Implement the 50-point Holepunch alignment roadmap with a first-pass delivery across coreutils commands, policy examples, audit tooling, and docs. This adds new operator CLIs (appctl/corestorectl/ctxbaredoctor/dhtctl/trustctl), tiered catalog and runtime-compat reports, release-checklist integration, contributor guidance, and kernel/seeder mirrored artifacts for app registry, trust, network services, corestore namespaces, and update manifest workflows.
234 lines
6.4 KiB
Plaintext
234 lines
6.4 KiB
Plaintext
/* BARE_OS_BIN_API 1.0.0 — bump when staged /bin script semantics change (see developer guide). */
|
|
/** Shared helpers for drive-resident /bin scripts (prepended before each command). */
|
|
function bareStdin(ctx) {
|
|
return typeof ctx.shellStdin === 'string' ? ctx.shellStdin : ''
|
|
}
|
|
|
|
/** @param {number} mode @param {'file' | 'directory' | 'symlink'} type */
|
|
function bareFormatModeString(mode, type) {
|
|
const typeChar = type === 'directory' ? 'd' : type === 'symlink' ? 'l' : '-'
|
|
const perm = mode & 0o777
|
|
const r = (bit) => (perm & bit ? 'r' : '-')
|
|
const w = (bit) => (perm & bit ? 'w' : '-')
|
|
const x = (bit) => (perm & bit ? 'x' : '-')
|
|
return (
|
|
typeChar +
|
|
r(0o400) +
|
|
w(0o200) +
|
|
x(0o100) +
|
|
r(0o040) +
|
|
w(0o020) +
|
|
x(0o010) +
|
|
r(0o004) +
|
|
w(0o002) +
|
|
x(0o001)
|
|
)
|
|
}
|
|
|
|
/** @param {number} mtimeMs @param {number} [nowMs] */
|
|
function bareFormatLsMtime(mtimeMs, nowMs) {
|
|
const now = nowMs != null ? nowMs : Date.now()
|
|
const d = new Date(mtimeMs)
|
|
const months = [
|
|
'Jan',
|
|
'Feb',
|
|
'Mar',
|
|
'Apr',
|
|
'May',
|
|
'Jun',
|
|
'Jul',
|
|
'Aug',
|
|
'Sep',
|
|
'Oct',
|
|
'Nov',
|
|
'Dec'
|
|
]
|
|
const mon = months[d.getMonth()]
|
|
const day = String(d.getDate()).padStart(2, ' ')
|
|
const sixMo = 180 * 24 * 3600 * 1000
|
|
if (Math.abs(now - mtimeMs) > sixMo) {
|
|
const yr = String(d.getFullYear()).padStart(4, ' ')
|
|
return mon + ' ' + day + ' ' + yr
|
|
}
|
|
const hh = String(d.getHours()).padStart(2, '0')
|
|
const mm = String(d.getMinutes()).padStart(2, '0')
|
|
return mon + ' ' + day + ' ' + hh + ':' + mm
|
|
}
|
|
|
|
/** @param {number} size */
|
|
function barePosixBlocks(size) {
|
|
return Math.ceil(Number(size) / 512) || 0
|
|
}
|
|
|
|
/**
|
|
* Raw stdout for NUL/binary when **`process.stdout.write`** is missing.
|
|
* If **`ctx.bareOsBinWrite(Uint8Array|string)`** is set (tests / host), use it.
|
|
* @param {Record<string, unknown>} ctx
|
|
* @param {string | Uint8Array} chunk
|
|
* @returns {boolean}
|
|
*/
|
|
function bareOsEmitRaw(ctx, chunk) {
|
|
if (typeof ctx.bareOsBinWrite === 'function') {
|
|
const b4 = ctx.b4a
|
|
const u8 =
|
|
typeof chunk === 'string'
|
|
? b4 && typeof b4.from === 'function'
|
|
? b4.from(chunk)
|
|
: new TextEncoder().encode(chunk)
|
|
: chunk
|
|
ctx.bareOsBinWrite(u8 instanceof Uint8Array ? u8 : new Uint8Array(u8))
|
|
return true
|
|
}
|
|
const w = globalThis.process?.stdout?.write
|
|
if (typeof w === 'function') {
|
|
w.call(globalThis.process.stdout, chunk)
|
|
return true
|
|
}
|
|
return false
|
|
}
|
|
|
|
function bareOsAppctlConfigPath() {
|
|
return '/etc/bare-os/apps.registry.json'
|
|
}
|
|
|
|
async function bareOsAppctlReadRegistry(ctx) {
|
|
const doc = await bareP2pReadJson(ctx, bareOsAppctlConfigPath())
|
|
if (!doc || typeof doc !== 'object') {
|
|
return { schema: 1, apps: [] }
|
|
}
|
|
if (!Array.isArray(doc.apps)) doc.apps = []
|
|
if (!doc.schema) doc.schema = 1
|
|
return doc
|
|
}
|
|
|
|
async function run(ctx, argv) {
|
|
const argv0 = argv[0] || 'appctl'
|
|
const parsed = bareP2pParseCommonFlags(argv.slice(1))
|
|
const args = parsed.rest
|
|
const opt = parsed.opt
|
|
if (opt.help || args.length === 0) {
|
|
ctx.console.log(
|
|
bareP2pHelpText(
|
|
argv0,
|
|
'Pear app registry and launch policy helper.',
|
|
argv0 +
|
|
' list | show NAME | install NAME PEAR_LINK [CHANNEL] | launch NAME [--checkout MODE] | channels',
|
|
[
|
|
'list',
|
|
'install keet pear://<key>/ stable --yes',
|
|
'launch keet --checkout released'
|
|
],
|
|
['peerctl', 'trustctl']
|
|
)
|
|
)
|
|
if (args.length === 0) ctx.exitCode = 1
|
|
return
|
|
}
|
|
const sub = String(args[0] || '').trim()
|
|
const reg = await bareOsAppctlReadRegistry(ctx)
|
|
if (sub === 'list') {
|
|
bareP2pPrint(ctx, reg, opt)
|
|
return
|
|
}
|
|
if (sub === 'channels') {
|
|
const channels = ['staged', 'released', 'pinned-length']
|
|
bareP2pPrint(ctx, { schema: 1, channels }, opt)
|
|
return
|
|
}
|
|
if (sub === 'show') {
|
|
const name = String(args[1] || '').trim()
|
|
const app = reg.apps.find((a) => a && a.name === name) || null
|
|
if (!app) {
|
|
bareP2pError(ctx, argv0, 'app not found in registry', argv0 + ' list', opt)
|
|
return
|
|
}
|
|
bareP2pPrint(ctx, app, opt)
|
|
return
|
|
}
|
|
if (sub === 'install') {
|
|
const name = String(args[1] || '').trim()
|
|
const link = String(args[2] || '').trim()
|
|
const channel = String(args[3] || 'stable').trim()
|
|
if (!name || !link.startsWith('pear://')) {
|
|
bareP2pError(
|
|
ctx,
|
|
argv0,
|
|
'install requires NAME and pear:// link',
|
|
argv0 + ' install NAME pear://<key> [CHANNEL]',
|
|
opt
|
|
)
|
|
return
|
|
}
|
|
if (!opt.yes) {
|
|
bareP2pError(ctx, argv0, 'confirmation required (pass --yes)', argv0 + ' install ... --yes', opt)
|
|
return
|
|
}
|
|
const app = {
|
|
name,
|
|
pearLink: link,
|
|
channel,
|
|
checkout: 'released',
|
|
trustPins: [],
|
|
launchPolicy: 'default',
|
|
updatedAtMs: Date.now()
|
|
}
|
|
reg.apps = reg.apps.filter((a) => !a || a.name !== name)
|
|
reg.apps.push(app)
|
|
if (opt.dryRun) {
|
|
bareP2pPrint(ctx, { ok: true, dryRun: true, app }, opt)
|
|
return
|
|
}
|
|
const ok = await bareP2pWriteJson(ctx, bareOsAppctlConfigPath(), reg)
|
|
if (!ok) {
|
|
bareP2pError(ctx, argv0, 'failed writing apps registry', 'check VFS write access', opt)
|
|
return
|
|
}
|
|
bareP2pPrint(ctx, { ok: true, installed: app }, opt)
|
|
return
|
|
}
|
|
if (sub === 'launch') {
|
|
const name = String(args[1] || '').trim()
|
|
const app = reg.apps.find((a) => a && a.name === name) || null
|
|
if (!app) {
|
|
bareP2pError(ctx, argv0, 'app not found in registry', argv0 + ' list', opt)
|
|
return
|
|
}
|
|
const req = {
|
|
requestId: bareP2pId('app'),
|
|
action: 'launch',
|
|
name,
|
|
pearLink: app.pearLink,
|
|
checkout: app.checkout || 'released'
|
|
}
|
|
if (opt.dryRun) {
|
|
bareP2pPrint(ctx, { ok: true, dryRun: true, request: req }, opt)
|
|
return
|
|
}
|
|
const r = bareP2pSend(ctx, 'peerctl', 'appctl.launch', req)
|
|
if (r && r.ok === false) {
|
|
bareP2pError(ctx, argv0, String(r.reason || 'send failed'), 'peerctl health', opt)
|
|
return
|
|
}
|
|
bareP2pPrint(
|
|
ctx,
|
|
{ ok: true, launchRequested: true, registryPath: bareOsAppctlConfigPath(), request: req },
|
|
opt
|
|
)
|
|
return
|
|
}
|
|
const sug = bareP2pSuggestSubcommand(sub, [
|
|
'list',
|
|
'show',
|
|
'install',
|
|
'launch',
|
|
'channels'
|
|
])
|
|
bareP2pError(
|
|
ctx,
|
|
argv0,
|
|
'unsupported subcommand' + (sug ? ' (did you mean ' + sug + '?)' : ''),
|
|
argv0 + ' --help',
|
|
opt
|
|
)
|
|
}
|