Update dependencies and enhance security and functionality - #188
Merged
Merged
Conversation
Bumps [github.com/mattn/go-sqlite3](https://github.com/mattn/go-sqlite3) from 1.14.47 to 1.14.48. - [Release notes](https://github.com/mattn/go-sqlite3/releases) - [Commits](mattn/go-sqlite3@v1.14.47...v1.14.48) --- updated-dependencies: - dependency-name: github.com/mattn/go-sqlite3 dependency-version: 1.14.48 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <support@github.com>
Bumps [actions/setup-node](https://github.com/actions/setup-node) from 6.4.0 to 7.0.0. - [Release notes](https://github.com/actions/setup-node/releases) - [Commits](actions/setup-node@48b55a0...8207627) --- updated-dependencies: - dependency-name: actions/setup-node dependency-version: 7.0.0 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
feat: add DeepSeek provider support
…-worker/github.com/mattn/go-sqlite3-1.14.48
docs: link AgentQi mobile companion
…-worker/github.com/mattn/go-sqlite3-1.14.48
…tsapp-whatsmeow-worker/github.com/mattn/go-sqlite3-1.14.48 build(deps): bump github.com/mattn/go-sqlite3 from 1.14.47 to 1.14.48 in /src/whatsapp-whatsmeow-worker
…ions/setup-node-7.0.0 build(deps): bump actions/setup-node from 6.4.0 to 7.0.0
Introduce OIDC/JWT gateway auth, WebSocket token bridging, and a much richer webchat UI with external CSS/JS, session history management, admin panels, file uploads/downloads, and cron/channel/MCP controls. Add session abort/delete support across the gateway and memory stores. Expand native agent capabilities with image analysis, MinerU PDF parsing, file publishing, better image generation backends, paged file reads, safer web fetch behavior, multi-attachment handling, and MCP registry fixes for paging, transport modes, and LLM-safe tool names.
Removes support for the deprecated `OpenClaw:Experimental:MicrosoftAgentFramework` section (code, startup notice path, docs, and tests) so only the supported MAF config path is honored. Adds new admin endpoints to create automations and manage workspace skills (install, delete, ZIP upload with validation), updates skill response models, and wires related JSON source-gen types. Gateway runtime handling was also hardened with tool-executor concurrency fixes, OIDC auth gating cleanup, abort-command support (`/stop`/`/cancel`/`/abort`) for in-flight turns, and file-attachment/media marker flow improvements for history replay and WebSocket envelopes.
fix: avoid command session lock reentry
Wire cancellation through process execution by registering the request token to terminate the spawned process tree, preventing orphaned processes from continuing after /stop-style interrupts. Also add /stop, /cancel, and /abort as recognized chat commands and return a clear response when no execution is active.
Normalize extraction destinations with `Path.GetFullPath` and skip entries that resolve outside the plugin directory. This adds a defense-in-depth check against ZIP path traversal during admin plugin/channel upload extraction, even though earlier validation already exists.
…m/clawdotnet/openclaw.net into Send-changes-back-to-the-upstream
Tightens security defaults and auth behavior by requiring HTTPS OIDC metadata in docs, disabling implicit static auth token in gateway defaults, and gating `/ws?token=` header bridging behind `AllowQueryStringToken`. It also hardens operator/admin handling (authorization flow, scope classification, async session listing), improves runtime safety (session delete locking, SQLite delete transaction, disposed-cancellation race handling), and fixes several tool/frontend edge cases (URI validation, safer media/download URLs, timeout handling, and small allocation/logic cleanups).
Add a DNS rebinding guard to `WebFetchTool` by validating resolved addresses at connect time before opening sockets. In the web chat client, sanitize uploaded and rendered attachment URLs so only `http:`, `https:`, and `/media/` links are used, falling back to `#` for unsafe values.
Tightens client-side URL handling for attachment links and artifact downloads in `webchat.js`. The update now only permits `http/https` URLs or `/media/` paths that do not contain traversal segments (`..`), defaults unsafe links to `#`, and surfaces clearer error messages for missing or unsafe download URLs.
Encode artifact file URLs before assigning them to links, and restrict authenticated download requests to same-origin `/media/` paths. This prevents malformed link URLs and avoids sending bearer tokens to external hosts while still allowing external HTTP(S) downloads.
Update endpoint auth gating to treat OIDC as enabled when an authority is configured, instead of relying on `IsOidcMode`. This makes loopback bypass behavior align with actual OIDC configuration and avoids auth decisions based on a potentially out-of-sync mode flag.
Tightened webchat artifact download validation to allow only same-origin `/media/` URLs with no path traversal. External URLs and malformed paths are now rejected with a clear error, and authenticated headers are always attached for valid media fetches.
Update the inline `echo-stdin.ps1` test scripts in `AgentRuntimeTests` and `MafAdapterTests` to read stdin via `Console.OpenStandardInput()` with `System.IO.StreamReader` instead of `Console.In.ReadToEnd()`. This makes stdin handling more reliable in the test execution environment.
…ream Send changes back to the upstream
|
Important Review skippedAuto reviews are disabled on base/target branches other than the default branch. Please check the settings in the CodeRabbit UI or the ⚙️ Run configurationConfiguration used: defaults Review profile: CHILL Plan: Pro Plus Run ID: You can disable this status message by setting the Use the checkbox below for a quick retry:
✨ Finishing Touches🧪 Generate unit tests (beta)
Thanks for using CodeRabbit! It's free for OSS, and your support helps us grow. If you like it, consider giving us a shout-out. Comment |
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
This pull request introduces several improvements and updates across documentation, CI configuration, and the .NET codebase. The main highlights are the addition of DeepSeek as a first-class native LLM provider (with full documentation and setup instructions), the introduction of the AgentQi Mobile companion app in docs and site maps, and important codebase improvements for thread safety and resource management. It also removes legacy Microsoft Agent Framework migration paths and clarifies configuration guidance.
Documentation updates:
README.md,docs/QUICKSTART.md, anddocs/GETTING_STARTED.md. [1] [2] [3] [4] [5] [6]Microsoft Agent Framework (MAF) migration cleanup:
Codebase improvements:
MafExecutionContexttoAgentExecutionContextand moves it to a more appropriate namespace, adding aTryGetCurrent()method for safer context access. [1] [2]IDENTITY.mdandMEMORY.mdworkspace files for richer agent context.OpenClawToolExecutoris made thread-safe by locking around shared state, and tool declaration access is now atomic and safe for concurrent operations. [1] [2]CI/CD updates:
setup-nodeaction to the latest commit hash for improved security and reliability. [1] [2]