cordis.patch.yml 18 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458
  1. # The dsh-base bundle patch: the shared core of every dsh profile, applied as
  2. # ONE insert over the empty profile root. Later bundle patches and the user's
  3. # profile cordis.patch.yml address these rows by id, with the last write
  4. # winning per row.
  5. #
  6. # A patch replaces the targeted row's whole `config` rather than merging into
  7. # it, so a row whose value differs by mode does NOT live here: it belongs to
  8. # each mode bundle, keeping any single row down to one bundle layer plus the
  9. # user's. Mode-specific rows appear below only with shared plugin identity and
  10. # neutral defaults; each mode bundle restates its complete configuration.
  11. #
  12. # Row order carries no load semantics (activation is service-availability
  13. # driven); the grouping is for readers.
  14. - insert:
  15. - id: timer
  16. name: '@deepseek-ai/cordis-plugin-timer'
  17. - id: hmr
  18. name: '@deepseek-ai/cordis-plugin-hmr'
  19. config:
  20. root: ['.']
  21. - id: llm
  22. name: '@deepseek-ai/dsh-llm'
  23. - id: session
  24. name: '@deepseek-ai/dsh-session'
  25. - id: typert
  26. name: '@deepseek-ai/dsh-typert-registry'
  27. - id: typert-loader
  28. name: '@deepseek-ai/dsh-typert-loader'
  29. - id: typert-gateway
  30. name: '@deepseek-ai/dsh-api-gateway'
  31. - id: session-title
  32. name: '@deepseek-ai/dsh-session-title'
  33. config:
  34. fallbackMaxWords: 5
  35. fallbackMaxBytes: 40
  36. maxTitleBytes: 80
  37. - id: session-title-llm
  38. name: '@deepseek-ai/dsh-session-title-first-message-llm'
  39. config:
  40. targetWords: 5
  41. targetCjkCharacters: 10
  42. maxInputBytes: 4096
  43. maxOutputTokens: 64
  44. timeoutMs: 60000
  45. - id: user-interaction
  46. name: '@deepseek-ai/dsh-user-interaction'
  47. - id: agent
  48. name: '@deepseek-ai/dsh-agent'
  49. # The transport-independent default for Agents created by entry points.
  50. # Settings may supply a saved selection; consumers read it at creation time.
  51. - id: agent-default-model
  52. name: '@deepseek-ai/dsh-agent-default-model'
  53. config:
  54. provider: deepseek-official
  55. model: deepseek-v4-flash
  56. - id: tasks
  57. name: '@deepseek-ai/dsh-tasks-local'
  58. - id: llm-retry
  59. name: '@deepseek-ai/dsh-llm-retry'
  60. # User-settings document (`$DSH_HOME/settings.yaml`, hot-reloaded): a
  61. # `llm-deepseek:` or `llm-pi-ai:` section there overrides the adapter entries
  62. # below without a restart, and is what the web Models page writes.
  63. - id: settings
  64. name: '@deepseek-ai/dsh-settings-local'
  65. # Credential sources: inherited environment over the managed
  66. # `$DSH_HOME/.credentials.yaml`, with project and user `.env` fallbacks.
  67. # Adapters resolve references per request; the Models page writes only the
  68. # managed document, which is never materialized into the process environment.
  69. - id: credentials
  70. name: '@deepseek-ai/dsh-credentials-local'
  71. # The pi-ai multi-provider twin, mounted dormant: zero routes (and no extra
  72. # models in the picker) until a `llm-pi-ai:` settings section supplies provider
  73. # profiles — then those routes register live, keys resolving per request
  74. # through their apiKeyEnv references, and drop again when the section empties.
  75. # Supplying those profiles is exactly what the web Models page does. Which
  76. # adapters exist is composition; which providers run is the user's settings
  77. # document.
