feat(ECR-021): AICoreConfig SystemPrompt 只读并 Closed

新增 system_prompts 目录、admin.ai_config.read 与 admin-h5「AI」页;本切片不改运行时 Prompt、禁写发布/UGC/真支付。

Co-authored-by: Cursor <cursoragent@cursor.com>
This commit is contained in:
jackyu66git
2026-08-08 00:27:17 +08:00
co-authored by Cursor
parent 22f9e358ae
commit 140b08ca01
33 changed files with 649 additions and 5 deletions
+1 -1
View File
@@ -37,7 +37,7 @@
| Ops_Content | ExploreConfig (partial) | Shipped Ops-C | | Ops_Content | ExploreConfig (partial) | Shipped Ops-C |
| Account_Risk | AccountLifecycle | Spec via ECR-013BIdentity_Profile owns UserStatus | | Account_Risk | AccountLifecycle | Spec via ECR-013BIdentity_Profile owns UserStatus |
| Content_Safety | ContentSafety · CrisisCare | ContentSafety **ECR-019**FilterRule);CrisisCare Draft | | Content_Safety | ContentSafety · CrisisCare | ContentSafety **ECR-019**FilterRule);CrisisCare Draft |
| Ask_Ops | AskOperations · AICoreConfig | AskOperations **ECR-017/020**AICoreConfig Draft | | Ask_Ops | AskOperations · AICoreConfig | AskOperations **ECR-017/020**AICoreConfig **ECR-021**SystemPrompt 只读) |
| Ops_CMS_NoUGC | OpsCMS | Draft | | Ops_CMS_NoUGC | OpsCMS | Draft |
| Community | — | **Forbidden** | | Community | — | **Forbidden** |
+1 -1
View File
@@ -31,7 +31,7 @@ Status: `Draft`
| FilterRule | Content_Safety | ContentSafety | **ECR-019** 只读 + evaluate | | FilterRule | Content_Safety | ContentSafety | **ECR-019** 只读 + evaluate |
| ModerationCase | Content_Safety | ContentSafety | 后置 | | ModerationCase | Content_Safety | ContentSafety | 后置 |
| CrisisEvent / CrisisPolicy | Content_Safety | CrisisCare | 后置 | | CrisisEvent / CrisisPolicy | Content_Safety | CrisisCare | 后置 |
| SystemPrompt / Knowledge* / ToolDefinition | Ask_Ops | AICoreConfig | 后置 | | SystemPrompt / Knowledge* / ToolDefinition | Ask_Ops | AICoreConfig | **ECR-021** SystemPrompt 只读;Knowledge/Tools 后置 |
| AskSessionView / QualityFeedback | Ask_Ops | AskOperations | **ECR-017** AskSessionView**ECR-020** QualityFeedback | | AskSessionView / QualityFeedback | Ask_Ops | AskOperations | **ECR-017** AskSessionView**ECR-020** QualityFeedback |
| Banner / FeedSlot | Ops_CMS_NoUGC | OpsCMS | 后置 | | Banner / FeedSlot | Ops_CMS_NoUGC | OpsCMS | 后置 |
| UGC* | Community | — | **Forbidden** | | UGC* | Community | — | **Forbidden** |
+1 -1
View File
@@ -235,7 +235,7 @@ UI **不出现「塔罗」**。禁止神谕吉凶、恐吓话术。
| Phase A `[Ops]` | 登录 · 用户/订单查询 · 会员授予 · 审计 · `apps/admin-h5`ECR-006 Closed | | Phase A `[Ops]` | 登录 · 用户/订单查询 · 会员授予 · 审计 · `apps/admin-h5`ECR-006 Closed |
| Phase B `[Ops]` | 行为分析:自有埋点 + 管理端「数据」看板(**ECR-007 Closed** · Spec `ops-analytics.md` | | Phase B `[Ops]` | 行为分析:自有埋点 + 管理端「数据」看板(**ECR-007 Closed** · Spec `ops-analytics.md` |
| Phase C `[Ops]` | 内容:首页宫格 CRUD · 测评上下架(**ECR-008 Closed** · Spec `ops-content.md` | | Phase C `[Ops]` | 内容:首页宫格 CRUD · 测评上下架(**ECR-008 Closed** · Spec `ops-content.md` |
| Phase D+ | **Contract-First****ECR-013A…019 Closed** → **ECR-020** QualityFeedbackLoop)。`docs/WAVE0/LOOP_AUTHORIZATION.md`。 | | Phase D+ | **Contract-First****ECR-013A…020 Closed** → **ECR-021** AICoreConfigLoop)。`docs/WAVE0/LOOP_AUTHORIZATION.md`。 |
| 排除 | **UGC / 社区广场**M10.2)仍 `[No]`;真支付最后 | | 排除 | **UGC / 社区广场**M10.2)仍 `[No]`;真支付最后 |
