Introduce a poll-based worker that fills the global common_third_parties catalog (URLs, headquarter address, legal name, certifications, logo) so each tenant no longer starts from sparse, name-only rows. Enrichment is requested at row creation by ResolveOrCreateCommonThirdParty; curated seed rows are not enqueued, to avoid a re-seed storm. The pipeline uses two specialized agents plus a deterministic logo step. Agent A (company profile) resolves legal name, headquarter address, and the canonical website over web search; its website and legal name feed Agent B and the logo step. Agent B (compliance docs) resolves the legal document URLs, trust/security/status pages, and certifications using the browser read-only toolset (gated on ChromeDPAddr) plus web search. The logo step restores pkg/webinspect as a pure deterministic package and stores the discovered icon in S3, linked via logo_file_id. Each agent returns per-field value/confidence/source_url. The worker writes a column only when confidence clears a configurable threshold and the field is not externally owned (seed or human), and always records full per-field provenance in a new enrichment JSONB column so re-runs fill only gaps and human edits are never clobbered. New bookkeeping columns (enrichment_requested_at, enrichment, enrichment_attempts) back the claim queue and stale recovery; agents run outside transactions and results persist in one final transaction. The worker is opt-in: it no-ops unless its agent provider is configured. Signed-off-by: Émile Ré <emile@probo.com>
135 lines
6.3 KiB
Go
135 lines
6.3 KiB
Go
// Copyright (c) 2026 Probo Inc <hello@probo.com>.
|
|
//
|
|
// Permission to use, copy, modify, and/or distribute this software for any
|
|
// purpose with or without fee is hereby granted, provided that the above
|
|
// copyright notice and this permission notice appear in all copies.
|
|
//
|
|
// THE SOFTWARE IS PROVIDED "AS IS" AND THE AUTHOR DISCLAIMS ALL WARRANTIES WITH
|
|
// REGARD TO THIS SOFTWARE INCLUDING ALL IMPLIED WARRANTIES OF MERCHANTABILITY
|
|
// AND FITNESS. IN NO EVENT SHALL THE AUTHOR BE LIABLE FOR ANY SPECIAL, DIRECT,
|
|
// INDIRECT, OR CONSEQUENTIAL DAMAGES OR ANY DAMAGES WHATSOEVER RESULTING FROM
|
|
// LOSS OF USE, DATA OR PROFITS, WHETHER IN AN ACTION OF CONTRACT, NEGLIGENCE OR
|
|
// OTHER TORTIOUS ACTION, ARISING OUT OF OR IN CONNECTION WITH THE USE OR
|
|
// PERFORMANCE OF THIS SOFTWARE.
|
|
|
|
package probodconfig
|
|
|
|
type (
|
|
// LLMProviderConfig holds authentication and connection settings for an
|
|
// LLM provider (e.g. OpenAI, Anthropic).
|
|
LLMProviderConfig struct {
|
|
Type string `json:"type"` // "openai", "anthropic", "bedrock"
|
|
APIKey string `json:"api-key"` // for OpenAI and Anthropic
|
|
}
|
|
|
|
// LLMAgentConfig holds model parameters for a single agent. Provider
|
|
// references one of the keys in AgentsConfig.Providers.
|
|
LLMAgentConfig struct {
|
|
Provider string `json:"provider"` // key into AgentsConfig.Providers
|
|
ModelName string `json:"model-name"`
|
|
Temperature *float64 `json:"temperature"`
|
|
MaxTokens *int `json:"max-tokens"`
|
|
}
|
|
|
|
// EvidenceDescriberConfig holds worker-side tuning for the evidence
|
|
// description background worker. LLM parameters for the same worker
|
|
// live under AgentsConfig.EvidenceDescriber.
|
|
EvidenceDescriberConfig struct {
|
|
Interval int `json:"interval"` // seconds between polls
|
|
StaleAfter int `json:"stale-after"` // seconds before a claim is recycled
|
|
MaxConcurrency int `json:"max-concurrency"`
|
|
}
|
|
|
|
// ThirdPartyVettingWorkerConfig holds worker-side tuning for the
|
|
// third-party vetting background worker. LLM parameters for the
|
|
// vetter live under AgentsConfig.ThirdPartyVetter.
|
|
ThirdPartyVettingWorkerConfig struct {
|
|
Interval int `json:"interval"` // seconds between polls
|
|
StaleAfter int `json:"stale-after"` // seconds before a claim is recycled
|
|
MaxConcurrency int `json:"max-concurrency"`
|
|
}
|
|
|
|
// TrackerMappingWorkerConfig holds worker-side tuning for the
|
|
// tracker-mapping background worker. LLM parameters for the mapping
|
|
// agent it runs live under AgentsConfig.TrackerMapping. AgentTimeout
|
|
// and AgentMaxTurns bound a single mapping agent run.
