| Owned WorkstationA dedicated Apple Mac mini that belongs to the customer and runs their agents around the clock. | Dedicated always-on machine | Runs agent work continuously without tying up the customer's laptop. | Being the machine that stays awake so work can finish while they are gone. | PainWork stops the moment they close the laptop or leave the office.BenefitWork continues overnight, over weekends, and while travelling. | Solopreneur with a Store · Trades / Service Operator · Performance Marketer | Verified |
| Owned Workstation | Customer-owned hardware and data | Local files, memory, credentials and agent configuration live on hardware they bought. | Removing the need to trust a vendor's cloud with business data. | PainCancel a SaaS seat and the AI evaporates along with everything in it.BenefitUnplug test: unplug it and you still hold the machine, local data, memory and configuration. | Privacy-Bound Professional · Technical Builder · Former Executive Going Independent | VerifiedCloud-model prompts still go to the selected AI provider. Do not imply that every workflow is fully local. |
| Agent and Model LayerSupported agent runtimes and model choices, configured as a usable system rather than a pile of engines. | OpenClaw runtime | Provides an open agent engine for tools, channels, skills and recurring work. | Installing and maintaining the underlying agent runtime. | PainA capable open-source engine still arrives as a technical assembly project.BenefitA supported runtime that is ready for business workflows. | Technical Builder · Solopreneur with a Store · Trades / Service Operator | Verified |
| Agent and Model Layer | Hermes Agent runtime | Adds a second supported agent harness, including strong local-model and tool-use workflows. | Evaluating and wiring a second agent harness when it fits the work better. | PainOne agent engine is not best at every model or task.BenefitThe workstation can evolve without rebuilding the business around one vendor. | Technical Builder · Former Executive Going Independent · Privacy-Bound Professional | PartialRuntime lineup and default provisioning are dynamic. Verify the current shipping image before public use. |
| Agent and Model Layer | Model and provider choice | Supports hosted providers such as Anthropic and OpenAI plus other runtime-supported providers. | Choosing and changing the model used for a particular kind of work. | PainBetting the business on one provider that may reprice, weaken, or change policy.BenefitA better model can be adopted without abandoning the owned workstation and business context. | Technical Builder · Former Executive Going Independent · Privacy-Bound Professional | VerifiedNot interchangeable without configuration. Provider/model support changes and must be date-verified. |
| Agent and Model Layer | Local model support | Can run compatible open-weight models on-device for workflows configured to stay local. | Keeping selected sensitive work off third-party model infrastructure. | PainSome confidential work cannot be sent to a hosted model provider.BenefitA local-only path is available when the model and workflow fit the machine. | Privacy-Bound Professional · Technical Builder | PartialDo not imply every model or workflow runs well on the base 16GB machine, or that external tools cannot create network traffic. |
| Agent and Model Layer | AMS intelligent model router | Classifies request complexity and selects a configured model tier while logging routing decisions and estimated savings. | Choosing a capable-enough model for each request instead of paying for the strongest model every time. | PainUsing one premium model for everything wastes budget; using a weak model everywhere damages quality.BenefitRoutine work can use lighter models while complex work escalates to stronger ones. | Technical Builder · Former Executive Going Independent | PartialThe router is live in the internal OpenClaw AMS stack, but model names, cost assumptions and the customer packaging path are dynamic/incomplete. Do not publish savings without current logs. |
| Business MemoryDurable, searchable context so the agent knows the business instead of restarting every session. | TotalRecall persistent memory | Stores and retrieves decisions, documents and past conversations with source attribution. | Re-explaining the business, its rules, and prior decisions at the start of every task. | PainTelling the same tool the same context over and over.BenefitTell it once. The second time is faster than the first. | Solopreneur with a Store · Performance Marketer · Former Executive Going Independent · Trades / Service Operator | VerifiedMemory is stored locally, but retrieved chunks may be sent to the active cloud model. The deferred SecuritySuite pre-scan of recalled content is not built; do not claim end-to-end local processing. |
| Business Memory | Shared cross-app recall | Will let approved apps retrieve only the relevant durable context through a shared, scoped contract rather than copying a transcript. | Manually carrying the right context between tools, threads and sessions. | PainEach tool has to be re-briefed or gets too much context.BenefitWork can pick up with the right approved context, not a blind transcript dump. | Former Executive Going Independent · Technical Builder | RoadmapShared app-to-app retrieval is M2 work and is not yet verified end to end. |
| Business Memory | Company Brain | Structures the customer's business context so every task inherits it automatically. | Briefing the agent on the business before each piece of work. | PainGood output still requires a long setup prompt every time.BenefitTasks start already knowing the business. | Former Executive Going Independent · Solopreneur with a Store | RoadmapNOT SHIPPED. Internal reference only — never state as available. |
