Directories
¶
| Path | Synopsis |
|---|---|
|
Package attest is the harness's half of plimsoll's run records: it signs a checked record as a DSSE envelope around an in-toto Statement v1, verifies envelopes and whole bundles (signatures, digests, and each session's chain), and replays stored requests to compare results.
|
Package attest is the harness's half of plimsoll's run records: it signs a checked record as a DSSE envelope around an in-toto Statement v1, verifies envelopes and whole bundles (signatures, digests, and each session's chain), and replays stored requests to compare results. |
|
Package client dials a remote plimsolld and adapts it to sandbox.Sandbox, so isolated calls can swap providers behind the same interface.
|
Package client dials a remote plimsolld and adapts it to sandbox.Sandbox, so isolated calls can swap providers behind the same interface. |
|
cmd
|
|
|
plimsoll-attest
command
Command plimsoll-attest is a harness for plimsoll's run records, run outside the daemon: it makes a signing key, runs a request and signs its checked record into a bundle, verifies a bundle (signatures, digests, the bundle's chain of links, session chains, and with -expect the caller's own list of its calls), and replays a bundle's single runs to compare results.
|
Command plimsoll-attest is a harness for plimsoll's run records, run outside the daemon: it makes a signing key, runs a request and signs its checked record into a bundle, verifies a bundle (signatures, digests, the bundle's chain of links, session chains, and with -expect the caller's own list of its calls), and replays a bundle's single runs to compare results. |
|
plimsoll-clients
command
Command plimsoll-clients manages caller credentials in an offline registry.
|
Command plimsoll-clients manages caller credentials in an offline registry. |
|
plimsoll-specgen
command
Command plimsoll-specgen derives a host-API grant description from an OpenAPI 3.x document (Sluice "spec-import").
|
Command plimsoll-specgen derives a host-API grant description from an OpenAPI 3.x document (Sluice "spec-import"). |
|
plimsolld
command
Command plimsolld serves the plimsoll SandboxService over Connect (h2c, so Connect, gRPC, and gRPC-Web clients all work).
|
Command plimsolld serves the plimsoll SandboxService over Connect (h2c, so Connect, gRPC, and gRPC-Web clients all work). |
|
prospector-report
command
Command prospector-report renders plimsoll's exported audit stream into a single self-contained HTML report (Prospector Phase 4) — the no-Grafana companion to the dashboard.
|
Command prospector-report renders plimsoll's exported audit stream into a single self-contained HTML report (Prospector Phase 4) — the no-Grafana companion to the dashboard. |
|
examples
|
|
|
advisor
command
Command advisor shows the efficiency advisor end to end: the same question asked of a small inventory API twice, first the way an agent tends to write it (list the ids, then one call per item, then add the column up in its own code) and then the way the advice that came back suggests.
|
Command advisor shows the efficiency advisor end to end: the same question asked of a small inventory API twice, first the way an agent tends to write it (list the ids, then one call per item, then add the column up in its own code) and then the way the advice that came back suggests. |
|
daemon
command
Command daemon runs the whole service path end to end: it starts plimsolld with a real multi-client auth file, calls it with the official Go client, and shows what the server refuses.
|
Command daemon runs the whole service path end to end: it starts plimsolld with a real multi-client auth file, calls it with the official Go client, and shows what the server refuses. |
|
grant
command
Command grant demonstrates the capability model: agent-authored code reaching a real HTTP API through an injected client, over a route allowlist the code cannot widen, with a credential it never sees.
|
Command grant demonstrates the capability model: agent-authored code reaching a real HTTP API through an injected client, over a route allowlist the code cannot widen, with a credential it never sees. |
|
internal/daemonproc
Package daemonproc builds plimsolld from source and runs it on a loopback port for the example programs, so an example exercises the real daemon, not a copy of its wiring.
|
Package daemonproc builds plimsolld from source and runs it on a loopback port for the example programs, so an example exercises the real daemon, not a copy of its wiring. |
|
internal/wasmshim
Package wasmshim holds the Node shim that runs a controller compiled to WebAssembly under the runner: controller.js, sent as a project file beside controller.wasm.
|
Package wasmshim holds the Node shim that runs a controller compiled to WebAssembly under the runner: controller.js, sent as a project file beside controller.wasm. |
|
minimal
command
Command minimal runs one JavaScript snippet in a sandbox and prints what ran, where, and behind which isolation boundary.
|
Command minimal runs one JavaScript snippet in a sandbox and prints what ran, where, and behind which isolation boundary. |
|
oracle
command
Command oracle is the physics oracle demo: an agent writes a controller, plimsoll runs it against a compiled cart-pole plant, and the trajectory's fingerprint is the acceptance test.
|
Command oracle is the physics oracle demo: an agent writes a controller, plimsoll runs it against a compiled cart-pole plant, and the trajectory's fingerprint is the acceptance test. |
|
providers
command
Command providers runs the physics oracle's run on every provider this machine can reach and writes a page comparing them: the same controller, the same runner, the same plant, and the fingerprint of the trajectory from each provider.
