Compare commits
9 Commits
release/mo
...
996651c6f3
| Author | SHA1 | Date | |
|---|---|---|---|
| 996651c6f3 | |||
| 244290d64d | |||
| 32f4215461 | |||
| 23343bb7f0 | |||
| c8b2dab0ca | |||
| 6dbe452a9f | |||
| 59c755067e | |||
| 6ffb27787e | |||
| 130837365f |
@@ -25,12 +25,10 @@ steps:
|
|||||||
commands:
|
commands:
|
||||||
- apk add --no-cache bash
|
- apk add --no-cache bash
|
||||||
- bash packages/mosaic/framework/tools/quality/scripts/verify-sanitized.sh
|
- bash packages/mosaic/framework/tools/quality/scripts/verify-sanitized.sh
|
||||||
# L0 resident-token budget: keep the Constitution + dispatcher small.
|
# Resident line-count ceiling over framework-owned resident files
|
||||||
- |
|
# (Constitution + dispatcher + each RUNTIME.md slice). See DESIGN §7 / R9.
|
||||||
for f in CONSTITUTION.md AGENTS.md; do
|
- bash packages/mosaic/framework/tools/quality/scripts/check-resident-budget.sh --self-test
|
||||||
n=$(wc -l < "packages/mosaic/framework/defaults/$f")
|
- bash packages/mosaic/framework/tools/quality/scripts/check-resident-budget.sh
|
||||||
if [ "$n" -gt 120 ]; then echo "L0 budget exceeded: defaults/$f is $n lines (max 120)"; exit 1; fi
|
|
||||||
done
|
|
||||||
|
|
||||||
typecheck:
|
typecheck:
|
||||||
image: *node_image
|
image: *node_image
|
||||||
|
|||||||
@@ -45,3 +45,12 @@ Active workstream is **W1 — Federation v1**. Workers should:
|
|||||||
- Status: PR open, awaiting maintainer merge ratification (fleet-governing change).
|
- Status: PR open, awaiting maintainer merge ratification (fleet-governing change).
|
||||||
- Cut always-injected contract AGENTS+TOOLS+RUNTIME 8,827→4,122 tok (−53%); all 12 hard gates intact.
|
- Cut always-injected contract AGENTS+TOOLS+RUNTIME 8,827→4,122 tok (−53%); all 12 hard gates intact.
|
||||||
- Validation: deterministic gate-checklist PASS; headless A/B thin 7/9 vs monolith 5/9. Detail: scratchpads/contract-thin-core.md.
|
- Validation: deterministic gate-checklist PASS; headless A/B thin 7/9 vs monolith 5/9. Detail: scratchpads/contract-thin-core.md.
|
||||||
|
|
||||||
|
## P5 — Overlay composer + cross-harness (#604) — feat/p5-overlay-composer
|
||||||
|
|
||||||
|
- Status: MERGED to main (#605). R7 (compose-contract) + R8 (cross-harness) + R9 (composer test).
|
||||||
|
- `composeContract({harness, mosaicHome})` pure fn + `.local` overlay deltas-by-value; `mosaic compose-contract <harness>` command; AGENTS bare-launch nudge; composer spec (per-tier anchor + Tier-3 byte-equality). Detail: scratchpads/p5-overlay-composer.md.
|
||||||
|
|
||||||
|
## P6 — Docs, compliance matrix, alpha tag (#606) — feat/p6-docs-compliance-alpha
|
||||||
|
|
||||||
|
- Status: in-repo deliverables done (CONTRIBUTING.md + harness×gate compliance matrix + check-resident-budget.sh + CI wiring + ALPHA-DOD.md). Remaining: alpha tag v0.0.39-alpha (Lead, post-merge). aiguide reconcile merged (#8). Detail: scratchpads/p6-docs-compliance-alpha.md.
|
||||||
|
|||||||
75
docs/design/framework-constitution/ALPHA-DOD.md
Normal file
75
docs/design/framework-constitution/ALPHA-DOD.md
Normal file
@@ -0,0 +1,75 @@
|
|||||||
|
# Constitution Alpha — Definition-of-Done checklist + release notes
|
||||||
|
|
||||||
|
Drafted for the `v0.0.39-alpha` tag (Lead cuts after P5 #605 → P6 #607 → aiguide #8 merge).
|
||||||
|
Maps every DoD §8 acceptance criterion to its merged evidence. Legend:
|
||||||
|
**✅ merged on main** · **⏳ review-ready PR (pending merge)** · **🔲 Lead action**.
|
||||||
|
|
||||||
|
## DoD §8 green-checklist
|
||||||
|
|
||||||
|
| # | Acceptance criterion (DESIGN §8) | Status | Evidence / PR |
|
||||||
|
| --- | ------------------------------------------------------------------------------------------------------ | ------ | ----------------- |
|
||||||
|
| 1 | MIT `LICENSE` (root + framework) + `"license":"MIT"` in package.json | ✅ | P0 #570 |
|
||||||
|
| 2 | Three credential-path sites + hook URL fast-failed (no private paths in `*.sh`/hooks) | ✅ | P0 #570 |
|
||||||
|
| 3 | `verify-sanitized.sh` (two-class, `*.sh`+`*.md`, self-tested) wired **blocking** in CI | ✅ | P1 #572 |
|
||||||
|
| 4 | Operator data purged from the full set (guides / tools / init-generator) | ✅ | P2 #572 |
|
||||||
|
| 5 | `rails/`→`tools/` in **both** template families | ✅ | P2 #572 |
|
||||||
|
| 6 | `jarvis-loop.json` deleted; `defaults/SOUL.md` → **neutral sanitized persona** (Q10 decision) | ✅ | P2 #572 |
|
||||||
|
| 7 | `CONSTITUTION.md` extracted (gates one place, capability-verb, §1.4 split, no false "already loaded") | ✅ | P3 #575 / #577 |
|
||||||
|
| 8 | `AGENTS.md`/`STANDARDS.md` out of `PRESERVE_PATHS` + seed-semantics → overwrite in **both** installers | ✅ | P4 #590 |
|
||||||
|
| 9 | Snapshot + v2→v3 migration moving user edits to `.local`/`.bak`; `FRAMEWORK_VERSION=3` | ✅ | P4 #590 / #593 |
|
||||||
|
| 10 | `mosaic-init --non-interactive` fail-closed persona | ✅ | P4 #590 |
|
||||||
|
| 11 | **5-fixture migration matrix** green against **both** installers asserting **injected bytes** | ✅ | P4 #590 / #593 |
|
||||||
|
| 12 | `compose-contract` built + composer unit test (per-tier anchor + Tier-3 byte-equality) | ⏳ | P5 #605 |
|
||||||
|
| 13 | Resident line-count ceiling enforced (framework-owned resident files) | ⏳ | P6 #607 |
|
||||||
|
| 14 | `CONTRIBUTING.md` + harness×gate compliance matrix | ⏳ | P6 #607 |
|
||||||
|
| 15 | `aiguide` reconciled with the Constitution | ⏳ | aiguide #8 |
|
||||||
|
| 16 | Each phase PR CI-green; alpha tag pushed + Gitea release published | 🔲 | Lead (post-merge) |
|
||||||
|
|
||||||
|
**Note on #6:** the DoD's literal "delete `defaults/SOUL.md`" was superseded by the resolved
|
||||||
|
**Q10** decision — ship a _neutral, operator-agnostic_ example persona instead of deleting it. Main
|
||||||
|
carries the sanitized 2.6 KB neutral SOUL.md ("Mosaic agent", no operator identity); the sanitization
|
||||||
|
gate confirms it is PII-clean. Criterion met in spirit (no operator persona leaks) via the better option.
|
||||||
|
|
||||||
|
**Gate to flip 12–14 → ✅:** merge P5 #605 → P6 #607 (rebase auto-drops the dup format fix
|
||||||
|
`adc7df2`/`9f6da92`) → aiguide #8, with `ci.yml` terminal-green on the merged head.
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## Release notes — `v0.0.39-alpha` (Mosaic Framework Constitution, alpha)
|
||||||
|
|
||||||
|
### Mosaic Framework Constitution — Alpha
|
||||||
|
|
||||||
|
This release makes the Mosaic framework a **safe-to-open-source, fork-and-customize agent
|
||||||
|
operating layer**. It separates the non-negotiable law from operator identity, makes
|
||||||
|
customization survive upgrades, and wires the guarantees into CI.
|
||||||
|
|
||||||
|
**Highlights**
|
||||||
|
|
||||||
|
- **Constitution (L0).** The hard gates now live in one place — `CONSTITUTION.md` — authored in
|
||||||
|
capability verbs, with a thin `AGENTS.md` dispatcher that references the law instead of restating
|
||||||
|
it. Governance model in `constitution/LAYER-MODEL.md`.
|
||||||
|
- **Public & sanitized.** MIT-licensed; all operator identity, private paths, and credential sites
|
||||||
|
removed from shipped files. A self-tested `verify-sanitized.sh` gate (two rule classes) runs
|
||||||
|
**blocking** in CI so re-contamination can't merge.
|
||||||
|
- **Upgrade-safe customization.** Framework-owned files overwrite cleanly on upgrade while
|
||||||
|
`SOUL.md`/`USER.md`/`*.local.md`/`credentials` are preserved. The v2→v3 migration snapshots first
|
||||||
|
and moves any user-edited `AGENTS.md`/`STANDARDS.md` to `.pre-constitution.bak`/`.local.md` —
|
||||||
|
never silently lost. Verified by a 5-fixture matrix across **both** installers.
|
||||||
|
- **Operator overlays.** `mosaic compose-contract <harness>` merges your `*.local.md` deltas into
|
||||||
|
the contract per harness, so customization reaches the model as one pre-merged blob.
|
||||||
|
- **Cross-harness.** Single L0 source referenced (never restated) by Claude / Codex / OpenCode / Pi;
|
||||||
|
tiered injection with a byte-equal Tier-3 fallback read.
|
||||||
|
- **Guardrails in CI.** Resident line-count ceiling over framework-owned resident files; composer
|
||||||
|
unit test; sanitization gate — all blocking.
|
||||||
|
- **Docs.** `CONTRIBUTING.md` with the layer model, dual-installer parity rule, and a harness×gate
|
||||||
|
**compliance matrix** (the Codex/OpenCode/Pi hook-parity gap is tracked for v2).
|
||||||
|
|
||||||
|
**Known limitations (accepted, documented in `CONTRIBUTING.md` §9)**
|
||||||
|
|
||||||
|
- Bare launches that bypass `mosaic` get base contracts only (no `*.local` overlays) and are not
|
||||||
|
drift-checked by `mosaic doctor` — mitigated by the unconditional Tier-3 self-load + a nudge.
|
||||||
|
- Codex/OpenCode/Pi mechanical hook parity, `policy/*.md` composition, and live-launch cross-harness
|
||||||
|
verification are **v2**.
|
||||||
|
|
||||||
|
**Phase lineage:** P0 #570 · P1+P2 #572 · P3 #575/#577 · P4 #590/#593 · P5 #605 · P6 #607 ·
|
||||||
|
aiguide #8 (umbrella #542).
|
||||||
@@ -20,8 +20,9 @@ functional, we use the fleet itself to continue the work.
