From b8290b5dc98ff0cbf4690b87a8fbccb0e9d87390 Mon Sep 17 00:00:00 2001 From: Sawyer Cutler Date: Sat, 29 Aug 2026 16:31:47 -0700 Subject: [PATCH] Update docs: live assistants relaunch when a tool-package credential connects --- ARCHITECTURE.md | 6 ++++++ IMPLEMENTATION.md | 15 +++++++++++++++ 2 files changed, 21 insertions(+) diff --git a/ARCHITECTURE.md b/ARCHITECTURE.md index f44af78ce..1baf42372 100644 --- a/ARCHITECTURE.md +++ b/ARCHITECTURE.md @@ -167,6 +167,12 @@ connected event from a system address and does not wake an agent. A generic in-room connect that an agent asked for still wakes that agent. +Credential bindings for pinned tool packages fold only at deploy. +Connecting a connector that feeds those packages relaunches live +assistants that already pin them, so the new credential is on the +run — not only on the next invite. The pending-room settle and that +relaunch are separate passes. + ## Capability growth and approval gates An agent's capability set grows through what it is granted, not through diff --git a/IMPLEMENTATION.md b/IMPLEMENTATION.md index 854582a87..e13ae65a8 100644 --- a/IMPLEMENTATION.md +++ b/IMPLEMENTATION.md @@ -132,6 +132,21 @@ template-key-only match posts `connection.connected` from the system address and does not `dispatchTurn`. A generic pending match still wakes the asking agent. +That settle is not the whole of a tool-package connect. Bindings for +pinned packages (`pinnedPackageCredentialBindingsFor` in `apps/hub`) +fold only at deploy, so a live assistant launched before the key was +pasted cannot `resolve` the new handle from the old snapshot. +Connecting a `feedsTools` connector (hub `settleServiceConnection`, +e.g. Manus → `@corbits/manus-tools`) therefore also fire-and-forget +relaunches live assistants that pin that package +(`reconcilePinnedToolPackages`). Persist-only — stamp the pin onto the +launch row and leave the run — is the bug that was fixed. Connectors +with no `feedsTools` skip the pass. Same posture as CL-6687 inference +reconcile on provider connect; see +[docs/credential-wiring.md](docs/credential-wiring.md) for the +inference path and the provider plugins (`http-x-manus-api-key` among +them). + ## GitHub connect (shipped) The in-room `connect-github` card and the Plugins/Connections GitHub row