gitoriaLog in with ident

tracker

All repositories: gitoria

ReadmeCodePull requestsReleasesTicketsSettings
Commitd8b12d67d8b12d67tracker#27 (mission 060): short ids for movies, series and persons — old 702 kept (data/old-short-ids.json), new random [a-z0-9]{5} unique across both, claimed at creation, background backfill (resumes), shown under poster/photo, /<shortId> → 301; gate 259, tests/realdata-060*, README + STATUSmred8b12d67/plugins/web/WebFramework.hl

163.1 KB

  1. // The framework's server half — the SERVER REALM's entrypoint, and the EDGE
  2. // MODULE for the carriers the manifest declares.
  3. // Its jobs: answer a URL with the HTML of a constructed component (SSR), ship
  4. // the browser the client, the View tree and the state to continue from, carry
  5. // the boundary in both directions (a websocket on the same port, a POST for a
  6. // peer that has none), and run the server faces an inbound emit names.
  7. import { NativeWebSocketServer, Response, randomToken } from 'hl:http1'
  8. import HlwView from './view.hl'
  9. import HlwRouter from './router.hl'
  10. import HlwSessions from './sessions.hl'
  11. import HlwSession from './session.hl'
  12. // the Style walk — named Css here because `Style` is a well-known MEMBER name
  13. import HlwCss from './css.hl'
  14. import HlwCompile from './compile.hl'
  15. import { readFile, exists, watch } from 'hl:fs'
  16. import { file, env, args } from 'hl:proc'
  17. import { now } from 'hl:time'
  18. import { sha256 } from 'hl:crypto'
  19. import { newline, tab } from './view.hl'
  20. Hybrid routes = [] // bound by `new WebFrameworkServer(routes = …)`
  21. // THE PROJECT'S STYLES FILE, declared by the app as a property of the framework:
  22. // `new WebFrameworkServer(…, styles = './styles.hl')`. A file of statics and one
  23. // `Style { }` root member (COMPONENTS §4) — the design tokens and the global
  24. // rules, under every component's own Style in the one stylesheet. null: none.
  25. styles = null // the app's styles file: the class it imported, or a path
  26. // WHO AN OUTWARD EVENT IS FOR (creator, 2026-09-12): per event, a function the app
  27. // declares — `audience = { postCreated = (p, session) => … }` — called for every
  28. // connection that has a listener for the event mounted, with the event's
  29. // arguments and that connection's session; a true answer sends the frame. An
  30. // event with no entry reaches the emitting connection only. Only the app knows
  31. // who is entitled; the face stays pure; the framework applies the answer.
  32. Hybrid audience = {}
  33. // THE SESSION STORE (the archive's manifest members, mission 252/255): nothing said →
  34. // `<project>/.sessions`; a path → that path; `false` → memory only. The three clocks
  35. // are seconds; null takes the layer's defaults (14 days valid, 15 min resident, sweep
  36. // every 5 min).
  37. // THE DEV WATCHER (the archive's `watch`): every save under the project arrives as an
  38. // event; a save that changes the analysis re-reads the graph, drops every cache and tells
  39. // every open tab to reload. Off by default — a deploy never re-analyses itself.
  40. Boolean minify = false // production: one-line HTML, compact JavaScript modules
  41. Boolean watchMode = true
  42. lastChange = 0 // epoch ms of the last save acted on (the debounce)
  43. String | Boolean sessionDir = null
  44. Number sessionMaxAge = null
  45. Number sessionIdle = null
  46. Number sweepInterval = null
  47. // THE SESSION COOKIE'S NAME (ticket #10). Cookies ignore the port, so two apps on one
  48. // host that both answered `hlsid` overwrote each other's sessions; an app names its own.
  49. // null: `hlsid`.
  50. String sessionCookie = null
  51. // THE COOKIE'S `Secure` FLAG (ticket #27): true when the app is reached over https —
  52. // behind a TLS proxy the server itself speaks plain http and cannot tell, so the app
  53. // says so. The browser then never sends the session over plain http. false: not set.
  54. Boolean sessionSecure = false
  55. // THE COOKIE'S `Domain` (ticket #44): 'example.org' shares one session with every
  56. // <sub>.example.org, which a host-only cookie cannot. null: host-only, no attribute.
  57. String sessionDomain = null
  58. \* THE PORT: the app's own `--port=N` argument (hybriel hands every argument
  59. after the entry to the program, creator ruling 2026-09-27), else the
  60. constructor's, else HL_PORT (hybriel resolves PORT and `.env` into it),
  61. else 8080. *\
  62. Number port = null
  63. // THE OFFLINE ALLOW-LIST (COMPONENTS §10, D38): the pages this app promises with the
  64. // network down, named as the route table names them — the imported class or a path
  65. // string. null: no service worker, no cache, no IndexedDB, nothing on the device.
  66. offline = null
  67. // THE DEAD-SOCKET CLOCK (COMPONENTS §10), in seconds. The browser pings every `pingEvery`,
  68. // and a socket whose pong has not come back within `pongWithin` is taken for dead: it is
  69. // closed, and the reconnect and the queue's replay start. A network that drops without a
  70. // close frame is noticed within pingEvery + pongWithin (35 s by default). null: 25 and 10.
  71. Number pingEvery = null
  72. Number pongWithin = null
  73. // AN UPLOAD THAT GOES SILENT — no progress, no answer — is read as dropped after this
  74. // many seconds (COMPONENTS §10, an emit's file). null: 15.
  75. Number uploadStall = null
  76. // THE LARGEST FILE AN EMIT MAY CARRY (ticket #94), in bytes: a bigger one is refused
  77. // at its first request, and the emit ends with that error. 1 GiB.
  78. Number uploadMax = 1073741824
  79. String host = null // the interface to bind; null → HL_HOST/HOST, the manifest's `host`, 0.0.0.0
  80. // THE ONE RUNTIME URL, and the reason it is a member and not a literal in two
  81. // places: a module's `import … from "./hl-runtime.js"` resolves against the
  82. // MODULE's own url, so a server answering modules at two directory depths hands
  83. // the browser two runtime urls — two ES-module instances, two `globalEvents`
  84. // buses, two `__hlRealm` variables, and a crossing emit announced on a bus the
  85. // edge module never taps. Every module this server compiles is handed this one
  86. // specifier (hlJs's third argument).
  87. // THE DIRECTORY THE FRAMEWORK ANSWERS FROM, and the reason it is its own member:
  88. // a package's browser half is served BESIDE THE RUNTIME, and the compiler derives
  89. // that url from the runtime's own (`js_module.zig browserHalfUrl`:
  90. // `<dirname(runtime)>/<pkg>/client.js`). Two sides deriving one url from one
  91. // directory is what keeps the module's `import` and this server's route table
  92. // from drifting apart.
  93. static halfDir = '/__hl'
  94. static runtimeUrl = halfDir + '/hl-runtime.js'
  95. clientUrl = halfUrl('web')
  96. styleUrl = halfDir + '/app.css'
  97. // THE BUILD'S VERSION IS IN EVERY URL THE BROWSER CACHES (after ticket #82): the
  98. // runtime, the package halves, the component modules and the stylesheet were served
  99. // at fixed urls, and a browser or Cloudflare kept the old client against a new
  100. // deploy's pages. Each is now asked for as `<url>?v=<hash>`, the hash of everything
  101. // this build serves, and answered with a year's `immutable` caching — a new build is
  102. // a new url. The modules are COMPILED against this mark and it is replaced with the
  103. // hash when they are served: the hash is of the compiled texts, so it cannot be in
  104. // them while they are compiled, and a binary's baked modules carry the mark too (the
  105. // one form both paths share). The route patterns stay the bare paths.
  106. static buildMark = '?v=__hlbuild__'
  107. static runtimeSpec = runtimeUrl + buildMark
  108. // the web app manifest and the service worker's entry script (COMPONENTS §10)
  109. static manifestUrl = halfDir + '/manifest.webmanifest'
  110. static workerUrl = halfDir + '/sw.js'
  111. // THE FRAMEWORK'S OWN URLS ARE ROUTES (creator: "just use routes"), appended to
  112. // the app's table with `routes[] = …` — the append that takes on a caller's
  113. // pinned argument during construction, where `routes = routes + […]` is dropped.
  114. // Three of them here — the runtime, the REST carrier and the app's one
  115. // stylesheet — and then one per PACKAGE BROWSER HALF the app's graph holds,
  116. // appended below where the graph is known. There is no catch-all that compiles
  117. // any graph file a url names.
  118. routes[] = { pattern = runtimeUrl framework = true function = (route, req) => {
  119. return new Response(runtime, { headers = cached(req, 'text/javascript; charset=utf-8') })
  120. } }
  121. // THE REST CARRIER, the same emit/ack pair for a peer that cannot hold a socket
  122. // (SPEC: `POST /__hl/emit`).
  123. // ITS SESSION IS THE COOKIE'S (creator, 2026-09-14): this is an HTTP request like
  124. // the page request, so it resolves the SAME session the page route would for that
  125. // cookie — a `session.user` a face writes here is what the next document reads.
  126. // Before this the face was handed null and a login over the fallback was lost.
  127. // AN OUTWARD EMIT RAISED UNDER IT RIDES BACK IN THE ANSWER: there is no
  128. // connection to push to, so the frames a face raised for the CALLER are
  129. // collected while it runs and shipped in the ack as `emits`, which the client
  130. // half delivers before it resolves the emit. The audience fan-out to the other
  131. // connections of that user is the same walk it always was.
  132. routes[] = { pattern = '/__hl/emit' framework = true function = (route, req) => {
  133. if (req.method != 'POST') { return notFound(req.path) }
  134. let s = sessions.resolve(req.headers['cookie'] != null ? req.headers['cookie'] : req.headers['Cookie'])
  135. let fresh = s == null
  136. if (fresh) { s = sessions.mint() }
  137. // the session travels in a MEMBER, not an argument: a call argument is a copy,
  138. // an instance inside it included, and a copied session loses the face's write
  139. postSession = s
  140. postHost = hostOf(req.headers['host'])
  141. postHeaders = requestHeaders(req.headers)
  142. let res = new Response(inbound(null, JSON.parse(req.body)), { headers = { 'Content-Type' = 'application/json; charset=utf-8' } })
  143. if (fresh) { res.headers['Set-Cookie'] = sessions.cookieHeader(s.id) }
  144. return res
  145. } }
  146. // A FILE IN AN EMIT TRAVELS OVER HTTP (ticket #94, creator 2026-09-25): the client half
  147. // sends each file of an `emit server …` here, in parts, before the emit itself; the emit's
  148. // frame then names the upload, and `inbound` hands the face the file in its place.
  149. // POST /__hl/upload { name, type, size, q, n } → { id, have } (an upload; see uploadRequest)
  150. // POST /__hl/upload?id=&at= one part, raw → { have } (appended when `at` is what arrived so far)
  151. // GET /__hl/upload?id= → { have } (after a dropped connection)
  152. // An upload belongs to the session of the cookie that started it, and only an emit
  153. // of that session can claim it. A part cut short by a dropped connection keeps what
  154. // arrived; the client asks for `have` and goes on from there.
  155. routes[] = { pattern = '/__hl/upload' framework = true function = (route, req) => {
  156. let s = sessions.resolve(req.headers['cookie'] != null ? req.headers['cookie'] : req.headers['Cookie'])
  157. let fresh = s == null
  158. if (fresh) { s = sessions.mint() }
  159. let res = uploadRequest(&s, req)
  160. if (fresh) { res.headers['Set-Cookie'] = sessions.cookieHeader(s.id) }
  161. return res
  162. } }
  163. // THE APP'S ONE STYLESHEET — the `styles` file's rules and every mounted
  164. // component's `Style { }`, walked in style.hl and cached after the first ask.
  165. routes[] = { pattern = styleUrl framework = true function = (route, req) => {
  166. return new Response(stylesheet(), { headers = cached(req, 'text/css; charset=utf-8') })
  167. } }
  168. // THE COMPONENT MODULES ARE ROUTES TOO — the framework's, not the app's: one per
  169. // file a page route mounts and per wrapper above it (the graph's `parent`
  170. // chain), served at the file's own `.hl` url as the browser's projection. A
  171. // browser executes a module by its MIME type, so `text/javascript` at
  172. // `/components/home.hl` is a module, and the url is the path the author wrote.
  173. // Nothing else is served as a module: a file no page route reaches has no url.
  174. // THE LANGUAGE GRAPH, AND THE REALMS ARE THIS PACKAGE'S (creator, 2026-09-12: "the project.hl
  175. // defines no realms so the framework just fills them itself"). This file is the server
  176. // realm's entrypoint, client.hl beside it the browser's; the app reaches both by
  177. // importing hl:web, and the graph follows that reference into the package.
  178. graph = hlProject(
  179. realms = {
  180. server = { entrypoint = './WebFramework.hl' }
  181. client = { entrypoint = './client.hl' }
  182. }
  183. transports = [
  184. ['websocket' 'client' 'server']
  185. ['websocket' 'server' 'client']
  186. ['rest' 'client' 'server']
  187. ]
  188. )
  189. gen = graph.analysisGen // the syntax reflection's handle: the routes below read Views
  190. // TWO WEB FRAMEWORKS IN ONE APP IS NOT AN APP (creator, 15 Sep: project.hl switched
  191. // to the other framework the repo had then while styles.hl still said 'hl:web/css').
  192. // Both packages load, both `on server page` faces answer the same navigation, and
  193. // the second answers on a blank instance — a NotCallable deep inside the other framework's dispatch, which
  194. // says nothing about the two import rows that caused it. So it is refused HERE,
  195. // before anything is served, naming both rows.
