# oto-cli - Doramagic AI Context Pack

> 定位：安装前体验与判断资产。它帮助宿主 AI 有一个好的开始，但不代表已经安装、执行或验证目标项目。

## 充分原则

- **充分原则，不是压缩原则**：AI Context Pack 应该充分到让宿主 AI 在开工前理解项目价值、能力边界、使用入口、风险和证据来源；它可以分层组织，但不以最短摘要为目标。
- **压缩策略**：只压缩噪声和重复内容，不压缩会影响判断和开工质量的上下文。

## 给宿主 AI 的使用方式

你正在读取 Doramagic 为 oto-cli 编译的 AI Context Pack。请把它当作开工前上下文：帮助用户理解适合谁、能做什么、如何开始、哪些必须安装后验证、风险在哪里。不要声称你已经安装、运行或执行了目标项目。

## Claim 消费规则

- **事实来源**：Repo Evidence + Claim/Evidence Graph；Human Wiki 只提供显著性、术语和叙事结构。
- **事实最低状态**：`supported`
- `supported`：可以作为项目事实使用，但回答中必须引用 claim_id 和证据路径。
- `weak`：只能作为低置信度线索，必须要求用户继续核实。
- `inferred`：只能用于风险提示或待确认问题，不能包装成项目事实。
- `unverified`：不得作为事实使用，应明确说证据不足。
- `contradicted`：必须展示冲突来源，不得替用户强行选择一个版本。

## 它最适合谁

- **正在使用 Claude/Codex/Cursor/Gemini 等宿主 AI 的开发者**：README 或插件配置提到多个宿主 AI。 证据：`README.md` Claim：`clm_0002` supported 0.86

## 它能做什么

- **命令行启动或安装流程**（需要安装后验证）：项目文档中存在可执行命令，真实使用需要在本地或宿主环境中运行这些命令。 证据：`README.md` Claim：`clm_0001` supported 0.86

## 怎么开始

- `pipx install oto-cli` 证据：`README.md` Claim：`clm_0003` supported 0.86, `clm_0004` supported 0.86, `clm_0005` supported 0.86
- `pipx install "oto-cli[google,browser]"` 证据：`README.md` Claim：`clm_0004` supported 0.86
- `pipx install "oto-cli[all]"` 证据：`README.md` Claim：`clm_0005` supported 0.86
- `git clone https://github.com/otomata-tech/oto-cli.git` 证据：`README.md` Claim：`clm_0006` supported 0.86

## 继续前判断卡

- **当前建议**：需要管理员/安全审批
- **为什么**：继续前可能涉及密钥、账号、外部服务或敏感上下文，建议先经过管理员或安全审批。

### 30 秒判断

- **现在怎么做**：需要管理员/安全审批
- **最小安全下一步**：先跑 Prompt Preview；若涉及凭证或企业环境，先审批再试装
- **先别相信**：真实输出质量不能在安装前相信。
- **继续会触碰**：命令执行、宿主 AI 配置、本地环境或项目文件

### 现在可以相信

- **适合人群线索：正在使用 Claude/Codex/Cursor/Gemini 等宿主 AI 的开发者**（supported）：有 supported claim 或项目证据支撑，但仍不等于真实安装效果。 证据：`README.md` Claim：`clm_0002` supported 0.86
- **能力存在：命令行启动或安装流程**（supported）：可以相信项目包含这类能力线索；是否适合你的具体任务仍要试用或安装后验证。 证据：`README.md` Claim：`clm_0001` supported 0.86
- **存在 Quick Start / 安装命令线索**（supported）：可以相信项目文档出现过启动或安装入口；不要因此直接在主力环境运行。 证据：`README.md` Claim：`clm_0003` supported 0.86, `clm_0004` supported 0.86, `clm_0005` supported 0.86

### 现在还不能相信

- **真实输出质量不能在安装前相信。**（unverified）：Prompt Preview 只能展示引导方式，不能证明真实项目中的结果质量。
- **宿主 AI 版本兼容性不能在安装前相信。**（unverified）：Claude、Cursor、Codex、Gemini 等宿主加载规则和版本差异必须在真实环境验证。
- **不会污染现有宿主 AI 行为，不能直接相信。**（inferred）：Skill、plugin、AGENTS/CLAUDE/GEMINI 指令可能改变宿主 AI 的默认行为。 证据：`CLAUDE.md`
- **可安全回滚不能默认相信。**（unverified）：除非项目明确提供卸载和恢复说明，否则必须先在隔离环境验证。
- **真实安装后是否与用户当前宿主 AI 版本兼容？**（unverified）：兼容性只能通过实际宿主环境验证。
- **项目输出质量是否满足用户具体任务？**（unverified）：安装前预览只能展示流程和边界，不能替代真实评测。
- **安装命令是否需要网络、权限或全局写入？**（unverified）：这影响企业环境和个人环境的安装风险。 证据：`README.md`

