Directories
¶
| Path | Synopsis |
|---|---|
|
Package agentcfg owns Harbor's agent-config control plane: a durable, identity-scoped, versioned desired-state registry where every edit to an agent's configuration (skills membership now; tool/MCP exposure and prompt layers as later consumers extend the envelope) is an immutable, content-addressed revision.
|
Package agentcfg owns Harbor's agent-config control plane: a durable, identity-scoped, versioned desired-state registry where every edit to an agent's configuration (skills membership now; tool/MCP exposure and prompt layers as later consumers extend the envelope) is an immutable, content-addressed revision. |
|
conformance
Package conformance is the shared agentcfg.Registry driver conformance suite: a single set of behaviour assertions every driver must pass, so a future driver inherits the contract verbatim (the §11 conformance-suite pattern).
|
Package conformance is the shared agentcfg.Registry driver conformance suite: a single set of behaviour assertions every driver must pass, so a future driver inherits the contract verbatim (the §11 conformance-suite pattern). |
|
drivers/statestore
Package statestore implements the StateStore-backed agentcfg Registry driver — the default driver for the agent-config control plane.
|
Package statestore implements the StateStore-backed agentcfg Registry driver — the default driver for the agent-config control plane. |
|
sessionoverlay
Package sessionoverlay owns the SESSION-scoped safe-subset overlay of the agent-config control plane: the lower tier of the authorization matrix.
|
Package sessionoverlay owns the SESSION-scoped safe-subset overlay of the agent-config control plane: the lower tier of the authorization matrix. |
|
Package artifacts defines Harbor's content-addressed blob store — the mandatory routing target for any output above the heavy-output threshold (default 32 KB; RFC §6.10).
|
Package artifacts defines Harbor's content-addressed blob store — the mandatory routing target for any output above the heavy-output threshold (default 32 KB; RFC §6.10). |
|
conformancetest
Package conformancetest exposes the canonical correctness suite every artifacts.ArtifactStore driver must pass.
|
Package conformancetest exposes the canonical correctness suite every artifacts.ArtifactStore driver must pass. |
|
drivers/fs
Package fs is Harbor's filesystem ArtifactStore driver.
|
Package fs is Harbor's filesystem ArtifactStore driver. |
|
drivers/inmem
Package inmem is Harbor's V1 in-memory ArtifactStore driver.
|
Package inmem is Harbor's V1 in-memory ArtifactStore driver. |
|
drivers/postgres
Package postgres is Harbor's V1 Postgres-backed ArtifactStore driver.
|
Package postgres is Harbor's V1 Postgres-backed ArtifactStore driver. |
|
drivers/s3
Package s3 is Harbor's S3-compatible ArtifactStore driver.
|
Package s3 is Harbor's S3-compatible ArtifactStore driver. |
|
drivers/sqlite
Package sqlite is Harbor's SQLite-backed `artifacts.ArtifactStore` driver.
|
Package sqlite is Harbor's SQLite-backed `artifacts.ArtifactStore` driver. |
|
Package audit owns Harbor's deep-redaction pass.
|
Package audit owns Harbor's deep-redaction pass. |
|
drivers/noop
Package noop is a pass-through audit redactor for tests that want to bypass redaction.
|
Package noop is a pass-through audit redactor for tests that want to bypass redaction. |
|
drivers/patterns
Package patterns is Harbor's V1 audit redactor driver.
|
Package patterns is Harbor's V1 audit redactor driver. |
|
Package config defines Harbor's strongly-typed configuration surface.
|
Package config defines Harbor's strongly-typed configuration surface. |
|
Package devdraft implements the `harbor dev` draft-save scaffolding surface.
|
Package devdraft implements the `harbor dev` draft-save scaffolding surface. |
|
Package distributed defines Harbor's V1 distributed-edge contracts:
|
Package distributed defines Harbor's V1 distributed-edge contracts: |
|
a2a
Package a2a provides hand-transcribed Go shapes for every type defined in the vendored A2A v1 proto specification at `docs/specifications/a2a.proto` (commit `ae6a562d5d972f2c4b184f748bb32e1fa9aa7bf2`, 2026-04-23).
|
Package a2a provides hand-transcribed Go shapes for every type defined in the vendored A2A v1 proto specification at `docs/specifications/a2a.proto` (commit `ae6a562d5d972f2c4b184f748bb32e1fa9aa7bf2`, 2026-04-23). |
|
conformancetest
Package conformancetest exposes the canonical correctness suites every distributed driver must pass.
|
Package conformancetest exposes the canonical correctness suites every distributed driver must pass. |
|
drivers/a2a
Package a2a is Harbor's southbound A2A wire driver.
|
Package a2a is Harbor's southbound A2A wire driver. |
|
drivers/durable
Package durable is Harbor's StateStore-backed MessageBus driver.
|
Package durable is Harbor's StateStore-backed MessageBus driver. |
|
drivers/loopback
Package loopback ships Harbor's V1 in-process drivers for both `distributed.MessageBus` and `distributed.RemoteTransport`.
|
Package loopback ships Harbor's V1 in-process drivers for both `distributed.MessageBus` and `distributed.RemoteTransport`. |
|
drivers
|
|
|
prod
Package prod is the production driver aggregator — the single sanctioned home of Harbor's driver blank-import block (AGENTS.md §4.4).
