mirror of
https://github.com/diegosouzapw/OmniRoute.git
synced 2026-08-04 06:12:10 +03:00
* chore(release): open v3.8.10 development cycle Bump 3.8.9 → 3.8.10 across package.json, lockfile, electron, open-sse, and docs/reference/openapi.yaml; add the [3.8.10] CHANGELOG section (root + 41 i18n mirrors) as the integration target for the cycle. Entries land here as work merges into release/v3.8.10; finalized by the release flow. * fix(providers): resolve web provider alias collisions Assign unique aliases to HuggingChat, Kimi Web, and Qwen Web so they no longer shadow primary providers or trigger startup warnings. Add a unit test to enforce provider alias uniqueness and prevent future collisions. Also expand local ignore and VS Code exclude rules for agent, build, and worktree artifacts. * fix(responses): normalize image_url parts across input paths (#3150) Normalize image_url parts across all Responses input paths. Integrated into release/v3.8.10. * fix(api-manager): preserve API key expiration local time (#3146) Preserve API key expiration local time + clear button. Integrated into release/v3.8.10. * Strip previous_response_id for stateless Responses upstreams (#3143) Strip previous_response_id for stateless Responses upstreams (auto/strip/preserve). Integrated into release/v3.8.10. * fix(opencode-plugin): map thinking cap to interleaved in model+combo (#3138) Map caps.thinking to ModelV2.capabilities.interleaved for opencode-plugin. Integrated into release/v3.8.10. * fix(providers): use synced models as fallback for all providers (#3148) Use synced models as authoritative local catalog for all providers (+regression test). Integrated into release/v3.8.10. * fix(qoder): bifurcate validation by token type — PAT→Cosy, regular API key→dashscope (#3149) Bifurcate Qoder validation by token type (PAT→Cosy, regular→dashscope) +regression test. Integrated into release/v3.8.10. * fix(antigravity): dynamic model resolution via MITM alias table (#3144) Dynamic antigravity MITM model resolution in the executor (+bug fix +regression test; DB import dropped from client-reachable config). Integrated into release/v3.8.10. * Feature/batch allow big (#3128) Podman deployment options + larger upload body-size limits (+CONTAINER_HOST docs). Integrated into release/v3.8.10. * fix(fireworks): preserve fully-qualified router/model IDs (#3133) (#3160) Fireworks router IDs (accounts/fireworks/routers/...) were double-prefixed with accounts/fireworks/models/ → upstream 404. Add optional acceptedModelIdPrefixes to the registry entry and skip the prepend when the model already starts with an accepted prefix. Co-authored-by: KooshaPari <KooshaPari@users.noreply.github.com> * fix(llama-cpp): route to configured local baseUrl instead of OpenAI (#3136) (#3161) llama-cpp was missing from the local-provider group in buildUrl(), so it fell through to the OpenAI baseUrl and returned an OpenAI 401. Add the case to resolve the connection's providerSpecificData.baseUrl. Co-authored-by: tjengbudi <tjengbudi@users.noreply.github.com> * fix(t3-chat-web): parse cookies + convexSessionId from stored credential (#3007) (#3162) The executor read credentials.cookies/convexSessionId, but the pipeline only stores the pasted string under apiKey → t3.chat always 400'd. Parse both values from apiKey (fallback accessToken), mirroring validation.ts. Co-authored-by: minhtran162 <minhtran162@users.noreply.github.com> * fix(minimax): stop capping MiniMax-M3 / M2.7 max_tokens at 8192 (#3141) (#3163) MiniMax-M3 had no MODEL_SPECS entry and capitalized MiniMax-M2.7 missed its lowercase spec (case-sensitive lookup) → both fell to the 8192 default cap. Add the M3 spec (512K output), alias the capitalized ids, and make getModelSpec lookups case-insensitive. Co-authored-by: totaltube <totaltube@users.noreply.github.com> * fix(github-copilot): discover model catalog live from api.githubcopilot.com (#3120, #3121) (#3164) The github (Copilot) provider had a static hardcoded catalog with no discovery source, so Import Models never refreshed (#3120) and advertised non-entitled models that 400 on use (#3121). Add a live /models fetch with fallback to the static list. Co-authored-by: gabrielmoreira <gabrielmoreira@users.noreply.github.com> * fix(combo): invalidate nested-combo cache on edits + log DATA_DIR (#3147) (#3165) Editing a combo did not invalidate the 10s nested-combo expansion caches (chat.ts getCombosCachedForChat + chatCore.ts getCombosCached; the exported clearCombosCache was dead code), so a removed nested target/model could be served as a phantom for up to 10s. Wire a shared monotonic combos-cache version in readCache (bumped by invalidateDbCache("combos") on every combo