Expand description
Bounded subprocess spawning for the engine’s two host-command seams
(--llm-cmd, --analyzer-cmd).
This is a deliberate duplicate of areev_core::proc. This crate’s
Cargo.toml states the engine must never depend on an areev-* sibling, so
it cannot use the canonical module. areev-loop/tests/proc_contract.rs
pins the two to the same observable behaviour; change one and the test tells
you to change the other.
Scope is trimmed to what these two seams need: argv commands (never a shell), inherited stderr, no working-directory control, and no clear-the-environment mode. Everything load-bearing is identical — a wall-clock ceiling, an output cap that keeps draining, stdin on its own thread, and a registry of variables that must never reach a child.
Structs§
- Spawn
Output - What a spawn produced.
Constants§
- DEFAULT_
MAX_ OUTPUT - Matches
areev_core::proc::DEFAULT_MAX_OUTPUT. - DEFAULT_
TIMEOUT - Matches
areev_core::proc::DEFAULT_TIMEOUT.
Functions§
- deny_
env_ var - Register a variable whose value must never reach a child process.
- run_
argv - Run
argvwithstdin, bounded bytimeoutand the output cap. - secret_
env_ vars - The registered secret variable names.