constitution · epochs · watch · epoch 3

comparison

c_ebc883667d61 (tommy-mor) vs c_3f420a1f5aa1 (tommy-mor)

download prompt · raw event · cmp_120f9ab0f4da71

council reasoning

~anthropic/claude-sonnet-latest · winner B · 75:25 · permalink

Side B implements a real, working feature: server-rendered theme switching via cookies (with localStorage migration, /theme route, layout signature changes across many pages) plus a legitimate multi-room URL-prefixing bugfix for ontology/forum links in private rooms, backed by unit tests. Side A is purely a file-split/dedup cleanup removing a duplicate forum.rs (structural refactor with no behavioral change), which is useful hygiene but far less substantive than B's functional additions and bugfixes.

~x-ai/grok-latest · winner B · 2:5 · permalink

Side B lands real product and API substance: cookie-backed themes with POST /theme, auth flows that re-issue the theme cookie, layout/CSS integration, plus item_path_for_api_in_room/forum_thread_web_url wired through rpc with tests so private-room JSON links are correct. Side A mainly deletes the leftover monolithic forum.rs and finishes the forum/ module split (mod, feed, views, etc.), which is lasting structure but largely reorganization without new behavior.

openai/gpt-chat-latest · winner B · 4:1 · permalink

Side B adds enduring functionality: a persistent theme system (theme cookie handling, `/theme` endpoint, layout updates, propagation through auth and page rendering) and correct room-aware web/API URLs via `item_path_for_api_in_room` and `forum_thread_web_url`, with accompanying tests and widespread RPC fixes. Side A mainly removes the obsolete monolithic `server/src/html/forum.rs` and establishes `forum/mod.rs` as the sole module root, a valuable cleanup that resolves module ambiguity but largely reorganizes existing code rather than adding new behavior.

sides

A — c_ebc883667d61 (tommy-mor)

message

[21b57b50] fix(html): drop duplicate forum.rs; use forum/ as sole module root

Removes the leftover monolithic file so mod forum resolves to forum/mod.rs
without ambiguity. Keeps feed, views, and other split modules as the source.

