Codex
811b58b71c
fix: ignore non-shebang gitbundle tool files
2026-06-08 11:39:34 +08:00
Codex
52376fb71e
支持 gitbundle 资源装配
2026-06-08 11:21:34 +08:00
Codex
47b02b5101
feat: 支持 provider profile auth.json 写入
2026-06-08 10:59:38 +08:00
Codex
601d8190d0
feat: add provider profile removal
2026-06-08 05:30:48 +08:00
Codex
509c2aa6fd
fix: 支持动态 provider profile slug
2026-06-08 04:19:58 +08:00
Codex
bda8e3bb1e
修正 provider Secret create RBAC 语义
2026-06-08 02:17:33 +08:00
Codex
96bdc262ad
支持 provider profile Secret 首次创建
2026-06-08 02:08:50 +08:00
Codex
41886aef80
feat: 将 ofcx-go backend 收敛为 dsflash-go
2026-06-08 01:38:50 +08:00
Codex
eef59c74ee
fix: replace hardcoded backend profile validation with isBackendProfile()
...
The session creation route had a hardcoded check for only codex/deepseek/minimax-m3
profiles. Since ofcx-go was added to BackendProfile type and backend-profiles.ts
spec list, the validation must use isBackendProfile() from the shared module so
that adding new profiles only requires one data change, not scattered string checks.
Refs pikasTech/HWLAB#1034
2026-06-07 21:03:47 +08:00
Codex
3afb2bf8ec
feat: add ofcx-go provider profile for OpenCode Zen Go DeepSeek V4 Flash
...
- Add ofcx-go to BackendProfile type union
- Add ofcx-go backend profile spec (Codex app-server stdio)
- Add defaultConfig for ofcx-go (deepseek-v4-flash via Moon Bridge)
- Add Secret mount in deploy.json for runner projection
- Add RBAC access for ofcx-go provider secret
- Update self-test to cover 4 profiles
2026-06-07 20:14:52 +08:00
Codex
0ff445e182
feat: remove workspace file count limit, raise total size to 4MB
...
- maxWorkspaceFiles: 16 → Number.MAX_SAFE_INTEGER (unlimited)
- maxWorkspaceFilesTotalBytes: 512KB → 4MB
- Enables large skill directories (e.g. arm2d-skill with references)
2026-06-07 14:44:15 +08:00
Codex
7b3c0ea584
fix: 支持 ResourceBundleRef workspaceFiles
2026-06-06 17:59:05 +08:00
Codex
dd58cf9a8e
feat: 支持 provider profile config.toml 管理
2026-06-05 22:35:40 +08:00
Lyon
17e9cd3995
fix: remove provider secret last-applied annotation ( #94 )
...
Co-authored-by: Codex <codex@pikas.tech >
2026-06-05 19:04:59 +08:00
Lyon
46e3b771bb
fix: upsert provider secrets without patch-file ( #93 )
...
Co-authored-by: Codex <codex@pikas.tech >
2026-06-05 18:50:50 +08:00
Lyon
a8f1e56367
fix: avoid provider secret last-applied annotation ( #92 )
...
Co-authored-by: Codex <codex@pikas.tech >
2026-06-05 18:34:13 +08:00
Codex
7f5fc963c7
docs: align HWLAB assembly to HWPOD
2026-06-05 16:51:16 +08:00
Codex
25ec9f459d
fix: use existing workspace for provider validation
2026-06-05 16:34:54 +08:00
Codex
8099207353
fix: grant provider profile secret rbac
2026-06-05 16:23:33 +08:00
Codex
05809058a5
feat: add provider profile management api
2026-06-05 16:07:26 +08:00
Codex
0d040a33c2
fix: wait for stale runner lease before replacement claim
2026-06-03 23:49:40 +08:00
Codex
78513aa4c7
feat(v0.1): CLI sessions create / storage / storage-delete + session-turn auto-ensure PVC
...
PR C 收尾附带 CLI 能力:
- 新增 sessions create [sessionId] 调 POST /api/v1/sessions 创建 session+PVC
- 新增 sessions storage <sessionId> 调 GET /api/v1/sessions/:id/storage
- 新增 sessions storage <sessionId> --delete 调 DELETE
- sessions turn <sessionId> 也会先 GET storage 探活,不存在则 POST /api/v1/sessions 补建
(之前 sessions turn 只在 store 里隐式建 session record 但 storageKind=none,
现在用显式 session create 入口保证 storageKind=pvc 提前建好)
- ManagerClient 新增 delete() 方法
2026-06-03 20:56:27 +08:00
Codex
7ccea67391
feat(v0.1): codex-stdio emit codex-rollout-storage-mounted + session-store-evicted upgrade
...
