internal/

directory
v1.17.4 Latest Latest
Warning

This package is not in the latest version of its module.

Go to latest
Published: Jul 23, 2026 License: Apache-2.0

Directories

Path Synopsis
Package agentcfg owns Harbor's agent-config control plane: a durable, identity-scoped, versioned desired-state registry where every edit to an agent's configuration (skills membership now; tool/MCP exposure and prompt layers as later consumers extend the envelope) is an immutable, content-addressed revision.
Package agentcfg owns Harbor's agent-config control plane: a durable, identity-scoped, versioned desired-state registry where every edit to an agent's configuration (skills membership now; tool/MCP exposure and prompt layers as later consumers extend the envelope) is an immutable, content-addressed revision.
conformance
Package conformance is the shared agentcfg.Registry driver conformance suite: a single set of behaviour assertions every driver must pass, so a future driver inherits the contract verbatim (the §11 conformance-suite pattern).
Package conformance is the shared agentcfg.Registry driver conformance suite: a single set of behaviour assertions every driver must pass, so a future driver inherits the contract verbatim (the §11 conformance-suite pattern).
drivers/statestore
Package statestore implements the StateStore-backed agentcfg Registry driver — the default driver for the agent-config control plane.
Package statestore implements the StateStore-backed agentcfg Registry driver — the default driver for the agent-config control plane.
sessionoverlay
Package sessionoverlay owns the SESSION-scoped safe-subset overlay of the agent-config control plane: the lower tier of the authorization matrix.
Package sessionoverlay owns the SESSION-scoped safe-subset overlay of the agent-config control plane: the lower tier of the authorization matrix.
Package artifacts defines Harbor's content-addressed blob store — the mandatory routing target for any output above the heavy-output threshold (default 32 KB; RFC §6.10).
Package artifacts defines Harbor's content-addressed blob store — the mandatory routing target for any output above the heavy-output threshold (default 32 KB; RFC §6.10).
conformancetest
Package conformancetest exposes the canonical correctness suite every artifacts.ArtifactStore driver must pass.
Package conformancetest exposes the canonical correctness suite every artifacts.ArtifactStore driver must pass.
drivers/fs
Package fs is Harbor's filesystem ArtifactStore driver.
Package fs is Harbor's filesystem ArtifactStore driver.
drivers/inmem
Package inmem is Harbor's V1 in-memory ArtifactStore driver.
Package inmem is Harbor's V1 in-memory ArtifactStore driver.
drivers/postgres
Package postgres is Harbor's V1 Postgres-backed ArtifactStore driver.
Package postgres is Harbor's V1 Postgres-backed ArtifactStore driver.
drivers/s3
Package s3 is Harbor's S3-compatible ArtifactStore driver.
Package s3 is Harbor's S3-compatible ArtifactStore driver.
drivers/sqlite
Package sqlite is Harbor's SQLite-backed `artifacts.ArtifactStore` driver.
Package sqlite is Harbor's SQLite-backed `artifacts.ArtifactStore` driver.
Package audit owns Harbor's deep-redaction pass.
Package audit owns Harbor's deep-redaction pass.
drivers/noop
Package noop is a pass-through audit redactor for tests that want to bypass redaction.
Package noop is a pass-through audit redactor for tests that want to bypass redaction.
drivers/patterns
Package patterns is Harbor's V1 audit redactor driver.
Package patterns is Harbor's V1 audit redactor driver.
Package config defines Harbor's strongly-typed configuration surface.
Package config defines Harbor's strongly-typed configuration surface.
Package devdraft implements the `harbor dev` draft-save scaffolding surface.
Package devdraft implements the `harbor dev` draft-save scaffolding surface.
Package distributed defines Harbor's V1 distributed-edge contracts:
Package distributed defines Harbor's V1 distributed-edge contracts:
a2a
Package a2a provides hand-transcribed Go shapes for every type defined in the vendored A2A v1 proto specification at `docs/specifications/a2a.proto` (commit `ae6a562d5d972f2c4b184f748bb32e1fa9aa7bf2`, 2026-04-23).
Package a2a provides hand-transcribed Go shapes for every type defined in the vendored A2A v1 proto specification at `docs/specifications/a2a.proto` (commit `ae6a562d5d972f2c4b184f748bb32e1fa9aa7bf2`, 2026-04-23).
conformancetest
Package conformancetest exposes the canonical correctness suites every distributed driver must pass.
Package conformancetest exposes the canonical correctness suites every distributed driver must pass.
drivers/a2a
Package a2a is Harbor's southbound A2A wire driver.
Package a2a is Harbor's southbound A2A wire driver.
drivers/durable
Package durable is Harbor's StateStore-backed MessageBus driver.
Package durable is Harbor's StateStore-backed MessageBus driver.
drivers/loopback
Package loopback ships Harbor's V1 in-process drivers for both `distributed.MessageBus` and `distributed.RemoteTransport`.
Package loopback ships Harbor's V1 in-process drivers for both `distributed.MessageBus` and `distributed.RemoteTransport`.
drivers
prod
Package prod is the production driver aggregator — the single sanctioned home of Harbor's driver blank-import block (AGENTS.md §4.4).
