Updated May 15, 2026.
Do not pick a Personal AI OS by GitHub stars. Pick it by layer.
A Personal OS is the control plane for memory, identity, permissions, tools, workflows, actions, receipts, and rollback. No single project owns that whole stack yet. ChatGPT, Claude, Gemini, Copilot, Cursor, Open WebUI, Khoj, Letta, mem0, Open Interpreter, n8n, Composio, browser-use, OpenHands, Home Assistant, and Hermes all attack different layers.
The useful question is not “which one is best?” It is: which layer are you missing right now, and where will the receipts live?
One-screen chooser
Gemini Intelligence on Android, Apple Intelligence, Microsoft Recall
Home Assistant voice, local scripts, Hermes-style local runtime
ChatGPT, Claude, Gemini, Copilot
Open WebUI, Khoj, local model frontends
ChatGPT memory, Claude project memory
mem0, Letta, Markdown, SQLite, Git
Vendor file search and project uploads
Quivr, LlamaIndex, Haystack, memory system guide
OpenAI Apps SDK, OpenAI MCP connectors, Claude MCP
MCP servers, MCP server stacking, Composio/Rube
Playwright MCP, browser-use, Skyvern, Browserbase
Claude Code, Codex, Cursor, Windsurf, Copilot agent mode
AI coding assistants, OpenHands, Superpowers, skills
Copilot Actions, scheduled assistants, app automations
n8n, Flowise, AutoGPT, CrewAI, LangGraph
Vendor desktop apps
Open WebUI + Ollama/local model, Open Interpreter, 01, Home Assistant voice
Vendor account graph
Hermes Agent, network.self.md-style encrypted state
If you cannot name the receipt for a layer, you are not choosing a Personal OS. You are choosing a place to lose track of side effects.
Personal OS registry
This is the seed map, not a “top AI tools” graveyard. Every row has to answer four questions: what layer does it replace, who owns the state, where does it run, and where do the receipts live?
The public registry starts with the verified core seed. The verify-first pile stays off the page until the source, custody model, and receipt story are checked again.
Coverage labels are editorial plumbing, not scores: exact means a dedicated self.md page exists, related means the row is covered by a broader page, backlog means a canonical page is planned later, and registry-only means the row stays here for now.
87 entries visible. Coverage labels mean exact page, related coverage, backlog, or registry-only. Core seed only; verify-first rows stay out of the public UI until checked.
Vendor Suite 5 entries
Apple Intelligence
iPhone/Mac context
- layer
- interface/surface
- receipts
- device logs, cloud logs
caveatstate stays on Apple rails; export is limited
Listed in the registry. No canonical self.md page yet.
ChatGPT / Operator / ChatGPT agent
chat + browser tasks
- layer
- action surfaces
- receipts
- cloud logs, transcripts, screenshots
caveatdurable state stays on OpenAI rails
Listed in the registry. No canonical self.md page yet.
Claude / Claude Desktop / Skills
chat + coding + computer use
- layer
- tools/connectors
- receipts
- cloud logs, transcripts
caveatcustody stays Anthropic-owned
Related Claude skills/tools coverage; no single Claude suite page yet.
Google Gemini on Android
Android device context
- layer
- interface/surface
- receipts
- cloud logs, device history
caveatworks best when you already live on Google rails
Listed in the registry. No canonical self.md page yet.
Microsoft Copilot Actions
background tasks in Windows
- layer
- orchestration/runtime
- receipts
- task traces, cloud logs
caveatrollout and policy are still changing
Listed in the registry. No canonical self.md page yet.
Local Workbench 11 entries
AnythingLLM
doc-grounded personal workspace with RAG
- layer
- retrieval/index
- receipts
- local DB, vector store, files
caveatreal value is retrieval/plumbing, not just chat
Listed in the registry. No canonical self.md page yet.
GPT4All
simple local-model starter kit
- layer
- interface/surface
- receipts
- local app data, models, chat history
caveatmore bundle than a full OS layer
Listed in the registry. No canonical self.md page yet.
Jan
local-first desktop assistant with flexible model backends
- layer
- interface/surface
- receipts
- local app data, chat history, cache
caveatecosystem and extension surface move fast
Listed in the registry. No canonical self.md page yet.