  196. oneFrameworkOnly()
  197. // A VALUE-FORM EMIT HAS ONE ANSWERER (SPEC "An emit ANSWERS", ticket #20): checked here,
  198. // before anything is served, because the wire does not say which form an emit was
  199. oneAnswererEach()
  200. // THE APP'S SETTINGS come from the file that constructed this one when they were not
  201. // passed (the archive's `configure()`): `styles`, `audience`, `sessionDir`, the clocks,
  202. // `watchMode`, `minify`, `port`
  203. cfg = hlConstructor()
  204. if (cfg != null) {
  205. if (styles == null && cfg.styles != null) { styles = cfg.styles }
  206. if (cfg.audience != null && audience.keys().length == 0) { audience = cfg.audience }
  207. if (sessionDir == null && cfg.sessionDir != null) { sessionDir = cfg.sessionDir }
  208. if (sessionMaxAge == null && cfg.sessionMaxAge != null) { sessionMaxAge = cfg.sessionMaxAge }
  209. if (sessionIdle == null && cfg.sessionIdle != null) { sessionIdle = cfg.sessionIdle }
  210. if (sweepInterval == null && cfg.sweepInterval != null) { sweepInterval = cfg.sweepInterval }
  211. if (sessionCookie == null && cfg.sessionCookie != null) { sessionCookie = cfg.sessionCookie }
  212. if (cfg.sessionSecure != null && sessionSecure == false) { sessionSecure = cfg.sessionSecure }
  213. if (sessionDomain == null && cfg.sessionDomain != null) { sessionDomain = cfg.sessionDomain }
  214. if (cfg.watchMode != null) { watchMode = cfg.watchMode }
  215. if (cfg.minify != null) { minify = cfg.minify }
  216. if (cfg.port != null) { port = cfg.port }
  217. if (offline == null && cfg.offline != null) { offline = cfg.offline }
  218. if (pingEvery == null && cfg.pingEvery != null) { pingEvery = cfg.pingEvery }
  219. if (pongWithin == null && cfg.pongWithin != null) { pongWithin = cfg.pongWithin }
  220. if (uploadStall == null && cfg.uploadStall != null) { uploadStall = cfg.uploadStall }
  221. if (cfg.uploadMax != null) { uploadMax = cfg.uploadMax }
  222. }
  223. served = {}
  224. mounted = []
  225. for (r of routes) { if (r.component != null) { mounted[] = keyOf(r.component) } }
  226. for (k of mounted) {
  227. let key = k
  228. // a file the graph does not hold is refused at its route row, below (servedKeys
  229. // → routeComponentKey: this walk reads the evaluated table, which has no lines)
  230. if (graph.files[key] == null) { key = null }
  231. while (key != null) {
  232. serveComponent(key)
  233. let child = key
  234. key = graph.files[key].parent
  235. // A PARENT IS A COMPONENT (COMPONENTS §5): one without a View wraps nothing, and
  236. // every page under it answered a 500 while the boot said nothing (322 row 13)
  237. if (key != null && viewHandle(key) == 0) {
  238. hlError("hl:web: the `parent` clause of " + child + " names " + key + ", which declares no View: a parent is a component whose View places `slot` where the page renders")
  239. }
  240. }
  241. }
  242. // EVERY PACKAGE'S BROWSER HALF IS SERVED, BY ONE RULE. A package whose browser
  243. // side is written in this language ships it as `client.hl` beside its
  244. // plugin.json; the compiler compiles it like any other file and writes the
  245. // importing module `import { … } from "<halfDir>/<pkg>/client.js"`
  246. // (js_module.zig browserHalf / browserHalfUrl). Something has to answer that url,
  247. // and this is it — for EVERY such package the graph holds, because the rule
  248. // belongs to the language and not to one package. hl:web's own half is the first
  249. // case of it and no longer a hard-coded route of its own; hl:dnd is the second.
  250. //
  251. // The graph is the whole guard: a key is here only because the entry's closure
  252. // REACHED that package's half through an import, which is the same reason a
  253. // component has a module url. A package nothing imports is served nothing.
  254. for (gk of graph.files.keys()) {
  255. if (gk.startsWith('hl:') && gk.endsWith('/client.hl')) { serveHalf(gk) }
  256. }
  257. // ---- INSTALLABLE, AND OFFLINE (COMPONENTS §10, tickets #95–#97) ------------------
  258. // Two declarations in the app's manifest, and nothing written by hand in the app:
  259. // · `appIcons` (with `appTitle`, and optionally `appShortName`, `appThemeColor`,
  260. // `appBackgroundColor`, `appManifest`) makes the app INSTALLABLE — the web app
  261. // manifest below, linked from every page's head with its apple-touch-icon;
  262. // · `offline = [ … ]` makes the pages it names work OFFLINE — the service worker
  263. // (worker.hl) that keeps the shell and those pages, and in the client half the
  264. // IndexedDB copy of their state and the queue of the emits they make.
  265. // An app that declares neither is served nothing of either.
  266. offlineKeys = offlinePages()
  267. queueEvents = offlineKeys != null ? queueable() : []
  268. if (installable()) {
  269. routes[] = { pattern = manifestUrl framework = true function = (route, req) => {
  270. return new Response(JSON.stringify(webManifest()), { headers = { 'Content-Type' = 'application/manifest+json; charset=utf-8' 'Cache-Control' = 'no-cache' } })
  271. } }
  272. }
  273. if (offlineKeys != null) {
  274. // the ENTRY SCRIPT is served at the framework's directory, and its scope is the
  275. // whole app: `Service-Worker-Allowed` is what lets a script under /__hl/ say so
  276. routes[] = { pattern = workerUrl framework = true function = (route, req) => {
  277. return new Response(workerEntry(), { headers = { 'Content-Type' = 'text/javascript; charset=utf-8' 'Cache-Control' = 'no-cache' 'Service-Worker-Allowed' = '/' } })
  278. } }
  279. routes[] = { pattern = halfDir + '/web/worker.js' framework = true function = (route, req) => {
  280. return new Response(workerModule(), { headers = cached(req, 'text/javascript; charset=utf-8') })
  281. } }
  282. }
  283. // ---- WHAT THIS APP SERVES, OFF THE ANALYSIS ALONE (mission 315) ----------------
  284. // These four are STATIC, so they answer with no instance and without constructing
  285. // anything: the compiler evaluates `servedModulesOf(graph)` at BUILD time to bake
  286. // each module's text, and this file's own root uses the very same functions at
  287. // boot. One definition, two callers — a second derivation would drift, and a
  288. // compiled binary would then serve text generated against different urls.
  289. //
  290. // The seed is the entry's route table AS WRITTEN, read through `hlSyntax`, not
  291. // the evaluated `routes` member: evaluating it means constructing the app, and
  292. // constructing this class binds a socket. The graph carries the entry's record
  293. // since 2026-09-16, which is what makes that readable at all.
  294. // A ROUTE'S COMPONENT IS A PAGE: a file without a View answered every request with a 500
  295. // ("declares no View", raised without a span) while the boot said nothing (mission 322
  296. // row 13). Refused at the row instead.
  297. static routePage = (gen, entryKey, valueNode, key) => {
  298. if (!hasViewMember(gen, key)) { hlSourceError(gen, entryKey, valueNode, key + " declares no View, so it is no page: a route's component is a file whose View renders") }
  299. return key
  300. }
  301. // The key a route row's `component` names: an imported class, or a path string.
  302. // Anything else is a located refusal AT THE ROW — never silently unserved.
  303. static routeComponentKey = (graph, gen, entryKey, imports, valueNode) => {
  304. let v = hlSyntax(gen, entryKey, valueNode)
  305. if (v == null) { return null }
  306. if (v.tag == 'literal' && v.kind == 'string') {
  307. let t = v.text
  308. let k = t.startsWith('./') ? t.slice(2) : t
  309. // A PATH NO FILE OF THE APP IMPORTS IS NOT IN THE GRAPH: the analysis never read
  310. // it, so nothing can be served for it — refused here, at the row, instead of a
  311. // null deep in the framework once the server is already up (STATUS §2 item 0)
  312. if (graph.files[k] == null) { hlSourceError(gen, entryKey, valueNode, "the app never imports " + t + ", so the analysis never read it and the app would serve no module for it: import it in this file (`import Page from '" + t + "'`) and write `component = Page`") }
  313. return routePage(gen, entryKey, valueNode, k)
  314. }
  315. if (v.tag == 'identifier') {
  316. for (imp of imports) {
  317. if (imp.default == v.name && imp.key != null) { return routePage(gen, entryKey, valueNode, imp.key) }
  318. }
  319. }
  320. hlSourceError(gen, entryKey, valueNode, "a route's component must be an imported component class or a path string — this one the analysis cannot resolve to a file, so the app would serve no module for it")
  321. return null
  322. }
  323. // does the file at `key` declare a View? (a component, as opposed to a plain class)
  324. static hasViewMember = (gen, key) => {
  325. for (m of hlMembers(gen, key)) {
  326. if (m.name == 'View') { return true }
  327. }
  328. return false
  329. }
  330. // `key` and every component it composes, once each — the same walk
  331. // `serveComponent` performs, as a function of the graph.
  332. static collectServed = (graph, gen, out, key) => {
  333. if (key == null || graph.files[key] == null) { return null }
  334. for (k of out) { if (k == key) { return null } }
  335. out[] = key
  336. for (imp of graph.files[key].imports) {
  337. if (imp.default != null && imp.key != null && hasViewMember(gen, imp.key)) {
  338. collectServed(graph, gen, out, imp.key)
  339. }
  340. }
  341. return null
  342. }
  343. // Every key this app answers a module for: each route's component and the wrapper
  344. // chain above it, the components those compose, and every package's browser half.
  345. static servedKeys = (graph) => {
  346. let gen = graph.analysisGen
  347. let entryKey = graph.manifest.file
  348. let out = []
  349. if (entryKey != null && graph.files[entryKey] != null) {
  350. let imports = graph.files[entryKey].imports
  351. let routesNode = 0
  352. for (m of hlMembers(gen, entryKey)) {
  353. if (m.name == 'routes') { routesNode = m.node }
  354. }
  355. if (routesNode != 0) {
  356. let arr = hlSyntax(gen, entryKey, routesNode)
  357. if (arr != null && arr.tag == 'array_expression') {
  358. for (e of arr.elements) {
  359. let row = hlSyntax(gen, entryKey, e)
  360. if (row != null && row.tag == 'object_expression') {
  361. for (pe of row.entries) {
  362. let prop = hlSyntax(gen, entryKey, pe)
  363. if (prop != null && prop.tag == 'object_property' && prop.key == 'component') {
  364. let key = routeComponentKey(graph, gen, entryKey, imports, prop.value)
  365. // the wrapper chain above it, deepest last — a page is
  366. // served inside whatever wraps it
  367. let k = key
  368. while (k != null) {
  369. collectServed(graph, gen, out, k)
  370. k = graph.files[k] != null ? graph.files[k].parent : null
  371. }
  372. }
  373. }
  374. }
  375. }
  376. }
  377. }
  378. }
  379. return out
  380. }
  381. // EVERY PACKAGE'S BROWSER HALF, BY ONE RULE — a package whose browser side is
  382. // written in this language ships it as `client.hl`, the compiler writes
  383. // `<halfDir>/<pkg>/client.js` into every importing module, and something has to
  384. // answer that url. The graph is the whole guard: a key is here only because the
  385. // entry's closure reached that package.
  386. //
  387. // SEPARATE FROM `servedKeys` ON PURPOSE: a half gets a ROUTE but is not a module
  388. // url of this app, so it is not in the map `hlJs` is handed. That asymmetry is
  389. // the existing `serveHalf`/`serveComponent` split, stated rather than inherited
  390. // by accident — measured 2026-09-16, when folding the two together made the
  391. // analysis set one key wider than the route walk's.
  392. static packageHalfKeys = (graph) => {
  393. let out = []
  394. for (gk of graph.files.keys()) {
  395. if (gk.startsWith('hl:') && gk.endsWith('/client.hl')) { out[] = gk }
  396. }
  397. return out
  398. }
  399. // The browser realm's NAME, off the graph — the declared realm whose entrypoint
  400. // is this framework's client half. Static, so the compiler can ask it too.
  401. static clientRealmOf = (graph) => {
  402. for (name of graph.realms.keys()) {
  403. if (graph.realms[name].entrypoint == 'hl:web/client.hl') { return name }
  404. }
  405. return null
  406. }
  407. // EVERY MODULE THIS APP SERVES, COMPILED — what a native binary answers `hlJs`
  408. // with (mission 315). The emitter needs the runtime specifier, the browser
  409. // realm and the served-url map; all three are functions of the analysis, so the
  410. // whole map is, and the COMPILER can build it without an instance.
  411. //
  412. // `minify` is NOT: it is an app setting bound at construction, and the analysis
  413. // cannot evaluate a construction. The value used is recorded beside each
  414. // module so a binary asked for a different one refuses at the call instead of
  415. // answering text generated the other way.
  416. // HOW THE APP ASKED FOR ITS MODULES. A build bakes ONE form of every module and
  417. // a binary answering the other form would be different bytes, so the build must
  418. // read the app's own answer — and the app writes it where it configures the
  419. // framework: `new WebFramework(… minify = true …)` in the manifest. The analysis
  420. // carries a construction's named arguments, so this is a READ of the same syntax
  421. // `servedKeys` reads for the routes, not a second declaration.
  422. //
  423. // A COMPUTED `minify` IS NOT READ HERE, and nothing is guessed from it: a build
  424. // cannot evaluate an expression the running app has not reached yet. Such an app
  425. // bakes the unminified form, exactly as every app did before this, and if it
  426. // then asks for the other form at run time the binary says so at the request —
  427. // "this binary carries the module compiled the other way", located, which is
  428. // the refusal that already exists and the one measured on the creator's social
  429. // app (2026-09-17). Writing the literal in the manifest is what removes it.
  430. static manifestMinify = (graph) => {
  431. let gen = graph.analysisGen
  432. let key = graph.manifest.file
  433. if (key == null || graph.files[key] == null) { return false }
  434. for (m of hlMembers(gen, key)) {
  435. let s = hlSyntax(gen, key, m.node)
  436. if (s != null && s.tag == 'new_expression' && s.named != null) {
  437. for (h of s.named) {
  438. let p = hlSyntax(gen, key, h)
  439. if (p != null && p.tag == 'object_property' && p.key == 'minify') {
  440. let v = hlSyntax(gen, key, p.value)
  441. if (v != null && v.tag == 'literal' && v.kind == 'boolean') { return v.text == 'true' }
  442. }
  443. }
  444. }
  445. }
  446. return false
  447. }
  448. static bakeModules = (graph) => {
  449. let realm = clientRealmOf(graph)
  450. let served = servedModulesOf(graph)
  451. let min = manifestMinify(graph)
  452. let out = {}
  453. for (k of servedKeys(graph)) {
  454. if (graph.files[k] != null) {
  455. let p = graph.files[k].path
  456. out[p] = {
  457. text = hlJs(p, min, runtimeSpec, realm, served)
  458. minify = min
  459. runtime = runtimeSpec
  460. realm = realm
  461. }
  462. }
  463. }
  464. // EVERY PACKAGE HALF TOO. The root walk above serves `<halfDir>/<pkg>/client.js`
  465. // for every `hl:<pkg>/client.hl` the graph holds, and a compiled binary answers
  466. // from BAKED text alone — so a bake that skipped them served the page and then
  467. // 404'd on the module the page imports, leaving the client half of the app
  468. // dead with nothing reported (measured on projects/framework, 2026-09-16).
  469. // Same rule, same list, one loop later: what the server routes, the build bakes.
