1use std::pin::Pin;
2use std::str::FromStr;
3use std::sync::Arc;
4
5use crate::ui::InstructionListItem;
6use anyhow::{Context as _, Result, anyhow};
7use aws_config::stalled_stream_protection::StalledStreamProtectionConfig;
8use aws_config::{BehaviorVersion, Region};
9use aws_credential_types::Credentials;
10use aws_http_client::AwsHttpClient;
11use bedrock::bedrock_client::Client as BedrockClient;
12use bedrock::bedrock_client::config::timeout::TimeoutConfig;
13use bedrock::bedrock_client::types::{
14 ContentBlockDelta, ContentBlockStart, ConverseStreamOutput, ReasoningContentBlockDelta,
15 StopReason,
16};
17use bedrock::{
18 BedrockAnyToolChoice, BedrockAutoToolChoice, BedrockBlob, BedrockError, BedrockInnerContent,
19 BedrockMessage, BedrockModelMode, BedrockStreamingResponse, BedrockThinkingBlock,
20 BedrockThinkingTextBlock, BedrockTool, BedrockToolChoice, BedrockToolConfig,
21 BedrockToolInputSchema, BedrockToolResultBlock, BedrockToolResultContentBlock,
22 BedrockToolResultStatus, BedrockToolSpec, BedrockToolUseBlock, Model, value_to_aws_document,
23};
24use collections::{BTreeMap, HashMap};
25use credentials_provider::CredentialsProvider;
26use editor::{Editor, EditorElement, EditorStyle};
27use futures::{FutureExt, Stream, StreamExt, future::BoxFuture, stream::BoxStream};
28use gpui::{
29 AnyView, App, AsyncApp, Context, Entity, FontStyle, FontWeight, Subscription, Task, TextStyle,
30 WhiteSpace,
31};
32use gpui_tokio::Tokio;
33use http_client::HttpClient;
34use language_model::{
35 AuthenticateError, LanguageModel, LanguageModelCacheConfiguration,
36 LanguageModelCompletionError, LanguageModelCompletionEvent, LanguageModelId, LanguageModelName,
37 LanguageModelProvider, LanguageModelProviderId, LanguageModelProviderName,
38 LanguageModelProviderState, LanguageModelRequest, LanguageModelToolChoice,
39 LanguageModelToolResultContent, LanguageModelToolUse, MessageContent, RateLimiter, Role,
40 TokenUsage,
41};
42use schemars::JsonSchema;
43use serde::{Deserialize, Serialize};
44use serde_json::Value;
45use settings::{Settings, SettingsStore};
46use smol::lock::OnceCell;
47use strum::{EnumIter, IntoEnumIterator, IntoStaticStr};
48use theme::ThemeSettings;
49use tokio::runtime::Handle;
50use ui::{Icon, IconName, List, Tooltip, prelude::*};
51use util::{ResultExt, default};
52
53use crate::AllLanguageModelSettings;
54
55const PROVIDER_ID: &str = "amazon-bedrock";
56const PROVIDER_NAME: &str = "Amazon Bedrock";
57
58#[derive(Default, Clone, Deserialize, Serialize, PartialEq, Debug)]
59pub struct BedrockCredentials {
60 pub access_key_id: String,
61 pub secret_access_key: String,
62 pub session_token: Option<String>,
63 pub region: String,
64}
65
66#[derive(Default, Clone, Debug, PartialEq)]
67pub struct AmazonBedrockSettings {
68 pub available_models: Vec<AvailableModel>,
69 pub region: Option<String>,
70 pub endpoint: Option<String>,
71 pub profile_name: Option<String>,
72 pub role_arn: Option<String>,
73 pub authentication_method: Option<BedrockAuthMethod>,
74}
75
76#[derive(Clone, Debug, PartialEq, Serialize, Deserialize, EnumIter, IntoStaticStr, JsonSchema)]
77pub enum BedrockAuthMethod {
78 #[serde(rename = "named_profile")]
79 NamedProfile,
80 #[serde(rename = "sso")]
81 SingleSignOn,
82 /// IMDSv2, PodIdentity, env vars, etc.
83 #[serde(rename = "default")]
84 Automatic,
85}
86
87#[derive(Clone, Debug, PartialEq, Serialize, Deserialize, JsonSchema)]
88pub struct AvailableModel {
89 pub name: String,
90 pub display_name: Option<String>,
91 pub max_tokens: usize,
92 pub cache_configuration: Option<LanguageModelCacheConfiguration>,
93 pub max_output_tokens: Option<u32>,
94 pub default_temperature: Option<f32>,
95 pub mode: Option<ModelMode>,
96}
97
98#[derive(Clone, Debug, Default, PartialEq, Serialize, Deserialize, JsonSchema)]
99#[serde(tag = "type", rename_all = "lowercase")]
100pub enum ModelMode {
101 #[default]
102 Default,
103 Thinking {
104 /// The maximum number of tokens to use for reasoning. Must be lower than the model's `max_output_tokens`.
105 budget_tokens: Option<u64>,
106 },
107}
108
109impl From<ModelMode> for BedrockModelMode {
110 fn from(value: ModelMode) -> Self {
111 match value {
112 ModelMode::Default => BedrockModelMode::Default,
113 ModelMode::Thinking { budget_tokens } => BedrockModelMode::Thinking { budget_tokens },
114 }
115 }
116}
117
118impl From<BedrockModelMode> for ModelMode {
119 fn from(value: BedrockModelMode) -> Self {
120 match value {
121 BedrockModelMode::Default => ModelMode::Default,
122 BedrockModelMode::Thinking { budget_tokens } => ModelMode::Thinking { budget_tokens },
123 }
124 }
125}
126
127/// The URL of the base AWS service.
128///
129/// Right now we're just using this as the key to store the AWS credentials
130/// under in the keychain.
131const AMAZON_AWS_URL: &str = "https://amazonaws.com";
132
133// These environment variables all use a `ZED_` prefix because we don't want to overwrite the user's AWS credentials.