Made-with: Cursor

diff preview

diff --git a/server/src/html/forum.rs b/server/src/html/forum.rs
deleted file mode 100644
index 5ad8dfc84dd735d589432e2c613ff687a75f2e61..0000000000000000000000000000000000000000
--- a/server/src/html/forum.rs
+++ /dev/null
@@ -1,1405 +0,0 @@
-use axum::{
-    extract::{Path, Query, State},
-    http::{HeaderMap, StatusCode, Uri},
-    response::{Html, IntoResponse},
-};
-use axum_extra::extract::cookie::CookieJar;
-use maud::{html, Markup};
-use serde::Deserialize;
-
-use crate::{
-    api::optional_principal,
-    canonical_path::{canonicalize_item, canonicalize_tag},
-    events::ThreadCapability,
-    form_template::template_json_compact,
-    identity::parse_username,
-    reducer::{scope_from_room_wire, ReducerState, ScopeId},
-    state::AppState,
-    timeago,
-};
-use serde_json::json;
-
-use super::js_string_literal;
-use super::ui_action::{HtmlUiAction, UI_RPC_FIELD};
-
-use super::{
-    bc_segment, bc_threads, cli_panel, layout, now_ms, profile_href, recency_class,
-    render_linkified_with_embeds_in_scope, theme_from_jar, theme_next_from_uri, JsBuilder,
-};
-
-#[derive(Clone)]
-struct ThreadRow {
-    tag: String,
-    subtitle: Option<String>,
-    last_ts: i64,
-    ingests: usize,
-}
-
-#[derive(Clone)]
-struct RoomMemberRow {
-    username: String,
-    capabilities: Vec<&'static str>,
-}
-
-/// URL helpers for public `/t/…` and private room threads `/r/{short}/{slug}/t/…`.
-#[derive(Clone)]
-pub struct ThreadNav {
-    pub room_wire: String,
-    scope: ScopeId,
-    room_path: String,
-    thread_path_prefix: String,
-    garden_path_prefix: String,
-}
-
-impl ThreadNav {
-    pub(crate) fn public() -> Self {
-        Self {
-            room_wire: "public".into(),
-            scope: ScopeId::Public,
-            room_path: "/t".into(),
-            thread_path_prefix: "/t".into(),
-            garden_path_prefix: "/~".into(),
-        }
-    }
-
-    /// `room_id` wire form `shortid/slug`.
-    pub(crate) fn from_room_id(room_id: &str) -> Option<Self> {
-        let (short, slug) = room_id.split_once('/')?;
-        if short.is_empty() || slug.is_empty() {
-            return None;
-        }
-        Some(Self {
-            room_wire: room_id.to_string(),
-            scope: ScopeId::Room(room_id.to_string()),
-            room_path: format!("/r/{short}/{slug}"),
-            thread_path_prefix: format!("/r/{short}/{slug}/t"),
-            garden_path_prefix: format!("/r/{short}/{slug}/~"),
-        })
-    }
-
-    pub(crate) fn scope(&self) -> ScopeId {
-        self.scope.clone()
-    }
-
-    pub(crate) fn room_url(&self) -> &str {
-        &self.room_path
-    }
-
-    pub(crate) fn thread_url(&self, tag: &str) -> String {
-        format!("{}/{}", self.thread_path_prefix, tag)
-    }
-
-    pub(crate) fn garden_root_url(&self) -> &str {
-        &self.garden_path_prefix
-    }
-
-    pub(crate) fn garden_item_url(&self, item: &str) -> String {
-        if let Some(tail) = crate::path_types::CanonicalItemUrl::parse(item)
-            .and_then(|c| c.tilde_tail().map(str::to_owned))
-        {
-            format!("{}/{}", self.garden_path_prefix, tail)
-        } else {
-            format!("{}/{}", self.garden_path_prefix, canonicalize_item(item))
-        }
-    }
-
-    fn thread_page_url(&self, tag: &str, offset: usize) -> String {
-        let base = self.thread_url(tag);
-        if offset == 0 {
-            base
-        } else {
-            format!("{base}?offset={offset}")
-        }
-    }
-
-    fn post_url(&self, tag: &str, idx: usize) -> String {
-        format!("{}/{}/{}", self.thread_path_prefix, tag, idx)
-    }
-}
-
-/// `POST /ui` + `__rpc__` from an inline link (`onclick`); same-origin credentials as other morph actions.
-fn thread_ui_fetch_onclick(rpc_compact_json: &str) -> String {
-    format!(
-        "fetch('/ui',{{method:'POST',headers:{{'Content-Type':'application/x-www-form-urlencoded'}},body:new URLSearchParams({{__rpc__:{}}}).toString(),credentials:'same-origin'}}).then(r=>r.text()).then(eval);return false",
-        js_string_literal(rpc_compact_json)
-    )
-}
-
-fn thread_nav_for_ingest(ing: &crate::events::Ingest) -> Option<ThreadNav> {
-    let room = ing.room_id.trim();
-    if room.is_empty() || room == "public" {
-        Some(ThreadNav::public())
-    } else {
-        ThreadNav::from_room_id(room)
-    }
-}
-
-fn thread_post_index_in_scope(reduced: &ReducerState, ing: &crate::events::Ingest) -> Option<usize> {
-    let scope = scope_from_room_wire(&ing.room_id);
-    let tag = canonicalize_tag(&ing.thread_tag);
-    reduced
-        .ingests_by_scope_thread
-        .get(&(scope, tag))
-        .and_then(|q| q.iter().rev().position(|id| id == &ing.id))
-}
-
-fn post_header_meta(
-    nav: &ThreadNav,
-    tag: &str,
-    post_idx: usize,
-    principal: &str,
-    ts: i64,
-    now: i64,
-) -> Markup {
-    let post_href = nav.post_url(tag, post_idx);
-    let profile = profile_href(principal);
-    let hover = timeago::rfc3339_utc(ts);
-    let ago = timeago::timeago(now, ts);
-    html! {
-        div class="ingest-meta muted" title=(hover) {
-            a href=(post_href) class="post-num" { "#" (post_idx) }
-            " "
-            a href=(profile) class="post-author" { "@" (principal) }
-            " · "
-            (ago)
-        }
-    }
-}
-
-fn post_header_row(
-    nav: &ThreadNav,
-    tag: &str,
-    post_idx: usize,
-    ing: &crate::events::Ingest,
-    _viewer: Option<&str>,
-    now: i64,
-    show_delete: bool,
-) -> Markup {
-    let meta = post_header_meta(nav, tag, post_idx, &ing.principal, ing.ts, now);
-    html! {
-        div class="ingest-header-row" {
-            (meta)
-            @if show_delete {
-                form class="post-delete-form" method="POST" action="/ui" {
-                    input type="hidden" name=(UI_RPC_FIELD) value=(template_json_compact(&HtmlUiAction::RedactPost { post_id: ing.id.clone() }).unwrap());
