caixa_core/dialeto.rs
1//! `defcaixa` is spoken by two unrelated declarations. This module makes that
2//! a **typed fact** instead of an anonymous parse failure.
3//!
4//! # The finding
5//!
6//! Measured 2026-07-31 over the pleme-io org checkout (270 `caixa.lisp` /
7//! `*.caixa.lisp` files found with `rg --no-ignore`; a bare `rg` from the org
8//! root returns 0, which is how this stayed invisible), the corpus splits into
9//! two schemas that share zero required slots:
10//!
11//! * [`CaixaDialeto::Pacote`] — this crate's [`crate::Caixa`]. `:nome
12//! :versao :kind :deps :bibliotecas :exe :servicos` + the supervisor/mesh
13//! slots. It declares a **tatara-lisp package**: the thing `feira` resolves,
14//! builds, links and publishes.
15//! * [`CaixaDialeto::Molde`] — `:name :kind :ecosystem :package {…} :workflows
16//! […] :ci-config {…} :files […]`. It declares a **repo's generated
17//! surface**: which foreign ecosystem (rust / go / python / …), that
18//! ecosystem's own package metadata, the CI shims to emit, and byte-captured
19//! file bodies. Read by `pleme-doc-gen`, never by `feira`.
20//!
21//! `:package`, `:ecosystem`, `:supports` and `:profile` have no counterpart in
22//! [`crate::Caixa`] at all — the theory doc's own D4 note records the same
23//! thing: those manifests "are authored against a schema that does not exist in
24//! Rust". They are not two spellings of one declaration. They are two domains
25//! that collided on one word, because *caixa* names a box and both are boxes.
26//!
27//! # Why this is not a bug report about broken files
28//!
29//! The Molde-dialect files are not malformed. They are correct inputs to their
30//! own consumer, and nothing in the shipped `feira` reads them, so nothing is
31//! failing today. The hazard is **latent and certain**: any new declarative
32//! surface written against "a `.caixa.lisp` is a [`crate::Caixa`]" meets a
33//! corpus where that is false for the large majority of files, and gets a flat
34//! unknown-keyword rejection that reads as "this manifest is broken" rather
35//! than "this manifest is not yours".
36//!
37//! # What this module does about it
38//!
39//! [`classify`] is total: every `(defcaixa …)` form lands in exactly one
40//! [`CaixaDialeto`], including [`CaixaDialeto::Desconhecido`] for one that
41//! matches neither. [`crate::Caixa::from_lisp`] runs it first, so a foreign
42//! dialect is [`crate::ManifestError::DialetoEstrangeiro`] — an error that
43//! names the dialect it found and the consumer that speaks it — rather than an
44//! unknown-kwarg error indistinguishable from a typo.
45//!
46//! Tier-honest: this is **parse-time rejection with a named cause**, not
47//! unrepresentability. A caller that ignores the `Err` still gets nothing
48//! useful; what it can no longer do is mistake "wrong dialect" for "bad file".
49
50use tatara_lisp::{Atom, Sexp};
51
52/// Canonical `PascalCase` variant-name byte-string the internal-
53/// classification [`CaixaDialeto::Pacote`] arm surfaces under — the
54/// per-arm `&'static str` payload every consumer that formats the
55/// dialect axis as census-facing text (the `feira dialeto` census
56/// counter output line, future `feira dialeto --list-dialects` /
57/// `--filter <Pacote|Molde|MoldePosicional|Desconhecido>` CLI-side
58/// enumerations, a future M4 `mesh.pleme.io/v1alpha1/Manifesto` CR
59/// materializer's admission-webhook rejection body naming the
60/// accepted-dialect set, structured-log `tracing::field::Value::Str`
61/// per-dialect emits on the caixa-build pipeline's per-file classify
62/// path) converges onto verbatim through the paired
63/// [`CaixaDialeto::as_str`] `pub const fn` accessor and the sibling
64/// [`CaixaDialeto::from_wire`] reverse-projection parser. Peer of
65/// [`CAIXA_DIALETO_WIRE_MOLDE`] / [`CAIXA_DIALETO_WIRE_MOLDE_POSICIONAL`]
66/// / [`CAIXA_DIALETO_WIRE_DESCONHECIDO`] on the four-arm dialect-
67/// classification wire-form axis.
68///
69/// Same "one canonical byte-string per typed axis" discipline the
70/// peer [`crate::render::RENDER_PATH_SHAPE_VIOLATION_WIRE_EMPTY`]
71/// (0330bd3) / [`crate::render::CAIXA_KIND_WIRE_BIBLIOTECA`] /
72/// [`crate::render::M2_UPGRADE_INSTRUCTION_WIRE_LOAD_MODULE`]
73/// (36ffe65) / [`crate::render::SUPERVISOR_ESTRATEGIA_ONE_FOR_ONE`]
74/// (be40492) / [`crate::render::M3_PLACEMENT_ESTRATEGIA_SINGLE_NODE`]
75/// families established for the sibling render-side path-shape-
76/// diagnostic / M2 OTP-shape / supervisor / M3 mesh-shape closed-set
77/// typed-enum wire-form axes — extends the discipline onto the
78/// tatara-lisp dialect-classification axis, the eleventh substrate-
79/// side closed-set typed enum to converge onto it and the first
80/// dialect-classification axis (as distinct from the top-level
81/// manifest surface or a render-side path-shape-diagnostic surface)
82/// to reach it. Until this lift landed the byte-string sat twice
83/// inline in [`CaixaDialeto::as_str`] and [`CaixaDialeto::from_wire`]
84/// with no compile-time link between the emit and parse arms nor to
85/// any downstream roster; a future rebrand (a per-arm variant
86/// rename under an M4 vocabulary shift, an operator-vocabulary
87/// migration for a `feira dialeto --list-dialects` per-arm listing)
88/// would have desynchronized the paired arm-set until a downstream
89/// consumer surfaced the drift at runtime. Routing all halves
90/// (`as_str` + `from_wire` + the paired
91/// [`CaixaDialeto::WIRE_NAMES`] roster) through this const closes
92/// the drift structurally by construction. Pinned load-bearing by
93/// [`tests::caixa_dialeto_wire_names_covers_every_arm`] (paired
94/// roster / emitter round-trip).
95pub const CAIXA_DIALETO_WIRE_PACOTE: &str = "Pacote";
96
97/// Canonical `PascalCase` variant-name byte-string the internal-
98/// classification [`CaixaDialeto::Molde`] arm surfaces under. Peer of
99/// [`CAIXA_DIALETO_WIRE_PACOTE`] on the four-arm dialect-classification
100/// wire-form axis; see [`CAIXA_DIALETO_WIRE_PACOTE`] for the full lift
101/// rationale.
102pub const CAIXA_DIALETO_WIRE_MOLDE: &str = "Molde";
103
104/// Canonical `PascalCase` variant-name byte-string the internal-
105/// classification [`CaixaDialeto::MoldePosicional`] arm surfaces under.
106/// Peer of [`CAIXA_DIALETO_WIRE_PACOTE`] on the four-arm dialect-
107/// classification wire-form axis; see [`CAIXA_DIALETO_WIRE_PACOTE`] for
108/// the full lift rationale. The full-word (rather than abbreviated)
109/// spelling here is load-bearing — a `format!("{:?}", …).to_lowercase()`
110/// round-trip on the source-side `Debug` derive would collapse the
111/// multi-word arm to `"moldeposicional"` and desynchronize the tag
112/// from every peer substrate-side census-facing `PascalCase` axis.
113pub const CAIXA_DIALETO_WIRE_MOLDE_POSICIONAL: &str = "MoldePosicional";
114
115/// Canonical `PascalCase` variant-name byte-string the internal-
116/// classification [`CaixaDialeto::Desconhecido`] arm surfaces under.
117/// Peer of [`CAIXA_DIALETO_WIRE_PACOTE`] on the four-arm dialect-
118/// classification wire-form axis; see [`CAIXA_DIALETO_WIRE_PACOTE`] for
119/// the full lift rationale.
120pub const CAIXA_DIALETO_WIRE_DESCONHECIDO: &str = "Desconhecido";
121
122/// Which `(defcaixa …)` declaration a source speaks.
123///
124/// The [`gen_platform::IsVariant`] derive emits per-arm arm-discriminator
125/// predicates (`is_pacote` / `is_molde` / `is_molde_posicional` /
126/// `is_desconhecido`) as substrate-side typed dispatches on the closed
127/// four-arm dialect-classification discriminator. Peer of the sibling
128/// closed-set fieldless typed enums' [`crate::CaixaKind`] /
129/// [`crate::supervisor::RestartStrategy`] /
130/// [`crate::supervisor::RestartPolicy`] /
131/// [`crate::aplicacao::PlacementStrategy`] /
132/// [`crate::aplicacao::RateLimitUnit`] /
133/// [`crate::dep::DepList`] `IsVariant` derives on the sibling
134/// closed-set typed-enum discriminator axes.
135///
136/// The pre-lift `is_molde_family` predicate hand-rolled its own
137/// `matches!(self, Self::Molde | Self::MoldePosicional)` two-arm literal
138/// with no compile-time link back to the closed set — post-lift it routes
139/// through `self.is_molde() || self.is_molde_posicional()` so a future
140/// arm rename (e.g. `Molde → MoldeKW` under an M4 vocabulary shift) trips
141/// exhaustively at every derive-generated predicate site rather than
142/// leaving the hand-rolled `matches!` silently drifting.
143#[derive(Debug, Clone, Copy, PartialEq, Eq, Hash, gen_platform::IsVariant)]
144pub enum CaixaDialeto {
145 /// This crate's [`crate::Caixa`] — a tatara-lisp package manifest.
146 /// Keyword-argument form headed by `:nome`.
147 Pacote,
148 /// `pleme-doc-gen`'s repo-surface declaration, keyword-argument form
149 /// headed by `:name` (plus `:ecosystem` / `:package`).
150 Molde,
151 /// The same declaration as [`Self::Molde`], written with the package name
152 /// as a bare positional symbol — `(defcaixa todoku-go :kind :Biblioteca
153 /// :ecosystem :go …)`. `pleme-doc-gen`'s parser reads the first token
154 /// after the head as the name, so this is one arity of one declaration,
155 /// not a third schema.
156 MoldePosicional,
157 /// A `(defcaixa …)` form matching neither. Kept as a variant rather than
158 /// an error so [`classify`] is total and a census can COUNT the residue —
159 /// a classifier that threw here would report "0 unknown" by construction.
160 Desconhecido,
161}
162
163impl CaixaDialeto {
164 /// Exhaustive iteration surface for every consumer that walks the
165 /// closed four-arm [`CaixaDialeto`] discriminator set — the
166 /// [`feira dialeto`](../../caixa_feira/cmd/dialeto/index.html)
167 /// census counter's per-arm accept-set, a future
168 /// `feira dialeto --list-dialects` CLI listing of the accepted
169 /// classifications, a future M4 `mesh.pleme.io/v1alpha1/Manifesto`
170 /// CR materializer's admission-webhook rejection body naming the
171 /// accepted-dialect set, any future census-report shape probe that
172 /// sweeps every arm to compute per-arm coverage. A future arm
173 /// addition (a fifth dialect the [`crate::dialeto`] module doc's
174 /// "third dialect" hazard actualises — the module explicitly frames
175 /// its purpose as "what stops a third dialect appearing", and this
176 /// slice is the substrate-side answer: the arm-set is one edit and
177 /// every consumer picks up the new entry by construction) extends
178 /// this slice as one edit and every downstream consumer picks up
179 /// the new entry through the shared iteration; the compiler-checked
180 /// exhaustiveness on the sibling method `match` arms
181 /// ([`Self::palavra_canonica`] / [`Self::consumidor`] /
182 /// [`Self::descricao`] / [`std::fmt::Display`]) is the build-time
183 /// guarantee that no arm forgets to grow.
184 ///
185 /// Peer of the sibling closed-set typed enums'
186 /// [`crate::CaixaKind::ALL`] (6b1f4fb) /
187 /// [`crate::aplicacao::PlacementStrategy::ALL`] (18c7342) /
188 /// [`crate::aplicacao::RateLimitUnit::ALL`] (6bce03d) /
189 /// [`crate::dep::DepList::ALL`] (45ee563) /
190 /// [`crate::supervisor::RestartStrategy::ALL`] (4eec29c) /
191 /// [`crate::supervisor::RestartPolicy::ALL`] (dd32ccf)
192 /// exhaustive-iteration surfaces — the seventh closed-set typed
193 /// enum on the caixa surface to converge onto the same
194 /// one-canonical-arm-list-per-enum discipline, and the first
195 /// dialect-classification axis (as distinct from an OTP-shape M2
196 /// slot or an M3 mesh slot) to reach it. Order matches variant
197 /// declaration order verbatim (`Pacote` → `Molde` →
198 /// `MoldePosicional` → `Desconhecido`) so the slice is the
199 /// canonical ordering every listing / rendering consumer defers to.
200 pub const ALL: &'static [Self] = &[
201 Self::Pacote,
202 Self::Molde,
203 Self::MoldePosicional,
204 Self::Desconhecido,
205 ];
206
207 /// Substrate-canonical `PascalCase` variant-name byte-string every consumer
208 /// that formats the dialect as census-facing text lands on. Returns the
209 /// per-arm `PascalCase` name of the variant (`"Pacote"` / `"Molde"` /
210 /// `"MoldePosicional"` / `"Desconhecido"`) — the one canonical
211 /// byte-string the paired [`std::fmt::Display`] impl routes through so
212 /// every downstream consumer (the `feira dialeto` census counter output
213 /// line, a future `feira dialeto --list-dialects` CLI enumeration, a
214 /// future M4 `mesh.pleme.io/v1alpha1/Manifesto` CR materializer's
215 /// admission-webhook rejection body naming the accepted-dialect set)
216 /// reaches for the same substrate primitive rather than the pre-lift
217 /// hand-rolled four-arm literal-string match every [`std::fmt::Display`]
218 /// call previously routed through in place.
219 ///
220 /// Peer of the sibling closed-set typed enums'
221 /// [`crate::CaixaKind::as_str`] / [`crate::supervisor::RestartStrategy::as_str`]
222 /// / [`crate::supervisor::RestartPolicy::as_str`] /
223 /// [`crate::aplicacao::PlacementStrategy::as_str`] /
224 /// [`crate::dep::DepList::as_str`] projections on the sibling closed-set
225 /// typed-enum discriminator axes — the seventh (and last unlifted)
226 /// closed-set fieldless typed enum on the caixa surface to converge
227 /// onto the same one-canonical-byte-string-per-arm-through-`as_str`
228 /// discipline the six siblings already carry. Unlike [`crate::CaixaKind`]
229 /// (which carries two axes: `as_str` returning lowercase Portuguese
230 /// diagnostic form vs `wire_name` returning `PascalCase` tatara-lisp
231 /// author-surface bytes), [`CaixaDialeto`] is an internal
232 /// classification with no wire surface — the `PascalCase` variant name
233 /// is the census-facing form every consumer reads, so `as_str`
234 /// suffices without a paired `wire_name` axis.
235 #[must_use]
236 pub const fn as_str(self) -> &'static str {
237 match self {
238 Self::Pacote => CAIXA_DIALETO_WIRE_PACOTE,
239 Self::Molde => CAIXA_DIALETO_WIRE_MOLDE,
240 Self::MoldePosicional => CAIXA_DIALETO_WIRE_MOLDE_POSICIONAL,
241 Self::Desconhecido => CAIXA_DIALETO_WIRE_DESCONHECIDO,
242 }
243 }
244
245 /// Substrate-canonical exhaustive accept-set on the
246 /// [`CaixaDialeto`] `PascalCase` variant-name wire-form byte-string
247 /// axis — the closed four-arm roster of every byte-string
248 /// [`Self::as_str`] returns, routed byte-for-byte through the paired
249 /// [`CAIXA_DIALETO_WIRE_PACOTE`] / [`CAIXA_DIALETO_WIRE_MOLDE`] /
250 /// [`CAIXA_DIALETO_WIRE_MOLDE_POSICIONAL`] /
251 /// [`CAIXA_DIALETO_WIRE_DESCONHECIDO`] lifted `pub const` scalars the
252 /// [`Self::as_str`] emitter (and the [`std::fmt::Display`] /
253 /// [`AsRef<str>`] / `From<{Self,&Self}> for {&'static str, String,
254 /// Cow<'static, str>, Box<str>, Arc<str>}` trait triple + quintuple
255 /// routed through it) walks — and byte-for-byte the same four strings
256 /// the paired [`Self::from_wire`] and [`TryFrom<&str>`] reverse
257 /// projections accept.
258 ///
259 /// Peer of the sibling [`crate::CaixaKind::WIRE_NAMES`] (bd708bd) /
260 /// [`crate::supervisor::RestartStrategy::WIRE_NAMES`] (3033f45) /
261 /// [`crate::supervisor::RestartPolicy::WIRE_NAMES`] (ce9412b) /
262 /// [`crate::aplicacao::PlacementStrategy::WIRE_NAMES`] (3e5b194) /
263 /// [`crate::render::PathShapeViolation::WIRE_NAMES`] (0330bd3)
264 /// rosters on the `PascalCase` / lowercase-kebab wire-form axes, the
265 /// sibling [`crate::CaixaKind::LABELS`] (427fe75) /
266 /// [`crate::aplicacao::WitShape::LABELS`] (9d9f585) rosters on the
267 /// lowercase-kebab census-label axis, the sibling
268 /// [`crate::aplicacao::RateLimitUnit::SUFFIXES`] (b553ec9) roster on
269 /// the single-char canonical-suffix axis, the sibling
270 /// [`crate::upgrade::UpgradeInstruction::LISP_FORMS`] (1898d77) /
271 /// [`crate::upgrade::UpgradeInstruction::WIRE_FORMS`] (cc42c0e)
272 /// rosters on the OTP-appup two-axis roster split, and the sibling
273 /// [`crate::dep::DepList::AUTHOR_KEYS`] (af6ad3a) roster on the
274 /// two-list dep-graph axis — the same closed-set exhaustive-accept-
275 /// set roster discipline extended here onto the tatara-lisp dialect-
276 /// classification closed-set typed enum, the eleventh substrate-side
277 /// closed-set typed enum on the roster axis and the first
278 /// dialect-classification axis (as distinct from the top-level
279 /// manifest surface or a render-side path-shape-diagnostic surface)
280 /// to converge onto the discipline. The sibling
281 /// [`crate::render::PathShapeViolation::WIRE_NAMES`] doc block's
282 /// closing sentence names this enum ("The sibling
283 /// [`crate::dialeto::CaixaDialeto`] closed-set typed enum on the
284 /// tatara-lisp dialect axis remains the next natural peer, still
285 /// carrying only [`crate::dialeto::CaixaDialeto::ALL`]") as the next
286 /// natural peer — this lift closes the naming.
287 ///
288 /// Downstream consumers of the closed accepted-wire-form set — a
289 /// future `feira dialeto --list-dialects` CLI-side enumeration of
290 /// the accepted dialect classifications whose candidate-list must
291 /// byte-match the wire byte-string [`Self::as_str`] emits (rather
292 /// than the source-side variant identifier), a future `feira dialeto
293 /// --filter <Pacote|Molde|MoldePosicional|Desconhecido>` CLI arg-
294 /// parse's "did you mean" hint that scans this slice rather than
295 /// open-coding the four literal `PascalCase` strings, a future M4
296 /// `mesh.pleme.io/v1alpha1/Manifesto` CR admission-webhook rejection
297 /// body enumerating accepted per-dialect wire-form slugs on an
298 /// unknown-tag miss, a future `feira dialeto` per-arm histogram
299 /// column that walks the roster to render every arm's tally
300 /// (including zero-count arms — a hand-rolled projection off
301 /// [`Self::ALL`] alone would need a companion per-variant-to-tag
302 /// map at every consumer; this roster closes the two-axis walk in
303 /// one lifted const), a future `tracing::field::valuable::Value::List`
304 /// structured-log accepted-dialect emit on the caixa-build
305 /// pipeline's per-file classify emission path — now reach for one
306 /// lifted substrate-primitive roster rather than open-coding a
307 /// `["Pacote", "Molde", "MoldePosicional", "Desconhecido"]` four-
308 /// string array literal whose arm-set has no compile-time link back
309 /// to the typed [`CaixaDialeto`] enum. A future arm addition (the
310 /// module doc's "third dialect" hazard actualising as a fifth arm —
311 /// a third arity variant, an alias-declaration family pleme-doc-gen
312 /// sharpens as its schema evolves) extends this roster as a single
313 /// edit — paired with the [`Self::as_str`] match's compiler-checked
314 /// exhaustiveness on the new arm — and every consumer picks up the
315 /// new wire form by construction.
316 ///
317 /// Length is pinned load-bearing at `CaixaDialeto::ALL.len()`
318 /// (four) by
319 /// [`tests::caixa_dialeto_wire_names_covers_every_arm`], every
320 /// variant's [`Self::as_str`] projection is pinned to a member of
321 /// the roster so a silent skew between the emitter's arm-set and
322 /// this const's arm-set trips at caixa-core test time rather than at
323 /// a downstream consumer's accepted-set enumeration miss, every
324 /// entry is pinned to open with an uppercase ASCII byte (matching
325 /// the substrate-wide `PascalCase` convention every peer closed-set
326 /// enum whose canonical projection is a `PascalCase` census-facing
327 /// name carries), and the roster's declaration order is pinned
328 /// byte-for-byte against the variant declaration order (`Pacote` →
329 /// `Molde` → `MoldePosicional` → `Desconhecido`) so a future arm-
330 /// swap on the roster or the paired `CAIXA_DIALETO_WIRE_*` constants
331 /// trips at caixa-core test time under `assert_eq!` rather than at
332 /// a downstream per-dialect ordering table's miss.
333 pub const WIRE_NAMES: &'static [&'static str] = &[
334 CAIXA_DIALETO_WIRE_PACOTE,
335 CAIXA_DIALETO_WIRE_MOLDE,
336 CAIXA_DIALETO_WIRE_MOLDE_POSICIONAL,
337 CAIXA_DIALETO_WIRE_DESCONHECIDO,
338 ];
339
340 /// Substrate-canonical reverse projection on the [`CaixaDialeto`]
341 /// closed-set dialect-classification axis — parses the `PascalCase`
342 /// variant-name byte-string back to the typed variant, or `None` when
343 /// `s` is outside the closed-set arm-string set [`Self::as_str`]
344 /// emits. Walks the same four `"Pacote"` / `"Molde"` /
345 /// `"MoldePosicional"` / `"Desconhecido"` byte-strings the sibling
346 /// [`Self::as_str`] emitter returns, so the parse and emit halves of
347 /// the round-trip migrate through one caixa-core edit on any future
348 /// arm addition (the module doc's "third dialect" hazard actualising
349 /// as a fifth arm) — the compiler-checked exhaustiveness on
350 /// [`Self::as_str`]'s `match self` arms and the round-trip pin
351 /// [`tests::caixa_dialeto_round_trips_through_as_str_and_from_wire`]
352 /// together lock the two halves mutually.
