惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Schneier on Security
Schneier on Security
D
Darknet – Hacking Tools, Hacker News & Cyber Security
T
Tenable Blog
P
Proofpoint News Feed
V
Vulnerabilities – Threatpost
Project Zero
Project Zero
Latest news
Latest news
S
Schneier on Security
C
Cyber Attacks, Cyber Crime and Cyber Security
T
Threatpost
Simon Willison's Weblog
Simon Willison's Weblog
Cyberwarzone
Cyberwarzone
T
The Exploit Database - CXSecurity.com
C
CERT Recently Published Vulnerability Notes
Spread Privacy
Spread Privacy
Cisco Talos Blog
Cisco Talos Blog
T
Troy Hunt's Blog
S
Secure Thoughts
C
Cisco Blogs
Application and Cybersecurity Blog
Application and Cybersecurity Blog
V2EX - 技术
V2EX - 技术
Hacker News: Ask HN
Hacker News: Ask HN
O
OpenAI News
L
LINUX DO - 最新话题
T
Threat Research - Cisco Blogs
Recent Commits to openclaw:main
Recent Commits to openclaw:main
P
Palo Alto Networks Blog
Exploit-DB.com RSS Feed
Exploit-DB.com RSS Feed
博客园_首页
月光博客
月光博客
博客园 - 【当耐特】
雷峰网
雷峰网
C
CXSECURITY Database RSS Feed - CXSecurity.com
博客园 - 叶小钗
aimingoo的专栏
aimingoo的专栏
L
Lohrmann on Cybersecurity
D
DataBreaches.Net
美团技术团队
B
Blog
K
KPMG report finds enterprise disconnect between AI and its ROI | CIO
有赞技术团队
有赞技术团队
D
Docker
Jina AI
Jina AI
The GitHub Blog
The GitHub Blog
H
Hacker News: Front Page
cs.CL updates on arXiv.org
cs.CL updates on arXiv.org
AI
AI
Martin Fowler
Martin Fowler
Attack and Defense Labs
Attack and Defense Labs
小众软件
小众软件