write); both cache layers treat a version mismatch as a miss. Also log the resolved DATA_DIR/SQLITE_FILE absolute path at DB init so the reporter's 'persists across restart + volume wipe' symptom (a multi-replica Docker volume/DATA_DIR mismatch, not a routing bug) is diagnosable from logs. Includes consolidated CHANGELOG entries for #3133/#3136/#3007/#3141/#3120/#3121. Co-authored-by: ViFigueiredo <ViFigueiredo@users.noreply.github.com> * fix(web-tools): parse bare JSON tool calls (#3157) Parse bare JSON tool calls for deepseek-web (#2820) + fuzzy tool-name matching. Integrated into release/v3.8.10. * fix(misc): minor fixes across reasoning cache, account fallback, binary manager (#3177) Misc: ProviderProfile export, DeepSeek reasoning regex, binary guard. Integrated into release/v3.8.10. * fix(kiro): minor OAuth social exchange tweaks (#3176) Kiro social OAuth: optional targetProvider passthrough. Integrated into release/v3.8.10. * deps: bump hono from 4.12.18 to 4.12.23 (#3179) Bump hono to 4.12.23. Integrated into release/v3.8.10. * fix(providerRegistry): update kilocode format and executor (#3166) kilocode: openai format + default executor (matches kilo-gateway) + registry test. Integrated into release/v3.8.10. * feat(metrics): cross-request TTFT and gap latency after tool calls (#3173) Cross-request TTFT + gap-after-tool latency metrics (+test). Integrated into release/v3.8.10. * feat(dashboard): provider stats API endpoint and dashboard page (#3175) Provider stats dashboard + API (SQL moved to db module per Hard Rule #5, +test). Integrated into release/v3.8.10. * fix(usage): sequential+spaced OAuth quota sync, reactive force-refresh, actionable 401 (#3156) Sequential+spaced OAuth quota sync, reactive force-refresh on 401, actionable 401 in UI. Integrated into release/v3.8.10. * fix(healthcheck): per-provider proactive-refresh skip list (rescue short-TTL OAuth) (#3159) Per-provider proactive-refresh skip list (OMNIROUTE_HEALTHCHECK_SKIP_PROVIDERS) to rescue short-TTL OAuth. Integrated into release/v3.8.10. * feat(quota): show OAuth token expiry on provider cards (small, blue, informative) (#3178) Show OAuth token expiry on provider cards (small, blue, informative). Integrated into release/v3.8.10. * fix(providers): empty refresh must not resurface just-cleared synced models (#3181) Empty refresh must not resurface just-cleared synced models (fixes the release-blocking provider-models-route test). Integrated into release/v3.8.10. * chore(release): v3.8.10 — 2026-06-04 (finalize CHANGELOG) --------- Co-authored-by: Wilson <pedbookmed@gmail.com> Co-authored-by: Xiangzhe <32761048+xz-dev@users.noreply.github.com> Co-authored-by: Jan Leon <Jan.gaschler@gmail.com> Co-authored-by: M.M <mr.maatoug@gmail.com> Co-authored-by: Hernan Javier Ardila Sanchez <hjasgr@gmail.com> Co-authored-by: Markus Hartung <mail@hartmark.se> Co-authored-by: KooshaPari <KooshaPari@users.noreply.github.com> Co-authored-by: tjengbudi <tjengbudi@users.noreply.github.com> Co-authored-by: minhtran162 <minhtran162@users.noreply.github.com> Co-authored-by: totaltube <totaltube@users.noreply.github.com> Co-authored-by: gabrielmoreira <gabrielmoreira@users.noreply.github.com> Co-authored-by: ViFigueiredo <ViFigueiredo@users.noreply.github.com> Co-authored-by: PizzaV <103120356+pizzav-xyz@users.noreply.github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Nicolas Lorin <androw95220@gmail.com>
146 lines
5.0 KiB
TypeScript
146 lines
5.0 KiB
TypeScript
type JsonRecord = Record<string, unknown>;
|
|
type SanitizeResponsesInputOptions = {
|
|
dropInternalAssistantMessages?: boolean;
|
|
};
|
|
const INTERNAL_ASSISTANT_PHASES = new Set(["commentary"]);
|
|
const SERVER_ITEM_ID_PREFIX_BY_TYPE: Record<string, string> = {
|
|
function_call: "fc_",
|
|
message: "msg_",
|
|
reasoning: "rs_",
|
|
};
|
|
const SERVER_ITEM_ID_PATTERN = /^(fc|msg|rs|resp)_/;
|
|
|
|
function toRecord(value: unknown): JsonRecord | null {
|
|
return value && typeof value === "object" && !Array.isArray(value) ? (value as JsonRecord) : null;
|
|
}
|
|
|
|
function isResponsesMessageItem(record: JsonRecord): boolean {
|
|
return record.type === "message" || (!record.type && typeof record.role === "string");
|
|
}
|
|
|
|
export function isInternalAssistantMessage(record: JsonRecord): boolean {
|
|
if (!isResponsesMessageItem(record)) return false;
|
|
if (record.role !== "assistant") return false;
|
|
|
|
const phase = typeof record.phase === "string" ? record.phase.trim().toLowerCase() : "";
|
|
if (!phase) return false;
|
|
|
|
// Drop only known internal runtime frames. Visible assistant turns such as
|
|
// `final` and `final_answer` must survive replay for Codex/OpenCode follow-ups.
