Live good-first-issue & help-wanted feed

Find meaningful ways to contribute

Browse open GitHub issues that maintainers labeled for help. Filter by language, stars, category, and difficulty — then pick something you can finish.

Projects
105,557
Open issues
717,411
Cost
Free
Illustration of a Good first issue card with GitHub, plus Learn new skills, Work on real projects, Make an impact, and Open source is for everyone

Active projects

Unique repos with open help-wanted issues updated in the last 30 days

Showing 30 of ~19,135 matching filters (10+ stars)

List

Create a validating webhook to validate resources before they are applied

AI summary

This issue proposes the creation of a validating webhook for the Burrito project. The webhook will be responsible for validating resources before they are applied, specifically focusing on the `remediationStrategy` enum and complex interactions between various options.

enhancementgood first issueplannedteam:library-maintainers
731
Difficulty
3/5

Add support for bitbucket

AI summary

This issue requests the implementation of a new Git provider for Bitbucket. It specifically mentions building upon the new structural changes introduced in a recent pull request, indicating a need to integrate with an existing framework.

good first issueSize: Steam:library-maintainers
731
Difficulty
3/5

Add setting to prevent burrito from destroying resources

AI summary

This issue proposes adding a new configuration setting to the Burrito tool. This setting would prevent Burrito from executing 'apply' operations if the 'plan' output indicates that any resources are scheduled for destruction. The goal is to enhance safety and facilitate adoption on critical Terraform code by preventing accidental resource deletion.

good first issueSize: Steam:library-maintainers
731
Difficulty
2/5

CLAUDE.md's pre-PR gate list omits four gates that `just qc` runs

AI summary

The documentation in CLAUDE.md for pre-PR gates is incomplete, omitting four essential checks that `just qc` performs. This omission led to a bug where a snippet was truncated mid-word, which was only caught by one of the missing gates. The suggested fix is to update the documentation to include all relevant gates or to dynamically list the output of `just qc`.

documentationgood first issuetechnical-debtlow_effort
29
Difficulty
2/5

[good first issue] 🎋 Add new Japanese Idiom 275 (good-first-issue)

AI summary

This issue is a "good first issue" that invites contributors to add a new Japanese idiom, "腹が立つ" (Hara ga tatsu), to a JSON file. The contribution requires no coding and can be completed directly in the browser within a minute by following simple steps like forking the repository and editing the JSON file.

help wantedgood first issuehacktoberfestcommunitylow hanging fruitup-for-grabs
1.9K
Difficulty
1/5

Examples and the docs quick start fail after pip install: let Data download datasets on demand

AI summary

The current README quick start guide fails for new users after `pip install pysad` because the necessary dataset files are not included with the package. The proposed solution is to modify the `Data` class to download datasets on demand from a remote source into a cache directory, making the quick start functional out-of-the-box.

enhancementhelp wanted
294
Difficulty
3/5

Affected range events in vulnerability pages render unbounded with no collapse or truncation

AI summary

The vulnerability page currently displays an excessive number of affected range events without any mechanism for truncation or collapsing. This leads to a poor user experience, especially when a vulnerability has many such events, as seen in the provided examples. The goal is to implement a UI solution to manage the display of these events.

good first issue
2.9K
Difficulty
2/5

Rewrite testing framework

AI summary

The current C++ testing framework, inherited from Haiku, is considered of low quality and needs significant rework. The proposed solution is to rewrite a substantial portion of the framework from scratch to ensure higher quality tests, even if it means fewer of them.

enhancementhelp wanted
237
Difficulty
4/5

docs(repo): README, CONTRIBUTING and local-setup misdescribe what pnpm build/test cover and show an outdated sample test output

AI summary

This issue identifies several inaccuracies and omissions in the project's documentation, specifically in the README, CONTRIBUTING, and local setup guides. The documentation misrepresents the scope of `pnpm build` and `pnpm test` commands, fails to mention the `@trusttrove/sdk-react` package and CLI, and shows outdated or incorrect sample test outputs. It also lacks clarity on Go testing prerequisites and a repository layout overview.