Package prod is the production driver aggregator — the single sanctioned home of Harbor's driver blank-import block (AGENTS.md §4.4).
Package embeddings owns Harbor's embedding client — the seam that turns text into vectors (RFC §6.5).
Package embeddings owns Harbor's embedding client — the seam that turns text into vectors (RFC §6.5).
drivers/bifrost
Package bifrost is Harbor's production `embeddings.Embedder` driver, wired to the bifrost provider gateway's embedding surface.
Package bifrost is Harbor's production `embeddings.Embedder` driver, wired to the bifrost provider gateway's embedding surface.
embeddingstest
Package embeddingstest provides a deterministic, test-grade `embeddings.Embedder` for conformance suites and integration tests that need meaningful similarity without provider traffic.
Package embeddingstest provides a deterministic, test-grade `embeddings.Embedder` for conformance suites and integration tests that need meaningful similarity without provider traffic.
Package events owns Harbor's typed event bus surface — the single pub/sub channel every subsystem (telemetry, audit, governance, runtime, planner, tools) Publishes to and Subscribes from.
Package events owns Harbor's typed event bus surface — the single pub/sub channel every subsystem (telemetry, audit, governance, runtime, planner, tools) Publishes to and Subscribes from.
conformancetest
Package conformancetest exposes the canonical correctness suite every `events.EventBus` driver must pass.
Package conformancetest exposes the canonical correctness suite every `events.EventBus` driver must pass.
drivers/durable
Package durable is Harbor's StateStore-backed durable event log driver (RFC §6.13).
Package durable is Harbor's StateStore-backed durable event log driver (RFC §6.13).
drivers/inmem
Package inmem is Harbor's V1 in-memory EventBus driver.
Package inmem is Harbor's V1 in-memory EventBus driver.
Package governance is Harbor's policy middleware between the runtime and the LLM-edge chain.
Package governance is Harbor's policy middleware between the runtime and the LLM-edge chain.
conformancetest
Package conformancetest exposes the canonical governance correctness suite that every supported `state.StateStore` driver must satisfy.
Package conformancetest exposes the canonical governance correctness suite that every supported `state.StateStore` driver must satisfy.
Package identity defines Harbor's load-bearing isolation key.
Package identity defines Harbor's load-bearing isolation key.
conformancetest
Package conformancetest exposes the canonical identity-correctness suite that every identity-aware Harbor subsystem (StateStore drivers, MemoryStore drivers, Governance, Audit, Memory) must run.
Package conformancetest exposes the canonical identity-correctness suite that every identity-aware Harbor subsystem (StateStore drivers, MemoryStore drivers, Governance, Audit, Memory) must run.
llm
Package llm defines Harbor's LLM-client interface and the runtime-wide invariants that guard every `Complete` call.
Package llm defines Harbor's LLM-client interface and the runtime-wide invariants that guard every `Complete` call.
corrections
Package corrections is Harbor's provider correction layer ( — RFC §6.5).
Package corrections is Harbor's provider correction layer ( — RFC §6.5).
credsource
Package credsource is the inference-plane credential-source seam: it answers WHERE a runtime's LLM PROVIDER API KEY comes from — the process environment (boot config, the historical default) or a coordinator-served broker the runtime PULLS from at connect + refresh.
Package credsource is the inference-plane credential-source seam: it answers WHERE a runtime's LLM PROVIDER API KEY comes from — the process environment (boot config, the historical default) or a coordinator-served broker the runtime PULLS from at connect + refresh.
credsource/inferencebrokertest
Package inferencebrokertest ships the committed REFERENCE implementation of the inference-plane credential-pull contract: an httptest server that serves an LLM provider's API key to the broker-pull [InferenceKeySource].
Package inferencebrokertest ships the committed REFERENCE implementation of the inference-plane credential-pull contract: an httptest server that serves an LLM provider's API key to the broker-pull [InferenceKeySource].
drivers/bifrost
Package bifrost is Harbor's bifrost-backed LLM driver.
Package bifrost is Harbor's bifrost-backed LLM driver.
mock
Package mock is Harbor's test-grade LLM driver.
Package mock is Harbor's test-grade LLM driver.
output
Package output is Harbor's structured-output strategy + downgrade chain (RFC §6.5).
Package output is Harbor's structured-output strategy + downgrade chain (RFC §6.5).
retry
Package retry is Harbor's retry-with-feedback wrapper ( RFC §6.5).
Package retry is Harbor's retry-with-feedback wrapper ( RFC §6.5).
summarizer
Package summarizer is the home of Harbor's production LLM-backed summarisation: the memory-subsystem `memory.Summarizer` and the planner-trajectory `planner.Summariser`.
Package summarizer is the home of Harbor's production LLM-backed summarisation: the memory-subsystem `memory.Summarizer` and the planner-trajectory `planner.Summariser`.
Package mcpconsole wires the MCP-Connections Protocol surface to its runtime-side dependencies — the MCP driver registry and the tool-side OAuth provider.
Package mcpconsole wires the MCP-Connections Protocol surface to its runtime-side dependencies — the MCP driver registry and the tool-side OAuth provider.
