Bookmarks
Open-Source Spotlight — Full Archive
Project of the Week
- \u200bTRELLIS.2
- A 4-billion-parameter image-to-3D generative model built on a novel "field-free" sparse voxel structure called O-Voxel, targeting high-fidelity 3D generation from a single image. It stands out as one of the largest and most complete open 3D-generation model releases this cycle.
- H3-metal
- A native inference engine for MiniMax-H3 hybrid SSM/attention models, written by Redis creator Salvatore Sanfilippo and built for Apple Silicon; it earned 348 points and 76 comments on Hacker News this week and shows how far efficient local inference has come without a GPU datacenter.
- needle
- Needle 2 is an open 45M-parameter model for tool calling and structured extraction, compressed into a single 14MB binary that runs a full session in ~28MB RAM on phones, wearables, and robots.
- OpenViking
- An open-source "context database" for AI agents that unifies agent memory, knowledge RAG, and skills into a virtual filesystem exposed via the `viking://` protocol.
- Model Context Protocol roadmap
- MCP's maintainers laid out five priorities for the spec: agentic messaging primitives, HTTP-native transport, agent identity and enterprise security, richer tool-result primitives, and SDK ergonomics, building on the issuer-validation and Client ID Metadata Document work that landed in July's release. Anyone building an MCP server or client now has a concrete list of what changes next instead of reverse-engineering it from GitHub issues.
- Strix
- Open-source AI penetration testing tool with autonomous agents that find and fix app vulnerabilities, integrating with GitHub Actions and CI/CD pipelines.
- OpenCut
- An open-source CapCut alternative video editor for web, desktop, and mobile, being rewritten with a Rust core, plugin-first architecture, and MCP server support.
- container
- A Swift tool for creating and running Linux containers as lightweight virtual machines on Mac, optimized for Apple silicon and OCI-compatible.
- OpenClaw
- Peter Steinberger started it as a weekend project in November 2025; by late August it had roughly 389,000 stars, 81,000 forks, and over 80,000 commits, which is what led GitHub to call it the fastest-growing project in its history. The team now spans OpenClaw Foundation staff and volunteers pulled in from companies like Red Hat and Digital Meld, and they've spent recent months going through dependencies "with a fine-tooth comb," trimming the ones they don't need, and requiring agent transcripts and test evidence before merging a pull request. It shipped v2026.9.3 today, September 8.
Top 5 Trending Repos
- \u200bbuzz
- A self-hostable, Apache-2.0 "hive mind" workspace where humans and AI agents share rooms over a relay you own. — Significance: High · GitHub Trending
- \u200bOpenCodeReview
- An AI code-review CLI combining deterministic pipelines with an LLM agent for precise line-level comments and built-in multi-language rulesets. — Significance: High · GitHub Trending
- \u200bAirLLM
- Runs 70B-parameter LLMs on a single 4GB GPU by streaming layers one at a time, without quantization, distillation, or pruning. — Significance: Medium · GitHub Trending
- \u200bGeoLibre
- A lightweight, cloud-native GIS platform that runs in the browser, desktop, mobile, and Jupyter, shipping 1,000+ geoprocessing tools while keeping data local. — Significance: Medium · GitHub Trending
- \u200bOpenWork
- An open-source desktop alternative to Claude Cowork that shares skills, MCPs, and connected services across agents, teammates, and machines. — Significance: Medium · GitHub Trending
- pdf-inspector
- Fast Rust library that classifies PDFs as scanned vs. text-based and extracts position-aware text into clean Markdown without OCR, with Python, Node.js, and WebAssembly bindings.
- google/skills
- Official first-party repository of Agent Skills for Google products and Google Cloud, installable via `npx skills add google/skills`.
- DeepSeek-Reasonix
- DeepSeek-native coding agent shipped as one MIT-licensed Go binary, offering plan mode, permissions, a workspace sandbox, per-turn checkpoints, and four interfaces (terminal, desktop, browser, editor over ACP).
- TencentDB-Agent-Memory
- A team-level memory hub that turns conversations, docs, and code into four reusable, governed agent assets (Chat Memory, Skill, LLM-Wiki, Code-Graph).
