feat(plugins): public subagent lifecycle API (salvage #63359) - #72501
Merged
Conversation
…mon pool Follow-ups on the salvaged #63359: - _finalize_child_results carries tool_call_history on subagent_stop (the #62011/#72403 field landed after the PR branched; the shared pipeline must emit it for both delegate_task and plugin-launched children). Lifecycle test updated for the new payload field. - The lifecycle executor uses DaemonThreadPoolExecutor — a wedged or abandoned child must never block interpreter exit at atexit-join time (same rationale as _run_single_child's timeout executor and the async-delegation pool). - delegate_task's batch path keeps live-transcript wiring while routing child construction through the shared _build_child_preserving_parent_tools helper.
Contributor
૮ >ﻌ< ა ci reviewran on 45b8189 ℹ️ InfoDesktop E2E visual evidence · View test artifacts · View job1 visual diff. inline evidence upload failed. Failed to upload diff-665a0833239e-onboarding-overlay-diff.png with gh image (exit code 1): Error uploading /home/runner/work/_temp/e2e-evidence/diff-665a0833239e-onboarding-overlay-diff.png: step 0 (get upload token): uploadToken not found on repo page — do you have write access to NousResearch/hermes-agent? (or, if NousResearch enforces SAML SSO, authorize at https://github.com/orgs/NousResearch/sso) |
This was referenced Jul 27, 2026
teknium1
added a commit
that referenced
this pull request
Jul 27, 2026
…ents live status, runs-stream subagent lifecycle Catch the docs up to this week's delegation work: - delegation.md: structured timeout metadata fields (timeout_seconds/ timed_out_after_seconds/timeout_phase, #72403); new 'Stall Detection for Background Subagents' section (progress-based monitor, thresholds, grace window, stalled event metadata, root-cause fix note — #72227/ #72300/#72412); /agents per-child live activity on CLI + gateway; all-thread diagnostic dump note. - api-server.md: /v1/runs events stream now documents subagent.start/ subagent.complete forwarding, redaction, child_session_id, and the deliberate exclusion of per-tool child events (#72406). - sidebars.ts: register the subagent-lifecycle-api developer guide page (shipped in #72501 but absent from the sidebar). Docusaurus build verified.
imasaru
added a commit
to imasaru/hermes-agent
that referenced
this pull request
Jul 29, 2026
* chore(contributors): map gercamjr for the #68945 salvage
* fix(timeouts): add claude-fable to reasoning stale-timeout floor table
claude-fable-5 is a Mythos-class reasoning model (1M context, 128K output,
adaptive thinking per anthropic_adapter.py) but was missing from the
_REASONING_STALE_TIMEOUT_FLOORS table. Without a floor entry it got the
default 180s stale timeout (300s with context scaling), which is too short
for fable-5's thinking phase on large contexts.
Each stale kill bumped the cross-turn circuit breaker streak; after 5
consecutive kills _check_stale_giveup() fired immediately (elapsed: 0.00s),
aborting all calls with "Provider has been unresponsive for 5 consecutive
stale attempts." Users with 191K-token contexts hit this reliably.
Add ("claude-fable", 600) — deep-reasoning tier alongside o1/deepseek-r1/
nemotron-3-ultra. The claude-fable slug matches claude-fable-5 and future
variants via the existing right-anchor regex.
* chore: add contributor mapping for reinbeumer@gmail.com
Needed for PR #72677 attribution check.
* fix(update): refresh runtime modules before lazy backends
Refresh update-sensitive modules before lazy backend refresh so an in-place git update does not keep using pre-pull module objects when newly pulled code imports fresh helpers.
Constraint: Issue #60242 reports post-update lazy backend refresh importing stale hermes_constants after a large Windows update.
Rejected: Only clearing __pycache__ earlier | the update process can still hold old modules in sys.modules.
Confidence: high
Scope-risk: narrow
Directive: Keep update-time lazy refresh guarded against in-process code skew after git pull.
Tested: ./.venv/bin/python -m pytest tests/hermes_cli/test_update_autostash.py::test_cmd_update_reloads_runtime_modules_before_lazy_refresh tests/hermes_cli/test_update_autostash.py::test_reload_updated_runtime_modules_restores_new_hermes_constants_symbol -q
Tested: ./.venv/bin/python -m pytest tests/hermes_cli/test_update_autostash.py -q
Tested: ./.venv/bin/python -m ruff check hermes_cli/main.py tests/hermes_cli/test_update_autostash.py
Tested: ./.venv/bin/python -m py_compile hermes_cli/main.py tests/hermes_cli/test_update_autostash.py
Tested: git diff --check
Not-tested: Windows v0.14.0 to v0.18.0 end-to-end update.
* fix(update): close the stale-bytecode class with a launch-time checkout-fingerprint sweep
The stale-.pyc bug class (#6207, #60242, live WhatsApp report: gateway
ImportError 'cannot import name parse_model_flags_detailed' after /update)
has one shared shape: the checkout's .py files change while __pycache__
retains bytecode from the previous revision, and a later process trusts
the stale .pyc.
Update-time clears can never fully close this class: 'hermes update'
always executes the PRE-pull updater code, so hardening added to it takes
effect one update late — and a manual 'git pull' never runs the updater
at all.
Class fix:
- Launch-time guard in main(): compare the checkout fingerprint (cheap
file reads via _read_git_revision_fingerprint, no git subprocess)
against a .bytecode-fingerprint stamp; sweep __pycache__ once when they
diverge. Covers manual pulls, old updaters, ZIP restores — every entry
point (CLI, gateway service, desktop backend) passes through main().
- Record the stamp at all three update-time clear sites (git path pre-
install, git path post-install, ZIP path) so a normal update never
triggers a redundant launch sweep.
- Sibling site: 'hermes plugins update' + dashboard plugin update now
clear __pycache__ under the plugin dir after git pull (plugin trees
live outside the repo guard).
E2E validated: reproduced the stale-pyc shadowing (same-size same-mtime
source swap → old symbol wins in a fresh process), confirmed the launch
sweep restores the new symbol, no-ops when the checkout is unchanged,
and re-sweeps on the next pull. Sabotage-tested: reverting the sweep
fails 4 of the new tests.
* docs(delegation,api): document stall detection, timeout metadata, /agents live status, runs-stream subagent lifecycle
Catch the docs up to this week's delegation work:
- delegation.md: structured timeout metadata fields (timeout_seconds/
timed_out_after_seconds/timeout_phase, #72403); new 'Stall Detection
for Background Subagents' section (progress-based monitor, thresholds,
grace window, stalled event metadata, root-cause fix note — #72227/
#72300/#72412); /agents per-child live activity on CLI + gateway;
all-thread diagnostic dump note.
- api-server.md: /v1/runs events stream now documents subagent.start/
subagent.complete forwarding, redaction, child_session_id, and the
deliberate exclusion of per-tool child events (#72406).
- sidebars.ts: register the subagent-lifecycle-api developer guide page
(shipped in #72501 but absent from the sidebar).
Docusaurus build verified.
* fix(tui-gateway): guard entry signal installs to main thread
Importing tui_gateway.entry from a worker thread raised
'ValueError: signal only works in main thread of the main interpreter'
because signal.signal() was called unconditionally at import time.
On the Desktop/WebSocket path, server._build() runs in a daemon thread and
does 'from tui_gateway.entry import ensure_mcp_discovery_started' as the
first import of entry (entry.main() is never run there), which crashed and
aborted MCP discovery startup — every session then lost its MCP servers
(e.g. Dart-mcp) with ClosedResourceError.
signal handlers are process-global, so installing them only when the module
is first imported in the main thread is sufficient; importing from a worker
thread becomes a safe no-op.
Fixes #72667
* fix: update signal guard test for _install_signal refactor (#72677)
The change-detector test asserted 'hasattr(signal, "SIGPIPE")' in source.
PR #72677 replaced inline hasattr+signal.signal with _install_signal()
which does the same guard via getattr internally. Update the test to
accept either form.
* fix(desktop): preserve OAuth sessions in sidebar
* fix(desktop): reuse global remote backend across profiles
Keep non-primary profiles that inherit the app-global remote on the primary connection descriptor instead of creating processless pool entries that the idle reaper repeatedly removes.
Preserve per-profile remote overrides and local pooled backends, and cover the routing policy with behavioral tests.
Co-authored-by: Rodrigo Fernandez <rodrigo@nxtlevelsaas.com>
* fix(desktop): retire pooled remote backends whose host went away
A pooled backend entry pointing at a remote host has no child process, so
the 'exit' handler that clears a dead local backend never fires. The
renderer's 60s keepalive touch also spares it from the idle reaper. Nothing
was left to retire the descriptor, so once the host went away the pool kept
serving it and every profile bound to that host stayed broken until restart.
Pooled remote descriptors now share the primary's liveness policy: probed on
the same revalidate tick, keyed per base URL, and dropped only after the
same consecutive-failure limit, so the next ensureBackend() rebuilds.
Co-authored-by: Rodrigo Fernandez <rod@nxtlevel.dev>
* fix(desktop): record main-process faults in desktop.log
Electron pre-installs its own uncaughtException listener and only warns on
unhandled rejections, so a main-process fault usually leaves the app running
with the reason on stderr — which nothing captures when the app is launched
from Finder or the Start menu. The fault never reaches desktop.log, so it is
absent from `hermes debug share` and the user can only describe symptoms.
Record both to desktop.log and flush synchronously, since a fault that does
prove fatal leaves no chance for the batched async flush. Five loadURL calls
were also unhandled, each able to leave a blank window with no explanation
anywhere the user can send us; they now name the surface that failed.
Co-authored-by: Rodrigo Fernandez <rod@nxtlevel.dev>
* refactor(desktop): resolve profile backend routing from one table
Three helpers each re-derived part of the same decision: which backend
serves profile P, and does its REST path need a `?profile=` scope.
profileUsesPrimaryBackend answered the first half, pathWithGlobalRemoteProfile
answered the second, and ensureBackend re-checked globalRemoteActive() around
both. Splitting one table across three predicates is how the global-remote
case ended up registering reapable pool entries for a backend it never owned.
resolveProfileBackendRoute() states the four routes in one place and returns
the backend, the descriptor scope, and whether the path needs a query
parameter. The call sites read the answer instead of recomputing it.
One behavior change falls out: `hermes:api` now passes the primary profile
through, so the primary no longer sends itself a redundant `?profile=<self>`
on a global remote that already serves it.
* chore: credit the contributors this cluster is built from
Co-authored-by: Rodrigo Fernandez <rod-nxtlevel@users.noreply.github.com>
Co-authored-by: sealca <sealca@users.noreply.github.com>
Co-authored-by: Vitor Cepeda Lopes <TheAngryPit@users.noreply.github.com>
Co-authored-by: Gille <4317663+helix4u@users.noreply.github.com>
Co-authored-by: nrmjeremy <nrmjeremy@users.noreply.github.com>
* fix(session): persist tool activity before projection
* fix: follow-ups for salvaged PR #72425
- codex app-server sibling path: surface a WARNING (was silent debug) when
the projected-message flush fails — same bug class as the main fix, but
codex output has already streamed so fail-closed and agent_persisted=False
are both wrong here (#860/#42039 duplicate-write hazard); loud durability
gap logging instead.
- map session_persistence_failed in _format_turn_completion_explanation so
the user sees an actionable reason instead of 'The request failed:
unknown error' + explainer test.
- contributors/emails mapping for elco@thedaoist.gg (attribution CI).
* test: set _incremental_persistence_failed=False on MagicMock agent
PR #72425 added getattr(agent, '_incremental_persistence_failed', False)
checks at the top of execute_tool_calls_{sequential,concurrent,segmented}.
A bare MagicMock auto-creates a truthy value for any attribute access,
so the interrupt-skip test's MagicMock agent short-circuited before
appending cancelled-tool messages — assert len(messages)==3 got 0.
Production is unaffected: run_conversation resets the flag to False
explicitly at turn start (conversation_loop.py:~1028).
* feat(gateway): session activity watchdog, stall notify, compress timeout (#72424)
Three mechanisms to detect and notify when gateway sessions stall silently:
1. Mid-turn activity heartbeats stamped to SessionDB so hermes sessions list
and hermes status show progress during long turns without new message rows.
2. Stall watchdog: when a busy session has pending inbound and the shared
activity clock is idle past agent.session_stall_timeout (default 300),
log a WARNING and notify the user once to try /new. Notify-only; does
not kill the turn.
3. Compaction timeout: fenceless compress_context callers get a progress-aware
host budget (compression.context_timeout_seconds default 120 idle,
compression.context_total_ceiling_seconds default 600 ceiling). On timeout,
cancel via commit fence, skip compaction without dropping messages, and
continue the turn.
Closes #72016 (slices 1-3; slice 4 cumulative SSE stream-retry deadline
remains a follow-up).
Cherry-picked from PR #72424 by @fangliquanflq.
* refactor: reuse existing utilities in salvaged PR #72424
Three code-reuse fixes applied during salvage:
1. Reuse _relative_time from hermes_cli/main.py instead of duplicating
the relative-time formatting logic in hermes_cli/status.py.
2. Extract _stamp_hygiene_compression_provenance helper in gateway/run.py
to deduplicate the two nearly-identical try/except blocks that stamp
compression timeout/abort provenance in the hygiene path.
3. Add ContextCompressor.record_timeout_failure() method and use it from
the in-agent compress_context timeout callback instead of re-implementing
the (60, 300, 900) cooldown ladder inline. The existing summary-LLM
exception handler already has this ladder — now both paths share one
method.
* chore: add contributor mapping for fangliquanflq (#72424)
* fix: propagate logging session context after daemon-pool compress_context
compress_context now runs on a daemon pool worker thread (via
run_compress_context_with_progress_timeout). The session id rotation
updates hermes_logging._session_context (a threading.local) on the
WORKER thread, not the caller thread. After the wrapper returns,
propagate self.session_id back to the caller's logging context so
subsequent log lines carry the rotated id (#34089).
Fixes CI failure in test_compression_logging_session_context.
* revert: PR #72817 — session activity watchdog, stall notify, compress timeout
Reverting #72817 (salvage of #72424) pending further review.
All 4 commits reverted: feat, refactor, chore (contributor map), CI fix.
* fix(agent): redecorate prompt-cache breakpoints after provider failover
try_activate_fallback refreshes the cache policy flags for the new
provider, but the retry loop reused the primary's decorated api_messages.
Cache-off→cache-on shipped zero breakpoints; cache-on→cache-off left
stale markers. Strip and re-render at each retry attempt (same chokepoint
as reasoning-echo reapply), peel/rebase MoA guidance so the last marker
stays off the turn-varying block, and rebuild the static system prefix
when caching becomes active mid-turn (#72626).
* test(agent): cover prompt-cache redecoration across failover policy changes
Add strip_anthropic_cache_control coverage and policy-change cases
(cache-off→on, on→off, native→envelope, MoA guidance outside marker)
that TestSyncFailoverPreservesCacheDecoration did not exercise.
* fix(agent): restrict strip flatten to decoration-produced shapes
strip_anthropic_cache_control flattened ANY pure-text multi-part content
list with a separator-less join. Decoration only ever produces a single
text part or the 2-part [static, volatile] system split; organic
multi-part text (merged user turns, imported transcripts) got word-jammed
and parts carrying extra keys (citations) were silently dropped — on the
common no-failover path, since redecoration runs on every attempt.
Restrict the flatten to the exact decoration-produced shapes and make
marker removal copy-on-write on part dicts (the per-call message copy is
shallow, so parts alias the persistent history).
* refactor(agent): share static-prefix reconstruction, memoize failed rebuilds
The static-prefix reconstruction pattern (build_system_prompt_parts ->
['stable'] -> startswith gate -> fail-open) existed in three copies:
session restore (conversation_loop), compression keep-prompt path
(conversation_compression), and the new failover redecoration helper.
Hoist it into agent/system_prompt.reconstruct_static_prefix and call it
from all three sites.