134const ZED_BEDROCK_ACCESS_KEY_ID_VAR: &str = "ZED_ACCESS_KEY_ID";
135const ZED_BEDROCK_SECRET_ACCESS_KEY_VAR: &str = "ZED_SECRET_ACCESS_KEY";
136const ZED_BEDROCK_SESSION_TOKEN_VAR: &str = "ZED_SESSION_TOKEN";
137const ZED_AWS_PROFILE_VAR: &str = "ZED_AWS_PROFILE";
138const ZED_BEDROCK_REGION_VAR: &str = "ZED_AWS_REGION";
139const ZED_AWS_CREDENTIALS_VAR: &str = "ZED_AWS_CREDENTIALS";
140const ZED_AWS_ENDPOINT_VAR: &str = "ZED_AWS_ENDPOINT";
141
142pub struct State {
143 credentials: Option<BedrockCredentials>,
144 settings: Option<AmazonBedrockSettings>,
145 credentials_from_env: bool,
146 _subscription: Subscription,
147}
148
149impl State {
150 fn reset_credentials(&self, cx: &mut Context<Self>) -> Task<Result<()>> {
151 let credentials_provider = <dyn CredentialsProvider>::global(cx);
152 cx.spawn(async move |this, cx| {
153 credentials_provider
154 .delete_credentials(AMAZON_AWS_URL, &cx)
155 .await
156 .log_err();
157 this.update(cx, |this, cx| {
158 this.credentials = None;
159 this.credentials_from_env = false;
160 this.settings = None;
161 cx.notify();
162 })
163 })
164 }
165
166 fn set_credentials(
167 &mut self,
168 credentials: BedrockCredentials,
169 cx: &mut Context<Self>,
170 ) -> Task<Result<()>> {
171 let credentials_provider = <dyn CredentialsProvider>::global(cx);
172 cx.spawn(async move |this, cx| {
173 credentials_provider
174 .write_credentials(
175 AMAZON_AWS_URL,
176 "Bearer",
177 &serde_json::to_vec(&credentials)?,
178 &cx,
179 )
180 .await?;
181 this.update(cx, |this, cx| {
182 this.credentials = Some(credentials);
183 cx.notify();
184 })
185 })
186 }
187
188 fn is_authenticated(&self) -> bool {
189 let derived = self
190 .settings
191 .as_ref()
192 .and_then(|s| s.authentication_method.as_ref());
193 let creds = self.credentials.as_ref();
194
195 derived.is_some() || creds.is_some()
196 }
197
198 fn authenticate(&self, cx: &mut Context<Self>) -> Task<Result<(), AuthenticateError>> {
199 if self.is_authenticated() {
200 return Task::ready(Ok(()));
201 }
202
203 let credentials_provider = <dyn CredentialsProvider>::global(cx);
204 cx.spawn(async move |this, cx| {
205 let (credentials, from_env) =
206 if let Ok(credentials) = std::env::var(ZED_AWS_CREDENTIALS_VAR) {
207 (credentials, true)
208 } else {
209 let (_, credentials) = credentials_provider
210 .read_credentials(AMAZON_AWS_URL, &cx)
211 .await?
212 .ok_or_else(|| AuthenticateError::CredentialsNotFound)?;
213 (
214 String::from_utf8(credentials)
215 .context("invalid {PROVIDER_NAME} credentials")?,
216 false,
217 )
218 };
219
220 let credentials: BedrockCredentials =
221 serde_json::from_str(&credentials).context("failed to parse credentials")?;
222
223 this.update(cx, |this, cx| {
224 this.credentials = Some(credentials);
225 this.credentials_from_env = from_env;
226 cx.notify();
227 })?;
228
229 Ok(())
230 })
231 }
232}
233
234pub struct BedrockLanguageModelProvider {
235 http_client: AwsHttpClient,
236 handler: tokio::runtime::Handle,
237 state: gpui::Entity<State>,
238}
239
240impl BedrockLanguageModelProvider {
241 pub fn new(http_client: Arc<dyn HttpClient>, cx: &mut App) -> Self {
242 let state = cx.new(|cx| State {
243 credentials: None,
244 settings: Some(AllLanguageModelSettings::get_global(cx).bedrock.clone()),
245 credentials_from_env: false,
246 _subscription: cx.observe_global::<SettingsStore>(|_, cx| {
247 cx.notify();
248 }),
249 });
250
251 let tokio_handle = Tokio::handle(cx);
252
253 let coerced_client = AwsHttpClient::new(http_client.clone(), tokio_handle.clone());
254
255 Self {
256 http_client: coerced_client,
257 handler: tokio_handle.clone(),
258 state,
259 }
260 }
261
262 fn create_language_model(&self, model: bedrock::Model) -> Arc<dyn LanguageModel> {
263 Arc::new(BedrockModel {
264 id: LanguageModelId::from(model.id().to_string()),
265 model,
266 http_client: self.http_client.clone(),
267 handler: self.handler.clone(),
268 state: self.state.clone(),
269 client: OnceCell::new(),
270 request_limiter: RateLimiter::new(4),
271 })
272 }
273}
274
275impl LanguageModelProvider for BedrockLanguageModelProvider {
276 fn id(&self) -> LanguageModelProviderId {
277 LanguageModelProviderId(PROVIDER_ID.into())
278 }
279
280 fn name(&self) -> LanguageModelProviderName {
281 LanguageModelProviderName(PROVIDER_NAME.into())
282 }
283
284 fn icon(&self) -> IconName {
285 IconName::AiBedrock
286 }
287
288 fn default_model(&self, _cx: &App) -> Option<Arc<dyn LanguageModel>> {
289 Some(self.create_language_model(bedrock::Model::default()))
290 }
291
292 fn default_fast_model(&self, _cx: &App) -> Option<Arc<dyn LanguageModel>> {
293 Some(self.create_language_model(bedrock::Model::default_fast()))
294 }
295
296 fn provided_models(&self, cx: &App) -> Vec<Arc<dyn LanguageModel>> {
297 let mut models = BTreeMap::default();
298
299 for model in bedrock::Model::iter() {
300 if !matches!(model, bedrock::Model::Custom { .. }) {
301 // TODO: Sonnet 3.7 vs. 3.7 Thinking bug is here.
