| Filename | Latest commit message | Latest commit date |
|---|---|---|
A permission request counted as an MCP tool call whenever its title looked like `<server>_<tool>`, whatever its kind, and acp_permits allowed MCP calls before looking at the kind. So an `execute` request titled e.g. `hyperhive_x`, or a `fetch` without web_tools, was allowed. MCP tool calls come with kind `other` (opencode's toToolKind maps every tool it doesn't name, MCP tools included, to "other"). The runtime now sets PermissionAsk::mcp_server only for kind `other`, and acp_permits allows an MCP server's tool only under the `other` arm. Refs #4391 |
||
| .. | ||
| src | ||
| Cargo.toml | ||
| README.md | ||
hive-runtime
The layer an agent's turns are driven through: one Runtime interface
(run, compact, archive) with a backend per runtime.
- claude —
claude --printthrough thehive-claudecrate'sInfiniteSession. A pass-through: same spawn, same session handling, same errors. - acp — any Agent Client Protocol
agent, spawned from a command, args and env handed to it (
RuntimeSpec, read fromHIVE_RUNTIME/HIVE_ACP_COMMAND/HIVE_ACP_ARGS/HIVE_ACP_ENV). It knows no agent by name; which agent runs, and how it is configured, is decided in nix (services.hyperhive.agent.runtime,services.hyperhive.agent.acp.*).
Both backends report a turn through hive_claude::Sink in claude's
stream-json shape. The ACP backend translates session/update
notifications into it (text and thought chunks as whole blocks, tool calls as
tool_use + tool_result, MCP tools named mcp__<server>__<tool>), so the
harness's stream consumers read either backend unchanged. Context usage comes
from ACP usage_update.
The crate depends on no hyperhive binary crate, so hive-agent and
hive-subagent-mcp can both drive turns through it.
ACP backend: what it needs from the agent
mcpCapabilities.httpin itsinitializeresponse. The hyperhive tools are only served over HTTP, so an agent without it is refused at startup.loadSession, to pick its session back up after a harness restart. Without it every restart starts a new session.
ACP backend: not yet
compact returns Error::Unsupported, there is no cancel, and no idle
watchdog (Config::idle_timeout is ignored). An agent that retries a failing
provider on its own keeps the turn open until it gives up.