不计入 P1 Complete;不进入五 Tab。 不计入 P1 Complete;不进入五 Tab。
+1
View File
@@ -30,6 +30,7 @@
| [ops-entitlement.md](ops-entitlement.md) | 用户权益 Entitlement | §7 | `admin-h5` 用户详情「权益」· `GET /admin/users/:id/entitlements` | Ops-D · **ECR-018 Closed** | | [ops-entitlement.md](ops-entitlement.md) | 用户权益 Entitlement | §7 | `admin-h5` 用户详情「权益」· `GET /admin/users/:id/entitlements` | Ops-D · **ECR-018 Closed** |
| [ops-content-safety.md](ops-content-safety.md) | 内容安全 ContentSafety | §7 | `admin-h5` `/safety` · `GET /admin/content-safety/*` | Ops-D · **ECR-019 Closed** | | [ops-content-safety.md](ops-content-safety.md) | 内容安全 ContentSafety | §7 | `admin-h5` `/safety` · `GET /admin/content-safety/*` | Ops-D · **ECR-019 Closed** |
| [ops-quality-feedback.md](ops-quality-feedback.md) | 问答质量反馈 QualityFeedback | §7 | `admin-h5` `/ask` · `GET/POST /admin/ask/feedback*` | Ops-D · **ECR-020 Closed** | | [ops-quality-feedback.md](ops-quality-feedback.md) | 问答质量反馈 QualityFeedback | §7 | `admin-h5` `/ask` · `GET/POST /admin/ask/feedback*` | Ops-D · **ECR-020 Closed** |
| [ops-ai-core-config.md](ops-ai-core-config.md) | AI 核心配置 AICoreConfig | §7 | `admin-h5` `/ai` · `GET /admin/ai/system-prompts*` | Ops-D · **ECR-021 Closed** |
新功能:复制 `_TEMPLATE.md` → 填满 → 在本表登记 → 再编码。 新功能:复制 `_TEMPLATE.md` → 填满 → 在本表登记 → 再编码。
+2 -1
View File
@@ -217,6 +217,7 @@ Phase A 可先 `console`/本地;不挡验收。
| **KECR-018 Closed** | Entitlement — Spec `ops-entitlement.md` | | **KECR-018 Closed** | Entitlement — Spec `ops-entitlement.md` |
| **LECR-019 Closed** | ContentSafety FilterRule — Spec `ops-content-safety.md` | | **LECR-019 Closed** | ContentSafety FilterRule — Spec `ops-content-safety.md` |
| **MECR-020 Closed** | QualityFeedback — Spec `ops-quality-feedback.md` | | **MECR-020 Closed** | QualityFeedback — Spec `ops-quality-feedback.md` |
| 后置 | AICoreConfig / CrisisCareLoop 续跑) | | **NECR-021 Closed** | AICoreConfig SystemPrompt — Spec `ops-ai-core-config.md` |
| 后置 | CrisisCare / Knowledge·Tools 写面(Loop 续跑) |
| D | 订单筛选 · 展示价 · 退款只读(另开 ECR) | | D | 订单筛选 · 展示价 · 退款只读(另开 ECR) |
| 后置 | 封禁加深(Account_Risk)· 推送占位 | | 后置 | 封禁加深(Account_Risk)· 推送占位 |
@@ -0,0 +1,41 @@
# Feature Spec: AICoreConfig · SystemPromptOps · ECR-021
> Status: `Active`Loop continuous · **ECR-021 Closed**
> Parent: WAVE0-FROZEN · Predecessor: ECR-020 Closed
> Capability: `AICoreConfig` · BC: `Ask_Ops`
> 授权:`docs/WAVE0/LOOP_AUTHORIZATION.md`
## Non-goals
Prompt 在线编辑/发布 · KnowledgeSource/Chunk · ToolDefinition · 切换运行时引擎 · UGC · 真支付
## L2 Domain
| 概念 | 语义 |
|------|------|
| `SystemPrompt` | code 唯一;body 为模板文本;active/system;本切片只读 |
## L3 API
| Method | Path | 权限 | 语义 |
|--------|------|------|------|
| GET | `/admin/ai/system-prompts` | `admin.ai_config.read` | 列表 |
| GET | `/admin/ai/system-prompts/:id` | 同上 | 详情(含 body |
## Migration
`000022``system_prompts` + 种子 `ask_default` + 授予权限
## L4 AC
| ID | Then |
|----|------|
| AC-F-01 | list 含 ask_default |
| AC-F-02 | get 返回 body 非空 |
| AC-F-03 | 未知 id → 404 |
| AC-S-01 | 无 Admin → 401 |
| AC-S-02 | 无 ai_config.read → 403 |
| AC-P-01 | list &lt; 500ms |
| AC-O-01 | N/A 只读 |
contract_diff: `docs/CONTRACT_DIFF/ECR-021.yaml`
+26
View File
@@ -295,6 +295,32 @@ export const adminApi = {
rating: number rating: number
source: string source: string
