github.com/obot-platform/obot
v0.25.1
#1785 most downloaded on Go modules
obot-platform/obot
What this package is like to depend on
Last release 2 days ago
21 Aug 2026
Ships on a steady schedule
a new release about every 8 days
Rarely documented
notes for 7 of 46 stable releases
Nothing withdrawn
no release was ever pulled
2 years old
2415 releases · first in 2024
2032 releases in the last 12 months
see the full history below
Release timeline
2415 releases · Feb 2026 to Aug 2026Releases
latest 60 of 2415-
v0.26.0-alpha1.0.20260821215609-ba10ff72473021 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260821183857-11851861b0f921 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260821154913-c3d419119e2b21 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260821024426-d0fb9efeb3ff21 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260820233630-69d9b386a01e20 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260820213403-1daa1eef49f620 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260820205304-2dc2ed89bde320 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260820150201-59e83903681e20 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260819185752-9d3bf9dbaf6c19 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260819172258-28305abbe57619 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260819160323-268a26830b1219 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260818191817-839e968f010018 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260818181420-446be4ad26b918 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260818043437-49099875e11f18 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260817201317-319d1ca6c0b917 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260814195228-a71bd40c8db514 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260814164524-4e865eff291a14 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260814155456-0bb89a60aebe14 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260814150109-f66e76d5538314 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260813234919-ba56e834adcf13 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260813220954-61242a1b7ea813 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260813155548-ed6e5308d49913 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260813150839-af9985b0892813 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260812224835-4b0ccbab6afe12 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260812205614-a3d62a35b3b012 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260812201051-3a23692a011212 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260812192058-0bf7c5cdf12a12 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260812015201-2c46bd5706b312 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260811213957-4e2fb062bea811 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260811202047-d6de87c465a111 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260811173414-48f69248b37111 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260811145949-d28ef133f18411 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260810173732-b496aa5d42b210 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260810161442-e7fecca6af8410 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260810130420-089293e48ee910 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260808110556-238244472fcd08 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260807234041-6748535b187f07 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260807205946-05825ccd063207 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260807190553-1e2b13c7633507 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260807161030-7eb0467f5f2207 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260807153336-92ddbc557a5507 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260807121643-4c52376d584b07 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260806003303-497a8b6ab20b06 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260805200516-0a991d37219a05 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260805183844-e749e5c62dfa05 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260805183431-71628fdbdf1c05 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260805162310-2639660ec23705 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha1.0.20260805151342-0a372ec68ab905 Aug 2026 pre-releaseNothing published for this version
-
v0.26.0-alpha104 Aug 2026 pre-releaseRelease notes
Open source →What's Changed
- fix: let websocket handlers under /api hijack the connection by @ibuildthecloud in #7442
- fix(ci): authenticate Depot on same-repo PRs and run CI on feat/* branches by @ibuildthecloud in #7470
- feat: add the hosted agent resource model (1/11) by @ibuildthecloud in #7459
- feat: add an interface for running agent sandboxes (2/11) by @ibuildthecloud in #7460
- feat: run agent sandboxes on Kubernetes (3/11) by @ibuildthecloud in #7461
- feat: let a sandbox reach the models and MCP servers it was granted (4/11) by @ibuildthecloud in #7462
- feat: attach a terminal to a sandbox and publish agents that serve HTTP (5/11) by @ibuildthecloud in #7463
- feat: wire the agent backend into the server (6/11) by @ibuildthecloud in #7464
- feat: reconcile hosted agents, pools and config sources (7/11) by @ibuildthecloud in #7465
- feat: add the hosted agents admin UI (9/11) by @ibuildthecloud in #7467
- feat: add the hosted agents user UI (10/11) by @ibuildthecloud in #7468
- feat: seed a default config source for hosted agents (11/11) by @ibuildthecloud in #7469
Full Changelog: v0.25.1...v0.26.0-alpha1
-
v0.25.2-0.20260804043556-5d60413f69f204 Aug 2026 pre-releaseNothing published for this version
-
v0.25.2-0.20260803230347-441a15c6f69803 Aug 2026 pre-releaseNothing published for this version
-
v0.25.2-0.20260803193209-33890ae1104d03 Aug 2026 pre-releaseNothing published for this version
-
v0.25.103 Aug 2026Release notes
Open source →What's Changed
- enhance: add configuration to force DCR by @thedadams in #7438
Full Changelog: v0.25.0...v0.25.1
-
v0.25.1-0.20260803181307-a77574a264c203 Aug 2026 pre-releaseNothing published for this version
-
v0.25.031 Jul 2026Release notes
Open source →We're excited to announce the v0.25.0 release of the Obot Platform. This release adds tool call enforcement for local AI clients, MCP tunnels for reaching MCP servers on private networks, Agent Auth Scopes, and a new set of Obot editions.
Big Updates
Tool Call Enforcement for Local AI Clients
Obot can now control which tool calls Claude Code, Codex, and Cursor are allowed to run on enrolled devices. Administrators define an allowlist as part of device management and Obot Sentry checks each tool call against it before the client runs the tool. A call runs only when an allow rule matches it.
A rule can cover a broad category, such as all Obot-hosted MCP servers or all built-in agent tools, or it can name a single MCP server by URL, hostname, npm or PyPI package, or connector display name. Enforcement fails closed, so Obot Sentry blocks any call it cannot match or cannot get a decision on. A new Enforcement Decisions view under Device Management records every call that was checked and shows why it was allowed or blocked.
Note: Tool call enforcement is experimental and is not yet recommended for production use, so test your allowlist on non-production devices first. Enforcement is also not supported for Visual Studio Code, because its pre-tool hook does not say which MCP server a tool belongs to. Local tool call auditing for Visual Studio Code continues to work. See #7425 for details.
See the docs for details.
MCP Tunnels
Obot can now reach remote MCP servers that run on a private network and are not routable from the Obot deployment. An
obot tunnelprocess runs on a machine that can reach both Obot and the private MCP server, and it opens an outbound, authenticated WebSocket connection that Obot sends requests through. The machine running the tunnel does not need an inbound port.Tunnels are especially useful if you use Obot Cloud, where we run Obot for you and it sits outside your network. You run the tunnel process inside your network, and you do not have to expose the server to the internet or open a port in your firewall.
Administrators create a tunnel under MCP Management > MCP Tunnels, and each tunnel carries a list of allowed URLs that Obot checks on every request. A remote MCP catalog entry then selects the tunnel by its ID. Tunnels also work across replicas.
See the docs for details.
Agent Auth Scopes
We reworked how you set up access for an autonomous or headless agent, so you can grant an agent only what it needs to do its job. What used to be called API keys are now called Agent Auth Scopes, and the change is the start of a larger effort to extend Obot's authorization model to more agentic workloads. You create a scope and Obot generates an API key that the agent uses instead of signing in through a browser.
A scope can be limited to specific MCP servers or to every server you can reach. On top of that, it can grant access to the Obot API, the LLM proxy, skill downloads, and device scans, and it can carry an expiration date.
The interface moved to match. Users now reach scopes from the top level of the Obot app navigation, and administrators reach them under Auth Management, which was previously called User Management.
See the docs for details.
Obot Community Edition and Usage Limits
Obot is now available in three editions. You can upgrade from one to the next inside the app without changing images or redeploying. The default Obot edition supports up to 100 users and 100 devices, with the GitHub, Google, and Local auth providers. Obot Community keeps the same limits and adds enterprise-grade auth providers such as Entra, Okta, JumpCloud, and Auth0. Obot Enterprise removes the limits and includes enterprise support.
See the docs for details and read the Upgrade Notes below before you upgrade.
Improvements
- Model access policies now accept only LLM models. Non-LLM models are pruned from the default policy, and Obot warns you to remove them from a custom policy.
- The getting started guides now cover device management and MCP filters, and the Obot Sentry guide has more detailed install steps.
- Missing Kubernetes secret bindings are now highlighted when you configure an MCP server.
- The license provider now handles multi-replica deployments better and no longer depends on a single replica.
- Auth provider HTTP calls no longer hold a database transaction open while they run.
- Provider model IDs that contain slashes now resolve correctly.
- OAuth error redirect descriptions are now sanitized before they are returned.
- The local auth provider login form now treats the password as sensitive input.
- Copying a code snippet no longer includes a trailing newline.
- Entries in the MDM download package are now stamped with a modification time.
Upgrade Notes
Obot end user licensing has changed. Starting with v0.25.0, Obot is offered in three editions, which are Obot, Obot Community, and Obot Enterprise. The code remains 100 percent MIT licensed, and parts that were previously closed source, including the enterprise auth providers and model providers, are now open source. Before you upgrade, check how the change affects your deployment:
- If you already have an Enterprise license, nothing changes for you.
- If you run without a license and have more than 100 users or devices, existing users and devices keep working, but you will not be able to add new ones.
- Model providers that previously required an enterprise license are now available at every edition.
- If you run without an enterprise license and use GitHub or Google as your auth provider, you are now subject to the 100 user limit, which did not apply to you before.
Tool call enforcement is not supported for Visual Studio Code. Claude Code, Codex, and Cursor support enforcement. Visual Studio Code does not, because its pre-tool hook does not say which MCP server a tool belongs to. Local tool call auditing for Visual Studio Code continues to work. See #7425 for details.