|
Command providers runs the physics oracle's run on every provider this machine can reach and writes a page comparing them: the same controller, the same runner, the same plant, and the fingerprint of the trajectory from each provider. |
|
sessions
command
Command sessions runs one session on an NVIDIA OpenShell sandbox through the real daemon, with the harness signing every call, and writes a page that shows the calls, their chained records, and the verifier accepting the signed bundle and refusing it with one call dropped or one byte changed.
|
Command sessions runs one session on an NVIDIA OpenShell sandbox through the real daemon, with the harness signing every call, and writes a page that shows the calls, their chained records, and the verifier accepting the signed bundle and refusing it with one call dropped or one byte changed. |
|
wasm-buck
command
Command wasm-buck runs and scores a buck converter controller written in C: the project run compiles it to WebAssembly inside the sandbox, then runs it against the buck plant, which is WebAssembly too, under the same shim as examples/wasm-controller.
|
Command wasm-buck runs and scores a buck converter controller written in C: the project run compiles it to WebAssembly inside the sandbox, then runs it against the buck plant, which is WebAssembly too, under the same shim as examples/wasm-controller. |
|
wasm-controller
command
Command wasm-controller runs and scores a controller written in C: the project run compiles it to WebAssembly inside the sandbox, then runs it against the cart-pole plant, which is WebAssembly too.
|
Command wasm-controller runs and scores a controller written in C: the project run compiles it to WebAssembly inside the sandbox, then runs it against the cart-pole plant, which is WebAssembly too. |
|
gen
|
|
|
go/plimsoll/v1/plimsollv1connect
Package plimsoll.v1 is the RPC surface of the standalone code-execution sandbox.
|
Package plimsoll.v1 is the RPC surface of the standalone code-execution sandbox. |
|
internal
|
|
|
answertest
Package answertest serves the intermediary the official clients' answer binding is tested against (failure-injection review, finding 1): a proxy that forwards every request to the daemon, so the daemon runs it, and answers every request after the first with the first one's answer, headers and all.
|
Package answertest serves the intermediary the official clients' answer binding is tested against (failure-injection review, finding 1): a proxy that forwards every request to the daemon, so the daemon runs it, and answers every request after the first with the first one's answer, headers and all. |
|
clientconfig
Package clientconfig defines the caller registry shared by the daemon and the offline operator CLI.
|
Package clientconfig defines the caller registry shared by the daemon and the offline operator CLI. |
|
grants
Package grants resolves named host-API capability profiles for the RPC server.
|
Package grants resolves named host-API capability profiles for the RPC server. |
|
insights
Package insights derives deterministic, metadata-only efficiency findings from a run's brokered host.* call trace (Prospector Phase 1).
|
Package insights derives deterministic, metadata-only efficiency findings from a run's brokered host.* call trace (Prospector Phase 1). |
|
quantise
Package quantise reports the resolution at which a module run's swept parameter was actually resolved, which is not always the resolution the caller asked for.
|
Package quantise reports the resolution at which a module run's swept parameter was actually resolved, which is not always the resolution the caller asked for. |
|
report
Package report renders plimsoll's exported audit stream into a single self-contained, dependency-free HTML report (Prospector Phase 4).
|
Package report renders plimsoll's exported audit stream into a single self-contained, dependency-free HTML report (Prospector Phase 4). |
|
rpc
Package rpc serves the plimsoll SandboxService over Connect, wrapping the transport-agnostic sandbox package with auth, rate limiting, and request validation.
|
Package rpc serves the plimsoll SandboxService over Connect, wrapping the transport-agnostic sandbox package with auth, rate limiting, and request validation. |
|
softwarewire
Package softwarewire maps the transport-neutral software admission rule to its wire form without changing its meaning.
|
Package softwarewire maps the transport-neutral software admission rule to its wire form without changing its meaning. |
|
specgen
Package specgen derives a plimsoll host-API grant description from an OpenAPI 3.x document.
|
Package specgen derives a plimsoll host-API grant description from an OpenAPI 3.x document. |
|
toolchain
Package toolchain exposes the single source of truth for the baked TypeScript toolchain versions (the repo-root toolchain.versions file), shared by the docker provider image and the e2b template so they cannot drift.
|
Package toolchain exposes the single source of truth for the baked TypeScript toolchain versions (the repo-root toolchain.versions file), shared by the docker provider image and the e2b template so they cannot drift. |
|
unreadbody
Package unreadbody keeps an HTTP/1.x server from waiting on a request body its handler answered without reading.
|
Package unreadbody keeps an HTTP/1.x server from waiting on a request body its handler answered without reading. |
|
measurements
|
|
|
session-latency
command
Command session-latency times what an agent's code tool pays per call on each provider with sessions: a fresh run, a session's snippet call, a cell in a warm interpreter (JavaScript and Python), the first cell (which starts the interpreter), a call after an idle suspend, and the data-reload case (a fresh run that rebuilds an array every call against a cell that keeps it).
