mirror of
https://github.com/diegosouzapw/OmniRoute.git
synced 2026-08-06 15:22:12 +03:00
* chore(release): open v3.8.22 development cycle * refactor(dashboard): extract ProviderDetailPageClient — #3501 Phase 0 (#3633) #3501 Phase 0: extract ProviderDetailPageClient + smoke test. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * refactor(dashboard): extract auth-import modals — #3501 Phase 1a (#3634) #3501 Phase 1a: extract 3 auth-import modal clusters. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * fix(db): reclassify localDb unexported modules as intentionally-internal (#3499) (#3635) Closes #3499 — reclassify localDb unexported modules as intentionally-internal (audit + honest gate framing). * refactor(db): move call_logs aggregations into callLogStats db module (#3500) (#3636) #3500 slice 1: call_logs aggregations → src/lib/db/callLogStats.ts (Rule #5). Byte-identical queries; TDD 6/6. * refactor(dashboard): extract EditCompatibleNodeModal — #3501 Phase 1b (#3638) #3501 Phase 1b: extract EditCompatibleNodeModal (cycle-safe via leaf constants module). Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * refactor(db): move community_servers SQL into gamification db module (#3500 slice 3) (#3639) #3500 slice 3: community_servers SQL → gamification db module. * refactor(db): move usage_history SQL into usageAnalytics module (#3500 slice 2) (#3644) #3500 slice 2: usage_history/daily_usage_summary SQL → usageAnalytics db module. * refactor(db): move skills UPDATE + db-backups SQL into db modules (#3500 slice 5) (#3647) #3500 slice 5: skills UPDATE (allowlist) + db-backups SQL → db modules. * refactor(db): move usage_logs/semantic_cache/proxy_logs SQL into db modules (#3500 slice 4) (#3648) #3500 slice 4: usage_logs/semantic_cache/proxy_logs SQL → db modules. All internal routes done (2 external by-design remain). * chore(db-gate): reclassify external-DB reads, fully close #3500 (#3649) Closes #3500: reclassify external-DB reads; all internal raw-SQL migrated to db/ modules. * refactor(dashboard): extract pure helpers to providerPageHelpers — #3501 Phase 2 (#3653) #3501 Phase 2: extract pure helpers to providerPageHelpers (leaf, cycle-safe). Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * refactor(dashboard): extract remaining shared helpers to providerPageHelpers — #3501 Phase 2b (#3658) #3501 Phase 2b: extract remaining shared helpers to providerPageHelpers (leaf, cycle-safe). Heavy modals unblocked. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * fix(reasoning): replay reasoning_content on plain DeepSeek turns (#1682) (#3632) Integrated into release/v3.8.22 * fix(kiro): route enterprise IAM Identity Center accounts to their regional endpoint (#3631) Integrated into release/v3.8.22 * refactor: small code cleanup (#3523) Integrated into release/v3.8.22 * fix(combo): skip same-provider targets on 408/500/502/503/504/524 errors (#3637) Integrated into release/v3.8.22 — circuit-breaker guard added in review (#1731v2) * feat(providers): add MiMoCode free-tier provider with bootstrap JWT auth (#3659) Integrated into release/v3.8.22 — page.tsx conflict resolved + NoAuthAccountCard re-applied to ProviderDetailPageClient in review. MiMoCode endpoint validated live. * Log Responses WebSocket calls in history (#3616) Integrated into release/v3.8.22 — Codex Responses WebSocket call history logging. * Add Claude Code routing preference for unprefixed Claude models (#3540) Integrated into release/v3.8.22 — page.tsx conflict resolved (re-applied toggle to ProviderDetailPageClient) + disable-test updated for catalog drift in review. * docs(changelog): credit #3632/#3631/#3637/#3659/#3540/#3616/#3523 (v3.8.22 targeted review round) * fix(mimocode): add required authHeader:"none" to registry entry (#3659 follow-up) The mimocode RegistryEntry omitted the required authHeader field, which broke typecheck:core (TS2741). Match the no-auth convention (authType:"none" + authHeader:"none") used by veoaifree-web and other free