What's Changed
- fix: make the license provider more HA by @thedadams in #7292
- chore: update vulnerable dependencies by @calvinmclean in #7261
- fix: don't hold a DB transaction across auth provider HTTP calls by @ibuildthecloud in #7228
- chore: update vulnerable UI dependencies by @calvinmclean in #7304
- docs: update example k8s values file by @cloudnautique in #7306
- feat: tool-call enforcement backend for MDM configurations by @g-linville in #7282
- chore: remove Bifrost LLM dispatch by @calvinmclean in #7233
- chore: use CODEOWNERS for dependency reviews by @calvinmclean in #7316
- fix: intialize composite clients upfront by @thedadams in #7315
- feat: add Community Edition enrollment API and UI by @thedadams in #7303
- fix: highlight missing Kubernetes secret bindings by @calvinmclean in #7246
- enhance: admin devices & mcp filters getting started guide by @ivyjeong13 in #7319
- feat(tunnels): add managed MCP WebSocket tunneling by @thedadams in #7311
- fix: always set peer config in helm chart by @thedadams in #7327
- chore: update "getting started" obot sentry guide steps & text by @ivyjeong13 in #7326
- fix: send spec-ful issuer by @thedadams in #7328
- chore: add logging for oauth errors by @thedadams in #7329
- enhance: update My Api Keys -> Agent Auth Scope by @ivyjeong13 in #7323
- fix: remove undesired fields from the tunnels table by @thedadams in #7338
- feat: add support for user limits by @thedadams in #7322
- fix: resolve provider model IDs with slashes by @calvinmclean in #7307
- fix: ui changes for agent auto scope details & text updates by @ivyjeong13 in #7344
- fix(license): validate community email domains by @thedadams in #7342
- fix: prefer tunnel display name to id in errors by @thedadams in #7337
- chore(ui): update MCP tunnels by @thedadams in #7340
- fix: disallow removing in-use allowed URLs for tunnels by @thedadams in #7339
- fix(ui): offer community license from resolve dialog by @thedadams in #7345
- enhance: return user limit and user count in version API by @thedadams in #7349
- fix(ui): show disconnected MCP tunnel status by @thedadams in #7343
- feat: add ui for enforcement and backend tweaks by @g-linville in #7332
- chore: change Community Edition to Obot Community by @thedadams in #7351
- fix: use sensitive input for local auth login by @ivyjeong13 in #7346
- chore: change to forbidden status for too many users by @thedadams in #7360
- fix: disable interaction w/ "getting started" guides & add steps in obot-sentry guide by @ivyjeong13 in #7359
- fix: community edition license ui updates by @ivyjeong13 in #7352
- fix: reject resource URLs without an MCP ID by @thedadams in #7361
- docs: add enforcement by @g-linville in #7362
- fix(ui): avoid duplicate tunnel disconnected status by @thedadams in #7365
- fix: stamp MDM download zip entries with a modification time by @njhale in #7363
- chore: update docs w/ reskin api keys -> agent auth scopes by @ivyjeong13 in #7364
- enhance(devices): add limits similar to users by @thedadams in #7368
- fix: update licensing page & add community logo by @ivyjeong13 in #7370
- fix: strip trailing newline when copying code snippets by @njhale in #7372
- Route OAuth debugger requests through MCP tunnels by @thedadams in #7355
- fix(oauth): sanitize error redirect descriptions by @thedadams in #7369
- fix: ensure backend APIs are not authorized by UI by @thedadams in #7375
- chore: general ui cleanup by @ivyjeong13 in #7358
- docs/architecture diagram image by @cjellick in #7408
- docs: mention Cursor settings for enforcement by @g-linville in #7373
- fix: ensure caches are started before start the server by @thedadams in #7411
- fix: limit models & model access policy to llm/llm-mini by @ivyjeong13 in #7341
- fix: use creatable capabilities constant in agent auth scope details view by @ivyjeong13 in #7416
- fix(docs): disable Codex web search for Azure and Bedrock by @calvinmclean in #7418
- chore: bump obot-sentry default version to v0.1.4 by @njhale in #7421
- fix: set correct tab when linking to /admin/devices by @g-linville in #7419
- fix(ui): more general ui cleanup by @ivyjeong13 in #7422
- chore: update CLAUDE.md by @g-linville in #7415
- chore: enhancement UI: improve table by @g-linville in #7427
- fix: sticky audit log table headers when scrolling by @ivyjeong13 in #7428
- Docs: Explain new license tiers by @cjellick in #7424
- Docs: Cut v0.25.0 docs version by @cjellick in #7429
Full Changelog: v0.24.1...v0.25.0
-
