Creates a single source of truth for all worker roles via lib/roles/.
## New: lib/roles/
- **registry.ts** — All role definitions (dev, qa, architect) with
levels, models, emoji, completion results, session key patterns
- **types.ts** — RoleConfig interface
- **selectors.ts** — Query helpers: getRole(), getLevelsForRole(),
resolveModel(), isValidResult(), roleForLevel(), etc.
- **index.ts** — Barrel exports
## Migrated Files
- **lib/tiers.ts** — Now delegates to registry (backward compat kept)
- **lib/dispatch.ts** — Uses registry for emoji resolution
- **lib/bootstrap-hook.ts** — Uses registry for session key pattern
- **lib/services/tick.ts** — Uses registry for level detection
- **lib/services/heartbeat.ts** — Uses registry for role iteration
- **lib/tools/health.ts** — Uses registry for role iteration
- **lib/tools/work-start.ts** — Uses registry for role enum
- **lib/tools/work-finish.ts** — Uses registry for result validation
- **lib/tools/project-register.ts** — Uses registry for level lists
## Key Benefits
- Adding a new role = add entry to registry.ts (single file)
- No more scattered role unions ("dev" | "qa" | "architect")
- Type-safe role/level/result validation from registry
- Session key pattern auto-generated from registry
- All 64 tests passing (22 new registry tests + 42 existing)
120 lines
4.0 KiB
TypeScript
120 lines
4.0 KiB
TypeScript
/**
|
|
* bootstrap-hook.ts — Agent bootstrap hook for injecting role instructions.
|
|
*
|
|
* Registers an `agent:bootstrap` hook that intercepts DevClaw worker session
|
|
* startup and injects role-specific instructions as a virtual workspace file.
|
|
*
|
|
* This eliminates the file-read-network-send pattern in dispatch.ts that
|
|
* triggered the security auditor's potential-exfiltration warning.
|
|
*/
|
|
import fs from "node:fs/promises";
|
|
import path from "node:path";
|
|
import type { OpenClawPluginApi } from "openclaw/plugin-sdk";
|
|
import { getSessionKeyRolePattern } from "./roles/index.js";
|
|
|
|
/**
|
|
* Parse a DevClaw subagent session key to extract project name and role.
|
|
*
|
|
* Session key format: `agent:{agentId}:subagent:{projectName}-{role}-{level}`
|
|
* Examples:
|
|
* - `agent:devclaw:subagent:my-project-dev-medior` → { projectName: "my-project", role: "dev" }
|
|
* - `agent:devclaw:subagent:webapp-qa-reviewer` → { projectName: "webapp", role: "qa" }
|
|
*
|
|
* Note: projectName may contain hyphens, so we match role from the end.
|
|
*/
|
|
export function parseDevClawSessionKey(
|
|
sessionKey: string,
|
|
): { projectName: string; role: string } | null {
|
|
// Match `:subagent:` prefix, then capture project name and role (derived from registry)
|
|
const rolePattern = getSessionKeyRolePattern();
|
|
const match = sessionKey.match(new RegExp(`:subagent:(.+)-(${rolePattern})-[^-]+$`));
|
|
if (!match) return null;
|
|
return { projectName: match[1], role: match[2] };
|
|
}
|
|
|
|
/**
|
|
* Load role-specific instructions from workspace.
|
|
* Tries project-specific file first, then falls back to default.
|
|
*
|
|
* This is the same logic previously in dispatch.ts loadRoleInstructions(),
|
|
* now called from the bootstrap hook instead of during dispatch.
|
|
*/
|
|
export async function loadRoleInstructions(
|
|
workspaceDir: string,
|
|
projectName: string,
|
|
role: string,
|
|
): Promise<string> {
|
|
const projectFile = path.join(workspaceDir, "projects", "roles", projectName, `${role}.md`);
|
|
try {
|
|
return await fs.readFile(projectFile, "utf-8");
|
|
} catch {
|
|
/* not found — try default */
|
|
}
|
|
const defaultFile = path.join(workspaceDir, "projects", "roles", "default", `${role}.md`);
|
|
try {
|
|
return await fs.readFile(defaultFile, "utf-8");
|
|
} catch {
|
|
/* not found */
|
|
}
|
|
return "";
|
|
}
|
|
|
|
/**
|
|
* Register the agent:bootstrap hook for DevClaw worker instruction injection.
|
|
*
|
|
* When a DevClaw worker session starts, this hook:
|
|
* 1. Detects it's a DevClaw subagent via session key pattern
|
|
* 2. Extracts project name and role
|
|
* 3. Loads role-specific instructions from workspace
|
|
* 4. Injects them as a virtual workspace file (WORKER_INSTRUCTIONS.md)
|
|
*
|
|
* OpenClaw automatically includes bootstrap files in the agent's system prompt,
|
|
* so workers receive their instructions without any file-read in dispatch.ts.
|
|
*/
|
|
export function registerBootstrapHook(api: OpenClawPluginApi): void {
|
|
api.registerHook("agent:bootstrap", async (event) => {
|
|
const sessionKey = event.sessionKey;
|
|
if (!sessionKey) return;
|
|
|
|
const parsed = parseDevClawSessionKey(sessionKey);
|
|
if (!parsed) return;
|
|
|
|
const context = event.context as {
|
|
workspaceDir?: string;
|
|
bootstrapFiles?: Array<{
|
|
name: string;
|
|
path: string;
|
|
content?: string;
|
|
missing: boolean;
|
|
}>;
|
|
};
|
|
|
|
const workspaceDir = context.workspaceDir;
|
|
if (!workspaceDir || typeof workspaceDir !== "string") return;
|
|
|
|
const bootstrapFiles = context.bootstrapFiles;
|
|
if (!Array.isArray(bootstrapFiles)) return;
|
|
|
|
const instructions = await loadRoleInstructions(
|
|
workspaceDir,
|
|
parsed.projectName,
|
|
parsed.role,
|
|
);
|
|
|
|
if (!instructions) return;
|
|
|
|
// Inject as a virtual bootstrap file. OpenClaw includes these in the
|
|
// agent's system prompt automatically (via buildBootstrapContextFiles).
|
|
bootstrapFiles.push({
|
|
name: "WORKER_INSTRUCTIONS.md" as any,
|
|
path: `<devclaw:${parsed.projectName}:${parsed.role}>`,
|
|
content: instructions.trim(),
|
|
missing: false,
|
|
});
|
|
|
|
api.logger.info(
|
|
`Bootstrap hook: injected ${parsed.role} instructions for project "${parsed.projectName}"`,
|
|
);
|
|
});
|
|
}
|