Recent Commits to openclaw:main

test: merge chat side-result checks · openclaw/openclaw@ddd2c2a test: merge cron history checks · openclaw/openclaw@f7eb746 test: merge responsive navigation shell checks · openclaw/openclaw@c2e4b47 docs(changelog): add codex oauth fixes · openclaw/openclaw@628e6cd test: merge navigation routing cases · openclaw/openclaw@5d8cecb Tests: mock channel registry bundled fallback · openclaw/openclaw@2b08233 Secrets: avoid broad web search discovery for single plugin config · openclaw/openclaw@a464f59 test: merge config view browser checks · openclaw/openclaw@20cf511 fix(status): align oauth health with runtime · openclaw/openclaw@eed7116 feat: add macOS screen snapshots for monitor preview (#67954) thanks … · openclaw/openclaw@f377db1 fix: report shared auth scopes in hello-ok (#67810) thanks @BunsDev · openclaw/openclaw@0b6c39b Auto-reply: avoid eager bundled route fallback · openclaw/openclaw@3ea1bf4 Tests: narrow session binding contract setup · openclaw/openclaw@54e4e16 fix(macOS): enable undo/redo in webchat composer text input (#34962) · openclaw/openclaw@00951dc Tests: speed up channel setup promotion · openclaw/openclaw@82b529a Docs: refresh agent instructions · openclaw/openclaw@5775fe2 fix(auth): serialize OAuth refresh across agents to fix #26322 (#67876) · openclaw/openclaw@8e79080 test: allow ollama public surface boundary test · openclaw/openclaw@7d4f1a6 Docs: add test performance guardrails · openclaw/openclaw@89706d3 Tests: restore context-engine usage proof · openclaw/openclaw@e4c4f95 Tests: slim context engine runtime coverage · openclaw/openclaw@74c198f ci: retry failed custom checkouts · openclaw/openclaw@0ee5baf test: trim duplicate provider auth onboarding cases · openclaw/openclaw@1ffc02e matrix: fix sessions_spawn --thread subagent session spawning (#67643) · openclaw/openclaw@1ce2596 test: reduce auth choice fixture churn · openclaw/openclaw@857b9cd test: mock health status config boundaries · openclaw/openclaw@9d5ab4a test: mock onboard config io boundary · openclaw/openclaw@299694d test: mock legacy state plugin boundaries · openclaw/openclaw@2713089 test: mock channel install boundaries · openclaw/openclaw@b945248 test: mock doctor preview channel boundaries · openclaw/openclaw@b1a3ad4 test: trim doctor command hotspots · openclaw/openclaw@c66f16a test: isolate agent auth and spawn hotspots · openclaw/openclaw@9285935 test: stabilize MCP startup disposal race · openclaw/openclaw@dd9d2eb test: merge browser contract server suites · openclaw/openclaw@5817a76 test: narrow ollama provider discovery setup · openclaw/openclaw@a0d9598 build: declare qa-lab aimock runtime dependency · openclaw/openclaw@24431e5 test: speed up safe-bins exec harness · openclaw/openclaw@ee856ab test: preserve tool helpers in embedded runner mocks · openclaw/openclaw@acd86a0 refactor: move memory embeddings into provider plugins · openclaw/openclaw@77e6e4c test: reuse system-run temp fixtures · openclaw/openclaw@7e9ff0f test: trim hotspot wait overhead · openclaw/openclaw@12a59b0 Check: avoid duplicate boundary prep · openclaw/openclaw@baf11b8 test: reduce hotspot fixture overhead · openclaw/openclaw@3a59edd feat(ui): overhaul settings and slash command UX (#67819) thanks @Bun… · openclaw/openclaw@2cfb660 QA Matrix: exit cleanly on failure · openclaw/openclaw@42805d2 QA Matrix: isolate scenario coverage · openclaw/openclaw@7e659e1 Matrix: refresh crypto bootstrap state · openclaw/openclaw@94081d8 QA Lab: add provider registry · openclaw/openclaw@bb7e982 Matrix: add plugin changelog · openclaw/openclaw@4acab55 test: trim more hotspot overhead · openclaw/openclaw@f485311 test: trim remaining hotspot tests · openclaw/openclaw@6ba8626 test: narrow hotspot mocks · openclaw/openclaw@dbc8179 test: isolate gemini embedding request helpers · openclaw/openclaw@cd330f5 test: trim memory and mcp hotspots · openclaw/openclaw@fd48dfa test: slim provider registry mocks · openclaw/openclaw@2e08c77 test: harden Parallels update smoke · openclaw/openclaw@1a98090 feat: default Anthropic to Opus 4.7 · openclaw/openclaw@628b454 fix: harden node-host shell payload mutability checks · openclaw/openclaw@75c551e fix: land node-host approval binding for native binaries (#66731) (th… · openclaw/openclaw@29919bb CI: add daily schedule to CodeQL workflow (#67645) · openclaw/openclaw@69d25f5 fix(gateway): capture config hash after plugin auto-enable to prevent… · openclaw/openclaw@8c11210 fix: repair sanitized replay tool results before send (#67620) (thank… · openclaw/openclaw@c3c7a99 fix: restrict HTML timeout short-circuit to transient statuses · openclaw/openclaw@de129a6 fix: keep TUI watchdog bound to active run (#67401) (thanks @xantorres) · openclaw/openclaw@3525273 Gateway/skills: dedupe skills prefix-match + drop dead fallback on log · openclaw/openclaw@d7f489f Extensions/lmstudio: back off inference preload after consecutive fai… · openclaw/openclaw@b555214 TUI/streaming: add watchdog that resets the activity indicator after … · openclaw/openclaw@f44ab20 Agents/tool-loop: enable unknown-tool stream guard by default · openclaw/openclaw@36ed367 Gateway/skills: invalidate session skills snapshot on config write · openclaw/openclaw@b23d59a fix: classify HTML provider error pages correctly (#67642) (thanks @s… · openclaw/openclaw@e588e90 fix(skills): remove unused model-usage import (#67641) · openclaw/openclaw@55f05df docs(changelog): credit codex fix superseded PRs · openclaw/openclaw@e485f24 fix(openai-codex): normalize stale transport metadata in resolution a… · openclaw/openclaw@90801ba CI: pin Docker-related GitHub Actions (#67632) · openclaw/openclaw@f697b01 Android: modernize WebView and discovery API usage (#67627) · openclaw/openclaw@44a6e50 fix(deps): bump hono to 4.12.14 and @hono/node-server to 1.19.14 (GHS… · openclaw/openclaw@fbccc18 fix(deps): bump dompurify to 3.4.0 (#67614) · openclaw/openclaw@2c2dc00 CI: add explicit permissions to all workflow jobs (fixes code-scannin… · openclaw/openclaw@01b7516 fix: register bundled TTS providers and route overrides correctly (#6… · openclaw/openclaw@6ea3cdd fix: align host tilde paths with OS home (#62804) (thanks @stainlu) · openclaw/openclaw@ecfaf64 fix: flush creds queue before reconnect socket open (#67464) (thanks … · openclaw/openclaw@405c63f fix: strip standalone <function> tool call tags from visible text (#6… · openclaw/openclaw@78df859 fix(agents): preserve cli session metadata before transcript persist … · openclaw/openclaw@898fd04 docs(changelog): move cli transcript entry · openclaw/openclaw@c1817c6 fix(agents): normalize cli transcript api field · openclaw/openclaw@3a3fae0 docs(changelog): note cli transcript persistence · openclaw/openclaw@6c343f1 fix(agents): persist cli transcript turns · openclaw/openclaw@b8ef507 fix(msteams): harden security-sensitive flows (#65841) · openclaw/openclaw@c56b56e [Dashboard] Fix exec approval modal overflow for long command content… · openclaw/openclaw@053c5b0 Docs: remove QA changelog entry · openclaw/openclaw@7fd5771 QA: fix private runtime source loading (#67428) · openclaw/openclaw@d5933af docs(gateway): correct protocol.md schema path, hello-ok example, aut… · openclaw/openclaw@489404d CI: pin Node 22 runners to 22.18.0 · openclaw/openclaw@4ffa621 models.authStatus: normalize provider ids + tighten env-backed escape… · openclaw/openclaw@f2fdb9d Update CHANGELOG.md · openclaw/openclaw@7694a92 test(parallels): clean up npm update guard jobs · openclaw/openclaw@045ea7b Plugins: prefer scanDir override paths · openclaw/openclaw@b2974da fix(dreaming): default storage.mode to "separate" so phase blocks sto… · openclaw/openclaw@8c392f0 fix(memory-core): skip dreaming transcript ingestion via session stor… · openclaw/openclaw@a1b01f0 fix: dedupe replayed exec.finished node events (#67281) · openclaw/openclaw@5dcf526
fix: keep telegram polling timeout above long poll · openclaw/openclaw@de1ac12
steipete · 2026-04-30 · via Recent Commits to openclaw:main
Original file line numberDiff line numberDiff line change

