tools_manage_service.py 23 KB

123456789101112131415161718192021222324252627282930313233343536373839404142434445464748495051525354555657585960616263646566676869707172737475767778798081828384858687888990919293949596979899100101102103104105106107108109110111112113114115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156157158159160161162163164165166167168169170171172173174175176177178179180181182183184185186187188189190191192193194195196197198199200201202203204205206207208209210211212213214215216217218219220221222223224225226227228229230231232233234235236237238239240241242243244245246247248249250251252253254255256257258259260261262263264265266267268269270271272273274275276277278279280281282283284285286287288289290291292293294295296297298299300301302303304305306307308309310311312313314315316317318319320321322323324325326327328329330331332333334335336337338339340341342343344345346347348349350351352353354355356357358359360361362363364365366367368369370371372373374375376377378379380381382383384385386387388389390391392393394395396397398399400401402403404405406407408409410411412413414415416417418419420421422423424425426427428429430431432433434435436437438439440441442443444445446447448449450451452453454455456457458459460461462463464465466467468469470471472473474475476477478479480481482483484485486487488489490491492493494495496497498499500501502503504505506507508509510511512513514515516517518519520521522523524525526527528529530531532533534535536537538539540541542543544545546547548549550551552553554555556557558559560561562563564565566567568569570571572573574575576577578579580581582583584585586587588589590591592593594595596597598599600601602603604605606607608609610611612613614615
  1. import json
  2. from flask import current_app
  3. from httpx import get
  4. from core.tools.entities.common_entities import I18nObject
  5. from core.tools.entities.tool_bundle import ApiBasedToolBundle
  6. from core.tools.entities.tool_entities import (
  7. ApiProviderAuthType,
  8. ApiProviderSchemaType,
  9. ToolCredentialsOption,
  10. ToolParameter,
  11. ToolProviderCredentials,
  12. )
  13. from core.tools.entities.user_entities import UserTool, UserToolProvider
  14. from core.tools.errors import ToolNotFoundError, ToolProviderCredentialValidationError, ToolProviderNotFoundError
  15. from core.tools.provider.api_tool_provider import ApiBasedToolProviderController
  16. from core.tools.provider.tool_provider import ToolProviderController
  17. from core.tools.tool_manager import ToolManager
  18. from core.tools.utils.configuration import ToolConfiguration
  19. from core.tools.utils.encoder import serialize_base_model_array, serialize_base_model_dict
  20. from core.tools.utils.parser import ApiBasedToolSchemaParser
  21. from extensions.ext_database import db
  22. from models.tools import ApiToolProvider, BuiltinToolProvider
  23. class ToolManageService:
  24. @staticmethod
  25. def list_tool_providers(user_id: str, tenant_id: str):
  26. """
  27. list tool providers
  28. :return: the list of tool providers
  29. """
  30. result = [provider.to_dict() for provider in ToolManager.user_list_providers(
  31. user_id, tenant_id
  32. )]
  33. # add icon url prefix
  34. for provider in result:
  35. ToolManageService.repack_provider(provider)
  36. return result
  37. @staticmethod
  38. def repack_provider(provider: dict):
  39. """
  40. repack provider
  41. :param provider: the provider dict
  42. """
  43. url_prefix = (current_app.config.get("CONSOLE_API_URL")
  44. + "/console/api/workspaces/current/tool-provider/builtin/")
  45. if 'icon' in provider:
  46. if provider['type'] == UserToolProvider.ProviderType.BUILTIN.value:
  47. provider['icon'] = url_prefix + provider['name'] + '/icon'
  48. elif provider['type'] == UserToolProvider.ProviderType.API.value:
