Skip to content

CapyAgent - a program on your own computer.

CapyAgent v1.3.5

Download. Open.
The agent asks what comes next

The ready-made app includes the core and local control panel. On first launch CapyAgent checks the device, suggests an available model sign-in, shows discovered rules and memory, and asks you to approve what really belongs to you.

Your system may warn about an unfamiliar program on first launch. Below is how to open the app on macOS, Windows and Linux.

Download

Choose your device

Download and open. Installing is free, no sign-up.

01 Apple Silicon

macOS

For Mac on M1, M2, M3 and M4. Build 1.3.5 is ad-hoc signed, without an Apple certificate, so macOS says «could not be verified» once. You open it with the mouse in five steps, no command line.

Download DMG

02 x64

Windows 10/11

Installer for Windows 10 and 11. SmartScreen will ask: click «More info», then «Run anyway».

Download installer

First launch

macOS asks once. Five steps with the mouse

That is how the system greets a program Apple has not notarized. From build 1.0.11 on, the bundle carries an ad-hoc signature: the resource seal is there, so macOS 15 and 26 say «could not be verified» instead of «damaged», and for that kind of refusal the system offers an «Open Anyway» button. We do not suggest Control-click and Open: Apple removed that path in macOS 15.

01

Double-click the app

Move CapyAgent to Applications and double-click it. macOS says it could not verify the app is free of malware.

02

Click «Done»

That is the only button you need in the first dialog. Do not click «Move to Trash»: the file is intact, the system simply does not know its author.

03

Open System Settings

Apple menu -> «System Settings». You can close the refusal dialog, the system has already recorded the attempt.

04

Go to «Privacy & Security»

Scroll down to the «Security» section. It shows a line about CapyAgent with an «Open Anyway» button next to it.

05

«Open Anyway», then confirm

Click the button, confirm with Touch ID or your password, then double-click CapyAgent again and click «Open» in the last dialog. After that it starts like any other app.

Checksum and older builds

Verify the file. And one note about 1.0.10

A checksum answers the question no signature answers for you: is this really our file and did it arrive intact. Here it is, followed by an honest note about the previous build.

macOS terminal
# 1. Verify the file before opening it - that matters# more than any warning:$ shasum -a 256 ~/Downloads/CapyAgent-*-arm64.dmg$ curl -fsSL https://capyagent.com/dl/latest/desktop-checksums.txt# The sums must match. If they do not, do not open the file. # 2. Build 1.0.10 and older had no resource seal at all.# macOS calls such a build damaged (signature error# -67056), the dialog offers only «Move to Trash» and# «Cancel», and no «Open Anyway» button appears in# settings. The mouse path does not work there:$ xattr -dr com.apple.quarantine /Applications/CapyAgent.app# Downloading 1.0.13 and using the five steps is simpler. # Windows: SmartScreen says «Windows protected your PC».# Click «More info», then «Run anyway».# Verify before running: Get-FileHash CapyAgent-Setup-*.exe

🔴 What exactly was checked. The «damaged» refusal on 1.0.10 was reproduced live on 2026-09-09, macOS 26.6.2 on Apple Silicon. On the same machine we confirmed that after an ad-hoc signature the dialog becomes the ordinary «could not be verified» one and the «Open Anyway» button does appear in settings. Build 1.0.11 now applies exactly that signature during the build, but a finished 1.0.13 DMG has not been run on a clean machine yet. An ad-hoc signature does not replace Apple notarization: the warning stays, it is merely clickable again. Clearing the quarantine with xattr is no longer needed on 1.0.13, and it is better not to - that turns off a check the system makes for you.

First launch

Onboarding without a twenty-screen form

01

Checks the device

Shows the OS, architecture, memory, free disk space and known local tools. Inspection is limited to predefined paths and does not crawl the disk.

02

Finds a way to answer

If the device already has an active local Codex sign-in through ChatGPT and no other provider is configured, the desktop app uses it automatically. Authorization file contents are never displayed.

03

Finds existing context

Shows safe excerpts from known Claude Code, Codex, personal notes and other local-agent files. Files and lines that look like secrets are skipped.

04

Asks what to keep

For every excerpt, you decide whether it still describes you. Selected material first enters an editable portrait draft and is saved only with a separate action.

05

Opens your working agent

Once a model is ready, move to chat. Channels, business systems, skills and scheduled work can be connected gradually from the same panel.

Other ways to run

Laptop, server or your own perimeter

The desktop app is the shortest path for an individual. Standard open installation paths remain available for permanent deployments and development.

01 no terminal

Desktop application

One local perimeter for chat, memory, settings, confirmations and logs. Closing the app stops its embedded core.

First launch

02 no sudo

One-command install

For Linux, macOS and WSL2. The script installs the binary in your user profile and starts setup. You can download and inspect it first.

View install.sh

03 24/7

Server service

For schedules, messaging channels and business workflows that must continue while a laptop is off. Install it in your infrastructure for free or order implementation.

Server guide

No surprises

What to know before installing

Will it use my already signed-in GPT account?
Yes, when the device has a supported active local Codex sign-in through ChatGPT. CapyAgent detects it without displaying tokens and, in desktop mode, selects it automatically if no other provider is configured. An open ChatGPT tab or keychain-only entry without a local Codex file is not enough.
Will it import other agents' memory automatically?
No. It shows short safe previews and asks whether they really describe you. Selected material goes into an editable draft. Nothing enters memory silently.
What exactly is scanned?
Only the OS, resources, PATH and predefined context directories and files. There is no arbitrary disk crawl, browser-session inspection, process scan or local-network scan.
Can I open it with the mouse, without Terminal?
Yes, from build 1.0.11 on. The bundle is ad-hoc signed, so macOS 15 and 26 say «could not be verified» rather than «damaged», and for that refusal System Settings -> Privacy & Security shows an «Open Anyway» button. The whole path is five steps with the mouse, spelled out above. Control-click and Open, which used to help, was removed by Apple in macOS 15, so we do not recommend it. Build 1.0.10 was rejected as damaged with signature error -67056, and the mouse path did not work for it: there the xattr command was the only way.
Why does macOS or Windows warn about the app?
The packages are not notarized by Apple and not signed with a Windows certificate: both cost money every year, and the app is free. From build 1.0.11 the macOS build signs the bundle ad-hoc, with its own signature and no certificate: the app gets its resource seal, so the system treats it as unverified rather than damaged and lets you open it by hand. That does not replace Apple notarization, the warning stays. On Windows you get SmartScreen: both ordinary and EV certificates now build reputation from downloads, and neither removes the warning instantly.
Do I have to pay to install it?
No. You may install CapyAgent for yourself and inside your own company for free. Implementation, cloud hosting, support, VPN and the license for paid third-party deployment are separate optional purchases.

Want to see the whole path first?

The short guide shows what happens after download and how to get the first answer without building anything by hand.