  470. // AN OFFLINE APP'S SERVICE WORKER MODULE (COMPONENTS §10), under its own path
  471. if (manifestOffline(graph)) {
  472. let wp = workerPathOf(graph)
  473. out[wp] = {
  474. text = hlJs(wp, min, runtimeSpec, realm, served)
  475. minify = min
  476. runtime = runtimeSpec
  477. realm = realm
  478. }
  479. }
  480. for (gk of graph.files.keys()) {
  481. if (gk.startsWith('hl:') && gk.endsWith('/client.hl') && graph.files[gk] != null) {
  482. let hp = graph.files[gk].path
  483. if (out[hp] == null) {
  484. out[hp] = {
  485. text = hlJs(hp, min, runtimeSpec, realm, served)
  486. minify = min
  487. runtime = runtimeSpec
  488. realm = realm
  489. }
  490. }
  491. }
  492. }
  493. return out
  494. }
  495. // file path → the url this server answers its module at. What `hlJs` is handed,
  496. // and what the compiler bakes against.
  497. static servedModulesOf = (graph) => {
  498. let out = {}
  499. for (k of servedKeys(graph)) {
  500. if (graph.files[k] != null) { out[graph.files[k].path] = '/' + k + buildMark }
  501. }
  502. return out
  503. }
  504. // ONE PACKAGE HALF'S ROUTE. It is a FUNCTION and not the body of the loop above
  505. // because the url's route closure must hold THIS key: a `let` in a loop body is
  506. // one binding the closures share, so every route built that way would serve the
  507. // last package's half (measured 2026-09-14 — both /__hl/web/client.js and
  508. // /__hl/dnd/client.js answered with hl:web's module). A parameter is a fresh
  509. // binding per call, which is the same reason serveComponent below is a function.
  510. serveHalf(key) {
  511. routes[] = { pattern = halfUrl(key.slice(3, key.length - 10)) framework = true function = (route, req) => { return serveHl('/' + key, req) } }
  512. return null
  513. }
  514. // a mounted file's module route, and the routes of the components it composes
  515. // (an import with a View), recursively — off the graph, once each
  516. serveComponent(key) {
  517. if (served[key] != null) { return null }
  518. served[key] = true
  519. routes[] = { pattern = modulePath(key) framework = true function = (route, req) => { return serveHl(req.path, req) } }
  520. for (imp of graph.files[key].imports) {
  521. if (imp.default != null && imp.key != null && viewHandle(imp.key) != 0) { serveComponent(imp.key) }
  522. }
  523. return null
  524. }
  525. // THE PROJECT DIRECTORY: this file lives in a package, so the app's directory is read
  526. // off a file that is the app's — the first route component's key against its path
  527. root = projectRoot()
  528. view = new HlwView
  529. css = new HlwCss(minify = minify, view = view)
  530. compiler = new HlwCompile
  531. sessions = new HlwSessions(dir = sessionDirPath(), maxAge = sessionMaxAge != null ? sessionMaxAge : 1209600, idle = sessionIdle != null ? sessionIdle : 900, sweepEvery = sweepInterval != null ? sweepInterval : 300, cookie = cookieName(), secure = sessionSecure, domain = sessionDomain != null ? sessionDomain : '')
  532. sessions.open()
  533. // THE STYLES FILE IS NAMED AT BOOT, not at the first request for the stylesheet: a value
  534. // that names no file, or a file the graph does not hold, is the app's mistake and the
  535. // app does not start with it (ticket #12)
  536. if (styles != null) {
  537. if (hlTypeName(styles) != 'String' && hlTypeName(styles) != 'Class') { refuseAtSetting('styles', "hl:web: styles is the styles file — the class the app imported (`styles = Styles`) or a path string ('./styles.hl') — and this one is a " + hlTypeName(styles)) }
  538. if (graph.files[keyOf(styles)] == null) { refuseAtSetting('styles', "hl:web: styles names " + keyOf(styles) + ", which is not in the project graph — import it from the app's entry (`import Styles from './styles.hl'`) and write `styles = Styles`") }
  539. }
  540. // the whole tree, nothing excluded: dot directories (the session store) are skipped by
  541. // the walker's own rule, and a custom store inside the tree is the app's choice to pay for
  542. if (watchMode) { __native("eventloop.register", watch(root), "hlFileChanged") }
  543. sheetText = null // the stylesheet, walked once at the first request for it
  544. router = new HlwRouter(routes = routes)
  545. trees = {} // key → the View tree, built once
  546. slotAt = {} // key → where its View places its one `slot`
  547. styleNames = {} // key → the rule names of the file's Style, off the syntax
  548. styleRefs = {} // key → [{ tag rule }] the View wrote
  549. styleTags = {} // key → the element names this file's View renders
  550. styleIds = {} // key → the literal `id` values this file's View writes (R3)
  551. staticHolders = {} // key → an instance of a file whose statics another file imports
  552. modules = {} // key → the browser module (JavaScript text), compiled once at boot
  553. buildHash = null // the hash of everything this build serves, in every cached url (build())
  554. workerCompiled = null // the service worker's module as compiled (offline apps only, workerText())
  555. shipped = {} // key → the module as served: its build marks replaced with the hash
  556. servedUrls = null // file path → the url this server answers its module at, for hlJs
  557. runtime = hlJsRuntime() // the runtime library every module imports as "./hl-runtime.js"
  558. peers = {} // connection key → the WsClient, while it is open
  559. peerSession = {} // connection key → its session, from the tab's `hello` (null = anonymous)
  560. peerHost = {} // connection key → the host its upgrade request named (null = none sent)
  561. peerHeaders = {} // connection key → its upgrade request's headers (requestHeaders)
  562. peerMounts = {} // connection key → the component keys the tab has mounted
  563. peerParams = {} // connection key → the route params the tab's shell and page were mounted with
  564. // SESSIONS (web/sessions.hl): named by the cookie, at the page request and at the
  565. // socket's handshake alike. Nothing about a session ever reaches page script.
  566. sending = null // the WsClient whose inbound emit is being handled — the peer
  567. // an outward emit reaches, and null under the POST fallback
  568. // THE POST FALLBACK'S PEER IS ITS OWN ANSWER. While a face dispatched over
  569. // `POST /__hl/emit` runs, `posting` is true and every outward emit meant for the
  570. // CALLER is appended here instead of pushed; `inbound` ships the list in the ack.
  571. Boolean posting = false
  572. postEmits = []
  573. postSession = null // the cookie's session of the POST being dispatched
  574. postHost = null // the host of the POST being dispatched
  575. faceHost = null // the host of the carrier whose inbound emit is being dispatched
  576. postHeaders = null // the headers of the POST being dispatched (requestHeaders)
  577. faceHeaders = null // the headers of the carrier whose inbound emit is being dispatched
  578. // EXACTLY ONCE (COMPONENTS §10): a queued emit carries a stable id `q`, and the ids handled
  579. // are kept per session, the last `handledKept` of them (Session.handled). A connection
  580. // with no session keeps its ids here, in one list under the same bound.
  581. Number handledKept = 200
  582. anonHandled = []
  583. // WHAT A KEPT ID WAS ANSWERED (ticket #107). An emit in flight when its socket closed
  584. // is sent again with its id, and its caller is still waiting — for a page, say. The
  585. // first delivery's ack went out on the dead socket, so the repeat is answered from
  586. // here: `answers[session id + ' ' + q]` is that ack as sent (its `i` replaced), or
  587. // `running` while the first delivery has not finished, which answers the repeat
  588. // `later` and the client asks again. In memory, the last `handledKept` of them: a
  589. // repeat comes seconds after the first try, and a restart loses nothing a live peer
  590. // still waits for but the ack, which is then plain `ok`, as before.
  591. answers = {}
  592. answerKeys = []
  593. uploads = {} // 'u' + upload id → { sid, name, type, size, have, parts, at, key }: a file on its way in (ticket #94)
  594. uploadKeys = {} // 'k' + session id + ' ' + q + ' ' + n → the upload id the n-th file of emit q went up under
  595. uploadParts = {} // 'u' + id + ':' + n → the n-th part as it arrived, a Bytes
  596. // ONE PORT, TWO CARRIERS. hl:http1's WebSocket engine answers the Upgrade
  597. // inline on the port this server already bound, so `websocket` and `rest` are
  598. // the same listener — which is why the manifest can declare both for the same
  599. // direction and this file needs no second server.
  600. // EVERY VIEW IS BUILT AT BOOT, not at the first request for its route: a View that
  601. // reads a name its file declares nowhere (checkRead) is the app's mistake, and the
  602. // app does not start with it — the port is bound on the line below this pass.
  603. // THE TWO DERIVATIONS MUST AGREE (mission 315). `served` is built above from the
  604. // EVALUATED route table; `servedKeys(graph)` derives the same set from the
  605. // analysis alone, and the compiler bakes each module's text against the second.
  606. // If they ever disagree the binary would serve modules generated against urls
  607. // this server does not answer, so the disagreement is a refusal, here, at boot.
  608. for (k of servedKeys(graph)) {
  609. if (served[k] == null) {
  610. hlError('hl:web: the analysis says this app serves ' + k + ', the route walk did not — the two derivations of the served set disagree')
  611. }
  612. }
  613. for (k of served.keys()) {
  614. let seen = false
  615. for (a of servedKeys(graph)) { if (a == k) { seen = true } }
  616. if (seen == false) {
  617. let why = ''
  618. for (imp of graph.files[k] != null ? [] : []) { why = why }
  619. hlError('hl:web: the route walk serves ' + k + ', the analysis did not — the two derivations of the served set disagree')
  620. }
  621. }
  622. for (k of served.keys()) { if (viewHandle(k) != 0) { tree(k) } }
  623. // A COMPONENT-REFERENCE CYCLE IS REFUSED HERE (COMPONENTS §12): a View that renders
  624. // itself, directly or through another, is a mount that never ends — it overflowed the
  625. // stack at the first request and the server died of a segfault with nothing said
  626. // (mission 322 row 1).
  627. acyclic = {}
  628. for (k of served.keys()) { if (viewHandle(k) != 0) { referenceCycle(k, [], []) } }
  629. // …and a page a shell wraps is placed at the shell's slot, inside its body: a page whose
  630. // root is `body` there emitted a second, nested <body> (mission 322 row 5)
  631. for (k of mounted) {
  632. if (graph.files[k] != null && graph.files[k].parent != null && viewHandle(k) != 0 && bodyRooted(k)) {
  633. hlError("hl:web: " + k + " is wrapped by " + graph.files[k].parent + " (its `parent` clause), but its View's root is `body { … }`, the page's body: the shell owns the body, so write the page's root as an element (`main { … }`, `section { … }`)")
  634. }
  635. }
  636. // THE SHEET IS WALKED AT BOOT, so the rules it drops are listed at boot (COMPONENTS §4,
  637. // css.hl's own header): walked at the first request for it, a dead rule was listed only
  638. // once some browser had asked, and a boot log said nothing (mission 322 row 11)
  639. stylesheet()
  640. // EVERY SERVED MODULE IS COMPILED AT BOOT: a free name in a View handler is a located
  641. // compile error (COMPONENTS §6b), and compiled at the first request for the module it
  642. // was a 500 behind a page that had already answered 200 (mission 322 row 14)
  643. for (k of served.keys()) { module(k) }
  644. // THE INTERFACE IS THE OPERATOR'S (ticket #24), on the ladder graph.zig's OperatorBind
  645. // states: the constructor's `host` > HL_HOST (the binary fills it from HOST) > the
  646. // manifest's > 0.0.0.0. Binding the default regardless put an app meant to sit behind
  647. // a proxy on every interface of the machine.
  648. if (host == null) { host = env('HL_HOST') }
  649. if (host == null && cfg != null && cfg.host != null) { host = cfg.host }
  650. if (host == null) { host = '0.0.0.0' }
  651. // A --PORT AFTER THE ENTRY OUTRANKS THE APP'S OWN PORT (creator ruling
  652. // 2026-09-27), but `port` ITSELF CANNOT SAY SO: the reference app passes an
  653. // explicit `port = …` to `new WebFramework(…)` (server.hl, computed from
  654. // HL_FW_PORT so a test run can sit beside a developer's own instance), which
  655. // PINS the member for the whole construction (SPEC.md "The file root is the
  656. // constructor" — "a root assignment to [a pinned] property… is a no-op").
  657. // `port = port_arg` below was exactly that no-op: `hybriel server.hl
  658. // --port=11499` still bound 44333, server.hl's own default, because this
  659. // line's write never landed. `boundPort`, a plain local nothing ever pins,
  660. // carries the actual ladder instead — CLI argument, else the (possibly
  661. // pinned) member, else HL_PORT, else 8080 — and IS what binds and what the
  662. // boot line names.
  663. let port_arg = portArgument()
  664. let boundPort = port_arg
  665. if (boundPort == null) { boundPort = port }
  666. if (boundPort == null && env('HL_PORT') != null) { boundPort = toNumber(env('HL_PORT')) }
  667. if (boundPort == null) { boundPort = 8080 }
  668. http = new NativeWebSocketServer(port = boundPort, host = host)
  669. echo 'framework listening on ' + boundPort
  670. module('web/client.hl')
  671. // ---- the browser's modules: compiled IN PROCESS, served from memory --------------
  672. // The JavaScript target is this binary's own function (hlJs), the same one `--js`
  673. // runs from the command line. No child process, no build directory.
  674. //
  675. // THE CLIENT is compiled at boot — every page needs it, and it carries the View
  676. // and the Router with it (one module, three classes). A COMPONENT is compiled ON
  677. // DEMAND, at the request for its own `.hl` url, and kept: a route nobody visits
  678. // costs nothing, and the browser asks for a component's module the first time it
  679. // mounts one.
  680. //
  681. // THE TABLE THE EMITTER WRITES IS DROPPED. `hlJs` puts each file's members,
  682. // handlers and methods — every node of every initializer, with the names it reads —
  683. // into the module, because the old hl:web's browser half reduces that table on every boot.
  684. // This framework asked the same questions at COMPILE time and wrote the answers into
  685. // the component's own statements, so the table is dead weight in the page: 58 KB of
  686. // syntax on the reference app's home page alone. What the framework SERVES is its own
  687. // text, so it leaves that statement out; the language is not asked to change, and
  688. // The old hl:web kept its table untouched.
  689. // THE TABLE STATEMENT'S NAME in this module: `hlTablesDef`, or in a compact module the
  690. // alias its import clause gives it (`hlTablesDef as _51`). Each statement stands at the
  691. // start of its own line, which is how it is found — an alias alone is a suffix of other
  692. // names (`$_51(` is a compiler temporary).
