Strong fit
Self-hosted assistant with persistent memory and reusable skills.
Source-checked profile · July 26, 2026
Skills, security, setup, and practical fit
A stateful open-source agent from Nous Research for teams that need persistent memory, reusable skills, MCP connections, and controlled execution across terminal and messaging surfaces. This profile checks primary sources instead of repeating promotional benchmarks.
Decision first
Start with workflow fit and execution risk. Feature count comes second.
Direct answer
Choose Hermes when persistent context and reusable procedures matter more than a lightweight IDE-only assistant.
Strong fit
Self-hosted assistant with persistent memory and reusable skills.
Strong fit
One agent across terminal and supported messaging surfaces.
Limited fit
Inline IDE autocomplete with minimal operational setup.
High risk
Untrusted public access on a host-level local backend.
How the system works
Hermes combines an agent loop, tools, memory, and deployment backends. The value comes from the whole operating path—not one isolated feature.
Terminal or messaging input gives the agent a concrete objective.
The loop selects tools, executes work, observes results, and continues.
Useful context persists, and successful procedures can become reusable skills.
Run locally, in a container, or remotely with permissions matched to risk.
Risk noteEvery added tool, backend, credential, and messaging channel expands the permission surface. Start with the narrowest configuration that completes the job.
Source delta
The page records source changes instead of silently preserving stale claims. This keeps comparison copy auditable.
The current GitHub release replaces the previously recorded version.
The snapshot increased; star counts remain time-bound popularity signals.
The current README uses the narrower 40+ wording, so this page follows it.
Current sources name supported channels but no longer make a fixed total claim.
Editorial boundary
No fixed 20+ total
Use named, sourced messaging integrations instead.
No 60+ tool claim
The current README supports the narrower 40+ wording.
No security absolutes
Documented layers reduce risk; local execution is not risk-free.
Setup + security
Commands are easy. The real setup decision is which backend, credentials, and integrations the agent is allowed to reach.
Verify the official source and choose the backend before adding credentials. Read an installer before running remote code.
Unix / macOS
curl -fsSL https://hermes-agent.nousresearch.com/install.sh | bashWindows PowerShell
iex (irm https://hermes-agent.nousresearch.com/install.ps1)First-run checklist
hermes setup --portalProvider setup
hermes doctorConfiguration check
hermesStart after review
These controls reduce exposure; they do not remove the risk of local execution, broad credentials, or misconfigured backends.
User authorization
Dangerous-command approval
File-write safety
Container isolation
MCP credential filtering
Context-file scanning
Cross-session isolation
Input sanitization
High risk
Local backend + broad filesystem access + reusable credentials is the highest-risk combination. Avoid it by default.
Practical use
These are implementation patterns, not measured performance claims. Test them with your own models, permissions, and evaluation set.
Give the agent a bounded question, require URLs and retrieval dates, and human-review any conclusion that changes money, access, or production state.
Run the agent in a container or disposable branch, provide a narrow test command, and require a diff plus test evidence before merge.
Allowlist users, begin with read-only tools, keep approval enabled, and add one integration at a time.
What we verified
What remains unproved
Continue with the right depth
Common questions
Hermes Agent is an open-source agent from Nous Research. It combines a terminal agent loop with persistent memory, reusable skills, built-in tools, MCP support, messaging integrations, and multiple execution backends.
The repository is MIT-licensed. Running it can still involve model-provider, hosting, messaging, search, or other tool costs, so there is no universal all-in price.
Nous Research maintains the official Hermes Agent repository and documentation.
Yes. The official documentation describes a learning loop that can create and improve reusable skills. Its skills are compatible with the agentskills.io specification.
Yes. Hermes Agent supports Model Context Protocol servers in addition to its built-in tool set. MCP credential filtering is one of its documented security layers.
Yes. The official documentation provides a native PowerShell installer for Windows. WSL2 is also included in the Unix-style installation path.
It includes eight documented security layers, but risk depends on configuration and execution backend. Local execution does not provide container isolation, approval can be disabled, and forwarded environment variables may expose secrets.
No. It can use a local backend, while Docker and other container or remote backends provide a stronger execution boundary. Choose the backend according to the trust level of the tasks and data involved.
No. It is a broader autonomous agent environment. Developers who only want inline code completion may find a dedicated IDE assistant simpler.
Editorial profile · no ranking guarantee · last checked 2026-07-26
Claims were rechecked against the primary sources above on July 26, 2026. Product behavior can change after publication.