AgentComparison
Merit Systems (open-source project) · product · open-source iMessage assistant with a browser and password vault

OpenInstinct (Merit Systems)

A free, self-hosted iMessage assistant that uses a cloud browser and an encrypted vault; needs Vercel Pro.

Group: Personal agents you message

OpenInstinct is an MIT-licensed personal assistant that lives in an iMessage thread and uses a cloud browser to do chores such as booking tickets, ordering groceries and filling forms. You deploy it into your own Vercel account; passwords and cards go into an encrypted vault, and purchases, email, calendar events and destructive changes wait for your approval in the thread, per the project's site. It is not the hosted Instinct assistant and is separate from Maria Gorskikh's Open Instinct project.

Documentation researched, not testedChecked 5 October 2026Vendor documentation, not a test

The decision in plain English

Self-hosted, so you carry the setup and the bills. The README says deployment needs a Vercel Pro plan, with free plans for Kernel (cloud browsers) and Neon (database) and Linq's iMessage line and Blob storage billed through Vercel; we did not verify any of those prices. The eve.dev template page for it appeared in an eve post on 5 October 2026. The vault and approval claims are the project's own and we did not audit the code. Start with approvals on and no stored cards.

Best fit

People comfortable deploying to their own Vercel account who want an iMessage assistant that can operate real websites in a cloud browser while keeping logins and cards in a vault they host.

Poor fit

Anyone who wants a hosted assistant that works after sign-up, who is not on or ready to buy a Vercel Pro plan, or who is not comfortable letting an agent sign in and buy on their behalf.

Documented capabilities

Vendor statements, not verified task outcomes.

  • iMessage assistant that works through real websites in a cloud browser, with screenshots and receipts sent to the thread Source · checked 2026-10-05
  • MIT-licensed source with a one-click Vercel deploy flow Source · checked 2026-10-05
  • Encrypted password and card vault with browser autofill that keeps secrets out of the model's context Source · checked 2026-10-05
  • Approval in the thread before purchases, email, calendar events and destructive changes Source · checked 2026-10-05
  • Listed as the 'iMessage Agent as a Service' template on eve.dev Source · checked 2026-10-05

Permissions and human control

  • The project's site says purchases are posted in your thread with merchant, item and total for approval, and that email, calendar events and destructive changes also need approval. It says passwords and cards are encrypted before storage and that the browser worker receives a handle and fills the saved value, keeping it out of the model. Purchases approved through Link are paid from your wallet, per the README. These are the project's statements.

Documented controls do not prove that an agent always follows them.

Limits and open questions

  • Self-hosted: deployment needs a Vercel Pro plan, per the README
  • Supporting services (Kernel, Neon, Linq line, Blob storage, AI Gateway) have their own free tiers, credits and usage charges, per the README; we did not verify prices
  • Vault, browser-autofill and approval behaviour are the project's own statements; no independent audit was found
  • Uses a cloud browser to sign in and check out on real merchant sites, which some sites restrict
  • Not tested by AgentComparison

Privacy and security

Because you host it, your database, memory and encrypted vault live in your own Vercel project and its connected services. The README says the encryption keys are created on first use in your private Blob store and that deleting that store loses the vault key. We did not review the code or find an independent security audit.

Common questions about OpenInstinct (Merit Systems)

What is OpenInstinct (Merit Systems) for?

People comfortable deploying to their own Vercel account who want an iMessage assistant that can operate real websites in a cloud browser while keeping logins and cards in a vault they host. The vendor describes it as: OpenInstinct is an MIT-licensed personal assistant that lives in an iMessage thread and uses a cloud browser to do chores such as booking tickets, ordering groceries and filling forms. You deploy it into your own Vercel account; passwords and cards go into an encrypted vault, and purchases, email, calendar events and destructive changes wait for your approval in the thread, per the project's site. It is not the hosted Instinct assistant and is separate from Maria Gorskikh's Open Instinct project.

Who should look elsewhere?

Anyone who wants a hosted assistant that works after sign-up, who is not on or ready to buy a Vercel Pro plan, or who is not comfortable letting an agent sign in and buy on their behalf.

How much does OpenInstinct (Merit Systems) cost?

No price for the assistant itself. Running it needs a Vercel Pro plan plus metered usage for the connected services; we did not verify Vercel's prices.

What can it access and what needs my approval?

The project's site says purchases are posted in your thread with merchant, item and total for approval, and that email, calendar events and destructive changes also need approval. It says passwords and cards are encrypted before storage and that the browser worker receives a handle and fills the saved value, keeping it out of the model. Purchases approved through Link are paid from your wallet, per the README. These are the project's statements.

What happens to my data?

Because you host it, your database, memory and encrypted vault live in your own Vercel project and its connected services. The README says the encryption keys are created on first use in your private Blob store and that deleting that store loses the vault key. We did not review the code or find an independent security audit.

Has AgentComparison tested it?

No. This record is built from the vendor's own documentation, checked 2026-10-05. Vendor claims are attributed, not confirmed.

How to evaluate OpenInstinct (Merit Systems) yourself

  1. Pick one low-risk task that matches its documented capabilities: imessage assistant that works through real websites in a cloud browser, with screenshots and receipts sent to the thread.
  2. Write the expected output and what counts as failure before you start.
  3. Connect the minimum access needed, and check approval settings first.
  4. Run it twice and compare, then review every action it took.
  5. Check cost after any free allowance. Unknown price is not free.

Related

Documented use cases: Building your own agent.

Sources and history

Change history

Documentation overview expanded with current pricing/access sources. No hands-on results claimed.

Report a correction