# slm-mesh - Doramagic AI Context Pack

> 定位：安装前体验与判断资产。它帮助宿主 AI 有一个好的开始，但不代表已经安装、执行或验证目标项目。

## 充分原则

- **充分原则，不是压缩原则**：AI Context Pack 应该充分到让宿主 AI 在开工前理解项目价值、能力边界、使用入口、风险和证据来源；它可以分层组织，但不以最短摘要为目标。
- **压缩策略**：只压缩噪声和重复内容，不压缩会影响判断和开工质量的上下文。

## 给宿主 AI 的使用方式

你正在读取 Doramagic 为 slm-mesh 编译的 AI Context Pack。请把它当作开工前上下文：帮助用户理解适合谁、能做什么、如何开始、哪些必须安装后验证、风险在哪里。不要声称你已经安装、运行或执行了目标项目。

## Claim 消费规则

- **事实来源**：Repo Evidence + Claim/Evidence Graph；Human Wiki 只提供显著性、术语和叙事结构。
- **事实最低状态**：`supported`
- `supported`：可以作为项目事实使用，但回答中必须引用 claim_id 和证据路径。
- `weak`：只能作为低置信度线索，必须要求用户继续核实。
- `inferred`：只能用于风险提示或待确认问题，不能包装成项目事实。
- `unverified`：不得作为事实使用，应明确说证据不足。
- `contradicted`：必须展示冲突来源，不得替用户强行选择一个版本。

## 它最适合谁

- **AI 研究者或研究型 Agent 构建者**：README 明确围绕研究、实验或论文工作流展开。 证据：`README.md` Claim：`clm_0002` supported 0.86
- **正在使用 Claude/Codex/Cursor/Gemini 等宿主 AI 的开发者**：README 或插件配置提到多个宿主 AI。 证据：`README.md` Claim：`clm_0003` supported 0.86

## 它能做什么

- **命令行启动或安装流程**（需要安装后验证）：项目文档中存在可执行命令，真实使用需要在本地或宿主环境中运行这些命令。 证据：`README.md` Claim：`clm_0001` supported 0.86

## 怎么开始

- `npm install -g slm-mesh` 证据：`README.md` Claim：`clm_0004` supported 0.86
- `claude mcp add --scope user slm-mesh -- npx slm-mesh` 证据：`README.md` Claim：`clm_0005` supported 0.86
- `npx slm-mesh` 证据：`README.md` Claim：`clm_0005` supported 0.86, `clm_0006` supported 0.86, `clm_0007` supported 0.86
- `npx slm-mesh start` 证据：`README.md` Claim：`clm_0007` supported 0.86
- `pip install slm-mesh` 证据：`README.md` Claim：`clm_0008` supported 0.86
- `git clone https://github.com/qualixar/slm-mesh.git` 证据：`README.md` Claim：`clm_0009` supported 0.86

## 继续前判断卡

- **当前建议**：需要管理员/安全审批
- **为什么**：继续前可能涉及密钥、账号、外部服务或敏感上下文，建议先经过管理员或安全审批。

### 30 秒判断

- **现在怎么做**：需要管理员/安全审批
- **最小安全下一步**：先跑 Prompt Preview；若涉及凭证或企业环境，先审批再试装
- **先别相信**：角色质量和任务匹配不能直接相信。
- **继续会触碰**：角色选择偏差、命令执行、本地环境或项目文件

### 现在可以相信

- **适合人群线索：AI 研究者或研究型 Agent 构建者**（supported）：有 supported claim 或项目证据支撑，但仍不等于真实安装效果。 证据：`README.md` Claim：`clm_0002` supported 0.86
- **适合人群线索：正在使用 Claude/Codex/Cursor/Gemini 等宿主 AI 的开发者**（supported）：有 supported claim 或项目证据支撑，但仍不等于真实安装效果。 证据：`README.md` Claim：`clm_0003` supported 0.86
- **能力存在：命令行启动或安装流程**（supported）：可以相信项目包含这类能力线索；是否适合你的具体任务仍要试用或安装后验证。 证据：`README.md` Claim：`clm_0001` supported 0.86
- **存在 Quick Start / 安装命令线索**（supported）：可以相信项目文档出现过启动或安装入口；不要因此直接在主力环境运行。 证据：`README.md` Claim：`clm_0004` supported 0.86

### 现在还不能相信

- **角色质量和任务匹配不能直接相信。**（unverified）：角色库证明有很多角色，不证明每个角色都适合你的具体任务，也不证明角色能产生高质量结果。
- **不能把角色文案当成真实执行能力。**（unverified）：安装前只能判断角色描述和任务画像是否匹配，不能证明它能在宿主 AI 里完成任务。
- **真实输出质量不能在安装前相信。**（unverified）：Prompt Preview 只能展示引导方式，不能证明真实项目中的结果质量。
- **宿主 AI 版本兼容性不能在安装前相信。**（unverified）：Claude、Cursor、Codex、Gemini 等宿主加载规则和版本差异必须在真实环境验证。
- **不会污染现有宿主 AI 行为，不能直接相信。**（inferred）：Skill、plugin、AGENTS/CLAUDE/GEMINI 指令可能改变宿主 AI 的默认行为。
- **可安全回滚不能默认相信。**（unverified）：除非项目明确提供卸载和恢复说明，否则必须先在隔离环境验证。
- **真实安装后是否与用户当前宿主 AI 版本兼容？**（unverified）：兼容性只能通过实际宿主环境验证。
- **项目输出质量是否满足用户具体任务？**（unverified）：安装前预览只能展示流程和边界，不能替代真实评测。