Package memory owns Harbor's declared-policy, identity-scoped, pluggable memory subsystem.
Package memory owns Harbor's declared-policy, identity-scoped, pluggable memory subsystem.
conformancetest
Package conformancetest exposes the canonical correctness suite every `memory.MemoryStore` driver must pass.
Package conformancetest exposes the canonical correctness suite every `memory.MemoryStore` driver must pass.
drivers/inmem
Package inmem is Harbor's V1 in-memory MemoryStore driver.
Package inmem is Harbor's V1 in-memory MemoryStore driver.
drivers/postgres
Package postgres is Harbor's Postgres-backed `memory.MemoryStore` driver.
Package postgres is Harbor's Postgres-backed `memory.MemoryStore` driver.
drivers/sqlite
Package sqlite is Harbor's SQLite-backed `memory.MemoryStore` driver.
Package sqlite is Harbor's SQLite-backed `memory.MemoryStore` driver.
protocol
Package protocol — additions: the strategy-trace read projection + the admin-gated mutation pair (`memory.put` / `memory.delete`).
Package protocol — additions: the strategy-trace read projection + the admin-gated mutation pair (`memory.put` / `memory.delete`).
strategy
Package strategy holds the memory-strategy executors: the algorithmic core that any `memory.MemoryStore` driver delegates to.
Package strategy holds the memory-strategy executors: the algorithmic core that any `memory.MemoryStore` driver delegates to.
persistence
sqlmigrate
Package sqlmigrate is the shared forward-only SQL migration runner for Harbor's SQLite and Postgres persistence drivers.
Package sqlmigrate is the shared forward-only SQL migration runner for Harbor's SQLite and Postgres persistence drivers.
Attachment disposition policy.
Attachment disposition policy.
conformance
Package conformance ships the planner conformance pack.
Package conformance ships the planner conformance pack.
deterministic
Package deterministic ships Harbor's second concrete Planner (RFC §6.2 + RFC §11 Q-6 — the iface-validation lens that proves the `internal/planner.Planner` seam is genuinely swappable).
Package deterministic ships Harbor's second concrete Planner (RFC §6.2 + RFC §11 Q-6 — the iface-validation lens that proves the `internal/planner.Planner` seam is genuinely swappable).
finish
Package finish ships Harbor's stub Planner — a planner that always returns Finish{Reason: Goal}.
Package finish ships Harbor's stub Planner — a planner that always returns Finish{Reason: Goal}.
react
Package react ships Harbor's reference LLM-driven planner concrete (RFC §6.2 + RFC §3.2 — the first concrete sitting on the `internal/planner.Planner` seam).
Package react ships Harbor's reference LLM-driven planner concrete (RFC §6.2 + RFC §3.2 — the first concrete sitting on the `internal/planner.Planner` seam).
repair
Package repair ships Harbor's reusable salvage / schema-repair / graceful-failure / multi-action-salvage ladder for planner steps (RFC §6.2).
Package repair ships Harbor's reusable salvage / schema-repair / graceful-failure / multi-action-salvage ladder for planner steps (RFC §6.2).
trajectory
Package trajectory ships Harbor's append-only planner-execution log and the fail-loudly serialise contract that closes the predecessor's silent-context-loss bug.
Package trajectory ships Harbor's append-only planner-execution log and the fail-loudly serialise contract that closes the predecessor's silent-context-loss bug.
Package protocol is the Harbor Protocol layer's runtime-side surface — the transport-agnostic handlers that translate a Protocol method call into a runtime action.
Package protocol is the Harbor Protocol layer's runtime-side surface — the transport-agnostic handlers that translate a Protocol method call into a runtime action.
adminwrite
Package adminwrite holds the ONE fail-closed admin-plane write+audit posture shared by every admin-scoped Protocol write that must not leave an un-auditable mutation observably applied (CLAUDE.md §5, §7 rule 6).
Package adminwrite holds the ONE fail-closed admin-plane write+audit posture shared by every admin-scoped Protocol write that must not leave an un-auditable mutation observably applied (CLAUDE.md §5, §7 rule 6).
auth
Package auth is the Harbor Protocol's JWT validation surface — the transport-edge cryptographic identity check that turns the wire transports' trust-based identity carriers into verified ones (RFC §5.5: "JWT, asymmetric algorithms only ...
Package auth is the Harbor Protocol's JWT validation surface — the transport-edge cryptographic identity check that turns the wire transports' trust-based identity carriers into verified ones (RFC §5.5: "JWT, asymmetric algorithms only ...
client
Package client provides the authenticated REST/SSE Harbor Protocol client.
Package client provides the authenticated REST/SSE Harbor Protocol client.
conformance
Package conformance is the Harbor Protocol conformance suite — the single binding pass/fail definition of "the Protocol surface works at version 0.1.0" (RFC §5 + master-plan detail block).
Package conformance is the Harbor Protocol conformance suite — the single binding pass/fail definition of "the Protocol surface works at version 0.1.0" (RFC §5 + master-plan detail block).
errors
Package errors is the single source of truth for Harbor Protocol error codes (CLAUDE.md §8: "Error codes live in internal/protocol/errors/errors.go.