LibreChat
self-hosted ChatGPT-style multi-provider chat
- layer
- interface/surface
- receipts
- local DB, attachments, logs
caveatauth/connectors surface grows fast; governance is required
Listed in the registry. No canonical self.md page yet.
LM Studio
local model playground and desktop-server gateway
- layer
- interface/surface
- receipts
- local app data, model cache, transcripts
caveatproprietary app; assistant story is model-first, not state-first
Related local-runtime coverage exists; canonical LM Studio page is backlog.
LobeChat
polished consumer-grade chat UI
- layer
- interface/surface
- receipts
- local storage, sync logs, exports
caveatverify state/export portability separately
Listed in the registry. No canonical self.md page yet.
Logseq
daily notes and local knowledge graph
- layer
- memory/state
- receipts
- local markdown/org files, git, sync logs
caveatsync/plugin ecosystem can be uneven
Listed in the registry. No canonical self.md page yet.
Obsidian
durable local vaults and manual knowledge curation
- layer
- memory/state
- receipts
- local markdown files, git, sync logs
caveatAI is add-on, not core memory engine
Listed in the registry. No canonical self.md page yet.
Open WebUI
self-hosted chat hub for multiple backends
- layer
- interface/surface
- receipts
- local DB, exports, logs
caveatUI is portable, but durable state lives where the backend/storage lives
Dedicated self.md tool page.
Raycast AI
command palette with personal device context
- layer
- interface/surface
- receipts
- local config, command history
caveatdeep state fragments across extensions
Listed in the registry. No canonical self.md page yet.
01
local personal-assistant shell
- layer
- interface/surface
- receipts
- local transcripts, config, files
caveatsibling project; fast-moving, verify the current release cadence
Listed in the registry. No canonical self.md page yet.
Memory 10 entries
Graphiti
temporal knowledge graph memory for agents
- layer
- memory/state
- receipts
- graph store, database, logs
caveatgraph/schema discipline adds complexity
Listed in the registry. No canonical self.md page yet.
Letta / MemGPT
long-lived agent state and memory-centric agents
- layer
- memory/state
- receipts
- database, memory store, logs
caveatarchitecture-heavy; still evolving
Listed in the registry. No canonical self.md page yet.
Mem.ai
AI-native notes and context recall
- layer
- memory/state
- receipts
- cloud workspace data, exports
caveatmigration/export path is the main risk
Listed in the registry. No canonical self.md page yet.
mem0
portable memory layer for agents
- layer
- memory/state
- receipts
- database, vector store, logs
caveatmemory primitive, not a full OS
Dedicated self.md tool page.
MemU
agent memory API / personal memory buffer
- layer
- memory/state
- receipts
- database, vector store, logs
caveatpublic docs are thin; verify hosting/export model
Dedicated self.md tool page.
Pieces OS
developer memory and local context recall
- layer
- memory/state
- receipts
- local index, local files, sync logs
caveatnarrower than a full Personal AI OS
Listed in the registry. No canonical self.md page yet.
Reflect
private note capture and recall
- layer
- memory/state
- receipts
- notes, cloud sync, exports
caveataction surface is limited
Listed in the registry. No canonical self.md page yet.
Supermemory
async memory service for apps
- layer
- memory/state
- receipts
- database, vector store, logs
caveatearly product; vendor dependency is high
Listed in the registry. No canonical self.md page yet.
Tana
structured knowledge graph and tasks
- layer
- memory/state
- receipts
- cloud workspace data, exports
caveatvendor-held state and export path deserve scrutiny
Listed in the registry. No canonical self.md page yet.
Zep
conversation memory service and retrieval over chat history
- layer
- memory/state
- receipts
- database, vector store, logs
caveatservice shape and hosting model need recheck
Listed in the registry. No canonical self.md page yet.
Retrieval 8 entries
Cognee
graph-based knowledge engine and retrieval
- layer
- retrieval/index
- receipts
- database, graph store, vector store, logs
caveatgraph abstraction can be overkill for simple notes
Listed in the registry. No canonical self.md page yet.
Haystack
production search/RAG pipelines
- layer
- retrieval/index
- receipts
- code/config, vector store, traces/logs
caveatpipeline complexity rises fast
Listed in the registry. No canonical self.md page yet.
Khoj
personal search across notes/docs
- layer
- retrieval/index
- receipts
- local notes index, vector store, DB
caveatvalue depends heavily on source and indexing hygiene
Listed in the registry. No canonical self.md page yet.
