Carapace

by puremachinery (independent)

Secure Rust alternative to OpenClaw addressing critical Jan 2026 vulnerabilities — fail-closed auth, signed plugins, OS-level sandboxing.

Rust

Notable Features

  • Fail-closed auth; OS-level subprocess sandboxing; signed plugin runtime; multi-provider (Anthropic/OpenAI/Ollama/Gemini/Vertex/Bedrock/Venice); Signal+Telegram+Discord+Slack

About

Carapace (puremachinery/carapace) is a secure, stable Rust alternative to OpenClaw/Moltbot/Clawdbot, created by puremachinery in response to critical January 2026 vulnerability disclosures.

Security features include fail-closed authentication, OS-level subprocess sandboxing, signed plugin runtime with signature verification, and encrypted secret storage. It supports multiple AI providers (Anthropic, OpenAI, Ollama, Gemini, Vertex AI, AWS Bedrock, Venice AI) and multiple messaging channels (Signal, Telegram, Discord, Slack).

Platform Support

Linux macOS