Skip to content

Releases: Peerframe/openbot

OpenBot Desktop 0.1.0-alpha.9

Pre-release

Choose a tag to compare

@github-actions github-actions released this 13 Sep 16:49
64569ec

OpenBot Desktop 0.1.0-alpha.9 — unsigned development installers / 未正式签名的开发预览版。

Changes / 更新内容

  • Restore the channel member menu's avatars, names, role descriptions and independent removal controls, including narrow-window placement. / 恢复频道成员菜单的头像、姓名、职责和独立移除按钮,修正窄窗口及收起侧栏时的菜单位置。
  • Preserve the selected Bot and unsaved permission choices across plugin refreshes. Declaration changes clear obsolete grants and saved status; delayed save callbacks cannot restore them. / 插件刷新时保留所选 Bot 与未保存选择;声明更新后清空旧授权和保存状态,旧保存回调不会恢复过期状态。
  • Distinguish invalid task targets, lifecycle conflicts and changed skills or memory from actual channel membership loss. Server rejection rules remain in place. / 将无效任务目标、任务状态冲突、技能或记忆变化与真实频道成员权限撤销分开提示,保留 Server 的拒绝规则。
  • Localize empty/image-only PDF extraction failures and the original-attachment save dialog. Unrecognized errors retain their original meaning, and failed extraction preserves the source file for retry and download. / 将空白或图片型 PDF 提取失败及原始附件保存对话框改为中文;未知错误保持原有含义,提取失败仍保留原件供重试和下载。

Source and verification / 源码与验证

Source: 64569ec
Verified main CI: https://github.com/yxflc11/openbot/actions/runs/34768475942

The release manifest and SHA256SUMS bind every installer to that exact source. / 发行清单和 SHA256SUMS 将安装包绑定到上述同一源码提交。

Install / 安装

  • macOS arm64: open the DMG and drag OpenBot into Applications. / 打开 DMG,将 OpenBot 拖入 Applications。
  • Windows x64: open the EXE for a per-user installation. / 打开 EXE,按向导安装到当前用户。

Both installers include the local Server and PostgreSQL. Linux installers are not included in this release. / 两个平台均包含本地 Server 和 PostgreSQL;本次不提供 Linux 安装包。

Existing workspace data and model settings are retained by the upgrade path. Verify downloads against SHA256SUMS before installation. / 升级流程保留已有工作区数据和模型配置;安装前按 SHA256SUMS 核对下载摘要。

Verification limits / 验证边界

These development installers are not formally code-signed or notarized. Windows CI covers packaging, retained native startup, DPAPI and installation lifecycle on its runner; it does not establish real Windows 10/11 GUI, microphone or SmartScreen acceptance. Installing Desktop does not grant computer-control authority. No automatic updater is enabled. / 这些开发安装包尚未完成正式代码签名或公证。Windows CI 覆盖运行器上的打包、本地启动保留、DPAPI 与安装生命周期,不等于真实 Windows 10/11 图形界面、麦克风或 SmartScreen 验收。安装 Desktop 不会自动授予电脑控制权限,目前没有自动更新器。

This exact macOS DMG passed installer-manifest, SHA-256 and bundle-integrity verification. Installed-app GUI upgrade acceptance for alpha.9 is pending; previous alpha.8 native acceptance is not counted as alpha.9 acceptance. / 本次 macOS DMG 已通过安装器清单、SHA-256 和包完整性校验。alpha.9 安装后图形界面升级验收尚待完成;此前 alpha.8 的原生验收不计为本版验收。

OpenBot Desktop 0.1.0-alpha.8

Pre-release

Choose a tag to compare

@github-actions github-actions released this 13 Sep 12:13
9894a26

OpenBot Desktop 0.1.0-alpha.8

macOS Apple Silicon (arm64) · Windows x64

Source / 源码:9894a265221e17889fc1fc39903d5df72c3a3cb8
Release-source CI / 发行源码 CI:Successful main CI / 已通过的 main CI

English

This preview provides a macOS DMG and Windows EXE with a bundled local Server and PostgreSQL, plus desktop-manifest.json and SHA256SUMS. Both installers must match the source commit above. Linux installers, macOS Intel and Windows ARM64 are not included in this release.

