The page overclaimed ("the bot never sees what you type") and understated the boundary: the
lease is a tool-level fence on computer_use and the browser tools, and every same-UID process
(other bots, the bot's own terminal tool) can reach the RFB socket, the X display and the
lease file. Say so, and say per-bot OS users are out of scope.
- Lease file: absent = bot holds (fresh profile); present but unreadable/corrupt = fails
closed (matches tools/bot_desktop/lease.py::_read).
- Pane close hands back; a DROPPED connection keeps the human's exclusion until they reconnect
or hand back; "Hand back (force)" after a reload.
- Clipboard: Xvnc runs with -SendCutText=0, watchers never receive the holder's clipboard.
- Recovery text names `hermes computer-use screen stop` as releasing the lease and stopping.
- Fedora row lists the per-binary packages actually needed (xsetroot xset xdpyinfo xprop
setxkbmap ...) instead of the retired xorg-x11-server-utils / xorg-x11-utils metapackages;
xprop added to the Arch row since the launcher waits on it.
(cherry picked from commit 1c93b0645353eb485fd17aa1076d163ce3e897d9)
Website
This website is built using Docusaurus, a modern static website generator.
Installation
yarn
Local Development
yarn start
This command starts a local development server and opens up a browser window. Most changes are reflected live without having to restart the server.
Build
yarn build
This command generates static content into the build directory and can be served using any static contents hosting service.
Deployment
Using SSH:
USE_SSH=true yarn deploy
Not using SSH:
GIT_USER=<Your GitHub username> yarn deploy
If you are using GitHub pages for hosting, this command is a convenient way to build the website and push to the gh-pages branch.
Diagram Linting
CI runs ascii-guard to lint docs for ASCII box diagrams. Use Mermaid (````mermaid`) or plain lists/tables instead of ASCII boxes to avoid CI failures.