-                    button type="submit" class="post-delete-btn" { "delete" }
-                }
-            }
-        }
-    }
-}
-
-fn redacted_header_row(
-    nav: &ThreadNav,
-    tag: &str,
-    post_idx: usize,
-    ing: &crate::events::Ingest,
-    now: i64,
-    expanded: bool,
-) -> Markup {
-    let meta = post_header_meta(nav, tag, post_idx, &ing.principal, ing.ts, now);
-    let rpc_expand = template_json_compact(&json!({
-        "action": "expand_redacted_post",
-        "room": nav.room_wire,
-        "thread_tag": tag,
-        "post_index": post_idx,
-    }))
-    .unwrap();
-    let rpc_collapse = template_json_compact(&json!({
-        "action": "collapse_redacted_post",
-        "room": nav.room_wire,
-        "thread_tag": tag,
-        "post_index": post_idx,
-    }))
-    .unwrap();
-    let onclick_expand = thread_ui_fetch_onclick(&rpc_expand);
-    let onclick_collapse = thread_ui_fetch_onclick(&rpc_collapse);
-    html! {
-        div class="ingest-header-row ingest-tombstone-row" {
-            (meta)
-            span class="post-tombstone-inline muted" {
-                "deleted · "
-                @if expanded {
-                    a href="#" class="hide-deleted-link"
-                      onclick=(onclick_collapse) {
-                        "[hide deleted content]"
-                    }
-                } @else {
-                    a href="#" class="show-deleted-link"
-                      onclick=(onclick_expand) {
-                        "[show deleted content]"
-                    }
-                }
-            }
-        }
-    }
-}
-
-fn ingest_entry_markup(
-    nav: &ThreadNav,
-    tag: &str,
-    post_idx: usize,
-    ing: &crate::events::Ingest,
-    viewer: Option<&str>,
-    now: i64,
-    reduced: &ReducerState,
-) -> Markup {
-    let redacted = reduced.redacted_posts.contains(&ing.id);
-    let show_delete = viewer == Some(ing.principal.as_str()) && !redacted;
-    if redacted {
-        html! {
-            div class="ingest-entry ingest-redacted" data-ingest-id=(ing.id) {
-                (redacted_header_row(nav, tag, post_idx, ing, now, false))
-            }
-        }
-    } else {
-        let truncated = ing.raw.len() > 2000;
-        let display_body = if truncated { &ing.raw[..2000] } else { &ing.raw[..] };
-        html! {
-            div class="ingest-entry" data-ingest-id=(ing.id) {
-                (post_header_row(nav, tag, post_idx, ing, viewer, now, show_delete))
-                (render_linkified_with_embeds_in_scope(display_body, nav.garden_root_url()))
-                @if truncated {
-                    @let rpc_full = template_json_compact(&json!({
-                        "action": "expand_post_full",
-                        "room": nav.room_wire,
-                        "thread_tag": tag,
-                        "post_index": post_idx,
-                    })).unwrap();
-                    @let onclick_full = thread_ui_fetch_onclick(&rpc_full);
-                    a href="#" class="show-full-link"
-                      onclick=(onclick_full) {
-                        "[show full post]"
-                    }
-                }
-            }
-        }
-    }
-}
-
-fn collect_thread_rows_for_scope(reduced: &ReducerState, scope: &ScopeId, now: i64) -> Vec<ThreadRow> {
-    let _ = now;
-    reduced
-        .forum_threads
-        .iter()
-        .filter(|((s, _), _)| s == scope)
-        .map(|((_, tag), thread)| {
-            let ingests = reduced
-                .ingests_by_scope_thread
-                .get(&(scope.clone(), tag.clone()))
-                .map(|q| q.len())
-                .unwrap_or(0);
-            ThreadRow {
-                tag: tag.clone(),
-                subtitle: None,
-                last_ts: thread.last_activity_ts,
-                ingests,
-            }
-        })
-        .collect()
-}
-
-fn rooms_for_user(reduced: &ReducerState, username: &str) -> Vec<String> {
-    let mut v: Vec<String> = reduced
-        .grants
-        .iter()
-        .filter(|(rid, m)| reduced.rooms.contains(*rid) && m.contains_key(username))
-        .map(|(rid, _)| rid.clone())
-        .collect();
-    v.sort();
-    v
-}
-
-pub(crate) fn user_can_view_room(reduced: &ReducerState, room_id: &str, username: Option<&str>) -> bool {
-    if !reduced.rooms.contains(room_id) {
-        return false;
-    }
-    let Some(u) = username else {
-        return false;
-    };
-    reduced.user_has_cap(room_id, u, ThreadCapability::View)
-}
-
-pub(crate) fn user_can_post_room(reduced: &ReducerState, room_id: &str, username: &str) -> bool {
-    reduced.user_has_cap(room_id, username, ThreadCapability::Post)
-}
-
-fn capability_label(cap: ThreadCapability) -> &'static str {
-    match cap {
-        ThreadCapability::View => "view",
-        ThreadCapability::Post => "post",
-        ThreadCapability::Vote => "vote",
-        ThreadCapability::AddItem => "add_item",
-        ThreadCapability::Manage => "manage",
-    }
-}
-
-fn room_members_for_room(reduced: &ReducerState, room_id: &str) -> Vec<RoomMemberRow> {
-    let mut rows: Vec<RoomMemberRow> = reduced
-        .grants
-        .get(room_id)
-        .into_iter()
-        .flat_map(|members| members.iter())
-        .map(|(username, caps)| {
-            let mut ordered = Vec::new();
-            for cap in [
-                ThreadCapability::View,
-                ThreadCapability::Post,
-                ThreadCapability::Vote,
-                ThreadCapability::AddItem,
-                ThreadCapability::Manage,
-            ] {
-                if caps.contains(&cap) {
-                    ordered.push(capability_label(cap));
-                }
-            }
-            RoomMemberRow {
-                username: username.clone(),
-                capabilities: ordered,
-            }
-        })
-        .collect();
-    rows.sort_by(|a, b| a.username.cmp(&b.username));
-    rows
-}
-
-fn room_members_inner(members: &[RoomMemberRow]) -> Markup {
-    html! {
-        h3 { "members

