constitution · epochs · watch · epoch 3

comparison

c_9608dc0d38ab (tommy-mor) vs c_477013996fa5 (tommy-mor)

download prompt · raw event · cmp_2e6f69b2e4a14c

council reasoning

~anthropic/claude-sonnet-latest · winner B · 3:1 · permalink

Side B implements substantive product functionality: fixing a broken morph (preview card was never actually rendered before), adding a proper ratio-normalization/sort algorithm for edge history, a new fullscreen layout mode with theme CSS across three themes, and updated/expanded tests validating the sort logic. Side A is a smaller but real deadlock fix in rpc.rs plus test/infra tweaks (timeouts, log-file redirection, username string fixes), which is useful but narrower in scope and impact than B's feature-level correctness work.

~x-ai/grok-latest · winner A · 3:1 · permalink

A fixes real tokio RwLock deadlocks in RoomCreate/RoomGrant by dropping read guards before nested lock acquires, plus hardening the test harness against pipe-buffer hangs and adding a room-create integration test. B is mainly vote-compare UX polish (fullscreen chrome-less layout, history sort/display, CSS/docs) that improves one UI surface but does not address correctness or reliability at the same level.

openai/gpt-chat-latest · winner A · 5:2 · permalink

Side A fixes a substantive concurrency bug by ensuring `tokio::sync::RwLock` read guards are dropped before later `read().await`/`write().await` calls in `RoomCreate` and `RoomGrant`, preventing self-deadlocks from non-reentrant lock usage. It also adds an integration test for private room creation and improves test robustness, whereas Side B is primarily a feature/UI enhancement for the vote-compare page (fullscreen layout, preview morphing, sorting/display changes) with accompanying tests rather than a core correctness fix.

sides

A — c_9608dc0d38ab (tommy-mor)

message

[9ecc4e2e] nice

diff preview

diff --git a/server/src/api/rpc.rs b/server/src/api/rpc.rs
index 5675dcd2e28062acbe3c037b94b77c33adf32474..a18241f3ed7b4a248748fcefc799f9801ca62461 100644
--- a/server/src/api/rpc.rs
+++ b/server/src/api/rpc.rs
@@ -936,7 +936,15 @@ pub async fn handle_rpc_batch(
                 line_ok(RpcResult::ForumThreads(rpc_list_forum_threads(&reduced, &room)))
             }
             RpcCommand::RoomCreate { slug, visibility } => {
-                match verify_bearer_principal(&headers, &*state.reduced.read().await) {
+                // Scope the first read so its guard drops before any nested `read().await` / `write().await`.
+                // A guard from `match verify(..., &*state.reduced.read().await)` would otherwise live for the
+                // whole `match` and deadlock here (tokio::sync::RwLock is not reentrant).
+                let principal = {
+                    let reduced = state.reduced.read().await;
+                    verify_bearer_principal(&headers, &*reduced)
+                };
+                match principal {
+                    Err((_, m)) => line_err(m, None),
                     Ok(principal) => {
                         let slug = slug.trim().to_lowercase();
                         if slug.is_empty() || slug.len() > 64 {
@@ -994,7 +1002,6 @@ pub async fn handle_rpc_batch(
                             }
                         }
                     }
-                    Err((_, m)) => line_err(m, None),
                 }
             }
             RpcCommand::RoomGrant {
@@ -1002,17 +1009,28 @@ pub async fn handle_rpc_batch(
                 username,
                 capability,
             } => {
-                match verify_bearer_principal(&headers, &*state.reduced.read().await) {
+                let principal = {
+                    let reduced = state.reduced.read().await;
+                    verify_bearer_principal(&headers, &*reduced)
+                };
+                match principal {
                     Err((_, m)) => line_err(m, None),
                     Ok(principal) => {
-                        let reduced = state.reduced.read().await;
-                        if !reduced.user_has_cap(&room, &principal, ThreadCapability::Manage) {
+                        let can_manage = {
+                            let reduced = state.reduced.read().await;
+                            reduced.user_has_cap(&room, &principal, ThreadCapability::Manage)
+                        };
+                        if !can_manage {
                             line_err("requires Manage capability", None)
                         } else {
                             match parse_username(&username) {
                                 Err(msg) => line_err("invalid username", Some(msg)),
                                 Ok(target) => {
-                                    if !reduced.users_by_provider.values().any(|u| u == &target) {
+                                    let user_exists = {
+                                        let reduced = state.reduced.read().await;
+                                        reduced.users_by_provider.values().any(|u| u == &target)
+                                    };
+                                    if !user_exists {
                                         line_err(format!("user @{target} not found"), None)
                                     } else {
                                         match parse_capability(&capability) {
diff --git a/server/tests/integration.rs b/server/tests/integration.rs
index 9162bd5bee84035e3908bfb9c8e201b7878ca339..b930120da09fe7d307f0411b84fb639fb8bd0b15 100644
--- a/server/tests/integration.rs
+++ b/server/tests/integration.rs
@@ -95,6 +95,23 @@ async fn test_healthz() {
     assert_eq!(response.text().await.unwrap(), "ok");
 }
 