LlamaIndex
building RAG and knowledge workflows
- layer
- retrieval/index
- receipts
- code/config, vector store, traces/logs
caveatframework, not end-user memory product
Listed in the registry. No canonical self.md page yet.
Notion AI / Q&A
Q&A over workspace notes
- layer
- memory/state
- receipts
- workspace data, cloud logs
caveatplatform-owned state and export limits
Listed in the registry. No canonical self.md page yet.
Perplexity
answer engine with citations
- layer
- retrieval/index
- receipts
- cloud logs, citations
caveatnot a durable memory layer
Listed in the registry. No canonical self.md page yet.
Quivr
self-hosted personal knowledge base over docs
- layer
- retrieval/index
- receipts
- local files, vector store, logs
caveatcloud/self-host split and UX maturity should be checked
Listed in the registry. No canonical self.md page yet.
Saner.AI
AI search/organizer over scattered knowledge
- layer
- retrieval/index
- receipts
- cloud workspace data, exports, logs
caveatproduct shape and export semantics are fast-moving
Dedicated self.md tool page.
Tool Connectors 11 entries
App Intents
system app actions
- layer
- tools/connectors
- receipts
- app logs, device state
caveatonly works with what the app exposes
Listed in the registry. No canonical self.md page yet.
Arcade.dev
secure tool calling/auth layer for agents
- layer
- identity & auth
- receipts
- auth logs, tool call logs
caveatvendor auth custody
Listed in the registry. No canonical self.md page yet.
Composio
managed app action connectors
- layer
- tools/connectors
- receipts
- tool call logs, scopes
caveatauth custody sits with platform
Dedicated self.md tool page.
Glama MCP
MCP server directory
- layer
- tools/connectors
- receipts
- registry metadata
caveatdirectory is not custody
Covered by the MCP servers connector-layer page; no Glama-specific page yet.
LiteLLM
provider abstraction, routing, and cost control
- layer
- tools/connectors
- receipts
- proxy logs, cost logs, db, traces
caveatcan become a hidden policy chokepoint
Listed in the registry. No canonical self.md page yet.
mcp.so
MCP server discovery
- layer
- tools/connectors
- receipts
- registry metadata
caveatrequires per-server verification
Covered by the MCP servers connector-layer page; no mcp.so-specific page yet.
OpenAI Apps SDK
building apps inside ChatGPT
- layer
- tools/connectors
- receipts
- app/tool logs, ChatGPT context
caveatstrongly ChatGPT rail
Listed in the registry. No canonical self.md page yet.
OpenAI MCP connectors
connecting tools to OpenAI agents
- layer
- tools/connectors
- receipts
- connector logs, scopes
caveatvendor policy/runtime rail
Covered by the MCP servers connector-layer page; no OpenAI-specific connector page yet.
Pipedream
API/event connector layer
- layer
- tools/connectors
- receipts
- workflow run logs, event payloads
caveatSaaS custody unless self export is enough
Listed in the registry. No canonical self.md page yet.
Rube
Composio MCP/action rail
- layer
- tools/connectors
- receipts
- MCP call logs, scopes
caveatvendor connector rail
Related Composio coverage; no Rube-specific page yet.
Smithery
MCP server discovery and install
- layer
- tools/connectors
- receipts
- server listings, config, install logs
caveatregistry quality varies
Covered by the MCP servers connector-layer page; no Smithery-specific page yet.
Browser Action 5 entries
Bardeen
browser productivity automations
- layer
- action surfaces
- receipts
- automation history, browser state
caveatextension permissions matter
Listed in the registry. No canonical self.md page yet.
Browserbase
managed browser infra for agents
- layer
- action surfaces
- receipts
- session recordings, logs, traces
caveatvendor browser rail
Listed in the registry. No canonical self.md page yet.
browserless
headless browser infrastructure
- layer
- action surfaces
- receipts
- browser session logs, traces
caveatnot an agent by itself
Listed in the registry. No canonical self.md page yet.
Hyperbrowser
cloud browsers and web agents
- layer
- action surfaces
- receipts
- session logs, screenshots
caveatvendor rail for browser state
Listed in the registry. No canonical self.md page yet.