documentationgood first issuecomplexity:lowStellar Wave
12
Difficulty
2/5

2.0 云函数适配情况说明

AI summary

This issue is a call for community testing of Twikoo's 2.0 cloud function deployments across various platforms. It details the current testing status for each platform and provides an in-depth analysis and fix for the EdgeOne Makers deployment, which was previously broken due to mismatched contracts and data file retrieval issues. The fix involves adapting the entry point, inlining data, porting SMTP functionality, and optimizing the deployment package.

help wanted
2.3K
Difficulty
4/5

README_pt.md: rewrite the Apache Kafka row in natural Brazilian Portuguese

AI summary

This issue requires a native Brazilian Portuguese speaker to rewrite a single line in the `README_pt.md` file. The line, which describes Apache Kafka, was added with AI assistance and needs to sound natural and human-written. The task involves editing a specific line in the README, ensuring technical terms remain unchanged, and submitting a pull request.

documentationgood first issuehelp wantedhacktoberfest
74
Difficulty
1/5

Cancelling an MPP query waits for a worker's slow filter; a worker that never returns makes the backend uncancellable

AI summary

When cancelling an MPP query, if a worker is stuck in a slow filter that doesn't check for interrupts, the entire backend becomes unresponsive. This is because the worker holds interrupts, preventing the leader from properly aborting the transaction, leading to a cluster reset if `kill -9` is the only solution.

buggood first issuepriority-medium
9.0K
Difficulty
4/5

Desktop shell renders third-party IdP pages in-window (RFC 8252 violation); self-hosted OIDC passkey sign-in hangs forever

AI summary

The desktop application's embedded browser renders third-party login pages, violating RFC 8252 and causing passkey sign-in to hang indefinitely. This occurs because Electron lacks the necessary authenticator UI and the WebAuthn `get()` request never settles or times out.

Bughelp wantedcomp:web-uiP2-mediumtriagedvalidated:reproduced
5.9K
Difficulty
4/5

Small fixes: cache TTL units, wrong DTO, Injectable typo, product permissions and more

AI summary

This issue addresses several minor bugs and inconsistencies within the application's authentication and authorization modules. Key fixes include correcting cache TTL units to milliseconds, ensuring the correct DTO is used for the one-time password sign-in endpoint, and resolving a typo in the `@Injectable()` decorator. These are presented as independent fixes that can be addressed in separate pull requests.

buggood first issue
85
Difficulty
1/5

Makefile calls the docker-compose binary, which is missing on Compose v2 plugin installs

AI summary

The project's Makefile and shell scripts incorrectly call `docker-compose` which is deprecated and often not installed on modern Docker setups. Instead, they should use the `docker compose` command, which is part of the Docker Compose v2 plugin. This change will resolve build failures for users who only have the v2 plugin installed.

buggood first issue
85
Difficulty
1/5

Config: move hard-coded settings to environment variables

AI summary

This issue proposes refactoring the application to replace hard-coded configuration settings with environment variables. This change will improve flexibility, allowing the app to be run outside of Docker Compose and customized without code modifications. Specific settings to be externalized include Redis connection details, OTLP exporter configuration, CORS origins, frontend URLs for emails, and the email sender name.

enhancementgood first issue
85
Difficulty
2/5

Observability: Prometheus scrapes otel-collector-dev in every environment

AI summary

The Prometheus configuration in the project is attempting to scrape metrics from a development-specific container name (`otel-collector-dev:8889`), which is causing failures in test and production environments. The suggested fix is to use the generic compose service name (`otel-collector:8889`) for Prometheus scraping and optionally route traces through the OpenTelemetry Collector.

buggood first issue
85
Difficulty
2/5

Dev container references a docker-compose.yml that does not exist

AI summary

The dev container configuration incorrectly references a non-existent `docker-compose.yml` file. This prevents the project from being opened in a dev container and also causes issues with mounting the project directory, hiding essential files like `node_modules` and the Prisma Client. The suggested fix involves correcting the path to the compose file and adjusting the volume mounts.

