The full upstream README, mirrored here for reference. Install config, tool schemas, adoption signals, and an original overview live on the Flyto2 Runtime listing page.
Give ChatGPT secure access to your machine. Turn ChatGPT into Codex.
ChatGPT can tell you what to change. Flyto2 Runtime lets it actually do the work.
No more copying files into chat, pasting commands into a terminal, sending the error back, and repeating the loop. Connect ChatGPT to your own machine over MCP and let it open your real project, edit code, run commands, test the result, use Git, and show you what changed.
Your machine stays the execution environment. You choose which project folders it can access.
Without a local runtime, coding with ChatGPT often looks like this:
With Flyto2 Runtime:
That is the point of Flyto2 Runtime: close the loop between the AI and your machine.
Once connected, ChatGPT can work inside an approved local workspace and:
The normal model-facing surface stays intentionally small. Runtime handles process recovery, durable execution, filesystem events, service lifecycle, and tunnel supervision behind the scenes.
On a Mac, use the app. Download it from the Flyto2 Runtime download page, drag it into Applications and open it. It includes its own Node.js and cloudflared, so nothing needs to be installed first. The rest of this section installs from source instead.
Requirements: Node.js 22.19 or newer, below 27 (the installer from nodejs.org is fine). Nothing else needs to be installed first: not pnpm, not Homebrew, not cloudflared, and no administrator password.
git clone https://github.com/flytohub/flyto-runtime.git.)Install.command on macOS or Install.cmd on Windows.The first run installs dependencies and builds, which takes a minute or two, then walks you through setup and installs the background service and Desktop launchers, so you do not need to keep a terminal window open. Running it again later skips setup; to change it, double-click Setup Flyto2 Runtime on the Desktop.
On macOS, if it says the file cannot be opened because Apple cannot check it, open System Settings → Privacy & Security and choose Open Anyway.
How the launcher gets its tools: pnpm comes from your PATH, else
corepack pnpm, else npm runs the pinned version; it never runs
corepack enable, which needs write access next to node. If you choose the free
Cloudflare URL, setup uses an existing cloudflared, or the one you downloaded
into Downloads, or fetches the official release, and runs it only after checking
Cloudflare signed it. It is kept in Runtime's own folder.
From a terminal the same steps are:
ChatGPT needs a public HTTPS URL that reaches your local Runtime. During setup, choose ChatGPT, then either:
cloudflared if you allow it (Homebrew on macOS, winget on Windows), keeps a quick tunnel running in the background, and fills in its https://<random>.trycloudflare.com URL. That URL changes whenever the tunnel restarts, for example after a reboot. Runtime follows the new URL by itself; you then give ChatGPT the new one, which flyto2-runtime doctor or flyto2-runtime service quick-tunnel status shows.http://127.0.0.1:7676.Flyto2 Runtime exposes MCP at:
Setup can also generate an upload-ready ChatGPT Plugin ZIP for you.
Choose:
If you choose Yes, Runtime creates the ZIP from your own configured MCP URL. Nothing is hard-coded to a Flyto2 hostname.
If you choose No, you can create it later:
The ZIP contains only portable Plugin metadata, MCP configuration, and a small Runtime skill. It does not contain your Owner password, OAuth tokens, tunnel credentials, or auth.json.
Need a custom package for another machine or deployment?
Upload the ZIP in ChatGPT Plugins, approve the OAuth connection, and start working.
A normal session is intentionally simple:
Flyto2 Cloud is optional. Flyto2 Runtime works standalone.
Flyto2 Runtime is designed to stay available after setup.
macOS: a LaunchAgent keeps Runtime running in the background.
Windows: Task Scheduler starts Runtime at login and a small supervisor restarts it if the process exits unexpectedly.
Useful commands:
The interactive launcher also includes setup, diagnostics, and Export ChatGPT plugin.
self-update returns immediately, so ChatGPT or any other connected host can run it through its shell tool. A separate job owned by launchd (macOS) or Task Scheduler (Windows) then:
main from github.com/flytohub/flyto-runtime (the source is fixed; it cannot be pointed elsewhere);/healthz gate, rolling back to the previous build if the check fails.The connection drops for a few seconds during the restart. OAuth approvals survive it, so the host reconnects without asking for the Owner password again, as long as its URL does not change. Use a named Cloudflare tunnel with a fixed hostname; a quick trycloudflare.com tunnel gets a new URL whenever it restarts.
Flyto2 Runtime is powerful because it can operate on your machine. Treat a connected AI client like a trusted coding partner.
Access is restricted to the workspace roots you approve. Remote MCP access uses OAuth. Keep your Owner credential, tunnel credentials, and auth.json private.
Flyto2 Runtime does not pretend shell execution is a full OS sandbox. The security boundary is explicit workspace scope, authenticated access, and the permissions of the local user running Runtime.
See Security Model for details.
The parts you should not have to think about are handled by Runtime: long-running commands, lost responses, process continuation, filesystem changes, service restarts, health checks, MCP compatibility, and recovery.
Those are implementation details, not the product.
The product is simpler:
Ask ChatGPT to work on your project, and let it finish the job on your machine.
Flyto2 Runtime will also connect with Flyto2 Core for reusable capabilities such as browser testing, crawling, automated validation, security testing, and agent-driven workflows.
MIT.
Flyto2 Runtime is based on Waishnav/devspace. The original copyright and license notice are preserved in LICENSE.