New in 0.4.22
Automatic alert investigations
A waiting alert can trigger a read-only investigation while Termiyo is open, signed in and unlocked. An investigation that goes ahead uses your AI allowance; a refusal is decided before any of it is spent.
Turn it on deliberately
Off by default
In Settings → Security, enable Investigate alerts automatically. It starts off, including after an upgrade.
One saved host
The waiting alert must name exactly one saved SSH host by its label. Termiyo asks the AI for checks, runs only permitted read-only commands and records the result in Runs; it does not repair the host.
Connections it refuses
Production and host keys
Production hosts are refused. Hosts with no recognized environment are refused too. Every hop, including jump hosts, needs a saved host key; connect yourself and verify the key first.
Authentication and ProxyCommand
The unattended path requires a saved password or private key and refuses SSH-agent authentication, keyboard-interactive authentication and missing passwords. It also refuses ProxyCommand on any hop because that starts a local program that may ask for sign-in.
Stop and review
Stop the investigation
Locking the vault, signing out, turning the setting off or pressing Stop in Runs ends the investigation. Its temporary connection closes when the investigation ends; it does not keep a shell running.
A refusal is a result
An alert whose host label is missing or ambiguous is refused. A connection asking for a key or authentication answer is refused too; review the reported reason before trying manually.