}>('POST', `/ask/threads/${threadId}/feedback`, body), }>('POST', `/ask/threads/${threadId}/feedback`, body),
systemPrompts: () =>
request<{
items: Array<{
id: string
code: string
title: string
scene?: string
body: string
version: number
active: boolean
system: boolean
updated_at: string
}>
}>('GET', '/ai/system-prompts'),
systemPrompt: (id: string) =>
request<{
id: string
code: string
title: string
scene?: string
body: string
version: number
active: boolean
system: boolean
updated_at: string
}>('GET', `/ai/system-prompts/${id}`),
orders: () => orders: () =>
request<{ request<{
items: Array<{ items: Array<{
+1
View File
@@ -32,6 +32,7 @@ async function onLogout() {
<RouterLink to="/codes">兑换码</RouterLink> <RouterLink to="/codes">兑换码</RouterLink>
<RouterLink to="/ask">问答</RouterLink> <RouterLink to="/ask">问答</RouterLink>
<RouterLink to="/safety">安全</RouterLink> <RouterLink to="/safety">安全</RouterLink>
<RouterLink to="/ai">AI</RouterLink>
<RouterLink to="/orders">订单</RouterLink> <RouterLink to="/orders">订单</RouterLink>
<RouterLink to="/audit">审计</RouterLink> <RouterLink to="/audit">审计</RouterLink>
</nav> </nav>
+104
View File
@@ -0,0 +1,104 @@
<script setup lang="ts">
import { onMounted, ref } from 'vue'
import { adminApi } from '@/api/client'
type Prompt = Awaited<ReturnType<typeof adminApi.systemPrompts>>['items'][number]
const loading = ref(false)
const error = ref('')
const items = ref<Prompt[]>([])
const selected = ref<Prompt | null>(null)
const detailErr = ref('')
async function load() {
loading.value = true
error.value = ''
try {
const res = await adminApi.systemPrompts()
items.value = res.items || []
} catch (e) {
error.value = e instanceof Error ? e.message : '加载失败'
} finally {
loading.value = false
}
}
async function openPrompt(id: string) {
detailErr.value = ''
try {
selected.value = await adminApi.systemPrompt(id)
} catch (e) {
detailErr.value = e instanceof Error ? e.message : '详情失败'
selected.value = null
}
}
function fmtTime(iso?: string) {
if (!iso) return '—'
try {
return new Date(iso).toLocaleString('zh-CN')
} catch {
return iso
}
}
onMounted(load)
</script>
<template>
<section>
<h1>AI 配置</h1>
<p class="muted">SystemPrompt 只读目录 · 本切片不可编辑发布</p>
<p v-if="loading" class="muted">加载中</p>
<p v-else-if="error" class="err">{{ error }}</p>
<div v-else class="layout">
<div class="card">
<h2>系统提示词</h2>
<p v-if="!items.length" class="muted">暂无</p>
<table v-else>
<thead>
<tr><th>代码</th><th>标题</th><th>版本</th><th>状态</th><th></th></tr>
</thead>
<tbody>
<tr v-for="p in items" :key="p.id">
<td><code>{{ p.code }}</code></td>
<td>{{ p.title }}</td>
<td>v{{ p.version }}</td>
<td>{{ p.active ? '启用' : '停用' }}{{ p.system ? ' · 系统' : '' }}</td>
<td><button class="btn" type="button" @click="openPrompt(p.id)">查看</button></td>
</tr>
</tbody>
</table>
</div>
<div class="card">
<h2>正文</h2>
<p v-if="detailErr" class="err">{{ detailErr }}</p>
<template v-else-if="selected">
<p class="meta">{{ selected.title }} · 更新 {{ fmtTime(selected.updated_at) }}</p>
<pre>{{ selected.body }}</pre>
</template>
<p v-else class="muted">选择左侧提示词查看正文</p>
</div>
</div>
</section>
</template>
<style scoped>
h1 { margin: 0 0 0.35rem; font-size: 1.35rem; }
h2 { margin: 0 0 0.6rem; font-size: 1.05rem; }
