Skip to content
Navigation Menu
Sign in
Appearance settings
Platform
AI CODE CREATION
GitHub Copilot
Write better code with AI
GitHub Copilot app
Direct agents from issue to merge
MCP Registry
Integrate external tools
DEVELOPER WORKFLOWS
Actions
Automate any workflow
Codespaces
Instant dev environments
Issues
Plan and track work
Code Review
Manage code changes
Code Quality
Enforce quality at merge
APPLICATION SECURITY
GitHub Advanced Security
Find and fix vulnerabilities
Code security
Secure your code as you build
Secret protection
Stop leaks before they start
EXPLORE
Why GitHub
Documentation
Blog
Changelog
Marketplace
View all features
Solutions
BY COMPANY SIZE
Enterprises
Small and medium teams
Startups
Nonprofits
BY USE CASE
App Modernization
DevSecOps
DevOps
CI/CD
View all use cases
BY INDUSTRY
Healthcare
Financial services
Manufacturing
Government
View all industries
View all solutions
Resources
EXPLORE BY TOPIC
AI
Software Development
DevOps
Security
View all topics
EXPLORE BY TYPE
Customer stories
Events & webinars
Ebooks & reports
Business insights
GitHub Skills
SUPPORT & SERVICES
Documentation
Customer support
Community forum
Trust center
Partners
View all resources
Open Source
COMMUNITY
GitHub Sponsors
Fund open source developers
PROGRAMS
Security Lab
Maintainer Community
Accelerator
GitHub Stars
Archive Program
REPOSITORIES
Topics
Trending
Collections
Enterprise
ENTERPRISE SOLUTIONS
Enterprise platform
AI-powered developer platform
AVAILABLE ADD-ONS
GitHub Advanced Security
Enterprise-grade security features
Copilot for Business
Enterprise-grade AI features
Premium Support
Enterprise-grade 24/7 support
Pricing
Search
/
Sign in
Sign up
Appearance settings
You signed in with another tab or window.
Reload
to refresh your session.
You signed out in another tab or window.
Reload
to refresh your session.
You switched accounts on another tab or window.
Reload
to refresh your session.
Dismiss alert
{{ message }}
Uh oh!
There was an error while loading.
Please reload this page
.
CopilotKit
/
OpenBot
Public
Notifications
You must be signed in to change notification settings
Fork
124
Star
1.3k
Code
Issues
9
Pull requests
17
Actions
Projects
Wiki
Security and quality
0
Insights
Additional navigation options
Code
Issues
Pull requests
Actions
Projects
Wiki
Security and quality
Insights
Actions: CopilotKit/OpenBot
Actions
All workflows
Workflows
CI
CI
security / zizmor
security / zizmor
Show more workflows...
Management
Caches
All workflows
All workflows
Actions
Loading...
Loading
Sorry, something went wrong.
Uh oh!
There was an error while loading.
Please reload this page
.
will be ignored since log searching is not yet available
Showing runs from all workflows
will be ignored since log searching is not yet available
80 workflow runs
80 workflow runs
Workflow
Filter by Workflow
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching workflows.
Event
Filter by Event
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching events.
Status
Filter by Status
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching statuses.
Branch
Filter by Branch
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching branches.
Actor
Filter by Actor
Sorry, something went wrong.
Filter
Loading
Sorry, something went wrong.
No matching users.
fix(agent-bot): run as non-root bun user (#42)
CI
#78:
Commit
9864e07
pushed by
davidmckayv
56s
main
main
56s
View workflow file
Give each agent its own token, and stop trusting the body
CI
#77:
Pull request
#34
synchronize by
davidmckayv
51s
feat/agent-callback-tokens
feat/agent-callback-tokens
51s
View #34
View workflow file
fix(shared): preserve paragraph breaks in the Bot system prompt
CI
#76:
Pull request
#48
opened by
arpan7sarkar
Action required
arpan7sarkar:fix/system-prompt-paragraph-breaks
arpan7sarkar:fix/system-prompt-paragraph-breaks
Action required
View #48
View workflow file
Keep the snapshot a ref resolves against where every replica can read it
CI
#75:
Pull request
#46
opened by
kevin9327
Action required
kevin9327:fix/gateway-snapshot-cross-replica
kevin9327:fix/gateway-snapshot-cross-replica
Action required
View #46
View workflow file
Keep the computer fleet off a signed-in user's listing
CI
#74:
Pull request
#45
opened by
kevin9327
Action required
kevin9327:refuse-unsigned-computer-fleet
kevin9327:refuse-unsigned-computer-fleet
Action required
View #45
View workflow file
fix(channels): safely parse non-string user message content
CI
#73:
Pull request
#43
synchronize by
arpan7sarkar
Action required