Steel.dev
browser infra for agents
- layer
- action surfaces
- receipts
- browser sessions, screenshots, logs
caveatverify open-source/cloud boundary
Listed in the registry. No canonical self.md page yet.
Coding Agent 8 entries
Claude Code
repo-level agent work with strong receipts
- layer
- action surfaces
- receipts
- git diff, terminal logs, transcripts
caveatvendor model rail; memory/policy still needs project files
Dedicated self.md tool page.
Cursor
AI-native code editor
- layer
- interface/surface
- receipts
- repo diffs, chat history, editor state
caveateditor lock-in and cloud context deserve scrutiny
Dedicated self.md tool page.
Devin
hosted software engineering agent
- layer
- orchestration/runtime
- receipts
- cloud workspace logs, PRs
caveathigh vendor custody
Listed in the registry. No canonical self.md page yet.
Open Interpreter
local shell/browser assistant with real side effects
- layer
- action surfaces
- receipts
- command logs, screenshots, files
caveatextremely powerful; dangerous without sandbox and approval gates
Listed in the registry. No canonical self.md page yet.
Replit Agent
app generation inside Replit workspace
- layer
- orchestration/runtime
- receipts
- workspace diffs, deploy logs
caveatbest inside Replit rail
Listed in the registry. No canonical self.md page yet.
Sourcegraph Amp
agentic coding workflow
- layer
- action surfaces
- receipts
- agent task logs, git diffs
caveatfast-moving; verify features per current docs
Listed in the registry. No canonical self.md page yet.
Sourcegraph Cody
large-codebase context and code search
- layer
- retrieval/index
- receipts
- repo search logs, chat, enterprise logs
caveatless a personal OS, more code intelligence layer
Listed in the registry. No canonical self.md page yet.
Windsurf
agentic IDE workflows
- layer
- interface/surface
- receipts
- repo diffs, editor logs
caveatfast-moving vendor rail
Dedicated self.md tool page.
Workflow Daemon 11 entries
Dify
self-hosted app builder and workflow-backed chat apps
- layer
- orchestration/runtime
- receipts
- local DB, workflow logs, traces
caveatplatform holds state and complicates lifecycle control
Listed in the registry. No canonical self.md page yet.
Dust
company assistants over tools/data
- layer
- orchestration/runtime
- receipts
- assistant logs, data source logs
caveatworkspace/vendor custody
Listed in the registry. No canonical self.md page yet.
Flowise
quick self-hosted LLM workflow composition
- layer
- orchestration/runtime
- receipts
- flow JSON, local DB, logs
caveatgovernance and tracing are thin by default
Listed in the registry. No canonical self.md page yet.
Gumloop
AI workflow builder
- layer
- orchestration/runtime
- receipts
- flow runs, logs
caveatvendor flow state
Listed in the registry. No canonical self.md page yet.
Langflow
visual prototyping of LLM flows and agent graphs
- layer
- orchestration/runtime
- receipts
- flow configs, local DB, logs
caveatbetter as a builder than as a final Personal OS runtime
Listed in the registry. No canonical self.md page yet.
Lindy
business assistant workflows
- layer
- orchestration/runtime
- receipts
- agent runs, app logs
caveatopaque vendor autonomy if ungated
Listed in the registry. No canonical self.md page yet.
MindStudio
build/deploy AI workflow apps
- layer
- orchestration/runtime
- receipts
- app runs, logs
caveatplatform lock-in risk
Listed in the registry. No canonical self.md page yet.
n8n
visible workflow daemons with logs
- layer
- orchestration/runtime
- receipts
- run history, payloads, error logs
caveatcan become spaghetti without gates
Dedicated self.md tool page.
Relay.app
human-in-the-loop workflows
- layer
- orchestration/runtime
- receipts
- workflow runs, approvals
caveatstill SaaS-owned state
Listed in the registry. No canonical self.md page yet.
Stack AI
enterprise AI workflow builder
- layer
- orchestration/runtime
- receipts
- flow logs, data source logs
caveatless personal/user-owned
Listed in the registry. No canonical self.md page yet.
VectorShift
AI workflows and assistants
- layer
- orchestration/runtime
- receipts
- pipeline logs, data connectors
caveatvendor data custody
Listed in the registry. No canonical self.md page yet.
