autogen · Issues· 1074 open
Open on GitHubLocally synced open issues (discussions stay on GitHub)
- #7405
Proposal: GuardrailProvider protocol for tool call interception
Updated Sep 17, 2026 - #8238
HandoffMessage.context splices peer-authored messages into another agent's model context with their declared LLM role intact
Updated Sep 16, 2026 - #4894
AssistantAgent may ask for approval before executing a tool
proj-coreproj-agentchatUpdated Sep 16, 2026 - #7528
Proposal: Capability-scoped tool authorization for AutoGen multi-agent pipelines
Updated Sep 16, 2026 - #8243
源码里的非致命小问题
Updated Sep 16, 2026 - #8240
Fix stale documentation links and redirect fallback text
Updated Sep 16, 2026 - #8239
CodeExecutorAgent defaults execute any participant's code blocks on the host without approval; documented dangerous-command sanitizer does not exist
Updated Sep 15, 2026 - #8211
ChatCompletionCache omits tool_choice from the cache key, so 'must call a tool' and 'must not' share one entry
Updated Sep 15, 2026 - #8068
Prevent Margin Leaks & Surprise LLM Bills: Add a Hybrid Spend Firewall
Updated Sep 14, 2026 - #8014
autogen-ext: mcp 2.0.0 breaks MCP tools (no upper bound, uses removed/renamed 1.x APIs)
Updated Sep 14, 2026 - #8076
Paid security-scan MCP integration (autogen + ScanPay x402)
Updated Sep 14, 2026 - #8193
TextCanvas.apply_patch accepts stale hunks without validating context lines
Updated Sep 14, 2026 - #8162
Deterministic Sub-50µs Pre-Flight Invariant Gating for UserProxyAgent Code Execution
Updated Sep 14, 2026 - #5891
Support Approval Func in BaseTool in AgentChat
tool-usageproj-coreneeds-designUpdated Sep 14, 2026 - #7525
Feature: Agent trust verification via MoltBridge for cross-org multi-agent scenarios
Updated Sep 13, 2026