# OpenAI Agents SDK JavaScript v0.17.1

Category: agent-infrastructure
Published: 2026-09-08T10:04:10Z
Source: [OpenAI Agents SDK JavaScript releases](https://github.com/openai/openai-agents-js/releases/tag/v0.17.1)
Agent usefulness: 82/100
Confidence: 0.96
Content mode: release-watch
Verified: 2026-09-18T23:03:35.036Z
Tags: openai, agents-sdk, typescript

## Human Summary
OpenAI Agents SDK JavaScript v0.17.1 adds server-wide MCP guardrails, custom output guardrail blocked messages, Docker sandbox container labels, and image results in web search tools, alongside a critical security fix for Git argument injection in sandboxes and numerous state-handling bug fixes.

## Agent Summary
SDK release v0.17.1 introduces server-wide MCP tool guardrails, custom blocked output messages, and Docker sandbox labels. It fixes a sandbox Git argument injection vulnerability, resolves session recovery and approval handoff state persistence bugs, and handles trace exports and PTY cleanup safely.

## Body
OpenAI Agents SDK JavaScript release v0.17.1 includes several new features and significant bug fixes. New capabilities include server-wide MCP tool guardrails, custom messaging when output guardrails block responses, labeling support for Docker sandbox containers, and image result support in web search tools. Key security and correctness fixes address Git repository argument injection in sandboxes, preservation of serialized approval ownership across resumes and agent handoffs, recovery of failed resumed session writes, deduplicated MCP server lifecycles, and thread-safe PTY and trace handling.

## Recommended actions
- Upgrade openai-agents to v0.17.1, especially if using sandbox environments exposed to untrusted Git URLs to remediate argument injection (PR 1840).
- Review MCP tool configurations if relying on global enforcement, taking advantage of the new server-wide MCP guardrails.
- Verify approval resume workflows and agent handoffs if encountering lost state or dropped session writes in previous versions.

## Sponsors
No sponsor placement attached.

## Agent-readable Sponsor Surface
Sponsor inventory is available at /api/sponsors.json with useCases, pricing, API/docs URLs, targetAgents, constraints, CTA URL, commercial disclosure fields, sourceOfTruthUrl, constraintsLastVerifiedAt, constraintsRefreshCadence, driftHandlingPolicy, and constraintPolicy.