providers. Follow-up to #3659 (@pizzav-xyz). * fix(responses): detect stream readiness for tool-call-only and object-less chunks (#3612) (#3661) Closes #3612 * fix(mitm): remove duplicated 'Command failed:' error prefix (#3641) (#3662) Closes #3641 * fix(cli): honor HERMES_HOME for Hermes Agent config path (#3628) (#3663) Closes #3628 * fix(api): fetch live OpenCode model catalog for no-auth model picker (#3611) (#3664) Closes #3611 * fix(api): flag provider topology error state by current status, not stale history (#3619) (#3666) Closes #3619 * fix(electron): launch peer-stamping server-ws.mjs entrypoint to avoid 403 LOCAL_ONLY (#3386) (#3665) Closes #3386 * fix(dashboard): restore home topology live in-flight pulse (#3507) (#3667) Closes #3507 * fix(oauth): name Kiro/AWS auto-imported accounts and dedupe by profileArn (#3615) (#3671) Closes #3615 * fix(resilience): clear stale transient connection cooldowns on startup (#3625) (#3672) Closes #3625 * fix(i18n): use logical CSS direction utilities for sidebar and key overlays (RTL #3541) (#3670) Closes #3541 * fix(dashboard): honor auto-hide and switch to visible filter on passthrough Test-all (#3610) (#3669) Closes #3610 * refactor(dashboard): extract AddApiKeyModal + EditConnectionModal — #3501 Phase 1c (#3674) #3501 Phase 1c: extract AddApiKeyModal, EditConnectionModal, WebSessionCredentialGuide into components/; god-component 10,166->8,092 LOC. Reconciles the v3.8.22 file-size drift for this file. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * docs(changelog): reconcile v3.8.22 — credit #3621/#3622 + MiMoCode follow-up roll-up * refactor(dashboard): extract ConnectionRow + ModelCompatPopover + SiliconFlowEndpointModal — #3501 Phase 1d (#3676) #3501 Phase 1d: god-component 8,092->6,838 LOC. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * feat(obsidian): add WebDAV config route + encrypt creds at rest (#3485 part 1) (#3677) Part 1 of #3485. Adds /api/settings/obsidian/webdav (GET/POST/DELETE) wiring the ready obsidianSync lib, encrypts webdav password + obsidian token at rest, removes the duplicate UI block, drops the KNOWN_MISSING entry. WebDAV file server is part 2. * feat(obsidian): add /api/v1/webdav file server for Obsidian vault sync (#3485 part 2) (#3678) Part 2 of #3485. WebDAV server (PROPFIND/GET/PUT/DELETE/MKCOL/MOVE/OPTIONS) handled in the custom server layer (standalone-server-ws.mjs) since the App Router cannot export WebDAV methods. Basic-Auth (constant-time), path-traversal hardened, password decrypt ported from encryption.ts (parity-tested), DATA_DIR resolution parity-tested against dataPaths.ts. End-to-end Obsidian-over-Tailscale validation is a live VPS step (Rule #18). * fix(combo): stop premature context compaction — real auto-combo windows + per-target compression limit (#3680) Integrated into release/v3.8.22 * feat(dashboard): deactivate/activate accounts from the quota overview (#3675) Integrated into release/v3.8.22 * fix(dashboard): close review gaps in bulk provider connection actions (#3271 follow-up) (#3673) Integrated into release/v3.8.22 — page.tsx conflict (god-component split #3501) resolved by re-applying the bulk-action deltas to ProviderDetailPageClient.tsx * refactor(dashboard): extract useModelCompatState hook + model sections — #3501 Phase 1e (#3683) #3501 Phase 1e: extract useModelCompatState hook (unblocks the model sections) + ModelRow/PassthroughModelsSection/PassthroughModelRow/CustomModelsSection/CompatibleModelsSection. god-component 6,838->4,921 LOC. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * refactor(dashboard): extract useProviderConnections/Settings/Models hooks — #3501 Phase 1f (#3684) #3501 Phase 1f: god-component 4,948->4,062 LOC. Connection state+handlers, settings, and model metadata moved into hooks/. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * chore(release): v3.8.22 CHANGELOG + env-doc sync - Set release date in CHANGELOG [3.8.22] to 2026-06-11 - Add HERMES_HOME to .env.example (from #3628/#3663) - Add HERMES_HOME + OMNIROUTE_PREFER_CLAUDE_CODE_FOR_UNPREFIXED_CLAUDE_MODELS to ENVIRONMENT.md (#3628/#3540) * docs(changelog): credit #3673 + #3675 — leninejunior bulk-actions + quota-toggle --------- Co-authored-by: oyi77 <oyi77@users.noreply.github.com> Co-authored-by: Abhishek Divekar <adivekar@utexas.edu> Co-authored-by: NOXX - Commiter <artur1992123@mail.ru> Co-authored-by: Nicolas Lorin <androw95220@gmail.com> Co-authored-by: Hernan Javier Ardila Sanchez <hjasgr@gmail.com> Co-authored-by: PizzaV <103120356+pizzav-xyz@users.noreply.github.com> Co-authored-by: kkkayye <98376609+kkkayye@users.noreply.github.com> Co-authored-by: Witroch4 <witalo_rocha@hotmail.com> Co-authored-by: Lenine Júnior <lenine@engrene.com.br>
700 lines
23 KiB
TypeScript
700 lines
23 KiB
TypeScript
import {
|
|
BaseExecutor,
|
|
mergeUpstreamExtraHeaders,
|
|
type ExecuteInput,
|
|
type ExecutorLog,
|
|
type ProviderCredentials,
|
|
} from "./base.ts";
|
|
import { PROVIDERS } from "../config/constants.ts";
|
|
import { v4 as uuidv4 } from "uuid";
|
|
import { refreshKiroToken } from "../services/tokenRefresh.ts";
|
|
|
|
type JsonRecord = Record<string, unknown>;
|
|
|
|
type UsageSummary = {
|
|
prompt_tokens: number;
|
|
completion_tokens: number;
|
|
total_tokens: number;
|
|
cache_read_input_tokens?: number;
|
|
cache_creation_input_tokens?: number;
|
|
};
|
|
|
|
type KiroStreamState = {
|
|
endDetected: boolean;
|
|
finishEmitted: boolean;
|
|
stopSeen: boolean;
|
|
hasToolCalls: boolean;
|
|
toolCallIndex: number;
|
|
seenToolIds: Map<string, number>;
|
|
totalContentLength?: number;
|
|
contextUsagePercentage?: number;
|
|
hasContextUsage?: boolean;
|
|
hasMeteringEvent?: boolean;
|
|
usage?: UsageSummary;
|
|
};
|
|
|
|
type EventFrame = {
|
|
headers: Record<string, string>;
|
|
payload: JsonRecord | null;
|
|
};
|
|
|
|
class ByteQueue {
|
|
private chunks: Uint8Array[] = [];
|
|
private headOffset = 0;
|
|
length = 0;
|
|
|
|
push(chunk: Uint8Array) {
|
|
if (!(chunk instanceof Uint8Array) || chunk.length === 0) return;
|
|
this.chunks.push(chunk);
|
|
this.length += chunk.length;
|
|
}
|
|
|
|
peekUint32BE(offset = 0): number | null {
|
|
if (this.length < offset + 4) return null;
|
|
|
|
let value = 0;
|
|
for (let i = 0; i < 4; i++) {
|
|
value = (value << 8) | this.byteAt(offset + i);
|
|
}
|
|
return value >>> 0;
|
|
}
|
|
|
|
read(length: number): Uint8Array | null {
|
|
if (length < 0 || this.length < length) return null;
|
|
|
|
const output = new Uint8Array(length);
|
|
let written = 0;
|
|
|
|
while (written < length) {
|
|
const head = this.chunks[0];
|
|
const available = head.length - this.headOffset;
|
|
const take = Math.min(available, length - written);
|
|
output.set(head.subarray(this.headOffset, this.headOffset + take), written);
|
|
written += take;
|
|
this.headOffset += take;
|
|
this.length -= take;
|
|
|
|
if (this.headOffset >= head.length) {
|
|
this.chunks.shift();
|
|
this.headOffset = 0;
|
|
}
|
|
}
|
|
|
|
return output;
|
|
}
|
|
|
|
private byteAt(offset: number): number {
|
|
let remaining = offset;
|
|
for (let i = 0; i < this.chunks.length; i++) {
|
|
const chunk = this.chunks[i];
|
|
const start = i === 0 ? this.headOffset : 0;
|
|
const available = chunk.length - start;
|
|
if (remaining < available) {
|
|
return chunk[start + remaining];
|
|
}
|
|
remaining -= available;
|
|
}
|
|
return 0;
|
|
}
|
|
}
|
|
|
|
// ── CRC32 lookup table (IEEE polynomial, no dependency) ──
|
|
const CRC32_TABLE = new Uint32Array(256);
|
|
const TEXT_ENCODER = new TextEncoder();
|
|
const TEXT_DECODER = new TextDecoder();
|
|
for (let i = 0; i < 256; i++) {
|
|
let c = i;
|
|
for (let j = 0; j < 8; j++) {
|
|
c = c & 1 ? 0xedb88320 ^ (c >>> 1) : c >>> 1;
|
|
}
|
|
CRC32_TABLE[i] = c >>> 0;
|
|
}
|
|
|
|
function crc32(buf: Uint8Array) {
|
|
let crc = 0xffffffff;
|
|
for (let i = 0; i < buf.length; i++) {
|
|
crc = CRC32_TABLE[(crc ^ buf[i]) & 0xff] ^ (crc >>> 8);
|
|
}
|
|
return (crc ^ 0xffffffff) >>> 0;