.layout { display: grid; grid-template-columns: 1fr 1.1fr; gap: 1rem; margin-top: 1rem; }
.meta { color: var(--muted); font-size: 0.85rem; margin-bottom: 0.5rem; }
pre {
margin: 0;
white-space: pre-wrap;
word-break: break-word;
font-size: 0.85rem;
line-height: 1.45;
border: 1px solid var(--line);
border-radius: 10px;
padding: 0.75rem;
background: rgba(255, 253, 251, 0.8);
}
code { font-size: 0.8rem; }
@media (max-width: 900px) { .layout { grid-template-columns: 1fr; } }
</style>
+1
View File
@@ -19,6 +19,7 @@ const router = createRouter({
{ path: 'codes', name: 'codes', component: () => import('@/pages/RedemptionPage.vue') }, { path: 'codes', name: 'codes', component: () => import('@/pages/RedemptionPage.vue') },
{ path: 'ask', name: 'ask', component: () => import('@/pages/AskPage.vue') }, { path: 'ask', name: 'ask', component: () => import('@/pages/AskPage.vue') },
{ path: 'safety', name: 'safety', component: () => import('@/pages/SafetyPage.vue') }, { path: 'safety', name: 'safety', component: () => import('@/pages/SafetyPage.vue') },
{ path: 'ai', name: 'ai', component: () => import('@/pages/AIConfigPage.vue') },
{ path: 'audit', name: 'audit', component: () => import('@/pages/AuditPage.vue') }, { path: 'audit', name: 'audit', component: () => import('@/pages/AuditPage.vue') },
], ],
}, },
+1
View File
@@ -51,6 +51,7 @@ func (h *AdminHandler) Register(api *gin.RouterGroup) {
h.registerQualityFeedback(authed) h.registerQualityFeedback(authed)
h.registerEntitlement(authed) h.registerEntitlement(authed)
h.registerContentSafety(authed) h.registerContentSafety(authed)
h.registerAIConfig(authed)
} }
func (h *AdminHandler) Login(c *gin.Context) { func (h *AdminHandler) Login(c *gin.Context) {
@@ -0,0 +1,46 @@
package handler
import (
"errors"
"net/http"
"github.com/gin-gonic/gin"
"github.com/google/uuid"
"github.com/yuxingu/digital-psychology/apps/api/internal/middleware"
"github.com/yuxingu/digital-psychology/apps/api/internal/service/admin"
"github.com/yuxingu/digital-psychology/apps/api/pkg/response"
)
func (h *AdminHandler) registerAIConfig(authed *gin.RouterGroup) {
g := authed.Group("/ai")
g.GET("/system-prompts", middleware.RequireAdminPermission(h.Svc, admin.PermAIConfigRead), h.ListSystemPrompts)
g.GET("/system-prompts/:id", middleware.RequireAdminPermission(h.Svc, admin.PermAIConfigRead), h.GetSystemPrompt)
}
func (h *AdminHandler) ListSystemPrompts(c *gin.Context) {
items, err := h.Svc.ListSystemPrompts(c.Request.Context())
if err != nil {
response.Fail(c, http.StatusInternalServerError, 50027, "list system prompts failed")
return
}
response.OK(c, gin.H{"items": items})
}
func (h *AdminHandler) GetSystemPrompt(c *gin.Context) {
id, err := uuid.Parse(c.Param("id"))
if err != nil {
response.Fail(c, http.StatusBadRequest, 40002, "invalid id")
return
}
row, err := h.Svc.GetSystemPrompt(c.Request.Context(), id)
if errors.Is(err, admin.ErrSystemPromptNotFound) {
response.Fail(c, http.StatusNotFound, 40404, "system prompt not found")
return
}
if err != nil {
response.Fail(c, http.StatusInternalServerError, 50028, "get system prompt failed")
return
}
response.OK(c, row)
}
@@ -0,0 +1,105 @@
package integration_test
import (
"context"
"encoding/json"
"fmt"
"net/http"
"testing"
"time"
