2026-07-11 14:08:26 +08:00
{
"name" : "dsh-jsonrpc-agent-pkg" ,
2026-07-14 00:40:36 +08:00
"description" : "Dependency-only deploy root defining the executable and Python runtime closure; pnpm deploy materializes this manifest and node_modules." ,
2026-07-11 14:08:26 +08:00
"version" : "0.0.1" ,
"private" : true ,
"type" : "module" ,
"dependencies" : {
build(vendor): rescope the vendored Cordis packages into @deepseek-ai
Machine-produced by `pnpm run rescope-vendor --apply` plus the regeneration it
prints: `pnpm install` for the lockfile, `pnpm run gen-third-party-notices`,
`verify-translation-pairing --write` for the touched bilingual pairs,
`gen-doc-graphs`, and one typert snapshot whose ids embed character offsets.
`pnpm run rescope-vendor --check` verifies the result.
Renames nine vendored packages (cordis, cosmokit, schemastery and the six
@cordisjs plugins) and every reference that resolves them: manifest names and
dependency keys, module specifiers including declare-module merges, cordis.yml
plugin names, tsconfig paths, every Markdown fence, and `docs/` prose.
Directory names, upstream versions, and dependency ranges are unchanged, so
vendor/README.md still reads as an upstream snapshot; its manifest table gains
an upstream-name column so THIRD_PARTY_NOTICES keeps MIT attribution pointed
at each fork's origin.
The tutorial tier follows the rename end to end: its yaml fences named plugins
the Loader can no longer resolve, its `ts ignore-check` fences disagreed with
the compiled fences beside them, and its prose quoted both. The contracts that
told readers to keep upstream names — the root convention and the vendoring
cookbook's tree comment and manifest invariant — now say to rescope instead.
Two rules read `@deepseek-ai/` as "another workspace plugin": the client bundle
purity gate now names the vendored libraries a browser bundle inlines, and the
files where a bare `cordis` is an agent-preset id keep that product data.
2026-08-10 22:04:06 +08:00
"@deepseek-ai/cordis-plugin-group" : "workspace:^" ,
"@deepseek-ai/cordis-plugin-include" : "workspace:^" ,
"@deepseek-ai/cordis-plugin-loader" : "workspace:^" ,
"@deepseek-ai/cordis-plugin-timer" : "workspace:^" ,
2026-08-10 22:27:34 +08:00
"@deepseek-ai/cosmokit" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-acp" : "workspace:^" ,
"@deepseek-ai/dsh-agent" : "workspace:^" ,
"@deepseek-ai/dsh-agent-loop" : "workspace:^" ,
docs: bilingual credentials/settings-consumer documentation, catalogs, and gates
New credentials data-structure page (type-equiv manifested), group README,
rewritten llm-deepseek/llm-pi-ai READMEs (dynamic configuration, dict
profiles, credential chain), capability-seams/service-role registration,
Agent Note (bilingual), demo compositions mounting settings-local +
credentials-local with no inline key plumbing, installSettingsSection
consumer helper on the settings seam (deduplicating both adapters' wiring),
jscpd symmetry markers for the provider twins, runtime-closure additions for
python/sdk-runtime, and doc-budget ceilings AGENTS.md 1750→1755 /
packages/README.md 850→865 for the structural one-line group rows.
