OpenInstinct Eve Agent OpenInstinct released Eve, an open-source, self-hostable personal iMessage assistant that can operate a browser to book movie tickets, handle groceries and complete other chores while keeping passwords, credit cards and context under the user's control. The agent runs in the user's own Vercel account, where secrets are encrypted before reaching the database and models never see them, and it can use any model. The one-click Vercel deploy provisions Kernel for cloud browsers, Neon for Postgres, a private Vercel Blob store for browser images, per-user memory and installation secrets, and a Linq connector for iMessage, with inference handled by Vercel AI Gateway and usage billed to the user's Vercel account. A personal iMessage assistant that can use a browser like you. It can do your chores, book you movie tickets, or handle your groceries. You stay in control of your passwords, credit cards and context. It's Open Source, self-hostable, and can use any model. Why self-host? Personal agents are much more useful when they can sign in, book, buy and act on your behalf. But your accounts, your passwords, are the keys to your digital kingdom. OpenInstinct runs in your own Vercel account. Secrets are encrypted before they touch your database and models never see them. Verify yourself by reading the code Deployment The Vercel one-click deploy flow provisions Kernel https://kernel.sh/ for cloud browsers, Neon https://neon.tech/ for Postgres, and a private Vercel Blob store for browser images, per-user memory, and installation secrets. It also creates and attaches a Linq https://linq.app/ connector for iMessage. Vercel AI Gateway handles inference. Usage is billed to your Vercel account. On first use, OpenInstinct creates independent Better Auth and vault-encryption keys in the private Blob store. Vercel supplies the application URL, database, Kernel, Blob, and Linq configuration, so the deploy flow requires no environment-variable values. For a non-Vercel host or an existing installation that manages its own keys, set both secret overrides and the public application URL explicitly: 1BETTER AUTH SECRET="$ openssl rand -base64 32 "2BETTER AUTH URL=https://your-host3SECRET ENCRYPTION KEY="$ openssl rand -base64 32 " The application database schema and versioned migrations live in db/ . The Drizzle application store uses DATABASE URL for runtime queries; its migration commands require the direct DATABASE URL UNPOOLED connection. Run pnpm db:migrate before starting against a new or upgraded local database. Vercel uses Turbo to run the uncached migration task before its application build. Treat the private Blob store as production key material: deleting it loses the automatically generated encryption key, and rotating that key requires re-encrypting existing vault values. Blob storage The one-click deploy creates and connects a private Blob store automatically. Vercel supplies BLOB STORE ID and a short-lived VERCEL OIDC TOKEN to each deployment, so there is no long-lived Blob credential to copy. OpenInstinct uses this store for persistent per-user memory and browser images. Production conversations require it because memory is recalled before each agent turn. Local Eve development uses process-local memory instead. Ongoing undertakings use a separate workstreams memory slot backed by the application database. Run the application migrations before using this feature; it needs no additional service or credentials. The root agent can save goals, constraints, decisions, source-linked observations, and unresolved steps across conversations. It recalls an index of the eight most recently updated active or waiting workstreams, then reads the selected record before continuing. Older and completed workstreams remain searchable. Workstreams are scoped by authenticated workspace and Eve's deployment-aware memory key. Updates require the current revision. Each scope retains content for up to 100 bounded records; the agent asks which obsolete record to forget at capacity. Forgetting erases the content and source references, retaining only a tombstone to prevent an interrupted save from restoring them. Existing chat history is unchanged. This slot is available only in interactive root turns; remembering work does not start a job, create a schedule, or authorize an action. For an existing Vercel project, link it first with eve link --project