### 继续会触碰什么

- **命令执行**：包管理器、网络下载、本地插件目录、项目配置或用户主目录。 原因：运行第一条命令就可能产生环境改动；必须先判断是否值得跑。 证据：`README.md`
- **宿主 AI 配置**：Claude/Codex/Cursor/Gemini/OpenCode 等宿主的 plugin、Skill 或规则加载配置。 原因：宿主配置会改变 AI 后续工作方式，可能和用户已有规则冲突。 证据：`CLAUDE.md`
- **本地环境或项目文件**：安装结果、插件缓存、项目配置或本地依赖目录。 原因：安装前无法证明写入范围和回滚方式，需要隔离验证。 证据：`README.md`
- **环境变量 / API Key**：项目入口文档明确出现 API key、token、secret 或账号凭证配置。 原因：如果真实安装需要凭证，应先使用测试凭证并经过权限/合规判断。 证据：`CLAUDE.md`, `README.md`, `docs/concepts.md`, `docs/installation.md`
- **宿主 AI 上下文**：AI Context Pack、Prompt Preview、Skill 路由、风险规则和项目事实。 原因：导入上下文会影响宿主 AI 后续判断，必须避免把未验证项包装成事实。

### 最小安全下一步

- **先跑 Prompt Preview**：用安装前交互式试用判断工作方式是否匹配，不需要授权或改环境。（适用：任何项目都适用，尤其是输出质量未知时。）
- **只在隔离目录或测试账号试装**：避免安装命令污染主力宿主 AI、真实项目或用户主目录。（适用：存在命令执行、插件配置或本地写入线索时。）
- **先备份宿主 AI 配置**：Skill、plugin、规则文件可能改变 Claude/Cursor/Codex 的默认行为。（适用：存在插件 manifest、Skill 或宿主规则入口时。）
- **不要使用真实生产凭证**：环境变量/API key 一旦进入宿主或工具链，可能产生账号和合规风险。（适用：出现 API、TOKEN、KEY、SECRET 等环境线索时。）
- **安装后只验证一个最小任务**：先验证加载、兼容、输出质量和回滚，再决定是否深用。（适用：准备从试用进入真实工作流时。）

### 退出方式

- **保留安装前状态**：记录原始宿主配置和项目状态，后续才能判断是否可恢复。
- **准备移除宿主 plugin / Skill / 规则入口**：如果试装后行为异常，可以把宿主 AI 恢复到试装前状态。
- **记录安装命令和写入路径**：没有明确卸载说明时，至少要知道哪些目录或配置需要手动清理。
- **准备撤销测试 API key 或 token**：测试凭证泄露或误用时，可以快速止损。
- **如果没有回滚路径，不进入主力环境**：不可回滚是继续前阻断项，不应靠信任或运气继续。

## 哪些只能预览

- 解释项目适合谁和能做什么
- 基于项目文档演示典型对话流程
- 帮助用户判断是否值得安装或继续研究

## 哪些必须安装后验证

- 真实安装 Skill、插件或 CLI
- 执行脚本、修改本地文件或访问外部服务
- 验证真实输出质量、性能和兼容性

## 边界与风险判断卡

- **把安装前预览误认为真实运行**：用户可能高估项目已经完成的配置、权限和兼容性验证。 处理方式：明确区分 prompt_preview_can_do 与 runtime_required。 Claim：`clm_0007` inferred 0.45
- **命令执行会修改本地环境**：安装命令可能写入用户主目录、宿主插件目录或项目配置。 处理方式：先在隔离环境或测试账号中运行。 证据：`README.md` Claim：`clm_0008` supported 0.86
- **待确认**：真实安装后是否与用户当前宿主 AI 版本兼容？。原因：兼容性只能通过实际宿主环境验证。
- **待确认**：项目输出质量是否满足用户具体任务？。原因：安装前预览只能展示流程和边界，不能替代真实评测。
- **待确认**：安装命令是否需要网络、权限或全局写入？。原因：这影响企业环境和个人环境的安装风险。

## 开工前工作上下文

### 加载顺序

- 先读取 how_to_use.host_ai_instruction，建立安装前判断资产的边界。
- 读取 claim_graph_summary，确认事实来自 Claim/Evidence Graph，而不是 Human Wiki 叙事。
- 再读取 intended_users、capabilities 和 quick_start_candidates，判断用户是否匹配。
- 需要执行具体任务时，优先查 role_skill_index，再查 evidence_index。
- 遇到真实安装、文件修改、网络访问、性能或兼容性问题时，转入 risk_card 和 boundaries.runtime_required。

### 任务路由

- **命令行启动或安装流程**：先说明这是安装后验证能力，再给出安装前检查清单。 边界：必须真实安装或运行后验证。 证据：`README.md` Claim：`clm_0001` supported 0.86

### 上下文规模

- 文件总数：44
- 重要文件覆盖：40/44
- 证据索引条目：43
- 角色 / Skill 条目：11

### 证据不足时的处理

- **missing_evidence**：说明证据不足，要求用户提供目标文件、README 段落或安装后验证记录；不要补全事实。
- **out_of_scope_request**：说明该任务超出当前 AI Context Pack 证据范围，并建议用户先查看 Human Manual 或真实安装后验证。
- **runtime_request**：给出安装前检查清单和命令来源，但不要替用户执行命令或声称已执行。
- **source_conflict**：同时展示冲突来源，标记为待核实，不要强行选择一个版本。

## Prompt Recipes

### 适配判断

- 目标：判断这个项目是否适合用户当前任务。
- 预期输出：适配结论、关键理由、证据引用、安装前可预览内容、必须安装后验证内容、下一步建议。

```text
请基于 oto-cli 的 AI Context Pack，先问我 3 个必要问题，然后判断它是否适合我的任务。回答必须包含：适合谁、能做什么、不能做什么、是否值得安装、证据来自哪里。所有项目事实必须引用 evidence_refs、source_paths 或 claim_id。
```