|
|
}
|
|
|
|
function buildKiroFinishChunk(
|
|
state: KiroStreamState,
|
|
responseId: string,
|
|
created: number,
|
|
model: string,
|
|
includeUsage: boolean
|
|
): JsonRecord {
|
|
const finishChunk: JsonRecord = {
|
|
id: responseId,
|
|
object: "chat.completion.chunk",
|
|
created,
|
|
model,
|
|
choices: [
|
|
{
|
|
index: 0,
|
|
delta: {},
|
|
finish_reason: state.hasToolCalls ? "tool_calls" : "stop",
|
|
},
|
|
],
|
|
};
|
|
|
|
if (includeUsage && state.usage) {
|
|
finishChunk.usage = state.usage;
|
|
}
|
|
|
|
return finishChunk;
|
|
}
|
|
|
|
function ensureKiroUsage(state: KiroStreamState) {
|
|
if (state.usage) return;
|
|
|
|
const estimatedOutputTokens =
|
|
state.totalContentLength && state.totalContentLength > 0
|
|
? Math.max(1, Math.floor(state.totalContentLength / 4))
|
|
: 0;
|
|
|
|
const estimatedInputTokens =
|
|
state.contextUsagePercentage && state.contextUsagePercentage > 0
|
|
? Math.floor((state.contextUsagePercentage * 200000) / 100)
|
|
: 0;
|
|
|
|
if (estimatedInputTokens <= 0 && estimatedOutputTokens <= 0) return;
|
|
|
|
state.usage = {
|
|
prompt_tokens: estimatedInputTokens,
|
|
completion_tokens: estimatedOutputTokens,
|
|
total_tokens: estimatedInputTokens + estimatedOutputTokens,
|
|
};
|
|
}
|
|
|
|
/**
|
|
* Resolve the AWS region for a Kiro/CodeWhisperer connection. Enterprise AWS IAM Identity
|
|
* Center accounts are region-bound: the access token, the Q Developer profile ARN and the
|
|
* runtime endpoint must all match the region the IdC instance lives in (e.g. eu-central-1).
|
|
* A request signed for one region is rejected by another ("bearer token is invalid"), and a
|
|
* regional profileArn sent to us-east-1 fails with "Improperly formed request". Falls back to
|
|
* the region embedded in the profileArn, then us-east-1 (the AWS Builder ID default).
|
|
*/
|
|
export function resolveKiroRegion(
|
|
credentials: { providerSpecificData?: unknown } | null | undefined
|
|
): string {
|
|
const psd = (credentials?.providerSpecificData || {}) as Record<string, unknown>;
|
|
const region = typeof psd.region === "string" ? psd.region.trim().toLowerCase() : "";
|
|
if (region) return region;
|
|
const arn = typeof psd.profileArn === "string" ? psd.profileArn.toLowerCase() : "";
|
|
const match = arn.match(/^arn:aws:codewhisperer:([a-z0-9-]+):/);
|
|
return match ? match[1] : "us-east-1";
|
|
}
|
|
|
|
/**
|
|
* CodeWhisperer/Amazon Q runtime host for a region. us-east-1 keeps the legacy
|
|
* codewhisperer.us-east-1 host (AWS Builder ID); other regions use the regional Amazon Q
|
|
* endpoint q.{region}.amazonaws.com — codewhisperer.{region}.amazonaws.com does not resolve
|
|
* for non-us-east-1 regions.
|
|
*/
|
|
export function kiroRuntimeHost(region: string): string {
|
|
return region === "us-east-1"
|
|
? "https://codewhisperer.us-east-1.amazonaws.com"
|
|
: `https://q.${region}.amazonaws.com`;
|
|
}
|
|
|
|
/**
|
|
* KiroExecutor - Executor for Kiro AI (AWS CodeWhisperer)
|
|
* Uses AWS CodeWhisperer streaming API with AWS EventStream binary format
|
|
*/
|
|
export class KiroExecutor extends BaseExecutor {
|
|
constructor(providerId = "kiro") {
|
|
super(providerId, PROVIDERS[providerId] || PROVIDERS.kiro);
|
|
}
|
|
|
|
buildHeaders(credentials: ProviderCredentials, stream = true) {
|
|
void stream;
|
|
const headers = {
|
|
...this.config.headers,
|
|
"Amz-Sdk-Request": "attempt=1; max=3",
|
|
"Amz-Sdk-Invocation-Id": uuidv4(),
|
|
"x-amzn-bedrock-cache-control": "enable",
|
|
"anthropic-beta": "prompt-caching-2024-07-31",
|
|
};
|
|
|
|
if (credentials.accessToken) {
|
|
headers["Authorization"] = `Bearer ${credentials.accessToken}`;
|
|
}
|
|
|
|
return headers;
|
|
}
|
|
|
|
transformRequest(model: string, body: unknown, stream: boolean, credentials: unknown): unknown {
|
|
void stream;
|
|
void credentials;
|
|
const b = body as Record<string, unknown>;
|
|
|
|
// Kiro API is strict and rejects any unknown top-level fields (like 'tools', 'stream', 'model', etc.)