Changes

  • Reopen after a macOS crash. When the Desktop main process exits unexpectedly, the bundled database supervisor shuts down its own PostgreSQL child. Reopening waits briefly for that shutdown and reuses the existing workspace. This addresses the reproduced next-launch installation failure while retaining data.
  • Clear feedback for PDFs without readable text. Extraction now reports when no readable PDF text is found, including image-only or blank PDFs. It preserves the original and does not mark whitespace as a successful extraction. PNG/JPEG pages can be uploaded for explicit image OCR. Older empty extraction records require an explicit re-upload or attachment choice before model use; the app does not silently send the original binary instead.
  • Windows startup verification. The installer acceptance gate now checks ten cold starts in separate Electron processes, along with retained data, encrypted identity, Owner login, shutdown and uninstall.
  • Updated setup instructions. The bilingual guide reflects macOS/Windows local services, supported attachments, platform-specific PostgreSQL versions and the existing MCP plugin entry.
  • For source users: the standard Web development page renders its styles correctly under Content Security Policy, including CSS and React hot updates. This is a development-server fix; production Web, Desktop and plugin-sandbox policies retain their existing boundaries.

Verification and limits

The macOS recovery change passed three real Electron main-process crash/reopen cycles with a retained database row and unchanged synthetic bootstrap ciphertext. This isolated test is not a Keychain acceptance test. Recovery does not cover force-killing the supervisor itself or adopting database processes left by older unsupervised builds.

The release-source Windows runtime passed hosted Windows Server 2025 x64 checks covering installation, one bootstrap plus ten independent cold starts, twelve successful Owner logins, DPAPI decryption, retained database rows, unchanged ciphertext digest, uninstall and fixture cleanup. The gate uses the pinned development Electron executable with the ASAR-verified installed native runtime; it does not drive the installed application's GUI. Final installer provenance is the main source and CI linked above, not a pull-request merge checkout.

These remain development previews without production signing; macOS is not notarized. Windows desktop/SmartScreen, accessibility, microphone hardware and computer-control acceptance remain separate. No automatic updater is enabled. Before upgrading, quit OpenBot and back up the workspace; keep the existing application-data directory. macOS may ask for Keychain access again when an unsigned build changes.

简体中文

此预览版提供 macOS DMG 和 Windows EXE,包含本地 Server 与 PostgreSQL,并附 desktop-manifest.json 和 SHA256SUMS。两平台安装器必须与上方源码提交一致。本次不提供 Linux 安装器、macOS Intel 或 Windows ARM64 版本。

变化

  • macOS 异常退出后重新打开。 Desktop 主进程意外退出时,随包数据库监督进程会关闭自己启动的 PostgreSQL。重新打开会短暂等待关闭完成,再复用原工作区,修复已复现的重开安装失败问题并保留数据。
  • 没有可读文字的 PDF 会明确提示。 未提取到可读文字时会明确提示,说明 PDF 可能为扫描件或空白文件;不再把空白标记为提取成功,原文件仍保留。可上传 PNG/JPEG 页面并主动选择图片 OCR。旧版保存的空提取记录会在模型调用前要求重新上传或明确选择附件,不会静默改成向模型发送原始二进制文件。
  • Windows 启动验证。 安装器验收新增十次独立 Electron 进程冷启动,并检查数据与加密身份保留、Owner 登录、关闭和卸载。
  • 更新安装指引。 中英文指南同步说明 macOS/Windows 本地服务、支持的附件、各平台 PostgreSQL 版本,以及已有 MCP 插件入口。
  • 源码开发用户: 标准 Web 开发页面在内容安全策略下可正常显示样式,并支持 CSS 与 React 热更新。此项修复作用于开发服务器;生产 Web、Desktop 和插件隔离页面沿用原有策略边界。

验证与边界

macOS 恢复改动通过了三次真实 Electron 主进程异常终止后立即重开的测试,数据库记录和模拟引导密文保持不变。该隔离测试不等于钥匙串验收;强制终止监督进程本身、接管旧版遗留的无监督数据库进程不在恢复范围内。