### 安装前体验

- 目标：让用户在安装前感受核心工作流，同时避免把预览包装成真实能力或营销承诺。
- 预期输出：一段带边界标签的体验剧本、安装后验证清单和谨慎建议；不含真实运行承诺或强营销表述。

```text
请把 oto-cli 当作安装前体验资产，而不是已安装工具或真实运行环境。

请严格输出四段：
1. 先问我 3 个必要问题。
2. 给出一段“体验剧本”：用 [安装前可预览]、[必须安装后验证]、[证据不足] 三种标签展示它可能如何引导工作流。
3. 给出安装后验证清单：列出哪些能力只有真实安装、真实宿主加载、真实项目运行后才能确认。
4. 给出谨慎建议：只能说“值得继续研究/试装”“先补充信息后再判断”或“不建议继续”，不得替项目背书。

硬性边界：
- 不要声称已经安装、运行、执行测试、修改文件或产生真实结果。
- 不要写“自动适配”“确保通过”“完美适配”“强烈建议安装”等承诺性表达。
- 如果描述安装后的工作方式，必须使用“如果安装成功且宿主正确加载 Skill，它可能会……”这种条件句。
- 体验剧本只能写成“示例台词/假设流程”：使用“可能会询问/可能会建议/可能会展示”，不要写“已写入、已生成、已通过、正在运行、正在生成”。
- Prompt Preview 不负责给安装命令；如用户准备试装，只能提示先阅读 Quick Start 和 Risk Card，并在隔离环境验证。
- 所有项目事实必须来自 supported claim、evidence_refs 或 source_paths；inferred/unverified 只能作风险或待确认项。

```

### 角色 / Skill 选择

- 目标：从项目里的角色或 Skill 中挑选最匹配的资产。
- 预期输出：候选角色或 Skill 列表，每项包含适用场景、证据路径、风险边界和是否需要安装后验证。

```text
请读取 role_skill_index，根据我的目标任务推荐 3-5 个最相关的角色或 Skill。每个推荐都要说明适用场景、可能输出、风险边界和 evidence_refs。
```

### 风险预检

- 目标：安装或引入前识别环境、权限、规则冲突和质量风险。
- 预期输出：环境、权限、依赖、许可、宿主冲突、质量风险和未知项的检查清单。

```text
请基于 risk_card、boundaries 和 quick_start_candidates，给我一份安装前风险预检清单。不要替我执行命令，只说明我应该检查什么、为什么检查、失败会有什么影响。
```

### 宿主 AI 开工指令

- 目标：把项目上下文转成一次对话开始前的宿主 AI 指令。
- 预期输出：一段边界明确、证据引用明确、适合复制给宿主 AI 的开工前指令。

```text
请基于 oto-cli 的 AI Context Pack，生成一段我可以粘贴给宿主 AI 的开工前指令。这段指令必须遵守 not_runtime=true，不能声称项目已经安装、运行或产生真实结果。
```

## 角色 / Skill 索引

- 共索引 11 个角色 / Skill / 项目文档条目。

- **oto-cli**（project_doc）：Façade CLI d'Oto — commandes Typer oto au-dessus de la lib oto-core . 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`CLAUDE.md`
- **oto — CLI toolkit for AI agents**（project_doc）：Your LLM already uses gh for GitHub, aws for AWS, gcloud for GCP. oto covers the long tail — the SaaS products that don't have a CLI. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`README.md`
- **Concepts**（project_doc）：LLMs are good at using CLI tools — they were trained on billions of terminal interactions. For popular tools gh , aws , gcloud , docker , the LLM already knows the commands. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/concepts.md`
- **Create a connector**（project_doc）：A connector is a pair: command + tool client . Write clear --help strings — that's how agents and the oto plugin's universal skill discover it. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/create-connector.md`
- **Gmail OAuth Setup**（project_doc）：Gmail nécessite un OAuth2 user flow pas un service account car il accède aux données personnelles de l'utilisateur. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/gmail-oauth-setup.md`
- **Gmail — markdown / HTML body rendering**（project_doc）：Gmail — markdown / HTML body rendering 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/gmail.md`
- **Google Docs — markdown import & styling**（project_doc）：Google Docs — markdown import & styling 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/google-docs.md`
- **Google Service Account Setup**（project_doc）：This guide explains how to create a Google Service Account from scratch to use with otomata tools. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/google-service-account-setup.md`
- **Installation**（project_doc）：oto is a CLI toolkit. Install it once with pipx , then every connector is a sub-command oto google , oto linkedin , … . The CLI is self-documenting via --help , so your AI agent Claude Code, Cursor, … discovers how to drive it. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/installation.md`
- **Zoho Desk — OAuth setup**（project_doc）：Steps to obtain the secrets needed by oto zohodesk . 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/zoho-desk-oauth-setup.md`
- **TODO / Roadmap**（project_doc）：Multi-backend support Currently using Patchright undetectable Playwright . Consider adding alternative backends: 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`TODO.md`