2026-07-29 14:20:06 +08:00
"@deepseek-ai/dsh-agent-spine-demo" : "workspace:^" ,
2026-08-14 13:06:21 +08:00
"@deepseek-ai/dsh-agent-tool-presentation" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-app-boot" : "workspace:^" ,
2026-07-23 15:20:47 +08:00
"@deepseek-ai/dsh-attachment" : "workspace:^" ,
2026-08-20 18:25:37 +08:00
"@deepseek-ai/dsh-atomic-write" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-shell" : "workspace:^" ,
"@deepseek-ai/dsh-shell-env" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-bash-local" : "workspace:^" ,
"@deepseek-ai/dsh-brand" : "workspace:^" ,
"@deepseek-ai/dsh-code-runtime" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-code-runtime-worker-thread" : "workspace:^" ,
2026-08-14 13:06:21 +08:00
"@deepseek-ai/dsh-command-compact" : "workspace:^" ,
2026-07-20 12:11:06 +08:00
"@deepseek-ai/dsh-command-goal" : "workspace:^" ,
2026-07-19 22:11:59 +08:00
"@deepseek-ai/dsh-commands" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-compaction" : "workspace:^" ,
"@deepseek-ai/dsh-compaction-basic" : "workspace:^" ,
"@deepseek-ai/dsh-compaction-tool-result-pruner" : "workspace:^" ,
2026-08-13 00:19:15 +08:00
"@deepseek-ai/dsh-cordis-host-runner" : "workspace:^" ,
2026-08-13 15:54:47 +08:00
"@deepseek-ai/dsh-authorization" : "workspace:^" ,
docs: bilingual credentials/settings-consumer documentation, catalogs, and gates
New credentials data-structure page (type-equiv manifested), group README,
rewritten llm-deepseek/llm-pi-ai READMEs (dynamic configuration, dict
profiles, credential chain), capability-seams/service-role registration,
Agent Note (bilingual), demo compositions mounting settings-local +
credentials-local with no inline key plumbing, installSettingsSection
consumer helper on the settings seam (deduplicating both adapters' wiring),
jscpd symmetry markers for the provider twins, runtime-closure additions for
python/sdk-runtime, and doc-budget ceilings AGENTS.md 1750→1755 /
packages/README.md 850→865 for the structural one-line group rows.
2026-07-29 14:20:06 +08:00
"@deepseek-ai/dsh-credentials" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-launch-environment" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-fs" : "workspace:^" ,
"@deepseek-ai/dsh-fs-local" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-fs-observation-policy" : "workspace:^" ,
2026-08-10 20:55:02 +08:00
"@deepseek-ai/dsh-fs-sandbox" : "workspace:^" ,
2026-07-19 23:55:33 +08:00
"@deepseek-ai/dsh-goal" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-goal-round-driver" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-hook-protocol" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-hooks-claude-code" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-hooks-codex" : "workspace:^" ,
"@deepseek-ai/dsh-invariants" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-sdk-jsonrpc-server" : "workspace:^" ,
"@deepseek-ai/dsh-sdk-jsonrpc-demo" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-llm" : "workspace:^" ,
"@deepseek-ai/dsh-llm-deepseek" : "workspace:^" ,
2026-08-22 20:03:23 +08:00
"@deepseek-ai/dsh-deepseek-llm-api-extensions" : "workspace:^" ,
"@deepseek-ai/dsh-plugin-package-inventory-deepseek" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-llm-pi-ai" : "workspace:^" ,
2026-07-20 03:34:19 +08:00
"@deepseek-ai/dsh-llm-retry" : "workspace:^" ,
2026-08-18 13:50:53 +08:00
"@deepseek-ai/dsh-mcp-client" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-home-paths" : "workspace:^" ,
"@deepseek-ai/dsh-permission-presets" : "workspace:^" ,
2026-07-22 16:57:23 +08:00
"@deepseek-ai/dsh-plan-mode" : "workspace:^" ,
2026-08-14 13:06:21 +08:00
"@deepseek-ai/dsh-persona" : "workspace:^" ,
2026-08-15 17:05:19 +08:00
"@deepseek-ai/dsh-pwsh-local" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-terminal" : "workspace:^" ,
"@deepseek-ai/dsh-terminal-bash" : "workspace:^" ,
"@deepseek-ai/dsh-repeat-tool-reminder" : "workspace:^" ,
"@deepseek-ai/dsh-output-retention" : "workspace:^" ,
2026-07-13 16:34:09 +08:00
"@deepseek-ai/dsh-sandbox" : "workspace:^" ,
2026-07-29 14:12:27 +08:00
"@deepseek-ai/dsh-sandbox-local" : "workspace:^" ,
feat(sandbox): cross-family file sandbox — one policy home, sandboxed fs provider, fs escalation parity
Extend SandboxMode enforcement from bash to the filesystem tools, the sandbox
RFC's deferred cross-family phase.
- dsh-sandbox-policy (new, ctx.sandboxPolicy): the single home for the
deployment default mode + workspaceRoot and the per-session override event,
renamed bash/sandbox-mode -> sandbox/mode and moved here with its fold/setter.