### 继续会触碰什么

- **角色选择偏差**：用户对任务应该由哪个专家角色处理的判断。 原因：选错角色会让 AI 从错误专业视角回答，浪费时间或误导决策。
- **命令执行**：包管理器、网络下载、本地插件目录、项目配置或用户主目录。 原因：运行第一条命令就可能产生环境改动；必须先判断是否值得跑。 证据：`README.md`
- **本地环境或项目文件**：安装结果、插件缓存、项目配置或本地依赖目录。 原因：安装前无法证明写入范围和回滚方式，需要隔离验证。 证据：`README.md`
- **环境变量 / API Key**：项目入口文档明确出现 API key、token、secret 或账号凭证配置。 原因：如果真实安装需要凭证，应先使用测试凭证并经过权限/合规判断。 证据：`CHANGELOG.md`, `README.md`, `docs/multi-machine.md`
- **宿主 AI 上下文**：AI Context Pack、Prompt Preview、Skill 路由、风险规则和项目事实。 原因：导入上下文会影响宿主 AI 后续判断，必须避免把未验证项包装成事实。

### 最小安全下一步

- **先跑 Prompt Preview**：先用交互式试用验证任务画像和角色匹配，不要先导入整套角色库。（适用：任何项目都适用，尤其是输出质量未知时。）
- **只在隔离目录或测试账号试装**：避免安装命令污染主力宿主 AI、真实项目或用户主目录。（适用：存在命令执行、插件配置或本地写入线索时。）
- **不要使用真实生产凭证**：环境变量/API key 一旦进入宿主或工具链，可能产生账号和合规风险。（适用：出现 API、TOKEN、KEY、SECRET 等环境线索时。）
- **安装后只验证一个最小任务**：先验证加载、兼容、输出质量和回滚，再决定是否深用。（适用：准备从试用进入真实工作流时。）

### 退出方式

- **保留安装前状态**：记录原始宿主配置和项目状态，后续才能判断是否可恢复。
- **保留原始角色选择记录**：如果输出偏题，可以回到任务画像阶段重新选择角色，而不是继续沿着错误角色推进。
- **记录安装命令和写入路径**：没有明确卸载说明时，至少要知道哪些目录或配置需要手动清理。
- **准备撤销测试 API key 或 token**：测试凭证泄露或误用时，可以快速止损。
- **如果没有回滚路径，不进入主力环境**：不可回滚是继续前阻断项，不应靠信任或运气继续。

## 哪些只能预览

- 解释项目适合谁和能做什么
- 基于项目文档演示典型对话流程
- 帮助用户判断是否值得安装或继续研究

## 哪些必须安装后验证

- 真实安装 Skill、插件或 CLI
- 执行脚本、修改本地文件或访问外部服务
- 验证真实输出质量、性能和兼容性

## 边界与风险判断卡

- **把安装前预览误认为真实运行**：用户可能高估项目已经完成的配置、权限和兼容性验证。 处理方式：明确区分 prompt_preview_can_do 与 runtime_required。 Claim：`clm_0010` inferred 0.45
- **命令执行会修改本地环境**：安装命令可能写入用户主目录、宿主插件目录或项目配置。 处理方式：先在隔离环境或测试账号中运行。 证据：`README.md` Claim：`clm_0011` supported 0.86
- **待确认**：真实安装后是否与用户当前宿主 AI 版本兼容？。原因：兼容性只能通过实际宿主环境验证。
- **待确认**：项目输出质量是否满足用户具体任务？。原因：安装前预览只能展示流程和边界，不能替代真实评测。
- **待确认**：安装命令是否需要网络、权限或全局写入？。原因：这影响企业环境和个人环境的安装风险。

## 开工前工作上下文

### 加载顺序

- 先读取 how_to_use.host_ai_instruction，建立安装前判断资产的边界。
- 读取 claim_graph_summary，确认事实来自 Claim/Evidence Graph，而不是 Human Wiki 叙事。
- 再读取 intended_users、capabilities 和 quick_start_candidates，判断用户是否匹配。
- 需要执行具体任务时，优先查 role_skill_index，再查 evidence_index。
- 遇到真实安装、文件修改、网络访问、性能或兼容性问题时，转入 risk_card 和 boundaries.runtime_required。

### 任务路由

- **命令行启动或安装流程**：先说明这是安装后验证能力，再给出安装前检查清单。 边界：必须真实安装或运行后验证。 证据：`README.md` Claim：`clm_0001` supported 0.86

### 上下文规模

- 文件总数：80
- 重要文件覆盖：40/80
- 证据索引条目：59
- 角色 / Skill 条目：29

### 证据不足时的处理

- **missing_evidence**：说明证据不足，要求用户提供目标文件、README 段落或安装后验证记录；不要补全事实。
- **out_of_scope_request**：说明该任务超出当前 AI Context Pack 证据范围，并建议用户先查看 Human Manual 或真实安装后验证。
- **runtime_request**：给出安装前检查清单和命令来源，但不要替用户执行命令或声称已执行。
- **source_conflict**：同时展示冲突来源，标记为待核实，不要强行选择一个版本。

## Prompt Recipes

### 适配判断

- 目标：判断这个项目是否适合用户当前任务。
- 预期输出：适配结论、关键理由、证据引用、安装前可预览内容、必须安装后验证内容、下一步建议。

```text
请基于 slm-mesh 的 AI Context Pack，先问我 3 个必要问题，然后判断它是否适合我的任务。回答必须包含：适合谁、能做什么、不能做什么、是否值得安装、证据来自哪里。所有项目事实必须引用 evidence_refs、source_paths 或 claim_id。
```