|
|||||||
## Requirements
|
## Requirements
|
||||||
|
|
||||||
### A. Configure-without-AI CLI
|
### A. Configure-without-AI CLI
|
||||||
|
|
||||||
| ID | Requirement |
|
| ID | Requirement |
|
||||||
|---|---|
|
| --- | ------------------------------------------------------------------------------------------------------------- |
|
||||||
| R1 | `mosaic fleet` command set is functional end-to-end (init/install/start/stop/status/ps/verify + agent verbs). |
|
| R1 | `mosaic fleet` command set is functional end-to-end (init/install/start/stop/status/ps/verify + agent verbs). |
|
||||||
| R2 | `mosaic fleet init` is an interactive, **AI-free** CLI wizard. |
|
| R2 | `mosaic fleet init` is an interactive, **AI-free** CLI wizard. |
|
||||||
| R3 | Init asks the **configuration type**: `general`, `coding`, `research`, `hybrid`, … (extensible). |
|
| R3 | Init asks the **configuration type**: `general`, `coding`, `research`, `hybrid`, … (extensible). |
|
||||||
@@ -32,24 +33,27 @@ functional, we use the fleet itself to continue the work.
|
|||||||
| R17 | Fleet controls are **simple and intuitive**. |
|
| R17 | Fleet controls are **simple and intuitive**. |
|
||||||
|
|
||||||
### B. Comms & orchestrator chat-ops
|
### B. Comms & orchestrator chat-ops
|
||||||
|
|
||||||
| ID | Requirement |
|
| ID | Requirement |
|
||||||
|---|---|
|
| --- | --------------------------------------------------------------------------------------------------------------------------------- |
|
||||||
| R6 | Init can wire the orchestrator to a chat connector — **Telegram / Discord / Matrix / Slack** — for command + comms. |
|
| R6 | Init can wire the orchestrator to a chat connector — **Telegram / Discord / Matrix / Slack** — for command + comms. |
|
||||||
| R7 | Designed with the end-goal of **Matrix comms on a locally-controlled server**. |
|
| R7 | Designed with the end-goal of **Matrix comms on a locally-controlled server**. |
|
||||||
| R16 | Fleet supports **tmux AND Matrix** comms, **user-configurable** at init or any time. Not all users want Matrix. |
|
| R16 | Fleet supports **tmux AND Matrix** comms, **user-configurable** at init or any time. Not all users want Matrix. |
|
||||||
| R19 | **"Mos" orchestrator on Discord** (`chan 1517622518662434996` / `srv 1112631390438166618`) on `w-jarvis` — the first live target. |
|
| R19 | **"Mos" orchestrator on Discord** (`chan 1517622518662434996` / `srv 1112631390438166618`) on `w-jarvis` — the first live target. |
|
||||||
|
|
||||||
### C. Runtime, health, lifecycle
|
### C. Runtime, health, lifecycle
|
||||||
|
|
||||||
| ID | Requirement |
|
| ID | Requirement |
|
||||||
|---|---|
|
| --- | ---------------------------------------------------------------------------------- |
|
||||||
| R9 | Fleet is **mutable by the orchestrator agent** — add/remove agents per need. |
|
| R9 | Fleet is **mutable by the orchestrator agent** — add/remove agents per need. |
|
||||||
| R13 | Fleet **gracefully handles Pi + Claude harness updates** — keep harnesses current. |
|
| R13 | Fleet **gracefully handles Pi + Claude harness updates** — keep harnesses current. |
|
||||||
| R14 | The **Pi harness is customized** for proper tool usage, etc. |
|
| R14 | The **Pi harness is customized** for proper tool usage, etc. |
|
||||||
| R15 | **Agent heartbeat** properly configured for **Claude AND GPT/Pi** agents. |
|
| R15 | **Agent heartbeat** properly configured for **Claude AND GPT/Pi** agents. |
|
||||||
|
|
||||||
### D. Surfaces, testing, docs
|
### D. Surfaces, testing, docs
|
||||||
|
|
||||||
| ID | Requirement |
|
| ID | Requirement |
|
||||||
|---|---|
|
| --- | ----------------------------------------------------------------------------------- |
|
||||||
| R18 | Fleet built so the **webUI can view / monitor / terminate / butt-in** on a session. |
|
| R18 | Fleet built so the **webUI can view / monitor / terminate / butt-in** on a session. |
|
||||||
| R11 | Installed and **tested on both `w-jarvis` and `dragon-lin`**. |
|
| R11 | Installed and **tested on both `w-jarvis` and `dragon-lin`**. |
|
||||||
| R12 | **Documentation**: how to install, configure, and use the fleet. |
|
| R12 | **Documentation**: how to install, configure, and use the fleet. |
|
||||||
@@ -66,7 +70,7 @@ functional, we use the fleet itself to continue the work.
|
|||||||
## Phases (incremental, each shippable)
|
## Phases (incremental, each shippable)
|
||||||
|
|
||||||
| Phase | Deliverable | Notes |
|
| Phase | Deliverable | Notes |
|
||||||
|---|---|---|
|
| --------------------------------- | ----------------------------------------------------------------------------------------------------------------------------------- | ------------------------------------- |
|
||||||
| **F1 Presets + init wizard** | preset rosters (general/coding/research/hybrid) + always-orchestrator + AI-free `fleet init` selecting a preset; re-init idempotent | R1–R5, R8, R10, R17 |
|
| **F1 Presets + init wizard** | preset rosters (general/coding/research/hybrid) + always-orchestrator + AI-free `fleet init` selecting a preset; re-init idempotent | R1–R5, R8, R10, R17 |
|
||||||
| **F2 Connector + Mos-on-Discord** | orchestrator chat-connector config (Discord first) + **Mos live on Discord `1517…`/`1112…`** on w-jarvis | R6, R19, partial R16 |
|
| **F2 Connector + Mos-on-Discord** | orchestrator chat-connector config (Discord first) + **Mos live on Discord `1517…`/`1112…`** on w-jarvis | R6, R19, partial R16 |
|
||||||
| **F3 Heartbeat + harness** | HB confirmed for claude + pi/gpt; **custom Pi harness** (tool usage, native HB, model self-report); graceful harness updates | R13, R14, R15 |
|
| **F3 Heartbeat + harness** | HB confirmed for claude + pi/gpt; **custom Pi harness** (tool usage, native HB, model self-report); graceful harness updates | R13, R14, R15 |
|
||||||
|
|||||||
43
docs/scratchpads/p5-overlay-composer.md
Normal file
43
docs/scratchpads/p5-overlay-composer.md
Normal file
@@ -0,0 +1,43 @@
|
|||||||
|
# P5 — Overlay composer + cross-harness (compose-contract)
|
||||||
|
|
||||||
|
- **Issue:** #604 · **Branch:** `feat/p5-overlay-composer` · **Lineage:** #542 → constitution alpha
|
||||||
|
- **Requirements:** R7 (compose-contract) + R8 (cross-harness) + R9 (composer test)
|
||||||
|
- **Design of record:** `docs/design/framework-constitution/{DESIGN.md §3.2, PRD.md §4}` (on `feat/framework-constitution-alpha`)
|
||||||
|
|
||||||
|
## Locked design (sequential-thinking)
|
||||||
|
|
||||||
|
Current `launch.ts` assembly (`buildComposedPrompt`) injects by value: mission + PRD + hard-gate +
|
||||||
|
CONSTITUTION + AGENTS + USER + TOOLS + runtime. It does **not** inject SOUL or STANDARDS (those are
|
||||||
|
read-on-demand per the gutted AGENTS dispatcher), and has no `.local` overlay support.
|
||||||
|
|
||||||
|
**Decision (ASSUMPTION — recorded for the PR):** overlays are injected as **deltas by value** under
|
||||||
|
labeled sections; base files keep their existing residency.
|
||||||
|
|
||||||
|
- `USER.local.md` → appended directly under the `# User Profile` block (USER is injected).
|
||||||
|
- `SOUL.local.md` + `STANDARDS.local.md` → a trailing `# Operator Overlays` section (their bases are
|
||||||
|
load-on-demand, so only the small delta is injected — not the full base prose).
|
||||||
|
- **Why:** honors DESIGN §3.2 ("model gets one pre-merged blob, no read-merge ritual") while preserving
|
||||||
|
the P3 byte-budget tiering (don't re-inject large SOUL/STANDARDS prose). Precedence order kept: base
|
||||||
|
layers first, operator overlays at recency.
|
||||||
|
- Base-only is automatic when a `.local` file is absent (`readOptional`).
|
||||||
|
|
||||||
|
## Plan
|
||||||
|
|
||||||
|
| # | Task | File |
|
||||||
|
| --- | ------------------------------------------------------------------------------------------------------ | --------------------------------------- |
|
||||||
|
| 1 | Extract `composeContract({harness, mosaicHome})` pure fn; `buildComposedPrompt` delegates | `src/commands/launch.ts` |
|
||||||
|
| 2 | Overlay logic (USER.local under profile; SOUL/STANDARDS.local in `# Operator Overlays`) | `src/commands/launch.ts` |
|
||||||
|
| 3 | `mosaic compose-contract <harness>` command → prints blob to stdout | `src/commands/launch.ts` |
|
||||||
|
| 4 | Bare-launch overlay nudge in self-load fallback | `framework/defaults/AGENTS.md` |
|
||||||
|
| 5 | `compose-contract.spec.ts`: per-tier anchor, Tier-3 byte-equality, overlay present/absent, per-harness | `src/commands/compose-contract.spec.ts` |
|
||||||
|
|
||||||
|
## Deferred to P6
|
||||||
|
|
||||||
|
CONTRIBUTING.md + harness×gate compliance matrix; resident line-count CI ceiling; `aiguide` reconcile;
|
||||||
|
alpha tag `mosaic-vX.Y.Z-alpha`.
|
||||||
|
|
||||||
|
## Status
|
||||||
|
|
||||||
|
- [x] Phase scaffold (branch, issue #604, scratchpad, TASKS)
|
||||||
|
- [ ] Implementation (tasks 1–5)
|
||||||
|
- [ ] prettier + vitest green; PR via wrapper → Lead (rides 0.0.39; 0.0.38 mid-cut)
|
||||||
29
docs/scratchpads/p6-docs-compliance-alpha.md
Normal file
29
docs/scratchpads/p6-docs-compliance-alpha.md
Normal file
@@ -0,0 +1,29 @@
|
|||||||
|
# P6 — Docs, compliance matrix, alpha tag (constitution capstone)
|
||||||
|
|
||||||
|
- **Issue:** #606 · **Branch:** `feat/p6-docs-compliance-alpha` · **Lineage:** #542
|
||||||
|
- **Requirements:** R9 (resident line-count ceiling) + R10 (CONTRIBUTING + compliance matrix + aiguide) + alpha tag
|
||||||
|
|
||||||
|
## Delivered (in-repo)
|
||||||
|
|
||||||
|
- `framework/CONTRIBUTING.md` — layer model, operator-hygiene/PII prohibition, dedup rule, resident
|
||||||
|
budget, **dual-installer parity rule**, adding-a-harness, re-contamination rule, **harness×gate
|
||||||
|
compliance matrix** (hook-parity gap marked ⚠️ tracked-v2), known-limitations (§9 residuals), PR checklist.
|
||||||
|
- `framework/tools/quality/scripts/check-resident-budget.sh` — line-count ceiling over framework-owned
|
||||||
|
resident files (CONSTITUTION + AGENTS + each runtime/\*/RUNTIME.md); `--self-test`; replaces the crude
|
||||||
|
inline ci.yml loop. Wired blocking in `.woodpecker/ci.yml`.
