mirror of
https://github.com/deepseek-ai/deepseek-harness.git
synced 2026-08-29 04:26:38 +00:00
Address the two standing review suggestions in this layer rather than deferring them to PR #4: - Extend tests/protocol-mirror.e2e.ts to read each py/protocol.py TypedDict's required/optional key set and assert it against the wire field names src/protocol.ts declares (global included, via functional TypedDict). The round-12 class of drift — a renamed/dropped field, or one side making a field optional the other requires — now fails a test instead of relying on review. Field types remain review-guarded (no mechanical TS/Python equivalent). - Drop the forward references to PR #4's internal mechanisms from this layer's prose: the "256 MiB frame ceiling" figure and the "(index.ts)" fd-3 pinning citation become an abstract "host-side inbound frame-size cap" so the JSDoc, spec, README, and Agent Note describe only what this layer owns. Update both README sides and the Agent Note (both languages) to state the mirror is now executable, and re-record their i18n pairings.
3.8 KiB
3.8 KiB
@deepseek-ai/dsh-code-runtime-python
English | 中文
@deepseek-ai/dsh-code-runtime seam 的 CPython 子进程实现。与 @deepseek-ai/dsh-code-runtime-worker 配套;以全新的 python3 子进程取代 Node worker 线程,让模型代码从 TypeScript 换成 Python。
本包分多个 code-runtime-python PR 逐层搭建。本层交付 wire protocol;在其之上驱动 python3 -I 进程的 PythonCodeRuntime 实现随后落地。
Wire protocol
host 与 CPython 子进程在子进程的 fd 3 上交换一个无版本号的 JSON-lines 协议——每行一个 JSON 对象,让 stdout/stderr 空出给程序自己的输出。src/protocol.ts 是 host 侧;py/protocol.py 在 Python 侧镜像其帧词汇与共享的截断标记文本。
- fd 3,而非 stdout —— Node 通过
stdio: ['pipe','pipe','pipe','pipe']按位置钉住通道;Python bootstrap 读取相同的PROTOCOL_FD常量。JSON-lines 帧。 - host 把每个入站帧当作敌意输入 —— 模型代码对 fd 3 有完全访问权、可通过它发送任意内容,所以
validateChildFrame在 host 读取前对每个帧做形状校验并重建:伪造的额外字段绝不随行,非数字的 call id 绝不会被回显进 reply,垃圾降为undefined被丢弃,而不是在 host 的 message handler 里抛错。Python 侧信任 host 回复(host 不受模型控制)。 - lossless-JSON 穿越 —— 完成值与 binding 参数以精确 JSON 穿越。
encodeJsonPlain无递归地序列化一个JSON.parse产出的值,使低于字节预算的深层值能完整穿越,而不是死在JSON.stringify的栈限制上;checkDoneValue在一次遍历中同时计量伪造完成值的字节长度与数字无损性,在它本会新增的增量工作之前就拒绝超预算 payload(转义串副本、入栈子节点、逐 key 的JSON.stringify)——帧自身的宽度已被上游JSON.parse支付、由 host 的 fd-3 接收缓冲封顶,并非在此重新约束;hasUnsafeIntegerToken读取原始帧文本,捕获JSON.parse会静默舍入的整数 token;hasNonLosslessNumber拒绝无字节上限的call.args中的非有限数或负零。超出安全范围的整数型 double 通过BigInt数字序列化,穿越的是精确整数而非String()的舍入形式。 - 共享截断标记 ——
logTruncationMarker(maxBytes)在两侧产出逐字节一致的文本,使被截断的日志运行无论从哪侧触达上限都读起来一致。log帧的truncated标志把子进程 ledger 自身的标记与程序输出区分开。
Model Experience
经由 dsh-tools 里的 Code Mode 间接生效:Code Mode 把本后端的精确完成值(放得下时)或一个明确的 invalid-output / output-limit 失败,连同精确的 [dsh-code-runtime-python] log capture truncated at <maxLogBytes> bytes 日志标记,渲染进一个保留的 run_code 结果。
KV Cache effect
无直接失效;具名消费者拥有任何请求前缀的变更。
Known Limitations and Deferred Work
- 跨语言 guard 覆盖运行时执行的面与帧字段形状 ——
tests/protocol-mirror.e2e.ts启动一个真实python3,对照src/protocol.ts断言PROTOCOL_FD/ 日志截断标记文本,以及py/protocol.py中每个TypedDict的必填/可选 wire 字段集。它不比较字段的类型(例如cpuSeconds两侧都是int):跨 TypeScript 与 Python 比较类型声明在此无机械等价物,故类型级漂移仍由 review 加后端真子进程套件捕获,而非本包的测试。 PythonCodeRuntime实现与 Python 侧 JSON codec 不在本层 —— 它们在基于本分支的 backend-core PR 中交付;在那之前src/index.ts只 re-export 协议词汇。