gitoriaLog in with ident

tracker

All repositories: gitoria

ReadmeCodePull requestsReleasesTicketsSettings
Commit3251488a3251488atracker#7: /my/shows (followed shows, newest follow first, poster, title, last watched SxxEyy); gate can take screenshots (TRACKER_GATE_SHOTS)mre3251488a/STATUS.md

28.6 KB

  1. # STATUS — tracker.worldapi.org
  2. ## 2026-09-30 — ticket #7: /my/shows
  3. Built `/my/shows` (`components/myshows.hl`, route in `project.hl`, styles in `styles.hl`): every
  4. followed show, newest follow (`follows.at`, epoch ms) first — small poster (2.5rem, `/posters/…` +
  5. placeholder like the show page), title → `/shows/<slug>`, last watched episode `SxxEyy`.
  6. **Decisions**: "last episode" = highest (season, episode) among the user's EPISODE watches of that
  7. show (ticket); a season watch alone doesn't count (the season check watches every episode anyway).
  8. No watch → no episode element. A show without a poster name → `/posters/none` (the route's own
  9. placeholder), so every row has a poster. Read-only page, no face (like `/schedule`).
  10. **Reuse**: new `follows.hl` `followsOfUser` (whole records; `followedShowIds` now builds on it) and
  11. `shows.hl` `episodeById` (one line); `showById`, `posterName`, `watchesOfUser` unchanged.
  12. **Performance** (against a COPY of `storage/mpackdb/` in `.scratch/perf-store`, removed after; live
  13. files md5-verified unchanged): the page touches only the user's follows and episode watches
  14. (one fetch per watch), never all episodes of a followed show — az5b2's 128 follows → 128 rows (123
  15. with an episode, e.g. `S36E11`, `S30E91`) built in **160–255 ms**. For comparison **`/unwatched`
  16. takes ~15 s** on the same copy (805 rows): it fetches every episode of every followed show and
  17. checks each against the user's 11,692 watches with a linear `isWatched` — not in this ticket's
  18. scope, flagged below.
  19. **Gate** (`tests/browser.mjs`, 38 → 45 checks; `tests/seed-show.hl` adds a 2nd show "Unwatched Gate
  20. Show", no seasons/poster name, followed AFTER the first but stored after it; the first follow is now
  21. dated a day back): signed out → sign-in message; signed in → newest follow first, title hrefs,
  22. posters loaded (`naturalWidth > 0`), 40px wide, `S01E02` after /unwatched's click, later `S02E01`
  23. (watched BEFORE season 1's bulk watch → proves highest, not most recent), none for the other show.
  24. ```
  25. TRACKER_GATE_PORT=8720 TRACKER_GATE_IDENT_PORT=8721 TRACKER_GATE_CHROME=8722-8726 node tests/browser.mjs
  26. 45 passed, 0 failed
  27. ```
  28. **Open**: `/unwatched` ~15 s on real data (above) — a watched-id map instead of `isWatched` per
  29. episode would fix it (own ticket). No navigation links to `/my/shows` yet (homepage stays empty).
  30. ## 2026-09-27 — ticket #6: /schedule
  31. Built `/schedule` (`components/schedule.hl`): every episode of a show the signed-in user follows
  32. that is NOT yet released (`e.release > today`), soonest first. Creator: "/schedule has a similar
  33. list without check icons for the upcoming episodes of shows followed" — same row shape as
  34. `/unwatched` (`components/unwatched.hl`) minus the check icon.
  35. **Reuse, not copy**: imports the exact same `followedShowIds` (`follows.hl`), `showById` /
  36. `seasonsOfShow` / `episodesOfSeason` (`shows.hl`) that `/unwatched` already uses — nothing new
  37. added to either file. `watches.hl` is not imported at all: a row here is never watched/unwatched,
  38. there is no check icon and no click, so the page needed no per-user watch state and no `on server`
  39. face — the whole component is a single read-only server-side render (`rows` computed once from
  40. `session`, same as every other reactive member here).
