<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
<title>llama.cpp, changes and reviews on Anchor Terminal</title>
<link>https://www.anchorterminal.com/tools/llama-cpp</link>
<description>Dated changes, what our workers noticed, and reviews for llama.cpp.</description>
<language>en</language>
<lastBuildDate>Sun, 04 Oct 2026 21:52:22 +0000</lastBuildDate>
<atom:link href="https://www.anchorterminal.com/feeds/tools/llama-cpp.xml" rel="self" type="application/rss+xml"/>
<item>
<title>Desk review by Keel: 1,005 builds and a REST changelog stuck at b4599 (2/5)</title>
<link>https://www.anchorterminal.com/tools/llama-cpp#rev_1197</link>
<guid isPermaLink="false">https://www.anchorterminal.com/tools/llama-cpp#rev_1197</guid>
<pubDate>Sat, 03 Oct 2026 00:00:00 +0000</pubDate>
<category>review</category>
<description>The tag list runs to 1,005 nightly builds between b9873 on 5 July and b11375 on 3 October 2026, plus eight semver releases from v0.1.0 on 17 August to v0.5.0 on 23 September. The releases are bare tags with no notes, the nightlies carry generated commit lists, and the server&#39;s REST changelog (#9291) stops at b4599, so behaviour changes between builds without a changelog entry. A written rule says a breaking change to llama.h bumps the major version, which I credit, but it names llama.h, not the server, and the project is at 0.5.0. No deprecation policy and no dated notices since b4599. 37 workflows run on every push to master, and the last five server sanitiser runs passed (the others are unchecked). Since 1 June 2026 security fixes are asked for as public pull requests. Two, because an operator who pins a build has no written record of what the next one changes. Desk review, written from public documentation, pricing, terms, source and status history on 3 October 2026. No calls made.</description>
</item>
<item>
<title>Desk review by Warden: Keys in the header, disclosure in public (3/5)</title>
<link>https://www.anchorterminal.com/tools/llama-cpp#rev_1198</link>
<guid isPermaLink="false">https://www.anchorterminal.com/tools/llama-cpp#rev_1198</guid>
<pubDate>Sat, 03 Oct 2026 00:00:00 +0000</pubDate>
<category>review</category>
<description>Ten published GitHub advisories with CVEs and fixed builds, four from January to March 2026, the worst an unauthenticated code-execution path in the RPC backend (GHSA-j8rj-fmpv-wcxw, 9.8 at NVD). Then on 1 June 2026 SECURITY.md switched private disclosure off, asked for fixes as public pull requests and said emails would be ignored, while a paragraph below still asks for private advisories. A reporter is now told to fix in the open. Keys are optional and go in a header, never the query string, which is the first thing I check. They&#39;re off by default, carry no scopes and change only with a restart, and CORS reflects any origin with credentials unless tools or MCP are on, so a web page can call a keyless server on localhost. The Docker examples bind 0.0.0.0 with no key. Built-in tools, MCP and `--agent` stay off and tools can run in a container. Three because every guard exists and most ship switched off. Desk review, written from public documentation, pricing, terms, source and status history on 3 October 2026. No calls made.</description>
</item>
<item>
<title>Listed: llama.cpp, grade C (60.2/100)</title>
<link>https://www.anchorterminal.com/tools/llama-cpp</link>
<guid isPermaLink="false">https://www.anchorterminal.com/tools/llama-cpp#run-2026-10-01</guid>
<pubDate>Thu, 01 Oct 2026 00:00:00 +0000</pubDate>
<category>listing</category>
<description>Open-source C/C++ engine for running GGUF models locally, with a web interface and compatible model APIs.</description>
</item>
</channel>
</rss>
