Files
zhenxun_bot/zhenxun/services/ai/run/hitl.py
T
80fc5b86a7 ✨ feat!(llm): 重构并升级大语言模型服务为全新 AI 智能体框架 (#2146)
* ✨ feat!(llm): 重构并升级大语言模型服务为全新 AI 智能体框架

- 【重构】将原 services/llm 重构并迁移至全新的 services/ai 架构,提供向下兼容垫片
- 【新增】引入 Agent、Team、Workflow 三大智能体与工作流编排范式
- 【新增】引入基于 RAG 的长期向量记忆与中期槽位记忆系统
- 【新增】引入基于 Docker 的安全代码执行沙箱环境
- 【新增】支持 MCP 协议,允许动态管理和调用 MCP 服务
- 【新增】引入输入输出安全合规护栏与自愈反思机制
- 【优化】重构并优化多厂商 API 适配器 (Gemini, OpenAI, DeepSeek, GLM 等)
- 【优化】优化日志脱敏与 Token 预估机制
- 【移除】移除旧版 llm default 和 llm reset-key 命令,新增 llm mcp 管理命令

* 🔧 chore(deps): 更新项目依赖与配置

- 添加 mcp、jieba 和 aiodocker 依赖到配置文件及 requirements.txt
- 在 pyright 配置中设置 reportMissingImports 为 none
- 调整 .gitignore 中 resources 目录的忽略规则

* ♻️ refactor(tools): 重构工具终止机制并清理知识库日志输出

- 统一使用 `context.state["__end_run__"]` 替代 `EndRunResult` 控制任务结束
- 移除文件系统和向量知识库检索工具中 `ToolResult` 的 `.with_log` 调用
- 调整指令处理器(Directive)的返回值为 `tool_res.output`
- 修复部分类型检查警告并优化联合类型判断语法

* ♻️ refactor(tools): 重构工具副作用指令与控制流熔断机制

- 引入 `DirectivePayload` 及 `ToolResult` 的子类以结构化表达工具副作用
- 移除通过 `context.state` 传递魔术变量的隐式控制流设计
- 重构 `DirectiveManager` 处理器接口,直接在处理器中修改 `AgentState` 并构建 `AgentRunResult`
- 在 `StandardAgentExecutor` 中统一通过 `directive_manager` 调度工具返回的副作用指令
- 补全 `MessageBuilder` 中部分核心方法的文档注释

* 🐛 fix(sandbox): 修复 Docker 沙箱容器状态检测与会话清理逻辑

-【修复】修正 `is_alive` 中直接读取私有属性的问题,改用 `show()` 返回值
-【修复】解决 `execute_code` 中缓存的执行器与当前会话不一致的问题
-【优化】在清理工作区前增加容器存活检测,避免向已死容器发送请求
-【优化】创建容器时增加运行状态校验,若已停止则自动从缓存中移除并重建
-【优化】优化容器销毁和清理逻辑,静默处理容器不存在 (404) 的异常

* 📝 docs(core): 补充核心模块初始化方法的文档注释

* 🚨 auto fix by pre-commit hooks

---------

Co-authored-by: webjoin111 <455457521@qq.com>
Co-authored-by: pre-commit-ci[bot] <66853113+pre-commit-ci[bot]@users.noreply.github.com>
2026-07-03 08:53:56 +08:00

145 lines
4.9 KiB
Python

import asyncio
from collections.abc import Callable
import time
from typing import TYPE_CHECKING
from nonebot.adapters import Event
from nonebot.permission import SUPERUSER
from nonebot_plugin_waiter import waiter
from zhenxun.services.ai.core.exceptions import AbortException, ToolFatalError
from zhenxun.services.log import logger
if TYPE_CHECKING:
from zhenxun.services.ai.run.context import RunContext
CANCEL_WORDS = {"取消", "cancel", "0", "退出", "quit"}
CONFIRM_WORDS = {"y", "yes", "是", "1", "ok", "确认"}
REJECT_WORDS = {"n", "no", "否", "0", "拒绝"}
class HITLController:
"""
人机协同控制器 (Human-in-the-Loop Controller)。
封装底层的物理环境隔离等待逻辑,供上层工具和中间件发起提问或审批。
"""
def __init__(self, context: "RunContext"):
self.context = context
async def wait_event(
self,
prompt_msg: str | None = None,
timeout: float = 60.0,
custom_checker: Callable[[Event], bool] | None = None,
strict_user: bool = True,
) -> Event | None:
"""
底层交互方法:进行严格群组与用户隔离的挂起等待。
"""
bot = self.context.get_bot()
event = self.context.get_event()
if not bot or not event:
logger.warning("HITLController: 当前环境无 Bot/Event 实例,无法发起交互。")
return None
if prompt_msg:
await bot.send(event, prompt_msg)
orig_user_id = self.context.get_user_id()
orig_group_id = self.context.get_group_id()
@waiter(waits=["message"], keep_session=False)
async def event_waiter(e: Event):
raw_curr_group = getattr(e, "group_id", getattr(e, "channel_id", None))
curr_group_id = str(raw_curr_group) if raw_curr_group else None
tgt_group_id = str(orig_group_id) if orig_group_id else None
if curr_group_id != tgt_group_id:
return None
if strict_user and str(e.get_user_id()) != orig_user_id:
return None
if custom_checker and not custom_checker(e):
return None
return e
task = asyncio.create_task(event_waiter.wait(timeout=timeout))
cancellation_token = self.context.run.cancellation_token
if cancellation_token:
cancellation_token.link_future(task)
return await task
async def ask_text(self, prompt_msg: str, timeout: float = 60.0) -> str:
"""
高阶交互:发起文本提问,内置超时与取消词检测。
如用户取消或超时,自动抛出异常切断 Agent 思考循环。
"""
event = await self.wait_event(prompt_msg, timeout=timeout, strict_user=True)
if event is None:
logger.warning("🛡️ [HITL] 文本参数收集超时,任务已被系统强杀。")
raise ToolFatalError("参数收集超时,用户已离开,任务已中止。")
user_input = event.get_plaintext().strip()
if user_input.lower() in CANCEL_WORDS:
raise AbortException(reason="用户主动取消了操作")
return user_input
async def ask_confirm(self, prompt_msg: str, timeout: float = 60.0) -> bool:
"""
高阶交互:发起 Y/N 确认审批。
支持超管越权代批。用户拒绝或超时自动抛出异常切断循环。
"""
orig_user_id = self.context.get_user_id()
bot = self.context.get_bot()
if not bot:
raise ToolFatalError("非交互环境无法发起人工审批。")
full_prompt = (
f"{prompt_msg}\n\n请在规定时间内回复 [Y/是] 确认,或 [N/否/取消] 拒绝。"
)
start_time = time.time()
is_first_prompt = True
while True:
remaining = timeout - (time.time() - start_time)
if remaining <= 0:
raise ToolFatalError("审批超时")
event = await self.wait_event(
prompt_msg=full_prompt if is_first_prompt else None,
timeout=remaining,
strict_user=False,
)
is_first_prompt = False
if event is None:
raise ToolFatalError("审批超时")
text = event.get_plaintext().strip().lower()
if (
text not in CONFIRM_WORDS
and text not in REJECT_WORDS
and text not in CANCEL_WORDS
):
continue
curr_user_id = str(event.get_user_id())
is_authorized = curr_user_id == orig_user_id or await SUPERUSER(bot, event)
if not is_authorized:
await bot.send(event, "⚠️ 权限不足,你无权审批此操作。")
continue
if text in CONFIRM_WORDS:
return True
raise AbortException(reason="审批被拒绝")