Rallly
rallly.coOpen-source & self-hostable scheduling tool that helps you find the best date and time to meet. Create a poll with a few options, share the link, and let your participants vote on when they're available. No more back-and-forth emails.
- Homepage:rallly.co
- GitHub:github.com/lukevella/rallly
- Discord:uzg4ZcHbuM
- Web info:web-check.xyz/check/rallly.co
Rallly Source Code
Author
Description
Rallly is an open-source scheduling and collaboration tool designed to make organizing events and meetings easier.
Homepage
https://rallly.coRepository
- LicenseAGPL-3.0
- Created27 Jan 15
- Primary languageTypeScript
- Size48,802 KB
- Stars5,239
- Forks553
- Watchers5,239
Top Contributors
@lukevella (3173)
@dependabot[bot] (37)
@snyk-bot (13)
@posthog-eu[bot] (7)
@jonas-hoebenreich (5)
@mattprecious (3)
@Retr0-01 (2)
@smncd (2)
@kleenkanteen (2)
@peterlewis (2)
@kaiwalyakoparkar (2)
@aschaber1 (2)
@handotdev (1)
@LarsHaalck (1)
@m3nu (1)
@mark-pitblado (1)
@dahlo (1)
@pruthvi-builds (1)
@samsapti (1)
@scottwallacesh (1)
@osresearch (1)
@xavier-calland (1)
@kolaente (1)
@gramakri (1)
@TheZoker (1)
@ThisIsMissEm (1)
@dev13-suthar (1)
@Dangersohn (1)
@crossi-dev (1)
@bmaster001 (1)
@ArthurTeslyk (1)
@armanddidierjean (1)
@a-mnich (1)
@avm99963 (1)
Recent Commits
Luke Vella(03 Sept 26)
✨ Add cta param to distinguish landing CTAs in attribution (#3155) Co-authored-by: Claude Opus 5 <[email protected]>
Luke Vella(03 Sept 26)
🔖 Release 4.14.0
Luke Vella(03 Sept 26)
🌐 New Crowdin updates (#3151) Co-authored-by: Claude Fable 5.1 <[email protected]>
Luke Vella(02 Sept 26)
♻️ Replace clsx + tailwind-merge with cn (#3150) Co-authored-by: Claude Fable 5.1 <[email protected]>
Luke Vella(02 Sept 26)
🌐 New Crowdin updates (#3149)
Luke Vella(02 Sept 26)
✨ Add List-Unsubscribe headers and tokenized per-poll unsubscribe (#3148) Co-authored-by: Claude Fable 5.1 <[email protected]>
Luke Vella(02 Sept 26)
♻️ Centralize deployment-mode behavior in capabilities and instance policy (#3147) Co-authored-by: Claude Fable 5.1 <[email protected]>
Luke Vella(02 Sept 26)
🌐 New Crowdin updates (#3140) Co-authored-by: Claude Fable 5.1 <[email protected]>
Luke Vella(02 Sept 26)
📝 Redesign README header with app icon and current screenshot (#3146) Co-authored-by: Claude Fable 5.1 <[email protected]>
Luke Vella(01 Sept 26)
📝 Align privacy policy service providers with the DPA subprocessor annex (#3145) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
💄 Add padding around the Doodle pricing table image (#3142) Co-authored-by: Claude Opus 5 <[email protected]>
Luke Vella(01 Sept 26)
🔍 Extend the free scheduling poll page to cover its full query cluster (#3137) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
💄 Restyle legal pages with sticky last-updated sidebar (#3135) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
✨ Link the DPA from the footer and privacy policy (#3134) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
♻️ Use locale-aware link for hero announcement (#3139) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
♻️ Rebuild when2meet alternative page to match the Doodle template (#3132) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
♻️ Use locale-aware links for landing page internal cross-links (#3136) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
📈 Attribute signups to the originating landing page (#3133) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
🌐 New Crowdin updates (#3124) Co-authored-by: Claude Opus 5 <[email protected]>
Luke Vella(01 Sept 26)
💄 Truncate hero announcement text to one line (#3131) Co-authored-by: Claude Opus 5 <[email protected]>
Luke Vella(01 Sept 26)
📝 Document space branding enforcement under the white label add-on (#3130) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
🍱 Replace collaboration blog screenshot with a lofi illustration (#3129) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
💄 Rename landing footer heading to "Use cases" (#3128) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
✨ Enforce instance branding when the white label add-on is active (#3125) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(01 Sept 26)