|
Package prod is the production driver aggregator — the single sanctioned home of Harbor's driver blank-import block (AGENTS.md §4.4). |
|
Package embeddings owns Harbor's embedding client — the seam that turns text into vectors (RFC §6.5).
|
Package embeddings owns Harbor's embedding client — the seam that turns text into vectors (RFC §6.5). |
|
drivers/bifrost
Package bifrost is Harbor's production `embeddings.Embedder` driver, wired to the bifrost provider gateway's embedding surface.
|
Package bifrost is Harbor's production `embeddings.Embedder` driver, wired to the bifrost provider gateway's embedding surface. |
|
embeddingstest
Package embeddingstest provides a deterministic, test-grade `embeddings.Embedder` for conformance suites and integration tests that need meaningful similarity without provider traffic.
|
Package embeddingstest provides a deterministic, test-grade `embeddings.Embedder` for conformance suites and integration tests that need meaningful similarity without provider traffic. |
|
Package events owns Harbor's typed event bus surface — the single pub/sub channel every subsystem (telemetry, audit, governance, runtime, planner, tools) Publishes to and Subscribes from.
|
Package events owns Harbor's typed event bus surface — the single pub/sub channel every subsystem (telemetry, audit, governance, runtime, planner, tools) Publishes to and Subscribes from. |
|
conformancetest
Package conformancetest exposes the canonical correctness suite every `events.EventBus` driver must pass.
|
Package conformancetest exposes the canonical correctness suite every `events.EventBus` driver must pass. |
|
drivers/durable
Package durable is Harbor's StateStore-backed durable event log driver (RFC §6.13).
|
Package durable is Harbor's StateStore-backed durable event log driver (RFC §6.13). |
|
drivers/inmem
Package inmem is Harbor's V1 in-memory EventBus driver.
|
Package inmem is Harbor's V1 in-memory EventBus driver. |
|
Package governance is Harbor's policy middleware between the runtime and the LLM-edge chain.
|
Package governance is Harbor's policy middleware between the runtime and the LLM-edge chain. |
|
conformancetest
Package conformancetest exposes the canonical governance correctness suite that every supported `state.StateStore` driver must satisfy.
|
Package conformancetest exposes the canonical governance correctness suite that every supported `state.StateStore` driver must satisfy. |
|
Package identity defines Harbor's load-bearing isolation key.
|
Package identity defines Harbor's load-bearing isolation key. |
|
conformancetest
Package conformancetest exposes the canonical identity-correctness suite that every identity-aware Harbor subsystem (StateStore drivers, MemoryStore drivers, Governance, Audit, Memory) must run.
|
Package conformancetest exposes the canonical identity-correctness suite that every identity-aware Harbor subsystem (StateStore drivers, MemoryStore drivers, Governance, Audit, Memory) must run. |
|
Package llm defines Harbor's LLM-client interface and the runtime-wide invariants that guard every `Complete` call.
|
Package llm defines Harbor's LLM-client interface and the runtime-wide invariants that guard every `Complete` call. |
|
corrections
Package corrections is Harbor's provider correction layer ( — RFC §6.5).
|
Package corrections is Harbor's provider correction layer ( — RFC §6.5). |
|
credsource
Package credsource is the inference-plane credential-source seam: it answers WHERE a runtime's LLM PROVIDER API KEY comes from — the process environment (boot config, the historical default) or a coordinator-served broker the runtime PULLS from at connect + refresh.
|
Package credsource is the inference-plane credential-source seam: it answers WHERE a runtime's LLM PROVIDER API KEY comes from — the process environment (boot config, the historical default) or a coordinator-served broker the runtime PULLS from at connect + refresh. |
|
credsource/inferencebrokertest
Package inferencebrokertest ships the committed REFERENCE implementation of the inference-plane credential-pull contract: an httptest server that serves an LLM provider's API key to the broker-pull [InferenceKeySource].
|
Package inferencebrokertest ships the committed REFERENCE implementation of the inference-plane credential-pull contract: an httptest server that serves an LLM provider's API key to the broker-pull [InferenceKeySource]. |
|
drivers/bifrost
Package bifrost is Harbor's bifrost-backed LLM driver.
|
Package bifrost is Harbor's bifrost-backed LLM driver. |
|
mock
Package mock is Harbor's test-grade LLM driver.
|
Package mock is Harbor's test-grade LLM driver. |
|
output
Package output is Harbor's structured-output strategy + downgrade chain (RFC §6.5).
|
Package output is Harbor's structured-output strategy + downgrade chain (RFC §6.5). |
|
retry
Package retry is Harbor's retry-with-feedback wrapper ( RFC §6.5).
|
Package retry is Harbor's retry-with-feedback wrapper ( RFC §6.5). |
|
summarizer
Package summarizer is the home of Harbor's production LLM-backed summarisation: the memory-subsystem `memory.Summarizer` and the planner-trajectory `planner.Summariser`.
|
Package summarizer is the home of Harbor's production LLM-backed summarisation: the memory-subsystem `memory.Summarizer` and the planner-trajectory `planner.Summariser`. |
|
Package mcpconsole wires the MCP-Connections Protocol surface to its runtime-side dependencies — the MCP driver registry and the tool-side OAuth provider.
|
Package mcpconsole wires the MCP-Connections Protocol surface to its runtime-side dependencies — the MCP driver registry and the tool-side OAuth provider. |
|
Package memory owns Harbor's declared-policy, identity-scoped, pluggable memory subsystem.