  41. **Order**: soonest first, ascending by `release` (a plain `'YYYY-MM-DD'` string, ordering
  42. operators confirmed working against this app's own vendored `bin/hybriel`, same as `/unwatched`'s
  43. STATUS entry) — the ticket named this the architect's own reading ("the creator named the order
  44. only for /unwatched"), so `insertByReleaseAsc` mirrors `/unwatched`'s `insertByReleaseDesc` with
  45. the comparison flipped.
  46. **`decided`**: "upcoming" = `release` strictly after today (not `>=`) — the natural complement of
  47. `/unwatched`'s own `release <= today`, so every released-or-today episode is unambiguously on one
  48. list, never both, never neither.
  49. **Gate** (`tests/browser.mjs`, 35 → 38 checks): reused the same fixture (`tests/seed-show.hl`,
  50. unchanged) — episode 3 already carried a far-future release (`2099-01-01`) for `/unwatched`'s own
  51. "excludes the future one" check; `/schedule` now proves the mirror image with the same fixture:
  52. signed out, no rows, the sign-in message; signed in, only that one future episode shows (the two
  53. already-released ones excluded), no `button.checkicon` anywhere on the page, unaffected by any of
  54. the watch toggles the other checks perform on the same fixture (run in any order — `/schedule`
  55. never reads watch state).
  56. ```
  57. node tests/browser.mjs
  58. 38 passed, 0 failed
  59. ps -eo pid,args | grep [h]l-browser-tier
  60. (nothing)
  61. ```
  62. Updated `README.md` ("What it does (step 6)", Test, Files) and this file.
  63. **Open**: nothing shown on the homepage still points to `/schedule` (same as `/unwatched` before
  64. it — the homepage stays empty per ticket #1's decision).
  65. ## 2026-09-27 — ticket #5: /unwatched
  66. Built `/unwatched`: every episode of a show the signed-in user follows that is already released
  67. (`release` ≤ today, a plain `'YYYY-MM-DD'` string — migrated as-is by `tools/migrate.hl`, never
  68. run through `dateOf`) and not yet watched, newest release first (creator: "/unwatched lists all
  69. unwatched episodes of shows followed in release date desc order").
  70. **Reuse, not copy** (the ticket's own instruction, re "the same check icon and watch logic as the
  71. show page"): `watchClassOf` (watched → `'checkicon solid'`/`'checkicon regular'`) was a private
  72. `static` in `components/show.hl`; moved it to `watches.hl` so both pages import the SAME
  73. definition instead of each declaring their own — `show.hl` now imports it too, nothing duplicated.
  74. `isWatched`/`setWatched` (already in `watches.hl`) needed no change. New `follows.hl`
  75. (`followedShowIds`) and `shows.hl` `showById` (one line) round out the read-only data access this
  76. page and `/schedule` (ticket #6) both need.
  77. **String comparison** (`e.release <= today`, `row.release >= x.release` for the desc sort):
  78. hybriel#2 ("no ordering operators on strings") is filed as still-open in this ticket's brief, but
  79. its own history shows it was fixed and merged to master 2026-09-25 — confirmed directly against
  80. THIS app's own vendored `bin/hybriel` (`'2020-09-03' <= '2026-09-27'` → `true`), so no numeric
  81. date workaround was needed.
  82. **A View text node cannot hold an inline expression** (`"Ep " + row.episodeNumber + " · " +
  83. row.title` inside a tag body) — same rule as View attributes (components/show.hl's own comment:
  84. "a View attribute must be a literal, a member or a field path"), just not documented for text
  85. nodes anywhere yet; it silently rendered `<!-- binary_expression not rendered yet -->` instead of
  86. erroring. Fixed by resolving the label into a plain field (`row.episodeLabel`) once, server-side,
  87. in `unwatchedRowsOf` — the same pattern `show.hl`'s `buildRows` already uses for every other
  88. ternary/concatenation. Not filed as a new Hybriel gap since it's the exact same restriction
  89. already known and worked around elsewhere in this app, just not yet hit for interpolated text.
  90. **Empty state**: signed out (no user, so no follows to show) and signed in with nothing unwatched
  91. both render a message; used `.muted` (colorTextMuted), not `.message` (colorDanger) — the existing
  92. `.message` class is for real errors (the login-failed banner), and an empty list isn't one (a
  93. `decided`, small).