Also memoize failed rebuilds per stored prompt (_static_rebuild_failed_for):
the redecoration chokepoint runs at the top of every retry attempt, and a
persistent stable-tier mismatch (restored session whose SOUL.md/skills
changed since save) would otherwise re-run the full prompt build — SOUL.md,
context files, memory I/O — on every attempt of every API call for the
life of the session. A legitimately changed stored prompt retries once.
* fix(agent): rebase MoA prepared request even when guidance is empty
guidance=None is a real prepared shape (all references failed / silent
degraded policy builds prepared_request without attaching guidance), and
the MoA facade sends prepared['messages'] — not api_kwargs['messages'].
Gating the rebase on 'and guidance' left the stale decoration in the
prepared object for the no-guidance MoA sub-path, so #72626 persisted
there. rebase_prepared_request already handles falsy guidance (copies
messages, skips the attach).
* refactor(moa): co-locate guidance peel with attach, add round-trip contract
_peel_moa_guidance hand-implemented the inverse of moa_loop's
_attach_reference_guidance from a different module — a drifting separator
or shape would make the peel silently no-op and put the last cache
breakpoint on the turn-varying guidance block (the #72626 bug class).
Move the inverse into moa_loop.peel_reference_guidance directly adjacent
to the attach, keep a thin wrapper in conversation_loop, and pin the
contract with a round-trip test over all three attach shapes.
Also fix the empty-list residue: peeling a guidance-only content part now
drops the whole message (mirroring the appended-user-message shape)
instead of leaving an empty-content user turn behind.
* refactor(agent): direct flag access in redecoration, matching call-block site
The call-block decoration reads agent._use_prompt_caching / _cache_ttl /
_use_native_cache_layout directly; the redecoration helper wrapped each in
getattr with divergent defaults (e.g. or-'5m' vs verbatim _cache_ttl).
The flags are unconditionally initialized on AIAgent, so the defaults
served only test fixtures and would mask a real init bug as silent
cache-off. Align with the house style.
* fix(desktop): paint the titlebar with the sidebar's surface color
The shell titlebar declared no background of its own, so it showed through\nto the wrapper's --ui-bg-chrome and read as a lighter band above the\nsession list. Use --ui-sidebar-surface-background, the token the sidebar\nalready paints with, so the two chrome surfaces meet on the hairline\ninstead of a color change.
* fix(gateway): let `@` completion find folders by name
The fuzzy branch of `complete.path` ranked basenames from
`_list_repo_files`, which lists files only, so a directory was only ever
reachable by typing a `/` — `@Desktop` returned nothing at all. Rank each
ancestor directory alongside the files, and break same-tier ties toward
the folder so `@docs` leads with `docs/` rather than `docs.md`.
Outside a git repo the fallback `os.walk` compounded this: it can spend
the whole `_FUZZY_CACHE_MAX_FILES` budget inside one deep subtree before
reaching a sibling, hiding top-level folders entirely. Seed the scan with
a `listdir` of the root so immediate children are always candidates.
* fix(desktop): keep the `@` popover open while typing a path
`AT_TRIGGER_RE` excluded `/` from the query, so the trigger died on the
first separator: `@/desk`, `@./www`, `@~/Desktop` and even `@file:src/foo`
all stopped matching the moment a path appeared. The gateway already
answered those queries correctly — the composer just never asked.
A `/` inside an `@` token is navigation, not a delimiter. The token stays
whitespace-bounded, which is what actually ends it.
* fix(desktop): sit composer chips on the text baseline
`align-middle` centers a pill on the x-height midpoint, which sits above
the center of the surrounding text box, so chips rode visibly low against
the words they're nestled between. Measured against the rendered surface,
`-0.12em` lands the chip's own baseline within 0.08px of the line's
(vs 0.79px off before) without growing the line box.
Applies to both the directive and slash chip classes — they share a line,
so fixing one and not the other just moves the mismatch.
* fix(desktop): paint diffs from the theme palette
Diff add/remove lines were hardcoded to Tailwind's emerald/rose while the
overview ruler beside them — and the rest of the app — used --ui-green /
--ui-red, so every diff sat slightly off-brand and stayed put when the
semantic palette moved. Derive the tint, gutter, and text from those two
colors instead. One renderer feeds the tool card, the file preview, and
the review pane, so all three follow.
* fix(desktop): don't alert for prompts a reconnect replayed
A socket opening replays state that already existed — a session parked on
an approval re-emits its request so the UI can draw the prompt. Those
arrive as ordinary events, so launching Hermes, switching profiles, or
riding out a reconnect fired an OS notification for a prompt the user had
known about for an hour.
Hold native notifications for a beat after any gateway opens. The sidebar
row and the inline approval bar still appear immediately; only the OS
notification waits for something that actually just happened.
* fix(desktop): time a stream stall from the last activity
The tail "Hermes is thinking" indicator resets on every flush, but its
timer never did: with no timer key, useElapsedSeconds anchors to mount,
and the indicator mounts with the assistant message. A stall two minutes
into a turn therefore claimed two minutes of silence instead of the two
seconds that had actually passed.
Give the hook an explicit epoch and hand it the timestamp of the activity
the quiet spell followed. Compaction still counts from the turn's start,
which is the span it owns.
* feat(desktop): confirm before quitting with a turn in flight
Cmd-Q went straight through to teardown, killing the backend mid-tool-call
— the turn is gone and whatever the agent was part-way through writing
stays part-way written, with nothing on screen to warn about it.
Renderers now report which chats are mid-turn; before-quit merges the
reports and asks, naming them, defaulting to Keep Running. Update, swap,
and uninstall relaunches skip the prompt: those are the app replacing
itself, and a modal there would strand the detached script waiting on a
PID that never exits.
* refactor(desktop): name the overlay z-index ladder
DESIGN.md already said app-wide surfaces must not compete through ad-hoc
z-index literals, and the code disagreed: three overlapping numbering
schemes, and comments narrating the fight ("defaults to z-130, renders
UNDER the onboarding overlay (z-1300) ... bump it above with z-[1310]").
Picking a number meant reading someone else's near miss.
Name the rungs — modal, over-modal, switcher, and the boot chain — and
point the call sites at them. Every rung keeps the exact value it had, so
nothing moves; what changes is that the next overlay has a name to reach
for instead of a number to guess. Local stacking within a component stays
on plain z-10/z-20.
* style(desktop): drop the titlebar and statusbar edge rules
The window chrome bracketed the workspace with a 1px rule top and bottom.
Both bars already paint the sidebar surface, so the rules divided one
continuous color rather than separating two.
* feat(desktop): mark the active pane tab with a primary underline
The active tab was defined by absence: the strip painted a rule and the
tab covered it, so inactive tabs stopped a pixel short to let it show.
Draw the state instead. The tab carries its own 2px --theme-primary
underline and the strip's rule goes away, which lets tabs run full height
and removes PANE_TAB_STRIP_LINE along with it.
* style(desktop): fade split sashes until hover
The seam hairline sat at full strength on every split, so an empty
workspace read as a wireframe. Hold it at 0.1 and bring it up with the
grab band already on hover.
* feat(gateway): group unplaced sessions into a Home bucket in the project tree
Sessions with no cwd — or whose folder can't be promoted to a project (the
bare home dir, a deleted workspace, HERMES state) — were dropped from the
project tree entirely, so the grouped sidebar silently showed fewer chats
than flat Recents. Collect them into a synthetic `__no_project__` node at
the head of the list. It carries one lane purely to hold the rows, and is
omitted when empty so a project-less install stays blank.
* i18n(desktop): name the project-less bucket "Home"
The sidebar row is a place you enter, not a status line, so it reads as a
destination rather than "No project".
* feat(desktop): pin Home to the top of the project sidebar
Home leads the overview above the active project and outside any drag
order, drills in to a flat chat list (it has no repo or worktree
structure), and overlays live sessions so a brand-new detached chat
appears instantly. Starting a chat from inside Home stays detached
instead of picking up the configured default project dir. Rename and
delete are hidden — there's no record behind the row.
* fmt(js): `npm run fix` on merge (#72902)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
* fix(desktop): let automated teardown quit past the active-work prompt
Playwright closes the app with a turn still in flight, so the new quit
confirmation waited on a click nobody was there to make and the E2E
worker died on a 90s teardown timeout.
* feat(desktop): Tab into a folder from the `@` popover
Tab and Enter shared one branch, so picking a folder always committed a
chip and closed the menu — the list could show `apps/` but never open it.
Reaching a nested path meant typing every segment by hand.
Split the two intents. Tab re-types the token as a bare path so the next
completion lists that folder's children; Enter still commits the folder
itself as a chip. Files ignore the distinction — there's nowhere deeper
to go. Backspace mirrors the descent, dropping one path segment per press
instead of one character, so climbing out costs the same as going in.
* style(desktop): drop the session counts inside an entered project
The sidebar's flat session list lost its `x/<total>` chip in #72336, but
the project drill-in kept counting: WorkspaceHeader still rendered a
SidebarCount for every repo and every branch/worktree lane. Entering a
project put a number next to each label again.
Remove the header's count slot and both call sites, along with the now
dead repo total.
* fix(browser): stop stale cdp_url from stalling every startup by 10+ seconds
Tool-schema assembly at CLI/Desktop startup runs the browser-family
check_fns (browser, browser_cdp, browser_dialog, browser_vision). Each
of those gates called _get_cdp_override(), which resolves the configured
endpoint over HTTP (GET /json/version, timeout=10) — so a *stale*
browser.cdp_url pointing at a dead debug browser cost ~7 serial blocking
socket connects before the banner rendered. Measured on a real Windows
install with a dead http://[::1]:9222 config: 15.1s of an 18s launch,
with no warning or error — just mystery slowness. The value is easy to
leave behind: /browser connect writes a session-scoped env override, but
'hermes config set browser.cdp_url' persists forever while the debug
Chrome it pointed at dies on the next browser restart.
Split the helper:
- _get_cdp_override_raw() — returns the configured value (env var or
config.yaml) with zero network I/O. Used by every is-it-configured
gate: check_browser_requirements, _browser_cdp_check, _is_local_mode,
_is_local_backend, _navigation_session_key, _should_inject_engine
(via _is_local_mode), and the hermes doctor chromium-skip check.
- _get_cdp_override() — unchanged contract (raw + /json/version
resolution), now only called on paths that are about to connect:
session creation and the dialog-supervisor attach.
This follows the existing rule in check_browser_requirements ('do not
execute agent-browser --version here') and the browser.manage status
path, which already banned _get_cdp_override for exactly this reason
(test_browser_manage_status_does_not_call_get_cdp_override): schema
assembly must not perform blocking I/O.
A/B on the same machine, same dead endpoint: get_tool_definitions()
15.08s unpatched -> 1.89s patched, with browser_cdp/browser_dialog
still advertised (gate now keys off configuration, not reachability —
matching the documented lazy-supervisor contract in
_browser_dialog_check).
Adds a regression test asserting the browser_cdp check_fn never touches
the network.
* fix(desktop): preserve live model after settings save (#72903)
* refactor(desktop): simplify free-text slash mode check (#72815)
* feat(desktop): let the status bar be hidden
The bar is always-on chrome today. Hiding it is `⌘⇧S`, the ⌘K palette, or
the bottom row of its own right-click menu — VS Code's set of doors, minus
their unbound default (they ship `toggleStatusbarVisibility` with no
keybinding and Hermes has no chord dispatcher for a `⌘K ⌘S` two-stroke).
Hidden unmounts the bar rather than hiding it, so the 15s status poll and
the per-turn readouts stop with it. Visibility persists per window profile
and defaults on.
* refactor(desktop): lift the completion-accept decision out of the keydown ladder
Which keys accept the highlighted completion was an inline condition in the
composer's keydown god-function, untestable without a DOM harness. Move it to
a pure helper beside the other slash-query utilities.
* fix(desktop): don't let Enter swap a free-text slash argument for a completion
`/goal` keeps its completion popover open across arbitrary prose so its
subcommands stay reachable. The popover highlights its first row on open, and
Enter accepted that highlight unconditionally — so pressing Enter to send
`/goal ship the redesign` would replace the sentence with a row the user never
chose. Space was already guarded; Enter and Tab were not.
Enter now accepts only after the user has arrowed to a row deliberately, so
the highlight never lies about what Enter will do. Tab stays an unconditional
accept, since it means nothing else in the composer.
This is latent rather than reproducible today: `/goal` is absent from
`SUBCOMMANDS` (its `args_hint` pipes are spaced, so the extraction regex
misses them), so the backend returns no arg completions and the branch never
runs. Giving `/goal` the subcommands it already advertises would resurrect
the #71963 symptom in a worse form — losing the prose instead of chipping it.
* refactor(desktop): put every preview on one rail tab list
The right rail held two things at once: a list of file tabs, and a
privileged "live preview" slot with a hardcoded `preview` tab id backed by
a separate session-keyed registry. The two were written under different
session-id rules and reconciled against each other, so an `open_preview`
from a session whose stored id hadn't landed yet was set and then
immediately cleared — the pane flashed and vanished. Artifacts arrived as
a third list with their own pane and renderers.
Now everything the rail can show is a `PreviewTarget` in `$previewTabs`,
and `openPreview` is the only way in. `$previewTarget` is a computed read
of the active tab, the session registry and its reconciler are gone, and
artifacts render in the real preview pane through the shared mode switcher
and source view instead of a parallel one. Artifact tabs stay memory-only
since the registry rebuilds from the transcript.
* fix(desktop): scope composer and transcript state to their own session
`$activeSessionId` only ever holds the primary chat's session, but surfaces
that render once per transcript were reading it as if it meant "the session
on screen." A preview produced inside a session tile was recorded under the
main chat's key and surfaced in the main chat's composer, which is what
prompted this.
The tool row now records under its own `SessionView`, and the same fix
applies to the other readers of that atom that render per surface:
attachment pills and inline preview links resolve relative paths against
their session's cwd, composer voice and auto-speak read and subscribe to
their own transcript, and the thread's compaction label, prompt-wait gate
and turn timer follow the session that mounted them. `ComposerScope` now
carries a `$messages` atom rather than a read closure so both the
imperative read and the subscription come from one place.
* fix(desktop): open a preview without dragging the file tree open
The preview pane shares a collapsible column with the file tree, and
`revealTreePane` un-collapses a column through that column's bound store —
which on the right is `$fileBrowserOpen`, the tree's own ⌘J toggle. So
every preview open literally called `setFileBrowserOpen(true)` and the tree
came with it.
`revealPreview` now un-collapses the column directly and leaves the toggle
alone. The tree pane's visibility binding gains `$fileBrowserOpen` to match,
since its presence was tracking only the column's collapse — without that it
would still render the moment anything opened the column.
* style(desktop): sit every pane tab strip on the sidebar surface
The strips painted with `--theme-card-seed` — the raw, unmixed seed rather
than a surface token — so they read as their own band beside the sidebar and
titlebar, which share `--ui-bg-sidebar`.
Fixed at the default in `PaneTab` rather than per strip. The right-rail
preview strip never set the vars at all, so its inactive tabs fell through
to the seed even though its container was already on the sidebar surface;
correcting the fallback fixes that one for free and keeps the next strip
from regressing. With the default right, the two zone strips no longer need
to redeclare the var and paint the token directly.
* fix(desktop): keep /resume's free-text search typeable
/resume was classified as an options command, but its argument is a
free-text query the picker fuzzy-matches against session titles and
previews. Its completion list also always ends in a "Browse all
sessions…" action row, so Space-to-accept never fell through to an
empty list: the first space in a multi-word query emptied the composer
and threw the user into the overlay, query and all.
Classify it as mixed so spaces type through, matches keep narrowing as
you refine, and Tab or arrow-then-Enter still accept a highlighted
session.
* feat(desktop): summarize a run of tool calls as one line
Adds the grammar behind "Edited wiring.tsx, explored 3 files, ran 5
commands": one clause per category of work, a name when the category
holds a single thing and a count otherwise, and the present tense for
whichever category is still running.