|
|
// We only preserve the fields specifically built by the openai-to-kiro translator.
|
|
const kiroPayload: Record<string, unknown> = {};
|
|
if (b.conversationState !== undefined) kiroPayload.conversationState = b.conversationState;
|
|
if (b.profileArn !== undefined) kiroPayload.profileArn = b.profileArn;
|
|
if (b.inferenceConfig !== undefined) kiroPayload.inferenceConfig = b.inferenceConfig;
|
|
|
|
// Fallback: if somehow conversationState isn't there, return the rest without model
|
|
// (for backward compatibility if something else bypasses the translator)
|
|
if (!kiroPayload.conversationState) {
|
|
const { model: _model, ...rest } = b;
|
|
return rest;
|
|
}
|
|
|
|
return kiroPayload;
|
|
}
|
|
|
|
/**
|
|
* Custom execute for Kiro - handles AWS EventStream binary response
|
|
*/
|
|
async execute({
|
|
model,
|
|
body,
|
|
stream,
|
|
credentials,
|
|
signal,
|
|
log,
|
|
upstreamExtraHeaders,
|
|
}: ExecuteInput) {
|
|
// Route to the region-specific CodeWhisperer/Amazon Q endpoint. Enterprise IAM Identity
|
|
// Center accounts (e.g. eu-central-1) are rejected by the default us-east-1 host; only the
|
|
// regional endpoint accepts the region-bound token + profileArn.
|
|
const region = resolveKiroRegion(credentials);
|
|
const url = `${kiroRuntimeHost(region)}/generateAssistantResponse`;
|
|
const headers = this.buildHeaders(credentials, stream);
|
|
mergeUpstreamExtraHeaders(headers, upstreamExtraHeaders);
|
|
const transformedBody = await this.transformRequest(model, body, stream, credentials);
|
|
|
|
const response = await fetch(url, {
|
|
method: "POST",
|
|
headers,
|
|
body: JSON.stringify(transformedBody),
|
|
signal,
|
|
});
|
|
|
|
if (!response.ok) {
|
|
return { response, url, headers, transformedBody };
|
|
}
|
|
|
|
// For Kiro, we need to transform the binary EventStream to SSE
|
|
// Create a TransformStream to convert binary to SSE text
|
|
const transformedResponse = this.transformEventStreamToSSE(response, model);
|
|
|
|
return { response: transformedResponse, url, headers, transformedBody };
|
|
}
|
|
|
|
/**
|
|
* Transform AWS EventStream binary response to SSE text stream
|
|
* Using TransformStream instead of ReadableStream.pull() to avoid Workers timeout
|
|
*/
|
|
transformEventStreamToSSE(response: Response, model: string) {
|
|
const buffer = new ByteQueue();
|
|
let chunkIndex = 0;
|
|
const responseId = `chatcmpl-${Date.now()}`;
|
|
const created = Math.floor(Date.now() / 1000);
|
|
const state: KiroStreamState = {
|
|
endDetected: false,
|
|
finishEmitted: false,
|
|
stopSeen: false,
|
|
hasToolCalls: false,
|
|
toolCallIndex: 0,
|
|
seenToolIds: new Map(),
|
|
};
|
|
|
|
const transformStream = new TransformStream(
|
|
{
|
|
async transform(chunk, controller) {
|
|
buffer.push(chunk);
|
|
|
|
// Parse events from buffer
|
|
let iterations = 0;
|
|
const maxIterations = 1000;
|
|
while (buffer.length >= 16 && iterations < maxIterations) {
|
|
iterations++;
|
|
const totalLength = buffer.peekUint32BE(0);
|
|
|
|
if (!totalLength || totalLength < 16 || totalLength > buffer.length) break;
|
|
|
|
const eventData = buffer.read(totalLength);
|
|
if (!eventData) break;
|
|
|
|
const event = parseEventFrame(eventData);
|
|
if (!event) continue;
|
|
|
|
const eventType = event.headers[":event-type"] || "";
|
|
|
|
// Track total content length for token estimation
|
|