- semantica
- Graph-native infrastructure that ingests enterprise data into a Context Graph for analytics and causal reasoning, with decision provenance baked in; trending on GitHub this week.
- prime-agent
- A self-improving recursive language model (RLM) agent for coding workflows and long-running autonomous tasks, using prompt-as-a-variable context and sub-agent tool calls; trending.
- omarchy
- DHH's beautiful, modern, and opinionated Linux distribution, with its manual kept in-repo as the authoritative source; trending.
- unsloth
- A native desktop app to run and train LLMs and diffusion models locally, including Qwen, Kimi, Gemma, DeepSeek, and FLUX; trending.
- skills
- Public repository for Anthropic's Agent Skills — folders of instructions, scripts, and resources that Claude loads dynamically for specialized tasks; trending.
- Modular Platform
- Hosts open-source components of the Modular Platform, including the MAX AI framework and Mojo language.
- OpenLogi
- Rust-based, local-first alternative to Logitech Options+ for remapping buttons, DPI, and SmartShift over HID++, with no account or telemetry.
- Claude Plugins Community
- Read-only mirror of the community plugin marketplace for Claude Cowork and Claude Code, synced nightly from Anthropic's review pipeline.
- ai-memory
- Long-term memory for AI coding CLIs that enables handoff between agent vendors, e.g., switching from Claude Code to OpenAI Codex without re-explaining context.
- MoneyPrinterTurbo
- Gained roughly 10,647 stars this week, the single biggest jump of any repo on GitHub, pushing this one-click AI video generator past 116k total. Content automation, not agent tooling, is still what pulls the largest crowds.
- Codex
- OpenAI's terminal coding agent added about 10,570 stars this week and crossed 118k total, effectively tying MoneyPrinterTurbo for the week's biggest single-repo pull as OpenAI presses into the space Claude Code and Cursor already occupy.
- nodeterm
- A node-based terminal manager for running multiple coding-agent sessions on one pan-and-zoom canvas gained 529 stars this week; the BUSL license converts to MIT four years after each release.
- awesome-gpt-image-2
- 530-plus reverse-engineered prompt examples and 20 templates for GPT-Image-2-class models, up 4,341 stars this week — prompt-engineering libraries for image models are turning into their own genre.
- PostHog
- The product-analytics platform added 1,186 stars this week after folding AI observability into the same suite as session replay and feature flags, repositioning it as a place to watch both users and LLM calls.
- OmniRoute
- Free AI gateway providing one endpoint for 231+ providers (50+ free), with token compression saving 15-95% tokens and smart auto-fallback.
- Meetily
- Privacy-first AI meeting assistant with local transcription, speaker diarization, and Ollama summarization built on Rust, no cloud required.
- video-use
- Open-source tool to edit videos using Claude Code, dropping raw footage and getting final output via chat.
- speech-to-speech
- Low-latency modular voice-agent pipeline (VAD→STT→LLM→TTS) with OpenAI Realtime-compatible WebSocket API, fully local or hosted.
- olmocr
- Toolkit for converting PDFs and image-based documents into clean Markdown for LLM datasets, supporting equations, tables, and handwriting.
- DesktopCommanderMCP
- MCP server giving Claude terminal control, file system search, and diff editing capabilities.
- OfficeCLI
- Single-binary Office suite for AI agents to read, edit, and automate Word, Excel, and PowerPoint files.
- CubeSandbox
- High-performance, lightweight sandbox service for AI agents built on RustVMM and KVM.
- awesome-llm-apps
- 100+ open-source AI agent and RAG apps that can be cloned, customized, and shipped, supporting Claude, Gemini, GPT, and more. — Significance: High (fast-rising stars)
- code-review-graph
- A local-first code intelligence graph for MCP and CLI that builds a persistent map of your codebase to reduce context for AI coding tools. — Significance: Medium (trending)
- build-your-own-x
- A compilation of step-by-step guides for recreating favorite technologies from scratch, from databases to emulators. — Significance: Medium (trending)
- SkillSpector
- Security scanner for AI agent skills that detects vulnerabilities and malicious patterns; research shows 26.1% of skills contain vulnerabilities.