The continuity test is the load-bearing part. Tool grouping was reverted
once because it reshuffled the moment a turn settled, so this replays the
same turn twice — as the gateway event stream the live view builds
bubbles from, and as the rows toChatMessages rehydrates on resume — and
asserts both produce the same runs.
* feat(desktop): collapse a settled tool run to its summary line
A run of two or more tool calls now renders behind its summary once it
has finished, so a long transcript reads as what the agent did rather
than as a wall of rows. The run is keyed by its first tool call instead
of its part index: live and rehydrated turns agree on which calls belong
together but not on the indices they land at, and keying by index is what
made the previous attempt reshuffle on settle.
A run holding anything still pending always renders its rows, which is
what keeps a clarify question or an approval bar out from behind a
chevron. The approval-group tests move to tool-group and grow coverage
for both halves of that rule.
* feat(desktop): report how long the model thought
A settled reasoning block reads "Thought for 5s" instead of staying
"Thinking" forever. Nothing in the persisted turn records the duration,
so the number is frozen when the block finishes on screen and simply
omitted on a rehydrated turn, rather than reporting whatever a timer that
never ran would say.
* docs(desktop): explain what UNBOUNDABLE_TOOLS now guards
The list gates two behaviours since the settled-run summary landed, but
the comment still justified it only in terms of the scroll window's
height cap. Record the pending-row rule that keeps approvals visible,
and why file edits stay off the list.
* fix(desktop): settle a tool run whose calls never resolved
A run inferred "still working" from a missing result alone, so a call
left unresolved — by an interrupted turn, or an agent that moved on —
pinned its run as live forever. That stranded the summary in the present
tense ("Exploring 2 files" on a finished turn) and, because a live run
withholds its toggle so approvals can't hide, left the run permanently
expanded with no way to collapse it.
Qualify liveness the way ToolEntry already qualifies a row's: a missing
result only means pending while the run is the tail of a running
message. Liveness is now passed into summarizeToolRun rather than read
off the calls, since it isn't a property of the calls.
* fix(desktop): say a sub-second reasoning block was brief
The elapsed timer counts whole seconds, so reasoning that finished
inside one rendered as "Thought for 0s" — accurate and useless, and on a
turn with several short blocks it repeats down the transcript. Drop the
number below a second and say it was brief instead.
* fmt(js): `npm run fix` on merge (#72967)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
* refactor(desktop): give live tool runs a one-line ticker
A live run was the settled view under a CSS max-height: the real rows,
capped at ~6.75rem, with an escape hatch that let an open diff lift the cap
entirely. So it was neither a single line nor an honest expanded block, and a
run could balloon mid-turn.
Split the two presentations instead. Live, a run is its summary plus a
one-line reel that slides each finished action up and out, so a turn touching
thirty files reads as one line ticking over in place. Settled, the summary is
the whole of it until opened. Cards — file edits, clarify, image_generate —
leave the run entirely and stay on screen where they happened, since the diff
or the question IS the point of the turn.
Drops useToolWindow, the bounded-window threshold, the scroll container, the
fade mask and the :has([data-tool-open]) escape hatch, all of which existed to
make "the real rows, but shorter" work.
Also unifies transcript scaffolding on one colour: thinking headers painted
--ui-text-secondary and tool summaries --ui-text-tertiary under a shared
opacity, which is two greys for one kind of line. Both now render through
ScaffoldRow at a token pitched between them.
* fix(desktop): measure reasoning per block instead of per turn
The timer registry hands every caller of a key the same origin, and every
reasoning block in a turn was keyed `reasoning:<messageId>`. So the second and
third blocks measured from the first one's start and each reported the running
total as its own duration — the "6s, 6s, 16s" down a single turn.
Key per block, and move the measurement into `useMeasuredDuration`, which
keeps the number beside the origin that produced it. The thread virtualizes,
so the component that watched a block finish is usually gone by the time
anyone scrolls back to read it; component state forgot the duration on
unmount and the row fell back to having none.
A block that genuinely was never watched running — history from an earlier app
session, or reasoning that arrived already complete — still has no duration to
report, and now says "Thought" rather than sitting in the present tense at a
turn that ended.
Also drops the run summary's aggregate +N/−M: a run can no longer contain a
file edit, so it was always zero. Each edit carries its own count on its card.
* fix(agent): never replay chain-of-thought in the active-turn redirect checkpoint
A /steer redirect during a thinking phase serialized the streamed
reasoning into the persisted assistant checkpoint ('Reasoning shown
before the interruption: ...'). An assistant turn exposing its own
chain-of-thought reads to Anthropic's output classifier as
reasoning-injection/prefill jailbreak, so every subsequent call on the
session deterministically returned 'Provider returned an empty
response' — and because the checkpoint is persisted and replayed, no
retry, nudge, or empty-recovery branch could ever escape it. Four
sessions were permanently bricked this way in the week of Jul 21-27
(42+ blocked calls; every reasoning-free checkpoint that week was
untouched — same mechanism as the prefill.json incident).
Class fix: streamed reasoning is now display-only state. The
_current_streamed_reasoning_text accumulator is removed entirely
(producer in _fire_reasoning_delta, resets, and init), so no future
path can serialize CoT into replayable content. The checkpoint keeps
only the visible response text; the model regenerates its reasoning on
the retried turn. Invariant documented in _apply_active_turn_redirect.
Regression tests: CoT never appears in either checkpoint shape,
reasoning-only interrupts produce a bare checkpoint, reasoning deltas
stay display-only.
* fix(desktop): delay Tip hover-open by 200ms so tips stop flashing
* refactor(desktop): extract a shared kebab + right-click actions-menu primitive
Promote the session row's inline MenuKit device into components/ui/
actions-menu.tsx: one ActionsMenu (kebab) + ActionsContextMenu (right-click)
pair driven by a single items(kit) render function, so a row's dropdown and
its context menu can't drift. Refactor the session menu onto it and let
StatusRow forward ref/onContextMenu so any row can host a context menu.
* feat(desktop): mirror every kebab menu to right-click
Wire the shared actions-menu into the remaining kebabs so right-clicking a
row opens the same actions as its ⋯ button: project rows (appearance moves
to a submenu via the new shared ProjectAppearancePicker), worktree lanes,
the composer branch bar, and settings credential rows.
* fix(desktop): paint the live status line as scaffolding
The drafting/stall status row kept its own type and colour — text-sm at
muted-foreground/70, with the hint at /55 — so "Editing" while the model
drafts a call rendered a full step larger than the "Explored 3 files" line
it turns into a moment later, in a different grey.
Route it through the scaffold label token so the whole left column reads as
one kind of line. The timer keeps its midground tint: that belongs to the
live-signal cluster with the dither block, not to the scaffolding.
* fix(desktop): give tool rows the scaffold colour they were meant to share
TOOL_HEADER_TITLE_CLASS was byte-identical to SCAFFOLD_LABEL_CLASS apart
from the colour — secondary (74%) against the scaffold's 64% — so a "Ran wc
-l" row sat visibly brighter than the "Thought for 1s" line above it. Same
for the trailing duration: tertiary against scaffold meta.
The primitive existed but only the thinking header and run summary were
routed through it. Point the tool row at it too and delete the duplicates,
so there is one place left to change. Search hit titles keep the brighter
grey under their own name: they are result content, not scaffolding.
* fix(desktop): send a message edit when the arrow is clicked
Clicking the edit composer's send arrow did nothing — the edit only went
through via revert. On macOS a <button> takes no focus on mousedown, so the
arrow-click blurred the contenteditable, the blur's 80ms timer cancelled the
edit and tore down the assistant-ui composer core, and the click's send() then
threw "Composer is not available" against the dead core. submitEdit had already
set submitting=true, so the arrow wedged and only revert worked.
Guard focus on the send button with onPointerDown preventDefault, the same way
the restore button does, so the click never blurs the editor. Also wrap the
send() and the blur-timer cancel() in the #49903 unguarded-core swallow so a
raced teardown can never wedge the arrow or leak an uncaught renderer error.
* fmt(js): `npm run fix` on merge (#72992)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
* fix(state): recover from read-only database files at startup
Port from Kilo-Org/kilocode#12508: a stray read-only state.db / -wal /
-shm (sudo run, restored backup, copied dotfiles) previously killed
SessionDB init with an opaque 'sqlite3.OperationalError: attempt to
write a readonly database' raised from deep inside _init_schema —
naming no file and no fix — and the obvious wrong 'fix' (deleting the
-wal) silently loses committed transactions.
New preflight_db_writability() runs before the first connection on both
DB open paths (SessionDB.__init__ and hermes_cli.kanban_db.connect):
- files inside the Hermes home tree are repaired with chmod u+rw (the
safe scope: Hermes owns them, and the OS makes chmod fail on files
the user doesn't own, which bounds the repair exactly);
- anything else (root-owned files, read-only mounts, custom paths)
fails fast with an error naming the exact file and the exact chmod
command, plus an explicit 'do NOT delete the -wal' warning;
- WAL sidecars are never deleted or truncated — once writable, the
normal open path checkpoints committed frames into the DB.
Proven live on main first: chmod 444 state.db -> SessionDB() raises the
opaque readonly error. With the fix: in-home DBs self-heal; out-of-home
DBs get the actionable message. Sabotage run confirms the integration
tests fail without the wiring (2 failed / 10 passed).
* fix(desktop): zero Tip skipDelayDuration so every tip waits its delay
* fix(desktop): retire the drafting label when the model moves on
`tool.generating` names the tool whose arguments are streaming, and nothing
ever closed that claim: there is no stop-drafting event, and a draft can be
abandoned without reaching `tool.start` when a mid-stream retry drops a
partial call or a guardrail blocks the tool. Enumerating the ways a draft
ends left those holes open, so "Editing" sat under the transcript for the
rest of a multi-iteration turn.
Invert the rule — the claim only covers what the model is emitting right
now, so any other output from that session retires it. Stopping the turn
clears it too, and a `tool.generating` that arrives after the stop is
ignored on the same condition `mutateStream` already drops late tool rows.
* fix(desktop): keep a run live between sequential calls
A run counted as live only while one of its calls was unresolved, which is
false for the instant between one sequential call finishing and the next
arriving — and for a string of commands that instant is most of the run. It
settled and re-opened between every call, so the ticker unmounted and came
back at the top of its reel instead of scrolling, and the summary flipped to
past tense while work was still going.
Live is now "the turn is working and nothing follows this run", with the
tail bound still settling a run the agent has moved past. The summary takes
its present-tense clause from the most recent call when none is pending —
the same call the ticker is showing. The stall spinner stays out of the way
while a run narrates, rather than stacking a second timer under it.
* fix(desktop): one weight and one gap for transcript scaffolding
The scaffold rows shared a colour but not a weight: tool summaries and the
ticker rendered medium against the reply's normal-weight prose, which read
as emphasis on the quietest lines in the column.
Spacing had the matching problem. The block-gap rule listed which *pairs* of
blocks qualified, so the live status line — neither tool, thinking, nor
prose — fell through every branch onto its own half-size margin. And because
a streaming turn is sealed into several bubbles as it goes but rehydrates
into fewer, two blocks are siblings inside one bubble or split across two
depending on when you look; the flex gap between bubbles is half the block
gap, so the rhythm tightened and relaxed as a turn settled. Cover every
top-level block with one rule, keep prose-to-prose on paragraph rhythm, and
top the between-bubble gap up to match.
* fmt(js): `npm run fix` on merge (#73004)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
* fix(xai): send Hermes-Agent User-Agent on chat/completions
Direct tool HTTP calls already identified as Hermes-Agent, but the main
OpenAI-SDK chat path still sent OpenAI/Python. Set Hermes-Agent/<ver> for
api.x.ai clients (xai + xai-oauth) so normal text traffic is attributed correctly.
* chore(xai): drop noisy default_headers comment
* fix(desktop): stop the enter animation pinning opacity over the stylesheet
Two identical tool rows, one above the other, rendered at two different
opacities — and no amount of hovering would even them out.
The enter animation fills forwards, so its final keyframe is held in the
animation origin of the cascade for as long as the element lives, above the
author stylesheet. Naming `opacity: 1` there didn't just end the fade, it
permanently overruled the resting opacity of every element the sheet dims.
Transcript scaffolding is dimmed exactly that way, so a row kept whichever
opacity it happened to mount with: full if it animated in during the turn,
faded if it was rehydrated or remounted past its one-shot key. Same for
thinking headers, which is why "Thought" never matched the rows near it.
Leave the end opacity out of the keyframe. It animates up to whatever CSS
asks for and keeps answering to it, hover included.
Then close the way the surfaces drifted in the first place: the fade named
each one in its own selector, so the live status line — added later, and
neither tool nor thinking nor prose — matched none of them and sat a shade
brighter than the rows either side. One `data-conversation-scaffold` mark
now carries it, and every surface opts in.
* fix(desktop): honor layout-aware letter keybinds
* fix(desktop): resolve punctuation keybinds through the active layout
Letter chords now follow `event.key`, but punctuation was still anchored
to the physical QWERTY position, so the shipped punctuation defaults stayed
unreachable on a remapped layout. On Dvorak `mod+.` (command center) reads
the physical V key, and `mod+,` / `mod+/` land on `w` / `[`.
Take `event.key` for unshifted punctuation too. Shift stays excluded because
a shifted `event.key` is the shifted glyph ("?" for "/") and combos are
anchored to the unshifted token. Digits stay physical: AZERTY types "&" on
the unshifted "1" key, so `event.code` is what keeps `mod+1` bound. Glyphs
we do not ship as tokens — Option output, dead keys, non-Latin scripts —
fail both checks and fall back to the physical code.
The punctuation set derives from CODE_TO_KEY so the two cannot drift.
* fmt(js): `npm run fix` on merge (#73023)
Co-authored-by: github-actions[bot] <github-actions[bot]@users.noreply.github.com>
* perf(desktop): split heavy lazy-only libs out of the renderer entry chunk
codeSplitting:false inlined every lazy()/dynamic import into the entry, so
the whole 28.5 MB bundle — including 19 MB of shiki grammars and 3.1 MB of
mermaid that nothing rendered — was parsed and evaluated on every cold
start. The original single-chunk rationale (#38888: electron-builder OOMs
scanning shiki's thousands of default chunks) doesn't require ONE chunk,
just few: rolldown advancedChunks groups keep the file count at ~180.
Ordering matters and is the subtle part: shared foundations (react, hast/
mdast utils, lodash-es/d3 commons) must match BEFORE the heavy groups,
because rolldown merges an unmatched shared module INTO the heavy chunk
that uses it — and then the entry statically imports 19 MB of shiki just
to reach react, putting the whole chunk back on the boot path.
Statically-reachable boot graph: 26.9 MB -> 7.7 MB.
* perf(desktop): load shiki and @streamdown/code on first use, not at boot
The chunk split only helps if nothing on the entry graph statically
imports the heavy libs. Three seams did:
- react-shiki: now behind one lazy() boundary (shiki-block.tsx is its only
static importer; LazyShiki wraps it with a PlainCode fallback).
- diff-lines.tsx: useShikiHighlighter hook extracted to a lazily-loaded
syntax-diff.tsx (plain DiffBody fallback — same output Shiki's own
pre-resolve state showed); codeToTokens becomes a dynamic import that
runs only once a highlightable diff is on screen.
- @streamdown/code: statically ran createJavaScriptRegexEngine() and built
full language registries at module scope on every launch. It now loads
via useCodePlugin() on first markdown mount and swaps into the plugin
table when it lands; fenced code renders plain until then, identical to
the delay fallback users already see during streaming.
Interleaved A/B vs main (prod build, warm V8 cache, median of 4, two
alternating rounds): FCP 1100->940ms, DOMContentLoaded 618->542ms,
nav-to-interactive 1312->1123ms on the quiet round; same direction with
larger gaps under load. ~160-190ms off every renderer boot metric.