|
|
// DisambiguationAgentTimeout caps a single third-party
|
|
// disambiguation agent run; that agent runs inside this worker but
|
|
// uses its own LLM parameters from AgentsConfig.ThirdPartyDisambiguation.
|
|
TrackerMappingWorkerConfig struct {
|
|
Interval int `json:"interval"` // seconds between polls
|
|
MaxConcurrency int `json:"max-concurrency"`
|
|
StaleAfter int `json:"stale-after"` // seconds before a claim is recycled
|
|
AgentTimeout int `json:"agent-timeout"` // seconds, single agent run
|
|
AgentMaxTurns int `json:"agent-max-turns"`
|
|
DisambiguationAgentTimeout int `json:"disambiguation-agent-timeout"` // seconds, single disambiguation run
|
|
}
|
|
|
|
// CommonPatternEnrichmentWorkerConfig holds worker-side tuning for
|
|
// the common-pattern enrichment background worker. LLM parameters
|
|
// for the enrichment agent live under AgentsConfig.TrackerEnrichment.
|
|
CommonPatternEnrichmentWorkerConfig struct {
|
|
Interval int `json:"interval"` // seconds between polls
|
|
MaxConcurrency int `json:"max-concurrency"`
|
|
StaleAfter int `json:"stale-after"` // seconds before a claim is recycled
|
|
AgentTimeout int `json:"agent-timeout"` // seconds, single agent run
|
|
AgentMaxTurns int `json:"agent-max-turns"`
|
|
}
|
|
|
|
// CommonThirdPartyEnrichmentWorkerConfig holds worker-side tuning for
|
|
// the common-third-party enrichment background worker. LLM parameters
|
|
// for its agents live under AgentsConfig.CommonThirdPartyEnrichment.
|
|
// ConfidenceThreshold is the floor a resolved value must clear before
|
|
// it is written to its column; MaxAttempts caps stale-recovery
|
|
// retries.
|
|
CommonThirdPartyEnrichmentWorkerConfig struct {
|
|
Interval int `json:"interval"` // seconds between polls
|
|
MaxConcurrency int `json:"max-concurrency"`
|
|
StaleAfter int `json:"stale-after"` // seconds before a claim is recycled
|
|
AgentTimeout int `json:"agent-timeout"` // seconds, single agent run
|
|
AgentMaxTurns int `json:"agent-max-turns"`
|
|
ConfidenceThreshold float64 `json:"confidence-threshold"`
|
|
MaxAttempts int `json:"max-attempts"`
|
|
}
|
|
|
|
// AgentToolsConfig holds API keys and settings for external tools
|
|
// that agents can use (web search, scraping, etc.).
|
|
AgentToolsConfig struct {
|
|
FirecrawlAPIKey string `json:"firecrawl-api-key"`
|
|
}
|
|
|
|
// AgentsConfig groups LLM provider credentials and per-agent model
|
|
// settings. Default is used as a fallback when an agent-specific field
|
|
// is zero-valued.
|
|
AgentsConfig struct {
|
|
Providers map[string]LLMProviderConfig `json:"providers"`
|
|
Default LLMAgentConfig `json:"defaults"`
|
|
Probo LLMAgentConfig `json:"probo"`
|
|
EvidenceDescriber LLMAgentConfig `json:"evidence-describer"`
|
|
ThirdPartyVetter LLMAgentConfig `json:"third-party-vetter"`
|
|
ThirdPartyDisambiguation LLMAgentConfig `json:"third-party-disambiguation"`
|
|
TrackerMapping LLMAgentConfig `json:"tracker-mapping"`
|
|
TrackerEnrichment LLMAgentConfig `json:"tracker-enrichment"`
|
|
CommonThirdPartyEnrichment LLMAgentConfig `json:"common-third-party-enrichment"`
|
|
Tools AgentToolsConfig `json:"tools"`
|
|
}
|
|
)
|
|
|
|
// ResolveAgent returns a fully populated LLMAgentConfig by filling in
|
|
// zero-valued fields from the default config.
|
|
func (c *AgentsConfig) ResolveAgent(agent LLMAgentConfig) LLMAgentConfig {
|
|
if agent.Provider == "" {
|
|
agent.Provider = c.Default.Provider
|
|
}
|
|
|
|
if agent.ModelName == "" {
|
|
agent.ModelName = c.Default.ModelName
|
|
}
|
|
|
|
if agent.MaxTokens == nil && c.Default.MaxTokens != nil {
|
|
agent.MaxTokens = new(*c.Default.MaxTokens)
|
|
}
|
|
|
|
return agent
|
|
}
|