"github.com/google/uuid"
"golang.org/x/crypto/bcrypt"
)
func TestAICoreSystemPrompts(t *testing.T) {
r, pool := setupAPIPool(t)
ctx := context.Background()
tok := adminLogin(t, r, "admin", "change-me")
_, code := doAdminJSON(t, r, http.MethodGet, "/api/v1/admin/ai/system-prompts", nil, "")
if code != http.StatusUnauthorized {
t.Fatalf("expected 401, got %d", code)
}
limitedRoleID := uuid.New()
_, err := pool.Exec(ctx, `
INSERT INTO admin_roles(id, name, system) VALUES ($1,$2,false)`,
limitedRoleID, "ai_lim_"+limitedRoleID.String()[:8])
if err != nil {
t.Fatal(err)
}
_, err = pool.Exec(ctx, `
INSERT INTO admin_role_permissions(role_id, code) VALUES ($1,'admin.users.read')`, limitedRoleID)
if err != nil {
t.Fatal(err)
}
hash, err := bcrypt.GenerateFromPassword([]byte("limited-pass"), bcrypt.DefaultCost)
if err != nil {
t.Fatal(err)
}
limUser := fmt.Sprintf("ailim_%d", time.Now().UnixNano())
_, err = pool.Exec(ctx, `
INSERT INTO admin_accounts(username, password_hash, role_id) VALUES ($1,$2,$3)`,
limUser, string(hash), limitedRoleID)
if err != nil {
t.Fatal(err)
}
t.Cleanup(func() {
_, _ = pool.Exec(ctx, `DELETE FROM admin_accounts WHERE username=$1`, limUser)
_, _ = pool.Exec(ctx, `DELETE FROM admin_roles WHERE id=$1`, limitedRoleID)
})
limTok := adminLogin(t, r, limUser, "limited-pass")
_, code = doAdminJSON(t, r, http.MethodGet, "/api/v1/admin/ai/system-prompts", nil, limTok)
if code != http.StatusForbidden {
t.Fatalf("expected 403, got %d", code)
}
start := time.Now()
env, code := doAdminJSON(t, r, http.MethodGet, "/api/v1/admin/ai/system-prompts", nil, tok)
if code != 200 || env.Code != 0 {
t.Fatalf("list http=%d msg=%s", code, env.Message)
}
if time.Since(start) > 500*time.Millisecond {
t.Fatalf("list too slow %v", time.Since(start))
}
var list struct {
Items []struct {
ID string `json:"id"`
Code string `json:"code"`
Body string `json:"body"`
} `json:"items"`
}
_ = json.Unmarshal(env.Data, &list)
var askID string
for _, it := range list.Items {
if it.Code == "ask_default" {
askID = it.ID
if it.Body == "" {
t.Fatal("ask_default body empty in list")
}
break
}
}
if askID == "" {
t.Fatalf("missing ask_default: %#v", list.Items)
}
env, code = doAdminJSON(t, r, http.MethodGet, "/api/v1/admin/ai/system-prompts/"+askID, nil, tok)
if code != 200 {
t.Fatalf("get %d", code)
}
var detail struct {
Body string `json:"body"`
Code string `json:"code"`
}
_ = json.Unmarshal(env.Data, &detail)
if detail.Code != "ask_default" || detail.Body == "" {
t.Fatalf("bad detail %#v", detail)
}
_, code = doAdminJSON(t, r, http.MethodGet, "/api/v1/admin/ai/system-prompts/"+fakeUUID(), nil, tok)
if code != http.StatusNotFound {
t.Fatalf("expected 404, got %d", code)
}
}
@@ -0,0 +1,62 @@
package repository
import (
"context"
"errors"
"time"
"github.com/google/uuid"
"github.com/jackc/pgx/v5"
)
// SystemPromptRow is AICoreConfig SystemPrompt catalog row.
type SystemPromptRow struct {
ID uuid.UUID `json:"id"`
Code string `json:"code"`
Title string `json:"title"`
Scene *string `json:"scene,omitempty"`
Body string `json:"body"`
Version int `json:"version"`
Active bool `json:"active"`
System bool `json:"system"`
UpdatedAt time.Time `json:"updated_at"`
}
// ListSystemPrompts returns prompt catalog (body included for ops read).