PR C 收尾:codex-stdio.ts 加 observability + new failureKind 升级路径
- 启动时读 env(不是 process.env)发出 codex-rollout-storage-mounted 事件:
pvcName / pvcNamespace / mountPath / codexRolloutSubdir / valuesPrinted=false
- thread/resume 失败 + 'no rollout found for thread id' 消息 + AGENTRUN_SESSION_PVC_NAME
已设 → 升级为 session-store-evicted,区别于 thread-resume-failed
- isNoRolloutFoundMessage helper 隔离匹配逻辑
- 4 新 selftest case:
codex-stdio-session-storage-mounted(事件存在 + 字段对齐)
codex-stdio-session-storage-evicted(failureKind 升级)
codex-stdio-session-storage-subdir(AGENTRUN_CODEX_ROLLOUT_SUBDIR 配置生效)
codex-stdio-session-storage-no-secret-leak(事件不泄露)
PR C 全部完成:runner Job 直接挂载 PVC + codex-stdio observability +
session-store-evicted 升级 + 5 新 selftest(1 runner + 4 codex)
2026-06-03 20:38:11 +08:00
Codex
f08a4e75cd
feat(v0.1): runner Job 直接挂载 per-session PVC + env 透传
...
PR C 起步:k8s-job.ts 加 sessionPvc volume + env passthrough
- src/runner/k8s-job.ts: 新 RunnerSessionPvcOptions 接口;manifest 多渲染
agentrun-sessions volume + volumeMount;env 多透传 AGENTRUN_SESSION_PVC_NAME /
_NAMESPACE / _MOUNT_PATH / AGENTRUN_CODEX_ROLLOUT_SUBDIR
- src/mgr/kubernetes-runner-job.ts: run 引用 session 时查 session storage
kind=pvc 自动构造 sessionPvc 透传给 manifest 渲染;kind=evicted 已在
PR B 短路返回 session-store-evicted
- selftest: 1 新 case runner-k8s-job-session-pvc-volume-and-env 验证 PVC volume
+ env 全套透传
后续 PR C 剩余:src/backend/codex-stdio.ts emit codex-rollout-storage-mounted
事件 + session-store-evicted 升级;3 个 codex-stdio 端到端 case。
2026-06-03 20:21:03 +08:00
Codex
4793ca154a
fix(v0.1): recover session PVC when prior create left session without storage
...
之前的失败用例会让 session 留在 storageKind=none 状态但 pvcName 缺失,
现在 POST /api/v1/sessions 在 storageKind=none || !storagePvcName 时
重新调 createSessionPvc 补建,action=session-storage-recovered。
selftest 覆盖:显式 reset storageKind=none 后第二次 POST 走 recovery。
2026-06-03 19:59:49 +08:00
Codex
da797c907c
fix(v0.1): sanitize session id for PVC name (RFC 1123 subdomain compliance)
...
session id 允许任意字符(含下划线/大写/点),但 PVC name 必须符合
RFC 1123 subdomain(小写字母数字 + '-' + '.',首尾必须 alphanumeric)。
sanitizeSessionIdForPvc 把非法字符替换为 '-',全空 fallback 到 'default'。
selftest 增加 3 case 覆盖下划线/大写/纯符号。
2026-06-03 19:47:29 +08:00
Codex
e8cfa4c692
feat(v0.1): add mgr session PVC lifecycle for true session state persistence
...
PR B for #770 : mgr/session-pvc.ts + server endpoints + selftest.
- 新模块 src/mgr/session-pvc.ts: createSessionPvc / getSessionPvcSummary / deleteSessionPvc / refreshSessionPvcSummary / runSessionStorageGc / startSessionStorageGcLoop
- Server 增量 4 个 endpoint:
* POST /api/v1/sessions: 创建 session 同步创建 PVC
* GET /api/v1/sessions/:id/storage: 查询 PVC 摘要
* DELETE /api/v1/sessions/:id/storage: 删 PVC + storage_kind=evicted
* POST /api/v1/sessions/:id/storage/refresh: runner 上报 PVC 摘要
* POST /api/v1/sessions/storage/gc: 手动触发 GC
- mgr SA RBAC 已在 PR A 增加;manager server 不直连 Kubernetes API(kubectl 由 mgr 容器内执行)
- SessionRecord 增量 storageKind / storagePvcName / storageNamespace / storageSizeBytes / storageFilesCount / storageSha256 / storageUpdatedAt / storagePvcPhase / storageEvictedAt / codexRolloutSubdir
- kubernetes-runner-job 短路:run 引用 evicted session 时直接返回 session-store-evicted,不创建 runner Job
- KubectlHandler 可注入,selftest 覆盖 create / summary / refresh / eviction / gc / REST 路径
- GC loop 默认 5min(AGENTRUN_SESSION_GC_INTERVAL_MS 可调)
runner / backend / HWLAB adapter 在 PR C / PR D 落地。
2026-06-03 19:19:09 +08:00
Codex
87beb00bdb
feat(v0.1): add per-session RWO PVC foundation for true session state persistence
...