+#[tokio::test]
+async fn test_room_create_private_rpc() {
+    let (addr, _tmp, _log, _handle) = create_test_server().await;
+    let client = reqwest::Client::new();
+    let batch = serde_json::json!([{
+        "RoomCreate": { "slug": "secret-project", "visibility": "private" }
+    }]);
+    let body = rpc_batch(&client, addr, Some(&test_bearer()), batch).await;
+    let line = &body["results"][0];
+    assert_eq!(line["ok"], true, "room create: {:?}", line);
+    let room_id = line["result"]["RoomCreated"]["room_id"].as_str().unwrap();
+    assert!(
+        room_id.contains("/secret-project"),
+        "expected room_id to contain slug, got {room_id}"
+    );
+}
+
 #[tokio::test]
 async fn test_index_page() {
     // HTML routes are offline during the auth-v3 refactor.
diff --git a/test/auth.bb b/test/auth.bb
index 611e04f1806ef81d678a91f499597fe55f691dd7..a67cc1de763434176d2f68e419dd37a8cd328395 100644
--- a/test/auth.bb
+++ b/test/auth.bb
@@ -176,7 +176,7 @@
          (assert! (= 200 (:status poll)) "pending-session poll returns 200")
          (let [poll-json (json/parse-string (:body poll) true)]
            (assert! (:complete poll-json) "pending session complete=true")
-           (assert! (= "@bbuser" (:user poll-json)) "poll returns @bbuser")
+           (assert! (= "bbuser" (:user poll-json)) "poll returns stored username bbuser")
            (assert! (clojure.string/starts-with? (:token poll-json) "slug_") "poll returns bearer token")
 
            (println "\nwhoami…")
@@ -184,7 +184,7 @@
                                :headers {"Authorization" (str "Bearer " (:token poll-json))})]
              (assert! (= 200 (:status who)) "whoami returns 200")
              (let [who-json (json/parse-string (:body who) true)]
-               (assert! (= "@bbuser" (:user who-json)) "whoami user is @bbuser"))))))
+               (assert! (= "bbuser" (:user who-json)) "whoami user is bbuser (stored form)"))))))
 
      (println "\nCLI: identity start → OAuth → identity poll → whoami…")
      (let [cli-home (str tmp-dir "/cli-home")
@@ -208,7 +208,7 @@
                       (str "identity poll exits 0 (stderr: " (:err poll-proc) ")"))
              (let [poll-cli (json/parse-string (:out poll-proc) true)]
                (assert! (= "complete" (:phase poll-cli)) "identity poll --json phase")
-               (assert! (= "@cliuser" (:user poll-cli)) "CLI poll user")
+               (assert! (= "cliuser" (:user poll-cli)) "CLI poll user (stored form)")
                (assert! (clojure.string/starts-with? (:token poll-cli) "slug_") "CLI poll token")
                (let [token-path (str cli-home "/.config/slugsocial/token")]
                  (assert! (fs/exists? token-path) "token written under isolated HOME")
@@ -219,7 +219,7 @@
                  (assert! (zero? (:exit who-proc))
                           (str "whoami exits 0 (stderr: " (:err who-proc) ")"))
                  (let [who-cli (json/parse-string (:out who-proc) true)]
-                   (assert! (= "@cliuser" (:user who-cli)) "CLI whoami uses saved token"))))))))
+                   (assert! (= "cliuser" (:user who-cli)) "CLI whoami uses saved token"))))))))
 
