Self-hosted AI workspace.
Find a file
Alexandre Teixeira 39b8563213 fix(security): isolate session cost ledger keys
Use Map-backed cost ledgers so externally derived session and run identifiers never cross ordinary object prototype semantics. Preserve the existing JSON storage format and extend browser and isolated ledger regressions for replay, overflow, legacy data, and reserved keys.
2026-10-06 00:25:24 +01:00
.github Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
companion fix(companion): honor configured pairing address (#6060) 2026-08-15 21:11:10 +02:00
config/searxng Generate SearXNG secret on first boot 2026-06-01 11:03:02 +09:00
core Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
docker Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
docs Merge frozen lab b1666951 (Wave 3) into Wave 4 effects provenance 2026-10-03 01:13:36 +01:00
integrations Add Codex and Claude document draft integration 2026-06-09 14:27:53 +09:00
licenses chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
mcp_servers Preserve preview harness, editor, email and task improvements 2026-10-01 01:34:26 +00:00
plans Consolidate Odysseus agent harness and tool contracts 2026-09-17 10:07:40 +00:00
resources/skills Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
routes fix(security): enforce registered endpoint authority 2026-10-05 22:24:15 +01:00
scripts test(ci): stabilize public CI shard validation 2026-10-05 19:21:50 +01:00
services chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
specs chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
src fix(security): enforce registered endpoint authority 2026-10-05 22:24:15 +01:00
static fix(security): isolate session cost ledger keys 2026-10-06 00:25:24 +01:00
swift/odysseus-mlx-image-bridge Merge verified Odysseus fixes 2026-07-23 14:49:02 +00:00
tests fix(security): isolate session cost ledger keys 2026-10-06 00:25:24 +01:00
website test(ci): stabilize public CI shard validation 2026-10-05 19:21:50 +01:00
.dockerignore chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
.env.example docs: generate the ODYSSEUS_* configuration reference from the source 2026-09-30 15:11:19 +02:00
.gitattributes perf(static): vendor KaTeX and Mermaid, and load them on first use (#5994) 2026-08-16 22:43:12 +01:00
.gitignore feat(scripts): add odysseus-dev, a per-worktree isolated boot 2026-09-25 17:35:47 +02:00
.gitleaks.toml chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
ACKNOWLEDGMENTS.md chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
app.py fix(runtime): verify process identity before any teardown signal 2026-10-01 18:55:50 +02:00
build-macos-app.sh chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
build-windows-portable.ps1 chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
CONTRIBUTING.md chore: update repository URLs after organization transfer (#5622) 2026-07-20 16:43:47 +02:00
docker-compose.gpu-amd.yml Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
docker-compose.gpu-nvidia.yml Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
docker-compose.yml Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
Dockerfile chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
HARNESS_VERSION reserve wall time for artifact completion 2026-09-19 12:45:09 +00:00
install-service.sh Odysseus v1.0 2026-05-31 23:58:26 +09:00
launch-windows.ps1 fix(mcp): stop assuming http://localhost:7000 for the OAuth callback (#6032) 2026-08-15 23:09:01 -06:00
launcher.py Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
LICENSE Change project license to AGPL-3.0-or-later 2026-06-09 14:25:04 +09:00
odysseus-ui.service fix: systemd service should serve on port 7000 to match Docker/setup/README (#1297) 2026-06-03 02:04:37 +09:00
Odysseus.spec chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
package-lock.json Squash Odysseus development history 2026-09-11 06:04:19 +00:00
package.json Squash Odysseus development history 2026-09-11 06:04:19 +00:00
PUBLICATION_ASSET_DECISIONS.md chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
pyproject.toml test: isolate pytest runtime defaults across workers and runs 2026-10-03 03:46:52 +01:00
README.md Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
requirements-dev.txt test: isolate pytest runtime defaults across workers and runs 2026-10-03 03:46:52 +01:00
requirements-optional.txt Squash Odysseus development history 2026-09-11 06:04:19 +00:00
requirements.txt Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
ROADMAP.md Merge verified Odysseus fixes 2026-07-23 14:49:02 +00:00
SECURITY.md fix(auth): derive the session cookie Secure flag from the request scheme (#6048) 2026-08-16 22:56:36 +01:00
setup.py Merge commit from fork 2026-09-05 19:21:12 +02:00
start-macos.sh fix(mcp): stop assuming http://localhost:7000 for the OAuth callback (#6032) 2026-08-15 23:09:01 -06:00
THIRD_PARTY_PROVENANCE.json chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
THREAT_MODEL.md fix(review): harden scholarly redirects, editor draft limits, and threat model 2026-09-23 12:53:06 +01:00
update_windows.bat Windows: add Docker update script 2026-06-02 20:45:32 +09:00

Odysseus

A self-hosted AI workspace for chat, agents, research, documents, email, notes, calendar, and local model workflows.

Quick Start · Setup Guide · Contributing · Roadmap

Packaging status


Quick Start

dev is the default branch and gets the newest changes first. Use main if you want the more curated branch.

git clone https://github.com/odysseus-dev/odysseus.git
cd odysseus
cp .env.example .env
docker compose up -d --build

Open http://localhost:7011 when the containers are healthy. The first admin password is printed in docker compose logs odysseus.

The compose files pull the official multi-arch image ghcr.io/odysseus-dev/odysseus (published by CI on every push to main and dev) and only build locally if the pull fails — so this also works on hosts without a build toolchain, e.g. as a Portainer stack.

Production deployments: pin the immutable tag instead of :latest. :latest and bare :X.Y.Z tags move on every push to main, but :X.Y.Z-<sha> (e.g. 1.0.2-7c8070f) always refers to one specific build:

ODYSSEUS_IMAGE=ghcr.io/odysseus-dev/odysseus:1.0.2-7c8070f docker compose up -d

Native installs, GPU notes, Windows/macOS instructions, HTTPS, and configuration live in the setup guide.

Features

  • Chat + Agents — local/API models, tools, MCP, files, shell, skills, and memory.
  • Cookbook — hardware-aware model recommendations, downloads, and serving.
  • Deep Research — multi-step web research with source reading and report generation.
  • Compare — blind side-by-side model testing and synthesis.
  • Documents — writing-first editor with AI edits, suggestions, Markdown, HTML, CSV, and syntax highlighting.
  • Email — IMAP/SMTP inbox with triage, tags, summaries, reminders, and reply drafts.
  • Notes, Tasks + Calendar — reminders, todos, scheduled agent tasks, and CalDAV sync.
  • Extras — gallery/image editor, themes, uploads, web search, presets, sessions, and 2FA.

Demo

The Odysseus landing page gives a text-only overview of each feature. Its source lives under website/.

Contributing

Help is welcome. The best entry points are fresh-install testing, provider setup bugs, mobile/editor polish, docs, and small focused refactors. See CONTRIBUTING.md and ROADMAP.md.

Security

Odysseus is a self-hosted workspace with powerful local tools. Keep auth enabled, keep private data out of Git, and do not expose raw model/service ports publicly.

  • Keep AUTH_ENABLED=true for any network-accessible deployment.
  • Keep LOCALHOST_BYPASS=false outside local development.

Deployment details are in the setup guide.

Star History

Star History Chart

License

AGPL-3.0-or-later -- see LICENSE and ACKNOWLEDGMENTS.md.