  693. tablesCall(text) {
  694. let alias = text.indexOf('hlTablesDef as ')
  695. if (alias < 0) { return newline + 'hlTablesDef(' }
  696. let first = alias + 15
  697. let stop = first
  698. while (stop < text.length && text[stop] != ',' && text[stop] != '}') { stop = stop + 1 }
  699. return newline + text.slice(first, stop) + '('
  700. }
  701. // the `fns` of the file's own table — the first table statement the module carries is
  702. // the file's; the ones after it are the classes it bundles
  703. tableFns(text) {
  704. let at = text.indexOf(tablesCall(text))
  705. if (at < 0) { return [] }
  706. let open = text.indexOf('{', at)
  707. let end = text.indexOf(');', at)
  708. if (open < 0 || end < 0) { return [] }
  709. let t = JSON.parse(text.slice(open, end))
  710. return t.fns == null ? [] : t.fns
  711. }
  712. withoutTables(text) {
  713. // one per FILE the module carries — the client half bundles three classes. A compact
  714. // module calls it by its alias, and was served with every table until ticket #98's
  715. // follow-up: 50 KB and more of syntax on a minified app's page
  716. let call = tablesCall(text)
  717. let out = text
  718. let at = out.indexOf(call)
  719. while (at >= 0) {
  720. let end = out.indexOf(');', at)
  721. if (end < 0) { return out }
  722. // the newline before it stays: it ends the statement above
  723. out = out.slice(0, at + 1) + out.slice(end + 2)
  724. at = out.indexOf(call)
  725. }
  726. return out
  727. }
  728. // THE APP RUNS ON ONE WEB FRAMEWORK. Which packages are frameworks is READ OFF THE
  729. // GRAPH and not off a list this file keeps: a package the app's entry reached that
  730. // holds a `WebFramework.hl` is one. hl:dnd, hl:http1 and every other package an app
  731. // imports hold none and are untouched by this.
  732. //
  733. // The refusal names the ROW of each import, because the mistake IS an import line —
  734. // a sub-file import (`'hl:web/css'`) counts as much as the package itself, which is
  735. // exactly the case that made it: a lone braced import of a stylesheet helper puts the
  736. // whole package into the graph, and with it a second navigation face.
  737. oneFrameworkOnly() {
  738. let frameworks = {}
  739. for (gk of graph.files.keys()) {
  740. if (gk.startsWith('hl:') && gk.endsWith('/WebFramework.hl')) { frameworks[gk.slice(0, gk.length - 16)] = true }
  741. }
  742. if (frameworks.keys().length < 2) { return null }
  743. // the first row of the app's OWN files that reached each package
  744. let sites = {}
  745. for (k of graph.files.keys()) {
  746. if (!k.startsWith('hl:')) {
  747. for (imp of graph.files[k].imports) {
  748. for (pkg of frameworks.keys()) {
  749. if (sites[pkg] == null && (imp.source == pkg || imp.source.startsWith(pkg + '/'))) {
  750. sites[pkg] = { key = k; node = imp.node; where = k + ':' + imp.line + ':' + imp.col + " imports '" + imp.source + "'" }
  751. }
  752. }
  753. }
  754. }
  755. }
  756. let said = ''
  757. for (pkg of frameworks.keys()) {
  758. if (said != '') { said = said + ', and ' }
  759. if (sites[pkg] == null) { said = said + "'" + pkg + "' (reached through a package, not from a file of the app)" }
  760. else { said = said + sites[pkg].where }
  761. }
  762. let msg = 'this app imports TWO web frameworks: ' + said + '. Both packages load, both answer a page navigation, and the second one answers on a blank instance. An app runs on ONE of them — switch EVERY hl: import in EVERY file of the app to the same package, a sub-file import like \'/css\' included. Switching one line is not switching the app.'
  763. // THE CARET GOES ON ONE OF THE ROWS, and the sentence names them all: two
  764. // import lines are equally the mistake, and a diagnostic can only underline one.
  765. for (pkg of frameworks.keys()) {
  766. if (sites[pkg] != null) { hlSourceError(gen, sites[pkg].key, sites[pkg].node, msg) }
  767. }
  768. hlError(msg)
  769. return null
  770. }
  771. // ONE ANSWERER PER VALUE-FORM EMIT. SPEC: "if more than one class in the destination
  772. // realm declares a non-tap handler for the event, the VALUE form is refused at the emit
  773. // site naming both. As a statement it stays a broadcast and every handler still fires."
  774. // The statement form is what `inbound` does — every face runs. The value form cannot be
  775. // told apart on the wire, so every `x = emit server ev()` the app's files hold is read
  776. // off the analysis here, and one whose event two files answer is refused at its site,
  777. // naming both, before anything is served. Until ticket #20 both faces ran and the first
  778. // answer was taken in silence.
  779. oneAnswererEach() {
  780. let realm = serverRealm()
  781. for (k of graph.files.keys()) {
  782. if (!k.startsWith('hl:')) {
  783. for (e of hlEvents(gen, k).emits) {
  784. if (e.value == true && e.realm == realm) {
  785. let owners = facesOf(e.event)
  786. if (owners.length > 1) {
  787. let named = ''
  788. for (o of owners) { named = named == '' ? o : named + ' and ' + o }
  789. let msg = "hl:web: " + k + ':' + e.line + ':' + e.col + " — this emit waits for the answer of '" + e.event + "', and " + owners.length + " files answer it in the '" + realm + "' realm: " + named + ". A value-form emit has ONE answerer — rename the event in one of them, or emit it as a statement (a broadcast every handler receives)"
  790. hlSourceError(gen, k, e.node, msg)
  791. hlError(msg)
  792. }
  793. }
  794. }
  795. }
  796. }
  797. return null
  798. }
  799. // WHAT THIS SERVER SERVES AS A MODULE OF ITS OWN, by the file's path (mission 314
  800. // rule 0). Handed to `hlJs`, it is what turns `import PostCard from './post_card.hl'`
  801. // into an ES import of `/components/post_card.hl` instead of PostCard's whole class
  802. // text copied into the importing module — EditHistory's class shipped three times on
  803. // the social demo's home page before this. The urls are THIS file's (`moduleUrl`);
  804. // the compiler invents none, and a file this server does not answer for is inlined
  805. // exactly as it always was.
  806. servedModules() {
  807. if (servedUrls == null) {
  808. let out = {}
  809. for (k of served.keys()) { out[pathOf(k)] = modulePath(k) + buildMark }
  810. servedUrls = out
  811. }
  812. return servedUrls
  813. }
  814. // A key the graph holds no file for is answered `null`, and the caller makes
  815. // that a 404: a file the entry's closure never referenced is not part of this
  816. // app, which is what keeps this from being a read of any path a url asks for.
  817. module(key) {
  818. if (modules[key] == null) {
  819. let f = graph.files[key]
  820. if (f == null) { return null }
  821. // THE BROWSER GETS THE BROWSER'S PROJECTION, and nothing else. hlJs's
  822. // fourth argument is the realm the module is produced for: a handler
  823. // written `on server …` is not emitted at all, and a member whose
  824. // initializer reaches a name the browser does not have is declared
  825. // without one, for this server to lay over the instance with the state
  826. // it already ships. The realm NAME comes off the manifest (clientRealm()
  827. // above), never a literal — a project names its own realms.
  828. let text = hlJs(f.path, minify, runtimeSpec, clientRealm(), servedModules())
  829. // AND THE COMPILE STEP'S OWN OUTPUT BESIDE IT (mission 313): a component with a
  830. // View carries, after its class, the paint statements this framework compiled
  831. // from that View — one per bound spot, with its read written in (compile.hl).
  832. // The browser calls them instead of walking the tree at paint time. Text
  833. // produced here and served from memory like the module itself; nothing is
  834. // written to disk and no JavaScript file lives under plugins/.
  835. // THE FUNCTION VALUES' SITES are the one part of that table the browser still
  836. // needs (tickets #98, #99): the compile step turns them into write sets
  837. let fns = tableFns(text)
  838. text = withoutTables(text)
  839. if (viewHandle(key) != 0) { text = text + newline + compiler.module(gen, key, tree(key), fns) }
  840. modules[key] = text
  841. }
  842. return modules[key]
  843. }
  844. // the file the graph knows under this key — the graph carries every file's own path
  845. pathOf(key) {
  846. let f = graph.files[key]
  847. if (f == null) { hlError('the graph holds no file ' + key + ' — nothing referenced it from the entry') }
  848. return f.path
  849. }
  850. // THE BROWSER'S REALM, off the manifest: the realm whose declared entrypoint is
  851. // this framework's client half. The framework's own two files ARE the two
  852. // realms' entrypoints, so this is a lookup and never a guess.
  853. clientRealm() {
  854. for (name of graph.realms.keys()) {
  855. if (graph.realms[name].entrypoint == 'hl:web/client.hl') { return name }
  856. }
  857. hlError('the manifest declares no realm whose entrypoint is ./client.hl — the browser half of this framework IS a realm, and a page cannot say which realm it is running in until the manifest names it')
  858. }
  859. // THIS realm, off the graph: the declared realm whose entrypoint REACHES this
  860. // file (the app's entry imports it). A face names it, and so does the refusal
  861. // when nothing answers.
  862. serverRealm() {
  863. let mine = graph.files['hl:web/WebFramework.hl'].realms
  864. if (mine.length == 1) { return mine[0] }
  865. hlError('the manifest declares no realm whose entrypoint reaches hl:web/WebFramework.hl — this file cannot dispatch a face without knowing which realm it is')
  866. }
  867. // the app's directory: a route component is the app's file, its key project-relative
  868. projectRoot() {
  869. for (r of routes) {
  870. if (r.component != null) { return rootOf(keyOf(r.component)) }
  871. }
  872. // AN APP OF FUNCTION ROUTES ONLY (ticket #19) has no component to read it off, and
  873. // needs no other: the manifest is the app's file too, and the graph knows its key
  874. if (graph.manifest.file != null && graph.files[graph.manifest.file] != null) { return rootOf(graph.manifest.file) }
  875. hlError('hl:web: the route table names no component and the graph names no manifest file, so the app\'s directory cannot be read off either')
  876. }
  877. // a project-relative key against its absolute path: what is left is the project's directory
  878. rootOf(key) {
  879. let path = pathOf(key)
  880. // A COMPILED BINARY'S PATH IS ITS KEY (mission 318): it carries no
  881. // build directory, so the file's path and its key are the same
  882. // string and the root is the process's own directory. The
  883. // interpreter's path is the script's absolute one, and the key is
  884. // its tail — the root is what stands before it.
  885. if (path == key) { return '.' }
  886. return path.slice(0, path.length - key.length - 1)
  887. }
  888. // THE KEY OF A FILE THE APP NAMED — as the class it imported (`component = SortList`,
  889. // `styles = Styles`: the import is the guarantee the graph reached it) or as a path
  890. // ('./components/home.hl'). A class knows its file (`file(cls)`), and the graph knows
  891. // the file's key.
  892. keyOf(named) {
  893. if (hlTypeName(named) == 'Class') {
  894. let path = file(named)
  895. for (k of graph.files.keys()) {
  896. if (graph.files[k].path == path) { return k }
  897. }
  898. hlError('hl:web: the class at ' + path + ' is not in the project graph — import it from the app\'s entry')
  899. }
  900. // ANYTHING ELSE NAMES NO FILE (ticket #12): `styles = {}` booted and every request
  901. // for the stylesheet was then a NotCallable on this line, with no line of the app's
  902. if (hlTypeName(named) != 'String') { hlError("hl:web: a file the app names — a route's component, or `styles` — is the class it imported or a path string ('./styles.hl'), and this one is a " + hlTypeName(named)) }
  903. if (named.startsWith('./')) { return named.slice(2) }
  904. return named
  905. }
  906. // ---- the View tree: the member's syntax, reflected into plain hybrids ----------
  907. viewHandle(key) {
  908. for (m of hlMembers(gen, key)) {
  909. if (m.name == 'View') { return m.node }
  910. }
  911. return 0
  912. }
  913. tree(key) {
  914. if (trees[key] != null) { return trees[key] }
  915. let handle = viewHandle(key)
  916. if (handle == 0) { hlError('component ' + key + ' declares no View') }
  917. let v = hlSyntax(gen, key, handle)
  918. let nodes = []
  919. for (h of v.entries) {
  920. let n = node(key, h, [], false, [])
  921. if (n != null) { nodes.push(n) }
  922. }
  923. trees[key] = nodes
  924. return nodes
  925. }
  926. // one entry of a hybrid literal → a tree node (null for an attribute: the
  927. // element that owns it reads it)
  928. node(key, handle, path, inFor, rows) {
  929. let n = hlSyntax(gen, key, handle)
  930. if (n == null) { return null }
  931. if (n.tag == 'object_property') {
  932. let v = hlSyntax(gen, key, n.value)
  933. if (v.tag == 'object_expression') {
  934. let childKey = componentKeyOf(key, n.key)
  935. if (childKey != null) { return component(key, n.key, childKey, v, v, path, inFor, rows) }
  936. return element(key, n.key, v, path, inFor, rows)
  937. }
  938. return null
  939. }
  940. if (n.tag == 'literal') { return { k = 'text'; text = n.text; kind = n.kind; } }
  941. if (n.tag == 'identifier') {
  942. // A BARE CAPITALISED REFERENCE IS A COMPOSITION WITH AN EMPTY FILL (§12:
  943. // "`Name { }` is the same reference as bare `Name`"). It is not a read, so it
  944. // is answered before the read rules below refuse the name.
  945. let bareKey = componentKeyOf(key, n.name)
  946. if (bareKey != null) { return component(key, n.name, bareKey, null, n, path, inFor, rows) }
  947. if (n.name == 'slot') { oneSlot(key, n) }
  948. // AN IMPORTED STATIC IN A VIEW IS FOLDED (the archive did the same at build):
  949. // `h1 { siteTitle }` with `import { siteTitle } from '../store.hl'` is not a
  950. // member of this class, it is a constant of another file — read off that
  951. // file's class once, here, and written into the tree as text
  952. return nameRead(key, n.name, rows, n)
  953. }
  954. if (n.tag == 'view_for') {
  955. // `for (row of list) { … }` — the list is a member (or a row field), the
  956. // body's entries are rendered once per entry with `row` bound to it
  957. let body = hlSyntax(gen, key, n.body)
  958. let children = []
  959. // THE ROW VARIABLE IS IN SCOPE INSIDE THE BODY, and nowhere else: the list is
  960. // read in the scope that stands around the `for`
  961. let list = ref(key, n.list, rows)
  962. let inner = rows.slice(0)
  963. inner.push(n.varName)
  964. for (h of body.entries) {
  965. let c = node(key, h, path, true, inner)
  966. if (c != null) { children.push(c) }
  967. }
  968. // THE SITE, as every element node carries one: the id the module's tables
  969. // file this `for`'s row under, so the browser reads what the list depends
  970. // on from the compiler instead of guessing it off `list.name`.