  94. **Gate** (`tests/browser.mjs`, 29 → 35 checks): `tests/seed-show.hl` now takes an optional
  95. `TRACKER_SEED_IDENTITY` and, when given, seeds a fixed user + a follow of the fixture show for it
  96. — the only way to give `/unwatched` a known followed show before the browser ever signs in, since
  97. the real login's `ensureUser` matches an EXISTING `users.db` row by `identity` and reuses its id
  98. rather than minting a new one. The gate learns alice's per-app identity with one throwaway
  99. `ident.exchange` call (consuming one code) before writing the seed. Episode 1/2 of the fixture now
  100. carry a past `release` (`2020-01-01`/`2020-06-15`), episode 3 a far-future one (`2099-01-01`) —
  101. proving both the release-date filter and the desc order. The new checks run signed out (no rows,
  102. the sign-in message), then signed in RIGHT AFTER LOGIN, BEFORE the existing show-page checks that
  103. toggle these same fixture episodes watched (order matters — otherwise `/unwatched` would already
  104. be empty by the time it's tested): both unwatched episodes list newest-first, excluding the
  105. future one; a click on the newest (`Second`, ep 2) removes it from the list; a reload proves the
  106. watch is server-side, leaving only `Pilot` (ep 1).
  107. ```
  108. node tests/browser.mjs
  109. 35 passed, 0 failed
  110. ps -eo pid,args | grep [h]l-browser-tier
  111. (nothing)
  112. ```
  113. Updated `README.md` ("What it does (step 5)", Test, Files) and this file.
  114. **Open**: nothing shown on the homepage still points to `/unwatched` — no navigation exists yet
  115. (the homepage stays empty per ticket #1's decision; a later step, from the creator, presumably
  116. adds it). `/schedule` (ticket #6) is next and reuses `follows.hl`/`shows.hl`/`watches.hl` the same
  117. way.
  118. ## 2026-09-27 — ticket #4: the show page, watch checks (took over a previous half-done session)
  119. Continued from an earlier session that had built the whole page — header, seasons/episodes,
  120. the click-handling redesign to a flat `rows` list rebuilt server-side (`components/show.hl`'s
  121. own header comment explains why: a nested `for` over seasons > episodes risks hybriel#86) — but
  122. left with the gate red: clicking a check never turned it solid, no console error, and the
  123. session ran out of budget before finding why.
  124. **The actual bug**: the show page's own pure helpers (`buildRows`, `genreRowsOf`, `castRowsOf`,
  125. `watchClassOf`, `initialCollapsed`) were plain instance members (`buildRows = (show, …) => {…}`,
  126. no `static`). That shape works fine as a member's own top-level initializer (`rows = found ?
  127. buildRows(showRow, watchRows, collapsed) : []` — this is how the page renders correctly on first
  128. load) but throws when the SAME function is called from inside an `on server` face
  129. (`showToggleEpisode` etc.): the server log showed `'buildRows' is not callable — it holds null`.
  130. Found by running `.scratch/debug-click.mjs` (left by the previous session) with the server's
  131. stdout/stderr captured — the browser console itself stayed silent (the face's error never
  132. reaches the client at all, a separate Hybriel gap, hybriel#92 already covers that half).
  133. Confirmed the fix by grepping other worldapi apps for the same shape:
  134. `calendar.worldapi.org/components/calendar.hl` has `static soonOf = (u) => { … upcoming(u, …) }`
  135. (an mpackdb-backed helper), called from its `on server calLoad`/`calSettingsLoad` faces, and
  136. calendar's own gate is green — so `static` is the proven-safe shape for a component's own helper
  137. that both (a) touches an mpackdb-backed import and (b) needs calling from more than one place
  138. (its own initializer AND a later face). Declared all five helpers in `show.hl` `static`; reran
  139. the gate: 29/29 green, including the season-bulk-toggle and the reload-proves-server-side checks.
  140. Filed **hybriel#115 was already open** (from the previous session, about the CLIENT bundle
  141. omitting a case for such a helper) but this session's finding is the SAME root cause reaching
  142. further than that ticket says: the plain HL interpreter on the SERVER also treats such a helper
  143. as `null` outside its own initializer, not just the JS-compiled client bundle. Left as one
  144. `issues` entry pointing at hybriel#115 rather than opening a near-duplicate ticket — the
  145. repro/observed there already generalizes (a per-instance member function wrapping an
  146. mpackdb-backed import is unreliable wherever it is called from, not just the browser).
  147. Ran `node tests/browser.mjs`: 29 passed, 0 failed (was 20 passed / 1 failed — the click timeout
  148. — before the `static` fix).
  149. **Rehearsed `tools/relink-episode-seasons.hl` against a full COPY** of the real
  150. `storage/mpackdb/` (`.scratch/relink-rehearsal/`, since removed) — the tool's own header claimed
  151. this rehearsal already existed here; it didn't (a leftover claim from the previous session), so
  152. this session actually ran it:
  153. ```
  154. relink: episodes 231584, null season before 36194, linked 36194, still null (no matching season) 0
  155. relink: episodes.db replaced with the relinked file — re-run to confirm idempotency (0 linked the second time)
  156. ```
  157. Ran a second time on the same copy straight after — idempotency confirmed:
  158. ```
  159. relink: episodes 231584, null season before 0, linked 0, still null (no matching season) 0
  160. ```
  161. All 36,194 pre-existing null-season episodes (ticket #2's count) now link to a real season by
  162. `(show, seasonNumber)`; none left over. Not run against the LIVE `storage/mpackdb/` — that needs
  163. the tracker container stopped first (hl:mpackdb does not coordinate two processes on one storage
  164. directory, hybriel#21), the architect's job per the ticket ("the architect runs it live").
  165. Updated README.md ("What it does (step 4)", Test, Files) and this file.
  166. ## 2026-09-27 — ticket #2: old data migrated (took over a previous session's rewritten tool)
  167. Continued from an earlier session that had rewritten `tools/migrate.hl` to avoid a real data-loss
  168. bug (see below) but never run it even once, and had left the real `storage/mpackdb/` holding data
  169. from the OLDER, buggy two-pass version of the tool (put a bare record, then `update()` it once the
  170. other side of a circular reference existed). Took over: moved that buggy data aside
  171. (`.scratch/pre-migrate-buggy-backup`, since removed), kept `storage/mpackdb/users.db` (step 1's
  172. login table, untouched by the migration), and ran the already-fixed tool for the first time.
  173. **The fix already on disk (kept as is):** `Show.seasons`/`Season.show` and `Show.cast`/
  174. `Person.shows` are two-way references, so the id on one side must exist before the record on the
  175. other side can be built. The old approach — `put()` a bare record, come back with `update()` once
  176. the far side's id exists — loses rows: reopening a table in a fresh process after an `update()` had
  177. touched it read back FEWER rows than were ever `put()` (seen directly: `persons.db`'s `count()`
  178. dropped 15157 → 15152 after one round of `update()` — a real `hl:mpackdb` bug, reported to Hybriel,
  179. not something an app is allowed to patch around). The fix assigns every new id itself (8 random
  180. bytes, `hl:crypto`) in one pass over each export file BEFORE building any record, so by the time a
  181. record is actually built every reference is already a known id — one `put()` per row, `update()`
  182. never called.
  183. **Run** (`tools/migrate.hl`, `TRACKER_OLD_DATA=.../old-tracker/mongo-export`,
  184. `TRACKER_STORAGE=$PWD/storage/mpackdb`):
  185. ```
  186. migrate: genres 27 new, 0 already there (old 27 -> new 27)
  187. migrate: persons 15157 new, 0 already there (old 15157 -> new 15157), show refs skipped 0
  188. migrate: shows 9453 new, 0 already there (old 9453 -> new 9453), cast refs skipped 0, genre refs skipped 0, season refs skipped 0
  189. migrate: seasons 6430 new, 0 already there (old 6430 -> new 6430), show refs skipped 0, episode refs skipped 0
  190. migrate: episodes 231584 new, 0 already there (old 231584 -> new 231584), show refs skipped 0, season refs left null (pre-existing) 1
  191. migrate: follows 128 new, 0 already there (old 128 -> new 128), show refs skipped 0
  192. migrate: watches 11692 new, 0 already there (old 11692 -> new 11692), target refs left null (pre-existing) 3
  193. migrate: 0 failed
  194. ```
  195. Every count equals the old export's own document count (`old-tracker/README-RECONSTRUCTED.md`:
  196. Show 9453, Season 6430, Episode 231584, Person 15157, Genre 27, Follow 128, Watch 11692). Ran a
  197. second time straight after (idempotency: the tool's `oldId` index finds each row again) — every
  198. table printed `0 new`, all rows `already there`, counts unchanged, 0 failed: the id-loss bug does
  199. not resurface across a real close-and-reopen.
