/** * The shell's hand on the ONE registry. * * Modelled on the drawer's tools (`@vendoai/vendo` user-files.ts): a * `ToolRegistry` whose descriptor carries its own `risk`, whose every call opens * the workspace for `ctx.principal` and NOBODY else, and which commits what the * call wrote before answering. There is no subject argument to get wrong. */ import { type Principal, type ToolRegistry, type WorkspaceFs } from "@vendoai/core"; import { type ShellLimits } from "./engine.js"; export declare function createShellTools(open: (principal: Principal) => Promise, config?: { limits?: ShellLimits; }): ToolRegistry; //# sourceMappingURL=tool.d.ts.map