Agent Framework 2 entries
CrewAI
multi-agent workflows
- layer
- orchestration/runtime
- receipts
- run logs, task traces
caveatcrew metaphors can hide poor state design
Listed in the registry. No canonical self.md page yet.
Pydantic AI
typed Python agent apps
- layer
- orchestration/runtime
- receipts
- structured logs, eval traces
caveatdeveloper framework only
Listed in the registry. No canonical self.md page yet.
Smart Home Voice 4 entries
Home Assistant
local control plane for home and devices
- layer
- orchestration/runtime
- receipts
- local logs, automations, device state
caveatvoice/AI pipeline depends on which components you connect
Listed in the registry. No canonical self.md page yet.
Home Assistant Assist
smart-home voice control with local mode
- layer
- interface/surface
- receipts
- local logs, transcripts, automation traces
caveatquality depends heavily on the ASR/TTS/LLM pipeline
Listed in the registry. No canonical self.md page yet.
OpenVoiceOS
open voice assistant stack
- layer
- interface/surface
- receipts
- local logs, transcripts, config
caveatsmaller and more DIY ecosystem than commercial rails
Listed in the registry. No canonical self.md page yet.
Wyoming Satellite
edge microphone/speaker endpoint for a local voice stack
- layer
- interface/surface
- receipts
- audio buffers, logs, device state
caveatneeds a backend such as Home Assistant/Wyoming
Listed in the registry. No canonical self.md page yet.
Personal Data / Lifelog 5 entries
Granola
meeting capture and summaries
- layer
- receipts/observability
- receipts
- notes, meeting transcript logs
caveatnot a general OS
Dedicated self.md tool page.
Limitless
meeting and life capture
- layer
- receipts/observability
- receipts
- transcripts, cloud logs
caveatprivacy-sensitive and vendor-owned
Listed in the registry. No canonical self.md page yet.
Microsoft Recall
search over previous Windows screens
- layer
- receipts/observability
- receipts
- local screenshots, local index
caveatprivacy-sensitive, Windows-only
Listed in the registry. No canonical self.md page yet.
Plaud
hardware-first capture for calls/field notes
- layer
- receipts/observability
- receipts
- audio files, transcripts, cloud notes
caveatcapture device first; general OS use limited
Listed in the registry. No canonical self.md page yet.
Rewind
personal time-travel memory
- layer
- receipts/observability
- receipts
- screen/audio history, local cache, cloud logs
caveatprivacy-sensitive and vendor-owned
Listed in the registry. No canonical self.md page yet.
Network / Runtime 6 entries
Hermes Agent
local agent runtime with skills/tools/gateway
- layer
- orchestration/runtime
- receipts
- files, tool logs, scheduled outputs, git
caveatemerging; not polished SaaS
Listed in the registry. No canonical self.md page yet.
llama.cpp
minimal portable inference runtime
- layer
- orchestration/runtime
- receipts
- CLI logs, model files, config
caveatthis is an engine, not a product
Listed in the registry. No canonical self.md page yet.
LocalAI
OpenAI-compatible self-hosted inference
- layer
- orchestration/runtime
- receipts
- local DB/config, logs, model cache
caveatops surface is wider than the quick start makes it look
Listed in the registry. No canonical self.md page yet.
Ollama
simplest local model-serving rail
- layer
- orchestration/runtime
- receipts
- model cache, daemon logs, config
caveatno first-class chat UI or durable memory; needs a front-end
Dedicated self.md tool page.
vLLM
high-throughput self-hosted serving
- layer
- orchestration/runtime
- receipts
- server logs, metrics, traces
caveatruntime only; UI, auth, and memory are separate
Listed in the registry. No canonical self.md page yet.
Wyoming protocol
transport rail between voice satellite and backend
- layer
- tools/connectors
- receipts
- local logs, stream traces
caveatplumbing, not a full assistant
Listed in the registry. No canonical self.md page yet.
Starter stacks by job
1. Local/private assistant
Use this when the first requirement is “I want an assistant on my machine before I wire it to accounts.”
- Surface: Open WebUI or a local chat frontend.
- Model: Ollama, llama.cpp, vLLM, or a paid API if local quality is not enough.
- Knowledge: local files plus a small retrieval layer; keep the source files outside the chat app.
- Actions: start with read-only tools. Add shell/browser control only after logging is boringly clear.
- Receipt: config file, model name, prompt file, source folder, command log.
