Skip to content
OPEN SOURCE

Neox open source

A terminal AI coding agent (CLI), the agent runtime under it, an SDK and an agent operating system, all open source under Apache-2.0. Bring your own model key and run it locally, no account needed.

Apache-2.0License
2Public repositories
1 + 14App + packages
520+TypeScript test files
15Provider presets
neoxlabs/OpenNeox

OpenNeox

An open-source AI coding agent for the terminal: it reads code, runs commands and edits files with the model you choose. The Neox client runs on the same runtime.

GitHub ↗

App

apps/cliSource ↗

Terminal AI coding agent · Node.js · macOS, Linux and Windows

Runtime

packages/kernelSource ↗

Provider-agnostic agent engine: run loop, providers, tool pipeline, context compaction

packages/coreSource ↗

Product runtime: tools, memory, checkpoints, local server, browser automation, MCP

packages/platformSource ↗

Host infrastructure: config, SQLite storage, logging, sessions, model registry

packages/sandboxSource ↗

Command sandbox: Seatbelt on macOS, bubblewrap on Linux

packages/nativeSource ↗

Optional native module: device fingerprint and request signing

packages/cloudSource ↗

Contracts for optional cloud capabilities

Embedding

packages/sdkDetailsSource ↗

Embeddable agent SDK

Run from sourceOpenNeox
git clone https://github.com/neoxlabs/OpenNeox.git
cd OpenNeox
npm ci
npm run build
npm link

neox --version

Requires Node.js 20+; packages are not on npm yet. See the repository README for model keys and full usage.

neoxlabs/OpenNeoxOS

OpenNeoxOS

A self-hosted operating system for AI agents: every agent is a real OS process with kernel-enforced boundaries, an append-only event ledger, and git-worktree collaboration.

About NeoX OS ↗GitHub ↗
Processes, not sessions

Processes die; the conversation doesn’t. An append-only ledger rebuilds state at any point, so a restarted agent picks up where it stopped.

The boundary lives in the kernel

On Linux, declared capabilities become landlock, network-namespace and cgroup2 rules that child processes inherit. On macOS it degrades to Seatbelt (writes only), and the self-check reports which layer is in effect.

Collaboration at the artifact level

Several agents on one project each get a git worktree branch; sync, merge, handoff and rollback are plain git.

Approval belongs to the system

Crossing a boundary asks a human instead of crashing; once approved the process relaunches with the wider scope and the conversation continues. Credentials never enter a confined process.

Run with Dockerlmk1010/neox-os
docker run -d --name neox-os -p 7717:7717 \
  -v neox-os-data:/root/.neox-os \
  -e NEOX_OBSERVE_TOKEN=my-secret-key \
  lmk1010/neox-os:latest

# http://localhost:7717/?token=my-secret-key

What is and isn’t open

OpenNeox built from source uses your own model key and never touches our servers.

Open source · Apache-2.0
  • CLI (terminal AI coding agent)
  • Agent runtime, tools and memory
  • Agent SDK
  • Command sandbox
  • NeoX OS
Not open source
  • Accounts and sign-in
  • Subscriptions and billing
  • Model gateway (Neox Studio subscription and Neox Platform API)
  • Website and operations console

The source is on GitHub

Apache-2.0. Issues and pull requests are welcome.