Hermes Agent Web UI: Setup, Security, and Managed Alternatives (2026)

Hermes agent web UI setup: hermes dashboard on :9119, web+pty extras, secure remote access, vs Desktop vs Agent 37 from $3.99/mo.

Published on

Do not index
This image illustrates the Hermes Agent Web UI setup interface, showcasing a browser-based admin console accessible on port 9119. The interface includes an overview tab displaying system status as 'Healthy', uptime, channel information, and a chat feature. The setup supports web and PTY extras, port configuration at 9119, and a loopback-first connectivity approach. Additionally, it promotes the managed Hermes service 'Agent 37', advertised as a secure always-on solution starting at $3.99 per month. The visual also includes a stylized avatar and branding for Agent 37, emphasizing a user-friendly web administration solution for Hermes agents.
The Hermes agent web UI is the browser control panel for Hermes agent. You install the web (and usually pty) extras, run hermes dashboard, and open http://127.0.0.1:9119 to manage status, chat, channels, MCP, credentials, and sessions without living in YAML. It is powerful and sensitive. For always-on Hermes with isolation and a managed browser console, Agent 37 starts at $3.99/mo (1 vCPU, 4 GB RAM, 8 GB storage).

What is the Hermes agent web UI?

The Hermes agent web UI is the official browser surface for a Hermes agent install. Nous docs brand it as the Hermes Web Dashboard. People also search hermes agent web ui, Hermes dashboard, and Hermes browser Chat. Same product family: one local HTTP server plus admin pages and an embedded Chat tab.
It is not Hermes agent itself. Hermes agent is the runtime (quickstart). The web UI is how you operate that runtime from a browser.
Surfaces people mix up:
Phrase
What it usually means
Hermes agent web UI / dashboard
Official hermes dashboard on port 9119
Hermes Desktop
Native app; can talk to a remote dashboard backend
Hermes Workspace
Separate OSS command-center product
Agent 37 console
Managed host UI (task board, terminal, files, desktop)
Keyword overview of the admin panel: Hermes agent dashboard. This page is the setup and security path for the web UI search.

How do you install the Hermes agent web UI?

This image provides a step-by-step guide for installing the Hermes Agent Web UI. It includes four main steps: 1) Install web and pty extras, represented visually by a package icon, 2) Run the "hermes doctor" command to check system status, showing a checklist of components such as Hermes, Config, Database, optional Redis, and Web UI with their statuses, 3) Launch the Hermes dashboard via a local URL, showing an interface with agent count, sessions, tools, and uptime metrics, and 4) Perform a one-line smoke test using the chat interface, confirming successful installation with a 'Smoke test passed' message. The guide is branded with the Agent 37 logo and is intended for users installing and verifying Hermes Agent Web UI functionality.
You install the Hermes agent web UI by adding optional extras on top of Hermes agent, then launching the dashboard.
  1. Install Hermes agent and finish hermes setup (or Nous Portal quick setup).
  1. Install extras. Official path shape: uv pip install -e ".[web,pty]" inside the Hermes agent install (or the equivalent documented extras for your install method). web pulls FastAPI/Uvicorn. pty powers browser Chat.
  1. Run hermes doctor so missing deps fail early.
  1. Run hermes dashboard. Browser opens http://127.0.0.1:9119.
  1. Smoke test Status, then Chat with one short prompt before you wire channels.
Useful flags: --port if 9119 is busy, --no-open for headless start, --host 0.0.0.0 only after auth is ready.
Notes that trip people up:
  • Base Hermes agent does not always ship the HTTP stack. Missing extras equals a launch error, not a broken agent.
  • Browser Chat embeds the real TUI over PTY. On native Windows, management pages may work while Chat expects WSL2.
  • First launch may build the frontend if npm is available.
Official reference: Web Dashboard docs.

How do you secure the Hermes agent web UI?

You secure the Hermes agent web UI by keeping it on loopback by default, and treating any public bind as a credentials surface.
Safe defaults:
  • Bind 127.0.0.1 only.
  • Reach a remote machine with SSH tunnel, Tailscale, or VPN.
  • Do not open 0.0.0.0 just so a phone can hit the panel.
If you must bind non-loopback:
  1. Configure username/password or OAuth / OIDC first.
  1. Expect fail-closed startup without an auth provider.
  1. Confirm /api/status reports auth required before you trust the hostname.
  1. Put TLS in front when you use a public hostname.
Since the June 2026 hardening, --insecure is a deprecated no-op. It does not turn off authentication on a public bind.
The web UI can expose API keys, session content, MCP toggles, and channel config. Treat it like an admin console, not a marketing site.