      (finally
        (when-some [s @!server] (common/kill-server s))
diff --git a/test/common.bb b/test/common.bb
index ebb16c615a8b40e8830b5d5765d1e935a45538d0..4ed450377cdbb020f5ff164a812dfbbfc23c0f47 100644
--- a/test/common.bb
+++ b/test/common.bb
@@ -78,9 +78,20 @@
 
 (defn start-server
   "Start the slugsocial-server binary with the given env map.
-   Returns the babashka.process map."
-  [server-bin env-map]
-  (p/process [server-bin] {:out :inherit :err :inherit :env env-map}))
+   Returns the babashka.process map.
+
+   When `log-file` (string path) is provided, stdout and stderr are appended there
+   instead of inheriting the parent descriptors. Inheriting shared pipes while the
+   parent blocks on HTTP I/O can fill the pipe buffer and deadlock the server on log writes."
+  ([server-bin env-map]
+   (start-server server-bin env-map nil))
+  ([server-bin env-map log-file]
+   (p/process [server-bin]
+              (if log-file
+                ;; Two string paths (same file): babashka.process can deref the process cleanly.
+                ;; :err :out + ProcessBuilder$Redirect breaks stream copying in deref/kill-server.
+                {:env env-map :out log-file :err log-file}
+                {:out :inherit :err :inherit :env env-map}))))
 
 (defn kill-server
   "Forcibly kill a server process (babashka.process map) and wait for it to exit."
diff --git a/test/grants.bb b/test/grants.bb
index 7066c1f2a57f39a362052f8524206dccf37bb7b1..793ba216f2de76a77eb20a76d08403db07ff411b 100644
--- a/test/grants.bb
+++ b/test/grants.bb
@@ -35,13 +35,14 @@
 (defn- http-client []
   (-> (java.net.http.HttpClient/newBuilder)
       (.followRedirects java.net.http.HttpClient$Redirect/ALWAYS)
+      (.connectTimeout (java.time.Duration/ofSeconds 15))
       (.build)))
 
 (defn- http-get [url & {:keys [headers]}]
   (let [b (java.net.http.HttpRequest/newBuilder (java.net.URI/create url))]
     (doseq [[k v] (or headers {})]
       (.header b k v))
-    (let [req (-> b (.GET) (.build))
+    (let [req (-> b (.timeout (java.time.Duration/ofSeconds 60)) (.GET) (.build))
           resp (.send (http-client) req (java.net.http.HttpResponse$BodyHandlers/ofString))]
       {:status (.statusCode resp) :body (.body resp)})))
 
@@ -52,6 +53,7 @@
     (doseq [[k v] (or headers {})]
       (.header b k v))
     (let [req (-> b
+                  (.timeout (java.time.Duration/ofSeconds 60))
                   (.POST (java.net.http.HttpRequest$BodyPublishers/ofString body))
                   (.build))
           resp (.send (http-client) req (java.net.http.HttpResponse$BodyHandlers/ofString))]
@@ -67,6 +69,7 @@
         b (java.net.http.HttpRequest/newBuilder (java.net.URI/create url))]
     (.header b "Content-Type" "application/x-www-form-urlencoded")
     (let [req (-> b
+                  (.timeout (java.time.Duration/ofSeconds 60))
                   (.POST (java.net.http.HttpRequest$BodyPublishers/ofString pairs))
                   (.build))
           resp (.send (http-client) req (java.net.http.HttpResponse$BodyHandlers/ofString))]

download full diff A

B — c_477013996fa5 (tommy-mor)

message

[893a2007] fullscreen?

diff preview

diff --git a/agents.md b/agents.md
index d9a924d2f77c444d9b112bbf37a480b963ace4f0..1f66ddbeddd1e40310947c7eb474c1ac4858bc42 100644
--- a/agents.md
+++ b/agents.md
@@ -37,9 +37,9 @@ Strict **CSP** that blocks `eval` would break the current app. Other projects ma
 
 - **Non-morph `POST /ui` responses:** **`SetGardenPin`** returns **`303 See Other`** and **`Set-Cookie`** (same as **`POST /theme`**). Garden pin/unpin is a normal **`<form method="POST" action="/ui" data-navigate="full">`** — browser navigation applies cookies reliably (see **`test/browser_garden_pin.clj`**). Each **`__rpc__`** payload includes **`form_action: "/ui"`**; **`post_ui_html`** rejects mismatches to bind tokens to the UI endpoint.
 