353 ///
354 /// Prior to this lift the substrate carried only the forward
355 /// `Self → &str` projection on the dialect-classification axis (the
356 /// [`Self::as_str`] emitter, the [`std::fmt::Display`] impl routed
357 /// through it, the [`AsRef<str>`] impl routed through it) — every
358 /// future consumer that wanted to promote the census-facing text back
359 /// to the typed enum (a future `feira dialeto --filter
360 /// <Pacote|Molde|MoldePosicional|Desconhecido>` CLI arg-parse that
361 /// binds the wire form into the typed enum before dispatching to the
362 /// per-arm counter, a future M4 `mesh.pleme.io/v1alpha1/Manifesto`
363 /// CR materializer's admission-time re-parse of the per-dialect
364 /// audit body, a future audit-report re-loader that binds a prior
365 /// [`Self::as_str`] output back to the typed enum for cross-run
366 /// comparison) would have had to re-inline a four-arm `match s`
367 /// cascade that expressed no compile-time link back to the typed
368 /// [`CaixaDialeto`] enum.
369 ///
370 /// Same closed-set-reverse-projection discipline the sibling
371 /// [`crate::CaixaKind::from_wire`] (2aa6d23) /
372 /// [`crate::supervisor::RestartStrategy::from_wire`] (4eec29c) /
373 /// [`crate::supervisor::RestartPolicy::from_wire`] (dd32ccf) /
374 /// [`crate::aplicacao::PlacementStrategy::from_wire`] (18c7342) /
375 /// [`crate::dep::DepList::from_wire`] (45ee563) typed enums carry on
376 /// the peer wire-side `str → Self` axes — extends the family onto
377 /// the seventh closed-set fieldless typed enum on the caixa surface
378 /// (the dialect-classification axis), matching the same
379 /// two-way `str ↔ Self` round-trip every sibling closed-set enum
380 /// already carries. Method-named `from_wire` (not `from_str`) to
381 /// match the peer shapes verbatim and side-step the derived
382 /// [`std::str::FromStr`] impls the sibling
383 /// [`gen_platform::FromStrKind`]-carrying axes install on their
384 /// kebab-case dispatcher-catalog identity. Returns `Option<Self>`
385 /// (rather than `Result<Self, _>`) to match the peer shapes: the
386 /// caller picks the diagnostic form appropriate for its use site.
387 #[must_use]
388 pub fn from_wire(s: &str) -> Option<Self> {
389 match s {
390 CAIXA_DIALETO_WIRE_PACOTE => Some(Self::Pacote),
391 CAIXA_DIALETO_WIRE_MOLDE => Some(Self::Molde),
392 CAIXA_DIALETO_WIRE_MOLDE_POSICIONAL => Some(Self::MoldePosicional),
393 CAIXA_DIALETO_WIRE_DESCONHECIDO => Some(Self::Desconhecido),
394 _ => None,
395 }
396 }
397
398 /// The keyword an author should write for this dialect, once the
399 /// migration named in [`Self::consumidor`] completes.
400 #[must_use]
401 pub const fn palavra_canonica(self) -> &'static str {
402 match self {
403 Self::Pacote => "defcaixa",
404 Self::Molde | Self::MoldePosicional => "defmolde",
405 Self::Desconhecido => "?",
406 }
407 }
408
409 /// Who reads this dialect.
410 #[must_use]
411 pub const fn consumidor(self) -> &'static str {
412 match self {
413 Self::Pacote => "caixa-core / feira",
414 Self::Molde | Self::MoldePosicional => "pleme-doc-gen",
415 Self::Desconhecido => "nobody known",
416 }
417 }
418
419 /// A one-line description for a census row or an error message.
420 #[must_use]
421 pub const fn descricao(self) -> &'static str {
422 match self {
423 Self::Pacote => "tatara-lisp package manifest (:nome :versao :kind :deps …)",
424 Self::Molde => "repo-surface declaration (:name :ecosystem :package {…} …)",
425 Self::MoldePosicional => {
426 "repo-surface declaration, positional name (defcaixa <nome> :kind …)"
427 }
428 Self::Desconhecido => "unrecognised — matches no known defcaixa schema",
429 }
430 }
431
432 /// True when this arm belongs to the `defmolde` declaration family —
433 /// the two-arity closure of [`Self::Molde`] and [`Self::MoldePosicional`]
434 /// under the shared `defmolde` head keyword the sibling
435 /// [`Self::palavra_canonica`] projection already collapses onto
436 /// `"defmolde"` for both arms (and the sibling [`Self::consumidor`]
437 /// projection collapses onto `"pleme-doc-gen"` for the same two arms).
438 /// False on [`Self::Pacote`] (the sibling `defcaixa` tatara-lisp
439 /// package manifest, [`Self::palavra_canonica`] `→ "defcaixa"`) and
440 /// on [`Self::Desconhecido`] (the residue that names no known
441 /// declaration, [`Self::palavra_canonica`] `→ "?"`).
442 ///
443 /// The [`Self::Molde`] / [`Self::MoldePosicional`] split is one
444 /// declaration written two ways ([`Self::MoldePosicional`]'s
445 /// variant-declaration docstring at [`Self::MoldePosicional`] frames
446 /// it exactly: "the same declaration as [`Self::Molde`], written with
447 /// the package name as a bare positional symbol … this is one arity
448 /// of one declaration, not a third schema"). Every downstream gate
449 /// that keys off "does this dialect belong to the `defmolde` family"
450 /// (as distinct from the four-arm-per-arm census-counter axis the
451 /// sibling `feira dialeto` verb already fans on separately at
452 /// `caixa-feira/src/cmd/dialeto.rs:110-127`) previously hand-rolled
453 /// the two-arm collapse inline as `matches!(d, CaixaDialeto::Molde |
454 /// CaixaDialeto::MoldePosicional)` — a compile-time-anonymous
455 /// two-arm literal set with no link back to the [`CaixaDialeto`]
456 /// variant declaration nor to the sibling
457 /// [`Self::palavra_canonica`] / [`Self::consumidor`] projections
458 /// that already carry the same two-arm collapse under the shared
459 /// `defmolde` / `pleme-doc-gen` axis. The `feira dialeto` verb's
460 /// [`caixa-feira/src/cmd/dialeto.rs`] carried the same
461 /// `matches!` twice — once in the `--strict-palavra` gate that
462 /// refuses a repo-surface declaration still written as
463 /// `(defcaixa …)`, once in the wrong-declaration-under-`caixa.lisp`
464 /// gate that refuses a repo-surface declaration under the filename
465 /// `feira` loads as a package manifest — with no compile-time link
466 /// between the two hand-rolled arm sets. A future arm addition (the
467 /// module doc's "third dialect" hazard actualises as a fifth arm
468 /// [`CaixaDialeto`] that belongs to the `defmolde` declaration
469 /// family — a third arity variant, an alias-declaration family
470 /// pleme-doc-gen sharpens as its schema evolves) would silently
471 /// split the two hand-rolled `matches!` arm-sets from each other
472 /// and from the paired [`Self::palavra_canonica`] projection: one
473 /// call site picks up the new arm, one does not, and the disagreement
474 /// surfaces far from the arm-addition commit as a `feira dialeto`
475 /// consumer reporting a repo-surface declaration under one gate but
476 /// not the other. Routing every "belongs to the `defmolde` family"
477 /// predicate through this one substrate primitive closes the axis:
478 /// a future arm addition lands one match arm here (a compile-time
479 /// exhaustiveness error otherwise), not a coordinated per-`matches!`
480 /// rewrite across every caller.
481 ///
482 /// Peer of the sibling [`crate::CaixaKind::requires_lib`] (0421c22)
483 /// per-arm-set predicate on the [`crate::CaixaKind`] closed-set
484 /// discriminator's "kind requires a `lib/` surface" axis — extends
485 /// the same "one canonical typed predicate per per-arm-set gate,
486 /// one dispatch on the substrate primitive" discipline onto the
487 /// [`CaixaDialeto`] closed-set discriminator's "belongs to the
488 /// `defmolde` declaration family" axis. The dialect-classification
489 /// axis's second per-arm-set predicate (first being the implicit
490 /// palavra_canonica-through-consumidor-through-descricao arm-set
491 /// collapse already carried on the sibling projections) — the first
492 /// explicitly-typed per-arm-set predicate on the axis, matching the
493 /// discipline the sibling M2 [`crate::CaixaKind`] closed-set
494 /// discriminator already carries with `requires_lib`.
495 ///
496 /// Three consumers now route through this one typed dispatch: the
497 /// [`caixa-feira`](../../caixa_feira/cmd/dialeto/index.html) verb's
498 /// `--strict-palavra` gate (refusing a repo-surface declaration
499 /// still written as `(defcaixa …)`), the same verb's wrong-
500 /// declaration-under-`caixa.lisp` gate (refusing a repo-surface
501 /// declaration under the filename `feira` loads as a package
502 /// manifest), and [`crate::Caixa::from_lisp`]'s foreign-dialect
503 /// gate (raising [`crate::ManifestError::DialetoEstrangeiro`] before
504 /// the derive's `parse_kwargs_strict` walk on any `defmolde`-family
505 /// classification — the pre-lift hand-rolled three-arm
506 /// `match { Pacote => {}, Desconhecido => {}, foreign => Err(…) }`
507 /// literal whose `foreign =>` wildcard silently absorbed anything
508 /// non-Pacote-non-Desconhecido, now the third external consumer of
509 /// the `defmolde`-family partition).
510 #[must_use]
511 pub const fn is_molde_family(self) -> bool {
512 // Routed through the derive-generated per-arm predicates
513 // [`Self::is_molde`] + [`Self::is_molde_posicional`] so the
514 // two-arm collapse links compile-time back to the closed-set
515 // typed dispatch every peer arm-set predicate on the caixa
516 // surface (e.g. [`crate::CaixaKind::requires_lib`] on the
517 // sibling `:kind` axis) now carries. Byte-equivalent to the
518 // pre-lift `matches!(self, Self::Molde | Self::MoldePosicional)`
519 // form (the derived `is_*` predicates each expand to the same
520 // `matches!(self, Self::X)` shape by construction), but a
521 // future arm rename or IsVariant `#[is_variant(name = "…")]`
522 // override lands at exactly one dispatch on the substrate
523 // primitive rather than a hand-rolled two-arm literal.
524 self.is_molde() || self.is_molde_posicional()
525 }
526}
527
528/// [`std::fmt::Display`] routed through [`CaixaDialeto::as_str`], so the
529/// pretty-printed byte-string every consumer that formats the dialect as
530/// user-facing / census text lands on (the `feira dialeto` per-manifest
531/// `--list` row, the `feira dialeto` census summary line's per-arm
532/// counters, a future M4 admission-webhook's rejection body naming the
533/// accepted-dialect set) reaches for the same `PascalCase` per-arm
534/// byte-string the [`CaixaDialeto::as_str`] helper returns.
535///
536/// Prior to this lift the [`std::fmt::Display`] impl hand-rolled its own
537/// four-arm literal-string match — the one hand-rolled per-arm dispatch
538/// on the closed [`CaixaDialeto`] discriminator that had NO substrate
539/// primitive accessor to defer to (the sibling [`CaixaDialeto::palavra_canonica`] /
540/// [`CaixaDialeto::consumidor`] / [`CaixaDialeto::descricao`] projections
541/// carry distinct byte-shapes per axis, so none of them could serve as
542/// the Display source). A future variant addition (a fifth dialect the
543/// module doc's "third dialect" hazard actualises) would land one arm at
544/// the enum and per-arm returns at the paired accessors, but a hand-rolled
545/// [`std::fmt::Display`] match would silently drop the new arm to compile-
546/// fail-at-the-match-arm-site rather than through the shared substrate
547/// primitive. Routing [`std::fmt::Display`] through [`CaixaDialeto::as_str`]
548/// closes the last unlifted per-arm `PascalCase`-name projection on the
549/// caixa surface — the seventh (and last unlifted) closed-set fieldless
550/// typed enum on the caixa surface to converge onto the same
551/// `Display`-through-`as_str` discipline the six siblings
552/// ([`crate::CaixaKind`] / [`crate::supervisor::RestartStrategy`] /
553/// [`crate::supervisor::RestartPolicy`] /
554/// [`crate::aplicacao::PlacementStrategy`] / [`crate::aplicacao::RateLimitUnit`]
555/// / [`crate::dep::DepList`]) already carry.
556impl std::fmt::Display for CaixaDialeto {
557 fn fmt(&self, f: &mut std::fmt::Formatter<'_>) -> std::fmt::Result {
558 f.write_str(self.as_str())
559 }
560}
561
562/// Substrate-canonical [`AsRef<str>`] projection on the [`CaixaDialeto`]
563/// closed-set fieldless typed dialect-classification enum — routes through
564/// the same [`CaixaDialeto::as_str`] `pub const fn` scalar accessor the
565/// paired [`std::fmt::Display`] impl already delegates through, so any
566/// future consumer that binds a [`CaixaDialeto`] through the standard-
567/// library `impl AsRef<str>` bound (a [`std::process::Command::arg`]
568/// shell-out that composes the canonical `PascalCase` variant-name into a
569/// `feira dialeto --strict-palavra <Pacote|Molde|MoldePosicional|Desconhecido>`
570/// diagnostic overlay, a `tracing::field::Value::Str`-arm structured-log
571/// recorder on the [`crate::Caixa::from_lisp`] foreign-dialect
572/// [`crate::ManifestError::DialetoEstrangeiro`] refusal path, a
573/// [`std::collections::HashMap`] lookup keyed on the canonical name
574/// through `map.get::<str>(dialeto.as_ref())` on a future M4 admission-
575/// webhook's per-dialect rejection-body composition table) reaches the
576/// paired `"Pacote"` / `"Molde"` / `"MoldePosicional"` / `"Desconhecido"`
577/// byte-string through one substrate-primitive dispatch rather than an
578/// open-coded `.as_str()` re-inlining at every wire-up.
579///
580/// Same "route the trait impl through the substrate-primitive accessor"
581/// discipline the sibling [`crate::CaixaVersion`] [`AsRef<str>`] impl
582/// (16d5c7e), the paired M2 [`crate::supervisor::RestartStrategy`]
583/// [`AsRef<str>`] impl (63eb1a4), the paired M2
584/// [`crate::supervisor::RestartPolicy`] [`AsRef<str>`] impl (419ea81),
585/// the M3 [`crate::aplicacao::PlacementStrategy`] [`AsRef<str>`] impl
586/// (d86edd2), the M3 [`crate::aplicacao::RateLimitUnit`] [`AsRef<str>`]
587/// impl (d8136db), and the top-level [`crate::CaixaKind`] [`AsRef<str>`]
588/// impl (cd2091f) carry — extends the substrate primitive's
589/// [`AsRef<str>`] projection axis onto the seventh closed-set typed enum
590/// on the caixa surface: the dialect-classification axis previously
591/// carried [`fmt::Display`]-through-`as_str` but not yet the paired
592/// [`AsRef<str>`] impl, so a downstream consumer that bound the enum
593/// through the standard-library `AsRef<str>` trait had to reach the
594/// canonical byte-string through an open-coded `.as_str()` call rather
595/// than the trait-idiomatic `.as_ref()` the peer closed-set typed enums
596/// already admit.
597///
598/// Pinned load-bearing by
599/// [`tests::caixa_dialeto_as_ref_str_routes_through_as_str_accessor`]
600/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-arm
601/// closed set) and
602/// [`tests::caixa_dialeto_as_ref_str_routes_through_display_via_shared_accessor`]
603/// (three-path convergence: `AsRef<str>` + `Display` + `as_str` all
604/// resolve to the same byte-string per arm) — any future silent detour
605/// that routes the impl through a divergent projection (a per-arm inline
606/// `match self { CaixaDialeto::Pacote => "Pacote", … }` re-inlining that
607/// opens a compile-time link to the un-lifted arm-literal, a swap onto
608/// the second-axis [`CaixaDialeto::palavra_canonica`] /
609/// [`CaixaDialeto::consumidor`] / [`CaixaDialeto::descricao`] accessors
610/// that carry distinct byte-shapes per axis) trips at caixa-core test
611/// time under `assert_eq!` rather than at a downstream
612/// `impl AsRef<str>`-bound consumer's silent split.
613impl AsRef<str> for CaixaDialeto {
614 fn as_ref(&self) -> &str {
615 self.as_str()
616 }
617}
618
619/// Trait-idiomatic reverse projection on the [`CaixaDialeto`] closed-set
620/// dialect-classification typed enum — routes byte-for-byte through the
621/// paired substrate-primitive [`CaixaDialeto::from_wire`] `Option<Self>`
622/// accessor so every future consumer that binds a `PascalCase` variant-
623/// name byte-string through the standard-library `.try_into()` /
624/// [`TryFrom`] axis (a future `feira dialeto --filter
625/// <Pacote|Molde|MoldePosicional|Desconhecido>` CLI arg-parse that
626/// composes into `let d: CaixaDialeto = s.try_into()?`, a future audit-
627/// report re-loader binding a prior [`CaixaDialeto::as_str`] output
628/// through `CaixaDialeto::try_from(&s)?`, a generic
629/// `<T: TryFrom<&str>>`-bound loader over any of the substrate's closed-
630/// set typed enums) reaches the same four-arm accept-set the sibling
631/// [`CaixaDialeto::from_wire`] parses through and the sibling
632/// [`CaixaDialeto::as_str`] emits, rather than an open-coded per-arm
633/// `match s { "Pacote" => …, … }` cascade whose arm-set has no
634/// compile-time link back to the substrate primitive.
635///
636/// Complements the pre-existing forward-projection triple
637/// ([`std::fmt::Display`], [`AsRef<str>`], [`CaixaDialeto::as_str`]) with
638/// the paired trait-idiomatic reverse-projection axis: Rust-side
639/// newtype/typed-enum convention pairs [`AsRef<str>`] with either
640/// [`std::str::FromStr`] or [`TryFrom<&str>`] on the same primitive so a
641/// caller who can project *out to* a `&str` can also project *in from*
642/// one. The [`TryFrom<&str>`] axis is deliberately chosen over
643/// [`std::str::FromStr`] to sidestep the `clippy::should_implement_trait`
644/// lint that the sibling method-named `from_wire` would trigger under a
645/// `FromStr` impl (the same design tradeoff the peer
646/// [`crate::CaixaKind`] `TryFrom<&str>` impl (3c83606) and the peer
647/// [`crate::provedor::ferrite::FerriteRuntime::from_wire`] block note)
648/// — this impl closes the trait-idiomatic reverse axis without disturbing
649/// the method-named `from_wire` shape every sibling closed-set typed
650/// enum on the substrate already carries.
651///
652/// `type Error = ()` matches the sibling [`CaixaDialeto::from_wire`]'s
653/// `Option<Self>` return-shape's deliberate deferral of error typing:
654/// the caller picks the diagnostic form appropriate for its use site
655/// (a future `feira dialeto --filter` arg-parse composes its own per-verb
656/// "unknown dialect: <arg> — accepted: {…}" message enumerating
657/// [`CaixaDialeto::ALL`], a future admission-webhook rejection body
658/// wraps the `Err(())` outcome with the accepted-set enumeration for
659/// operator diagnostics, a `Result::map_err` at the call site lifts the
660/// unit-error to a per-verb error type). Same shape the peer
661/// [`crate::CaixaKind`] `TryFrom<&str>` impl (3c83606) and the peer
662/// [`FerriteRuntime::from_wire`] doc block motivate on the sibling
663/// closed-set typed enums' reverse projections.
664///
665/// The paired [`TryFrom<&str>`] impl reaches the same four-arm accept-
666/// set the [`CaixaDialeto::from_wire`] resolver dispatches through, so
667/// any future arm addition (the module doc's "third dialect" hazard
668/// actualises as a fifth arm belonging to the `defmolde` family or a
669/// wholly new declaration) grows the trait-idiomatic axis by
670/// construction — one caixa-core edit on [`CaixaDialeto::from_wire`]
671/// extends both the method-named reverse projection every existing
672/// consumer keys off and the trait-idiomatic reverse projection this
673/// impl exposes, without a coordinated rewrite across every future
674/// `TryFrom<&str>`-bound consumer's arm-set.
675///
676/// Pinned load-bearing by
677/// [`tests::caixa_dialeto_try_from_str_routes_through_from_wire_accessor`]
678/// (byte-parity pin against [`CaixaDialeto::from_wire`] across the four-
679/// arm accept-set) and
680/// [`tests::caixa_dialeto_try_from_str_rejects_unknown_byte_strings`]
681/// (rejection witness against silent accept-set widening).
682impl TryFrom<&str> for CaixaDialeto {
683 type Error = ();
684
685 fn try_from(s: &str) -> Result<Self, Self::Error> {
686 Self::from_wire(s).ok_or(())
687 }
688}
689
690/// Trait-idiomatic [`std::str::FromStr`] parse axis on the
691/// [`CaixaDialeto`] closed-set dialect-classification typed enum —
692/// routes byte-for-byte through the paired
693/// [`TryFrom<&str> for CaixaDialeto`] impl (which in turn routes
694/// through the substrate-primitive [`CaixaDialeto::from_wire`]
695/// `Option<Self>` accessor), so `"...".parse::<CaixaDialeto>()` /
696/// `<CaixaDialeto as FromStr>::from_str(…)` reaches the same four-arm
697/// `PascalCase` accept-set the sibling method-named
698/// [`CaixaDialeto::from_wire`] resolver and the paired
699/// [`TryFrom<&str>`] impl already resolve against.
700///
701/// Extends the substrate-wide trait-idiomatic `str::parse`-axis
702/// campaign — opened on [`crate::dep::DepList`] via 6167092 as
703/// first-mover on the two-list dep-graph closed-set typed enum, then
704/// extended onto the structurally most fundamental closed-set typed
705/// enum via [`crate::CaixaKind`] (9867432), then onto the first
706/// M3-mesh-primitive-defining slot enum via
707/// [`crate::aplicacao::PlacementStrategy`] (62ef49a) — onto the
708/// dialect-classification axis every [`crate::Caixa`] carries through
709/// its parsed manifest form. Unlike the peer
710/// [`crate::supervisor::RestartStrategy`] /
711/// [`crate::supervisor::RestartPolicy`] enums (which carry a
712/// [`gen_platform::FromStrKind`]-derived `FromStr` on a paired
713/// *kebab-case dispatcher-catalog* axis and therefore rule the
714/// `PascalCase` wire axis out of a second `FromStr` impl by
715/// coherence), and unlike the peer
716/// [`crate::aplicacao::WitShape`] /
717/// [`crate::aplicacao::RateLimitUnit`] enums (whose two-axis splits
718/// [`WitShape::from_wire`] + [`WitShape::classify`] and
719/// [`RateLimitUnit::from_suffix`] + [`RateLimitUnit::from_window`]
720/// motivate deliberate deferral of the `FromStr` axis so a plain
721/// `s.parse::<T>()` cannot obscure which axis the caller reaches),
722/// [`CaixaDialeto`] carries exactly one census-facing `PascalCase`
723/// axis (the module doc block above the [`CaixaDialeto::as_str`]
724/// accessor names this out: "an internal classification with no wire
725/// surface — the `PascalCase` variant name is the census-facing form
726/// every consumer reads, so `as_str` suffices without a paired
727/// `wire_name` axis"), so lifting [`FromStr`] onto it is coherent by
728/// construction.
