tracker
All repositories: gitoria
7.8 KB
// THE SESSION LAYER — a port of the archived hl:web's web_session.hl (mission 093,// 252, 255, 261), re-read 2026-09-12. The design is the creator's own from// hybrilior: one cookie holds a random id, the SERVER holds everything else; a// session fans out to every socket that shares the cookie; delivery is a// predicate per socket (here: the app's `audience`).//// THE FILE IS THE SESSION; MEMORY IS A CACHE OF THE ONES IN FLIGHT. A lookup// misses in memory, reads ONE file, revives it. Nothing loads the directory at// boot; a restart is a cold cache, not a wipe. The boot sweep walks the store// once to REMOVE expired files, never to revive.//// THE FILENAME IS A HASH OF THE ID, NEVER THE ID: a value a client sent must not// become a path, and `ls` on the store must not hand out live ids.//// THREE CLOCKS, all seconds: `maxAge` is how long a session stays VALID after its// last touch (the cookie's Max-Age too); `idle` how long it stays RESIDENT in// memory with no live socket (eviction is non-destructive — the file is the// truth — so a short clock is safe); `sweepEvery` how often the sweep may run,// piggybacking on real requests (no timer: a site with no requests has nothing// to sweep). `stampDrift` bounds how far the on-disk `seen` may lag the one in// memory, so an active session does not cost a disk write per asset request.//// `dir` is the store's absolute path, or null for memory only (the app's// `sessionDir = false`). The default the framework hands in is `<project>/.sessions`// — a DOT directory, which the dev watcher skips by construction (measured in the// archive: a store inside the watched tree made every session write a re-analysis).import HlwSession from './session.hl'import { randomToken } from 'hl:http1'import { now } from 'hl:time'import { sha256 } from 'hl:crypto'import { readFile, listDir, exists, writeFile, mkDir, remove } from 'hl:fs'String dir = nullNumber maxAge = 1209600Number idle = 900Number sweepEvery = 300Number stampDrift = 60String cookie = 'hlsid'Boolean secure = false // the app is reached over https: the cookie carries `Secure`String domain = '' // the cookie's `Domain` (ticket #44): '' = this host onlymap = {} // id → Session, the resident onespersistedSeen = {} // id → the `seen` last written to disk (write avoidance only)lastSweep = 0reported = {} // path → true: a foreign file in the store, said once// ---- the store --------------------------------------------------------------------path(sid) {if (dir == null) { return null }return dir + '/' + sha256(sid)}open() {if (dir != null) { mkDir(dir, 448) }lastSweep = now()if (dir != null) {let n = sweepStore(now() - maxAge * 1000)if (n > 0) { console.log('sessions: boot sweep removed ' + n + ' expired session file(s) from ' + dir) }}return null}load(sid) {let p = path(sid)if (p == null || !exists(p)) { return null }let raw = readFile(p)if (raw == null || !isSessionText(raw)) { return null }let rec = JSON.parse(raw)if (rec == null || rec.id != sid) { return null }let s = rec > new HlwSession()map[sid] = spersistedSeen[sid] = s.seenreturn s}put(s) {let p = path(s.id)if (p == null) { return null }if (!exists(dir)) { mkDir(dir, 448) }writeFile(p, JSON.stringify(s), 384)persistedSeen[s.id] = s.seenreturn null}drop(sid) {let p = path(sid)if (p != null) { remove(p) }persistedSeen[sid] = nullreturn null}// ---- the cookie ----------------------------------------------------------------parseCookies(header) {let out = {}if (header == null) { return out }for (part of header.split(';')) {let eq = part.indexOf('=')if (eq > 0) { out[part.slice(0, eq).trim()] = part.slice(eq + 1).trim() }}return out}cookieHeader(sid) {return cookie + '=' + sid + '; Path=/; HttpOnly; SameSite=Lax; Max-Age=' + maxAge + (domain != '' ? '; Domain=' + domain : '') + (secure ? '; Secure' : '')}// ---- the map ---------------------------------------------------------------------// the session a cookie header names: resident, or revived from its file; null when// it names none (no cookie, or an id nobody knows — that browser is anonymous)resolve(cookieHeader) {return byId(parseCookies(cookieHeader)[cookie])}byId(sid) {if (sid == null) { return null }let s = map[sid]if (s == null) { s = load(sid) }if (s == null) { return null }touch(s)return s}// a new session, resident and on disk; the caller sets the cookiemint() {maybeSweep([])let sid = randomToken(32)let s = new HlwSession(id = sid, created = now(), seen = now())map[sid] = sput(s)return s}// ONE WRITE PATH for the stamp: every request or frame that presents a session// moves `seen`; the file follows only when it has drifted `stampDrift` secondstouch(s) {s.seen = now()if (dir != null) {let last = persistedSeen[s.id]if (last == null || s.seen - last >= stampDrift * 1000) { put(s) }}return null}// what a face wrote (login, a cart) reaches the file now, not at the next driftsave(s) {if (s != null) { put(s) }return null}// ---- the sweep -------------------------------------------------------------------// `live` is the set of session ids with an open socket — those are never evictedmaybeSweep(live) {if (now() - lastSweep >= sweepEvery * 1000) { sweep(live) }return null}sweep(live) {lastSweep = now()let cutoff = now() - maxAge * 1000let cold = now() - idle * 1000let evicted = 0let expired = 0let next = {}for (k of map.keys()) {let s = map[k]if (s == null) {// dropped earlier} else if (s.seen <= cutoff) {drop(k)expired = expired + 1} else if (dir != null && s.seen <= cold && !live.includes(k)) {persistedSeen[k] = nullevicted = evicted + 1} else {next[k] = s}}map = next // a fresh hybrid: the compaction (archive, mission 261)let dropped = 0if (dir != null) { dropped = sweepStore(cutoff) }if (evicted + expired + dropped > 0) {console.log('sessions: sweep — evicted ' + evicted + ', expired ' + expired + ', ' + dropped + ' file(s) removed, ' + map.keys().length + ' resident')}return null}sweepStore(cutoff) {let gone = 0if (!exists(dir)) { return gone }for (e of listDir(dir)) {let raw = isSessionName(e.name) && e.type == 'file' ? readFile(e.path) : nullif (raw != null && !isSessionText(raw)) { raw = null }if (raw == null) { foreign(e) }if (raw != null) {let rec = JSON.parse(raw)if (rec != null && rec.seen <= cutoff) {remove(e.path)persistedSeen[rec.id] = nullgone = gone + 1}}}return gone}// ---- what the store holds that is not a session -----------------------------------// A FILE THAT IS NOT A SESSION IS SKIPPED, NEVER PARSED. The store is a directory an// operator can put anything into (a marker, an editor's backup, a copy), and// `JSON.parse` aborts the program on text that is not JSON — at the boot sweep that was// the whole server, before it served anything (ticket #26). Every file this layer// writes is named by a sha256 (64 lowercase hex characters) and holds a Session's JSON,// whose keys come out sorted, so it opens with `{"created":`; `writeFile` renames a// finished temp file over the target, so a torn session file cannot occur. A file that// is not that shape is left where it is, and said once.isSessionName(name) {if (name.length != 64) { return false }for (c of name.split('')) {if (!'0123456789abcdef'.includes(c)) { return false }}return true}isSessionText(raw) {let t = raw.trim()return t.startsWith('{"created":') && t.endsWith('}')}foreign(e) {if (reported[e.path] == null) {reported[e.path] = trueconsole.log('sessions: skipped ' + e.path + ' — not a session file (the store names its files by a hash and writes JSON); it is left where it is')}return null}
Branches
- mainmain branch
Latest commits
- eb3b9205tracker: report 031mre
- 9b5d2e89tracker mission 031: README (What it does, Test: four gates + the #32 checks, Files: theme/, new pages), STATUS (real copy, A/B load, how to repeat, open points), LOGmre
- 39950e4ctracker#32 (mission 031): the WorldAPI theme (theme/ vendored verbatim from layouts.worldapi.org 85b5654; styles.hl inherits it: accent green-dark, type colours 1-6; own base/header rules, row lines, genre-pill and inverted-button frames removed, the season foldable keeps its line; check-theme 21 -> 0, 4th deploy gate; main actions class primary) and the #32 header (theme AppHeader/MainMenu/UserMenu/Sidebar/ContentFirst: desktop brand, search, Series|Shows|Movies|Genres|People, user icon with Unwatched..Settings, Logout; signed out the ident selector, phone the iD icon dropdown; phone menu in the sidebar overlay; marked entry by :has); /find -> /search/<q>, /genres, /people(/<letter>), /settings; main { ContentFirst { slot } } works around the hl:web one-line slot bug; gates 365/0, 32/0, 52/0, check-theme 0mre
- a386dc92tracker: reports 029 + 030mre
- 71e0fd7dtracker missions 029 + 030: README (What it does, Files, gate count), STATUS (real-copy numbers, how to repeat, open points), LOGmre
- d36ea6eatracker#34 + #35 (mission 030): Follow directly under the poster, as wide as the poster (show.hl, styles.hl); the status pill next to a series' title — TVmaze's status (new tvmazeStatus, stored by the sync's TVmaze merge) else TMDB's, TVmaze Ended + TMDB Canceled = Canceled, inverted (filled, dark text, no border), green running / yellow pending / red canceled / muted ended (shows.hl statusOf); the daily delta asks TVmaze's status of an unfollowed series TVmaze's change list names (dailysync.hl syncRunStep, sync.hl syncTvmazeStatus); the status backfill after the details repair (backfill.hl, jobs.hl statusTick; resumable, 550 ms per TVmaze request); gates 354/0, 32/0, 52/0mre
- 7d7d4487tracker#33 (mission 029): reduced titles — every title TMDB's details never went through this app (no detailsAt, no tmdbSync) is incomplete (shows.hl isIncomplete; the old tracker's migrated rows passed #26's test: 5,697 non-adult on the live copy, 691 series without seasons); the repair job does the visibly reduced first (shows.hl missingParts), the page completes one on open; a title TMDB has no poster for (The Remaining) shows the placeholder; tools/count-incomplete.hl; gate fixtures stand for synced titles (tmdbSync), tests/seed-reduced.hl + #33 checks; gates 347/0, 32/0, 52/0mre
- 661c2592tracker: report 028mre
- 27c916fatracker mission 028: README ("Code order", the new file map), STATUS (counts before/after, tests, how to repeat, open), LOGmre
- d924f398tracker mission 028: comments name the new files (sync.hl, dailysync.hl, backfill.hl, credits.hl, jobs.hl, images.hl …); tools/ref-params.py + tools/lambda-audit.py also scan lib/ (they globbed the root only), lambda-audit counts a plain `x = p` alias like `let x = p`mre
- 2e89b968tracker mission 028 (code order) 5/5 let: `let` only where a variable is reassigned — 667 never-reassigned lets became plain declarations (project.hl, lib/, components/, tools/, tests/); kept: 264 in loop bodies (a plain declaration there is 'Cannot reassign' on the 2nd pass), 234 reassigned, 27 whose name is also a member/outer/free name (a plain write would rebind it); tools/let-audit.py decides and fixes (README 'Code order'); tests/realdata-m028.{sh,mjs} = the page-output diff on a real copy; gates 342/0, 32/0, 52/0, real-copy pages identicalmre
- 54796ff2tracker mission 028 (code order) 4/5 thin faces + last copies: the show page's check/follow faces call lib/watches.hl toggleWatched / toggleSeasonWatched (seasonAllWatched moved there) and lib/follows.hl toggleFollowed; both logins (header selector face, /login/callback) share lib/users.hl userOfCode; todayStr/listOf copies in components and the export readers copied into tools/migrate.hl + tools/old-short-ids.hl now once (lib/util.hl, lib/export.hl); gates 342/0, 32/0, 52/0; old-short-ids output byte-identical, migrate output identicalmre
- 06b078e3tracker mission 028 (code order) 3/5 project.hl is the map: config, routes, wiring and a feature → file index (914 → 258 lines); the background jobs (daily sync run, backfills, details repair, credits job, merge, short ids, collection seed) moved unchanged into lib/jobs.hl (a class: their state is reassigned every step, a static cannot be; one instance made after the server), the login callback into lib/users.hl, poster/photo serving into lib/images.hl, the /shows/<slug> rule into lib/shows.hl showsMovedPath; route handlers are thin wrappers; gates 342/0, 32/0, 52/0, real-copy pages identicalmre
- 94716fd2tracker mission 028 (code order) 2/5 util + topics: lib/util.hl holds envOr, storageDir, postersDir, profilesDir, newId, hexDigits, todayStr, dateOr, textOr, hasId, listOr, firstOf, sortDesc once (were copied into up to 5 files); tmdbsync.hl split into tmdb.hl (TMDB/TVmaze requests), sync.hl (one title's sync), sync-helpers.hl, backfill.hl; details.hl split into details.hl, credits.hl, credits-helpers.hl (isIncomplete to shows.hl); search-helpers.hl (words, query, ranking, slugs); collections.hl (the TMDB collection seed, out of franchises.hl); deltasync.hl renamed dailysync.hl; no behaviour change: gates 342/0, 32/0, 52/0, real-copy pages identicalmre
- 186079b0tracker mission 028 (code order) 1/5 move: every root .hl except project.hl into lib/ (styles.hl into components/), import paths only; gates 342/0, 32/0, 52/0; real-copy pages identicalmre
- 4f47f181tracker: report 027mre
- dc1d4be4tracker mission 027: Hybriel master 06617221 vendored (plugin allocator fixes 3a781359 + 413f60e4); real copy RSS through first-start jobs + 400 loads flat ~2.55 GB (190aa11d 2.3 -> 5.6 GB), page times <= 1.1x; gates 342/0, 32/0, 52/0mre
- 84e1b3e1tracker: reports 025 + 026mre
- dc40d859tracker#31 (mission 026): duplicate titles merged — the 68 type+tmdbId pairs held by 157 records were the old tracker's (all migrated); merge.hl repair job (own clock, before the TMDB jobs) keeps one keeper per title (follows/watches > old short id > oldest), moves follows, watches, seasons, cast, credits, timelines, tombstones the rest (mergedInto, never deleted), slugs + short ids 301 to the keeper; stray seasons merged into their listed twin (Reacher S3 watches) or linked when watched; search import re-checks before its put; deploy.sh waits up to 90 s for 200; real copy 68 -> 0 dup ids, az5b2 follows/watches equal; gates 342/0, 32/0, 52/0mre
- 2667da05tracker#30 (mission 025): /my/ pages from slim cached title cards, episode rows and watch sets (after the jobs /my/series 1.8 s -> 0.06 s, /my/unwatched 4.1 -> 0.18 s); timeline page shows its name once; franchise widget under the poster/title; movies with TV leftovers (First Contact) go through the details repair; tools/count-tmdb-ids.hl; gates 327/0, 52/0, 32/0mre