302 models.insert(model.id().to_string(), model);
303 }
304 }
305
306 // Override with available models from settings
307 for model in AllLanguageModelSettings::get_global(cx)
308 .bedrock
309 .available_models
310 .iter()
311 {
312 models.insert(
313 model.name.clone(),
314 bedrock::Model::Custom {
315 name: model.name.clone(),
316 display_name: model.display_name.clone(),
317 max_tokens: model.max_tokens,
318 max_output_tokens: model.max_output_tokens,
319 default_temperature: model.default_temperature,
320 },
321 );
322 }
323
324 models
325 .into_values()
326 .map(|model| self.create_language_model(model))
327 .collect()
328 }
329
330 fn is_authenticated(&self, cx: &App) -> bool {
331 self.state.read(cx).is_authenticated()
332 }
333
334 fn authenticate(&self, cx: &mut App) -> Task<Result<(), AuthenticateError>> {
335 self.state.update(cx, |state, cx| state.authenticate(cx))
336 }
337
338 fn configuration_view(&self, window: &mut Window, cx: &mut App) -> AnyView {
339 cx.new(|cx| ConfigurationView::new(self.state.clone(), window, cx))
340 .into()
341 }
342
343 fn reset_credentials(&self, cx: &mut App) -> Task<Result<()>> {
344 self.state
345 .update(cx, |state, cx| state.reset_credentials(cx))
346 }
347}
348
349impl LanguageModelProviderState for BedrockLanguageModelProvider {
350 type ObservableEntity = State;
351
352 fn observable_entity(&self) -> Option<gpui::Entity<Self::ObservableEntity>> {
353 Some(self.state.clone())
354 }
355}
356
357struct BedrockModel {
358 id: LanguageModelId,
359 model: Model,
360 http_client: AwsHttpClient,
361 handler: tokio::runtime::Handle,
362 client: OnceCell<BedrockClient>,
363 state: gpui::Entity<State>,
364 request_limiter: RateLimiter,
365}
366
367impl BedrockModel {
368 fn get_or_init_client(&self, cx: &AsyncApp) -> anyhow::Result<&BedrockClient> {
369 self.client
370 .get_or_try_init_blocking(|| {
371 let (auth_method, credentials, endpoint, region, settings) =
372 cx.read_entity(&self.state, |state, _cx| {
373 let auth_method = state
374 .settings
375 .as_ref()
376 .and_then(|s| s.authentication_method.clone());
377
378 let endpoint = state.settings.as_ref().and_then(|s| s.endpoint.clone());
379
380 let region = state
381 .settings
382 .as_ref()
383 .and_then(|s| s.region.clone())
384 .unwrap_or(String::from("us-east-1"));
385
386 (
387 auth_method,
388 state.credentials.clone(),
389 endpoint,
390 region,
391 state.settings.clone(),
392 )
393 })?;
394
395 let mut config_builder = aws_config::defaults(BehaviorVersion::latest())
396 .stalled_stream_protection(StalledStreamProtectionConfig::disabled())
397 .http_client(self.http_client.clone())
398 .region(Region::new(region))
399 .timeout_config(TimeoutConfig::disabled());
400
401 if let Some(endpoint_url) = endpoint {
402 if !endpoint_url.is_empty() {
403 config_builder = config_builder.endpoint_url(endpoint_url);
404 }
405 }
406
407 match auth_method {
408 None => {
409 if let Some(creds) = credentials {
410 let aws_creds = Credentials::new(
411 creds.access_key_id,
412 creds.secret_access_key,
413 creds.session_token,
414 None,
415 "zed-bedrock-provider",
416 );
417 config_builder = config_builder.credentials_provider(aws_creds);
418 }
419 }
420 Some(BedrockAuthMethod::NamedProfile)
421 | Some(BedrockAuthMethod::SingleSignOn) => {
422 // Currently NamedProfile and SSO behave the same way but only the instructions change
423 // Until we support BearerAuth through SSO, this will not change.
424 let profile_name = settings
425 .and_then(|s| s.profile_name)
426 .unwrap_or_else(|| "default".to_string());
427
428 if !profile_name.is_empty() {
429 config_builder = config_builder.profile_name(profile_name);
430 }
431 }
432 Some(BedrockAuthMethod::Automatic) => {
433 // Use default credential provider chain
434 }
435 }
436
437 let config = self.handler.block_on(config_builder.load());
438 anyhow::Ok(BedrockClient::new(&config))
439 })
440 .context("initializing Bedrock client")?;
441
442 self.client.get().context("Bedrock client not initialized")
443 }
444
445 fn stream_completion(
446 &self,
447 request: bedrock::Request,
448 cx: &AsyncApp,
449 ) -> Result<
450 BoxFuture<'static, BoxStream<'static, Result<BedrockStreamingResponse, BedrockError>>>,
451 > {
452 let runtime_client = self
453 .get_or_init_client(cx)
454 .cloned()
455 .context("Bedrock client not initialized")?;
456 let owned_handle = self.handler.clone();
457
458 Ok(async move {
459 let request = bedrock::stream_completion(runtime_client, request, owned_handle);
460 request.await.unwrap_or_else(|e| {
461 futures::stream::once(async move { Err(BedrockError::ClientError(e)) }).boxed()
462 })
463 }
464 .boxed())
465 }
466}
467
468impl LanguageModel for BedrockModel {
469 fn id(&self) -> LanguageModelId {
470 self.id.clone()
471 }
472
473 fn name(&self) -> LanguageModelName {
474 LanguageModelName::from(self.model.display_name().to_string())
475 }
476
477 fn provider_id(&self) -> LanguageModelProviderId {
478 LanguageModelProviderId(PROVIDER_ID.into())
479 }
480
481 fn provider_name(&self) -> LanguageModelProviderName {
482 LanguageModelProviderName(PROVIDER_NAME.into())
483 }
484
485 fn supports_tools(&self) -> bool {
486 self.model.supports_tool_use()
487 }
488
489 fn supports_images(&self) -> bool {
490 false
491 }
492
493 fn supports_tool_choice(&self, choice: LanguageModelToolChoice) -> bool {
494 match choice {
495 LanguageModelToolChoice::Auto | LanguageModelToolChoice::Any => {
496 self.model.supports_tool_use()
497 }
498 LanguageModelToolChoice::None => false,
499 }
500 }
501
502 fn telemetry_id(&self) -> String {
503 format!("bedrock/{}", self.model.id())
504 }
505
506 fn max_token_count(&self) -> usize {
507 self.model.max_token_count()
