Deltat

io.github.open-deltatv0.2.0更新於 Oct 4, 2026

Give an agent a calendar it can book without double-booking: find, hold, then commit atomically.

已驗證STDIO僅桌面DatabasesProductivity & Workflow

概覽

AI 產生的概覽

讓助理尋找空閒的行事曆時段、暫時保留並以原子方式完成預約,避免重複預約。

功能
針對 deltat 伺服器提供排程工具:find_slots 列出單一或多個行事曆中真正空閒的時間,hold_slot 將時段保留幾分鐘,commit_hold 以原子方式把保留轉為預約。另提供 release_hold、create_calendar、set_availability、list_bookings 與 cancel_booking。book_slot 工具僅用來拒絕並引導呼叫者改用先保留再提交的流程。時間使用帶強制時區位移的 RFC 3339 字串,錯誤帶有 CONFLICT、EXPIRED 等類型前綴,並常附上替代時間。
適用情境
當助理需要向人提出並確認預約時間時使用,尤其是在檢查與預約之間的延遲可能讓別人搶走時段的情況下。也適合同時預約多個行事曆,例如相機機身、鏡頭與攝影團隊,或外科醫師與手術室。
執行需求
需要 0.4.0 或更新版本的本機 deltat 伺服器,且可透過網路連線。透過 npx @open-deltat/mcp 以本機 stdio 程序執行。需要 DELTAT_PASSWORD 環境變數,以及選用的 DELTAT_HOST、DELTAT_PORT、DELTAT_DATABASE、DELTAT_USER、DELTAT_TLS 與 DELTAT_TLS_CA。僅限桌面端。
安裝前請注意
DELTAT_PASSWORD 為必填且沒有預設值;未啟用 TLS 時密碼以明文傳送,因此對任何不在本機的伺服器應啟用 DELTAT_TLS 或 DELTAT_TLS_CA。此伺服器本身沒有登入機制,以使用者權限執行。相關工具會建立、保留、提交與取消預約,也就是寫入並變更排程資料。

安裝

在 SourceWeft 中

  1. 開啟 儀表板中的 Deltat,將其新增到工作區。
  2. 為需要使用其工具的對話啟用該服務。

Desktop only,透過 STDIO。 STDIO 服務會啟動本機處理程序,因此需要 SourceWeft 桌面主機。

其他 MCP 客戶端

參照 儲存庫 中的啟動說明。

README

@open-deltat/mcp

Give an agent a calendar it can actually book on, without ever double-booking.

bash
npx @open-deltat/mcp

Most scheduling APIs give an agent one verb: book. That is fine for a form submission and wrong for an agent, because an agent takes seconds to decide. It reads that 14:30 is free, says "how about 14:30?", waits for a human to answer, and by then someone else has taken it. Checking and booking are two separate moments, and everything in between is a race.

This server has no one-step booking verb. Booking is:

find_slots  →  hold_slot  →  commit_hold

The hold is the point. It reserves the slot for a few minutes, so between offering a time and confirming it, that time is yours and nobody else can take it. Holds expire on their own, so an abandoned conversation cleans itself up and holding costs nothing.

Underneath is deltat, a database whose one invariant is that two bookings can never occupy the same span. The refusal comes from the storage engine, not from application code that checked first and hoped.

Tools

ToolUse it when
find_slotsBefore offering anyone a time. Lists what is genuinely free, on every calendar you name.
hold_slotThe moment you are about to name a specific time to a human. Returns hold_ids.
commit_holdThe booking is confirmed. Turns every hold into a booking, atomically.
release_holdYou know the held time is not wanted. Frees it immediately.
create_calendarA new bookable calendar is needed. Returns the calendar_id.
set_availabilityOpening hours change, or find_slots returns nothing. Replaces the whole week.
list_bookingsSomeone asks what is scheduled, or you need a booking_id to cancel.
cancel_bookingA human asked for a confirmed booking to be cancelled.
book_slotNever. It exists only to refuse and point you at hold_slot + commit_hold.

That last row is deliberate. Every other calendar API has a one-step booking verb, so models reach for one here and find nothing. Rather than let that become a hallucinated tool call or an abandoned conversation, the verb is registered and refuses, explaining the two real steps in the response. It never books anything.

