deepseek-harness/packages/bash
2026-07-19 23:38:54 +08:00
..
bash docs: structure model experience fields 2026-07-19 18:08:42 +08:00
bash-local Merge remote-tracking branch 'origin/master' into worktree/dsbench-patch 2026-07-19 21:46:17 +08:00
bash-sandbox docs: structure model experience fields 2026-07-19 18:08:42 +08:00
tool-bash feat(tools): require cancellation signal on every invocation 2026-07-19 23:38:54 +08:00
README.md Merge remote-tracking branch 'origin/master' into codex/rfc-subagent-background-tasks 2026-07-14 18:05:46 +08:00

bash/ — bash capability family

The canonical three-package capability seam (see capability seams): an abstract executor interface, concrete implementations, and the model-facing tool that consumes it. All product packages.

Package Role ctx key
bash/ Abstract bash executor seam (interface + vocabulary; sandbox result facts carry the sandbox/ seam's mode/enforcement vocabulary) ctx.bash
bash-local/ Local-subprocess BashExecutor implementation (registers ctx.bash)
bash-sandbox/ Sandbox-consuming BashExecutor (wraps every command argv via ctx.sandbox, stamps denial/enforcement facts; extends bash-local's mechanics) (registers ctx.bash)
tool-bash/ Model-facing bash schema; background processes register with the generic tasks/ runtime (registers on ctx.tools)

The interface lives at bash/bash/. bash-sandbox replacing bash-local without touching the interface or the tool is the split doing exactly what it exists for — a leaf cordis.yml picks one executor entry, plus a ctx.sandbox provider entry for the confined one (see the acp-agent example's default composition).