KubeClaw
Production-grade OpenClaw on Kubernetes
KubeClaw – Production-grade OpenClaw deployment on Kubernetes
Summary: KubeClaw is an open-source Helm chart that deploys OpenClaw on Kubernetes with secure defaults, observability, and predictable upgrades. It enforces network boundaries, logs all actions, and integrates with cloud-native tools to provide control and transparency over OpenClaw’s behavior.
What it does
KubeClaw installs OpenClaw on Kubernetes with durable storage, egress DNS filtering, unified observability via Wide Events, and gateway API routing. It includes features like per-agent API keys, budget caps, model fallback routing, Tailscale integration, and a Chromium sidecar for browser automation.
Who it's for
It targets cloud-native software engineers and users who want to run OpenClaw securely and audibly on any Kubernetes cluster, from local single-node setups to cloud providers.
Why it matters
KubeClaw solves the problem of unpredictable AI assistant behavior by making all actions observable, enforcing network boundaries, and enabling predictable, auditable upgrades.