Can you run Grok Bot locally? No, and here is what that means

Short answer: no. There is no local Grok Bot runtime, no self-hosted edition, no on-premise option, and no open-source build. The desktop and iOS apps are clients; every Bot works on a persistent cloud VM that xAI operates and that all of your Bots share. This page sets out exactly what runs where, why the distinction matters for your credentials and your bill, and what the own-hardware alternatives actually are.

By the Continuum team. We build a workbench that runs Claude Code, Codex, and their peers, so the model rates quoted here are the ones our own cost analytics ship with.

The short version

Grok Bot cannot be run locally or self-hosted in any form as of 22 August 2026. The macOS, Windows and iOS apps are thin clients; the agent itself runs on a persistent cloud Linux VM operated by xAI, and the documentation is explicit that all of your Bots share one such computer "without getting separate security boundaries". There is no public API, no container, no source, and no on-premise edition. What that costs you: your files and every login a Bot uses sit on infrastructure you do not control, work stops if xAI is down, and you cannot pick the model or cap the spend. What you get in exchange is genuine: no agent host or server to install or maintain, only the native client; nothing of yours to keep powered on; and computer use against apps that never shipped an API. If the own-hardware property is the requirement, the real options are OpenClaw (self-hosted framework, VPS plus maintenance), Hermes Agent (desktop-native), or, for coding work specifically, a free workbench that runs agents on a machine you already own and is driven remotely from a phone.

What you need to know
  • There is no local Grok Bot. No self-hosted edition, no container, no source, no on-premise option, and no public API to build one against.
  • The apps are clients, not runtimes. macOS, Windows and iOS install a window onto a cloud VM; the work happens in xAI cloud.
  • One shared cloud computer, not one per Bot. xAI documents that Bots share a VM "without getting separate security boundaries".
  • Docs say there is no Linux desktop app, though the download page has been reported to serve a Debian package anyway. Do not plan around a Linux client.
  • What you actually gain by going cloud: nothing to keep powered on, and computer use against apps with no API. Both are real.
  • If own-hardware is the requirement, the options are OpenClaw, Hermes Agent, or a free workbench for coding agents. None of them is Grok Bot.

The short answer: no, and not in any form

Grok Bot cannot run on your own hardware. There is no local runtime, no self-hosted edition, no on-premise deployment, no container image, no source release, and no public API you could build a local equivalent against. As of 22 August 2026 every access path runs the agent on infrastructure xAI operates.

The confusion is understandable, because you do install software. There are macOS, Windows and iOS apps, and installing an app usually means the work happens on your machine. Here it does not: those apps are clients.

What runs where, from the Grok Bot documentation.checked 22 aug 2026
ComponentWhere it livesOn your machine?
The desktop and mobile appsmacOS, Windows, iOSYes, but they are only clients
The Bot itselfA persistent cloud Linux VM operated by xAINo
Its filesystem, browser and terminalThat same cloud VMNo
Files a Bot creates or downloadsThat same cloud VMNo
Logins and browser sessions you hand overThat same cloud VM, shared by all your BotsNo
Routines and memoryxAI cloudNo
The modelxAI cloud, undisclosed and unselectableNo

Why people expect a local option, and what actually exists

Four things make a local Grok Bot sound plausible, and each one is worth answering directly.

  • "It installs on my Mac, so it runs on my Mac." No. The installer gives you a messaging client. Quit it and your Bots keep working, which is precisely the selling point and also the proof that the work is not local.
  • "xAI open-sourced the CLI, so surely the Bot too." Different product. Grok Build, the coding CLI, does run on your machine and is scriptable; Grok Bot is a separate closed product with no API. The two get conflated constantly, which is why we wrote a page untangling them.
  • "There is a Linux download, so there must be a self-hosted build." There is no self-hosted build, and the Linux situation is genuinely contradictory: the documentation states plainly that Grok Bot is not currently available as a Linux desktop app, while the download page has been reported to serve a Debian package anyway, as one Hacker News commenter, gexla, found on launch day. Even if you get a Linux client running, it is still a client.
  • "I could self-host it with the API." There is no Grok Bot API. No public endpoint, no webhook, no documented programmatic surface. Among xAI agent products only Grok Build and the xAI API are programmable.

So the accurate framing is not "can I self-host Grok Bot" but "what do I lose by the work being in somebody else's cloud, and is there something else that does the job on my own hardware". The rest of this page answers both halves.

What the cloud-only design costs you

Grok Bot launched 11 August 2026 in beta. You create named Bots, message them like colleagues, and they work on a persistent cloud Linux VM with a browser, a filesystem and a terminal, using connectors and MCP where an API exists and computer use where it does not. Named Bots keep memory, files, browser sessions and preferences across turns.

None of that requires the cloud in principle. It requires it in practice because xAI built it that way, and the consequences fall into five buckets.