… preview truncated; 77,260 characters omitted

download full diff A

B — c_3f420a1f5aa1 (tommy-mor)

message

[2fe70b0e] themes

diff preview

diff --git a/server/src/api/auth.rs b/server/src/api/auth.rs
index 559db65de14c6157690ffbf18eca0cf65b0a5202..b3631b06153d52f88348fef927e7a024b7b85ad6 100644
--- a/server/src/api/auth.rs
+++ b/server/src/api/auth.rs
@@ -1,7 +1,7 @@
 use axum::{
     body::Body,
     extract::{Path, Query, State},
-    http::{header, HeaderMap, HeaderValue, StatusCode},
+    http::{header, HeaderMap, HeaderValue, StatusCode, Uri},
     response::{IntoResponse, Redirect, Response},
     Form, Json,
 };
@@ -17,7 +17,7 @@ use crate::{
     events::{Event, GrantAdded, TokenIssued, UserRegistered},
     html::{
         auth_complete_page, auth_signed_in_fragment, choose_username_error_fragment,
-        choose_username_page, JsBuilder,
+        choose_username_page, theme_cookie_header_from_jar, theme_from_jar, theme_next_from_uri, JsBuilder,
     },
     identity::{parse_agent, parse_username},
     reducer::ReducerState,
@@ -48,15 +48,17 @@ fn js_form_error_fragment(session: &str, error: &str) -> Response {
         .into_response()
 }
 