- Headroom
- Compresses tool outputs, logs, and RAG chunks before LLM ingestion, achieving 60–95% fewer tokens with same answers.
- LMCache
- KV cache management layer for scalable LLM inference, with new multiprocess architecture and agentic workload benchmarks.
- cuTile Rust
- Safe, data-race-free GPU kernels in Rust.
- OpenMontage
- World's first open-source, agentic video production system with 12 pipelines, 52 tools, and 500+ agent skills.
- Voicebox
- Open-source AI voice studio for cloning voices, generating speech, and dictating into any app, running locally.
- Flue
- Sandbox agent framework for building autonomous agents and AI workflows with a programmable TypeScript harness.
- page-agent
- JavaScript in-page GUI agent that controls web interfaces with natural language, requiring no browser extension or headless browser.
- Anthropic-Cybersecurity-Skills
- 817 structured cybersecurity skills for AI agents mapped to 6 frameworks including MITRE ATT&CK and NIST CSF 2.0, compatible with Claude Code, GitHub Copilot, and 20+ platforms.
- Palmier Pro
- Open-source macOS video editor built for AI, allowing users and agents to generate and edit videos together inside the timeline.
- Magnitude
- An inference server that profiles your hardware, recommends local models that will actually run on it, then downloads and wires them into whatever coding agent you already use, including Claude Code, Codex and OpenCode. It shipped CLI 0.0.13 today.
- VoiceStudio
- A fully local alternative to ElevenLabs: voice cloning, video dubbing, dictation and transcription across 646 languages, running entirely on your own hardware with no account or API key required. Released v0.5.1 on August 28.
- MiniMind
- Trains a 64-million-parameter language model from scratch for about $3 in GPU time and two hours on a single RTX 3090, with the full pretrain-through-RLHF pipeline written in plain PyTorch rather than hidden behind Transformers or TRL.
- Feynman
- An open-source research agent that ships as a standalone binary with its own pinned Node runtime, so it doesn't inherit whatever version is already on your machine. Latest release is v0.3.48, from September 6.
Notable New Releases
- \u200bGit 2.55
- New open-source Git release; GitHub highlights the most interesting features and changes introduced since 2.54.
- \u200bShieldFont
- A tool that poisons fonts so AI scrapers misread text while humans can still read it normally.
- Chicken Scheme 6.0
- Major version release of the long-lived Chicken Scheme compiler; drew 237 points and 32 comments on Hacker News.
- Needle 2
- A 14MB agentic LLM (45M params at 2-bit) that runs a full session in 28MB RAM and hits ~500 tokens/sec on a Raspberry Pi 5, aimed at phones, wearables, smart homes, and robots.
- modly
- Local, open-source AI-powered image-to-3D mesh generation desktop app for Windows, Linux, and Apple Silicon macOS.
- Vanilla OS 3
- Immutable desktop Linux distribution released with Arm64 support, a new Vanilla OS SDK, and a rewritten Apx package manager.
- Apache Maka
- Incubating local-first AI agent workspace that records model messages, tool calls, and permission decisions as an append-only log on your machine.
- oMLX
- LLM inference server for Apple Silicon with continuous batching, SSD-backed tiered KV caching, and macOS menu bar management.
- AI-Infra-Guard
- Full-stack AI red-teaming platform covering agent scans, skills scans, MCP scans, AI infrastructure vulnerability scans, and LLM jailbreak evaluation.
- Cursor Plugins
- Official plugin specification and plugins for Cursor across popular developer tools, frameworks, and SaaS products.
- PostgreSQL 18.6, 17.11, 16.15, 15.19, 14.24, and 19 Beta 3
- One coordinated release closing 28 CVEs and over 110 bugs across every supported branch, released August 13, 2026. PostgreSQL 18.5 was skipped entirely after a regression surfaced, and PostgreSQL 14 loses support on November 12, 2026.
- Rust 1.98.0
- Ships algebraic float methods that let the compiler use real-number properties for optimizations like loop vectorization, a NumBuffer-based `format_into` for integer formatting, and promotes five Arm embedded targets to Tier 2.