|
Package memory owns Harbor's declared-policy, identity-scoped, pluggable memory subsystem. |
|
conformancetest
Package conformancetest exposes the canonical correctness suite every `memory.MemoryStore` driver must pass.
|
Package conformancetest exposes the canonical correctness suite every `memory.MemoryStore` driver must pass. |
|
drivers/inmem
Package inmem is Harbor's V1 in-memory MemoryStore driver.
|
Package inmem is Harbor's V1 in-memory MemoryStore driver. |
|
drivers/postgres
Package postgres is Harbor's Postgres-backed `memory.MemoryStore` driver.
|
Package postgres is Harbor's Postgres-backed `memory.MemoryStore` driver. |
|
drivers/sqlite
Package sqlite is Harbor's SQLite-backed `memory.MemoryStore` driver.
|
Package sqlite is Harbor's SQLite-backed `memory.MemoryStore` driver. |
|
protocol
Package protocol — additions: the strategy-trace read projection + the admin-gated mutation pair (`memory.put` / `memory.delete`).
|
Package protocol — additions: the strategy-trace read projection + the admin-gated mutation pair (`memory.put` / `memory.delete`). |
|
strategy
Package strategy holds the memory-strategy executors: the algorithmic core that any `memory.MemoryStore` driver delegates to.
|
Package strategy holds the memory-strategy executors: the algorithmic core that any `memory.MemoryStore` driver delegates to. |
|
persistence
|
|
|
sqlmigrate
Package sqlmigrate is the shared forward-only SQL migration runner for Harbor's SQLite and Postgres persistence drivers.
|
Package sqlmigrate is the shared forward-only SQL migration runner for Harbor's SQLite and Postgres persistence drivers. |
|
Attachment disposition policy.
|
Attachment disposition policy. |
|
conformance
Package conformance ships the planner conformance pack.
|
Package conformance ships the planner conformance pack. |
|
deterministic
Package deterministic ships Harbor's second concrete Planner (RFC §6.2 + RFC §11 Q-6 — the iface-validation lens that proves the `internal/planner.Planner` seam is genuinely swappable).
|
Package deterministic ships Harbor's second concrete Planner (RFC §6.2 + RFC §11 Q-6 — the iface-validation lens that proves the `internal/planner.Planner` seam is genuinely swappable). |
|
finish
Package finish ships Harbor's stub Planner — a planner that always returns Finish{Reason: Goal}.
|
Package finish ships Harbor's stub Planner — a planner that always returns Finish{Reason: Goal}. |
|
react
Package react ships Harbor's reference LLM-driven planner concrete (RFC §6.2 + RFC §3.2 — the first concrete sitting on the `internal/planner.Planner` seam).
|
Package react ships Harbor's reference LLM-driven planner concrete (RFC §6.2 + RFC §3.2 — the first concrete sitting on the `internal/planner.Planner` seam). |
|
repair
Package repair ships Harbor's reusable salvage / schema-repair / graceful-failure / multi-action-salvage ladder for planner steps (RFC §6.2).
|
Package repair ships Harbor's reusable salvage / schema-repair / graceful-failure / multi-action-salvage ladder for planner steps (RFC §6.2). |
|
trajectory
Package trajectory ships Harbor's append-only planner-execution log and the fail-loudly serialise contract that closes the predecessor's silent-context-loss bug.
|
Package trajectory ships Harbor's append-only planner-execution log and the fail-loudly serialise contract that closes the predecessor's silent-context-loss bug. |
|
Package protocol is the Harbor Protocol layer's runtime-side surface — the transport-agnostic handlers that translate a Protocol method call into a runtime action.
|
Package protocol is the Harbor Protocol layer's runtime-side surface — the transport-agnostic handlers that translate a Protocol method call into a runtime action. |
|
adminwrite
Package adminwrite holds the ONE fail-closed admin-plane write+audit posture shared by every admin-scoped Protocol write that must not leave an un-auditable mutation observably applied (CLAUDE.md §5, §7 rule 6).
|
Package adminwrite holds the ONE fail-closed admin-plane write+audit posture shared by every admin-scoped Protocol write that must not leave an un-auditable mutation observably applied (CLAUDE.md §5, §7 rule 6). |
|
auth
Package auth is the Harbor Protocol's JWT validation surface — the transport-edge cryptographic identity check that turns the wire transports' trust-based identity carriers into verified ones (RFC §5.5: "JWT, asymmetric algorithms only ...
|
Package auth is the Harbor Protocol's JWT validation surface — the transport-edge cryptographic identity check that turns the wire transports' trust-based identity carriers into verified ones (RFC §5.5: "JWT, asymmetric algorithms only ... |
|
client
Package client provides the authenticated REST/SSE Harbor Protocol client.
|
Package client provides the authenticated REST/SSE Harbor Protocol client. |
|
conformance
Package conformance is the Harbor Protocol conformance suite — the single binding pass/fail definition of "the Protocol surface works at version 0.1.0" (RFC §5 + master-plan detail block).
|
Package conformance is the Harbor Protocol conformance suite — the single binding pass/fail definition of "the Protocol surface works at version 0.1.0" (RFC §5 + master-plan detail block). |
|
errors
Package errors is the single source of truth for Harbor Protocol error codes (CLAUDE.md §8: "Error codes live in internal/protocol/errors/errors.go.
