/* BARE_OS_BIN_API 1.0.0 — bump when staged /bin script semantics change (see developer guide). */ /** Shared helpers for drive-resident /bin scripts (prepended before each command). */ function bareStdin(ctx) { return typeof ctx.shellStdin === 'string' ? ctx.shellStdin : '' } /** @param {number} mode @param {'file' | 'directory' | 'symlink'} type */ function bareFormatModeString(mode, type) { const typeChar = type === 'directory' ? 'd' : type === 'symlink' ? 'l' : '-' const perm = mode & 0o777 const r = (bit) => (perm & bit ? 'r' : '-') const w = (bit) => (perm & bit ? 'w' : '-') const x = (bit) => (perm & bit ? 'x' : '-') return ( typeChar + r(0o400) + w(0o200) + x(0o100) + r(0o040) + w(0o020) + x(0o010) + r(0o004) + w(0o002) + x(0o001) ) } /** @param {number} mtimeMs @param {number} [nowMs] */ function bareFormatLsMtime(mtimeMs, nowMs) { const now = nowMs != null ? nowMs : Date.now() const d = new Date(mtimeMs) const months = [ 'Jan', 'Feb', 'Mar', 'Apr', 'May', 'Jun', 'Jul', 'Aug', 'Sep', 'Oct', 'Nov', 'Dec' ] const mon = months[d.getMonth()] const day = String(d.getDate()).padStart(2, ' ') const sixMo = 180 * 24 * 3600 * 1000 if (Math.abs(now - mtimeMs) > sixMo) { const yr = String(d.getFullYear()).padStart(4, ' ') return mon + ' ' + day + ' ' + yr } const hh = String(d.getHours()).padStart(2, '0') const mm = String(d.getMinutes()).padStart(2, '0') return mon + ' ' + day + ' ' + hh + ':' + mm } /** @param {number} size */ function barePosixBlocks(size) { return Math.ceil(Number(size) / 512) || 0 } /** * Raw stdout for NUL/binary when **`process.stdout.write`** is missing. * If **`ctx.bareOsBinWrite(Uint8Array|string)`** is set (tests / host), use it. * @param {Record} ctx * @param {string | Uint8Array} chunk * @returns {boolean} */ function bareOsEmitRaw(ctx, chunk) { if (typeof ctx.bareOsBinWrite === 'function') { const b4 = ctx.b4a const u8 = typeof chunk === 'string' ? b4 && typeof b4.from === 'function' ? b4.from(chunk) : new TextEncoder().encode(chunk) : chunk ctx.bareOsBinWrite(u8 instanceof Uint8Array ? u8 : new Uint8Array(u8)) return true } const w = globalThis.process?.stdout?.write if (typeof w === 'function') { w.call(globalThis.process.stdout, chunk) return true } return false } /** * Plain-stream masked line input (same pattern as agent --config / bareAgentPromptSetupLine). * Used by /bin/login so the Fish REPL is suspended and stdin/stdout are the TTY streams. */ /** * @param {Record | undefined} ctx * @param {import('stream').Writable | undefined} out * @param {string} s */ function bareLoginInteractiveWrite(ctx, out, s) { const text = ctx && ctx.bareOsPtyStdoutCrlf ? String(s).replace(/\r?\n/g, '\r\n') : String(s) if (out && typeof out.write === 'function') { try { out.write(text) } catch { /* ignore */ } } } /** * @param {import('stream').Readable} stdin * @returns {Promise} */ function bareLoginReadStreamLineOnce(stdin) { return new Promise((resolve) => { let acc = '' /** @param {string | Uint8Array | Buffer} chunk */ function onData(chunk) { let s = '' if (typeof chunk === 'string') s = chunk else if (chunk instanceof Uint8Array) s = new TextDecoder().decode(chunk) else if ( typeof Buffer !== 'undefined' && typeof Buffer.isBuffer === 'function' && Buffer.isBuffer(chunk) ) s = chunk.toString('utf8') else s = String(chunk) acc += s const n = acc.indexOf('\n') if (n >= 0) { cleanup() resolve(acc.slice(0, n).replace(/\r$/, '')) } } function onEnd() { cleanup() resolve(acc.replace(/\r$/, '')) } function cleanup() { stdin.removeListener('data', onData) stdin.removeListener('end', onEnd) stdin.removeListener('error', onEnd) } stdin.on('data', onData) stdin.once('end', onEnd) stdin.once('error', onEnd) if (typeof stdin.resume === 'function') stdin.resume() }) } /** * @param {Record} ctx * @param {import('stream').Readable} stdin * @param {import('stream').Writable | undefined} stdout * @returns {Promise} */ function bareLoginReadMaskedLineOnce(ctx, stdin, stdout) { const ttyIn = /** @type {{ setRawMode?: (v: boolean) => void, isTTY?: boolean }} */ ( stdin ) if (!ttyIn || typeof ttyIn.setRawMode !== 'function' || !ttyIn.isTTY) { return bareLoginReadStreamLineOnce(stdin) } return new Promise((resolve, reject) => { /** @type {string[]} */ const chars = [] let done = false /** @param {string | Uint8Array | Buffer} chunk */ function onData(chunk) { if (done) return let s = '' if (typeof chunk === 'string') s = chunk else if (chunk instanceof Uint8Array) s = new TextDecoder().decode(chunk) else if ( typeof Buffer !