- Mesa 26.2.1
- A bug-fix pass on August 20 following 26.2.0's NVK mesh-shader support for NVIDIA GPUs and the new KosmicKrisp Vulkan 1.4 driver for Apple Silicon.
- OpenSSH 10.4/10.4p1
- Latest release of the essential secure connectivity tool.
- Astryx
- Meta's open-source design system (beta) powering 13,000+ apps, built on React and StyleX.
- Impeccable
- Design guidance skill for AI coding agents with 23 commands and 46 deterministic detector rules.
- Archify
- Agent skill generating architecture diagrams with dark/light theme and multiple export formats.
- Claude Video
- Plugin giving Claude the ability to watch videos by downloading, extracting frames, and transcribing.
- DeepTutor v1.5.2
- Released on July 19, 2026, with configurable chat attachment limits and PageIndex retrieval for lifelong personalized tutoring.
- GrapheneOS ported to Android 17
- Official releases coming soon.
- Nub
- A Bun-like all-in-one toolkit for Node.js, released as open source.
- Ornith-1.0
- Self-improving open-source models for agentic coding, gaining 229 points on Hacker News.
- Zluda 6
- Release enabling running unmodified CUDA applications on non-Nvidia GPUs.
- FreeBSD 14.5-RELEASE
- The sixth point release on the stable/14 branch, out today. Mostly bug fixes, driver updates and refreshed bundled software rather than new features, supported through June 30, 2027, with images ready on EC2, Azure, Google Compute Engine and Docker.
- OpenMAIC
- A one-click, multi-agent classroom generator out of Tsinghua that turns a prompt or a stack of source material into a full course, including slides, quizzes and interactives. v1.0.1, tagged "Security and stability," shipped September 6.
- Zod
- The TypeScript validation library nearly every Node project already depends on pushed v4.5.4 on August 29. It's a routine patch, but with 43,900-plus stars and near-ubiquitous adoption, routine still touches a lot of production code.
- Tailcat
- Netcat, rebuilt to run over Tailscale's encrypted WireGuard data plane without needing its control plane: you exchange connection details out of band, then get a direct, NAT-punched tunnel. v0.6.0 landed September 4.
Hidden Gems
- \u200bi-have-adhd
- A plugin skill that stops coding agents from burying the answer, forcing direct ADHD-friendly output.
- \u200btext-to-cad
- A skills library for CAD, CAE, and CAM that lets agents generate, inspect, source, slice, and hand off hardware artifacts.
- \u200bPascal Editor
- A 3D building editor built with React Three Fiber and WebGPU, with separate published packages for the viewer runtime and node definitions.
- \u200bbook-to-skill
- Converts technical book PDFs into a Claude Code skill, claiming 24×–51× fewer tokens than dumping sources into context.
- Juror
- An open-source alternative to the Greptile AI codebase assistant; early Show HN with 6 points.
- code-graph-rag
- Parses multi-language monorepos with Tree-sitter into a knowledge graph in Memgraph, letting you query, edit, and optimize code in plain English; Ruby support was just added.
- reverse-skill
- A cybersecurity skill router that bootstraps reverse-engineering and penetration-testing toolchains inside Claude Code, Kiro, Cursor, and Cline.
- avouch
- A free, local AI code reviewer written after its author canceled a paid review service; runs without cloud dependencies.
- NeoBrowser
- An MCP server that drives real Chrome with your logged-in sessions, letting agents operate on authenticated web state.
- impersonate-proxy
- Local MitM proxy that controls TLS fingerprints, useful for evading fingerprint-based blocking.
- Bookshelf
- Self-hosted eBook library that runs on object storage (133 HN points, 50 comments).
- Cordis
- Meta-framework of spatiotemporal composability with an associated primer paper; API still unstable.
- HelloAssembly
- The smallest possible complete Windows application, written in assembly.
- vpsmon
- A single ~5MB Go binary that serves a password-protected web dashboard for CPU, memory, disk, and network on a Linux VPS, with nothing to install on the client side. 32 stars.