  49. try:
  50. provider['icon'] = json.loads(provider['icon'])
  51. except:
  52. provider['icon'] = {
  53. "background": "#252525",
  54. "content": "\ud83d\ude01"
  55. }
  56. @staticmethod
  57. def list_builtin_tool_provider_tools(
  58. user_id: str, tenant_id: str, provider: str
  59. ):
  60. """
  61. list builtin tool provider tools
  62. """
  63. provider_controller: ToolProviderController = ToolManager.get_builtin_provider(provider)
  64. tools = provider_controller.get_tools()
  65. tool_provider_configurations = ToolConfiguration(tenant_id=tenant_id, provider_controller=provider_controller)
  66. # check if user has added the provider
  67. builtin_provider: BuiltinToolProvider = db.session.query(BuiltinToolProvider).filter(
  68. BuiltinToolProvider.tenant_id == tenant_id,
  69. BuiltinToolProvider.provider == provider,
  70. ).first()
  71. credentials = {}
  72. if builtin_provider is not None:
  73. # get credentials
  74. credentials = builtin_provider.credentials
  75. credentials = tool_provider_configurations.decrypt_tool_credentials(credentials)
  76. result = []
  77. for tool in tools:
  78. # fork tool runtime
  79. tool = tool.fork_tool_runtime(meta={
  80. 'credentials': credentials,
  81. 'tenant_id': tenant_id,
  82. })
  83. # get tool parameters
  84. parameters = tool.parameters or []
  85. # get tool runtime parameters
  86. runtime_parameters = tool.get_runtime_parameters()
  87. # override parameters
  88. current_parameters = parameters.copy()
  89. for runtime_parameter in runtime_parameters:
  90. found = False
  91. for index, parameter in enumerate(current_parameters):
  92. if parameter.name == runtime_parameter.name and parameter.form == runtime_parameter.form:
  93. current_parameters[index] = runtime_parameter
  94. found = True
  95. break
  96. if not found and runtime_parameter.form == ToolParameter.ToolParameterForm.FORM:
  97. current_parameters.append(runtime_parameter)
  98. user_tool = UserTool(
  99. author=tool.identity.author,
  100. name=tool.identity.name,
  101. label=tool.identity.label,
  102. description=tool.description.human,
  103. parameters=current_parameters
  104. )
  105. result.append(user_tool)
  106. return json.loads(
  107. serialize_base_model_array(result)
  108. )
  109. @staticmethod
  110. def list_builtin_provider_credentials_schema(
  111. provider_name
  112. ):
  113. """
  114. list builtin provider credentials schema
  115. :return: the list of tool providers
  116. """
  117. provider = ToolManager.get_builtin_provider(provider_name)
  118. return [
  119. v.to_dict() for _, v in (provider.credentials_schema or {}).items()
  120. ]
  121. @staticmethod
  122. def parser_api_schema(schema: str) -> list[ApiBasedToolBundle]:
  123. """
  124. parse api schema to tool bundle
  125. """
  126. try:
  127. warnings = {}
  128. try:
  129. tool_bundles, schema_type = ApiBasedToolSchemaParser.auto_parse_to_tool_bundle(schema, warning=warnings)
  130. except Exception as e:
  131. raise ValueError(f'invalid schema: {str(e)}')
  132. credentials_schema = [
  133. ToolProviderCredentials(
  134. name='auth_type',
  135. type=ToolProviderCredentials.CredentialsType.SELECT,
  136. required=True,
  137. default='none',
  138. options=[
  139. ToolCredentialsOption(value='none', label=I18nObject(
  140. en_US='None',
  141. zh_Hans='无'
  142. )),
  143. ToolCredentialsOption(value='api_key', label=I18nObject(
  144. en_US='Api Key',
  145. zh_Hans='Api Key'
  146. )),
  147. ],
  148. placeholder=I18nObject(
  149. en_US='Select auth type',
  150. zh_Hans='选择认证方式'
  151. )
  152. ),
  153. ToolProviderCredentials(
  154. name='api_key_header',
  155. type=ToolProviderCredentials.CredentialsType.TEXT_INPUT,
  156. required=False,
  157. placeholder=I18nObject(
