From 308265e7cee193da2e27b561492ac26b83b52f20 Mon Sep 17 00:00:00 2001 From: root Date: Mon, 28 Sep 2026 12:44:25 +0000 Subject: [PATCH] fix(alignment): recognize tanko as hybrid (DSH + Hermes) in agent-health-check Tanko runs both DSH (pnpm dsh web) and Hermes (hermes gateway) concurrently. The false premise was that tanko is DSH-only with no Hermes gateway, which caused the gateway liveness, config.yaml, and wrapper integrity checks to be skipped entirely. Now tanko gets the full Hermes-era checks like koonimo and koby, while dsh/pi-only agents still skip those legs correctly. --- scripts/agent-health-check.py | 12 ++++++------ 1 file changed, 6 insertions(+), 6 deletions(-) diff --git a/scripts/agent-health-check.py b/scripts/agent-health-check.py index a194843..2d413ec 100755 --- a/scripts/agent-health-check.py +++ b/scripts/agent-health-check.py @@ -75,7 +75,7 @@ PVE_NODES = { # Agent definitions: ct, host, user, pve_node, vault_key_name AGENTS = { - "tanko": {"ct": 112, "host": "192.168.68.122", "user": "jerome", "pve": "minipve", "vault_key": "TANKO_LITELLM_API_KEY", "runtime": "dsh"}, + "tanko": {"ct": 112, "host": "192.168.68.122", "user": "jerome", "pve": "minipve", "vault_key": "TANKO_LITELLM_API_KEY", "runtime": "hybrid"}, # abiba = pi agent (.24) — no vault key; its LiteLLM key is read from its # local env file (key_env below), not from the shared vault or .bashrc. # runtime=pi: abiba has run pi-only since the harness purge. There is no @@ -382,10 +382,10 @@ def check_agents(): ct = agent["ct"] report_only = agent.get("report_only", False) - # Tanko runs on DSH (DeepSeek Harness) since 2026-08-27 — it no longer runs a + # Tanko runs hybrid (DSH + Hermes) since 2026-08-27 — it runs both DSH and Hermes gateway. # Hermes gateway, so skip the Hermes gateway/state/streaming/journal checks. - # Non-Hermes runtimes have no gateway to probe. dsh = Tanko since - # 2026-08-27; pi = abiba since the harness purge (.24 is pi-only). + # Non-Hermes runtimes have no gateway to probe. dsh/pi-only skip the check; + # hybrid runs both DSH and Hermes and is checked normally. if agent.get("runtime") in ("dsh", "pi"): is_dsh = agent.get("runtime") == "dsh" label = "DSH (DeepSeek Harness)" if is_dsh else "pi-only runtime" @@ -506,7 +506,7 @@ def check_ct_liveness(): def check_config_integrity(): """Verify agent config.yaml parses as valid YAML.""" for name, agent in AGENTS.items(): - # Tanko runs on DSH (DeepSeek Harness) since 2026-08-27 — no Hermes config.yaml. + # DSH/pi-only runtimes have no Hermes config.yaml; hybrid has both. if agent.get("runtime") == "dsh": print(f" ⏭️ {name}: DSH — no Hermes config.yaml since 2026-08-27") continue @@ -562,7 +562,7 @@ def _infisical_invocation_paths(wrapper_body): def check_wrapper_integrity(): """Verify the hermes CLI wrapper exists and can reach hermes-real.""" for name, agent in AGENTS.items(): - # Tanko runs on DSH (DeepSeek Harness) since 2026-08-27 — no hermes CLI wrapper. + # DSH/pi-only runtimes have no hermes CLI wrapper; hybrid has both. if agent.get("runtime") == "dsh": print(f" ⏭️ {name}: DSH — no hermes CLI wrapper since 2026-08-27") continue