Commit graph

  • 296f32f406 fix(actionlint): adjust indentation for self-hosted runner labels Will Sarg 2026-02-16 17:57:47 -05:00
  • 018dfc7394 ci(actionlint): add Blacksmith runner label to config Will Sarg 2026-02-16 17:55:39 -05:00
  • 692d0182f3 fix(workflows): standardize runner configuration for security jobs Will Sarg 2026-02-16 17:51:49 -05:00
  • 13a42935ae
    fix(workflows): correct Blacksmith runner label typo (#437) Will Sarg 2026-02-16 16:45:10 -05:00
  • 73763f9864
    chore(workflows): complete migration to Blacksmith cloud runners (#435) Will Sarg 2026-02-16 16:40:13 -05:00
  • 98bf7593f5
    Merge pull request #432 from zeroclaw-labs/selfhost-blacksmith Will Sarg 2026-02-16 16:24:19 -05:00
  • a1e0c566d5 docs(actions-source-policy): update allowlist for Blacksmith self-hosted runner infrastructure Will Sarg 2026-02-16 16:23:47 -05:00
  • e4a257cea0
    fix(channels): prevent empty messages and tool call markup leakage (#431) Argenis 2026-02-16 16:16:07 -05:00
  • 8b5d55a66c
    Merge pull request #429 from zeroclaw-labs/selfhost-blacksmith Will Sarg 2026-02-16 16:08:49 -05:00
  • 081866845f fix(ci): standardize runner configuration for CI jobs Will Sarg 2026-02-16 16:08:02 -05:00
  • 15bccf11d7
    Migrate workflows to Blacksmith (#428) blacksmith-sh[bot] 2026-02-16 15:58:54 -05:00
  • bddf791350
    fix(telegram): add support for sending photos, documents, videos, and audio (#424) Argenis 2026-02-16 15:48:18 -05:00
  • 2ecfcb9072
    ci: add explicit advisory severity thresholds to deny.toml (#393) fettpl 2026-02-16 21:14:41 +01:00
  • 0e8d02cd3c
    ci: add SHA256 checksums to release artifacts (#386) fettpl 2026-02-16 21:12:34 +01:00
  • 15e1d50a5d
    fix: replace std::sync::Mutex with parking_lot::Mutex (#350) Argenis 2026-02-16 15:02:46 -05:00
  • bff0507132
    fix: prevent prompt injection via JSON extraction (#355) Argenis 2026-02-16 14:17:24 -05:00
  • dc5a85c85c
    fix: use 256-bit entropy for pairing tokens (#351) Argenis 2026-02-16 13:48:03 -05:00
  • b161fff9ef
    chore(ci): align lint gate and add strict audit path (#410) Chummy 2026-02-17 01:36:17 +08:00
  • 74c0c7340b
    Revert "fix(build): avoid release OOM on 1GB hosts (#404)" (#407) Chummy 2026-02-17 01:34:11 +08:00
  • 24bf116216
    docs(ci): add allowlist export controls and sweep finding (#408) Will Sarg 2026-02-16 12:32:05 -05:00
  • 0456f14a11
    fix(build): avoid release OOM on 1GB hosts (#404) Chummy 2026-02-17 01:27:24 +08:00
  • 90deb8fd5e
    docs(ci): define phase-1 actions source allowlist policy (#405) Will Sarg 2026-02-16 12:26:10 -05:00
  • 40e592ffed
    Merge pull request #403 from zeroclaw-labs/docs/pr-template-supersede Chummy 2026-02-17 01:20:35 +08:00
  • bbcef7ddeb docs(pr-template): require supersede attribution details Chummy 2026-02-17 01:19:13 +08:00
  • 50c1dadd17
    style(labeler): brighten semantic colors and unify contributor highlight (#402) Chummy 2026-02-17 01:16:52 +08:00
  • 4264c3bb21
    Merge pull request #397 from elonfeng/feat/dingtalk-channel Chummy 2026-02-17 01:11:12 +08:00
  • ec39009048
    Merge pull request #396 from fettpl/fix/365-release-signatures Chummy 2026-02-17 01:11:06 +08:00
  • ca528325eb
    Merge pull request #394 from fettpl/fix/364-env-example Chummy 2026-02-17 01:11:01 +08:00
  • 4ede1c95ed
    Merge pull request #392 from fettpl/fix/362-pin-cargo-audit Chummy 2026-02-17 01:10:56 +08:00
  • 19d78882a5
    Merge pull request #388 from fettpl/fix/360-docker-resource-limits Chummy 2026-02-17 01:10:48 +08:00
  • 0cfc1a2ad4
    Merge pull request #387 from fettpl/fix/359-pin-docker-images Chummy 2026-02-17 01:10:43 +08:00
  • 709152e900
    Merge pull request #385 from fettpl/fix/357-pin-actions-sha Chummy 2026-02-17 01:10:32 +08:00
  • 9fbd8c7f57
    Merge pull request #382 from fettpl/fix/356-gateway-error-leaks Chummy 2026-02-17 01:10:27 +08:00
