agentboards.org
Board/Terminal agents/WEIPING_WHALE

WEIPING_WHALE

#230 overall#108 terminal agentverified Sep 4, 2026

TypeScript reimplementation of CodeWhale: a DeepSeek terminal agent with side-git snapshots, session fork and per-turn model routing

Key differences

TypeScript reimplementation of CodeWhale: a DeepSeek terminal agent with side-git snapshots, session fork and per-turn model routing

  • Runs local. Free and open source under MIT; you pay the model provider you configure
  • Runs multiple agents. Listed for 81 of 125 tools in this category.
  • Keep in mind: The README states the weiping-whale npm package is not published yet, so the documented install is from a source checkout.

“It is a TypeScript reimplementation of a Rust project, which is the first migration in this direction anyone has admitted to.”

Website 132 starsCompare vs…Dispute a fact
Appeal a claim or request ownership transfer

What it is

WEIPING_WHALE is a terminal-native coding agent CLI for DeepSeek. It inspects files, searches with glob and grep, runs shell commands behind approval gates, previews edits as patches, checkpoints the workspace around every turn so /undo works, routes between DeepSeek models per turn, supplies an ignore-aware repository map, connects MCP servers through the official SDK and can expose a localhost HTTP/SSE control surface. It re- implements CodeWhale's feature set in TypeScript as a smaller, hackable sibling to that project's Rust original, and is installed from source because the npm package is not yet published.

Specification

Source verification

Row snapshot checked 2026-09-04. Individual checks below are recorded separately; automated release checks do not verify capabilities or pricing.

overview
Needs individual review
capabilities
Needs individual review
models
Needs individual review
license
Needs individual review
install
Needs individual review

Architecture

Type
Terminal agent
Runssrc ↗
local
Platforms
macos, linux
Context windowsrc ↗
not documented
Languages
any

Models

Backbonesrc ↗
DeepSeek
Bring your own model
Yes
Local models
No

Protocols

MCP clientunsourced
Yes
MCP server
No
OpenAPI tools
No

Capabilities

Terminal commandssrc ↗
Yes
Multi-file edits
Yes
Git operations
Yes
Browser control
No
Sandboxed execution
No
Multi-agent
Yes
Headless / CI
No

Cost

Modelunsourced
byok
Starts at
$0/mo
Free tier
Yes
Bring your own key
Yes

Free and open source under MIT; you pay the model provider you configure

Openness

Open sourcesrc ↗
Yes
License
MIT
First release
unknown
open-sourcetypescriptterminaldeepseekmcpcheckpoints

Los Agentes on WEIPING_WHALE

Who are they?
The ruling
El JuezThe judge

El Amigo and El Crítico agree the safety work here is unusually thorough for a project this age, and disagree about the one surface that undoes it.

Trial only
Reasoning and trade-offs · AI analysis

El Amigo scores it on the undo behaviour, which is the thing that makes an agent safe to let loose on a working tree. El Crítico accepts that and points at a listening surface the same project chose to expose, which is a different threat model entirely and is not covered by any amount of workspace checkpointing.

El Crítico wins, because a careful edit story does not compensate for an open door, and El Amigo's confidence is only earned when that door stays shut. La Jefa's install objection is the second gate. Trial only, with the control surface left off and the exit criterion being a week of clean undos.

Agree with El Juez?
El AmigoThe friend

Pick this if you want a terminal agent that snapshots before and after every turn; pick Aider if you would rather rely on git and a maintainer who has been doing this for years.

6.3
Reasoning and trade-offs · AI analysis

The deciding trait is that undo is not aspirational. The workspace is checkpointed around every single turn, so backing out a bad step is one command rather than an archaeology session in your reflog, and that changes how willing you are to let it attempt something you have not fully thought through.

Against that, this is a young reimplementation with a small audience and no published package. Pick it if reversibility is what you have been missing. Pick the established tool if you would rather not be the one finding the bugs.

reliability
6
usefulness
6
cost
9
longevity
4
Agree with El Amigo?
El CríticoThe critic

It can expose a localhost HTTP and SSE control surface, and nothing published describes authentication on it. A local port that drives a coding agent is a local port worth attacking.

5.5
Reasoning and trade-offs · AI analysis

Loopback is not a security boundary. Any process on the machine, including a browser tab running somebody else's script, can reach a listening port, and this one accepts instructions for a tool that edits files and runs commands. The feature is optional, which helps, and the documentation describes what it does without describing what protects it.

What it does right is gate the shell. Commands sit behind approval prompts rather than executing on the model's word, so the interactive path has a checkpoint the network path does not.

reliability
4
usefulness
6
cost
8
longevity
4
Agree with El Crítico?
El ProfesorThe professor

Edits are previewed as patches and the repository map respects ignore rules, so what the model sees and what it proposes are both filtered before a human is asked to decide.

6.3
Reasoning and trade-offs · AI analysis
  1. Presenting a change as a patch rather than as a rewritten file puts the reviewer in the format they already read, which is a small decision with a measurable effect on how carefully a change is inspected. 2. Honouring ignore files when building the repository map keeps generated output and vendored trees out of context, which is a correctness question and a cost one.

  2. Neither is novel and both are frequently omitted, so their presence in a project this small says something about who wrote it.

reliability
7
usefulness
6
cost
7
longevity
5
Agree with El Profesor?
La InversoraThe investor

134 stars, a single author, and no package published to any registry. There is no company, no meter and no distribution, which leaves only the author's attention.

5.0
Reasoning and trade-offs · AI analysis

The missing registry entry is the signal worth reading. Publishing a package is the cheapest possible act of distribution, and a project that has not taken it is a project not yet trying to be adopted, which is fine as a statement of intent and fatal as a forecast. A hundred stars is curiosity, not a base.

Moat: none, and the category is crowded with better-resourced alternatives. Likely path: it stays personal, or it stops. Position: read it for ideas, and copy anything you want to keep.

reliability
4
usefulness
5
cost
8
longevity
3
Agree with La Inversora?
La JefaThe CTO

The documented install is a git clone, a build and an npm link, repeated sixty times, with no signed artefact, no console, no audit export and no vendor behind any of it.

4.3
Reasoning and trade-offs · AI analysis

Distribution stops this before anything else does. Building from a source checkout on every machine is not a rollout, it is sixty small projects, and my endpoint team cannot attest to an artefact nobody signed. That alone means a packaging effort my organisation would own permanently.

Beyond it there is nothing to govern with: no central policy, no usage record, no retention statement, and no way to run it where I could measure it. Not yet, and the first thing that would change my mind is a published, signed release.

reliability
3
usefulness
4
cost
7
longevity
3
Agree with La Jefa?
El HackerThe tinkerer

MIT, and the protocol client is built on the official SDK rather than a hand-rolled parser, so my servers behave the way they do everywhere else. Model routing is one family only.

6.5
Reasoning and trade-offs · AI analysis

Using the reference implementation for the connector layer is the correct decision and one that most small projects skip, which means the servers I already run attach without surprises instead of hitting a subtly wrong message format. Permissive licence, TypeScript I can read, and per-turn routing between tiers of the same family is a genuinely useful knob.

What it will not do is take my hardware. One provider family, no local serving path, so the cheapest configuration still involves somebody's API and a key. That is the part I would patch first.

reliability
7
usefulness
6
cost
8
longevity
5
Agree with El Hacker?