Rallly

rallly.co
Rallly

Open-source & self-hostable scheduling tool that helps you find the best date and time to meet. Create a poll with a few options, share the link, and let your participants vote on when they're available. No more back-and-forth emails.

Open Source

Rallly Source Code

Author

lukevella

Description

Rallly is an open-source scheduling and collaboration tool designed to make organizing events and meetings easier.

#i18next#next-auth#nextjs#postgresql#prisma#react-email#t3-stack#tailwindcss#trpc#turborepo#typescript#zod

Homepage

https://rallly.co

Repository

  • LicenseAGPL-3.0
  • Created27 Jan 15
  • Primary languageTypeScript
  • Size41,359 KB
  • Stars5,217
  • Forks544
  • Watchers5,217

Language Usage

Language Usage

Project Health

  • Last commit4 minutes ago
  • Open issues5
  • Latest releasev4.12.3

Recent Commits

  • Luke Vella(17 Aug 26)

    💄 Scrollable participant list in mobile poll vote breakdown (#2961) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    💄 Update hero demo utility classes for Tailwind v4 Replace the deprecated `bg-gradient-to-r` with `bg-linear-to-r` on the accent bar, and swap `max-w-prose` for an explicit `max-w-[80ch]` on the demo description.

  • Luke Vella(16 Aug 26)

    💄 Tighten auth page vertical layout Move vertical centering onto the auth column and use a uniform gap between the logo, main content and quick create button instead of a nested centering wrapper. Shrink the "fit" logo slot from 160x200 to 128x192 and drop the matching fixed height from the auth footer, which no longer needs to mirror the header.

  • Luke Vella(16 Aug 26)

    🌐 New Crowdin updates (#2958)

  • Luke Vella(16 Aug 26)

    ✨ Accept SVG uploads for the wordmark logos (#2951) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    ✨ Logo upload through the branding page (#2946) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    💄 Modernize landing footer: replace donation copy, restructure nav (#2957) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    💄 Simplify login provider options (#2956) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    💄 Cap poll description width at a readable line length (#2955) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    🌐 New Crowdin updates (#2953) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    💄 Match event card response options to landing page styling (#2950) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    🐛 Center the hero demo success dialog over the phone screen (#2949) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    💄 Update switch style

  • Luke Vella(16 Aug 26)

    🐛 Reject localhost, dotless hostnames and IPs as the cookie domain (#2941) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    💄 Animate landing stats with an odometer count-up on scroll (#2942) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    👷 Fail CI on unbalanced braces in locale JSON strings (#2945) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    🐛 Fix landing hero demo hydration mismatch (#2948) Co-authored-by: Claude Opus 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    🐛 Landing hero: fix try-voting prompt translation, readability and responsiveness (#2943) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    🌐 New Crowdin updates (#2947)

  • Luke Vella(16 Aug 26)

    📈 Track hero demo interactions (#2939) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    ♿️ Fix axe WCAG 2.1 AA violations on the landing home page (#2938) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    ♻️ Share one VoteIcon component between web and landing (#2940) Co-authored-by: Claude Opus 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    🌐 New Crowdin updates (#2935) Co-authored-by: Claude Opus 5 <[email protected]>

  • Luke Vella(16 Aug 26)

    💄 Drop bottom padding from the landing hero header

  • Luke Vella(16 Aug 26)

    ✨ Landing hero: presentational poll demo with live dates (#2934) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(15 Aug 26)

    🚸 Gate primary color saves behind the paywall for hobby spaces (#2937) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(15 Aug 26)

    ♻️ Extract ColorPickerWithSaveButton shared by both settings pages (#2928) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(15 Aug 26)

    ♻️ Convert the members page to server components and loaders (#2933) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(15 Aug 26)

    💄 Make primary button translucent at rest and opaque on hover (#2932) Co-authored-by: Claude Fable 5 <[email protected]>

  • Luke Vella(14 Aug 26)

    ✏️ Use sentence case for landing page headings and CTAs (#2931) Co-authored-by: Claude Fable 5 <[email protected]>

Rallly Security

Security Advisories (12)