@@ -27,6 +27,7 @@ Docs: https://docs.openclaw.ai

2727

- Plugins/runtime-deps: always write a dependency map in generated runtime-deps install manifests, so npm does not crash or prune staged bundled-plugin packages when the plan is empty. Fixes #74949. Thanks @hclsys.

2828

- Telegram: use durable message edits for streaming previews instead of native draft state, so generated replies no longer flicker through draft-to-message transitions that look like duplicates. (#75073) Thanks @obviyus.

2929

- Telegram: echo preflighted DM voice-note transcripts back to the originating chat, including Telegram DM topic thread metadata, instead of only echoing later media-understanding transcripts. Fixes #75084. Thanks @M-Lietz.

30+

- Telegram: clamp low long-polling client timeouts so configured `timeoutSeconds` values below the `getUpdates` poll window no longer force a fresh HTTPS connection every few seconds. Fixes #75114. Thanks @hpinho77.

3031

- Web search: describe `web_search` as using the configured provider instead of hard-coding Brave when DuckDuckGo or another provider is active. Fixes #75088. Thanks @sun-rongyang.

3132

- Infra/tmp: tolerate concurrent temp-dir permission repairs by rechecking directories that another process already tightened, so parallel ACP subprocess startup no longer throws `Unsafe fallback OpenClaw temp dir`. Fixes #66867. Thanks @Kane808-AI and @jarvisz8.

3233

- Agents/compaction: add an opt-in `agents.defaults.compaction.midTurnPrecheck` mid-turn precheck that detects tool-loop context pressure and triggers compaction before the next tool call instead of waiting for end-of-turn. (#73499) Thanks @marchpure and @haoxingjun.

Original file line numberDiff line numberDiff line change

@@ -724,7 +724,7 @@ curl "https://api.telegram.org/bot<bot_token>/getUpdates"

724724

- `channels.telegram.textChunkLimit` default is 4000.

725725

- `channels.telegram.chunkMode="newline"` prefers paragraph boundaries (blank lines) before length splitting.

726726

- `channels.telegram.mediaMaxMb` (default 100) caps inbound and outbound Telegram media size.

727-

- `channels.telegram.timeoutSeconds` overrides Telegram API client timeout (if unset, grammY default applies).

727+

- `channels.telegram.timeoutSeconds` overrides Telegram API client timeout (if unset, grammY default applies). Long-polling bot clients clamp configured values below the 45-second `getUpdates` request guard so idle polls are not aborted before the 30-second poll window completes.

728728

- `channels.telegram.pollingStallThresholdMs` defaults to `120000`; tune between `30000` and `600000` only for false-positive polling-stall restarts.

