8c1e8d9890
Every release member now declares publishConfig.access: public, so the scope no longer mixes levels: the 221 packages/*/* and apps/* manifests join the vendored framework and the native packages. check-workspace-constraints drops the per-sequence expectation and holds every release member to public, which is what stops a member from drifting back. Access is a property of the package, not of a version: the dsh packages already published as restricted become world-readable at their next publication.
workflow/ — dynamic-workflow capability family
English | 中文
This family runs model-authored orchestration workflows over subagents and exposes general and fixed-policy tools to the model.
| Package | Role | ctx key |
|---|---|---|
workflow/ |
Defines workflow execution and lifecycle events | ctx.workflowEngine |
workflow-worker-thread/ |
Runs workflow scripts in worker threads | registers on ctx.workflowEngine |
tool-workflow/ |
Exposes general workflow execution to the model | registers on ctx.tools |
tool-ralph/ |
Exposes the fixed fresh-agent Ralph workflow | registers on ctx.tools |
Worker threads isolate workflow execution from the host event loop but are not a security boundary. See the dynamic-workflow and Ralph tool decisions.
The subsystem reference — start requests, WorkflowMeta, results, live runs, workflow/* events — is docs/subsystems/workflow.md; decisions in the dynamic-workflows and Ralph consumer Agent Notes.