## 证据索引

- 共索引 43 条证据。

- **oto-cli**（documentation）：Façade CLI d'Oto — commandes Typer oto au-dessus de la lib oto-core . 证据：`CLAUDE.md`
- **oto — CLI toolkit for AI agents**（documentation）：Your LLM already uses gh for GitHub, aws for AWS, gcloud for GCP. oto covers the long tail — the SaaS products that don't have a CLI. 证据：`README.md`
- **License**（source_file）：Permission is hereby granted, free of charge, to any person obtaining a copy of this software and associated documentation files the "Software" , to deal in the Software without restriction, including without limitation the rights to use, copy, modify, merge, publish, distribute, sublicense, and/or sell copies of the Software, and to permit persons to whom the Software is furnished to do so, subject to the following conditions: 证据：`LICENSE`
- **Concepts**（documentation）：LLMs are good at using CLI tools — they were trained on billions of terminal interactions. For popular tools gh , aws , gcloud , docker , the LLM already knows the commands. 证据：`docs/concepts.md`
- **Create a connector**（documentation）：A connector is a pair: command + tool client . Write clear --help strings — that's how agents and the oto plugin's universal skill discover it. 证据：`docs/create-connector.md`
- **Gmail OAuth Setup**（documentation）：Gmail nécessite un OAuth2 user flow pas un service account car il accède aux données personnelles de l'utilisateur. 证据：`docs/gmail-oauth-setup.md`
- **Gmail — markdown / HTML body rendering**（documentation）：Gmail — markdown / HTML body rendering 证据：`docs/gmail.md`
- **Google Docs — markdown import & styling**（documentation）：Google Docs — markdown import & styling 证据：`docs/google-docs.md`
- **Google Service Account Setup**（documentation）：This guide explains how to create a Google Service Account from scratch to use with otomata tools. 证据：`docs/google-service-account-setup.md`
- **Installation**（documentation）：oto is a CLI toolkit. Install it once with pipx , then every connector is a sub-command oto google , oto linkedin , … . The CLI is self-documenting via --help , so your AI agent Claude Code, Cursor, … discovers how to drive it. 证据：`docs/installation.md`
- **Zoho Desk — OAuth setup**（documentation）：Steps to obtain the secrets needed by oto zohodesk . 证据：`docs/zoho-desk-oauth-setup.md`
- **TODO / Roadmap**（documentation）：Multi-backend support Currently using Patchright undetectable Playwright . Consider adding alternative backends: 证据：`TODO.md`
- **Secrets**（source_file）：venv/ pycache / .egg-info/ dist/ oto/tools/whatsapp/node/node modules/ 证据：`.gitignore`
- **Cli**（source_file）：app = typer.Typer ⋮---- commands dir = Path file .parent / "commands" ⋮---- module name = cmd file.stem ⋮---- module = importlib.import module f"oto.commands.{ module name}" ⋮---- plugin app = ep.load ⋮---- EXTRA FOR MODULE = { ⋮---- def extra for missing: str - str ⋮---- def main ⋮---- extra = extra for e.name or "" 证据：`oto/cli.py`
- **stock duckdb/pyarrow/pandas EN BASE, pas en extra : la CLI est le**（source_file）：build-system requires = "setuptools =68" build-backend = "setuptools.build meta" 证据：`pyproject.toml`
- **2. Injecte chaque entrée**（source_file）：SOURCE = Path "/mnt/otomata/time-entries.json" NAMESPACE = "timetrack" ⋮---- def main ⋮---- parser = argparse.ArgumentParser ⋮---- args = parser.parse args ⋮---- payload = json.loads args.source.read text entries = payload.get "entries", ⋮---- row = entry to row e ⋮---- client = DatastoreClient ⋮---- ns = client.create namespace NAMESPACE ⋮---- 2. Injecte chaque entrée ok = 0 failed = ⋮---- def entry to row e: dict - dict 证据：`scripts/migrate_timetrack.py`
- **--- Companies ---**（source_file）：app = typer.Typer help="Attio CRM — contacts, companies, deals, lists" ⋮---- task app = typer.Typer help="Tasks reminders, follow-ups " ⋮---- def out data ⋮---- def client ⋮---- def request method, endpoint, kwargs ⋮---- c = client ⋮---- def query all object type, limit=500 ⋮---- records = offset = 0 ⋮---- data = request "POST", f"objects/{object type}/records/query", json={"limit": 50, "offset": offset} batch = data.get "data", ⋮---- def extract value values, slug ⋮---- vals = values.get slug, ⋮---- v = vals 0 ⋮---- @app.command "people" def people search: Optional str = typer.Argument None, help="Search by name" ⋮---- data = request "POST", "objects/people/records/query", json={ records =… 证据：`oto/commands/_attio.py`
- **Anthropic**（source_file）：app = typer.Typer help="Anthropic Admin API usage & cost tracking " ⋮---- client = AnthropicAdminClient groups = g.strip for g in group by.split "," if group by else None models = model if model else None data = client.get usage bucket width=bucket, group by=groups, models=models, ⋮---- data = client.get costs group by=groups ⋮---- result = client.get daily summary days=days ⋮---- @app.command "today" def today ⋮---- result = client.get today cost 证据：`oto/commands/anthropic.py`
- **Audio**（source_file）：app = typer.Typer help="Audio recorder — transcripts & summaries on tuls.me" ⋮---- def out data ⋮---- def client ⋮---- path = resolve folder folder ⋮---- result = client .push path, with audio=with audio ⋮---- @app.command "list" def list recordings ⋮---- @app.command "get" def get recording id: str = typer.Argument ..., help="Recording ID" ⋮---- @app.command "delete" def delete recording id: str = typer.Argument ..., help="Recording ID" ⋮---- def resolve folder folder: Optional str - Path ⋮---- path = Path folder .expanduser ⋮---- recordings dir = Path.home / "Recordings" path = recordings dir / folder ⋮---- folders = sorted recordings dir.iterdir , key=lambda p: p.stat .st mtime, reverse=… 证据：`oto/commands/audio.py`
- **Browser**（source_file）：app = typer.Typer help="Browser automation tools LinkedIn, Crunchbase, Indeed, Google, etc. " ⋮---- linkedin app = typer.Typer help="LinkedIn sourcing profile/company/search + outreach connect/send . Run 'oto browser linkedin login' once first — a logged-in local browser profile is the robust path. Injected cookies work only with the real Google Chrome channel matching TLS fingerprint ; sharing one cookie to a server logs the user out — prefer the local profile." ⋮---- DEFAULT LINKEDIN PROFILE = "~/.config/browser/linkedin" ⋮---- def linkedin client kwargs ⋮---- async def run ⋮---- result = asyncio.run run ⋮---- kw list = keywords.split "," if keywords else None ⋮---- sncf app = typer.Typer… 证据：`oto/commands/browser.py`