-- **`VoteComparePost`:** On success returns **`text/javascript`** that **morphs** **`#vote-compare-preview`** (new ingest card) and **`#vote-edge-history-region`** (recomputed edge list). Uses **`RpcResult::PostOk`**’s **`post_id`** / **`post_index`** for the card. **`__rpc__`** carries **`form_action: "/ui"`**; **`thread_tag`** and ratio fields come from the same form as **`$form`** holes.
+- **`VoteComparePost`:** On success returns **`text/javascript`** that **morphs** **`#vote-compare-preview`** (new ingest card), **`#vote-edge-history-region`** (recomputed **`<ul>`** — ratios match **`left`/`right`** query order, bullets, sorted by strength toward **`left`** then newer). The compare **`GET`** page uses **`layout_full_bleed_chromeless`** (no breadcrumbs, no **`#controls`**, no **`slug-pin-hud`**; **`view-vote-compare-fullscreen`** full-width **`body`**). **`__rpc__`** carries **`form_action: "/ui"`**; **`thread_tag`** and ratio fields come from the same form as **`$form`** holes.
 
-- **Garden pin / compare voting:** Cookie **`slug_garden_pin`** via **`set_garden_pin`**. Pairwise UI: **`GET /vote/compare?…`** / **`GET /r/:room_key/vote/compare?…`**. HUD: **`#slug-pin-hud`** when **`layout`** passes garden metadata on **`body`**; the label is **`POST /ui`** **`set_garden_pin`** **`clear:true`** (**`slug_ui.js`**), not a permalink to the item.
+- **Garden pin / compare voting:** Cookie **`slug_garden_pin`** via **`set_garden_pin`**. Pairwise UI: **`GET /vote/compare?…`** / **`GET /r/:room_key/vote/compare?…`** (fullscreen **`GET`** page: no HUD; other garden pages). HUD (**`#slug-pin-hud`**): only when **`layout`** passes garden metadata on **`body`**; the label is **`POST /ui`** **`set_garden_pin`** **`clear:true`** (**`slug_ui.js`**), not a permalink to the item.
 
 **Rule of thumb:** New **CLI or API** verbs → `RpcCommand`. New **in-page morph or form-driven** behavior that only makes sense in the browser → `HtmlUiAction`. If both need the same operation, implement the real work once (e.g. call shared RPC helpers from `post_ui_html`) and keep the wire shapes separate.
 
diff --git a/server/src/api/ui_html.rs b/server/src/api/ui_html.rs
index 5aa6a86326ba3545d261322c010e02fe86ee1c57..696e7b3605e2e68aee0351116c494c2958506add 100644
--- a/server/src/api/ui_html.rs
+++ b/server/src/api/ui_html.rs
@@ -254,7 +254,17 @@ async fn dispatch_ui_action(
                         };
                         n
                     };
-                    let js = vote_compare_post_success_js(state, &nav, &left_id, &right_id).await;
+                    let js = vote_compare_post_success_js(
+                        state,
+                        &nav,
+                        &room,
+                        &thread_tag,
+                        &left_id,
+                        &right_id,
+                        pid.as_str(),
+                        post_index,
+                    )
+                    .await;
                     Response::builder()
                         .status(StatusCode::OK)
                         .header(header::CONTENT_TYPE, "text/javascript; charset=utf-8")
diff --git a/server/src/html/garden.rs b/server/src/html/garden.rs
index 121d9498e8cb93d4d001dc1bbce23d74fbb958f5..41f9e9c64a80a55a9d3ece2a6a1f592cf5e8d8dd 100644
--- a/server/src/html/garden.rs
+++ b/server/src/html/garden.rs
@@ -22,17 +22,17 @@ use crate::{
     },
     events::ThreadCapability,
     path_types::ItemId,
-    reducer::{ContentState, ReducerState, ScopeId},
+    reducer::{scope_from_room_wire, ContentState, ReducerState, ScopeId},
     scope_rank::{build_children_rankings, ChildrenRankings},
     state::AppState,
     timeago,
 };
 