PR A for #770 : docs + migration 007 + RBAC + types foundation.
- 新增 failureKind session-store-evicted,用于区分 PVC 缺失与真协议错误
- 新增 migration 007_v01_session_state_storage:sessions 表增加 storage_* 列 + 索引
- mgr SA RBAC 增量:persistentvolumeclaims: [create, get, list, watch, delete]
- 6 份 SPEC 升级(runtime-assembly / hwlab-manual-dispatch / backend-codex T7b / agentrun-runner / agentrun-mgr / services)
- 显式禁止:fake app-server mock、replacement threadId、runner 启动后 copy/restore、idleTimeoutMs 拉永驻
- selftest 断言更新到 007_v01_session_state_storage
后续 PR B/C 在此基础上接入 mgr 端 PVC 生命周期 + runner 端 mount + backend 端 observability。
2026-06-03 18:45:13 +08:00
Codex
b761ef6713
feat: add session subagent cli control
2026-06-03 11:27:55 +08:00
Codex
25bc93b371
fix: add ripgrep to runner image
2026-06-03 07:59:13 +08:00
Codex
f69ef55ddc
fix: keep codex sessions reusable after turn failures
2026-06-03 00:28:41 +08:00
Codex
ce031238f1
fix: 保留长任务过程 trace 事件
2026-06-02 21:17:56 +08:00
Codex
3018b8a937
feat: assemble resource prompts and skills
2026-06-02 20:40:14 +08:00
Codex
e9843ab687
fix: fail stale codex thread resume
2026-06-02 16:22:27 +08:00
Codex
458d814fa2
feat: 装配 UniDesk SSH 工具凭证
2026-06-02 15:40:48 +08:00
Codex
e40585fd66
fix: replace stale codex threads
2026-06-02 12:36:34 +08:00
Codex
40a274d52b
fix: 收敛 stale thread 和 tool-call 错误归因
2026-06-02 12:08:38 +08:00
Lyon
0092f55249
fix: keep suppressed notification names readable ( #73 )
...
Co-authored-by: Codex <codex@pikas.tech >
2026-06-02 11:16:50 +08:00
Lyon
aa0bd64714
fix: 压制 agentMessage lifecycle 噪声 ( #72 )
...
Co-authored-by: Codex <codex@pikas.tech >
2026-06-02 10:59:59 +08:00
Lyon
e1c0fb5245
fix: 恢复 stale codex thread ( #71 )
...
Co-authored-by: Codex <codex@pikas.tech >
2026-06-02 10:48:28 +08:00
Lyon
ebc5bdb8b1
fix: 收敛 commandExecution toolcall 摘要 ( #70 )
...
Co-authored-by: Codex <codex@pikas.tech >
2026-06-02 10:28:35 +08:00
Codex
2cce4c2777
fix: 统一 AgentRun threadId 连续性
2026-06-02 10:16:03 +08:00
Lyon
a6f7581b96
fix: 继续收敛 codex trace 残余噪声 ( #68 )
...
Co-authored-by: Codex <codex@pikas.tech >
2026-06-02 10:11:31 +08:00
Codex
d90e01a91c
feat: 支持运行中 steer command
2026-06-02 10:04:36 +08:00
Lyon
1d45d272f1
fix: 收敛 codex stdio trace 噪声 ( #66 )
...
Co-authored-by: Codex <codex@pikas.tech >
2026-06-02 09:49:55 +08:00
Codex
10bc33f8e1
fix: expose resource aliases on runner path
2026-06-02 09:12:47 +08:00
Codex
9700d0600f
feat: assemble resource bundle tool aliases
2026-06-02 08:50:21 +08:00
Codex
0918736e0a
fix: use responses wire api for minimax m3
2026-06-02 08:27:53 +08:00
Codex
82e2349030
fix: 放开 transientEnv 数量限制
2026-06-02 08:24:22 +08:00
Codex
4b9dc79b67
fix: isolate minimax m3 backend migration
2026-06-02 08:11:15 +08:00