deepseek-harness/packages
Turtle d613fdb073 fix(agent-loop): third review pass — disposal discard ordering, flush guard, docs
Address a fresh-eye review of the disposal/injection fixes:
- disposal now snapshots, clears, and marks disposed BEFORE emitting
  agent/inbox/discard (mirroring cancel's snapshot→clear→emit), so a
  re-entrant send/cancel from a discard listener throws 'disposed' or
  finds an empty inbox instead of leaking or double-discarding an id.
  The discard is unconditional (even on unpublished setup-rollback) to
  match send's unconditional enqueue, keeping every id balanced.
- restore the turnRecorded guard on the idle-injection flush: a
  turn/start rejected pre-commit (append reentrancy / internal-dispatch
  veto) records nothing and owes no flush; the previous unconditional
  flush emitted a phantom-turn agent/error. The isTurnOpen/turnRecorded
  branches are reachable (reentrant inject from a session/event
  listener) and now covered by a regression test rather than v8-ignored.
- rewrite the agent/inbox/discard event JSDoc to enumerate all three
  emitters (cancel, terminal turn-stop, disposal) — every enqueued id
  gets exactly one terminal dequeue-or-discard.

Per-file coverage stays 100%.
2026-07-24 13:39:06 +08:00
..
bash Merge remote-tracking branch 'origin/master' into feat/send-unify 2026-07-23 20:54:48 +08:00
client Merge remote-tracking branch 'origin/master' into feat/send-unify 2026-07-23 22:41:45 +08:00
code-runtime docs(code-runtime): cover captured error construction 2026-07-23 03:51:25 +08:00
compact fix(agent-loop): address second-round review — disposal discard, injection validation, frozen payloads 2026-07-24 12:05:57 +08:00
context fix(agent-loop): address second-round review — disposal discard, injection validation, frozen payloads 2026-07-24 12:05:57 +08:00
cordis fix(agent-loop): third review pass — disposal discard ordering, flush guard, docs 2026-07-24 13:39:06 +08:00
core fix(agent-loop): third review pass — disposal discard ordering, flush guard, docs 2026-07-24 13:39:06 +08:00
examples Merge remote-tracking branch 'origin/master' into feat/send-unify 2026-07-23 22:41:45 +08:00
fs Merge refreshed schema DSL into canonical tool outputs 2026-07-22 22:03:54 +08:00
goal fix(agent-loop): address second-round review — disposal discard, injection validation, frozen payloads 2026-07-24 12:05:57 +08:00
guard fix(agent-loop): address second-round review — disposal discard, injection validation, frozen payloads 2026-07-24 12:05:57 +08:00
hooks fix(agent-loop): address second-round review — disposal discard, injection validation, frozen payloads 2026-07-24 12:05:57 +08:00
host Merge branch 'master' into worktree/web-session-titles 2026-07-23 22:00:17 +08:00
llm Merge remote-tracking branch 'origin/master' into worktree/web-session-titles 2026-07-23 18:40:13 +08:00
lsp Merge refreshed schema DSL into canonical tool output 2026-07-22 21:31:16 +08:00
mcp Merge branch 'codex/tool-json-schema-dsl' into codex/canonical-tool-output 2026-07-21 23:39:03 +08:00
plan fix(agent-loop): address second-round review — disposal discard, injection validation, frozen payloads 2026-07-24 12:05:57 +08:00
pty Merge remote-tracking branch 'origin/master' into feat/send-unify 2026-07-23 22:41:45 +08:00
sandbox Merge remote-tracking branch 'origin/master' into codex/session-scoped-sandbox-roots 2026-07-22 21:37:30 +08:00
sdk test(windows): make coverage fixtures portable 2026-07-22 13:10:48 +08:00
session-persistence fix(session-query): make persisted observation non-mutating 2026-07-23 21:33:28 +08:00
session-query Merge remote-tracking branch 'origin/master' into feat/send-unify 2026-07-23 22:41:45 +08:00
session-title fix(web): generate model-backed session titles 2026-07-23 18:20:17 +08:00
skill Merge refreshed schema DSL into canonical tool output 2026-07-22 21:31:16 +08:00
spill Merge branch 'codex/canonical-tool-output' into codex/code-mode-typed-results 2026-07-22 17:07:49 +08:00
subagent Merge remote-tracking branch 'origin/master' into feat/send-unify 2026-07-23 20:54:48 +08:00
support Merge remote-tracking branch 'origin/master' into feat/send-unify 2026-07-23 22:41:45 +08:00
tasks Merge remote-tracking branch 'origin/master' into feat/send-unify 2026-07-23 22:41:45 +08:00
timeout Merge branch 'codex/tool-json-schema-dsl' into codex/canonical-tool-output 2026-07-21 23:39:03 +08:00
todo Merge branch 'codex/tool-json-schema-dsl' into codex/canonical-tool-output 2026-07-21 23:39:03 +08:00
ui test: fix CI coverage + e2e for user/message coalescing 2026-07-23 22:57:39 +08:00
util Merge master into worktree-windows-runtime 2026-07-21 23:39:14 +08:00
web Merge branch 'codex/tool-json-schema-dsl' into codex/canonical-tool-output 2026-07-22 17:05:38 +08:00
workflow Merge branch 'codex/tool-json-schema-dsl' into codex/canonical-tool-output 2026-07-21 23:39:03 +08:00
AGENTS.md docs(ts): document the solution-root TypeScript project layout 2026-07-23 03:59:35 +08:00
CLAUDE.md Document the codebase thoroughly and tighten type safety 2026-06-11 13:01:00 +08:00
README.md Merge remote-tracking branch 'origin/master' into session-query-search 2026-07-23 13:56:56 +08:00

