forked from bai/curriculum-project-hub
feat: make agent roles and skills dynamic
This commit is contained in:
+38
-2
@@ -54,6 +54,34 @@ Default state paths are:
|
||||
/var/cache/cph-hub/org-a
|
||||
```
|
||||
|
||||
Organization Agent roles and skills are runtime configuration. Skill versions
|
||||
are stored below the Silo state directory (`state/skills`) and are included in
|
||||
`backup_silo.sh` as `agent-skills.tar`; PostgreSQL stores role bundles, skill
|
||||
metadata and role-to-skill selection. Operate them as the Silo service user so
|
||||
content ownership remains correct:
|
||||
|
||||
```sh
|
||||
sudo INSTANCE_ID=org-a \
|
||||
ENV_FILE=/srv/curriculum-project-hub/.secrets/org-a/platform.env \
|
||||
bash hub/deploy/agent_config.sh install-skill \
|
||||
--organization org-a --source /staging/typst --version 1
|
||||
sudo INSTANCE_ID=org-a \
|
||||
ENV_FILE=/srv/curriculum-project-hub/.secrets/org-a/platform.env \
|
||||
bash hub/deploy/agent_config.sh upsert-role \
|
||||
--organization org-a --role draft --label 草稿 --tools-json null
|
||||
sudo INSTANCE_ID=org-a \
|
||||
ENV_FILE=/srv/curriculum-project-hub/.secrets/org-a/platform.env \
|
||||
bash hub/deploy/agent_config.sh set-role-skills \
|
||||
--organization org-a --role draft --skills outline,lesson-project,typst
|
||||
sudo INSTANCE_ID=org-a \
|
||||
ENV_FILE=/srv/curriculum-project-hub/.secrets/org-a/platform.env \
|
||||
bash hub/deploy/agent_config.sh list --organization org-a
|
||||
```
|
||||
|
||||
`--tools-json null` means the full registered tool surface; `[]` means no
|
||||
ordinary tools. SDK-bundled skills and workspace/user setting sources remain
|
||||
disabled regardless of runtime configuration.
|
||||
|
||||
## Bootstrap the only Organization
|
||||
|
||||
Prepare a root-owned `0600` JSON file containing
|
||||
@@ -129,16 +157,24 @@ sudo INSTANCE_ID=org-a \
|
||||
bash hub/deploy/backup_silo.sh
|
||||
```
|
||||
|
||||
The business set contains the PostgreSQL custom dump and workspace archive. The
|
||||
The business set contains the PostgreSQL custom dump, workspace archive and
|
||||
`agent-skills.tar`. The
|
||||
separate recovery set contains the keyring and environment. Both include
|
||||
checksums; neither destination may be the live host's only disk.
|
||||
|
||||
Restore into a separate drill database/workspace, verify checksums, then run:
|
||||
Restore into a separate drill database, workspace and skill-store directory;
|
||||
verify checksums before extracting both tar archives, then run:
|
||||
|
||||
```sh
|
||||
set -a; . /path/to/restored/platform.env; set +a
|
||||
mkdir -p "$HUB_PROJECT_WORKSPACE_ROOT" "$HUB_SKILL_STORE_ROOT"
|
||||
tar -xf /path/to/business/workspaces.tar -C "$HUB_PROJECT_WORKSPACE_ROOT"
|
||||
tar -xf /path/to/business/agent-skills.tar -C "$HUB_SKILL_STORE_ROOT"
|
||||
node hub/dist/deployment/restore-preflight.js \
|
||||
--keyring-file /path/to/restored/secret-keyring.json
|
||||
sudo INSTANCE_ID=org-a ENV_FILE=/path/to/restored/platform.env \
|
||||
HUB_DIR=/path/to/restored/release/hub \
|
||||
bash hub/deploy/agent_config.sh verify-store --organization org-a
|
||||
```
|
||||
|
||||
Traffic stays disabled until the sole Organization and every Feishu/provider
|
||||
|
||||
Reference in New Issue
Block a user