百科.dev
全部条目AI 编程趋势榜开源项目技术资讯提交条目
登录
< 返回工具列表
J

julep

> 数据库
开源

Julep — 可持续、可组合的 AI 代理。流程可以在崩溃后重新启动、安全重试,并解释每一步。

6.6K stars0 点赞0 次浏览
访问官网GitHub

工具介绍

Julep — 可持续、可组合的 AI 代理。流程可以在崩溃后重新启动、安全重试,并解释每一步。

Julep

Julep — durable, composable AI agents. Flows that crash and resume, retry safely, and explain every step.

Julep builds agents as composable, durable dataflows instead of ad-hoc loops: flows can crash and resume, retry safely, explain every step through a derived projection, and deny any tool the model was not explicitly allowed to call. The primary authoring surface is define-by-construction @flow: ordinary Python names graph steps while registered tools, pures, reasoners, branches, fan-out, retries, and timeouts compile to the same frozen wire-format IR. The pure core stays dependency-free, while the Temporal layer is optional.


Install

pip install --pre julep

Julep 3 currently ships as a release candidate, so the --pre flag is required; it drops once 3.0.0 is final.


Quickstart

10 minutes, no API key. Install the base package and run this as a normal Python script:

…

@flow runs once at definition time with data handles. Registered tools, registered pures, think(...), cond(...), switch(...), each(...), and reschedule(...) append graph steps instead of doing runtime work; | merges records and h["key"] plucks fields. deploy(..., tools=..., reasoners=...) freezes the tool and reasoner surface, and dry_run(...) executes locally with in-memory tools and deterministic fake reasoners. See the larger @flow examples in examples/episode_summary_flow.py and examples/cluster_labeling_flow.py.

Use mcp_tool(server, tool) inside @flow for an MCP reference. Its schemas and behavior contract come from the frozen MCP snapshot; handle-valued keyword arguments build its input record directly. examples/episode_summary_flow.py shows snapshot-backed MCP reads and writes with a local mcp_call fake.

Production secrets and MCP safety

The self-hosted control plane includes a write-only operator vault whose values are encrypted at rest. Callers can also bind short-lived, per-run credentials to whole-string secret://name MCP header references; those values travel only in encrypted Temporal payloads and are excluded from stored run data and projections. Before user effects, worker-side MCP preflight checks the frozen, transitively reachable tool surface. New releases default to exact pin comparison, with explicit names and off escape hatches; mid-run tool removal or post-validation schema rejection fails terminally as typed surface drift.

See the control-plane guide for vault configuration, run-secret limits and binding rules, MCP policy behavior, and the administration API.


The CLI

julep is the developer CLI for a whole module of agents — "dbt for agents, terminal-native." Point it at a directory; it discovers every @flow/Agent(...), treats each as a node in a cross-agent graph, and gives you one selection grammar across every verb:

…

Selectors compose: tag:support, state:modified (Slim-CI), +agent/agent+/@agent graph traversal, a,b intersection, --exclude. Full reference: docs-site/content/docs/guides/using-the-cli.md.

For production applications, declare an explicit object instead of adding a second discovery convention:

…

For julep plan, apply, and application-level status, each snapshot_source receives a read-only mapping made from the selected environment's [vars] followed by [worker_environment] (worker values win on duplicate names). Secret-backed worker variables are intentionally absent: worker_secret_environment contains Kubernetes Secret references, not values, and those values exist only in the worker at runtime. The callback must return an McpSnapshot; pass any credential needed for schema discovery through a non-secret control-plane mechanism rather than expecting a Secret value here.

Point [tool.julep].application at that object with a module:attribute value. Each deployable environment also names the worker's explicit context factory; ordinary and Secret-backed worker environment can be reconciled with the lane:

…

payload_encryption_secret is required for application releases and names an existing Kubernetes Secret in kubernetes_namespace with keyring and active-key-id entries. The PriorityClass is optional: set worker_priority_class only when shared cluster infrastructure provisions it (the EKS demo does); omit it on ordinary clusters.

julep plan --env staging reports artifact, MCP-schema, Helm/KEDA, and runtime drift; julep apply --env staging publishes an immutable S3-artifact store release and reconciles one digest-pinned Helm release per lane and immutable release on a release-specific task queue, without changing traffic; julep status --env staging aggregates the release and live lane state. That application-level status path is selected only when [tool.julep].application is configured and no selector or --exclude is supplied; selected status queries continue to inspect the legacy per-agent deploy ledger.

Application publishing requires a 64-hex Ed25519 seed (or a file containing one) in JULEP_BUNDLE_SIGNING_KEY. In production, set the corresponding 64-hex public key in the non-secret JULEP_BUNDLE_ALLOWED_SIGNERS worker environment; apply rejects a configured allow-list that does not contain the publishing key. Read-only plan and application-level status need that public allow-list (or the private key as a local fallback). Install julep[store,temporal] for S3 publication and Temporal workers, plus any pipeline-specific extras. The control-plane host also needs authenticated helm, kubectl, and temporal CLIs; apply --publish-only skips Helm reconciliation.

julep worker runs continuously from its environment contract. A positive --smoke-test-seconds N verifies Temporal connectivity, polls the configured queue for N seconds, drains, and exits; the default 0 keeps serving.


Extras

The base install is authoring + compile only (PyYAML). Optional extras add runtime surfaces:

Extra pip install --pre 'julep[...]' Adds
temporal julep[temporal] durable execution on Temporal (workflows, activities, worker, client helpers)
dbos julep[dbos] durable execution on DBOS / Postgres (steps, flow workflow, chaining runner)
http julep[http] native HTTP tool calls from the callTool activity
cma julep[cma] httpx transport for the CMA HTTP adapter
mcp julep[mcp] official MCP SDK, httpx, PyJWT, and cryptography for MCP references, snapshots, calls, and auth
server julep[server] FastAPI/Uvicorn control plane, SSE, Postgres store, Temporal gateway, cryptography, and httpx
dotctx julep[dotctx] rich .ctx layout (Jinja2 templates compiled into registered renderers); native !? $env.get(...) settings support needs no extra
providers julep[providers] multi-provider LlmCaller via any-llm (pair with provider extras)
otel julep[otel] OpenTelemetry span export of the projection
langfuse julep[langfuse] Langfuse OTLP/HTTP export of the projection
store julep[store] artifact distribution stores + bundle signing primitives
wasm julep[wasm] sandboxed wasm execution of bundle-sourced pures (wasmtime host)

julep.HAVE_TEMPORAL reports whether the runtime is available; the package imports and compiles flows either way.


Looking for Julep v1?

Julep v1 (the agents API platform) is preserved on the v1 branch and its docs at v1.docs.julep.ai. Julep 3 is a ground-up rewrite; there is no migration path — v1 and v3 are different products.


License

This project is licensed under Apache-2.0. See LICENSE.

Issues· 0 开放

查看全部 Issues在 GitHub 打开

暂无开放 Issues,或尚未同步最近议题。

> 标签

Pythonagentsaiai-agentsai-agents-framework

暂无评论,来聊聊你的看法吧

> 工具信息

发布日期2026年8月1日
最后更新2026年9月17日
分类数据库
定价开源

> 相关工具

P
PostgreSQL
功能强大的开源关系型数据库
R
Redis
内存数据结构存储,常用作缓存与队列
M
MySQL
广泛使用的开源关系型数据库