* fix(desktop): let the composer answer past a clarify card
Typing a real message instead of picking an option left the agent parked:
the clarify blocks inside its tool batch waiting on clarify.respond, so a
follow-up routed through steer/queue sat undelivered until the 5-minute
clarify timeout. skipClarifyRequest answers the parked question with the
same empty answer the card's own Skip button sends, so the tool returns
and the turn carries on with the user's words.
* fix(desktop): stop a clarify card swallowing keys it doesn't bind
The card marked itself as owning every printable key, so the first letter
of a typed-out answer vanished and the composer never focused. It now
publishes its row count and yields only Enter plus the 1..N+1 / A.. rows
it actually renders; everything else reaches the composer, which skips
the question on send.
* fix(desktop): show a check on the active theme and color mode in ⌘K
The theme picker computed `active` per row but nothing rendered it — the
`active?: boolean` field and its trailing check were stripped in 8f73d0d94
and the computation was left behind, so the palette offered no way to tell
which skin was already applied. That matters more than it sounds: the
desktop persists its own skin in localStorage and only seeds (never
applies) the backend's `skin:` at connect, so config and window can
legitimately disagree.
Restore the field and render a trailing check, and mark the root-search
theme rows and both color-mode lists the same way so every appearance
picker in the palette reports its own current value.
* feat(desktop): right-click parity for every panel list row
Teach PanelListRow a menuItems prop that renders BOTH the hover kebab and a
matching right-click menu from one PanelMenuItem[] (via the shared actions-menu
primitive), so a panel row's two menus can't drift. Migrate the cron, webhooks,
and profiles panels onto it — right-clicking a row now opens the same
edit/delete/enable actions as its kebab.
* feat(desktop): right-click actions on the sidebar cron rows
The sidebar cron rows exposed only hover trigger/manage buttons and no
right-click. Add a context menu — trigger now, pause/resume, manage, and
delete — driven against the shared $cronJobs atom so the sidebar and cron
overlay stay in sync.
* fix(desktop): scroll the tab strip so a new tab and the "+" stay in view
Opening a tab in a zone with more tabs than fit appended it past the right
edge of the scrolling strip — the new tab and the "+" that created it were
both off-screen, so a second new tab meant scrolling back by hand. Activating
a tab from a keybind had the same problem in the other direction.
The zone header now scrolls its active tab into view on activation, and
scrolls all the way to the end when that tab is the last one so the trailing
"+" comes with it.
* fix(gateway): treat a leading `@/` as a separator, not just an absolute path
`@/Desktop` returned nothing while `@Desktop` worked. The leading slash
was always read literally, so the lookup went to the absolute `/Desktop`
— which doesn't exist — and dead-ended instead of finding the folder one
level down.
The `@` has already announced "this is a path", so the slash people type
next reads as a separator out of habit rather than a filesystem root.
Take the absolute meaning only when it resolves: the parent directory has
to exist, and a partially-typed segment has to match something in it.
Otherwise drop the slash and resolve from the cwd.
Real absolute paths are unaffected — `/usr`, `/etc/hos`, `/Users/...` all
pass the existence probe and keep their current behaviour. The guard
matters: stripping the slash unconditionally would let a repo-local
`etc/` shadow the real `/etc`.
* chore: trigger CI
* fix: prevent session poisoning from empty partial-stream-stub assistant turns
A mid-tool-call stream drop with no delivered text produces a
partial-stream stub carrying content:'' and tool_calls=None. The
conversation loop's truncation path appended it to history as
{"role":"assistant","content":""} before the continuation nudge, and
strict providers (Moonshot/Kimi via OpenRouter) reject empty assistant
content with HTTP 400 ("the message at position N with role 'assistant'
must not be empty") on the next replay. Because the message is
persisted, every subsequent turn re-failed — the session was
unrecoverable.
Three layers, smallest blast radius first:
1. conversation_loop (length path): an EMPTY partial-stream stub is no
longer appended as an interim assistant message; only the
continuation user-message is. Stubs that delivered partial text are
still persisted so continuation stitching is unchanged.
2. chat_completion_helpers.build_assistant_message: never serialize a
textless assistant turn with content:'' — pad to a single space, the
same trick as the reasoning_content pad (#15250, #17400). Tool-call
turns are exempt (content:'' alongside tool_calls is accepted
everywhere).
3. conversation_loop send boundary: pad a textless assistant turn's
empty content to a single space AFTER all content-mutating passes
(surrogate sanitize, whitespace normalization, thinking-only drops),
before token estimation. This is the durable repair for sessions
ALREADY poisoned by older builds: the persisted stub rows are rebuilt
to '' on every reload (_rows_to_conversation strips whitespace, so a
DB-side pad can't survive) and only a send-time pad repairs them.
Verified: 485 tests pass across the four affected files; live replay of
a real poisoned session's resumed history against Moonshot via
OpenRouter returns HTTP 200 (was HTTP 400).
* fix: send-time pad must skip multimodal (list) assistant content
The empty-content pad loop called .strip() on am.get("content") without
checking the type. Multimodal assistant turns carry content as a list
of parts (text/image), so a session with any image-bearing turn crashed
during request assembly:
AttributeError: 'list' object has no attribute 'strip'
Guard with isinstance(content, str) — a multimodal turn is never the
empty textless shape the pad repairs. Adds a regression test driving a
multimodal history through the loop.
* test: adapt multimodal pad-safety test to main's assistant-content flattening
Current main flattens multimodal assistant list-content to a plain string
before the send boundary, so the original assertion (list survives to the
wire) can't hold on this base. The test now asserts the load-bearing
contract instead: no crash, and the assistant turn's text is neither
dropped nor replaced by the pad. Adds a direct unit-shape check that the
pad predicate skips list content (the exact AttributeError shape from the
original bug) and pads only textless string turns.
* fix: exempt codex_responses from the empty-assistant-content pads
Commentary-phase Codex turns persist with content:'' by design (their
text is delivered via the interim assistant callback), and the Responses
wire has no 'assistant must not be empty' validation — padding them
broke test_run_conversation_codex_continues_after_commentary_phase_message
in CI. Both the builder pad and the send-time pad now skip
api_mode=codex_responses. Keying on the ACTIVE api_mode preserves the
repair for codex-written sessions replayed through a strict
chat-completions provider.
* feat(desktop): resolve a hostname to its Simple Icons brand mark
A lookup table of ~170 hosts plus a resolver that walks the hostname's
suffixes, so subdomains inherit their parent's mark (gist.github.com) while
a more specific entry (docs.google.com) still wins over the general one.
* feat(desktop): show brand icons on links to known domains
PrettyLink leads with the site's mark, so a GitHub PR link reads as a GitHub
link at a glance. The artifacts pane uses the same lookup in place of its
generic chain glyph; unknown hosts render as before.
* feat(desktop): strip the header chrome off markdown code blocks
A fenced block carried a bordered card with a "Code · <lang>" title row and a
pinned copy button, which read as an attached artifact next to the reply. Drop
the border and the header: the block is now a tinted slab on --ui-bg-editor
with syntax highlighting and a copy button that reveals on hover. The streaming
glow moves entirely to box-shadow since there is no border left to animate.
* fix(desktop): let the expandable fade match its own surface
The overflow fade hardcoded --ui-chat-surface-background, so inside a code
block it smeared the chat background over the block's own fill. Read an
--expandable-fade-from override with the chat surface as the default.
* chore(desktop): drop the now-unused assistant.tool.code string
The code-block header was its only consumer.
* Revert "feat(observability): integrate NeMo Relay runtime and shared metrics"
* docs(desktop): tip only when hover teaches something new
Drop the blanket "every icon* button needs a Tip" rule — it produced
tautological kebab tips like "Actions for <row title>". Menu triggers keep
aria-label; tips stay for unlabeled discovery chrome and keybind hints.
* fix(desktop): stop tip-wrapping kebab menu triggers
Remove the ActionsMenu tooltip prop and Tip wrappers on session, project,
workspace, panel, and credential ⋯ menus. aria-label stays for a11y; drop
the unused credentialActions string.
* test(desktop): assert kebabs are not wrapped in Tip
Flip the #67500 structure tests that required tooltip-trigger on menu
kebabs; keep coverage that the menus still open on click.
* style(desktop): quiet inline links to color-only until hover
The resting chip fill and the bold weight both fought the brand mark for
attention. Links now sit in the theme's primary color at body weight, and
the tint fades in on hover.
Weight is overridden on .link-chip itself: `@tailwindcss/typography` sets
`prose a { font-weight: 500 }`, which outranks a utility class on the anchor,
so the per-call-site classes could never win.
* fix(desktop): anchor the inline image download button to the image, not the block
The <img> carried max-w-[min(100%,var(--image-preview-max-width))] while its
container was w-fit max-w-full. A percentage max-width resolves to none while
the container measures its fit-content width, so the container took the full
column while the image stayed capped — and the absolutely positioned download
button, which anchors to the container, drifted into the margin on any image
wider than it is tall.
Move the width cap onto the container and leave the image at max-w-full. The
container now shrink-wraps the rendered image, so right-2/top-2 lands on the
image's own corner at every aspect ratio.
* fix(desktop): open a composer image attachment in the lightbox, not the rail
Clicking an attached image routed it through normalizeOrLocalPreviewTarget and
into the right rail, where it rendered as a small contained <img> inside a
pane built for reading and editing files. The bytes were already in hand as a
data URL, so the rail's whole read/edit/reload apparatus was doing nothing for
a picture the user just wanted to look at.
Route images with a resolved thumbnail to ImageLightbox — the same overlay the
thread uses — so the attachment previews at full size with the download action,
and drop the dataUrl/previewKind graft that only existed to make the rail
render bytes it shouldn't have been handed. Non-image attachments, and images
whose thumbnail never resolved, still fall through to the rail unchanged.
* test(desktop): cover the composer attachment click routing
An image attachment opens the lightbox and leaves the preview rail empty; a
file attachment still opens a rail tab. The lightbox case fails on main.
* fix(desktop): keep slash completion alive after a leading command
Typing a second slash command in the composer went dead whenever the
message started with one. `/work /cle` offered nothing, while `do /work
then /cle` completed fine — which read as an intermittent glitch rather
than a rule.
Two regexes detect a slash, and the `^`-anchored command shape was tried
first. Its argument tail (`(?:\s+\S*)*`) swallows the rest of the line,
so a later `/skill` parsed as an argument to the first command; a command
that takes no options then suppresses the popover outright, and every
slash after the first was unreachable.
Only the first slash can be an invocation, so detect the inline shape
first. It requires a whitespace-preceded slash sitting at the caret, so
it can't take over ordinary argument completion (`/personality alic` has
no second slash) — it fires only where completion was already dead.
* docs(desktop): ban Close-X tips and click-to chrome lectures
Extend the tip rule past kebabs — no tip on dismiss X, and no tips that
only paraphrase a visible label or say "click to…".
* fix(desktop): strip Close-X tips and statusbar tip lectures
Drop tips on dialog/overlay/find-bar/review/master-detail close buttons.
Stop tip-wrapping connection/gat…
1 task
1 task
76 tasks
gabrielcosi
pushed a commit
to gabrielcosi/home-ops
that referenced
this pull request
Aug 5, 2026
….7.30 ➔ v2026.8.3) (#253)
This PR contains the following updates:
| Package | Update | Change |
|---|---|---|
| [ghcr.io/gabrielcosi/hermes-agent](https://github.com/NousResearch/hermes-agent) | minor | `v2026.7.30` → `v2026.8.3` |
---
### Release Notes
<details>
<summary>NousResearch/hermes-agent (ghcr.io/gabrielcosi/hermes-agent)</summary>
### [`v2026.8.3`](https://github.com/NousResearch/hermes-agent/releases/tag/v2026.8.3): Hermes Agent v0.20.0 (2026.8.3)
[Compare Source](https://github.com/NousResearch/hermes-agent/compare/v2026.7.30...v2026.8.3)
##### Hermes Agent v0.20.0 (v2026.8.3)
**Release Date:** August 3, 2026
**Since v0.19.0:** \~3,650 commits · \~1,400 merged PRs · \~5,200 files changed · \~559,000 insertions · \~405,000 deletions · **\~1,200 issues closed** · 650+ contributors
> **The Herald Release.** Hermes is the herald of the gods, and this release makes him one in earnest: he **speaks** (real-time conversational voice with streaming TTS, barge-in, on-device wake words, and hands-free control across the CLI, desktop, and every audio-capable gateway platform), he **carries word to other agents** (A2A v1.0), he **announces events to your systems** (signed outbound webhooks), and he **cites his sources** (grounded research with verifiable citations and fact-checking). Around that spine: the desktop app became a platform (artifacts with live preview, a plugin SDK, quick-entry from anywhere, multiple windows), the CLI got a wave of power commands (`!` shell mode, `/init`, `/diff`, `/context`, `/focus`), compression got smarter and gentler, and the tools themselves now recover from their own failures instead of making the model guess. This release rolls up everything from the v0.19.1 infrastructure patch tag — that window is fully documented here.