This stack is not automatically a Personal OS. It becomes one only when memory, permissions, and action receipts are explicit.
2. Memory-first stack
Use this when your main pain is forgotten context, repeated briefings, and agents that keep relearning you.
- Memory primitive: mem0 , MemU , or Letta for agent memory.
- Source of truth: Markdown, SQLite, Git, or another store you can inspect.
- Retrieval: LlamaIndex, Haystack, Quivr, or a small custom index.
- Correction path: every memory should be editable, attributable, and removable.
- Receipt: memory diff, source citation, expiry/correction note.
Do not collapse this into “RAG.” Retrieval answers “what file is relevant?” Memory answers “what state should this agent carry forward?” Different jobs. Different failure modes.
For the concepts, read agent memory systems and the memory system guide .
3. Browser-heavy stack
Use this when the work happens in web apps: dashboards, bookings, forms, admin panels, research flows.
- Vendor path: OpenAI Operator or ChatGPT agent , Anthropic computer use , or Claude Cowork-style desktop work.
- Replaceable path: browser-use, Skyvern, Browserbase, Playwright MCP .
- Policy: manual approval for purchases, deletes, sends, account changes, and irreversible form submissions.
- Receipt: screenshot before/after, URL, run log, browser trace, confirmation ID.
Browser agents are powerful because they operate where APIs are missing. They are dangerous for the same reason. Treat the browser as a messy action surface, not a trusted kernel. See browser agents and browser automation .
4. Coding-agent stack
Use this when the “personal OS” is really your software workbench.
- Vendor path: Claude Code , OpenAI Codex, Cursor, Windsurf, Replit Agent, GitHub Copilot agent mode.
- Open path: OpenHands , Superpowers, repo-level skills, project-local rules.
- Memory:
AGENTS.md,CLAUDE.md, rules files, project memory, design specs, issue context, and plugin/skills systems where they are explicit enough to review. - Policy: tests before merge, no secret exfiltration, no surprise restarts, no broad rewrites without a diff.
- Receipt: Git diff, test output, build log, issue/PR link.
Coding agents are the clearest preview of Personal OS because they already have a loop: read context → plan → edit → run tools → leave a diff. That loop should be copied to non-code work, not the other way around.
5. Workflow daemon stack
Use this when you need work to happen without a chat window open.
- Workflow engine: n8n, Flowise, AutoGPT, CrewAI, LangGraph.
- Connectors: MCP servers , Composio/Rube, direct APIs.
- Triggers: cron, webhooks, file changes, inbox events, calendar events.
- Policy: event filters, budgets, retry limits, human checkpoints.
- Receipt: run ID, input payload, output artifact, failure log, notification target.
This is where “agentic” often turns into unattended spaghetti. Start with small, visible loops. If you cannot replay a run, you cannot debug it.
6. User-owned network stack
Use this when the real requirement is not just local control, but portable identity and state across agents.
- Runtime: Hermes Agent-style local runtime: tools, skills, gateway surfaces, cron, model/provider config, approvals.
- State: files, Git, local databases, encrypted state, or a network.self.md-style peer state.
- Protocol: MCP where it helps expose tools; encrypted messaging/state where agents need to collaborate.
- Policy: approval-gated bridges to external channels and accounts.
- Receipt: state snapshot, member/peer log, message ID, action approval, exported artifact.
This is the most “Personal OS” direction, but also the least plug-and-play. Treat it as infrastructure. Keep the claims boring: emerging, inspectable, replaceable, not magic.
Recipe queue for community stacks
Custom stacks are allowed into the registry, but only as reproducible recipes: component graph, custody model, risk flags, and receipts. Otherwise it is just fanfic with tool names.
Local private assistant user-owned
assistant on my machine before accounts
- components
- Open WebUI, Ollama or llama.cpp, Markdown/Obsidian, Git, read-only MCP servers
- layers
- chat, retrieval, memory, receipts
- receipts
- config files, source folder, git commits, command logs
- setup
- Install local model runtime, point the UI at local docs, add read-only tools, log every tool call.
caveatLocal is not safe by default; permissions still matter.
Memory-first personal context hybrid/user-owned
stop re-briefing agents
- components
- mem0 or Letta, SQLite/Postgres, Markdown source files, LlamaIndex/Haystack retrieval
- layers
- memory, retrieval, receipts
- receipts
- memory diffs, source citations, expiry/correction notes
- setup
- Keep memory editable and separate from retrieval; add the correction workflow first.
caveatDo not call RAG memory.
