neubig and openhands
96a147abcf
fix: close remaining launcher key injection paths
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-30 02:30:51 +00:00
neubig and openhands
7466378f8c
test: preserve stale browser key in Docker mode
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-30 02:13:05 +00:00
neubig and openhands
b72743ab94
fix: accept host override in static dev launcher
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-30 01:49:27 +00:00
neubig and openhands
88acaa8499
test: align Docker auth expectation with key policy
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-30 01:44:17 +00:00
neubig and openhands
5747dc3e56
fix: type conditional Vite environment variables
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-30 01:07:42 +00:00
neubig
26745c1c30
fix: apply bind policy to Vite dev server
2026-08-30 00:02:16 +00:00
neubig
6bd84cfb09
fix: keep Docker session keys out of HTML by default
2026-08-29 23:34:02 +00:00
sandbox-kaph[bot]
3c61184ea6
test: capture Playwright PNGs for the loopback bind fix
...
Summary: Add a chromium bind-policy E2E that asserts off-loopback static-server GET / has no session key, checks live ingress on 127.0.0.1:8000 is not reachable on the LAN, and writes PNG assets for the PR. Drop the SVG GitHub would not render.
Upstream: OpenHands/OpenHands#16879
Labels: type:bug
2026-08-29 23:27:23 +00:00
sandbox-kaph[bot]
13b9328366
fix: bind local stack to loopback so session keys stay off the LAN
...
Summary: Default static-server and ingress to 127.0.0.1. Off-loopback binds refuse to inject the session API key into index.html (API key entry screen instead). Docker keeps --host :: with an explicit --allow-lan-session-key for published ports.
Fixes OpenHands/OpenHands#16879
2026-08-29 23:27:23 +00:00
f26d734a84
fix: Add --disable-telemetry runtime flag for self-hosted canvas ( #16908 )
...
Co-authored-by: openhands <openhands@all-hands.dev >
Co-authored-by: hieptl <hieptl.developer@gmail.com >
2026-08-28 13:13:59 -07:00
Rohit Malhotra and openhands
d573456dc6
chore: Bump agent server and automation defaults ( #16970 )
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-28 15:58:13 -04:00
george larson and Vasco Schiavo
226a6d2e68
fix(chat): re-derive active profile stamp from event history on reload ( #16439 )
...
Co-authored-by: Vasco Schiavo <115561717+VascoSch92@users.noreply.github.com >
2026-08-28 12:12:24 +00:00
Hiep Le
b50c60c672
feat: show manifest-declared value statements on dashboard cards and rows ( #16921 )
2026-08-27 18:17:31 +00:00
openhands-release-bot[bot]
64c1269655
chore(main): release 1.16.0 ( #16785 )
...
Co-authored-by: openhands-release-bot[bot] <290150379+openhands-release-bot[bot]@users.noreply.github.com>
v1.16.0
2026-08-27 18:08:20 +00:00
Hiep Le
89dc8bd446
feat: land the Canvas Extensions frontend (load pages, sidebar, customize) ( #16895 )
2026-08-27 17:53:40 +00:00
Hiep Le and openhands
732f866ed6
chore: bump SDK deps (software-agent-sdk 1.44.0, automation 1.9.0, extensions 0.19.0) ( #16968 )
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-27 17:40:12 +00:00
d104ffdc33
feat: fix default and free models ( #16922 )
...
Co-authored-by: neubig <neubig@users.noreply.github.com >
Co-authored-by: openhands <openhands@all-hands.dev >
Co-authored-by: Juan Pedro Michelini Jorge <juan@juan.com.uy >
Co-authored-by: allhands-bot <allhands-bot@users.noreply.github.com >
2026-08-27 15:58:35 +00:00
jpelletier1
f95b9b71f7
fix: rename conversation title on cloud backends ( #16966 )
2026-08-27 21:45:19 +07:00
Vasco Schiavo
1a7130ce96
feat: skip onboarding when a user-added Local backend has a usable LLM ( #16931 )
2026-08-27 06:42:00 +00:00
Jatin Jain
1697faa313
fix: validate api key before advancing backend connection step ( #16840 )
2026-08-26 23:51:29 -04:00
🐾 smolpaws and Engel Nyst
a917e3622b
chore: remove unused random tip code ( #16935 )
...
Co-authored-by: Engel Nyst <engel.nyst@gmail.com >
2026-08-27 03:52:46 +02:00
Engel Nyst
1d6dcaf172
docs: refresh Canvas code review guidelines ( #16941 )
2026-08-27 03:49:34 +02:00
Engel Nyst
9c83fdfe33
docs: clarify PR template agent section ( #16942 )
2026-08-27 03:48:29 +02:00
OpenHands Bot and openhands
59981caf7f
docs: refresh AGENTS.md guidance ( #16923 )
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-26 12:30:20 +00:00
Hiep Le
f48eca6ab9
feat: pin a favorite sidebar page as the home route ( #16868 )
2026-08-25 18:55:19 +07:00
Hiep Le
a3652270f6
fix: bound automation run-history fan-out and pause sidebar polling ( #16867 )
2026-08-25 18:53:37 +07:00
Tim O'Farrell and openhands
9e6e27aa7b
fix(home): remember local workspace mode selection ( #16881 )
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-25 04:51:24 -06:00
Shashwat Pratap Singh
150e76046d
feat: link chat file paths to the Files drawer ( #16181 )
2026-08-24 17:27:14 -04:00
Vasco Schiavo
c4c5bb7467
feat(skills): replace the all-on skill catalog with an explicit allow-list ( #16860 )
2026-08-24 20:53:41 +02:00
c146a9e75a
docs: refresh AGENTS.md guidance ( #16310 )
...