发行源码对应的 Windows 运行时在托管 Windows Server 2025 x64 上通过安装、首次启动加十次独立冷启动、十二次 Owner 登录、DPAPI 解密、数据库记录与密文摘要保留、卸载和测试数据清理。验收使用固定的开发版 Electron 可执行文件和经 ASAR 校验的已安装原生运行时,没有操作安装后应用的窗口。最终安装器来源以上方 main 源码和 CI 为准,不使用 PR 合并检查提交冒充发行源码。

安装器仍为未经正式签名的开发预览版,macOS 未公证。Windows 真机桌面与 SmartScreen、无障碍、麦克风硬件及电脑控制仍需分别验收;未启用自动更新。升级前退出 OpenBot 并备份工作区,保留原应用数据目录。未签名 macOS 构建变化后,系统仍可能再次要求钥匙串授权。

OpenBot Desktop 0.1.0-alpha.7

Pre-release

Choose a tag to compare

@github-actions github-actions released this 13 Sep 03:23
62440c1

OpenBot Desktop 0.1.0-alpha.7

Unsigned preview installers for macOS Apple Silicon and Windows x64, both from source 62440c1a09fdac624fe2078c130ff55d6ea4e24c. Both include a local Server and PostgreSQL.

Changes

  • Fix native message reactions and attachment filename/larger-payload forwarding.
  • Fix Bot export with explicitly selected reviewed skill content; imported Bots retain review and permission requirements.
  • Include actual Run/collaboration progress, Windows credential-file ACL checks, and dependency/packaging fixes.

Validation and installation

Source CI passed all nine jobs. Windows CI covered per-user installation, DPAPI, database migration, retained data and service lifecycle. Release preparation verified the installer set. Both downloaded installer hashes match SHA256SUMS; the DMG checksum and mounted macOS App recursive code-signature integrity passed.

Use the DMG on Apple Silicon or EXE on Windows x64. Quit OpenBot and back up the workspace before manual upgrades; retain application data. Check downloads against SHA256SUMS; desktop-manifest.json records exact source, sizes and hashes.

macOS is ad-hoc signed, without Developer ID or notarization. Windows is unsigned. System trust prompts remain, and replacing an unsigned macOS build may request keychain access again. Windows evidence is from a hosted runner, not a user's desktop. Production signing, full native UI conformance and H2 runtime leases remain unfinished. No automatic updater, Linux/Intel Mac installer, automatic computer-control enrollment or complete Grok Bot parity is claimed.

简体中文

本版提供来自上述同一提交的 macOS Apple Silicon DMG 和 Windows x64 EXE,均包含本地 Server 与数据库。修复原生消息表情、附件文件名和较大文件转发,以及选择包含已审核技能正文时的 Bot 导出;同时包含真实运行进度、Windows 机密文件 ACL 和依赖/打包修复。

源码 CI 的 9 项检查、发布准备流程及两平台下载摘要校验均通过;DMG 完整性与 macOS App 递归签名完整性检查通过。Windows 安装、DPAPI、迁移和数据保留证据来自托管 runner,不能代替用户真机界面验收。

升级前退出应用并备份工作区,保留原应用数据目录。下载后核对 SHA256SUMS。本版仍为未签名开发预览,macOS 只有 ad-hoc 签名,没有 Developer ID 和公证;替换未签名包后仍可能需要系统钥匙串授权。正式签名、完整原生界面验收和 H2 运行时租约尚未完成;无自动更新器,不包含 Linux 或 Intel Mac 安装包,不宣称完成 Grok Bot 全量复刻。

OpenBot Desktop 0.1.0-alpha.6

Pre-release

Choose a tag to compare

@github-actions github-actions released this 10 Sep 16:29
deebe03

OpenBot Desktop 0.1.0-alpha.6 · macOS and Windows preview

Build a team of Bots, delegate in channels and download the results. This preview includes streamed replies and follow-up instructions, Office/PDF/OCR/media attachments, reusable Bot sharing, reviewed MCP tools/resources/prompts/Apps and retained local startup.

Platform Download Local services
macOS · Apple Silicon DMG Server and PostgreSQL 17.10
Windows · x64 EXE Server and source-built PostgreSQL 17.11

On macOS, open the DMG and drag OpenBot into Applications. On Windows, open the EXE for a per-user installation. Quit OpenBot and back up workspace data before upgrading. Existing settings and data are retained. Configure your own model provider in Settings after installation.

