aft/config.rs
1use std::collections::{HashMap, HashSet};
2use std::path::PathBuf;
3
4use serde::{Deserialize, Serialize};
5
6use crate::harness::Harness;
7
8/// Runtime configuration for the aft process.
9///
10/// Holds project-scoped settings and tuning knobs. Values are set at startup
11/// and remain immutable for the lifetime of the process.
12#[derive(Debug, Clone, Copy, PartialEq, Eq, Serialize, Deserialize)]
13#[serde(rename_all = "snake_case")]
14pub enum SemanticBackend {
15 Fastembed,
16 #[serde(rename = "openai_compatible")]
17 OpenAiCompatible,
18 Ollama,
19}
20
21impl SemanticBackend {
22 pub const fn as_str(&self) -> &'static str {
23 match self {
24 Self::Fastembed => "fastembed",
25 Self::OpenAiCompatible => "openai_compatible",
26 Self::Ollama => "ollama",
27 }
28 }
29
30 pub fn from_name(name: &str) -> Option<Self> {
31 match name {
32 "fastembed" => Some(Self::Fastembed),
33 "openai_compatible" => Some(Self::OpenAiCompatible),
34 "ollama" => Some(Self::Ollama),
35 _ => None,
36 }
37 }
38}
39
40#[derive(Debug, Clone, PartialEq, Eq, Serialize, Deserialize)]
41pub struct SemanticBackendConfig {
42 pub backend: SemanticBackend,
43 pub model: String,
44 pub base_url: Option<String>,
45 pub api_key_env: Option<String>,
46 pub timeout_ms: u64,
47 pub max_batch_size: usize,
48 /// Maximum number of project files to semantically index. Guards local
49 /// fastembed memory (model + embeddings + batch buffers) on huge project
50 /// roots; remote backends that embed server-side can raise it freely.
51 pub max_files: usize,
52}
53
54#[derive(Debug, Clone, Default, PartialEq, Eq, Serialize, Deserialize)]
55pub struct UserServerDef {
56 pub id: String,
57 pub extensions: Vec<String>,
58 pub binary: String,
59 pub args: Vec<String>,
60 pub root_markers: Vec<String>,
61 pub env: HashMap<String, String>,
62 pub initialization_options: Option<serde_json::Value>,
63 pub disabled: bool,
64}
65
66impl Default for SemanticBackendConfig {
67 fn default() -> Self {
68 Self {
69 backend: SemanticBackend::Fastembed,
70 model: DEFAULT_SEMANTIC_MODEL.to_string(),
71 base_url: None,
72 api_key_env: None,
73 // Keep the default below the plugin bridge timeout to avoid bridge-killed
74 // semantic_search requests when callers do not set an explicit timeout.
75 timeout_ms: 25_000,
76 max_batch_size: 64,
77 max_files: 20_000,
78 }
79 }
80}
81
82pub const DEFAULT_SEMANTIC_MODEL: &str = "all-MiniLM-L6-v2";
83
84impl Config {
85 pub fn semantic_backend_label(&self) -> &'static str {
86 self.semantic.backend.as_str()
87 }
88}
89
90#[derive(Debug, Clone, Serialize, Deserialize)]
91#[serde(default)]
92pub struct Config {
93 /// Root directory of the project being analyzed. `None` if not scoped.
94 pub project_root: Option<PathBuf>,
95 /// How many levels of call-graph edges to follow during validation (default: 1).
96 pub validation_depth: u32,
97 /// Hours before a checkpoint expires and is eligible for cleanup (default: 24).
98 pub checkpoint_ttl_hours: u32,
99 /// Maximum depth for recursive symbol resolution (default: 10).
100 pub max_symbol_depth: u32,
101 /// Seconds before killing a formatter subprocess (default: 10).
102 pub formatter_timeout_secs: u32,
103 /// Seconds before killing a type-checker subprocess (default: 30).
104 pub type_checker_timeout_secs: u32,
105 /// Whether to auto-format files after edits (default: true).
106 pub format_on_edit: bool,
107 /// Whether to auto-validate files after edits (default: false).
108 /// When "syntax", only tree-sitter parse check. When "full", runs type checker.
109 pub validate_on_edit: Option<String>,
110 /// Per-language formatter overrides. Keys: "typescript", "python", "rust", "go".
111 /// Values: "biome", "oxfmt", "prettier", "deno", "ruff", "black", "rustfmt", "goimports", "gofmt", "none".
112 pub formatter: HashMap<String, String>,
113 /// Per-language type checker overrides. Keys: "typescript", "python", "rust", "go".
114 /// Values: "tsc", "tsgo", "biome", "pyright", "ruff", "cargo", "go", "staticcheck", "none".
115 pub checker: HashMap<String, String>,
116 /// Whether to restrict file operations to within `project_root` (default: false).
117 /// When true, write-capable commands reject paths outside the project root.
118 pub restrict_to_project_root: bool,
119 /// Enable the trigram search index (default: false).
120 pub search_index: bool,
121 /// Enable semantic search (default: false).
122 pub semantic_search: bool,
123 /// Enable experimental bash command rewriting (default: false).
124 pub experimental_bash_rewrite: bool,
125 /// Enable experimental bash command compression (default: false).
126 pub experimental_bash_compress: bool,
127 /// Enable experimental bash background execution (default: false).
128 pub experimental_bash_background: bool,
129 /// Maximum number of background bash tasks allowed to run concurrently (default: 8).
130 pub max_background_bash_tasks: usize,
131 /// Emit reminders for long-running bash tasks (default: true).
132 pub bash_long_running_reminder_enabled: bool,
133 /// Milliseconds between long-running bash reminders (default: 10 minutes).
134 pub bash_long_running_reminder_interval_ms: u64,
135 /// Enable OpenCode-style bash permission prompts (default: false).
136 pub bash_permissions: bool,
137 /// Maximum file size to fully index in bytes (default: 1MB).
138 pub search_index_max_file_size: u64,
139 /// Maximum number of source files allowed for call-graph operations
140 /// (`callers`, `trace_to`, `trace_data`, `impact`). When a project
141 /// exceeds this count the reverse index is not built and those
142 /// commands return a `project_too_large` error. Does not affect
143 /// `grep`, `glob`, `read`, `edit`, or other non-callgraph features.
144 /// Default: 5_000 (matches measured per-op cost ceilings; raise for
145 /// very large projects if you accept multi-minute per-call latency).
146 pub max_callgraph_files: usize,
147 pub semantic: SemanticBackendConfig,
148 /// Enable Astral ty as an experimental Python LSP server (default: false).
149 pub experimental_lsp_ty: bool,
150 /// User-defined LSP servers registered by the OpenCode plugin.
151 pub lsp_servers: Vec<UserServerDef>,
152 /// Lowercase LSP server IDs disabled by user config.
153 pub disabled_lsp: HashSet<String>,
154 /// Extra directories to search when resolving LSP binaries.
155 /// The plugin populates these from its own auto-install cache (e.g.
156 /// `~/.cache/aft/lsp-packages/<pkg>/node_modules/.bin/`) so a binary AFT
157 /// installed itself is discoverable without needing it on PATH.
158 /// Resolution order: `<project_root>/node_modules/.bin/<bin>` →
159 /// `lsp_paths_extra/<bin>` (in order) → PATH via `which`.
160 pub lsp_paths_extra: Vec<PathBuf>,
161 /// Binary names the hosting plugin knows how to auto-install.
162 ///
163 /// Built-in LSPs discovered from files only emit missing-binary warnings
164 /// when their binary is in this set. User-configured `lsp_servers` keep
165 /// warning unconditionally.
166 pub lsp_auto_install_binaries: HashSet<String>,
167 /// Binary names with plugin-managed auto-installs currently in flight.
168 ///
169 /// Missing-binary warnings are suppressed while the install is actively
170 /// running; install failure reporting is handled by the plugin after the
171 /// background work settles.
172 pub lsp_inflight_installs: HashSet<String>,
173 /// Persistent storage directory for indexes (trigram, semantic).
174 /// Set by the plugin to the XDG-compliant path (e.g. ~/.local/share/opencode/storage/plugin/aft/).
175 /// Falls back to ~/.cache/aft/ if not set.
176 pub storage_dir: Option<PathBuf>,
177 /// Allow URL-fetch commands to access private network hosts.
178 /// Default false; hosting plugins only forward this from user-level config.
179 pub url_fetch_allow_private: bool,
180 /// Hosting harness identity supplied by configure.
181 #[serde(default)]
182 pub harness: Option<Harness>,
183 /// Maximum number of (server, file) entries kept in the in-memory
184 /// diagnostic cache. Older entries are evicted in LRU order when the
185 /// cap is exceeded. Set to 0 to disable the cap entirely.
186 /// Default: 5000 (covers very large monorepos with bounded memory).
187 pub diagnostic_cache_size: usize,
188}
189
190impl Default for Config {
191 fn default() -> Self {
192 Config {
193 project_root: None,
194 validation_depth: 1,
195 checkpoint_ttl_hours: 24,
196 max_symbol_depth: 10,
197 formatter_timeout_secs: 10,
198 type_checker_timeout_secs: 30,
199 format_on_edit: true,
200 validate_on_edit: None,
201 formatter: HashMap::new(),
202 checker: HashMap::new(),
203 // Default to false to match OpenCode's existing permission-based model.
204 // The plugin opts into root restriction explicitly when desired.
205 restrict_to_project_root: false,
206 search_index: false,
207 semantic_search: false,
208 experimental_bash_rewrite: false,
209 experimental_bash_compress: false,
210 experimental_bash_background: false,
211 max_background_bash_tasks: 8,
212 bash_long_running_reminder_enabled: true,
213 bash_long_running_reminder_interval_ms: 600_000,
214 bash_permissions: false,
215 search_index_max_file_size: 1_048_576,
216 // Projects larger than this skip call-graph reverse index construction.
217 //
218 // The previous default (20_000) was set by hand-wave to "fits under
219 // the 30 s bridge timeout" without measurement. Direct benchmarks
220 // showed the cost is super-linear (tree-sitter parse + reverse-index
221 // build per file): a 6.8K-file Rust project took 41 s — already past
222 // the 60 s per-callgraph-op timeout. At 10 K extrapolated cost is
223 // ~80–100 s; at 20 K it's 5+ minutes. So the old default routinely
224 // produced "timed out, restarting bridge" rather than a clean
225 // `project_too_large` rejection.
226 //
227 // 5_000 reflects measured reality: at this size, callgraph
228 // operations on a real Rust/TS project complete in roughly 30–40 s,
229 // matching the per-op timeout budget. Users with bigger projects
230 // can raise this knob, but the default should not advertise
231 // capabilities that fail in practice. Read/edit/grep/glob/outline/
232 // semantic_search/AST/LSP all remain unaffected by this cap —
233 // it only gates `aft_callgraph` and `aft_refactor op="move"`.
234 max_callgraph_files: 5_000,
235 semantic: SemanticBackendConfig::default(),
236 experimental_lsp_ty: false,
237 lsp_servers: Vec::new(),
238 disabled_lsp: HashSet::new(),
239 lsp_paths_extra: Vec::new(),
240 lsp_auto_install_binaries: HashSet::new(),
241 lsp_inflight_installs: HashSet::new(),
242 storage_dir: None,
243 url_fetch_allow_private: false,
244 harness: None,
245 diagnostic_cache_size: 5000,
246 }
247 }
248}