729///
730/// [`FromStr`] is the canonical Rust-idiomatic parse-set entry point
731/// every stdlib-shaped consumer reaches for — [`str::parse::<T>()`]
732/// is a `T: FromStr`-bounded generic, not a
733/// `T: for<'a> TryFrom<&'a str>`-bounded one — so lifting [`FromStr`]
734/// onto the closed-set enum unlocks the `.parse::<CaixaDialeto>()`
735/// short-form on every consumer (a future `feira dialeto --filter
736/// <Pacote|Molde|MoldePosicional|Desconhecido>` clap-style arg-parse
737/// composes `arg.parse::<CaixaDialeto>()`; a `serde` string-tagged
738/// deserializer routes through the same `FromStr` bound; a future
739/// dialect-partitioned census-column loader that walks a
740/// `Vec<String>` of prior `CaixaDialeto::as_str` outputs reaches the
741/// typed enum through `line.parse::<CaixaDialeto>()` without a
742/// per-consumer `TryFrom<&str>` restatement).
743///
744/// The impl trivially delegates to the paired [`TryFrom<&str>`] —
745/// same `type Err = ()` deliberate-deferral shape the sibling
746/// reverse-projection trait carries — so both trait-idiomatic
747/// parse-axis paths (`TryFrom<&str>` and `FromStr::from_str`)
748/// resolve to the same four-arm accept-set by construction. A
749/// future accept-set widening (the module doc's "third dialect"
750/// hazard actualising as a fifth arm belonging to the `defmolde`
751/// family or a wholly new declaration) reaches every parse path
752/// through one edit on the substrate-primitive
753/// [`CaixaDialeto::from_wire`] accessor, not a coordinated rewrite
754/// across the two reverse-projection trait impls.
755///
756/// Pinned load-bearing by
757/// [`tests::caixa_dialeto_from_str_routes_through_try_from_str_impl`]
758/// (byte-parity pin across the four-arm accept-set + delegated-
759/// `.parse()`-projection witness) and
760/// [`tests::caixa_dialeto_from_str_rejects_unknown_byte_strings`]
761/// (rejection witness against silent accept-set widening).
762impl std::str::FromStr for CaixaDialeto {
763 type Err = ();
764
765 fn from_str(s: &str) -> Result<Self, Self::Err> {
766 <Self as TryFrom<&str>>::try_from(s)
767 }
768}
769
770/// Trait-idiomatic forward projection on the [`CaixaDialeto`] closed-set
771/// dialect-classification typed enum — routes byte-for-byte through the
772/// sibling substrate-primitive [`CaixaDialeto::as_str`] `pub const fn`
773/// accessor so every future consumer that needs `&'static str` lifetime
774/// bytes on the dialect-classification axis (a
775/// `tracing::field::valuable::Value::Str` recording where the `Str` arm's
776/// typing demands `&'static str`, a
777/// `Cow::Borrowed::<'static, str>(dialeto.into())` composer on the future
778/// M4 admission-webhook rejection body where the `Cow<'static, str>`
779/// typing rules out the sibling [`AsRef<str>`] borrowed return, a generic
780/// `<T: Into<&'static str>>`-bound serializer or error formatter that
781/// requires the `'static` bound) reaches the same four `"Pacote"` /
782/// `"Molde"` / `"MoldePosicional"` / `"Desconhecido"` byte-strings the
783/// sibling [`CaixaDialeto::as_str`] emitter returns, rather than an
784/// open-coded per-arm literal cascade whose arm-set has no compile-time
785/// link back to the substrate primitive.
786///
787/// Return type is `&'static str` by construction — every
788/// [`CaixaDialeto::as_str`] arm resolves to a compile-time `pub const fn`
789/// return of a `&'static str` literal, so the trait's return-type promise
790/// is upheld structurally without a `String::leak()` cast or a per-arm
791/// inline literal.
792///
793/// Complements the pre-existing reverse-projection axis pair
794/// ([`TryFrom<&str>`] above + method-named [`CaixaDialeto::from_wire`])
795/// with the trait-idiomatic forward-projection axis: Rust-side
796/// newtype/typed-enum convention pairs [`TryFrom<&str>`] with the mirror-
797/// image [`From<Self> for &'static str`] on the same primitive so a
798/// caller who can project *in from* a `&str` can also project *out to*
799/// one under a `'static`-lifetime bound. The
800/// [`AsRef<str>`] impl already carries the same emit-set on the borrowed
801/// return path; this impl closes the trait-idiomatic axis pair with the
802/// stricter `&'static str` lifetime the sibling `AsRef<str>` cannot
803/// promise (its return borrows from `&self`, not from the
804/// [`CaixaDialeto::as_str`] `pub const fn`'s static-string result).
805///
806/// Same "route the trait impl through the substrate-primitive accessor"
807/// discipline the sibling [`crate::supervisor::RestartStrategy`]
808/// `From<Self> for &'static str` impl (523157d — first-mover on this
809/// forward-projection family), [`crate::supervisor::RestartPolicy`]
810/// `From<Self> for &'static str` impl (9fb37d0 — second peer, closing
811/// the M2 OTP-shape sibling pair), and [`crate::CaixaKind`]
812/// `From<Self> for &'static str` impl (edb827b — third peer, opening
813/// the campaign onto the top-level caixa surface) carry — extends the
814/// substrate primitive's trait-idiomatic forward-projection axis onto
815/// the fourth closed-set fieldless typed enum on the caixa surface: the
816/// dialect-classification axis, previously carrying the paired
817/// [`std::fmt::Display`] / [`AsRef<str>`] / [`CaixaDialeto::as_str`] /
818/// [`TryFrom<&str>`] / [`CaixaDialeto::from_wire`] forward+reverse
819/// projections but not yet the trait-idiomatic forward projection with
820/// the `&'static str` lifetime bound.
821///
822/// Unlike the peer [`crate::CaixaKind`] impl (which carries a two-axis
823/// split between the lowercase Portuguese `as_str` diagnostic axis and
824/// the `PascalCase` `wire_name` author-surface axis, so the trait's
825/// round-trip witness must cross through the wire axis rather than
826/// composing the two trait impls directly), [`CaixaDialeto`] is an
827/// internal classification whose [`CaixaDialeto::as_str`] output and
828/// [`CaixaDialeto::from_wire`] input share the same `PascalCase`
829/// vocabulary by construction — the trait-idiomatic axis pair
830/// ([`From<Self> for &'static str`] + [`TryFrom<&str> for Self`])
831/// therefore round-trips directly, without an intermediate wire-vocab
832/// hop.
833///
834/// The paired [`CaixaDialeto::as_str`] accessor's four-arm emit-set is
835/// the single source of truth — every future arm addition (the module
836/// doc's "third dialect" hazard actualises as a fifth arm belonging to
837/// the `defmolde` family or a wholly new declaration) grows the trait-
838/// idiomatic forward axis by construction: one caixa-core edit on
839/// [`CaixaDialeto::as_str`] extends every one of the sibling forward-
840/// projection paths ([`std::fmt::Display`], [`AsRef<str>`],
841/// [`CaixaDialeto::as_str`] itself, and this
842/// [`From<Self> for &'static str`]) without a coordinated rewrite across
843/// every future `Into<&'static str>`-bound consumer's arm-set. This lift
844/// closes the fourth peer on the trait-idiomatic forward-projection
845/// campaign the recently-landed peer commits opened; the remaining ten
846/// closed-set typed enums on the caixa substrate surface
847/// (`PlacementStrategy`, `WitShape`, `RateLimitUnit`,
848/// `PathShapeViolation`, `InvariantKind`, `ArchVerdict`, `Severity`,
849/// `FixSafety`, `Semantic`, `FerriteRuntime`) are the future targets
850/// of this campaign.
851///
852/// Pinned load-bearing by
853/// [`tests::caixa_dialeto_from_into_static_str_routes_through_as_str_accessor`]
854/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-arm
855/// emit-set, plus a `const`-context materialization witness for the
856/// `&'static str` lifetime promise, plus a paired `.into()` shape
857/// assertion covering the blanket-derived `Into<&'static str>` shape)
858/// and
859/// [`tests::caixa_dialeto_from_into_static_str_and_as_str_partition_the_emit_set`]
860/// (partition pin asserting `<&'static str as From<CaixaDialeto>>::from`
861/// and [`CaixaDialeto::as_str`] agree on every arm, plus a two-way
862/// direct round-trip witness through the paired trait-idiomatic
863/// [`TryFrom<&str>`] axis that closes the two-way `Self ↔ &'static str`
864/// round-trip on the trait-idiomatic axis pair without the wire-vocab
865/// intermediate the peer [`crate::CaixaKind`] axis pair requires).
866impl From<CaixaDialeto> for &'static str {
867 fn from(dialeto: CaixaDialeto) -> &'static str {
868 dialeto.as_str()
869 }
870}
871
872/// Trait-idiomatic *forward* projection on [`CaixaDialeto`] from a
873/// *borrowed* input onto the `&'static str` axis — the borrowed-input
874/// companion to the paired owned-input [`From<CaixaDialeto> for &'static
875/// str`] impl immediately above. Routes byte-for-byte through the same
876/// substrate-primitive [`CaixaDialeto::as_str`] `pub const fn` accessor so
877/// every consumer that binds a `&CaixaDialeto` through the standard-
878/// library `.into()` / [`From<&Self> for &'static str`] axis (a
879/// `CaixaDialeto::ALL.iter().map(<&'static str>::from).collect::<Vec<_>>()`
880/// per-arm accept-set materializer — whose iterator over
881/// `&'static [CaixaDialeto]` yields `&CaixaDialeto`, not `CaixaDialeto`,
882/// so the owned-input [`From<CaixaDialeto>`] axis alone forces every call
883/// site through an explicit `.copied()` / dereference / [`Copy`]-bound
884/// restatement rather than the direct trait-idiomatic projection; a
885/// future generic `<T: Copy + for<'a> Into<&'static str>>`-bound
886/// diagnostic column that walks the `iter().map(Into::into)` shape
887/// verbatim over any of the substrate's closed-set typed enums; the
888/// future M4 admission-webhook rejection body composer's per-dialect
889/// accepted-set enumeration built from an iterated
890/// `CaixaDialeto::ALL.iter().map(|d| d.into())` pipe rather than a
891/// per-arm `match d { … }` cascade; a
892/// `HashMap::<&'static str, CaixaDialeto>::from_iter(
893/// CaixaDialeto::ALL.iter().map(|d| (d.into(), *d)))`-style
894/// per-dialect reverse-lookup table the sibling [`TryFrom<&str>`] impl
895/// cannot compose without this borrowed-input axis in place) reaches the
896/// same four `"Pacote"` / `"Molde"` / `"MoldePosicional"` /
897/// `"Desconhecido"` byte-strings the paired owned-input
898/// [`From<CaixaDialeto> for &'static str`], the sibling
899/// [`std::fmt::Display`], [`AsRef<str>`], and [`CaixaDialeto::as_str`]
900/// surfaces already return.
901///
902/// Third peer on the substrate-wide trait-idiomatic *borrowed-input*
903/// forward-projection family opened on
904/// [`crate::dep::DepList`] (64aa742) and extended onto
905/// [`crate::CaixaKind`] (5ab993a). Rust's `From` trait does not
906/// auto-derive the `From<&Self>` sibling from a `From<Self>` impl (the
907/// blanket `impl<T, U> From<&T> for U where T: Copy, U: From<T>` does
908/// not exist in `core`), so every closed-set typed enum that carries
909/// the owned-input axis but not the borrowed-input axis forces every
910/// borrowed-input call site through a `.copied()` /
911/// `<&'static str>::from(*dialeto)` / `dialeto.as_str()` detour whose
912/// type bounds have no compile-time link to the substrate primitive.
913///
914/// Unlike the peer [`crate::CaixaKind`] impl (which carries a two-axis
915/// split between the lowercase Portuguese `as_str` diagnostic axis and
916/// the `PascalCase` `wire_name` author-surface axis, so a `.into()`
917/// pipe over `CaixaKind::ALL` yields the diagnostic vocabulary rather
918/// than the wire vocabulary), [`CaixaDialeto`]'s [`CaixaDialeto::as_str`]
919/// and [`CaixaDialeto::from_wire`] share the same `PascalCase`
920/// vocabulary by construction — the borrowed-input projection this impl
921/// exposes therefore composes directly with the sibling
922/// [`TryFrom<&str>`] axis to build reverse-lookup tables without the
923/// wire-vocab intermediate hop the peer axis pair requires.
924///
925/// Pinned load-bearing by
926/// [`tests::caixa_dialeto_from_borrowed_into_static_str_routes_through_as_str_accessor`]
927/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-arm
928/// emit-set via a borrowed input, plus a `const`-context materialization
929/// witness for the `&'static str` lifetime promise, plus a blanket
930/// `.into()` shape assertion) and
931/// [`tests::caixa_dialeto_from_owned_and_borrowed_into_static_str_agree_on_every_arm`]
932/// (cross-axis partition pin against the paired owned-input
933/// [`From<CaixaDialeto> for &'static str`] impl, plus a
934/// `.iter().map(Into::into)` pipe witness over [`CaixaDialeto::ALL`]
935/// that materializes the four-arm accept-set through the borrowed-input
936/// axis alone, plus a direct round-trip witness through the paired
937/// trait-idiomatic [`TryFrom<&str>`] axis that closes the two-way
938/// `&Self → &'static str → Self` round-trip on the borrowed-input axis
939/// without the wire-vocab intermediate the peer [`crate::CaixaKind`]
940/// axis pair requires).
941impl From<&CaixaDialeto> for &'static str {
942 fn from(dialeto: &CaixaDialeto) -> &'static str {
943 dialeto.as_str()
944 }
945}
946
947/// Trait-idiomatic *forward* projection on [`CaixaDialeto`] from an *owned*
948/// input onto the owned-[`String`] axis — routes byte-for-byte through the
949/// substrate-primitive [`CaixaDialeto::as_str`] `pub const fn` accessor so
950/// every consumer that binds a [`CaixaDialeto`] through the standard-library
951/// `.into()` / [`From<Self> for String`] (equivalently [`Into<String>`]) axis
952/// reaches the same four `"Pacote"` / `"Molde"` / `"MoldePosicional"` /
953/// `"Desconhecido"` byte-strings the paired owned-input
954/// [`From<CaixaDialeto> for &'static str`], the borrowed-input
955/// [`From<&CaixaDialeto> for &'static str`], the sibling [`std::fmt::Display`],
956/// [`AsRef<str>`], and [`CaixaDialeto::as_str`] surfaces already return.
957///
958/// Extends the trait-idiomatic *owned-[`String`]* forward-projection family
959/// (opened on [`crate::supervisor::RestartStrategy`] — 7baa18a — the first-
960/// mover on the M2 OTP-shape sibling-restart-strategy axis, extended onto
961/// [`crate::supervisor::RestartPolicy`] — 7851725 — the second-of-two-in-M2
962/// per-child restart-decision axis, then onto [`crate::CaixaKind`] — 231a18c
963/// — the structurally most fundamental closed-set fieldless typed enum on
964/// the caixa surface) onto the fourth peer: the dialect-classification axis
965/// [`CaixaDialeto`] carries. Rust's standard library does not carry a blanket
966/// `impl<T: AsRef<str>> From<T> for String` (nor an
967/// `impl<T: fmt::Display> From<T> for String`), so every closed-set typed
968/// enum that carries the paired `AsRef<str>` / `Display` /
969/// `From<Self> for &'static str` triple but not the owned-[`String`] axis
970/// forces every owned-string call site through a `.to_string()` /
971/// `.as_str().to_owned()` / `String::from(dialeto.as_str())` detour whose
972/// type bounds have no compile-time link to the substrate primitive.
973///
974/// Unlike the peer [`crate::CaixaKind`] enum (which carries a two-axis split
975/// between the lowercase Portuguese [`crate::CaixaKind::as_str`] diagnostic
976/// axis and the `PascalCase` [`crate::CaixaKind::wire_name`] author-surface
977/// axis, so the owned-[`String`] forward emit and the reverse
978/// [`TryFrom<&str>`] parse land on disjoint vocabularies and the round-trip
979/// crosses through [`crate::CaixaKind::wire_name`] as the reverse-axis
980/// vocabulary rather than composing the owned-[`String`] emit directly),
981/// [`CaixaDialeto`]'s [`CaixaDialeto::as_str`] emit and
982/// [`CaixaDialeto::from_wire`] parse share the same `PascalCase` vocabulary
983/// by construction (there is no wire/diagnostic axis split on this enum —
984/// it is an internal classification with no wire surface), so the
985/// owned-[`String`] forward projection this impl exposes composes directly
986/// with the sibling [`TryFrom<&str>`] axis on the owned-[`String`]'s
987/// [`String::as_str`] borrow, byte-identically to the peer
988/// [`crate::supervisor::RestartStrategy`] /
989/// [`crate::supervisor::RestartPolicy`] owned-[`String`] axis pairs
990/// (whose forward emit and reverse parse also share one `PascalCase`
991/// vocabulary by construction).
992///
993/// The remaining ten closed-set typed enums on the caixa substrate surface
994/// (`DepList`, `PlacementStrategy`, `WitShape`, `RateLimitUnit`,
995/// `PathShapeViolation`, `InvariantKind`, `ArchVerdict`, `Severity`,
996/// `FixSafety`, `Semantic`, `FerriteRuntime`) are the future targets of
997/// this campaign — each carries the same paired `AsRef<str>` / `Display` /
998/// `From<Self> for &'static str` / `From<&Self> for &'static str` quadruple
999/// that this owned-[`String`] axis extends onto.
1000///
1001/// Pinned load-bearing by
1002/// [`tests::caixa_dialeto_from_into_owned_string_routes_through_as_str_accessor`]
1003/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-arm
1004/// emit-set, plus a blanket `.into::<String>()` shape witness) and
1005/// [`tests::caixa_dialeto_from_into_owned_string_and_static_str_agree_on_every_arm`]
1006/// (cross-axis partition pin against the paired owned-input
1007/// [`From<CaixaDialeto> for &'static str`] impl and the sibling
1008/// [`ToString::to_string`] surface routed through [`std::fmt::Display`],
1009/// plus a `.iter().copied().map(String::from)` pipe witness over
1010/// [`CaixaDialeto::ALL`], plus a direct round-trip witness through
1011/// [`TryFrom<&str>`] on the owned-[`String`]'s [`String::as_str`] borrow
1012/// that closes the two-way `Self → String → Self` round-trip on the
1013/// trait-idiomatic owned-[`String`] forward + reverse axis pair without
1014/// the wire-vocab intermediate hop the peer [`crate::CaixaKind`] axis pair
1015/// requires).
1016impl From<CaixaDialeto> for String {
1017 fn from(dialeto: CaixaDialeto) -> String {
1018 dialeto.as_str().to_owned()
1019 }
1020}
1021
1022/// Trait-idiomatic *borrowed-input, owned-`String` output* forward
1023/// projection on the dialect-classification [`CaixaDialeto`] closed-set
1024/// typed enum — the fourth (and closing) corner of the
1025/// `{Self, &Self} × {&'static str, String}` 2×2 trait-idiomatic
1026/// projection family on this enum, mirror of the peer M2 OTP-shape
1027/// [`From<&crate::supervisor::RestartStrategy> for String`] (579385f) /
1028/// [`From<&crate::supervisor::RestartPolicy> for String`] (8465740),
1029/// the two-list dep-graph [`From<&crate::dep::DepList> for String`]
1030/// (e0cb617), and the top-level [`From<&crate::CaixaKind> for String`]
1031/// (e76436d) that opened and extended the corner off the M2 OTP-shape
1032/// sibling axis pair onto the sibling closed-set fieldless typed enum
1033/// peers. Routes byte-for-byte through the substrate-primitive
1034/// [`CaixaDialeto::as_str`] `pub const fn` accessor (via
1035/// [`str::to_owned`]) so every consumer that holds a borrowed
1036/// [`&CaixaDialeto`] and needs an owned [`String`] — a future
1037/// `serde_json::Value::String(String::from(&dialeto))` structured-
1038/// payload composer over a borrowed field, a future `Iterator::map`
1039/// over `&[CaixaDialeto]` that projects to owned keys through
1040/// `.iter().map(String::from)` (whose iterator yields `&CaixaDialeto`,
1041/// not `CaixaDialeto`, so the owned-input
1042/// [`From<CaixaDialeto> for String`] axis alone forces every call site
1043/// through an explicit `.copied()` / spurious [`Copy`] deref restatement
1044/// rather than the direct trait-idiomatic projection), a future
1045/// `HashMap::<String, CaixaDialeto>::from_iter` that keys off a
1046/// borrowed-iteration axis where dereferencing the dialect would force
1047/// an unnecessary [`Copy`] at every step, the future
1048/// `feira dialeto --list-dialects` CLI enumeration that walks
1049/// [`CaixaDialeto::ALL`] through the borrowed-iteration axis by
1050/// construction, the future M4
1051/// `mesh.pleme.io/v1alpha1/Manifesto` CR materializer's admission-
1052/// webhook rejection body composer that names the accepted-dialect
1053/// set through an iterated `.iter().map(String::from).collect()`
1054/// pipe rather than a per-arm cascade — reaches the same four
1055/// `"Pacote"` / `"Molde"` / `"MoldePosicional"` / `"Desconhecido"`
1056/// byte-strings the paired [`std::fmt::Display`], [`AsRef<str>`],
1057/// [`CaixaDialeto::as_str`], and the three other trait-idiomatic
1058/// forward-projection impls ([`From<CaixaDialeto> for &'static str`],
1059/// [`From<&CaixaDialeto> for &'static str`],
1060/// [`From<CaixaDialeto> for String`]) already return.