Package errors is the single source of truth for Harbor Protocol error codes (CLAUDE.md §8: "Error codes live in internal/protocol/errors/errors.go.
methods
Package methods is the single source of truth for Harbor Protocol method names (CLAUDE.md §8: "Method names live in internal/protocol/methods/methods.go.
Package methods is the single source of truth for Harbor Protocol method names (CLAUDE.md §8: "Method names live in internal/protocol/methods/methods.go.
projectioncheck
Package projectioncheck is the registry-gated projection-completeness gate — the mechanical close of the silent-absence class the runtime's read surfaces kept re-introducing (a read surface declares a typed, wire-visible field, ships a facet / sort / aggregate over it, and never populates it, so the operation returns FALSE ABSENCE on a fleet full of matching data).
Package projectioncheck is the registry-gated projection-completeness gate — the mechanical close of the silent-absence class the runtime's read surfaces kept re-introducing (a read surface declares a typed, wire-visible field, ships a facet / sort / aggregate over it, and never populates it, so the operation returns FALSE ABSENCE on a fleet full of matching data).
singlesource
Package singlesource is the Harbor Protocol single-source enforcement checker (CLAUDE.md §8, §13; RFC §5).
Package singlesource is the Harbor Protocol single-source enforcement checker (CLAUDE.md §8, §13; RFC §5).
transports
Package transports is the Harbor Protocol wire-transport seam — the binding of RFC §5.4's resolved transport choice (SSE for the event stream + REST/JSON for the control surface) onto net/http.
Package transports is the Harbor Protocol wire-transport seam — the binding of RFC §5.4's resolved transport choice (SSE for the event stream + REST/JSON for the control surface) onto net/http.
transports/control
Package control is the Harbor Protocol REST/JSON control transport — the client→server half of the wire binding RFC §5.4 resolves to (SSE for events + REST/JSON for control).
Package control is the Harbor Protocol REST/JSON control transport — the client→server half of the wire binding RFC §5.4 resolves to (SSE for events + REST/JSON for control).
transports/cors
Package cors is the Harbor Protocol CORS middleware — the security primitive that unlocks the multi-process Console+Runtime posture (Console on one origin attaches to a Runtime on a different origin) without weakening the browser-side enforcement contract.
Package cors is the Harbor Protocol CORS middleware — the security primitive that unlocks the multi-process Console+Runtime posture (Console on one origin attaches to a Runtime on a different origin) without weakening the browser-side enforcement contract.
transports/stream
Package stream — addition: the admin-scoped `agent_config.*` agent-config control-plane HTTP handler.
Package stream — addition: the admin-scoped `agent_config.*` agent-config control-plane HTTP handler.
types
Package types is the single source of truth for Harbor Protocol wire types (CLAUDE.md §8).
Package types is the single source of truth for Harbor Protocol wire types (CLAUDE.md §8).
wiresurface
Package wiresurface computes the canonical Harbor Protocol wire-surface digest: a coarse, opaque, stable name-level fingerprint of the surface a Protocol client binds to.
Package wiresurface computes the canonical Harbor Protocol wire-surface digest: a coarse, opaque, stable name-level fingerprint of the surface a Protocol client binds to.
runtime
agentcfg/projection
Package projection holds the run-start agent-config projection shared by every run-loop driver (the production dev driver and the harbortest devstack twin) and exercised directly by the control-plane integration test.
Package projection holds the run-start agent-config projection shared by every run-loop driver (the production dev driver and the harbortest devstack twin) and exercised directly by the control-plane integration test.
agentcfg/protocol
Package protocol implements the admin-scoped `agent_config.*` Protocol methods the Console agent-config control plane consumes:
Package protocol implements the admin-scoped `agent_config.*` Protocol methods the Console agent-config control plane consumes:
assemble
Package assemble is Harbor's assembly entry point: the ONE exported, error-returning config→stack fan-out that turns a validated *config.Config into a running runtime stack.
Package assemble is Harbor's assembly entry point: the ONE exported, error-returning config→stack fan-out that turns a validated *config.Config into a running runtime stack.
concurrency
Package concurrency ships Harbor's runtime concurrency primitives — of the runtime kernel chain (RFC §6.1).
Package concurrency ships Harbor's runtime concurrency primitives — of the runtime kernel chain (RFC §6.1).
dispatch
Package dispatch is the runtime's production tool-dispatch concrete — the one full `steering.ToolExecutor` implementation ( originally, as the dev binary's executor).
Package dispatch is the runtime's production tool-dispatch concrete — the one full `steering.ToolExecutor` implementation ( originally, as the dev binary's executor).
engine
Package engine is Harbor's typed, async, queue-backed graph executor — the runtime kernel every other phase sits on.
Package engine is Harbor's typed, async, queue-backed graph executor — the runtime kernel every other phase sits on.
flow
Package flow implements Harbor's Flow-as-Tool registration (RFC §6.1): a typed DAG of Nodes assembled into a runnable Engine via `Compose(def)`, then registered as a single Tool in the catalog via `RegisterAsTool(catalog, def, eng)`.