|
||||||
|
- Composer unit test (R9) already runs via `pnpm test`; `verify-sanitized.sh` (P1) already wired.
|
||||||
|
|
||||||
|
## Verification
|
||||||
|
|
||||||
|
- Sanitization gate green (CONTRIBUTING is operator-neutral). Resident-budget self-test + real run green.
|
||||||
|
- prettier clean. Current resident counts: CONSTITUTION 96, AGENTS 83, RUNTIME max 75 — all < ceiling.
|
||||||
|
|
||||||
|
## Remaining
|
||||||
|
|
||||||
|
- [ ] `aiguide` reconcile (separate repo `~/src/aiguide` / mosaicstack/aiguide) — consistency pass vs Constitution.
|
||||||
|
- [ ] Alpha tag `mosaic-vX.Y.Z-alpha` — propose version; Lead cuts after full DoD §8 green + all phases merged.
|
||||||
|
|
||||||
|
## Notes
|
||||||
|
|
||||||
|
- Alpha DoD (DESIGN §8): all phases P0–P6 merged + CI green. P5 (#605) pending merge after 0.0.38 publish.
|
||||||
|
- Hook parity (codex/opencode/pi) = tracked v2 gap, documented in the matrix, not closed here.
|
||||||
185
packages/mosaic/framework/CONTRIBUTING.md
Normal file
185
packages/mosaic/framework/CONTRIBUTING.md
Normal file
@@ -0,0 +1,185 @@
|
|||||||
|
# Contributing to the Mosaic Framework
|
||||||
|
|
||||||
|
The Mosaic framework is the open-source agent-operating layer that deploys to
|
||||||
|
`~/.config/mosaic/`. It is designed to be **forked and customized** — but the
|
||||||
|
shared core must stay operator-neutral, deduplicated, and upgrade-safe. This
|
||||||
|
guide is the contract for changing framework-owned files.
|
||||||
|
|
||||||
|
> Governance model and layer rationale: `constitution/LAYER-MODEL.md` (source-only).
|
||||||
|
> Requirements & phase history: `docs/design/framework-constitution/`.
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## 1. The layer model (where does my change go?)
|
||||||
|
|
||||||
|
| Layer | What | Owner | On upgrade | File(s) |
|
||||||
|
| ------ | ------------------------------------------------------------- | ---------------- | --------------------------------------- | -------------------------------------------- |
|
||||||
|
| **L0** | Constitution — the non-negotiable law (hard gates) | Framework | **Overwritten** | `CONSTITUTION.md` |
|
||||||
|
| **L1** | Standards & guides — how to do the work well | Framework | Overwritten; user delta → `*.local.md` | `STANDARDS.md`, `guides/*` |
|
||||||
|
| **L2** | Persona (SOUL) — agent name, tone, role | User (init) | **Never overwritten** | `SOUL.md` (+ optional `SOUL.local.md`) |
|
||||||
|
| **L3** | Operator (USER) — human identity, prefs, policy | User (init) | **Never overwritten** | `USER.md` (+ optional `USER.local.md`) |
|
||||||
|
| **L4** | Project / runtime mechanism — per-repo deltas; harness wiring | Repo / framework | Project user-owned; runtime overwritten | `<repo>/AGENTS.md`, `runtime/<h>/RUNTIME.md` |
|
||||||
|
|
||||||
|
**The one sentence a user can rely on:** edit `SOUL.md` / `USER.md` and the
|
||||||
|
`.local.md` overlays — they survive every upgrade. To change framework behavior,
|
||||||
|
add a `.local.md` overlay; never edit a framework-owned file in place.
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## 2. Operator hygiene (PII / secrets prohibition) — **blocking**
|
||||||
|
|
||||||
|
Framework-owned files ship publicly. They **must not** contain:
|
||||||
|
|
||||||
|
- Operator or personal identity (names, handles, pronouns, accessibility notes).
|
||||||
|
- Private `$HOME` paths, private hostnames, or domains.
|
||||||
|
- Secrets, tokens, or credentials (use `~/.config/mosaic/credentials.json`; the
|
||||||
|
hook URL soft-degrades via `${OPENBRAIN_URL}`).
|
||||||
|
|
||||||
|
This is enforced by `tools/quality/scripts/verify-sanitized.sh`, wired **blocking**
|
||||||
|
in CI (`.woodpecker/ci.yml`). It runs two rule classes: structural (private-`$HOME`
|
||||||
|
defaults, dead paths, unrendered tokens) and a labeled current-contaminant denylist.
|
||||||
|
Run it locally before pushing:
|
||||||
|
|
||||||
|
```bash
|
||||||
|
bash packages/mosaic/framework/tools/quality/scripts/verify-sanitized.sh
|
||||||
|
```
|
||||||
|
|
||||||
|
Operator-specific behavior belongs in **your** `SOUL.md`/`USER.md`/`*.local.md`,
|
||||||
|
never in the shared core. (The "framework-PR firewall" in `CONSTITUTION.md` §4
|
||||||
|
states this as law for agents opening framework PRs.)
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## 3. Dedup rule — one source, everyone references it
|
||||||
|
|
||||||
|
Hard gates live in **`CONSTITUTION.md` (L0) only**. `AGENTS.md`, `STANDARDS.md`,
|
||||||
|
and every `runtime/<h>/RUNTIME.md` **reference** the law — they never restate it.
|
||||||
|
Restating a gate is a defect: it creates two sources that drift. If you find a
|
||||||
|
gate duplicated outside L0, delete the copy and point to L0.
|
||||||
|
|
||||||
|
`AGENTS.md` is a thin dispatcher (load order + guide router + the tier-aware
|
||||||
|
self-load). Keep it that way; new procedure goes in `guides/*` (on-demand), not
|
||||||
|
in the resident core.
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## 4. Resident line-count ceiling — **blocking**
|
||||||
|
|
||||||
|
The framework-owned files injected by value (`CONSTITUTION.md`, `AGENTS.md`, each
|
||||||
|
`runtime/<h>/RUNTIME.md`) are budgeted by **line count** — never by word count
|
||||||
|
(a word cap forces paraphrasing the law, the exact drift vector we removed).
|
||||||
|
|
||||||
|
```bash
|
||||||
|
bash packages/mosaic/framework/tools/quality/scripts/check-resident-budget.sh
|
||||||
|
```
|
||||||
|
|
||||||
|
Wired blocking in CI. Gate **wording** stays intact; if a file legitimately needs
|
||||||
|
more lines, raise its ceiling in the script deliberately (in the same PR, with
|
||||||
|
rationale). The per-harness _total_ resident prompt (which also sums the user's
|
||||||
|
`SOUL.md`/`USER.md`) is a `mosaic doctor` runtime advisory — CI cannot see user
|
||||||
|
files, so it is out of CI scope by design (DESIGN §7).
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## 5. Dual-installer parity rule
|
||||||
|
|
||||||
|
Two installers seed and migrate `~/.config/mosaic/`:
|
||||||
|
|
||||||
|
- **`framework/install.sh`** (bash) — the canonical installer.
|
||||||
|
- **`packages/mosaic/src/config/file-adapter.ts`** (TS) — the wizard path.
|
||||||
|
|
||||||
|
**Any change to seed lists, overwrite/preserve semantics, or migration MUST land
|
||||||
|
in BOTH**, validated by the **shared fixture suite**:
|
||||||
|
|
||||||
|
- `framework/tools/quality/scripts/test-install-migration.sh` (bash matrix)
|
||||||
|
- `packages/mosaic/src/config/file-adapter.test.ts` (vitest)
|
||||||
|
|
||||||
|
Both assert the same behavior: framework-owned files overwrite (backup-once to
|
||||||
|
`*.pre-constitution.bak`); user-seeded files seed-if-absent; `SOUL.md`/`USER.md`/
|
||||||
|
`*.local.md`/`credentials` are preserved. A change in one installer without the
|
||||||
|
other (and its fixtures) is incomplete.
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## 6. Adding a harness adapter
|
||||||
|
|
||||||
|
A harness (runtime) is wired by:
|
||||||
|
|
||||||
|
1. `runtime/<h>/RUNTIME.md` — **mechanism only** (subagent syntax, hook/MCP wiring,
|
||||||
|
injection method). No restated gates (see §3).
|
||||||
|
2. Launcher emission in `src/commands/launch.ts` — how the composed contract reaches
|
||||||
|
the harness (system-prompt append vs. instructions file). Add the harness to the
|
||||||
|
`RuntimeName` union and the runtime-path map.
|
||||||
|
3. `mosaic compose-contract <harness>` works automatically once the runtime path
|
||||||
|
exists (it composes base + `*.local.md` overlays for that harness).
|
||||||
|
|
||||||
|
Then add a row to the compliance matrix (§8) and mark which gates are mechanical
|
||||||
|
vs. resident-only for the new harness.
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## 7. Re-contamination rule
|
||||||
|
|
||||||
|
A green sanitization gate is not permanent. Before every PR:
|
||||||
|
|
||||||
|
- Do not reintroduce operator identity, private paths, or secrets (§2).
|
||||||
|
- Do not copy a gate out of L0 (§3).
|
||||||
|
- Do not add an unrendered template token or a dead path to a shipped file.
|
||||||
|
|
||||||
|
If `verify-sanitized.sh` goes red, that diff **is** your worklist — fix it, don't
|
||||||
|
suppress it.
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## 8. Harness × gate compliance matrix
|
||||||
|
|
||||||
|
How each gate is enforced per harness. **Mechanical** = a hook/CI check the agent
|
||||||
|
cannot bypass. **Resident** = injected contract prose (strong, but not a hard stop).
|
||||||
|
**CI** = repo-side, harness-independent.
|
||||||
|
|
||||||
|
| Gate / mechanism | Claude | Codex | OpenCode | Pi |
|
||||||
|
| --------------------------------------------- | ----------- | ---------------- | ---------------- | ---------------- |
|
||||||
|
| Contract injection (resident-by-value) | append SP | instructions | `AGENTS.md` | append SP |
|
||||||
|
| Operator overlays (`*.local`, composed) | ✅ | ✅ | ✅ | ✅ |
|
||||||
|
| Bare-launch self-load (Tier-3, read L0) | ✅ | ✅ | ✅ | ✅ |
|
||||||
|
| Sanitization (no PII) — `verify-sanitized` | CI ✅ | CI ✅ | CI ✅ | CI ✅ |
|
||||||
|
| Resident budget ceiling | CI ✅ | CI ✅ | CI ✅ | CI ✅ |
|
||||||
|
| Migration parity (5-fixture, both installers) | CI ✅ | CI ✅ | CI ✅ | CI ✅ |
|
||||||
|
| `no-memory-write` (PreToolUse hook) | **mech ✅** | resident-only ⚠️ | resident-only ⚠️ | resident-only ⚠️ |
|
||||||
|
| QA / typecheck (PostToolUse hooks) | **mech ✅** | resident-only ⚠️ | resident-only ⚠️ | resident-only ⚠️ |
|
||||||
|
| Native heartbeat (fleet `ps` model/status) | sidecar | sidecar | sidecar | **native ✅** |
|
||||||
|
|
||||||
|
⚠️ **Hook-parity gap (tracked, v2):** the mechanical PreToolUse/PostToolUse hooks
|
||||||
|
exist for Claude Code only. On Codex/OpenCode/Pi those gates are currently enforced
|
||||||
|
by the resident contract + CI, not by a per-tool hook. Closing hook parity is a
|
||||||
|
**v2** item, not part of this alpha.
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## 9. Known limitations (accepted residual risks)
|
||||||
|
|
||||||
|
These are accepted with rationale (DESIGN §9); they are documented, not bugs:
|
||||||
|
|
||||||
|
- **Bare-launch overlays are base-only.** A harness started without `mosaic` never
|
||||||
|
ran the composer, so `*.local.md` overlays are not applied. Mitigated by the
|
||||||
|
unconditional Tier-3 self-load + the `mosaic doctor` nudge in `AGENTS.md`; not
|
||||||
|
eliminated. Relaunch via `mosaic <harness>` to pick up overlays.