1061///
1062/// Fifth peer on the substrate-wide trait-idiomatic *borrowed-input,
1063/// owned-`String` output* forward-projection family opened on
1064/// [`crate::supervisor::RestartStrategy`] (579385f), closed on the M2
1065/// OTP-shape sibling axis pair by
1066/// [`crate::supervisor::RestartPolicy`] (8465740), extended onto the
1067/// two-list dep-graph peer by [`crate::dep::DepList`] (e0cb617) and
1068/// onto the top-level [`crate::CaixaKind`] (e76436d) — extends the
1069/// `{Self, &Self} × {&'static str, String}` 2×2 projection corner off
1070/// the top-level `:kind` axis onto the dialect-classification axis
1071/// (the fourth closed-set fieldless typed enum on the caixa surface;
1072/// second peer outside the M2 OTP-shape sibling pair to reach the
1073/// 2×2-completion corner). Rust's standard library does not carry a
1074/// blanket `impl<T: AsRef<str>> From<&T> for String` (nor an
1075/// `impl<T: fmt::Display> From<&T> for String`), so every closed-set
1076/// typed enum that carries the paired `AsRef<str>` / `Display` /
1077/// `From<Self> for &'static str` / `From<&Self> for &'static str` /
1078/// `From<Self> for String` quintuple but not the borrowed-input
1079/// owned-[`String`] axis forces every borrowed-input owned-string call
1080/// site through a `dialeto.as_str().to_owned()` /
1081/// `String::from(*dialeto)` (with a spurious [`Copy`]) /
1082/// `dialeto.to_string()` (through [`std::fmt::Display`]) detour whose
1083/// type bounds have no compile-time link to the substrate primitive.
1084///
1085/// Same as the peer [`crate::supervisor::RestartStrategy`] /
1086/// [`crate::supervisor::RestartPolicy`] / [`crate::dep::DepList`]
1087/// borrowed-input owned-[`String`] axis pairs (whose forward emit and
1088/// reverse parse share one vocabulary by construction — `PascalCase`
1089/// on the M2 OTP-shape peers, the lifted
1090/// [`crate::render::DEP_AUTHOR_KEY_DEPS`] /
1091/// [`crate::render::DEP_AUTHOR_KEY_DEPS_DEV`] consts on the two-list
1092/// dep-graph peer) and unlike the peer [`crate::CaixaKind`] pair
1093/// (whose forward emit lands on the lowercase Portuguese
1094/// diagnostic vocabulary while the reverse parse lands on the
1095/// `PascalCase` wire vocabulary, forcing the round-trip through an
1096/// intermediate [`crate::CaixaKind::wire_name`] hop), [`CaixaDialeto`]
1097/// is an internal classification with no wire surface — the
1098/// [`CaixaDialeto::as_str`] emit and [`CaixaDialeto::from_wire`] parse
1099/// share the same `PascalCase` vocabulary by construction (there is
1100/// no wire/diagnostic axis split on this enum), so the borrowed-
1101/// input owned-[`String`] projection this impl exposes composes
1102/// directly with the paired trait-idiomatic reverse [`TryFrom<&str>`]
1103/// axis on the owned-[`String`]'s [`String::as_str`] borrow — no
1104/// intermediate wire-vocab hop required.
1105///
1106/// The remaining nine closed-set typed enums on the caixa substrate
1107/// surface (`PlacementStrategy`, `WitShape`, `RateLimitUnit`,
1108/// `PathShapeViolation`, `InvariantKind`, `ArchVerdict`, `Severity`,
1109/// `FixSafety`, `Semantic`, `FerriteRuntime`) are the future targets
1110/// of this 2×2-completion campaign — each carries the same paired
1111/// quintuple that this borrowed-input owned-[`String`] axis extends
1112/// onto.
1113///
1114/// Pinned load-bearing by
1115/// [`tests::caixa_dialeto_from_into_borrowed_owned_string_routes_through_as_str_accessor`]
1116/// (byte-parity pin against [`CaixaDialeto::as_str`] across the
1117/// four-arm emit-set through the borrowed-input surface) and
1118/// [`tests::caixa_dialeto_from_into_borrowed_owned_string_agrees_with_paired_axes_on_every_arm`]
1119/// (cross-axis partition pin against the paired owned-input owned-
1120/// [`String`] [`From<CaixaDialeto> for String`] impl, the paired
1121/// borrowed-input owned-[`&'static str`]
1122/// [`From<&CaixaDialeto> for &'static str`] impl, the paired owned-
1123/// input owned-[`&'static str`] [`From<CaixaDialeto> for &'static str`]
1124/// impl, and the sibling [`ToString::to_string`] surface routed
1125/// through [`std::fmt::Display`], plus a `.iter().map(String::from)`
1126/// pipe witness over [`CaixaDialeto::ALL`] (whose iterator yields
1127/// `&CaixaDialeto` by construction, so the borrowed-input owned-
1128/// [`String`] axis is what routes the pipe through the substrate-
1129/// primitive [`CaixaDialeto::as_str`] accessor without a spurious
1130/// [`Copy`] deref), plus a direct round-trip witness through
1131/// [`TryFrom<&str>`] on the owned-[`String`]'s [`String::as_str`]
1132/// borrow that closes the two-way `&Self → String → Self` round-trip
1133/// on the trait-idiomatic borrowed-input owned-[`String`] forward +
1134/// reverse axis pair — no intermediate wire-vocab hop like the peer
1135/// [`crate::CaixaKind`] axis pair requires).
1136impl From<&CaixaDialeto> for String {
1137 fn from(dialeto: &CaixaDialeto) -> String {
1138 dialeto.as_str().to_owned()
1139 }
1140}
1141
1142/// Trait-idiomatic *owned-input, [`std::borrow::Cow<'static, str>`]
1143/// output* forward projection on the dialect-classification
1144/// [`CaixaDialeto`] closed-set typed enum — routes byte-for-byte
1145/// through the substrate-primitive [`CaixaDialeto::as_str`]
1146/// `pub const fn` accessor (via [`std::borrow::Cow::Borrowed`]) so
1147/// every consumer that binds a [`CaixaDialeto`] through the
1148/// standard-library `.into()` /
1149/// [`From<Self> for std::borrow::Cow<'static, str>`] (equivalently
1150/// [`Into<std::borrow::Cow<'static, str>>`]) axis — a future
1151/// `axum::response::IntoResponse` body composer whose typing folds a
1152/// per-arm rejection line into a [`std::borrow::Cow<'static, str>`]
1153/// boundary, a future M4 `mesh.pleme.io/v1alpha1/Manifesto` CR
1154/// materializer's admission-webhook rejection body composer whose
1155/// typing rules out the sibling [`AsRef<str>`] borrowed return and
1156/// the sibling [`From<Self> for &'static str`] axis's non-
1157/// [`std::borrow::Cow`]-parameterized shape, a future substrate-wide
1158/// per-arm diagnostic surface that folds either the zero-alloc
1159/// [`std::borrow::Cow::Borrowed`] arm (for the closed-set arms whose
1160/// byte-string is build-time-lifted) or the [`std::borrow::Cow::Owned`]
1161/// arm (for a caller that mutates the projection) through one uniform
1162/// trait dispatch, a future generic
1163/// `<T: Into<std::borrow::Cow<'static, str>>>`-bound emitter on a
1164/// per-dialect structured-log or admission-webhook rejection body —
1165/// reaches the same four `"Pacote"` / `"Molde"` / `"MoldePosicional"` /
1166/// `"Desconhecido"` byte-strings the paired [`std::fmt::Display`],
1167/// [`AsRef<str>`], [`CaixaDialeto::as_str`], and the four
1168/// `{Self, &Self} × {&'static str, String}` 2×2 trait-idiomatic
1169/// forward-projection corners
1170/// ([`From<CaixaDialeto> for &'static str`],
1171/// [`From<&CaixaDialeto> for &'static str`],
1172/// [`From<CaixaDialeto> for String`],
1173/// [`From<&CaixaDialeto> for String`]) already return, rather than an
1174/// open-coded per-call-site
1175/// `std::borrow::Cow::Borrowed(dialeto.as_str())` /
1176/// `std::borrow::Cow::Owned(dialeto.to_string())` /
1177/// `String::from(dialeto).into()` composition whose type bounds have
1178/// no compile-time link back to the substrate primitive.
1179///
1180/// Deliberately returns [`std::borrow::Cow::Borrowed`] rather than
1181/// [`std::borrow::Cow::Owned`] — the substrate-primitive
1182/// [`CaixaDialeto::as_str`] accessor's return carries the
1183/// `&'static str` lifetime by construction (each `match` arm resolves
1184/// to a `pub const &'static str` literal with static lifetime), so the
1185/// zero-alloc borrowed arm is the type-correct projection with no
1186/// runtime allocation. The paired [`std::borrow::Cow::Owned`] arm
1187/// stays reachable at the call site through the existing
1188/// [`From<CaixaDialeto> for String`] axis composed with
1189/// [`std::borrow::Cow::from`] on the resulting owned [`String`] — a
1190/// caller who chose to mutate the projection lands on the owned arm
1191/// by their own composition, not by the substrate-primitive
1192/// projection silently allocating on their behalf.
1193///
1194/// Same as the sibling [`crate::CaixaKind`] /
1195/// [`crate::supervisor::RestartStrategy`] /
1196/// [`crate::supervisor::RestartPolicy`] /
1197/// [`crate::aplicacao::WitShape`] /
1198/// [`crate::aplicacao::PlacementStrategy`] /
1199/// [`crate::aplicacao::RateLimitUnit`] /
1200/// [`crate::dep::DepList`] peers on the substrate-wide trait-idiomatic
1201/// [`std::borrow::Cow<'static, str>`] forward-projection campaign,
1202/// unlike the peer [`crate::CaixaKind`] pair (whose forward emit
1203/// lands on the lowercase Portuguese diagnostic vocabulary while the
1204/// reverse parse lands on the `PascalCase` wire vocabulary, forcing
1205/// the round-trip through an intermediate
1206/// [`crate::CaixaKind::wire_name`] hop), [`CaixaDialeto`] is an
1207/// internal classification with no wire surface — the
1208/// [`CaixaDialeto::as_str`] emit and [`CaixaDialeto::from_wire`]
1209/// parse share the same `PascalCase` vocabulary by construction (no
1210/// wire/diagnostic axis split on this enum), so the
1211/// [`std::borrow::Cow<'static, str>`] projection this impl exposes
1212/// composes directly with the paired trait-idiomatic reverse
1213/// [`TryFrom<&str>`] axis on the projection's
1214/// [`std::borrow::Cow::as_ref`] borrow — no intermediate wire-vocab
1215/// hop required.
1216///
1217/// Eighth peer on the substrate-wide trait-idiomatic
1218/// [`std::borrow::Cow<'static, str>`] forward-projection family
1219/// opened on the top-level [`crate::CaixaKind`] by 99c1735 (extended
1220/// off the closed `{Self, &Self} × {&'static str, String}` 2×2
1221/// corner closed on the last outside-caixa-core enum peer by
1222/// 29f8af3), closed on the `{Self, &Self}` input-shape corner on
1223/// [`crate::CaixaKind`] by d45c409, extended onto the M2 OTP-shape
1224/// tier by 7dd28b3 / 9b3e4b3 (opens/closes on
1225/// [`crate::supervisor::RestartStrategy`]) and 0612398 / ee577fd
1226/// (opens/closes on [`crate::supervisor::RestartPolicy`], closing the
1227/// M2 OTP-shape tier), extended onto the M3 mesh-shape tier by
1228/// 8634dec / 25690ef (opens/closes on [`crate::aplicacao::WitShape`])
1229/// and eee504d / afdf0f4 (opens/closes on
1230/// [`crate::aplicacao::PlacementStrategy`]) and 1d59925 (closes M3
1231/// mesh-shape tier on [`crate::aplicacao::RateLimitUnit`]), extended
1232/// onto the outside-M3 caixa-core tier by 6858bac / 702cdf4
1233/// (opens/closes on [`crate::dep::DepList`]) — extends the axis onto
1234/// the dialect-classification [`CaixaDialeto`] closed-set fieldless
1235/// typed enum (the second outside-M3 caixa-core peer, and the sole
1236/// remaining internal-classification enum on the caixa-core surface).
1237/// Rust's standard library does not carry a blanket
1238/// `impl<T: AsRef<str>> From<T> for std::borrow::Cow<'static, str>`
1239/// (nor an `impl<T: fmt::Display> From<T> for
1240/// std::borrow::Cow<'static, str>`), so every closed-set fieldless
1241/// typed enum peer on the substrate that carries the paired
1242/// [`AsRef<str>`] / [`std::fmt::Display`] /
1243/// [`From<Self> for &'static str`] / [`From<&Self> for &'static str`]
1244/// / [`From<Self> for String`] / [`From<&Self> for String`] sextet but
1245/// not the [`std::borrow::Cow<'static, str>`] axis forces every
1246/// [`std::borrow::Cow<'static, str>`]-parameterized call site through
1247/// a `std::borrow::Cow::Borrowed(dialeto.as_str())` /
1248/// `std::borrow::Cow::Owned(dialeto.to_string())` /
1249/// `String::from(dialeto).into()` detour whose type bounds have no
1250/// compile-time link to the substrate primitive.
1251///
1252/// The remaining outside-`caixa-core` closed-set fieldless typed
1253/// enum peers on the substrate surface (`PathShapeViolation`,
1254/// `InvariantKind`, `ArchVerdict`, `Severity`, `FixSafety`,
1255/// `Semantic`, `FerriteRuntime`) are the future targets of this
1256/// campaign — each carries the same paired sextet that this axis
1257/// extends onto.
1258///
1259/// Pinned load-bearing by
1260/// [`tests::caixa_dialeto_from_into_static_cow_str_routes_through_as_str_accessor`]
1261/// (byte-parity pin against [`CaixaDialeto::as_str`] across the
1262/// four-arm emit-set through the [`std::borrow::Cow<'static, str>`]
1263/// surface, plus a [`std::borrow::Cow::Borrowed`] discriminator
1264/// witness that the projection lands on the zero-alloc arm rather
1265/// than silently allocating through [`std::borrow::Cow::Owned`],
1266/// plus a blanket-derived [`Into<std::borrow::Cow<'static, str>>`]
1267/// shape witness that also lands on [`std::borrow::Cow::Borrowed`])
1268/// and
1269/// [`tests::caixa_dialeto_from_into_static_cow_str_agrees_with_paired_axes_on_every_arm`]
1270/// (cross-axis partition pin against the paired owned-input
1271/// [`From<CaixaDialeto> for &'static str`] and
1272/// [`From<CaixaDialeto> for String`] forward-projection corners plus
1273/// the sibling [`ToString::to_string`]-through-[`std::fmt::Display`]
1274/// surface, plus a `.iter().copied().map(std::borrow::Cow::from)`
1275/// pipe witness over [`CaixaDialeto::ALL`] whose zero-alloc
1276/// [`std::borrow::Cow::Borrowed`] outcome is load-bearing on every
1277/// arm, plus a direct round-trip witness through [`TryFrom<&str>`]
1278/// on the projection's [`std::borrow::Cow::as_ref`] borrow that
1279/// closes the two-way `Self → Cow<'static, str> → Self` round-trip
1280/// on the trait-idiomatic [`std::borrow::Cow<'static, str>`]
1281/// forward + reverse axis pair without the wire-vocab intermediate
1282/// hop the peer [`crate::CaixaKind`] axis pair requires).
1283impl From<CaixaDialeto> for std::borrow::Cow<'static, str> {
1284 fn from(dialeto: CaixaDialeto) -> std::borrow::Cow<'static, str> {
1285 std::borrow::Cow::Borrowed(dialeto.as_str())
1286 }
1287}
1288
1289/// Trait-idiomatic *borrowed-input, [`std::borrow::Cow<'static, str>`]
1290/// output* forward projection on the dialect-classification
1291/// [`CaixaDialeto`] closed-set typed enum — the borrowed-input companion
1292/// to the paired owned-input [`From<CaixaDialeto> for
1293/// std::borrow::Cow<'static, str>`] impl immediately above (8322511).
1294/// Routes byte-for-byte through the same substrate-primitive
1295/// [`CaixaDialeto::as_str`] `pub const fn` accessor (via
1296/// [`std::borrow::Cow::Borrowed`]) so every consumer that holds a
1297/// [`&CaixaDialeto`] and needs a [`std::borrow::Cow<'static, str>`] — a
1298/// `CaixaDialeto::ALL.iter().map(std::borrow::Cow::from).collect::<Vec<_>>()`
1299/// per-arm accept-set materializer whose iterator over
1300/// `&'static [CaixaDialeto]` yields `&CaixaDialeto` (not
1301/// [`CaixaDialeto`], so the paired owned-input
1302/// [`From<CaixaDialeto> for std::borrow::Cow<'static, str>`] axis alone
1303/// forces every call site through an explicit `.copied()` / dereference
1304/// / [`Copy`]-bound restatement rather than the direct trait-idiomatic
1305/// projection), a future generic
1306/// `<T: for<'a> Into<std::borrow::Cow<'static, str>>>`-bound emitter on
1307/// a per-dialect diagnostic column that walks the
1308/// `iter().map(Into::into)` shape verbatim, the future M4
1309/// `mesh.pleme.io/v1alpha1/Manifesto` CR admission-webhook rejection
1310/// body that composes the accepted-dialect enumeration from an iterated
1311/// `CaixaDialeto::ALL.iter().map(|d| d.into())` pipe rather than a
1312/// per-arm `match d { … }` cascade — reaches the same four `"Pacote"` /
1313/// `"Molde"` / `"MoldePosicional"` / `"Desconhecido"` byte-strings the
1314/// paired [`std::fmt::Display`], [`AsRef<str>`], [`CaixaDialeto::as_str`],
1315/// the four `{Self, &Self} × {&'static str, String}` 2×2 trait-idiomatic
1316/// forward-projection corners, and the paired owned-input
1317/// [`From<CaixaDialeto> for std::borrow::Cow<'static, str>`] impl
1318/// already return.
1319///
1320/// Deliberately returns [`std::borrow::Cow::Borrowed`] rather than
1321/// [`std::borrow::Cow::Owned`] — the substrate-primitive
1322/// [`CaixaDialeto::as_str`] accessor's return carries the `&'static str`
1323/// lifetime by construction (each `match` arm resolves to a `pub const
1324/// &'static str` literal), so the zero-alloc borrowed arm is the
1325/// type-correct projection with no runtime allocation on the
1326/// borrowed-input surface just as on the paired owned-input surface.
1327///
1328/// Closes the `{Self, &Self}` input-shape corner on the second
1329/// outside-M3 caixa-core peer of the substrate-wide
1330/// [`std::borrow::Cow<'static, str>`] forward-projection campaign,
1331/// opened one commit prior (8322511) on the paired owned-input impl.
1332/// Rust's standard library does not carry a blanket
1333/// `impl<T: AsRef<str>> From<&T> for std::borrow::Cow<'static, str>`
1334/// (nor an `impl<T: fmt::Display> From<&T> for
1335/// std::borrow::Cow<'static, str>`, nor a `Copy`-based
1336/// `impl<T: Copy, U: From<T>> From<&T> for U`), so every closed-set
1337/// fieldless typed enum peer on the substrate that carries the paired
1338/// owned-input [`Cow<'static, str>`] axis but not the borrowed-input
1339/// axis forces every borrowed-input [`Cow<'static, str>`]-parameterized
1340/// call site through a spurious [`Copy`] deref
1341/// (`std::borrow::Cow::from(*dialeto)`) or a
1342/// `std::borrow::Cow::Borrowed(dialeto.as_str())` open-code whose type
1343/// bounds have no compile-time link to the substrate primitive.
1344///
1345/// Matches the closure discipline afdf0f4 landed on the M3-mesh-shape
1346/// [`crate::aplicacao::PlacementStrategy`] axis one commit after eee504d,
1347/// 25690ef on [`crate::aplicacao::WitShape`] one commit after 8634dec,
1348/// d45c409 on the top-level [`crate::CaixaKind`] one commit after
1349/// 99c1735, 9b3e4b3 / ee577fd on the M2 OTP-shape
1350/// [`crate::supervisor::RestartStrategy`] /
1351/// [`crate::supervisor::RestartPolicy`] sibling peers one commit after
1352/// 7dd28b3 / 0612398, and 702cdf4 on the two-list dep-graph
1353/// [`crate::dep::DepList`] axis one commit after 6858bac. The remaining
1354/// outside-M3 caixa-core peer ([`crate::render::PathShapeViolation`])
1355/// and the outside-`caixa-core` peers (`InvariantKind`, `ArchVerdict`,
1356/// `Severity`, `FixSafety`, `Semantic`, `FerriteRuntime`) are the
1357/// remaining future targets on the axis.
1358///
1359/// Unlike the peer [`crate::CaixaKind`] pair (whose forward emit lands
1360/// on the lowercase Portuguese diagnostic vocabulary while the reverse
1361/// parse lands on the `PascalCase` wire vocabulary, forcing the
1362/// round-trip through an intermediate [`crate::CaixaKind::wire_name`]
1363/// hop), [`CaixaDialeto`] is an internal classification with no wire
1364/// surface — the [`CaixaDialeto::as_str`] emit and
1365/// [`CaixaDialeto::from_wire`] parse share the same `PascalCase`
1366/// vocabulary by construction (no wire/diagnostic axis split on this
1367/// enum), so the borrowed-input [`std::borrow::Cow<'static, str>`]
1368/// projection this impl exposes composes directly with the paired
1369/// trait-idiomatic reverse [`TryFrom<&str>`] axis on the projection's
1370/// [`std::borrow::Cow::as_ref`] borrow — no intermediate wire-vocab hop
1371/// required.
1372///
1373/// Pinned load-bearing by
1374/// [`tests::caixa_dialeto_from_borrowed_into_static_cow_str_routes_through_as_str_accessor`]
1375/// (byte-parity + zero-alloc [`std::borrow::Cow::Borrowed`]-arm pin
1376/// against [`CaixaDialeto::as_str`] across the four-arm
1377/// [`CaixaDialeto::ALL`] through the borrowed-input surface, plus a
1378/// blanket-derived [`Into<std::borrow::Cow<'static, str>>`] shape
1379/// witness that also lands on [`std::borrow::Cow::Borrowed`]) and
1380/// [`tests::caixa_dialeto_from_borrowed_into_static_cow_str_agrees_with_paired_axes_on_every_arm`]
1381/// (cross-axis partition pin against the paired owned-input
1382/// [`From<CaixaDialeto> for std::borrow::Cow<'static, str>`], the paired
1383/// borrowed-input owned-`&'static str`
1384/// [`From<&CaixaDialeto> for &'static str`], and the paired
1385/// borrowed-input owned-`String` [`From<&CaixaDialeto> for String`]
1386/// impls plus [`ToString::to_string`]-through-[`std::fmt::Display`], a
1387/// `.iter().map(std::borrow::Cow::from)` pipe witness over
1388/// [`CaixaDialeto::ALL`] — whose iterator yields `&CaixaDialeto` by
1389/// construction, so the borrowed-input axis is what routes the pipe
1390/// without a spurious [`Copy`] deref and every collected element
1391/// satisfies the zero-alloc [`std::borrow::Cow::Borrowed`]-arm
1392/// predicate — plus a direct round-trip witness through
1393/// [`TryFrom<&str>`] on the projection's [`std::borrow::Cow::as_ref`]
1394/// borrow that closes the two-way `&Self → Cow<'static, str> → Self`
1395/// round-trip on the borrowed-input axis without the wire-vocab
1396/// intermediate hop the peer [`crate::CaixaKind`] axis pair requires).
