Some checks failed
ClawSweeper Dispatch / dispatch (push) Has been cancelled
CodeQL / Security High (actions) (push) Has been cancelled
CodeQL / Security High (channel-runtime-boundary) (push) Has been cancelled
CodeQL / Security High (core-auth-secrets) (push) Has been cancelled
CodeQL / Security High (mcp-process-tool-boundary) (push) Has been cancelled
CodeQL / Security High (network-ssrf-boundary) (push) Has been cancelled
CodeQL / Security High (plugin-trust-boundary) (push) Has been cancelled
CodeQL / Security High (process-exec-boundary) (push) Has been cancelled
Docs Sync Publish Repo / sync-publish-repo (push) Has been cancelled
Docs / docs (push) Has been cancelled
OpenClaw Stable Main Closeout / Resolve stable release closeout inputs (push) Has been cancelled
OpenClaw Stable Main Closeout / Verify stable main closeout (push) Has been cancelled
Workflow Sanity / no-tabs (push) Has been cancelled
Workflow Sanity / actionlint (push) Has been cancelled
Workflow Sanity / generated-doc-baselines (push) Has been cancelled
CI / runner-admission (push) Has been cancelled
CI / preflight (push) Has been cancelled
CI / security-fast (push) Has been cancelled
CI / pnpm-store-warmup (push) Has been cancelled
CI / build-artifacts (push) Has been cancelled
CI / native-i18n (push) Has been cancelled
CI / ${{ matrix.check_name }} (push) Has been cancelled
CI / ${{ matrix.checkName }} (push) Has been cancelled
CI / checks-node-compat-node22 (push) Has been cancelled
CI / check-bundled-channel-config-metadata (push) Has been cancelled
CI / check-dependencies (push) Has been cancelled
CI / check-guards (push) Has been cancelled
CI / check-lint (push) Has been cancelled
CI / check-prod-types (push) Has been cancelled
CI / check-shrinkwrap (push) Has been cancelled
CI / check-test-types (push) Has been cancelled
CI / check-additional-boundaries-a (push) Has been cancelled
CI / check-additional-boundaries-bcd (push) Has been cancelled
CI / check-additional-extension-bundled (push) Has been cancelled
CI / check-additional-extension-channels (push) Has been cancelled
CI / check-additional-extension-package-boundary (push) Has been cancelled
CI / check-additional-runtime-topology-architecture (push) Has been cancelled
CI / check-session-accessor-boundary (push) Has been cancelled
CI / check-session-transcript-reader-boundary (push) Has been cancelled
CI / check-docs (push) Has been cancelled
CI / skills-python (push) Has been cancelled
CI / macos-swift (push) Has been cancelled
CI / ios-build (push) Has been cancelled
CI / ci-timings-summary (push) Has been cancelled
Native App Locale Refresh / Refresh native fa (push) Has been cancelled
Native App Locale Refresh / Refresh native fr (push) Has been cancelled
Native App Locale Refresh / Refresh native hi (push) Has been cancelled
Native App Locale Refresh / Refresh native id (push) Has been cancelled
Native App Locale Refresh / Refresh native it (push) Has been cancelled
Native App Locale Refresh / Refresh native ja-JP (push) Has been cancelled
Control UI Locale Refresh / plan (push) Has been cancelled
Control UI Locale Refresh / Refresh ${{ matrix.locale }} (push) Has been cancelled
Control UI Locale Refresh / Commit control UI locale refresh (push) Has been cancelled
Live Media Runner Image / Build live media runner image (push) Has been cancelled
Native App Locale Refresh / Refresh native ar (push) Has been cancelled
Native App Locale Refresh / Refresh native de (push) Has been cancelled
Native App Locale Refresh / Refresh native es (push) Has been cancelled
Native App Locale Refresh / Refresh native ko (push) Has been cancelled
Native App Locale Refresh / Refresh native nl (push) Has been cancelled
Native App Locale Refresh / Refresh native pl (push) Has been cancelled
Native App Locale Refresh / Refresh native pt-BR (push) Has been cancelled
Native App Locale Refresh / Refresh native ru (push) Has been cancelled
Native App Locale Refresh / Refresh native sv (push) Has been cancelled
Native App Locale Refresh / Refresh native th (push) Has been cancelled
Native App Locale Refresh / Refresh native tr (push) Has been cancelled
Native App Locale Refresh / Refresh native uk (push) Has been cancelled
Native App Locale Refresh / Refresh native vi (push) Has been cancelled
Native App Locale Refresh / Refresh native zh-CN (push) Has been cancelled
Native App Locale Refresh / Refresh native zh-TW (push) Has been cancelled
Native App Locale Refresh / Commit native locale refresh (push) Has been cancelled
Plugin Init Scaffold Validation / Validate provider scaffold (push) Has been cancelled
Plugin NPM Release / preview_plugins_npm (push) Has been cancelled
Plugin NPM Release / Validate release publish approval (push) Has been cancelled
Plugin NPM Release / preview_plugin_pack (push) Has been cancelled
Plugin NPM Release / publish_plugins_npm (push) Has been cancelled
Sandbox Common Smoke / sandbox-common-smoke (push) Has been cancelled
Website Installer Sync / static (push) Has been cancelled
Website Installer Sync / linux-docker (push) Has been cancelled
Website Installer Sync / macos-installer (push) Has been cancelled
Website Installer Sync / windows-installer (push) Has been cancelled
Website Installer Sync / sync-website (push) Has been cancelled
Adolf is a fork/vendored clone of github.com/openclaw/openclaw (v2026.6.11), free to diverge. Tree copied sans upstream .git; upstream remote added for future syncs. Node pinned to 24 (.nvmrc); engines already require >=22.19. Preserves docs/ARCHITECTURE.md. Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_01LeqyaxJF2nbRXJtae2kNB2
180 lines
6.2 KiB
TypeScript
180 lines
6.2 KiB
TypeScript
// Mattermost helper module supports config schema core behavior.