|
||||||
|
- **Bare-launch drift is undetected by `mosaic doctor`** (the launcher never ran).
|
||||||
|
- **Codex/OpenCode/Pi hook parity** is a tracked v2 gap (§8).
|
||||||
|
- **Live-launch cross-harness verification** is v2; the alpha verifies the composer
|
||||||
|
by unit test (per-tier anchor + Tier-3 byte-equality), not a live launch.
|
||||||
|
|
||||||
|
**Deferred to v2 (explicit):** `constitution/` deploy directory; capability JSON
|
||||||
|
adapters; 3-way merge; `policy/*.md` composition; per-layer version stamps as a
|
||||||
|
migration driver.
|
||||||
|
|
||||||
|
---
|
||||||
|
|
||||||
|
## 10. PR checklist
|
||||||
|
|
||||||
|
- [ ] No operator identity / private paths / secrets (`verify-sanitized.sh` green).
|
||||||
|
- [ ] No gate restated outside `CONSTITUTION.md` (§3).
|
||||||
|
- [ ] Resident budget green (`check-resident-budget.sh`).
|
||||||
|
- [ ] Seed/migration changes landed in **both** installers + shared fixtures (§5).
|
||||||
|
- [ ] New harness → compliance-matrix row updated (§8).
|
||||||
|
- [ ] `prettier --check` + `pnpm lint` + `pnpm typecheck` + `pnpm test` green.
|
||||||
@@ -9,7 +9,10 @@ overwritten on upgrade. (Layer model: `constitution/LAYER-MODEL.md`.)
|
|||||||
1. Your context already includes `CONSTITUTION.md` + `USER.md` + the TOOLS index + the runtime
|
1. Your context already includes `CONSTITUTION.md` + `USER.md` + the TOOLS index + the runtime
|
||||||
contract (injected by `mosaic` launch) — do not re-read those. **If you were launched bare**
|
contract (injected by `mosaic` launch) — do not re-read those. **If you were launched bare**
|
||||||
(a harness started without `mosaic`, so the law is NOT in your context), read
|
(a harness started without `mosaic`, so the law is NOT in your context), read
|
||||||
`~/.config/mosaic/CONSTITUTION.md` now, before your first action.
|
`~/.config/mosaic/CONSTITUTION.md` now, before your first action. A bare launch also gets
|
||||||
|
**base contracts only** — operator overlays (`*.local.md`) are composed by the launcher, so if
|
||||||
|
`SOUL.local.md`/`USER.local.md`/`STANDARDS.local.md` exist, relaunch via `mosaic <harness>` (or run
|
||||||
|
`mosaic doctor`) to pick them up.
|
||||||
2. Read `SOUL.md` (agent persona — small, once).
|
2. Read `SOUL.md` (agent persona — small, once).
|
||||||
3. Read project-local `AGENTS.md` / `CLAUDE.md` if present (these may only make behavior stricter).
|
3. Read project-local `AGENTS.md` / `CLAUDE.md` if present (these may only make behavior stricter).
|
||||||
4. Read guides ONLY as triggered by the table below — pull role-relevant depth on demand, not up front.
|
4. Read guides ONLY as triggered by the table below — pull role-relevant depth on demand, not up front.
|
||||||
|
|||||||
@@ -9,8 +9,16 @@
|
|||||||
* 4. Memory routing — remind agent to use ~/.config/mosaic/memory/
|
* 4. Memory routing — remind agent to use ~/.config/mosaic/memory/
|
||||||
*/
|
*/
|
||||||
|
|
||||||
import type { ExtensionAPI } from '@mariozechner/pi-coding-agent';
|
import type { ExtensionAPI, ExtensionContext } from '@earendil-works/pi-coding-agent';
|
||||||
import { existsSync, readFileSync, writeFileSync, unlinkSync, mkdirSync } from 'node:fs';
|
import { Type } from 'typebox';
|
||||||
|
import {
|
||||||
|
existsSync,
|
||||||
|
readFileSync,
|
||||||
|
writeFileSync,
|
||||||
|
unlinkSync,
|
||||||
|
mkdirSync,
|
||||||
|
renameSync,
|
||||||
|
} from 'node:fs';
|
||||||
import { join, basename } from 'node:path';
|
import { join, basename } from 'node:path';
|
||||||
import { homedir } from 'node:os';
|
import { homedir } from 'node:os';
|
||||||
import { execSync, spawnSync } from 'node:child_process';
|
import { execSync, spawnSync } from 'node:child_process';
|
||||||
@@ -25,6 +33,57 @@ const MOSAIC_HOME = process.env['MOSAIC_HOME'] ?? join(homedir(), '.config', 'mo
|
|||||||
// Helpers
|
// Helpers
|
||||||
// ---------------------------------------------------------------------------
|
// ---------------------------------------------------------------------------
|
||||||
|
|
||||||
|
// ---------------------------------------------------------------------------
|
||||||
|
// Native heartbeat (fleet R14/R15)
|
||||||
|
// ---------------------------------------------------------------------------
|
||||||
|
// When this agent runs under the Mosaic fleet (MOSAIC_AGENT_NAME set), the
|
||||||
|
// extension writes its OWN heartbeat in the same .hb contract `fleet ps` reads
|
||||||
|
// (ts/pid/status[/model]) and touches a `.hb.native` precedence marker so the
|
||||||
|
// shell sidecar defers. Native HB knows the real turn state (busy/ok), so it is
|
||||||
|
// more accurate than the pane-PID-only sidecar fallback.
|
||||||
|
const HB_AGENT_NAME = process.env['MOSAIC_AGENT_NAME'] ?? '';
|
||||||
|
const HB_RUN_DIR = process.env['MOSAIC_HEARTBEAT_RUN_DIR'] ?? join(MOSAIC_HOME, 'fleet', 'run');
|
||||||
|
const HB_INTERVAL_MS = (() => {
|
||||||
|
const s = Number.parseInt(process.env['MOSAIC_HEARTBEAT_INTERVAL'] ?? '', 10);
|
||||||
|
return Number.isFinite(s) && s > 0 ? s * 1000 : 15_000;
|
||||||
|
})();
|
||||||
|
|
||||||
|
function nativeHbEnabled(): boolean {
|
||||||
|
return HB_AGENT_NAME.length > 0;
|
||||||
|
}
|
||||||
|
|
||||||
|
function readModelId(ctx: ExtensionContext): string | null {
|
||||||
|
const m = ctx.model as unknown as { id?: string; name?: string } | undefined;
|
||||||
|
return m?.id ?? m?.name ?? null;
|
||||||
|
}
|
||||||
|
|
||||||
|
function writeNativeHeartbeat(status: 'ok' | 'busy', model: string | null): void {
|
||||||
|
if (!nativeHbEnabled()) return;
|
||||||
|
try {
|
||||||
|
mkdirSync(HB_RUN_DIR, { recursive: true });
|
||||||
|
const hb = join(HB_RUN_DIR, `${HB_AGENT_NAME}.hb`);
|
||||||
|
const lines = [`ts=${nowIso()}`, `pid=${process.pid}`, `status=${status}`];
|
||||||
|
if (model) lines.push(`model=${model}`);
|
||||||
|
const tmp = `${hb}.tmp.${process.pid}`;
|
||||||
|
writeFileSync(tmp, lines.join('\n') + '\n');
|
||||||
|
renameSync(tmp, hb); // atomic replace — fleet ps never reads a partial file
|
||||||
|
// Precedence marker: tells the shell sidecar that native HB is authoritative.
|
||||||
|
writeFileSync(join(HB_RUN_DIR, `${HB_AGENT_NAME}.hb.native`), nowIso() + '\n');
|
||||||
|
} catch {
|
||||||
|
// Best-effort: never let heartbeat I/O disrupt the Pi session.
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
function clearNativeMarker(): void {
|
||||||
|
if (!nativeHbEnabled()) return;
|
||||||
|
try {
|
||||||
|
const m = join(HB_RUN_DIR, `${HB_AGENT_NAME}.hb.native`);
|
||||||
|
if (existsSync(m)) unlinkSync(m); // native stopping — let the sidecar take over
|
||||||
|
} catch {
|
||||||
|
/* ignore */
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
function safeRead(filePath: string): string | null {
|
function safeRead(filePath: string): string | null {
|
||||||
try {
|
try {
|
||||||
return readFileSync(filePath, 'utf-8');
|
return readFileSync(filePath, 'utf-8');
|
||||||
@@ -187,6 +246,9 @@ function buildMissionSummary(cwd: string, mission: ActiveMission): string {
|
|||||||
|
|
||||||
export default function register(pi: ExtensionAPI) {
|
export default function register(pi: ExtensionAPI) {
|
||||||
let sessionCwd = process.cwd();
|
let sessionCwd = process.cwd();
|
||||||
|
let hbStatus: 'ok' | 'busy' = 'ok';
|
||||||
|
let hbModel: string | null = null;
|
||||||
|
let hbTimer: ReturnType<typeof setInterval> | null = null;
|
||||||
|
|
||||||
// ── Session Start ─────────────────────────────────────────────────────
|
// ── Session Start ─────────────────────────────────────────────────────
|
||||||
pi.on('session_start', async (_event, ctx) => {
|
pi.on('session_start', async (_event, ctx) => {
|
||||||
@@ -207,10 +269,39 @@ export default function register(pi: ExtensionAPI) {
|
|||||||
} else {
|
} else {
|
||||||
ctx.ui.notify('Mosaic framework loaded', 'info');
|
ctx.ui.notify('Mosaic framework loaded', 'info');
|
||||||
}
|
}
|
||||||
|
|
||||||
|
// Native heartbeat: write immediately, then on an interval. Idle = 'ok';
|
||||||
|
// turn_start/turn_end flip the status so `fleet ps` reflects real activity.
|
||||||
|
if (nativeHbEnabled()) {
|
||||||
|
hbModel = readModelId(ctx);
|
||||||
|
writeNativeHeartbeat('ok', hbModel);
|
||||||
|
hbTimer = setInterval(() => writeNativeHeartbeat(hbStatus, hbModel), HB_INTERVAL_MS);
|
||||||
|
if (typeof hbTimer.unref === 'function') hbTimer.unref();
|
||||||
|
}
|
||||||
});
|
});
|
||||||
|
|
||||||
// ── Session End ───────────────────────────────────────────────────────
|
// ── Turn lifecycle → accurate busy/ok heartbeat ───────────────────────
|
||||||
pi.on('session_end', async (_event, _ctx) => {
|
pi.on('turn_start', async (_event, ctx) => {
|
||||||
|
hbStatus = 'busy';
|
||||||
|
hbModel = readModelId(ctx) ?? hbModel;
|
||||||
|
writeNativeHeartbeat('busy', hbModel);
|
||||||
|
});
|
||||||
|
pi.on('turn_end', async (_event, ctx) => {
|
||||||
|
hbStatus = 'ok';
|
||||||
|
hbModel = readModelId(ctx) ?? hbModel;
|
||||||
|
writeNativeHeartbeat('ok', hbModel);
|
||||||
|
});
|
||||||
|
|
||||||
|
// ── Session Shutdown ──────────────────────────────────────────────────
|
||||||
|
// (The pi API event is 'session_shutdown'; the prior 'session_end' handler
|
||||||
|
// never fired — fixed here so repo hooks + lock cleanup actually run.)
