Some checks failed
ClawSweeper Dispatch / dispatch (push) Has been cancelled
CodeQL / Security High (actions) (push) Has been cancelled
CodeQL / Security High (channel-runtime-boundary) (push) Has been cancelled
CodeQL / Security High (core-auth-secrets) (push) Has been cancelled
CodeQL / Security High (mcp-process-tool-boundary) (push) Has been cancelled
CodeQL / Security High (network-ssrf-boundary) (push) Has been cancelled
CodeQL / Security High (plugin-trust-boundary) (push) Has been cancelled
CodeQL / Security High (process-exec-boundary) (push) Has been cancelled
Docs Sync Publish Repo / sync-publish-repo (push) Has been cancelled
Docs / docs (push) Has been cancelled
OpenClaw Stable Main Closeout / Resolve stable release closeout inputs (push) Has been cancelled
OpenClaw Stable Main Closeout / Verify stable main closeout (push) Has been cancelled
Workflow Sanity / no-tabs (push) Has been cancelled
Workflow Sanity / actionlint (push) Has been cancelled
Workflow Sanity / generated-doc-baselines (push) Has been cancelled
CI / runner-admission (push) Has been cancelled
CI / preflight (push) Has been cancelled
CI / security-fast (push) Has been cancelled
CI / pnpm-store-warmup (push) Has been cancelled
CI / build-artifacts (push) Has been cancelled
CI / native-i18n (push) Has been cancelled
CI / ${{ matrix.check_name }} (push) Has been cancelled
CI / ${{ matrix.checkName }} (push) Has been cancelled
CI / checks-node-compat-node22 (push) Has been cancelled
CI / check-bundled-channel-config-metadata (push) Has been cancelled
CI / check-dependencies (push) Has been cancelled
CI / check-guards (push) Has been cancelled
CI / check-lint (push) Has been cancelled
CI / check-prod-types (push) Has been cancelled
CI / check-shrinkwrap (push) Has been cancelled
CI / check-test-types (push) Has been cancelled
CI / check-additional-boundaries-a (push) Has been cancelled
CI / check-additional-boundaries-bcd (push) Has been cancelled
CI / check-additional-extension-bundled (push) Has been cancelled
CI / check-additional-extension-channels (push) Has been cancelled
CI / check-additional-extension-package-boundary (push) Has been cancelled
CI / check-additional-runtime-topology-architecture (push) Has been cancelled
CI / check-session-accessor-boundary (push) Has been cancelled
CI / check-session-transcript-reader-boundary (push) Has been cancelled
CI / check-docs (push) Has been cancelled
CI / skills-python (push) Has been cancelled
CI / macos-swift (push) Has been cancelled
CI / ios-build (push) Has been cancelled
CI / ci-timings-summary (push) Has been cancelled
Native App Locale Refresh / Refresh native fa (push) Has been cancelled
Native App Locale Refresh / Refresh native fr (push) Has been cancelled
Native App Locale Refresh / Refresh native hi (push) Has been cancelled
Native App Locale Refresh / Refresh native id (push) Has been cancelled
Native App Locale Refresh / Refresh native it (push) Has been cancelled
Native App Locale Refresh / Refresh native ja-JP (push) Has been cancelled
Control UI Locale Refresh / plan (push) Has been cancelled
Control UI Locale Refresh / Refresh ${{ matrix.locale }} (push) Has been cancelled
Control UI Locale Refresh / Commit control UI locale refresh (push) Has been cancelled
Live Media Runner Image / Build live media runner image (push) Has been cancelled
Native App Locale Refresh / Refresh native ar (push) Has been cancelled
Native App Locale Refresh / Refresh native de (push) Has been cancelled
Native App Locale Refresh / Refresh native es (push) Has been cancelled
Native App Locale Refresh / Refresh native ko (push) Has been cancelled
Native App Locale Refresh / Refresh native nl (push) Has been cancelled
Native App Locale Refresh / Refresh native pl (push) Has been cancelled
Native App Locale Refresh / Refresh native pt-BR (push) Has been cancelled