### 安装前体验

- 目标：让用户在安装前感受核心工作流，同时避免把预览包装成真实能力或营销承诺。
- 预期输出：一段带边界标签的体验剧本、安装后验证清单和谨慎建议；不含真实运行承诺或强营销表述。

```text
请把 slm-mesh 当作安装前体验资产，而不是已安装工具或真实运行环境。

请严格输出四段：
1. 先问我 3 个必要问题。
2. 给出一段“体验剧本”：用 [安装前可预览]、[必须安装后验证]、[证据不足] 三种标签展示它可能如何引导工作流。
3. 给出安装后验证清单：列出哪些能力只有真实安装、真实宿主加载、真实项目运行后才能确认。
4. 给出谨慎建议：只能说“值得继续研究/试装”“先补充信息后再判断”或“不建议继续”，不得替项目背书。

硬性边界：
- 不要声称已经安装、运行、执行测试、修改文件或产生真实结果。
- 不要写“自动适配”“确保通过”“完美适配”“强烈建议安装”等承诺性表达。
- 如果描述安装后的工作方式，必须使用“如果安装成功且宿主正确加载 Skill，它可能会……”这种条件句。
- 体验剧本只能写成“示例台词/假设流程”：使用“可能会询问/可能会建议/可能会展示”，不要写“已写入、已生成、已通过、正在运行、正在生成”。
- Prompt Preview 不负责给安装命令；如用户准备试装，只能提示先阅读 Quick Start 和 Risk Card，并在隔离环境验证。
- 所有项目事实必须来自 supported claim、evidence_refs 或 source_paths；inferred/unverified 只能作风险或待确认项。

```

### 角色 / Skill 选择

- 目标：从项目里的角色或 Skill 中挑选最匹配的资产。
- 预期输出：候选角色或 Skill 列表，每项包含适用场景、证据路径、风险边界和是否需要安装后验证。

```text
请读取 role_skill_index，根据我的目标任务推荐 3-5 个最相关的角色或 Skill。每个推荐都要说明适用场景、可能输出、风险边界和 evidence_refs。
```

### 风险预检

- 目标：安装或引入前识别环境、权限、规则冲突和质量风险。
- 预期输出：环境、权限、依赖、许可、宿主冲突、质量风险和未知项的检查清单。

```text
请基于 risk_card、boundaries 和 quick_start_candidates，给我一份安装前风险预检清单。不要替我执行命令，只说明我应该检查什么、为什么检查、失败会有什么影响。
```

### 宿主 AI 开工指令

- 目标：把项目上下文转成一次对话开始前的宿主 AI 指令。
- 预期输出：一段边界明确、证据引用明确、适合复制给宿主 AI 的开工前指令。

```text
请基于 slm-mesh 的 AI Context Pack，生成一段我可以粘贴给宿主 AI 的开工前指令。这段指令必须遵守 not_runtime=true，不能声称项目已经安装、运行或产生真实结果。
```

## 角色 / Skill 索引

- 共索引 29 个角色 / Skill / 项目文档条目。

- **SLM Mesh SuperLocalMemory Mesh**（project_doc）：Peer-to-peer communication for AI coding agents — now across machines. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`README.md`
- **slm-mesh Python**（project_doc）：Python client for SLM Mesh https://github.com/qualixar/slm-mesh — peer-to-peer communication for AI coding agents. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`python/README.md`
- **SLM Mesh — Antigravity Integration**（project_doc）：Add to your Antigravity MCP configuration .mcp.json in project root : 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`integrations/antigravity/README.md`
- **SLM Mesh — Cursor Integration**（project_doc）：Create or edit .cursor/mcp.json in your project root: 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`integrations/cursor/README.md`
- **SLM Mesh — VS Code Integration**（project_doc）：Done. Every Claude Code session in VS Code now has mesh tools. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`integrations/vscode/README.md`
- **SLM Mesh — Windsurf Integration**（project_doc）：Add to your Windsurf MCP configuration: 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`integrations/windsurf/README.md`
- **Contributing to SLM Mesh**（project_doc）：Thank you for your interest in contributing. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`CONTRIBUTING.md`
- **Security**（project_doc）：SLM Mesh is designed for single-machine use by a single user. The security model prioritizes simplicity and defense-in-depth. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/security.md`
- **Changelog**（project_doc）：All notable changes to SLM Mesh will be documented in this file. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`CHANGELOG.md`
- **Security Policy**（project_doc）：Version Supported --------- ----------- 1.0.x Yes 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`SECURITY.md`
- **API Reference**（project_doc）：These 8 tools are available to AI agents when SLM Mesh is connected as an MCP server. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/api-reference.md`
- **Architecture**（project_doc）：SLM Mesh is a broker-based peer-to-peer communication system for AI coding agents. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/architecture.md`
- **CLI Reference**（project_doc）：All commands support --json for machine-readable output. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/cli-reference.md`
- **Configuration**（project_doc）：SLM Mesh works with zero configuration. All settings have sensible defaults. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/configuration.md`
- **Getting Started**（project_doc）：This guide walks you through installing SLM Mesh and sending your first message between two AI coding sessions. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/getting-started.md`
- **Multi-Machine SLM Mesh Setup**（project_doc）：Real-time AI agent coordination across machines on your LAN. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/multi-machine.md`
- **Python Client**（project_doc）：SLM Mesh includes a zero-dependency Python client that wraps the broker HTTP API. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/python-client.md`
- **Troubleshooting**（project_doc）："Broker not running" or connection refused 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`docs/troubleshooting.md`
- **mesh-lock**（project_doc）：Lock a file before editing to prevent other AI sessions from modifying it simultaneously. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`skills/mesh-lock.md`
- **mesh-sync**（project_doc）：One command to sync with the mesh — set your summary, check messages, see peers, and check locks. The daily standup for AI agents. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`skills/mesh-sync.md`
- **mesh-lock**（project_doc）：Lock a file before editing to prevent other AI sessions from modifying it simultaneously. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`.claude/commands/mesh-lock.md`
- **mesh-sync**（project_doc）：One command to sync with the mesh — set your summary, check messages, see peers, and check locks. The daily standup for AI agents. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`.claude/commands/mesh-sync.md`
- **Code of Conduct**（project_doc）：We are committed to making participation in this project a harassment-free experience for everyone, regardless of age, body size, disability, ethnicity, gender identity and expression, level of experience, nationality, personal appearance, race, religion, or sexual identity and orientation. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`CODE_OF_CONDUCT.md`
- **mesh-peers**（project_doc）：Discover other AI agent sessions running on this machine. Shows who else is working, what they're doing, and which files they've locked. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`skills/mesh-peers.md`
- **mesh-send**（project_doc）：Send a message to other AI agent sessions. Broadcast to all or send to a specific peer. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`skills/mesh-send.md`
- **mesh-status**（project_doc）：Show the full SLM Mesh health dashboard — peers, messages, locks, events, broker stats. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`skills/mesh-status.md`
- **mesh-peers**（project_doc）：Discover other AI agent sessions running on this machine. Shows who else is working, what they're doing, and which files they've locked. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`.claude/commands/mesh-peers.md`
- **mesh-send**（project_doc）：Send a message to other AI agent sessions. Broadcast to all or send to a specific peer. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`.claude/commands/mesh-send.md`
- **mesh-status**（project_doc）：Show the full SLM Mesh health dashboard — peers, messages, locks, events, broker stats. 激活提示：当用户需要理解项目结构、安装方式或边界时参考。 证据：`.claude/commands/mesh-status.md`