| Getting Work DoneThe agent performs multi-step work across real tools, not just answers questions. | Computer and browser use | Operates applications, files and websites the way a person would. | The clicking, copying, downloading and re-typing between systems. | PainWork lives in five tools that do not talk to each other.BenefitThe gap between tools stops being the customer's problem. | Performance Marketer · Solopreneur with a Store · Former Executive Going Independent | Verified |
| Getting Work Done | Scheduled and recurring work | Runs jobs on a cadence and reports results without being asked. | Remembering to do the recurring thing, then doing it. | PainReports, follow-ups and check-ins slip because nobody has time.BenefitThe recurring work simply happens; they review instead of produce. | Performance Marketer · Solopreneur with a Store | Verified |
| Getting Work Done | Multi-agent delegation | Delegates bounded parts of a larger job to multiple specialized agents where the installed runtime supports it. | Splitting a large job into parts and supervising each one. | PainOne assistant is a bottleneck on anything genuinely big.BenefitBigger jobs finish without more of the owner's attention. | Technical Builder · Former Executive Going Independent | PartialRuntime-dependent and not a universal customer workflow. Do not promise that agents automatically check or repair one another. |
| Getting Work Done | Content Machine | Turns a rough idea into a production-ready short-form content brief. | Translating an idea into a usable production brief. | PainContent dies between having the idea and producing it.BenefitIdeas reach production instead of the notes app. | Solopreneur with a Store · Performance Marketer | PartialDeployed but not verified end to end. Check status before any public claim. |
| Getting Work Done | Workflow Scoping | Turns a plain-language description of a routine job into a researched, actionable plan. | Working out what a workflow should even be before building it. | PainThey know the job is repetitive but cannot specify the automation.BenefitA real plan instead of a vague intention. | Solopreneur with a Store · Trades / Service Operator | RoadmapUNWIRED MOCKUP with known defects. Demo only — do not imply availability. |
| AccessReach the agent from wherever the customer already works. | Multi-channel messaging | Connects during setup to Slack, Telegram, Discord and the web portal; additional runtime-supported channels can be configured later. | Learning and opening yet another piece of software. | PainNot at a desk; cannot sit down and type into a new tool.BenefitMessage it like a person, from the truck or the phone. | Trades / Service Operator · Solopreneur with a Store · Performance Marketer | VerifiedOnly Slack, Telegram, Discord and the web portal are presented as out-of-box setup paths. Other channels require later configuration and support can change. |
| Business Systems and ConnectorsGoverned ways for agents to work with business applications without making raw credential access the product boundary. | Connector capability broker | Implements scoped capabilities, grants, policies, approvals, audit records, vault custody and revocation in front of provider adapters. | Wiring integrations safely and deciding which agent may do what. | PainConnecting a business tool too often means handing an agent a password and hoping.BenefitA real authority kernel exists for connected tools, without making raw credentials the product boundary. | Privacy-Bound Professional · Performance Marketer · Technical Builder | PartialThe broker core is real locally; connectors and the customer-facing control surface are still in progress. Do not imply a complete customer-shipping connector platform. |
| Business Systems and Connectors | Business-tool skills and adapters | Packages procedures and supported connectors for tools such as Google Workspace, GitHub and Slack. | Moving information and actions between the agent and the tools where work already lives. | PainThe workflow breaks at every tool boundary.BenefitThe agent can participate in real operating workflows instead of stopping at advice. | Performance Marketer · Solopreneur with a Store · Technical Builder | PartialExact adapters, authentication paths and end-to-end support vary. Verify each named integration before public use. |
| Security and ControlLayered checks and human control around agent actions. These are useful safeguards, not a claim of risk-free or fully contained operation. | Approval gates / human in the loop | Supports confirmation before configured external or sensitive actions. | Catching a mistake before it reaches a customer or a mailing list. | PainFear of an autonomous tool sending the wrong thing to the wrong person.BenefitThe customer has a chance to catch a consequential action before it leaves the business. | Solopreneur with a Store · Privacy-Bound Professional · Trades / Service Operator | PartialDo not claim universal enforcement across every tool, channel or connector. The broker's T2/T3 approval model is architecture, not a customer-shipping control plane. |
| Security and Control | PromptGuard | Scores direct and indirect prompt-injection, role-override, obfuscation and social-engineering patterns across multiple languages. | Recognizing when untrusted content is trying to change the agent’s instructions or authority. | PainAn agent reads email, files and web pages that may contain hostile instructions.BenefitSuspicious instructions can be flagged, logged, warned on or blocked according to configured policy. | Privacy-Bound Professional · Technical Builder | PartialThe package and detector ship, but enforcement depends on the active integration and configuration. HiveFence network features must be separately enabled and verified. |
