2026-01-14 23:29:18 +08:00
from pydantic import BaseModel , ConfigDict , Field
class VolumeMountConfig ( BaseModel ) :
""" Configuration for a volume mount. """
host_path : str = Field ( . . . , description = " Path on the host machine " )
container_path : str = Field ( . . . , description = " Path inside the container " )
read_only : bool = Field ( default = False , description = " Whether the mount is read-only " )
2026-01-14 07:15:58 +08:00
class SandboxConfig ( BaseModel ) :
2026-01-14 23:29:18 +08:00
""" Config section for a sandbox.
Common options :
use : Class path of the sandbox provider ( required )
AioSandboxProvider specific options :
image : Docker image to use ( default : enterprise - public - cn - beijing . cr . volces . com / vefaas - public / all - in - one - sandbox : latest )
port : Base port for sandbox containers ( default : 8080 )
2026-03-11 10:03:01 +08:00
replicas : Maximum number of concurrent sandbox containers ( default : 3 ) . When the limit is reached the least - recently - used sandbox is evicted to make room .
2026-01-14 23:29:18 +08:00
container_prefix : Prefix for container names ( default : deer - flow - sandbox )
2026-01-30 21:58:43 +08:00
idle_timeout : Idle timeout in seconds before sandbox is released ( default : 600 = 10 minutes ) . Set to 0 to disable .
2026-01-14 23:29:18 +08:00
mounts : List of volume mounts to share directories with the container
2026-01-24 22:33:29 +08:00
environment : Environment variables to inject into the container ( values starting with $ are resolved from host env )
2026-01-14 23:29:18 +08:00
"""
2026-01-14 07:15:58 +08:00
use : str = Field (
. . . ,
refactor: split backend into harness (deerflow.*) and app (app.*) (#1131)
* refactor: extract shared utils to break harness→app cross-layer imports
Move _validate_skill_frontmatter to src/skills/validation.py and
CONVERTIBLE_EXTENSIONS + convert_file_to_markdown to src/utils/file_conversion.py.
This eliminates the two reverse dependencies from client.py (harness layer)
into gateway/routers/ (app layer), preparing for the harness/app package split.
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
* refactor: split backend/src into harness (deerflow.*) and app (app.*)
Physically split the monolithic backend/src/ package into two layers:
- **Harness** (`packages/harness/deerflow/`): publishable agent framework
package with import prefix `deerflow.*`. Contains agents, sandbox, tools,
models, MCP, skills, config, and all core infrastructure.
- **App** (`app/`): unpublished application code with import prefix `app.*`.
Contains gateway (FastAPI REST API) and channels (IM integrations).
Key changes:
- Move 13 harness modules to packages/harness/deerflow/ via git mv
- Move gateway + channels to app/ via git mv
- Rename all imports: src.* → deerflow.* (harness) / app.* (app layer)
- Set up uv workspace with deerflow-harness as workspace member
- Update langgraph.json, config.example.yaml, all scripts, Docker files
- Add build-system (hatchling) to harness pyproject.toml
- Add PYTHONPATH=. to gateway startup commands for app.* resolution
- Update ruff.toml with known-first-party for import sorting
- Update all documentation to reflect new directory structure
Boundary rule enforced: harness code never imports from app.
All 429 tests pass. Lint clean.
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
* chore: add harness→app boundary check test and update docs
Add test_harness_boundary.py that scans all Python files in
packages/harness/deerflow/ and fails if any `from app.*` or
`import app.*` statement is found. This enforces the architectural
rule that the harness layer never depends on the app layer.
Update CLAUDE.md to document the harness/app split architecture,
import conventions, and the boundary enforcement test.
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
* feat: add config versioning with auto-upgrade on startup
When config.example.yaml schema changes, developers' local config.yaml
files can silently become outdated. This adds a config_version field and
auto-upgrade mechanism so breaking changes (like src.* → deerflow.*
renames) are applied automatically before services start.
- Add config_version: 1 to config.example.yaml
- Add startup version check warning in AppConfig.from_file()
- Add scripts/config-upgrade.sh with migration registry for value replacements
- Add `make config-upgrade` target
- Auto-run config-upgrade in serve.sh and start-daemon.sh before starting services
- Add config error hints in service failure messages
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
* fix comments
* fix: update src.* import in test_sandbox_tools_security to deerflow.*
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
* fix: handle empty config and search parent dirs for config.example.yaml
Address Copilot review comments on PR #1131:
- Guard against yaml.safe_load() returning None for empty config files
- Search parent directories for config.example.yaml instead of only
looking next to config.yaml, fixing detection in common setups
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>
* fix: correct skills root path depth and config_version type coercion
- loader.py: fix get_skills_root_path() to use 5 parent levels (was 3)
after harness split, file lives at packages/harness/deerflow/skills/
so parent×3 resolved to backend/packages/harness/ instead of backend/
- app_config.py: coerce config_version to int() before comparison in
_check_config_version() to prevent TypeError when YAML stores value
as string (e.g. config_version: "1")
- tests: add regression tests for both fixes
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
* fix: update test imports from src.* to deerflow.*/app.* after harness refactor
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>
---------
Co-authored-by: Claude Opus 4.6 <noreply@anthropic.com>
2026-03-14 22:55:52 +08:00
description = " Class path of the sandbox provider (e.g. deerflow.sandbox.local:LocalSandboxProvider) " ,
2026-01-14 23:29:18 +08:00
)
image : str | None = Field (
default = None ,
description = " Docker image to use for the sandbox container " ,
2026-01-14 07:15:58 +08:00
)
2026-01-14 23:29:18 +08:00
port : int | None = Field (
default = None ,
description = " Base port for sandbox containers " ,
)
2026-03-11 10:03:01 +08:00
replicas : int | None = Field (
2026-01-14 23:29:18 +08:00
default = None ,
2026-03-11 10:03:01 +08:00
description = " Maximum number of concurrent sandbox containers (default: 3). When the limit is reached the least-recently-used sandbox is evicted to make room. " ,
2026-01-14 23:29:18 +08:00
)
container_prefix : str | None = Field (
default = None ,
description = " Prefix for container names " ,
)
2026-01-30 21:58:43 +08:00
idle_timeout : int | None = Field (
default = None ,
description = " Idle timeout in seconds before sandbox is released (default: 600 = 10 minutes). Set to 0 to disable. " ,
)
2026-01-14 23:29:18 +08:00
mounts : list [ VolumeMountConfig ] = Field (
default_factory = list ,
description = " List of volume mounts to share directories between host and container " ,
)
2026-01-24 22:33:29 +08:00
environment : dict [ str , str ] = Field (
default_factory = dict ,
2026-01-29 08:23:50 +08:00
description = " Environment variables to inject into the sandbox container. Values starting with $ will be resolved from host environment variables. " ,
2026-01-24 22:33:29 +08:00
)
2026-01-14 23:29:18 +08:00
model_config = ConfigDict ( extra = " allow " )