Package flow implements Harbor's Flow-as-Tool registration (RFC §6.1): a typed DAG of Nodes assembled into a runnable Engine via `Compose(def)`, then registered as a single Tool in the catalog via `RegisterAsTool(catalog, def, eng)`.
flow/protocol
Package protocol implements the runtime side of the Console Flows page.
Package protocol implements the runtime side of the Console Flows page.
governance/protocol
Package protocol implements the admin-scoped `governance.*` tenant-default override Protocol methods the Console control plane consumes:
Package protocol implements the admin-scoped `governance.*` tenant-default override Protocol methods the Console control plane consumes:
messages
Package messages defines Harbor's wire-shaped runtime types: the Envelope every channel carries, the Headers it routes by, and the helpers (WithRunID, MergeMeta, Identity) downstream phases lean on.
Package messages defines Harbor's wire-shaped runtime types: the Envelope every channel carries, the Headers it routes by, and the helpers (WithRunID, MergeMeta, Identity) downstream phases lean on.
notifications
Package notifications ships Harbor's `notification.*` event family — a NEW event topic on the typed event bus carrying operator-facing notifications (alerts surfaced by the Console's notification centre, the Overview page alert ribbon, and the Settings notification-routing matrix).
Package notifications ships Harbor's `notification.*` event family — a NEW event topic on the typed event bus carrying operator-facing notifications (alerts surfaced by the Console's notification centre, the Overview page alert ribbon, and the Settings notification-routing matrix).
parallel
Package parallel ships Harbor's runtime parallel-call executor — the consumer of planner.CallParallel Decisions (RFC §6.2).
Package parallel ships Harbor's runtime parallel-call executor — the consumer of planner.CallParallel Decisions (RFC §6.2).
pauseresume
Package pauseresume ships Harbor's ONE pause/resume primitive — the unified Coordinator that HITL approval, tool-side OAuth, A2A AUTH_REQUIRED / INPUT_REQUIRED, and operator/Console PAUSE all converge on (CLAUDE.md §7 rule 4, RFC §3.3 + §6.3).
Package pauseresume ships Harbor's ONE pause/resume primitive — the unified Coordinator that HITL approval, tool-side OAuth, A2A AUTH_REQUIRED / INPUT_REQUIRED, and operator/Console PAUSE all converge on (CLAUDE.md §7 rule 4, RFC §3.3 + §6.3).
posture
Package posture builds the live `protocol.PostureDeps.Counters` and `protocol.PostureDeps.Metrics` seams over the real runtime subsystems.
Package posture builds the live `protocol.PostureDeps.Counters` and `protocol.PostureDeps.Metrics` seams over the real runtime subsystems.
registry
Package registry owns Harbor's Agent Registry — the in-process, per-runtime-instance subsystem that owns the *registration identity* of agents (RFC §6.16).
Package registry owns Harbor's Agent Registry — the in-process, per-runtime-instance subsystem that owns the *registration identity* of agents (RFC §6.16).
registry/protocol
Package protocol implements the eight `agents.*` Protocol methods the Console Agents page consumes:
Package protocol implements the eight `agents.*` Protocol methods the Console Agents page consumes:
routers
Package routers ships Harbor's runtime routing surface — the of the runtime kernel chain (RFC §6.1).
Package routers ships Harbor's runtime routing surface — the of the runtime kernel chain (RFC §6.1).
runctx
Input-artifact disposition observability.
Input-artifact disposition observability.
runs/protocol
Package protocol implements the `runs.set_overrides` Protocol method the Console Playground page consumes.
Package protocol implements the `runs.set_overrides` Protocol method the Console Playground page consumes.
serve
Package serve is the importable serve band: the config→listener composition that turns a loaded configuration into a running Harbor Protocol server.
Package serve is the importable serve band: the config→listener composition that turns a loaded configuration into a running Harbor Protocol server.
serve/external
Package external is the production-only entry point behind the public sdk/server facade: it turns a validated configuration into a running Harbor Protocol server that an external Go binary can host, with its compiled in-process tools wrapped at the pre-policy catalog seam.
Package external is the production-only entry point behind the public sdk/server facade: it turns a validated configuration into a running Harbor Protocol server that an external Go binary can host, with its compiled in-process tools wrapped at the pre-policy catalog seam.
steering
Package steering ships Harbor's per-run steering inbox + the nine-event control taxonomy + the Protocol-edge validation / sanitisation pass (RFC §6.3).
Package steering ships Harbor's per-run steering inbox + the nine-event control taxonomy + the Protocol-edge validation / sanitisation pass (RFC §6.3).
Package search owns the Harbor cross-cutting search primitive — the four runtime-side per-subsystem indexes (sessions, tasks, events, artifacts) plus the `search.query` palette dispatcher that aggregates them.