  • Your data location is not a choice. Files, browser sessions and anything a Bot downloads live on xAI infrastructure. The documentation names no retention period and offers no data-residency option, and compliance defers to Cursor's terms rather than xAI's own. No published SOC 2, ISO 27001, GDPR, or HIPAA claim was found in the doc set.
  • The blast radius is shared and it grows. One computer holds every login you ever hand a Bot, available to all of them, with no separate security boundaries between them. Deleting a Bot is reported not to remove those shared files or sessions.
  • You cannot see or cap the bill. There is an undisclosed weekly token allowance, no product-level spend cap reported so far, and no model picker, so you cannot route cheap work to a cheaper model.
  • You cannot choose the model. Routing is automatic and xAI names no default model for Grok Bot anywhere, so you cannot know what handled a task or what it cost.
  • Availability is theirs. A cloud product is down when the vendor is down, and a beta with an enterprise waitlist is not offering you an SLA.

Set against that, the thing you buy is real and worth naming plainly: there is no agent host or server to install or maintain, only the native client, and nothing of yours has to stay powered on. For a lot of people that trade is correct. The question is whether it is correct for you, which depends almost entirely on what the agent will be touching.

What renting it costs

Grok Bot is not sold on its own. It is bundled, and the bundle is the price. As of 22 August 2026 the documentation lists the eligible plans as "SuperGrok Plus, SuperGrok Heavy, Cursor Pro+, Cursor Ultra, or Cursor Teams Standard or Premium", and a Cursor account is required in every case. The 21 August expansion brought Cursor Pro+ and the Standard Teams tier in; before that the floor was materially higher.

Grok Bot access paths as of 22 August 2026. SuperGrok prices are consistently reported at these figures but xAI's own pricing page returns 403 to us, so they are marked reported rather than confirmed.
PlanMonthlyEligible at launch?Eligible now?Price confidence
Cursor Pro$20NoNoPublished
Cursor Pro+$60NoYes, from 21 AugustCursor list price
Cursor Teams Standard$40 per seatNoYes, from 21 AugustCursor list price
Cursor Teams Premium$120 per seatYesYesCursor list price
Cursor Ultra$200YesYesCursor list price
SuperGrok Plus$100, reportedNoYes, from 21 August. Individual plans onlyCould not confirm on an xAI page
SuperGrok Heavy$300, reportedYesYes. Individual plans onlyCould not confirm on an xAI page

Then there is the meter. Grok Bot carries a weekly token allowance whose size xAI has not disclosed, and eesel's teardown reports that there is no Grok Bot specific spend cap yet, with overage billed at raw model rates. There is also no model picker, so you cannot route cheap work to a cheaper model. For a product whose entire selling point is agents that keep running while you are asleep, an uncapped meter with no routing control is the cost risk to plan around, not the sticker price.

The relevant point for anybody weighing a self-hosted route: on your own hardware the equivalent line items are a machine you probably already own and the model spend you were already paying. There is no seat, and the meter is whatever your provider plan already meters. That is the actual financial difference between renting the runtime and owning it, and it is separate from the question of whether you want to operate one.

Where your data and your logins actually sit

Take xAI at its word here, because the documentation is unusually direct and the consequence is easy to miss. All of your Bots use the same persistent cloud computer. Each Bot gets its own screen on it, "so several Bots can use browser and desktop tools in parallel without getting separate security boundaries". And: "Treat a login or file placed on the computer as available to all of your Bots."

That is a coherent design. Shared sessions are why a Bot can pick up where another left off, and why the credential handoff works at all: when a Bot hits an auth wall it pauses and hands the computer to you, you type the password or the 2FA code, and the session persists afterwards for every Bot on the account. The cost of that convenience is that there is one blast radius, not several, and it grows with every login you ever hand over.

Who holds what. The right-hand column is what an own-hardware agent gives you, using Continuum as the worked example.
QuestionGrok BotAn agent on hardware you own
Where does your source code sit while an agent works on it?On xAI's cloud VMOn your own machine, in a git worktree
Where do your app logins live?On the shared computer, reachable by every BotIn your own OS keychain and your own browser
Isolation between concurrent agentsSeparate screens, shared filesystem and sessionsSeparate worktrees and separate provider accounts
Does deleting an agent remove its access?Reported not to remove shared files or sessionsEnding a session leaves nothing signed in that was not already
Audit trailPer-Bot chat transcripts; an audit view is documented as "coming". The 20 most recent run records are reported by Daily Dose of Data Science; unconfirmed by xAILocal audit log of sends, swaps and approvals
Fleet ceiling50 Bots and group chats per account and 50 routines per Bot, reported by Daily Dose of Data Science; unconfirmed by xAIBounded by your hardware, not by a plan
Compliance claims in the doc setNo published SOC 2, ISO 27001, GDPR, or HIPAA claim found; defers to Cursor's termsThe repository and credentials remain on your host; selected context is sent to the configured provider for inference
Dry-run modeNone. A test run performs real workPlan mode gates writes behind an approval you give first

The missing dry run is the one to internalise. eesel's review puts it plainly: a test run navigates real websites, changes real files and calls real tools, so rehearsing an email send means you sent an email, and an approval that arrives afterwards does not unwind it. Continuum's plan gate is the opposite ordering, because a plan is produced and approved before the agent is allowed to write. Neither approach is magic, but the order matters a great deal the first time an agent misunderstands you.