|
|
import {
|
|
BlockStreamingCoalesceSchema,
|
|
DmPolicySchema,
|
|
GroupPolicySchema,
|
|
MarkdownConfigSchema,
|
|
requireOpenAllowFrom,
|
|
} from "openclaw/plugin-sdk/channel-config-primitives";
|
|
import { z } from "zod";
|
|
import { buildSecretInputSchema } from "./secret-input.js";
|
|
|
|
const MattermostGroupSchema = z
|
|
.object({
|
|
/** Whether mentions are required to trigger the bot in this group. */
|
|
requireMention: z.boolean().optional(),
|
|
})
|
|
.strict();
|
|
|
|
function requireMattermostOpenAllowFrom(params: {
|
|
policy?: string;
|
|
allowFrom?: Array<string | number>;
|
|
ctx: z.RefinementCtx;
|
|
}) {
|
|
requireOpenAllowFrom({
|
|
policy: params.policy,
|
|
allowFrom: params.allowFrom,
|
|
ctx: params.ctx,
|
|
path: ["allowFrom"],
|
|
message:
|
|
'channels.mattermost.dmPolicy="open" requires channels.mattermost.allowFrom to include "*"',
|
|
});
|
|
}
|
|
|
|
const DmChannelRetrySchema = z
|
|
.object({
|
|
/** Maximum number of retry attempts for DM channel creation (default: 3) */
|
|
maxRetries: z.number().int().min(0).max(10).optional(),
|
|
/** Initial delay in milliseconds before first retry (default: 1000) */
|
|
initialDelayMs: z.number().int().min(100).max(60000).optional(),
|
|
/** Maximum delay in milliseconds between retries (default: 10000) */
|
|
maxDelayMs: z.number().int().min(1000).max(60000).optional(),
|
|
/** Timeout for each individual DM channel creation request in milliseconds (default: 30000) */
|
|
timeoutMs: z.number().int().min(5000).max(120000).optional(),
|
|
})
|
|
.strict()
|
|
.refine(
|
|
(data) => {
|
|
if (data.initialDelayMs !== undefined && data.maxDelayMs !== undefined) {
|
|
return data.initialDelayMs <= data.maxDelayMs;
|
|
}
|
|
return true;
|
|
},
|
|
{
|
|
message: "initialDelayMs must be less than or equal to maxDelayMs",
|
|
path: ["initialDelayMs"],
|
|
},
|
|
)
|
|
.optional();
|
|
|
|
const MattermostSlashCommandsSchema = z
|
|
.object({
|
|
/** Enable native slash commands. "auto" resolves to false (opt-in). */
|
|
native: z.union([z.boolean(), z.literal("auto")]).optional(),
|
|
/** Also register skill-based commands. */
|
|
nativeSkills: z.union([z.boolean(), z.literal("auto")]).optional(),
|
|
/** Path for the callback endpoint on the gateway HTTP server. */
|
|
callbackPath: z.string().optional(),
|
|
/** Explicit callback URL (e.g. behind reverse proxy). */
|
|
callbackUrl: z.string().optional(),
|
|
})
|
|
.strict()
|
|
.optional();
|
|
|
|
const MattermostNetworkSchema = z
|
|
.object({
|
|
/** Dangerous opt-in for self-hosted Mattermost on trusted private/internal hosts. */
|
|
dangerouslyAllowPrivateNetwork: z.boolean().optional(),
|
|
})
|
|
.strict()
|
|
.optional();
|
|
|
|
const MattermostStreamingModeSchema = z.enum(["off", "partial", "block", "progress"]);
|
|
const MattermostStreamingProgressSchema = z
|
|
.object({
|
|
label: z.union([z.string(), z.literal(false)]).optional(),
|
|
labels: z.array(z.string()).optional(),
|
|
maxLines: z.number().int().positive().optional(),
|
|
maxLineChars: z.number().int().positive().optional(),
|
|
toolProgress: z.boolean().optional(),
|
|
})
|
|
.strict();
|
|
const MattermostStreamingPreviewSchema = z
|
|
.object({
