Files
roboco/docker/agent-grok-secretary.Dockerfile
T
Renn F a88045aacf feat(grok): convert interactive intake/secretary to the grok CLI; delete opencode
Move the last Grok runtime off opencode onto xAI's official `grok` CLI, for full
parity with the Claude path. The intake/secretary chat now runs per-turn headless
`grok -p` invocations that resume one session id (proven live: context carries
across runs), with streaming-json deltas mapped to the existing panel StreamChunk
kinds — the IntakeDriver loop, message source, relay, and idle reaper are reused
unchanged; only the SessionFactory differs (GrokCliSession replaces the
opencode-serve session).

- GrokCliSession + a pure, unit-tested streaming-json -> StreamChunk assembler
  (thought coalesced to one block, text streamed live, end captures the session
  id for -r, fenced-draft fallback, clear errors incl. rate-limit).
- intake propose_draft and secretary read_company_state/read_task/submit_directive
  are now FastMCP servers (roboco-intake / roboco-secretary) wired into
  ~/.grok/config.toml, launched via `uv run --directory /app` to resolve the
  installed package. The secretary tools reuse the shared backend helpers.
- Orchestrator: interactive spawn mounts the subscription auth + per-agent usage
  dir (no metered xAI key, no permission env — grok flags carry per-role perms);
  usage/cost now read a captured usage.json (drop the opencode.db reader, the
  _opencode_db_path/_grok_usage_from_opencode methods, and the cost-cap's
  opencode read). hosts["opencode"] -> hosts["grok_usage"]; OPENCODE_DATA_DIR ->
  GROK_USAGE_DATA_DIR.
- Fix one-shot usage capture: `-s` does not pin the session id (grok generates
  its own), so the entrypoint now reads the real id back from the JSON run log
  and the reader uses it; usage is captured per-turn on the interactive path.
- Delete the opencode layer: opencode_config/opencode_usage/opencode_session, the
  docker/grok/*.js plugins, the old one-shot entrypoint, and their tests.
- Compose (all three files), .env.example, and stale comments updated to the
  grok-CLI runtime; add the SuperGrok auth mount + grok-usage dir.

Gate green: ruff, mypy (296 files), xenon, tests. NAS build/verify pending.
2026-06-19 04:42:25 +02:00

23 lines
1.2 KiB
Docker

# GROK Secretary Agent — interactive grok-CLI session on Grok.
# =============================================================================
# The Grok analogue of agent-secretary. Holds a PERSISTENT conversation: receives
# the CEO's messages over HTTP (POST /turn on :9000) and, per turn, runs a
# headless `grok -p` that resumes one session id, streaming each reply back to the
# panel via the relay. The Secretary's CEO-authority tools (read_company_state /
# read_task / submit_directive) are wired as the roboco-secretary MCP server
# (rendered into ~/.grok/config.toml by the driver), which calls /api/secretary/*
# with the container's HMAC agent token. Builds on the Grok runtime image
# (grok CLI + the roboco venv).
# =============================================================================
FROM roboco-agent-grok
LABEL role="grok-secretary"
LABEL description="Secretary on Grok — a panel-driven grok-CLI conversation"
# The in-container receiver the orchestrator delivers the CEO's turns to.
EXPOSE 9000
# Override the base grok one-shot entrypoint with the interactive secretary driver.
ENTRYPOINT ["python", "-m", "roboco.agent_sdk.grok_secretary_main"]