Package search owns the Harbor cross-cutting search primitive — the four runtime-side per-subsystem indexes (sessions, tasks, events, artifacts) plus the `search.query` palette dispatcher that aggregates them.
artifacts
Package artifacts implements the `search.artifacts` runtime-side index — a server-enforced search over the artifact store's catalog, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
Package artifacts implements the `search.artifacts` runtime-side index — a server-enforced search over the artifact store's catalog, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
events
Package events implements the `search.events` runtime-side index — a server-enforced search over the event bus's replay ring, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
Package events implements the `search.events` runtime-side index — a server-enforced search over the event bus's replay ring, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
sessions
Package sessions implements the `search.sessions` runtime-side index — a server-enforced search over session lifecycle records, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
Package sessions implements the `search.sessions` runtime-side index — a server-enforced search over session lifecycle records, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
tasks
Package tasks implements the `search.tasks` runtime-side index — a server-enforced search over task lifecycle records, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
Package tasks implements the `search.tasks` runtime-side index — a server-enforced search over task lifecycle records, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
approval_authorizer.go — the Protocol-side resolve authorizer.
approval_authorizer.go — the Protocol-side resolve authorizer.
Package sessions owns Harbor's session-lifecycle subsystem.
Package sessions owns Harbor's session-lifecycle subsystem.
protocol
Package protocol implements the `sessions.*` Protocol methods the Console Sessions page consumes:
Package protocol implements the `sessions.*` Protocol methods the Console Sessions page consumes:
Package skills owns Harbor's token-savvy, DB-backed, identity- scoped skill subsystem (RFC §6.7).
Package skills owns Harbor's token-savvy, DB-backed, identity- scoped skill subsystem (RFC §6.7).
capfilter
Package capfilter holds the primitive capability-filter and tool-name-scrub logic shared by the skills planner tools (internal/skills/tools) and the virtual directory (internal/skills).
Package capfilter holds the primitive capability-filter and tool-name-scrub logic shared by the skills planner tools (internal/skills/tools) and the virtual directory (internal/skills).
conformancetest
Package conformancetest is the shared `SkillStore` conformance harness.
Package conformancetest is the shared `SkillStore` conformance harness.
drivers/localdb
Package localdb is Harbor's SQLite-backed `skills.SkillStore` driver.
Package localdb is Harbor's SQLite-backed `skills.SkillStore` driver.
generator
Package generator owns Harbor's in-runtime skill generator with persistence (RFC §6.7).
Package generator owns Harbor's in-runtime skill generator with persistence (RFC §6.7).
importer
Package importer ships Harbor's Skills.md importer — the predecessor's gap-closer (RFC §6.7).
Package importer ships Harbor's Skills.md importer — the predecessor's gap-closer (RFC §6.7).
tools
Package tools registers Harbor's planner-facing skill tools (`skill_search`, `skill_get`, `skill_list`) into the `tools.ToolCatalog`.
Package tools registers Harbor's planner-facing skill tools (`skill_search`, `skill_get`, `skill_list`) into the `tools.ToolCatalog`.
Package state owns Harbor's persistence floor: the single mandatory `StateStore` interface that every persistence-shaped subsystem (sessions, tasks, governance accumulators, planner checkpoints, memory snapshots, steering events) saves through.
Package state owns Harbor's persistence floor: the single mandatory `StateStore` interface that every persistence-shaped subsystem (sessions, tasks, governance accumulators, planner checkpoints, memory snapshots, steering events) saves through.
conformancetest
Package conformancetest exposes the canonical correctness suite every state.StateStore driver must pass.
Package conformancetest exposes the canonical correctness suite every state.StateStore driver must pass.
drivers/inmem
Package inmem is Harbor's V1 in-memory StateStore driver.
Package inmem is Harbor's V1 in-memory StateStore driver.
drivers/postgres
Package postgres is Harbor's V1 Postgres-backed StateStore driver.
Package postgres is Harbor's V1 Postgres-backed StateStore driver.
drivers/sqlite
Package sqlite is Harbor's SQLite-backed `state.StateStore` driver.
Package sqlite is Harbor's SQLite-backed `state.StateStore` driver.
Package tasks owns Harbor's unified task surface: the `TaskRegistry` interface every planner / runtime / steering caller uses to spawn, list, cancel, and prioritise both foreground runs and background tasks under one `TaskID` namespace.
Package tasks owns Harbor's unified task surface: the `TaskRegistry` interface every planner / runtime / steering caller uses to spawn, list, cancel, and prioritise both foreground runs and background tasks under one `TaskID` namespace.
conformancetest
Package conformancetest exposes the canonical correctness suite every tasks.TaskRegistry driver must pass.
Package conformancetest exposes the canonical correctness suite every tasks.TaskRegistry driver must pass.
drivers/durable
Package durable is Harbor's StateStore-backed TaskRegistry driver.
Package durable is Harbor's StateStore-backed TaskRegistry driver.
drivers/inprocess
Package inprocess is Harbor's default in-process TaskRegistry driver.
Package inprocess is Harbor's default in-process TaskRegistry driver.
engine
Package engine holds Harbor's shared TaskRegistry state machine: the task/group/patch lifecycle, idempotency dedup, cascade-cancel, group governance (seal/resolve/fail-fast), retain-turn waiters, and WatchGroup fan-out.
Package engine holds Harbor's shared TaskRegistry state machine: the task/group/patch lifecycle, idempotency dedup, cascade-cancel, group governance (seal/resolve/fail-fast), retain-turn waiters, and WatchGroup fan-out.
protocol
Package protocol implements the two `tasks.*` read methods the Console Tasks page consumes:
Package protocol implements the two `tasks.*` read methods the Console Tasks page consumes:
Package telemetry owns Harbor's canonical structured logger.
