apollo is a local-first Rust AI agent runtime for people who want the bot on their own machine, not hidden behind a hosted control plane.
Single 16MB binary, async-first (tokio), trait-driven. Ships with 10+ messaging channels, 20+ LLM providers, pluggable memory (SurrealDB + RocksDB), tool guardrails, context compaction, XML tool-call recovery, autonomous coding mode, and a plugin system with lifecycle hooks.
- Async-first — tokio throughout, no blocking on the runtime thread
- Trait-driven architecture — swap providers, channels, tools, memory backends
- Tool guardrails — loop detection, idempotent vs mutating classification, failure counting, configurable warn/block thresholds
- Pluggable context compaction — summarizer trait + default LLM-based compactor with configurable thresholds
- Self-healing retry — auto re-prompts LLM with error context on tool failures
- Selectable agent loop —
agent.engineruns turns on apollo's built-in state machine (legacy, default) or the rx4 rotary harness (rx4) - XML tool-call recovery — state-machine parser extracts
<tool_call>blocks from the response text, so providers without native tool calling still work. The parser also supports incremental feeding for streaming callers - Lifecycle hooks — plugins can intercept pre/post tool calls, session start/end
- Skill template preprocessing —
${HERMES_SKILL_DIR},${HERMES_SESSION_ID}variables +!\command`` inline shell execution in SKILL.md
Telegram, CLI, Discord, Slack, WhatsApp, Matrix, Signal, IRC, Google Chat, MS Teams
Anthropic (default), OpenAI-compat, Ollama, Copilot, OpenRouter, Groq, Together, Mistral, DeepSeek, Fireworks, Perplexity, xAI, Moonshot, Venice, HuggingFace, SiliconFlow, Cerebras, MiniMax, Vercel, Cloudflare
shell, file_ops (read/write/list), edit, web_search, web_fetch, vibemania (subspace coding agent), dynamic tools, MCP bridge, session management, cron scheduling, browser automation, message send, config management, mode switching, brief summary, and feature-gated signed desktop actions through Praefectus
web_search picks a backend from the environment, in order:
SEARXNG_URL— a self-hosted SearXNG instance. Ranked results, no third-party key, and only the query leaves the machine.- DuckDuckGo — keyless and always available. Reads the lite result page, and falls back to the Instant Answer API when that page is refused.
PERPLEXITY_API_KEY— paid, kept for existing setups.
Anthropic can also run the search itself, which replaces the tool rather than configuring it:
{ "provider": { "name": "anthropic", "native_web_search": true } }The model searches during its own turn, so results never round-trip through
apollo and nothing needs a search key — but the searches are billed by Anthropic,
and apollo's web_search tool is left unregistered to keep the name unambiguous.
Other providers ignore the setting.
- SurrealDB + RocksDB backend with conversation history, FTS5, vector embeddings
- Sticker cache, file indexing, code chunk storage
- Plugable via
MemoryProvidertrait
- Autonomous coding mode — 24/7 loop: reads TODO.md, runs agent, validates with tests, commits/pushes only on success. Failure pause state persists across restarts
- Skill curator — background task reviews skills, suggests improvements for stale/empty/low-quality skills
- Trajectory export — ReAct step serialization (thought→action→observation) for RL training data
- Agent swarm — parallel sub-agent spawning for distributed task execution
- Cron scheduler — SurrealDB-backed recurring and one-shot tasks with execution leases, retries, and in-memory fallback
- Plugin system — JSON-RPC 2.0 + lifecycle hooks (pre/post tool, session events)
- Hot-reloadable tools, skills, and system prompt
- Self-update — git poll + rebuild + optional restart
# From crates.io (binaries: apollo, apollo-install)
cargo install apollo-agent
# From source
cargo install --path .
./scripts/install.sh # build release + install to ~/.local/bin
apollo init # interactive setup wizard (`apollo setup` is an alias)
apollo # start chatting (same as `apollo chat`)
apollo ask "summarize this repo"
apollo doctor # diagnose config / deps
cargo run -p apollo-ui
# or after install: apollo uiInstall from a release binary (after build):
cargo build --release
./target/release/apollo-install install- ✅
cargo clippy --all-targets --all-features— 0 warnings - ✅
cargo test— 156 tests pass, 0 fail - ✅
cargo build --release— passes, 16MBapollobinary - ✅ v0.2.0 — install from source, release binary, or
cargo install apollo-agent(crates.io package; binariesapollo,apollo-install)
Initialize with apollo init, edit apollo.json. Key sections:
agent— max rounds, history limit, model selection, compaction thresholds, andengine(legacyorrx4) to pick which loop executes a turnprovider— LLM backend choice + credentialschannel— messaging platform configpolicy— shell/dynamic tool/plugin permission gatesruntime.self_update— auto-update git pollingtoolsets.enabled/disabled— per-platform tool allow/deny lists
cargo fmt --all -- --check
cargo clippy --all-targets -- -D warnings
cargo test
cargo build --release- SurrealDB + RocksDB is the only backend for memory, session state, and swarm/coordinator data.
storage.backendis fixed tosurreal.- Startup fails fast if config requests any other storage mode.