|
||||||
|
pi.on('session_shutdown', async (_event, _ctx) => {
|
||||||
|
if (hbTimer) {
|
||||||
|
clearInterval(hbTimer);
|
||||||
|
hbTimer = null;
|
||||||
|
}
|
||||||
|
clearNativeMarker();
|
||||||
|
|
||||||
// Run repo session-end hook
|
// Run repo session-end hook
|
||||||
runRepoHook(sessionCwd, 'session-end');
|
runRepoHook(sessionCwd, 'session-end');
|
||||||
|
|
||||||
@@ -252,4 +343,32 @@ export default function register(pi: ExtensionAPI) {
|
|||||||
}
|
}
|
||||||
},
|
},
|
||||||
});
|
});
|
||||||
|
|
||||||
|
// ── Register mosaic_mission_status tool (model-callable) ──────────────
|
||||||
|
// R14 "proper tool usage": give the agent a first-class tool to load its
|
||||||
|
// active Mosaic mission, milestone progress, task counts, and latest
|
||||||
|
// scratchpad — so it self-orients on in-flight work before planning,
|
||||||
|
// instead of shelling out or guessing. Mirrors the /mosaic-status command
|
||||||
|
// but returns the summary as tool output the LLM can read.
|
||||||
|
pi.registerTool({
|
||||||
|
name: 'mosaic_mission_status',
|
||||||
|
label: 'Mosaic Mission Status',
|
||||||
|
description:
|
||||||
|
'Return the active Mosaic mission, milestone progress, task counts, and latest scratchpad for the current project. Returns a note when no mission is active.',
|
||||||
|
promptSnippet: 'Read the active Mosaic mission + task state for the current project',
|
||||||
|
promptGuidelines: [
|
||||||
|
'Use mosaic_mission_status at the start of a session or task to load the active mission, milestone progress, and open tasks before planning work.',
|
||||||
|
],
|
||||||
|
parameters: Type.Object({}),
|
||||||
|
async execute(_toolCallId, _params, _signal, _onUpdate, _ctx) {
|
||||||
|
const mission = detectMission(sessionCwd);
|
||||||
|
const text = mission
|
||||||
|
? buildMissionSummary(sessionCwd, mission)
|
||||||
|
: 'No active Mosaic mission in this project.';
|
||||||
|
return {
|
||||||
|
content: [{ type: 'text', text }],
|
||||||
|
details: mission ? { ...mission } : { active: false },
|
||||||
|
};
|
||||||
|
},
|
||||||
|
});
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -90,11 +90,18 @@ MOSAIC_RUNTIME_BIN_PREFIX=$(_build_runtime_bin_prefix)
|
|||||||
#
|
#
|
||||||
# We build the snippet as a double-quoted here-string embedded in a printf call
|
# We build the snippet as a double-quoted here-string embedded in a printf call
|
||||||
# to avoid nested quoting problems.
|
# to avoid nested quoting problems.
|
||||||
|
#
|
||||||
|
# MOSAIC_AGENT_NAME must also be exported INTO the pane: panes inherit the tmux
|
||||||
|
# server environment (not this script's, and not the systemd unit's), so the
|
||||||
|
# name would otherwise be empty in-pane and the runtime's native heartbeat
|
||||||
|
# (which gates on MOSAIC_AGENT_NAME) would never fire. %q-quote it so it is a
|
||||||
|
# safe single bash token regardless of the name's characters.
|
||||||
|
AGENT_NAME_Q=$(printf '%q' "$AGENT_NAME")
|
||||||
|
|
||||||
if [ -n "$MOSAIC_RUNTIME_BIN_PREFIX" ]; then
|
if [ -n "$MOSAIC_RUNTIME_BIN_PREFIX" ]; then
|
||||||
PANE_SHELL_SNIPPET="export PATH=\"${MOSAIC_RUNTIME_BIN_PREFIX}:\${PATH}\"; exec ${MOSAIC_AGENT_COMMAND}"
|
PANE_SHELL_SNIPPET="export MOSAIC_AGENT_NAME=${AGENT_NAME_Q}; export PATH=\"${MOSAIC_RUNTIME_BIN_PREFIX}:\${PATH}\"; exec ${MOSAIC_AGENT_COMMAND}"
|
||||||
else
|
else
|
||||||
PANE_SHELL_SNIPPET="exec ${MOSAIC_AGENT_COMMAND}"
|
PANE_SHELL_SNIPPET="export MOSAIC_AGENT_NAME=${AGENT_NAME_Q}; exec ${MOSAIC_AGENT_COMMAND}"
|
||||||
fi
|
fi
|
||||||
|
|
||||||
mkdir -p "$MOSAIC_AGENT_WORKDIR"
|
mkdir -p "$MOSAIC_AGENT_WORKDIR"
|
||||||
@@ -129,7 +136,7 @@ _start_heartbeat_sidecar() {
|
|||||||
# references to any variables from this script's environment.
|
# references to any variables from this script's environment.
|
||||||
local sidecar_script
|
local sidecar_script
|
||||||
sidecar_script=$(printf \
|
sidecar_script=$(printf \
|
||||||
'hb=%s; pid=%s; iv=%s; mkdir -p "$(dirname "$hb")"; while kill -0 "$pid" 2>/dev/null; do tmp="$hb.tmp.$$"; printf "ts=%%s\npid=%%s\nstatus=ok\n" "$(date +%%Y-%%m-%%dT%%H:%%M:%%S%%z)" "$pid" > "$tmp" && mv "$tmp" "$hb"; sleep "$iv"; done' \
|
'hb=%q; pid=%q; iv=%q; mkdir -p "$(dirname "$hb")"; while kill -0 "$pid" 2>/dev/null; do nat="$hb.native"; if [ -f "$nat" ] && [ "$(( $(date +%%s) - $(stat -c %%Y "$nat" 2>/dev/null || echo 0) ))" -lt "$(( iv * 2 ))" ]; then sleep "$iv"; continue; fi; tmp="$hb.tmp.$$"; printf "ts=%%s\npid=%%s\nstatus=ok\n" "$(date +%%Y-%%m-%%dT%%H:%%M:%%S%%z)" "$pid" > "$tmp" && mv "$tmp" "$hb"; sleep "$iv"; done' \
|
||||||
"$hb_file" "$pane_pid" "$interval")
|
"$hb_file" "$pane_pid" "$interval")
|
||||||
|
|
||||||
# setsid + disown ensures the sidecar survives this script exiting.
|
# setsid + disown ensures the sidecar survives this script exiting.
|
||||||
|
|||||||
@@ -32,8 +32,15 @@ MOSAIC_AGENT_COMMAND='bash --noprofile --norc -i' \
|
|||||||
"$START" "$AGENT"
|
"$START" "$AGENT"
|
||||||
|
|
||||||
tmux -L "$SOCKET" has-session -t "=$AGENT:0.0" || fail "agent session was not created"
|
tmux -L "$SOCKET" has-session -t "=$AGENT:0.0" || fail "agent session was not created"
|
||||||
actual_dir=$(tmux -L "$SOCKET" display-message -p -t "=$AGENT:0.0" '#{pane_current_path}')
|
# Retry: pane_current_path briefly reflects the tmux server's cwd until the pane
|
||||||
[ "$actual_dir" = "$WORKDIR" ] || fail "agent workdir mismatch: $actual_dir"
|
# process establishes its own cwd (the -c start dir). Poll until it settles.
|
||||||
|
actual_dir=""
|
||||||
|
for _ in $(seq 1 30); do
|
||||||
|
actual_dir=$(tmux -L "$SOCKET" display-message -p -t "=$AGENT:0.0" '#{pane_current_path}')
|
||||||
|
[ "$actual_dir" = "$WORKDIR" ] && break
|
||||||
|
sleep 0.1
|
||||||
|
done
|
||||||
|
[ "$actual_dir" = "$WORKDIR" ] || fail "agent workdir mismatch: $actual_dir (expected $WORKDIR)"
|
||||||
|
|
||||||
# ── Test 2: idempotency (duplicate start prints 'already running') ─────────────
|
# ── Test 2: idempotency (duplicate start prints 'already running') ─────────────
|
||||||
MOSAIC_TMUX_SOCKET="$SOCKET" \
|
MOSAIC_TMUX_SOCKET="$SOCKET" \
|
||||||
|
|||||||
93
packages/mosaic/framework/tools/quality/scripts/check-resident-budget.sh
Executable file
93
packages/mosaic/framework/tools/quality/scripts/check-resident-budget.sh
Executable file
@@ -0,0 +1,93 @@
|
|||||||
|
#!/usr/bin/env bash
|
||||||
|
# check-resident-budget.sh — resident line-count ceiling (R9 / DESIGN §7).
|
||||||
|
#
|
||||||
|
# Budgets the *container* (line count) of the framework-owned files that are
|
||||||
|
# injected into every agent's context by value — the Constitution (L0), the
|
||||||
|
# AGENTS dispatcher, and each runtime RUNTIME.md slice. Gate *wording* is never
|
||||||
|
# capped (a word cap forces paraphrasing law — the exact drift vector P3 killed);
|
||||||
|
# only the file's line count is bounded, so prose creep is caught in review.
|
||||||
|
#
|
||||||
|
# This is the CI-enforceable half of the budget. The per-harness *total* resident
|
||||||
|
# prompt (which also includes user-generated SOUL.md/USER.md and the per-tier
|
||||||
|
# slice) is summed by `mosaic doctor` as a runtime advisory — CI cannot see user
|
||||||
|
# files, so it is deliberately out of scope here (DESIGN §7).
|
||||||
|
#
|
||||||
|
# Usage: check-resident-budget.sh [--self-test]
|
||||||
|
# Exit: 0 = all within budget · 1 = a file exceeds its ceiling · 2 = self-test failed
|
||||||
|
set -uo pipefail
|
||||||
|
|
||||||
|
FW="$(cd "$(dirname "${BASH_SOURCE[0]}")/../../.." && pwd)" # packages/mosaic/framework
|
||||||
|
|
||||||
|
# Per-file ceilings (lines). Headroom above current counts; tighten as files settle.
|
||||||
|
# Format: "<relative-path>:<max-lines>"
|
||||||
|
CEILINGS=(
|
||||||
|
"defaults/CONSTITUTION.md:120"
|
||||||
|
"defaults/AGENTS.md:120"
|
||||||
|
"runtime/claude/RUNTIME.md:90"
|
||||||
|
"runtime/codex/RUNTIME.md:90"
|
||||||
|
"runtime/opencode/RUNTIME.md:90"
|
||||||
|
"runtime/pi/RUNTIME.md:90"
|
||||||
|
)