| Security and Control | SkillGuard | Statically scans skill packages for credential theft, code injection, prompt manipulation, persistence, exfiltration and evasion, then produces a risk score and findings. | Reviewing an unfamiliar skill’s source and behavior before installation. | PainInstalling a community skill can silently widen the agent’s access or leak data.BenefitA machine-readable PASS / CAUTION / WARNING / FAIL assessment before trust is granted. | Technical Builder · Privacy-Bound Professional | VerifiedSkillGuard is a pre-install scanner, not a universal runtime permission gate. Do not describe it as intercepting every tool call. |
| Security and Control | SecuritySuite validation tools | Validates commands, URLs, file paths and external content for command injection, SSRF, traversal, exposed keys and exfiltration patterns. | Checking risky inputs before a shell command, web request or file operation executes. | PainA non-technical owner cannot manually security-review every action an agent proposes.BenefitDeterministic local checks are available before sensitive tool use. | Privacy-Bound Professional · Technical Builder | PartialThe tools ship, but the suite’s own SECURITY.md says automatic tool interception is not yet available and manual integration is required. Do not claim universal automatic enforcement. |
| Security and Control | PromptGuard secret and authority policies | Detects secret-extraction requests, credential-path harvesting, fake authority, approval-scope expansion and permission-bypass coaching. | Spotting when a message is trying to obtain secrets or stretch one approval into broader authority. | PainA convincing chat message can turn a helpful agent into a credential-disclosure path.BenefitSensitive requests can be refused or escalated instead of silently obeyed. | Privacy-Bound Professional · Technical Builder · Solopreneur with a Store | PartialPolicy and detection logic exist, but actual blocking/notification depends on configured integration. Never claim credentials cannot be exposed under all circumstances. |
| Security and Control | Security event logs and local audit trail | Records configured PromptGuard and SecuritySuite detections and security decisions in local logs for later review. | Reconstructing what was flagged, when, and why after a security event. | PainWithout an audit trail, the owner cannot tell whether guardrails fired or silently failed.BenefitSecurity decisions can be inspected rather than trusted as a black box. | Privacy-Bound Professional · Technical Builder | PartialLogging is configuration-dependent and not a centralized customer dashboard. Avoid promising complete coverage or real-time monitoring of every action. |
| Security and Control | AMS CommandGuard | Hooks into shell-command execution to classify, log and block configured dangerous command patterns. | Reviewing each proposed shell command for destructive or privilege-escalating behavior. | PainA general-purpose agent can issue a damaging command faster than a person can inspect it.BenefitHigh-risk command patterns can be stopped at the execution boundary. | Technical Builder · Privacy-Bound Professional | PartialCommandGuard is live in the internal AMS stack, but the customer Skill Store/package path is still in progress. Treat it as internal/limited, not universally shipped. |
| Security and Control | Local Runtime Secret Relay | Reads one explicitly allowlisted 1Password secret into a short-lived macOS Keychain cache and exposes it through an audited, fail-closed local command. | Giving a recurring local agent task access to one API key without copying it into prompts, .env files, logs or scheduler configuration. | PainScheduled jobs either hang on 1Password or solve the problem unsafely by storing plaintext secrets.BenefitA bounded, revocable credential path with stale/missing/corrupt caches failing closed. | Privacy-Bound Professional · Technical Builder | PartialCurrent live scope is the macOS Hermes + Fireflies profile. Setup is human-confirmed and the broader OpenClaw/customer profile is not yet shipped. |
| Setup and ActivationGetting from a sealed box to a working agent without technical skill. | Preconfigured on arrival | Ships with agent software, memory, security and channels already installed. | Assembling and configuring an agent stack from parts. | PainThe DIY route is dozens of hours and it breaks silently.BenefitStart with a working system, not a setup project. | Solopreneur with a Store · Trades / Service Operator · Former Executive Going Independent | Verified |
| Setup and Activation | Guided setup wizard | Walks through providers, channels and first configuration step by step. | Knowing what to configure, in what order, and when it is done. | PainFinishing a technical step and still not knowing if it worked.BenefitSetup that tells you where you are and what is next. | Solopreneur with a Store · Trades / Service Operator | VerifiedDo not attach a time claim until measured across shipped units. |
| Support and RecoverySomeone to ask, and something that repairs itself, when it breaks. | Scout | Built-in support agent for setup, troubleshooting and next-step guidance. | Diagnosing a problem and knowing what to do about it. | PainWhen it breaks at 9pm there is nobody to call.BenefitHelp that already knows the system it is helping with. | Solopreneur with a Store · Trades / Service Operator · Former Executive Going Independent | VerifiedEscalation can dead-end without human pickup — a known defect. Do not overclaim the human backstop. |