- **Config**（source_file）：app = typer.Typer help="Configuration and secrets management" ⋮---- TRACKED SECRETS = ⋮---- @app.callback invoke without command=True def show ctx: typer.Context ⋮---- provider = get provider search provider = get search provider ⋮---- project secrets = find project secrets user secrets = get user secrets ⋮---- status = "+" if get secret name else "-" ⋮---- provider app = typer.Typer help="Manage providers secrets, search " ⋮---- config = get oto config .copy ⋮---- @app.command "secrets-push" def secrets push ⋮---- secrets file = get user secrets ⋮---- secrets = parse env file secrets file ⋮---- revision = push secrets secrets ⋮---- @app.command "secrets-pull" def secrets pull ⋮---- secrets… 证据：`oto/commands/config.py`
- **Culture**（source_file）：app = typer.Typer help="French Ministry of Culture open data data.culture.gouv.fr " ⋮---- spectacle app = typer.Typer help="Licences entrepreneurs de spectacles vivants LES " ⋮---- def print obj ⋮---- client = SpectacleClient ⋮---- result = client.search ⋮---- result = client.stats 证据：`oto/commands/culture.py`
- **Data**（source_file）：app = typer.Typer help="Datastore — stockage structuré per-user Google Sheets via MCP " ⋮---- def client ⋮---- def print data - None ⋮---- @app.command "namespaces" def namespaces ⋮---- @app.command "create" def create namespace: str = typer.Argument ..., help="Nom du namespace kebab-case " ⋮---- @app.command "rm" def rm namespace: str = typer.Argument ... ⋮---- @app.command "url" def url namespace: str = typer.Argument ... ⋮---- row = json.loads row json ⋮---- filter dict: dict str, str = {} ⋮---- patch = json.loads patch json 证据：`oto/commands/data.py`
- **Dvf**（source_file）：app = typer.Typer help="DVF — valeurs foncières immobilier par commune, open data" ⋮---- res = DvfClient .comparables ⋮---- res = DvfClient .comparables by address ⋮---- res = DvfClient .stats code commune=code commune, type local=type local, years=years 证据：`oto/commands/dvf.py`
- **Enrichment**（source_file）：app = typer.Typer help="Contact enrichment tools" ⋮---- kaspr app = typer.Typer help="Kaspr contact enrichment" ⋮---- hunter app = typer.Typer help="Hunter.io email tools" ⋮---- lemlist app = typer.Typer help="Lemlist campaign & lead management" ⋮---- client = KasprClient data to get = "workEmail", "phone" if with phone else None result = client.enrich linkedin linkedin slug, name=name, data to get=data to get ⋮---- client = HunterClient result = client.domain search domain, limit=limit ⋮---- result = client.email finder domain, full name=name ⋮---- result = client.email verifier email ⋮---- @lemlist app.command "campaigns" def lemlist campaigns ⋮---- client = LemlistClient campaigns = clie… 证据：`oto/commands/enrichment.py`
- **--- Companies ---**（source_file）：app = typer.Typer help="Folk CRM — contacts, companies, deals, notes" ⋮---- def out data ⋮---- def client ⋮---- @app.command "groups" def groups ⋮---- items = client .list groups ⋮---- c = client filters = {} ⋮---- items = c.list people filters result = ⋮---- @app.command "person" def person person id: str = typer.Argument ..., help="Person ID per ... " ⋮---- """Get a person's details.""" ⋮---- """Create a contact.""" emails = email if email else None phones = phone if phone else None group ids = group if group else None result = client .create person ⋮---- """Update a contact.""" fields = {} ⋮---- @app.command "delete-person" def delete person person id: str = typer.Argument ..., help="Per… 证据：`oto/commands/folk.py`
- **Fr**（source_file）：app = typer.Typer help="French company data identity, finances, legal events, tenders " ⋮---- client = EntreprisesClient result = client.search ⋮---- @app.command "get" def get siren: str = typer.Argument ..., help="SIREN 9 digits " ⋮---- entreprises = EntreprisesClient inpi = InpiClient bodacc = BodaccClient ⋮---- f identity = pool.submit entreprises.get by siren, siren f bilans = pool.submit inpi.list exercises, siren f events = pool.submit bodacc.search by siren, siren, None, 10 ⋮---- identity = f identity.result ⋮---- exercises = f bilans.result latest bilan = None ⋮---- latest bilan = inpi.get bilan siren, exercises 0 "date cloture exercice" ⋮---- events data = f events.result ⋮---- re… 证据：`oto/commands/fr.py`
- **Gemini**（source_file）：app = typer.Typer help="Gemini image generation text-to-image and image editing " ⋮---- MODEL ALIASES = { ⋮---- def resolve model model: str - str ⋮---- client = GeminiClient resolved = resolve model model out path = Path output ⋮---- src = Path image ⋮---- mime = mimetypes.guess type str src 0 or "image/jpeg" b64 = base64.b64encode src.read bytes .decode result = client.edit image prompt, b64, mime, model=resolved, image size=size ⋮---- img bytes = base64.b64decode result "data" ⋮---- result = client.generate image prompt, output dir=str out path.parent , model=resolved ⋮---- generated = Path result "image path" ⋮---- manifest path = Path manifest ⋮---- jobs = json.loads manifest path.read… 证据：`oto/commands/gemini.py`
- **Gocardless**（source_file）：app = typer.Typer help="GoCardless direct-debit API read-only " ⋮---- def client ⋮---- def out data ⋮---- @app.command "creditors" def creditors ⋮---- @app.command "payment" def payment payment id: str = typer.Argument ..., help="ID prélèvement PM… " ⋮---- @app.command "mandate" def mandate mandate id: str = typer.Argument ..., help="ID mandat MD… " ⋮---- @app.command "customer" def customer customer id: str = typer.Argument ..., help="ID customer CU… " ⋮---- @app.command "party" def party payment id: str = typer.Argument ..., help="ID prélèvement PM… " ⋮---- @app.command "failure" def failure payment id: str = typer.Argument ..., help="ID prélèvement PM… " 证据：`oto/commands/gocardless.py`
- **Google**（source_file）：app = typer.Typer help="Google Workspace tools Drive, Docs, Sheets, Slides, Gmail, Chat, Calendar, Tasks " ⋮---- ALL SCOPES = list set GMAIL SCOPES + CHAT SCOPES + CALENDAR SCOPES + DRIVE SCOPES + TASKS SCOPES ⋮---- accounts = list accounts 证据：`oto/commands/google.py`
- **--- commands ----------------------------------------------------------------**（source_file）：app = typer.Typer help="Façade vers mcp.oto.ninja secrets, configuration " secrets app = typer.Typer help="Lecture/écriture des secrets stockés côté DB" ⋮---- LINKEDIN FIELDS = "LINKEDIN COOKIE", "LINKEDIN USER AGENT" CRUNCHBASE FIELDS = "CRUNCHBASE USER AGENT", API KEY PROVIDERS = "serper", "hunter", "sirene", "attio", "lemlist" ⋮---- def client ⋮---- def resolve name: str - tuple str, str ⋮---- provider = name : -len " API KEY" .lower ⋮---- def fetch value client, group: str, field: str ⋮---- data = client.get linkedin ⋮---- data = client.get crunchbase ⋮---- provider = group.split ":", 1 1 data = client.get api key provider ⋮---- def handle error e - None ⋮---- detail = e.detail.get "err… 证据：`oto/commands/ninja.py`