508 }
509
510 fn max_output_tokens(&self) -> Option<u32> {
511 Some(self.model.max_output_tokens())
512 }
513
514 fn count_tokens(
515 &self,
516 request: LanguageModelRequest,
517 cx: &App,
518 ) -> BoxFuture<'static, Result<usize>> {
519 get_bedrock_tokens(request, cx)
520 }
521
522 fn stream_completion(
523 &self,
524 request: LanguageModelRequest,
525 cx: &AsyncApp,
526 ) -> BoxFuture<
527 'static,
528 Result<
529 BoxStream<'static, Result<LanguageModelCompletionEvent, LanguageModelCompletionError>>,
530 >,
531 > {
532 let Ok(region) = cx.read_entity(&self.state, |state, _cx| {
533 // Get region - from credentials or directly from settings
534 let region = state
535 .credentials
536 .as_ref()
537 .map(|s| s.region.clone())
538 .unwrap_or(String::from("us-east-1"));
539
540 region
541 }) else {
542 return async move {
543 anyhow::bail!("App State Dropped");
544 }
545 .boxed();
546 };
547
548 let model_id = match self.model.cross_region_inference_id(®ion) {
549 Ok(s) => s,
550 Err(e) => {
551 return async move { Err(e) }.boxed();
552 }
553 };
554
555 let request = match into_bedrock(
556 request,
557 model_id,
558 self.model.default_temperature(),
559 self.model.max_output_tokens(),
560 self.model.mode(),
561 ) {
562 Ok(request) => request,
563 Err(err) => return futures::future::ready(Err(err)).boxed(),
564 };
565
566 let owned_handle = self.handler.clone();
567
568 let request = self.stream_completion(request, cx);
569 let future = self.request_limiter.stream(async move {
570 let response = request.map_err(|err| anyhow!(err))?.await;
571 Ok(map_to_language_model_completion_events(
572 response,
573 owned_handle,
574 ))
575 });
576 async move { Ok(future.await?.boxed()) }.boxed()
577 }
578
579 fn cache_configuration(&self) -> Option<LanguageModelCacheConfiguration> {
580 None
581 }
582}
583
584pub fn into_bedrock(
585 request: LanguageModelRequest,
586 model: String,
587 default_temperature: f32,
588 max_output_tokens: u32,
589 mode: BedrockModelMode,
590) -> Result<bedrock::Request> {
591 let mut new_messages: Vec<BedrockMessage> = Vec::new();
592 let mut system_message = String::new();
593
594 for message in request.messages {
595 if message.contents_empty() {
596 continue;
597 }
598
599 match message.role {
600 Role::User | Role::Assistant => {
601 let bedrock_message_content: Vec<BedrockInnerContent> = message
602 .content
603 .into_iter()
604 .filter_map(|content| match content {
605 MessageContent::Text(text) => {
606 if !text.is_empty() {
607 Some(BedrockInnerContent::Text(text))
608 } else {
609 None
610 }
611 }
612 MessageContent::Thinking { text, signature } => {
613 let thinking = BedrockThinkingTextBlock::builder()
614 .text(text)
615 .set_signature(signature)
616 .build()
617 .context("failed to build reasoning block")
618 .log_err()?;
619
620 Some(BedrockInnerContent::ReasoningContent(
621 BedrockThinkingBlock::ReasoningText(thinking),
622 ))
623 }
624 MessageContent::RedactedThinking(blob) => {
625 let redacted =
626 BedrockThinkingBlock::RedactedContent(BedrockBlob::new(blob));
627
628 Some(BedrockInnerContent::ReasoningContent(redacted))
629 }
630 MessageContent::ToolUse(tool_use) => BedrockToolUseBlock::builder()
631 .name(tool_use.name.to_string())
632 .tool_use_id(tool_use.id.to_string())
633 .input(value_to_aws_document(&tool_use.input))
634 .build()
635 .context("failed to build Bedrock tool use block")
636 .log_err()
637 .map(BedrockInnerContent::ToolUse),
638 MessageContent::ToolResult(tool_result) => {
639 BedrockToolResultBlock::builder()
640 .tool_use_id(tool_result.tool_use_id.to_string())
641 .content(match tool_result.content {
642 LanguageModelToolResultContent::Text(text) => {
643 BedrockToolResultContentBlock::Text(text.to_string())
644 }
645 LanguageModelToolResultContent::Image(_) => {
646 BedrockToolResultContentBlock::Text(
647 // TODO: Bedrock image support
648 "[Tool responded with an image, but Zed doesn't support these in Bedrock models yet]".to_string()
649 )
650 }
651 })
652 .status({
653 if tool_result.is_error {
654 BedrockToolResultStatus::Error
655 } else {
656 BedrockToolResultStatus::Success
657 }
658 })
659 .build()
660 .context("failed to build Bedrock tool result block")
661 .log_err()
662 .map(BedrockInnerContent::ToolResult)
663 }
664 _ => None,
665 })
666 .collect();
667 let bedrock_role = match message.role {
668 Role::User => bedrock::BedrockRole::User,
669 Role::Assistant => bedrock::BedrockRole::Assistant,
670 Role::System => unreachable!("System role should never occur here"),
671 };
672 if let Some(last_message) = new_messages.last_mut() {
673 if last_message.role == bedrock_role {
674 last_message.content.extend(bedrock_message_content);
675 continue;
676 }
677 }
678 new_messages.push(
679 BedrockMessage::builder()
680 .role(bedrock_role)
681 .set_content(Some(bedrock_message_content))
682 .build()
683 .context("failed to build Bedrock message")?,
684 );
685 }
686 Role::System => {
687 if !system_message.is_empty() {
688 system_message.push_str("\n\n");
689 }
690 system_message.push_str(&message.string_contents());
691 }
692 }
693 }
694
695 let tool_spec: Vec<BedrockTool> = request
696 .tools
697 .iter()
698 .filter_map(|tool| {
699 Some(BedrockTool::ToolSpec(
700 BedrockToolSpec::builder()
701 .name(tool.name.clone())
702 .description(tool.description.clone())
703 .input_schema(BedrockToolInputSchema::Json(value_to_aws_document(
704 &tool.input_schema,
705 )))
706 .build()
707 .log_err()?,
708 ))
709 })
710 .collect();
711
712 let tool_choice = match request.tool_choice {
713 Some(LanguageModelToolChoice::Auto) | None => {
714 BedrockToolChoice::Auto(BedrockAutoToolChoice::builder().build())
715 }
716 Some(LanguageModelToolChoice::Any) => {