|
|
toolProgress: z.boolean().optional(),
|
|
})
|
|
.strict();
|
|
const MattermostStreamingBlockSchema = z
|
|
.object({
|
|
enabled: z.boolean().optional(),
|
|
coalesce: BlockStreamingCoalesceSchema.optional(),
|
|
})
|
|
.strict();
|
|
const MattermostStreamingSchema = z.union([
|
|
MattermostStreamingModeSchema,
|
|
z.boolean(),
|
|
z
|
|
.object({
|
|
mode: MattermostStreamingModeSchema.optional(),
|
|
chunkMode: z.enum(["length", "newline"]).optional(),
|
|
preview: MattermostStreamingPreviewSchema.optional(),
|
|
progress: MattermostStreamingProgressSchema.optional(),
|
|
block: MattermostStreamingBlockSchema.optional(),
|
|
})
|
|
.strict(),
|
|
]);
|
|
|
|
const MattermostAccountSchemaBase = z
|
|
.object({
|
|
name: z.string().optional(),
|
|
capabilities: z.array(z.string()).optional(),
|
|
dangerouslyAllowNameMatching: z.boolean().optional(),
|
|
markdown: MarkdownConfigSchema,
|
|
enabled: z.boolean().optional(),
|
|
configWrites: z.boolean().optional(),
|
|
botToken: buildSecretInputSchema().optional(),
|
|
baseUrl: z.string().optional(),
|
|
chatmode: z.enum(["oncall", "onmessage", "onchar"]).optional(),
|
|
oncharPrefixes: z.array(z.string()).optional(),
|
|
requireMention: z.boolean().optional(),
|
|
dmPolicy: DmPolicySchema.optional().default("pairing"),
|
|
allowFrom: z.array(z.union([z.string(), z.number()])).optional(),
|
|
groupAllowFrom: z.array(z.union([z.string(), z.number()])).optional(),
|
|
groupPolicy: GroupPolicySchema.optional().default("allowlist"),
|
|
textChunkLimit: z.number().int().positive().optional(),
|
|
chunkMode: z.enum(["length", "newline"]).optional(),
|
|
streaming: MattermostStreamingSchema.optional(),
|
|
blockStreaming: z.boolean().optional(),
|
|
blockStreamingCoalesce: BlockStreamingCoalesceSchema.optional(),
|
|
replyToMode: z.enum(["off", "first", "all", "batched"]).optional(),
|
|
responsePrefix: z.string().optional(),
|
|
actions: z
|
|
.object({
|
|
reactions: z.boolean().optional(),
|
|
})
|
|
.optional(),
|
|
commands: MattermostSlashCommandsSchema,
|
|
interactions: z
|
|
.object({
|
|
callbackBaseUrl: z.string().optional(),
|
|
allowedSourceIps: z.array(z.string()).optional(),
|
|
})
|
|
.optional(),
|
|
/** Per-group configuration (keyed by Mattermost channel ID or "*" for default). */
|
|
groups: z.record(z.string(), MattermostGroupSchema.optional()).optional(),
|
|
/** Network policy overrides for self-hosted Mattermost on trusted private/internal hosts. */
|
|
network: MattermostNetworkSchema,
|
|
/** Retry configuration for DM channel creation */
|
|
dmChannelRetry: DmChannelRetrySchema,
|
|
})
|
|
.strict();
|
|
|
|
const MattermostAccountSchema = MattermostAccountSchemaBase.superRefine((value, ctx) => {
|
|
requireMattermostOpenAllowFrom({
|
|
policy: value.dmPolicy,
|
|
allowFrom: value.allowFrom,
|
|
ctx,
|
|
});
|
|
});
|
|
|
|
export const MattermostConfigSchema = MattermostAccountSchemaBase.extend({
|
|
accounts: z.record(z.string(), MattermostAccountSchema.optional()).optional(),
|
|
defaultAccount: z.string().optional(),
|
|
}).superRefine((value, ctx) => {
|
|
requireMattermostOpenAllowFrom({
|
|
policy: value.dmPolicy,
|
|
allowFrom: value.allowFrom,
|
|
ctx,
|
|
});
|
|
});
|