 use super::{
-    bc_path, bc_path_external, bc_segment, cli_panel, layout, now_ms, ratio_pct,
-    render_linkified_with_embeds_in_scope, theme_from_jar, theme_next_from_uri,
+    bc_path, bc_path_external, bc_segment, cli_panel, layout, layout_full_bleed_chromeless, now_ms,
+    ratio_pct, render_linkified_with_embeds_in_scope, theme_from_jar, theme_next_from_uri,
     breadcrumb_path::{ExternalOntologyPath, OntologyPath},
-    forum::{ThreadNav},
+    forum::{ingest_entry_markup, ThreadNav},
 };
 
 /// `GET /vote/compare` — pairs `left` / `right` query params with optional `thread`.
@@ -89,25 +89,62 @@ fn canonical_edge_items(a: &ItemId, b: &ItemId) -> (ItemId, ItemId) {
     }
 }
 
-/// Votes whose endpoints are exactly this unordered pair, oldest first.
-fn votes_for_edge(content: &ContentState, a: &ItemId, b: &ItemId) -> Vec<crate::reducer::VoteData> {
+/// All votes whose endpoints are exactly this unordered pair (unsorted).
+fn edge_vote_entries_for_pair(content: &ContentState, a: &ItemId, b: &ItemId) -> Vec<crate::reducer::VoteData> {
     let (lo, hi) = canonical_edge_items(a, b);
     let lo_s = lo.as_str();
     let hi_s = hi.as_str();
-    let mut out: Vec<crate::reducer::VoteData> = content
+    content
         .item_votes
         .get(&lo)
         .into_iter()
         .flat_map(|q| q.iter())
         .filter(|v| {
-            let touches = (v.a.as_str() == lo_s && v.b.as_str() == hi_s)
-                || (v.a.as_str() == hi_s && v.b.as_str() == lo_s);
-            touches
+            (v.a.as_str() == lo_s && v.b.as_str() == hi_s)
+                || (v.a.as_str() == hi_s && v.b.as_str() == lo_s)
         })
         .cloned()
-        .collect();
-    out.sort_by_key(|v| v.ts);
-    out
+        .collect()
+}
+
+fn ratios_for_compare_page(v: &crate::reducer::VoteData, page_left: &ItemId, page_right: &ItemId) -> (i32, i32) {
+    let pl = page_left.as_str();
+    let pr = page_right.as_str();
+    match (v.a.as_str(), v.b.as_str()) {
+        (a, b) if a == pl && b == pr => (v.ratio_left, v.ratio_right),
+        (a, b) if a == pr && b == pl => (v.ratio_right, v.ratio_left),
+        _ => (v.ratio_left, v.ratio_right),
+    }
+}
+
+fn left_share_normalized(ratio_left: i32, ratio_right: i32) -> f64 {
+    let l = ratio_left.max(0) as f64;
+    let r = ratio_right.max(0) as f64;
+    let sum = l + r;
+    if sum <= 0.0 {
+        0.5
+    } else {
+        l / sum
+    }
+}
+
+/// Stronger preference for **`page_left` first**; ties **newer first**.
+fn sort_votes_for_compare_display(
+    mut votes: Vec<crate::reducer::VoteData>,
+    page_left: &ItemId,
+    page_right: &ItemId,
+) -> Vec<crate::reducer::VoteData> {
+    votes.sort_by(|va, vb| {
+        let (ratio_left_a, ratio_right_a) = ratios_for_compare_page(va, page_left, page_right);
+        let (ratio_left_b, ratio_right_b) = ratios_for_compare_page(vb, page_left, page_right);
+        let sa = left_share_normalized(ratio_left_a, ratio_right_a);
+        let sb = left_share_normalized(ratio_left_b, ratio_right_b);
+        match sb.partial_cmp(&sa).unwrap_or(std::cmp::Ordering::Equal) {
+            std::cmp::Ordering::Equal => vb.ts.cmp(&va.ts),
+            o => o,
+        }
+    });
+    votes
 }
 