717 BedrockToolChoice::Any(BedrockAnyToolChoice::builder().build())
718 }
719 Some(LanguageModelToolChoice::None) => {
720 anyhow::bail!("LanguageModelToolChoice::None is not supported");
721 }
722 };
723 let tool_config: BedrockToolConfig = BedrockToolConfig::builder()
724 .set_tools(Some(tool_spec))
725 .tool_choice(tool_choice)
726 .build()?;
727
728 Ok(bedrock::Request {
729 model,
730 messages: new_messages,
731 max_tokens: max_output_tokens,
732 system: Some(system_message),
733 tools: Some(tool_config),
734 thinking: if let BedrockModelMode::Thinking { budget_tokens } = mode {
735 Some(bedrock::Thinking::Enabled { budget_tokens })
736 } else {
737 None
738 },
739 metadata: None,
740 stop_sequences: Vec::new(),
741 temperature: request.temperature.or(Some(default_temperature)),
742 top_k: None,
743 top_p: None,
744 })
745}
746
747// TODO: just call the ConverseOutput.usage() method:
748// https://docs.rs/aws-sdk-bedrockruntime/latest/aws_sdk_bedrockruntime/operation/converse/struct.ConverseOutput.html#method.output
749pub fn get_bedrock_tokens(
750 request: LanguageModelRequest,
751 cx: &App,
752) -> BoxFuture<'static, Result<usize>> {
753 cx.background_executor()
754 .spawn(async move {
755 let messages = request.messages;
756 let mut tokens_from_images = 0;
757 let mut string_messages = Vec::with_capacity(messages.len());
758
759 for message in messages {
760 use language_model::MessageContent;
761
762 let mut string_contents = String::new();
763
764 for content in message.content {
765 match content {
766 MessageContent::Text(text) | MessageContent::Thinking { text, .. } => {
767 string_contents.push_str(&text);
768 }
769 MessageContent::RedactedThinking(_) => {}
770 MessageContent::Image(image) => {
771 tokens_from_images += image.estimate_tokens();
772 }
773 MessageContent::ToolUse(_tool_use) => {
774 // TODO: Estimate token usage from tool uses.
775 }
776 MessageContent::ToolResult(tool_result) => match tool_result.content {
777 LanguageModelToolResultContent::Text(text) => {
778 string_contents.push_str(&text);
779 }
780 LanguageModelToolResultContent::Image(image) => {
781 tokens_from_images += image.estimate_tokens();
782 }
783 },
784 }
785 }
786
787 if !string_contents.is_empty() {
788 string_messages.push(tiktoken_rs::ChatCompletionRequestMessage {
789 role: match message.role {
790 Role::User => "user".into(),
791 Role::Assistant => "assistant".into(),
792 Role::System => "system".into(),
793 },
794 content: Some(string_contents),
795 name: None,
796 function_call: None,
797 });
798 }
799 }
800
801 // Tiktoken doesn't yet support these models, so we manually use the
802 // same tokenizer as GPT-4.
803 tiktoken_rs::num_tokens_from_messages("gpt-4", &string_messages)
804 .map(|tokens| tokens + tokens_from_images)
805 })
806 .boxed()
807}
808
809pub fn map_to_language_model_completion_events(
810 events: Pin<Box<dyn Send + Stream<Item = Result<BedrockStreamingResponse, BedrockError>>>>,
811 handle: Handle,
812) -> impl Stream<Item = Result<LanguageModelCompletionEvent, LanguageModelCompletionError>> {
813 struct RawToolUse {
814 id: String,
815 name: String,
816 input_json: String,
817 }
818
819 struct State {
820 events: Pin<Box<dyn Send + Stream<Item = Result<BedrockStreamingResponse, BedrockError>>>>,
821 tool_uses_by_index: HashMap<i32, RawToolUse>,
822 }
823
824 futures::stream::unfold(
825 State {
826 events,
827 tool_uses_by_index: HashMap::default(),
828 },
829 move |mut state: State| {
830 let inner_handle = handle.clone();
831 async move {
832 inner_handle
833 .spawn(async {
834 while let Some(event) = state.events.next().await {
835 match event {
836 Ok(event) => match event {
837 ConverseStreamOutput::ContentBlockDelta(cb_delta) => {
838 match cb_delta.delta {
839 Some(ContentBlockDelta::Text(text_out)) => {
840 let completion_event =
841 LanguageModelCompletionEvent::Text(text_out);
842 return Some((Some(Ok(completion_event)), state));
843 }
844
845 Some(ContentBlockDelta::ToolUse(text_out)) => {
846 if let Some(tool_use) = state
847 .tool_uses_by_index
848 .get_mut(&cb_delta.content_block_index)
849 {
850 tool_use.input_json.push_str(text_out.input());
851 }
852 }
853
854 Some(ContentBlockDelta::ReasoningContent(thinking)) => {
855 match thinking {
856 ReasoningContentBlockDelta::RedactedContent(
857 redacted,
858 ) => {
859 let thinking_event =
860 LanguageModelCompletionEvent::Thinking {
861 text: String::from_utf8(
862 redacted.into_inner(),
863 )
864 .unwrap_or("REDACTED".to_string()),
865 signature: None,
866 };
867
868 return Some((
869 Some(Ok(thinking_event)),
870 state,
871 ));
872 }
873 ReasoningContentBlockDelta::Signature(
874 signature,
875 ) => {
876 return Some((
877 Some(Ok(LanguageModelCompletionEvent::Thinking {
878 text: "".to_string(),
879 signature: Some(signature)
880 })),
881 state,
882 ));
883 }
884 ReasoningContentBlockDelta::Text(thoughts) => {
885 let thinking_event =
886 LanguageModelCompletionEvent::Thinking {
887 text: thoughts.to_string(),
888 signature: None
889 };
890
891 return Some((
892 Some(Ok(thinking_event)),
893 state,
894 ));
895 }
896 _ => {}
897 }
898 }
899 _ => {}
900 }
901 }
902 ConverseStreamOutput::ContentBlockStart(cb_start) => {
903 if let Some(ContentBlockStart::ToolUse(text_out)) =
904 cb_start.start
905 {
906 let tool_use = RawToolUse {
907 id: text_out.tool_use_id,
908 name: text_out.name,
909 input_json: String::new(),
910 };
911
912 state
913 .tool_uses_by_index
914 .insert(cb_start.content_block_index, tool_use);
915 }
916 }
917 ConverseStreamOutput::ContentBlockStop(cb_stop) => {
918 if let Some(tool_use) = state
919 .tool_uses_by_index
920 .remove(&cb_stop.content_block_index)
921 {
922 let tool_use_event = LanguageModelToolUse {
923 id: tool_use.id.into(),
924 name: tool_use.name.into(),
925 is_input_complete: true,
926 raw_input: tool_use.input_json.clone(),
927 input: if tool_use.input_json.is_empty() {
928 Value::Null
929 } else {
930 serde_json::Value::from_str(
931 &tool_use.input_json,
932 )
933 .map_err(|err| anyhow!(err))
934 .unwrap()
935 },
936 };
937
938 return Some((
939 Some(Ok(LanguageModelCompletionEvent::ToolUse(
940 tool_use_event,
941 ))),
942 state,
943 ));
944 }
945 }
946
947 ConverseStreamOutput::Metadata(cb_meta) => {
948 if let Some(metadata) = cb_meta.usage {
949 let completion_event =
950 LanguageModelCompletionEvent::UsageUpdate(
951 TokenUsage {
952 input_tokens: metadata.input_tokens as u32,
953 output_tokens: metadata.output_tokens
954 as u32,
955 cache_creation_input_tokens: default(),
956 cache_read_input_tokens: default(),
957 },
958 );
959 return Some((Some(Ok(completion_event)), state));
960 }
961 }
962 ConverseStreamOutput::MessageStop(message_stop) => {
963 let reason = match message_stop.stop_reason {
964 StopReason::ContentFiltered => {
965 LanguageModelCompletionEvent::Stop(
966 language_model::StopReason::EndTurn,
967 )
968 }
969 StopReason::EndTurn => {
970 LanguageModelCompletionEvent::Stop(
971 language_model::StopReason::EndTurn,
972 )
973 }
974 StopReason::GuardrailIntervened => {
975 LanguageModelCompletionEvent::Stop(
976 language_model::StopReason::EndTurn,
977 )
978 }
979 StopReason::MaxTokens => {
980 LanguageModelCompletionEvent::Stop(
981 language_model::StopReason::EndTurn,
982 )
983 }
984 StopReason::StopSequence => {
985 LanguageModelCompletionEvent::Stop(
986 language_model::StopReason::EndTurn,
987 )
988 }
989 StopReason::ToolUse => {
990 LanguageModelCompletionEvent::Stop(
991 language_model::StopReason::ToolUse,
992 )
993 }
994 _ => LanguageModelCompletionEvent::Stop(
995 language_model::StopReason::EndTurn,
996 ),
997 };
998 return Some((Some(Ok(reason)), state));
999 }
1000 _ => {}
1001 },
1002
1003 Err(err) => return Some((Some(Err(anyhow!(err).into())), state)),
1004 }
1005 }
1006 None
1007 })
1008 .await
1009 .log_err()
1010 .flatten()
1011 }
1012 },
1013 )
1014 .filter_map(|event| async move { event })
1015}
1016
1017struct ConfigurationView {
1018 access_key_id_editor: Entity<Editor>,
1019 secret_access_key_editor: Entity<Editor>,
1020 session_token_editor: Entity<Editor>,
1021 region_editor: Entity<Editor>,
1022 state: gpui::Entity<State>,
1023 load_credentials_task: Option<Task<()>>,
1024}
1025
1026impl ConfigurationView {
1027 const PLACEHOLDER_ACCESS_KEY_ID_TEXT: &'static str = "XXXXXXXXXXXXXXXX";
1028 const PLACEHOLDER_SECRET_ACCESS_KEY_TEXT: &'static str =
1029 "XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX";
1030 const PLACEHOLDER_SESSION_TOKEN_TEXT: &'static str = "XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX";
1031 const PLACEHOLDER_REGION: &'static str = "us-east-1";
1032
1033 fn new(state: gpui::Entity<State>, window: &mut Window, cx: &mut Context<Self>) -> Self {
1034 cx.observe(&state, |_, _, cx| {
1035 cx.notify();
1036 })
1037 .detach();
1038
1039 let load_credentials_task = Some(cx.spawn({
1040 let state = state.clone();
1041 async move |this, cx| {
1042 if let Some(task) = state
1043 .update(cx, |state, cx| state.authenticate(cx))
1044 .log_err()
1045 {
1046 // We don't log an error, because "not signed in" is also an error.
1047 let _ = task.await;
1048 }
1049 this.update(cx, |this, cx| {
1050 this.load_credentials_task = None;
1051 cx.notify();
1052 })
1053 .log_err();
1054 }
1055 }));
1056
1057 Self {
1058 access_key_id_editor: cx.new(|cx| {
1059 let mut editor = Editor::single_line(window, cx);
1060 editor.set_placeholder_text(Self::PLACEHOLDER_ACCESS_KEY_ID_TEXT, cx);
1061 editor
1062 }),
1063 secret_access_key_editor: cx.new(|cx| {
1064 let mut editor = Editor::single_line(window, cx);
1065 editor.set_placeholder_text(Self::PLACEHOLDER_SECRET_ACCESS_KEY_TEXT, cx);
1066 editor
1067 }),
1068 session_token_editor: cx.new(|cx| {
1069 let mut editor = Editor::single_line(window, cx);
1070 editor.set_placeholder_text(Self::PLACEHOLDER_SESSION_TOKEN_TEXT, cx);
1071 editor
1072 }),
1073 region_editor: cx.new(|cx| {
1074 let mut editor = Editor::single_line(window, cx);
1075 editor.set_placeholder_text(Self::PLACEHOLDER_REGION, cx);
1076 editor
1077 }),
1078 state,
1079 load_credentials_task,
1080 }
1081 }
1082
1083 fn save_credentials(
1084 &mut self,
1085 _: &menu::Confirm,
1086 _window: &mut Window,
1087 cx: &mut Context<Self>,
1088 ) {
1089 let access_key_id = self
1090 .access_key_id_editor
1091 .read(cx)
1092 .text(cx)
1093 .to_string()
1094 .trim()
1095 .to_string();
1096 let secret_access_key = self
1097 .secret_access_key_editor
1098 .read(cx)
1099 .text(cx)
1100 .to_string()
1101 .trim()
1102 .to_string();
1103 let session_token = self
1104 .session_token_editor
1105 .read(cx)
1106 .text(cx)
1107 .to_string()
1108 .trim()
1109 .to_string();
1110 let session_token = if session_token.is_empty() {
1111 None
1112 } else {
1113 Some(session_token)
1114 };
1115 let region = self
1116 .region_editor
1117 .read(cx)
1118 .text(cx)
1119 .to_string()
1120 .trim()
1121 .to_string();
1122 let region = if region.is_empty() {
1123 "us-east-1".to_string()
1124 } else {
1125 region
1126 };
1127
1128 let state = self.state.clone();
1129 cx.spawn(async move |_, cx| {
1130 state
1131 .update(cx, |state, cx| {
1132 let credentials: BedrockCredentials = BedrockCredentials {
1133 region: region.clone(),
1134 access_key_id: access_key_id.clone(),
1135 secret_access_key: secret_access_key.clone(),
1136 session_token: session_token.clone(),
1137 };
1138
1139 state.set_credentials(credentials, cx)
1140 })?
