Cloudron makes it easy to run web apps like WordPress, Nextcloud, GitLab on your server. Find out more or install now.


Skip to content
  • Categories
  • Recent
  • Tags
  • Popular
  • Bookmarks
  • Search
Skins
  • Light
  • Brite
  • Cerulean
  • Cosmo
  • Flatly
  • Journal
  • Litera
  • Lumen
  • Lux
  • Materia
  • Minty
  • Morph
  • Pulse
  • Sandstone
  • Simplex
  • Sketchy
  • Spacelab
  • United
  • Yeti
  • Zephyr
  • Dark
  • Cyborg
  • Darkly
  • Quartz
  • Slate
  • Solar
  • Superhero
  • Vapor

  • Default (No Skin)
  • No Skin
Collapse
Brand Logo

Cloudron Forum

Offical apps | Community apps | Demo | Docs | Install
  1. Cloudron Forum
  2. App Wishlist
  3. Paperclip - Open-Source Orchestration Platform for Teams of AI Agents at Work

Paperclip - Open-Source Orchestration Platform for Teams of AI Agents at Work

Scheduled Pinned Locked Moved App Wishlist
4 Posts 2 Posters 253 Views 2 Watching
  • Oldest to Newest
  • Newest to Oldest
  • Most Votes
Reply
  • Reply as topic
Log in to reply
This topic has been deleted. Only users with topic management privileges can see it.
  • T
    T
    Teiluj
    wrote last edited by
    #1

    Paperclip - Open-Source Orchestration Platform for Teams of AI Agents at Work


    • Main Page: https://paperclip.ing
    • Git: https://github.com/paperclipai/paperclip
    • Licence: MIT
    • Dockerfile: Yes - Official image at ghcr.io/paperclipai/paperclip
    • Docker-compose: Yes - Generated via npx paperclipai onboard CLI (Paperclip server, PostgreSQL, Redis, optional Qdrant); deployment docs included
    • Demo: No public demo — live demo video on the Paperclip blog; can try without installing via npx paperclipai (no Paperclip account required)

    • Summary:
      • Open-source app (74k+ GitHub stars) for managing AI agents at work — "if OpenClaw is an employee, Paperclip is the company" — bringing your own agents (OpenClaw, Claude Code, Codex, Cursor, Bash, HTTP, and local agents like Gemini, OpenCode, Grok Build) into a single control plane
      • Models companies with org charts, roles, reporting lines, goals, budgets, and approval gates so you can assign work to agents and track progress and costs from one dashboard
      • Node.js server + React UI; runs with an embedded PostgreSQL database or your own, supports background-service installs on Linux/macOS, and includes governance features like audit trails, approval gates, and budget limits
      • OIDC Currently possible via plugin more info here

    • Notes:
      • Perfect for teams wanting to run "autonomous AI companies" on their own infrastructure — MIT licensed, fully self-hosted, 100% of data stays on your infra
      • Requires bring-your-own agent runtimes and API keys to be useful, and the multi-service stack (server, Postgres, Redis) makes it more involved to deploy than single-binary apps

    • Alternative to / Libhunt link:
    • Screenshots: live demo video

    image.jpeg

    image.jpeg

    1 Reply Last reply
    1
    • L
      L
      LoudLemur
      wrote last edited by
      #2

      Thank you for the request, @Teiluj. We like Paperclip and we are going to package it as a community app.

      Before we do so, here are some concerns which people who might want to use a Paperclip package may like to read, because this app is not like most on the store.

      What concerns us

      • Agents run inside the app. Paperclip starts Claude Code, Codex and similar tools as processes in its own container, and upstream hands them the server's full environment. On Cloudron that includes the database credentials, and the key that encrypts every stored secret is a readable file. An agent that reads a hostile ticket or repository could take over the whole Paperclip instance.
      • Upstream's sandbox cannot run here. It relies on Linux namespaces, which Cloudron app containers do not allow.
      • The internal network is reachable. Any app container can reach the shared database servers and other apps directly, which also bypasses proxyAuth. An unconfined agent would be a foothold inside the server, not just inside Paperclip.
      • Sign-in is email and password only. There is no OIDC yet (it is an open pull request upstream, not a plugin), and the server sends no email at all, so there is no password reset.
      • It moves fast. Releases are roughly weekly, and one recent release carried 49 database migrations.

      One correction to the post above: Paperclip does not use Redis or Qdrant. It needs only PostgreSQL, which the Cloudron addon provides.

      How we intend to handle it

      • Agents run as a separate, unprivileged user, started through a narrow sudo rule with a clean environment. They cannot read the database credentials, the encryption key or the server's memory.
      • A firewall inside the container, matched on that user for both IPv4 and IPv6, blocks the internal network and outbound mail. The internet, DNS and Paperclip's own API stay open.
      • Process and file-size limits apply to the agent user.
      • Telemetry is off by default, and so are Paperclip's own database dumps, because Cloudron already backs up PostgreSQL.

      We have tested this design on a test Cloudron. The agent user was refused on every database and every other app, saw no secrets, and still reached the internet.

      Advantages

      • You can run local agents without handing them the server.
      • It works on stock Cloudron. It needs only the net_admin capability, which Cloudron offers to apps: no Docker socket and no privileged container.
      • The listing will say plainly what an agent can and cannot reach.

      Drawbacks

      • All agents share one user, so one agent can read another's workspace.
      • Agents can still reach the internet, so anything an agent can read, it can send out. For untrusted input, a remote sandbox or an agent in its own app (OpenClaw and Hermes Agent are already in the store) remains the better choice.
      • An agent can still fill the disk.
      • Board users can run any command in the app, so treat them as administrators.
      • There is no SSO and no password reset until upstream adds them.
      • Updates to the application (but perhaps not the package) will be frequent.
      1 Reply Last reply
      1
      • T
        T
        Teiluj
        wrote last edited by
        #3

        @loudlemur Thanks for considering packaging paperclip.

        L 1 Reply Last reply
        0
        • T Teiluj

          @loudlemur Thanks for considering packaging paperclip.

          L
          L
          LoudLemur
          wrote last edited by
          #4

          @Teiluj said:

          Thanks for considering packaging paperclip.

          We have created a package for Paperclip and have it running but are waiting to hear from upstream before publishing it.

          1 Reply Last reply
          0

          Hello! It looks like you're interested in this conversation, but you don't have an account yet.

          Getting fed up of having to scroll through the same posts each visit? When you register for an account, you'll always come back to exactly where you were before, and choose to be notified of new replies (either via email, or push notification). You'll also be able to save bookmarks and upvote posts to show your appreciation to other community members.

          With your input, this post could be even better 💗

          Register Login
          Reply
          • Reply as topic
          Log in to reply
          • Oldest to Newest
          • Newest to Oldest
          • Most Votes


          • Login

          • Don't have an account? Register

          • Login or register to search.
          • First post
            Last post
          0
          • Categories
          • Recent
          • Tags
          • Popular
          • Bookmarks
          • Search