Self-hosted AI workspace.
Find a file
dependabot[bot] e4e92001d6
chore(deps): bump the actions group across 1 directory with 7 updates
Bumps the actions group with 7 updates in the / directory:

| Package | From | To |
| --- | --- | --- |
| [github/codeql-action/init](https://github.com/github/codeql-action) | `4.37.7` | `4.38.2` |
| [github/codeql-action/analyze](https://github.com/github/codeql-action) | `4.37.7` | `4.38.2` |
| [hadolint/hadolint-action](https://github.com/hadolint/hadolint-action) | `3.4.0` | `3.5.0` |
| [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action) | `4.3.0` | `4.4.1` |
| [docker/build-push-action](https://github.com/docker/build-push-action) | `7.3.0` | `7.4.0` |
| [github/codeql-action/upload-sarif](https://github.com/github/codeql-action) | `4.37.7` | `4.38.2` |
| [actions/deploy-pages](https://github.com/actions/deploy-pages) | `5.0.0` | `5.0.1` |



Updates `github/codeql-action/init` from 4.37.7 to 4.38.2
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](ff2f1c621b...2892aa5e19)

Updates `github/codeql-action/analyze` from 4.37.7 to 4.38.2
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](ff2f1c621b...2892aa5e19)

Updates `hadolint/hadolint-action` from 3.4.0 to 3.5.0
- [Release notes](https://github.com/hadolint/hadolint-action/releases)
- [Commits](2a66e89f53...06be81baf8)

Updates `docker/setup-buildx-action` from 4.3.0 to 4.4.1
- [Release notes](https://github.com/docker/setup-buildx-action/releases)
- [Commits](37fe631027...f87e5991a6)

Updates `docker/build-push-action` from 7.3.0 to 7.4.0
- [Release notes](https://github.com/docker/build-push-action/releases)
- [Commits](53b7df96c9...c3c9e263c2)

Updates `github/codeql-action/upload-sarif` from 4.37.7 to 4.38.2
- [Release notes](https://github.com/github/codeql-action/releases)
- [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md)
- [Commits](ff2f1c621b...2892aa5e19)

Updates `actions/deploy-pages` from 5.0.0 to 5.0.1
- [Release notes](https://github.com/actions/deploy-pages/releases)
- [Commits](cd2ce8fcbc...368f825286)

---
updated-dependencies:
- dependency-name: actions/deploy-pages
  dependency-version: 5.0.1
  dependency-type: direct:production
  update-type: version-update:semver-patch
  dependency-group: actions
- dependency-name: docker/build-push-action
  dependency-version: 7.4.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
- dependency-name: docker/setup-buildx-action
  dependency-version: 4.4.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
- dependency-name: github/codeql-action/analyze
  dependency-version: 4.38.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
- dependency-name: github/codeql-action/init
  dependency-version: 4.38.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
- dependency-name: github/codeql-action/upload-sarif
  dependency-version: 4.38.1
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
- dependency-name: hadolint/hadolint-action
  dependency-version: 3.5.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions
...