arpan7sarkar:fix/safe-user-message-content-parsing
arpan7sarkar:fix/safe-user-message-content-parsing
Action required
View #43
View workflow file
fix(channels): safely parse non-string user message content
CI
#72:
Pull request
#43
opened by
arpan7sarkar
Action required
arpan7sarkar:fix/safe-user-message-content-parsing
arpan7sarkar:fix/safe-user-message-content-parsing
Action required
View #43
View workflow file
fix(agent-bot): run as non-root bun user
CI
#71:
Pull request
#42
opened by
zopeVaibhav
1m 8s
zopeVaibhav:fix/agent-bot-non-root-user
zopeVaibhav:fix/agent-bot-non-root-user
1m 8s
View #42
View workflow file
Fix possible by not specifying a USER, a program in the container may run as 'root' in Dockerfile
CI
#70:
Pull request
#40
opened by
begininvoke
Action required
begininvoke:redgem/security-fix-3bcdf0be
begininvoke:redgem/security-fix-3bcdf0be
Action required
View #40
View workflow file
Check where an agent address redirects to, not just where it starts
CI
#69:
Pull request
#38
opened by
beardthelion
Action required
beardthelion:fix/agent-endpoint-redirects
beardthelion:fix/agent-endpoint-redirects
Action required
View #38
View workflow file
Ask whether the person may act as the Bot they named
CI
#68:
Pull request
#37
opened by
beardthelion
Action required
beardthelion:fix/acting-routes-check-bot-access
beardthelion:fix/acting-routes-check-bot-access
Action required
View #37
View workflow file
Give each agent its own token, and stop trusting the body
CI
#67:
Pull request
#34
opened by
davidmckayv
51s
feat/agent-callback-tokens
feat/agent-callback-tokens
51s
View #34
View workflow file
Make the admin screens show and say what they are asking
CI
#66:
Pull request
#32
synchronize by
davidmckayv
53s
feat/component-preview
feat/component-preview
53s
View #32
View workflow file
Make LangChain the default harness, and let a framework Bot call tools back
CI
#65:
Pull request
#33
opened by
davidmckayv
51s
feat/langchain-default
feat/langchain-default
51s
View #33
View workflow file
Make the admin screens show and say what they are asking
CI
#64:
Pull request
#32
opened by
davidmckayv
50s
feat/component-preview
feat/component-preview
50s
View #32
View workflow file
Run a Bot's tools on the server, not in somebody's browser
CI
#63:
Pull request
#31
opened by
davidmckayv
51s
feat/server-side-tools
feat/server-side-tools
51s
View #31
View workflow file
Keep a Bot id from naming a directory it should not
CI
#62:
Pull request
#30
opened by
beardthelion
Action required
beardthelion:fix/confine-bot-id-profile-paths
beardthelion:fix/confine-bot-id-profile-paths
Action required
View #30
View workflow file
Refuse on a deny rule that never answers the question
CI
#61:
Pull request
#28
opened by
beardthelion
Action required
beardthelion:fix/deny-rule-non-boolean
beardthelion:fix/deny-rule-non-boolean
Action required
View #28
View workflow file
Refuse the private addresses written the other way
CI
#60:
Pull request
#27
opened by
beardthelion
Action required
beardthelion:fix/navigation-floor-ipv6
beardthelion:fix/navigation-floor-ipv6
Action required
View #27
View workflow file
Call them coworkers on the page that creates them
CI
#59:
Pull request
#24
opened by
krongggggg
Action required
krongggggg:cursor/call-them-coworkers-on-create-page-e659
krongggggg:cursor/call-them-coworkers-on-create-page-e659
Action required
View #24
View workflow file
Let the API listen on the port the docs already name
CI
#58:
Pull request
#23
opened by
krongggggg
Action required
krongggggg:cursor/honor-server-port-f6a2
krongggggg:cursor/honor-server-port-f6a2
Action required
View #23
View workflow file
Let Google sign-in trust the port the app actually uses
CI
#57:
Pull request
#22
opened by
krongggggg
Action required
krongggggg:cursor/trusted-origins-local-default-c08d
krongggggg:cursor/trusted-origins-local-default-c08d
Action required
View #22
View workflow file
Take back the two features that only worked on one machine (#21)
CI
#56:
Commit
06a1a84
pushed by
davidmckayv
46s
main
main
46s
View workflow file
Take back the two features that only worked on one machine
CI
#55:
Pull request
#21
opened by
davidmckayv
50s
revert/in-process-state
revert/in-process-state
50s
View #21
View workflow file
Let a Bot work while nobody is watching
CI
#54:
Pull request
#18
synchronize by
davidmckayv
1m 12s
jerelvelarde:feat/routines-and-webhook-triggers
jerelvelarde:feat/routines-and-webhook-triggers
1m 12s
View #18
View workflow file
Previous
1
2
3
4
Next
You can’t perform that action at this time.