if (!state.totalContentLength) state.totalContentLength = 0;
|
|
if (!state.contextUsagePercentage) state.contextUsagePercentage = 0;
|
|
|
|
// Handle assistantResponseEvent
|
|
if (eventType === "assistantResponseEvent") {
|
|
const content =
|
|
typeof event.payload?.content === "string" ? event.payload.content : "";
|
|
if (!content) {
|
|
continue;
|
|
}
|
|
state.totalContentLength += content.length;
|
|
|
|
const chunk: JsonRecord = {
|
|
id: responseId,
|
|
object: "chat.completion.chunk",
|
|
created,
|
|
model,
|
|
choices: [
|
|
{
|
|
index: 0,
|
|
delta: chunkIndex === 0 ? { role: "assistant", content } : { content },
|
|
finish_reason: null,
|
|
},
|
|
],
|
|
};
|
|
chunkIndex++;
|
|
controller.enqueue(TEXT_ENCODER.encode(`data: ${JSON.stringify(chunk)}\n\n`));
|
|
}
|
|
|
|
// Handle codeEvent
|
|
if (eventType === "codeEvent" && event.payload?.content) {
|
|
const chunk: JsonRecord = {
|
|
id: responseId,
|
|
object: "chat.completion.chunk",
|
|
created,
|
|
model,
|
|
choices: [
|
|
{
|
|
index: 0,
|
|
delta: { content: event.payload.content },
|
|
finish_reason: null,
|
|
},
|
|
],
|
|
};
|
|
chunkIndex++;
|
|
controller.enqueue(TEXT_ENCODER.encode(`data: ${JSON.stringify(chunk)}\n\n`));
|
|
}
|
|
|
|
// Handle toolUseEvent
|
|
if (eventType === "toolUseEvent" && event.payload) {
|
|
state.hasToolCalls = true;
|
|
const toolUse = event.payload;
|
|
const toolUses = Array.isArray(toolUse) ? toolUse : [toolUse];
|
|
|
|
for (const singleToolUse of toolUses) {
|
|
const toolCallId = singleToolUse.toolUseId || `call_${Date.now()}`;
|
|
const toolName = singleToolUse.name || "";
|
|
const toolInput = singleToolUse.input;
|
|
|
|
let toolIndex;
|
|
const isNewTool = !state.seenToolIds.has(toolCallId);
|
|
|
|
if (isNewTool) {
|
|
toolIndex = state.toolCallIndex++;
|
|
state.seenToolIds.set(toolCallId, toolIndex);
|
|
|
|
const startChunk = {
|
|
id: responseId,
|
|
object: "chat.completion.chunk",
|
|
created,
|
|
model,
|
|
choices: [
|
|
{
|
|
index: 0,
|
|
delta: {
|
|
...(chunkIndex === 0 ? { role: "assistant" } : {}),
|
|
tool_calls: [
|
|
{
|
|
index: toolIndex,
|
|
id: toolCallId,
|
|
type: "function",
|
|
function: {
|
|
name: toolName,
|
|
arguments: "",
|
|
},
|
|
},
|
|
],
|
|
},
|
|
finish_reason: null,
|
|
},
|
|
],
|
|
};
|
|
chunkIndex++;
|
|
controller.enqueue(
|
|
TEXT_ENCODER.encode(`data: ${JSON.stringify(startChunk)}\n\n`)
|
|
);
|
|
} else {
|
|
toolIndex = state.seenToolIds.get(toolCallId);
|
|
}
|
|
|
|
if (toolInput !== undefined) {
|
|
let argumentsStr;
|
|
|
|
if (typeof toolInput === "string") {
|
|
argumentsStr = toolInput;
|
|
} else if (typeof toolInput === "object") {
|
|
argumentsStr = JSON.stringify(toolInput);
|
|
} else {
|
|
continue;
|
|
}
|
|
|
|
const argsChunk = {
|
|
id: responseId,
|
|
object: "chat.completion.chunk",
|
|
created,
|
|
model,
|
|
choices: [
|
|
{
|
|
index: 0,
|
|
delta: {
|
|
tool_calls: [
|
|
{
|
|
index: toolIndex,
|
|
function: {
|
|
arguments: argumentsStr,
|
|
},
|
|
},
|
|
],
|
|
},
|
|
finish_reason: null,
|
|
},
|
|
],
|
|
};
|
|
chunkIndex++;
|
|
controller.enqueue(TEXT_ENCODER.encode(`data: ${JSON.stringify(argsChunk)}\n\n`));
|
|
}
|
|
}
|
|
}
|
|
|
|
// Handle messageStopEvent
|
|
if (eventType === "messageStopEvent") {
|
|
state.stopSeen = true;
|
|
}
|
|
|
|
// Handle contextUsageEvent to extract contextUsagePercentage
|
|
if (eventType === "contextUsageEvent") {
|
|