- **Notion**（source_file）：app = typer.Typer help="Notion tools" ⋮---- client = NotionClient results = client.search query, filter type=filter type ⋮---- page = client.get page page id ⋮---- results = client.query database database id, page size=limit ⋮---- db = client.get database database id 证据：`oto/commands/notion.py`
- **Openai**（source_file）：app = typer.Typer help="OpenAI image generation text-to-image and image editing " ⋮---- MODEL ALIASES = { ⋮---- def resolve model model: str - str ⋮---- client = OpenAIImageClient resolved = resolve model model out path = Path output ⋮---- src = Path image ⋮---- mime = mimetypes.guess type str src 0 or "image/png" b64 = base64.b64encode src.read bytes .decode result = client.edit image prompt, b64, mime, model=resolved, image size=size ⋮---- result = client.generate image prompt, output dir=str out path.parent , model=resolved, size=size or "1024x1024" ⋮---- generated = Path result "image path" ⋮---- manifest path = Path manifest ⋮---- jobs = json.loads manifest path.read text ⋮---- out dir… 证据：`oto/commands/openai.py`
- **Pdf**（source_file）：app = typer.Typer ⋮---- out = generate pdf input md, output, template ⋮---- @app.command "template" def show template 证据：`oto/commands/pdf.py`
- **Pennylane**（source_file）：app = typer.Typer help="Pennylane accounting API" ⋮---- def client ⋮---- def out data ⋮---- @app.command "company" def company ⋮---- @app.command "fiscal-years" def fiscal years ⋮---- @app.command "ledger-accounts" def ledger accounts ⋮---- @app.command "categories" def categories ⋮---- client = client files = sorted glob.glob f"{directory}/ .pdf" results = {"ok": 0, "errors": 0} ⋮---- name = f.split "/" -1 result = client.upload file f ⋮---- result = client .create customer ⋮---- fields = {} ⋮---- result = client .create product ⋮---- lines = ⋮---- parts = l.split ":" entry = {"product id": int parts 0 , "quantity": float parts 1 } ⋮---- result = client .create customer invoice ⋮---- produ… 证据：`oto/commands/pennylane.py`
- **Reddit**（source_file）：app = typer.Typer help="Reddit public JSON API, no auth " ⋮---- result = RedditClient .subreddit name, sort=sort, limit=limit, time=time, after=after ⋮---- result = RedditClient .search ⋮---- result = RedditClient .search subreddits query, limit=limit ⋮---- result = RedditClient .post url or id, comment limit=comments, depth=depth 证据：`oto/commands/reddit.py`
- **Search**（source_file）：app = typer.Typer help="Web search dispatches to serper or browser via config " ⋮---- def search serper query: str, num: int, tbs: Optional str - dict ⋮---- def search browser query: str, num: int - dict ⋮---- async def run ⋮---- provider = get search provider ⋮---- result = search browser query, num ⋮---- result = search serper query, num, tbs ⋮---- client = SerperClient result = client.search news query, num=num, tbs=tbs 证据：`oto/commands/search.py`
- **Serper**（source_file）：app = typer.Typer help="Serper API Google search, news, scrape " ⋮---- client = SerperClient result = client.search query, num=num, tbs=tbs ⋮---- result = client.search news query, num=num, tbs=tbs ⋮---- result = client.scrape page url, include markdown=markdown ⋮---- result = client.get suggestions query, country=country 证据：`oto/commands/serper.py`
- **Slack**（source_file）：app = typer.Typer help="Slack messaging — channels, DMs, history" ⋮---- def client ctx: typer.Context, default as user: bool = True ⋮---- workspace = ctx.obj or {} .get "workspace" if ctx else None ⋮---- client = client ctx, default as user=not as bot ⋮---- text = sys.stdin.read .rstrip ⋮---- target = channel ⋮---- email = channel.lstrip "@" user = client.find user by email email "user" target = client.open dm user "id" "channel" "id" ⋮---- result = client.post message target, text=text, thread ts=thread ts ⋮---- result = client.delete message channel, ts ⋮---- channels = client ctx, default as user=False .list channels types=types ⋮---- result = client ctx, default as user=False .history c… 证据：`oto/commands/slack.py`
- **Unipile**（source_file）：app = typer.Typer help="Unipile — hosted LinkedIn search/scrape/messaging " ⋮---- def out data ⋮---- @app.command "accounts" def accounts ⋮---- url = UnipileClient .hosted auth link 证据：`oto/commands/unipile.py`
- **Whatsapp**（source_file）：app = typer.Typer help="WhatsApp messaging" ⋮---- @app.command "auth" def auth ⋮---- result = WhatsAppClient .auth ⋮---- result = WhatsAppClient .send to=to, message=message ⋮---- result = WhatsAppClient .list chats limit=limit ⋮---- result = WhatsAppClient .read chat=chat, limit=limit 证据：`oto/commands/whatsapp.py`
- **Zoho**（source_file）：app = typer.Typer help="Zoho CRM — records, contacts, deals, notes" ⋮---- def out data ⋮---- def client ⋮---- def parse fields fields: list str - dict ⋮---- result = {} ⋮---- @app.command "modules" def modules ⋮---- mods = client .list modules result = {"api name": m "api name" , "label": m.get "plural label", m.get "singular label", "" } for m in mods ⋮---- data = client .list records module, page=page, per page=max results, fields=fields records list = data.get "data", ⋮---- data = client .search records module, criteria=criteria, page=page, per page=max results ⋮---- data = parse fields fields ⋮---- items = client .list notes module, record id 证据：`oto/commands/zoho.py`
- **--- Tickets ---**（source_file）：app = typer.Typer help="Zoho Desk — tickets, contacts, departments" ⋮---- def out data ⋮---- def client ⋮---- def parse fields fields: list str - dict ⋮---- result: dict = {} ⋮---- --- Tickets --- ⋮---- data = client .list tickets items = data.get "data", ⋮---- data: dict = { ⋮---- data = parse fields fields ⋮---- @app.command "delete-ticket" def delete ticket ticket id: str = typer.Argument ..., help="Ticket ID" ⋮---- q = parse fields query data = client .search tickets q, from index=from index, limit=max results ⋮---- @app.command "threads" def threads ticket id: str = typer.Argument ..., help="Ticket ID" ⋮---- data = client .list threads ticket id ⋮---- data = client .list contacts from… 证据：`oto/commands/zohodesk.py`