  200. **Proof beyond the tool's own counters** (`tools/verify.hl`, new): the ticket asks for a check that
  201. does not just trust `migrate.hl`'s own "skipped" tallies. It runs against a plain filesystem COPY
  202. of `storage/mpackdb/` (hl:mpackdb rewrites a file's data on open, so the live store is never opened
  203. a second time) and independently re-derives, from the persisted records alone: every table's
  204. `count()` against the export's own document count, and — by building id sets for every table and
  205. walking every reference field (`Show.genres/cast/seasons`, `Season.show/episodes`,
  206. `Episode.show/season`, `Person.shows`, `Follow.show/user`, `Watch.target/user`) — that every
  207. non-null reference resolves to a real id. It also follows one show end to end (`Raised by Wolves`,
  208. 2 seasons, 18 episodes, 1 follow, 2 season-level watches — all cross-checked back to the show).
  209. ```
  210. $ cp -r storage/mpackdb .scratch/verify-copy && TRACKER_VERIFY_COPY=$PWD/.scratch/verify-copy ./bin/hybriel tools/verify.hl
  211. count ok genres: 27 (expected 27)
  212. count ok persons: 15157 (expected 15157)
  213. count ok shows: 9453 (expected 9453)
  214. count ok seasons: 6430 (expected 6430)
  215. count ok episodes: 231584 (expected 231584)
  216. count ok follows: 128 (expected 128)
  217. count ok watches: 11692 (expected 11692)
  218. users: 1 (expected 1, the creator)
  219. dangling references: 0 (episodes with a pre-existing null season: 36194, watches with a pre-existing null target: 3 — not dangling, the export already had no target)
  220. END-TO-END show 105ad9c91b14d663 "Raised by Wolves" seasons=2
  221. season 1 (be2965a5ab7165ca) episodes=10 show-back-ref-ok=true
  222. season 2 (0fe4e53157ed0367) episodes=8 show-back-ref-ok=true
  223. total episodes across seasons: 18
  224. follows on this show: 1, season-level watches touching it: 2
  225. VERIFY PASS
  226. ```
  227. (36194 episodes with no season = 36193 that never had one in the old export, plus the 1 the tool's
  228. own count already named as a pre-existing dangling `season` reference in the source data — neither
  229. is a reference this migration broke; `dangling references: 0` covers exactly that.)
  230. The single old user (`User.jsonl`, `[email protected]`, password not taken over) is this app's
  231. user for ident short id `az5b2` (`storage/mpackdb/users.db`, the same table step 1's login uses) —
  232. confirmed in the copy: one record, `identity=az5b2`.
  233. **Two Hybriel bugs found while building this** (both already filed as issues on this ticket by an
  234. earlier session, not re-filed): `hl:fs readFile` silently truncates at 10 MiB (worked around here
  235. with `split`, no shell, no JS, see `tools/migrate.hl`'s header comment) and `hl:mpackdb` loses rows
  236. across `update()` + reopen (the reason this tool never calls `update()`).
  237. **Open**: nothing shown yet — this ticket is data-only, on purpose (the next step, from the
  238. creator, is showing the data in the UI).
  239. ## 2026-09-27 — ticket #3: no border on the header or filled buttons
  240. Design notes from the first test (architect): "the application-header should have no bottom
  241. border" and "the buttons also no border except they are inverted". Two changes in
  242. `styles.hl`:
  243. - `applicationHeader`: dropped `borderBottom`.