## 证据索引

- 共索引 59 条证据。

- **SLM Mesh SuperLocalMemory Mesh**（documentation）：Peer-to-peer communication for AI coding agents — now across machines. 证据：`README.md`
- **slm-mesh Python**（documentation）：Python client for SLM Mesh https://github.com/qualixar/slm-mesh — peer-to-peer communication for AI coding agents. 证据：`python/README.md`
- **SLM Mesh — Antigravity Integration**（documentation）：Add to your Antigravity MCP configuration .mcp.json in project root : 证据：`integrations/antigravity/README.md`
- **SLM Mesh — Cursor Integration**（documentation）：Create or edit .cursor/mcp.json in your project root: 证据：`integrations/cursor/README.md`
- **SLM Mesh — VS Code Integration**（documentation）：Done. Every Claude Code session in VS Code now has mesh tools. 证据：`integrations/vscode/README.md`
- **SLM Mesh — Windsurf Integration**（documentation）：Add to your Windsurf MCP configuration: 证据：`integrations/windsurf/README.md`
- **Package**（package_manifest）：{ "name": "slm-mesh", "version": "1.3.4", "description": "Peer-to-peer communication for AI coding agents — by Qualixar, powered by SuperLocalMemory", "author": "Varun Pratap Bhardwaj", "license": "Elastic-2.0", "type": "module", "main": "./dist/index.js", "types": "./dist/index.d.ts", "bin": { "slm-mesh": "./dist/index.js" }, "files": "dist", "skills", "scripts", "integrations", "README.md", "LICENSE" , "scripts": { "build": "tsup", "dev": "tsx src/index.ts", "test": "vitest run", "test:watch": "vitest", "test:coverage": "vitest run --coverage", "typecheck": "tsc --noEmit", "lint": "tsc --noEmit", "postinstall": "node scripts/postinstall.mjs 2 /dev/null true", "prepublishOnly": "npm run bu… 证据：`package.json`
- **Contributing to SLM Mesh**（documentation）：Thank you for your interest in contributing. 证据：`CONTRIBUTING.md`
- **Security**（documentation）：SLM Mesh is designed for single-machine use by a single user. The security model prioritizes simplicity and defense-in-depth. 证据：`docs/security.md`
- **Acceptance**（source_file）：URL: https://www.elastic.co/licensing/elastic-license 证据：`LICENSE`
- **Changelog**（documentation）：All notable changes to SLM Mesh will be documented in this file. 证据：`CHANGELOG.md`
- **Security Policy**（documentation）：Version Supported --------- ----------- 1.0.x Yes 证据：`SECURITY.md`
- **API Reference**（documentation）：These 8 tools are available to AI agents when SLM Mesh is connected as an MCP server. 证据：`docs/api-reference.md`
- **Architecture**（documentation）：SLM Mesh is a broker-based peer-to-peer communication system for AI coding agents. 证据：`docs/architecture.md`
- **CLI Reference**（documentation）：All commands support --json for machine-readable output. 证据：`docs/cli-reference.md`
- **Configuration**（documentation）：SLM Mesh works with zero configuration. All settings have sensible defaults. 证据：`docs/configuration.md`
- **Getting Started**（documentation）：This guide walks you through installing SLM Mesh and sending your first message between two AI coding sessions. 证据：`docs/getting-started.md`
- **Multi-Machine SLM Mesh Setup**（documentation）：Real-time AI agent coordination across machines on your LAN. 证据：`docs/multi-machine.md`
- **Python Client**（documentation）：SLM Mesh includes a zero-dependency Python client that wraps the broker HTTP API. 证据：`docs/python-client.md`
- **Troubleshooting**（documentation）："Broker not running" or connection refused 证据：`docs/troubleshooting.md`
- **mesh-lock**（documentation）：Lock a file before editing to prevent other AI sessions from modifying it simultaneously. 证据：`skills/mesh-lock.md`
- **mesh-sync**（documentation）：One command to sync with the mesh — set your summary, check messages, see peers, and check locks. The daily standup for AI agents. 证据：`skills/mesh-sync.md`
- **mesh-lock**（documentation）：Lock a file before editing to prevent other AI sessions from modifying it simultaneously. 证据：`.claude/commands/mesh-lock.md`
- **mesh-sync**（documentation）：One command to sync with the mesh — set your summary, check messages, see peers, and check locks. The daily standup for AI agents. 证据：`.claude/commands/mesh-sync.md`
- **Config**（source_file）：import { homedir } from 'node:os'; import { join } from 'node:path'; export type MeshRole = 'auto' 'broker' 'client'; export interface MeshConfig { readonly dataDir: string; readonly dbPath: string; readonly brokerPort: number; readonly brokerHost: string; readonly wsPort: number; readonly sharedSecret: string null; readonly isRemoteEnabled: boolean; readonly role: MeshRole; readonly discoveryEnabled: boolean; readonly pidPath: string; readonly portPath: string; readonly tokenPath: string; readonly logPath: string; readonly peersDir: string; readonly heartbeatIntervalMs: number; readonly staleThresholdMs: number; readonly deadThresholdMs: number; readonly idleShutdownMs: number; readonly lo… 证据：`src/config.ts`
- **Index**（source_file）：function isCliMode argv: readonly string : boolean 证据：`src/index.ts`
