Every CoreServices interface (core/plugin/deps.go) now has a guest-side stub
that marshals to the WO-WZ-001 capability messages and dispatches through the
generic host_call transport, so plugin service code compiles and runs
unchanged against content.Content, settings.Settings, plugin.PluginBridge, etc.
- core/plugin/wasmguest/caps/: one file per family (17 families, 38 methods),
a var _ <iface> = (*stub)(nil) compile proof each, and NewCoreServices(call)
assembling them. The transport is injected (CallFunc) so marshaling is
natively testable; the wasm shim binds it to CallHost, DESCRIBE probes pass
nil (capability calls fail cleanly instead of nil-panicking).
- Error mapping wraps AbiError with <family>.<method> context and maps
DEADLINE_EXCEEDED onto context.DeadlineExceeded.
- RAGService.RegisterContentFetcher stays guest-side (RAGStub) for
HOOK_RAG_FETCH dispatch; Query/OnContentChanged marshal out. dispatch.go and
describe.go now source fetchers from the caps RAG stub.
- caps_roundtrip_test.go: fake transport + 76 deterministic golden payloads
(family_method_{req,resp}.pb) covering 100% of families, plus error-mapping,
deadline, nil-transport, and guest-side-fetcher tests. WO-WZ-006 replays the
same goldens to prevent host/guest drift.
- Acceptance: testdata/fixture Load hook calls deps.Content/Settings/Bridge
unchanged (compiles for wasip1); caps_wasmhost_test.go drives it end-to-end
through a real wazero module + fake host_call table.
- Disposition table in docs/wasm-abi.md: every member stub | host-side
(Pool, Interceptors, AppURL/MediaPath, CoreServiceBindings host-side).
Co-Authored-By: Claude Fable 5 <noreply@anthropic.com>
31 lines
977 B
Go
31 lines
977 B
Go
package caps
|
|
|
|
import (
|
|
"context"
|
|
|
|
abiv1 "git.dev.alexdunmow.com/block/core/abi/v1"
|
|
"git.dev.alexdunmow.com/block/core/crypto"
|
|
)
|
|
|
|
// cryptoStub implements crypto.Crypto over crypto.* capability calls. The
|
|
// interface takes no context; host calls run under the invoke deadline.
|
|
type cryptoStub struct{ base }
|
|
|
|
var _ crypto.Crypto = (*cryptoStub)(nil)
|
|
|
|
func (s *cryptoStub) EncryptSecret(plaintext string) (string, error) {
|
|
resp := &abiv1.CryptoEncryptSecretResponse{}
|
|
if err := s.invoke(context.Background(), "encrypt_secret", &abiv1.CryptoEncryptSecretRequest{Plaintext: plaintext}, resp); err != nil {
|
|
return "", err
|
|
}
|
|
return resp.GetCiphertext(), nil
|
|
}
|
|
|
|
func (s *cryptoStub) DecryptSecret(ciphertext string) (string, error) {
|
|
resp := &abiv1.CryptoDecryptSecretResponse{}
|
|
if err := s.invoke(context.Background(), "decrypt_secret", &abiv1.CryptoDecryptSecretRequest{Ciphertext: ciphertext}, resp); err != nil {
|
|
return "", err
|
|
}
|
|
return resp.GetPlaintext(), nil
|
|
}
|