729729

- group context history uses `channels.telegram.historyLimit` or `messages.groupChat.historyLimit` (default 50); `0` disables.

730730

- reply/quote/forward supplemental context is currently passed as received.

@@ -864,6 +864,7 @@ Per-account, per-group, and per-topic overrides are supported (same inheritance

864864

- Node 22+ + custom fetch/proxy can trigger immediate abort behavior if AbortSignal types mismatch.

865865

- Some hosts resolve `api.telegram.org` to IPv6 first; broken IPv6 egress can cause intermittent Telegram API failures.

866866

- If logs include `TypeError: fetch failed` or `Network request for 'getUpdates' failed!`, OpenClaw now retries these as recoverable network errors.

867+

- If Telegram sockets recycle on a short fixed cadence, check for a low `channels.telegram.timeoutSeconds`; long-polling bot clients clamp configured values below the `getUpdates` request guard, but older releases could abort every poll when this was set below the long-poll timeout.

867868

- If logs include `Polling stall detected`, OpenClaw restarts polling and rebuilds the Telegram transport after 120 seconds without completed long-poll liveness by default.

868869

- `openclaw channels status --probe` and `openclaw doctor` warn when a running polling account has not completed `getUpdates` after startup grace, when a running webhook account has not completed `setWebhook` after startup grace, or when the last successful polling transport activity is stale.

869870

- Increase `channels.telegram.pollingStallThresholdMs` only when long-running `getUpdates` calls are healthy but your host still reports false polling-stall restarts. Persistent stalls usually point to proxy, DNS, IPv6, or TLS egress issues between the host and `api.telegram.org`.

Original file line numberDiff line numberDiff line change

@@ -135,11 +135,25 @@ const TELEGRAM_TIMEOUT_FALLBACK_METHODS = new Set([

135135

"setmycommands",

136136

"setwebhook",

137137

]);

138-
139138

function shouldRetryTimedOutTelegramControlRequest(method: string | null): boolean {

140139

return method !== null && TELEGRAM_TIMEOUT_FALLBACK_METHODS.has(method);

141140

}

142141
142+

function resolveTelegramClientTimeoutSeconds(params: {

143+

value: unknown;

144+

minimum?: number;

145+

}): number | undefined {

146+

const { value, minimum } = params;

147+

if (typeof value !== "number" || !Number.isFinite(value)) {

148+

return undefined;

149+

}

150+

const configured = Math.max(1, Math.floor(value));

151+

if (typeof minimum !== "number" || !Number.isFinite(minimum)) {

152+

return configured;

153+

}

154+

return Math.max(configured, Math.max(1, Math.floor(minimum)));

155+

}

156+
143157

export function createTelegramBotCore(

144158

opts: TelegramBotOptions & { telegramDeps: TelegramBotDeps },

145159

): TelegramBotInstance {

@@ -298,10 +312,10 @@ export function createTelegramBotCore(

298312

};

299313

}

300314
301-

const timeoutSeconds =

302-

typeof telegramCfg?.timeoutSeconds === "number" && Number.isFinite(telegramCfg.timeoutSeconds)

303-

? Math.max(1, Math.floor(telegramCfg.timeoutSeconds))

304-

: undefined;

315+

const timeoutSeconds = resolveTelegramClientTimeoutSeconds({

316+

value: telegramCfg?.timeoutSeconds,

317+

minimum: opts.minimumClientTimeoutSeconds,

318+

});

305319

const apiRoot = normalizeOptionalString(telegramCfg.apiRoot);

306320

const normalizedApiRoot = apiRoot ? normalizeTelegramApiRoot(apiRoot) : undefined;

307321

const client: ApiClientOptions | undefined =

Original file line numberDiff line numberDiff line change

@@ -248,6 +248,36 @@ describe("createTelegramBot", () => {

248248

);

249249

});

250250
251+

it("honors low timeoutSeconds when no polling floor is requested", () => {

252+

loadConfig.mockReturnValue({

253+

channels: {

254+

telegram: { dmPolicy: "open", allowFrom: ["*"], timeoutSeconds: 10 },

255+

},

256+

});

257+

createTelegramBot({ token: "tok" });

258+

expect(botCtorSpy).toHaveBeenCalledWith(

259+

"tok",

260+

expect.objectContaining({

261+

client: expect.objectContaining({ timeoutSeconds: 10 }),

262+

}),

263+

);

264+

});

265+
266+

it("keeps polling client timeout above the getUpdates request guard", () => {

267+

loadConfig.mockReturnValue({

268+

channels: {

269+

telegram: { dmPolicy: "open", allowFrom: ["*"], timeoutSeconds: 10 },

270+

},

271+

});