  78. - id: llm-pi-ai
  79. name: '@deepseek-ai/dsh-llm-pi-ai'
  80. - id: session-persistence-jsonl
  81. name: '@deepseek-ai/dsh-session-persistence-jsonl'
  82. config:
  83. root: !!js dshHomePath('sessions')
  84. # Durable image bytes live outside the append-only session log. Messages
  85. # keep content-addressed references that this shared backend resolves for
  86. # provider requests and authorized history reads.
  87. - id: attachment-local
  88. name: '@deepseek-ai/dsh-attachment-local'
  89. # Raw configs can supply a process-local path or disable this shared session
  90. # capability. The neutral default is process-local and opens only when used.
  91. - id: session-query-sqlite
  92. name: '@deepseek-ai/dsh-session-query-sqlite'
  93. config:
  94. path: ':memory:'
  95. openAt: first-search
  96. # Shared projection registry: subagent catalog identity (mode/label) folds
  97. # through its registered units, so the `list_agents` surface below fails
  98. # loud without it; web layers reuse this same mount for list rows.
  99. - id: session-projection
  100. name: '@deepseek-ai/dsh-session-projection'
  101. # Session telemetry, on for every dsh mode: mirrors every session-log
  102. # event (assistant/chunk projected to first-of-step) plus ops markers onto
  103. # OTLP/HTTP log records, streaming on the batch processor's cadence
  104. # (10s/batch here) — not at exit; a crash loses at most the last unexported
  105. # interval. No telemetry/record redaction rule is mounted yet, so exports
  106. # are the raw captured copy; the deployment stance, env seams, and
  107. # follow-ups are pinned in the web-telemetry-default-mount Agent Note.
  108. # DSH_TELEMETRY_OTLP_URL overrides the production endpoint, and a non-empty
  109. # DSH_TELEMETRY_DISABLED — any value, including '0'/'false' — opts the
  110. # process out (the launchers patch the row disabled; config cannot disable
  111. # a row). Exports carry the harness home's anonymous user id ($DSH_HOME/.userid,
  112. # random UUID; delete the file to reset the identity) as the Resource's
  113. # user.id. The exporter/processor values normally bound the shutdown drain
  114. # to ~1s against an unreachable collector: exporter.timeoutMillis is both
  115. # the per-attempt socket timeout and the retry deadline (1s effectively
  116. # disables the SDK's 5-try backoff), while maxExportBatchSize == maxQueueSize
  117. # (both explicit) makes the drain a single batch. The SDK awaits
  118. # exporter.forceFlush() outside exportTimeoutMillis, so the backend's 3s
  119. # shutdownTimeoutMillis is the load-bearing outer bound when a transport
  120. # promise never settles. Every CLI exit path drains it by disposing the root
  121. # on SIGINT/SIGTERM.
  122. - id: telemetry-otel
  123. name: '@deepseek-ai/dsh-session-telemetry-otel'
  124. config:
  125. shutdownTimeoutMillis: 3000
  126. exporter:
  127. url: !!js process.env.DSH_TELEMETRY_OTLP_URL ?? 'https://harness-telemetry.deepseeksvc.com/v1/logs'
  128. compression: gzip
  129. timeoutMillis: 1000
  130. processor:
  131. scheduledDelayMillis: 10000
  132. maxQueueSize: 2048
  133. maxExportBatchSize: 2048
  134. exportTimeoutMillis: 1500
  135. - id: subprocess
  136. name: '@deepseek-ai/dsh-subprocess-local'
  137. # Every shipped CLI mode starts with the same file-effect boundary.
  138. # The environment remains an explicit deployment override; otherwise fresh
  139. # sessions pin workspace-write + ask through the permission service below.
  140. - id: sandbox
  141. name: '@deepseek-ai/dsh-sandbox-local'
  142. - id: sandbox-policy
  143. name: '@deepseek-ai/dsh-sandbox-policy'
  144. config:
  145. mode: !!js process.env.DSH_PERMISSION_MODE ?? 'workspace-write'
  146. workspaceRoot: !!js process.cwd()
  147. # POSIX shell executor and its win32 twin: bash has no Windows runner, so
  148. # each row gates itself on platform and exactly one shell stack mounts per
  149. # host (both executors register the same 'bash' service).