There is a second-order point that came up repeatedly in the Hacker News launch thread and deserves an airing. Commenter SilverBirch framed it as an accountability question: a Bot that snags your credentials and then acts as you on the web leaves logs that say it was you. That is not a Grok Bot flaw specifically, it is a property of any agent that inherits your sessions, and it is a reason to scope the accounts an agent can reach rather than a reason to avoid agents. But it is a question worth answering before you connect anything with money attached.

"I do not want to run it locally"

This is the strongest argument against the own-hardware shape, and it was stated on Hacker News by phoghed on 20 August 2026, nine days after Grok Bot launched. The point was blunt: they very much did not want to run this locally, they wanted the same thing running somewhere else that they could interact with from all their devices, and their conclusion was that nobody was going to run this locally.

The premise of that objection is right and the conclusion does not follow, because it conflates two things Continuum keeps separate: where the agent executes and where you sit while it does.

01

The host is any machine you own

A Mac mini in a cupboard, a Linux box, a Windows desktop, an office machine. Enroll it once. It does not have to be the laptop you carry, and for anybody who cares about work continuing overnight it should not be.

02

The control surface is wherever you are

Native iPhone app, web client, or a second desktop. They render the same session from the same host: read the thread, approve a plan, send a follow-up, interrupt a run, review the diff, open the pull request.

03

Closing your laptop changes nothing

The session belongs to the host, not to the client that happened to start it. This is the same property people are buying from Grok Bot, obtained by owning the always-on machine instead of renting a share of one.

04

What you give up is the machine itself

Somebody has to own hardware that stays powered on and connected. If that is genuinely impossible, this is where Grok Bot wins and the honest recommendation is to use it.

The distinction matters because "local" has come to mean two different things in these arguments. Local as in "the agent runs on hardware I control" is a security and cost property. Local as in "I have to be sitting at that machine" is a user-interface property, and it is the one people are actually objecting to. Continuum keeps the first and drops the second.

Where Grok Bot genuinely wins

A comparison page that concedes nothing is a brochure. Four things Grok Bot does that Continuum does not, and will not.

  • Zero server setup and no machine to maintain. Sign in with a Cursor account, create a Bot, message it. There is no agent host or server to install or maintain, only the native client, and nothing to wake up. Hacker News commenter h14h, who had been hand-rolling the same thing on OpenClaw, called it about as simple as the setup could possibly be and a pretty slick experience. That is real.
  • Computer use on apps with no API. A Bot can log into a browser-only SaaS product and drive its interface. Continuum runs coding agents against repositories; it does not click through your procurement portal for you.
  • Learn-by-demonstration routines. Walk a Bot through a multi-step path once and it saves it as a routine that re-runs on a schedule. Nothing in the coding-agent world has an equivalent that a non-programmer can drive.
  • Non-coding office work in general. Inbox triage, research passes, spreadsheet reconciliation, report assembly. That is the centre of Grok Bot's product and the edge of Continuum's.

There is also a fifth thing that is true and less flattering to both products: Grok Bot's group chats, where two to six Bots coordinate and hand tasks between each other, are a genuinely novel interface. Whether they are useful is a separate question. Practitioners reported agents going in loops talking to each other before settling down, and thenbrent's comment in the launch thread called the whole thing a personal agent swarm in a group chat app. Novel and unproven at the same time is a fair reading eleven days in.

If own hardware is the requirement, these are the options

Nothing on this list is Grok Bot running locally, because that does not exist. They are different products that give you the property you came for, and they involve real trade-offs of their own.

Own-hardware agents, and what each one actually asks of you.
OptionWhat it isWhat it asks of youBest when
OpenClawMIT-licensed self-hosted frameworkA VPS at roughly $5-30 a month, metered model spend, and ongoing maintenanceYou want the source and will operate it
Hermes AgentCross-platform desktop agent from Nous ResearchA machine that stays onYou want a general teammate without becoming an operator
ContinuumFree workbench for coding agentsA Mac, Linux or Windows host that stays onThe work is code
Grok BuildThe official xAI coding CLIA terminal, and SuperGrok at $30 or an API keyYou wanted a scriptable agent rather than a teammate

The honest limit on all four: none of them does learn-by-demonstration routines against browser-only business apps the way a Bot does. If that is the job, the cloud is where the job is, and the right move is to scope the account a Bot can reach rather than to hunt for a local substitute that does not exist.

For coding work specifically, the substitution is clean. Continuum runs Claude Code, Codex, Cursor, Grok, Gemini, and OpenCode on a host you enroll, gives each session its own git worktree, gates writes behind a plan you approve, records spend by repository, and is driven from a native iPhone client or the web so the run continues while you are away. The application is free on Mac, iPhone, web, Windows and Linux. The repository and credentials remain on your host; selected context is sent to the configured provider for inference.

For the full field including Manus, ChatGPT Work and Lindy, the alternatives guide ranks eight options. For the self-hosted route costed line by line, see Grok Bot versus OpenClaw. For the direct head-to-head with Continuum, the comparison page carries it.

Questions people ask

Can you run Grok Bot locally?

No. There is no local runtime, no self-hosted edition, no on-premise deployment and no container image. The macOS, Windows and iOS apps are clients; every Bot works on a persistent cloud Linux VM operated by xAI, and all of your Bots share the same one.

Can you self-host Grok Bot?

No. Grok Bot is closed, has no source release, and exposes no public API, webhook or programmatic surface you could build a self-hosted equivalent against. Among xAI agent products only Grok Build, the official CLI, and the xAI API are programmable.

Is Grok Bot open source?

No. Grok Bot is a closed commercial product gated behind a Cursor account and an eligible SuperGrok or Cursor subscription. The open-source options in the same shape are different products: OpenClaw is the MIT-licensed self-hosted framework most frequently named, and OpenAlternative also lists Hermes Agent, NanoClaw, OpenWork, Eigent and Rakazo.

Does Grok Bot work offline?

No. The agent runs in xAI cloud, so an internet connection is required and the product is unavailable when the vendor is. There is no local fallback mode, and a beta with an enterprise waitlist is not offering an availability guarantee.

Does Grok Bot run my code on my own machine?

No. Bots work on a persistent cloud VM operated by xAI, shared across all of your Bots. Your repository, your files and any logins you hand over live there rather than on your machine.

Is there a Linux version of Grok Bot?

The documentation states plainly that Grok Bot is not currently available as a Linux desktop app, while the download page has been reported to serve a Debian package anyway, which one Hacker News commenter, gexla, hit on launch day. Do not plan around a Linux client, and note that even a working one would still be a client rather than a local runtime.

What can I use instead if I need agents on my own hardware?

OpenClaw if you want the source and are willing to run a VPS and maintain it, Hermes Agent for a desktop-native general teammate, or Continuum if the work is code. Continuum is a free workbench that runs Claude Code, Codex, Cursor, Grok, Gemini, and OpenCode on a Mac, Linux or Windows host you already own, with worktree isolation per session and remote control from an iPhone or a browser.

If the agent runs on my own machine, can it still work while I am away?

Yes, provided that machine stays powered on. This is the distinction people miss: running on hardware you own is a security and cost property, while having to sit at that machine is a user-interface property. Enroll a Mac mini or a Linux box as the host and drive it from a phone, and closing your laptop changes nothing.

Sources

Every figure above was read from these pages on August 2026. Vendors reprice without notice; if you find a stale number, tell us.

  1. Grok Bot overview (docs.x.ai) shared cloud computer, security-boundary warning, memory, routines, connectors and computer use
  2. Grok Bot get started (docs.x.ai) eligible plans, Cursor account requirement, platform support, Linux statement
  3. Grok Bot on more plans (xAI) 21 August 2026 access expansion to SuperGrok Plus, Cursor Pro+, and all Cursor Teams plans
  4. Introducing Grok Bot (xAI) launch date, beta status, positioning, enterprise waitlist
  5. Grok Bot review (eesel) compliance gaps, missing audit log, no dry-run mode, metering behaviour
  6. Grok Bot on Hacker News launch-day thread, 350 points, trust, prompt injection and self-hosting objections
  7. phoghed on Hacker News, 20 August 2026 the "I do not want to run it locally" objection, posted nine days after the Grok Bot launch
  8. SpaceXAI Grok Bot coverage (VentureBeat) Cursor Teams Premium seat price, automatic model routing, SpaceXAI branding
  9. Grok Bot hands-on (Daily Dose of DS) the only published figures for Grok Bot per-account limits, routine caps and run-record retention; single source, unconfirmed by xAI
  10. Continuum pricing Free, Plus, Max 100, Max 200 and Ultra plans and their weekly hosted-usage allowances
Try it

No local Grok Bot.
But agents on your own hardware, yes.

Continuum runs Claude Code, Codex, Cursor, Grok, Gemini, and OpenCode in isolated worktrees on your Mac, Linux or Windows host, with live quota gauges, spend by repository, and plan approval from an iPhone. The app is free.

free app · your subscriptions · local-first