const contextUsage =
|
|
typeof event.payload?.contextUsagePercentage === "number"
|
|
? event.payload.contextUsagePercentage
|
|
: 0;
|
|
if (contextUsage <= 0) {
|
|
continue;
|
|
}
|
|
state.contextUsagePercentage = contextUsage;
|
|
// Mark that we received context usage event
|
|
state.hasContextUsage = true;
|
|
}
|
|
|
|
// Handle meteringEvent - mark that we received it
|
|
if (eventType === "meteringEvent") {
|
|
state.hasMeteringEvent = true;
|
|
}
|
|
|
|
// Handle metricsEvent for token usage
|
|
if (eventType === "metricsEvent") {
|
|
// Extract usage data from metricsEvent payload
|
|
const metrics = event.payload?.metricsEvent || event.payload;
|
|
if (metrics && typeof metrics === "object") {
|
|
const inputTokens =
|
|
typeof (metrics as JsonRecord).inputTokens === "number"
|
|
? ((metrics as JsonRecord).inputTokens as number)
|
|
: 0;
|
|
const outputTokens =
|
|
typeof (metrics as JsonRecord).outputTokens === "number"
|
|
? ((metrics as JsonRecord).outputTokens as number)
|
|
: 0;
|
|
|
|
const cacheReadTokens =
|
|
typeof (metrics as JsonRecord).cacheReadTokens === "number"
|
|
? ((metrics as JsonRecord).cacheReadTokens as number)
|
|
: 0;
|
|
|
|
const cacheCreationTokens =
|
|
typeof (metrics as JsonRecord).cacheCreationTokens === "number"
|
|
? ((metrics as JsonRecord).cacheCreationTokens as number)
|
|
: 0;
|
|
|
|
if (inputTokens > 0 || outputTokens > 0) {
|
|
state.usage = {
|
|
prompt_tokens: inputTokens,
|
|
completion_tokens: outputTokens,
|
|
total_tokens: inputTokens + outputTokens,
|
|
...(cacheReadTokens > 0 && { cache_read_input_tokens: cacheReadTokens }),
|
|
...(cacheCreationTokens > 0 && {
|
|
cache_creation_input_tokens: cacheCreationTokens,
|
|
}),
|
|
};
|
|
}
|
|
}
|
|
}
|
|
}
|
|
|
|
if (iterations >= maxIterations) {
|
|
console.warn("[Kiro] Max iterations reached in event parsing");
|
|
}
|
|
},
|
|
|
|
flush(controller) {
|
|
// Emit finish chunk if not already sent
|
|
if (!state.finishEmitted) {
|
|
state.finishEmitted = true;
|
|
ensureKiroUsage(state);
|
|
const finishChunk = buildKiroFinishChunk(state, responseId, created, model, true);
|
|
controller.enqueue(TEXT_ENCODER.encode(`data: ${JSON.stringify(finishChunk)}\n\n`));
|
|
}
|
|
|
|
// Send final done message
|
|
controller.enqueue(TEXT_ENCODER.encode("data: [DONE]\n\n"));
|
|
},
|
|
},
|
|
{ highWaterMark: 16384 },
|
|
{ highWaterMark: 16384 }
|
|
);
|
|
|
|
// Pipe response body through transform stream
|
|
const transformedStream = response.body.pipeThrough(transformStream);
|
|
|
|
return new Response(transformedStream, {
|
|
status: response.status,
|
|
statusText: response.statusText,
|
|
headers: {
|
|
"Content-Type": "text/event-stream",
|
|
"Cache-Control": "no-cache",
|
|
Connection: "keep-alive",
|
|
},
|
|
});
|
|
}
|
|
|
|
async refreshCredentials(credentials: ProviderCredentials, log?: ExecutorLog | null) {
|
|
if (!credentials.refreshToken) return null;
|
|
|
|
try {
|
|
// Use centralized refreshKiroToken function (handles both AWS SSO OIDC and Social Auth)
|
|
const result = await refreshKiroToken(
|
|
credentials.refreshToken,
|
|
credentials.providerSpecificData,
|
|
log
|
|
);
|
|
|
|
if (!result || result.error) return result;
|
|
|
|
// If client was re-registered (expired/invalid clientId/clientSecret after DB import,
|
|
// TTL expiry, or browser conflict), update providerSpecificData with new credentials (#2524).