  971. return { k = 'for'; row = n.varName; list = list; body = children; site = baseName(pathOf(key)) + ':' + n.line + ':' + n.col; }
  972. }
  973. if (n.tag == 'view_if') {
  974. let then = []
  975. let cons = hlSyntax(gen, key, n.consequent)
  976. for (h of cons.entries) {
  977. let c = node(key, h, path, inFor, rows)
  978. if (c != null) { then.push(c) }
  979. }
  980. let other = []
  981. let alt = hlSyntax(gen, key, n.alternate) // null when there is no else
  982. if (alt != null) {
  983. if (alt.tag == 'view_if') {
  984. other.push(node(key, n.alternate, path, inFor, rows))
  985. } else {
  986. for (h of alt.entries) {
  987. let c = node(key, h, path, inFor, rows)
  988. if (c != null) { other.push(c) }
  989. }
  990. }
  991. }
  992. // A BRANCH CONDITION IS A READ (COMPONENTS: a member or a loop path).
  993. // Anything else came back null here and the branch rendered nothing, on the
  994. // server and after hydration, with no word said (ticket #17: `if (!flag)`).
  995. let cond = ref(key, n.condition, rows)
  996. if (cond == null) {
  997. let c = hlSyntax(gen, key, n.condition)
  998. hlError("hl:web: " + baseName(pathOf(key)) + ':' + c.line + ':' + c.col + " — a View `if` takes a member, a field path or a `for` row variable as its condition, and this one is an expression: declare it at the root of " + baseName(pathOf(key)) + " (`showIt = !flag`) and write `if (showIt)`")
  999. }
  1000. return { k = 'if'; cond = cond; then = then; other = other; site = baseName(pathOf(key)) + ':' + n.line + ':' + n.col; }
  1001. }
  1002. if (n.tag == 'member_expression') {
  1003. // `p.title` — a field path off a member or a row variable
  1004. let r = ref(key, handle, rows)
  1005. if (r != null) { return r }
  1006. }
  1007. if (n.tag == 'on_statement') {
  1008. // a DOM event handled by the literal that carries it: the browser finds the
  1009. // literal in the instance's View by the path of keys and fires the event at it
  1010. // THE SITE IS THE HANDLER'S ID: the tables file this handler's write set
  1011. // under it, and the browser repaints exactly those members when it runs.
  1012. return { k = 'on'; event = n.event; site = baseName(pathOf(key)) + ':' + n.line + ':' + n.col; }
  1013. }
  1014. return { k = 'other'; tag = n.tag; }
  1015. }
  1016. // A COMPONENT HAS EXACTLY ONE SLOT (COMPONENTS §2 table, §12): a second one rendered the
  1017. // child a second time, with no word said (mission 322 row 4)
  1018. oneSlot(key, n) {
  1019. let here = baseName(pathOf(key)) + ':' + n.line + ':' + n.col
  1020. if (slotAt[key] != null) {
  1021. hlError("hl:web: " + here + " — a second `slot` in this View (the first is at " + slotAt[key] + "): a component has exactly one slot, where the page it wraps or the fill it is given renders")
  1022. }
  1023. slotAt[key] = here
  1024. return null
  1025. }
  1026. isMember(key, name) {
  1027. for (m of hlMembers(gen, key)) { if (m.name == name) { return true } }
  1028. return false
  1029. }
  1030. // THE READ OF A BARE NAME IN A VIEW — wherever the name stands. A text child, an
  1031. // attribute's value and a reference-site binding are ONE lookup with ONE refusal:
  1032. //
  1033. // a `for` row variable standing around the read → read at render, from the row
  1034. // a member of this file → read at render, from the instance
  1035. // a name this file imports by BRACE → a STATIC of another file:
  1036. // constant-folded here, at build
  1037. // anything else → the located refusal (checkRead)
  1038. //
  1039. // An ATTRIBUTE used to skip the middle two and record every name as a member read,
  1040. // so `a { href = brandHref }` on a braced import asked the instance for a member it
  1041. // does not have and the renderer raised error.UndefinedProperty with view.hl's line
  1042. // and nothing of the app's — while the same name as a TEXT CHILD rendered fine
  1043. // (creator, routger migration W8). A read is a read; where it stands decides
  1044. // nothing about what it names.
  1045. nameRead(key, name, rows, at) {
  1046. if (rows != null && rows.includes(name)) { return { k = 'member'; name = name; } }
  1047. if (isMember(key, name)) { return { k = 'member'; name = name; } }
  1048. // A BRACED IMPORT FOLDS EVEN WHEN ITS VALUE IS NULL: the name resolved, so the
  1049. // read is answered here and never reaches the instance (a null static used to
  1050. // fall through to a member read and raise the same UndefinedProperty).
  1051. if (importsName(key, name)) {
  1052. let folded = importedStatic(key, name)
  1053. // THE VALUE AS WELL AS THE TEXT: an attribute and a text child want the text,
  1054. // and a reference binding wants the value the author's file declared (§12)
  1055. return { k = 'text'; text = folded == null ? '' : '' + folded; kind = 'folded'; value = folded; }
  1056. }
  1057. checkRead(key, name, rows, at)
  1058. return { k = 'member'; name = name; }
  1059. }
  1060. // A VIEW READS ONLY WHAT ITS FILE DECLARES. A name that is neither a member of
  1061. // this class, nor a static it imports by brace, nor a `for` row variable standing
  1062. // around this read, is a typo or a missing declaration — refused HERE, at the
  1063. // build of the tree (boot), naming the file and the line, instead of a 500 out of
  1064. // the renderer with the language's UndefinedProperty and no line of the app's.
  1065. checkRead(key, name, rows, n) {
  1066. if (rows != null && rows.includes(name)) { return null }
  1067. if (isMember(key, name)) { return null }
  1068. if (importsName(key, name)) { return null }
  1069. let hint = name == 'session' ? "`session = null` to receive the connection's session" : name == 'host' ? "`host = null` to receive the request's host" : name == 'headers' ? "`headers = null` to receive the request's headers" : "`" + name + " = null`"
  1070. hlError("hl:web: " + baseName(pathOf(key)) + ':' + n.line + ':' + n.col + " — the View reads '" + name + "', which this file declares nowhere: declare it at the file's root (" + hint + "), or write the name it was meant to be")
  1071. }
  1072. // does this file import that name by brace from another file?
  1073. \* `--port=N` or `--port N` among the program's arguments, or null. *\
  1074. portArgument() {
  1075. let given = args()
  1076. let i = 0
  1077. while (i < given.length) {
  1078. let a = given[i]
  1079. let text = null
  1080. if (a.startsWith('--port=')) {
  1081. text = a.slice(7)
  1082. } else if (a == '--port' && i + 1 < given.length) {
  1083. text = given[i + 1]
  1084. }
  1085. if (text != null) {
  1086. let digits = text.length > 0 && text.length <= 5
  1087. let b = toBytes(text)
  1088. let k = 0
  1089. while (k < b.length) {
  1090. if (b[k] < 48 || b[k] > 57) { digits = false }
  1091. k = k + 1
  1092. }
  1093. if (!digits || toNumber(text) > 65535) {
  1094. hlError("hl:web: invalid --port value '" + text + "' — a port is a number 0-65535")
  1095. }
  1096. return toNumber(text)
  1097. }
  1098. i = i + 1
  1099. }
  1100. return null
  1101. }
  1102. importsName(key, name) {
  1103. for (imp of graph.files[key].imports) {
  1104. if (imp.key != null && imp.names.includes(name)) { return true }
  1105. }
  1106. return false
  1107. }
  1108. // the value of a static this file imports by brace from another .hl file, or null —
  1109. // read off an instance of that file (a class value takes no computed index, an
  1110. // instance does; the file is constructed once, its statics were evaluated at load)
  1111. importedStatic(key, name) {
  1112. for (imp of graph.files[key].imports) {
  1113. if (imp.key != null && imp.names.includes(name)) {
  1114. if (staticHolders[imp.key] == null) { staticHolders[imp.key] = construct(imp.key, constructionArgs(imp.key, {}, anonSession(), null, null)) }
  1115. return staticHolders[imp.key][name]
  1116. }
  1117. }
  1118. return null
  1119. }
  1120. // a READ in the View: a member (`title`), or a field path (`p.title`) whose root
  1121. // is a member or a `for` row variable — the client decides which at render time
  1122. ref(key, handle, rows) {
  1123. let n = hlSyntax(gen, key, handle)
  1124. if (n.tag == 'identifier') { checkRead(key, n.name, rows, n) return { k = 'member'; name = n.name; } }
  1125. // A LIST WRITTEN IN PLACE (`for (n of [1, 2])`) is a literal, read as its value: the
  1126. // same folded 'text' node a folded static is, so every reader takes it the way it takes
  1127. // that one. Its entries are literals — anything else has no value before a read.
  1128. if (n.tag == 'array_expression') {
  1129. let items = []
  1130. for (e of n.elements) {
  1131. let el = hlSyntax(gen, key, e)
  1132. if (el == null || el.tag != 'literal') {
  1133. hlError("hl:web: " + baseName(pathOf(key)) + ':' + n.line + ':' + n.col + " — a list written in a View can hold literals only; declare it as a member to loop over anything else")
  1134. }
  1135. items.push(view.literalValue(el.kind, el.text))
  1136. }
  1137. return { k = 'text'; text = ''; kind = 'folded'; value = items; }
  1138. }
  1139. if (n.tag == 'member_expression' && !n.computed) {
  1140. let obj = hlSyntax(gen, key, n.object)
  1141. let prop = hlSyntax(gen, key, n.property)
  1142. if (obj.tag == 'identifier') { checkRead(key, obj.name, rows, obj) return { k = 'field'; name = obj.name; path = [prop.name]; } }
  1143. let inner = ref(key, n.object, rows)
  1144. if (inner != null && inner.k == 'field') {
  1145. let path = inner.path.slice(0)
  1146. path.push(prop.name)
  1147. return { k = 'field'; name = inner.name; path = path; }
  1148. }
  1149. }
  1150. return null
  1151. }
  1152. // THE COMPOSED CHILD: an entry named after a class the file imports, whose file
  1153. // has a View. `Child { count = count on done(v) { … } }` — the entries are the
  1154. // BINDINGS (host values handed to the child's construction as named arguments)
  1155. // and the reference-site handlers. The graph says which name is which file.
  1156. componentKeyOf(key, name) {
  1157. for (imp of graph.files[key].imports) {
  1158. if (imp.default == name && imp.key != null && viewHandle(imp.key) != 0) { return imp.key }
  1159. }
  1160. return null
  1161. }
  1162. // THE REFERENCE'S SITE IS IN ITS PATH. A path of class names alone made two
  1163. // references of one class under one parent (`body/Card` twice) the SAME node key,
  1164. // so both collapsed onto one mount and one of the two fills was lost. A reference
  1165. // is a construction: each one is its own mount, so each one is its own path.
  1166. componentStep(cls, at) {
  1167. return cls + '@' + at.line + ':' + at.col
  1168. }
  1169. // is this entry a `Style.rule` reference? (the `Style` of THIS file, by name)
  1170. styleRef(key, e) {
  1171. let obj = hlSyntax(gen, key, e.object)
  1172. return obj.tag == 'identifier' && obj.name == 'Style'
  1173. }
  1174. // THE REFERENCE'S POSITIONAL SIGNATURE (§12: "a reference is a construction, so its
  1175. // POSITIONAL entries bind to the class's declared properties in declaration order —
  1176. // the same rule `new X(a, b)` follows").
  1177. //
  1178. // MEASURED, not guessed (2026-09-13, this worker): `new X(a, b, …)` fills the class's
  1179. // root PROPERTY DECLARATIONS in SOURCE ORDER, one slot each — `on` handlers and
  1180. // methods take no slot, and `hlMembers` returns exactly that list in exactly that
  1181. // order, so the tree builder reads the signature straight off it. Three of those
  1182. // declarations are not properties of the COMPOSITION and are left out here:
  1183. //
  1184. // `View` and `Style` — what the component renders and paints WITH, not what it is
  1185. // constructed from. The language does give them a slot (a
  1186. // bare `new` binds them), but §12 says `Card { "text" }` with
  1187. // no declared property takes its text as FILL, and a
  1188. // component always declares a View: counting it would make
  1189. // the positional-literal fill unreachable in every component
  1190. // there is.
  1191. // `slot` — the late-bound child, not state (§12); and with the fill
  1192. // rendered where the child places it the two readings emit
  1193. // the same HTML anyway.
  1194. // every `static` — a static belongs to the CLASS (§12 build-time constants), so
  1195. // a reference cannot seed one for every other reference.
  1196. //
  1197. // A NAMED assignment does NOT free its slot — measured: `new Q('n1', beta = 'B', 'n2')`
  1198. // puts 'n2' in the SECOND declaration and 'B' in beta. It is applied AFTER the
  1199. // positional ones and wins, which is why the positional bindings are emitted first
  1200. // below. (COMPONENTS.md:711 reads "a property the reference also assigns by name is
  1201. // not in the signature"; the interpreter says otherwise and the parenthetical in the
  1202. // same line — "named is applied after positional; the name wins, as in `new`" — is
  1203. // what this follows.)
  1204. positionalSignature(key) {
  1205. let out = []
  1206. for (m of hlMembers(gen, key)) {
  1207. if (!m.isStatic && m.name != 'View' && m.name != 'Style' && m.name != 'slot') { out.push(m.name) }
  1208. }
  1209. return out
  1210. }
  1211. component(key, cls, childKey, v, at, path, inFor, rows) {
  1212. let bindings = []
  1213. let positional = []
  1214. let ons = []
  1215. let fill = []
  1216. let here = path.slice(0)
  1217. here.push(componentStep(cls, at))
  1218. let sig = positionalSignature(childKey)
  1219. let taken = 0
  1220. if (v != null) {
  1221. for (h of v.entries) {
  1222. let e = hlSyntax(gen, key, h)
  1223. if (e.tag == 'object_property') {
  1224. let val = hlSyntax(gen, key, e.value)
  1225. // A BINDING NAMES A DECLARED MEMBER OF THE CHILD (COMPONENTS §12): the value
  1226. // otherwise went into the construction and nowhere, with no word said
  1227. // (mission 322 row 12). An element entry is the fill, not a binding.
  1228. if (val.tag != 'object_expression' && !isMember(childKey, e.key)) {
  1229. hlError("hl:web: " + baseName(pathOf(key)) + ':' + e.line + ':' + e.col + " — " + cls + " has no member '" + e.key + "' to bind: " + baseName(pathOf(childKey)) + " declares " + positionalSignature(childKey).join(', '))
  1230. }
  1231. // A LITERAL ON A REFERENCE KEEPS ITS TYPE (§12 "typed, not stringified"):
  1232. // the binding carries the literal's KIND, and `view.refValue` turns the
  1233. // pair into the value the child's member is given. Written as text alone,
  1234. // `Level2 { n = 1 }` handed the child the String "1" and `n * 97` refused
  1235. // (measured 2026-09-14, demo-nested wall 3).
  1236. if (val.tag == 'literal') { bindings.push({ name = e.key; text = val.text; kind = val.kind; }) }
  1237. else if (val.tag == 'identifier') {
  1238. // a binding is a read at the reference site, so it is the same lookup
  1239. let r = nameRead(key, val.name, rows, val)
  1240. // …and a folded static crosses as its VALUE, for the same reason
  1241. if (r.k == 'text') { bindings.push({ name = e.key; text = r.text; kind = 'folded'; value = r.value; }) }
  1242. else { bindings.push({ name = e.key; member = val.name; }) }
  1243. }
  1244. else if (val.tag == 'member_expression') { bindings.push({ name = e.key; ref = ref(key, e.value, rows); }) }
  1245. else {
  1246. // `Card { span { … } }` — an element entry is not a binding, it is the FILL
  1247. let c = node(key, h, here, inFor, rows)
  1248. // …and an EXPRESSION is neither, so it is refused rather than dropped:
  1249. // the same rule an attribute follows (mission 312 wall 4).
  1250. if (c == null) {
  1251. hlError("hl:web: " + baseName(pathOf(key)) + ':' + val.line + ':' + val.col + " — '" + e.key + "' is bound to an expression on the reference " + cls + ", and a binding is a literal, a member or a field path: declare the expression at the root of " + baseName(pathOf(key)) + " (`" + e.key + "Value = …`) and write `" + e.key + " = " + e.key + "Value`")
  1252. }
  1253. fill.push(c)
  1254. }
  1255. } else if (e.tag == 'on_statement') {
  1256. // A HANDLER WRITTEN ON A REFERENCE IS THE HOST'S, bound on the child's ROOT
  1257. // element. The reference is a literal of THIS file's View, so its behaviour
  1258. // is minted from THIS file's site and its body reaches this file through the
  1259. // owner rule — the same path an element's own handler takes. The child's own
  1260. // handler on that element is not replaced: both are listeners on one element
  1261. // and both run, the child's first, because it was bound when the child's tree
  1262. // was claimed. (Until 2026-09-13 the event was collected here and dropped: a
  1263. // reference with `on submit` never bound, and a form submitted natively.)
  1264. // …AND ITS SITE, because the tables file this handler's write set
  1265. // under it: the browser repaints exactly what it wrote (mission 309).
  1266. ons.push({ event = e.event; site = baseName(pathOf(key)) + ':' + e.line + ':' + e.col; })
  1267. } else if (e.tag == 'member_expression' && !e.computed && styleRef(key, e)) {
  1268. // a `Style.rule` written on a reference: the reference renders no element
  1269. // of its own, so there is nothing for the class to land on (§12)
  1270. hlError("hl:web: " + baseName(pathOf(key)) + ':' + at.line + ':' + at.col + " — a Style rule cannot be written on the component reference '" + cls + "': a reference renders no element of its own. Write the rule on an element inside " + baseName(pathOf(childKey)) + ", or name a '#" + cls + "' local rule in this file")
  1271. } else {
  1272. // AN ORDERED ENTRY. A literal or a read is the next declared property's
  1273. // value while the signature has room — `Button { "SD" }` is `Button
  1274. // { label = "SD" }` — and everything else, plus everything that EXCEEDS
  1275. // the signature, is the FILL: a fragment of THIS file's View, with its
  1276. // reads, its handlers and its `for` rows (§12 "host content").
  1277. let c = node(key, h, here, inFor, rows)
  1278. if (c != null) {
  1279. if (taken < sig.length && (c.k == 'text' || c.k == 'member' || c.k == 'field')) {
  1280. // the same rule as the named form above: a literal keeps its kind and a
  1281. // folded static crosses as its value
  1282. if (c.k == 'text') { positional.push({ name = sig[taken]; text = c.text; kind = c.kind; value = c.value; }) }
  1283. else if (c.k == 'member') { positional.push({ name = sig[taken]; member = c.name; }) }
  1284. else { positional.push({ name = sig[taken]; ref = c; }) }
  1285. taken = taken + 1
  1286. } else { fill.push(c) }
  1287. }
  1288. }
  1289. }
  1290. }
  1291. // THE NAMED ASSIGNMENTS COME LAST, so the name wins over the positional entry that
  1292. // landed on the same property (measured: that is what `new` does)
  1293. let allBindings = []
  1294. for (b of positional) { allBindings.push(b) }
  1295. for (b of bindings) { allBindings.push(b) }
  1296. bindings = allBindings
  1297. // FILLING WHAT PLACES NO SLOT IS A LOCATED ERROR (§12): the child would drop the
  1298. // content silently, which is exactly the bug this rule was written for.
  1299. if (fill.length > 0 && !isMember(childKey, 'slot')) {
  1300. hlError("hl:web: " + baseName(pathOf(key)) + ':' + at.line + ':' + at.col + " — " + cls + " is filled here, but " + baseName(pathOf(childKey)) + " declares no 'slot' to fill: declare `slot = null` there and place `slot` in its View, or write the content outside the reference")
  1301. }
  1302. let classes = []
  1303. if (styleRules(key).includes('#' + cls) && !viewIds(key).includes(cls)) {
  1304. classes.push(view.localClass(key))
  1305. for (t of rootTags(childKey)) { noteRef(key, t, '#' + cls) }
  1306. }
  1307. // THE NODE NAMES ITS CHILD, it does not carry it. What the browser needs to build
  1308. // a child the server never mounted — the module url and the View tree — stands
  1309. // ONCE in the seed's blueprint table, keyed by this `key` (blueprintsIn below).
  1310. // The node used to carry that pair itself, and only when it stood inside a `for`:
  1311. // a child deeper in a minted child's own tree therefore had nothing to build from
  1312. // and was silently missing after a push (a comment card's like button and its
  1313. // edit history, creator's social app, 2026-09-13).
  1314. // THE REFERENCE'S OWN SITE: `file:line:col` of the reference literal, the id the
  1315. // JavaScript target mints ITS behaviour class under — what a handler written on
  1316. // the reference is built from, in the host's frame (client.hl bindRefOns)
  1317. let site = baseName(pathOf(key)) + ':' + at.line + ':' + at.col
  1318. return { k = 'component'; cls = cls; key = childKey; path = here; bindings = bindings; ons = ons; classes = classes; row = inFor; fill = fill; site = site; }
  1319. }
  1320. // ---- Style, the View side (§4, as the archive did it) --------------------------
  1321. // The tree builder writes the class on the element and REPORTS what it wrote
  1322. // (`styleRefs[key]` = [{ tag rule }]) and the element names it rendered
  1323. // (`styleTags[key]`); web/style.hl spells the selectors from those. Three ways
  1324. // a rule reaches an element: `Style.rule` written on it (class = the tag-prefix
  1325. // strip of the rule name), a `#rule` local of this file matching the element by
  1326. // NAME (class = this file's four-character class; `#Child` matches a composed
  1327. // child's root elements), and — decided in style.hl, no class — a rule named
  1328. // like an element of this file's own View.
  1329. styleRules(key) {
  1330. if (styleNames[key] != null) { return styleNames[key] }
  1331. let names = []
  1332. for (m of hlMembers(gen, key)) {
  1333. if (m.name == 'Style') {
  1334. let v = hlSyntax(gen, key, m.node)
  1335. for (h of v.entries) {
  1336. let e = hlSyntax(gen, key, h)
  1337. if (e.tag == 'object_property' && !names.includes(e.key)) { names.push(e.key) }
  1338. }
  1339. }
  1340. }
  1341. styleNames[key] = names
  1342. return names
  1343. }
  1344. noteRef(key, tag, rule) {
  1345. if (styleRefs[key] == null) { styleRefs[key] = [] }
  1346. for (r of styleRefs[key]) { if (r.tag == tag && r.rule == rule) { return null } }
  1347. styleRefs[key].push({ tag = tag; rule = rule; })
  1348. return null
  1349. }
  1350. noteTag(key, tag) {
  1351. if (styleTags[key] == null) { styleTags[key] = [] }
  1352. if (!styleTags[key].includes(tag)) { styleTags[key].push(tag) }
  1353. return null
  1354. }
  1355. // `#name` IS AN ID WHEN THE VIEW HAS ONE (creator's ruling, ticket #51 / R3): a
  1356. // `#name` rule targets the element with `id = 'name'` if this file's View writes
  1357. // that id, and is the file-local class of the elements named `name` otherwise. The
  1358. // ids are read off the View's SYNTAX before the tree is built, because an element
  1359. // named `name` may stand before the element that carries the id. Only a literal id
  1360. // counts — a member-bound one has no value until render. A component reference's
  1361. // own `id = …` is a binding for the child, not an element of this View; its fill is.
  1362. viewIds(key) {
  1363. if (styleIds[key] != null) { return styleIds[key] }
  1364. let out = []
  1365. let handle = viewHandle(key)
  1366. if (handle != 0) { idsIn(key, hlSyntax(gen, key, handle), false, &out) }
  1367. styleIds[key] = out
  1368. return out
  1369. }
  1370. idsIn(key, block, isRef, &out) {
  1371. if (block == null || block.entries == null) { return null }
  1372. for (h of block.entries) {
  1373. let n = hlSyntax(gen, key, h)
  1374. if (n != null && n.tag == 'object_property') {
  1375. let v = hlSyntax(gen, key, n.value)
  1376. if (v.tag == 'object_expression') { idsIn(key, v, componentKeyOf(key, n.key) != null, &out) }
  1377. else if (!isRef && n.key == 'id' && v.tag == 'literal' && !out.includes(v.text)) { out.push(v.text) }
  1378. } else if (n != null && n.tag == 'view_for') {
  1379. idsIn(key, hlSyntax(gen, key, n.body), false, &out)
  1380. } else if (n != null && n.tag == 'view_if') {
  1381. idsIn(key, hlSyntax(gen, key, n.consequent), false, &out)
  1382. let alt = hlSyntax(gen, key, n.alternate)
  1383. if (alt != null && alt.tag == 'view_if') { idsIn(key, { entries = [n.alternate] }, false, &out) }
  1384. else { idsIn(key, alt, false, &out) }
  1385. }
  1386. }
  1387. return null
  1388. }
  1389. // the root element tags of a component's tree (a composed child under `#Child`)
  1390. rootTags(key) {
  1391. let out = []
  1392. for (n of tree(key)) { if (n.k == 'el' && !out.includes(n.tag)) { out.push(n.tag) } }
  1393. return out
  1394. }
  1395. baseName(p) {
  1396. let i = p.lastIndexOf('/')
  1397. return i < 0 ? p : p.slice(i + 1)
  1398. }
  1399. element(key, tag, v, path, inFor, rows) {
  1400. let attrs = []
  1401. let children = []
  1402. let here = path.slice(0)
  1403. here.push(tag)
  1404. let domTag = view.domTag(tag)
  1405. // `body { }` IS THE PAGE'S BODY, and only as the View's root (COMPONENTS §6): below
  1406. // the root it rendered a second, nested <body> no browser keeps (mission 322 row 5)
  1407. if (domTag == 'body' && path.length > 0) {
  1408. hlError("hl:web: " + baseName(pathOf(key)) + ':' + v.line + ':' + v.col + " — a `body` element below the View's root: `body { … }` is the page's body and stands only as a View's root")
  1409. }
  1410. noteTag(key, tag)
  1411. let classes = []
  1412. for (h of v.entries) {
  1413. let e = hlSyntax(gen, key, h)
  1414. let styled = false
  1415. if (e.tag == 'member_expression' && !e.computed) {
  1416. let obj = hlSyntax(gen, key, e.object)
  1417. let prop = hlSyntax(gen, key, e.property)
  1418. if (obj.tag == 'identifier' && obj.name == 'Style') {
  1419. if (!styleRules(key).includes(prop.name)) { hlError("no Style rule named '" + prop.name + "' in " + key) }
  1420. if (prop.name.startsWith('#')) { hlError("'" + prop.name + "' in " + key + " is a LOCAL rule and applies by NAMING the element, not by being referenced — every '" + prop.name.slice(1) + "' this file's View renders already carries it; delete the reference") }
  1421. let cls = view.kebab(view.className(prop.name, tag)) // the class is kebab-case (creator, 2026-09-12)
  1422. if (!classes.includes(cls)) { classes.push(cls) }
  1423. noteRef(key, tag, prop.name)
  1424. styled = true
  1425. }
  1426. }
  1427. if (styled) {
  1428. // a Style reference is not a child
  1429. } else if (e.tag == 'object_property') {
  1430. let val = hlSyntax(gen, key, e.value)
  1431. if (val.tag == 'literal' && view.isBoolAttr(e.key) && val.kind == 'boolean') {
  1432. // A BOOLEAN ATTRIBUTE IS ITS PRESENCE (ticket #33): `disabled = true` is the
  1433. // attribute, `disabled = false` its absence — decided here, once, for every
  1434. // writer of the markup
  1435. if (val.text == 'true') { attrs.push({ name = e.key; text = ''; }) }
  1436. } else if (val.tag == 'literal') {
  1437. attrs.push({ name = e.key; text = val.text; })
  1438. } else if (val.tag == 'identifier') {
  1439. // THE SAME LOOKUP A TEXT CHILD USES: a folded static becomes the
  1440. // attribute's literal text, a member or a row stays a read
  1441. let r = nameRead(key, val.name, rows, val)
  1442. if (r.k == 'text' && view.isBoolAttr(e.key)) { if (view.boolOn(r.value)) { attrs.push({ name = e.key; text = ''; }) } }
  1443. else if (r.k == 'text') { attrs.push({ name = e.key; text = r.text; }) }
  1444. else { attrs.push({ name = e.key; member = val.name; }) }
  1445. } else if (val.tag == 'member_expression') {
  1446. attrs.push({ name = e.key; ref = ref(key, e.value, rows); })
  1447. } else {
  1448. let c = node(key, h, here, inFor, rows)
  1449. // AN EXPRESSION AS AN ATTRIBUTE VALUE IS REFUSED HERE, AND WAS DROPPED IN
  1450. // SILENCE (mission 312 wall 4). `span { id = 'L3t' + n }` rendered no `id`
  1451. // at all and said nothing — the element came back with empty attributes and
  1452. // the author had no line to look at. A View attribute takes a literal, a
  1453. // member or a field path; anything else is a member of this file, declared
  1454. // at its root. The nested-element form (`div { span { … } }`) is the entry
  1455. // whose value is a hybrid, and it is what `node` answers for above.