  158. en_US='Enter api key header',
  159. zh_Hans='输入 api key header,如:X-API-KEY'
  160. ),
  161. default='api_key',
  162. help=I18nObject(
  163. en_US='HTTP header name for api key',
  164. zh_Hans='HTTP 头部字段名,用于传递 api key'
  165. )
  166. ),
  167. ToolProviderCredentials(
  168. name='api_key_value',
  169. type=ToolProviderCredentials.CredentialsType.TEXT_INPUT,
  170. required=False,
  171. placeholder=I18nObject(
  172. en_US='Enter api key',
  173. zh_Hans='输入 api key'
  174. ),
  175. default=''
  176. ),
  177. ]
  178. return json.loads(serialize_base_model_dict(
  179. {
  180. 'schema_type': schema_type,
  181. 'parameters_schema': tool_bundles,
  182. 'credentials_schema': credentials_schema,
  183. 'warning': warnings
  184. }
  185. ))
  186. except Exception as e:
  187. raise ValueError(f'invalid schema: {str(e)}')
  188. @staticmethod
  189. def convert_schema_to_tool_bundles(schema: str, extra_info: dict = None) -> list[ApiBasedToolBundle]:
  190. """
  191. convert schema to tool bundles
  192. :return: the list of tool bundles, description
  193. """
  194. try:
  195. tool_bundles = ApiBasedToolSchemaParser.auto_parse_to_tool_bundle(schema, extra_info=extra_info)
  196. return tool_bundles
  197. except Exception as e:
  198. raise ValueError(f'invalid schema: {str(e)}')
  199. @staticmethod
  200. def create_api_tool_provider(
  201. user_id: str, tenant_id: str, provider_name: str, icon: dict, credentials: dict,
  202. schema_type: str, schema: str, privacy_policy: str
  203. ):
  204. """
  205. create api tool provider
  206. """
  207. if schema_type not in [member.value for member in ApiProviderSchemaType]:
  208. raise ValueError(f'invalid schema type {schema}')
  209. # check if the provider exists
  210. provider: ApiToolProvider = db.session.query(ApiToolProvider).filter(
  211. ApiToolProvider.tenant_id == tenant_id,
  212. ApiToolProvider.name == provider_name,
  213. ).first()
  214. if provider is not None:
  215. raise ValueError(f'provider {provider_name} already exists')
  216. # parse openapi to tool bundle
  217. extra_info = {}
  218. # extra info like description will be set here
  219. tool_bundles, schema_type = ToolManageService.convert_schema_to_tool_bundles(schema, extra_info)
  220. if len(tool_bundles) > 100:
  221. raise ValueError('the number of apis should be less than 100')
  222. # create db provider
  223. db_provider = ApiToolProvider(
  224. tenant_id=tenant_id,
  225. user_id=user_id,
  226. name=provider_name,
  227. icon=json.dumps(icon),
  228. schema=schema,
  229. description=extra_info.get('description', ''),
  230. schema_type_str=schema_type,
  231. tools_str=serialize_base_model_array(tool_bundles),
  232. credentials_str={},
  233. privacy_policy=privacy_policy
  234. )
  235. if 'auth_type' not in credentials:
  236. raise ValueError('auth_type is required')
  237. # get auth type, none or api key
  238. auth_type = ApiProviderAuthType.value_of(credentials['auth_type'])
  239. # create provider entity
  240. provider_controller = ApiBasedToolProviderController.from_db(db_provider, auth_type)
  241. # load tools into provider entity
  242. provider_controller.load_bundled_tools(tool_bundles)
  243. # encrypt credentials
  244. tool_configuration = ToolConfiguration(tenant_id=tenant_id, provider_controller=provider_controller)
  245. encrypted_credentials = tool_configuration.encrypt_tool_credentials(credentials)
  246. db_provider.credentials_str = json.dumps(encrypted_credentials)
  247. db.session.add(db_provider)
  248. db.session.commit()
  249. return { 'result': 'success' }
  250. @staticmethod
  251. def get_api_tool_provider_remote_schema(
  252. user_id: str, tenant_id: str, url: str
  253. ):
  254. """
  255. get api tool provider remote schema
