{"id":"poco-ai-poco-claw","name":"poco-claw","homepage":"https://poco-ai.com","repo_url":"https://github.com/poco-ai/poco-claw","category":"ai-ml","subcategories":[],"tags":["ai-ml","agent","sandbox","mcp","skills","web-ui","self-hosted","docker","typescript","python","fastapi","nextjs"],"what_it_does":"Poco is a self-hostable AI agent execution platform/web UI that runs agent tasks in an isolated container, supports project/task management and artifact viewing, and integrates agent tooling via MCP/Skills plus an embedded browser and IM integrations.","use_cases":["Autonomous web research and task execution in a sandboxed environment","Managing multi-step agent workflows with plan/queue/termination","Uploading and processing files for agent-driven analysis or document generation","Viewing and replaying agent artifacts and command/browser I/O sessions","Integrating agent interactions through IM providers (DingTalk/Feishu/Telegram)","Extending agent capabilities via MCP/Skills tooling"],"not_for":["Using as a low-effort managed SaaS without any self-hosting/ops considerations","Handling workloads that require strong, explicitly documented enterprise security/compliance guarantees (not evidenced in provided materials)","Scenarios needing a fully documented public developer API/SDK for programmatic integration (no such contracts shown)"],"best_when":"You want a local or Docker-deployed “coworker” style agent workflow with a UI and sandboxed execution, and you plan to integrate via MCP/Skills rather than a traditional REST API client.","avoid_when":"You need a stable, documented REST/GraphQL/OpenAPI interface for reliable automation, or you require clearly specified auth/rate-limit/error-code behavior from a public API.","alternatives":["OpenClaw (referenced as inspiration)","Other agent orchestration platforms with documented APIs/SDKs (various OSS/self-hosted options)","Managed agent execution services with explicit OpenAPI/SDKs"],"af_score":31.2,"security_score":27.5,"reliability_score":15.0,"package_type":"skill","discovery_source":["openclaw"],"priority":"high","status":"evaluated","version_evaluated":null,"last_evaluated":"2026-03-30T13:24:32.106698+00:00","interface":{"has_rest_api":false,"has_graphql":false,"has_grpc":false,"has_mcp_server":false,"mcp_server_url":null,"has_sdk":false,"sdk_languages":[],"openapi_spec_url":null,"webhooks":false},"auth":{"methods":[],"oauth":false,"scopes":false,"notes":"No authentication mechanisms, auth flows, or scope model are described in the provided README/snippets."},"pricing":{"model":null,"free_tier_exists":false,"free_tier_limits":null,"paid_tiers":[],"requires_credit_card":false,"estimated_workload_costs":null,"notes":"README mentions a 'cloud subscription' as coming soon, but no pricing/tier details are provided."},"requirements":{"requires_signup":false,"requires_credit_card":false,"domain_verification":false,"data_residency":[],"compliance":[],"min_contract":null},"agent_readiness":{"af_score":31.2,"security_score":27.5,"reliability_score":15.0,"mcp_server_quality":30.0,"documentation_accuracy":35.0,"error_message_quality":0.0,"error_message_notes":null,"auth_complexity":60.0,"rate_limit_clarity":0.0,"tls_enforcement":60.0,"auth_strength":20.0,"scope_granularity":0.0,"dependency_hygiene":30.0,"secret_handling":30.0,"security_notes":"From provided materials: claims of containerized/sandboxed execution and self-hosting. However, no concrete details are provided about auth, scope granularity, TLS configuration, secret handling, or dependency/security posture. Treat as unverified beyond the stated sandboxing concept.","uptime_documented":0.0,"version_stability":40.0,"breaking_changes_history":0.0,"error_recovery":20.0,"idempotency_support":"false","idempotency_notes":null,"pagination_style":"none","retry_guidance_documented":false,"known_agent_gotchas":["Sandboxed container execution can affect performance and persistence (state/files) depending on how sessions/containers are managed.","Agent tool-calling behavior can vary by imported Skills/MCP tooling; lack of documented tool contracts may require iterative testing.","Embedded browser/autonomous execution can produce long-running actions; without explicit documented limits/timeouts, automation may be harder to control."]}}