buggood first issue
85
Difficulty
2/5

Epic: finish the billing and payment flow

AI summary

This is an epic issue to complete the billing and payment flow, which is currently incomplete and broken. It involves several sub-tasks like saving purchases, handling webhook events, managing subscriptions, sending confirmation emails, and implementing user-facing features like listing purchases and subscriptions. The goal is to create a robust and fully functional billing system integrated with Stripe.

enhancementhelp wanted
85
Difficulty
5/5
Pelski/ytzero

Thanks for watching

AI summary

The maintainer of YT Zero is stepping down due to legal uncertainties regarding software and integrations. They plan to release one final version in September 2026, addressing existing issues and improving the tvOS app. The project is open for new maintainers, with the possibility of a future revival using official YouTube APIs.

help wantedother
91
Difficulty
1/5

🌱 [v6] mention: ioscan-blocked mentions are audited `declined` yet still acked+kicked; grammar has no left boundary (`ops@hive.example.com` summons the agent); handler/poller snapshot `github.mentions`/`actions`/`review_bots` at boot and ignore hive.yaml reloads

AI summary

This issue details three bugs in the v6 branch related to GitHub mentions. First, the 'ioscan' mention is incorrectly audited as 'declined' but still processed, leading to double auditing. Second, the mention detection logic lacks a left-hand boundary check, causing false positives with email addresses and URLs. Third, mention configuration is only loaded at boot and not updated on reloads, meaning changes to mention settings require a restart.

help wantedkind/bugpriority/lowhive/likely-done
51
Difficulty
3/5

Docs: Framework integrations pointer (Discussion #116 + clinic + Adopter note) — GFI

AI summary

This issue aims to create a new "Framework integrations" section in the documentation to guide newcomers. It will link to relevant discussions, code snippets, and external resources, providing a clear onboarding path for users interested in integrating the project with different frameworks. The goal is to make this a "good first issue" for new contributors.

documentationgood first issue
170
Difficulty
1/5

Bug in the score ensemblers: transform_partial returns an array instead of a float

AI summary

The `transform_partial` and `fit_transform_partial` methods in PYODScoreEnsembler are incorrectly returning a NumPy array of shape (1,) instead of a single float as documented. This prevents seamless integration with downstream components like calibrators and metric calculations. The fix involves ensuring these methods return a float representation of the combined score.

buggood first issue
294
Difficulty
2/5

Bug in the score ensemblers: a list of scores raises AttributeError

AI summary

The score ensemblers in pysad are failing when provided with a Python list of scores, as they expect a NumPy array. This is because the `transform_partial` method directly attempts to reshape the input, leading to an AttributeError. The fix involves converting the input list to a NumPy array before reshaping and adding a test to verify this behavior.

buggood first issue
294
Difficulty
2/5

Bug in ZScorePostprocessor and RunningZScorePostprocessor: zero variance gives nan, which crashes the ensemblers

AI summary

The ZScorePostprocessor and RunningZScorePostprocessor currently return NaN for scores with zero variance, such as the first score or a window of identical scores. This NaN value causes ensembler components to crash because they do not accept NaN inputs. The expected behavior is to return a z-score of 0.0 in these zero-variance scenarios.

buggood first issue
294
Difficulty
2/5

How it works

Three steps from browsing to opening a PR.

Read the beginner guide →
  1. 1

    Filter the feed

    Pick a language, minimum stars, category, and difficulty that match what you can ship.

  2. 2

    Read the AI summary

    Each card includes a short summary and difficulty score when we have one — so you can skip the wall of text.

  3. 3

    Open the issue

    Jump to GitHub, talk to the maintainer if needed, and contribute where help is actually wanted.

Not finding what you’re looking for?

Browse 105,557 projects or reset filters to see more of the 717,411 indexed issues.