|
Package errors is the single source of truth for Harbor Protocol error codes (CLAUDE.md §8: "Error codes live in internal/protocol/errors/errors.go. |
|
methods
Package methods is the single source of truth for Harbor Protocol method names (CLAUDE.md §8: "Method names live in internal/protocol/methods/methods.go.
|
Package methods is the single source of truth for Harbor Protocol method names (CLAUDE.md §8: "Method names live in internal/protocol/methods/methods.go. |
|
projectioncheck
Package projectioncheck is the registry-gated projection-completeness gate — the mechanical close of the silent-absence class the runtime's read surfaces kept re-introducing (a read surface declares a typed, wire-visible field, ships a facet / sort / aggregate over it, and never populates it, so the operation returns FALSE ABSENCE on a fleet full of matching data).
|
Package projectioncheck is the registry-gated projection-completeness gate — the mechanical close of the silent-absence class the runtime's read surfaces kept re-introducing (a read surface declares a typed, wire-visible field, ships a facet / sort / aggregate over it, and never populates it, so the operation returns FALSE ABSENCE on a fleet full of matching data). |
|
singlesource
Package singlesource is the Harbor Protocol single-source enforcement checker (CLAUDE.md §8, §13; RFC §5).
|
Package singlesource is the Harbor Protocol single-source enforcement checker (CLAUDE.md §8, §13; RFC §5). |
|
transports
Package transports is the Harbor Protocol wire-transport seam — the binding of RFC §5.4's resolved transport choice (SSE for the event stream + REST/JSON for the control surface) onto net/http.
|
Package transports is the Harbor Protocol wire-transport seam — the binding of RFC §5.4's resolved transport choice (SSE for the event stream + REST/JSON for the control surface) onto net/http. |
|
transports/control
Package control is the Harbor Protocol REST/JSON control transport — the client→server half of the wire binding RFC §5.4 resolves to (SSE for events + REST/JSON for control).
|
Package control is the Harbor Protocol REST/JSON control transport — the client→server half of the wire binding RFC §5.4 resolves to (SSE for events + REST/JSON for control). |
|
transports/cors
Package cors is the Harbor Protocol CORS middleware — the security primitive that unlocks the multi-process Console+Runtime posture (Console on one origin attaches to a Runtime on a different origin) without weakening the browser-side enforcement contract.
|
Package cors is the Harbor Protocol CORS middleware — the security primitive that unlocks the multi-process Console+Runtime posture (Console on one origin attaches to a Runtime on a different origin) without weakening the browser-side enforcement contract. |
|
transports/stream
Package stream — addition: the admin-scoped `agent_config.*` agent-config control-plane HTTP handler.
|
Package stream — addition: the admin-scoped `agent_config.*` agent-config control-plane HTTP handler. |
|
types
Package types is the single source of truth for Harbor Protocol wire types (CLAUDE.md §8).
|
Package types is the single source of truth for Harbor Protocol wire types (CLAUDE.md §8). |
|
wiresurface
Package wiresurface computes the canonical Harbor Protocol wire-surface digest: a coarse, opaque, stable name-level fingerprint of the surface a Protocol client binds to.
|
Package wiresurface computes the canonical Harbor Protocol wire-surface digest: a coarse, opaque, stable name-level fingerprint of the surface a Protocol client binds to. |
|
runtime
|
|
|
agentcfg/projection
Package projection holds the run-start agent-config projection shared by every run-loop driver (the production dev driver and the harbortest devstack twin) and exercised directly by the control-plane integration test.
|
Package projection holds the run-start agent-config projection shared by every run-loop driver (the production dev driver and the harbortest devstack twin) and exercised directly by the control-plane integration test. |
|
agentcfg/protocol
Package protocol implements the admin-scoped `agent_config.*` Protocol methods the Console agent-config control plane consumes:
|
Package protocol implements the admin-scoped `agent_config.*` Protocol methods the Console agent-config control plane consumes: |
|
assemble
Package assemble is Harbor's assembly entry point: the ONE exported, error-returning config→stack fan-out that turns a validated *config.Config into a running runtime stack.
|
Package assemble is Harbor's assembly entry point: the ONE exported, error-returning config→stack fan-out that turns a validated *config.Config into a running runtime stack. |
|
concurrency
Package concurrency ships Harbor's runtime concurrency primitives — of the runtime kernel chain (RFC §6.1).
|
Package concurrency ships Harbor's runtime concurrency primitives — of the runtime kernel chain (RFC §6.1). |
|
dispatch
Package dispatch is the runtime's production tool-dispatch concrete — the one full `steering.ToolExecutor` implementation ( originally, as the dev binary's executor).
|
Package dispatch is the runtime's production tool-dispatch concrete — the one full `steering.ToolExecutor` implementation ( originally, as the dev binary's executor). |
|
engine
Package engine is Harbor's typed, async, queue-backed graph executor — the runtime kernel every other phase sits on.
|
Package engine is Harbor's typed, async, queue-backed graph executor — the runtime kernel every other phase sits on. |
|
flow
Package flow implements Harbor's Flow-as-Tool registration (RFC §6.1): a typed DAG of Nodes assembled into a runnable Engine via `Compose(def)`, then registered as a single Tool in the catalog via `RegisterAsTool(catalog, def, eng)`.
|
Package flow implements Harbor's Flow-as-Tool registration (RFC §6.1): a typed DAG of Nodes assembled into a runnable Engine via `Compose(def)`, then registered as a single Tool in the catalog via `RegisterAsTool(catalog, def, eng)`. |
|
flow/protocol
Package protocol implements the runtime side of the Console Flows page.