Native App Locale Refresh / Refresh native ru (push) Has been cancelled
Native App Locale Refresh / Refresh native sv (push) Has been cancelled
Native App Locale Refresh / Refresh native th (push) Has been cancelled
Native App Locale Refresh / Refresh native tr (push) Has been cancelled
Native App Locale Refresh / Refresh native uk (push) Has been cancelled
Native App Locale Refresh / Refresh native vi (push) Has been cancelled
Native App Locale Refresh / Refresh native zh-CN (push) Has been cancelled
Native App Locale Refresh / Refresh native zh-TW (push) Has been cancelled
Native App Locale Refresh / Commit native locale refresh (push) Has been cancelled
Plugin Init Scaffold Validation / Validate provider scaffold (push) Has been cancelled
Plugin NPM Release / preview_plugins_npm (push) Has been cancelled
Plugin NPM Release / Validate release publish approval (push) Has been cancelled
Plugin NPM Release / preview_plugin_pack (push) Has been cancelled
Plugin NPM Release / publish_plugins_npm (push) Has been cancelled
Sandbox Common Smoke / sandbox-common-smoke (push) Has been cancelled
Website Installer Sync / static (push) Has been cancelled
Website Installer Sync / linux-docker (push) Has been cancelled
Website Installer Sync / macos-installer (push) Has been cancelled
Website Installer Sync / windows-installer (push) Has been cancelled
Website Installer Sync / sync-website (push) Has been cancelled
Adolf is a fork/vendored clone of github.com/openclaw/openclaw (v2026.6.11), free to diverge. Tree copied sans upstream .git; upstream remote added for future syncs. Node pinned to 24 (.nvmrc); engines already require >=22.19. Preserves docs/ARCHITECTURE.md. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01LeqyaxJF2nbRXJtae2kNB2
148 lines
5.3 KiB
TypeScript
148 lines
5.3 KiB
TypeScript
// Migrate Hermes plugin module implements apply behavior.
|
|
import fs from "node:fs/promises";
|
|
import path from "node:path";
|
|
import {
|
|
markMigrationItemError,
|
|
markMigrationItemSkipped,
|
|
summarizeMigrationItems,
|
|
} from "openclaw/plugin-sdk/migration";
|
|
import {
|
|
archiveMigrationItem,
|
|
copyMigrationFileItem,
|
|
withCachedMigrationConfigRuntime,
|
|
writeMigrationReport,
|
|
} from "openclaw/plugin-sdk/migration-runtime";
|
|
import type {
|
|
MigrationApplyResult,
|
|
MigrationItem,
|
|
MigrationPlan,
|
|
MigrationProviderContext,
|
|
} from "openclaw/plugin-sdk/plugin-entry";
|
|
import { resolvePreferredOpenClawTmpDir, withTempWorkspace } from "openclaw/plugin-sdk/temp-path";
|
|
import { applyAuthItem } from "./auth.js";
|
|
import { applyConfigItem, applyManualItem } from "./config.js";
|
|
import { appendItem } from "./helpers.js";
|
|
import { applyModelItem } from "./model.js";
|
|
import { buildHermesPlan } from "./plan.js";
|
|
import { applySecretItem } from "./secrets.js";
|
|
import { resolveTargets } from "./targets.js";
|
|
|
|
const HERMES_REASON_BLOCKED_BY_APPLY_CONFLICT = "blocked by earlier apply conflict";
|
|
const HERMES_STATE_DB_ARCHIVE_ITEM_ID = "archive:state.db";
|
|
const HERMES_STATE_DB_SNAPSHOT_PREFIX = "openclaw-migrate-hermes-state-";
|
|
|
|
async function archiveHermesItem(item: MigrationItem, reportDir: string): Promise<MigrationItem> {
|
|
if (item.id !== HERMES_STATE_DB_ARCHIVE_ITEM_ID || !item.source) {
|
|
return await archiveMigrationItem(item, reportDir);
|
|
}
|
|
const sourcePath = item.source;
|
|
|
|
let sourceStat: import("node:fs").Stats;
|
|
try {
|
|
sourceStat = await fs.lstat(sourcePath);
|
|
} catch {
|
|
return await archiveMigrationItem(item, reportDir);
|
|
}
|
|
if (!sourceStat.isFile()) {
|
|
return await archiveMigrationItem(item, reportDir);
|
|
}
|
|
|
|
try {
|
|
// A raw state.db copy can omit committed rows that still live in state.db-wal.
|
|
// Snapshot the live database into one self-contained archive artifact.