 /// Number of vote ingests recorded for this unordered pair in `content` (same scope as ranking).
@@ -144,39 +181,40 @@ fn vote_edge_history_markup(
     content: &ContentState,
     left: &ItemId,
     right: &ItemId,
-    nav: &ThreadNav,
 ) -> maud::Markup {
-    let votes = votes_for_edge(content, left, right);
-    let (lo, hi) = canonical_edge_items(left, right);
+    let votes = edge_vote_entries_for_pair(content, left, right);
+    let votes = sort_votes_for_compare_display(votes, left, right);
+    let legend_left = item_display_path(left.as_str());
+    let legend_right = item_display_path(right.as_str());
     html! {
         @if votes.is_empty() {
             p class="muted vote-edge-empty" { "no votes on this pair in this scope yet" }
         } @else {
-            h3 class="vote-edge-history-title" { "votes on this edge" }
-            ol class="vote-edge-history" {
+            h3 class="vote-edge-history-title" {
+                "votes on this edge"
+                span class="vote-edge-history-axis muted" { " · " (legend_left) " : " (legend_right) }
+            }
+            ul class="vote-edge-history" {
                 @for v in &votes {
-                    @let (ratio_lo, ratio_hi) = if v.a == lo && v.b == hi {
-                        (v.ratio_left, v.ratio_right)
-                    } else {
-                        (v.ratio_right, v.ratio_left)
-                    };
-                    @let pct = ratio_pct(ratio_lo, ratio_hi);
-                    @let left_class = if lo.as_str() == left.as_str() { "ratio-left current" } else { "ratio-left" };
-                    @let right_class = if hi.as_str() == left.as_str() { "ratio-right current" } else { "ratio-right" };
-                    li class="vote-edge-history-row" {
+                    @let (r_left, r_right) = ratios_for_compare_page(v, left, right);
+                    @let pct = ratio_pct(r_left, r_right);
+                    @let row_tip = format!(
+                        "{}:{} counts toward {} (left of bar) vs {} (right of bar); #{} · @{}",
+                        r_left,
+                        r_right,
+                        legend_left,
+                        legend_right,
+                        v.thread_tag,
+                        v.principal,
+                    );
+                    li class="vote-edge-history-row" title=(row_tip) {
                         div class="vote-edge-meta" {
-                            a href=(nav.garden_item_href(&lo)) {
-                                code { (item_display_path(lo.as_str())) }
-                            }
-                            span class="vote-edge-ratio" { (format!("{}:{}", ratio_lo, ratio_hi)) }
-                            a href=(nav.garden_item_href(&hi)) {
-                                code { (item_display_path(hi.as_str())) }
-                            }
+                            span class="vote-edge-ratio" { (format!("{}:{}", r_left, r_right)) }
                             span class="muted" { " · #" (v.thread_tag) " · @" (v.principal) }
                         }
-                        div class="ratio-bar vote-edge-bar" {
-                            div class=(left_class) style={(format!("width: {:.3}%;", pct))} {}
-                            div class=(right_class) style={(format!("width: {:.3}%;", 100.0 - pct))} {}
+                        div class="ratio-bar vote-edge-bar" aria-hidden="true" {
+                            div class="ratio-left" style={(format!("width: {:.3}%;", pct))} {}
+                            div class="ratio-right" style={(format!("width: {:.3}%;", 100.0 - pct))} {}
                         }
                         @if !v.body.trim().is_empty() {
                             div class="vote-edge-reason muted" { (v.body.trim()) }
@@ -192,14 +230,33 @@ fn vote_edge_history_markup(
 pub(crate) async fn vote_compare_post_success_js(
     state: &AppState,
     nav: &ThreadNav,
+    room_wire: &str,
+    thread_tag: &str,
     left: &ItemId,
     right: &ItemId,
+    post_id: &str,
+    post_idx: Option<usize>,
 ) -> String {
     let reduced = state.reduced.read().await;
+    let scope = scope_from_room_wire(room_wire);
+    let Some(ing) = reduced.ingests_by_id.get(post_id).cloned() else {
+        drop(reduced);
+        return "console.warn('vo

… preview truncated; 11,546 characters omitted

download full diff B

Hardlinks — judgments / attempts / prompt

prompt download

judgments

attempts

Prompt text is loaded only by the download route.