logoalt Hacker News

simonwtoday at 3:22 PM1 replyview on HN

It's a new, dangerous and wildly popular shape of what I've in the past called a "personal digital assistant" - usually while writing about how hard it is to secure them from prompt injection attacks.

The term is in the process of being defined right now, but I think the key characteristics may be:

- Used by an individual. People have their own Claw (or Claws).

- Has access to a terminal that lets it write code and run tools.

- Can be prompted via various chat app integrations.

- Ability to run things on a schedule (it can edit its own frontal equivalent)

- Probably has access to the user's private data from various sources - calendars, email, files etc. very lethal trifecta.

Claws often run directly on consumer hardware, but that's not a requirement - you can host them on a VPS or pay someone to host them for you too (a brand new market.)


Replies

cobertostoday at 9:13 PM

Any suggestions for a specific claw to run? I tried OpenClaw in Docker (with the help of your blog post, thanks) but found it way too wasteful on tokens/expensive. Apparently there's a ton of tweaks to reduce spent by doing things like offloading heartbeat to a local Ollama model, but was looking for something more... put together/already thought through.

show 3 replies