| Support and Recovery | Doctor diagnostics | Checks system health, surfaces reports and provides supported repair paths; some faults can be repaired automatically. | Noticing something is wrong before it becomes an outage. | PainNo way to tell whether the machine is actually healthy.BenefitProblems get found before the customer finds them. | Technical Builder · Trades / Service Operator | PartialDo not promise universal self-repair or rollback. ProductiveBot updates use forward repair and support diagnostics. |
| Support and Recovery | ProductiveBot+ membership | Included free: priority support, Skill Store access, training and community. | Finding trustworthy answers on how to actually use it. | PainCapable tool, no idea what to do with it on day three.BenefitA path from working machine to real business outcome. | Solopreneur with a Store · Trades / Service Operator | VerifiedFree 'for the foreseeable future' — never promise permanence, and do not promise a human response SLA. |
| ExtensibilityThe system gains capability after purchase instead of ageing. | Skill Store | Browse and install new capabilities; some free, some paid. | Sourcing and wiring up a new capability from scratch. | PainHardware bought today feels obsolete in six months.BenefitIt gets more useful over time, not less. | Technical Builder · Solopreneur with a Store | Verified |
| Extensibility | Custom skills | Customers and the community can build skills that fit existing workflows. | Bending the tool to the business instead of the reverse. | PainSoftware forces its own process onto the business.BenefitAutomation shaped like how they already work. | Technical Builder | Verified |
| Extensibility | Engine-aware skill installation | Installs the appropriate native adapter for OpenClaw, Hermes, or both when a skill supports them. | Learning each engine's internal skill format and installing the same capability twice. | PainA useful capability becomes another compatibility project.BenefitInstall the ProductiveBot capability; the system handles the engine-specific wrapper. | Technical Builder · Solopreneur with a Store | Verified |
| Lifecycle and ManagementActivation, updates and future visibility across the workstation's agent stack. | License activation | Binds a purchased unit to its purchase email and machine during setup. | Proving entitlement and establishing a supported device record. | PainNo reliable link between the physical system, the purchaser and support eligibility.BenefitThe machine enters setup with a verifiable ownership and support record. | Solopreneur with a Store · Trades / Service Operator · Technical Builder | VerifiedDo not claim recurring billing or a fully verified Shopify-to-license feed. Those are not current product facts. |
| Lifecycle and Management | ProductiveBot update path | Delivers ProductiveBot app improvements and guides supported forward upgrades. | Finding, interpreting and applying ProductiveBot software updates manually. | PainA working agent stack can decay as runtimes, models and integrations change.BenefitThe owned system can improve over time with a supported forward-upgrade path. | Solopreneur with a Store · Trades / Service Operator · Technical Builder | PartialThere is no rollback promise. Verify the exact currently supported update path before publishing. |
| Lifecycle and Management | Agent Management System | Would expose agent health, model visibility, permissions and workspace readiness in one control surface. | Inspecting every runtime, permission and agent separately to understand system state. | PainAs the stack grows, nobody can see what is running or what authority it has.BenefitOne place to understand and govern the agent workspace. | Technical Builder · Privacy-Bound Professional · Former Executive Going Independent | RoadmapNOT SHIPPED. Treat current designs and architecture as roadmap, not availability. |
| Lifecycle and Management | Organization / multi-Mini control | Would let an administrator share governed knowledge and permissions across location or employee workstations. | Keeping multiple locations or operators aligned without sharing one unrestricted agent environment. | PainA multi-location business needs shared context and central control without erasing local boundaries.BenefitConsistent company knowledge with per-location ownership and permissions. | Trades / Service Operator · Technical Builder | RoadmapFUTURE ARCHITECTURE ONLY. No customer-shipping organization control plane exists. |
| Lifecycle and Management | Agent roster and configuration audit | Internal CLI tools list agents, models, inherited configuration, channel bindings, skills and workspace health. | Inspecting multiple agent configuration files separately to understand who is active and how each is configured. | PainA multi-agent system becomes impossible to reason about when models, skills and bindings are scattered across files.BenefitOperators can inspect the current agent roster and configuration from one audit surface. | Technical Builder | PartialBuilt as internal CLI/dashboard scripts, not the customer-facing AMS interface. The unified visual shell remains unbuilt. |
| Lifecycle and Management | Configuration change detection and backups | Detects shared configuration changes, flags cross-agent impact and creates before/after backups for manual recovery. | Watching configuration drift and preserving a recoverable copy before one agent affects another. | PainA small config edit can silently take unrelated agents or plugins offline.BenefitUnexpected changes become visible and a prior configuration remains available for manual recovery. | Technical Builder | PartialInternal tooling exists; this is not a customer-facing real-time governance UI, and ProductiveBot application updates still have no promised rollback path. |