  150. - id: bash-sandbox
  151. name: '@deepseek-ai/dsh-bash-sandbox'
  152. disabled: !!js process.platform === 'win32'
  153. config:
  154. timeoutMs: 60000
  155. # The confined PowerShell executor, mounted on win32 only. Its config keeps
  156. # the schema defaults (a 120s timeout); the 60s pin above is the bash
  157. # executor's own knob, not a shared shell policy.
  158. - id: pwsh-sandbox
  159. name: '@deepseek-ai/dsh-pwsh-sandbox'
  160. disabled: !!js process.platform !== 'win32'
  161. - id: approval
  162. name: '@deepseek-ai/dsh-user-approval'
  163. config:
  164. policy: !!js "(process.env.DSH_PERMISSION_MODE ?? 'workspace-write') === 'danger-full-access' ? 'never' : 'ask'"
  165. - id: permission
  166. name: '@deepseek-ai/dsh-permission'
  167. config:
  168. presets:
  169. read-only:
  170. sandbox: read-only
  171. approval: ask
  172. workspace-write:
  173. sandbox: workspace-write
  174. approval: ask
  175. danger-full-access:
  176. sandbox: danger-full-access
  177. approval: never
  178. - id: bash-env
  179. name: '@deepseek-ai/dsh-bash-env'
  180. # The dialect tools gate with their executors: one shell tool per host.
  181. - id: tool-bash
  182. name: '@deepseek-ai/dsh-tool-bash'
  183. disabled: !!js process.platform === 'win32'
  184. - id: tool-pwsh
  185. name: '@deepseek-ai/dsh-tool-pwsh'
  186. disabled: !!js process.platform !== 'win32'
  187. - id: tool-tasks
  188. name: '@deepseek-ai/dsh-tool-tasks'
  189. - id: fs-policy
  190. name: '@deepseek-ai/dsh-fs-policy'
  191. - id: tool-fs
  192. name: '@deepseek-ai/dsh-tool-fs'
  193. - id: tool-fs-search
  194. name: '@deepseek-ai/dsh-tool-fs-search'
  195. config:
  196. sampleOverCapGlobResults: false
  197. - id: workspace-context
  198. name: '@deepseek-ai/dsh-workspace-context'
  199. config:
  200. maxBytes: 65536
  201. - id: skill
  202. name: '@deepseek-ai/dsh-skill'
  203. - id: skill-local
  204. name: '@deepseek-ai/dsh-skill-local'
  205. - id: skill-badge
  206. name: '@deepseek-ai/dsh-skill-badge'
  207. disabled: true
  208. - id: tool-skill
  209. name: '@deepseek-ai/dsh-tool-skill'
  210. - id: commands
  211. name: '@deepseek-ai/dsh-commands'
  212. - id: command-feedback
  213. name: '@deepseek-ai/dsh-command-feedback'
  214. - id: goal
  215. name: '@deepseek-ai/dsh-goal'
  216. - id: goal-session
  217. name: '@deepseek-ai/dsh-goal-session'
  218. - id: command-goal
  219. name: '@deepseek-ai/dsh-command-goal'
  220. - id: plan-mode
  221. name: '@deepseek-ai/dsh-plan-mode'
  222. config:
  223. section: |
  224. You are in plan mode. Stay in plan mode until exit_plan_mode succeeds or the user switches the session mode. Imperative language to implement changes means plan the implementation, not execute it. A user's conversational agreement — including an answer confirming something you asked — approves nothing and does not end plan mode; fold the confirmed decision into the plan and submit it through exit_plan_mode.
  225. Explore first. Use non-mutating reads, searches, static analysis, and checks to ground the plan in the actual repository. Do not edit or write files, change configuration, run formatters or code generation that rewrites tracked files, commit, or otherwise carry out the plan. Prefer existing functions and patterns over new machinery.