272+

createTelegramBot({ token: "tok", minimumClientTimeoutSeconds: 45 });

273+

expect(botCtorSpy).toHaveBeenCalledWith(

274+

"tok",

275+

expect.objectContaining({

276+

client: expect.objectContaining({ timeoutSeconds: 45 }),

277+

}),

278+

);

279+

});

280+
251281

it("normalizes full Telegram bot endpoint apiRoot before passing it to grammY", () => {

252282

loadConfig.mockReturnValue({

253283

channels: {

Original file line numberDiff line numberDiff line change

@@ -16,6 +16,8 @@ export type TelegramBotOptions = {

1616

config?: OpenClawConfig;

1717

/** Signal to abort in-flight Telegram API fetch requests (e.g. getUpdates) on shutdown. */

1818

fetchAbortSignal?: AbortSignal;

19+

/** Minimum grammY client timeout when timeoutSeconds is configured on long-polling bots. */

20+

minimumClientTimeoutSeconds?: number;

1921

updateOffset?: {

2022

lastUpdateId?: number | null;

2123

onUpdateId?: (updateId: number) => void | Promise<void>;

Original file line numberDiff line numberDiff line change

@@ -276,6 +276,9 @@ describe("TelegramPollingSession", () => {

276276

await session.runUntilAbort();

277277
278278

expect(runMock).toHaveBeenCalledTimes(2);

279+

expect(createTelegramBotMock).toHaveBeenCalledWith(

280+

expect.objectContaining({ minimumClientTimeoutSeconds: 45 }),

281+

);

279282

expect(computeBackoffMock).toHaveBeenCalledTimes(1);

280283

expect(sleepWithAbortMock).toHaveBeenCalledTimes(1);

281284

});

Original file line numberDiff line numberDiff line change

@@ -14,6 +14,7 @@ import { isRecoverableTelegramNetworkError } from "./network-errors.js";

1414

import { TelegramPollingLivenessTracker } from "./polling-liveness.js";

1515

import { createTelegramPollingStatusPublisher } from "./polling-status.js";

1616

import { TelegramPollingTransportState } from "./polling-transport-state.js";

17+

import { TELEGRAM_GET_UPDATES_REQUEST_TIMEOUT_MS } from "./request-timeouts.js";

1718
1819

const TELEGRAM_POLL_RESTART_POLICY = {

1920

initialMs: 2000,

@@ -27,6 +28,9 @@ const MIN_POLL_STALL_THRESHOLD_MS = 30_000;

2728

const MAX_POLL_STALL_THRESHOLD_MS = 600_000;

2829

const POLL_WATCHDOG_INTERVAL_MS = 30_000;

2930

const POLL_STOP_GRACE_MS = 15_000;

31+

const TELEGRAM_POLLING_CLIENT_TIMEOUT_FLOOR_SECONDS = Math.ceil(

32+

TELEGRAM_GET_UPDATES_REQUEST_TIMEOUT_MS / 1000,

33+

);

3034
3135

type TelegramBot = ReturnType<typeof createTelegramBot>;

3236

@@ -184,6 +188,7 @@ export class TelegramPollingSession {

184188

config: this.opts.config,

185189

accountId: this.opts.accountId,

186190

fetchAbortSignal: fetchAbortController.signal,

191+

minimumClientTimeoutSeconds: TELEGRAM_POLLING_CLIENT_TIMEOUT_FLOOR_SECONDS,

187192

updateOffset: {

188193

lastUpdateId: this.opts.getLastUpdateId(),

189194

onUpdateId: this.opts.persistUpdateId,

Original file line numberDiff line numberDiff line change

@@ -1,3 +1,5 @@

1+

export const TELEGRAM_GET_UPDATES_REQUEST_TIMEOUT_MS = 45_000;

2+
13

const TELEGRAM_REQUEST_TIMEOUTS_MS = {

24

// Bound startup/control-plane calls so the gateway cannot report Telegram as

35

// healthy while provider startup is still hung on Bot API setup.

@@ -9,7 +11,7 @@ const TELEGRAM_REQUEST_TIMEOUTS_MS = {

911

getchat: 15_000,

1012

getfile: 30_000,

1113

getme: 15_000,

12-

getupdates: 45_000,

14+

getupdates: TELEGRAM_GET_UPDATES_REQUEST_TIMEOUT_MS,

1315

pinchatmessage: 15_000,

1416

sendanimation: 30_000,

1517

sendaudio: 30_000,