Co-authored-by: openhands <openhands@all-hands.dev >
Co-authored-by: neubig <neubig@users.noreply.github.com >
2026-08-24 13:21:31 -04:00
Tim O'Farrell and openhands
8a2161b404
fix: hide API key for OpenHands provider on cloud ( #16863 )
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-24 10:48:54 -06:00
george larson and hieptl
46e44c10d3
feat(settings): expose the LLM-switching toggle in Agent settings ( #16441 )
...
Co-authored-by: hieptl <hieptl.developer@gmail.com >
2026-08-24 20:47:58 +07:00
george larson
d50d037228
fix: clean up dev:minimal services on SIGHUP ( #16279 )
2026-08-24 08:25:13 -04:00
george larson
3fb8ad87d0
fix: clean up dev:extra-backend agent-server on SIGHUP ( #16280 )
2026-08-24 08:25:03 -04:00
8511fff62d
feat(automations): show a run's live phase ( #16740 )
...
Co-authored-by: Claude Opus 5 <noreply@anthropic.com >
Co-authored-by: Vasco Schiavo <115561717+VascoSch92@users.noreply.github.com >
Co-authored-by: VascoSch92 <vasco.schiavo@protonmail.com >
2026-08-24 12:24:48 +02:00
Engel Nyst and smolpaws
861e9ef501
fix(agent-canvas): scope baked working_dir to the default-local backend ( #16759 )
...
Co-authored-by: smolpaws <engel@enyst.org >
2026-08-24 03:00:54 +00:00
Telov and Claude Opus 5
5a402babdc
fix(desktop): ship the bundled Node's npm on Windows ( #16381 )
...
Co-authored-by: Claude Opus 5 <noreply@anthropic.com >
2026-08-23 11:48:53 -04:00
dependabot[bot]
ec343d8b63
ci(deps): bump actions/setup-python from 6 to 7 in the actions group ( #16645 )
...
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
2026-08-23 11:38:55 -04:00
f65076b135
fix(ci): refresh readiness comment when label is added ( #16830 )
...
Co-authored-by: neubig <neubig@users.noreply.github.com >
Co-authored-by: openhands <openhands@all-hands.dev >
Co-authored-by: allhands-bot <allhands-bot@users.noreply.github.com >
2026-08-23 15:33:28 +00:00
george larson
cd64987665
fix(providers): follow next_page_id so cloud picks surface past the default page size ( #16758 )
2026-08-23 11:27:47 -04:00
george larson
9480284c0a
feat: add linux desktop installer build (CI + deb maintainer fix) ( #16656 )
2026-08-23 11:21:23 -04:00
1e995e89ab
docs: document OpenHands repository boundaries ( #16834 )
...
Co-authored-by: neubig <neubig@users.noreply.github.com >
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-23 15:08:06 +00:00
3487bb1b01
docs: require acceptance criteria review checklist ( #16832 )
...
Co-authored-by: neubig <neubig@users.noreply.github.com >
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-23 10:45:29 -04:00
Vasco Schiavo
19c6b40944
fix(ci): edit the mock-LLM E2E PR comment in place ( #16591 )
2026-08-23 13:57:08 +00:00
george larson and Engel Nyst
10d2285dd0
fix(acp): surface a 'credentials configured' banner state on Docker/cloud ( #15643 ) ( #16145 )
...
Co-authored-by: Engel Nyst <engel.nyst@gmail.com >
2026-08-23 09:54:48 -04:00
647b493170
fix(ci): use reproduction steps for ready-for-dev checks ( #16828 )
...
Co-authored-by: Harsha Vardhan <harshahvk2005@gmail.com >
Co-authored-by: neubig <neubig@users.noreply.github.com >
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-23 09:32:56 -04:00
K HARSHAVARDHAN
e25feb6468
fix(ci): prevent issue readiness workflow from failing on not-ready issues ( #16514 )
2026-08-23 12:18:48 +00:00
J and openhands
2f5bd24f00
fix: forward disabled_skills into agent_context so backend excludes them ( #16812 )
...
Co-authored-by: openhands <openhands@all-hands.dev >
2026-08-23 10:24:09 +02:00
ump45nose and VascoSch92
9e8ba84f75
fix(ci): ignore fenced headings in readiness checks ( #16595 )
...
Co-authored-by: VascoSch92 <vasco.schiavo@protonmail.com >
2026-08-22 19:01:23 +02:00
cc7b741c31
docs: fix broken reference to new-conversation-button.tsx in AGENTS.md ( #16783 ) ( #16807 )
...
Co-authored-by: Krishnakumar Chandran <krishnakumar.chandra@workdayinternal.com >
Co-authored-by: VascoSch92 <vasco.schiavo@protonmail.com >
2026-08-22 16:24:04 +00:00