***
##### ✨ Highlights
- **Talk to Hermes — streaming, conversational voice with barge-in** — Voice mode used to mean: speak, wait for the whole reply to generate, then listen to one long audio file. Now Hermes speaks clause-by-clause as the response streams, you can interrupt it mid-sentence by just talking (it stops, listens, and the model is told you cut in), and busy-aware silence detection means it doesn't talk over you. This works in CLI voice mode, on the desktop, and through gateway adapters. Talking to Hermes finally feels like a conversation, not a voicemail exchange. ([#​69511](https://github.com/NousResearch/hermes-agent/pull/69511), [#​73862](https://github.com/NousResearch/hermes-agent/pull/73862), [#​74223](https://github.com/NousResearch/hermes-agent/pull/74223), [#​74000](https://github.com/NousResearch/hermes-agent/pull/74000), [#​69602](https://github.com/NousResearch/hermes-agent/pull/69602) — [@​teknium1](https://github.com/teknium1), [@​OutThisLife](https://github.com/OutThisLife))
- **Wake words and hands-free control** — Say your own open-vocabulary wake phrase ("hey Hermes", or anything you pick) and Hermes starts listening — detection runs on-device, so no audio leaves your machine while it waits. Multi-profile voice routing means different wake words can reach different profiles, and saying "stop" ends the voice chat on every surface without touching the keyboard. Your terminal is now something you can talk to from across the room. ([#​70509](https://github.com/NousResearch/hermes-agent/pull/70509), [#​73106](https://github.com/NousResearch/hermes-agent/pull/73106), [#​73933](https://github.com/NousResearch/hermes-agent/pull/73933) — [@​teknium1](https://github.com/teknium1))
- **Voice on every platform** — Send a voice note to Hermes on WhatsApp, Feishu, DingTalk, LINE, QQ, Photon, or Weixin and it's transcribed and answered; auto-TTS replies are delivered platform-aware (opus where platforms want opus, captions attached correctly). STT is now fully configurable — its own `hermes tools` category, GUI toggles, dashboard dropdowns, unified language resolution so transcripts stop coming back in the wrong language, and OpenAI's gpt-transcribe support. One unified spoken-text preprocessor cleans markdown, code, and URLs out of speech across all TTS providers. ([#​73515](https://github.com/NousResearch/hermes-agent/pull/73515), [#​73508](https://github.com/NousResearch/hermes-agent/pull/73508), [#​73910](https://github.com/NousResearch/hermes-agent/pull/73910), [#​73513](https://github.com/NousResearch/hermes-agent/pull/73513), [#​73067](https://github.com/NousResearch/hermes-agent/pull/73067) — [@​teknium1](https://github.com/teknium1))
- **Research you can trust — grounded citations with fact-checking** — The new `grounded-citations` skill makes Hermes produce research where every claim is backed by a verifiable source: quotes are matched against the actual page text (not hallucinated), citations link to the exact evidence, and a fact-checking mode turns the same machinery on any document or claim you hand it — it tells you what checks out, what doesn't, and what couldn't be verified. If you use Hermes for research, this is the difference between "sounds right" and "provably sourced." ([#​71698](https://github.com/NousResearch/hermes-agent/pull/71698), [#​77104](https://github.com/NousResearch/hermes-agent/pull/77104) — [@​teknium1](https://github.com/teknium1))
- **Outbound webhooks — Hermes pushes events to your systems** — Until now, integrating with Hermes meant polling or listening on a platform. Now Hermes pushes **signed lifecycle events** (session activity, turn completions, tool events) to any HTTP endpoint you register — with HMAC signatures so your receiver can verify authenticity. Wire Hermes into your CI, your home automation, your dashboards, or any service that speaks HTTP, with no polling loop. ([#​69406](https://github.com/NousResearch/hermes-agent/pull/69406) — [@​teknium1](https://github.com/teknium1))
- **The desktop app becomes a platform — artifacts, plugin SDK, quick entry** — Hermes desktop now renders **artifacts**: versioned cards with sandboxed live preview in a right-rail viewer, so generated HTML/apps run safely next to the chat. A real **plugin SDK** landed with Kanban as its founding plugin, `ctx.download` for handing users files, floating pane placement, and multiple GUI windows. A global-hotkey **quick-entry window** captures a thought into any session from anywhere in your OS. The desktop stopped being a chat client and started being a workbench. ([#​72345](https://github.com/NousResearch/hermes-agent/pull/72345), [#​61173](https://github.com/NousResearch/hermes-agent/pull/61173), [#​74413](https://github.com/NousResearch/hermes-agent/pull/74413), [#​72315](https://github.com/NousResearch/hermes-agent/pull/72315), [#​68259](https://github.com/NousResearch/hermes-agent/pull/68259), [#​73143](https://github.com/NousResearch/hermes-agent/pull/73143) — [@​OutThisLife](https://github.com/OutThisLife), [@​teknium1](https://github.com/teknium1))
- **Hermes speaks Agent-to-Agent — A2A v1.0** — A new bundled plugin implements the Agent-to-Agent protocol, so Hermes can discover, talk to, and be driven by other A2A-compatible agents. This closes issue [#​514](https://github.com/NousResearch/hermes-agent/issues/514) — one of the oldest open feature requests in the repo. If you're building multi-agent systems with heterogeneous stacks, Hermes now has a standard wire protocol for joining them. ([#​77109](https://github.com/NousResearch/hermes-agent/pull/77109) — [@​teknium1](https://github.com/teknium1))
- **CLI power-user wave** — `!command` runs a shell command instantly without spending a model turn. `/init` scans your project and generates (or updates) an `AGENTS.md`. `/diff` shows staged/all/session changes from any surface, `/context` breaks down exactly what's filling your context window, `/focus` gives you a reduced-output view with hidden-line recovery, and Ctrl+S stashes a half-written prompt into a browsable panel. Plus `hermes import-agent` migrates your Claude Code or Codex CLI setup into Hermes in one command. ([#​72257](https://github.com/NousResearch/hermes-agent/pull/72257), [#​72178](https://github.com/NousResearch/hermes-agent/pull/72178), [#​72240](https://github.com/NousResearch/hermes-agent/pull/72240), [#​72242](https://github.com/NousResearch/hermes-agent/pull/72242), [#​72302](https://github.com/NousResearch/hermes-agent/pull/72302), [#​72262](https://github.com/NousResearch/hermes-agent/pull/72262), [#​72190](https://github.com/NousResearch/hermes-agent/pull/72190) — [@​teknium1](https://github.com/teknium1), several salvaging long-standing community PRs)
- **Correct the agent mid-turn — redirects** — If Hermes is heading the wrong way, you no longer have to `/stop` and re-explain. Type a correction while it works and the active turn is redirected: work in flight is preserved, the original prompt is kept, and the agent course-corrects with your new guidance. Paired with double-ESC draft discard and a composer undo stack, steering feels like editing, not restarting. ([#​63104](https://github.com/NousResearch/hermes-agent/pull/63104), [#​72339](https://github.com/NousResearch/hermes-agent/pull/72339), [#​74736](https://github.com/NousResearch/hermes-agent/pull/74736) — [@​OutThisLife](https://github.com/OutThisLife))
- **Tools that fix themselves** — A sweep of self-recovery upgrades means the agent wastes far fewer turns on tool friction: truncated terminal output spills to a file the agent can read back, `patch` detects already-applied edits and diagnoses whitespace mismatches, `write_file` verifies content on disk, searches that match nothing probe for near-misses and recover, and common failure classes come back with actionable hints. The default tool-calling iteration limit also jumped 90 → 500 — long autonomous runs stopped hitting an artificial wall. ([#​77041](https://github.com/NousResearch/hermes-agent/pull/77041), [#​76998](https://github.com/NousResearch/hermes-agent/pull/76998), [#​77024](https://github.com/NousResearch/hermes-agent/pull/77024), [#​77055](https://github.com/NousResearch/hermes-agent/pull/77055), [#​77011](https://github.com/NousResearch/hermes-agent/pull/77011), [#​76992](https://github.com/NousResearch/hermes-agent/pull/76992), [#​72176](https://github.com/NousResearch/hermes-agent/pull/72176) — [@​teknium1](https://github.com/teknium1))
- **Compression that respects your conversation** — Context compression got a deep overhaul: proactive tool-result pruning for large-window models, per-turn micro-compaction that amortizes the cost instead of one giant pause, a guaranteed N-user-message tail so recent conversation always survives, progress-aware timeouts that stop punishing slow summary models, and ghost-skill defense so a pruned skill can never silently haunt a session. Thresholds are now configurable per-model and in absolute tokens. Long sessions stay coherent and stop stalling. ([#​70254](https://github.com/NousResearch/hermes-agent/pull/70254), [#​75345](https://github.com/NousResearch/hermes-agent/pull/75345), [#​70250](https://github.com/NousResearch/hermes-agent/pull/70250), [#​71508](https://github.com/NousResearch/hermes-agent/pull/71508), [#​70275](https://github.com/NousResearch/hermes-agent/pull/70275) — [@​teknium1](https://github.com/teknium1), [@​kshitijk4poor](https://github.com/kshitijk4poor), salvaging multiple community PRs)
- **Smart approvals grow up** — `hermes approvals suggest` mines your approval history into allowlist proposals, operators can customize the smart-approval policy, a consecutive-denial circuit breaker stops a misbehaving loop cold, and desktop pairing approvals are profile-correct with a proper surface to answer them from. Plus a new approval gate for docker/podman daemon-redirect commands. Less clicking "approve", without giving an inch of control. ([#​72259](https://github.com/NousResearch/hermes-agent/pull/72259), [#​72186](https://github.com/NousResearch/hermes-agent/pull/72186), [#​72203](https://github.com/NousResearch/hermes-agent/pull/72203), [#​74446](https://github.com/NousResearch/hermes-agent/pull/74446), [#​71092](https://github.com/NousResearch/hermes-agent/pull/71092) — [@​teknium1](https://github.com/teknium1), [@​OutThisLife](https://github.com/OutThisLife))
- **Faster everywhere, again** — Prompt caching now covers tool schemas on native Anthropic without history loss. `hermes -w` cold start dropped \~14s → \~1.8s, `hermes update` no-ops got 2–6s faster, heavy SDKs lazy-load off the import path, config reads stopped deep-copying (54× faster on the telemetry gate), and the desktop shipped a second 60fps wave — streaming cost independent of transcript length, drag at 60fps with five streaming tabs, idle CPU near zero in the background. ([#​76032](https://github.com/NousResearch/hermes-agent/pull/76032), [#​71637](https://github.com/NousResearch/hermes-agent/pull/71637), [#​74218](https://github.com/NousResearch/hermes-agent/pull/74218), [#​74204](https://github.com/NousResearch/hermes-agent/pull/74204), [#​71835](https://github.com/NousResearch/hermes-agent/pull/71835), [#​72346](https://github.com/NousResearch/hermes-agent/pull/72346), [#​75218](https://github.com/NousResearch/hermes-agent/pull/75218) — [@​kshitijk4poor](https://github.com/kshitijk4poor), [@​teknium1](https://github.com/teknium1), [@​OutThisLife](https://github.com/OutThisLife))
- **New places to run and be reached** — Buzz lands as a bundled gateway platform (Block's Nostr-based messenger, with native WebSocket transport and NIP-42 auth), the Vercel AI Gateway provider and Vercel Sandbox terminal backend return modernized, desktop gains an SSH remote-backend connection mode, and the Relay shipped four phases of parity — media, interactive prompts, thread lifecycle, typing indicators — plus HSP personal + org skill sync. ([#​73610](https://github.com/NousResearch/hermes-agent/pull/73610), [#​73761](https://github.com/NousResearch/hermes-agent/pull/73761), [#​74518](https://github.com/NousResearch/hermes-agent/pull/74518), [#​68130](https://github.com/NousResearch/hermes-agent/pull/68130), [#​71300](https://github.com/NousResearch/hermes-agent/pull/71300)–[#​71624](https://github.com/NousResearch/hermes-agent/pull/71624), [#​66730](https://github.com/NousResearch/hermes-agent/pull/66730) — [@​teknium1](https://github.com/teknium1), [@​yoniebans](https://github.com/yoniebans), [@​benbarclay](https://github.com/benbarclay))
***
##### 🎙️ Voice & Speech
##### Conversational voice
- Streaming, conversational TTS with barge-in across all surfaces; clause-by-clause synthesis for CLI voice mode + gateway adapters ([#​69511](https://github.com/NousResearch/hermes-agent/pull/69511), [#​73862](https://github.com/NousResearch/hermes-agent/pull/73862) — [@​OutThisLife](https://github.com/OutThisLife), [@​teknium1](https://github.com/teknium1))
- Voice chat UX polish — busy-aware silence, stop hint, thinking sounds, barge-in fix; full-duplex turn listener (interrupt by voice during generation AND playback) ([#​74000](https://github.com/NousResearch/hermes-agent/pull/74000), [#​74223](https://github.com/NousResearch/hermes-agent/pull/74223) — [@​teknium1](https://github.com/teknium1))
- On-device wake words with open-vocabulary phrases + multi-profile voice routing; say "stop" to end voice chat hands-free on every surface ([#​70509](https://github.com/NousResearch/hermes-agent/pull/70509), [#​73106](https://github.com/NousResearch/hermes-agent/pull/73106), [#​73933](https://github.com/NousResearch/hermes-agent/pull/73933) — [@​teknium1](https://github.com/teknium1))
- The model is told when the user interrupts its spoken reply; desktop speaks the whole turn and idle-flushes held narration ([#​69602](https://github.com/NousResearch/hermes-agent/pull/69602), [#​69936](https://github.com/NousResearch/hermes-agent/pull/69936) — [@​OutThisLife](https://github.com/OutThisLife), [@​teknium1](https://github.com/teknium1))
- 15-item CLI/TUI voice-mode UX and environment fix wave ([#​73520](https://github.com/NousResearch/hermes-agent/pull/73520) — [@​teknium1](https://github.com/teknium1))
##### TTS / STT infrastructure
- Unified spoken-text preprocessing + speed/instructions/provider tool params; unified STT language resolution (fixes the wrong-language transcription class); global `stt.language` defaults to `en` ([#​73513](https://github.com/NousResearch/hermes-agent/pull/73513), [#​73067](https://github.com/NousResearch/hermes-agent/pull/73067), [#​73100](https://github.com/NousResearch/hermes-agent/pull/73100) — [@​teknium1](https://github.com/teknium1))
- Fully configurable STT — `hermes tools` category, GUI toggle/matrix, dashboard dropdowns, setup status; OpenAI gpt-transcribe support ([#​73910](https://github.com/NousResearch/hermes-agent/pull/73910), [#​73853](https://github.com/NousResearch/hermes-agent/pull/73853) — [@​teknium1](https://github.com/teknium1))
- Platform-aware auto-TTS voice delivery (opus platforms, streamed/global gap, captions); inbound voice classification/routing for Feishu, DingTalk, LINE, QQ, Photon, WhatsApp, Weixin ([#​73508](https://github.com/NousResearch/hermes-agent/pull/73508), [#​73515](https://github.com/NousResearch/hermes-agent/pull/73515) — [@​teknium1](https://github.com/teknium1))
- Command TTS/STT provider hardening — idle timeouts, env scrubbing, no-shell, path guards ([#​73514](https://github.com/NousResearch/hermes-agent/pull/73514) — [@​teknium1](https://github.com/teknium1))
- Sync per-sentence TTS synthesis pipelined with playback — the next sentence renders while the current one speaks ([#​77355](https://github.com/NousResearch/hermes-agent/pull/77355) — [@​kshitijk4poor](https://github.com/kshitijk4poor))