  1456. if (c == null) {
  1457. hlError("hl:web: " + baseName(pathOf(key)) + ':' + val.line + ':' + val.col + " — the attribute '" + e.key + "' is given an expression, and a View attribute is a literal, a member or a field path: declare the expression at the root of " + baseName(pathOf(key)) + " (`" + e.key + "Value = …`) and write `" + e.key + " = " + e.key + "Value`")
  1458. }
  1459. children.push(c)
  1460. }
  1461. } else {
  1462. let c = node(key, h, here, inFor, rows)
  1463. if (c != null) { children.push(c) }
  1464. }
  1465. }
  1466. // a `#tag` LOCAL rule of this file matches this element by name: the file's class
  1467. // — unless the View writes `id = 'tag'` somewhere, then the rule is that id's (R3)
  1468. if (styleRules(key).includes('#' + tag) && !viewIds(key).includes(tag)) {
  1469. let cls = view.localClass(key)
  1470. if (!classes.includes(cls)) { classes.push(cls) }
  1471. noteRef(key, domTag, '#' + tag)
  1472. }
  1473. if (classes.length > 0) {
  1474. let joined = ''
  1475. for (c of classes) { joined = joined == '' ? c : joined + ' ' + c }
  1476. let merged = false
  1477. for (a of attrs) {
  1478. if (a.name == 'class' && a.text != null) { a.text = a.text + ' ' + joined merged = true }
  1479. }
  1480. if (!merged) { attrs.push({ name = 'class'; text = joined; }) }
  1481. }
  1482. // (§6 sibling entries: inside the literal `tag` would name the entry just written,
  1483. // so the source key is taken before the literal is built)
  1484. let srcKey = tag
  1485. // THE SITE: `file:line:col` of the literal, the id the JavaScript target mints the
  1486. // literal's class under — the browser builds this element's literal from it
  1487. // (hlLiteralNew), so a row created after a list changed has a literal too
  1488. let site = baseName(pathOf(key)) + ':' + v.line + ':' + v.col
  1489. return { k = 'el'; tag = domTag; key = srcKey; path = here; attrs = attrs; children = view.implied(domTag, children, here, site); site = site; }
  1490. }
  1491. // ---- an instance and its state -------------------------------------------------
  1492. // THE ROUTE'S GROUPS ARE THE CONSTRUCTION'S NAMED ARGUMENTS (creator ruling
  1493. // 2026-09-12): `:id` is a parameter of the class like any other, set and pinned
  1494. // before its root runs, so `_post = db.fetch(id)` on line 1 sees it. Nothing is
  1495. // laid over an instance afterwards, and nothing is spelled with a sigil.
  1496. construct(key, params) {
  1497. return hlLoad(pathOf(key), params)
  1498. }
  1499. // THE VIEW IS COMPILER OUTPUT, NOT A VALUE — and so, for a render, is the Style.
  1500. // This half reads the View's SYNTAX (`tree()` below, through hlSyntax) and never its
  1501. // value; `state()` ships neither to the browser; the stylesheet is folded into class
  1502. // names at build, by a walk that constructs its OWN instance and reads `Style` there.
  1503. // Evaluating them for a render therefore built a behaviour literal per element per
  1504. // `for` row, per request, for nobody: half the construction time of a 2000-row
  1505. // component, measured 2026-09-14.
  1506. //
  1507. // The framework says so in the one way the language already offers: it PINS them.
  1508. // An explicitly passed construction value outranks every computed default (the
  1509. // creator's rule of 2026-07-26), and a pinned member does not compute its default at
  1510. // all. No language rule about a View was needed and none was added.
  1511. renderArgs(key, args) {
  1512. let out = args
  1513. if (declares(key, 'View')) { out.View = null }
  1514. if (declares(key, 'Style')) { out.Style = null }
  1515. return out
  1516. }
  1517. // does the file-class declare a member of this name?
  1518. declares(key, name) {
  1519. for (m of hlMembers(gen, key)) { if (m.name == name && !m.isStatic) { return true } }
  1520. return false
  1521. }
  1522. // EVERY SERVER REFERENCE SITE of `key` (compile.hl `derivList`'s `srv`: an initializer
  1523. // that calls an imported class) that transitively reads `root` — the same closure
  1524. // client.hl's `moved()` walks locally for an ordinary derivation, run here instead
  1525. // because a server reference site must never run in the browser (see that file's
  1526. // `d.srv` branch). The VALUES come from `state` at the call site, already correct —
  1527. // `mount()` just constructed it — this only decides WHICH of its keys belong in
  1528. // `sync`, the same as `moved()` decides which of an instance's members to repaint.
  1529. serverSyncNames(key, root) {
  1530. let list = compiler.tableOf(gen, key).derivations
  1531. let moved = [root]
  1532. let rounds = 0
  1533. let again = true
  1534. while (again && rounds <= list.length) {
  1535. again = false
  1536. rounds = rounds + 1
  1537. for (d of list) {
  1538. if (!moved.includes(d.name)) {
  1539. for (r of compiler.memberNames(d.reads)) {
  1540. if (r != d.name && moved.includes(r)) { moved.push(d.name) again = true }
  1541. }
  1542. }
  1543. }
  1544. }
  1545. let names = []
  1546. for (d of list) { if (d.serverSite && d.name != root && moved.includes(d.name)) { names.push(d.name) } }
  1547. return names
  1548. }
  1549. // THE FRAMEWORK'S OWN CONSTRUCTIONS — the sheet walk (a component is constructed to
  1550. // read its `Style`), an imported static's holder — happen outside any request, and a
  1551. // class's root runs at construction: `me = session.user` there would meet a null,
  1552. // which a real render never has (every request carries a session, minted if the
  1553. // browser brought none). So they are handed an ANONYMOUS session — nobody logged in,
  1554. // never saved — and the root takes its logged-out branch (the creator, 2026-09-13:
  1555. // /__hl/app.css was a 500 while the page it styles was 200).
  1556. anon = null
  1557. anonSession() {
  1558. if (anon == null) { anon = new HlwSession(created = now(), seen = now()) }
  1559. return anon
  1560. }
  1561. // THE SESSION AT CONSTRUCTION. A component that declares a member `session` is
  1562. // constructed with the connection's session as that named argument — the same
  1563. // instance a server face gets as its trailing argument, and nothing ambient: a
  1564. // shell reads `me = session.user` at its root on the server, and a reload renders
  1565. // logged in (measured by the creator 2026-09-13: the shell rendered logged-out
  1566. // after a reload while the faces posted as alice). The browser gets only what a
  1567. // page may see of it (`state()` below), never the id the cookie carries.
  1568. constructionArgs(key, params, s, host, hdrs) {
  1569. let wantsSession = declares(key, 'session')
  1570. let wantsHost = declares(key, 'host')
  1571. let wantsHeaders = declares(key, 'headers')
  1572. if (!wantsSession && !wantsHost && !wantsHeaders) { return params }
  1573. let args = {}
  1574. for (k of params.keys()) { args[k] = params[k] }
  1575. if (wantsSession) { args.session = s }
  1576. if (wantsHost) { args.host = host }
  1577. if (wantsHeaders) { args.headers = hdrs }
  1578. return args
  1579. }
  1580. // THE HOST AT CONSTRUCTION (ticket #74), by the same rule: a component that declares
  1581. // a member `host` is constructed with the host the request named — the `Host`
  1582. // header without its port — so an app answering one address per subdomain renders
  1583. // the right page on the server. A navigation takes it from ITS carrier: the socket's
  1584. // upgrade request, or the POST's own. Null where the request named none, and for the
  1585. // framework's own constructions above, which answer no request.
  1586. hostOf(header) {
  1587. if (header == null || header == '') { return null }
  1588. let h = header.trim()
  1589. // an IPv6 literal keeps its brackets: `[::1]:8080` is `[::1]`
  1590. if (h.startsWith('[')) {
  1591. let close = h.indexOf(']')
  1592. return close < 0 ? h : h.slice(0, close + 1)
  1593. }
  1594. let colon = h.indexOf(':')
  1595. return colon < 0 ? h : h.slice(0, colon)
  1596. }
  1597. // THE REQUEST'S HEADERS AT CONSTRUCTION (ticket #105), by the same rule again: a
  1598. // component that declares a member `headers` is constructed with the request's
  1599. // headers as a hash, every name lowercase — `headers['accept-language']`. A
  1600. // navigation takes them from its carrier, as it takes the host: the socket's upgrade
  1601. // request, or the POST's own, so they are what this browser sends. The cookie and
  1602. // the credentials are LEFT OUT: a member is state, state is shipped to the page, and
  1603. // nothing about a session ever reaches page script (`session = null` is the way to
  1604. // it). An empty hash where the request named none; null for the framework's own
  1605. // constructions, which answer no request.
  1606. requestHeaders(raw) {
  1607. let out = {}
  1608. if (raw == null) { return out }
  1609. for (k of raw.keys()) {
  1610. let name = k.toLowerCase()
  1611. if (name != 'cookie' && name != 'authorization' && name != 'proxy-authorization') { out[name] = raw[k] }
  1612. }
  1613. return out
  1614. }
  1615. state(key, page) {
  1616. let out = {}
  1617. for (m of hlMembers(gen, key)) {
  1618. if (m.name != 'View' && m.name != 'Style' && !m.isStatic) {
  1619. // A FUNCTION MEMBER IS NOT STATE. JSON has no form for it, and shipping
  1620. // it as null would PIN null over the browser's own declaration (a
  1621. // construction argument outranks the default) — so it is left out, and
  1622. // the browser's instance evaluates `hideBadge = () => { … }` itself.
  1623. if (m.name == 'session') {
  1624. // the session's PUBLIC part: who is logged in — the id stays on the server
  1625. out.session = page.session != null ? { user = page.session.user } : null
  1626. } else if (hlTypeName(page[m.name]) != 'Function') { out[m.name] = page[m.name] }
  1627. }
  1628. }
  1629. return out
  1630. }
  1631. // everything the browser needs about one mounted component — and its children:
  1632. // every component node of its tree is a mount of its own, constructed with the
  1633. // bindings evaluated against THIS instance, keyed by the node's path
  1634. mount(key, params, s, host, hdrs) {
  1635. return mountIn(key, params, s, host, hdrs, [])
  1636. }
  1637. // `chain`: the keys of the mounts above this one — what tells a component that renders
  1638. // itself (#111) where its recursion stands
  1639. mountIn(key, params, s, host, hdrs, chain) {
  1640. let page = construct(key, renderArgs(key, constructionArgs(key, params, s, host, hdrs)))
  1641. let line = chain.slice(0)
  1642. line.push(key)
  1643. let m = { key = key; params = params; view = tree(key); state = state(key, page); page = page; kids = {}; session = s; host = host; headers = hdrs; above = line; }
  1644. mountKids(&m, m.view, {}, '', true)
  1645. return m
  1646. }
  1647. // `rowKey` is what tells one row's child from the next one's: the index of every
  1648. // enclosing `for` iteration, appended to the component node's path. A component
  1649. // outside every `for` has the empty rowKey and keeps the key it always had.
  1650. // `standing`: every `if` on the way down took this branch. A branch that does not stand is
  1651. // mounted too — the browser switches to it without asking — EXCEPT a reference to a
  1652. // component already above it: a recursive component (#111) mounted in both arms of every
  1653. // `if` doubled per level, and under an `if` whose data does not shrink it never ended.
  1654. // The browser builds such a child itself when its branch comes to stand.
  1655. mountKids(&m, nodes, rows, rowKey, standing) {
  1656. for (n of nodes) {
  1657. if (n.k == 'component' && !standing && m.above.includes(n.key)) {
  1658. // not mounted: see above
  1659. } else if (n.k == 'component') {
  1660. let args = {}
  1661. for (b of n.bindings) {
  1662. if (b.text != null) { args[b.name] = view.refValue(b) }
  1663. else if (b.member != null) { args[b.name] = view.value({ k = 'member'; name = b.member; }, m.page, rows) }
  1664. else if (b.ref != null) { args[b.name] = view.value(b.ref, m.page, rows) }
  1665. }
  1666. m.kids[view.kidKey(n.path) + rowKey] = mountIn(n.key, args, m.session, m.host, m.headers, m.above)
  1667. // THE FILL IS THIS FILE'S FRAGMENT, not the child's: a component standing
  1668. // inside it is a child of THIS mount, evaluated in THIS scope
  1669. if (n.fill != null) { mountKids(&m, n.fill, rows, rowKey, standing) }
  1670. } else if (n.k == 'el') {
  1671. mountKids(&m, n.children, rows, rowKey, standing)
  1672. } else if (n.k == 'if') {
  1673. let taken = view.value(n.cond, m.page, rows)
  1674. mountKids(&m, n.then, rows, rowKey, standing && taken)
  1675. mountKids(&m, n.other, rows, rowKey, standing && !taken)
  1676. } else if (n.k == 'for') {
  1677. // ONE MOUNT PER ROW: the row is the scope the bindings are evaluated in,
  1678. // so the child is constructed once per entry, with that entry's values
  1679. let entries = view.value(n.list, m.page, rows)
  1680. if (entries != null) {
  1681. let ri = 0
  1682. for (entry of entries) {
  1683. let inner = rows + {}
  1684. inner[n.row] = entry
  1685. // THE ROW'S KEY, not its index: a child of a row travels with the
  1686. // record it was mounted for (view.rowKey, the one rule the server's
  1687. // HTML walk and the browser's region read too)
  1688. mountKids(&m, n.body, inner, rowKey + '#' + view.rowKey(entry, ri), standing)
  1689. ri = ri + 1
  1690. }
  1691. }
  1692. }
  1693. }
  1694. return null
  1695. }
  1696. // the route component and, if it declares one, its wrapping shell.
  1697. // THE PARENT IS THE GATE (COMPONENTS §5, creator 2026-08-26): a shell whose render
  1698. // places no `slot` — none in its View, or one inside a region that stands false for
  1699. // this request — gets no page. The page is then not CONSTRUCTED, not only not shown:
  1700. // its root does not run, and nothing of it reaches the document or the seed. The
  1701. // shell is built first and rendered to learn that; `placed` is the browser's answer
  1702. // when it already has one (a navigation into its own shell, or a region that opened),
  1703. // and the server's render is not asked then.