## 宿主 AI 必须遵守的规则

- **把本资产当作开工前上下文，而不是运行环境。**：AI Context Pack 只包含证据化项目理解，不包含目标项目的可执行状态。 证据：`CLAUDE.md`, `README.md`, `LICENSE`
- **回答用户时区分可预览内容与必须安装后才能验证的内容。**：安装前体验的消费者价值来自降低误装和误判，而不是伪装成真实运行。 证据：`CLAUDE.md`, `README.md`, `LICENSE`

## 用户开工前应该回答的问题

- 你准备在哪个宿主 AI 或本地环境中使用它？
- 你只是想先体验工作流，还是准备真实安装？
- 你最在意的是安装成本、输出质量、还是和现有规则的冲突？

## 验收标准

- 所有能力声明都能回指到 evidence_refs 中的文件路径。
- AI_CONTEXT_PACK.md 没有把预览包装成真实运行。
- 用户能在 3 分钟内看懂适合谁、能做什么、如何开始和风险边界。

---

## Doramagic Context Augmentation

下面内容用于强化 Repomix/AI Context Pack 主体。Human Manual 只提供阅读骨架；踩坑日志会被转成宿主 AI 必须遵守的工作约束。

## Human Manual 骨架

使用规则：这里只是项目阅读路线和显著性信号，不是事实权威。具体事实仍必须回到 repo evidence / Claim Graph。

宿主 AI 硬性规则：
- 不得把页标题、章节顺序、摘要或 importance 当作项目事实证据。
- 解释 Human Manual 骨架时，必须明确说它只是阅读路线/显著性信号。
- 能力、安装、兼容性、运行状态和风险判断必须引用 repo evidence、source path 或 Claim Graph。