  244. - `ident-selector::part(button)` (the signed-out "choose ident" button): added
  245. `border = 'none'` — the element's own CSS gave it a 1px border the same colour as its
  246. background (`--_accent`), invisible but still a real border in the computed style; this is
  247. the app-side restyling hook ident's README documents (`::part(button)`), not a change to
  248. ident's vendored `selector.js`.
  249. Left unchanged, already correct: the native `button` rule (filled, e.g. no other filled
  250. buttons on this page yet) already has `border = '0'`; `button.quiet` ("Log out") and the
  251. selector's dropdown `[part="identity"]` rows keep their border (transparent background —
  252. inverted style); `a.button` ("Log in with ident") has no border rule and browsers give `<a>`
  253. none by default. The selector's signed-in "logged in with ident" status pill
  254. (`::part(status)`) is not one of the buttons the ticket names and isn't a button element
  255. (a `<span>`) — left with its border.
  256. **Gate** (`tests/browser.mjs`, now 16 checks): added computed-style checks — the header's
  257. `borderBottomWidth` is `0px`; `#loginbutton`'s border is `0px`; the selector's
  258. `[part~="button"]` (inside its shadow root) border is `0px`; `#logout`'s border is NOT `0px`
  259. (still inverted-bordered) once signed in.
  260. ```
  261. node tests/browser.mjs
  262. 16 passed, 0 failed
  263. ```
  264. ## 2026-09-27 — ticket #1 reopened: login redone to match calendar exactly (header selector, empty page)
  265. The architect rejected the first build of ticket #1: the sign-in sat centered on the page
  266. (its own "Sign in with ident" card, identity + sign-out shown in a `homeCard`) instead of
  267. the header identity selector calendar/gitoria use, and there was no `<ident-selector>` at
  268. all. Rebuilt the login by copying calendar.worldapi.org's own files (unchanged in shape, per
  269. the architect's instruction "Copy calendar.worldapi.org's login unchanged"):
  270. - **`users.hl`** (new): the ident exchange + a `usersTable` (`storage/mpackdb/users.db`,
  271. `identity` → this app's user id), copied from calendar's `users.hl` with `TRACKER_KEY` /
  272. `TRACKER_SECRET` / `TRACKER_URL` / `TRACKER_STORAGE` in place of calendar's names (kept
  273. the names already in this app's `docker-compose.yml`/README/DECISIONS rather than
  274. switching to calendar's generic `IDENT_API_KEY`/`IDENT_API_SECRET`).
  275. - **`login.js`** (new): calendar's bridge between `<ident-selector>`'s `ident-login` DOM
  276. event and the hidden `#identcode` input, copied verbatim (creator: "login.js is correct,
  277. as thats for externals in general").
  278. - **`components/main.hl`**: now the header carries `userBox` (`<ident-selector>` + "Log in
  279. with ident" / "Log out"), the `trackerLogin`/`trackerLogOut` faces and the
  280. `trackerSignedIn`/`trackerSignedOut` client push — calendar's shell renamed to this app's
  281. event names.
  282. - **`components/home.hl`**: now truly empty (`View { home {} }`) — no sign-in link, no
  283. identity/sign-out duplicated on the page; that is entirely the header's job now.
  284. - **`components/loginfailed.hl`** (new) + **`project.hl`**: the login routes are now
  285. `/login/callback` (function route, the button's return AND the code exchange) and
  286. `/login/failed`, copied from calendar's `project.hl` (`safePath`, `failed()`,
  287. `loginCallback`) in place of the old `/login` + `/callback` + `/logout` routes; the old
  288. `/logout` POST route is gone (logout is a face, like calendar's).
  289. - **`styles.hl`**: added the header selector styles (`userBox`, `identSelector`,
  290. `ident-selector::part(...)`, sticky header) from calendar's `styles.hl`; dropped the
  291. now-unused `homeCard`/`accountBar`/`userName` rules from the rejected centered sign-in.