- Discord voice PCM streams to ffmpeg stdin instead of a temp file ([#​76970](https://github.com/NousResearch/hermes-agent/pull/76970) — [@​kshitijk4poor](https://github.com/kshitijk4poor))
##### 🏗️ Core Agent & Architecture
##### Compression & context
- Proactive tool-result pruning for large-window models; per-turn micro-compaction; N-user tail guarantee (`compression.min_tail_user_messages`); bounded summarizer input with head+tail retention ([#​70254](https://github.com/NousResearch/hermes-agent/pull/70254), [#​75345](https://github.com/NousResearch/hermes-agent/pull/75345), [#​70250](https://github.com/NousResearch/hermes-agent/pull/70250), [#​70249](https://github.com/NousResearch/hermes-agent/pull/70249) — [@​teknium1](https://github.com/teknium1), [@​kshitijk4poor](https://github.com/kshitijk4poor))
- Ghost-skill defense — `[SKILL_PRUNED]` markers, protected prune, deterministic survival; progress-aware timeouts; lock-contended compression soft-defers instead of exhausting ([#​70275](https://github.com/NousResearch/hermes-agent/pull/70275), [#​71508](https://github.com/NousResearch/hermes-agent/pull/71508), [#​70285](https://github.com/NousResearch/hermes-agent/pull/70285) — [@​teknium1](https://github.com/teknium1))
- Per-model threshold overrides; absolute token threshold (`compression.threshold_tokens`); opt-in idle-triggered compaction; opt-in progress notices; structured local logging for compression attempts ([#​69339](https://github.com/NousResearch/hermes-agent/pull/69339), [#​69335](https://github.com/NousResearch/hermes-agent/pull/69335), [#​69360](https://github.com/NousResearch/hermes-agent/pull/69360), [#​70457](https://github.com/NousResearch/hermes-agent/pull/70457), [#​69338](https://github.com/NousResearch/hermes-agent/pull/69338) — [@​teknium1](https://github.com/teknium1))
- Context-engine ABC grows `select_context()` + `on_turn_complete()` verbs (salvage of [@​chaos-xxl](https://github.com/chaos-xxl)'s RFC work); engines can suppress or customize compaction status ([#​70458](https://github.com/NousResearch/hermes-agent/pull/70458), [#​69859](https://github.com/NousResearch/hermes-agent/pull/69859) — [@​teknium1](https://github.com/teknium1))
- Strict redaction applied at every compaction text boundary ([#​69294](https://github.com/NousResearch/hermes-agent/pull/69294) — [@​teknium1](https://github.com/teknium1))
##### Prompt caching & hot-path performance
- Tool schemas cached on native Anthropic without history loss + consolidated cache-plan internals ([#​76032](https://github.com/NousResearch/hermes-agent/pull/76032), [#​76067](https://github.com/NousResearch/hermes-agent/pull/76067) — [@​kshitijk4poor](https://github.com/kshitijk4poor))
- DeepSeek prompt caching on OpenCode gateways; per-API-call token accounting off the turn thread; OpenAI wire client reused across sequential LLM calls; send-path tool-call canonicalization memoized ([#​75886](https://github.com/NousResearch/hermes-agent/pull/75886), [#​73359](https://github.com/NousResearch/hermes-agent/pull/73359), [#​73375](https://github.com/NousResearch/hermes-agent/pull/73375), [#​76880](https://github.com/NousResearch/hermes-agent/pull/76880) — [@​teknium1](https://github.com/teknium1), [@​kshitijk4poor](https://github.com/kshitijk4poor))
- Readonly config loader at 29 call sites (28× cheaper reads); per-turn config deepcopies killed (telemetry gate 54×); one raw config.yaml parse per process; inter-tool delay removed ([#​74322](https://github.com/NousResearch/hermes-agent/pull/74322), [#​74211](https://github.com/NousResearch/hermes-agent/pull/74211), [#​74228](https://github.com/NousResearch/hermes-agent/pull/74228), [#​64172](https://github.com/NousResearch/hermes-agent/pull/64172) — [@​teknium1](https://github.com/teknium1), [@​Soju06](https://github.com/Soju06))
- Lazy heavy-SDK imports (−8-10% import cost on top of the mcp/tool-discovery diet); streaming hot loop drops per-chunk repr() (\~3× cheaper accounting); cursor/memo optimizations for per-iteration history walks ([#​74204](https://github.com/NousResearch/hermes-agent/pull/74204), [#​74194](https://github.com/NousResearch/hermes-agent/pull/74194), [#​74221](https://github.com/NousResearch/hermes-agent/pull/74221), [#​74231](https://github.com/NousResearch/hermes-agent/pull/74231) — [@​teknium1](https://github.com/teknium1))
- Cold-start \~14s GIL stall during backend init mitigated; turn flush batched into one SQLite transaction; provider-capability-gated prompt cache keys (implied for api.openai.com) ([#​77814](https://github.com/NousResearch/hermes-agent/pull/77814), [#​77619](https://github.com/NousResearch/hermes-agent/pull/77619), [#​77609](https://github.com/NousResearch/hermes-agent/pull/77609) — [@​kshitijk4poor](https://github.com/kshitijk4poor))
- AIAgent hot-path salvage — prompt-cache copy, reasoning-timeout precompute, lazy compressor init ([#​57229](https://github.com/NousResearch/hermes-agent/pull/57229) — [@​kshitijk4poor](https://github.com/kshitijk4poor))
##### Approvals & the agent loop
- `hermes approvals suggest` mines approval history into allowlist proposals; operator-customizable `approvals.smart_policy`; consecutive-denial circuit breaker; cross-surface approvals mode command ([#​72259](https://github.com/NousResearch/hermes-agent/pull/72259), [#​72186](https://github.com/NousResearch/hermes-agent/pull/72186), [#​72203](https://github.com/NousResearch/hermes-agent/pull/72203), [#​63517](https://github.com/NousResearch/hermes-agent/pull/63517) — [@​teknium1](https://github.com/teknium1))
- Docker/podman daemon-redirect commands require approval; session-wide runaway-loop caps for web\_search + delegate\_task (Claude Code-inspired) ([#​71092](https://github.com/NousResearch/hermes-agent/pull/71092), [#​66600](https://github.com/NousResearch/hermes-agent/pull/66600) — [@​teknium1](https://github.com/teknium1))
- Mid-turn redirects — user corrections steer the active turn, preserving in-flight work and the original prompt ([#​63104](https://github.com/NousResearch/hermes-agent/pull/63104), [#​72339](https://github.com/NousResearch/hermes-agent/pull/72339) — [@​OutThisLife](https://github.com/OutThisLife))
- Delegation: structured timeout/stall metadata + live per-child status in `/agents`; subagents can use `execute_code`; redacted child tool history exposed in `subagent_stop`; public subagent lifecycle API for plugins ([#​72300](https://github.com/NousResearch/hermes-agent/pull/72300), [#​69325](https://github.com/NousResearch/hermes-agent/pull/69325), [#​72403](https://github.com/NousResearch/hermes-agent/pull/72403), [#​72501](https://github.com/NousResearch/hermes-agent/pull/72501) — [@​teknium1](https://github.com/teknium1))
- Single-owner refactors for backend identity + failure-scoped skips, empty-content wire repair, call\_id/reasoning sanitization, model-switch parsing ([#​72505](https://github.com/NousResearch/hermes-agent/pull/72505), [#​73071](https://github.com/NousResearch/hermes-agent/pull/73071), [#​74319](https://github.com/NousResearch/hermes-agent/pull/74319), [#​74229](https://github.com/NousResearch/hermes-agent/pull/74229) — [@​teknium1](https://github.com/teknium1))
- Labeled reasoning excerpt surfaced at the empty-response terminal; tool\_search probe-validates blind tool\_call args ([#​65144](https://github.com/NousResearch/hermes-agent/pull/65144), [#​59267](https://github.com/NousResearch/hermes-agent/pull/59267) — [@​teknium1](https://github.com/teknium1))
##### Tool self-recovery wave
- Terminal: recoverable truncation (full output spilled + pre-truncation size), cwd echoed when a command changes directory, output-pattern failure hints ([#​77041](https://github.com/NousResearch/hermes-agent/pull/77041), [#​77004](https://github.com/NousResearch/hermes-agent/pull/77004), [#​76992](https://github.com/NousResearch/hermes-agent/pull/76992) — [@​teknium1](https://github.com/teknium1))
- Patch: already-applied edits return success no-op, whitespace-visualized no-match diagnosis, ambiguous-match locations listed ([#​76998](https://github.com/NousResearch/hermes-agent/pull/76998), [#​77024](https://github.com/NousResearch/hermes-agent/pull/77024), [#​77001](https://github.com/NousResearch/hermes-agent/pull/77001) — [@​teknium1](https://github.com/teknium1))
- Search: zero-match probes + multi-path recovery, auto-multiline for newline patterns; read\_file default limit 500 → 2000 lines; negative-result cache for read/search misses; write\_file verifies on-disk content ([#​77011](https://github.com/NousResearch/hermes-agent/pull/77011), [#​77102](https://github.com/NousResearch/hermes-agent/pull/77102), [#​76996](https://github.com/NousResearch/hermes-agent/pull/76996), [#​76945](https://github.com/NousResearch/hermes-agent/pull/76945), [#​77055](https://github.com/NousResearch/hermes-agent/pull/77055) — [@​teknium1](https://github.com/teknium1), [@​kshitijk4poor](https://github.com/kshitijk4poor))
- execute\_code recovery hints; skill\_view dedup stub for unchanged re-reads; terminal/execute\_code schema prose trimmed \~40%; tiered tool disclosure scales with catalog size; default iteration limit 90 → 500 ([#​77106](https://github.com/NousResearch/hermes-agent/pull/77106), [#​77095](https://github.com/NousResearch/hermes-agent/pull/77095), [#​77023](https://github.com/NousResearch/hermes-agent/pull/77023), [#​67034](https://github.com/NousResearch/hermes-agent/pull/67034), [#​72176](https://github.com/NousResearch/hermes-agent/pull/72176) — [@​teknium1](https://github.com/teknium1))
##### Providers & models
- Vercel AI Gateway provider + Vercel Sandbox terminal backend return, modernized (SDK 0.7.2, telemetry off) ([#​74518](https://github.com/NousResearch/hermes-agent/pull/74518) — [@​teknium1](https://github.com/teknium1))
- Gemini 3.1 Pro + 3.6 Flash in catalogs; Gemini salvage cluster (3.6-flash aux default, Vertex catalog, direct cost tracking); claude-opus-5 in OpenRouter + Nous Portal; deepseek-v4-flash-0731 ([#​73479](https://github.com/NousResearch/hermes-agent/pull/73479), [#​73516](https://github.com/NousResearch/hermes-agent/pull/73516), [#​70946](https://github.com/NousResearch/hermes-agent/pull/70946), [#​75501](https://github.com/NousResearch/hermes-agent/pull/75501) — [@​teknium1](https://github.com/teknium1))
- Bedrock Converse API prompt caching (cachePoint) ([#​70231](https://github.com/NousResearch/hermes-agent/pull/70231) — [@​JoaoMarcos44](https://github.com/JoaoMarcos44))
- OpenAI data-residency endpoints get declared transport + correct catalog; provider-aware API-server request routing; backend-acknowledged session model lock; Nous sticky routing via top-level session\_id ([#​74958](https://github.com/NousResearch/hermes-agent/pull/74958), [#​70853](https://github.com/NousResearch/hermes-agent/pull/70853), [#​70950](https://github.com/NousResearch/hermes-agent/pull/70950), [#​69253](https://github.com/NousResearch/hermes-agent/pull/69253) — [@​victor-kyriazakos](https://github.com/victor-kyriazakos), [@​teknium1](https://github.com/teknium1))
- Model picker: curated defaults + collapsible providers + select-all; stale caches served instantly with background refresh; custom-endpoint probe capped at 1.5s; honcho OAuth device-code login ([#​73172](https://github.com/NousResearch/hermes-agent/pull/73172), [#​76430](https://github.com/NousResearch/hermes-agent/pull/76430), [#​76922](https://github.com/NousResearch/hermes-agent/pull/76922), [#​61608](https://github.com/NousResearch/hermes-agent/pull/61608) — [@​OutThisLife](https://github.com/OutThisLife), [@​teknium1](https://github.com/teknium1), [@​kshitijk4poor](https://github.com/kshitijk4poor), [@​akattelu](https://github.com/akattelu))
- ACP: named custom providers in the model selector; authenticated cross-provider model choices; non-blocking startup via background MCP discovery ([#​70082](https://github.com/NousResearch/hermes-agent/pull/70082), [#​70404](https://github.com/NousResearch/hermes-agent/pull/70404), [#​75985](https://github.com/NousResearch/hermes-agent/pull/75985) — [@​israellot](https://github.com/israellot), [@​amanning3390](https://github.com/amanning3390), [@​kshitijk4poor](https://github.com/kshitijk4poor))
##### Secrets & config
- Command-helper secret source (composes with all vaults); one-command token rotation + actionable startup errors; opt-in encrypted break-glass cache for Bitwarden; vault-injected keys scoped per profile home; orchestrator preserve\_existing + profile aliasing ([#​69266](https://github.com/NousResearch/hermes-agent/pull/69266), [#​68605](https://github.com/NousResearch/hermes-agent/pull/68605), [#​69251](https://github.com/NousResearch/hermes-agent/pull/69251), [#​69250](https://github.com/NousResearch/hermes-agent/pull/69250), [#​69058](https://github.com/NousResearch/hermes-agent/pull/69058) — [@​teknium1](https://github.com/teknium1))
- `${env:VAR}` SecretRef parity between config.yaml and MCP config; secret-source env vars reach stdio MCP servers ([#​69267](https://github.com/NousResearch/hermes-agent/pull/69267), [#​69053](https://github.com/NousResearch/hermes-agent/pull/69053) — [@​teknium1](https://github.com/teknium1))
- Canonical config loaders for behavioral reads; table-driven config migration registry; DEFAULT\_CONFIG extracted to config\_defaults.py; auto-migration support floor at v12 ([#​74237](https://github.com/NousResearch/hermes-agent/pull/74237), [#​74200](https://github.com/NousResearch/hermes-agent/pull/74200), [#​74182](https://github.com/NousResearch/hermes-agent/pull/74182), [#​74433](https://github.com/NousResearch/hermes-agent/pull/74433) — [@​teknium1](https://github.com/teknium1))
##### 🌐 Gateway, Relay & Fleet
- Session activity heartbeats, stall watchdog, and bounded compression waits — re-landed hardened after an in-window revert cycle (originally [#​72424](https://github.com/NousResearch/hermes-agent/issues/72424) by [@​fangliquanflq](https://github.com/fangliquanflq)) ([#​76354](https://github.com/NousResearch/hermes-agent/pull/76354) — [@​teknium1](https://github.com/teknium1))
- SessionState consolidation (19 session-keyed dicts → one turn/conversation/persistent-scoped object); TurnContext/TurnRunner seam extraction; declarative busy\_policy on CommandDef ([#​74289](https://github.com/NousResearch/hermes-agent/pull/74289), [#​74353](https://github.com/NousResearch/hermes-agent/pull/74353), [#​74197](https://github.com/NousResearch/hermes-agent/pull/74197) — [@​teknium1](https://github.com/teknium1))
- Relay parity waves: Phase 1 (supported\_ops discovery, identity fields, /handoff aliasing), Phase 2 media, Phase 3 interactive prompts, Phase 4 thread lifecycle; egress typing indicators ([#​71300](https://github.com/NousResearch/hermes-agent/pull/71300), [#​71363](https://github.com/NousResearch/hermes-agent/pull/71363), [#​71404](https://github.com/NousResearch/hermes-agent/pull/71404), [#​71624](https://github.com/NousResearch/hermes-agent/pull/71624), [#​69721](https://github.com/NousResearch/hermes-agent/pull/69721) — [@​benbarclay](https://github.com/benbarclay))
- HSP skill sync: personal client (M1) + org-skills client (M2) + org-skill namespace with token-gated discovery ([#​66730](https://github.com/NousResearch/hermes-agent/pull/66730), [#​70024](https://github.com/NousResearch/hermes-agent/pull/70024), [#​70459](https://github.com/NousResearch/hermes-agent/pull/70459) — [@​benbarclay](https://github.com/benbarclay))
- Buzz (Block/Nostr) platform adapter with native WebSocket inbound transport + NIP-42 auth ([#​73610](https://github.com/NousResearch/hermes-agent/pull/73610), [#​73761](https://github.com/NousResearch/hermes-agent/pull/73761) — [@​teknium1](https://github.com/teknium1))
- Photon: native polls, effects, clarify-as-poll, rich links (4-PR salvage) ([#​73614](https://github.com/NousResearch/hermes-agent/pull/73614) — [@​teknium1](https://github.com/teknium1))