|
Package protocol implements the runtime side of the Console Flows page. |
|
governance/protocol
Package protocol implements the admin-scoped `governance.*` tenant-default override Protocol methods the Console control plane consumes:
|
Package protocol implements the admin-scoped `governance.*` tenant-default override Protocol methods the Console control plane consumes: |
|
messages
Package messages defines Harbor's wire-shaped runtime types: the Envelope every channel carries, the Headers it routes by, and the helpers (WithRunID, MergeMeta, Identity) downstream phases lean on.
|
Package messages defines Harbor's wire-shaped runtime types: the Envelope every channel carries, the Headers it routes by, and the helpers (WithRunID, MergeMeta, Identity) downstream phases lean on. |
|
notifications
Package notifications ships Harbor's `notification.*` event family — a NEW event topic on the typed event bus carrying operator-facing notifications (alerts surfaced by the Console's notification centre, the Overview page alert ribbon, and the Settings notification-routing matrix).
|
Package notifications ships Harbor's `notification.*` event family — a NEW event topic on the typed event bus carrying operator-facing notifications (alerts surfaced by the Console's notification centre, the Overview page alert ribbon, and the Settings notification-routing matrix). |
|
parallel
Package parallel ships Harbor's runtime parallel-call executor — the consumer of planner.CallParallel Decisions (RFC §6.2).
|
Package parallel ships Harbor's runtime parallel-call executor — the consumer of planner.CallParallel Decisions (RFC §6.2). |
|
pauseresume
Package pauseresume ships Harbor's ONE pause/resume primitive — the unified Coordinator that HITL approval, tool-side OAuth, A2A AUTH_REQUIRED / INPUT_REQUIRED, and operator/Console PAUSE all converge on (CLAUDE.md §7 rule 4, RFC §3.3 + §6.3).
|
Package pauseresume ships Harbor's ONE pause/resume primitive — the unified Coordinator that HITL approval, tool-side OAuth, A2A AUTH_REQUIRED / INPUT_REQUIRED, and operator/Console PAUSE all converge on (CLAUDE.md §7 rule 4, RFC §3.3 + §6.3). |
|
posture
Package posture builds the live `protocol.PostureDeps.Counters` and `protocol.PostureDeps.Metrics` seams over the real runtime subsystems.
|
Package posture builds the live `protocol.PostureDeps.Counters` and `protocol.PostureDeps.Metrics` seams over the real runtime subsystems. |
|
registry
Package registry owns Harbor's Agent Registry — the in-process, per-runtime-instance subsystem that owns the *registration identity* of agents (RFC §6.16).
|
Package registry owns Harbor's Agent Registry — the in-process, per-runtime-instance subsystem that owns the *registration identity* of agents (RFC §6.16). |
|
registry/protocol
Package protocol implements the eight `agents.*` Protocol methods the Console Agents page consumes:
|
Package protocol implements the eight `agents.*` Protocol methods the Console Agents page consumes: |
|
routers
Package routers ships Harbor's runtime routing surface — the of the runtime kernel chain (RFC §6.1).
|
Package routers ships Harbor's runtime routing surface — the of the runtime kernel chain (RFC §6.1). |
|
runctx
Input-artifact disposition observability.
|
Input-artifact disposition observability. |
|
runs/protocol
Package protocol implements the `runs.set_overrides` Protocol method the Console Playground page consumes.
|
Package protocol implements the `runs.set_overrides` Protocol method the Console Playground page consumes. |
|
serve
Package serve is the importable serve band: the config→listener composition that turns a loaded configuration into a running Harbor Protocol server.
|
Package serve is the importable serve band: the config→listener composition that turns a loaded configuration into a running Harbor Protocol server. |
|
serve/external
Package external is the production-only entry point behind the public sdk/server facade: it turns a validated configuration into a running Harbor Protocol server that an external Go binary can host, with its compiled in-process tools wrapped at the pre-policy catalog seam.
|
Package external is the production-only entry point behind the public sdk/server facade: it turns a validated configuration into a running Harbor Protocol server that an external Go binary can host, with its compiled in-process tools wrapped at the pre-policy catalog seam. |
|
steering
Package steering ships Harbor's per-run steering inbox + the nine-event control taxonomy + the Protocol-edge validation / sanitisation pass (RFC §6.3).
|
Package steering ships Harbor's per-run steering inbox + the nine-event control taxonomy + the Protocol-edge validation / sanitisation pass (RFC §6.3). |
|
Package search owns the Harbor cross-cutting search primitive — the four runtime-side per-subsystem indexes (sessions, tasks, events, artifacts) plus the `search.query` palette dispatcher that aggregates them.
|
Package search owns the Harbor cross-cutting search primitive — the four runtime-side per-subsystem indexes (sessions, tasks, events, artifacts) plus the `search.query` palette dispatcher that aggregates them. |
|
artifacts
Package artifacts implements the `search.artifacts` runtime-side index — a server-enforced search over the artifact store's catalog, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
|
Package artifacts implements the `search.artifacts` runtime-side index — a server-enforced search over the artifact store's catalog, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present. |
|
events
Package events implements the `search.events` runtime-side index — a server-enforced search over the event bus's replay ring, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
|
Package events implements the `search.events` runtime-side index — a server-enforced search over the event bus's replay ring, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present. |
|
sessions
Package sessions implements the `search.sessions` runtime-side index — a server-enforced search over session lifecycle records, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
|
Package sessions implements the `search.sessions` runtime-side index — a server-enforced search over session lifecycle records, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present. |
|
tasks
Package tasks implements the `search.tasks` runtime-side index — a server-enforced search over task lifecycle records, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present.