1397impl From<&CaixaDialeto> for std::borrow::Cow<'static, str> {
1398 fn from(dialeto: &CaixaDialeto) -> std::borrow::Cow<'static, str> {
1399 std::borrow::Cow::Borrowed(dialeto.as_str())
1400 }
1401}
1402
1403/// Trait-idiomatic *owned-input, [`Box<str>`] output* forward projection on
1404/// the outside-M3 caixa-core dialect-classification [`CaixaDialeto`]
1405/// closed-set fieldless typed enum. Routes byte-for-byte through the
1406/// substrate-primitive [`CaixaDialeto::as_str`] `pub const fn` accessor
1407/// via [`Box::<str>::from`] on the returned `&'static str`, so every
1408/// consumer that binds a `let key: Box<str> = dialeto.into();`-shaped
1409/// call site reaches the same four `"Pacote"` / `"Molde"` /
1410/// `"MoldePosicional"` / `"Desconhecido"` byte-strings the sibling
1411/// `{Self, &Self} × {&'static str, String, Cow<'static, str>}` forward-
1412/// projection corner already returns.
1413///
1414/// Rust's standard library carries `impl From<&str> for Box<str>` and
1415/// `impl From<String> for Box<str>` but no blanket
1416/// `impl<T: AsRef<str>> From<T> for Box<str>`, so this axis is a distinct
1417/// trait-idiomatic surface that a downstream `CaixaDialeto → Box<str>`
1418/// `.into()` reaches through this impl and no other — without a
1419/// `Box::from(dialeto.as_str())` open-code whose type bounds have no
1420/// compile-time link back to the substrate primitive.
1421///
1422/// Extends the caixa-core-internal tier of the substrate-wide trait-
1423/// idiomatic [`Box<str>`] forward-projection campaign onto the third
1424/// caixa-core-internal peer, after the render-side path-shape-diagnostic
1425/// [`crate::render::PathShapeViolation`] pair (0d87a72, both corners in
1426/// one axis) opened the tier and the outside-M3 caixa-core two-list
1427/// dep-graph [`crate::dep::DepList`] pair (4aada99, both corners in one
1428/// axis) extended it. Follows the M2 OTP-shape
1429/// [`crate::supervisor::RestartStrategy`] / [`crate::supervisor::RestartPolicy`]
1430/// pair (59ae5dc + cb1d068), the M3 mesh-shape
1431/// [`crate::aplicacao::PlacementStrategy`] / [`crate::aplicacao::WitShape`] /
1432/// [`crate::aplicacao::RateLimitUnit`] triple (6d73e84 → df7040c) that
1433/// closed the M3 mesh-shape tier, and the outside-`caixa-core` tier
1434/// (`InvariantKind` 10613a7 + 5901887, `ArchVerdict` 3e08f5a + c4319a8,
1435/// `Severity` 5116c95, `FixSafety` cf0174b, `Semantic` 0cd7dc3,
1436/// `FerriteRuntime` 14886a8) that closed one tier prior. Same discipline
1437/// as those peers: forward emit (this impl, the sibling `{&'static str,
1438/// String, Cow<'static, str>}` forward-projection corner,
1439/// [`std::fmt::Display`], [`AsRef<str>`], [`CaixaDialeto::as_str`]) and
1440/// reverse parse ([`CaixaDialeto::from_wire`], [`TryFrom<&str>`]) route
1441/// through the same four `PascalCase` byte-strings by construction, so
1442/// the round-trip composes directly without the wire-vocab intermediate
1443/// hop the peer [`crate::CaixaKind`] axis pair requires.
1444///
1445/// A future arm addition (the module doc's "third dialect" hazard
1446/// actualising as a fifth arm) reaches the paired [`Box<str>`] output
1447/// axis through one match-arm edit on the [`CaixaDialeto::as_str`]
1448/// `pub const fn` accessor, not a coordinated rewrite of every
1449/// downstream `Box::from(dialeto.as_str())` open-code.
1450///
1451/// Pinned load-bearing by
1452/// [`tests::caixa_dialeto_from_into_box_str_routes_through_as_str_accessor`]
1453/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-arm
1454/// [`CaixaDialeto::ALL`] emit-set on the owned-input surface, plus a
1455/// blanket-derived [`Into`] shape witness).
1456impl From<CaixaDialeto> for Box<str> {
1457 fn from(dialeto: CaixaDialeto) -> Box<str> {
1458 Box::<str>::from(dialeto.as_str())
1459 }
1460}
1461
1462/// Trait-idiomatic *borrowed-input, [`Box<str>`] output* forward projection
1463/// on the outside-M3 caixa-core dialect-classification [`CaixaDialeto`]
1464/// closed-set fieldless typed enum. Routes byte-for-byte through the
1465/// substrate-primitive [`CaixaDialeto::as_str`] `pub const fn` accessor
1466/// via [`Box::<str>::from`] on the returned `&'static str`, so every
1467/// consumer that binds a `let key: Box<str> = (&dialeto).into();`-shaped
1468/// call site or a `CaixaDialeto::ALL.iter().map(Box::<str>::from)`-shaped
1469/// pipe (whose iterator over `&'static [CaixaDialeto]` yields
1470/// `&CaixaDialeto` by construction) reaches the same four `"Pacote"` /
1471/// `"Molde"` / `"MoldePosicional"` / `"Desconhecido"` byte-strings the
1472/// sibling `{Self, &Self} × {&'static str, String, Cow<'static, str>}`
1473/// forward-projection corner and the paired owned-input
1474/// [`From<CaixaDialeto> for Box<str>`] already return.
1475///
1476/// Rust's standard library carries `impl From<&str> for Box<str>` and
1477/// `impl From<String> for Box<str>` but no blanket
1478/// `impl<T: AsRef<str>> From<&T> for Box<str>` (nor a `Copy`-based
1479/// `impl<T: Copy, U: From<T>> From<&T> for U`), so this borrowed-input
1480/// axis is a distinct trait-idiomatic surface that the pipe shape
1481/// [`CaixaDialeto::ALL`]`.iter().map(Box::<str>::from)` reaches through
1482/// this impl and no other — without it, the same pipe would force an
1483/// explicit `.copied()` restatement whose type bounds have no compile-
1484/// time link back to the substrate primitive, and a
1485/// `let key: Box<str> = (&dialeto).into();`-shaped call site would force
1486/// an explicit `Copy` deref (`Box::<str>::from(*dialeto)`) or a
1487/// `Box::<str>::from(dialeto.as_str())` open-code with the same defect.
1488///
1489/// Closes the `{Self, &Self}` input-shape corner on the third caixa-
1490/// core-internal closed-set fieldless typed enum peer of the substrate-
1491/// wide trait-idiomatic [`Box<str>`] forward-projection campaign,
1492/// matching the trajectory the paired render-side path-shape-diagnostic
1493/// [`crate::render::PathShapeViolation`] pair (0d87a72, both corners in
1494/// one axis) and the paired outside-M3 caixa-core two-list dep-graph
1495/// [`crate::dep::DepList`] pair (4aada99, both corners in one axis)
1496/// walked before it.
1497///
1498/// Pinned load-bearing by
1499/// [`tests::caixa_dialeto_from_borrowed_into_box_str_routes_through_as_str_accessor`]
1500/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-arm
1501/// [`CaixaDialeto::ALL`] emit-set on the borrowed-input surface, plus a
1502/// blanket-derived [`Into`] shape witness, plus a
1503/// `.iter().map(Box::<str>::from)` pipe witness over
1504/// [`CaixaDialeto::ALL`] — whose iterator yields `&CaixaDialeto` by
1505/// construction, so the borrowed-input [`Box<str>`] axis is what routes
1506/// the pipe through the substrate-primitive [`CaixaDialeto::as_str`]
1507/// accessor without a spurious [`Copy`] deref).
1508impl From<&CaixaDialeto> for Box<str> {
1509 fn from(dialeto: &CaixaDialeto) -> Box<str> {
1510 Box::<str>::from(dialeto.as_str())
1511 }
1512}
1513
1514/// Trait-idiomatic *owned-input, [`std::sync::Arc<str>`] output* forward
1515/// projection on the outside-M3 caixa-core dialect-classification
1516/// [`CaixaDialeto`] closed-set fieldless typed enum. Routes byte-for-byte
1517/// through the substrate-primitive [`CaixaDialeto::as_str`] `pub const fn`
1518/// accessor via [`std::sync::Arc::<str>::from`] on the returned
1519/// `&'static str`, so every consumer that binds a
1520/// `let key: std::sync::Arc<str> = dialeto.into();`-shaped call site
1521/// reaches the same four `"Pacote"` / `"Molde"` / `"MoldePosicional"` /
1522/// `"Desconhecido"` byte-strings the sibling
1523/// `{Self, &Self} × {&'static str, String, Cow<'static, str>, Box<str>}`
1524/// forward-projection corner already returns.
1525///
1526/// Rust's standard library carries `impl From<&str> for std::sync::Arc<str>`
1527/// and `impl From<String> for std::sync::Arc<str>` but no blanket
1528/// `impl<T: AsRef<str>> From<T> for std::sync::Arc<str>` (nor an
1529/// `impl<T: fmt::Display> From<T> for std::sync::Arc<str>`), so this axis is
1530/// a distinct trait-idiomatic surface that a downstream
1531/// `CaixaDialeto → std::sync::Arc<str>` `.into()` reaches through this impl
1532/// and no other — a paired `std::sync::Arc::<str>::from(dialeto.as_str())`
1533/// open-code has no compile-time link back to the substrate primitive, and
1534/// a two-step `std::sync::Arc::<str>::from(String::from(dialeto))`
1535/// composition through the owned-`String` axis allocates twice (once into
1536/// the intermediate `String`, once into the [`std::sync::Arc<str>`] on the
1537/// `From<String>` conversion) where the single-step trait impl allocates
1538/// once.
1539///
1540/// Extends the caixa-core-internal tier of the substrate-wide trait-
1541/// idiomatic [`std::sync::Arc<str>`] forward-projection campaign onto the
1542/// third caixa-core-internal peer, after the structurally most fundamental
1543/// [`crate::CaixaKind`] pair (c17be64, both corners in one axis) opened the
1544/// tier and the outside-M3 two-list dep-graph [`crate::dep::DepList`] pair
1545/// (d8a4652, both corners in one axis) extended it. Follows the M2
1546/// OTP-shape [`crate::supervisor::RestartStrategy`] /
1547/// [`crate::supervisor::RestartPolicy`] pair (bca2ec8 → ea91551), the M3
1548/// mesh-shape [`crate::aplicacao::PlacementStrategy`] /
1549/// [`crate::aplicacao::WitShape`] / [`crate::aplicacao::RateLimitUnit`]
1550/// triple (977d577 → dae722f) that closed the M3 mesh-shape tier, and the
1551/// outside-`caixa-core` tier (`InvariantKind` 4e923c1 + 03c043f,
1552/// `ArchVerdict` 1682f8b + 92ddfb2, `Severity` a7a9a6d + 4f041e1,
1553/// `FixSafety` fb73edb + 822138e, `Semantic` 65dbcff + f3a55c7,
1554/// `FerriteRuntime` 938d915 + 0afef4b) that closed one tier prior. The
1555/// shared-ownership + [`Sync`] + [`Send`] contract [`std::sync::Arc<str>`]
1556/// provides is what makes the per-arm canonical dialect-classification
1557/// label safely reachable off both input-shape axes without a `.clone()`-
1558/// per-task materialization, distinct from the sibling [`Box<str>`] axis's
1559/// owned-move-only contract.
1560///
1561/// A future arm addition (the module doc's "third dialect" hazard
1562/// actualising as a fifth arm) reaches the paired [`std::sync::Arc<str>`]
1563/// output axis through one match-arm edit on the [`CaixaDialeto::as_str`]
1564/// `pub const fn` accessor, not a coordinated rewrite of every downstream
1565/// `std::sync::Arc::<str>::from(dialeto.as_str())` open-code.
1566///
1567/// Pinned load-bearing by
1568/// [`tests::caixa_dialeto_from_into_arc_str_routes_through_as_str_accessor`]
1569/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-arm
1570/// [`CaixaDialeto::ALL`] emit-set on the owned-input surface, plus a
1571/// blanket-derived [`Into`] shape witness and cross-axis byte-parity pins
1572/// against the sibling owned-input
1573/// `{&'static str, String, Cow<'static, str>, Box<str>}` return-shape axes).
1574impl From<CaixaDialeto> for std::sync::Arc<str> {
1575 fn from(dialeto: CaixaDialeto) -> std::sync::Arc<str> {
1576 std::sync::Arc::<str>::from(dialeto.as_str())
1577 }
1578}
1579
1580/// Trait-idiomatic *borrowed-input, [`std::sync::Arc<str>`] output* forward
1581/// projection on the outside-M3 caixa-core dialect-classification
1582/// [`CaixaDialeto`] closed-set fieldless typed enum — the borrowed-input
1583/// companion to the paired owned-input
1584/// [`From<CaixaDialeto> for std::sync::Arc<str>`] impl one commit above
1585/// that extends the caixa-core-internal tier of the substrate-wide trait-
1586/// idiomatic [`std::sync::Arc<str>`] forward-projection campaign onto the
1587/// third caixa-core-internal peer. Routes byte-for-byte through the
1588/// substrate-primitive [`CaixaDialeto::as_str`] `pub const fn` accessor via
1589/// [`std::sync::Arc::<str>::from`] on the returned `&'static str`, so every
1590/// consumer that binds a `let key: std::sync::Arc<str> = (&dialeto).into();`
1591/// -shaped call site or a
1592/// `CaixaDialeto::ALL.iter().map(std::sync::Arc::<str>::from)`-shaped pipe
1593/// (whose iterator over `&'static [CaixaDialeto]` yields `&CaixaDialeto` by
1594/// construction) reaches the same four `"Pacote"` / `"Molde"` /
1595/// `"MoldePosicional"` / `"Desconhecido"` byte-strings the sibling
1596/// `{Self, &Self} × {&'static str, String, Cow<'static, str>, Box<str>}`
1597/// forward-projection corner and the paired owned-input
1598/// [`From<CaixaDialeto> for std::sync::Arc<str>`] already return.
1599///
1600/// Rust's standard library carries `impl From<&str> for std::sync::Arc<str>`
1601/// and `impl From<String> for std::sync::Arc<str>` but no blanket
1602/// `impl<T: AsRef<str>> From<&T> for std::sync::Arc<str>` (nor a `Copy`-
1603/// based `impl<T: Copy, U: From<T>> From<&T> for U`), so this borrowed-
1604/// input axis is a distinct trait-idiomatic surface that the pipe shape
1605/// [`CaixaDialeto::ALL`]`.iter().map(std::sync::Arc::<str>::from)` reaches
1606/// through this impl and no other — without it, the same pipe would force
1607/// a spurious [`Copy`] deref
1608/// (`std::sync::Arc::<str>::from((*dialeto).as_str())`) or a `.copied()`
1609/// restatement whose type bounds have no compile-time link back to the
1610/// substrate primitive.
1611///
1612/// Closes the `{Self, &Self}` input-shape corner on the third caixa-core-
1613/// internal closed-set fieldless typed enum peer of the substrate-wide
1614/// trait-idiomatic [`std::sync::Arc<str>`] forward-projection campaign,
1615/// matching the trajectory the paired structurally most fundamental
1616/// [`crate::CaixaKind`] pair (c17be64, both corners in one axis) and the
1617/// paired outside-M3 caixa-core two-list dep-graph [`crate::dep::DepList`]
1618/// pair (d8a4652, both corners in one axis) walked before it on the
1619/// caixa-core-internal tier of the same axis. Same
1620/// `{Self, &Self} × {&'static str, String, Cow<'static, str>, Box<str>,
1621/// std::sync::Arc<str>}` 2×5 forward-projection matrix the peer projection
1622/// surfaces already close on this same enum.
1623///
1624/// Pinned load-bearing by
1625/// [`tests::caixa_dialeto_from_borrowed_into_arc_str_routes_through_as_str_accessor`]
1626/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-arm
1627/// [`CaixaDialeto::ALL`] emit-set on the borrowed-input surface, plus a
1628/// blanket-derived [`Into`] shape witness, a cross-axis partition pin
1629/// against the paired owned-input
1630/// [`From<CaixaDialeto> for std::sync::Arc<str>`] and the sibling borrowed-
1631/// input `{&'static str, String, Cow<'static, str>, Box<str>}` return-shape
1632/// axes, and a `.iter().map(std::sync::Arc::<str>::from)` pipe witness over
1633/// [`CaixaDialeto::ALL`] that resolves through the borrowed-input axis
1634/// without a spurious [`Copy`] deref).
1635impl From<&CaixaDialeto> for std::sync::Arc<str> {
1636 fn from(dialeto: &CaixaDialeto) -> std::sync::Arc<str> {
1637 std::sync::Arc::<str>::from(dialeto.as_str())
1638 }
1639}
1640
1641/// Trait-idiomatic *owned-input, [`std::rc::Rc<str>`] output* forward
1642/// projection on the outside-M3 caixa-core dialect-classification
1643/// [`CaixaDialeto`] closed-set fieldless typed enum — the single-threaded
1644/// shared-ownership companion to the paired atomically-refcounted
1645/// [`From<CaixaDialeto> for std::sync::Arc<str>`] impl one commit above.
1646/// Routes byte-for-byte through the substrate-primitive
1647/// [`CaixaDialeto::as_str`] `pub const fn` accessor via
1648/// [`std::rc::Rc::<str>::from`] on the returned `&'static str`, so every
1649/// consumer that binds a `let key: std::rc::Rc<str> = dialeto.into();`-
1650/// shaped call site reaches the same four `"Pacote"` / `"Molde"` /
1651/// `"MoldePosicional"` / `"Desconhecido"` byte-strings the sibling
1652/// `{Self, &Self} × {&'static str, String, Cow<'static, str>, Box<str>,
1653/// std::sync::Arc<str>}` forward-projection corner already returns.
1654///
1655/// Rust's standard library carries `impl From<&str> for std::rc::Rc<str>`
1656/// and `impl From<String> for std::rc::Rc<str>` but no blanket
1657/// `impl<T: AsRef<str>> From<T> for std::rc::Rc<str>` (nor an
1658/// `impl<T: fmt::Display> From<T> for std::rc::Rc<str>`), and — critically
1659/// — the [`std::sync::Arc<str>`] and [`std::rc::Rc<str>`] layouts share
1660/// the same on-disk shape but the trait tables are disjoint (no blanket
1661/// `impl<T> From<T> for std::rc::Rc<str> where std::sync::Arc<str>: From<T>`
1662/// exists in `core`), so a closed-set enum that carries the paired
1663/// [`std::sync::Arc<str>`] axis but not the paired [`std::rc::Rc<str>`]
1664/// axis forces every single-threaded [`std::rc::Rc<str>`]-typed call site
1665/// through an [`std::rc::Rc::<str>::from`]`(dialeto.as_str())` open-code
1666/// (no compile-time link back to the substrate primitive) or a
1667/// [`std::rc::Rc::<str>::from`]`(String::from(dialeto))` two-step
1668/// composition through the owned-`String` axis that allocates twice
1669/// (once into the intermediate [`String`], once into the
1670/// [`std::rc::Rc<str>`] on the `From<String>` conversion) where the
1671/// single-step trait impl allocates once. The single-threaded shared-
1672/// ownership contract [`std::rc::Rc<str>`] provides — the non-atomic
1673/// strong-and-weak refcount header, cheaper `Clone` than the paired
1674/// atomically-refcounted [`std::sync::Arc<str>`] axis by a measurable
1675/// margin on hot single-threaded call sites — is the distinct value the
1676/// sibling [`std::sync::Arc<str>`] axis's [`Send`] and [`Sync`] return-
1677/// shape cannot provide without paying the atomic-increment cost on
1678/// every clone: a single-threaded `feira dialeto` census pipeline whose
1679/// per-file classify path composes a [`std::rc::Rc<str>`] label into a
1680/// per-arm counter reaches through this axis and not the atomic sibling;
1681/// a single-threaded `HashMap::<std::rc::Rc<str>, _>::from_iter` per-
1682/// dialect lookup where the map's key type is [`std::rc::Rc<str>`] so
1683/// the same dialect-label pointer can key both the map and the payload
1684/// without a second heap allocation reaches through this axis.
1685///
1686/// Extends the caixa-core-internal tier of the substrate-wide trait-
1687/// idiomatic [`std::rc::Rc<str>`] forward-projection campaign onto the
1688/// second caixa-core-internal peer, after the structurally most
1689/// fundamental [`crate::CaixaKind`] pair (4fdfa37, both corners in one
1690/// axis) opened the campaign on the closed-set fieldless typed-enum
1691/// family. Same `{Self, &Self} × {&'static str, String, Cow<'static, str>,
1692/// Box<str>, std::sync::Arc<str>, std::rc::Rc<str>}` 2×6 forward-
1693/// projection matrix the sibling projection surfaces already carry —
1694/// this impl extends the sixth column onto the dialect-classification
1695/// enum's owned-input row.
1696///
1697/// A future arm addition (the module doc's "third dialect" hazard
1698/// actualising as a fifth arm) reaches the paired [`std::rc::Rc<str>`]
1699/// output axis through one match-arm edit on the [`CaixaDialeto::as_str`]
1700/// `pub const fn` accessor, not a coordinated rewrite of every downstream
1701/// `std::rc::Rc::<str>::from(dialeto.as_str())` open-code.
1702///
1703/// Pinned load-bearing by
1704/// [`tests::caixa_dialeto_from_into_rc_str_routes_through_as_str_accessor`]
1705/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-arm
1706/// [`CaixaDialeto::ALL`] emit-set on the owned-input surface, plus a
1707/// blanket-derived [`Into`] shape witness and cross-axis byte-parity pins
1708/// against the sibling owned-input `{&'static str, String,
1709/// Cow<'static, str>, Box<str>, std::sync::Arc<str>}` return-shape axes).
1710impl From<CaixaDialeto> for std::rc::Rc<str> {
1711 fn from(dialeto: CaixaDialeto) -> std::rc::Rc<str> {
1712 std::rc::Rc::<str>::from(dialeto.as_str())
1713 }
1714}
1715
1716/// Trait-idiomatic *borrowed-input, [`std::rc::Rc<str>`] output* forward
1717/// projection on the outside-M3 caixa-core dialect-classification
1718/// [`CaixaDialeto`] closed-set fieldless typed enum — the borrowed-input
1719/// companion to the paired owned-input
1720/// [`From<CaixaDialeto> for std::rc::Rc<str>`] impl immediately above.