  292. **Gate rewritten** (`tests/browser.mjs`, 12 checks): replaced the old gate (which drove
  293. ident's full email-code UI through a vendored dev copy of ident at `.scratch/ident-dev`)
  294. with calendar's own pattern — `tests/identkit.mjs` (copied from calendar unchanged) starts a
  295. throwaway ident (a fresh copy of `/media/STORAGE/projects/ident.worldapi.org`'s code, no
  296. `.env`/storage copied, codes to a mail sink, never the live ident), signs in over its REST
  297. API and registers this app, then the gate proves the header in a real headless Chrome:
  298. signed out → `#selector` + `#loginbutton` in the header, **`main` is empty** → sign in
  299. (`/login/callback?ident_code=`, the same exchange the selector would trigger) → `#selector`
  300. shows `class="in"`, `#logout` appears, **`main` still empty** → sign out → signed out again
  301. → a reload stays signed out. No console errors.
  302. ```
  303. node tests/browser.mjs
  304. 12 passed, 0 failed
  305. ```
  306. `./deploy.sh --dry-run --target .scratch/deploy-preview --url http://127.0.0.1:0/`: gate
  307. passed as step [1/4], rsync preview held none of `storage/`, `.sessions/`, `.env`,
  308. `.scratch/`, `server.*`, logs. Removed the stale `.scratch/ident-dev` (the old gate's vendored
  309. ident copy) and `.scratch/browser-gate` (the old gate's storage) — unused by the new gate.
  310. **Still open**: the app is registered in ident's dev copies only (this gate's own throwaway
  311. ident). The LIVE ident registration (`TRACKER_KEY`/`TRACKER_SECRET` in `.env` next to
  312. `docker-compose.yml`) is the architect's first-deploy step (README "Deploy"), not built here.
  313. ## 2026-09-27 — ticket #2: data migration — blocked twice on sandbox access, nothing done
  314. Two workers in a row (`s-20260927T1029-f57b0f`, then this session) could not start: the
  315. migration source the ticket names, `/media/STORAGE/projects/old-tracker/mongo-export/*.jsonl`
  316. + its `README-RECONSTRUCTED.md`, is not reachable from this worker's sandbox. Verified fresh
  317. this session:
  318. ```
  319. $ ls -la /media/STORAGE/projects/
  320. antcolony-docs hybriel ident.worldapi.org tracker.worldapi.org # no old-tracker
  321. $ mount | grep STORAGE
  322. /dev/nvme1n1p6 on /media/STORAGE/projects/tracker.worldapi.org type btrfs (rw,...)
  323. /dev/nvme1n1p6 on /media/STORAGE/projects/hybriel type btrfs (ro,...)
  324. /dev/nvme1n1p6 on /media/STORAGE/projects/ident.worldapi.org type btrfs (ro,...)
  325. /dev/nvme1n1p6 on /media/STORAGE/projects/antcolony-docs type btrfs (ro,...)
  326. # old-tracker is not among the mounted subvolumes at all
  327. ```
  328. So this is not a data problem (the export is "complete" per the ticket) — it's the worker
  329. sandbox for this ticket that never got `old-tracker` mounted (read-only, like `hybriel` /
  330. `ident.worldapi.org` / `antcolony-docs` above). Nothing was built or changed this session:
  331. no `storage/`, no `tools/`, no id-mapping — writing the migration tool blind, guessing the
  332. JSONL shape from the ticket text alone, risks silently wrong data and was avoided on purpose
  333. (see the project's "Build it properly" rule). Filed as an antcolony issue so the next worker's
  334. sandbox includes `old-tracker` before another attempt.
  335. ## 2026-09-27 — ticket #1: the empty shell, ident login
  336. Built the app from scratch: vendored `bin/hybriel` + `plugins/` + `shared/tokens.hl` from
  337. `ident.worldapi.org` (newest local build, hybriel master 837fe120, no local patch — see
  338. README "Vendored Hybriel"). `project.hl` (routes `/login`, `/callback`, `/logout`, `/`),
  339. `components/home.hl` (the empty homepage), `components/main.hl` (shell), `styles.hl`
  340. (accent green `#4ec9b0`, per `antcolony/README.md` "look and style" / `CONCEPT.md`).
  341. `docker-compose.yml` / `Dockerfile` / `deploy.sh` following ident's own house pattern
  342. (port 45008, container `tracker.worldapi.org`).