- **Types**（source_file）：export type PeerId = string; export type MessageId = string; export type EventId = string; export type PeerStatus = 'active' 'stale' 'dead'; export type MessageType = 'text' 'json' 'command' 'alert'; export type AgentType = 'claude-code' 'cursor' 'aider' 'codex' 'windsurf' 'vscode' 'unknown'; export type PeerScope = 'machine' 'directory' 'repo'; export type LockAction = 'lock' 'unlock' 'query'; export type StateAction = 'get' 'set' 'list' 'delete'; export type EventAction = 'read' 'subscribe' 'unsubscribe'; export interface Peer { readonly id: PeerId; readonly name: string; readonly pid: number; readonly projectPath: string; readonly gitRoot: string null; readonly gitBranch: string null; re… 证据：`src/types.ts`
- **Tsup.Config**（source_file）：import { defineConfig } from 'tsup'; 证据：`tsup.config.ts`
- **Vitest.Config**（source_file）：import { defineConfig } from 'vitest/config'; 证据：`vitest.config.ts`
- **-- Health & Status --**（source_file）：AUTH EXEMPT PATHS: frozenset str = frozenset "/health" def default token path - str ⋮---- data dir = os.environ.get "SLM MESH DATA DIR", str Path.home / ".slm-mesh" ⋮---- def read token token path: str None = None - str None ⋮---- path = token path or default token path ⋮---- token = f.read .strip ⋮---- class SLMMeshError Exception ⋮---- def init self, message: str, status code: int = 0, response: dict None = None class SLMMeshClient ⋮---- def request self, method: str, path: str, body: dict str, Any None = None - dict ⋮---- """Send an HTTP request to the broker and return parsed JSON.""" url = f"{self. base url}{path}" data = json.dumps body .encode "utf-8" if body else None headers: dict… 证据：`python/src/slm_mesh/client.py`
- **Backend**（source_file）：import type { Peer, PeerId, PeerRegistration, PeerScope, Message, StateEntry, Lock, MeshEvent, } from '../types.js'; export interface BackendAdapter { registerPeer reg: PeerRegistration & { id: string; name: string } : Peer; removePeer id: PeerId : void; listPeers scope: PeerScope, projectPath?: string, gitRoot?: string, excludeId?: PeerId, : Peer ; updateHeartbeat id: PeerId : boolean; updateSummary id: PeerId, summary: string : boolean; cleanStalePeers staleThresholdSec: number : number; cleanDeadPeers deadThresholdSec: number : string ; sendMessage msg: { id: string; fromPeer: string; toPeer: string null; type: string; payload: string; } : void; getMessages peerId: PeerId, filter: string… 证据：`src/adapters/backend.ts`
- **Memory Bridge**（source_file）：import type { Message, StateEntry, MeshEvent } from '../types.js'; export interface MemoryBridge { onMessage msg: Message : Promise ; onStateChange entry: StateEntry : Promise ; onEvent event: MeshEvent : Promise ; recall query: string : Promise ; isAvailable : boolean; } ⋮---- onMessage msg: Message : Promise ; onStateChange entry: StateEntry : Promise ; onEvent event: MeshEvent : Promise ; recall query: string : Promise ; isAvailable : boolean; 证据：`src/adapters/memory-bridge.ts`
- **Sqlite Backend**（source_file）：import type Database from 'better-sqlite3'; import type { BackendAdapter } from './backend.js'; import type { Peer, PeerId, PeerRegistration, PeerScope, Message, StateEntry, Lock, MeshEvent, PeerRow, MessageRow, StateRow, LockRow, EventRow, } from '../types.js'; import { peerFromRow, messageFromRow, stateFromRow, lockFromRow, eventFromRow, } from '../types.js'; export class SqliteBackend implements BackendAdapter ⋮---- constructor db: Database.Database registerPeer reg: PeerRegistration & { id: string; name: string }, : Peer removePeer id: PeerId : void listPeers scope: PeerScope, projectPath?: string, gitRoot?: string, excludeId?: PeerId, : Peer updateHeartbeat id: PeerId : boolean updateS… 证据：`src/adapters/sqlite-backend.ts`
- **Broker Entry**（source_file）：import { Broker } from './broker.js'; import { createConfig } from '../config.js'; 证据：`src/broker/broker-entry.ts`
- **Broker**（source_file）：import type { MeshConfig } from '../config.js'; import { BRANDING } from '../config.js'; import { openDatabase, closeDatabase, checkpointWal } from '../db/connection.js'; import { log, logError } from '../util/logger.js'; import { ensureDir } from '../util/paths.js'; import { BrokerHttpServer } from './server.js'; import { createHandlers } from './handlers.js'; import { PushManager } from './push/manager.js'; import { createWsServer, type WsServer } from './push/ws-server.js'; import { createDiscovery, type DiscoveryService } from './discovery.js'; import { IdleShutdownTimer } from './idle.js'; import { markStalePeers, cleanDeadPeers, sweepStaleSockets } from './cleanup.js'; import { writeP… 证据：`src/broker/broker.ts`
- **Ensure**（source_file）：import { spawn } from 'node:child process'; import { openSync, closeSync } from 'node:fs'; import { log } from '../util/logger.js'; import type { MeshConfig } from '../config.js'; import { readPortFile } from './port.js'; import { readTokenFile } from './token.js'; import { ensureDir } from '../util/paths.js'; ⋮---- export async function isBrokerAlive host: string, port: number : Promise export async function discoverAndCheckBroker config: MeshConfig : Promise 证据：`src/broker/ensure.ts`
- **Handlers**（source_file）：import type Database from 'better-sqlite3'; import { statSync } from 'node:fs'; import { generateId } from '../util/uuid.js'; import { VERSION } from '../config.js'; import type { MeshConfig } from '../config.js'; import { PushManager } from './push/manager.js'; import type { WsServer } from './push/ws-server.js'; import { peerFromRow, messageFromRow, stateFromRow, lockFromRow, eventFromRow, } from '../types.js'; import type { PeerRow, MessageRow, StateRow, LockRow, EventRow } from '../types.js'; ⋮---- interface HandlerDeps { readonly db: Database.Database; readonly push: PushManager; readonly wsServer?: WsServer; readonly startedAt: number; readonly subscriptions: Map ; readonly config: Me… 证据：`src/broker/handlers.ts`
- **Manager**（source_file）：import { PeerConnection } from './connection.js'; import { log } from '../../util/logger.js'; import type { PushNotification } from '../../types.js'; export class PushManager ⋮---- connect peerId: string, udsPath: string : void disconnect peerId: string : void disconnectAll : void send peerId: string, notification: PushNotification : boolean broadcast notification: PushNotification : void getConnectedPeers : string get peerCount : number 证据：`src/broker/push/manager.ts`
- **Ws Server**（source_file）：import { createServer, type Server, type IncomingMessage } from 'node:http'; import type { WebSocketServer as WsServerType, WebSocket } from 'ws'; import { log, logError } from '../../util/logger.js'; export interface WsServer { start : Promise ; stop : Promise ; broadcast data: unknown : void; sendToPeer peerId: string, data: unknown : boolean; hasRemotePeer peerId: string : boolean; readonly clientCount: number; } ⋮---- start : Promise ; stop : Promise ; broadcast data: unknown : void; sendToPeer peerId: string, data: unknown : boolean; hasRemotePeer peerId: string : boolean; ⋮---- export function createWsServer port: number, host: string, validTokens: Set , onMessage: data: unknown, clie… 证据：`src/broker/push/ws-server.ts`
- **Server**（source_file）：import { createServer, type IncomingMessage, type ServerResponse, type Server } from 'node:http'; import { log, logError } from '../util/logger.js'; export type RouteHandler = body: Record = Promise unknown; interface Route { readonly method: string; readonly path: string; readonly handler: RouteHandler; } ⋮---- export class BrokerHttpServer ⋮---- setBearerTokens tokens: Set : void addRoute method: string, path: string, handler: RouteHandler : void async start port: number, host: string : Promise stop : Promise get isListening : boolean private isAuthorized req: IncomingMessage : boolean private async handleRequest req: IncomingMessage, res: ServerResponse : Promise ⋮---- function sendJson… 证据：`src/broker/server.ts`
- **Cli**（source_file）：import { Command } from 'commander'; import { createConfig, VERSION, BRANDING } from '../config.js'; import { discoverPort } from '../broker/port.js'; import { readPidFile, isProcessAlive } from '../broker/pid.js'; import { readTokenFile } from '../broker/token.js'; import { formatPeers, formatLocks, formatEvents, formatStatus } from './format.js'; type BrokerResponse = Record & { ok?: boolean; error?: string }; ⋮---- export function buildAuthHeaders path: string, isPost: boolean : Record export async function brokerGet host: string, port: number, path: string : Promise export async function brokerPost host: string, port: number, path: string, body: Record , : Promise export function printB… 证据：`src/cli/cli.ts`
- **Format**（source_file）：import type { Peer, Message, Lock, MeshEvent, BrokerStatus } from '../types.js'; ⋮---- function pad value: string, width: number : string function truncate value: string, maxLen: number : string function formatBytes bytes: number : string function formatUptime seconds: number : string export function formatPeers peers: readonly Peer : string export function formatMessages messages: readonly Message : string export function formatLocks locks: readonly Lock : string export function formatEvents events: readonly MeshEvent : string export function formatStatus status: BrokerStatus : string 证据：`src/cli/format.ts`
- **Schema**（source_file）：export function getSchemaSQL : string 证据：`src/db/schema.ts`
- **Broker Client**（source_file）：import { createConfig } from '../config.js'; import { readTokenFile } from '../broker/token.js'; ⋮---- function resolveAuth : function buildHeaders path: string, isPost: boolean : Record export async function brokerRequest port: number, path: string, body?: unknown, : Promise 证据：`src/mcp/broker-client.ts`
- **Server**（source_file）：import { McpServer } from '@modelcontextprotocol/sdk/server/mcp.js'; import { StdioServerTransport } from '@modelcontextprotocol/sdk/server/stdio.js'; import { z } from 'zod/v4'; import { VERSION, PRODUCT NAME, createConfig } from '../config.js'; import type { MeshConfig } from '../config.js'; import { ensureBroker, discoverAndCheckBroker } from '../broker/ensure.js'; import { brokerRequest } from './broker-client.js'; import { detectAgentType } from './agent-detect.js'; import { log, logError } from '../util/logger.js'; import { createPeerListener, type PeerListener } from './peer-listener.js'; import { dirname, join } from 'node:path'; import { fileURLToPath } from 'node:url'; ⋮---- expor… 证据：`src/mcp/server.ts`
- **Code of Conduct**（documentation）：We are committed to making participation in this project a harassment-free experience for everyone, regardless of age, body size, disability, ethnicity, gender identity and expression, level of experience, nationality, personal appearance, race, religion, or sexual identity and orientation. 证据：`CODE_OF_CONDUCT.md`
- **Test Client**（source_file）：def mock response data: dict, status: int = 200 - MagicMock ⋮---- body = json.dumps data .encode "utf-8" mock = MagicMock ⋮---- class TestClientInit unittest.TestCase ⋮---- def test default host and port self - None ⋮---- client = SLMMeshClient ⋮---- def test custom host and port self - None ⋮---- client = SLMMeshClient host="10.0.0.5", port=8080, timeout=10 ⋮---- class TestRequestBuilder unittest.TestCase ⋮---- def setUp self - None ⋮---- @patch "slm mesh.client.urllib.request.urlopen" def test get request builds correct url self, mock urlopen: MagicMock - None ⋮---- call args = mock urlopen.call args req = call args 0 0 ⋮---- @patch "slm mesh.client.urllib.request.urlopen" def test post r… 证据：`python/tests/test_client.py`
- **mesh-peers**（documentation）：Discover other AI agent sessions running on this machine. Shows who else is working, what they're doing, and which files they've locked. 证据：`skills/mesh-peers.md`
- **mesh-send**（documentation）：Send a message to other AI agent sessions. Broadcast to all or send to a specific peer. 证据：`skills/mesh-send.md`
- **mesh-status**（documentation）：Show the full SLM Mesh health dashboard — peers, messages, locks, events, broker stats. 证据：`skills/mesh-status.md`
- **mesh-peers**（documentation）：Discover other AI agent sessions running on this machine. Shows who else is working, what they're doing, and which files they've locked. 证据：`.claude/commands/mesh-peers.md`
- **mesh-send**（documentation）：Send a message to other AI agent sessions. Broadcast to all or send to a specific peer. 证据：`.claude/commands/mesh-send.md`
- **mesh-status**（documentation）：Show the full SLM Mesh health dashboard — peers, messages, locks, events, broker stats. 证据：`.claude/commands/mesh-status.md`
- **Tsconfig**（structured_config）：{ "compilerOptions": { "target": "ES2022", "module": "ESNext", "moduleResolution": "bundler", "lib": "ES2022" , "outDir": "./dist", "rootDir": "./src", "strict": true, "esModuleInterop": true, "skipLibCheck": true, "forceConsistentCasingInFileNames": true, "resolveJsonModule": true, "declaration": true, "declarationMap": true, "sourceMap": true, "noUncheckedIndexedAccess": true, "noUnusedLocals": true, "noUnusedParameters": true, "exactOptionalPropertyTypes": false, "isolatedModules": true }, "include": "src/ / .ts" , "exclude": "node modules", "dist", "tests" } 证据：`tsconfig.json`
- **Backup & research — all intel, LLDs, sessions never public**（source_file）：Backup & research — all intel, LLDs, sessions never public .backup/ research/ 证据：`.gitignore`
- **Only publish what users need**（source_file）：Only publish what users need Whitelist approach via package.json "files" field is preferred, but .npmignore provides defense-in-depth 证据：`.npmignore`
- **Manifest**（source_file）：include README.md include LICENSE recursive-include src/slm mesh .py exclude .backup exclude research exclude tests 证据：`python/MANIFEST.in`
- **Pyproject**（source_file）：project name = "slm-mesh" version = "1.2.3" description = "Python client for SLM Mesh — peer-to-peer communication for AI coding agents." readme = "README.md" license = "Elastic-2.0" requires-python = " =3.10" authors = { name = "Varun Pratap Bhardwaj" } keywords = "mcp", "ai-agents", "peer-to-peer", "slm-mesh", "superlocalmemory" dependencies = 证据：`python/pyproject.toml`
- **Postinstall**（source_file）：/ SLM Mesh — Post-install: auto-setup skills for supported platforms. Runs after npm install -g slm-mesh . SAFETY RULES: - NEVER overwrite existing files skip if file exists - NEVER modify existing config files - NEVER break if a platform isn't installed - Only CREATE new files in expected directories - Every operation wrapped in try/catch - Silent exit on any error don't break npm install Copyright 2026 Varun Pratap Bhardwaj. Elastic-2.0. / ⋮---- // Silent exit if skills folder missing CI, partial install ⋮---- // ─── Claude Code: ~/.claude/commands/ ─── // These are slash commands. Only copies files that don't already exist. ⋮---- // Skip silently — don't break npm install ⋮---- // ─── Su… 证据：`scripts/postinstall.mjs`

## 宿主 AI 必须遵守的规则

- **把本资产当作开工前上下文，而不是运行环境。**：AI Context Pack 只包含证据化项目理解，不包含目标项目的可执行状态。 证据：`README.md`, `python/README.md`, `integrations/antigravity/README.md`
- **回答用户时区分可预览内容与必须安装后才能验证的内容。**：安装前体验的消费者价值来自降低误装和误判，而不是伪装成真实运行。 证据：`README.md`, `python/README.md`, `integrations/antigravity/README.md`

## 用户开工前应该回答的问题

- 你准备在哪个宿主 AI 或本地环境中使用它？
- 你只是想先体验工作流，还是准备真实安装？
- 你最在意的是安装成本、输出质量、还是和现有规则的冲突？

## 验收标准

- 所有能力声明都能回指到 evidence_refs 中的文件路径。
- AI_CONTEXT_PACK.md 没有把预览包装成真实运行。
- 用户能在 3 分钟内看懂适合谁、能做什么、如何开始和风险边界。

---

## Doramagic Context Augmentation

下面内容用于强化 Repomix/AI Context Pack 主体。Human Manual 只提供阅读骨架；踩坑日志会被转成宿主 AI 必须遵守的工作约束。

## Human Manual 骨架

使用规则：这里只是项目阅读路线和显著性信号，不是事实权威。具体事实仍必须回到 repo evidence / Claim Graph。

宿主 AI 硬性规则：
- 不得把页标题、章节顺序、摘要或 importance 当作项目事实证据。
- 解释 Human Manual 骨架时，必须明确说它只是阅读路线/显著性信号。
- 能力、安装、兼容性、运行状态和风险判断必须引用 repo evidence、source path 或 Claim Graph。

- **Project Overview & Getting Started**：importance `high`
  - source_paths: README.md, python/README.md, python/src/slm_mesh/__init__.py, package.json, src/index.ts
- **Broker, MCP Server, CLI & Data Architecture**：importance `high`
  - source_paths: src/broker/broker.ts, src/broker/broker-entry.ts, src/broker/ensure.ts, src/broker/handlers.ts, src/broker/server.ts
- **Multi-Machine Coordination, Skills & Agent Integrations**：importance `high`
  - source_paths: docs/multi-machine.md, skills/mesh-peers.md, skills/mesh-send.md, skills/mesh-lock.md, skills/mesh-status.md
- **Configuration, Security & Operations**：importance `high`
  - source_paths: docs/configuration.md, docs/security.md, docs/troubleshooting.md, SECURITY.md, src/config.ts

## Repo Inspection Evidence / 源码检查证据

- repo_clone_verified: true
- repo_inspection_verified: true
- repo_commit: `7fd37395910cd1144f9eb2f6245910036ce9d9b1`
- inspected_files: `README.md`, `package.json`, `docs/architecture.md`, `docs/troubleshooting.md`, `docs/multi-machine.md`, `docs/getting-started.md`, `docs/configuration.md`, `docs/cli-reference.md`, `docs/python-client.md`, `docs/api-reference.md`, `docs/security.md`, `src/types.ts`, `src/index.ts`, `src/config.ts`, `src/broker/broker.ts`, `src/broker/broker-entry.ts`, `src/broker/cleanup.ts`, `src/broker/handlers.ts`, `src/broker/pid.ts`, `src/broker/ensure.ts`

宿主 AI 硬性规则：
- 没有 repo_clone_verified=true 时，不得声称已经读过源码。
- 没有 repo_inspection_verified=true 时，不得把 README/docs/package 文件判断写成事实。
- 没有 quick_start_verified=true 时，不得声称 Quick Start 已跑通。

## Doramagic Pitfall Constraints / 踩坑约束

这些规则来自 Doramagic 发现、验证或编译过程中的项目专属坑点。宿主 AI 必须把它们当作工作约束，而不是普通说明文字。

### Constraint 1: 可能修改宿主 AI 配置

- Trigger: 项目面向 Claude/Cursor/Codex/Gemini/OpenCode 等宿主，或安装命令涉及用户配置目录。
- Host AI rule: 列出会写入的配置文件、目录和卸载/回滚步骤。
- Why it matters: 安装可能改变本机 AI 工具行为，用户需要知道写入位置和回滚方法。
- Evidence: capability.host_targets | github_repo:1204198694 | https://github.com/qualixar/slm-mesh | host_targets=mcp_host, claude_code, claude, cursor
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 2: 能力判断依赖假设

- Trigger: README/documentation is current enough for a first validation pass.
- Host AI rule: 将假设转成下游验证清单。
- Why it matters: 假设不成立时，用户拿不到承诺的能力。
- Evidence: capability.assumptions | github_repo:1204198694 | https://github.com/qualixar/slm-mesh | README/documentation is current enough for a first validation pass.
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 3: 维护活跃度未知

- Trigger: 未记录 last_activity_observed。
- Host AI rule: 补 GitHub 最近 commit、release、issue/PR 响应信号。
- Why it matters: 新项目、停更项目和活跃项目会被混在一起，推荐信任度下降。
- Evidence: evidence.maintainer_signals | github_repo:1204198694 | https://github.com/qualixar/slm-mesh | last_activity_observed missing
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

- Trigger: no_demo
- Evidence: downstream_validation.risk_items | github_repo:1204198694 | https://github.com/qualixar/slm-mesh | no_demo; severity=medium
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 5: 存在评分风险

- Trigger: no_demo
- Why it matters: 风险会影响是否适合普通用户安装。
- Evidence: risks.scoring_risks | github_repo:1204198694 | https://github.com/qualixar/slm-mesh | no_demo; severity=medium
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 6: issue/PR 响应质量未知

- Trigger: issue_or_pr_quality=unknown。
- Host AI rule: 抽样最近 issue/PR，判断是否长期无人处理。
- Why it matters: 用户无法判断遇到问题后是否有人维护。
- Evidence: evidence.maintainer_signals | github_repo:1204198694 | https://github.com/qualixar/slm-mesh | issue_or_pr_quality=unknown
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。

### Constraint 7: 发布节奏不明确

- Trigger: release_recency=unknown。
- Host AI rule: 确认最近 release/tag 和 README 安装命令是否一致。
- Why it matters: 安装命令和文档可能落后于代码，用户踩坑概率升高。
- Evidence: evidence.maintainer_signals | github_repo:1204198694 | https://github.com/qualixar/slm-mesh | release_recency=unknown
- Hard boundary: 不要把这个坑点包装成已解决、已验证或可忽略，除非后续验证证据明确证明它已经关闭。
