
Security News
Happy Birthday, Shai-Hulud
It has been one year since Shai-Hulud made its first appearance on npm.
Open-source TUI coding agent — TypeScript / Bun monorepo with multi-provider routing, MCP, LSP, and Plan/Agent/YOLO modes.
中文: README-zh.md
Open-source TUI coding agent — a TypeScript / Bun monorepo.
Lightweight terminal coding companion with multi-provider routing (OpenAI-compatible / Anthropic / Bedrock / Vertex / Azure), 50+ tools, 100+ slash commands, Plan / Agent / YOLO modes, MCP client, LSP feedback, and a headless HTTP/SSE runtime API.
Bun.spawn / Bun.serve / Bun.file; node alone cannot run
it. Even if you install via npm i -g, the openseek command shells out
to bun at startup and will fail with env: bun: No such file or directory
if bun is not on your PATH.curl -fsSL https://bun.sh/install | bash # any Unix
brew install oven-sh/bun/bun # macOS (Homebrew)
Verify: bun --version should print ≥ 1.3.0.
Pick one. All three put openseek on your PATH.
# A. npm
npm install -g openseek
# B. bun (same registry as A, smoother if you already use bun)
bun add -g openseek
# C. From source (recommended while iterating)
git clone https://github.com/LichAmnesia/openseek.git
cd openseek
bun install
bun run build
ln -sf "$PWD/bin/openseek" ~/.local/bin/openseek
openseek # start the TUI
openseek doctor # health check
openseek serve --http # headless HTTP/SSE on :7117
bun install
bun run dev # boots the CLI directly from TypeScript sources, no build needed
bun run lint # biome
bun run typecheck # tsc --noEmit
bun run test # bun test
bun run verify # all three
openseek/
├── packages/ 14 workspace packages
│ ├── core/ shared leaf utilities
│ ├── provider/ 25+ provider adapters (Vercel ai SDK)
│ ├── session/ main agent loop + compaction strategies
│ ├── tool/ built-in tool registry
│ ├── command/ slash-command registry
│ ├── tui/ @opentui/solid terminal renderer
│ ├── mcp/ MCP client (stdio / SSE / websocket)
│ ├── skill/ skill loader
│ ├── agent/ sub-agents + RLM fan-out
│ ├── memory/ SessionMemory
│ ├── plugin/ plugin protocol
│ ├── server/ HTTP / SSE runtime API
│ ├── lsp/ LSP client (tsserver, rust-analyzer, pyright, ...)
│ └── cli/ entrypoint
├── scripts/ init / build / lint / typecheck / test / verify
├── tests/ cross-package smoke / e2e / coverage gate
├── install/ curl-bash installer + Brewfile + Nix expression
├── bin/openseek executable shim
└── package.json bun workspaces root
See LICENSE.
FAQs
Open-source TUI coding agent — TypeScript / Bun monorepo with multi-provider routing, MCP, LSP, and Plan/Agent/YOLO modes.
The npm package openseek receives a total of 15 weekly downloads. As such, openseek popularity was classified as not popular.
We found that openseek demonstrated a healthy version release cadence and project activity because the last version was released less than a year ago. It has 1 open source maintainer collaborating on the project.

Security News
It has been one year since Shai-Hulud made its first appearance on npm.

Research
/Security News
Operators behind PolinRider used a compromised GitHub account to plant malware in four development versions of a Packagist package with 700,000+ downloads.

Security News
GitHub Actions now supports cache-mode, a least-privilege control on the Actions cache aimed at the cache poisoning technique behind recent compromises.