v0.25.0-rc1.0.20260731220513-1f6ea1a88c9e31 Jul 2026 pre-releaseNothing published for this version
-
v0.25.0-rc1.0.20260731205051-82d46beeeb7231 Jul 2026 pre-releaseNothing published for this version
-
v0.25.0-rc1.0.20260731190921-551f5b712bdc31 Jul 2026 pre-releaseNothing published for this version
-
v0.25.0-rc1.0.20260731180426-539d72abc6c231 Jul 2026 pre-releaseNothing published for this version
-
v0.25.0-rc131 Jul 2026 pre-releaseRelease notes
Open source →What's Changed
- fix: make the license provider more HA by @thedadams in #7292
- chore: update vulnerable dependencies by @calvinmclean in #7261
- fix: don't hold a DB transaction across auth provider HTTP calls by @ibuildthecloud in #7228
- chore: update vulnerable UI dependencies by @calvinmclean in #7304
- docs: update example k8s values file by @cloudnautique in #7306
- feat: tool-call enforcement backend for MDM configurations by @g-linville in #7282
- chore: remove Bifrost LLM dispatch by @calvinmclean in #7233
- chore: use CODEOWNERS for dependency reviews by @calvinmclean in #7316
- fix: intialize composite clients upfront by @thedadams in #7315
- feat: add Community Edition enrollment API and UI by @thedadams in #7303
- fix: highlight missing Kubernetes secret bindings by @calvinmclean in #7246
- enhance: admin devices & mcp filters getting started guide by @ivyjeong13 in #7319
- feat(tunnels): add managed MCP WebSocket tunneling by @thedadams in #7311
- fix: always set peer config in helm chart by @thedadams in #7327
- chore: update "getting started" obot sentry guide steps & text by @ivyjeong13 in #7326
- fix: send spec-ful issuer by @thedadams in #7328
- chore: add logging for oauth errors by @thedadams in #7329
- enhance: update My Api Keys -> Agent Auth Scope by @ivyjeong13 in #7323
- fix: remove undesired fields from the tunnels table by @thedadams in #7338
- feat: add support for user limits by @thedadams in #7322
- fix: resolve provider model IDs with slashes by @calvinmclean in #7307
- fix: ui changes for agent auto scope details & text updates by @ivyjeong13 in #7344
- fix(license): validate community email domains by @thedadams in #7342
- fix: prefer tunnel display name to id in errors by @thedadams in #7337
- chore(ui): update MCP tunnels by @thedadams in #7340
- fix: disallow removing in-use allowed URLs for tunnels by @thedadams in #7339
- fix(ui): offer community license from resolve dialog by @thedadams in #7345
- enhance: return user limit and user count in version API by @thedadams in #7349
- fix(ui): show disconnected MCP tunnel status by @thedadams in #7343
- feat: add ui for enforcement and backend tweaks by @g-linville in #7332
- chore: change Community Edition to Obot Community by @thedadams in #7351
- fix: use sensitive input for local auth login by @ivyjeong13 in #7346
- chore: change to forbidden status for too many users by @thedadams in #7360
- fix: disable interaction w/ "getting started" guides & add steps in obot-sentry guide by @ivyjeong13 in #7359
- fix: community edition license ui updates by @ivyjeong13 in #7352
- fix: reject resource URLs without an MCP ID by @thedadams in #7361
- docs: add enforcement by @g-linville in #7362
- fix(ui): avoid duplicate tunnel disconnected status by @thedadams in #7365
- fix: stamp MDM download zip entries with a modification time by @njhale in #7363
- chore: update docs w/ reskin api keys -> agent auth scopes by @ivyjeong13 in #7364
- enhance(devices): add limits similar to users by @thedadams in #7368
- fix: update licensing page & add community logo by @ivyjeong13 in #7370
- fix: strip trailing newline when copying code snippets by @njhale in #7372
- Route OAuth debugger requests through MCP tunnels by @thedadams in #7355
- fix(oauth): sanitize error redirect descriptions by @thedadams in #7369
- fix: ensure backend APIs are not authorized by UI by @thedadams in #7375
- chore: general ui cleanup by @ivyjeong13 in #7358
- docs/architecture diagram image by @cjellick in #7408
- docs: mention Cursor settings for enforcement by @g-linville in #7373
- fix: ensure caches are started before start the server by @thedadams in #7411
- fix: limit models & model access policy to llm/llm-mini by @ivyjeong13 in #7341
- fix: use creatable capabilities constant in agent auth scope details view by @ivyjeong13 in #7416
- fix(docs): disable Codex web search for Azure and Bedrock by @calvinmclean in #7418
- chore: bump obot-sentry default version to v0.1.4 by @njhale in #7421
Full Changelog: v0.24.1...v0.25.0-rc1