-fn js_signed_in_fragment(bearer: &str) -> Response {
+fn js_signed_in_fragment(bearer: &str, jar: &CookieJar) -> Response {
     let mut response = JsBuilder::new()
         .id("choose-username-form")
         .morph_inner(auth_signed_in_fragment())
         .redirect("/auth/complete")
         .into_response();
-    response
-        .headers_mut()
-        .insert(header::SET_COOKIE, session_cookie_header_value(bearer));
+    let headers = response.headers_mut();
+    headers.append(header::SET_COOKIE, session_cookie_header_value(bearer));
+    if let Some(theme) = theme_cookie_header_from_jar(jar) {
+        headers.append(header::SET_COOKIE, theme);
+    }
     response
 }
 
@@ -69,13 +71,18 @@ pub fn optional_principal(headers: &HeaderMap, jar: &CookieJar, reduced: &Reduce
     verify_token(reduced, c.value()).ok()
 }
 
-fn redirect_with_session_cookie(public_url: &str, path_and_query: &str, bearer: &str) -> Response {
-    Response::builder()
+fn redirect_with_session_cookie(public_url: &str, path_and_query: &str, bearer: &str, jar: &CookieJar) -> Response {
+    let mut res = Response::builder()
         .status(StatusCode::TEMPORARY_REDIRECT)
         .header(header::LOCATION, format!("{public_url}{path_and_query}"))
-        .header(header::SET_COOKIE, session_cookie_header_value(bearer))
         .body(Body::empty())
-        .unwrap()
+        .unwrap();
+    let headers = res.headers_mut();
+    headers.append(header::SET_COOKIE, session_cookie_header_value(bearer));
+    if let Some(theme) = theme_cookie_header_from_jar(jar) {
+        headers.append(header::SET_COOKIE, theme);
+    }
+    res
 }
 
 async fn apply_invite_redemption(state: &AppState, invite_token: &str, grantee_username: &str) -> Result<(), String> {
@@ -286,7 +293,11 @@ pub struct AuthCallbackQuery {
     pub state: String,
 }
 
-pub async fn get_auth_callback(Query(q): Query<AuthCallbackQuery>, State(state): State<AppState>) -> impl IntoResponse {
+pub async fn get_auth_callback(
+    Query(q): Query<AuthCallbackQuery>,
+    State(state): State<AppState>,
+    jar: CookieJar,
+) -> impl IntoResponse {
     let sessions = pending_sessions(&state);
     {
         let sessions_read = sessions.read().await;
@@ -365,7 +376,7 @@ pub async fn get_auth_callback(Query(q): Query<AuthCallbackQuery>, State(state):
             }
             let cookie_bearer = bearer.clone();
             s.complete = Some((username, bearer));
-            return redirect_with_session_cookie(&public_url, "/", &cookie_bearer).into_response();
+            return redirect_with_session_cookie(&public_url, "/", &cookie_bearer, &jar).into_response();
         }
     }
 
@@ -378,14 +389,20 @@ pub struct ChooseUsernameQuery {
     pub error: Option<String>,
 }
 
-pub async fn get_choose_username(Query(q): Query<ChooseUsernameQuery>, State(state): State<AppState>) -> impl IntoResponse {
+pub async fn get_choose_username(
+    Query(q): Query<ChooseUsernameQuery>,
+    State(state): State<AppState>,
+    jar: CookieJar,
+    uri: Uri,
+) -> impl IntoResponse {
     let sessions = pending_sessions(&state);
     let sessions_read = sessions.read().await;
     if !sessions_read.contains_key(&q.session) {
         return api_error(StatusCode::NOT_FOUND, "unknown session", None).into_response();
     }
     drop(sessions_read);
-    choose_username_page(&q.session, q.error.as_deref()).into_response()
+    let next = theme_next_from_uri(&uri);
+    choose_username_page(&q.session, q.error.as_deref(), theme_from_jar(&jar), &next).into_response()
 }
 
 #[derive(Debug, Deserialize)]
@@ -396,6 +413,7 @@ pub struct ChooseUsernameForm {
 
 pub async fn post_choose_username(
     State(state): State<AppState>,
+    jar: CookieJar,
     Form(form): Form<ChooseUsernameForm>,
 ) -> impl IntoResponse {
     let canon_user = match parse_username(&form.username) {
@@ -477,7 +495,7 @@ pub async fn post_choose_username(
         s.complete = Some((canon_user.clone(), bearer.clone()));
     }
 
-    js_signed_in_fragment(&bearer).into_response()
+    js_signed_in_fragment(&bearer, &jar).into_response()
 }
 
 /// Start a browser-only OAuth flow (no CLI polling). Sets session cookie on success.
@@ -569,8 +587,9 @@ pub async fn get_pending_session(
     .into_response()
 }
 
-pub async fn get_auth_complete() -> impl IntoResponse {
-    auth_complete_page()
+pub async fn get_auth_complete(jar: CookieJar, uri: Uri) -> impl IntoResponse {
+    let next = theme_next_from_uri(&uri);
+    auth_complete_page(theme_from_jar(&jar), &next).into_response()
 }
 
 pub async fn get_whoami(State(state): State<AppState>, headers: HeaderMap) -> impl IntoResponse {
diff --git a/server/src/api/helpers.rs b/server/src/api/helpers.rs
index 81e2a55fa3abb8609b4099f91a989480336e11eb..9b71491e9f9efc44a2a4beba09be8f64bd2ff2ee 100644
--- a/server/src/api/helpers.rs
+++ b/server/src/api/helpers.rs
@@ -39,6 +39,55 @@ pub fn item_path_for_api(item: &str) -> String {
     }
 }
 
+/// Same as [`item_path_for_api`], but for private rooms ontology items are prefixed with
+/// `/r/{short}/{slug}` so the URL matches the web app (`/r/…/~/…` routes).
+pub fn item_path_for_api_in_room(item: &str, room_wire: &str) -> String {
+    let room = room_wire.trim();
+    if room.is_empty() || room == "public" {
+        return item_path_for_api(item);
+    }
+    let Some((short, slug)) = room.split_once('/') else {
+        return item_path_for_api(item);
+    };
+    if short.is_empty() || slug.is_empty() {
+        return item_path_for_api(item);
+    }
+    let Some(c) = CanonicalItemUrl::parse(item) else {
+        return item_path_for_api(item);
+    };
+    let root = CanonicalItemUrl::ontology_root();
+    let item_norm = c.as_str().trim_end_matches('/');
+    let root_norm = root.as_str().trim_end_matches('/');
+    if let Some(tail) = c.tilde_tail() {
+        return if tail.is_empty() {
+            format!("https://slug.social/r/{short}/{slug}/~")
+        } else {
+            format!("https://slug.social/r/{short}/{slug}/~/{}", tail)
+        };
+    }
+    if item_norm == root_norm {
+        return format!("https://slug.social/r/{short}/{slug}/~");
+    }
+    item_path_for_api(item)
+}
+
+/// Absolute thread URL for forum JSON (`/t/…` vs `/r/…/t/…`).
+pub fn forum_thread_web_url(room_wire: &str, thread_tag: &str) -> String {
+    let room = room_wire.trim();
+    let tag = thread_tag.trim().trim_start_matches('#');
+    if room.is_empty() || room == "public" {
+        format!("https://slug.social/t/{tag}")
+    } else if let Some((short, slug)) = room.split_once('/') {
+        if short.is_empty() || slug.is_empty() {
+            format!("https://slug.social/t/{tag}")
+        } else {
+            format!("https://slug.social/r/{short}/{slug}/t/{tag}")
+        }
+    } else {
+        format!("https://slug.social/t/{tag}")
+    }
+}
+
 /// Resolve an item path as a first-class canonical path.
 pub fn resolve_item(item: &str) -> Result<String, String> {
     let canonical = canonicalize_item(item);
@@ -188,3 +237,52 @@ pub fn vote_touches_path(a: &str, b: &str, parent_canon: &str) -> bool {
     let under = |item: &str| item == parent_canon || item.starts_with(&format!("{}/", parent_canon));
     under(a) || under(b)
 }
+
+#[cfg(test)]
+mod wire_url_tests {
+    use super::{forum_thread_web_url, item_path_for_api_in_room};
+
+    #[test]
+    fn public_room_unchanged() {
+        let u = "https://slug.social/~/a/b";
+        assert_eq!(item_path_for_api_in_room(u, "public"), u);
+    }
+
+    #[test]
+    fn private_room_prefixes_ontology() {
+        assert_eq!(
+            item_path_for_api_in_room("https://slug.social/~/topic/x", "9ab12cd/my-room"),
+            "https://slug.social/r/9ab12cd/my-room/~/topic/x"
+        );
+    }
+
+    #[test]
+    fn private_room_ontology_root() {
+        assert_eq!(
+            item_path_for_api_in_room("https://slug.social/~", "9ab12cd/my-room"),
+            "https://slug.social/r/9ab12cd/my-room/~"
+        );
+        assert_eq!(
+            item_path_for_api_in_room("https://slug.social/~/", "9ab12cd/my-room"),
+            "https://slug.social/r/9ab12cd/my-room/~"
+        );
+    }
+
+    #[test]
+    fn external_url_untouched_in_private_room() {
+        let u = "https://example.com/z";
+        assert_eq!(item_path_for_api_in_room(u, "9ab12cd/my-room"), u);
+    }
+
+    #[test]
+    fn forum_web_public_vs_room() {
+        assert_eq!(
+            forum_thread_web_url("public", "debate"),
+            "https://slug.social/t/debate"
+        );
+        assert_eq!(
+            forum_thread_web_url("9ab12cd/my-room", "#debate"),
+            "https://slug.social/r/9ab12cd/my-room/t/debate"
+        );
+    }
+}
diff --git a/server/src/api/rpc.rs b/server/src/api/rpc.rs
index 31f5fcfb4eaf4df0a9cbac532dd3dedfe3611810..5b91f5836625eedbb1cd9423168046e3fb576c17 100644
--- a/server/src/api/rpc.rs
+++ b/server/src/api/rpc.rs
@@ -27,8 +27,9 @@ use crate::{
 