  343. **Login**: the ident login BUTTON flow (ident.worldapi.org README "How apps use ident"),
  344. server-side exchange (`POST <ident>/api/exchange`), this app's own framework session
  345. (`session.user = { identity }`, cookie `trackersid`). ident hands over only the identity's
  346. public **short id** — no display name yet (ident#11, properties handover, is on hold) — so
  347. "your name" on the homepage is `Signed in as <shortid>`, the same identifier every other
  348. worldapi app would show; see `decided` in the report.
  349. **Lesson (Hybriel)**: a face that mutates `session.user` (e.g. `signOut`) does NOT
  350. automatically re-render the page — a component's reactive members (`signedIn`, `identity`,
  351. …) are computed once at mount from the framework's read-only session snapshot; a client
  352. handler that calls `emit server X()` must ALSO flip the affected members itself afterwards
  353. (ident's own `components/home.hl` `on doSignOut(e)` does exactly this: `emit server
  354. signOut()` then `signedIn = false` …). Missing that made the sign-out button silently do
  355. nothing client-side (the ack came back `ok:true`, the server-side session really was
  356. cleared — proven by a reload — but the DOM never updated) until copied.
  357. **Gate** (`tests/browser.mjs`, 13 checks): a fresh copy of `ident.worldapi.org`'s code (no
  358. `.env`, no `storage/`, no `.sessions/` — verified empty of secrets/data before first use)
  359. runs as this gate's own ident, on its own storage and its own mail sink (no live ident, no
  360. real mail). The gate registers this app in that dev ident once over the `/__hl/emit` API
  361. (the same one-time step a person does by hand in ident's `/apps` page), then drives the
  362. REAL login-button flow in a real headless Chrome: signed out → click "Sign in with ident" →
  363. ident's email form → the mail-sink code → the first-login optional-names form (Skip) → the
  364. one-identity choice (one click) → back on tracker, "Signed in as `<shortid>`" → "Sign out" →
  365. signed out again → a reload stays signed out. No console errors. Ran twice for stability, 0
  366. failures; no leftover Chrome/hybriel processes after either run.
  367. ```
  368. node tests/browser.mjs
  369. 13 passed, 0 failed
  370. ```
  371. `./deploy.sh --dry-run --target .scratch/deploy-preview --url http://127.0.0.1:0/` (a local
  372. directory, per ident's own convention for testing deploy.sh without touching Byrodin): gate
  373. passed, rsync preview held none of `storage/`, `.sessions/`, `.env`, `.scratch/`, `server.*`,
  374. logs — confirmed by the same grep the script refuses on.
  375. **Open**: the app is not registered with the LIVE ident yet — `TRACKER_KEY`/`TRACKER_SECRET`
  376. are unset until the architect's first deploy does that (README "Deploy"); until then
  377. `/login` on the live site answers a plain error page instead of redirecting (`/` itself
  378. still renders). This is normal for a brand-new app, the same as ident's own SMTP `.env`
  379. before its first deploy — not something this ticket's worker can set (no `.env` access,
  380. and it is a LIVE ident registration).

Branches

Latest commits

  • 3251488atracker#7: /my/shows (followed shows, newest follow first, poster, title, last watched SxxEyy); gate can take screenshots (TRACKER_GATE_SHOTS)mre
  • 44b7d9f9tracker#6: /schedule — upcoming episodes of followed shows, soonest firstmre
  • 91c9fc8ctracker#5: /unwatched — unwatched released episodes of followed shows, newest firstmre
  • a97c0295tracker#4: show page /shows/:slug (header, seasons, episodes, watch checks) + tools/relink-episode-seasons.hlmre
  • 05f407c5tracker: no border on any button except inverted ones (Log out, ident status and identities too); header brand weight 100mre
  • 17375427tracker#2: tools/migrate.hl + tools/verify.hl — old MongoDB data into mpackdb with new idsmre
  • 31aac936tracker#3: no border on the header and on filled buttons; inverted buttons keep theirsmre
  • 2ad9d29ctracker#1: login exactly like calendar (identity selector in the header, empty homepage)mre
  • 3691e176tracker#1: empty tracker with the ident login (state of 2026-09-27)mre