== 'undefined' && typeof Buffer.isBuffer === 'function' && Buffer.isBuffer(chunk) ) { s = chunk.toString('utf8') } else s = String(chunk) for (const ch of s) { const code = ch.charCodeAt(0) if (ch === '\r' || ch === '\n') { finish(true) return } if (ch === '\u0003') { finish(false, new Error('interrupted')) return } if (ch === '\u007f' || ch === '\b') { if (chars.length) { chars.pop() bareLoginInteractiveWrite(ctx, stdout, '\b \b') } continue } if (code >= 32 && code !== 127) { chars.push(ch) bareLoginInteractiveWrite(ctx, stdout, '*') } } } /** @param {boolean} ok @param {Error} [err] */ function finish(ok, err) { if (done) return done = true cleanup() if (ok) resolve(chars.join('')) else reject(err || new Error('masked_input_failed')) } function cleanup() { stdin.removeListener('data', onData) stdin.removeListener('end', onEnd) stdin.removeListener('error', onErr) try { ttyIn.setRawMode(false) } catch { /* ignore */ } bareLoginInteractiveWrite(ctx, stdout, '\n') } function onEnd() { finish(true) } /** @param {unknown} e */ function onErr(e) { const msg = e && typeof e === 'object' && 'message' in e ? String(e.message) : String(e) finish(false, new Error(msg)) } try { ttyIn.setRawMode(true) } catch { return resolve('') } stdin.on('data', onData) stdin.once('end', onEnd) stdin.once('error', onErr) if (typeof stdin.resume === 'function') stdin.resume() }) } /** * @param {Record} ctx * @param {string} prompt * @returns {Promise} */ async function bareLoginPromptMaskedLine(ctx, prompt) { const stdin = /** @type {import('stream').Readable | undefined} */ ( ctx.replStdin || ctx.stdin ) const stdout = /** @type {import('stream').Writable | undefined} */ ( ctx.replStdout || ctx.stdout ) if (!stdin || typeof stdin.on !== 'function') { throw new Error('login: stdin stream unavailable (need an interactive TTY)') } bareLoginInteractiveWrite(ctx, stdout, '\x1b[?25h\x1b[0m' + prompt) return bareLoginReadMaskedLineOnce(ctx, stdin, stdout) } async function run(ctx, argv) { const argv0 = argv[0] || 'login' const args = argv.slice(1) if (args.includes('-h') || args.includes('--help')) { ctx.console.log( 'usage: ' + argv0 + ' [--new]\n\n' + 'Unlock or register your identity. Run this command with no passphrase on the line;\n' + 'then type your passphrase at the prompt (hidden). A passphrase may be several words.\n' + 'Passphrases must not be given as command-line arguments (they would appear in shell history).\n\n' + ' --new register a new identity instead of unlocking an existing one.' ) ctx.exitCode = 0 return } let createNew = false if (args[0] === '--new') { createNew = true args.shift() } if (args.length > 0) { ctx.console.error( 'login: passphrase must not be given on the command line (it would appear in shell history).' ) ctx.console.error('Run: login' + (createNew ? ' --new' : '')) ctx.console.error( 'Then type your passphrase at the prompt. It may be multiple words; typing is hidden.' ) ctx.exitCode = 1 return } const reg = ctx.applyRegister const unlock = ctx.applyUnlock if (typeof reg !== 'function' || typeof unlock !== 'function') { ctx.console.error('login: not supported in this environment') ctx.exitCode = 1 return } const stdin = ctx.replStdin || ctx.stdin const stdout = ctx.replStdout || ctx.stdout const tty = /** @type {{ isTTY?: boolean }} */ (stdin) if ( !stdin || typeof stdin.on !== 'function' || !tty.isTTY || !stdout || typeof stdout.write !== 'function' ) { ctx.console.error( 'login: needs an interactive TTY (same as agent --config). Run from the shell prompt on a terminal.' ) ctx.exitCode = 1 return } let suspended = false try { if (typeof ctx.suspendReplForSubprocess === 'function') { ctx.suspendReplForSubprocess() suspended = true } ctx.console.log( createNew ? 'Creating a new identity. Choose a passphrase (multiple words allowed); typing is hidden.' : 'Unlocking. Enter your passphrase (multiple words allowed); typing is hidden.' ) let passphrase try { passphrase = await bareLoginPromptMaskedLine( ctx, createNew ? 'New passphrase: ' : 'Passphrase: ' ) } catch (e) { ctx.console.error((e && e.message) || String(e)) ctx.exitCode = 1 return } if (!String(passphrase || '').trim()) { ctx.console.error('login: empty passphrase') ctx.exitCode = 1 return } try { if (createNew) await reg.call(ctx, String(passphrase)) else await unlock.call(ctx, String(passphrase)) ctx.exitCode = 0 } catch (err) { ctx.console.error(err?.message ?? String(err)) ctx.exitCode = 1 } } finally { if (suspended && typeof ctx.resumeReplAfterSubprocess === 'function') { ctx.resumeReplAfterSubprocess() } } }