Security & Privacy

Local-first by design.

OpenClaw One runs on your device. Your files, settings, and local history stay with you, and cloud features connect only when you choose them.

How your data flows
๐Ÿ“
Your Input
โ†’
๐Ÿ’ป
OC1 on Your Device
โ†’
โ˜๏ธ
Selected Model or Service
Only when a cloud feature is used
Your workspace stays local by default. When you use a cloud model or online service, the data needed for that request is sent to that service. With local models, you can stay fully offline.
๐Ÿ”

Encrypted Local Storage

Sensitive local settings and workspace data can be stored with encryption at rest on your device or USB workspace.

๐Ÿ’ป

Local-First Workspace

OpenClaw One runs on your computer. Your files, settings, and local history stay on your machine unless you choose an online feature.

๐Ÿ”‘

Flexible Model Access

Use your own API keys or OpenClaw One prepaid credits. Either way, you stay in control of how you connect models.

๐ŸŒ

Offline Capable

Run local AI models without internet. Connect to cloud models only when you need them.

๐Ÿงน

Clean Removal

One-click uninstall removes everything. Pocket USB edition: just unplug โ€” nothing remains on the host computer.

๐Ÿ“ฆ

Open Source Core

Built on the open-source OpenClaw framework. The codebase is auditable. No hidden backdoors, no proprietary black boxes.

Pocket Edition โ€” Great for shared and travel computers

If you want your workspace to stay on a USB drive instead of the host machine, Pocket Edition gives you a cleaner way to work across shared or temporary computers.

  • Keep files, settings, and local history on the USB drive
  • Unplug and your workspace goes with you
  • No full install required on the host computer
  • Local models can run offline when needed
  • Useful for travel, coworking, and shared-device workflows
Get Pocket Edition โ†’

Compliance & Standards

PDPA (Singapore)

Local-first deployment can reduce unnecessary data movement, but you should still review your own workflow and compliance needs.

Privacy Review

OpenClaw One can fit privacy-sensitive workflows, but the exact data path still depends on which models and services you choose.

Data Residency

Local files stay where you store them. Cloud requests follow the destination of the model or service you choose to use.

Audit Trail

For team workflows, audit and admin controls should be matched to your own internal process before deployment.

Security FAQ

Does OpenClaw One send my data to your servers?
Not by default. Your workspace runs locally. When you use a cloud model or online feature, the data needed for that request is sent to the selected service.
Can I use OC1 in an air-gapped environment?
Yes, if you use local models and local-only workflows. Cloud models still need internet access for the request they handle.
Where are my API keys stored?
If you connect your own API keys, they are stored locally on your device or USB workspace. OpenClaw One credits do not require you to manage provider keys yourself.
What happens when I uninstall OC1?
One-click uninstall removes all OC1 files, configurations, and data from your computer. For Pocket USB: simply unplug the drive โ€” no traces remain on the host machine.
Is this suitable for medical / legal / financial use?
OpenClaw One can fit sensitive workflows, especially when you keep work local and choose models carefully. You should still verify the exact setup against your organization's own rules and compliance requirements.