Browser-heavy admin stack hybrid
forms, dashboards, bookings, web apps
- components
- Playwright MCP or browser-use, Browserbase/Hyperbrowser optional, approval gate, screenshot archive
- layers
- browser, tools, workflow, receipts
- receipts
- screenshots, DOM traces, run IDs, confirmation pages
- setup
- Start with test accounts; require human approval for sends, purchases, deletes, and account changes.
caveatBrowser automation is not a security boundary.
Coding-agent workspace hybrid
software workbench with real receipts
- components
- Claude Code/Codex/Cline/Aider, AGENTS.md, GitHub/Linear, tests
- layers
- coding, memory, tools, receipts
- receipts
- git diff, tests, commit, PR, issue link
- setup
- Keep project rules in the repo; no broad rewrites without a diff; tests before merge.
caveatVendor model quality can mask bad project custody.
Workflow daemon stack hybrid/user-owned
work happens without a chat window open
- components
- n8n or Dify/Flowise, MCP/API connectors, Discord/Telegram notifications, run ledger
- layers
- workflow, tools, receipts
- receipts
- run ID, input payload, output artifact, error log
- setup
- Name triggers, cap retries, log payloads, require approvals for risky writes.
caveatUnattended spaghetti if no replay.
Local voice + smart home stack user-owned
voice as home/device interface
- components
- Home Assistant Assist, Wyoming Satellite, local ASR/TTS/LLM, MQTT/device logs
- layers
- voice, device-context, action surfaces, receipts
- receipts
- Home Assistant logs, transcripts, automation traces, device state
- setup
- Keep local voice first; gate destructive device actions.
caveatVoice feels magical until it flips the wrong switch.
Lifelog capture stack hybrid/vendor-owned
meetings, calls, screen/audio memory
- components
- Granola/Limitless/Plaud/Rewind, export pipeline, Obsidian/Markdown archive
- layers
- receipts, memory, retrieval
- receipts
- audio files, transcripts, meeting notes, export dumps
- setup
- Treat capture as raw evidence; summarize into editable memory after review.
caveatPrivacy blast radius is huge.
Self-hosted business ops stack hybrid/user-owned
small team internal AI ops
- components
- Dify or LangGraph, Postgres, n8n, Pipedream/Composio, auth inventory
- layers
- workflow, retrieval, tools, identity/auth, receipts
- receipts
- DB rows, workflow logs, connector scopes, approvals
- setup
- Separate the data store, workflow engine, and auth ledger.
caveatEnterprise-ish complexity arrives fast.
Hermes/network runtime stack user-owned/experimental
user-owned agent runtime and P2P state
- components
- Hermes Agent, skills, cron, gateway, Git, network.self.md encrypted state
- layers
- runtime, tools, memory, network-state, receipts
- receipts
- tool logs, scheduled outputs, state exports, peer/member logs
- setup
- Keep claims boring: local runtime first, network state second.
caveatEmerging infra; not polished SaaS.
High-privacy offline-ish stack user-owned
sensitive personal docs
- components
- Jan/LM Studio/Ollama, local files, local vector store, no cloud connectors
- layers
- chat, retrieval, memory, receipts
- receipts
- local config, index files, source docs, backups
- setup
- Disable external tools; export configs; snapshot indexes.
caveatQuality and convenience cost is real.
Low-budget student stack hybrid
cheap learning / hobby Personal OS
- components
- free Claude/ChatGPT, Open WebUI/Ollama, Obsidian, GitHub, simple MCP tools
- layers
- chat, coding, retrieval, receipts
- receipts
- notes, git diffs, config files
- setup
- Use free vendor rails for reasoning, local files for state.
caveatDo not pretend free SaaS is user-owned.
Mobile/device-context stack hybrid
phone/desktop context without surrendering all state
- components
- Apple/Google/Microsoft device AI, Raycast/Pieces, local export/backup routine
- layers
- device-context, interface, memory, receipts
- receipts
- settings changes, screenshots, local index, exports
- setup
- Use vendor context as a surface; keep durable state exportable elsewhere.
caveatOS vendors will always pull state toward their account graph.