|
Package tasks implements the `search.tasks` runtime-side index — a server-enforced search over task lifecycle records, scoped to the caller's identity triple unless the `auth.ScopeAdmin` claim is present. |
|
approval_authorizer.go — the Protocol-side resolve authorizer.
|
approval_authorizer.go — the Protocol-side resolve authorizer. |
|
Package sessions owns Harbor's session-lifecycle subsystem.
|
Package sessions owns Harbor's session-lifecycle subsystem. |
|
protocol
Package protocol implements the `sessions.*` Protocol methods the Console Sessions page consumes:
|
Package protocol implements the `sessions.*` Protocol methods the Console Sessions page consumes: |
|
Package skills owns Harbor's token-savvy, DB-backed, identity- scoped skill subsystem (RFC §6.7).
|
Package skills owns Harbor's token-savvy, DB-backed, identity- scoped skill subsystem (RFC §6.7). |
|
capfilter
Package capfilter holds the primitive capability-filter and tool-name-scrub logic shared by the skills planner tools (internal/skills/tools) and the virtual directory (internal/skills).
|
Package capfilter holds the primitive capability-filter and tool-name-scrub logic shared by the skills planner tools (internal/skills/tools) and the virtual directory (internal/skills). |
|
conformancetest
Package conformancetest is the shared `SkillStore` conformance harness.
|
Package conformancetest is the shared `SkillStore` conformance harness. |
|
drivers/localdb
Package localdb is Harbor's SQLite-backed `skills.SkillStore` driver.
|
Package localdb is Harbor's SQLite-backed `skills.SkillStore` driver. |
|
drivers/postgres
Package postgres is Harbor's Postgres-backed `skills.SkillStore` driver.
|
Package postgres is Harbor's Postgres-backed `skills.SkillStore` driver. |
|
generator
Package generator owns Harbor's in-runtime skill generator with persistence (RFC §6.7).
|
Package generator owns Harbor's in-runtime skill generator with persistence (RFC §6.7). |
|
importer
Package importer ships Harbor's Skills.md importer — the predecessor's gap-closer (RFC §6.7).
|
Package importer ships Harbor's Skills.md importer — the predecessor's gap-closer (RFC §6.7). |
|
tools
Package tools registers Harbor's planner-facing skill tools (`skill_search`, `skill_get`, `skill_list`) into the `tools.ToolCatalog`.
|
Package tools registers Harbor's planner-facing skill tools (`skill_search`, `skill_get`, `skill_list`) into the `tools.ToolCatalog`. |
|
Package state owns Harbor's persistence floor: the single mandatory `StateStore` interface that every persistence-shaped subsystem (sessions, tasks, governance accumulators, planner checkpoints, memory snapshots, steering events) saves through.
|
Package state owns Harbor's persistence floor: the single mandatory `StateStore` interface that every persistence-shaped subsystem (sessions, tasks, governance accumulators, planner checkpoints, memory snapshots, steering events) saves through. |
|
conformancetest
Package conformancetest exposes the canonical correctness suite every state.StateStore driver must pass.
|
Package conformancetest exposes the canonical correctness suite every state.StateStore driver must pass. |
|
drivers/inmem
Package inmem is Harbor's V1 in-memory StateStore driver.
|
Package inmem is Harbor's V1 in-memory StateStore driver. |
|
drivers/postgres
Package postgres is Harbor's V1 Postgres-backed StateStore driver.
|
Package postgres is Harbor's V1 Postgres-backed StateStore driver. |
|
drivers/sqlite
Package sqlite is Harbor's SQLite-backed `state.StateStore` driver.
|
Package sqlite is Harbor's SQLite-backed `state.StateStore` driver. |
|
Package tasks owns Harbor's unified task surface: the `TaskRegistry` interface every planner / runtime / steering caller uses to spawn, list, cancel, and prioritise both foreground runs and background tasks under one `TaskID` namespace.
|
Package tasks owns Harbor's unified task surface: the `TaskRegistry` interface every planner / runtime / steering caller uses to spawn, list, cancel, and prioritise both foreground runs and background tasks under one `TaskID` namespace. |
|
conformancetest
Package conformancetest exposes the canonical correctness suite every tasks.TaskRegistry driver must pass.
|
Package conformancetest exposes the canonical correctness suite every tasks.TaskRegistry driver must pass. |
|
drivers/durable
Package durable is Harbor's StateStore-backed TaskRegistry driver.
|
Package durable is Harbor's StateStore-backed TaskRegistry driver. |
|
drivers/inprocess
Package inprocess is Harbor's default in-process TaskRegistry driver.
|
Package inprocess is Harbor's default in-process TaskRegistry driver. |
|
engine
Package engine holds Harbor's shared TaskRegistry state machine: the task/group/patch lifecycle, idempotency dedup, cascade-cancel, group governance (seal/resolve/fail-fast), retain-turn waiters, and WatchGroup fan-out.