  • 2f57499a39
    Merge pull request #379 from fettpl/fix/354-file-read-rate-limit Chummy 2026-02-17 01:10:16 +08:00
  • dc86be4939 Merge remote-tracking branch 'origin/main' into fix/360-docker-resource-limits fettpl 2026-02-16 18:08:10 +01:00
  • 34c044766f Merge remote-tracking branch 'origin/main' into fix/359-pin-docker-images fettpl 2026-02-16 18:08:10 +01:00
  • f13ce909c4
    Merge pull request #274 from mai1015/feat/refactor-agent-loop Chummy 2026-02-17 01:06:56 +08:00
  • 88de2555ab
    Merge pull request #391 from fettpl/fix/361-browser-security Chummy 2026-02-17 01:06:50 +08:00
  • e005b6d9e4 fix(rebase): unify agent config and remove duplicate fields Chummy 2026-02-17 00:56:06 +08:00
  • 413ecfd143 fix(rebase): resolve main drift and restore CI contracts Chummy 2026-02-17 00:28:28 +08:00
  • b2dd3582a4 fix(ci): align reliable tests with simple_chat contract Chummy 2026-02-16 23:41:48 +08:00
  • dc5e14d7d2 refactor: improve code formatting and structure across multiple files mai1015 2026-02-16 03:35:03 -05:00
  • b341fdb368 feat: add agent structure and improve tooling for provider mai1015 2026-02-16 00:40:43 -05:00
  • 98822498fb
    Merge pull request #398 from zeroclaw-labs/docs/agents-supersede-commit-template Chummy 2026-02-17 01:01:55 +08:00
  • dbff1b40b1 docs(agents): add superseded-PR commit message template Chummy 2026-02-17 01:00:39 +08:00
  • 3702449ff0 ci: whitelist lxc-ci self-hosted runner label for actionlint fettpl 2026-02-16 17:39:14 +01:00
  • e2c966d31e
    Merge pull request #389 from reidliu41/add-qwen Chummy 2026-02-17 00:58:04 +08:00
  • e6d79283d1
    Merge pull request #378 from fettpl/fix/353-rate-limiter-memory Chummy 2026-02-17 00:57:38 +08:00
  • fed1997f62 ci: add cosign keyless signing for release artifacts fettpl 2026-02-16 17:55:40 +01:00
  • 3cdc6b6ebd docs: add .env.example for local secret handling fettpl 2026-02-16 17:54:06 +01:00
  • 9463bf08a4 feat(channels): add DingTalk channel via Stream Mode elonf 2026-02-17 00:02:05 +08:00
  • 47e5483ade ci: pin cargo-audit to 0.22.1 in dev CI Dockerfile fettpl 2026-02-16 17:50:17 +01:00
  • 882defef12 security(browser): harden SSRF blocking and block file:// URLs fettpl 2026-02-16 17:49:21 +01:00
  • c11c569ddd
    Merge pull request #377 from fettpl/fix/352-ssrf-ip-blocking Chummy 2026-02-17 00:47:46 +08:00
  • def9fe4e23
    Merge pull request #390 from zeroclaw-labs/docs/agents-supersede-template Chummy 2026-02-17 00:47:24 +08:00
  • 44ef48f3c6 docs(agents): add superseded-PR title/body template Chummy 2026-02-17 00:46:01 +08:00
  • ac5cce4ec5 ops: add resource limits to docker-compose.yml fettpl 2026-02-16 17:43:00 +01:00
  • 6bb9bc47c0 feat(provider): add Qwen/DashScope provider with multi-region support reidliu41 2026-02-17 00:42:53 +08:00
  • 38f6339a83 ci: pin Docker base images to SHA256 digests fettpl 2026-02-16 17:42:05 +01:00
  • 02decd309f fix(security): tighten SSRF IP classification for docs ranges Chummy 2026-02-17 00:41:48 +08:00
  • de3ec87d16
    Ehu shubham shaw contribution --> Hardware support (#306) ehu shubham shaw 2026-02-16 11:40:10 -05:00
  • b36f23784a
    fix(build): harden rustls dependency path for Linux builds (#275) Chummy 2026-02-17 00:39:28 +08:00
  • 4aaa0444c9 ci: whitelist lxc-ci self-hosted runner label for actionlint fettpl 2026-02-16 17:39:14 +01:00
  • 91ae151548 style: fix rustfmt formatting in SSRF tests fettpl 2026-02-16 17:35:30 +01:00
  • 3234159c6c
    chore(clippy): clear warning backlog and harden conversions (#383) Chummy 2026-02-17 00:32:33 +08:00
  • a91516df7a
    Merge pull request #368 from fettpl/fix/349-email-bounded-seen-set Chummy 2026-02-17 00:32:29 +08:00
  • 9df5a07640 ci: pin all GitHub Actions to full SHA digests fettpl 2026-02-16 17:32:18 +01:00
  • 53844f7207