|
||||||
|
|
||||||
|
# check_file <abs-path> <max> → echoes "<n>"; returns 0 if n<=max, 1 otherwise.
|
||||||
|
check_file() {
|
||||||
|
local path="$1" max="$2" n
|
||||||
|
n=$(wc -l <"$path" 2>/dev/null || echo 0)
|
||||||
|
n=$((n + 0))
|
||||||
|
echo "$n"
|
||||||
|
[ "$n" -le "$max" ]
|
||||||
|
}
|
||||||
|
|
||||||
|
run_budget() {
|
||||||
|
local fail=0 rel max abs n
|
||||||
|
printf '%-32s %8s %8s %s\n' "FILE" "LINES" "CEILING" "STATUS"
|
||||||
|
for entry in "${CEILINGS[@]}"; do
|
||||||
|
rel="${entry%%:*}"
|
||||||
|
max="${entry##*:}"
|
||||||
|
abs="$FW/$rel"
|
||||||
|
if [ ! -f "$abs" ]; then
|
||||||
|
printf '%-32s %8s %8s %s\n' "$rel" "-" "$max" "MISSING"
|
||||||
|
fail=1
|
||||||
|
continue
|
||||||
|
fi
|
||||||
|
n=$(check_file "$abs" "$max")
|
||||||
|
if [ "$n" -le "$max" ]; then
|
||||||
|
printf '%-32s %8s %8s %s\n' "$rel" "$n" "$max" "ok"
|
||||||
|
else
|
||||||
|
printf '%-32s %8s %8s %s\n' "$rel" "$n" "$max" "OVER BUDGET"
|
||||||
|
fail=1
|
||||||
|
fi
|
||||||
|
done
|
||||||
|
return "$fail"
|
||||||
|
}
|
||||||
|
|
||||||
|
self_test() {
|
||||||
|
local tmp rc
|
||||||
|
tmp=$(mktemp)
|
||||||
|
# 3 lines, ceiling 5 → within budget (rc 0)
|
||||||
|
printf 'a\nb\nc\n' >"$tmp"
|
||||||
|
check_file "$tmp" 5 >/dev/null
|
||||||
|
rc=$?
|
||||||
|
if [ "$rc" -ne 0 ]; then echo "self-test FAIL: under-budget file flagged"; rm -f "$tmp"; return 2; fi
|
||||||
|
# 6 lines, ceiling 5 → over budget (rc 1)
|
||||||
|
printf 'a\nb\nc\nd\ne\nf\n' >"$tmp"
|
||||||
|
check_file "$tmp" 5 >/dev/null
|
||||||
|
rc=$?
|
||||||
|
if [ "$rc" -ne 1 ]; then echo "self-test FAIL: over-budget file not flagged"; rm -f "$tmp"; return 2; fi
|
||||||
|
rm -f "$tmp"
|
||||||
|
echo "self-test OK"
|
||||||
|
return 0
|
||||||
|
}
|
||||||
|
|
||||||
|
if [ "${1:-}" = "--self-test" ]; then
|
||||||
|
self_test
|
||||||
|
exit $?
|
||||||
|
fi
|
||||||
|
|
||||||
|
if run_budget; then
|
||||||
|
echo "Resident budget: all framework-owned resident files within ceiling."
|
||||||
|
exit 0
|
||||||
|
else
|
||||||
|
echo "Resident budget EXCEEDED — trim prose or raise the ceiling deliberately (see DESIGN §7)." >&2
|
||||||
|
exit 1
|
||||||
|
fi
|
||||||
@@ -1,6 +1,6 @@
|
|||||||
{
|
{
|
||||||
"name": "@mosaicstack/mosaic",
|
"name": "@mosaicstack/mosaic",
|
||||||
"version": "0.0.37",
|
"version": "0.0.39",
|
||||||
"repository": {
|
"repository": {
|
||||||
"type": "git",
|
"type": "git",
|
||||||
"url": "https://git.mosaicstack.dev/mosaicstack/stack.git",
|
"url": "https://git.mosaicstack.dev/mosaicstack/stack.git",
|
||||||
|
|||||||
118
packages/mosaic/src/commands/compose-contract.spec.ts
Normal file
118
packages/mosaic/src/commands/compose-contract.spec.ts
Normal file
@@ -0,0 +1,118 @@
|
|||||||
|
import { describe, it, expect, beforeEach, afterEach } from 'vitest';
|
||||||
|
import { mkdtempSync, mkdirSync, writeFileSync, rmSync, readFileSync } from 'node:fs';
|
||||||
|
import { tmpdir } from 'node:os';
|
||||||
|
import { join } from 'node:path';
|
||||||
|
import { composeContract } from './launch.js';
|
||||||
|
|
||||||
|
/**
|
||||||
|
* Composer unit test (R7/R8/R9): asserts the launcher-composed runtime contract
|
||||||
|
*
|
||||||
|
* - includes the per-tier anchors (CONSTITUTION / AGENTS / USER / runtime),
|
||||||
|
* - keeps the CONSTITUTION block byte-equal to the on-disk file (Tier-3
|
||||||
|
* byte-equality — the bare-launch fallback read must match what is injected),
|
||||||
|
* - merges `*.local.md` operator overlays as deltas-by-value, and omits them
|
||||||
|
* entirely when absent (base-only),
|
||||||
|
* - selects the correct per-harness RUNTIME.md.
|
||||||
|
*
|
||||||
|
* `composeContract` takes `mosaicHome` as a param, so each test runs against an
|
||||||
|
* isolated fixture home. We also chdir to an empty temp cwd so the cwd-relative
|
||||||
|
* mission/PRD blocks contribute nothing (deterministic output).
|
||||||
|
*/
|
||||||
|
|
||||||
|
const CONSTITUTION = '# CONSTITUTION\n\nGATE-1: the non-negotiable law.\n';
|
||||||
|
const AGENTS = '# Mosaic Agent Dispatcher\n\nLoad order + guide router.\n';
|
||||||
|
const USER = '# operator\n\nName: Test Operator\n';
|
||||||
|
const TOOLS = '# tools index\n';
|
||||||
|
|
||||||
|
function makeHome(): { home: string; root: string } {
|
||||||
|
const root = mkdtempSync(join(tmpdir(), 'mosaic-compose-'));
|
||||||
|
const home = join(root, 'mosaic-home');
|
||||||
|
for (const h of ['claude', 'codex', 'opencode', 'pi']) {
|
||||||
|
mkdirSync(join(home, 'runtime', h), { recursive: true });
|
||||||
|
writeFileSync(join(home, 'runtime', h, 'RUNTIME.md'), `# ${h} runtime contract\n`);
|
||||||
|
}
|
||||||
|
writeFileSync(join(home, 'CONSTITUTION.md'), CONSTITUTION);
|
||||||
|
writeFileSync(join(home, 'AGENTS.md'), AGENTS);
|
||||||
|
writeFileSync(join(home, 'USER.md'), USER);
|
||||||
|
writeFileSync(join(home, 'TOOLS.md'), TOOLS);
|
||||||
|
return { home, root };
|
||||||
|
}
|
||||||
|
|
||||||
|
describe('composeContract — overlay composer', () => {
|
||||||
|
let fixture: ReturnType<typeof makeHome>;
|
||||||
|
let prevCwd: string;
|
||||||
|
let cwdDir: string;
|
||||||
|
|
||||||
|
beforeEach(() => {
|
||||||
|
fixture = makeHome();
|
||||||
|
prevCwd = process.cwd();
|
||||||
|
cwdDir = mkdtempSync(join(tmpdir(), 'mosaic-cwd-'));
|
||||||
|
process.chdir(cwdDir); // neutralize cwd-relative mission/PRD blocks
|
||||||
|
});
|
||||||
|
|
||||||
|
afterEach(() => {
|
||||||
|
process.chdir(prevCwd);
|
||||||
|
rmSync(fixture.root, { recursive: true, force: true });
|
||||||
|
rmSync(cwdDir, { recursive: true, force: true });
|
||||||
|
});
|
||||||
|
|
||||||
|
it('includes the per-tier anchors and the selected harness runtime', () => {
|
||||||
|
const out = composeContract('claude', fixture.home);
|
||||||
|
expect(out).toContain('GATE-1: the non-negotiable law.'); // L0
|
||||||
|
expect(out).toContain('Mosaic Agent Dispatcher'); // AGENTS
|
||||||
|
expect(out).toContain('# User Profile'); // USER header
|
||||||
|
expect(out).toContain('Name: Test Operator'); // USER body
|
||||||
|
expect(out).toContain('# Runtime-Specific Contract');
|
||||||
|
expect(out).toContain('# claude runtime contract');
|
||||||
|
});
|
||||||
|
|
||||||
|
it('keeps the CONSTITUTION block byte-equal to the on-disk file (Tier-3)', () => {
|
||||||
|
const out = composeContract('pi', fixture.home);
|
||||||
|
const onDisk = readFileSync(join(fixture.home, 'CONSTITUTION.md'), 'utf-8');
|
||||||
|
// The injected L0 must be a byte-equal substring of the composed blob, so a
|
||||||
|
// bare-launch fallback read of CONSTITUTION.md matches what was injected.
|
||||||
|
expect(out.includes(onDisk)).toBe(true);
|
||||||
|
});
|
||||||
|
|
||||||
|
it('is base-only when no *.local overlays exist', () => {
|
||||||
|
const out = composeContract('claude', fixture.home);
|
||||||
|
expect(out).not.toContain('# Operator Overlays');
|
||||||
|
expect(out).not.toContain('Operator Overlay (USER.local.md)');
|
||||||
|
expect(out).not.toContain('Persona Overlay');
|
||||||
|
expect(out).not.toContain('Standards Overlay');
|
||||||
|
});
|
||||||
|
|
||||||
|
it('merges USER.local.md directly under the operator profile', () => {
|
||||||
|
writeFileSync(join(fixture.home, 'USER.local.md'), 'Prefer terse status updates.\n');
|
||||||
|
const out = composeContract('claude', fixture.home);
|
||||||
|
expect(out).toContain('## Operator Overlay (USER.local.md)');
|
||||||
|
expect(out).toContain('Prefer terse status updates.');
|
||||||
|
// Overlay appears AFTER its base profile.
|
||||||
|
expect(out.indexOf('# User Profile')).toBeLessThan(
|
||||||
|
out.indexOf('## Operator Overlay (USER.local.md)'),
|
||||||
|
);
|
||||||
|
});
|
||||||
|
|
||||||
|
it('merges SOUL.local.md + STANDARDS.local.md as deltas in the Operator Overlays block', () => {
|
||||||
|
writeFileSync(join(fixture.home, 'SOUL.local.md'), 'Tone: dry and direct.\n');
|
||||||
|
writeFileSync(join(fixture.home, 'STANDARDS.local.md'), 'Require 90% coverage on auth code.\n');
|
||||||
|
const out = composeContract('claude', fixture.home);
|
||||||
|
expect(out).toContain('# Operator Overlays');
|
||||||
|
expect(out).toContain('## Persona Overlay (SOUL.local.md)');
|
||||||
|
expect(out).toContain('Tone: dry and direct.');
|
||||||
|
expect(out).toContain('## Standards Overlay (STANDARDS.local.md)');
|
||||||
|
expect(out).toContain('Require 90% coverage on auth code.');
|
||||||
|
});
|
||||||
|
|
||||||
|
it('ignores whitespace-only *.local overlays (no empty overlay section)', () => {
|
||||||
|
writeFileSync(join(fixture.home, 'SOUL.local.md'), ' \n\n');
|
||||||
|
const out = composeContract('claude', fixture.home);
|
||||||
|
expect(out).not.toContain('# Operator Overlays');
|
||||||
|
});
|
||||||
|
|
||||||
|
it('selects a different RUNTIME.md per harness', () => {
|
||||||
|
expect(composeContract('codex', fixture.home)).toContain('# codex runtime contract');
|
||||||
|
expect(composeContract('pi', fixture.home)).toContain('# pi runtime contract');
|
||||||
|
expect(composeContract('codex', fixture.home)).not.toContain('# pi runtime contract');
|
||||||
|
});
|
||||||
|
});
|
||||||
@@ -833,6 +833,17 @@ describe('fleet ps — heartbeat parsing', () => {
|
|||||||
expect(hb.pid).toBe(12345);
|
expect(hb.pid).toBe(12345);
|
||||||
expect(hb.status).toBe('ok');
|
expect(hb.status).toBe('ok');
|
||||||
expect(hb.ageMs).toBe(10_000);
|
expect(hb.ageMs).toBe(10_000);
|
||||||
|
// No model= line in a legacy/sidecar heartbeat → model is null.
