How it works & safety
The architecture, and what keeps contributors safe.
| Part | Runs on | Does |
|---|---|---|
| Website | Cloudflare Workers | Sign in with GitHub; browse, publish and release tasks |
| Local app | The contributor's computer | Everything above, plus running the AI agent |
Task state
Every task state change is an issue comment with a hidden marker (claim, handoff, done, release). State is computed by replaying these comments in order, and each marker counts only for its comment's author. When two people claim at once, the earlier comment wins.
Safety
- Task text is untrusted input to your AI. Only maintainer-approved tasks run, and you get a warning if the text was edited after approval.
- Runs started from the app can only edit files.
- Nothing is pushed until you choose to.
- The local app listens on 127.0.0.1 only and rejects requests from other sites.