Times cross the boundary as RFC 3339 strings with a mandatory offset, never bare epoch milliseconds. A zoneless timestamp is rejected rather than silently interpreted in whatever zone the process runs in. Errors come back with a typed prefix to branch on: CONFLICT (pick another slot), EXPIRED (re-hold), INVALID, NOT_FOUND.

A refusal tells you when

When a slot is taken or the time falls outside opening hours, the refusal carries the times that would have worked, so an agent can counter-offer in the same turn instead of starting over:

json
{  "error": "CONFLICT",  "booked": false, "held": false, "reserved": false,  "retry_same_time": true,  "alternatives": [    { "start": "2026-06-01T12:00:00.000Z", "end": "2026-06-01T13:00:00.000Z",      "start_local": "1 Jun 2026, 2:00 pm" }  ],  "next": "These times were free a moment ago but are NOT reserved. Offer one, then call hold_slot on it before you tell anyone it is theirs."}

On a live phone call that removes a whole model turn, which is otherwise silence.

reserved is always false, and it is stated rather than implied because a model that skims to alternatives must not conclude something was set aside. An alternative is a time that was free; taking one still means calling hold_slot.

A refusal with nothing to offer keeps the plain CODE: message shape, so a kernel with counter-offers disabled (DELTAT_COUNTER_OFFER=0) or one older than the feature behaves exactly as before.

Book several calendars together

A camera body, its lens and the crew. A surgeon and an operating room. An appointment and the drive to it. Pass every calendar to the same three tools:

find_slots({ calendar_ids: [body, lens, crew], from, to })    times when ALL are freehold_slot({ calendar_ids: [body, lens, crew], start, end })   holds every one, or nonecommit_hold({ hold_ids, label })                              books every one, or none

One calendar is the same call with a one-item list. The commit is a single record in deltat, so neither a competing booker nor a crash can leave the body booked and the lens free.

When a kit is refused, the alternatives are times when every calendar is free for the same length, never the time just refused, in the same shape as above.

Configure it

You need a deltat server, 0.4.0 or later. Self-host it with Docker:

bash
docker run -p 5433:5433 -e DELTAT_PASSWORD=<your-password> ghcr.io/open-deltat/deltat

Then add the MCP server. In Claude Code:

bash
claude mcp add deltat \  --env DELTAT_HOST=localhost \  --env DELTAT_PORT=5433 \  --env DELTAT_DATABASE=public \  --env DELTAT_PASSWORD=<your-password> \  -- npx -y @open-deltat/mcp

In Claude Desktop, edit claude_desktop_config.json and restart:

json
{  "mcpServers": {    "deltat": {      "command": "npx",      "args": ["-y", "@open-deltat/mcp"],      "env": {        "DELTAT_HOST": "localhost",        "DELTAT_PORT": "5433",        "DELTAT_DATABASE": "public",        "DELTAT_PASSWORD": "<your-password>"      }    }  }}

DELTAT_PASSWORD is required and has no default; the server refuses to start without it rather than trying a guessable one. Everything else defaults to a local deltat on localhost:5433, database public. Each database name is an isolated tenant.

Then just ask: "Create a calendar called Haircuts open weekday afternoons, then book me the first free 30-minute slot tomorrow."

Authentication, honestly

This stdio server has no login. The deltat password in your config is the credential, and the server runs with your user's permissions. That is the single-operator self-host model: you own the deltat, you own the agent, and it needs no OAuth.

A hosted multi-tenant server is a different problem. There an agent authenticates with OAuth 2.1: the server answers an unauthenticated call with 401 plus protected-resource metadata (RFC 9728), and a capable client runs authorization-code + PKCE itself, registering via a Client ID Metadata Document with one-time human consent. The OidcAdapter in this package is the resource-server half of that, verifying a bearer JWT offline against the issuer's JWKS with no per-request network call.

That hosted transport is not in this package yet. The stdio server above is what runs today.

Embed it

ts
import { createDeltatMcpServer } from "@open-deltat/mcp";import { DeltaT } from "@open-deltat/client";
const server = createDeltatMcpServer(new DeltaT({ /* ... */ }));await server.connect(yourTransport);

Prove it end to end

With a deltat running:

bash
bun scripts/smoke.ts

drives the whole loop through an in-memory MCP client and asserts the round trip (create → availability → find → hold → commit → list → cancel).

License

MIT

來源:packages/mcp/README.md,提交 9604e33

工具

0
工具後設資料尚未被收錄。

版本歷史

1
  1. v0.2.0最新Oct 4, 2026