func (r *AdminRepo) ListSystemPrompts(ctx context.Context) ([]SystemPromptRow, error) {
rows, err := r.Pool.Query(ctx, `
SELECT id, code, title, scene, body, version, active, system, updated_at
FROM system_prompts
ORDER BY active DESC, code ASC`)
if err != nil {
return nil, err
}
defer rows.Close()
var out []SystemPromptRow
for rows.Next() {
var p SystemPromptRow
if err := rows.Scan(
&p.ID, &p.Code, &p.Title, &p.Scene, &p.Body, &p.Version, &p.Active, &p.System, &p.UpdatedAt,
); err != nil {
return nil, err
}
out = append(out, p)
}
return out, rows.Err()
}
// GetSystemPrompt loads one prompt by id.
func (r *AdminRepo) GetSystemPrompt(ctx context.Context, id uuid.UUID) (*SystemPromptRow, error) {
var p SystemPromptRow
err := r.Pool.QueryRow(ctx, `
SELECT id, code, title, scene, body, version, active, system, updated_at
FROM system_prompts WHERE id=$1`, id,
).Scan(&p.ID, &p.Code, &p.Title, &p.Scene, &p.Body, &p.Version, &p.Active, &p.System, &p.UpdatedAt)
if errors.Is(err, pgx.ErrNoRows) {
return nil, err
}
if err != nil {
return nil, err
}
return &p, nil
}
@@ -0,0 +1,34 @@
package admin
import (
"context"
"errors"
"github.com/google/uuid"
"github.com/jackc/pgx/v5"
"github.com/yuxingu/digital-psychology/apps/api/internal/repository"
)
var ErrSystemPromptNotFound = errString("system prompt not found")
// ListSystemPrompts returns SystemPrompt catalog.
func (s *Service) ListSystemPrompts(ctx context.Context) ([]repository.SystemPromptRow, error) {
items, err := s.Repo.ListSystemPrompts(ctx)
if err != nil {
return nil, err
}
if items == nil {
items = []repository.SystemPromptRow{}
}
return items, nil
}
// GetSystemPrompt loads one prompt.
func (s *Service) GetSystemPrompt(ctx context.Context, id uuid.UUID) (*repository.SystemPromptRow, error) {
row, err := s.Repo.GetSystemPrompt(ctx, id)
if errors.Is(err, pgx.ErrNoRows) {
return nil, ErrSystemPromptNotFound
}
return row, err
}
+2
View File
@@ -27,6 +27,7 @@ const (
PermAskRead = "admin.ask.read" PermAskRead = "admin.ask.read"
PermAskFeedbackWrite = "admin.ask.feedback.write" PermAskFeedbackWrite = "admin.ask.feedback.write"
PermContentSafetyRead = "admin.content_safety.read" PermContentSafetyRead = "admin.content_safety.read"
PermAIConfigRead = "admin.ai_config.read"
) )
var knownPermissions = map[string]struct{}{ var knownPermissions = map[string]struct{}{
@@ -36,6 +37,7 @@ var knownPermissions = map[string]struct{}{
PermUsersStatusWrite: {}, PermMembershipPlansRead: {}, PermMembershipPlansWrite: {}, PermUsersStatusWrite: {}, PermMembershipPlansRead: {}, PermMembershipPlansWrite: {},
PermMembershipCodesRead: {}, PermMembershipCodesWrite: {}, PermMembershipCodesRead: {}, PermMembershipCodesWrite: {},
PermAskRead: {}, PermAskFeedbackWrite: {}, PermContentSafetyRead: {}, PermAskRead: {}, PermAskFeedbackWrite: {}, PermContentSafetyRead: {},
PermAIConfigRead: {},
} }
var ( var (
@@ -0,0 +1,4 @@
-- ECR-021 down
DELETE FROM admin_role_permissions WHERE code = 'admin.ai_config.read';
DROP TABLE IF EXISTS system_prompts;
@@ -0,0 +1,42 @@
-- ECR-021 AICoreConfig SystemPrompt (read catalog)
CREATE TABLE IF NOT EXISTS system_prompts (
id uuid PRIMARY KEY DEFAULT gen_random_uuid(),
code varchar(64) NOT NULL UNIQUE,
title varchar(128) NOT NULL,
scene varchar(32) NULL,
body text NOT NULL,
version int NOT NULL DEFAULT 1 CHECK (version > 0),