Signed-off-by: dependabot[bot] <support@github.com>
2026-10-06 18:21:22 +00:00
.github chore(deps): bump the actions group across 1 directory with 7 updates 2026-10-06 18:21:22 +00:00
companion fix(companion): honor configured pairing address (#6060) 2026-08-15 21:11:10 +02:00
config/searxng Generate SearXNG secret on first boot 2026-06-01 11:03:02 +09:00
core Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
docker Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
docs Merge frozen lab b1666951 (Wave 3) into Wave 4 effects provenance 2026-10-03 01:13:36 +01:00
integrations Add Codex and Claude document draft integration 2026-06-09 14:27:53 +09:00
licenses chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
mcp_servers fix(security): harden Python service boundaries 2026-10-06 03:16:54 +01:00
plans Consolidate Odysseus agent harness and tool contracts 2026-09-17 10:07:40 +00:00
resources/skills Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
routes fix(security): harden Python service boundaries 2026-10-06 03:16:54 +01:00
scripts fix(security): keep the post-external-context approval gate on by default 2026-10-06 19:49:15 +02:00
services fix(security): harden Python service boundaries 2026-10-06 03:16:54 +01:00
specs chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
src fix(security): keep the post-external-context approval gate on by default 2026-10-06 19:49:15 +02:00
static fix(security): isolate session cost ledger keys 2026-10-06 00:25:24 +01:00
swift/odysseus-mlx-image-bridge Merge verified Odysseus fixes 2026-07-23 14:49:02 +00:00
tests fix(security): keep the post-external-context approval gate on by default 2026-10-06 19:49:15 +02:00
website fix(security): keep the post-external-context approval gate on by default 2026-10-06 19:49:15 +02:00
.dockerignore chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
.env.example fix(security): keep the post-external-context approval gate on by default 2026-10-06 19:49:15 +02:00
.gitattributes perf(static): vendor KaTeX and Mermaid, and load them on first use (#5994) 2026-08-16 22:43:12 +01:00
.gitignore feat(scripts): add odysseus-dev, a per-worktree isolated boot 2026-09-25 17:35:47 +02:00
.gitleaks.toml chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
ACKNOWLEDGMENTS.md chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
app.py fix(runtime): verify process identity before any teardown signal 2026-10-01 18:55:50 +02:00
build-macos-app.sh chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
build-windows-portable.ps1 chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
CONTRIBUTING.md chore: update repository URLs after organization transfer (#5622) 2026-07-20 16:43:47 +02:00
docker-compose.gpu-amd.yml Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
docker-compose.gpu-nvidia.yml Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
docker-compose.yml Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
Dockerfile chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
HARNESS_VERSION reserve wall time for artifact completion 2026-09-19 12:45:09 +00:00
install-service.sh Odysseus v1.0 2026-05-31 23:58:26 +09:00
launch-windows.ps1 fix(mcp): stop assuming http://localhost:7000 for the OAuth callback (#6032) 2026-08-15 23:09:01 -06:00
launcher.py Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
LICENSE Change project license to AGPL-3.0-or-later 2026-06-09 14:25:04 +09:00
odysseus-ui.service fix: systemd service should serve on port 7000 to match Docker/setup/README (#1297) 2026-06-03 02:04:37 +09:00
Odysseus.spec chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
package-lock.json Squash Odysseus development history 2026-09-11 06:04:19 +00:00
package.json Squash Odysseus development history 2026-09-11 06:04:19 +00:00
PUBLICATION_ASSET_DECISIONS.md chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
pyproject.toml test: isolate pytest runtime defaults across workers and runs 2026-10-03 03:46:52 +01:00
README.md Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
requirements-dev.txt test: isolate pytest runtime defaults across workers and runs 2026-10-03 03:46:52 +01:00
requirements-optional.txt Squash Odysseus development history 2026-09-11 06:04:19 +00:00
requirements.txt Merge commit 'refs/phase3/pre-ajax/publication-tip' into integration/pre-ajax-release 2026-10-05 15:59:59 +01:00
ROADMAP.md Merge verified Odysseus fixes 2026-07-23 14:49:02 +00:00
SECURITY.md fix(auth): derive the session cookie Secure flag from the request scheme (#6048) 2026-08-16 22:56:36 +01:00
setup.py Merge commit from fork 2026-09-05 19:21:12 +02:00
start-macos.sh fix(mcp): stop assuming http://localhost:7000 for the OAuth callback (#6032) 2026-08-15 23:09:01 -06:00
THIRD_PARTY_PROVENANCE.json chore(publication): close pre-integration release blockers 2026-10-05 01:37:49 +01:00
THREAT_MODEL.md fix(security): keep the post-external-context approval gate on by default 2026-10-06 19:49:15 +02:00
update_windows.bat Windows: add Docker update script 2026-06-02 20:45:32 +09:00

Odysseus

A self-hosted AI workspace for chat, agents, research, documents, email, notes, calendar, and local model workflows.

Quick Start · Setup Guide · Contributing · Roadmap

Packaging status


Quick Start

dev is the default branch and gets the newest changes first. Use main if you want the more curated branch.

git clone https://github.com/odysseus-dev/odysseus.git
cd odysseus
cp .env.example .env
docker compose up -d --build

Open http://localhost:7011 when the containers are healthy. The first admin password is printed in docker compose logs odysseus.

The compose files pull the official multi-arch image ghcr.io/odysseus-dev/odysseus (published by CI on every push to main and dev) and only build locally if the pull fails — so this also works on hosts without a build toolchain, e.g. as a Portainer stack.

Production deployments: pin the immutable tag instead of :latest. :latest and bare :X.Y.Z tags move on every push to main, but :X.Y.Z-<sha> (e.g. 1.0.2-7c8070f) always refers to one specific build:

ODYSSEUS_IMAGE=ghcr.io/odysseus-dev/odysseus:1.0.2-7c8070f docker compose up -d

Native installs, GPU notes, Windows/macOS instructions, HTTPS, and configuration live in the setup guide.

Features

  • Chat + Agents — local/API models, tools, MCP, files, shell, skills, and memory.
  • Cookbook — hardware-aware model recommendations, downloads, and serving.
  • Deep Research — multi-step web research with source reading and report generation.
  • Compare — blind side-by-side model testing and synthesis.
  • Documents — writing-first editor with AI edits, suggestions, Markdown, HTML, CSV, and syntax highlighting.
  • Email — IMAP/SMTP inbox with triage, tags, summaries, reminders, and reply drafts.
  • Notes, Tasks + Calendar — reminders, todos, scheduled agent tasks, and CalDAV sync.
  • Extras — gallery/image editor, themes, uploads, web search, presets, sessions, and 2FA.

Demo

The Odysseus landing page gives a text-only overview of each feature. Its source lives under website/.

Contributing

Help is welcome. The best entry points are fresh-install testing, provider setup bugs, mobile/editor polish, docs, and small focused refactors. See CONTRIBUTING.md and ROADMAP.md.

Security

Odysseus is a self-hosted workspace with powerful local tools. Keep auth enabled, keep private data out of Git, and do not expose raw model/service ports publicly.

  • Keep AUTH_ENABLED=true for any network-accessible deployment.
  • Keep LOCALHOST_BYPASS=false outside local development.

Deployment details are in the setup guide.

Star History

Star History Chart

License

AGPL-3.0-or-later -- see LICENSE and ACKNOWLEDGMENTS.md.