Alex Dunmow 9e39119555 feat(abi): injection-complete capability surface — provisioner family, content authoring, 4 callback hooks (WO-WZ-019)
Dynamic families added to the ABI + guest SDK:
- provisioner.* (14 methods, 1:1 plugin.Provisioner): wasm provisioning was
  silently dead (RegisterWithProvisioner got a noopProvisioner and the cms
  loader ignored has_provisioner). Now a LOAD-TIME capability via the new
  CoreServices.Provisioner field; EnsureEmbed rejects RenderFunc-only embeds.
- content.* writes (content.Author + CoreServices.ContentAuthor):
  create_page, set_page_blocks, publish_page, set_page_seo, upsert_post.
- settings.update_plugin_settings (settings.Updater grows the method).
- bridge.invoke + plugin.BridgeInvokable: opaque-payload cross-plugin calls
  (typed GetService still returns nil across the sandbox by design).
- jobs.progress: HOOK_JOB handlers' progress() now crosses (was discarded).

New host→guest hooks: HOOK_AI_TOOL_CALL (executes recorded ai.ToolDefinition
handlers — registers tools in Register so every pooled instance has them),
HOOK_BRIDGE_CALL, HOOK_DIRECTORY_PANEL_SECTION, HOOK_DIRECTORY_PIN_DECORATOR.
The ai/bridge stubs now record handlers/values locally in addition to
forwarding names.

buf breaking clean (additive within ABI major 1); golden round-trips added
for the new families (cms host replays the same goldens).

Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
2026-07-04 10:02:21 +08:00

75 lines
2.9 KiB
Go

package caps
import (
"context"
abiv1 "git.dev.alexdunmow.com/block/core/abi/v1"
"git.dev.alexdunmow.com/block/core/plugin"
)
// bridgeStub implements plugin.PluginBridge over bridge.* capability calls.
//
// The bridge shares in-process Go values today; across sandboxes only the
// registration/lookup *surface* serializes — the service value itself cannot
// cross. RegisterService therefore forwards only plugin/service names to the
// host AND records the value locally so this plugin's own services are
// dispatchable via HOOK_BRIDGE_CALL; GetService returns nil for remote
// services (availability is checked but a typed value cannot be reconstructed
// guest-side). Cross-plugin calls use Invoke (bridge.invoke) with opaque
// payloads instead.
//
// Instances are single-threaded, so the plain map needs no locking; register
// bridge services in Register (every pooled instance runs it), not Load
// (which fires on one instance only) — see core/docs/wasm-abi.md
// §"Per-instance state".
type bridgeStub struct {
base
services map[string]any // serviceName → registered value (this plugin's own)
}
var _ plugin.PluginBridge = (*bridgeStub)(nil)
// RegisterService has no error channel; a transport failure is dropped.
func (s *bridgeStub) RegisterService(pluginName, serviceName string, service any) {
if s.services == nil {
s.services = make(map[string]any)
}
s.services[serviceName] = service
req := &abiv1.BridgeRegisterServiceRequest{PluginName: pluginName, ServiceName: serviceName}
_ = s.invoke(context.Background(), "register_service", req, &abiv1.BridgeRegisterServiceResponse{})
}
// GetService reports availability host-side but cannot return the concrete Go
// value across the sandbox boundary, so it always returns nil for remote
// services. Callers using plugin.GetServiceAs correctly observe (zero, false);
// cross-plugin calls go through Invoke.
func (s *bridgeStub) GetService(pluginName, serviceName string) any {
req := &abiv1.BridgeGetServiceRequest{PluginName: pluginName, ServiceName: serviceName}
_ = s.invoke(context.Background(), "get_service", req, &abiv1.BridgeGetServiceResponse{})
return nil
}
// Invoke calls a method on another plugin's registered bridge service with an
// opaque payload (bridge.invoke; the provider answers via HOOK_BRIDGE_CALL or
// its in-process plugin.BridgeInvokable).
func (s *bridgeStub) Invoke(ctx context.Context, pluginName, serviceName, method string, payload []byte) ([]byte, error) {
req := &abiv1.BridgeInvokeRequest{
PluginName: pluginName,
ServiceName: serviceName,
Method: method,
Payload: payload,
}
resp := &abiv1.BridgeInvokeResponse{}
if err := s.invoke(ctx, "invoke", req, resp); err != nil {
return nil, err
}
return resp.GetPayload(), nil
}
// Service returns this plugin's own registered service value, for
// HOOK_BRIDGE_CALL dispatch by the wasm shim.
func (s *bridgeStub) Service(serviceName string) (any, bool) {
v, ok := s.services[serviceName]
return v, ok
}