Decouples the bash seam from dsh-session.
- dsh-fs-sandbox (new): SandboxedFileSystem extends LocalFileSystem and fences
write/edit by the per-call mode (read-only denies, workspace-write contains to
the workspace + temp roots via the shared writableRoots, danger passes
through); reads pass through. Structured FS_SANDBOX_DENIED; in-lock parent
re-canonicalization. A policy fence in trusted code, not a kernel boundary.
- dsh-sandbox: the shared escalation kit (writableRoots, the strictly-wider
ladder, denial/hint markers, approveEscalation) both tool families use;
approveEscalation takes a structural approver so dsh-sandbox gains no
approval/agent dependency, and both tools stay duplication-free.
- tool-fs: write/edit advertise sandbox_permissions/justification under a
confining ctx.fs, map FS_SANDBOX_DENIED to the shared [sandbox: ...] marker,
and resolve the same one-approved-wider retry.
- examples/acp-agent: composes sandbox-policy + fs-sandbox, drops the gating
that disabled the fs stack under confined modes.
RFC docs/rfc/implemented/feature/2026-07-14-cross-family-fs-sandbox.md; the old
sandbox RFC's In-process/deferred/FAQ sections updated to shipped fact.
2026-07-14 20:05:57 +08:00
"@deepseek-ai/dsh-sandbox-policy" : "workspace:^" ,
2026-07-13 16:34:09 +08:00
"@deepseek-ai/dsh-scope" : "workspace:^" ,
docs: bilingual credentials/settings-consumer documentation, catalogs, and gates
New credentials data-structure page (type-equiv manifested), group README,
rewritten llm-deepseek/llm-pi-ai READMEs (dynamic configuration, dict
profiles, credential chain), capability-seams/service-role registration,
Agent Note (bilingual), demo compositions mounting settings-local +
credentials-local with no inline key plumbing, installSettingsSection
consumer helper on the settings seam (deduplicating both adapters' wiring),
jscpd symmetry markers for the provider twins, runtime-closure additions for
python/sdk-runtime, and doc-budget ceilings AGENTS.md 1750→1755 /
packages/README.md 850→865 for the structural one-line group rows.
2026-07-29 14:20:06 +08:00
"@deepseek-ai/dsh-sdk-protocol" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-session" : "workspace:^" ,
2026-07-21 15:23:45 +08:00
"@deepseek-ai/dsh-session-checkpoint-policy" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-session-persistence" : "workspace:^" ,
"@deepseek-ai/dsh-session-persistence-jsonl" : "workspace:^" ,
"@deepseek-ai/dsh-session-persistence-sqlite" : "workspace:^" ,
docs: bilingual credentials/settings-consumer documentation, catalogs, and gates
New credentials data-structure page (type-equiv manifested), group README,
rewritten llm-deepseek/llm-pi-ai READMEs (dynamic configuration, dict
profiles, credential chain), capability-seams/service-role registration,
Agent Note (bilingual), demo compositions mounting settings-local +
credentials-local with no inline key plumbing, installSettingsSection
consumer helper on the settings seam (deduplicating both adapters' wiring),
jscpd symmetry markers for the provider twins, runtime-closure additions for
python/sdk-runtime, and doc-budget ceilings AGENTS.md 1750→1755 /
packages/README.md 850→865 for the structural one-line group rows.
2026-07-29 14:20:06 +08:00
"@deepseek-ai/dsh-session-projection" : "workspace:^" ,
2026-07-21 16:46:48 +08:00
"@deepseek-ai/dsh-session-query" : "workspace:^" ,
2026-07-23 20:16:14 +08:00
"@deepseek-ai/dsh-session-query-sqlite" : "workspace:^" ,
2026-07-21 16:46:48 +08:00
"@deepseek-ai/dsh-session-reference" : "workspace:^" ,
2026-07-21 01:53:24 +08:00
"@deepseek-ai/dsh-session-title" : "workspace:^" ,
docs: bilingual credentials/settings-consumer documentation, catalogs, and gates
New credentials data-structure page (type-equiv manifested), group README,
rewritten llm-deepseek/llm-pi-ai READMEs (dynamic configuration, dict
profiles, credential chain), capability-seams/service-role registration,
Agent Note (bilingual), demo compositions mounting settings-local +
credentials-local with no inline key plumbing, installSettingsSection
consumer helper on the settings seam (deduplicating both adapters' wiring),
jscpd symmetry markers for the provider twins, runtime-closure additions for
python/sdk-runtime, and doc-budget ceilings AGENTS.md 1750→1755 /
packages/README.md 850→865 for the structural one-line group rows.