1721/// Routes byte-for-byte through the substrate-primitive
1722/// [`CaixaDialeto::as_str`] `pub const fn` accessor via
1723/// [`std::rc::Rc::<str>::from`] on the returned `&'static str`, so a
1724/// `CaixaDialeto::ALL.iter().map(std::rc::Rc::<str>::from)`-shaped pipe
1725/// (whose iterator over `&'static [CaixaDialeto]` yields `&CaixaDialeto`
1726/// by construction) reaches the same four `"Pacote"` / `"Molde"` /
1727/// `"MoldePosicional"` / `"Desconhecido"` byte-strings the paired owned-
1728/// input axis and the sibling `{Self, &Self} × {&'static str, String,
1729/// Cow<'static, str>, Box<str>, std::sync::Arc<str>}` forward-projection
1730/// corner already return.
1731///
1732/// Rust's standard library carries no blanket
1733/// `impl<T: AsRef<str>> From<&T> for std::rc::Rc<str>` (nor a `Copy`-
1734/// based `impl<T: Copy, U: From<T>> From<&T> for U`), so this borrowed-
1735/// input axis is a distinct trait-idiomatic surface that the pipe shape
1736/// [`CaixaDialeto::ALL`]`.iter().map(std::rc::Rc::<str>::from)` reaches
1737/// through this impl and no other — without it, the same pipe would
1738/// force a spurious [`Copy`] deref
1739/// (`std::rc::Rc::<str>::from((*dialeto).as_str())`) or a `.copied()`
1740/// restatement whose type bounds have no compile-time link back to the
1741/// substrate primitive.
1742///
1743/// Closes the `{Self, &Self}` input-shape corner on the second caixa-
1744/// core-internal closed-set fieldless typed enum peer of the substrate-
1745/// wide trait-idiomatic [`std::rc::Rc<str>`] forward-projection campaign,
1746/// matching the trajectory the paired structurally most fundamental
1747/// [`crate::CaixaKind`] pair (4fdfa37, both corners in one axis) walked
1748/// before it on the caixa-core-internal tier of the same axis. Same
1749/// `{Self, &Self} × {&'static str, String, Cow<'static, str>, Box<str>,
1750/// std::sync::Arc<str>, std::rc::Rc<str>}` 2×6 forward-projection matrix
1751/// the peer projection surfaces already close on this same enum.
1752///
1753/// Pinned load-bearing by
1754/// [`tests::caixa_dialeto_from_borrowed_into_rc_str_routes_through_as_str_accessor`]
1755/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-arm
1756/// [`CaixaDialeto::ALL`] emit-set on the borrowed-input surface, plus a
1757/// blanket-derived [`Into`] shape witness, a cross-axis partition pin
1758/// against the paired owned-input
1759/// [`From<CaixaDialeto> for std::rc::Rc<str>`] and the sibling borrowed-
1760/// input `{&'static str, String, Cow<'static, str>, Box<str>,
1761/// std::sync::Arc<str>}` return-shape axes, and a
1762/// `.iter().map(std::rc::Rc::<str>::from)` pipe witness over
1763/// [`CaixaDialeto::ALL`] that resolves through the borrowed-input axis
1764/// without a spurious [`Copy`] deref).
1765impl From<&CaixaDialeto> for std::rc::Rc<str> {
1766 fn from(dialeto: &CaixaDialeto) -> std::rc::Rc<str> {
1767 std::rc::Rc::<str>::from(dialeto.as_str())
1768 }
1769}
1770
1771/// Substrate-canonical [`AsRef<[u8]>`] byte-view projection on the
1772/// caixa-core-internal dialect-classification [`CaixaDialeto`] closed-set
1773/// fieldless typed enum — routes byte-for-byte through the substrate-
1774/// primitive [`CaixaDialeto::as_str`] `pub const fn` accessor via
1775/// [`str::as_bytes`] on the returned `&'static str`, so any future
1776/// consumer that binds a [`CaixaDialeto`] through a standard-library
1777/// `<T: AsRef<[u8]>>` trait bound reaches the same lifted
1778/// [`CAIXA_DIALETO_WIRE_PACOTE`] / [`CAIXA_DIALETO_WIRE_MOLDE`] /
1779/// [`CAIXA_DIALETO_WIRE_MOLDE_POSICIONAL`] /
1780/// [`CAIXA_DIALETO_WIRE_DESCONHECIDO`] `pub const &str` roster the paired
1781/// sibling [`AsRef<str>`] / [`std::fmt::Display`] /
1782/// [`CaixaDialeto::as_str`] / `{Self, &Self} × {&'static str, String,
1783/// Cow<'static, str>, Box<str>, std::sync::Arc<str>, std::rc::Rc<str>}`
1784/// str-view + reverse-projection surfaces already return — through the
1785/// byte-view axis, which the str-view axes cannot express.
1786///
1787/// Unlike the sibling top-level [`crate::CaixaKind`] enum — which
1788/// carries a two-axis split ([`crate::CaixaKind::as_str`] returning
1789/// lowercase-Portuguese diagnostic form vs
1790/// [`crate::CaixaKind::wire_name`] returning `PascalCase` tatara-lisp
1791/// author-surface bytes) — [`CaixaDialeto`] is an internal
1792/// classification with no wire-surface split (see the
1793/// [`CaixaDialeto::as_str`] docstring: "the `PascalCase` variant name
1794/// is the census-facing form every consumer reads, so `as_str`
1795/// suffices without a paired `wire_name` axis"). The byte-view axis
1796/// therefore lands on the same `PascalCase` census-facing byte-string
1797/// every str-view and reverse-projection axis on this enum already
1798/// returns, and no wire-axis cross-witness applies.
1799///
1800/// The primary compounding target is the same [`crate`]-adjacent
1801/// [`caixa-lacre`](../../caixa-lacre/) BLAKE3 content-address closure
1802/// the peer [`crate::CaixaKind`] `AsRef<[u8]>` impl (69d8d86) opens
1803/// onto: [`blake3::hash`] and [`blake3::Hasher::update`] both bind
1804/// their input through `impl AsRef<[u8]>`, so any future per-caixa
1805/// content-address tag that folds a `:dialect` classification-byte
1806/// into the [`crate::Lacre`] closure (a hypothetical
1807/// `hasher.update(dialeto);`-shape composition on the per-caixa
1808/// BLAKE3 closure builder that keys off the caixa source's dialect
1809/// classification) reaches the substrate-primitive
1810/// [`CaixaDialeto::as_str`] accessor through this impl and no other —
1811/// without it, every such call site opens the two-hop composition
1812/// `dialeto.as_str().as_bytes()` whose byte-tail has no compile-time
1813/// link back to the byte-projection axis. Peer consumer paths on the
1814/// byte-view axis: any future [`std::io::Write::write_all`]-bound
1815/// structured-log dialect-column emitter (whose input binds through
1816/// `impl AsRef<[u8]>`), any future byte-keyed
1817/// [`std::collections::HashMap`] `<K: AsRef<[u8]>, V>` per-dialect
1818/// tally lookup whose entry-key trait bound rules out the sibling
1819/// [`AsRef<str>`] str-view projection, and any future
1820/// `ring::digest::Context::update` / `sha2::Sha256::update` /
1821/// `blake3::Hasher::update` byte-input surface on any future per-
1822/// dialect content-address digest.
1823///
1824/// Rust's standard library carries `impl AsRef<[u8]> for str` and
1825/// `impl AsRef<[u8]> for String`, so the two-hop composition
1826/// `dialeto.as_str().as_bytes()` (or, equivalently,
1827/// `AsRef::<str>::as_ref(&dialeto).as_bytes()`) is reachable through
1828/// the pre-existing str-view axis alone. But that two-hop shape has
1829/// no compile-time link back to the byte-projection axis, forces
1830/// every downstream `<T: AsRef<[u8]>>`-bound consumer to open-code
1831/// the two-hop composition at every call site rather than pass a
1832/// [`CaixaDialeto`] through the trait bound directly, and admits a
1833/// silent split whenever a future call site takes the sibling
1834/// [`std::fmt::Display`] or [`From<Self> for String`] axis (whose
1835/// `.as_bytes()` byte-tails byte-equal `as_str`'s by construction
1836/// but carry no compile-time byte-view surface, since `Display`
1837/// returns a formatter and `String` allocates). The lifted single-
1838/// hop impl closes the byte-view axis so every future
1839/// `<T: AsRef<[u8]>>`-bound consumer reaches the substrate primitive
1840/// through one trait dispatch, and every future arm addition (the
1841/// module doc's "third dialect" hazard actualising as a fifth arm)
1842/// grows the byte-view axis through one edit on the substrate-
1843/// primitive `as_str` accessor, not a coordinated rewrite across
1844/// every future `<T: AsRef<[u8]>>`-bound consumer's arm-set.
1845///
1846/// Extends the trait-idiomatic *byte-view* axis onto the second
1847/// closed-set fieldless typed-enum peer on the substrate — the
1848/// caixa-core-internal dialect-classification enum — matching the
1849/// trajectory the sibling [`crate::CaixaKind`] first-mover
1850/// [`AsRef<[u8]>`] impl (69d8d86) walked before it on the caixa-core
1851/// tier of the byte-view axis, and matching the discipline the
1852/// paired sibling closed-set fieldless typed enums already carry on
1853/// the peer str-view ([`AsRef<str>`]), parse
1854/// ([`std::str::FromStr`]), and reverse-projection
1855/// (`{Self, &Self} × {&'static str, String, Cow<'static, str>,
1856/// Box<str>, std::sync::Arc<str>, std::rc::Rc<str>}`) axes on this
1857/// same enum.
1858///
1859/// Pinned load-bearing by
1860/// [`tests::caixa_dialeto_as_ref_bytes_routes_through_as_str_accessor`]
1861/// (fail-before-pass-after byte-parity pin against
1862/// [`CaixaDialeto::as_str`] `.as_bytes()` across the four-arm
1863/// [`CaixaDialeto::ALL`] emit-set, cross-axis witness against the
1864/// paired str-view [`AsRef<str>`] / [`std::fmt::Display`] /
1865/// [`CaixaDialeto::as_str`] axes' `.as_bytes()` byte-tails, cross-
1866/// axis witness against the paired reverse-projection
1867/// `{&'static str, String, Cow<'static, str>, Box<str>,
1868/// std::sync::Arc<str>, std::rc::Rc<str>}` return-shape axes'
1869/// `.as_bytes()` byte-tails, a `<T: AsRef<[u8]>>`-bound-consumer
1870/// witness that a generic byte-input function accepts a
1871/// [`CaixaDialeto`] directly through the trait bound on both owned
1872/// and borrowed input shapes, and a `blake3::Hasher::update`-shape
1873/// byte-input surface witness routed through the
1874/// `<T: AsRef<[u8]>>`-bound consumer axis to reach the caixa-lacre
1875/// compounding target on both owned and borrowed input shapes). Any
1876/// future silent detour that routes the byte-view impl off the
1877/// substrate-primitive [`CaixaDialeto::as_str`] accessor (a per-arm
1878/// inline `b"Pacote".as_slice()`-shaped re-inlining that opens a
1879/// compile-time link to the un-lifted arm-literal, a swap onto the
1880/// sibling [`CaixaDialeto::palavra_canonica`] /
1881/// [`CaixaDialeto::consumidor`] / [`CaixaDialeto::descricao`]
1882/// accessors that carry distinct byte-shapes per axis) trips at
1883/// caixa-core test time rather than at a downstream byte-consumer's
1884/// silent split.
1885impl AsRef<[u8]> for CaixaDialeto {
1886 fn as_ref(&self) -> &[u8] {
1887 self.as_str().as_bytes()
1888 }
1889}
1890
1891/// Trait-idiomatic *owned-input, owned-`Vec<u8>` output* byte-owned
1892/// reverse projection on the second caixa-core-internal closed-set
1893/// fieldless typed enum peer ([`CaixaDialeto`]) — the byte-mirror of
1894/// the [`From<CaixaDialeto> for String`] str-owned reverse-projection
1895/// axis and the owned-`Vec<u8>` reverse-projection sibling of the
1896/// paired [`AsRef<[u8]>`] borrowed byte-view axis lifted on this same
1897/// enum. Routes byte-for-byte through the substrate-primitive
1898/// [`CaixaDialeto::as_str`] `pub const fn` accessor via
1899/// [`str::as_bytes`] + [`slice::to_vec`] so every consumer that binds
1900/// a [`CaixaDialeto`] through the standard-library
1901/// `impl From<CaixaDialeto> for Vec<u8>` axis (equivalently
1902/// `<T: Into<Vec<u8>>>`) — a future
1903/// [`std::io::Write::write_all`]-shape per-dialect audit-log byte-sink
1904/// whose input parameter is an owned [`Vec<u8>`] payload, a future
1905/// `bytes::Bytes::from(Vec::<u8>::from(dialeto))` composer folding the
1906/// per-arm classification byte-tag into the [`bytes::Bytes`] framing
1907/// surface, a future `hasher.update(&Vec::<u8>::from(dialeto))`-shape
1908/// BLAKE3 content-address closure that needs the owned byte-tail
1909/// buffered before folding into the [`crate::Lacre`] closure body, a
1910/// future per-dialect protobuf/CBOR/msgpack payload composer whose
1911/// framer takes an owned [`Vec<u8>`] rather than a borrowed byte-slice
1912/// — reaches the same four-arm lifted [`CAIXA_DIALETO_WIRE_PACOTE`] /
1913/// [`CAIXA_DIALETO_WIRE_MOLDE`] / [`CAIXA_DIALETO_WIRE_MOLDE_POSICIONAL`]
1914/// / [`CAIXA_DIALETO_WIRE_DESCONHECIDO`] const roster the paired
1915/// [`AsRef<[u8]>`] borrowed byte-view axis, the four `{Self, &Self} ×
1916/// {&'static str, String}` 2×2 str-view forward-projection corners,
1917/// the [`std::borrow::Cow<'static, str>`] / [`Box<str>`] /
1918/// [`std::sync::Arc<str>`] / [`std::rc::Rc<str>`] str-owned reverse-
1919/// projection quartet, and the substrate-primitive
1920/// [`CaixaDialeto::as_str`] accessor already return, rather than an
1921/// open-coded per-call-site `dialeto.as_str().as_bytes().to_vec()` /
1922/// `<CaixaDialeto as AsRef<[u8]>>::as_ref(&dialeto).to_vec()` /
1923/// `String::from(dialeto).into_bytes()` composition whose type bounds
1924/// have no compile-time link back to the substrate primitive.
1925///
1926/// Second peer on the substrate-wide trait-idiomatic *byte-owned
1927/// reverse-projection* family opened on the sibling top-level
1928/// [`crate::CaixaKind`] enum (b245fd6 first-mover) — Rust's standard
1929/// library carries `impl From<&[u8]> for Vec<u8>` and
1930/// `impl From<String> for Vec<u8>`, so a two-hop composition
1931/// `dialeto.as_str().as_bytes().to_vec()` (or
1932/// `String::from(dialeto).into_bytes()`, or
1933/// `<CaixaDialeto as AsRef<[u8]>>::as_ref(&dialeto).to_vec()`) is
1934/// reachable through the pre-existing str-view axes and the paired
1935/// [`AsRef<[u8]>`] borrowed byte-view axis alone. But that two-hop
1936/// shape has no compile-time link back to the byte-owned reverse-
1937/// projection axis, forces every downstream `<T: Into<Vec<u8>>>`-
1938/// bound consumer to open-code the composition at every call site,
1939/// and admits a silent split whenever a future call site takes a
1940/// sibling projection axis whose `into_bytes()` / `to_vec()` byte-
1941/// tail carries no compile-time byte-owned surface. The lifted
1942/// single-hop impl closes the byte-owned reverse-projection axis so
1943/// every future `Vec<u8>`-parameterized consumer reaches the
1944/// substrate primitive through one trait dispatch, and every future
1945/// arm addition (the module doc's "third dialect" hazard actualising
1946/// as a fifth arm landing on a new `CAIXA_DIALETO_WIRE_*` const)
1947/// grows the byte-owned axis through one edit on the substrate-
1948/// primitive [`CaixaDialeto::as_str`] accessor.
1949///
1950/// Unlike the sibling first-mover [`crate::CaixaKind`] enum — which
1951/// carries a two-axis split (lowercase-Portuguese diagnostic form vs
1952/// `PascalCase` tatara-lisp author-surface bytes) so its byte-owned
1953/// axis pins a wire-axis rejection witness — [`CaixaDialeto`] is an
1954/// internal classification with no wire-surface split (see the
1955/// [`CaixaDialeto::as_str`] docstring: "the `PascalCase` variant name
1956/// is the census-facing form every consumer reads, so `as_str`
1957/// suffices without a paired `wire_name` axis"). The byte-owned axis
1958/// therefore lands on the same `PascalCase` census-facing byte-string
1959/// every str-view / reverse-projection / byte-view axis on this enum
1960/// already returns, and no wire-axis cross-witness applies.
1961///
1962/// Extends the byte-owned reverse-projection axis onto the second
1963/// closed-set fieldless typed enum peer on the caixa-core-internal
1964/// tier — every future closed-set fieldless typed enum peer on the
1965/// substrate ([`crate::supervisor::RestartStrategy`],
1966/// [`crate::supervisor::RestartPolicy`],
1967/// [`crate::aplicacao::PlacementStrategy`],
1968/// [`crate::aplicacao::RateLimitUnit`], [`crate::dep::DepList`], and
1969/// the outside-`caixa-core` peers `WitShape`, `PathShapeViolation`,
1970/// `InvariantKind`, `ArchVerdict`, `Severity`, `FixSafety`,
1971/// `Semantic`, `FerriteRuntime`) is a future target of the campaign,
1972/// mirroring the discipline the paired [`AsRef<[u8]>`] borrowed byte-
1973/// view axis campaign already tracked.
1974///
1975/// Pinned load-bearing by
1976/// [`tests::caixa_dialeto_from_into_owned_vec_bytes_routes_through_as_str_accessor`]
1977/// (byte-parity pin against [`CaixaDialeto::as_str`] across the four-
1978/// arm emit-set binding the byte-owned reverse-projection axis
1979/// against the paired [`AsRef<[u8]>`] borrowed byte-view axis and the
1980/// str-view family's `.as_bytes().to_vec()` byte-tails, plus a
1981/// `<T: Into<Vec<u8>>>`-bound generic-consumer witness and a
1982/// `std::io::Write::write_all`-shape owned-byte-sink surface witness
1983/// on both owned and borrowed input shapes).
1984impl From<CaixaDialeto> for Vec<u8> {
1985 fn from(dialeto: CaixaDialeto) -> Vec<u8> {
1986 dialeto.as_str().as_bytes().to_vec()
1987 }
1988}
1989
1990/// Trait-idiomatic *borrowed-input, owned-`Vec<u8>` output* byte-
1991/// owned reverse projection on the second caixa-core-internal closed-
1992/// set fieldless typed enum peer ([`CaixaDialeto`]) — the borrowed-
1993/// input peer of [`From<CaixaDialeto> for Vec<u8>`], closing the
1994/// `{Self, &Self} → Vec<u8>` pair on the byte-owned reverse-
1995/// projection axis in one lift. Routes byte-for-byte through the
1996/// substrate-primitive [`CaixaDialeto::as_str`] `pub const fn`
1997/// accessor so every consumer that holds a borrowed [`&CaixaDialeto`]
1998/// and needs an owned [`Vec<u8>`] — a future
1999/// `.iter().map(Vec::<u8>::from).collect()` pipe over
2000/// `&[CaixaDialeto]` (whose iterator yields `&CaixaDialeto`, not
2001/// `CaixaDialeto`, so the owned-input axis alone forces every call
2002/// site through an explicit `.copied()` / spurious [`Copy`] deref
2003/// restatement rather than the direct trait-idiomatic projection), a
2004/// future census-report body composer that walks
2005/// [`CaixaDialeto::ALL`] through an `Into<Vec<u8>>`-bound per-arm
2006/// byte-writer to surface the accepted dialect set — reaches the same
2007/// four-arm lifted `CAIXA_DIALETO_WIRE_*` const roster the paired
2008/// owned-input peer already returns.
2009impl From<&CaixaDialeto> for Vec<u8> {
2010 fn from(dialeto: &CaixaDialeto) -> Vec<u8> {
2011 dialeto.as_str().as_bytes().to_vec()
2012 }
2013}
2014
2015/// Trait-idiomatic *borrowed byte-slice input* reverse projection on the
2016/// second caixa-core-internal closed-set fieldless typed enum peer
2017/// ([`CaixaDialeto`]) — the byte-view mirror of the str-view reverse-
2018/// projection axis carried by the paired [`TryFrom<&str> for CaixaDialeto`]
2019/// impl (which routes through the substrate-primitive
2020/// [`CaixaDialeto::from_wire`] `Option<Self>` accessor on the four-arm
2021/// `PascalCase` accept-set the sibling [`CaixaDialeto::as_str`] emitter
2022/// returns). Routes byte-for-byte through the standard-library
2023/// [`std::str::from_utf8`] UTF-8 validator and then through
2024/// [`CaixaDialeto::from_wire`] so every consumer that holds a borrowed
2025/// [`&[u8]`] and needs to project it back into a typed [`CaixaDialeto`] —
2026/// a future `bytes::Bytes::as_ref()`-fed reader that parses a per-caixa
2027/// `:dialect` classification tag from an already-borrowed framing byte-
2028/// tail (a `tracing::field::valuable::Value::Bytes` recorder on the
2029/// caixa-build pipeline's per-file classify emission path, a future audit-
2030/// report re-loader binding a prior [`CaixaDialeto::as_str`] output from a
2031/// mmap'd byte-slice back through the typed enum for cross-run
2032/// comparison), a future admission-webhook rejection body that reads a
2033/// `spec.dialeto` field off a raw HTTP body byte-slice before UTF-8
2034/// validation commits allocation, a future generic
2035/// `<T: for<'a> TryFrom<&'a [u8]>>`-bound loader over any of the
2036/// substrate's closed-set typed enums — reaches the same four-arm
2037/// `PascalCase` wire accept-set the sibling method-named
2038/// [`CaixaDialeto::from_wire`] resolver and the paired trait-idiomatic
2039/// [`TryFrom<&str>`] axis already resolve against, rather than an open-
2040/// coded per-call-site
2041/// `std::str::from_utf8(bytes).ok().and_then(CaixaDialeto::from_wire)`
2042/// composition or a
2043/// `<CaixaDialeto as TryFrom<&str>>::try_from(std::str::from_utf8(bytes)?)`
2044/// two-hop shape whose type bounds have no compile-time link to the
2045/// substrate primitive.