active boolean NOT NULL DEFAULT true,
system boolean NOT NULL DEFAULT false,
created_at timestamptz NOT NULL DEFAULT now(),
updated_at timestamptz NOT NULL DEFAULT now()
);
CREATE INDEX IF NOT EXISTS idx_system_prompts_active ON system_prompts(active);
INSERT INTO system_prompts(code, title, scene, body, version, active, system)
VALUES (
'ask_default',
'问答默认系统提示',
NULL,
$prompt$你是 AI
宿
{{display_name}} · {{relation}} · {{birth_date}} · {{scene}} · {{report_ctx}}
$prompt$,
1,
true,
true
)
ON CONFLICT (code) DO NOTHING;
INSERT INTO admin_role_permissions(role_id, code)
SELECT r.id, 'admin.ai_config.read'
FROM admin_roles r
WHERE r.name = 'super_admin'
ON CONFLICT DO NOTHING;
@@ -0,0 +1,24 @@
# Backend Design: ECR-021 AICoreConfig
| ID | BD-2026-021 |
| Status | Approved |
| Coding | Loop authorized |
| Level | L2 |
| Migration | YES 000022 |
## Backend Change Boundary
```text
Domain: SystemPrompt (read catalog)
App: AdminHandler → admin.Service → AdminRepo
API: GET /admin/ai/system-prompts[+/:id]
Permission: admin.ai_config.read
Migration: 000022 table + seed ask_default + perm
UI: admin-h5 /ai
```
## Out of boundary
Prompt write/publish · Knowledge* · ToolDefinition · runtime engine swap · UGC · Payment
Rollback: down migration + remove routes/UI
+4
View File
@@ -1,5 +1,9 @@
# CHANGELOG — ESS process artifacts # CHANGELOG — ESS process artifacts
## 2026-08-08
- **ECR-021 Closed**AICoreConfig SystemPrompt`system_prompts` · admin-h5 `/ai` · migration 000022 · 只读)
## 2026-08-07 ## 2026-08-07
- **ECR-020 Closed**QualityFeedback`ask_quality_feedback` · admin/user 评分 · migration 000021 - **ECR-020 Closed**QualityFeedback`ask_quality_feedback` · admin/user 评分 · migration 000021
+8
View File
@@ -0,0 +1,8 @@
# CODE_REVIEW — ECR-021
**Verdict:** Approve → Closed
Date: 2026-08-08 · Loop continuous
- SystemPrompt 目录只读;未改 Ask 运行时组装
- Integration AC mapped · OpenAPI updated
+23
View File
@@ -0,0 +1,23 @@
ecr: ECR-021
capability: AICoreConfig
bounded_context: Ask_Ops
parent: WAVE0-FROZEN
predecessor: ECR-020
change:
type: additive
breaking_change: false
migration_required: true
compatibility_notes: >
Adds system_prompts catalog with ask_default seed and read-only admin APIs.
Does not change Ask runtime prompt assembly in this slice.
apis:
- method: GET
path: /api/v1/admin/ai/system-prompts
change: added
- method: GET
path: /api/v1/admin/ai/system-prompts/{id}
change: added
perms:
- code: admin.ai_config.read
change: added
+19
View File
@@ -0,0 +1,19 @@
# ECR-021
**Title:** AICoreConfig · SystemPrompt(只读薄切片)
**Status:** **Closed**
**Closed:** 2026-08-08Loop continuous
**Parent:** WAVE0-FROZEN · **Predecessor:** ECR-020 Closed
**Change Level:** L2
## Change
`system_prompts` + `GET /admin/ai/system-prompts*`;权限 `admin.ai_config.read`admin-h5「AI」页。
## Forbidden
Prompt 写发布 · Knowledge/Tools · UGC · 真支付
## Linked
Spec `ops-ai-core-config.md` · BD-2026-021 · CONTRACT_DIFF/ECR-021.yaml · TEST_REPORT/ECR-021.md
@@ -0,0 +1,7 @@
# ENGINEERING_SPEC — ECR-021
1. migration 000022 system_prompts + perm
2. AdminRepo list/get
3. Admin API + OpenAPI
4. admin-h5 /ai
5. Integration · Closed
@@ -0,0 +1,3 @@
# HANDOFF — ECR-021 Architect → Engineer
Loop continuous · Approved + Coding. Migration 000022. Forbidden: Prompt写/UGC/真支付.
@@ -0,0 +1,3 @@
# HANDOFF — ECR-021 Engineer → Reviewer
TestAICoreSystemPrompts PASS · /ai · Ready for Closed.