|
|
return await withTempWorkspace(
|
|
{ rootDir: resolvePreferredOpenClawTmpDir(), prefix: HERMES_STATE_DB_SNAPSHOT_PREFIX },
|
|
async ({ dir: tempDir }) => {
|
|
const snapshotPath = path.join(tempDir, "state.db");
|
|
const { DatabaseSync } = await import("node:sqlite");
|
|
const source = new DatabaseSync(sourcePath, { readOnly: true });
|
|
try {
|
|
source.exec("PRAGMA busy_timeout = 30000;");
|
|
source.prepare("VACUUM INTO ?").run(snapshotPath);
|
|
} finally {
|
|
source.close();
|
|
}
|
|
await fs.chmod(snapshotPath, 0o600);
|
|
const archived = await archiveMigrationItem({ ...item, source: snapshotPath }, reportDir);
|
|
return { ...archived, source: sourcePath };
|
|
},
|
|
);
|
|
} catch (err) {
|
|
const snapshotReason = err instanceof Error ? err.message : String(err);
|
|
const rawArchive = await archiveMigrationItem(item, reportDir);
|
|
if (rawArchive.status === "migrated") {
|
|
return markMigrationItemError(
|
|
rawArchive,
|
|
`SQLite snapshot failed; raw state.db preserved for manual review: ${snapshotReason}`,
|
|
);
|
|
}
|
|
return markMigrationItemError(
|
|
rawArchive,
|
|
`SQLite snapshot failed: ${snapshotReason}; raw archive failed: ${rawArchive.reason ?? rawArchive.status}`,
|
|
);
|
|
}
|
|
}
|
|
|
|
export async function applyHermesPlan(params: {
|
|
ctx: MigrationProviderContext;
|
|
plan?: MigrationPlan;
|
|
runtime?: MigrationProviderContext["runtime"];
|
|
}): Promise<MigrationApplyResult> {
|
|
const plan = params.plan ?? (await buildHermesPlan(params.ctx));
|
|
const reportDir = params.ctx.reportDir ?? path.join(params.ctx.stateDir, "migration", "hermes");
|
|
const targets = resolveTargets(params.ctx);
|
|
const items: MigrationItem[] = [];
|
|
const runtime = withCachedMigrationConfigRuntime(
|
|
params.ctx.runtime ?? params.runtime,
|
|
params.ctx.config,
|
|
);
|
|
const applyCtx = { ...params.ctx, runtime };
|
|
let blockedByApplyConflict = false;
|
|
for (const item of plan.items) {
|
|
if (item.status !== "planned") {
|
|
items.push(item);
|
|
continue;
|
|
}
|
|
if (blockedByApplyConflict) {
|
|
items.push(markMigrationItemSkipped(item, HERMES_REASON_BLOCKED_BY_APPLY_CONFLICT));
|
|
continue;
|
|
}
|
|
let appliedItem: MigrationItem;
|
|
if (item.id === "config:default-model") {
|
|
appliedItem = await applyModelItem(applyCtx, item);
|
|
} else if (item.kind === "config") {
|
|
appliedItem = await applyConfigItem(applyCtx, item);
|
|
} else if (item.kind === "manual") {
|
|
appliedItem = applyManualItem(item);
|
|
} else if (item.action === "archive") {
|
|
appliedItem = await archiveHermesItem(item, reportDir);
|
|
} else if (item.kind === "auth") {
|
|
appliedItem = await applyAuthItem(applyCtx, item, targets);
|
|
} else if (item.kind === "secret") {
|
|
appliedItem = await applySecretItem(applyCtx, item, targets);
|
|
} else if (item.action === "append") {
|
|
appliedItem = await appendItem(item);
|
|
} else {
|
|
appliedItem = await copyMigrationFileItem(item, reportDir, {
|
|
overwrite: params.ctx.overwrite,
|
|
});
|
|
}
|
|
items.push(appliedItem);
|
|
if (
|
|
item.kind === "config" &&
|
|
(appliedItem.status === "conflict" || appliedItem.status === "error")
|
|
) {
|
|
blockedByApplyConflict = true;
|
|
}
|
|
}
|
|
const result: MigrationApplyResult = {
|
|
...plan,
|
|
items,
|
|
summary: summarizeMigrationItems(items),
|
|
backupPath: params.ctx.backupPath,
|
|
reportDir,
|
|
};
|
|
await writeMigrationReport(result, { title: "Hermes Migration Report" });
|
|
return result;
|
|
}
|