|
|
if (result._newClientId) {
|
|
const updatedPsd = {
|
|
...(credentials.providerSpecificData || {}),
|
|
clientId: result._newClientId,
|
|
clientSecret: result._newClientSecret,
|
|
clientSecretExpiresAt: result._newClientSecretExpiresAt,
|
|
};
|
|
return {
|
|
accessToken: result.accessToken,
|
|
refreshToken: result.refreshToken,
|
|
expiresIn: result.expiresIn,
|
|
providerSpecificData: updatedPsd,
|
|
};
|
|
}
|
|
|
|
return result;
|
|
} catch (error) {
|
|
const err = error instanceof Error ? error : new Error(String(error));
|
|
log?.error?.("TOKEN", `Kiro refresh error: ${err.message}`);
|
|
return null;
|
|
}
|
|
}
|
|
}
|
|
|
|
/**
|
|
* Parse AWS EventStream frame
|
|
*/
|
|
function parseEventFrame(data: Uint8Array): EventFrame | null {
|
|
try {
|
|
const view = new DataView(data.buffer, data.byteOffset);
|
|
const totalLength = view.getUint32(0, false);
|
|
const headersLength = view.getUint32(4, false);
|
|
|
|
// ── CRC32 validation ──
|
|
// Prelude CRC covers bytes [0..7] (totalLength + headersLength)
|
|
const preludeCRC = view.getUint32(8, false);
|
|
const computedPreludeCRC = crc32(data.slice(0, 8));
|
|
if (preludeCRC !== computedPreludeCRC) {
|
|
console.warn(
|
|
`[Kiro] Prelude CRC mismatch: expected ${preludeCRC}, got ${computedPreludeCRC} — skipping corrupted frame`
|
|
);
|
|
return null;
|
|
}
|
|
|
|
// Message CRC covers bytes [0..totalLength-5] (everything except the CRC itself)
|
|
const messageCRC = view.getUint32(data.length - 4, false);
|
|
const computedMessageCRC = crc32(data.slice(0, data.length - 4));
|
|
if (messageCRC !== computedMessageCRC) {
|
|
console.warn(
|
|
`[Kiro] Message CRC mismatch: expected ${messageCRC}, got ${computedMessageCRC} — skipping corrupted frame`
|
|
);
|
|
return null;
|
|
}
|
|
// Parse headers
|
|
const headers: Record<string, string> = {};
|
|
let offset = 12; // After prelude
|
|
const headerEnd = 12 + headersLength;
|
|
|
|
while (offset < headerEnd && offset < data.length) {
|
|
const nameLen = data[offset];
|
|
offset++;
|
|
if (offset + nameLen > data.length) break;
|
|
|
|
const name = TEXT_DECODER.decode(data.subarray(offset, offset + nameLen));
|
|
offset += nameLen;
|
|
|
|
const headerType = data[offset];
|
|
offset++;
|
|
|
|
if (headerType === 7) {
|
|
// String type
|
|
const valueLen = (data[offset] << 8) | data[offset + 1];
|
|
offset += 2;
|
|
if (offset + valueLen > data.length) break;
|
|
|
|
const value = TEXT_DECODER.decode(data.subarray(offset, offset + valueLen));
|
|
offset += valueLen;
|
|
headers[name] = value;
|
|
} else {
|
|
break;
|
|
}
|
|
}
|
|
|
|
// Parse payload
|
|
const payloadStart = 12 + headersLength;
|
|
const payloadEnd = data.length - 4; // Exclude message CRC
|
|
|
|
let payload: JsonRecord | null = null;
|
|
if (payloadEnd > payloadStart) {
|
|
const payloadStr = TEXT_DECODER.decode(data.subarray(payloadStart, payloadEnd));
|
|
|
|
// Skip empty or whitespace-only payloads
|
|
if (!payloadStr || !payloadStr.trim()) {
|
|
return { headers, payload: null };
|
|
}
|
|
|
|
try {
|
|
payload = JSON.parse(payloadStr);
|
|
} catch (parseError) {
|
|
const err = parseError instanceof Error ? parseError : new Error(String(parseError));
|
|
// Log parse error for debugging
|
|
console.warn(
|
|
`[Kiro] Failed to parse payload: ${err.message} | payload: ${payloadStr.substring(0, 100)}`
|
|
);
|
|
payload = { raw: payloadStr };
|
|
}
|
|
}
|
|
|
|
return { headers, payload };
|
|
} catch (err) {
|
|
const error = err instanceof Error ? err : new Error(String(err));
|
|
console.warn(`[Kiro] Frame parse error: ${error.message}`);
|
|
return null;
|
|
}
|
|
}
|
|
|
|
export default KiroExecutor;
|