- CarWatch
- Runs a 35B-parameter model locally on a Raspberry Pi 5 to turn a car into an offline voice assistant that also reads OBD engine data and manages dashcam clips. AGPL-3.0, 67 stars.
- pg_auto_reindexer
- Watches for B-tree index bloat in Postgres and reindexes concurrently instead of waiting for a DBA to notice queries have slowed down. MIT-licensed, 129 stars.
- FluidVoice
- Fastest macOS dictation app with on-device STT and custom AI enhancement, a local Wispr Flow alternative.
- herdr
- Agent multiplexer that runs all coding agents in one terminal, showing who's blocked, working, or done.
- Caveman
- Claude Code skill that cuts 65% of output tokens by making AI talk like a caveman, compatible with 30+ agents.
- codebase-memory-mcp
- High-performance code intelligence MCP server indexing codebases into a persistent knowledge graph in milliseconds, supporting 158 languages.
- YouTrackDB
- General-use object-oriented graph database from JetBrains.
- PentAGI
- Fully autonomous AI agent system for complex penetration testing tasks.
- System Prompts Leaks
- Curated collection of extracted system prompts from major AI models, updated regularly.
- AI Trains AI
- RL-trained agent that trains models with reinforcement learning, reportedly costing –$1.3k.
- Ex Situ
- An open-source spatial index mapping displaced cultural artifacts from origin sites to institutional locations, AGPL-3.0 licensed.
- Destructive Command Guard
- A high-performance hook for AI coding agents that blocks destructive git and shell commands before execution.
- open-notebook
- Open-source, privacy-focused alternative to Google's Notebook LM with multi-model support.
- music-assistant/server
- Free, open-source media library manager connecting streaming services to speakers.
- pm-skills
- Marketplace of 68 PM skills and 42 chained workflows for AI agents like Claude Code.
- last30days-skill
- AI agent skill researching topics across Reddit, X, YouTube, HN, and Polymarket.
- Agent-Reach
- CLI tool giving AI agents access to Twitter, Reddit, YouTube, GitHub, Bilibili, XiaoHongShu with zero API fees.
- World Monitor
- Real-time global intelligence dashboard with AI-powered news aggregation, geopolitical monitoring, and infrastructure tracking in a unified interface.
- .self top-level domain
- New TLD designed to support self-hosting, gaining 568 points on Hacker News.
- Microduck RL
- Reinforcement-learning training environments for a real 800-gram, 25-centimeter bipedal robot. The reward shaping, actuator physics and domain-randomization tricks that make a policy trained in simulation actually walk once it hits hardware are documented plainly enough to reuse.
- OpenSEO
- A pay-as-you-go, self-hosted alternative to Semrush and Ahrefs: keyword research, rank tracking, site audits, run against your own DataForSEO API key instead of a subscription, with MCP support so an agent can drive it directly. v0.1.7 shipped September 2.
- casefold
- The Rust crate behind a genuinely clever fix: GitHub's code-search engine used to case-fold text with an early-exit loop that looked efficient and was actually just unpredictable for a branch predictor. Removing the early exit and letting the compiler vectorize a straight sweep pushed ASCII throughput from 3.1 GiB/s to more than 45 GiB/s, fast enough to fold every byte of Blackbird's 480-terabyte index.
Developer Tooling Highlights
- \u200bego-lite
- A browser for AI agents to run parallel browser-automation tasks in isolated Spaces while sharing your logged-in state without disturbing you.
- \u200bjcode
- A coding-agent harness focused on RAM efficiency, shipping with benchmarks, SDK, and docs.
- Copilot behind a MitM proxy
- A developer's findings from intercepting GitHub Copilot traffic with a man-in-the-middle proxy; 18 points on Hacker News.
- public-apis
- The collective list of free APIs remains the go-to reference for finding public API endpoints.
- VS Code 1.132
- Agent Host now lets multiple VS Code windows share one running agent session instead of spawning a new one per window, adds on-device multilingual dictation built on Microsoft's Nemotron 3.5 model, and lets agents annotate specific elements inside the built-in browser. Released August 5.
- Zed 1.16.2
- Patches a filesystem sandbox escape that let extensions read files outside their intended scope, alongside a Copilot Chat authentication fix for GitHub Enterprise Cloud. Released August 24.
