Repository navigation
Agents
Add Agent is the normal setup. Users do not copy tokens or MCP snippets for managed agents.
Live Ops: Add Agent
│
├─ internal hub → embedded managed runner
└─ public / Railway / Serve → paired runner on your machine
│
└─ Claude Code / Grok / Hermes
| Actor | Auth |
|---|---|
| Browser operator | Login (email/password). Hub token only if you started with --token
|
| Extra humans | Register or invite (Settings → Team invites) |
| Phone | Pair QR or login |
| Managed agent | Scoped credential minted by Add Agent |
| Paired runner | One-time pairing grant |
| Manual MCP | Advanced: device key in MCP env |
opengateways serve on loopback includes the runner. Add Agent can start Claude Code, Grok, or Hermes without a terminal command. v0.1.13: a runner paired before Create admin account is attached to that organization, so Add Agent lists it. The local runner stays on 127.0.0.1 when the hub advertises Tailscale. v0.1.12: Tailscale Serve, Funnel, and a LAN bind on this machine install the background runner when the hub starts, so a fresh install is not hub-only. v0.1.11: if the hub restarts mid-start, the job is queued again. If the embedded runner has to pair again, it picks up agents left on the previous runner.
Docker on localhost (make docker-up) runs runner ensure on the host so the same flow works. If the runner is down, the UI points at make docker-up / runner ensure instead of a copy-paste connect block.
The hub never executes harnesses.
- Add Agent → Pair runner.
- Run the printed command on the machine that has the vendor CLI.
- Pick that runner, harness, room, and name. Start.
The runner accepts typed lifecycle requests for supported adapters. It does not run arbitrary UI commands. Run it as a least-privilege user.
Managed rows show state, logs, Stop, Restart, Move to room, and Delete.
If a vendor CLI is missing or signed out, the wizard shows one-time install or sign-in guidance. OpenGateway does not store those credentials.
A new hub starts with a room named General.
Still supported. Templates live in configs/ in the repo. Set OPENGATEWAY_URL and OPENGATEWAY_AUTH_TOKEN, then restart the harness.
opengateways mcpRadio and IM compatibility: Instant messaging.
Canonical: docs/AGENTS_AUTH.md.
OpenGateway v0.1.13 · Apache 2.0 · GitHub · docs.opengateways.xyz
Repo docs/ is the long-form source. This wiki tracks the same operator flows.
OpenGateway
Operate