惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Recorded Future
Recorded Future
Security Archives - TechRepublic
Security Archives - TechRepublic
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Jina AI
Jina AI
I
InfoQ
D
DataBreaches.Net
人人都是产品经理
人人都是产品经理
腾讯CDC
GbyAI
GbyAI
V
Visual Studio Blog
H
Hackread – Cybersecurity News, Data Breaches, AI and More
Microsoft Azure Blog
Microsoft Azure Blog
F
Fortinet All Blogs
博客园 - 聂微东
美团技术团队
The Register - Security
The Register - Security
Engineering at Meta
Engineering at Meta
Apple Machine Learning Research
Apple Machine Learning Research
雷峰网
雷峰网
S
Schneier on Security
量子位
A
About on SuperTechFans
H
Help Net Security
MongoDB | Blog
MongoDB | Blog
S
SegmentFault 最新的问题
Know Your Adversary
Know Your Adversary
Cisco Talos Blog
Cisco Talos Blog
Vercel News
Vercel News
Simon Willison's Weblog
Simon Willison's Weblog
PCI Perspectives
PCI Perspectives
B
Blog
K
Kaspersky official blog
V
Vulnerabilities – Threatpost
aimingoo的专栏
aimingoo的专栏
cs.CV updates on arXiv.org
cs.CV updates on arXiv.org
U
Unit 42
G
Google Developers Blog
L
LINUX DO - 最新话题
Forbes - Security
Forbes - Security
AWS News Blog
AWS News Blog
P
Palo Alto Networks Blog
Security Latest
Security Latest
爱范儿
爱范儿
Attack and Defense Labs
Attack and Defense Labs
IT之家
IT之家
L
LINUX DO - 热门话题
D
Docker
P
Proofpoint News Feed
Y
Y Combinator Blog
P
Proofpoint News Feed

