2026
v0.3.24## What's New in v0.3.24 ### โœจ Features - **Visual Theme System**: Choose between Light, Dark, or System (follows macOS) theme modes. Configure in Settings > Appearance. - **Workspace Recency Ordering**: Workspaces are now automatically ordered by last used time for quicker access to your most recent work. - **Web Search Retry Logic**: Automatic retry with exponential backoff for transient errors (rate limits, timeouts, server errors). Includes graceful degradation with helpful error messages.Low2/5/2026
v0.3.23## What's New in v0.3.23 Patch release fixing noisy build output. ### Fix - **Build**: Remove `-k` flag from `concurrently` in connector build script to eliminate confusing SIGTERM messages This is a minor fix to v0.3.22. The SIGTERM messages during `npm run build` were harmless but confusing - they no longer appear. **Full Changelog**: https://github.com/CoWork-OS/CoWork-OS/compare/v0.3.22...v0.3.23 --- See [v0.3.22 release notes](https://github.com/CoWork-OS/CoWork-OS/releases/tag/v0.3.2Low2/3/2026
v0.3.22## What's New in v0.3.22 This release brings major expansions to CoWork OS with enterprise-grade integrations, cloud storage connectors, and support for 20+ AI providers. --- ### ๐Ÿข Enterprise MCP Connectors Pre-built MCP server connectors for enterprise tools, installable from **Settings > MCP Servers > Browse Registry**: | Connector | Type | Description | |-----------|------|-------------| | **Salesforce** | CRM | Search, create, and update records with SOQL support | | **Jira** | Issue TLow2/3/2026
v0.3.21## What's New in v0.3.21 ### ๐Ÿฆ X/Twitter Integration - New `x_action` tool for agent interactions with X/Twitter via Bird CLI - Support for browser cookie extraction and manual auth tokens - XSettings UI for managing X connection - Write actions (tweet, reply, follow, unfollow) require user approval ### ๐ŸŽจ Canvas Browser Mode - Open URLs directly in canvas windows - Session cutoff prevents stale session reuse on follow-ups - Improved loading UI with spinner animation ### ๐Ÿš€ Agent ImprovementLow2/3/2026

Dependencies & License Audit

Loading dependencies...

Similar Packages

affine-mcp-serverModel Context Protocol server for AFFiNE. Connect AI assistants to AFFiNE workspaces, documents, databases, and collaboration APIs over stdio or HTTP.v2.1.0
google-workspace-mcp-with-scriptNo descriptionmain@2026-06-07
claude-blocker๐Ÿ›ก๏ธ Block distracting websites when Claude Code is in use, ensuring focused work sessions and minimizing interruptions.main@2026-06-07
claude-team-mcp๐Ÿค– Orchestrate AI models like GPT and Claude for seamless collaboration in multi-agent development tasks with the Claude Team MCP Server.master@2026-06-07
flywheel-memoryMCP server giving AI a knowledge graph over Obsidian vaults. 13-layer scoring that learns. Local-first, zero cloud.flywheel-memory-v2.12.16

More in MCP Servers

PlanExeCreate a plan from a description in minutes
agentroveYour own Claude Code UI, sandbox, in-browser VS Code, terminal, multi-provider support (Anthropic, OpenAI, GitHub Copilot, OpenRouter), custom skills, and MCP servers.
ProxmoxMCP-PlusEnhanced Proxmox MCP server with advanced virtualization management and full OpenAPI integration.
node9-proxyThe Execution Security Layer for the Agentic Era. Providing deterministic "Sudo" governance and audit logs for autonomous AI agents.