|
Command session-latency times what an agent's code tool pays per call on each provider with sessions: a fresh run, a session's snippet call, a cell in a warm interpreter (JavaScript and Python), the first cell (which starts the interpreter), a call after an idle suspend, and the data-reload case (a fresh run that rebuilds an array every call against a cell that keeps it). |
|
session-latency/report
command
Command report renders docs/measurements/session-latency/*.json, written by the session-latency command, as one self-contained HTML page:
|
Command report renders docs/measurements/session-latency/*.json, written by the session-latency command, as one self-contained HTML page: |
|
warm-pool/hints
command
Command hints measures the warm pool's language hints: how the pool's split across language sets follows the hints sessions open with, what a member of each set holds in memory, and the time from a hinted open to its first cell's answer.
|
Command hints measures the warm pool's language hints: how the pool's split across language sets follows the hints sessions open with, what a member of each set holds in memory, and the time from a hinted open to its first cell's answer. |
|
warm-pool/pooled
command
Command pooled measures the docker session pool (SANDBOX_SESSION_POOL): the time from asking for a session to the first cell's answer, with and without a pool member waiting, for each language; and what a waiting member holds in memory.
|
Command pooled measures the docker session pool (SANDBOX_SESSION_POOL): the time from asking for a session to the first cell's answer, with and without a pool member waiting, for each language; and what a waiting member holds in memory. |
|
Package placement chooses which plimsoll daemon runs a request, and sends it there.
|
Package placement chooses which plimsoll daemon runs a request, and sends it there. |
|
Package protocol holds the one number the wire protocol is versioned by.
|
Package protocol holds the one number the wire protocol is versioned by. |
|
Package record computes the digests in a plimsoll run record: what a caller sent, what came back, and the record that states both with the evidence the run executed under.
|
Package record computes the digests in a plimsoll run record: what a caller sent, what came back, and the record that states both with the evidence the run executed under. |
|
Package sandbox runs untrusted, agent-authored code through an explicitly tiered execution provider.
|
Package sandbox runs untrusted, agent-authored code through an explicitly tiered execution provider. |
|
internal/deadline
Package deadline holds the one rule every provider uses to decide that a run timed out.
|
Package deadline holds the one rule every provider uses to decide that a run timed out. |
|
internal/e2bfake/envd
command
Command envd is a stand-in for E2B's envd, the agent inside an E2B sandbox, for the e2b provider's session tests: run as root inside a local container, it really starts processes, so the session conformance suite can run against the provider without E2B. It speaks the part of envd's API the provider uses, as envd does:
|
Command envd is a stand-in for E2B's envd, the agent inside an E2B sandbox, for the e2b provider's session tests: run as root inside a local container, it really starts processes, so the session conformance suite can run against the provider without E2B. It speaks the part of envd's API the provider uses, as envd does: |
|
internal/lease
Package lease records what a provider asked a remote service to create and has not yet seen deleted, so orphan reconciliation never races a create.
|
Package lease records what a provider asked a remote service to create and has not yet seen deleted, so orphan reconciliation never races a create. |
|
internal/runnerwire
Package runnerwire is the host side of the in-sandbox project runner protocol (docker/runner.mjs): the JSON plan a provider writes to the runner's stdin, the authenticated frame that carries the runner's report on its stdout, and the decoding and classification of that report.
|
Package runnerwire is the host side of the in-sandbox project runner protocol (docker/runner.mjs): the JSON plan a provider writes to the runner's stdin, the authenticated frame that carries the runner's report on its stdout, and the decoding and classification of that report. |
|
internal/sessionkit
Package sessionkit holds what every session provider runs inside its sandbox to keep the boundary between calls: the process lister that records a fresh sandbox's own processes, the sweep that runs after every call, and the interpreters a session may keep alive between calls (interp.go).
|
Package sessionkit holds what every session provider runs inside its sandbox to keep the boundary between calls: the process lister that records a fresh sandbox's own processes, the sweep that runs after every call, and the interpreters a session may keep alive between calls (interp.go). |
|
openshell
Package openshell runs plimsoll snippets and projects in NVIDIA OpenShell sandboxes, through an OpenShell gateway's gRPC API (openshell.v1, vendored at v0.1.2 under third_party/openshell and generated into gen/go/openshell).
|
Package openshell runs plimsoll snippets and projects in NVIDIA OpenShell sandboxes, through an OpenShell gateway's gRPC API (openshell.v1, vendored at v0.1.2 under third_party/openshell and generated into gen/go/openshell). |
|
sessiontest
Package sessiontest is the session conformance suite: the behavior every sandbox.SessionProvider promises, checked with node snippets and project steps through the provider itself.
|
Package sessiontest is the session conformance suite: the behavior every sandbox.SessionProvider promises, checked with node snippets and project steps through the provider itself. |
|
Package sandboxtest provides shared test helpers for projects that embed the plimsoll sandbox, so the cross-cutting guarantees are asserted by ONE implementation here instead of being copy-pasted into every consumer's tests.
|
Package sandboxtest provides shared test helpers for projects that embed the plimsoll sandbox, so the cross-cutting guarantees are asserted by ONE implementation here instead of being copy-pasted into every consumer's tests. |
Click to show internal directories.
Click to hide internal directories.