1141 .await
1142 })
1143 .detach_and_log_err(cx);
1144 }
1145
1146 fn reset_credentials(&mut self, window: &mut Window, cx: &mut Context<Self>) {
1147 self.access_key_id_editor
1148 .update(cx, |editor, cx| editor.set_text("", window, cx));
1149 self.secret_access_key_editor
1150 .update(cx, |editor, cx| editor.set_text("", window, cx));
1151 self.session_token_editor
1152 .update(cx, |editor, cx| editor.set_text("", window, cx));
1153 self.region_editor
1154 .update(cx, |editor, cx| editor.set_text("", window, cx));
1155
1156 let state = self.state.clone();
1157 cx.spawn(async move |_, cx| {
1158 state
1159 .update(cx, |state, cx| state.reset_credentials(cx))?
1160 .await
1161 })
1162 .detach_and_log_err(cx);
1163 }
1164
1165 fn make_text_style(&self, cx: &Context<Self>) -> TextStyle {
1166 let settings = ThemeSettings::get_global(cx);
1167 TextStyle {
1168 color: cx.theme().colors().text,
1169 font_family: settings.ui_font.family.clone(),
1170 font_features: settings.ui_font.features.clone(),
1171 font_fallbacks: settings.ui_font.fallbacks.clone(),
1172 font_size: rems(0.875).into(),
1173 font_weight: settings.ui_font.weight,
1174 font_style: FontStyle::Normal,
1175 line_height: relative(1.3),
1176 background_color: None,
1177 underline: None,
1178 strikethrough: None,
1179 white_space: WhiteSpace::Normal,
1180 text_overflow: None,
1181 text_align: Default::default(),
1182 line_clamp: None,
1183 }
1184 }
1185
1186 fn make_input_styles(&self, cx: &Context<Self>) -> Div {
1187 let bg_color = cx.theme().colors().editor_background;
1188 let border_color = cx.theme().colors().border;
1189
1190 h_flex()
1191 .w_full()
1192 .px_2()
1193 .py_1()
1194 .bg(bg_color)
1195 .border_1()
1196 .border_color(border_color)
1197 .rounded_sm()
1198 }
1199
1200 fn should_render_editor(&self, cx: &Context<Self>) -> bool {
1201 self.state.read(cx).is_authenticated()
1202 }
1203}
1204
1205impl Render for ConfigurationView {
1206 fn render(&mut self, _window: &mut Window, cx: &mut Context<Self>) -> impl IntoElement {
1207 let env_var_set = self.state.read(cx).credentials_from_env;
1208 let bedrock_settings = self.state.read(cx).settings.as_ref();
1209 let bedrock_method = bedrock_settings
1210 .as_ref()
1211 .and_then(|s| s.authentication_method.clone());
1212
1213 if self.load_credentials_task.is_some() {
1214 return div().child(Label::new("Loading credentials...")).into_any();
1215 }
1216
1217 if self.should_render_editor(cx) {
1218 return h_flex()
1219 .mt_1()
1220 .p_1()
1221 .justify_between()
1222 .rounded_md()
1223 .border_1()
1224 .border_color(cx.theme().colors().border)
1225 .bg(cx.theme().colors().background)
1226 .child(
1227 h_flex()
1228 .gap_1()
1229 .child(Icon::new(IconName::Check).color(Color::Success))
1230 .child(Label::new(if env_var_set {
1231 format!("Access Key ID is set in {ZED_BEDROCK_ACCESS_KEY_ID_VAR}, Secret Key is set in {ZED_BEDROCK_SECRET_ACCESS_KEY_VAR}, Region is set in {ZED_BEDROCK_REGION_VAR} environment variables.")
1232 } else {
1233 match bedrock_method {
1234 Some(BedrockAuthMethod::Automatic) => "You are using automatic credentials".into(),
1235 Some(BedrockAuthMethod::NamedProfile) => {
1236 "You are using named profile".into()
1237 },
1238 Some(BedrockAuthMethod::SingleSignOn) => "You are using a single sign on profile".into(),
1239 None => "You are using static credentials".into(),
1240 }
1241 })),
1242 )
1243 .child(
1244 Button::new("reset-key", "Reset Key")
1245 .icon(Some(IconName::Trash))
1246 .icon_size(IconSize::Small)
1247 .icon_position(IconPosition::Start)
1248 .disabled(env_var_set || bedrock_method.is_some())
1249 .when(env_var_set, |this| {
1250 this.tooltip(Tooltip::text(format!("To reset your credentials, unset the {ZED_BEDROCK_ACCESS_KEY_ID_VAR}, {ZED_BEDROCK_SECRET_ACCESS_KEY_VAR}, and {ZED_BEDROCK_REGION_VAR} environment variables.")))
1251 })
1252 .when(bedrock_method.is_some(), |this| {
1253 this.tooltip(Tooltip::text("You cannot reset credentials as they're being derived, check Zed settings to understand how"))
1254 })
1255 .on_click(cx.listener(|this, _, window, cx| this.reset_credentials(window, cx))),
1256 )
1257 .into_any();
1258 }
1259
1260 v_flex()
1261 .size_full()
1262 .on_action(cx.listener(ConfigurationView::save_credentials))
1263 .child(Label::new("To use Zed's assistant with Bedrock, you can set a custom authentication strategy through the settings.json, or use static credentials."))