2046///
2047/// Extends the substrate-wide trait-idiomatic *byte-view reverse-
2048/// projection* family — opened on the structurally most fundamental
2049/// closed-set fieldless typed enum peer ([`crate::CaixaKind`], commit
2050/// 18d1940) — onto the second caixa-core-internal closed-set fieldless
2051/// typed enum peer, tracking the "route through `from_wire` via
2052/// `std::str::from_utf8`" discipline the first-mover established. Rust's
2053/// standard library carries no blanket
2054/// `impl<T: for<'a> TryFrom<&'a str>> TryFrom<&[u8]> for T`, so a two-hop
2055/// composition through [`std::str::from_utf8`] + the paired
2056/// [`TryFrom<&str>`] axis is reachable at every call site but has no
2057/// compile-time link back to the byte-view reverse-projection axis. Every
2058/// future closed-set fieldless typed enum peer on the substrate
2059/// ([`crate::dep::DepList`], [`crate::supervisor::RestartStrategy`],
2060/// [`crate::supervisor::RestartPolicy`],
2061/// [`crate::aplicacao::PlacementStrategy`],
2062/// [`crate::aplicacao::RateLimitUnit`], [`crate::aplicacao::WitShape`],
2063/// and the outside-`caixa-core` peers `PathShapeViolation`,
2064/// `InvariantKind`, `ArchVerdict`, `Severity`, `FixSafety`, `Semantic`,
2065/// `FerriteRuntime`) is a future target of the campaign, mirroring the
2066/// trajectory the closed byte-owned reverse-projection family walked
2067/// arm-by-arm onto each peer.
2068///
2069/// `type Error = ()` matches the sibling [`CaixaDialeto::from_wire`]'s
2070/// `Option<Self>` return-shape's deliberate deferral of error typing and
2071/// the paired trait-idiomatic [`TryFrom<&str>`] axis's unit-error shape —
2072/// the caller picks the diagnostic form appropriate for its use site (a
2073/// future `feira dialeto --filter` arg-parse composes its own per-verb
2074/// "unknown dialect: <arg> — accepted: {…}" message enumerating
2075/// [`CaixaDialeto::ALL`]; a future admission-webhook rejection body wraps
2076/// the `Err(())` outcome with the accepted-set enumeration for operator
2077/// diagnostics; a `Result::map_err` at the call site lifts the unit-error
2078/// to a per-verb error type). Two rejection paths route through the
2079/// single unit-error: an invalid UTF-8 byte-sequence
2080/// ([`std::str::from_utf8`] returns `Err`) and a valid UTF-8 byte-string
2081/// that falls outside the four-arm `PascalCase` accept-set
2082/// ([`CaixaDialeto::from_wire`] returns `None`) — both collapse onto
2083/// `Err(())` so the trait signature stays consistent with the sibling
2084/// str-view reverse axis, and a caller that needs to distinguish the two
2085/// failure modes composes [`std::str::from_utf8`] +
2086/// [`CaixaDialeto::from_wire`] explicitly.
2087///
2088/// Pinned load-bearing by
2089/// [`tests::caixa_dialeto_try_from_bytes_routes_through_from_wire_accessor`]
2090/// (byte-parity pin against [`CaixaDialeto::from_wire`] across the four-
2091/// arm [`CaixaDialeto::ALL`] accept-set on the borrowed byte-slice
2092/// surface, plus a cross-axis witness that the byte-view reverse
2093/// projection agrees with the paired [`TryFrom<&str>`] str-view reverse
2094/// axis on every accepted arm) and
2095/// [`tests::caixa_dialeto_try_from_bytes_rejects_unknown_and_non_utf8_bytes`]
2096/// (rejection witness against silent accept-set widening on both the
2097/// non-UTF-8 byte-sequence rejection path and the unknown-wire-vocabulary
2098/// rejection path).
2099impl TryFrom<&[u8]> for CaixaDialeto {
2100 type Error = ();
2101
2102 fn try_from(bytes: &[u8]) -> Result<Self, Self::Error> {
2103 std::str::from_utf8(bytes)
2104 .ok()
2105 .and_then(Self::from_wire)
2106 .ok_or(())
2107 }
2108}
2109
2110/// Trait-idiomatic *owned byte-vec input* reverse projection on the
2111/// second caixa-core-internal closed-set fieldless typed enum peer
2112/// ([`CaixaDialeto`]) — the owned-input peer of
2113/// [`TryFrom<&[u8]> for CaixaDialeto`], mirroring the closed
2114/// [`From<CaixaDialeto> for Vec<u8>`] + [`From<&CaixaDialeto> for Vec<u8>`]
2115/// byte-owned *forward*-projection pair on this same enum onto the
2116/// byte-owned *reverse*-projection axis. Routes byte-for-byte through
2117/// [`<Self as TryFrom<&[u8]>>::try_from`] on the [`Vec<u8>::as_slice`]
2118/// borrow, so the owned-input surface reaches the same
2119/// [`std::str::from_utf8`] + [`CaixaDialeto::from_wire`] resolution chain
2120/// the borrowed-input peer already carries — one substrate-primitive
2121/// accessor, one trait dispatch, no per-consumer detour.
2122///
2123/// Rust's standard library carries no blanket
2124/// `impl<T: for<'a> TryFrom<&'a [u8]>> TryFrom<Vec<u8>> for T`, so a
2125/// consumer that holds an owned [`Vec<u8>`] and needs a typed
2126/// [`CaixaDialeto`] otherwise picks between (a) an open-coded
2127/// `<CaixaDialeto as TryFrom<&[u8]>>::try_from(bytes.as_slice())` at
2128/// every call site (whose type bounds have no compile-time link to the
2129/// byte-owned reverse-projection axis), (b) a two-hop
2130/// `String::from_utf8(bytes)` + [`CaixaDialeto::from_wire`] composition
2131/// whose error surface leaks the standard-library [`std::string::FromUtf8Error`]
2132/// (widening the sibling [`TryFrom<&[u8]>`] axis's unit-error) and
2133/// silently allocates a [`String`] on inputs that will never make it
2134/// past the wire vocabulary, or (c) an intermediate
2135/// `<CaixaDialeto as TryFrom<&str>>::try_from(std::str::from_utf8(&bytes)?)`
2136/// three-hop shape. This impl closes the owned-byte-vec reverse-
2137/// projection axis at the substrate-primitive
2138/// [`CaixaDialeto::from_wire`] accessor so every future
2139/// `<T: TryFrom<Vec<u8>>>`-bound owned-byte-vec consumer — a future
2140/// admission-webhook body reader that hands raw request bytes off as
2141/// a [`Vec<u8>`] before UTF-8 validation commits, a future
2142/// `std::io::Read::read_to_end`-shape audit-log source whose framing
2143/// yields an owned byte-vec per frame, a future protobuf/CBOR/msgpack
2144/// per-field decoder whose bytes arm surfaces an owned [`Vec<u8>`]
2145/// before dispatch, a `bytes::Bytes::to_vec()`-shape wire-body
2146/// composer walking a prior audit's payload back to the typed enum,
2147/// an `<T: TryFrom<Vec<u8>>>`-bound generic loader over any of the
2148/// substrate's closed-set typed enums — reaches the same four-arm
2149/// `PascalCase` wire accept-set through one trait dispatch.
2150///
2151/// Extends the substrate-wide trait-idiomatic *byte-owned reverse-
2152/// projection* family onto the second caixa-core-internal closed-set
2153/// fieldless typed enum peer, tracking the trajectory the sibling
2154/// first-mover [`TryFrom<Vec<u8>> for CaixaKind`] (99c2849) opened on
2155/// the structurally most fundamental enum. Peer of the sibling closed
2156/// byte-view reverse-projection family (`TryFrom<&[u8]>`; extended
2157/// onto this enum d102cb8) and of the closed byte-owned forward-
2158/// projection family (`From<{Self, &Self}> for Vec<u8>`; extended
2159/// onto this enum on the same commit as its `TryFrom<&[u8]>` peer)
2160/// on this same enum — the {owned-input, borrowed-input} ×
2161/// {owned-output byte-vec, borrowed-output byte-slice} byte-view
2162/// reverse-projection square now closes on [`CaixaDialeto`].
2163///
2164/// `type Error = ()` matches the sibling [`TryFrom<&[u8]> for CaixaDialeto`]
2165/// unit-error shape, preserving the trait-family consistency across
2166/// the borrowed-and-owned byte-view reverse-projection pair. Both
2167/// rejection paths (invalid UTF-8, valid-UTF-8-but-unknown-wire)
2168/// collapse onto `Err(())` through the delegated borrowed axis.
2169/// The owned [`Vec<u8>`] input is dropped on the error path (the
2170/// standard-library `String::from_utf8` convention of returning the
2171/// input in the error deliberately declined — a caller that needs
2172/// the bytes back holds a clone before the call, and the closed-set-
2173/// enum use site rarely wants the raw bytes back past a "did you
2174/// mean" diagnostic that operates on the wire vocabulary rather than
2175/// the input).
2176///
2177/// Unlike the peer [`TryFrom<Vec<u8>> for crate::CaixaKind`] (which
2178/// carries a wire-vs-diagnostic two-axis split — `as_str` lowercase
2179/// Portuguese vs `wire_name` `PascalCase`), [`CaixaDialeto`] has no
2180/// such split: [`Self::as_str`] and [`Self::from_wire`] operate on
2181/// the same four-arm `PascalCase` byte-vocabulary
2182/// (`"Pacote"`, `"Molde"`, `"MoldePosicional"`, `"Desconhecido"`).
2183/// So on this enum the byte-owned reverse-projection axis *can*
2184/// round-trip against the paired byte-owned forward-projection pair
2185/// ([`From<CaixaDialeto> for Vec<u8>`], [`From<&CaixaDialeto> for
2186/// Vec<u8>`]) — a four-corner witness the pinned load-bearing test
2187/// makes explicit, and a witness the sibling
2188/// [`TryFrom<Vec<u8>> for crate::CaixaKind`] axis deliberately
2189/// declines.
2190///
2191/// Pinned load-bearing by
2192/// [`tests::caixa_dialeto_try_from_vec_bytes_routes_through_borrowed_byte_view_axis`]
2193/// (byte-parity pin against the paired borrowed [`TryFrom<&[u8]>`]
2194/// axis across the four-arm [`CaixaDialeto::ALL`] accept-set on the
2195/// owned byte-vec surface, plus a cross-axis witness that the byte-
2196/// owned reverse projection agrees with the paired str-view reverse-
2197/// projection axis ([`TryFrom<&str>`]) on every accepted arm through
2198/// the shared substrate-primitive [`CaixaDialeto::from_wire`]
2199/// accessor, plus a four-corner {owned-input, borrowed-input} ×
2200/// {owned-output byte-vec, borrowed-output byte-slice} round-trip
2201/// witness against the paired [`From<{Self, &Self}> for Vec<u8>`]
2202/// byte-owned forward-projection pair) and
2203/// [`tests::caixa_dialeto_try_from_vec_bytes_rejects_unknown_and_non_utf8_bytes`]
2204/// (rejection witness against silent accept-set widening on both the
2205/// non-UTF-8 byte-sequence rejection path and the unknown-wire-
2206/// vocabulary rejection path, plus a cross-axis witness that the
2207/// owned byte-vec reverse-projection axis agrees with the borrowed
2208/// byte-slice reverse-projection axis on every rejected input).
2209impl TryFrom<Vec<u8>> for CaixaDialeto {
2210 type Error = ();
2211
2212 fn try_from(bytes: Vec<u8>) -> Result<Self, Self::Error> {
2213 <Self as TryFrom<&[u8]>>::try_from(bytes.as_slice())
2214 }
2215}
2216
2217/// A source that is not a `(defcaixa …)` / `(defmolde …)` form at all.
2218#[derive(Debug, Clone, PartialEq, Eq, thiserror::Error)]
2219pub enum DialetoError {
2220 #[error("source has no top-level form")]
2221 Vazio,
2222 #[error("top-level form is not a list — a manifest is `(defcaixa …)`")]
2223 NaoEhLista,
2224 #[error(
2225 "top-level form is headed by `{encontrado}`, not `defcaixa` or `defmolde` \
2226 (a manifest's first form must be the declaration itself)"
2227 )]
2228 CabecaErrada { encontrado: String },
2229 #[error("manifest does not parse as tatara-lisp: {0}")]
2230 Leitura(String),
2231}
2232
2233impl DialetoError {
2234 /// Construct a [`DialetoError::CabecaErrada`] naming the offending
2235 /// head symbol found at the top-level form.
2236 ///
2237 /// Substrate primitive every [`classify_form`] wrong-head fallthrough
2238 /// wire-up site now routes through, folding the pre-lift uniform
2239 /// three-line `Self::CabecaErrada { encontrado: <head>.to_string() }`
2240 /// one-field struct-literal onto one substrate primitive matching the
2241 /// peer `LimitsError::unknown_byte_unit(unit: &str)` /
2242 /// `LimitsError::unknown_duration_unit(unit: &str)`
2243 /// (`limits_codec_unit_only_ctors!` — 29fac09) single-slot
2244 /// discipline on the sibling one-field `{ <field>: String }` envelope
2245 /// axis, and matching the peer `ManifestError::code_path_empty` /
2246 /// `BehaviorError::empty_path` / `UpgradeError::duplicate_from` /
2247 /// `AplicacaoError::placement_cluster_duplicate` (94dabc8 / 0e33b37 /
2248 /// 7e52aec / 92b1c92) single-slot inherent-ctor discipline every
2249 /// sibling `{ <field>: <T> }` error-envelope variant on caixa-core's
2250 /// error surface now carries.
2251 ///
2252 /// The one open-coded wire-up site — `classify_form`'s wrong-head
2253 /// fallthrough arm on the `head: &str` binding read from the
2254 /// top-level form via [`tatara_lisp::Sexp::as_symbol`] — opened the
2255 /// identical three-line
2256 /// `Self::CabecaErrada { encontrado: <head>.to_string() }` block
2257 /// against the codec-scoped `<head>: &str` binding. Now routes
2258 /// through `DialetoError::cabeca_errada(head)`, byte-equal to the
2259 /// pre-lift struct-literal on the same `&str` fixture, so any future
2260 /// widening of the diagnostic shape (e.g. carrying the source-file
2261 /// path alongside the head symbol, carrying the head symbol's
2262 /// position offset for an authoring-surface caret pointer) lands at
2263 /// exactly one dispatch on the substrate primitive rather than re-
2264 /// inlining the struct-literal at every wrong-head fallthrough
2265 /// consumer.
2266 #[must_use]
2267 pub fn cabeca_errada(encontrado: &str) -> Self {
2268 Self::CabecaErrada {
2269 encontrado: encontrado.to_string(),
2270 }
2271 }
2272
2273 /// Construct a [`DialetoError::Leitura`] carrying the offending
2274 /// tatara-lisp reader-error message `reason` verbatim in the
2275 /// variant's tuple-newtype payload.
2276 ///
2277 /// Substrate primitive every [`classify`] tatara-lisp-reader
2278 /// map-err wire-up site now routes through, folding the pre-lift
2279 /// uniform `Self::Leitura(<into-String-expr>)` tuple-newtype
2280 /// construction onto one substrate primitive matching the peer
2281 /// `LimitsError::empty_byte_size` / `LimitsError::empty_duration`
2282 /// (7a4b003 / 319216c) `(String)` single-slot tuple-newtype
2283 /// discipline on the sibling
2284 /// [`crate::limits::LimitsError`] envelope's empty-shape axis of
2285 /// the paired codec-magnitude family. Peer to the sibling
2286 /// [`DialetoError::cabeca_errada`] ctor on the same envelope's
2287 /// wrong-head axis but on the tatara-lisp-reader axis rather than
2288 /// the classifier-fallthrough axis. Closes the last un-lifted
2289 /// variant on [`DialetoError`] — every one of the sole wire-up
2290 /// sites (the [`classify`] tatara-lisp-reader `.map_err(|e|
2291 /// Self::Leitura(e.to_string()))` arm) opened the identical
2292 /// `DialetoError::Leitura(<into-String-expr>)` block against the
2293 /// codec-scoped `String` (`e.to_string()`) binding, so the fold
2294 /// routes the site through one dispatch on a uniform
2295 /// `impl Into<String>` param, byte-equal to the pre-lift
2296 /// tuple-newtype construction on the same argument.
2297 ///
2298 /// The `impl Into<String>` bound covers both wire-up shapes on
2299 /// [`classify`] — a `String` binding (`e.to_string()` on the
2300 /// [`tatara_lisp::Error`]-carrying `e` binding) and a `&str`
2301 /// binding (a future admission-webhook consumer probing a
2302 /// caller-scoped `&'static str` fixture, a future
2303 /// `feira lint --tatara-reader-round-trip` verb sweeping every
2304 /// `tatara_lisp::read` return through the same shape gate) —
2305 /// without forcing the caller to spell the conversion at the
2306 /// wire-up site. Same shape the peer
2307 /// [`crate::limits::LimitsError::empty_byte_size`] /
2308 /// [`crate::limits::LimitsError::empty_duration`] /
2309 /// [`crate::limits::LimitsError::bad_millicores`] /
2310 /// [`crate::limits::LimitsError::bad_byte_magnitude`] /
2311 /// [`crate::limits::LimitsError::bad_duration_magnitude`] folds
2312 /// carry on the peer bad-magnitude and empty-shape axes of the
2313 /// same paired `(String)` tuple-newtype codec-magnitude family.
2314 /// `#[must_use]` fires a compile warning at any wire-up that
2315 /// mistakenly discards the constructed error.
2316 ///
2317 /// Every future consumer that wants to construct this variant
2318 /// outside [`classify`] (a deferred `feira lint --tatara-reader-
2319 /// round-trip` per-caixa admission verb probing each authored
2320 /// manifest against the tatara-lisp-reader shape gate, an M4
2321 /// typed `mesh.pleme.io/v1alpha1/Servico` CR materializer's
2322 /// per-manifest admission validator re-checking one edited
2323 /// `caixa.lisp` against the reader floor, a per-`caixa.lisp`
2324 /// value-shape pre-emitter probing each declared manifest ahead
2325 /// of the operator's admit-cycle) now reaches the variant
2326 /// through one call rather than re-inlining the tuple-newtype
2327 /// block in lockstep with the pre-existing wire-up.
2328 #[must_use]
2329 pub fn leitura(reason: impl Into<String>) -> Self {
2330 Self::Leitura(reason.into())
2331 }
2332}
2333
2334/// Classify a manifest source without committing to either schema.
2335///
2336/// Deliberately reads only the head symbol and the set of top-level keywords —
2337/// enough to route, never enough to half-parse. A classifier that started
2338/// validating would grow into a third parser, which is the shape of the problem
2339/// it exists to name.
2340///
2341/// # Errors
2342/// [`DialetoError`] when the source is not a manifest declaration at all.
2343pub fn classify(src: &str) -> Result<CaixaDialeto, DialetoError> {
2344 let forms = tatara_lisp::read(src).map_err(|e| DialetoError::leitura(e.to_string()))?;
2345 let first = forms.first().ok_or(DialetoError::Vazio)?;
2346 classify_form(first)
2347}
2348
2349/// [`classify`] over an already-read form.
2350///
2351/// # Errors
2352/// [`DialetoError`] when the form is not a manifest declaration.
2353pub fn classify_form(form: &Sexp) -> Result<CaixaDialeto, DialetoError> {
2354 let list = form.as_list().ok_or(DialetoError::NaoEhLista)?;
2355 let head = list
2356 .first()
2357 .and_then(Sexp::as_symbol)
2358 .ok_or(DialetoError::NaoEhLista)?;
2359
2360 match head {
2361 // `defmolde` is unambiguous by construction — it exists precisely so a
2362 // consumer never has to infer which declaration it holds. Both arities
2363 // are the same declaration; the positional one keeps its own variant
2364 // only so a census can report the split.
2365 "defmolde" => {
2366 return Ok(if starts_with_positional_name(&list[1..]) {
2367 CaixaDialeto::MoldePosicional
2368 } else {
2369 CaixaDialeto::Molde
2370 });
2371 }
2372 "defcaixa" => {}
2373 other => {
2374 return Err(DialetoError::cabeca_errada(other));
2375 }
2376 }
2377
2378 let args = &list[1..];
2379
2380 // `(defcaixa <symbol> :kind … :ecosystem …)`. Only the Molde dialect has a
2381 // positional arity; `Caixa` is keyword-only, so a leading bare symbol
2382 // settles it without looking further.
2383 if starts_with_positional_name(args) {
2384 return Ok(CaixaDialeto::MoldePosicional);
2385 }
2386
2387 let keys = top_level_keywords(args);
2388 let has = |k: &str| keys.iter().any(|s| s == k);
2389
2390 // Order matters, and it is not arbitrary: `:nome` and `:name` are the two
2391 // required head slots and no file in the measured corpus carries both.
2392 // Checking them FIRST means the decision rests on the one slot each schema
2393 // makes mandatory, rather than on optional evidence like `:ecosystem`.
2394 if has("nome") {
2395 return Ok(CaixaDialeto::Pacote);
2396 }
2397 if has("name") || has("ecosystem") || has("package") {
2398 return Ok(CaixaDialeto::Molde);
2399 }
2400 Ok(CaixaDialeto::Desconhecido)
2401}
2402
2403/// True when the first argument is a bare symbol rather than a keyword — the
2404/// positional-name arity.
2405fn starts_with_positional_name(args: &[Sexp]) -> bool {
2406 matches!(args.first(), Some(Sexp::Atom(Atom::Symbol(_))))
2407}
2408
2409/// The top-level keyword names (without the leading `:`) of a kwarg list.
2410///
2411/// Steps in pairs so a keyword appearing as a VALUE — `:kind :Biblioteca`, or a
2412/// nested `(:nome "dep" :versao "^0.1")` inside `:deps` — is never counted as a
2413/// top-level slot. A naive scan for `:nome` anywhere in the source classifies
2414/// every Molde manifest with a `:deps` list as a Pacote.
2415fn top_level_keywords(args: &[Sexp]) -> Vec<String> {
2416 let mut out = Vec::new();
2417 let mut i = 0;
2418 while i < args.len() {
2419 if let Sexp::Atom(Atom::Keyword(k)) = &args[i] {
2420 out.push(k.clone());
2421 i += 2;
2422 } else {
2423 i += 1;
2424 }
2425 }
2426 out
2427}
2428
2429#[cfg(test)]
2430mod tests {
2431 use super::*;
2432
2433 const PACOTE: &str = r#"
2434 (defcaixa
2435 :nome "checkout"
2436 :versao "0.1.0"
2437 :kind Servico
2438 :deps ((:nome "caixa-teia" :versao "^0.1")))
2439 "#;
2440
2441 const MOLDE: &str = r#"
2442 (defcaixa
2443 :name "base64"
2444 :kind :Biblioteca
2445 :ecosystem :rust-single-crate
2446 :package {:name "base64" :version "0.22.1"}
2447 :workflows [:auto-release])
2448 "#;
2449
2450 const MOLDE_POSICIONAL: &str = r#"
2451 (defcaixa todoku-go
2452 :kind :Biblioteca
2453 :ecosystem :go
2454 :package {:name "todoku-go" :version "0.3.0"})
2455 "#;
2456
2457 #[test]
2458 fn the_package_dialect_is_recognised() {
2459 assert_eq!(classify(PACOTE), Ok(CaixaDialeto::Pacote));
2460 }
2461
2462 #[test]
2463 fn the_repo_surface_dialect_is_recognised() {
2464 assert_eq!(classify(MOLDE), Ok(CaixaDialeto::Molde));
2465 }
2466
2467 #[test]
2468 fn the_positional_arity_is_recognised() {
2469 assert_eq!(
2470 classify(MOLDE_POSICIONAL),
2471 Ok(CaixaDialeto::MoldePosicional)
2472 );
2473 }
2474
2475 #[test]
2476 fn defmolde_classifies_without_inference() {
2477 // The whole point of the new keyword: no schema sniffing required.
