MIT · signed since v1.3.4
Trust, source, and your responsibility
open-code.co exists so you can read what the software does and fetch a build with a published hash. It does not replace the MIT license or your own review of the agent.
Legal use
OpenCode is a coding agent. Use it on repositories and machines you are allowed to change. Do not point it at systems, credentials, or data you do not have the right to process.
Provider accounts (Claude Pro/Max, ChatGPT Plus/Pro, GitHub Copilot, Zen, raw API keys) stay under that provider's terms. OpenCode is the client. The bill and the rate limit are yours.
How the agent is allowed to act
The permissions doc is the ethical control, not a slogan. Rules resolve to allow, ask, or deny. Defaults are permissive for most tools. doom_loop and external_directory default to ask. *.env reads default to deny.
Plan mode exists so you can keep edit and bash off while the model thinks. --auto only auto-approves asks that you did not deny. An ask prompt offers once, always (for the rest of that session), or reject.
Source transparency
OpenCode is MIT licensed. The homepage cites over 195,000 GitHub stars, 950 contributors, and over 13,000 commits. The public repository name is anomalyco/opencode. This page does not send you off-site.
You can read permission defaults, the TUI, and the desktop sidecar in that tree. If a binary and the source disagree, trust the hash on the download page and the signed release, not a random npm tarball from last month.
Malware clarification
The project is an open source coding agent, not a closed installer with no provenance. CLI and desktop have been code-signed since v1.3.4.
That does not mean every antivirus engine will stay quiet. Users have posted Defender Wacatac, Kaspersky PDM, and Smart App Control 3077 reports against temp DLLs. Those reports are part of the public record. Treat them as a reason to hash the file, not as a reason to switch off kernel-level controls.
If a build you did not request appears on your machine, do not run it. Fetch v1.18.31 from this site after the download URLs are attached, or rebuild from source you reviewed.
Your responsibility
You decide which repo the agent may touch, which MCP servers it may call, and whether share links leave your machine. Shared sessions store that conversation. Free-model use also stores data, per the official FAQ.
open-code.co provides documentation and a download desk. We do not operate your providers, we do not watch your repo, and we do not accept liability for code the agent writes or commands it runs. If that is the wrong contract for your workplace, do not install it.
© 2026 OpenCode · open-code.co · MIT licensed software, independently documented here