  256. """
  257. headers = {
  258. "User-Agent": "Mozilla/5.0 (Macintosh; Intel Mac OS X 10_15_7) AppleWebKit/537.36 (KHTML, like Gecko) Chrome/120.0.0.0 Safari/537.36 Edg/120.0.0.0",
  259. "Accept": "*/*",
  260. }
  261. try:
  262. response = get(url, headers=headers, timeout=10)
  263. if response.status_code != 200:
  264. raise ValueError(f'Got status code {response.status_code}')
  265. schema = response.text
  266. # try to parse schema, avoid SSRF attack
  267. ToolManageService.parser_api_schema(schema)
  268. except Exception as e:
  269. raise ValueError('invalid schema, please check the url you provided')
  270. return {
  271. 'schema': schema
  272. }
  273. @staticmethod
  274. def list_api_tool_provider_tools(
  275. user_id: str, tenant_id: str, provider: str
  276. ):
  277. """
  278. list api tool provider tools
  279. """
  280. provider: ApiToolProvider = db.session.query(ApiToolProvider).filter(
  281. ApiToolProvider.tenant_id == tenant_id,
  282. ApiToolProvider.name == provider,
  283. ).first()
  284. if provider is None:
  285. raise ValueError(f'you have not added provider {provider}')
  286. return json.loads(
  287. serialize_base_model_array([
  288. UserTool(
  289. author=tool_bundle.author,
  290. name=tool_bundle.operation_id,
  291. label=I18nObject(
  292. en_US=tool_bundle.operation_id,
  293. zh_Hans=tool_bundle.operation_id
  294. ),
  295. description=I18nObject(
  296. en_US=tool_bundle.summary or '',
  297. zh_Hans=tool_bundle.summary or ''
  298. ),
  299. parameters=tool_bundle.parameters
  300. ) for tool_bundle in provider.tools
  301. ])
  302. )
  303. @staticmethod
  304. def update_builtin_tool_provider(
  305. user_id: str, tenant_id: str, provider_name: str, credentials: dict
  306. ):
  307. """
  308. update builtin tool provider
  309. """
  310. # get if the provider exists
  311. provider: BuiltinToolProvider = db.session.query(BuiltinToolProvider).filter(
  312. BuiltinToolProvider.tenant_id == tenant_id,
  313. BuiltinToolProvider.provider == provider_name,
  314. ).first()
  315. try:
  316. # get provider
  317. provider_controller = ToolManager.get_builtin_provider(provider_name)
  318. if not provider_controller.need_credentials:
  319. raise ValueError(f'provider {provider_name} does not need credentials')
  320. tool_configuration = ToolConfiguration(tenant_id=tenant_id, provider_controller=provider_controller)
  321. # get original credentials if exists
  322. if provider is not None:
  323. original_credentials = tool_configuration.decrypt_tool_credentials(provider.credentials)
  324. masked_credentials = tool_configuration.mask_tool_credentials(original_credentials)
  325. # check if the credential has changed, save the original credential
  326. for name, value in credentials.items():
  327. if name in masked_credentials and value == masked_credentials[name]:
  328. credentials[name] = original_credentials[name]
  329. # validate credentials
  330. provider_controller.validate_credentials(credentials)
  331. # encrypt credentials
  332. credentials = tool_configuration.encrypt_tool_credentials(credentials)
  333. except (ToolProviderNotFoundError, ToolNotFoundError, ToolProviderCredentialValidationError) as e:
  334. raise ValueError(str(e))
  335. if provider is None:
  336. # create provider
  337. provider = BuiltinToolProvider(
  338. tenant_id=tenant_id,
  339. user_id=user_id,
  340. provider=provider_name,
  341. encrypted_credentials=json.dumps(credentials),
  342. )
  343. db.session.add(provider)
  344. db.session.commit()
  345. else:
  346. provider.encrypted_credentials = json.dumps(credentials)
  347. db.session.add(provider)
  348. db.session.commit()
  349. # delete cache
  350. tool_configuration.delete_tool_credentials_cache()
  351. return { 'result': 'success' }