|
Package engine holds Harbor's shared TaskRegistry state machine: the task/group/patch lifecycle, idempotency dedup, cascade-cancel, group governance (seal/resolve/fail-fast), retain-turn waiters, and WatchGroup fan-out. |
|
protocol
Package protocol implements the two `tasks.*` read methods the Console Tasks page consumes:
|
Package protocol implements the two `tasks.*` read methods the Console Tasks page consumes: |
|
Package telemetry owns Harbor's canonical structured logger.
|
Package telemetry owns Harbor's canonical structured logger. |
|
cardinalitylint
Package cardinalitylint is the Harbor metrics-cardinality enforcement checker (RFC §6.14; the "metrics cardinality footgun").
|
Package cardinalitylint is the Harbor metrics-cardinality enforcement checker (RFC §6.14; the "metrics cardinality footgun"). |
|
drivers/noop
Package noop is the default telemetry.SpanExporter driver — it drops every span without error.
|
Package noop is the default telemetry.SpanExporter driver — it drops every span without error. |
|
drivers/otlp
Package otlp is the OTLP/gRPC telemetry.SpanExporter driver — it ships spans to an external OpenTelemetry collector (Jaeger, an OTLP collector, an observability vendor's endpoint).
|
Package otlp is the OTLP/gRPC telemetry.SpanExporter driver — it ships spans to an external OpenTelemetry collector (Jaeger, an OTLP collector, an observability vendor's endpoint). |
|
drivers/otlpmetric
Package otlpmetric is the OTLP/gRPC telemetry.MetricExporter driver — it ships metrics to an external OpenTelemetry collector (an OTLP collector, an observability vendor's endpoint).
|
Package otlpmetric is the OTLP/gRPC telemetry.MetricExporter driver — it ships metrics to an external OpenTelemetry collector (an OTLP collector, an observability vendor's endpoint). |
|
drivers/prometheus
Package prometheus is the built-in Prometheus telemetry.MetricExporter driver — it exposes Harbor's metrics on a pull /metrics endpoint in the Prometheus text exposition format.
|
Package prometheus is the built-in Prometheus telemetry.MetricExporter driver — it exposes Harbor's metrics on a pull /metrics endpoint in the Prometheus text exposition format. |
|
eventbus
Package eventbus is the adapter that connects the telemetry.BusEmitter seam to the events.EventBus.
|
Package eventbus is the adapter that connects the telemetry.BusEmitter seam to the events.EventBus. |
|
agent_provenance.go — the ctx-carried acting-agent provenance seam.
|
agent_provenance.go — the ctx-carried acting-agent provenance seam. |
|
annotate
Package annotate assembles the production per-tool Annotator the Tools catalog projector reads OAuth / approval / metrics / content-stats / last-used / display-mode annotations through.
|
Package annotate assembles the production per-tool Annotator the Tools catalog projector reads OAuth / approval / metrics / content-stats / last-used / display-mode annotations through. |
|
approval
Package approval ships Harbor's tool-side synchronous approval-gate subsystem — the second consumer of the unified pause/resume primitive, layered on the same Coordinator + bus + steering inbox seams the tool-side OAuth work built.
|
Package approval ships Harbor's tool-side synchronous approval-gate subsystem — the second consumer of the unified pause/resume primitive, layered on the same Coordinator + bus + steering inbox seams the tool-side OAuth work built. |
|
auth
Package auth ships Harbor's tool-side OAuth subsystem — the TokenStore + OAuthProvider seam every HTTP / MCP / A2A southbound driver consults when a tool call needs a bearer token.
|
Package auth ships Harbor's tool-side OAuth subsystem — the TokenStore + OAuthProvider seam every HTTP / MCP / A2A southbound driver consults when a tool call needs a bearer token. |
|
auth/conformancetest
Package conformancetest exposes the shared TokenStore + Sealer conformance suite Harbor ships.
|
Package conformancetest exposes the shared TokenStore + Sealer conformance suite Harbor ships. |
|
auth/credsource
Package credsource is the §4.4 seam through which an OAuth provider's OWN client credential (`client_id` / `client_secret`) resolves.
|
Package credsource is the §4.4 seam through which an OAuth provider's OWN client credential (`client_id` / `client_secret`) resolves. |
|
auth/credsource/credsourcetest
Package credsourcetest ships the committed REFERENCE implementation of the coordinator credential-fetch contract: an httptest server that serves an OAuth provider's client credential to the `remote` credential source.
|
Package credsourcetest ships the committed REFERENCE implementation of the coordinator credential-fetch contract: an httptest server that serves an OAuth provider's client credential to the `remote` credential source. |
|
auth/credsource/drivers/env
Package env ships the default credential source: the OAuth provider's client credential is read from the process environment ONCE at boot.
|
Package env ships the default credential source: the OAuth provider's client credential is read from the process environment ONCE at boot. |
|
auth/credsource/drivers/remote
Package remote ships the coordinator-served credential source: the runtime PULLS an OAuth provider's client credential (`client_id` / `client_secret`) from an operator-configured endpoint at first need, authenticated by the runtime's own service token.
|
Package remote ships the coordinator-served credential source: the runtime PULLS an OAuth provider's client credential (`client_id` / `client_secret`) from an operator-configured endpoint at first need, authenticated by the runtime's own service token. |
|
auth/drivers/oauth2
Package oauth2 ships Harbor's V1 default OAuth provider driver (closes issue #116 and the deferred construction gap).