Package telemetry owns Harbor's canonical structured logger.
cardinalitylint
Package cardinalitylint is the Harbor metrics-cardinality enforcement checker (RFC §6.14; the "metrics cardinality footgun").
Package cardinalitylint is the Harbor metrics-cardinality enforcement checker (RFC §6.14; the "metrics cardinality footgun").
drivers/noop
Package noop is the default telemetry.SpanExporter driver — it drops every span without error.
Package noop is the default telemetry.SpanExporter driver — it drops every span without error.
drivers/otlp
Package otlp is the OTLP/gRPC telemetry.SpanExporter driver — it ships spans to an external OpenTelemetry collector (Jaeger, an OTLP collector, an observability vendor's endpoint).
Package otlp is the OTLP/gRPC telemetry.SpanExporter driver — it ships spans to an external OpenTelemetry collector (Jaeger, an OTLP collector, an observability vendor's endpoint).
drivers/otlpmetric
Package otlpmetric is the OTLP/gRPC telemetry.MetricExporter driver — it ships metrics to an external OpenTelemetry collector (an OTLP collector, an observability vendor's endpoint).
Package otlpmetric is the OTLP/gRPC telemetry.MetricExporter driver — it ships metrics to an external OpenTelemetry collector (an OTLP collector, an observability vendor's endpoint).
drivers/prometheus
Package prometheus is the built-in Prometheus telemetry.MetricExporter driver — it exposes Harbor's metrics on a pull /metrics endpoint in the Prometheus text exposition format.
Package prometheus is the built-in Prometheus telemetry.MetricExporter driver — it exposes Harbor's metrics on a pull /metrics endpoint in the Prometheus text exposition format.
eventbus
Package eventbus is the adapter that connects the telemetry.BusEmitter seam to the events.EventBus.
Package eventbus is the adapter that connects the telemetry.BusEmitter seam to the events.EventBus.
agent_provenance.go — the ctx-carried acting-agent provenance seam.
agent_provenance.go — the ctx-carried acting-agent provenance seam.
annotate
Package annotate assembles the production per-tool Annotator the Tools catalog projector reads OAuth / approval / metrics / content-stats / last-used / display-mode annotations through.
Package annotate assembles the production per-tool Annotator the Tools catalog projector reads OAuth / approval / metrics / content-stats / last-used / display-mode annotations through.
approval
Package approval ships Harbor's tool-side synchronous approval-gate subsystem — the second consumer of the unified pause/resume primitive, layered on the same Coordinator + bus + steering inbox seams the tool-side OAuth work built.
Package approval ships Harbor's tool-side synchronous approval-gate subsystem — the second consumer of the unified pause/resume primitive, layered on the same Coordinator + bus + steering inbox seams the tool-side OAuth work built.
auth
Package auth ships Harbor's tool-side OAuth subsystem — the TokenStore + OAuthProvider seam every HTTP / MCP / A2A southbound driver consults when a tool call needs a bearer token.
Package auth ships Harbor's tool-side OAuth subsystem — the TokenStore + OAuthProvider seam every HTTP / MCP / A2A southbound driver consults when a tool call needs a bearer token.
auth/conformancetest
Package conformancetest exposes the shared TokenStore + Sealer conformance suite Harbor ships.
Package conformancetest exposes the shared TokenStore + Sealer conformance suite Harbor ships.
auth/credsource
Package credsource is the §4.4 seam through which an OAuth provider's OWN client credential (`client_id` / `client_secret`) resolves.
Package credsource is the §4.4 seam through which an OAuth provider's OWN client credential (`client_id` / `client_secret`) resolves.
auth/credsource/credsourcetest
Package credsourcetest ships the committed REFERENCE implementation of the coordinator credential-fetch contract: an httptest server that serves an OAuth provider's client credential to the `remote` credential source.
Package credsourcetest ships the committed REFERENCE implementation of the coordinator credential-fetch contract: an httptest server that serves an OAuth provider's client credential to the `remote` credential source.
auth/credsource/drivers/env
Package env ships the default credential source: the OAuth provider's client credential is read from the process environment ONCE at boot.
Package env ships the default credential source: the OAuth provider's client credential is read from the process environment ONCE at boot.
auth/credsource/drivers/remote
Package remote ships the coordinator-served credential source: the runtime PULLS an OAuth provider's client credential (`client_id` / `client_secret`) from an operator-configured endpoint at first need, authenticated by the runtime's own service token.
Package remote ships the coordinator-served credential source: the runtime PULLS an OAuth provider's client credential (`client_id` / `client_secret`) from an operator-configured endpoint at first need, authenticated by the runtime's own service token.
auth/drivers/oauth2
Package oauth2 ships Harbor's V1 default OAuth provider driver (closes issue #116 and the deferred construction gap).