|
|
return INTERNAL_ASSISTANT_PHASES.has(phase);
|
|
}
|
|
|
|
// OpenAI Responses API enforces two constraints on name fields in input items:
|
|
// 1. Max 128 characters
|
|
// 2. Must match ^[a-zA-Z0-9_-]+$
|
|
// Sanitize after cloning so upstream never sees an invalid name.
|
|
function sanitizeFunctionName(name: string): string {
|
|
// Replace any character not in [a-zA-Z0-9_-] with underscore, then truncate.
|
|
return name.replace(/[^a-zA-Z0-9_-]/g, "_").slice(0, 128);
|
|
}
|
|
|
|
function sanitizeInputItemId(record: JsonRecord): JsonRecord {
|
|
if (typeof record.id !== "string") return record;
|
|
|
|
const type = typeof record.type === "string" ? record.type : "";
|
|
const expectedPrefix = SERVER_ITEM_ID_PREFIX_BY_TYPE[type];
|
|
const hasExpectedPrefix = expectedPrefix
|
|
? record.id.startsWith(expectedPrefix)
|
|
: SERVER_ITEM_ID_PATTERN.test(record.id);
|
|
|
|
if (hasExpectedPrefix) return record;
|
|
|
|
const next = { ...record };
|
|
delete next.id;
|
|
return next;
|
|
}
|
|
|
|
function imageUrlToText(value: unknown): string {
|
|
if (typeof value === "string") return value;
|
|
const record = toRecord(value);
|
|
return typeof record?.url === "string" ? record.url : "";
|
|
}
|
|
|
|
function sanitizeContentPart(part: unknown, role: string): unknown {
|
|
const record = toRecord(part);
|
|
if (!record) return part;
|
|
|
|
if (record.type === "image_url") {
|
|
const url = imageUrlToText(record.image_url);
|
|
if (role === "user") {
|
|
const next: JsonRecord = { type: "input_image", image_url: url };
|
|
const image = toRecord(record.image_url);
|
|
if (image?.detail !== undefined) next.detail = image.detail;
|
|
return next;
|
|
}
|
|
return { type: "output_text", text: url ? `[Image: ${url}]` : "[Image]" };
|
|
}
|
|
|
|
if (role === "assistant" && record.type === "input_image") {
|
|
const url = imageUrlToText(record.image_url);
|
|
return { type: "output_text", text: url ? `[Image: ${url}]` : "[Image]" };
|
|
}
|
|
|
|
return part;
|
|
}
|
|
|
|
function sanitizeMessageContent(record: JsonRecord): JsonRecord {
|
|
if (!Array.isArray(record.content)) return record;
|
|
|
|
const role = typeof record.role === "string" ? record.role.toLowerCase() : "";
|
|
const content = record.content.map((part) => sanitizeContentPart(part, role));
|
|
return { ...record, content };
|
|
}
|
|
|
|
function sanitizeOutputContent(record: JsonRecord): JsonRecord {
|
|
if (!Array.isArray(record.output)) return record;
|
|
|
|
// Some clients replay previous Responses output items inside the next
|
|
// Responses input. In that shape OpenAI validates `input[n].output[m].type`
|
|
// against output content part types, so legacy Chat-style `image_url` parts
|
|
// must be normalized here too, not only in message.content.
|
|
const role = record.type === "function_call_output" ? "user" : "assistant";
|
|
const output = record.output.map((part) => sanitizeContentPart(part, role));
|
|
return { ...record, output };
|
|
}
|
|
|
|
function sanitizeInputItem(item: unknown): unknown {
|
|
const record = toRecord(item);
|
|
if (!record) return item;
|
|
|
|
let next = sanitizeInputItemId(record);
|
|
if (isResponsesMessageItem(next)) {
|
|
next = sanitizeMessageContent(next);
|
|
}
|
|
next = sanitizeOutputContent(next);
|
|
if (
|
|
(next.type === "function_call" || next.type === "function_call_output") &&
|
|
typeof next.name === "string" &&
|
|
!/^[a-zA-Z0-9_-]{1,128}$/.test(next.name)
|
|
) {
|
|
next = { ...next, name: sanitizeFunctionName(next.name) };
|
|
}
|
|
return next;
|
|
}
|
|
|
|
export function sanitizeResponsesInputItems(
|
|
items: readonly unknown[],
|
|
clone = true,
|
|
options: SanitizeResponsesInputOptions = {}
|
|
): unknown[] {
|
|
const dropInternalAssistantMessages = options.dropInternalAssistantMessages ?? true;
|
|
const sanitized: unknown[] = [];
|
|
|
|
for (const item of items) {
|
|
const record = toRecord(item);
|
|
if (dropInternalAssistantMessages && record && isInternalAssistantMessage(record)) {
|
|
continue;
|
|
}
|
|
|
|
const cloned = clone ? structuredClone(item) : item;
|
|
sanitized.push(sanitizeInputItem(cloned));
|
|
}
|
|
|
|
return sanitized;
|
|
}
|