Submit your stack
If your Personal OS setup has a real component graph and receipts, submit it through the structured GitHub form. Required evidence: URL, layers, custody model, where it runs, receipt locations, caveats, and last verified date.
Build/evaluation checklist
Before you add a tool to your Personal AI OS stack, answer this table.
| Question | Good answer | Bad smell |
|---|---|---|
| Who owns memory? | I can inspect, correct, export, and delete it | “The assistant remembers somehow” |
| Who owns auth? | Tokens/scopes are listed and revocable | One agent has every account forever |
| Are actions logged? | Every side effect has an external receipt | The chat says it worked |
| Is there a sandbox? | Risky actions run in dry-run, test, or limited scopes first | Browser/terminal control is always-on |
| Is there an export path? | State survives a vendor switch | The product is the only source of truth |
| Are triggers visible? | Cron/webhooks/events are named and logged | Background runs nobody can explain |
| Is there human override? | Kill switch, approval gates, manual takeover | “Autonomous” means unstoppable |
| Is rollback real? | Git/backups/snapshots/checkpoints exist | The only rollback is apologizing |
| Is prompt injection handled? | Untrusted content is data, not policy | Webpages/emails can rewrite instructions |
| Can agents be swapped? | Tools and state are decoupled from one model | The whole stack dies with one subscription |
The boring columns are the product. The model is just one replaceable part.
Market notes that change the choice
The big platforms are not sitting still. Google is pulling Gemini into Android. Apple is exposing app actions through Apple Intelligence and App Intents. Microsoft is turning Windows/Copilot into a memory-and-action surface. OpenAI is connecting ChatGPT to apps, tools, browsing, and computer-use-style workflows. Anthropic is expanding from Claude Code into computer use, Cowork, skills, and MCP. GitHub, Cursor, Windsurf, Replit, and OpenHands are turning code repos into agent workspaces.
That means your safest bet is not “pick the winner.” The safer bet is portable state plus replaceable action surfaces.
The OpenClaw story is a good warning label. Public reports said creator Peter Steinberger was joining OpenAI, and other reporting framed it as smart-agent talent capture. Useful signal: the access-control layer matters. Unsafe leap: turning that hire into a project-purchase claim, or assuming every open personal agent is doomed. Do not build strategy on rumors.
What not to build
- Do not build another generic dashboard with a chat box in the middle.
- Do not choose tools by stars, badges, or “active” labels. Those age badly and hide architecture.
- Do not call retrieval memory unless it has correction, provenance, and expiry.
- Do not stack MCP servers without an auth inventory and revocation plan.
- Do not let a browser agent control accounts without screenshots, approvals, and logs.
- Do not present a vendor chat app as user-owned custody.
- Do not chase full autonomy before receipts. That is how you get confident bullshit with side effects.
Practical recommendation
Start with one missing layer:
- If you need a local interface, start with Open WebUI and local files.
- If you need durable context, start with mem0 or Letta plus an editable source store.
- If you need tool access, start with MCP servers and a tiny allowlist.
- If you need browser work, start with Playwright MCP or browser-use in a test account.
- If you need coding leverage, start with AI coding assistants and Git receipts.
- If you need recurring workflows, start with n8n/Flowise/LangGraph and run logs.
- If you need a user-owned agent runtime, look at Hermes Agent and keep state exportable from day one.
Then add exactly one next layer. Personal OS work compounds; tool sprawl just rots.
Sources worth checking
| Source | Use it for |
|---|---|
| Google Gemini Intelligence for Android | OS/device-context direction. |
| Apple Intelligence and App Intents | Personal intelligence and app action exposure. |
| Microsoft Recall and Copilot Actions | Windows memory/action surface. |
| OpenAI Operator , ChatGPT agent , Apps SDK , MCP connectors | Browser/action/connectors layer. |
| Claude Code , Claude memory , computer use , skills and MCP | Coding-agent and tool-use surface. |
| Open WebUI , Khoj , Letta , mem0 | User-owned interface and memory layers. |
| Open Interpreter , 01 , browser-use , Skyvern , Browserbase | Local computer and browser action layers. |
| n8n AI docs , Flowise , CrewAI , AutoGPT | Workflow and agent-graph layer. |
| Hermes Agent docs | Local agent runtime shape: tools, skills, gateway surfaces, cron, approvals. |