2026-07-29 14:20:06 +08:00
"@deepseek-ai/dsh-settings" : "workspace:^" ,
2026-07-13 16:34:09 +08:00
"@deepseek-ai/dsh-skill" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-skill-filesystem" : "workspace:^" ,
2026-08-14 13:06:21 +08:00
"@deepseek-ai/dsh-spill" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-subagent" : "workspace:^" ,
"@deepseek-ai/dsh-subagent-acp" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-subagent-fork-in-process" : "workspace:^" ,
"@deepseek-ai/dsh-subagent-in-process-driver" : "workspace:^" ,
"@deepseek-ai/dsh-subagent-spawn-in-process" : "workspace:^" ,
docs: bilingual credentials/settings-consumer documentation, catalogs, and gates
New credentials data-structure page (type-equiv manifested), group README,
rewritten llm-deepseek/llm-pi-ai READMEs (dynamic configuration, dict
profiles, credential chain), capability-seams/service-role registration,
Agent Note (bilingual), demo compositions mounting settings-local +
credentials-local with no inline key plumbing, installSettingsSection
consumer helper on the settings seam (deduplicating both adapters' wiring),
jscpd symmetry markers for the provider twins, runtime-closure additions for
python/sdk-runtime, and doc-budget ceilings AGENTS.md 1750→1755 /
packages/README.md 850→865 for the structural one-line group rows.
2026-07-29 14:20:06 +08:00
"@deepseek-ai/dsh-subprocess" : "workspace:^" ,
"@deepseek-ai/dsh-subprocess-local" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-system-prompt" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-jobs" : "workspace:^" ,
"@deepseek-ai/dsh-jobs-local" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-timeout" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-tool-call-timeout-policy" : "workspace:^" ,
docs: bilingual credentials/settings-consumer documentation, catalogs, and gates
New credentials data-structure page (type-equiv manifested), group README,
rewritten llm-deepseek/llm-pi-ai READMEs (dynamic configuration, dict
profiles, credential chain), capability-seams/service-role registration,
Agent Note (bilingual), demo compositions mounting settings-local +
credentials-local with no inline key plumbing, installSettingsSection
consumer helper on the settings seam (deduplicating both adapters' wiring),
jscpd symmetry markers for the provider twins, runtime-closure additions for
python/sdk-runtime, and doc-budget ceilings AGENTS.md 1750→1755 /
packages/README.md 850→865 for the structural one-line group rows.
2026-07-29 14:20:06 +08:00
"@deepseek-ai/dsh-token-meter" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-tool-ask-user" : "workspace:^" ,
"@deepseek-ai/dsh-tool-bash" : "workspace:^" ,
2026-07-29 14:12:27 +08:00
"@deepseek-ai/dsh-tool-bash-persistent" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-tool-cordis" : "workspace:^" ,
"@deepseek-ai/dsh-tool-fs" : "workspace:^" ,
2026-08-14 13:06:21 +08:00
"@deepseek-ai/dsh-tool-fs-search" : "workspace:^" ,
2026-07-19 23:55:33 +08:00
"@deepseek-ai/dsh-tool-goal" : "workspace:^" ,
2026-08-14 13:06:21 +08:00
"@deepseek-ai/dsh-tool-ralph" : "workspace:^" ,
2026-07-13 16:34:09 +08:00
"@deepseek-ai/dsh-tool-skill" : "workspace:^" ,
2026-07-30 19:46:04 +08:00
"@deepseek-ai/dsh-tool-str-replace-editor" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-tool-subagent" : "workspace:^" ,
feat(subagent): continuable background subagents
Implement the continuable background subagents RFC: a durable child
session with a series of Task-backed activations, each disposing its
run before the Task settles.