  226. The tool catalog stays the same across modes for request-cache stability. These plan-mode rules override any later tool description or guidance that suggests using mutation tools; those tools remain listed only to keep the request shape stable. Do not use todo_write to track this planning phase: it tracks implementation after an approved plan, while the plan itself belongs in exit_plan_mode.
  227. Resolve discoverable facts by inspection. Use ask_user_question only for user-owned choices or material ambiguity that inspection cannot answer. Do not ask the user where code lives or how current behavior works when you can find out.
  228. Make the plan decision-complete: state the goal and success criteria; group implementation changes by subsystem; identify public API, schema, and data-flow changes; cover edge cases, failure modes, tests, acceptance criteria, and explicit assumptions. Keep it concise enough to review but detailed enough that another engineer can implement it without making design decisions.
  229. When ready, call exit_plan_mode with the complete plan markdown, starting with a # title. Make exit_plan_mode the only and final tool call in that assistant response: it presents the plan for approval, and implementation begins only in a later step after approval. Do not paste the final plan as a plain reply or ask "should I proceed?" through prose or ask_user_question. If review rejects it, incorporate the feedback and present again. If the review channel is unavailable or aborted, stay in plan mode and ask the user to switch modes manually; do not proceed with implementation.
  230. - id: token-meter
  231. name: '@deepseek-ai/dsh-token-meter'
  232. - id: compact-basic
  233. name: '@deepseek-ai/dsh-compact-basic'
  234. # Human `/compact`: one useful reduction below the automatic threshold. Backend
  235. # independent, so it follows whichever compaction service this leaf mounts.
  236. - id: command-compact
  237. name: '@deepseek-ai/dsh-command-compact'
  238. - id: subagent
  239. name: '@deepseek-ai/dsh-subagent'
  240. - id: subagent-spawn
  241. name: '@deepseek-ai/dsh-subagent-spawn'
  242. config:
  243. providerName: spawn
  244. - id: subagent-fork
  245. name: '@deepseek-ai/dsh-subagent-fork'
  246. config:
  247. providerName: fork
  248. # Product providers stay on the host plane because the registry is a
  249. # process singleton. Agent presets decide whether their own model sees the
  250. # matching delegation tools; loading either provider starts no product.
  251. - id: subagent-codex
  252. name: '@deepseek-ai/dsh-subagent-codex'
  253. - id: subagent-claude-code
  254. name: '@deepseek-ai/dsh-subagent-claude-code'
  255. # Continuable background children are selected per delegation tool. The
  256. # separately loaded follow-up tool registers the one global `send_message`.
  257. - id: tool-subagent-control
  258. name: '@deepseek-ai/dsh-tool-subagent-control'
  259. - id: tool-subagent-list-agents
  260. name: '@deepseek-ai/dsh-tool-subagent-control/list-agents'
  261. - id: tool-subagent
  262. name: '@deepseek-ai/dsh-tool-subagent'
  263. config:
  264. provider: spawn
  265. toolName: subagent
  266. backgroundMode: continuable
  267. - id: tool-subagent-fork
  268. name: '@deepseek-ai/dsh-tool-subagent'
  269. config:
  270. provider: fork
  271. toolName: subagent_fork
  272. backgroundMode: continuable
  273. # Optional direct-child return channel; absent from roots and one-shot agents.
  274. - id: tool-subagent-report
  275. name: '@deepseek-ai/dsh-tool-subagent-report'
  276. - id: workflow-workerthread
  277. name: '@deepseek-ai/dsh-workflow-workerthread'
  278. config:
  279. provider: spawn
  280. - id: tool-workflow
  281. name: '@deepseek-ai/dsh-tool-workflow'
  282. - id: timeout-policy
  283. name: '@deepseek-ai/dsh-timeout-policy'
  284. - id: spill-local
  285. name: '@deepseek-ai/dsh-spill-local'
  286. - id: spill-policy
  287. name: '@deepseek-ai/dsh-spill-policy'
  288. config:
  289. maxInlineBytes: 50000
  290. # Durability checkpoints before each model request and top-level dispatch.
