The agentic AI ecosystem is seeing a significant shift away from OpenClaw, driven by its documented security vulnerabilities, high resource footprint, and single-user design limitations. Originally lauded for enabling personal, self-hosted AI agents with cross-session context and scheduled tasks, OpenClaw's rapid growth to 380,000 GitHub stars was tempered by practical issues. A critical gateway flaw in 2026 exposed tens of thousands of instances, and over 300 malicious skills were caught stealing credentials, highlighting the project's casual approach to local trust and stored credentials. Furthermore, its Node.js runtime often consumes hundreds of megabytes to over a gigabyte of RAM, making it unsuitable for edge hardware, and its large codebase (hundreds of thousands of lines) renders thorough auditing impractical for individual users. The shift was further accelerated by Anthropic's early 2026 policy changes, blocking third-party agentic tools from using Claude Pro and Max subscriptions, forcing OpenClaw users onto more costly metered API billing.