  352. @staticmethod
  353. def update_api_tool_provider(
  354. user_id: str, tenant_id: str, provider_name: str, original_provider: str, icon: dict, credentials: dict,
  355. schema_type: str, schema: str, privacy_policy: str
  356. ):
  357. """
  358. update api tool provider
  359. """
  360. if schema_type not in [member.value for member in ApiProviderSchemaType]:
  361. raise ValueError(f'invalid schema type {schema}')
  362. # check if the provider exists
  363. provider: ApiToolProvider = db.session.query(ApiToolProvider).filter(
  364. ApiToolProvider.tenant_id == tenant_id,
  365. ApiToolProvider.name == original_provider,
  366. ).first()
  367. if provider is None:
  368. raise ValueError(f'api provider {provider_name} does not exists')
  369. # parse openapi to tool bundle
  370. extra_info = {}
  371. # extra info like description will be set here
  372. tool_bundles, schema_type = ToolManageService.convert_schema_to_tool_bundles(schema, extra_info)
  373. # update db provider
  374. provider.name = provider_name
  375. provider.icon = json.dumps(icon)
  376. provider.schema = schema
  377. provider.description = extra_info.get('description', '')
  378. provider.schema_type_str = ApiProviderSchemaType.OPENAPI.value
  379. provider.tools_str = serialize_base_model_array(tool_bundles)
  380. provider.privacy_policy = privacy_policy
  381. if 'auth_type' not in credentials:
  382. raise ValueError('auth_type is required')
  383. # get auth type, none or api key
  384. auth_type = ApiProviderAuthType.value_of(credentials['auth_type'])
  385. # create provider entity
  386. provider_controller = ApiBasedToolProviderController.from_db(provider, auth_type)
  387. # load tools into provider entity
  388. provider_controller.load_bundled_tools(tool_bundles)
  389. # get original credentials if exists
  390. tool_configuration = ToolConfiguration(tenant_id=tenant_id, provider_controller=provider_controller)
  391. original_credentials = tool_configuration.decrypt_tool_credentials(provider.credentials)
  392. masked_credentials = tool_configuration.mask_tool_credentials(original_credentials)
  393. # check if the credential has changed, save the original credential
  394. for name, value in credentials.items():
  395. if name in masked_credentials and value == masked_credentials[name]:
  396. credentials[name] = original_credentials[name]
  397. credentials = tool_configuration.encrypt_tool_credentials(credentials)
  398. provider.credentials_str = json.dumps(credentials)
  399. db.session.add(provider)
  400. db.session.commit()
  401. # delete cache
  402. tool_configuration.delete_tool_credentials_cache()
  403. return { 'result': 'success' }
  404. @staticmethod
  405. def delete_builtin_tool_provider(
  406. user_id: str, tenant_id: str, provider_name: str
  407. ):
  408. """
  409. delete tool provider
  410. """
  411. provider: BuiltinToolProvider = db.session.query(BuiltinToolProvider).filter(
  412. BuiltinToolProvider.tenant_id == tenant_id,
  413. BuiltinToolProvider.provider == provider_name,
  414. ).first()
  415. if provider is None:
  416. raise ValueError(f'you have not added provider {provider_name}')
  417. db.session.delete(provider)
  418. db.session.commit()
  419. # delete cache
  420. provider_controller = ToolManager.get_builtin_provider(provider_name)
  421. tool_configuration = ToolConfiguration(tenant_id=tenant_id, provider_controller=provider_controller)
  422. tool_configuration.delete_tool_credentials_cache()
  423. return { 'result': 'success' }
  424. @staticmethod
  425. def get_builtin_tool_provider_icon(
  426. provider: str
  427. ):
  428. """
  429. get tool provider icon and it's mimetype
  430. """
  431. icon_path, mime_type = ToolManager.get_builtin_provider_icon(provider)