  • mediumPatchedCVSS 6.5

    GHSA-34w3-569j-j947Rallly: a space administrator can remove or demote the space owner, permanently locking the owner out of their own space

  • mediumPatchedCVSS 5.4

    CVE-2025-65034Improper Authorization Allows Reopening of Any Finalized Poll via Public pollId

  • mediumPatchedCVSS 6.5

    CVE-2025-65032IDOR in Participant Rename Function Allows Unauthorized Modification of Other Users’ Names

  • mediumPatchedCVSS 5.4

    CVE-2025-65033Broken Authorization: Any User Can Pause or Resume Any Poll via Poll ID Manipulation

  • mediumPatched

    CVE-2025-66027Information Disclosure in Participant API Leaks Names and Emails Despite Pro Privacy Settings

  • mediumPatchedCVSS 6.5

    CVE-2025-65028IDOR in Vote Update Endpoint Allows Unauthorized Manipulation of Participant Votes

  • mediumPatchedCVSS 5.4

    CVE-2025-65029IDOR in Participant Deletion Endpoint Allows Unauthorized Removal of Poll Participants

  • mediumPatchedCVSS 4.3

    CVE-2025-65030Improper Authorization in Comment Deletion Endpoint Allows Unauthorized Comment Removal

  • mediumPatchedCVSS 4.3

    CVE-2025-65031Improper Authorization in Comment Endpoint Allows User Impersonation

  • mediumPatchedCVSS 5.4

    CVE-2025-65021Unauthorized Poll Finalization via Insecure Direct Object Reference (IDOR)

  • mediumPatchedCVSS 4.3

    CVE-2025-65020Unauthorized Poll Duplication via Insecure Direct Object Reference (IDOR)

  • criticalPatchedCVSS 9.8

    CVE-2025-47781Insufficient Password Login Token Entropy Leads to Account Takeover

Rallly Website

Website

Rallly: Free Group Meeting Scheduling Tool

Rallly is the fastest and easiest scheduling and collaboration tool. Create a meeting poll in seconds, no login required.

Redirects

Does not redirect

Security Checks

All 65 security checks passed

Server Details

  • IP Address216.150.1.1
  • LocationWalnut,California,United States of America,NA
  • ISPVercel Inc
  • ASNAS16509

Associated Countries

  • USUS
  • CACA

Safety Score

Website marked as safe

100%

Blacklist Check

rallly.co was found on 0 blacklists

  • AntiSocial Blacklist
  • Artists Against 419
  • Badbitcoin
  • Bambenek Consulting
  • CERT Polska
  • CoinBlockerLists
  • CRDF
  • CryptoScamDB
  • EtherAddressLookup
  • EtherScamDB
  • Fake Website Buster
  • MetaMask EthPhishing
  • NABP Not Recommended Sites
  • OpenPhish
  • PetScams
  • PhishFeed
  • PhishFort
  • Phishing.Database
  • PhishStats
  • PhishTank
  • Phishunt
  • RPiList Not Serious
  • Scam.Directory
  • SecureReload Phishing List
  • Spam404
  • StopGunScams
  • Suspicious Hosting IP
  • ThreatFox
  • ThreatLog
  • TweetFeed
  • URLhaus
  • ViriBack C2 Tracker

Website Preview

Website preview

Rallly Socials

Rallly Reviews

More Scheduling

  • Open-source (AGPL-3.0), self-hostable scheduling and calendar platform. Guests book without creating an account; hosts get a full calendar with two-way sync to Google, Outlook and iCloud. A managed cloud plan is offered too, not self-hosted.

About the Data: Rallly

Change History

Edit Rallly Data

You can edit Rallly's entry in this section of awesome-privacy.yml by submitting a PR to our GitHub repo.
Note that some of the information shown above has been aggregated from external sources, a list of these can be found data documentation.

Origin Data

Modify Data

API

You can access Rallly's data programmatically via our API. Simply make a GET request to:

https://api.awesome-privacy.xyz/v1/services/rallly

The REST API is free, no-auth and CORS-enabled. To learn more, view the API Docs or read the API Usage Guide.

Share Rallly

Help your friends compare Scheduling, and pick privacy-respecting software and services.
Share Rallly and Awesome Privacy with your network!