  1704. mounts(m, s, host, hdrs, placed) {
  1705. let key = keyOf(m.route.component)
  1706. let out = { page = null; shell = null; shellHtml = null; }
  1707. let w = hlFile(gen, key).wrapper
  1708. let open = w == null || placed == true
  1709. if (w != null) { out.shell = mount(w, m.params, s, host, hdrs) }
  1710. if (w != null && placed == null) {
  1711. out.shellHtml = renderOf(out.shell, shellRoot(out.shell), minify ? null : tab, slotMarker)
  1712. open = out.shellHtml.indexOf(slotMarker) >= 0
  1713. }
  1714. if (open) { out.page = mount(key, m.params, s, host, hdrs) }
  1715. return out
  1716. }
  1717. // where the page goes in the shell's first render: the page's HTML replaces it
  1718. static slotMarker = '<!--hl:slot-->'
  1719. // `body { … }` as the shell's View root IS the page body (COMPONENTS §6): its
  1720. // children are rendered into the document's body instead of nesting one
  1721. shellRoot(shell) {
  1722. let root = shell.view
  1723. if (root.length == 1 && root[0].k == 'el' && root[0].tag == 'body') { return root[0].children }
  1724. return root
  1725. }
  1726. // A MOUNT IS NOT ITS TREE. What the browser needs per mount is what makes THIS one
  1727. // this one — its key, the route's params, the state the server evaluated, its
  1728. // children — while the View tree belongs to the COMPONENT and stands once in the
  1729. // seed's blueprint table under the same key. Shipping it per mount put the same tree
  1730. // in the payload as many times as the page mounted that component.
  1731. ship(mount) {
  1732. let kids = {}
  1733. for (k of mount.kids.keys()) { kids[k] = ship(mount.kids[k]) }
  1734. return { key = mount.key; params = shipParams(mount.params); state = mount.state; module = moduleUrl(mount.key); kids = kids; }
  1735. }
  1736. \* A FUNCTION-VALUED BINDING IS NOT SHIPPED — the same rule `state` keeps for a
  1737. function MEMBER, for the same reason. A routine a host hands a child
  1738. (`PostForm { onPosted = ... }`) has no JSON form, and shipping it as null
  1739. would PIN null over the browser's own binding: a construction argument
  1740. outranks what the client evaluates. It is left out, and the browser binds it
  1741. from the host instance when it builds the mirror, exactly as it does for a
  1742. member. Until mission 320 it rode the wire as null because `JSON.stringify`
  1743. invented that null; the language refuses to now, which is what made the lie
  1744. visible. *\
  1745. shipParams(params) {
  1746. let out = {}
  1747. for (k of params.keys()) {
  1748. if (hlTypeName(params[k]) != 'Function') { out[k] = params[k] }
  1749. }
  1750. return out
  1751. }
  1752. // A COMPONENT IS SERVED AT ITS OWN `.hl` URL. A browser executes a module by
  1753. // its MIME type, never by its extension, so `text/javascript` on
  1754. // `/components/home.hl` is a module — and the url the page loads is then the
  1755. // path the author wrote in the route table, with nothing renamed in between.
  1756. // The route that answers it is the APP's (a `function` route in the manifest),
  1757. // because where an app serves its modules from is the app's to say.
  1758. modulePath(key) {
  1759. return '/' + key
  1760. }
  1761. // the url a module is LOADED at: its path and the build's version (see buildMark)
  1762. moduleUrl(key) {
  1763. return modulePath(key) + version()
  1764. }
  1765. // `?v=<hash>`: THE BUILD'S VERSION. The hash is over every text this app serves
  1766. // under it — the runtime, each component module and package half as compiled (the
  1767. // marks still in them), and the stylesheet — so any change to any of them, a
  1768. // new compiler's output included, is a new version. Computed at the first ask and
  1769. // again after a watched save; one hash for the whole build, because the modules
  1770. // import each other and a per-module hash would have to be in its importers' text.
  1771. version() {
  1772. if (buildHash == null) {
  1773. let all = runtime + stylesheet()
  1774. for (k of served.keys()) { all = all + module(k) }
  1775. for (k of packageHalfKeys(graph)) { all = all + module(k) }
  1776. // AN OFFLINE APP'S WORKER AND MANIFEST ARE PART OF THE BUILD: the worker's entry
  1777. // script names this hash, so a changed worker or a changed icon list is a new
  1778. // script to the browser, which installs it and drops the old build's cache
  1779. if (offlineKeys != null) { all = all + workerText() }
  1780. if (installable()) { all = all + JSON.stringify(webManifest()) }
  1781. buildHash = sha256(all).slice(0, 16)
  1782. }
  1783. return '?v=' + buildHash
  1784. }
  1785. // the headers of a versioned answer: a request naming THIS build's version is cached
  1786. // for a year and never revalidated; one naming another (or none) must not be, or a
  1787. // cache would keep this build's text under a url the next build reuses
  1788. cached(req, type) {
  1789. let h = { 'Content-Type' = type }
  1790. h['Cache-Control'] = req.query != null && req.query.v == buildHash && buildHash != null ? 'public, max-age=31536000, immutable' : 'no-cache'
  1791. return h
  1792. }
  1793. // A PACKAGE'S BROWSER HALF IS SERVED BESIDE THE RUNTIME. Not a convention this
  1794. // file invents: the compiler derives the specifier it writes into every importing
  1795. // module from the runtime url it is handed, and for the same reason that url is
  1796. // one member here — one url means ONE ES-module instance, and two would be two
  1797. // copies of the package's browser state. This is that derivation, on this side.
  1798. halfUrl(pkg) {
  1799. return halfDir + '/' + pkg + '/client.js'
  1800. }
  1801. // The module of the `.hl` url a request names — the on-demand half of the
  1802. // transpile. The app's function route hands the path here.
  1803. serveHl(urlPath, req) {
  1804. let key = urlPath.slice(1)
  1805. if (shipped[key] == null) {
  1806. let js = module(key)
  1807. if (js == null) { return notFound(urlPath) }
  1808. shipped[key] = js.replaceAll(buildMark, version())
  1809. }
  1810. return new Response(shipped[key], { headers = cached(req, 'text/javascript; charset=utf-8') })
  1811. }
  1812. // ---- the stylesheet -------------------------------------------------------------
  1813. // A `Style { }` member is an ORDINARY member of the file's class, so its value
  1814. // is what a construction produces — the statics it reads already folded, the
  1815. // `+` rule merge already the language's. That is the whole input; style.hl does
  1816. // the walk. The project's styles file comes first so its global rules stand
  1817. // under every component's, then every component this server can mount, in the
  1818. // order `served` holds them (the pages and the wrapper chain above them — the
  1819. // same set that has a browser module).
  1820. stylesheet() {
  1821. if (sheetText == null) {
  1822. css.gen = gen
  1823. css.view = view
  1824. let files = []
  1825. if (styles != null) {
  1826. // THE STYLES FILE: root members, its inherits first. It has to be in the
  1827. // graph (the app imports it) — its rules are read in authored order off
  1828. // the syntax and their values off the constructed instance.
  1829. let tokenKeys = [] // the token files already walked
  1830. for (sk of inheritChain(keyOf(styles))) {
  1831. if (graph.files[sk] == null) { hlError("the styles file " + sk + " is not in the project graph — import it from the app's entry so its rules can be read in authored order") }
  1832. // A TOKEN FILE the styles file member-imports (`import { dark } from './tokens.hl'`,
  1833. // there `static dark = var('#123')`) is walked BEFORE it, so its var() tokens are
  1834. // named and written into :root first. Before ticket #39 part 2 only the chain's own
  1835. // non-static members were named, and every imported token was an unknown id: a 500
  1836. // "a css variable is used before any styles file declared it". (The architect's
  1837. // patch from mission 021 of the tickets app, taken upstream.)
  1838. for (tk of tokenFilesOf(sk)) {
  1839. if (!tokenKeys.includes(tk)) {
  1840. tokenKeys.push(tk)
  1841. files.push({ key = tk; cls = graph.files[tk].class; rules = tokenRules(tk); aliases = []; refs = []; tags = []; hasView = false; isStyles = true; })
  1842. }
  1843. }
  1844. let inst = hlLoad(pathOf(sk), {})
  1845. let rules = []
  1846. let own = {}
  1847. for (m of hlMembers(gen, sk)) {
  1848. // D32: `mode = 'static'` makes EVERY root member static (the file
  1849. // directive's whole point — a token file need not repeat the keyword),
  1850. // so `m.isStatic` cannot be what decides whether a member is a css
  1851. // rule/token: that used to exclude every rule of a mode='static' file
  1852. // and emit none of them. What a rule IS — a var() token or a block —
  1853. // is a question about its VALUE, which css.hl already answers below and
  1854. // in sheet() (isBlock / isVar); static or not, a plain-scalar helper
  1855. // constant folds into nothing there regardless.
  1856. if (m.node != 0) {
  1857. let v = hlSyntax(gen, sk, m.node)
  1858. // a merged rule (`a = b + { … }`) is a block too (css.entriesOf)
  1859. rules.push({ key = m.name; node = m.node; value = inst[m.name]; isBlock = v != null && (v.tag == 'object_expression' || (v.tag == 'binary_expression' && css.isHybridValue(inst[m.name]))); })
  1860. own[m.name] = true
  1861. }
  1862. }
  1863. // EACH FILE OF THE CHAIN IS ITS OWN INSTANCE, so a token it INHERITS is a second
  1864. // CssVar with its own id: `body { color = dark }` in the child held an id the
  1865. // walker never named (ticket #39 part 1). The inherited tokens are registered
  1866. // under their names as ALIASES — named, never written into :root a second time.
  1867. // (D32, as above: `css.isVar` alone decides it, not `m.isStatic`.)
  1868. let aliases = []
  1869. for (pk of inheritChain(sk)) {
  1870. if (pk != sk) {
  1871. for (m of hlMembers(gen, pk)) {
  1872. if (own[m.name] == null && css.isVar(inst[m.name])) { aliases.push({ key = m.name; value = inst[m.name]; }) }
  1873. }
  1874. }
  1875. }
  1876. // the styles file's ROOT is collected here and not by css.entriesOf, so the
  1877. // same refusal has to be raised here: two `@media` root members are one
  1878. // name with one value and would emit the first block empty
  1879. css.guardMedia(sk, rules)
  1880. files.push({ key = sk; cls = graph.files[sk].class; rules = rules; aliases = aliases; refs = []; tags = []; hasView = false; isStyles = true; })
  1881. }
  1882. }
  1883. for (k of served.keys()) {
  1884. if (hasStyle(k)) {
  1885. tree(k) // the refs and tags are collected while the tree is built
  1886. let inst = construct(k, constructionArgs(k, {}, anonSession(), null, null))
  1887. files.push({ key = k; cls = graph.files[k].class; rules = css.entriesOf(k, styleNode(k), inst.Style); refs = styleRefs[k] != null ? styleRefs[k] : []; tags = styleTags[k] != null ? styleTags[k] : []; ids = viewIds(k); hasView = viewHandle(k) != 0; isStyles = false; })
  1888. }
  1889. }
  1890. sheetText = css.sheet(files)
  1891. }
  1892. return sheetText
  1893. }
  1894. // the .hl files a styles file member-imports that hold var() tokens (a package like
  1895. // hl:web/css is skipped), in import order
  1896. tokenFilesOf(key) {
  1897. let out = []
  1898. for (imp of graph.files[key].imports) {
  1899. if (imp.key != null && !imp.key.startsWith('hl:') && imp.names != null && imp.names.length > 0 && graph.files[imp.key] != null) {
  1900. if (!out.includes(imp.key) && tokenRules(imp.key).length > 0) { out.push(imp.key) }
  1901. }
  1902. }
  1903. return out
  1904. }
  1905. // a token file's var() tokens as styles-file root rules, in authored order — EVERY static
  1906. // token of the file, not only the imported names (a token may name another). The values
  1907. // are the file's statics, evaluated once per process: the same CssVar instances, with the
  1908. // same ids, the importer holds.
  1909. tokenRules(key) {
  1910. let rules = []
  1911. let inst = null
  1912. for (m of hlMembers(gen, key)) {
  1913. if (m.isStatic && m.node != 0) {
  1914. if (inst == null) { inst = hlLoad(pathOf(key), {}) }
  1915. let v = inst[m.name]

Only the first lines are shown.

Branches

Latest commits

  • d8b12d67tracker#27 (mission 060): short ids for movies, series and persons — old 702 kept (data/old-short-ids.json), new random [a-z0-9]{5} unique across both, claimed at creation, background backfill (resumes), shown under poster/photo, /<shortId> → 301; gate 259, tests/realdata-060*, README + STATUSmre
  • f14db671tracker#22-#25 (mission 058): episode air dates, season check = all episodes watched, movie watched check (+ /my/movies count), /genres/<genre> pages (movies + series, newest first, paginated); gate 238, tests/realdata-058.mjs, README + STATUSmre
  • 1704ec45tracker#17 (mission 057): season caret down/up, skeleton rows while a season loads, sessionless showSeasonEpisodes face (no page re-mount), client-only close; gate 214, tests/realdata-057.mjs, README + STATUSmre
  • f2fe3e36mission 056: README + STATUS (merge, fixes, Hybriel 8590df63, real-data check), tests/realdata-056.mjs, tools/check-public-slugs.hlmre
  • f40c250emission 056: re-vendor hybriel master 8590df63 (#121, #122); an adult title's page is Not found for non-followers; gate: leave the page before stopping the servermre
  • 2b7fdd6cmission 056: signed-out header one row on phones ("Log in", nowrap), backfill skips adult titles' posters, gate checksmre
  • 2c53d5efMerge branch 't16-person' (tracker#16 person pages) into main; filmography shows only public titles (054 adult flag), gate race fix (backfill start line)mre
  • c171227emission 054: hide adult/unknown titles from the public lists and the search; in-app adult-flag backfill (TMDB details + poster per title, resumes), gate + real-data proofmre
  • 139fafd8tracker#16: short bio (4 lines, click = all), real-data check script, README + STATUSmre
  • 93be9476tracker#16: person pages /person/<slug> with the filmography fetched from TMDB on the first visit (step by step), gatemre
  • 47a3cae6STATUS: mission 053 merge commit idsmre
  • dcc5eecaMerge branch 't14-search'mre
  • 03edc783Merge branch 't15-tvmaze'mre
  • 71b46345tracker#15: numbering check by date or title, placeholder titles in other languages, docs + real-data proofmre
  • 6bb2daf1tracker#13: homepage (tiles, intro, latest movies/shows), /shows, /movies/page/N, /my/movies; lists cached in memorymre
  • b8bd1157tracker#14: README + STATUS (search, real-data numbers, gate, merge notes)mre
  • 65c694a8tracker#14: search — header magnifier, /search/<text> (in-memory word-prefix index over titles + people), Fetch from web (TMDB search/multi, ours left out), Add = import via syncShow; gate +25 checks, real-data scriptmre
  • 34f2c15btracker#15: TVmaze merge in the sync (gaps only: new episodes/seasons, empty titles/air dates; numbering check), fake TVmaze episodes + gatemre
  • cbdc4ea7tracker#12: link icons TMDB/IMDb/TVDB/TVmaze; sync fills missing ids (TVmaze lookup); movies fetched via /movie/mre
  • b105bcd8tracker#11: Hybriel master ff51cf46 (checks no longer vanish), mobile-first styles, carets, follow button, sign-in modal, inverted check, orange castmre