These are development installers without publisher signing. The macOS app is ad-hoc signed and not Apple-notarized. System trust prompts remain in place; no automatic updater is enabled. Intel Macs and Windows ARM64 are not included. Linux installers are not published in this release.

Both installers come from source deebe03649c949e8b1d75dffe1b68d6d4c8fadb7 and the same successful main CI run. Windows checks cover installed runtime integrity, migrations, DPAPI credentials, Owner login, retained data, stop/restart, cleanup and NSIS uninstall. macOS checks cover native builds/tests, packaging, the Worker companion and plist contracts; the actual DMG checksum and bundled app signature integrity have also been verified. These checks do not certify all physical devices or computer-control Providers.

The macOS artifact was added on 2026-09-11 from that same CI run. The Windows EXE is unchanged. desktop-manifest.json and SHA256SUMS now cover both installers; verify your download against the relevant entry.

Website and manual · Website source


本版提供 macOS Apple Silicon 与 Windows x64 预览安装器。Bot 可在频道中按身份分工、逐段回复并接受追加指令;支持丰富附件、可复用 Bot 分享、经审核的 MCP 扩展和保留配置启动。

macOS 打开 DMG 并将 OpenBot 拖入 Applications;Windows 打开 EXE 按当前用户安装。升级前先退出应用并备份工作区,保留原设置与数据。安装后在设置中连接你自己的模型服务。

macOS 包尚未获得 Developer ID 签名或 Apple 公证,Windows 包尚未签名;保留系统信任提示,目前没有自动更新。macOS 仅含 Apple Silicon 版,Windows 仅含 x64 版。

两种安装器来自同一份已通过完整 CI 的源码。macOS 包于 2026-09-11 补入,Windows EXE 未变更;合并清单和 SHA256SUMS 已同步覆盖两个平台。macOS 包含 PostgreSQL 17.10,Windows 包含从官方源码构建的 PostgreSQL 17.11。托管检查与安装包完整性验证不等于所有真机、硬件或电脑控制功能验收。

中文官网与手册

OpenBot v0.1.0-alpha.1 — Foundation Preview

Choose a tag to compare

@yxflc11 yxflc11 released this 04 Sep 01:07
750bffd

OpenBot foundation preview

OpenBot is an early, self-hosted control plane for persistent AI employees. This first pre-release
packages the tested foundation merged in PR #4.

Highlights

  • Persistent local channels with named, composable Bots.
  • A Server-authoritative Worker Host protocol for replaceable macOS, Windows, Linux, container, and VM nodes.
  • One-time Node enrollment, revocation, heartbeat, capacity, exact capability-version routing, reconnect handling, and durable artifacts.
  • Seven-view Employee profiles with a Hermes-inspired evolution archive, reviewed skills, typed memory, runtime evidence, records, and configuration.
  • Review-bound Employee export/import, fresh-identity activation, dependency closure, and experimental DSSE signing.
  • Human approval boundaries, audit records, bounded realtime updates, and a read-only Docker/browser execution slice.
  • English canonical documentation, Simplified Chinese guides, research records, ADRs, issue forms, and contributor gates.

Important limitations

This is a pre-alpha source release, not a production-ready desktop agent.

  • Native Windows, macOS, and Linux desktop Providers and installers are not implemented yet.
  • Cross-platform routes are protocol fixtures, not real-device support claims.
  • Computer execution is currently read-only; do not connect payments, primary accounts, or production credentials.
  • Node proof-of-possession, mTLS, native keyrings, rotation, replay protection, continuous remote desktop, and one-time capability leases remain planned.
  • Employee packages intentionally exclude memories, credentials, host permissions, and live execution authority.
  • The optional Office visualization remains deferred.

The repository's internal workspace packages remain at 0.0.0 because no npm packages are being
published from this release. The GitHub tag identifies the reviewed source snapshot only.

Verification

  • GitHub check: passed
  • GitHub database: passed
  • Local full repository gate: npm run check
  • Production dependency audit: 0 known vulnerabilities at release review time
  • Tagged commit: 750bffde340dc44a02e440693b23675ecf4ad4ad

Start here

Employee evolution and learning are explicitly inspired by
Hermes Agent. OpenBot implements its own
Server-authoritative evidence, review, permission, and portability model.