Package oauth2 ships Harbor's V1 default OAuth provider driver (closes issue #116 and the deferred construction gap).
auth/drivers/tokenexchange
Package tokenexchange ships Harbor's pull-based, non-interactive external-credential acquisition strategy: a driver on the OAuth flow-strategy registry that obtains a downstream tool credential (a user's Microsoft 365 token, a Google Workspace token — foreign-IdP tokens used to call third-party tools) from an operator-configured external credential broker (a fleet orchestrator, an enterprise token vault, an STS) via an RFC-8693-shaped token exchange, instead of Harbor's interactive authorization-code flow.
Package tokenexchange ships Harbor's pull-based, non-interactive external-credential acquisition strategy: a driver on the OAuth flow-strategy registry that obtains a downstream tool credential (a user's Microsoft 365 token, a Google Workspace token — foreign-IdP tokens used to call third-party tools) from an operator-configured external credential broker (a fleet orchestrator, an enterprise token vault, an STS) via an RFC-8693-shaped token exchange, instead of Harbor's interactive authorization-code flow.
builtin
Package builtin ships the small set of opt-in tools that travel with the Harbor binary.
Package builtin ships the small set of opt-in tools that travel with the Harbor binary.
catalog
Package catalog ships Harbor's operator-config-driven tool-catalog wiring.
Package catalog ships Harbor's operator-config-driven tool-catalog wiring.
conformancetest
Package conformancetest is Harbor's shared conformance suite for any ToolCatalog implementation.
Package conformancetest is Harbor's shared conformance suite for any ToolCatalog implementation.
drivers/a2a
Package a2a is Harbor's southbound A2A integration with the tool catalog.
Package a2a is Harbor's southbound A2A integration with the tool catalog.
drivers/http
Package http is Harbor's HTTP transport driver for the unified tool catalog.
Package http is Harbor's HTTP transport driver for the unified tool catalog.
drivers/inproc
Package inproc is Harbor's in-process tool driver.
Package inproc is Harbor's in-process tool driver.
drivers/mcp
attach.go — the exported boot-time MCP server attachment helper (absorbs cmd/harbor's attachDevMCPServer from INCLUDING the config→ToolPolicy projection that the devstack mirror had silently dropped).
attach.go — the exported boot-time MCP server attachment helper (absorbs cmd/harbor's attachDevMCPServer from INCLUDING the config→ToolPolicy projection that the devstack mirror had silently dropped).
drivers/searchcache
Package searchcache is Harbor's SQLite FTS5-backed tool search cache.
Package searchcache is Harbor's SQLite FTS5-backed tool search cache.
protocol
Package protocol implements the seven `tools.*` Protocol methods the Console Tools page consumes:
Package protocol implements the seven `tools.*` Protocol methods the Console Tools page consumes:
schema
Package schema is Harbor's neutral Go-type -> JSON-Schema derivation home.
Package schema is Harbor's neutral Go-type -> JSON-Schema derivation home.
tui
app
Package app implements Harbor's deterministic terminal shell.
Package app implements Harbor's deterministic terminal shell.
artifacts
Package artifacts derives safe terminal artifact metadata and preview posture.
Package artifacts derives safe terminal artifact metadata and preview posture.
composer
Package composer implements the TUI's local editor-quality composer model.
Package composer implements the TUI's local editor-quality composer model.
entry
Package entry is the shared TUI attach entry point consumed by both `harbor tui --attach` (cmd_tui.go) and the public `sdk/tui.Run` facade.
Package entry is the shared TUI attach entry point consumed by both `harbor tui --attach` (cmd_tui.go) and the public `sdk/tui.Run` facade.
events
Package events derives retained/live event diagnostics from Protocol values.
Package events derives retained/live event diagnostics from Protocol values.
interventions
Package interventions implements the PauseToken-correlated TUI intervention inbox.
Package interventions implements the PauseToken-correlated TUI intervention inbox.
markdown
Package markdown renders a lenient, streaming-stable subset of Markdown to styled terminal lines using Harbor's semantic theme tokens.
Package markdown renders a lenient, streaming-stable subset of Markdown to styled terminal lines using Harbor's semantic theme tokens.
posture
Package posture derives Runtime health and diagnostics from Protocol values.
Package posture derives Runtime health and diagnostics from Protocol values.
projection
Package projection reduces Harbor Protocol snapshots and events into a rendering-independent conversation projection.
Package projection reduces Harbor Protocol snapshots and events into a rendering-independent conversation projection.
renderers
Package renderers provides immutable safe renderer registries for TUI data.
Package renderers provides immutable safe renderer registries for TUI data.
sessionpicker
Package sessionpicker implements generation-fenced session selection.
Package sessionpicker implements generation-fenced session selection.
surface
Package surface defines honest loading and availability state for TUI views.
Package surface defines honest loading and availability state for TUI views.
tasks
Package tasks derives terminal task inspection state from Protocol values.
Package tasks derives terminal task inspection state from Protocol values.
tools
Package tools derives terminal tool inspection state from Protocol values.
Package tools derives terminal tool inspection state from Protocol values.
ui
Package ui defines Harbor's terminal design tokens and geometry primitives.
Package ui defines Harbor's terminal design tokens and geometry primitives.

Jump to

Keyboard shortcuts

? : This menu
/ : Search site
f or F : Jump to
y or Y : Canonical URL