๐Ÿ‘‹ Hackathon Judge?Log in with GitHub then click "Try demo mode" on the dashboard โ€” no real GitHub history needed. Sign in โ†’
6 AI Agents ยท Auth0 FGA ยท Token Vault ยท Zero Raw Token Exposure

The LeetCode of Open Source

OpenStep AI reads your GitHub, finds the right issue for your skill level, loads the code in a browser editor, and coaches you Socratically โ€” never writing code for you.

6
AI Agents
2
User Personas
100%
Free Tier
0
Raw Tokens Exposed

How It Works

From signup to merged PR โ€” seven steps, six agents, zero raw token exposure.

01

Sign in via Auth0

GitHub OAuth โ€” Auth0 handles everything. Zero credential management.

02

Token Vault stores credentials

Your GitHub token goes into Token Vault. Agents only get scoped, short-lived access.

03

Scout + Oracle discover issues

Scout profiles your GitHub. Oracle finds issues within your exact skill delta.

04

Forge loads the workspace

Monaco editor + file tree + E2B sandbox in under 5 seconds.

05

Sage mentors Socratically

Ask questions, get questions back. Sage is forbidden from writing code for you.

06

Submit your PR

Guardian watches your PR. Maintainers rate it. Ranker awards XP and badges.

The Six Agents

Each agent has exactly one job and gets only minimum scope from Token Vault.

S

Scout

Reads your GitHub profile & builds a skill fingerprint

O

Oracle

Finds the perfect open source issue for your skill level

S

Sage

Socratic AI mentor โ€” guides with questions, never answers

F

Forge

Monaco editor + E2B sandbox โ€” code & run right in browser

G

Guardian

Watches GitHub webhooks for PRs and merge events

R

Ranker

Awards XP, unlocks badges, updates your contribution profile

Auth0 + Token Vault

Credential Passport โ€” each agent gets only the minimum permission it needs. The LLM never sees your raw token.

๐Ÿ”‘ Auth0

  • โ–ธ GitHub Social Login โ€” one-click sign in
  • โ–ธ Auth0 Actions โ€” fires Scout on login automatically
  • โ–ธ Fine-Grained Authorization โ€” Student / Maintainer roles
  • โ–ธ M2M Tokens โ€” agents authenticate to each other

๐Ÿ›ก๏ธ Token Vault

  • โ–ธ Stores GitHub, GitLab, npm credentials
  • โ–ธ Scout gets read-only profile access only
  • โ–ธ Forge gets file-read scope only
  • โ–ธ LLM (Sage) never receives raw credentials

Token Vault Flow

1. GitHub OAuth โ†’ Auth0โ†’
2. Auth0 โ†’ Token Vaultโ†’
3. Agent requests scoped tokenโ†’
4. Agent runs one operationโ†’
5. Token expires โœ“
Security guarantee
๐Ÿ”’ Zero raw token exposureSage (the LLM) only receives structured text โ€” file names, error messages. Never your GitHub token.
โฑ Tokens expire per-operationToken Vault issues a scoped credential for one operation, then it expires. No long-lived secrets in agent memory.
๐ŸŽญ Two-role system, one codebaseStudents and Maintainers see entirely different UIs, enforced by Auth0 FGA at the server layer before any JSX loads.

The LeetCode Layer

Rank up by shipping real contributions to real projects.

๐ŸŒฑ
Newbie
0 XP
๐Ÿ”ง
Contributor
500 XP
โšก
Collaborator
2,000 XP
๐Ÿ› ๏ธ
Maintainer
8,000 XP
๐Ÿ‘‘
Legend
25,000 XP
๐Ÿ›First Bug Fix
๐Ÿ“šDoc Writer
๐Ÿ”ฅWeek Streak
๐ŸงชTest Author
โ˜•Java Hunter
๐ŸPythonista
โญStar Repo
๐ŸคTeam Player

Zero-Cost Stack

Every tool has a free tier. No credit card required.

Auth0FREE

Identity, FGA, M2M tokens

Token VaultFREE

Credential passport โ€” scoped per agent

Perplexity SonarHAVE KEY

Powers Sage's Socratic mentorship

E2B.devFREE

Cloud sandbox โ€” 300ms boot

SupabaseFREE

PostgreSQL + Realtime

GitHub APIFREE

Issues, file trees, PRs, webhooks

Ready to ship your first contribution?

Sign in with GitHub. Scout reads your profile. Oracle finds your issue. Let's go.

Sign in with GitHub โ†’