Hermes agent web UI vs Desktop vs Agent 37

This image compares the security features and management approaches of Hermes Web UI VPS (self-hosted) versus Agent 37 (managed service). It highlights the key differences in setup and security load between the two options. The self-hosted web UI requires manual installation of web extras, depends on tunneling or authentication gates, risks credentials with public bind, and suffers from laptop sleep channel interruptions. In contrast, Agent 37 offers a one-click Hermes agent installation, per-instance isolation, integrated browser terminal and file management, all starting from $3.99 per month. The graphic uses simple icons and text to clarify the advantages of Agent 37 for users seeking easier and more secure management of Hermes goals.
Hermes agent web UI fits when you self-host and want browser admin plus Chat. Hermes Desktop fits when you want a native shell pointed at local or remote Hermes. Agent 37 fits when uptime and isolation matter more than operating :9119 yourself.
Path
Best for
Who owns ops
Price shape
Local web UI
Dev, debug, profile builder
You
$0 host
VPS + web UI + tunnel
Always-on DIY
You
About $6 to $12/mo typical
Hermes Desktop + remote backend
Native UI over a remote agent
You
Desktop free; host separate
Agent 37 managed Hermes
Always-on isolation + managed console
Platform
From $3.99/mo
Use the official web UI when you need Channels, MCP, credentials, or Profile Builder on an install you control.
Use Agent 37 when Telegram / Discord / Slack must answer while your laptop sleeps, and you want per-instance isolation with a browser terminal and files included.
Workspace product (different UI): Hermes Workspace. Runtime choice: Hermes vs OpenClaw. Deploy path: deploy Hermes.

What does a first production Hermes web UI setup look like?

A first production Hermes web UI setup looks like private admin access, a separate always-on gateway for messaging, one Chat proof, and one channel proof. A public dashboard with no auth is not production.
Checklist:
  1. Extras installed (web, pty).
  1. Dashboard on loopback (or authenticated non-loopback).
  1. Gateway running as its own service for channels.
  1. One Chat reply and one phone-channel ping.
  1. Export configs and workspace files before you wipe the box.
If you only needed a browser place to talk to Hermes and keep channels up, skip babysitting this stack and deploy managed Hermes. Product page: Hermes hosting. Host ranking: Hermes agent hosting.

How much does a Hermes agent web UI cost?

This image displays a pricing table for Managed Hermes Hosting Plans offered by Agent 37, designed for users who prefer managed hosting over self-hosting web UI operations. The plans include four tiers: Basic ($3.99/month) with 1 vCPU, 4 GB RAM, and 8 GB storage; Plus ($9.99/month) with bundled free models, 4 GB RAM, and 12 GB storage; Pro ($29.99/month), the most popular plan, featuring Chromium, 2 vCPU, 8 GB RAM, and 20 GB storage; and Max ($99.99/month) offering 4 vCPU, 16 GB RAM, and 40 GB storage. The design highlights transparent pricing and emphasizes reliability and ease of use for managed hosting services.
Software is free. You pay for the machine, tokens, and security work.
Path
Cash
What you get
Local web UI
$0 host
Admin + Chat on your laptop
DIY VPS + web UI
About $6 to $12/mo typical
You own Docker, TLS, tunnels, patches
Agent 37 managed Hermes
Basic $3.99/mo; Plus $9.99/mo; Pro $29.99/mo; Max $99.99/mo
Always-on instance + managed console
Model APIs
BYOK or bundled free models on Plus+
Plus adds 12 GB storage and bundled GPT-5.6 Luna, DeepSeek V4 Flash, and Mercury 2 with usage caps. Pro adds Chromium (2 vCPU, 8 GB RAM, 20 GB). Max is 4 vCPU, 16 GB RAM, 40 GB. Cloud API instances for products start from $1.99 per agent per month, billed per minute.

How should agencies think about the Hermes agent web UI?

Agencies should treat the Hermes agent web UI as an operator tool. Do not hand clients a shared VPS :9119 URL. That is a credentials and session-leak risk. Give each client an isolated instance instead.
White-label path: white label AI agents.
Want Hermes online without securing hermes dashboard on a VPS? Start on Agent 37 pricing at $3.99/mo.

Frequently Asked Questions

What is the Hermes agent web UI?

It is the official browser control panel for Hermes agent. Launch with hermes dashboard and open http://127.0.0.1:9119 by default.

Is Hermes agent web UI the same as Hermes agent dashboard?

Yes for most searches. Docs say Web Dashboard. People also say web UI. Same hermes dashboard entry point. Broader product framing: Hermes agent dashboard.

Do I need extra packages for the Hermes agent web UI?

Usually yes. Install the web extra for the HTTP stack and pty for browser Chat.

How do I open the Hermes agent web UI remotely?

Prefer loopback plus SSH tunnel, Tailscale, or VPN. Non-loopback binds need password or OAuth. --insecure no longer bypasses auth.

Is Hermes Desktop the same as the web UI?

No. Desktop is a native app. It can connect to a remote Hermes dashboard backend. The web UI is the browser admin + Chat surface.

Do I need the Hermes agent web UI on Agent 37?

Not for day-to-day use. Agent 37 ships a managed console (task board, terminal, files, live desktop) on an always-on Hermes instance.

What is the cheapest always-on alternative to self-hosting the web UI?

Managed Agent 37 Basic at $3.99/mo when the real need is uptime and isolation, not operating :9119 yourself.