feat(fs): add a minimal read_image tool over the attachment and fs seams

The model reads a PNG/JPEG/WebP/GIF file, the bytes commit through the
durable attachment lifecycle, and the tool result carries the real
ImageBlock so the image enters context from the next request onward.
FileSystem gains a bounded readBytes primitive (local + E2B providers);
registration is conditional on the attachment store, and a strict
execution gate refuses routes that do not declare image input, so a
text route's durable history stays free of image blocks. llm-replay
models may declare inputModalities, letting keyless ACP snapshots pin
both the sha256-referenced success and the verbatim refusal.

Supersedes the withdrawn route-scoped design of PR #598; the decision
record is .agents/notes/implemented/feature/2026-08-10-minimal-read-image-tool.md.
This commit is contained in:
creatixchu
2026-08-10 15:09:07 +08:00
parent 3764ce62a5
commit 1861a3fc7c
65 changed files with 1973 additions and 67 deletions

6
pnpm-lock.yaml generated
View File

@@ -397,6 +397,9 @@ importers:
'@deepseek-ai/dsh-app-boot':
specifier: workspace:*
version: link:../packages/boot/app-boot
'@deepseek-ai/dsh-attachment-local':
specifier: workspace:*
version: link:../packages/attachment/attachment-local
'@deepseek-ai/dsh-bash':
specifier: workspace:*
version: link:../packages/bash/bash
@@ -3730,6 +3733,9 @@ importers:
'@deepseek-ai/dsh-agent-loop-testkit':
specifier: workspace:^
version: link:../../support/agent-loop-testkit
'@deepseek-ai/dsh-attachment':
specifier: workspace:^
version: link:../../attachment/attachment
'@deepseek-ai/dsh-fs':
specifier: workspace:^
version: link:../fs