|
||||||
|
expect(hb.model).toBeNull();
|
||||||
|
});
|
||||||
|
|
||||||
|
it('parses a self-reported model id from a native heartbeat (model= line)', () => {
|
||||||
|
const ts = new Date(NOW - 5_000).toISOString();
|
||||||
|
const content = `ts=${ts}\npid=42\nstatus=busy\nmodel=openai-codex/gpt-5.5:high\n`;
|
||||||
|
const hb = parseHeartbeat(content, NOW);
|
||||||
|
expect(hb.model).toBe('openai-codex/gpt-5.5:high');
|
||||||
|
expect(hb.status).toBe('busy');
|
||||||
|
expect(hb.health).toBe('healthy');
|
||||||
});
|
});
|
||||||
|
|
||||||
it('reports stale when heartbeat is older than 3×interval', () => {
|
it('reports stale when heartbeat is older than 3×interval', () => {
|
||||||
@@ -2892,3 +2903,33 @@ describe('fleet init wizard', () => {
|
|||||||
expect(content).toContain('name: coder0');
|
expect(content).toContain('name: coder0');
|
||||||
});
|
});
|
||||||
});
|
});
|
||||||
|
|
||||||
|
describe('fleet ps — heartbeat path resolution', () => {
|
||||||
|
const savedRunDir = process.env.MOSAIC_HEARTBEAT_RUN_DIR;
|
||||||
|
const savedHome = process.env.MOSAIC_HOME;
|
||||||
|
afterEach(() => {
|
||||||
|
if (savedRunDir === undefined) delete process.env.MOSAIC_HEARTBEAT_RUN_DIR;
|
||||||
|
else process.env.MOSAIC_HEARTBEAT_RUN_DIR = savedRunDir;
|
||||||
|
if (savedHome === undefined) delete process.env.MOSAIC_HOME;
|
||||||
|
else process.env.MOSAIC_HOME = savedHome;
|
||||||
|
});
|
||||||
|
|
||||||
|
it('honors MOSAIC_HEARTBEAT_RUN_DIR (matches the writer sidecar override)', () => {
|
||||||
|
process.env.MOSAIC_HEARTBEAT_RUN_DIR = '/run/hb';
|
||||||
|
expect(heartbeatPath('agent-x', '/any/home')).toBe(join('/run/hb', 'agent-x.hb'));
|
||||||
|
});
|
||||||
|
|
||||||
|
it('honors MOSAIC_HOME when no explicit mosaicHome is given', () => {
|
||||||
|
delete process.env.MOSAIC_HEARTBEAT_RUN_DIR;
|
||||||
|
process.env.MOSAIC_HOME = '/custom/mhome';
|
||||||
|
expect(heartbeatPath('agent-y')).toBe(join('/custom/mhome', 'fleet', 'run', 'agent-y.hb'));
|
||||||
|
});
|
||||||
|
|
||||||
|
it('falls back to <mosaicHome>/fleet/run by default', () => {
|
||||||
|
delete process.env.MOSAIC_HEARTBEAT_RUN_DIR;
|
||||||
|
delete process.env.MOSAIC_HOME;
|
||||||
|
expect(heartbeatPath('agent-z', '/home/u/.config/mosaic')).toBe(
|
||||||
|
join('/home/u/.config/mosaic', 'fleet', 'run', 'agent-z.hb'),
|
||||||
|
);
|
||||||
|
});
|
||||||
|
});
|
||||||
|
|||||||
@@ -152,13 +152,16 @@ export function resolveFleetPaths(mosaicHome = defaultMosaicHome()): FleetPaths
|
|||||||
}
|
}
|
||||||
|
|
||||||
function defaultMosaicHome(): string {
|
function defaultMosaicHome(): string {
|
||||||
return join(homedir(), '.config', 'mosaic');
|
// Honor MOSAIC_HOME so the reader matches the writer sidecar (and the launcher),
|
||||||
|
// even when MOSAIC_HOME is set in the shell without an explicit --mosaic-home flag.
|
||||||
|
return process.env.MOSAIC_HOME ?? join(homedir(), '.config', 'mosaic');
|
||||||
}
|
}
|
||||||
|
|
||||||
function assertDefaultMosaicHomeForSystemd(mosaicHome: string): void {
|
function assertDefaultMosaicHomeForSystemd(mosaicHome: string): void {
|
||||||
if (resolve(mosaicHome) !== resolve(defaultMosaicHome())) {
|
const literalHome = join(homedir(), '.config', 'mosaic');
|
||||||
|
if (resolve(mosaicHome) !== resolve(literalHome)) {
|
||||||
throw new Error(
|
throw new Error(
|
||||||
`install-systemd only supports the default Mosaic home (${defaultMosaicHome()}) because the user systemd units use %h/.config/mosaic paths.`,
|
`install-systemd only supports the default Mosaic home (${literalHome}) because the user systemd units use %h/.config/mosaic paths.`,
|
||||||
);
|
);
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
@@ -387,6 +390,8 @@ export interface HeartbeatInfo {
|
|||||||
/** healthy | stale | unknown */
|
/** healthy | stale | unknown */
|
||||||
health: 'healthy' | 'stale' | 'unknown';
|
health: 'healthy' | 'stale' | 'unknown';
|
||||||
ageMs: number | null;
|
ageMs: number | null;
|
||||||
|
/** Model id the runtime self-reported in its heartbeat (native HB only), else null. */
|
||||||
|
model: string | null;
|
||||||
}
|
}
|
||||||
|
|
||||||
export interface AgentPsRow {
|
export interface AgentPsRow {
|
||||||
@@ -475,7 +480,10 @@ export function parseTmuxListSessions(output: string): string[] {
|
|||||||
* Returns the heartbeat file path for an agent.
|
* Returns the heartbeat file path for an agent.
|
||||||
*/
|
*/
|
||||||
export function heartbeatPath(agentName: string, mosaicHome = defaultMosaicHome()): string {
|
export function heartbeatPath(agentName: string, mosaicHome = defaultMosaicHome()): string {
|
||||||
return join(mosaicHome, 'fleet', 'run', `${agentName}.hb`);
|
// Honor MOSAIC_HEARTBEAT_RUN_DIR (the writer sidecar's override); otherwise the
|
||||||
|
// canonical <mosaicHome>/fleet/run. Keeps reader and writer on the same path.
|
||||||
|
const runDir = process.env.MOSAIC_HEARTBEAT_RUN_DIR ?? join(mosaicHome, 'fleet', 'run');
|
||||||
|
return join(runDir, `${agentName}.hb`);
|
||||||
}
|
}
|
||||||
|
|
||||||
/**
|
/**
|
||||||
@@ -484,15 +492,17 @@ export function heartbeatPath(agentName: string, mosaicHome = defaultMosaicHome(
|
|||||||
* ts=<iso8601>
|
* ts=<iso8601>
|
||||||
* pid=<pid>
|
* pid=<pid>
|
||||||
* status=<ok|busy>
|
* status=<ok|busy>
|
||||||
|
* model=<model-id> (optional — native runtime heartbeats self-report it)
|
||||||
*/
|
*/
|
||||||
export function parseHeartbeat(content: string | null, nowMs = Date.now()): HeartbeatInfo {
|
export function parseHeartbeat(content: string | null, nowMs = Date.now()): HeartbeatInfo {
|
||||||
if (content === null) {
|
if (content === null) {
|
||||||
return { ts: null, pid: null, status: null, health: 'unknown', ageMs: null };
|
return { ts: null, pid: null, status: null, health: 'unknown', ageMs: null, model: null };
|
||||||
}
|
}
|
||||||
const lines = content.split('\n');
|
const lines = content.split('\n');
|
||||||
let ts: Date | null = null;
|
let ts: Date | null = null;
|
||||||
let pid: number | null = null;
|
let pid: number | null = null;
|
||||||
let status: 'ok' | 'busy' | null = null;
|
let status: 'ok' | 'busy' | null = null;
|
||||||
|
let model: string | null = null;
|
||||||
for (const line of lines) {
|
for (const line of lines) {
|
||||||
const [key, ...rest] = line.split('=');
|
const [key, ...rest] = line.split('=');
|
||||||
const val = rest.join('=').trim();
|
const val = rest.join('=').trim();
|
||||||
@@ -504,6 +514,8 @@ export function parseHeartbeat(content: string | null, nowMs = Date.now()): Hear
|
|||||||
if (Number.isFinite(n)) pid = n;
|
if (Number.isFinite(n)) pid = n;
|
||||||
} else if (key === 'status' && (val === 'ok' || val === 'busy')) {
|
} else if (key === 'status' && (val === 'ok' || val === 'busy')) {
|
||||||
status = val;
|
status = val;
|
||||||
|
} else if (key === 'model' && val) {
|
||||||
|
model = val;
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
const thresholdMs = heartbeatIntervalMs() * HEARTBEAT_HEALTHY_MULTIPLIER;
|
const thresholdMs = heartbeatIntervalMs() * HEARTBEAT_HEALTHY_MULTIPLIER;
|
||||||
@@ -513,7 +525,7 @@ export function parseHeartbeat(content: string | null, nowMs = Date.now()): Hear
|
|||||||
ageMs = nowMs - ts.getTime();
|
ageMs = nowMs - ts.getTime();
|
||||||
health = ageMs <= thresholdMs ? 'healthy' : 'stale';
|
health = ageMs <= thresholdMs ? 'healthy' : 'stale';
|
||||||
}
|
}
|
||||||
return { ts, pid, status, health, ageMs };
|
return { ts, pid, status, health, ageMs, model };
|
||||||
}
|
}
|
||||||
|
|
||||||
/**
|
/**
|
||||||
@@ -1117,6 +1129,7 @@ export function registerFleetCommand(program: Command, deps: FleetCommandDeps =
|
|||||||
'PID'.padEnd(8),
|
'PID'.padEnd(8),
|
||||||
'IDLE'.padEnd(8),
|
'IDLE'.padEnd(8),
|
||||||
'HB'.padEnd(12),
|
'HB'.padEnd(12),
|
||||||
|
'MODEL'.padEnd(22),
|
||||||
'FLAGS',
|
'FLAGS',
|
||||||
].join(' ');
|
].join(' ');
|
||||||
console.log(header);
|
console.log(header);
|
||||||
@@ -1131,6 +1144,7 @@ export function registerFleetCommand(program: Command, deps: FleetCommandDeps =
|
|||||||
row.heartbeat.ageMs !== null
|
row.heartbeat.ageMs !== null
|
||||||
? `${Math.round(row.heartbeat.ageMs / 1000)}s/${row.heartbeat.health}`
|
? `${Math.round(row.heartbeat.ageMs / 1000)}s/${row.heartbeat.health}`
|
||||||
: `unknown`;
|
: `unknown`;
|
||||||
|
const model = row.heartbeat.model ?? '-';
|
||||||
const flags: string[] = [];
|
const flags: string[] = [];
|
||||||
if (!row.managed) flags.push('UNMANAGED');
|
if (!row.managed) flags.push('UNMANAGED');
|
||||||
if (row.driftFlag) flags.push('DRIFT');
|
if (row.driftFlag) flags.push('DRIFT');
|
||||||
@@ -1147,6 +1161,7 @@ export function registerFleetCommand(program: Command, deps: FleetCommandDeps =
|
|||||||
pid.padEnd(8),
|
pid.padEnd(8),
|
||||||
idle.padEnd(8),
|
idle.padEnd(8),
|
||||||
hbAge.padEnd(12),
|
hbAge.padEnd(12),
|
||||||
|
model.padEnd(22),
|
||||||
flags.join(','),
|
flags.join(','),
|
||||||
].join(' '),
|
].join(' '),
|
||||||
);
|
);
|
||||||
@@ -1438,15 +1453,19 @@ export function registerFleetAgentCommands(
|
|||||||
|
|
||||||
await runChecked(runner, buildAgentWatchCreateViewerCommand(agent, viewerName, socketName));
|
await runChecked(runner, buildAgentWatchCreateViewerCommand(agent, viewerName, socketName));
|
||||||
|
|
||||||
|
let exitCode = 0;
|
||||||
|
try {
|
||||||
const [bin, args] = splitCommand(buildAgentWatchAttachCommand(viewerName, socketName));
|
const [bin, args] = splitCommand(buildAgentWatchAttachCommand(viewerName, socketName));
|
||||||
const exitCode = await iRunner(bin, args);
|
exitCode = await iRunner(bin, args);
|
||||||
|
} finally {
|
||||||
// Best-effort cleanup of the viewer session regardless of how the user detached.