Recent Commits to openclaw:main

test: merge chat side-result checks · openclaw/openclaw@ddd2c2a test: merge cron history checks · openclaw/openclaw@f7eb746 test: merge responsive navigation shell checks · openclaw/openclaw@c2e4b47 docs(changelog): add codex oauth fixes · openclaw/openclaw@628e6cd test: merge navigation routing cases · openclaw/openclaw@5d8cecb Tests: mock channel registry bundled fallback · openclaw/openclaw@2b08233 Secrets: avoid broad web search discovery for single plugin config · openclaw/openclaw@a464f59 test: merge config view browser checks · openclaw/openclaw@20cf511 fix(status): align oauth health with runtime · openclaw/openclaw@eed7116 feat: add macOS screen snapshots for monitor preview (#67954) thanks … · openclaw/openclaw@f377db1 fix: report shared auth scopes in hello-ok (#67810) thanks @BunsDev · openclaw/openclaw@0b6c39b Auto-reply: avoid eager bundled route fallback · openclaw/openclaw@3ea1bf4 Tests: narrow session binding contract setup · openclaw/openclaw@54e4e16 fix(macOS): enable undo/redo in webchat composer text input (#34962) · openclaw/openclaw@00951dc Tests: speed up channel setup promotion · openclaw/openclaw@82b529a Docs: refresh agent instructions · openclaw/openclaw@5775fe2 fix(auth): serialize OAuth refresh across agents to fix #26322 (#67876) · openclaw/openclaw@8e79080 test: allow ollama public surface boundary test · openclaw/openclaw@7d4f1a6 Docs: add test performance guardrails · openclaw/openclaw@89706d3 Tests: restore context-engine usage proof · openclaw/openclaw@e4c4f95 Tests: slim context engine runtime coverage · openclaw/openclaw@74c198f ci: retry failed custom checkouts · openclaw/openclaw@0ee5baf test: trim duplicate provider auth onboarding cases · openclaw/openclaw@1ffc02e matrix: fix sessions_spawn --thread subagent session spawning (#67643) · openclaw/openclaw@1ce2596 test: reduce auth choice fixture churn · openclaw/openclaw@857b9cd test: mock health status config boundaries · openclaw/openclaw@9d5ab4a test: mock onboard config io boundary · openclaw/openclaw@299694d test: mock legacy state plugin boundaries · openclaw/openclaw@2713089 test: mock channel install boundaries · openclaw/openclaw@b945248 test: mock doctor preview channel boundaries · openclaw/openclaw@b1a3ad4 test: trim doctor command hotspots · openclaw/openclaw@c66f16a test: isolate agent auth and spawn hotspots · openclaw/openclaw@9285935 test: stabilize MCP startup disposal race · openclaw/openclaw@dd9d2eb test: merge browser contract server suites · openclaw/openclaw@5817a76 test: narrow ollama provider discovery setup · openclaw/openclaw@a0d9598 build: declare qa-lab aimock runtime dependency · openclaw/openclaw@24431e5 test: speed up safe-bins exec harness · openclaw/openclaw@ee856ab test: preserve tool helpers in embedded runner mocks · openclaw/openclaw@acd86a0 refactor: move memory embeddings into provider plugins · openclaw/openclaw@77e6e4c test: reuse system-run temp fixtures · openclaw/openclaw@7e9ff0f test: trim hotspot wait overhead · openclaw/openclaw@12a59b0 Check: avoid duplicate boundary prep · openclaw/openclaw@baf11b8 test: reduce hotspot fixture overhead · openclaw/openclaw@3a59edd feat(ui): overhaul settings and slash command UX (#67819) thanks @Bun… · openclaw/openclaw@2cfb660 QA Matrix: exit cleanly on failure · openclaw/openclaw@42805d2 QA Matrix: isolate scenario coverage · openclaw/openclaw@7e659e1 Matrix: refresh crypto bootstrap state · openclaw/openclaw@94081d8 QA Lab: add provider registry · openclaw/openclaw@bb7e982 Matrix: add plugin changelog · openclaw/openclaw@4acab55 test: trim more hotspot overhead · openclaw/openclaw@f485311 test: trim remaining hotspot tests · openclaw/openclaw@6ba8626 test: narrow hotspot mocks · openclaw/openclaw@dbc8179 test: isolate gemini embedding request helpers · openclaw/openclaw@cd330f5 test: trim memory and mcp hotspots · openclaw/openclaw@fd48dfa test: slim provider registry mocks · openclaw/openclaw@2e08c77 test: harden Parallels update smoke · openclaw/openclaw@1a98090 feat: default Anthropic to Opus 4.7 · openclaw/openclaw@628b454 fix: harden node-host shell payload mutability checks · openclaw/openclaw@75c551e fix: land node-host approval binding for native binaries (#66731) (th… · openclaw/openclaw@29919bb CI: add daily schedule to CodeQL workflow (#67645) · openclaw/openclaw@69d25f5 fix(gateway): capture config hash after plugin auto-enable to prevent… · openclaw/openclaw@8c11210 fix: repair sanitized replay tool results before send (#67620) (thank… · openclaw/openclaw@c3c7a99 fix: restrict HTML timeout short-circuit to transient statuses · openclaw/openclaw@de129a6 fix: keep TUI watchdog bound to active run (#67401) (thanks @xantorres) · openclaw/openclaw@3525273 Gateway/skills: dedupe skills prefix-match + drop dead fallback on log · openclaw/openclaw@d7f489f Extensions/lmstudio: back off inference preload after consecutive fai… · openclaw/openclaw@b555214 TUI/streaming: add watchdog that resets the activity indicator after … · openclaw/openclaw@f44ab20 Agents/tool-loop: enable unknown-tool stream guard by default · openclaw/openclaw@36ed367 Gateway/skills: invalidate session skills snapshot on config write · openclaw/openclaw@b23d59a fix: classify HTML provider error pages correctly (#67642) (thanks @s… · openclaw/openclaw@e588e90 fix(skills): remove unused model-usage import (#67641) · openclaw/openclaw@55f05df docs(changelog): credit codex fix superseded PRs · openclaw/openclaw@e485f24 fix(openai-codex): normalize stale transport metadata in resolution a… · openclaw/openclaw@90801ba CI: pin Docker-related GitHub Actions (#67632) · openclaw/openclaw@f697b01 Android: modernize WebView and discovery API usage (#67627) · openclaw/openclaw@44a6e50 fix(deps): bump hono to 4.12.14 and @hono/node-server to 1.19.14 (GHS… · openclaw/openclaw@fbccc18 fix(deps): bump dompurify to 3.4.0 (#67614) · openclaw/openclaw@2c2dc00 CI: add explicit permissions to all workflow jobs (fixes code-scannin… · openclaw/openclaw@01b7516 fix: register bundled TTS providers and route overrides correctly (#6… · openclaw/openclaw@6ea3cdd fix: align host tilde paths with OS home (#62804) (thanks @stainlu) · openclaw/openclaw@ecfaf64 fix: flush creds queue before reconnect socket open (#67464) (thanks … · openclaw/openclaw@405c63f fix: strip standalone <function> tool call tags from visible text (#6… · openclaw/openclaw@78df859 fix(agents): preserve cli session metadata before transcript persist … · openclaw/openclaw@898fd04 docs(changelog): move cli transcript entry · openclaw/openclaw@c1817c6 fix(agents): normalize cli transcript api field · openclaw/openclaw@3a3fae0 docs(changelog): note cli transcript persistence · openclaw/openclaw@6c343f1 fix(agents): persist cli transcript turns · openclaw/openclaw@b8ef507 fix(msteams): harden security-sensitive flows (#65841) · openclaw/openclaw@c56b56e [Dashboard] Fix exec approval modal overflow for long command content… · openclaw/openclaw@053c5b0 Docs: remove QA changelog entry · openclaw/openclaw@7fd5771 QA: fix private runtime source loading (#67428) · openclaw/openclaw@d5933af docs(gateway): correct protocol.md schema path, hello-ok example, aut… · openclaw/openclaw@489404d CI: pin Node 22 runners to 22.18.0 · openclaw/openclaw@4ffa621 models.authStatus: normalize provider ids + tighten env-backed escape… · openclaw/openclaw@f2fdb9d Update CHANGELOG.md · openclaw/openclaw@7694a92 test(parallels): clean up npm update guard jobs · openclaw/openclaw@045ea7b Plugins: prefer scanDir override paths · openclaw/openclaw@b2974da fix(dreaming): default storage.mode to "separate" so phase blocks sto… · openclaw/openclaw@8c392f0 fix(memory-core): skip dreaming transcript ingestion via session stor… · openclaw/openclaw@a1b01f0 fix: dedupe replayed exec.finished node events (#67281) · openclaw/openclaw@5dcf526
feat(plugins): expose nodes runtime to cli commands · openclaw/openclaw@a126a90
steipete · 2026-04-25 · via Recent Commits to openclaw:main
Original file line numberDiff line numberDiff line change

@@ -104,6 +104,7 @@ Docs: https://docs.openclaw.ai

104104

- Agents/TTS: suppress successful spoken transcripts from verbose chat tool output when structured voice media is already queued, while preserving text output for non-builtin tool-name collisions. Fixes #71282. Thanks @neeravmakwana.

105105

- Plugins/Google Meet: reuse existing Meet tabs and active sessions across harmless URL query differences, avoiding duplicate Chrome windows when agents retry a join. Thanks @steipete.

106106

- Plugins/Google Meet: tell agents to recover already-open Meet tabs after browser timeouts, and make the dev CLI release its build lock if compiler spawning fails. Thanks @steipete.

107+

- Plugins/CLI: provide Gateway-backed node inspection to plugin commands, so `googlemeet recover-tab` can inspect paired browser nodes from the terminal. Thanks @steipete.

107108

- Gateway/sessions: recover main-agent turns interrupted by a gateway restart from stale transcript-lock evidence, avoiding stuck `status: "running"` sessions without broad post-boot transcript scans. Fixes #70555. Thanks @bitloi.

108109

- Codex approvals: keep command approval responses within Codex app-server `availableDecisions`, including deny/cancel fallbacks for prompts that do not offer `decline`. (#71338) Thanks @Lucenx9.

109110

- Codex harness: reject same-thread app-server notifications without `turnId` or `turn.id` after a bound turn starts, preventing unscoped events from mutating or completing the active reply. (#71317) Thanks @Lucenx9.

Original file line numberDiff line numberDiff line change

@@ -931,7 +931,8 @@ openclaw googlemeet recover-tab https://meet.google.com/abc-defg-hij

931931

The equivalent tool action is `recover_current_tab`. It focuses and inspects an

932932

existing Meet tab on the configured Chrome node. It does not open a new tab or

933933

create a new session; it reports the current blocker, such as login, admission,

934-

permissions, or audio-choice state.

934+

permissions, or audio-choice state. The CLI command talks to the configured

935+

Gateway, so the Gateway must be running and the Chrome node must be connected.

935936
936937

### Twilio setup checks fail

937938
Original file line numberDiff line numberDiff line change

@@ -122,8 +122,8 @@ await api.runtime.subagent.deleteSession({

122122

### `api.runtime.nodes`

123123
124124

List connected nodes and invoke a node-host command from Gateway-loaded plugin

125-

code. Use this when a plugin owns local work on a paired device, for example a

126-

browser or audio bridge on another Mac.

125+

code or from plugin CLI commands. Use this when a plugin owns local work on a

126+

paired device, for example a browser or audio bridge on another Mac.

127127
128128

```typescript

129129

const { nodes } = await api.runtime.nodes.list({ connected: true });

@@ -136,7 +136,9 @@ const result = await api.runtime.nodes.invoke({

136136

});

137137

```

138138
139-

This runtime is only available inside the Gateway. Node commands still go

139+

Inside the Gateway this runtime is in-process. In plugin CLI commands it calls

140+

the configured Gateway over RPC, so commands such as `openclaw googlemeet

141+

recover-tab` can inspect paired nodes from the terminal. Node commands still go

140142

through normal Gateway node pairing, command allowlists, and node-local command

141143

handling.

142144
Original file line numberDiff line numberDiff line change

@@ -0,0 +1,45 @@

1+

import { randomUUID } from "node:crypto";

2+

import { callGateway } from "../gateway/call.js";

3+

import { GATEWAY_CLIENT_MODES, GATEWAY_CLIENT_NAMES } from "../gateway/protocol/client-info.js";

4+

import type { PluginRuntime } from "./runtime/types.js";

5+
6+

export function createPluginCliGatewayNodesRuntime(): PluginRuntime["nodes"] {

7+

return {

8+

async list(params) {

9+

const payload = await callGateway({

10+

method: "node.list",

11+

params: {},

12+

clientName: GATEWAY_CLIENT_NAMES.CLI,

13+

mode: GATEWAY_CLIENT_MODES.CLI,

14+

});

15+

const nodes = Array.isArray(payload?.nodes) ? payload.nodes : [];

16+

const filteredNodes =

17+

params?.connected === true

18+

? nodes.filter(

19+

(node) =>

20+

node !== null &&

21+

typeof node === "object" &&

22+

(node as { connected?: unknown }).connected === true,

23+

)

24+

: nodes;

25+

return {

26+

nodes: filteredNodes as Awaited<ReturnType<PluginRuntime["nodes"]["list"]>>["nodes"],

27+

};

28+

},

29+

async invoke(params) {

30+

return await callGateway({

31+

method: "node.invoke",

32+

params: {

33+

nodeId: params.nodeId,

34+

command: params.command,

35+

...(params.params !== undefined && { params: params.params }),

36+

timeoutMs: params.timeoutMs,

37+

idempotencyKey: params.idempotencyKey || randomUUID(),

38+

},

39+

timeoutMs: params.timeoutMs ? params.timeoutMs + 5_000 : undefined,

40+

clientName: GATEWAY_CLIENT_NAMES.CLI,

41+

mode: GATEWAY_CLIENT_MODES.CLI,

42+

});

43+

},

44+

};

45+

}

Original file line numberDiff line numberDiff line change

@@ -1,6 +1,7 @@

11

import { collectUniqueCommandDescriptors } from "../cli/program/command-descriptor-utils.js";

22

import type { OpenClawConfig } from "../config/types.openclaw.js";

33

import { resolveManifestActivationPluginIds } from "./activation-planner.js";

4+

import { createPluginCliGatewayNodesRuntime } from "./cli-gateway-nodes-runtime.js";

45

import type { PluginLoadOptions } from "./loader.js";

56

import { loadOpenClawPluginCliRegistry, loadOpenClawPlugins } from "./loader.js";

67

import type { PluginRegistry } from "./registry.js";

@@ -117,6 +118,9 @@ export async function loadPluginCliCommandRegistryWithContext(params: {

117118

...(onlyPluginIds.length > 0 ? { onlyPluginIds } : {}),

118119

activate: false,

119120

cache: false,

121+

runtimeOptions: {

122+

nodes: createPluginCliGatewayNodesRuntime(),

123+

},

120124

}),

121125

),

122126

};

Original file line numberDiff line numberDiff line change

@@ -181,6 +181,21 @@ describe("registerPluginCliCommands", () => {

181181

);

182182

});

183183
184+

it("injects gateway-backed node runtime into plugin CLI commands", async () => {

185+

await registerPluginCliCommands(createProgram(), {} as OpenClawConfig);

186+
187+

expect(mocks.loadOpenClawPlugins).toHaveBeenCalledWith(

188+

expect.objectContaining({

189+

runtimeOptions: {

190+

nodes: {

191+

list: expect.any(Function),

192+

invoke: expect.any(Function),

193+

},

194+

},

195+

}),

196+

);

197+

});

198+
184199

it("loads plugin CLI commands from the auto-enabled config snapshot", async () => {

185200

const { rawConfig, autoEnabledConfig } = createAutoEnabledCliFixture();

186201

mocks.applyPluginAutoEnable.mockReturnValue({

Original file line numberDiff line numberDiff line change

@@ -8,6 +8,7 @@ import { VERSION } from "../../version.js";

88

import {

99

clearGatewaySubagentRuntime,

1010

createPluginRuntime,

11+

setGatewayNodesRuntime,

1112

setGatewaySubagentRuntime,

1213

} from "./index.js";

1314

@@ -267,4 +268,33 @@ describe("plugin runtime command execution", () => {

267268

});

268269

expect(run).toHaveBeenCalledWith({ sessionKey: "s-2", message: "hello" });

269270

});

271+
272+

it("uses explicit nodes runtime when provided", async () => {

273+

const nodes = {

274+

list: vi.fn().mockResolvedValue({ nodes: [] }),

275+

invoke: vi.fn().mockResolvedValue({ ok: true }),

276+

};

277+

const runtime = createPluginRuntime({ nodes });

278+
279+

await expect(runtime.nodes.list({ connected: true })).resolves.toEqual({ nodes: [] });

280+

await expect(

281+

runtime.nodes.invoke({ nodeId: "node-1", command: "browser.proxy" }),

282+

).resolves.toEqual({ ok: true });

283+

expect(nodes.list).toHaveBeenCalledWith({ connected: true });

284+

expect(nodes.invoke).toHaveBeenCalledWith({ nodeId: "node-1", command: "browser.proxy" });

285+

});

286+
287+

it("late-binds to gateway nodes when explicitly enabled", async () => {

288+

const nodes = {

289+

list: vi.fn().mockResolvedValue({ nodes: [{ nodeId: "node-1" }] }),

290+

invoke: vi.fn().mockResolvedValue({ ok: true }),

291+

};

292+

const runtime = createPluginRuntime({ allowGatewaySubagentBinding: true });

293+

setGatewayNodesRuntime(nodes);

294+
295+

await expect(runtime.nodes.list({ connected: true })).resolves.toEqual({

296+

nodes: [{ nodeId: "node-1" }],

297+

});

298+

expect(nodes.list).toHaveBeenCalledWith({ connected: true });

299+

});

270300

});

Original file line numberDiff line numberDiff line change

@@ -216,7 +216,7 @@ export function createPluginRuntime(_options: CreatePluginRuntimeOptions = {}):

216216

_options.subagent,

217217

_options.allowGatewaySubagentBinding === true,

218218

),

219-

nodes: createLateBindingNodes(_options.allowGatewaySubagentBinding === true),

219+

nodes: _options.nodes ?? createLateBindingNodes(_options.allowGatewaySubagentBinding === true),

220220

system: createRuntimeSystem(),

221221

media: createRuntimeMedia(),

222222

webSearch: {

Original file line numberDiff line numberDiff line change

@@ -95,5 +95,6 @@ export type PluginRuntime = PluginRuntimeCore & {

9595
9696

export type CreatePluginRuntimeOptions = {

9797

subagent?: PluginRuntime["subagent"];

98+

nodes?: PluginRuntime["nodes"];

9899

allowGatewaySubagentBinding?: boolean;

99100

};