No red flags found in any of the 11 categories — no credential harvesting, no data exfiltration, no curl-pipe-shell installer. Scanned against the SlowMist agent-security taxonomy, refreshed every 8 hours. Full audit →
by heypinchy · Codex Skill · ★ 174
Last updated: · Indexed by AgentSkillsHub · Auto-synced every 8h
🔒 Is pinchy safe to install? View the security audit →
Pinchy Self-hosted AI agent platform built on OpenClaw. Enterprise-ready. Offline-capable. Open source. Docs • Website • Blog • Discussions • LinkedIn What is Pinchy? Pinchy is an enterprise layer on top of [OpenClaw]
| Stars | 174 |
| Forks | 22 |
| Language | TypeScript |
| Category | Codex Skill |
| License | AGPL-3.0 |
| Quality Score | 63.5140940885606/100 |
| Open Issues | 157 |
| Last Updated | 2026-08-26 |
| Created | 2026-02-18 |
| Platforms | docker, node |
| Est. Tokens | ~16k |
These tools work well together with pinchy for enhanced workflows:
Looking for a pinchy alternative? If you're comparing pinchy with other codex skill tools, these 6 projects are the closest alternatives on Agent Skills Hub — ranked by topic overlap, star count, and community traction.
Open-source, self-hosted control plane for OpenClaw and Hermes AI-agent fleets on Docker/Kubernetes — REST, CL
A Python library powered by Language Models (LLMs) for conversational data discovery and analysis.
c4 GenAI Suite
Self-hosted framework for orchestrating fleets of specialist AI agents — ensemble reasoning and a full agentic
Open-source firewall for AI agents. Policy engine that audits and controls what OpenClaw, Claude Code, Cursor,
Safe runtime for autonomous on-chain AI agents: isolated sandboxes, Library skills, encrypted secrets.
Explore other popular codex skill tools:
pinchy is Self-hosted AI agent platform built on OpenClaw. Enterprise-ready, offline-capable, open source. 🦞. It is categorized as a Codex Skill with 174 GitHub stars.
pinchy is primarily written in TypeScript. It covers topics such as agpl, ai-agent-platform, ai-agents.
You can find installation instructions and usage details in the pinchy GitHub repository at github.com/heypinchy/pinchy. The project has 174 stars and 22 forks, indicating an active community.
pinchy is released under the AGPL-3.0 license, making it free to use and modify according to the license terms.
The top alternatives to pinchy on Agent Skills Hub include nora, BambooAI, c4-genai-suite. Each offers a different approach to the same problem space — compare them side-by-side by stars, quality score, and community activity.
Grades come from a rule-based scan built on the SlowMist agent-security taxonomy, covering 11 red-flag categories including credential harvesting, data exfiltration, and curl | sh installers. It is a first-layer scan, not a manual audit — we say so rather than overstate it.
The scale of the problem is documented independently: Liu et al. (2026), in a study of 31,132 agent skills, report that 26.1% contain security vulnerabilities. Our own full-catalog census is published as a citable open dataset.
Sources & who's responsible: