v2026.8.1 (AKA OpenClaw 2.0)
For the story behind this release, read OpenClaw 2.0, Accidentally. This update touches every part of OpenClaw, including installation, messaging, memory, skills, models, automations, the browser and native apps, plugins, security, and many smaller fixes. The sections below describe the user-facing result, with the complete PR and commit record available inside each subsection when someone wants to dig into it. Release scale: 16,977 pull requests, 698 direct commits, and 987 contributors.Installation and Onboarding
OpenClaw now gives new Mac, Linux, and Windows installs a clearer path from download to a first useful conversation, while iPhone, iPad, and Android put pairing and permissions where people need them. Guided setup can reuse supported subscriptions, API keys, and local models already available, verifies the chosen model before saving it, and hands off to the web app or terminal when the connection is ready.Installing OpenClaw
Installing OpenClaw
openclaw available in new terminal sessions without asking you to edit shell startup files by hand.Network installations that would expose OpenClaw without authentication are stopped before anything changes. Reinstalling also protects an existing working setup when preparation is cancelled or fails, and gives OpenClaw time to start before reporting whether it is reachable.Connecting a subscription, API key, or local model
Connecting a subscription, API key, or local model
Starting your first conversation
Starting your first conversation
Setting Up OpenClaw on Mac, Windows, and Linux
Setting Up OpenClaw on Mac, Windows, and Linux
Setting Up OpenClaw on iPhone, iPad, and Android
Setting Up OpenClaw on iPhone, iPad, and Android
Moving, Importing, or Resetting an Existing Setup
Moving, Importing, or Resetting an Existing Setup
Automating Setup and Recovering from Interruptions
Automating Setup and Recovering from Interruptions
--json is requested, failures return one machine-readable result instead of empty or mixed output, and a concurrent setup for the same profile fails quickly with the current holder when known instead of sitting there looking frozen.Cancelled or interrupted setup revokes stale work, while failed provider sign-in or local-model preparation can be retried without cancelling a newer attempt. Gateway health failures stay inside setup with the original diagnostic and recovery hints, but --json does not waive risk acknowledgement, and deliberately skipping service startup can still finish without a reachable Gateway, so automation must inspect the reported health instead of trusting exit status alone.The New Web UI
The rebuilt Control UI puts conversations at the centre of OpenClaw, with files, approvals, settings, and live work close to the conversation so you can set up a Claw, follow what it is doing, and keep working without bouncing between separate tools.Starting and managing conversations
Starting and managing conversations
Chat and history
Chat and history
/btw, which opens a separate multi-turn conversation so you can ask a side question without derailing the work or filling the main history. Faster initial history uses a bounded transcript snapshot stored unencrypted in the browser profile.Follow the Work and Approve Actions
Follow the Work and Approve Actions
Files, Git, browser, and terminal
Files, Git, browser, and terminal
Settings and connected services
Settings and connected services
Appearance, language, accessibility, and mobile
Appearance, language, accessibility, and mobile
Control UI Latency and Responsiveness
Control UI Latency and Responsiveness
Updates and Maintenance
Users could sometimes experience instability after updating OpenClaw. Supported update paths now inspect the installation before replacing it and stop unsafe candidates while leaving the previous CLI runnable. In the Control UI, updates identify the target, ask for confirmation, and keep progress and the final outcome visible. Maintenance tools now provide clearer recovery paths. Configuration errors point to the setting that needs attention, Doctor focuses on problems and the next action, new backups are checked against the guarded restore path, destructive cleanup stops when ownership is unclear, and supported restarts give tracked work time to finish before handoff.Installing OpenClaw Updates
Installing OpenClaw Updates
openclaw update --dry-run previews the path without changing configuration, handoff, cleanup, or restart state.On Linux, code updates can preserve an administrator-owned service definition instead of trying to rewrite it, while an unsafe or uninspectable service handoff still fails visibly. If a plugin replacement asks for new capabilities, OpenClaw keeps the known-good plugin available while the replacement waits for review; openclaw update --accept-capabilities or openclaw update repair --accept-capabilities approves only the staged artifact for that invocation, and --yes does not.One upgrade path still needs a manual repair. If you are on OpenClaw 2026.7.1 with pnpm 11, run pnpm add -g openclaw@latest once. OpenClaw does not upgrade Node for you.Configuration Errors and Service Repairs
Configuration Errors and Service Repairs
openclaw doctor --fix before September 18, 2026. Doctor keeps canonical values when old and new keys conflict and removes settings that no longer do anything, although explicitly retired tuning values return to the built-in defaults.Supported Gateway service repairs preserve the installed state directory, config path, port, managed environment, and eligible file-backed credentials instead of silently retargeting the service. Changing those targets intentionally requires openclaw gateway install --force; on Linux, service commands also refuse conflicting user and system units and show which unit owns the Gateway.OpenClaw Restarts and Running Work
OpenClaw Restarts and Running Work
Troubleshooting, System Health, and Logs
Troubleshooting, System Health, and Logs
doctor --fix attempt, while an unrecoverable configuration stays unchanged with exact instructions to inspect, edit, or move it aside. Bare openclaw doctor --json is a read-only advisory check; use openclaw doctor --lint --all when you need the advisory checks omitted from the default run.Logs now fill their bounded tail window across short reads, preserve Unicode at file boundaries, distinguish line and byte truncation from rollover, and report unavailable storage instead of an empty success. Status keeps its base report when optional health details fail, so missing information remains unknown rather than being shown as healthy.In the admin Control UI, Ask OpenClaw can turn consequential health state into a diagnostic question and keep the system-care conversation docked as you move around, while the System overlay shows a short history of scheduler pressure, CPU, memory, event-loop delay, and optional disk activity. These controls require admin or operator access and do not appear during onboarding or to read-scoped clients.Command-Line Output and Shell Completion
Command-Line Output and Shell Completion
Backup, restore, reset, and uninstall
Backup, restore, reset, and uninstall
dev/ checkouts and local source edits still need a separate backup, while older archives containing absolute generated plugin-skills/ links remain rejected.Known-vulnerable Node and SQLite combinations now stop before state opens, with guidance for whether the embedded Node runtime or shared system SQLite library needs upgrading.Messaging
Messaging now keeps more of a conversation intact across the places people already talk to their Claw. Telegram gains richer messages and media, Slack keeps live progress and the final answer together, Discord adds opt-in Activities and voice rooms that understand who is present, and the native apps keep media and pending sends inside the conversation where they belong. Across supported channels, OpenClaw now holds accepted messages through managed restarts, reports whether a connection is usable, recovering, or blocked, and preserves an uncertain send instead of blindly sending it again. Recovery starts once OpenClaw has accepted the message, and each service still controls what it can confirm beyond that point.Message Delivery and Recovery
Message Delivery and Recovery
Telegram
Telegram
Discord
Discord
Slack
Slack
WhatsApp
Signal
Signal
iMessage and BlueBubbles
iMessage and BlueBubbles
imsg on a signed-in Mac, and this remains separate from the iOS and macOS OpenClaw chat apps.Feishu and Lark
Feishu and Lark
Mattermost
Mattermost
Matrix
Matrix
Microsoft Teams
Microsoft Teams
Google Chat
Google Chat
LINE
LINE
SMS, MMS, and RCS with Twilio
SMS, MMS, and RCS with Twilio
ClickClack
ClickClack
Reef
Reef
Agent-to-Agent Messaging with A2A
Agent-to-Agent Messaging with A2A
Buzz
Buzz
QQ Bot
QQ Bot
qqbot channel ID and carrying existing credentials, account selection, allowlists, approval restrictions, streaming behavior, and group tool policy when Tencent 2.0 can represent them safely. If an older policy cannot be translated without weakening it, Doctor stops for an explicit repair instead of quietly changing the rules. Inbound envelopes already accepted into the local queue can also resume after a restart.Zalo and Zalo Personal
Zalo and Zalo Personal
Tlon and Urbit
Tlon and Urbit
Nextcloud Talk
Nextcloud Talk
Nostr
Nostr
Synology Chat
Synology Chat
Twitch
Twitch
IRC
IRC
Android Chat
Android Chat
iOS and macOS Chat
iOS and macOS Chat
Control UI, WebChat, and TUI
Control UI, WebChat, and TUI
Voice calls
Voice calls
Raft
Raft
Memory
Memory now lets an eligible personal Claw recall relevant context from that agent’s other private conversations, including what mattered immediately before a reset, while visible workflows let you search indexed sources, inspect how memory is working, import supported history, and remove attributable derived memory. Recall stays within the same agent’s private conversations and respects explicit isolation and access policy. Built-in Memory owns the core search and recall path, with a supported Doctor migration from QMD. LanceDB, Memory Wiki, external embedding services,MEMORY.md, and USER.md still have distinct roles, and forgetting derived memory does not erase the original conversation or copies outside OpenClaw.
Upgrading to built-in Memory
Upgrading to built-in Memory
openclaw doctor --fix to remove retired QMD settings, carry forward supported extra paths and any session indexing you explicitly enabled, preserve compatible rows already in the agent database, and rebuild the index from canonical Markdown.The migration carries supported data into a different core, so QMD-only reranking, query expansion, and cross-agent transcript search are retired. Malformed structures, incompatible vector dimensions, and data without a safe owner remain stopped for repair.Finding and recalling past context
Finding and recalling past context
Importing memories and conversation history
Importing memories and conversation history
Reviewing, creating, and forgetting memories
Reviewing, creating, and forgetting memories
MEMORY.md, durable directives can live in USER.md, standing intents can wait for the right event, and project memories stay scoped to the project that produced them. Automatic memory remains bounded and provenance-gated, so content derived from network or restricted sessions keeps an untrusted origin and stays out of automatic context even though an explicit search can still surface it. This provenance protection applies to newly tracked material, while older untracked files retain their existing classification.openclaw memory forget lets you preview a purge by session, hook source, or participant, then remove attributable derived memory and stop the selected session from being pulled back in by backfill, indexing, or dreaming. An interrupted purge can be retried, and newly attributable consolidation or backfill diary claims are removed with the selected session. The purge follows recorded provenance, so the original transcript, older lineage-free notes, other agents’ stores, direct or external writes, exports, and backups may remain. Review the preview before applying it.Skills
Skills turn the way you work into reusable instructions your Claw can follow again, and this release connects the entire path. You can create and validate a skill, find or install it, call it directly from a conversation, review proposed changes, and have supported edits ready on the next turn of a persistent session. Invalid skills are reported individually, so the rest of the catalog remains available. Skill Workshop brings proposals, checks, decisions, and applied history into one workflow. Self-learning can turn substantial work and durable corrections into proposed improvements, or maintain skills created through Workshop when automatic learning is enabled, while skills owned by you or someone else stay under their owner’s control.Creating and checking skills
Creating and checking skills
Finding, Installing, and Using Skills
Finding, Installing, and Using Skills
$skill-name across supported chat and agent entry points, including eligible skills hidden from automatic model selection. The chat picker adds references to your draft without sending it, and Code Mode can list and read eligible skills within its existing sandbox and allowlist. Large model-visible catalogs can still be compacted, so openclaw skills check remains the complete inventory.Reviewing Changes in Skill Workshop
Reviewing Changes in Skill Workshop
How Skills Improve Over Time
How Skills Improve Over Time
auto, while upgrades keep their existing choice. off disables automatic repair, propose queues changes for review, and auto can create or update Workshop-owned skills with targeted patches or a same-turn repair. The conversation already in progress keeps the version it loaded until the next turn.Skills you wrote and shared skills owned elsewhere remain yours. Automatic learning can suggest improvements to them, but it cannot rewrite or remove them on its own, and explicit /learn or past-work scans also produce proposals for review.On supported agent runtimes, optional background review runs separately without interrupting or posting into chat. When both the learning mode and scheduled-job settings allow it, a visible weekly job reviews the collection, records usage and outcomes, preserves specialized skills, and creates recoverable backups. Restoring a backup remains an explicit choice.Native Apps
This release makes the native apps useful for more of the work around a conversation. iPhone, iPad, and Android bring voice, attachments, model choices, and conversation controls into Chat, macOS adds Quick Chat from the menu bar or a global shortcut, and Wear OS brings transcripts, replies, Talk, and session controls to a paired watch. Apple Watch retains wrist actions through relaunches and retries, while the Linux desktop companion work now covers a tray, an embedded Control UI, and Quick Chat. Progress cards and assistant-created widgets also bring more of the Claw’s active work into supported native conversations, with translations, profile accents, waveforms, and file diffs appearing on the specific clients covered below.iPhone, iPad, and Apple Watch
iPhone, iPad, and Apple Watch
Android and Wear OS
Android and Wear OS
macOS app
macOS app
Linux app
Linux app
Progress and Presentation by Native App
Progress and Presentation by Native App
Models and Providers
Chat and the Models page now open from the catalog OpenClaw already has, so choosing a model no longer waits for a full provider scan. Live discovery runs only when you open a model screen or explicitly refresh it, keeps the last useful list when a lookup fails, and/model can change only the current conversation or deliberately update one agent or the shared default.
Once a model is selected, OpenClaw keeps the request inside the intended provider and authorized account order, preserves the real order and outcome of streamed replies and tool calls, carries reasoning and context settings with the model and runtime, and reports plan windows, token use, context pressure, and estimated cost more clearly.
Finding and choosing models
Finding and choosing models
/model change can stay with the current conversation or deliberately apply to one agent or the shared default, with persistent changes requiring the right authority. Aliases and fallback keep the provider and account attached to the selected model.The list shows models OpenClaw can identify, while the provider, account, region, endpoint, plan, limits, and pricing determine which ones you can use.Provider accounts and sign-in
Provider accounts and sign-in
Streaming Replies and Tool Calls
Streaming Replies and Tool Calls
Reasoning and context limits
Reasoning and context limits
Usage, limits, and pricing
Usage, limits, and pricing
Automations and Scheduling
Automations now bring scheduled work together under one name across the agent, Control UI, command line, docs, and supported native apps, while existing Cron commands, settings, jobs, and schedule syntax continue to work. History separates whether an automation ran, whether its result was delivered, and whether the whole request completed. Work genuinely missed during a restart or clock change can return without reviving completed or retired jobs, and connected tools keep only the authority captured when the automation was created or reauthorized, checked against current policy and availability each time it runs.Creating and managing automations
Creating and managing automations
openclaw automations offers the same command family as openclaw cron. The old command, /cron route, cron.* settings and RPC names, schedule expressions, identifiers, and stored jobs continue to work.The Control UI is the fullest place to search, filter, create, clone, inspect, edit, run, pause, and remove automations, including advanced delivery and failure routing. New Quick Create and starter automations stay internal unless you explicitly choose an Announce summary and its destination. iOS and Android expose the fields and actions each client supports, Android changes require administrator scope while read-scoped connections remain inspection-only, and script automations remain visible but read-only on clients that cannot replace their payload.Schedules and runs
Schedules and runs
/loop or eligible reminder that checks a small amount of recent context when it runs and returns one final answer to the same chat. It starts as a fresh run rather than continuing the original transcript, and work created without a conversation stays isolated.Recurring schedules, one-time jobs, manual starts, queued work, restart catch-up, on-exit work, commands, and bounded scripts now share one configured capacity limit. Waiting work starts as room becomes available, while successful scripts can retain a small amount of state, notify a destination, wake the main conversation, or ask to be checked again later. Scripts still have time, tool-call, pacing, and state limits, and can be disabled entirely.Force runs and edits no longer pull recurring work away from its natural schedule. Timezone-aware schedules skip local times that never occur, choose the first real occurrence when a local time repeats, and continue to respect explicit offsets after a restart.Triggers and connected tools
Triggers and connected tools
Heartbeats and email watchers
Heartbeats and email watchers
HEARTBEAT.md must run openclaw doctor --fix to migrate valid work because OpenClaw no longer reads that file at runtime.Gmail can split an accepted batch into one isolated run per message when its mapping opts in, filter Sent and Draft mail, and keep forwarding through watcher restarts without overlapping renewals or repeated restart loops. Ordinary custom mappings keep their existing behavior, and expired-OAuth renewal health is unchanged.The bundled IMAP watcher lets authenticated new mail from an existing mailbox start a restricted reader agent without exposing an HTTP hook. It is disabled by default and inbound-only, requires sender allowlisting and authentication, and cannot send or modify mail. After three temporary admission failures, the message is recorded as skipped.History, alerts, and delivery
History, alerts, and delivery
gateway.publicOrigin, historical rows may not have every optional counter, and condition activity belongs to the job’s history rather than the global feed.Failure alerts use configurable routes, thresholds, and cooldowns, with route-backed alerts defaulting to two consecutive failures and a one-hour cooldown. Recurring cron or every jobs disable themselves after ten consecutive execution failures and explain how to re-enable them, while delivery-only failures do not advance that streak and a successful run or manual re-enable resets it.Automations After a Restart
Automations After a Restart
deleteAfterRun is removed normally. Legacy running markers still remain interrupted when they cannot establish whether an outside side effect happened, so exactly-once execution in external systems remains outside the scheduler’s recovery boundary.Browser and Computer Use
OpenClaw can now use signed-in browser sessions through an isolated managed profile or the exact Chrome tabs you choose to share. On macOS, supported cookies can be imported locally or synced to a remote managed browser for an allowlist of sites you choose, while the official Chrome extension keeps live access scoped to shared tabs. Browser actions, downloads, and desktop input also stay attached to their intended tab, page state, and machine, with cancellation and timeouts reaching more of the local and remote work they own. Computer Use can work with supported apps and windows on paired Macs and explicitly enabled Windows machines, and the Desktop panel can open the machine that owns a session. Control still requires the applicable pairing, policy, and operating-system permissions, view-only sessions reject input, and Linux control remains experimental.Browser setup
Browser setup
Browsing and page actions
Browsing and page actions
Computer Use
Computer Use
Remote screens and devices
Remote screens and devices
Browser Targeting, Privacy, and Timeouts
Browser Targeting, Privacy, and Timeouts
Plugins and Integrations
Admins can now browse, search, install, enable, disable, and remove plugins from the Control UI, while the same hub can install curated ClawHub skills and add vetted MCP connectors. Managed installs pause for source review where needed, roll failed changes back to a retryable state, and repair stale or incomplete records without throwing away healthy configuration. Plugin updates also keep work already in flight on the version it started with, then move later work to the replacement only after it loads successfully. ClawHub installs carry the selected publisher, version, scan state, and source across desktop and mobile, MCP servers recover independently when a connection or catalog changes, and plugin authors get typed Gateway and SDK contracts for building against OpenClaw. Vendor-neutral Agent Plugins can bring skills and supported MCP servers together with scoped storage, giving integrations a clearer path from package to running system.Installing and managing plugins
Installing and managing plugins
plugins doctor for local discovery and configuration checks, and openclaw health for the plugin and service state of the running system. Some installs and removals still require a restart before the change becomes active.ClawHub, Claws, and sharing skills
ClawHub, Claws, and sharing skills
OPENCLAW_EXPERIMENTAL_CLAWS=1, uncertain outside actions can leave visible partial state that needs a fresh plan, and the package does not carry credentials, providers, bindings, arbitrary local paths, executable configuration, sessions, or host state it does not own.Loading and updating plugins
Loading and updating plugins
MCP servers and apps
MCP servers and apps
Building plugins and integrations
Building plugins and integrations
deactivate alias with gateway_stop, while the beta.5 session-store bridge remains available through October 12, 2026. Clients using the v2026.7.2 beta question, worker, or session-catalog shapes need to move to the renamed and flattened contracts. Custom agents.defaults.cliBackends commands, arguments, environment, aliases, and parsers now belong in a backend plugin whose executable is available to the OpenClaw service.Plugin Packages and Host Compatibility
Plugin Packages and Host Compatibility
Security and Privacy
Sensitive work now carries more of its authority with it. Approvals stay attached to the exact request, command, session, and person that received them, removing or pairing a device again retires its old access, and protected credentials can reach supported destinations without entering model-visible text. Sandboxes, network requests, browser actions, and plugin installs also recheck the workspace, destination, document, publisher, version, or artifact they depend on, so stale or mismatched authority stops or asks again instead of being reused.Approvals and permissions
Approvals and permissions
People, devices, and pairing
People, devices, and pairing
Secrets and private data
Secrets and private data
Sandbox and file access
Sandbox and file access
Network Access and Untrusted Content
Network Access and Untrusted Content
Plugin Permissions and Installation Checks
Plugin Permissions and Installation Checks
Quality-of-Life Improvements
Everyday work in OpenClaw now takes less effort to find, follow, move, and protect. Past conversations are easier to return to, long jobs keep useful progress visible, portable snapshots can be checked before they are needed, and eligible work can run on a cloud worker or paired computer, with cloud sessions later reclaimed to the main machine. Voice, video, meeting capture, agent tools, keyboard access, maintained translations, interface polish, and documentation also pick up changes that make the product easier to use across ordinary work.Past Conversations and Long-Running Work
Past Conversations and Long-Running Work
Stored Data and Backups
Stored Data and Backups
openclaw doctor --fix can migrate them. Pending pairing requests and bootstrap codes are not imported, the macOS tunnel migration cannot be read by older JSON-only builds, and restore refuses to write over an existing target.Remote computers and devices
Remote computers and devices
Voice, meetings, and media
Voice, meetings, and media
Code Mode and agent tools
Code Mode and agent tools
tools object, ALL_TOOLS, exact-ID calls, and raw call envelopes are gone. What a program can compose still stops at the tools it is authorized to use and the structured results those tools declare.Tool Search also does a better job of turning a natural request into a discoverable capability, can search several capability groups in one structured request, and now exposes existing session archive and pin actions. Policy can still hide tools and a request with no valid answer can return nothing, while existing single-query request and response shapes continue to work.Accessibility and language support
Accessibility and language support
mobile_ui path that lets an authorized agent observe and interact with apps on a supported paired device. It is owner-only, off by default, limited to third-party builds, unavailable through Gateway HTTP and Play builds, and requires both dangerous commands to be armed explicitly.Interface polish and compatibility
Interface polish and compatibility
Documentation
Documentation
settings.class can be omitted even though profile validation still requires it, so Daytona profiles should keep the class explicit until the guide and product contract agree.Other Bug Fixes
OpenClaw now preserves completed Codex delegation results through the covered handoffs, keeps accepted user turns from being stored twice, stops cancelled commands before they start, and retains Canvas widget identity and pin state after reload. The rest of this section covers scoped fixes across browser Talk, Copilot and xAI replay, Doctor recovery, plugin upgrades, meeting audio, and the terminal app.Agent Work and Handoffs
Agent Work and Handoffs
sessions_yield paths, completed subagent results now survive cleanup and handoff, yielded jobs launch once, and the parent resumes after fan-out finishes.Conversations, history, and stored data
Conversations, history, and stored data
/new and /reset also preserve the underlying transcript position while clearing the visible conversation, so resetting what you see does not lose OpenClaw’s place in the saved history.Agent tools and code execution
Agent tools and code execution
Processes and background commands
Processes and background commands
Automations and task boards
Automations and task boards
Web and dashboard interfaces
Web and dashboard interfaces
Terminal App
Terminal App
Voice and Talk
Voice and Talk
Models and providers
Models and providers
Speech and media providers
Speech and media providers
Command line and diagnostics
Command line and diagnostics
Security and permissions
Security and permissions
Plugins and installation
Plugins and installation
Messaging and calls
Messaging and calls
Documentation
Documentation
Maintainer and Internal Changes
Another 6,364 changes in this release primarily affect the people who build and maintain OpenClaw. They cover release and CI work, tests, internal refactors, documentation maintenance, and narrow fixes that sit outside the user-facing product sections above.All 6,364 Maintainer and Internal Changes
All 6,364 Maintainer and Internal Changes
2026.9.1-beta.1 was incorrectly versioned and corresponds to 2026.8.1-beta.4; it is not newer than stable 2026.8.1.