services.py 5.5 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142
  1. from core_shared import JSONValue
  2. from core_shared.secrets import EncryptedSecret, SecretCipher
  3. from app.db.models import ToolBinding, ToolCredential, ToolDefinition, ToolVersion
  4. from app.domain.repositories import (
  5. ToolBindingRepository,
  6. ToolCredentialRepository,
  7. ToolDefinitionRepository,
  8. ToolVersionRepository,
  9. )
  10. from app.schemas.tool import (
  11. ToolBindingCreateRequest,
  12. ToolCredentialCreateRequest,
  13. ToolCreateRequest,
  14. ToolVersionCreateRequest,
  15. )
  16. class ToolApplicationService:
  17. def __init__(
  18. self,
  19. tool_definition_repository: ToolDefinitionRepository,
  20. tool_version_repository: ToolVersionRepository,
  21. tool_binding_repository: ToolBindingRepository,
  22. tool_credential_repository: ToolCredentialRepository,
  23. secret_cipher: SecretCipher,
  24. ) -> None:
  25. self.tool_definition_repository = tool_definition_repository
  26. self.tool_version_repository = tool_version_repository
  27. self.tool_binding_repository = tool_binding_repository
  28. self.tool_credential_repository = tool_credential_repository
  29. self.secret_cipher = secret_cipher
  30. def create_tool_definition(self, payload: ToolCreateRequest) -> ToolDefinition:
  31. return self.tool_definition_repository.create(
  32. tenant_id=payload.tenant_id,
  33. plugin_id=payload.plugin_id,
  34. code=payload.code,
  35. name=payload.name,
  36. tool_type=payload.tool_type,
  37. description=payload.description,
  38. )
  39. def list_tool_definitions(self, tenant_id: str) -> list[ToolDefinition]:
  40. return self.tool_definition_repository.list_by_tenant(tenant_id)
  41. def create_tool_version(self, payload: ToolVersionCreateRequest) -> ToolVersion:
  42. return self.tool_version_repository.create(
  43. tenant_id=payload.tenant_id,
  44. tool_id=payload.tool_id,
  45. input_schema_json=payload.input_schema_json,
  46. output_schema_json=payload.output_schema_json,
  47. invoke_config_json=payload.invoke_config_json,
  48. timeout_ms=payload.timeout_ms,
  49. retry_policy_json=payload.retry_policy_json,
  50. )
  51. def list_tool_versions(self, tenant_id: str, tool_id: str) -> list[ToolVersion]:
  52. return self.tool_version_repository.list_by_tool(tenant_id=tenant_id, tool_id=tool_id)
  53. def create_tool_binding(self, payload: ToolBindingCreateRequest) -> ToolBinding:
  54. if payload.credential_id is not None:
  55. credential = self.tool_credential_repository.get_by_id(
  56. tenant_id=payload.tenant_id,
  57. credential_id=payload.credential_id,
  58. )
  59. if credential is None:
  60. raise ValueError(f"tool credential not found: {payload.credential_id}")
  61. return self.tool_binding_repository.create(
  62. tenant_id=payload.tenant_id,
  63. app_id=payload.app_id,
  64. tool_version_id=payload.tool_version_id,
  65. credential_id=payload.credential_id,
  66. binding_scope=payload.binding_scope,
  67. enabled=payload.enabled,
  68. config_json=payload.config_json,
  69. )
  70. def list_tool_bindings(self, tenant_id: str, app_id: str | None = None) -> list[ToolBinding]:
  71. return self.tool_binding_repository.list_by_scope(tenant_id=tenant_id, app_id=app_id)
  72. def create_tool_credential(self, payload: ToolCredentialCreateRequest) -> ToolCredential:
  73. encrypted = self.secret_cipher.encrypt_json(payload.secret_json)
  74. return self.tool_credential_repository.create(
  75. tenant_id=payload.tenant_id,
  76. name=payload.name,
  77. credential_type=payload.credential_type,
  78. encrypted_payload_text=encrypted.ciphertext,
  79. secret_fingerprint=encrypted.fingerprint,
  80. encryption_algorithm=encrypted.algorithm,
  81. metadata_json=payload.metadata_json,
  82. )
  83. def list_tool_credentials(self, tenant_id: str) -> list[ToolCredential]:
  84. return self.tool_credential_repository.list_by_tenant(tenant_id=tenant_id)
  85. def reveal_tool_credential(
  86. self,
  87. *,
  88. tenant_id: str,
  89. credential_id: str,
  90. ) -> tuple[ToolCredential, dict[str, JSONValue]] | None:
  91. credential = self.tool_credential_repository.get_by_id(
  92. tenant_id=tenant_id,
  93. credential_id=credential_id,
  94. )
  95. if credential is None:
  96. return None
  97. secret_json = self.secret_cipher.decrypt_json(
  98. EncryptedSecret(
  99. ciphertext=credential.encrypted_payload_text,
  100. fingerprint=credential.secret_fingerprint,
  101. algorithm=credential.encryption_algorithm,
  102. )
  103. )
  104. return credential, secret_json
  105. def get_tool_binding_detail(
  106. self,
  107. *,
  108. tenant_id: str,
  109. binding_id: str,
  110. ) -> tuple[ToolBinding, ToolVersion, ToolDefinition] | None:
  111. binding = self.tool_binding_repository.get_by_id(tenant_id=tenant_id, binding_id=binding_id)
  112. if binding is None:
  113. return None
  114. tool_version = self.tool_version_repository.get_by_id(
  115. tenant_id=tenant_id,
  116. tool_version_id=binding.tool_version_id,
  117. )
  118. if tool_version is None:
  119. return None
  120. tool_definition = self.tool_definition_repository.get_by_id(
  121. tenant_id=tenant_id,
  122. tool_id=tool_version.tool_id,
  123. )
  124. if tool_definition is None:
  125. return None
  126. return binding, tool_version, tool_definition