  291. - id: session-checkpoint-policy
  292. name: '@deepseek-ai/dsh-session-checkpoint-policy'
  293. # Compacts oversized tool results before the broader conversation compactor
  294. # runs, preserving the model-visible result within the configured budget.
  295. - id: tool-result-prune
  296. name: '@deepseek-ai/dsh-compact-tool-result-prune'
  297. config:
  298. thresholdChars: 8192
  299. headChars: 4096
  300. tailChars: 1024
  301. - id: tool-todo
  302. name: '@deepseek-ai/dsh-tool-todo'
  303. config:
  304. allowParallelInProgress: true
  305. # Persisted same-session goals reach the model and the slash menu here; the
  306. # domain, driver, and `/goal` command are above.
  307. - id: tool-goal
  308. name: '@deepseek-ai/dsh-tool-goal'
  309. # Fresh-agent Ralph iteration over a build-time-fixed script.
  310. - id: tool-ralph
  311. name: '@deepseek-ai/dsh-tool-ralph'
  312. config:
  313. subagentProvider: spawn
  314. maxRounds: 64
  315. - id: tool-str-replace-editor
  316. name: '@deepseek-ai/dsh-tool-str-replace-editor'
  317. config:
  318. maxOutputChars: 16000
  319. # Consecutive-repeat reminders on the tool chain.
  320. - id: repeat-tool-guard
  321. name: '@deepseek-ai/dsh-repeat-tool-guard'
  322. config:
  323. thresholds: [3, 5, 8]
  324. argumentsPreviewChars: 500
  325. # Every mode enables the stable web_search model surface. DeepSeek search
  326. # resolves the same DEEPSEEK_API_KEY credential the Models page manages for
  327. # chat, at each search; its Messages endpoint is separate from the
  328. # chat-completions endpoint, so it takes its own base-URL override. Fetch stays
  329. # disabled and no fetch provider is mounted: that provider defers SSRF
  330. # protection and the model would choose the request target. Search is a full
  331. # auxiliary model request with server-side retrieval, so this shipped DeepSeek
  332. # route gets 60s while the provider-neutral tool default remains 30s.
  333. - id: web
  334. name: '@deepseek-ai/dsh-web'
  335. config:
  336. searchProvider: deepseek-official
  337. - id: web-search-deepseek
  338. name: '@deepseek-ai/dsh-web-search-deepseek'
  339. config:
  340. apiKeyEnv: DEEPSEEK_API_KEY
  341. - id: tool-web
  342. name: '@deepseek-ai/dsh-tool-web'
  343. config:
  344. fetch: false
  345. searchTimeoutMs: 60000
  346. # ── rows every mode mounts, whose values each overlay may state ──────────────
  347. # The tool registry. Presentation mode is a deployment choice; omitting it here
  348. # keeps the schema default (native).
  349. - id: tools
  350. name: '@deepseek-ai/dsh-tools'
  351. # The deployment persona is a deployment choice; plan-mode and tool plugins own
  352. # their own prompt sections.
  353. - id: system-prompt
  354. name: '@deepseek-ai/dsh-system-prompt'
  355. config:
  356. persona: ''
  357. # Agents created at startup. The base stays empty; raw overlays may create
  358. # agents, while Web creates sessions on client request.
  359. - id: agent-loop
  360. name: '@deepseek-ai/dsh-agent-loop'
  361. config:
  362. agents: []
  363. # The sandboxed filesystem provider. `cwd` defaults to `process.cwd()`; an
  364. # overlay can pin another workspace.
  365. - id: fs-sandbox
  366. name: '@deepseek-ai/dsh-fs-sandbox'
  367. # The native DeepSeek adapter. No key or endpoint is inlined: both resolve per
  368. # request from the `llm-deepseek:` settings section over this entry, with the
  369. # key coming from the credential store below. Thinking defaults are a deployment
  370. # choice.
  371. - id: llm-deepseek
  372. name: '@deepseek-ai/dsh-llm-deepseek'