Packages

Packages use the @deepseek-ai/dsh-* scope. Each is a Cordis Service subclass or function plugin; contributions use ctx.effect(), ctx.on(), or ctx.waterfall(). Authoring rules: package and root.

Hierarchy

Packages live at packages/<group>/<pkg>/; groups are containers, while names remain @deepseek-ai/dsh-<pkg>. Each group README is the canonical package/ctx-key map.

Group Role Release expectation
core/ Product API spine: sessions, prompts, tools, agent services, and the concrete loop Product — stable surface
goal/ Persisted same-session goal state and lifecycle Product — stable surface
llm/ LLM capability family: the abstract service + provider adapters Product — stable surface
bash/ Bash capability family: executor seam, local impl, model-facing tool Product — stable surface
pty/ Persistent PTY capability family: owner-scoped sessions, local implementation, and model-facing tools Product — stable surface
code-runtime/ Code-execution capability family: the runtime seam for model-written programs + a worker-thread backend Product — stable surface
sandbox/ Process-confinement seam; bwrap/Landlock/Seatbelt backends Product — stable surface
fs/ Filesystem capability family: seam, local impl, model-facing file tools, bash-backed discovery tools Product — stable surface
lsp/ LSP capability family: seam, generic stdio provider, and the lsp tool Product — stable surface
skill/ Skill capability family: the provider registry, local provider, and model-facing catalog/loader Product — stable surface
compact/ Compaction capability family: the abstract seam + a basic backend (tool deferred) Product — stable surface
context/ Model-visible request context, including workspace instructions and time context Product — stable surface
subagent/ Subagent capability family: the provider-registry seam and the model-facing delegation tool Product — stable surface
tasks/ Generic background-task runtime and model-facing task_* control tools Product — stable surface
workflow/ Workflow capability family: the script-engine seam, worker-thread engine, and model-facing workflow and fresh-agent ralph tools Product — stable surface
web/ Web capability family: seam, search/fetch provider impls, and the model-facing web tools Product — stable surface
spill/ Spill capability family: storage seam, local impl, tool-result spill policy Product — stable surface
todo/ Todo/planning family: the model-facing todo_write tool Product — stable surface
plan/ Plan collaboration state with a direct entry command and reviewed exit Product — stable surface
timeout/ Tool-call timeout policy: the tools/execute deadline enforcer Product — stable surface
guard/ Loop-hygiene guards: advisory repeat-call reminders Product — stable surface
cordis/ Self-referential runtime toolset: inspect the live runtime's plugins and services, mount/unmount model-written plugins (design) Product — stable surface
hooks/ Hook bridges + the shared Claude Code / Codex wire-protocol library Product — stable surface
session-persistence/ Persistence capability family: the seam + JSONL/SQLite backends Product — stable surface
session-query/ Session retrieval family: logical corpus, bounded reads, lineage, event relationships, semantic filtering, and SQLite full-text search Product — stable surface
session-title/ Log-backed session titles: fallback service, shared LLM policy, and opt-in providers Product — stable surface
sdk/ Project SDK tooling Product — stable surface
ui/ Editor/client integration surfaces: ACP bridge, JSON-RPC SDK server, user-approval/user-interaction seams, ask-user tool Product — stable surface
examples/ Demo bundles (agent-spine + TUI/one-shot CLI/ACP/JSON-RPC bins) the leaves load Support — example infra
support/ Support infrastructure (testkits, invariants, replay, Loader smokes) Support — lower compatibility expectations
util/ Low-level zero-dependency utilities shared across groups (Branded<B>, Harness home/path helpers, timeout, retention) Support — small, stable, harness-dep-free

Groups distinguish product API from support infrastructure. New packages join an existing group; a new group updates its README and this table.

Dependencies

The dependency graph is generated: docs/module-graph.md (pnpm run gen-module-graph, freshness-gated in CI).

Extension plugins depend on interfaces, never the concrete loop. dsh-agent-loop is swappable; UI, hook, and tool plugins use dsh-agent. Composition bundles, including dsh-agent-spine-demo, may depend on spine plugins. Capabilities split into interface / implementation / consumer packages; see capability seams.

Package READMEs cover purpose, APIs, extension points, and Model Experience unless on the model-agnostic omission allowlist. They also carry ## Known Limitations and Deferred Work or use its allowlist.