📝 Add "Is Doodle still free?" blog post (#3127) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(31 Aug 26)
🐛 Run Vercel Analytics outside the cookie consent gate (#3126) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(31 Aug 26)
👷 Add nightly database backup workflow (#3123) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(31 Aug 26)
🌐 New Crowdin updates (#3120)
Luke Vella(31 Aug 26)
🔧 Lower preview branch TTL to 6 days (#3122) Co-authored-by: Claude Fable 5 <[email protected]>
Luke Vella(31 Aug 26)
✨ Add Data Processing Agreement page (#3104) Co-authored-by: Claude Fable 5 <[email protected]>
Rallly Security
Security Advisories (12)
- mediumPatchedCVSS 6.5
GHSA-34w3-569j-j947Rallly: a space administrator can remove or demote the space owner, permanently locking the owner out of their own space
- mediumPatchedCVSS 5.4
CVE-2025-65034Improper Authorization Allows Reopening of Any Finalized Poll via Public pollId
- mediumPatchedCVSS 6.5
CVE-2025-65032IDOR in Participant Rename Function Allows Unauthorized Modification of Other Users’ Names
- mediumPatchedCVSS 5.4
CVE-2025-65033Broken Authorization: Any User Can Pause or Resume Any Poll via Poll ID Manipulation
- mediumPatched
CVE-2025-66027Information Disclosure in Participant API Leaks Names and Emails Despite Pro Privacy Settings
- mediumPatchedCVSS 6.5
CVE-2025-65028IDOR in Vote Update Endpoint Allows Unauthorized Manipulation of Participant Votes
- mediumPatchedCVSS 5.4
CVE-2025-65029IDOR in Participant Deletion Endpoint Allows Unauthorized Removal of Poll Participants
- mediumPatchedCVSS 4.3
CVE-2025-65030Improper Authorization in Comment Deletion Endpoint Allows Unauthorized Comment Removal
- mediumPatchedCVSS 4.3
CVE-2025-65031Improper Authorization in Comment Endpoint Allows User Impersonation
- mediumPatchedCVSS 5.4
CVE-2025-65021Unauthorized Poll Finalization via Insecure Direct Object Reference (IDOR)
- mediumPatchedCVSS 4.3
CVE-2025-65020Unauthorized Poll Duplication via Insecure Direct Object Reference (IDOR)
- criticalPatchedCVSS 9.8
CVE-2025-47781Insufficient Password Login Token Entropy Leads to Account Takeover
Rallly Website
Website
Rallly: Free Group Meeting Scheduling Tool
Rallly is the fastest and easiest scheduling and collaboration tool. Create a meeting poll in seconds, no login required.
Redirects
Does not redirect
Security Checks
All 65 security checks passed
Server Details
- IP Address216.150.1.1
- LocationWalnut,California,United States of America,NA
- ISPVercel Inc
- ASNAS16509
Associated Countries
US
CA
Safety Score
Website marked as safe
100%
Blacklist Check
rallly.co was found on 0 blacklists
- AntiSocial Blacklist
- Artists Against 419
- Badbitcoin
- Bambenek Consulting
- CERT Polska
- CoinBlockerLists
- CRDF
- CryptoScamDB
- EtherAddressLookup
- EtherScamDB
- Fake Website Buster
- MetaMask EthPhishing
- NABP Not Recommended Sites
- OpenPhish
- PetScams
- PhishFeed
- PhishFort
- Phishing.Database
- PhishStats
- PhishTank
- Phishunt
- RPiList Not Serious
- Scam.Directory
- SecureReload Phishing List
- Spam404
- StopGunScams
- Suspicious Hosting IP
- ThreatFox
- ThreatLog
- TweetFeed
- URLhaus
- ViriBack C2 Tracker
Website Preview
Rallly Socials
Rallly Reviews
More Scheduling
Open-source (AGPL-3.0), self-hostable scheduling and calendar platform. Guests book without creating an account; hosts get a full calendar with two-way sync to Google, Outlook and iCloud. A managed cloud plan is offered too, not self-hosted.
About the Data: Rallly
Change History
- Added #690
Edit Rallly Data
You can edit Rallly's entry in this section of awesome-privacy.yml by submitting a PR to our GitHub repo.
Note that some of the information shown above has been aggregated from external
sources, a list of these can be found data documentation.
Origin Data
Modify Data
API
You can access Rallly's data programmatically via our API. Simply make a GET request to:
https://api.awesome-privacy.xyz/v1/services/ralllyThe REST API is free, no-auth and CORS-enabled. To learn more, view the API Docs or read the API Usage Guide.
Share Rallly
Help your friends compare Scheduling, and pick privacy-respecting software and services.
Share Rallly and Awesome Privacy with your network!