- Slack: native Block Kit clarify buttons; opt-in reaction triggers; outbound payload sanitization; thread-context lifecycle fixes ([#​69318](https://github.com/NousResearch/hermes-agent/pull/69318), [#​70195](https://github.com/NousResearch/hermes-agent/pull/70195), [#​69317](https://github.com/NousResearch/hermes-agent/pull/69317), [#​69320](https://github.com/NousResearch/hermes-agent/pull/69320) — [@​teknium1](https://github.com/teknium1))
- Discord auto-thread sessions keyed on prospective\_thread\_id; reply references built from ids (no fetch\_message); WhatsApp configurable inbound read receipts ([#​76513](https://github.com/NousResearch/hermes-agent/pull/76513), [#​76875](https://github.com/NousResearch/hermes-agent/pull/76875), [#​73322](https://github.com/NousResearch/hermes-agent/pull/73322) — [@​benbarclay](https://github.com/benbarclay), [@​kshitijk4poor](https://github.com/kshitijk4poor))
- Kanban wakes resume the creator's DM/thread session; kanban/delegate wake-ups reach api\_server sessions; per-task model + thinking-depth from the board ([#​72191](https://github.com/NousResearch/hermes-agent/pull/72191), [#​70171](https://github.com/NousResearch/hermes-agent/pull/70171), [#​69876](https://github.com/NousResearch/hermes-agent/pull/69876), [#​76417](https://github.com/NousResearch/hermes-agent/pull/76417) — [@​teknium1](https://github.com/teknium1), [@​OutThisLife](https://github.com/OutThisLife))
- Relay: Discord tool-progress routed into the auto-thread instead of the parent channel ([#​77830](https://github.com/NousResearch/hermes-agent/pull/77830) — [@​benbarclay](https://github.com/benbarclay))
- Outbound webhooks — push signed lifecycle events to external endpoints; simplex channel enumeration in `hermes send --list` ([#​69406](https://github.com/NousResearch/hermes-agent/pull/69406), [#​77110](https://github.com/NousResearch/hermes-agent/pull/77110) — [@​teknium1](https://github.com/teknium1))
##### 🖥️ Hermes Desktop App
##### The platform wave
- **Artifacts** — versioned cards, sandboxed live preview, right-rail viewer ([#​72345](https://github.com/NousResearch/hermes-agent/pull/72345) — [@​teknium1](https://github.com/teknium1))
- **Plugin SDK** — Kanban as the founding desktop plugin; `ctx.download` hands the user a file; widget-app SDK (apps as state+reducer+render) with three reference apps; widget-grid layout engine + background-aware theme engine ([#​61173](https://github.com/NousResearch/hermes-agent/pull/61173), [#​74413](https://github.com/NousResearch/hermes-agent/pull/74413), [#​68306](https://github.com/NousResearch/hermes-agent/pull/68306), [#​20379](https://github.com/NousResearch/hermes-agent/pull/20379) — [@​OutThisLife](https://github.com/OutThisLife))
- Quick-entry window (global hotkey → any session); multiple GUI windows; floating pane placement; pane toggles anywhere + hidden header; ⌘O open-folder-as-project ([#​72315](https://github.com/NousResearch/hermes-agent/pull/72315), [#​68259](https://github.com/NousResearch/hermes-agent/pull/68259), [#​73143](https://github.com/NousResearch/hermes-agent/pull/73143), [#​75848](https://github.com/NousResearch/hermes-agent/pull/75848), [#​74623](https://github.com/NousResearch/hermes-agent/pull/74623) — [@​teknium1](https://github.com/teknium1), [@​OutThisLife](https://github.com/OutThisLife))
- SSH remote-backend connection mode; event-driven live sync replaces always-on polls; remote profile routing/sessions/pool lifecycle repaired ([#​68130](https://github.com/NousResearch/hermes-agent/pull/68130), [#​73673](https://github.com/NousResearch/hermes-agent/pull/73673), [#​72835](https://github.com/NousResearch/hermes-agent/pull/72835) — [@​yoniebans](https://github.com/yoniebans), [@​OutThisLife](https://github.com/OutThisLife))
- Let the agent drive the shell (preview pane + pane focus) AND inspect the desktop app it's developing; find-in-page (Ctrl+F); GUI terminal copy/paste + font picker ([#​69519](https://github.com/NousResearch/hermes-agent/pull/69519), [#​73121](https://github.com/NousResearch/hermes-agent/pull/73121), [#​72235](https://github.com/NousResearch/hermes-agent/pull/72235), [#​73705](https://github.com/NousResearch/hermes-agent/pull/73705), [#​76395](https://github.com/NousResearch/hermes-agent/pull/76395) — [@​OutThisLife](https://github.com/OutThisLife), [@​teknium1](https://github.com/teknium1))
##### Composer & UX
- Attach files/folders/links via picker; composer chips for @​ paths and pasted links; composer undo stack; double-ESC discards draft; double-Enter sends the queued turn; type-to-focus ([#​74668](https://github.com/NousResearch/hermes-agent/pull/74668), [#​73110](https://github.com/NousResearch/hermes-agent/pull/73110), [#​72201](https://github.com/NousResearch/hermes-agent/pull/72201), [#​72288](https://github.com/NousResearch/hermes-agent/pull/72288), [#​74736](https://github.com/NousResearch/hermes-agent/pull/74736), [#​73101](https://github.com/NousResearch/hermes-agent/pull/73101), [#​68918](https://github.com/NousResearch/hermes-agent/pull/68918) — [@​OutThisLife](https://github.com/OutThisLife))
- 2-keypress model switching (⌘⇧M); YOLO in ⌘K with live toggle state; keyboard-first pickers; keyboard navigation for clarify choices; server-owned pins that follow you between apps ([#​74545](https://github.com/NousResearch/hermes-agent/pull/74545), [#​74674](https://github.com/NousResearch/hermes-agent/pull/74674), [#​74602](https://github.com/NousResearch/hermes-agent/pull/74602), [#​69799](https://github.com/NousResearch/hermes-agent/pull/69799), [#​74234](https://github.com/NousResearch/hermes-agent/pull/74234) — [@​OutThisLife](https://github.com/OutThisLife))
- Grouped, live-ticking tool-activity line; improved tool call detail views; [@​session](https://github.com/session) links resolve to clickable titles; brand icons on known-domain links; iMessage-style emoji reactions (opt-in, two-way); double-click to heart ([#​72893](https://github.com/NousResearch/hermes-agent/pull/72893), [#​69868](https://github.com/NousResearch/hermes-agent/pull/69868), [#​71162](https://github.com/NousResearch/hermes-agent/pull/71162), [#​73047](https://github.com/NousResearch/hermes-agent/pull/73047), [#​74533](https://github.com/NousResearch/hermes-agent/pull/74533), [#​74644](https://github.com/NousResearch/hermes-agent/pull/74644) — [@​OutThisLife](https://github.com/OutThisLife), [@​teknium1](https://github.com/teknium1))
- Sidebar date dividers + pinned section + opt-in stale-session auto-archive; sessions stop lying about running state; credit-usage toasts; configurable attachment size limit; Cron Blueprints + Webhooks pages; searchable timezone picker ([#​70822](https://github.com/NousResearch/hermes-agent/pull/70822), [#​72303](https://github.com/NousResearch/hermes-agent/pull/72303), [#​69828](https://github.com/NousResearch/hermes-agent/pull/69828), [#​73221](https://github.com/NousResearch/hermes-agent/pull/73221), [#​70066](https://github.com/NousResearch/hermes-agent/pull/70066), [#​69687](https://github.com/NousResearch/hermes-agent/pull/69687), [#​73505](https://github.com/NousResearch/hermes-agent/pull/73505) — [@​OutThisLife](https://github.com/OutThisLife), [@​austinpickett](https://github.com/austinpickett), [@​Adolanium](https://github.com/Adolanium), [@​teknium1](https://github.com/teknium1))
- RFC 8252 native desktop sign-in (system browser + PKCE, no webview cookies); "Connect to existing Hermes" in first-run onboarding; profile-correct pairing approvals with a desktop surface ([#​67920](https://github.com/NousResearch/hermes-agent/pull/67920), [#​70907](https://github.com/NousResearch/hermes-agent/pull/70907), [#​74446](https://github.com/NousResearch/hermes-agent/pull/74446) — [@​benbarclay](https://github.com/benbarclay), [@​OutThisLife](https://github.com/OutThisLife))
- Keep-computer-awake toggle + notch wake indicator; /battery status-bar toggle; UI zoom 90% default preset; status bar hideable ([#​68140](https://github.com/NousResearch/hermes-agent/pull/68140), [#​76396](https://github.com/NousResearch/hermes-agent/pull/76396), [#​68860](https://github.com/NousResearch/hermes-agent/pull/68860), [#​73161](https://github.com/NousResearch/hermes-agent/pull/73161), [#​72960](https://github.com/NousResearch/hermes-agent/pull/72960) — [@​OutThisLife](https://github.com/OutThisLife), [@​teknium1](https://github.com/teknium1))
##### Desktop performance (60fps wave 2)
- Streaming cost independent of transcript length; 60fps on real sessions (reflow-gated pins, adaptive flush); drag at 60fps with five streaming tabs; multitab streaming made fast ([#​71835](https://github.com/NousResearch/hermes-agent/pull/71835), [#​72504](https://github.com/NousResearch/hermes-agent/pull/72504), [#​72346](https://github.com/NousResearch/hermes-agent/pull/72346), [#​71780](https://github.com/NousResearch/hermes-agent/pull/71780) — [@​OutThisLife](https://github.com/OutThisLife))
- Hidden-pane timers paused (agents view, cron sidebar, floating pet), scroll/status loops stopped in busy sessions ([#​77651](https://github.com/NousResearch/hermes-agent/pull/77651) — [@​kshitijk4poor](https://github.com/kshitijk4poor)); idle CPU near zero in the background; sidebar/overlay render churn killed; statusbar + transcript stop re-rendering per token/sash-drag/session-switch; ⌘K opens instantly; renderer cold start keeps shiki/mermaid off the boot path ([#​75218](https://github.com/NousResearch/hermes-agent/pull/75218), [#​73698](https://github.com/NousResearch/hermes-agent/pull/73698), [#​72163](https://github.com/NousResearch/hermes-agent/pull/72163), [#​72245](https://github.com/NousResearch/hermes-agent/pull/72245), [#​72524](https://github.com/NousResearch/hermes-agent/pull/72524), [#​74665](https://github.com/NousResearch/hermes-agent/pull/74665), [#​73024](https://github.com/NousResearch/hermes-agent/pull/73024) — [@​OutThisLife](https://github.com/OutThisLife))
- State diagnostics (render + store churn counters) + a lint rule banning atom-mirrored refs so the stale-read bug class cannot return; Playwright E2E suite with visual regression diffs ([#​71925](https://github.com/NousResearch/hermes-agent/pull/71925), [#​71560](https://github.com/NousResearch/hermes-agent/pull/71560), [#​65805](https://github.com/NousResearch/hermes-agent/pull/65805) — [@​OutThisLife](https://github.com/OutThisLife), [@​teknium1](https://github.com/teknium1), [@​ethernet8023](https://github.com/ethernet8023))
##### 🖥️ CLI, TUI & Dashboard
- `!` shell mode; `/init` AGENTS.md generation; `/diff` (staged/all/session, cross-surface); `/context` breakdown; `/focus` reduced-output view; Ctrl+S prompt stash; persistent `/goal` indicator; multi-select clarify (checkboxes) across CLI/gateway/TUI ([#​72257](https://github.com/NousResearch/hermes-agent/pull/72257), [#​72178](https://github.com/NousResearch/hermes-agent/pull/72178), [#​72240](https://github.com/NousResearch/hermes-agent/pull/72240), [#​72242](https://github.com/NousResearch/hermes-agent/pull/72242), [#​72302](https://github.com/NousResearch/hermes-agent/pull/72302), [#​72262](https://github.com/NousResearch/hermes-agent/pull/72262), [#​72244](https://github.com/NousResearch/hermes-agent/pull/72244), [#​72188](https://github.com/NousResearch/hermes-agent/pull/72188) — [@​teknium1](https://github.com/teknium1), salvaging [@​SHL0MS](https://github.com/SHL0MS), [@​iRonin](https://github.com/iRonin), [@​gigi206](https://github.com/gigi206) + more)
- `hermes import-agent` — one-command migration from Claude Code / Codex CLI setups ([#​72190](https://github.com/NousResearch/hermes-agent/pull/72190) — [@​teknium1](https://github.com/teknium1))
- Per-turn summary line + live token flow in the spinner; cross-surface theme SDK (one skin themes CLI, TUI, and desktop, live) ([#​72246](https://github.com/NousResearch/hermes-agent/pull/72246), [#​68857](https://github.com/NousResearch/hermes-agent/pull/68857) — [@​teknium1](https://github.com/teknium1), [@​OutThisLife](https://github.com/OutThisLife))
- TUI: reach the model picker without wrecking your draft + mid-turn switching; slash menu leads with your most-used skills; attachments live in the composer; Arabic (ar) locale with RTL across desktop/dashboard/agent ([#​74756](https://github.com/NousResearch/hermes-agent/pull/74756), [#​75931](https://github.com/NousResearch/hermes-agent/pull/75931), [#​75210](https://github.com/NousResearch/hermes-agent/pull/75210), [#​70870](https://github.com/NousResearch/hermes-agent/pull/70870) — [@​OutThisLife](https://github.com/OutThisLife))
- `hermes -w` startup \~14s → \~1.8s; global `--version` fast path; banner update-check 6× faster; dashboard lazy-loads routes + GROUP BY session stats; session filtering tabs (Chats/Automation/All) ([#​71637](https://github.com/NousResearch/hermes-agent/pull/71637), [#​62096](https://github.com/NousResearch/hermes-agent/pull/62096), [#​74188](https://github.com/NousResearch/hermes-agent/pull/74188), [#​72294](https://github.com/NousResearch/hermes-agent/pull/72294), [#​73362](https://github.com/NousResearch/hermes-agent/pull/73362), [#​73865](https://github.com/NousResearch/hermes-agent/pull/73865) — [@​teknium1](https://github.com/teknium1), [@​kshitijk4poor](https://github.com/kshitijk4poor))
- Runtime: Node 26 required across installers/heal/upgrade, managed Node/uv resolve before bare PATH, outdated managed trees heal to target major; brew + pip/PyPI wheel channels retired (shell installer / Docker / Nix are the supported channels) ([#​76459](https://github.com/NousResearch/hermes-agent/pull/76459), [#​68217](https://github.com/NousResearch/hermes-agent/pull/68217) — [@​ethernet8023](https://github.com/ethernet8023))
##### 🧩 Skills, Plugins & MCP
- **A2A v1.0** — Agent-to-Agent protocol plugin (closes [#​514](https://github.com/NousResearch/hermes-agent/issues/514)) ([#​77109](https://github.com/NousResearch/hermes-agent/pull/77109) — [@​teknium1](https://github.com/teknium1))
- Curator: surface unmanaged skills + `curator adopt`; skill-description truncation surfaced to authors; grounded-citations skill (+ fact-checking mode); simplify-code v1.1; tldraw-offline scripting skill ([#​71648](https://github.com/NousResearch/hermes-agent/pull/71648), [#​70519](https://github.com/NousResearch/hermes-agent/pull/70519), [#​71698](https://github.com/NousResearch/hermes-agent/pull/71698), [#​77104](https://github.com/NousResearch/hermes-agent/pull/77104), [#​70440](https://github.com/NousResearch/hermes-agent/pull/70440), [#​66896](https://github.com/NousResearch/hermes-agent/pull/66896) — [@​teknium1](https://github.com/teknium1))
- Office skills bundled: docx, xlsx, pdf + refreshed powerpoint; skills-tree debloat continues (yuanbao, segment-anything, jupyter, heartmula, audiocraft → optional-skills; claude-marketplace source removed; hub restructure absorbing themes/desktop-plugins/tui-widgets) ([#​68595](https://github.com/NousResearch/hermes-agent/pull/68595), [#​70452](https://github.com/NousResearch/hermes-agent/pull/70452)–[#​70456](https://github.com/NousResearch/hermes-agent/pull/70456), [#​73903](https://github.com/NousResearch/hermes-agent/pull/73903) — [@​teknium1](https://github.com/teknium1))
- MCP: Comfy Cloud catalog entry with curated 20-tool default; hidden-whitespace warnings in MCP config; pinecone-research optional skill ([#​66112](https://github.com/NousResearch/hermes-agent/pull/66112), [#​75736](https://github.com/NousResearch/hermes-agent/pull/75736), [#​70512](https://github.com/NousResearch/hermes-agent/pull/70512) — [@​teknium1](https://github.com/teknium1))
- MCP lazy server startup from a fingerprint-keyed on-disk tool-schema cache — configured servers no longer all boot at session start (design from [#​56832](https://github.com/NousResearch/hermes-agent/issues/56832)) ([#​77511](https://github.com/NousResearch/hermes-agent/pull/77511) — [@​kshitijk4poor](https://github.com/kshitijk4poor))