- dsh-subagent: rename SubagentRun.sendMessage to strict steer, drop
run-level resume, add SubagentProvider.resume dispatch via
SubagentService.resume, the continuation start field, and the
versioned model-hidden subagent/descriptor session event.
- dsh-subagent-inprocess/-spawn/-fork: publish the control-allocated
child id, append the descriptor inside the initial turn, implement
cold resume from the child's own transcript under the live parent
scope, and strict running-only steer.
- dsh-subagent-control (new): SubagentControlService owning stable
child ids, descriptor snapshot/fold/authorization, Task-backed
activation with settle-then-dispose ordering, the process-local
active-run association, and steer-or-resume sendMessage routing.
- dsh-tool-subagent: background route branches on the provider's
resume capability (continuable via the control service; one-shot
task for ACP), returning both child and task ids.
- dsh-tool-subagent-control (new): the globally named send_message
tool rendering steered/started routes.
Keyless coverage spans Task ownership and disposal ordering, running
delivery, cold follow-up, descriptor rejection and rollback, known-id
reconstruction, kill during lookup, admission races, and a new
subagent-continuable ACP snapshot scenario.
2026-07-23 17:07:38 +08:00
"@deepseek-ai/dsh-tool-subagent-control" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-tool-jobs" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-tool-todo" : "workspace:^" ,
"@deepseek-ai/dsh-tool-web" : "workspace:^" ,
"@deepseek-ai/dsh-tool-workflow" : "workspace:^" ,
"@deepseek-ai/dsh-tools" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-typert-protocol" : "workspace:^" ,
2026-07-13 16:34:09 +08:00
"@deepseek-ai/dsh-user-approval" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-anonymous-user-id" : "workspace:^" ,
"@deepseek-ai/dsh-user-questions" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-web" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-web-fetch-http" : "workspace:^" ,
2026-07-11 14:08:26 +08:00
"@deepseek-ai/dsh-web-search-deepseek" : "workspace:^" ,
"@deepseek-ai/dsh-web-search-exa" : "workspace:^" ,
"@deepseek-ai/dsh-web-search-perplexity" : "workspace:^" ,
"@deepseek-ai/dsh-workflow" : "workspace:^" ,
2026-08-13 00:36:22 +08:00
"@deepseek-ai/dsh-workflow-worker-thread" : "workspace:^" ,
"@deepseek-ai/dsh-agent-instructions" : "workspace:^" ,
build(vendor): rescope the vendored Cordis packages into @deepseek-ai
Machine-produced by `pnpm run rescope-vendor --apply` plus the regeneration it
prints: `pnpm install` for the lockfile, `pnpm run gen-third-party-notices`,
`verify-translation-pairing --write` for the touched bilingual pairs,
`gen-doc-graphs`, and one typert snapshot whose ids embed character offsets.
`pnpm run rescope-vendor --check` verifies the result.
Renames nine vendored packages (cordis, cosmokit, schemastery and the six
@cordisjs plugins) and every reference that resolves them: manifest names and
dependency keys, module specifiers including declare-module merges, cordis.yml
plugin names, tsconfig paths, every Markdown fence, and `docs/` prose.
Directory names, upstream versions, and dependency ranges are unchanged, so
vendor/README.md still reads as an upstream snapshot; its manifest table gains
an upstream-name column so THIRD_PARTY_NOTICES keeps MIT attribution pointed
at each fork's origin.
The tutorial tier follows the rename end to end: its yaml fences named plugins
the Loader can no longer resolve, its `ts ignore-check` fences disagreed with
the compiled fences beside them, and its prose quoted both. The contracts that
told readers to keep upstream names — the root convention and the vendoring
cookbook's tree comment and manifest invariant — now say to rescope instead.
Two rules read `@deepseek-ai/` as "another workspace plugin": the client bundle
purity gate now names the vendored libraries a browser bundle inlines, and the
files where a bare `cordis` is an agent-preset id keep that product data.
2026-08-10 22:04:06 +08:00
"@deepseek-ai/cordis" : "workspace:^" ,
"@deepseek-ai/schemastery" : "workspace:^"
2026-07-11 14:08:26 +08:00
}
}