Skip to content

feat: release pi.bianqian 0.1.6 and pi.ssh-manager 0.1.6 with when-to-use tool descriptions - #67

Merged
vastsa merged 1 commit into
vastsa:mainfrom
muzimu217:feat/tool-description-triggers-batch2
Oct 6, 2026
Merged

vastsa merged 1 commit into
vastsa:mainfrom
muzimu217:feat/tool-description-triggers-batch2

Conversation

@muzimu217

Copy link
Copy Markdown
Contributor

Why

Follow-up to #66 (session-orchestrator 0.6.1): an audit of all 31 agent-tool descriptions in this repository found that none stated when the tool should be used — official plugin/skill descriptions consistently pair a capability summary with "Use when…" trigger conditions, example phrasings and negative scope. Without them the agent has to guess which tool matches the user's goal. This is batch 2: pi.bianqian (8 tools) and pi.ssh-manager (4 tools).

What changed

pi.bianqian 0.1.6 — every tool description now leads with a trigger:

  • create_note gains a negative scope: structured todos belong to pi.todo, goals to pi.goal-x — a sticky note is for jotting things down.
  • purge_note gains a hard rule: never serve an ordinary delete request (that is delete_note); only explicit "permanently destroy" phrasing.
  • delete_note points to the softer soft-delete path; get_note points to search_notes when the id is unknown.
  • Example phrasings in Chinese and English: "记一下:周五三点开会", "刚才删错了一条,恢复一下", "restore the note I deleted"…

pi.ssh-manager 0.1.6 — same treatment, plus the security boundary stated in the description itself:

  • ssh_connect: only configured host profiles are addressable — never fabricate a profile_id.
  • ssh_execute: one bounded command per call; mutating/dangerous commands are statically blocked and AI cannot authorize an override — the agent must direct the user to the panel's one-time approval instead. Not for interactive shell sessions.
  • Example phrasings: "连一下我的测试服务器", "看看服务器磁盘还剩多少", "run df -h on the server".

Both are description-level releases (0.1.5 → 0.1.6); no behavior or permission changes. Changelogs and test version assertions updated.

Verification

python3 scripts/pack_plugin.py plugins/pi.bianqian      # sha256 7980707f…c9e0, 1065975 bytes
python3 scripts/pack_plugin.py plugins/pi.ssh-manager   # sha256 3c2eb91e…58f6, 147655 bytes
python3 scripts/security_audit.py --check-packages      # passed, no blockers
python3 scripts/rebuild_catalog.py                      # OK, 25 plugins, sha256 matches
node --test tests/*.test.mjs                            # 181 pass, 0 fail (1 pre-existing Windows-platform skip)
unzip -p packages/<id>-0.1.6.piplug manifest.json       # ships 0.1.6 with the new descriptions

Remaining plugins with un-triggered descriptions (next batches): pi.goal-x, pi.workspace-file-guard, demo.*.

…-use tool descriptions

Batch 2 of the tool-description trigger audit: lead every agent-tool
description with explicit when-to-use trigger conditions and example
phrasings (Chinese and English) so the agent picks the right tool from
the user's goal instead of guessing. pi.bianqian gains a negative scope
on create_note (todos and goals belong to pi.todo / pi.goal-x) and a
hard rule that purge_note never serves an ordinary delete request;
pi.ssh-manager states the override boundary that AI cannot authorize a
blocked command — only the panel's one-time approval can.
@vercel

vercel Bot commented Oct 6, 2026

Copy link
Copy Markdown

@muzimu217 is attempting to deploy a commit to the vastsa's projects Team on Vercel.

A member of the Team first needs to authorize it.

@vastsa
vastsa merged commit 511216a into vastsa:main Oct 6, 2026
1 of 2 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants