<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/">
  <channel>
    <title>工具系统 on Latent</title>
    <link>https://latent-site.pages.dev/tags/%E5%B7%A5%E5%85%B7%E7%B3%BB%E7%BB%9F/</link>
    <description>Recent content in 工具系统 on Latent</description>
    <generator>Hugo</generator>
    <language>zh</language>
    <copyright>2026 Latent</copyright>
    <lastBuildDate>Sun, 23 Aug 2026 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://latent-site.pages.dev/tags/%E5%B7%A5%E5%85%B7%E7%B3%BB%E7%BB%9F/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>nanobot 源码解读 · 05 | 工具系统与安全边界：Agent 的手脚与护栏</title>
      <link>https://latent-site.pages.dev/posts/2026/08/nanobot-%E6%BA%90%E7%A0%81%E8%A7%A3%E8%AF%BB-05-%E5%B7%A5%E5%85%B7%E7%B3%BB%E7%BB%9F%E4%B8%8E%E5%AE%89%E5%85%A8%E8%BE%B9%E7%95%8Cagent-%E7%9A%84%E6%89%8B%E8%84%9A%E4%B8%8E%E6%8A%A4%E6%A0%8F/</link>
      <pubDate>Sun, 09 Aug 2026 00:00:00 +0000</pubDate>
      <guid>https://latent-site.pages.dev/posts/2026/08/nanobot-%E6%BA%90%E7%A0%81%E8%A7%A3%E8%AF%BB-05-%E5%B7%A5%E5%85%B7%E7%B3%BB%E7%BB%9F%E4%B8%8E%E5%AE%89%E5%85%A8%E8%BE%B9%E7%95%8Cagent-%E7%9A%84%E6%89%8B%E8%84%9A%E4%B8%8E%E6%8A%A4%E6%A0%8F/</guid>
      <description>逐层拆解 nanobot 的工具体系：Tool 抽象与参数校验（base.py）、注册与发现（registry.py/loader.py）、三类内置工具（shell 命令、文件系统、Web 抓取）各自的执行与安全检查点，以及 runner 如何在每一轮把工具编排起来。重点讲清两条安全边界线——SSRF（security/network.py 的 IP 黑名单 + DNS 钉死）与工作区路径边界（security/workspace_policy.py），并用真实代码与例子说明软边界与硬边界的区别。</description>
    </item>
    <item>
      <title>DeepSeek Harness 源码解读 · 02 | 工具执行流水线：循环不变，把关全在流水线里</title>
      <link>https://latent-site.pages.dev/posts/2026/08/deepseek-harness-%E6%BA%90%E7%A0%81%E8%A7%A3%E8%AF%BB-02-%E5%B7%A5%E5%85%B7%E6%89%A7%E8%A1%8C%E6%B5%81%E6%B0%B4%E7%BA%BF%E5%BE%AA%E7%8E%AF%E4%B8%8D%E5%8F%98%E6%8A%8A%E5%85%B3%E5%85%A8%E5%9C%A8%E6%B5%81%E6%B0%B4%E7%BA%BF%E9%87%8C/</link>
      <pubDate>Sun, 23 Aug 2026 00:00:00 +0000</pubDate>
      <guid>https://latent-site.pages.dev/posts/2026/08/deepseek-harness-%E6%BA%90%E7%A0%81%E8%A7%A3%E8%AF%BB-02-%E5%B7%A5%E5%85%B7%E6%89%A7%E8%A1%8C%E6%B5%81%E6%B0%B4%E7%BA%BF%E5%BE%AA%E7%8E%AF%E4%B8%8D%E5%8F%98%E6%8A%8A%E5%85%B3%E5%85%A8%E5%9C%A8%E6%B5%81%E6%B0%B4%E7%BA%BF%E9%87%8C/</guid>
      <description>工具不是直接执行，而是过一条带把关的流水线：tool/call 事件先于执行被记录，再依次经过 pre-execute 瀑布（钩子·权限·沙箱）、单调守卫、execute 瀑布（超时·重试·指标）、工具本体、post-execute 瀑布、finalizeContent，最终冻结为 tool/result 事件。并发层用独占屏障 + 有界并行池 + 模型序提交编排多工具，abort 时合成 TOOL_ABORTED_BEFORE_DISPATCH 保证 replay 有效。配流水线图。</description>
    </item>
  </channel>
</rss>