1264 .child(Label::new("But, to access models on AWS, you need to:").mt_1())
1265 .child(
1266 List::new()
1267 .child(
1268 InstructionListItem::new(
1269 "Grant permissions to the strategy you'll use according to the:",
1270 Some("Prerequisites"),
1271 Some("https://docs.aws.amazon.com/bedrock/latest/userguide/inference-prereq.html"),
1272 )
1273 )
1274 .child(
1275 InstructionListItem::new(
1276 "Select the models you would like access to:",
1277 Some("Bedrock Model Catalog"),
1278 Some("https://us-east-1.console.aws.amazon.com/bedrock/home?region=us-east-1#/modelaccess"),
1279 )
1280 )
1281 )
1282 .child(self.render_static_credentials_ui(cx))
1283 .child(self.render_common_fields(cx))
1284 .child(
1285 Label::new(
1286 format!("You can also assign the {ZED_BEDROCK_ACCESS_KEY_ID_VAR}, {ZED_BEDROCK_SECRET_ACCESS_KEY_VAR} AND {ZED_BEDROCK_REGION_VAR} environment variables and restart Zed."),
1287 )
1288 .size(LabelSize::Small)
1289 .color(Color::Muted)
1290 .my_1(),
1291 )
1292 .child(
1293 Label::new(
1294 format!("Optionally, if your environment uses AWS CLI profiles, you can set {ZED_AWS_PROFILE_VAR}; if it requires a custom endpoint, you can set {ZED_AWS_ENDPOINT_VAR}; and if it requires a Session Token, you can set {ZED_BEDROCK_SESSION_TOKEN_VAR}."),
1295 )
1296 .size(LabelSize::Small)
1297 .color(Color::Muted),
1298 )
1299 .into_any()
1300 }
1301}
1302
1303impl ConfigurationView {
1304 fn render_access_key_id_editor(&self, cx: &mut Context<Self>) -> impl IntoElement {
1305 let text_style = self.make_text_style(cx);
1306
1307 EditorElement::new(
1308 &self.access_key_id_editor,
1309 EditorStyle {
1310 background: cx.theme().colors().editor_background,
1311 local_player: cx.theme().players().local(),
1312 text: text_style,
1313 ..Default::default()
1314 },
1315 )
1316 }
1317
1318 fn render_secret_key_editor(&self, cx: &mut Context<Self>) -> impl IntoElement {
1319 let text_style = self.make_text_style(cx);
1320
1321 EditorElement::new(
1322 &self.secret_access_key_editor,
1323 EditorStyle {
1324 background: cx.theme().colors().editor_background,
1325 local_player: cx.theme().players().local(),
1326 text: text_style,
1327 ..Default::default()
1328 },
1329 )
1330 }
1331
1332 fn render_session_token_editor(&self, cx: &mut Context<Self>) -> impl IntoElement {
1333 let text_style = self.make_text_style(cx);
1334
1335 EditorElement::new(
1336 &self.session_token_editor,
1337 EditorStyle {
1338 background: cx.theme().colors().editor_background,
1339 local_player: cx.theme().players().local(),
1340 text: text_style,
1341 ..Default::default()
1342 },
1343 )
1344 }
1345
1346 fn render_region_editor(&self, cx: &mut Context<Self>) -> impl IntoElement {
1347 let text_style = self.make_text_style(cx);
1348
1349 EditorElement::new(
1350 &self.region_editor,
1351 EditorStyle {
1352 background: cx.theme().colors().editor_background,
1353 local_player: cx.theme().players().local(),
1354 text: text_style,
1355 ..Default::default()
1356 },
1357 )
1358 }
1359
1360 fn render_static_credentials_ui(&self, cx: &mut Context<Self>) -> AnyElement {
1361 v_flex()
1362 .my_2()
1363 .gap_1p5()
1364 .child(
1365 Label::new("Static Keys")
1366 .size(LabelSize::Default)
1367 .weight(FontWeight::BOLD),
1368 )
1369 .child(
1370 Label::new(
1371 "This method uses your AWS access key ID and secret access key directly.",
1372 )
1373 )
1374 .child(
1375 List::new()
1376 .child(InstructionListItem::new(
1377 "Create an IAM user in the AWS console with programmatic access",
1378 Some("IAM Console"),
1379 Some("https://us-east-1.console.aws.amazon.com/iam/home?region=us-east-1#/users"),
1380 ))
1381 .child(InstructionListItem::new(
1382 "Attach the necessary Bedrock permissions to this ",
1383 Some("user"),
1384 Some("https://docs.aws.amazon.com/bedrock/latest/userguide/inference-prereq.html"),
1385 ))
1386 .child(InstructionListItem::text_only(
1387 "Copy the access key ID and secret access key when provided",
1388 ))
1389 .child(InstructionListItem::text_only(
1390 "Enter these credentials below",
1391 )),
1392 )
1393 .child(
1394 v_flex()
1395 .gap_0p5()
1396 .child(Label::new("Access Key ID").size(LabelSize::Small))
1397 .child(
1398 self.make_input_styles(cx)
1399 .child(self.render_access_key_id_editor(cx)),
1400 ),
1401 )
1402 .child(
1403 v_flex()
1404 .gap_0p5()
1405 .child(Label::new("Secret Access Key").size(LabelSize::Small))
1406 .child(self.make_input_styles(cx).child(self.render_secret_key_editor(cx))),
1407 )
1408 .child(
1409 v_flex()
1410 .gap_0p5()
1411 .child(Label::new("Session Token (Optional)").size(LabelSize::Small))
1412 .child(
1413 self.make_input_styles(cx)
1414 .child(self.render_session_token_editor(cx)),
1415 ),
1416 )
1417 .into_any_element()
1418 }
1419
1420 fn render_common_fields(&self, cx: &mut Context<Self>) -> AnyElement {
1421 v_flex()
1422 .gap_0p5()
1423 .child(Label::new("Region").size(LabelSize::Small))
1424 .child(
1425 self.make_input_styles(cx)
1426 .child(self.render_region_editor(cx)),
1427 )
1428 .into_any_element()
1429 }
1430}