@@ -0,0 +1,3 @@
# PRODUCT_SPEC — ECR-021
对齐 ops-ai-core-config.md · Approved · Loop · L2 · SystemPrompt 只读
+6
View File
@@ -0,0 +1,6 @@
# STATE — ECR-021
| Status | **Closed** |
| Phase | closed |
| Spec | ops-ai-core-config.md |
| Updated | 2026-08-08 |
+12
View File
@@ -0,0 +1,12 @@
id: TASK-021-ECR021
ecr: ECR-021
title: AICoreConfig SystemPrompt read
role: engineer
status: closed
change_level: L2
parent: WAVE0-FROZEN
predecessor: ECR-020
acceptance:
- Spec AC mapped
- SystemPrompt read-only
- No Knowledge/Tools write / UGC / payment
+32
View File
@@ -0,0 +1,32 @@
# TEST_REPORT — ECR-021 AICoreConfig
Date: 2026-08-08 · Loop continuous · commit: (pending)
## Commands
```bash
cd apps/api && go test ./internal/integration/ -run TestAICoreSystemPrompts -count=1
npm run build:admin
python3 scripts/ess-validate.py --phase review --ecr ECR-021
python3 scripts/ess-gate-check.py --ecr ECR-021
```
## Results
| Check | Result |
|-------|--------|
| TestAICoreSystemPrompts | PASS |
| build:admin | PASS |
| ess-validate review | PASS |
## AC
| ID | Evidence |
|----|----------|
| AC-F-01 | list 含 ask_default |
| AC-F-02 | get body 非空 |
| AC-F-03 | 未知 id → 404 |
| AC-S-01 | 无 token → 401 |
| AC-S-02 | 仅 users.read → 403 |
| AC-P-01 | list &lt; 500ms |
| AC-O-01 | N/A 只读 |
+1
View File
@@ -25,3 +25,4 @@
| ECR-018 | Entitlement | **Closed** | Spec ops-entitlement · BD-2026-018 · TEST_REPORT · CODE_REVIEW · Loop continuous | | ECR-018 | Entitlement | **Closed** | Spec ops-entitlement · BD-2026-018 · TEST_REPORT · CODE_REVIEW · Loop continuous |
| ECR-019 | ContentSafety | **Closed** | Spec ops-content-safety · BD-2026-019 · migration 000020 · TEST_REPORT · CODE_REVIEW · Loop continuous | | ECR-019 | ContentSafety | **Closed** | Spec ops-content-safety · BD-2026-019 · migration 000020 · TEST_REPORT · CODE_REVIEW · Loop continuous |
| ECR-020 | QualityFeedback | **Closed** | Spec ops-quality-feedback · BD-2026-020 · migration 000021 · TEST_REPORT · CODE_REVIEW · Loop continuous | | ECR-020 | QualityFeedback | **Closed** | Spec ops-quality-feedback · BD-2026-020 · migration 000021 · TEST_REPORT · CODE_REVIEW · Loop continuous |
| ECR-021 | AICoreConfig | **Closed** | Spec ops-ai-core-config · BD-2026-021 · migration 000022 · TEST_REPORT · CODE_REVIEW · Loop continuous |
+1 -1
View File
@@ -30,4 +30,4 @@ Human 明文:**直接用 Loop,不用人工确认。**
| Done | Next | | Done | Next |
|------|------| |------|------|
| ECR-013A…020 Closed | **ECR-021** AICoreConfig 薄切片(SystemPrompt 只读优先);禁真支付/UGC | | ECR-013A…021 Closed | **ECR-022** CrisisCare 薄切片(CrisisPolicy 只读优先);禁真支付/UGC |
+28
View File
@@ -527,6 +527,34 @@ paths:
'200': '200':
description: OK description: OK
/api/v1/admin/ai/system-prompts:
get:
tags: [admin]
summary: List SystemPrompt catalog
description: Requires admin.ai_config.read
responses:
'200':
description: OK
'401':
description: Unauthorized
'403':
description: Forbidden
/api/v1/admin/ai/system-prompts/{id}:
get:
tags: [admin]
summary: Get SystemPrompt
parameters:
- in: path
name: id
required: true
schema: { type: string, format: uuid }
responses:
'200':
description: OK
'404':
description: Not found
/api/v1/admin/orders: /api/v1/admin/orders:
get: get:
tags: [admin] tags: [admin]