 use super::auth::verify_bearer_principal;
 use super::helpers::{
-    compute_connectivity_stats, is_pair_voted, item_path_for_api, now_ms, paginate_rankings,
-    parse_parent_specs, pick_random_distinct, resolve_item, vote_touches_path,
+    compute_connectivity_stats, forum_thread_web_url, is_pair_voted, item_path_for_api,
+    item_path_for_api_in_room, now_ms, paginate_rankings, parse_parent_specs, pick_random_distinct,
+    resolve_item, vote_touches_path,
 };
 use super::validate::{normalize_room_and_thread, validate_ingest_document};
 
@@ -148,6 +149,7 @@ fn compute_scope_rank_changes(
     parent: &str,
     before: &crate::scope_rank::ChildrenRankings,
     after: &crate::scope_rank::ChildrenRankings,
+    room_wire: &str,
 ) -> Option<ScopeRankChanges> {
     fn build_positions(rankings: &crate::scope_rank::ChildrenRankings) -> HashMap<String, Option<RankPosition>> {
         let mut map = HashMap::new();
@@ -182,7 +184,7 @@ fn compute_scope_rank_changes(
         };
         if changed {
             changes.push(RankChange {
-                item: item_path_for_api(&item),
+                item: item_path_for_api_in_room(&item, room_wire),
                 before: b,
                 after: a,
             });
@@ -204,7 +206,7 @@ fn compute_scope_rank_changes(
         parent: if parent.is_empty() {
             "/".to_string()
         } else {
-            item_path_for_api(parent)
+            item_path_for_api_in_room(parent, room_wire)
         },
         changes,
     })
@@ -256,6 +258,7 @@ fn build_rank_response_for_content(
     offset: usize,
     limit: Option<usize>,
     want_percent: bool,
+    room_wire: &str,
 ) -> Result<RankResponse, RpcErr> {
     let parent_owned = parent.map(|s| s.to_string());
     let specs = parse_parent_specs(parent_owned.as_ref());
@@ -299,7 +302,7 @@ fn build_rank_response_for_content(
                     .ranked
                     .into_iter()
                     .map(|r| RankRow {
-                  

… preview truncated; 42,928 characters omitted

download full diff B

Hardlinks — judgments / attempts / prompt

prompt download

judgments

attempts

Prompt text is loaded only by the download route.