    feat(memory): lucid memory integration with optional backends (#285) Chummy 2026-02-17 00:31:50 +08:00
  • 04bf94443f
    feat(browser): add optional computer-use sidecar backend (#335) Chummy 2026-02-17 00:31:45 +08:00
  • db0904c8a4
    Merge pull request #384 from zeroclaw-labs/chore/agents-supersede-coauthor Chummy 2026-02-17 00:31:18 +08:00
  • dc17a0575c docs(agents): require co-author attribution for superseded PR integrations Chummy 2026-02-17 00:29:21 +08:00
  • e6ad48df48 fix(security): stop leaking serde parse details in gateway error responses fettpl 2026-02-16 17:27:07 +01:00
  • c54bfe3814 fix(security): move record_action before canonicalize in file_read fettpl 2026-02-16 17:21:52 +01:00
  • 5af74d1d20 fix(gateway): add periodic sweep to SlidingWindowRateLimiter fettpl 2026-02-16 17:20:12 +01:00
  • 7db71de043 fix(channels): bound email seen_messages set to prevent memory leak fettpl 2026-02-16 16:53:42 +01:00
  • 7f4c688145
    Merge pull request #374 from zeroclaw-labs/rewrite/coauthor-80da Chummy 2026-02-17 00:18:56 +08:00
  • dd74e29f71 fix(security): block multicast/broadcast/reserved IPs in SSRF protection fettpl 2026-02-16 17:18:17 +01:00
  • 6d856990c2 chore(meta): anchor co-author history rewrite to current main Chummy 2026-02-17 00:17:29 +08:00
  • 602ec1507c Merge pull request #331 from stakeswky/feat/lark-channel Chummy 2026-02-17 00:08:05 +08:00
  • 703e701e31 Merge pull request #367 from fettpl/fix/348-http-header-sanitization Chummy 2026-02-17 00:06:21 +08:00
  • 6fd8b523b9 ci: route trusted docker and release publish jobs to self-hosted (#371) Will Sarg 2026-02-16 11:00:25 -05:00
  • d5ca9a4a5c fix(main): remove duplicate ModelCommands enum definition fettpl 2026-02-16 16:57:00 +01:00
  • 444d80e178 fix(tools): use original headers for HTTP requests, redact only in display fettpl 2026-02-16 16:51:38 +01:00
  • a7d19b332e ci: route trusted security and workflow checks to self-hosted (#370) Will Sarg 2026-02-16 10:58:45 -05:00
  • 8e23cbc596 ci: route trusted pushes to self-hosted runner (#369) Will Sarg 2026-02-16 10:56:53 -05:00
  • e349067f70 fix(providers): correct Fireworks AI base URL to include /v1 path (#346) cd slash 2026-02-16 15:53:34 +00:00
  • 22714271fd feat(cost): add budget tracking core and harden storage reliability (#292) Chummy 2026-02-16 23:40:47 +08:00
  • fac1b780cd fix(onboard): refresh MiniMax defaults and endpoint (#299) Chummy 2026-02-16 23:40:44 +08:00
  • a85fcf43c3 fix(build): reduce release-build memory pressure on low-RAM devices (#303) Chummy 2026-02-16 23:40:40 +08:00
  • fe1fb04278 fix(composio): align v3 execute path and honor configured entity_id (#322) Chummy 2026-02-16 23:40:37 +08:00
  • e9fa267c84 feat(onboard): add provider model refresh command with TTL cache (#323) Chummy 2026-02-16 23:40:33 +08:00
  • d7cca4b150 feat: unify scheduled tasks from #337 and #338 with security-first integration Chummy 2026-02-16 23:38:29 +08:00
  • 639032c952
    Merge pull request #331 from stakeswky/feat/lark-channel Chummy 2026-02-17 00:08:05 +08:00
  • 2eb1c82a9b
    Merge pull request #367 from fettpl/fix/348-http-header-sanitization Chummy 2026-02-17 00:06:21 +08:00
  • 9d21e2b28c
    ci: route trusted docker and release publish jobs to self-hosted (#371) Will Sarg 2026-02-16 11:00:25 -05:00
  • 60e72a6ed5 fix(main): remove duplicate ModelCommands enum definition fettpl 2026-02-16 16:57:00 +01:00
  • a871b28f85 fix(tools): use original headers for HTTP requests, redact only in display fettpl 2026-02-16 16:51:38 +01:00
  • 7a66ce15c5
    ci: route trusted security and workflow checks to self-hosted (#370) Will Sarg 2026-02-16 10:58:45 -05:00
  • 13d411cd2b
    ci: route trusted pushes to self-hosted runner (#369) Will Sarg 2026-02-16 10:56:53 -05:00
  • 5b19502bd9
    fix(providers): correct Fireworks AI base URL to include /v1 path (#346) cd slash 2026-02-16 15:53:34 +00:00