- **oto-cli 概述：AI 代理的 CLI 工具包**：importance `high`
  - source_paths: README.md, pyproject.toml, docs/installation.md
- **系统架构与命令自动发现**：importance `high`
  - source_paths: oto/cli.py, oto/commands/__init__.py, docs/concepts.md
- **连接器生态：SaaS 与浏览器自动化**：importance `high`
  - source_paths: oto/commands/browser.py, oto/commands/google.py, oto/commands/notion.py, oto/commands/folk.py, oto/commands/zoho.py
- **密钥管理与自定义连接器开发**：importance `high`
  - source_paths: oto/commands/config.py, docs/create-connector.md, docs/gmail-oauth-setup.md, docs/google-service-account-setup.md, docs/zoho-desk-oauth-setup.md

## Repo Inspection Evidence / 源码检查证据

- repo_clone_verified: true
- repo_inspection_verified: true
- repo_commit: `ef46ac998cd115aa5ba18694e33bac76d1f499ee`
- inspected_files: `README.md`, `pyproject.toml`, `docs/concepts.md`, `docs/create-connector.md`, `docs/gmail-oauth-setup.md`, `docs/gmail.md`, `docs/google-docs.md`, `docs/google-service-account-setup.md`, `docs/installation.md`, `docs/zoho-desk-oauth-setup.md`

宿主 AI 硬性规则：
- 没有 repo_clone_verified=true 时，不得声称已经读过源码。
- 没有 repo_inspection_verified=true 时，不得把 README/docs/package 文件判断写成事实。
- 没有 quick_start_verified=true 时，不得声称 Quick Start 已跑通。

## Doramagic Pitfall Constraints / 踩坑约束

这些规则来自 Doramagic 发现、验证或编译过程中的项目专属坑点。宿主 AI 必须把它们当作工作约束，而不是普通说明文字。

### Constraint 1: 来源证据：Épic — rework secrets côté CLI : providers (keychain/sops) + lookup scopé

- Trigger: GitHub 社区证据显示该项目存在一个安装相关的待验证问题：Épic — rework secrets côté CLI : providers (keychain/sops) + lookup scopé
- Why it matters: 可能影响升级、迁移或版本选择。
- Evidence: community_evidence:github | https://github.com/otomata-tech/oto-cli/issues/3 | 来源讨论提到 python 相关条件，需在安装/试用前复核。
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 2: 可能修改宿主 AI 配置

- Trigger: 项目面向 Claude/Cursor/Codex/Gemini/OpenCode 等宿主，或安装命令涉及用户配置目录。
- Host AI rule: 列出会写入的配置文件、目录和卸载/回滚步骤。
- Why it matters: 安装可能改变本机 AI 工具行为，用户需要知道写入位置和回滚方法。
- Evidence: capability.host_targets | https://github.com/otomata-tech/oto-cli | host_targets=mcp_host, claude_code, claude, chatgpt
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 3: 能力判断依赖假设

- Trigger: README/documentation is current enough for a first validation pass.
- Host AI rule: 将假设转成下游验证清单。
- Why it matters: 假设不成立时，用户拿不到承诺的能力。
- Evidence: capability.assumptions | https://github.com/otomata-tech/oto-cli | README/documentation is current enough for a first validation pass.
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 4: 维护活跃度未知

- Trigger: 未记录 last_activity_observed。
- Host AI rule: 补 GitHub 最近 commit、release、issue/PR 响应信号。
- Why it matters: 新项目、停更项目和活跃项目会被混在一起，推荐信任度下降。
- Evidence: evidence.maintainer_signals | https://github.com/otomata-tech/oto-cli | last_activity_observed missing
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

- Trigger: no_demo
- Evidence: downstream_validation.risk_items | https://github.com/otomata-tech/oto-cli | no_demo; severity=medium
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 6: 存在评分风险

- Trigger: no_demo
- Why it matters: 风险会影响是否适合普通用户安装。
- Evidence: risks.scoring_risks | https://github.com/otomata-tech/oto-cli | no_demo; severity=medium
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 7: 来源证据：Isoler les connecteurs custom/client du core public via entry-points `oto.commands`

- Trigger: GitHub 社区证据显示该项目存在一个安全/权限相关的待验证问题：Isoler les connecteurs custom/client du core public via entry-points `oto.commands`
- Host AI rule: 来源显示可能已有修复、规避或版本变化，说明书中必须标注适用版本。
- Why it matters: 可能影响授权、密钥配置或安全边界。
- Evidence: community_evidence:github | https://github.com/otomata-tech/oto-cli/issues/9 | 来源类型 github_issue 暴露的待验证使用条件。
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 8: issue/PR 响应质量未知

- Trigger: issue_or_pr_quality=unknown。
- Host AI rule: 抽样最近 issue/PR，判断是否长期无人处理。
- Why it matters: 用户无法判断遇到问题后是否有人维护。
- Evidence: evidence.maintainer_signals | https://github.com/otomata-tech/oto-cli | issue_or_pr_quality=unknown
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 9: 发布节奏不明确

- Trigger: release_recency=unknown。
- Host AI rule: 确认最近 release/tag 和 README 安装命令是否一致。
- Why it matters: 安装命令和文档可能落后于代码，用户踩坑概率升高。
- Evidence: evidence.maintainer_signals | https://github.com/otomata-tech/oto-cli | release_recency=unknown
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。