|
// ALWAYS clean up the viewer session — even if attach threw or the process was
|
||||||
// Errors here are intentionally suppressed — the agent session is unaffected.
|
// interrupted — so stale grouped *-watch-* sessions never accumulate. Errors here
|
||||||
|
// are intentionally suppressed; the agent session is unaffected.
|
||||||
const killResult = await runner(
|
const killResult = await runner(
|
||||||
...splitCommand(buildAgentWatchKillViewerCommand(viewerName, socketName)),
|
...splitCommand(buildAgentWatchKillViewerCommand(viewerName, socketName)),
|
||||||
);
|
);
|
||||||
void killResult; // result is intentionally ignored
|
void killResult;
|
||||||
|
}
|
||||||
|
|
||||||
if (exitCode !== 0) {
|
if (exitCode !== 0) {
|
||||||
process.exitCode = exitCode;
|
process.exitCode = exitCode;
|
||||||
|
|||||||
@@ -291,12 +291,23 @@ function buildPrdBlock(): string {
|
|||||||
|
|
||||||
// ─── Runtime prompt builder ──────────────────────────────────────────────────
|
// ─── Runtime prompt builder ──────────────────────────────────────────────────
|
||||||
|
|
||||||
function buildRuntimePrompt(runtime: RuntimeName): string {
|
/**
|
||||||
|
* Compose the full runtime contract for a harness: the resident-by-value core
|
||||||
|
* (CONSTITUTION + AGENTS + USER + TOOLS + runtime) plus operator overlays
|
||||||
|
* (`*.local.md` deltas), merged in precedence order so the model gets one
|
||||||
|
* pre-merged blob (DESIGN §3.2 / R7). Overlays are injected as deltas by value;
|
||||||
|
* base files keep their existing residency (USER injected; SOUL/STANDARDS are
|
||||||
|
* load-on-demand, so only their small `.local` deltas are injected here).
|
||||||
|
*
|
||||||
|
* `mosaicHome` is parameterized for testability; production callers use the
|
||||||
|
* module-level default.
|
||||||
|
*/
|
||||||
|
export function composeContract(runtime: RuntimeName, mosaicHome: string = MOSAIC_HOME): string {
|
||||||
const runtimeContractPaths: Record<RuntimeName, string> = {
|
const runtimeContractPaths: Record<RuntimeName, string> = {
|
||||||
claude: join(MOSAIC_HOME, 'runtime', 'claude', 'RUNTIME.md'),
|
claude: join(mosaicHome, 'runtime', 'claude', 'RUNTIME.md'),
|
||||||
codex: join(MOSAIC_HOME, 'runtime', 'codex', 'RUNTIME.md'),
|
codex: join(mosaicHome, 'runtime', 'codex', 'RUNTIME.md'),
|
||||||
opencode: join(MOSAIC_HOME, 'runtime', 'opencode', 'RUNTIME.md'),
|
opencode: join(mosaicHome, 'runtime', 'opencode', 'RUNTIME.md'),
|
||||||
pi: join(MOSAIC_HOME, 'runtime', 'pi', 'RUNTIME.md'),
|
pi: join(mosaicHome, 'runtime', 'pi', 'RUNTIME.md'),
|
||||||
};
|
};
|
||||||
|
|
||||||
const runtimeFile = runtimeContractPaths[runtime];
|
const runtimeFile = runtimeContractPaths[runtime];
|
||||||
@@ -331,27 +342,55 @@ For required push/merge/issue-close/release actions, execute without routine con
|
|||||||
`);
|
`);
|
||||||
|
|
||||||
// CONSTITUTION.md (L0 — the non-negotiable law; lead with it). Tolerant of
|
// CONSTITUTION.md (L0 — the non-negotiable law; lead with it). Tolerant of
|
||||||
// pre-constitution installs that have not been re-seeded yet.
|
// pre-constitution installs that have not been re-seeded yet. Injected by
|
||||||
const constitution = readOptional(join(MOSAIC_HOME, 'CONSTITUTION.md'));
|
// value verbatim so the bare-launch fallback read is byte-equal (R8).
|
||||||
|
const constitution = readOptional(join(mosaicHome, 'CONSTITUTION.md'));
|
||||||
if (constitution) parts.push(constitution);
|
if (constitution) parts.push(constitution);
|
||||||
|
|
||||||
// AGENTS.md
|
// AGENTS.md
|
||||||
parts.push(readFileSync(join(MOSAIC_HOME, 'AGENTS.md'), 'utf-8'));
|
parts.push(readFileSync(join(mosaicHome, 'AGENTS.md'), 'utf-8'));
|
||||||
|
|
||||||
// USER.md
|
// USER.md (+ USER.local.md operator overlay, appended directly under the
|
||||||
const user = readOptional(join(MOSAIC_HOME, 'USER.md'));
|
// profile its base owns).
|
||||||
|
const user = readOptional(join(mosaicHome, 'USER.md'));
|
||||||
if (user) parts.push('\n\n# User Profile\n\n' + user);
|
if (user) parts.push('\n\n# User Profile\n\n' + user);
|
||||||
|
const userLocal = readOptional(join(mosaicHome, 'USER.local.md'));
|
||||||
|
if (userLocal.trim()) {
|
||||||
|
parts.push('\n\n## Operator Overlay (USER.local.md)\n\n' + userLocal);
|
||||||
|
}
|
||||||
|
|
||||||
// TOOLS.md
|
// TOOLS.md
|
||||||
const tools = readOptional(join(MOSAIC_HOME, 'TOOLS.md'));
|
const tools = readOptional(join(mosaicHome, 'TOOLS.md'));
|
||||||
if (tools) parts.push('\n\n# Machine Tools\n\n' + tools);
|
if (tools) parts.push('\n\n# Machine Tools\n\n' + tools);
|
||||||
|
|
||||||
|
// Operator overlays whose base layers are load-on-demand (SOUL, STANDARDS):
|
||||||
|
// inject only the small `.local` delta by value so the customization reaches
|
||||||
|
// the model without re-injecting the full base prose (preserves the byte
|
||||||
|
// budget). Absent `.local` files → base-only, automatically (R7 §3.2).
|
||||||
|
const overlayBlocks: string[] = [];
|
||||||
|
const soulLocal = readOptional(join(mosaicHome, 'SOUL.local.md'));
|
||||||
|
if (soulLocal.trim()) {
|
||||||
|
overlayBlocks.push('## Persona Overlay (SOUL.local.md)\n\n' + soulLocal.trim());
|
||||||
|
}
|
||||||
|
const standardsLocal = readOptional(join(mosaicHome, 'STANDARDS.local.md'));
|
||||||
|
if (standardsLocal.trim()) {
|
||||||
|
overlayBlocks.push('## Standards Overlay (STANDARDS.local.md)\n\n' + standardsLocal.trim());
|
||||||
|
}
|
||||||
|
if (overlayBlocks.length > 0) {
|
||||||
|
parts.push('\n\n# Operator Overlays\n\n' + overlayBlocks.join('\n\n'));
|
||||||
|
}
|
||||||
|
|
||||||
// Runtime-specific contract
|
// Runtime-specific contract
|
||||||
parts.push('\n\n# Runtime-Specific Contract\n\n' + readFileSync(runtimeFile, 'utf-8'));
|
parts.push('\n\n# Runtime-Specific Contract\n\n' + readFileSync(runtimeFile, 'utf-8'));
|
||||||
|
|
||||||
return parts.join('\n');
|
return parts.join('\n');
|
||||||
}
|
}
|
||||||
|
|
||||||
|
/** @deprecated internal alias — use composeContract. Retained for call-site clarity. */
|
||||||
|
function buildRuntimePrompt(runtime: RuntimeName): string {
|
||||||
|
return composeContract(runtime);
|
||||||
|
}
|
||||||
|
|
||||||
// ─── Session lock ────────────────────────────────────────────────────────────
|
// ─── Session lock ────────────────────────────────────────────────────────────
|
||||||
|
|
||||||
function writeSessionLock(runtime: string): void {
|
function writeSessionLock(runtime: string): void {
|
||||||
@@ -976,6 +1015,22 @@ export function registerLaunchCommands(program: Command): void {
|
|||||||
launchRuntime(runtime, extraArgs, yolo);
|
launchRuntime(runtime, extraArgs, yolo);
|
||||||
});
|
});
|
||||||
|
|
||||||
|
// compose-contract — emit the composed runtime contract (base + operator
|
||||||
|
// overlays) for a harness to stdout, without launching. For inspection,
|
||||||
|
// `mosaic doctor`, diffing, and the composer test (R7).
|
||||||
|
program
|
||||||
|
.command('compose-contract <harness>')
|
||||||
|
.description('Print the composed runtime contract (base + *.local overlays) for a harness')
|
||||||
|
.action((harness: string) => {
|
||||||
|
const valid: RuntimeName[] = ['claude', 'codex', 'opencode', 'pi'];
|
||||||
|
if (!valid.includes(harness as RuntimeName)) {
|
||||||
|
console.error(`Unknown harness '${harness}'. Expected one of: ${valid.join(', ')}.`);
|
||||||
|
process.exitCode = 64;
|
||||||
|
return;
|
||||||
|
}
|
||||||
|
process.stdout.write(composeContract(harness as RuntimeName));
|
||||||
|
});
|
||||||
|
|
||||||
// Coord (mission orchestrator)
|
// Coord (mission orchestrator)
|
||||||
program
|
program
|
||||||
.command('coord')
|
.command('coord')
|
||||||
|
|||||||
Reference in New Issue
Block a user