OpenRig
← All of OpenRig 0.6.4

ChangedOpenRig 0.6.4

The daemon now checks which address and which web page a request comes from. Your CLI, TUI, agents, Slack and other OpenRig hosts are unaffected; a custom hostname or a local web app needs one setting.

The daemon checks which address and which web page a request comes from. Nothing changes for the CLI, the TUI, agents, the queue, Slack or other OpenRig hosts; a custom DNS name or proxy domain goes in OPENRIG_ALLOWED_HOSTS, and a local app on another port in OPENRIG_ALLOWED_ORIGINS.

It isn't complete browser isolation, so keep the daemon on loopback or your tailnet. Both settings need a daemon restart.

Pull requests
#358, #372