|
Package oauth2 ships Harbor's V1 default OAuth provider driver (closes issue #116 and the deferred construction gap). |
|
auth/drivers/tokenexchange
Package tokenexchange ships Harbor's pull-based, non-interactive external-credential acquisition strategy: a driver on the OAuth flow-strategy registry that obtains a downstream tool credential (a user's Microsoft 365 token, a Google Workspace token — foreign-IdP tokens used to call third-party tools) from an operator-configured external credential broker (a fleet orchestrator, an enterprise token vault, an STS) via an RFC-8693-shaped token exchange, instead of Harbor's interactive authorization-code flow.
|
Package tokenexchange ships Harbor's pull-based, non-interactive external-credential acquisition strategy: a driver on the OAuth flow-strategy registry that obtains a downstream tool credential (a user's Microsoft 365 token, a Google Workspace token — foreign-IdP tokens used to call third-party tools) from an operator-configured external credential broker (a fleet orchestrator, an enterprise token vault, an STS) via an RFC-8693-shaped token exchange, instead of Harbor's interactive authorization-code flow. |
|
builtin
Package builtin ships the small set of opt-in tools that travel with the Harbor binary.
|
Package builtin ships the small set of opt-in tools that travel with the Harbor binary. |
|
catalog
Package catalog ships Harbor's operator-config-driven tool-catalog wiring.
|
Package catalog ships Harbor's operator-config-driven tool-catalog wiring. |
|
conformancetest
Package conformancetest is Harbor's shared conformance suite for any ToolCatalog implementation.
|
Package conformancetest is Harbor's shared conformance suite for any ToolCatalog implementation. |
|
drivers/a2a
Package a2a is Harbor's southbound A2A integration with the tool catalog.
|
Package a2a is Harbor's southbound A2A integration with the tool catalog. |
|
drivers/http
Package http is Harbor's HTTP transport driver for the unified tool catalog.
|
Package http is Harbor's HTTP transport driver for the unified tool catalog. |
|
drivers/inproc
Package inproc is Harbor's in-process tool driver.
|
Package inproc is Harbor's in-process tool driver. |
|
drivers/mcp
attach.go — the exported boot-time MCP server attachment helper (absorbs cmd/harbor's attachDevMCPServer from INCLUDING the config→ToolPolicy projection that the devstack mirror had silently dropped).
|
attach.go — the exported boot-time MCP server attachment helper (absorbs cmd/harbor's attachDevMCPServer from INCLUDING the config→ToolPolicy projection that the devstack mirror had silently dropped). |
|
drivers/searchcache
Package searchcache is Harbor's SQLite FTS5-backed tool search cache.
|
Package searchcache is Harbor's SQLite FTS5-backed tool search cache. |
|
protocol
Package protocol implements the seven `tools.*` Protocol methods the Console Tools page consumes:
|
Package protocol implements the seven `tools.*` Protocol methods the Console Tools page consumes: |
|
schema
Package schema is Harbor's neutral Go-type -> JSON-Schema derivation home.
|
Package schema is Harbor's neutral Go-type -> JSON-Schema derivation home. |
|
tui
|
|
|
app
Package app implements Harbor's deterministic terminal shell.
|
Package app implements Harbor's deterministic terminal shell. |
|
artifacts
Package artifacts derives safe terminal artifact metadata and preview posture.
|
Package artifacts derives safe terminal artifact metadata and preview posture. |
|
composer
Package composer implements the TUI's local editor-quality composer model.
|
Package composer implements the TUI's local editor-quality composer model. |
|
entry
Package entry is the shared TUI attach entry point consumed by both `harbor tui --attach` (cmd_tui.go) and the public `sdk/tui.Run` facade.
|
Package entry is the shared TUI attach entry point consumed by both `harbor tui --attach` (cmd_tui.go) and the public `sdk/tui.Run` facade. |
|
events
Package events derives retained/live event diagnostics from Protocol values.
|
Package events derives retained/live event diagnostics from Protocol values. |
|
interventions
Package interventions implements the PauseToken-correlated TUI intervention inbox.
|
Package interventions implements the PauseToken-correlated TUI intervention inbox. |
|
markdown
Package markdown renders a lenient, streaming-stable subset of Markdown to styled terminal lines using Harbor's semantic theme tokens.
|
Package markdown renders a lenient, streaming-stable subset of Markdown to styled terminal lines using Harbor's semantic theme tokens. |
|
posture
Package posture derives Runtime health and diagnostics from Protocol values.
|
Package posture derives Runtime health and diagnostics from Protocol values. |
|
projection
Package projection reduces Harbor Protocol snapshots and events into a rendering-independent conversation projection.
|
Package projection reduces Harbor Protocol snapshots and events into a rendering-independent conversation projection. |
|
renderers
Package renderers provides immutable safe renderer registries for TUI data.
|
Package renderers provides immutable safe renderer registries for TUI data. |
|
sessionpicker
Package sessionpicker implements generation-fenced session selection.
|
Package sessionpicker implements generation-fenced session selection. |
|
surface
Package surface defines honest loading and availability state for TUI views.
|
Package surface defines honest loading and availability state for TUI views. |
|
tasks
Package tasks derives terminal task inspection state from Protocol values.
|
Package tasks derives terminal task inspection state from Protocol values. |
|
tools
Package tools derives terminal tool inspection state from Protocol values.
|
Package tools derives terminal tool inspection state from Protocol values. |
|
ui
Package ui defines Harbor's terminal design tokens and geometry primitives.
|
Package ui defines Harbor's terminal design tokens and geometry primitives. |
Click to show internal directories.
Click to hide internal directories.