  432. with open(icon_path, 'rb') as f:
  433. icon_bytes = f.read()
  434. return icon_bytes, mime_type
  435. @staticmethod
  436. def delete_api_tool_provider(
  437. user_id: str, tenant_id: str, provider_name: str
  438. ):
  439. """
  440. delete tool provider
  441. """
  442. provider: ApiToolProvider = db.session.query(ApiToolProvider).filter(
  443. ApiToolProvider.tenant_id == tenant_id,
  444. ApiToolProvider.name == provider_name,
  445. ).first()
  446. if provider is None:
  447. raise ValueError(f'you have not added provider {provider_name}')
  448. db.session.delete(provider)
  449. db.session.commit()
  450. return { 'result': 'success' }
  451. @staticmethod
  452. def get_api_tool_provider(
  453. user_id: str, tenant_id: str, provider: str
  454. ):
  455. """
  456. get api tool provider
  457. """
  458. return ToolManager.user_get_api_provider(provider=provider, tenant_id=tenant_id)
  459. @staticmethod
  460. def test_api_tool_preview(
  461. tenant_id: str,
  462. provider_name: str,
  463. tool_name: str,
  464. credentials: dict,
  465. parameters: dict,
  466. schema_type: str,
  467. schema: str
  468. ):
  469. """
  470. test api tool before adding api tool provider
  471. """
  472. if schema_type not in [member.value for member in ApiProviderSchemaType]:
  473. raise ValueError(f'invalid schema type {schema_type}')
  474. try:
  475. tool_bundles, _ = ApiBasedToolSchemaParser.auto_parse_to_tool_bundle(schema)
  476. except Exception as e:
  477. raise ValueError('invalid schema')
  478. # get tool bundle
  479. tool_bundle = next(filter(lambda tb: tb.operation_id == tool_name, tool_bundles), None)
  480. if tool_bundle is None:
  481. raise ValueError(f'invalid tool name {tool_name}')
  482. db_provider: ApiToolProvider = db.session.query(ApiToolProvider).filter(
  483. ApiToolProvider.tenant_id == tenant_id,
  484. ApiToolProvider.name == provider_name,
  485. ).first()
  486. if not db_provider:
  487. # create a fake db provider
  488. db_provider = ApiToolProvider(
  489. tenant_id='', user_id='', name='', icon='',
  490. schema=schema,
  491. description='',
  492. schema_type_str=ApiProviderSchemaType.OPENAPI.value,
  493. tools_str=serialize_base_model_array(tool_bundles),
  494. credentials_str=json.dumps(credentials),
  495. )
  496. if 'auth_type' not in credentials:
  497. raise ValueError('auth_type is required')
  498. # get auth type, none or api key
  499. auth_type = ApiProviderAuthType.value_of(credentials['auth_type'])
  500. # create provider entity
  501. provider_controller = ApiBasedToolProviderController.from_db(db_provider, auth_type)
  502. # load tools into provider entity
  503. provider_controller.load_bundled_tools(tool_bundles)
  504. # decrypt credentials
  505. if db_provider.id:
  506. tool_configuration = ToolConfiguration(
  507. tenant_id=tenant_id,
  508. provider_controller=provider_controller
  509. )
  510. decrypted_credentials = tool_configuration.decrypt_tool_credentials(credentials)
  511. # check if the credential has changed, save the original credential
  512. masked_credentials = tool_configuration.mask_tool_credentials(decrypted_credentials)
  513. for name, value in credentials.items():
  514. if name in masked_credentials and value == masked_credentials[name]:
  515. credentials[name] = decrypted_credentials[name]
  516. try:
  517. provider_controller.validate_credentials_format(credentials)
  518. # get tool
  519. tool = provider_controller.get_tool(tool_name)
  520. tool = tool.fork_tool_runtime(meta={
  521. 'credentials': credentials,
  522. 'tenant_id': tenant_id,
  523. })
  524. result = tool.validate_credentials(credentials, parameters)
  525. except Exception as e:
  526. return { 'error': str(e) }
  527. return { 'result': result or 'empty response' }