hive-sh4re + docs: extract Wake-injection prose (#717 batch 5)
This commit is contained in:
parent
e1bc9e42f1
commit
18d0fbfecb
2 changed files with 23 additions and 13 deletions
|
|
@ -21,6 +21,23 @@ bind-mount." A sub-agent only sees its own `/run/hive/mcp.sock`; the
|
|||
manager has access to its privileged socket; hive-c0re owns the host
|
||||
admin socket.
|
||||
|
||||
### Wake injection
|
||||
|
||||
`AgentRequest::Wake { from, body }` (and the manager-flavour mirror)
|
||||
is the wake-event-injection surface. Recipient is implicit — the
|
||||
agent the socket belongs to — and `from` is caller-chosen so the
|
||||
wake prompt can label the source verbatim (`"matrix: new message in
|
||||
#general"`, `"forge: PR #42 opened"`, etc.). Typical caller: an
|
||||
in-container background task (the matrix daemon, a scraper, the
|
||||
forge-notify webhook subscriber) that needs to signal "external work
|
||||
has arrived" without going through the broker as a peer agent.
|
||||
|
||||
Identity = socket means anything that can connect to
|
||||
`/run/hive/mcp.sock` is implicitly trusted to inject wakes. That's
|
||||
fine: the bind-mount only exposes the socket inside the agent's own
|
||||
container, so the trust boundary is the container's process
|
||||
namespace, not the wire surface.
|
||||
|
||||
## Recipient sentinels
|
||||
|
||||
A few recipient names are reserved by the broker and have special
|
||||
|
|
|
|||
Loading…
Reference in a new issue