- Fuzzing the Gleam Compiler
- Structure-aware fuzzing that generates type-safe Gleam programs instead of random bytes turned up nine bugs, including an Erlang-codegen panic on unreachable branches and a JavaScript variable-shadowing bug, plus one issue reported upstream to Erlang/OTP itself.
- Chrome DevTools MCP
- Lets coding agents control and inspect a live Chrome browser via MCP for automation and debugging.
- Codex plugin for Claude Code
- Use Codex from inside Claude Code for code reviews or task delegation.
- Immich
- High-performance self-hosted photo and video management solution, trending on GitHub.
- ui-skills
- A CLI tool that routes AI agents through the right UI skill set for design tasks.
- Incremental
- A library for incremental computations from Jane Street.
- Nativ
- Run frontier open models locally on your Mac.
- RubyLLM
- A Ruby framework for all major AI providers, gaining attention on Hacker News.
- Penpot
- Open-source design platform for design and code collaboration, trending on GitHub.
- Insomnia
- Open-source, cross-platform API client for GraphQL, REST, WebSockets, SSE, and gRPC.
- Plane
- Open-source Jira, Linear, Monday, and ClickUp alternative for project management.
- Stirling-PDF
- #1 PDF application on GitHub for editing PDFs on any device, with desktop, browser, and self-hosted options.
- Chatwoot
- Open-source live-chat, email support, and omni-channel desk alternative to Intercom and Zendesk.
- Continue
- Open-source coding agent available as CLI, VS Code extension, and JetBrains plugin (now read-only with final 2.0.0 release).
- Agent Toolkit for AWS
- Official MCP servers, skills, and plugins for AI agents to build on AWS, compatible with Claude Code, Codex, Cursor, and Kiro.
- agent-native
- Framework for building agent-native applications with shared actions, SQL-backed state, identity, tools, and observability.
- cognee
- Open-source AI memory platform giving agents persistent long-term memory across sessions with a self-hosted knowledge graph engine.
- hiring-agent
- AI agent to evaluate and score resumes, extracting structured data from PDFs and enriching with GitHub signals.
- {fmt}
- The C++ formatting library that became the basis for `std::format` is still what most teams reach for over iostreams: safe printf semantics, correctly-rounded float formatting, and a Python-like format-string syntax. Current release is 12.2.0.
- Ponytail
- An agent-harness skill built around one idea: most AI-generated code is longer than it needs to be, so nudge the agent toward the smallest working version instead of the first one it thinks of. The project's own benchmark claims a 54% average reduction in generated code across a dozen feature tasks — worth verifying against your own codebase rather than taking on faith. v4.9.0 shipped August 7.
- OpenClaude
- Not to be confused with OpenClaw, above: this is a separate, community-built fork of Anthropic's Claude Code CLI that swaps in support for OpenAI-compatible APIs, Gemini, Ollama and other backends behind one terminal workflow. The README is explicit that it isn't affiliated with Anthropic. v0.30.0 shipped August 31.
Community & Ecosystem News
- TLDR Tech roundup, Aug 14
- Roundup covers OpenAI UltraFast, X open-sourcing its algorithm, and DeepSeek Harness.
- .NET Foundation statement on open-source maintenance fees
- Declines to bless or block the model but sets ground rules: source stays free under its license, and consumers get told upfront when binaries or support cost extra. Polly, the .NET resilience library with over 2 billion downloads, starts charging companies earning $20,000+ from it $20 a month on November 16.
- The End of Open Source
- Argues open source security still runs on a volunteer noticing something by chance, pointing to Sonatype's count of 1.8 million malicious packages found across registries, and warns that AI now lets attackers mine stolen data automatically instead of needing a human analyst.
- CVE-2026-17084
- Python's IDNA 2003 codec case-folds domain names with `str.lower()`, which quietly changes behavior every time the interpreter's bundled Unicode tables update. Certain Cherokee characters encode differently depending on which Python version processes them.
- NLnet announces funding for 67 more open-source projects
- Continued investment in open-source infrastructure.