- NeMo Relay observability integration — re-landed after an in-window revert, on stable NeMo Relay 0.6 ([#​67607](https://github.com/NousResearch/hermes-agent/pull/67607) — [@​afourniernv](https://github.com/afourniernv))
- Gateway health & diagnostics OTLP export ([#​64536](https://github.com/NousResearch/hermes-agent/pull/64536) — [@​victor-kyriazakos](https://github.com/victor-kyriazakos))
##### 🔒 Security & Reliability
- Iron-proxy credential-injection egress firewall re-landed ([#​70848](https://github.com/NousResearch/hermes-agent/pull/70848) — [@​teknium1](https://github.com/teknium1))
- DNS-pinned SSRF-safe fetches + Slack CDN allowlist; strict redaction at compaction boundaries; ReDoS eliminated in config-key redaction patterns; prose words embedding a secret keyword no longer masked ([#​70193](https://github.com/NousResearch/hermes-agent/pull/70193), [#​69294](https://github.com/NousResearch/hermes-agent/pull/69294), [#​76083](https://github.com/NousResearch/hermes-agent/pull/76083), [#​67776](https://github.com/NousResearch/hermes-agent/pull/67776) — [@​teknium1](https://github.com/teknium1))
- Tier-3 credential reads scoped (FAL/XAI/VERCEL/DAYTONA/GITHUB presence checks etc.); CVE dependency pins refreshed (cryptography, starlette, python-multipart); hindsight env file 0600; /model moved off the gateway event loop ([#​75888](https://github.com/NousResearch/hermes-agent/pull/75888), [#​72362](https://github.com/NousResearch/hermes-agent/pull/72362) — [@​teknium1](https://github.com/teknium1))
- Windows hardening wave: text-mode subprocess decode bug class closed repo-wide, console flashes hidden across daemons/env probes/LSP/installer paths, residual encoding gaps (MCP stdio, gateway update I/O, STT/TTS, desktop spawn) ([#​70875](https://github.com/NousResearch/hermes-agent/pull/70875), [#​70205](https://github.com/NousResearch/hermes-agent/pull/70205), [#​70264](https://github.com/NousResearch/hermes-agent/pull/70264), [#​71014](https://github.com/NousResearch/hermes-agent/pull/71014) — [@​teknium1](https://github.com/teknium1), salvaging several community PRs)
- State/session integrity: four session-state fixes (safe close tracking, flush-cursor class fix, row-retry, usage-PK healer); compact v23 FTS layout + `hermes sessions optimize` + CJK-bigram FTS; read-path split with per-thread read-only connections ([#​75883](https://github.com/NousResearch/hermes-agent/pull/75883), [#​65798](https://github.com/NousResearch/hermes-agent/pull/65798), [#​69423](https://github.com/NousResearch/hermes-agent/pull/69423), [#​73344](https://github.com/NousResearch/hermes-agent/pull/73344) — [@​teknium1](https://github.com/teknium1), [@​kshitijk4poor](https://github.com/kshitijk4poor))
- OpenViking memory-provider hardening — fail closed on blocked endpoints, server verification before credentials are sent, config.yaml-first settings ([#​77747](https://github.com/NousResearch/hermes-agent/pull/77747) — [@​kshitijk4poor](https://github.com/kshitijk4poor))
- Credential pool: reset-aware primary restore (stay on fallback until the rate-limit window resets) + deferred-refresh locking fixes; FTS UPDATE triggers narrowed with fail-closed CJK migration ([#​77631](https://github.com/NousResearch/hermes-agent/pull/77631), [#​77628](https://github.com/NousResearch/hermes-agent/pull/77628) — [@​kshitijk4poor](https://github.com/kshitijk4poor))
- Config-driven memory allocator trim with telemetry; holographic memory vectors stored float32; loop-invariant HRR encodes hoisted ([#​76905](https://github.com/NousResearch/hermes-agent/pull/76905), [#​76917](https://github.com/NousResearch/hermes-agent/pull/76917), [#​76881](https://github.com/NousResearch/hermes-agent/pull/76881) — [@​kshitijk4poor](https://github.com/kshitijk4poor))
##### 🐛 Notable Bug Fixes
- Voice: full-duplex interruption during generation AND playback; whole-turn desktop speech; auto-TTS delivery gaps ([#​74223](https://github.com/NousResearch/hermes-agent/pull/74223), [#​69936](https://github.com/NousResearch/hermes-agent/pull/69936), [#​73508](https://github.com/NousResearch/hermes-agent/pull/73508) — [@​teknium1](https://github.com/teknium1))
- Desktop: Stop parks the queue instead of firing the next queued prompt; branch-in-new-chat restart loss; false remote-gateway reauthentication; cross-session composer leaks ([#​68725](https://github.com/NousResearch/hermes-agent/pull/68725), [#​71960](https://github.com/NousResearch/hermes-agent/pull/71960), [#​68250](https://github.com/NousResearch/hermes-agent/pull/68250), [#​70986](https://github.com/NousResearch/hermes-agent/pull/70986) — [@​SHL0MS](https://github.com/SHL0MS), [@​alelpoan](https://github.com/alelpoan), [@​helix4u](https://github.com/helix4u), [@​OutThisLife](https://github.com/OutThisLife))
- Gateway: session lists scoped before limiting; relay-backed home delivery after restart; timeline display events persisted ([#​65509](https://github.com/NousResearch/hermes-agent/pull/65509), [#​70102](https://github.com/NousResearch/hermes-agent/pull/70102), [#​69771](https://github.com/NousResearch/hermes-agent/pull/69771) — [@​GodsBoy](https://github.com/GodsBoy), [@​victor-kyriazakos](https://github.com/victor-kyriazakos), [@​ethernet8023](https://github.com/ethernet8023))
- Agent: context-length fallback logging + batch trajectory durability; Codex OAuth context windows revalidated against the live catalog ([#​76027](https://github.com/NousResearch/hermes-agent/pull/76027), [#​68554](https://github.com/NousResearch/hermes-agent/pull/68554) — [@​kshitijk4poor](https://github.com/kshitijk4poor), [@​teknium1](https://github.com/teknium1))
- ...plus roughly 770 more `fix:` PRs across every subsystem this window.
##### 👥 Contributors
**647 contributors** shipped this release (commit authors, co-authors, and salvaged-PR credits).
##### Core
[@​teknium1](https://github.com/teknium1), [@​OutThisLife](https://github.com/OutThisLife) (desktop, voice, perf), [@​kshitijk4poor](https://github.com/kshitijk4poor) (perf, caching, salvage), [@​ethernet8023](https://github.com/ethernet8023) (runtime, E2E, desktop), [@​benbarclay](https://github.com/benbarclay) (relay, HSP, auth)
##### All Contributors (alphabetical)
[@​02356abc](https://github.com/02356abc), [@​0301chris](https://github.com/0301chris), [@​0xAlcibiades](https://github.com/0xAlcibiades), [@​0xDevNinja](https://github.com/0xDevNinja), [@​0xLeathery](https://github.com/0xLeathery), [@​0xprincess](https://github.com/0xprincess), [@​0xr00tf3rr3t](https://github.com/0xr00tf3rr3t), [@​100yenadmin](https://github.com/100yenadmin),
[@​2001Y](https://github.com/2001Y), [@​3ssiri](https://github.com/3ssiri), [@​55nx954gn6-debug](https://github.com/55nx954gn6-debug), [@​686f6c61](https://github.com/686f6c61), [@​87degrees](https://github.com/87degrees), [@​aaronlab](https://github.com/aaronlab), [@​abundantbeing](https://github.com/abundantbeing), [@​Adolanium](https://github.com/Adolanium),
[@​adriansotomora](https://github.com/adriansotomora), [@​adurham](https://github.com/adurham), [@​afourniernv](https://github.com/afourniernv), [@​afurm](https://github.com/afurm), [@​AgenticSpark](https://github.com/AgenticSpark), [@​ahmadashfq](https://github.com/ahmadashfq), [@​AhmetArif0](https://github.com/AhmetArif0), [@​ai-ag2026](https://github.com/ai-ag2026),
[@​AIalliAI](https://github.com/AIalliAI), [@​aider4ryder](https://github.com/aider4ryder), [@​airclear](https://github.com/airclear), [@​ajzrva-sys](https://github.com/ajzrva-sys), [@​akattelu](https://github.com/akattelu), [@​AKAZIK-py](https://github.com/AKAZIK-py), [@​akb4q](https://github.com/akb4q), [@​akshan-main](https://github.com/akshan-main), [@​AlanBurningsuit](https://github.com/AlanBurningsuit),
[@​alelpoan](https://github.com/alelpoan), [@​AlexFucuson9](https://github.com/AlexFucuson9), [@​AlexxRussell](https://github.com/AlexxRussell), [@​AllardQuek](https://github.com/AllardQuek), [@​alt-glitch](https://github.com/alt-glitch), [@​aman-merchant](https://github.com/aman-merchant), [@​amanning3390](https://github.com/amanning3390), [@​amathxbt](https://github.com/amathxbt),
[@​aml1973](https://github.com/aml1973), [@​amoreno16003](https://github.com/amoreno16003), [@​AndrewMoryakov](https://github.com/AndrewMoryakov), [@​andrexibiza](https://github.com/andrexibiza), [@​andynguyendk](https://github.com/andynguyendk), [@​andyylin](https://github.com/andyylin), [@​aneym](https://github.com/aneym), [@​angelos](https://github.com/angelos),
[@​aniruddhaadak80](https://github.com/aniruddhaadak80), [@​AnnasMazhar](https://github.com/AnnasMazhar), [@​annguyenNous](https://github.com/annguyenNous), [@​anoopmehendale-cue](https://github.com/anoopmehendale-cue), [@​AnthonyFrancis](https://github.com/AnthonyFrancis), [@​arcabotai](https://github.com/arcabotai), [@​ArcherQAQ](https://github.com/ArcherQAQ),
[@​Ares4Tech](https://github.com/Ares4Tech), [@​arimu1](https://github.com/arimu1), [@​arnoldfrancisca](https://github.com/arnoldfrancisca), [@​asimons81](https://github.com/asimons81), [@​asorry75](https://github.com/asorry75), [@​AtakanGs](https://github.com/AtakanGs), [@​ATran28](https://github.com/ATran28), [@​austinpickett](https://github.com/austinpickett),
[@​Automata-intelligentsia](https://github.com/Automata-intelligentsia), [@​awain7](https://github.com/awain7), [@​aweiker](https://github.com/aweiker), [@​aydnOktay](https://github.com/aydnOktay), [@​ayushere](https://github.com/ayushere), [@​b](https://github.com/b), [@​baau](https://github.com/baau), [@​baauzi](https://github.com/baauzi), [@​baenregod](https://github.com/baenregod),
[@​bakhtiersizhaev](https://github.com/bakhtiersizhaev), [@​Baophan00](https://github.com/Baophan00), [@​baoyu0](https://github.com/baoyu0), [@​Bartok9](https://github.com/Bartok9), [@​basilalshukaili](https://github.com/basilalshukaili), [@​BB-light](https://github.com/BB-light), [@​bbopen](https://github.com/bbopen), [@​Beandon13](https://github.com/Beandon13),
[@​beardedeagle](https://github.com/beardedeagle), [@​bedirhancode](https://github.com/bedirhancode), [@​benbarclay](https://github.com/benbarclay), [@​benegessarit](https://github.com/benegessarit), [@​benjamin2026-dot](https://github.com/benjamin2026-dot), [@​bennybuoy](https://github.com/bennybuoy), [@​BenSheridanEdwards](https://github.com/BenSheridanEdwards),
[@​BKStock](https://github.com/BKStock), [@​BlackishGreen33](https://github.com/BlackishGreen33), [@​bnikanjam](https://github.com/bnikanjam), [@​bounce12340](https://github.com/bounce12340), [@​Bounty13](https://github.com/Bounty13), [@​bpross](https://github.com/bpross), [@​briandevans](https://github.com/briandevans), [@​bricelb](https://github.com/bricelb), [@​brunopirz](https://github.com/brunopirz),
[@​bryanneva](https://github.com/bryanneva), [@​byshubham](https://github.com/byshubham), [@​camaleonidas](https://github.com/camaleonidas), [@​canorionen](https://github.com/canorionen), [@​carbongotfound](https://github.com/carbongotfound), [@​carljborg](https://github.com/carljborg), [@​carlotestor](https://github.com/carlotestor), [@​carrion256](https://github.com/carrion256),
[@​caseyanthony](https://github.com/caseyanthony), [@​cat-thats-fat](https://github.com/cat-thats-fat), [@​Cdddo](https://github.com/Cdddo), [@​ceverson70](https://github.com/ceverson70), [@​chancelu](https://github.com/chancelu), [@​chaos-xxl](https://github.com/chaos-xxl), [@​CharlesMcquade](https://github.com/CharlesMcquade), [@​chazmaniandinkle](https://github.com/chazmaniandinkle),
[@​chefboyrdave21](https://github.com/chefboyrdave21), [@​chelsealong](https://github.com/chelsealong), [@​Christopher-Schulze](https://github.com/Chr…
randlee
pushed a commit
to randlee/hermes-agent
that referenced
this pull request
Aug 11, 2026
…ents live status, runs-stream subagent lifecycle Catch the docs up to this week's delegation work: - delegation.md: structured timeout metadata fields (timeout_seconds/ timed_out_after_seconds/timeout_phase, NousResearch#72403); new 'Stall Detection for Background Subagents' section (progress-based monitor, thresholds, grace window, stalled event metadata, root-cause fix note — NousResearch#72227/ NousResearch#72300/NousResearch#72412); /agents per-child live activity on CLI + gateway; all-thread diagnostic dump note. - api-server.md: /v1/runs events stream now documents subagent.start/ subagent.complete forwarding, redaction, child_session_id, and the deliberate exclusion of per-tool child events (NousResearch#72406). - sidebars.ts: register the subagent-lifecycle-api developer guide page (shipped in NousResearch#72501 but absent from the sidebar). Docusaurus build verified.
33hodl
pushed a commit
to 33hodl/hermes-agent
that referenced
this pull request
Aug 12, 2026
…ents live status, runs-stream subagent lifecycle Catch the docs up to this week's delegation work: - delegation.md: structured timeout metadata fields (timeout_seconds/ timed_out_after_seconds/timeout_phase, NousResearch#72403); new 'Stall Detection for Background Subagents' section (progress-based monitor, thresholds, grace window, stalled event metadata, root-cause fix note — NousResearch#72227/ NousResearch#72300/NousResearch#72412); /agents per-child live activity on CLI + gateway; all-thread diagnostic dump note. - api-server.md: /v1/runs events stream now documents subagent.start/ subagent.complete forwarding, redaction, child_session_id, and the deliberate exclusion of per-tool child events (NousResearch#72406). - sidebars.ts: register the subagent-lifecycle-api developer guide page (shipped in NousResearch#72501 but absent from the sidebar). Docusaurus build verified.
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Plugins can now launch and manage subagents through a typed, capability-safe public API —
ctx.subagent_lifecyclewithlaunch/status/wait/cancel/result/reconnect— routed through the same delegation enginedelegate_taskuses. Implements the plugin-expansion item tracked in #65447 (umbrella #64182); consumers waiting: hardproof plugin, @2001Y's Luna→Sol use case.Salvage of #63359 by @asimons81 (both commits cherry-picked, authorship preserved) plus integration follow-ups for everything that landed on main since it branched.
Changes
Contributor commits (@asimons81):
agent/subagent_lifecycle.py(new):SubagentLifecycleService— HMAC-signed serializable handles (forged/tampered handles returnUNKNOWN, verified E2E), correlation-id dedupe, toolset narrowing (never widening), bounded results, terminal-snapshot retention, honestreconnectafter restart.hermes_cli/plugins.py:PluginContext.subagent_lifecycleproperty; parent resolution via a turn-scoped ContextVar (bind_subagent_parent) instead of the CLI-only_cli_ref, so gateway turns work too.tools/delegate_tool.pyrefactor:delegate_taskand the plugin API share_build_child_preserving_parent_tools(lock-guarded parent-toolset save/restore) and_finalize_child_results(summary budget, memory notify, subagent_stop hooks, cost rollup — applied once, serialized per-parent).website/docs/developer-guide/subagent-lifecycle-api.md) + 250-line test file.Integration follow-ups (ours):
_finalize_child_resultsemitstool_call_historyonsubagent_stop(the feat(delegate): expose redacted child tool history in subagent_stop (salvage #62011) #72403 field landed after the PR branched; the shared pipeline must carry it for both doors).DaemonThreadPoolExecutor— a wedged/abandoned child must never block interpreter exit (same rationale as the delegation timeout executor and async registry pool)._run_single_child'sdelegated_child_context).Validation
tests/tools/sweep (2 pre-existingtest_managed_browserbase_and_modal.pyfailures reproduce identically on clean origin/main — unrelated).UNKNOWN; launch with no active parent refused.Credit
@asimons81's #63359, cherry-picked with authorship preserved. Closes #65447's implementation item.
Infographic