2478 let src = r#"(defmolde :name "x" :kind :Biblioteca :ecosystem :go)"#;
2479 assert_eq!(classify(src), Ok(CaixaDialeto::Molde));
2480 let pos = r"(defmolde todoku-go :kind :Biblioteca :ecosystem :go)";
2481 assert_eq!(classify(pos), Ok(CaixaDialeto::MoldePosicional));
2482 }
2483
2484 #[test]
2485 fn a_nested_nome_does_not_make_a_repo_surface_look_like_a_package() {
2486 // The exact failure a substring scan produces: `:deps ((:nome …))`
2487 // contains `:nome`, but not as a top-level slot.
2488 let src = r#"
2489 (defcaixa
2490 :name "x"
2491 :ecosystem :rust-single-crate
2492 :deps ((:nome "inner" :versao "^0.1")))
2493 "#;
2494 assert_eq!(classify(src), Ok(CaixaDialeto::Molde));
2495 }
2496
2497 #[test]
2498 fn a_keyword_in_value_position_is_not_a_slot() {
2499 // `:kind :Biblioteca` — the value is itself a keyword. Stepping one at
2500 // a time would read `:Biblioteca` as a top-level slot.
2501 let src = r#"(defcaixa :kind :Biblioteca :name "x")"#;
2502 assert_eq!(classify(src), Ok(CaixaDialeto::Molde));
2503 }
2504
2505 #[test]
2506 fn an_unrecognised_defcaixa_is_reported_not_guessed() {
2507 let src = r#"(defcaixa :licenca "MIT")"#;
2508 assert_eq!(classify(src), Ok(CaixaDialeto::Desconhecido));
2509 }
2510
2511 #[test]
2512 fn a_form_that_is_not_a_manifest_is_an_error_not_a_dialect() {
2513 assert_eq!(
2514 classify("(defflake :nome \"x\")"),
2515 Err(DialetoError::cabeca_errada("defflake"))
2516 );
2517 assert_eq!(classify(""), Err(DialetoError::Vazio));
2518 }
2519
2520 #[test]
2521 fn every_dialect_names_its_consumer_and_its_canonical_keyword() {
2522 // Guards the routing table itself: a new variant added without an arm
2523 // here is a compile error in the match, and a variant that claims
2524 // `defcaixa` while being read by pleme-doc-gen would re-open the
2525 // collision this module closes. Sweeps [`CaixaDialeto::ALL`] rather
2526 // than the pre-lift open-coded four-arm literal list — a future arm
2527 // addition extends the slice as one edit and this pin picks it up
2528 // by construction.
2529 for &d in CaixaDialeto::ALL {
2530 assert!(!d.descricao().is_empty(), "{d}");
2531 assert!(!d.consumidor().is_empty(), "{d}");
2532 }
2533 assert_eq!(CaixaDialeto::Pacote.palavra_canonica(), "defcaixa");
2534 assert_eq!(CaixaDialeto::Molde.palavra_canonica(), "defmolde");
2535 assert_ne!(
2536 CaixaDialeto::Pacote.palavra_canonica(),
2537 CaixaDialeto::Molde.palavra_canonica(),
2538 "the two dialects must not share a canonical keyword — that IS the defect"
2539 );
2540 }
2541
2542 #[test]
2543 fn caixa_dialeto_all_enumerates_every_variant_exactly_once() {
2544 // Three-legged exhaustiveness pin, peer of the sibling
2545 // `caixa_kind_all_enumerates_every_variant_exactly_once`
2546 // (caixa-core/src/kind.rs) /
2547 // `restart_strategy_all_enumerates_every_variant_exactly_once`
2548 // (caixa-core/src/supervisor.rs) shape.
2549 //
2550 // 1. arm-count invariant: `ALL.len()` matches the declared arm
2551 // count (four — a fifth arm added without extending `ALL`
2552 // fails this pin at caixa-core test time);
2553 // 2. pairwise-distinctness invariant: every variant appears at
2554 // most once in the slice (a duplicate arm would silently
2555 // double-count in the census consumer, so the pin rejects
2556 // duplicates outright);
2557 // 3. coverage invariant: every literal `CaixaDialeto::X` is in
2558 // the slice (the compiler-checked exhaustiveness on the peer
2559 // per-arm `match self` in the accessors keeps the enum arm
2560 // set and the `ALL` slice mutually aligned).
2561 assert_eq!(
2562 CaixaDialeto::ALL.len(),
2563 4,
2564 "ALL must list every arm exactly once; a fifth arm added \
2565 without extending ALL fails this pin — extend ALL alongside \
2566 the new variant"
2567 );
2568
2569 let mut seen: Vec<CaixaDialeto> = Vec::new();
2570 for &d in CaixaDialeto::ALL {
2571 assert!(
2572 !seen.contains(&d),
2573 "ALL contains a duplicate arm: {d}. Every variant appears \
2574 exactly once — a duplicate would double-count in every \
2575 iteration consumer"
2576 );
2577 seen.push(d);
2578 }
2579
2580 // Coverage: exhaustively assert every literal variant is somewhere
2581 // in the slice. Written as an exhaustive `match` so a future arm
2582 // addition fails to compile here (missing match arm) until the
2583 // corresponding `assert` is added — the compiler enforces the pin's
2584 // completeness rather than a hand-maintained variant list.
2585 for variant in [
2586 CaixaDialeto::Pacote,
2587 CaixaDialeto::Molde,
2588 CaixaDialeto::MoldePosicional,
2589 CaixaDialeto::Desconhecido,
2590 ] {
2591 let coverage_probe = match variant {
2592 CaixaDialeto::Pacote
2593 | CaixaDialeto::Molde
2594 | CaixaDialeto::MoldePosicional
2595 | CaixaDialeto::Desconhecido => variant,
2596 };
2597 assert!(
2598 CaixaDialeto::ALL.contains(&coverage_probe),
2599 "ALL is missing variant {coverage_probe} — extend the slice"
2600 );
2601 }
2602 }
2603
2604 #[test]
2605 fn caixa_dialeto_all_is_const_and_matches_iteration_count() {
2606 // Pins the const-ness of the slice at const-fold time. A future
2607 // change that promoted `ALL` to a non-const initializer (a lazy-
2608 // static, a runtime-computed Vec) would fail to compile here —
2609 // the pin locks in the compile-time-known iteration surface
2610 // every consumer builds against. Peer of the sibling
2611 // `caixa_kind_all_is_const_and_matches_iteration_count` (kind.rs)
2612 // / `restart_strategy_all_is_const_and_matches_iteration_count`
2613 // (supervisor.rs) shape.
2614 const ALL: &[CaixaDialeto] = CaixaDialeto::ALL;
2615 assert_eq!(ALL.len(), CaixaDialeto::ALL.len());
2616 // Sweep the iterator without collapsing to `.len()` so a future
2617 // change to `ALL`'s carrier that decouples `.len()` from the
2618 // iteration count (a lazy-computed shape, an alias `impl Iterator`
2619 // return, a wrapper newtype) still passes here iff the two agree
2620 // arm-for-arm; the `#[allow]` opts this local pin out of the
2621 // clippy `iter_count` collapse that would defeat the intent.
2622 #[allow(clippy::iter_count)]
2623 let iterated = ALL.iter().count();
2624 assert_eq!(iterated, CaixaDialeto::ALL.len());
2625 }
2626
2627 #[test]
2628 fn caixa_dialeto_all_covers_every_variant_by_display_probe() {
2629 // Fanning `Display` over the slice sweeps the paired accessors
2630 // ([`CaixaDialeto::palavra_canonica`] / [`CaixaDialeto::consumidor`]
2631 // / [`CaixaDialeto::descricao`]) at every arm — every returned
2632 // byte-string is non-empty (the accessors' contract). A future
2633 // arm added without extending its per-arm `match self` return
2634 // would compile-fail at the accessor call inside the loop;
2635 // together with the `ALL.len() == 4` pin above, this locks the
2636 // accessor arm-set and the `ALL` slice mutually.
2637 for &d in CaixaDialeto::ALL {
2638 let display_form = d.to_string();
2639 assert!(
2640 !display_form.is_empty(),
2641 "Display must render a non-empty byte-string for every \
2642 arm; empty: {d:?}"
2643 );
2644 // Consumidor / descricao / palavra-canonica must each surface
2645 // a non-empty scalar; every downstream diagnostic consumer
2646 // reaches through these accessors.
2647 assert!(!d.palavra_canonica().is_empty(), "{d}");
2648 assert!(!d.consumidor().is_empty(), "{d}");
2649 assert!(!d.descricao().is_empty(), "{d}");
2650 }
2651 }
2652
2653 #[test]
2654 fn caixa_dialeto_as_str_returns_pascal_case_variant_name() {
2655 // Fail-before-pass-after per-arm shape pin: the four
2656 // [`CaixaDialeto::as_str`] arms must return the canonical
2657 // `PascalCase` byte-string that names the variant. Pre-lift this
2658 // byte-string existed only inside the hand-rolled Display impl's
2659 // four-arm literal-string match — every consumer that wanted the
2660 // `PascalCase` name reached through `format!("{d}")`'s allocation
2661 // path. Pinning the four arms explicitly here refuses a future
2662 // regression that ever reroutes an arm to a distinct spelling
2663 // (`"pacote"` lowercase, `"MoldePositional"` English rebrand,
2664 // `"Unknown"` for `Desconhecido`) — the census output and the
2665 // typed accessor would silently disagree until a downstream
2666 // consumer surfaced the drift at census time. Peer of the sibling
2667 // [`crate::supervisor::tests::restart_strategy_variants_serialize_to_lifted_scalar_values`]
2668 // / `placement_strategy_variants_serialize_to_lifted_scalar_values`
2669 // / `caixa_kind_as_str_returns_lifted_peer_const` shape on the
2670 // sibling closed-set typed-enum discriminator axes — the seventh
2671 // (and last unlifted) closed-set typed enum on the caixa surface
2672 // to converge onto the same per-arm-shape-pin discipline.
2673 for (variant, expected) in [
2674 (CaixaDialeto::Pacote, "Pacote"),
2675 (CaixaDialeto::Molde, "Molde"),
2676 (CaixaDialeto::MoldePosicional, "MoldePosicional"),
2677 (CaixaDialeto::Desconhecido, "Desconhecido"),
2678 ] {
2679 assert_eq!(
2680 variant.as_str(),
2681 expected,
2682 "CaixaDialeto::{variant:?}.as_str() must return the \
2683 canonical `PascalCase` variant-name byte-string; drift here \
2684 splits the census-facing text from the substrate \
2685 primitive every downstream consumer will read"
2686 );
2687 }
2688 }
2689
2690 #[test]
2691 fn caixa_dialeto_wire_names_covers_every_arm() {
2692 // Load-bearing pin on the substrate-canonical
2693 // [`super::CaixaDialeto::WIRE_NAMES`] exhaustive accept-set
2694 // roster on the `PascalCase` variant-name wire-form axis: every
2695 // variant of the sibling [`super::CaixaDialeto::ALL`] exhaustive-
2696 // iteration surface must project through
2697 // [`super::CaixaDialeto::as_str`] onto an entry the
2698 // [`super::CaixaDialeto::WIRE_NAMES`] roster carries, and the
2699 // roster's length must byte-equal `super::CaixaDialeto::ALL.len()`
2700 // so a silent skew between the [`super::CaixaDialeto::as_str`]
2701 // match's arm-set and the roster's arm-set trips here at
2702 // caixa-core test time rather than at a downstream `feira dialeto
2703 // --list-dialects` per-arm listing / M4 admission-webhook
2704 // rejection-body accepted-tag enumeration miss / structured-log
2705 // accepted-wire-form emit drift.
2706 //
2707 // A future arm addition (the module doc's "third dialect"
2708 // hazard actualising as a fifth arm — a third arity variant, an
2709 // alias-declaration family `pleme-doc-gen` sharpens as its
2710 // schema evolves) extends [`super::CaixaDialeto::ALL`] as a
2711 // single edit and this pin sweeps the new arm by iteration; the
2712 // paired [`super::CaixaDialeto::WIRE_NAMES`] roster must grow in
2713 // lockstep or this assertion trips. Every entry is further
2714 // pinned to open with an uppercase ASCII byte (matching the
2715 // substrate-wide `PascalCase` convention every peer closed-set
2716 // enum whose canonical projection is a `PascalCase` census-
2717 // facing name carries), so a silent collapse of the dialect-
2718 // classification wire-form axis with any hypothetical lowercase-
2719 // kebab peer wire-form axis (an entry byte-identical to a
2720 // sibling lowercase-Portuguese label that would let a wire-axis
2721 // consumer accept the diagnostic byte-string) trips here rather
2722 // than at a downstream census-report round-trip miss.
2723 //
2724 // Peer of the sibling
2725 // [`crate::kind::tests::caixa_kind_wire_names_covers_every_arm`]
2726 // (bd708bd) /
2727 // [`crate::kind::tests::caixa_kind_labels_covers_every_arm`]
2728 // (427fe75) /
2729 // [`crate::supervisor::tests::restart_strategy_wire_names_covers_every_arm`]
2730 // (3033f45) /
2731 // [`crate::supervisor::tests::restart_policy_wire_names_covers_every_arm`]
2732 // (ce9412b) /
2733 // [`crate::aplicacao::tests::placement_strategy_wire_names_covers_every_arm`]
2734 // (3e5b194) /
2735 // [`crate::aplicacao::tests::wit_shape_labels_covers_every_arm`]
2736 // (9d9f585) /
2737 // [`crate::aplicacao::tests::rate_limit_unit_suffixes_covers_every_arm`]
2738 // (b553ec9) /
2739 // [`crate::upgrade::tests::upgrade_instruction_lisp_forms_covers_every_arm`]
2740 // (1898d77) /
2741 // [`crate::upgrade::tests::upgrade_instruction_wire_forms_covers_every_arm`]
2742 // (cc42c0e) /
2743 // [`crate::dep::tests::dep_list_author_keys_covers_every_arm`]
2744 // (af6ad3a) /
2745 // [`crate::render::tests::path_shape_violation_wire_names_covers_every_arm`]
2746 // (0330bd3) pins — the same closed-set exhaustive-roster
2747 // coverage discipline extended here onto the tatara-lisp
2748 // dialect-classification closed-set typed enum, the eleventh
2749 // substrate-side closed-set typed enum on the roster axis and
2750 // the first dialect-classification axis to converge onto the
2751 // discipline.
2752 //
2753 // Fail-before-pass-after locally verified by mutating one arm
2754 // of the paired `CAIXA_DIALETO_WIRE_*` const family (e.g.
2755 // rebranding `CAIXA_DIALETO_WIRE_MOLDE_POSICIONAL` from
2756 // `"MoldePosicional"` to `"MoldePositional"`) — the length pin
2757 // still passes but the `contains` check fires on the mutated
2758 // arm; and by shortening the roster to three entries — the
2759 // length pin fires first.
2760 assert_eq!(
2761 CaixaDialeto::WIRE_NAMES.len(),
2762 CaixaDialeto::ALL.len(),
2763 "CaixaDialeto::WIRE_NAMES.len() must byte-equal \
2764 CaixaDialeto::ALL.len() — a mismatch means the roster and \
2765 the enum's arm-set have drifted; downstream consumers that \
2766 fan through both will silently disagree on the accepted \
2767 arm-set"
2768 );
2769 for &variant in CaixaDialeto::ALL {
2770 let wire = variant.as_str();
2771 assert!(
2772 CaixaDialeto::WIRE_NAMES.contains(&wire),
2773 "CaixaDialeto::{variant:?}.as_str() = {wire:?} must be \
2774 a member of CaixaDialeto::WIRE_NAMES — the emitter and \
2775 the roster have drifted out of lockstep"
2776 );
2777 }
2778 for tag in CaixaDialeto::WIRE_NAMES {
2779 let first = tag.chars().next().unwrap_or_else(|| {
2780 panic!(
2781 "CaixaDialeto::WIRE_NAMES entry {tag:?} must be a \
2782 non-empty `PascalCase` variant-name byte-string"
2783 )
2784 });
2785 assert!(
2786 first.is_ascii_uppercase(),
2787 "CaixaDialeto::WIRE_NAMES entry {tag:?} must open with \
2788 an uppercase ASCII byte (matching the substrate-wide \
2789 `PascalCase` convention) — an entry opening with a \
2790 lowercase byte would collide the roster with any \
2791 hypothetical peer lowercase-kebab wire-form axis a \
2792 downstream consumer might disambiguate against"
2793 );
2794 }
2795 // Pin the exact four-arm roster in declaration order so a
2796 // future arm-swap on either the roster or the paired
2797 // `CAIXA_DIALETO_WIRE_*` constants (a rebrand of the arm-tag
2798 // mapping that leaves both the length pin and the membership
2799 // pin passing on their own) trips at caixa-core test time
2800 // under `assert_eq!`. Order matches variant declaration order
2801 // verbatim (`Pacote` → `Molde` → `MoldePosicional` →
2802 // `Desconhecido`) so the roster is the canonical ordering
2803 // every listing / rendering consumer defers to. Same
2804 // declaration-order pin the sibling
2805 // [`crate::render::tests::path_shape_violation_wire_names_covers_every_arm`]
2806 // (0330bd3) closes on the render-side path-shape-diagnostic
2807 // axis.
2808 assert_eq!(
2809 CaixaDialeto::WIRE_NAMES,
2810 &[
2811 CAIXA_DIALETO_WIRE_PACOTE,
2812 CAIXA_DIALETO_WIRE_MOLDE,
2813 CAIXA_DIALETO_WIRE_MOLDE_POSICIONAL,
2814 CAIXA_DIALETO_WIRE_DESCONHECIDO,
2815 ],
2816 "CaixaDialeto::WIRE_NAMES must enumerate every arm's wire-\
2817 form tag exactly once, in variant declaration order \
2818 (Pacote → Molde → MoldePosicional → Desconhecido)"
2819 );
2820 // Byte-parity pin on the paired reverse projection: every
2821 // entry in the roster must round-trip cleanly through
2822 // [`super::CaixaDialeto::from_wire`] back to the same arm the
2823 // [`super::CaixaDialeto::as_str`] emitter returned it for.
2824 // Refuses any future de-lift that swaps the four consts through
2825 // the reverse projection out of lockstep with the forward
2826 // emitter (a mid-arm rebrand touching only `as_str` but not
2827 // `from_wire`, an argument-ordering swap on one of the match
2828 // arms, a stray `to_lowercase` normalization on either side
2829 // that would silently pass the identity round-trip on the
2830 // already-PascalCase corpus but split the two projections on
2831 // any future non-PascalCase input).
2832 for (&variant, tag) in CaixaDialeto::ALL.iter().zip(CaixaDialeto::WIRE_NAMES) {
2833 assert_eq!(
2834 CaixaDialeto::from_wire(tag),
2835 Some(variant),
2836 "CaixaDialeto::from_wire({tag:?}) must round-trip back \
2837 to CaixaDialeto::{variant:?} — emitter and parser have \
2838 drifted off the paired CAIXA_DIALETO_WIRE_* const family"
2839 );
2840 }
2841 }
2842
2843 #[test]
2844 fn caixa_dialeto_display_routes_through_as_str_helper() {
2845 // Fail-before-pass-after convergence pin: for every arm in
2846 // [`CaixaDialeto::ALL`], the [`std::fmt::Display`] rendered form
2847 // must byte-equal [`CaixaDialeto::as_str`]'s return value. Pre-
2848 // lift these two paths were structurally independent — the
2849 // Display impl hand-rolled its own four-arm literal-string
2850 // match with no compile-time link back to any substrate accessor
2851 // — so a future variant rename could land at `Display` without
2852 // touching a paired accessor (or vice versa), silently splitting
2853 // the two paths on the renamed arm. Pinning the byte-equality
2854 // here makes any such split a caixa-core build-time failure at
2855 // this test rather than surfacing far from the rename commit as
2856 // a downstream census consumer emitting one spelling while the
2857 // typed accessor returned another. Peer of the sibling
2858 // [`crate::kind::tests::caixa_kind_display_routes_through_as_str_helper`]
2859 // (which pins the same convergence on the [`crate::CaixaKind`]
2860 // closed-set axis) — extends the discipline onto the seventh
2861 // (and last unlifted) closed-set fieldless typed enum on the
2862 // caixa surface.
2863 for &variant in CaixaDialeto::ALL {
2864 assert_eq!(
2865 variant.to_string(),
2866 variant.as_str(),
2867 "CaixaDialeto::{variant:?} Display must route through \
2868 CaixaDialeto::as_str (single source of truth: the \
2869 lifted per-arm `PascalCase` variant-name byte-string)"
2870 );
2871 }
2872 }
2873
2874 #[test]
2875 fn caixa_dialeto_as_ref_str_routes_through_as_str_accessor() {
2876 // Fail-before-pass-after byte-parity pin on the lifted
2877 // `impl AsRef<str> for CaixaDialeto` — asserts the standard-
2878 // library trait impl and the substrate-primitive
2879 // [`CaixaDialeto::as_str`] `pub const fn` accessor resolve to
2880 // the same `&str` per instance across the four-arm closed set,
2881 // so any future silent detour that routes the impl through a
2882 // divergent projection (a per-arm inline
2883 // `match self { CaixaDialeto::Pacote => "Pacote", … }` re-inlining
2884 // that opens a compile-time link to the un-lifted arm-literal,
2885 // a swap onto the second-axis
2886 // [`CaixaDialeto::palavra_canonica`] /
2887 // [`CaixaDialeto::consumidor`] / [`CaixaDialeto::descricao`]
2888 // accessors that carry distinct byte-shapes per axis) trips at
2889 // caixa-core test time under `PartialEq` rather than at a
2890 // downstream `impl AsRef<str>`-bound consumer's silent split.
2891 // Sweeps every one of the four arms [`CaixaDialeto::ALL`]
2892 // carries so no arm's projection is covered only by the sibling
2893 // `Display` path. Peer of the sibling
2894 // `rate_limit_unit_as_ref_str_routes_through_as_suffix_accessor`
2895 // (d8136db) on the M3 `:politicas :rate-limit` closed-set typed
2896 // enum, and the peer
2897 // [`crate::kind::tests::caixa_kind_as_ref_str_routes_through_as_str_accessor`]
2898 // (cd2091f) pin on the top-level closed-set typed
2899 // discriminator — the pins together close the substrate
2900 // primitive's `AsRef<str>` projection axis onto the seventh
2901 // closed-set fieldless typed enum on the caixa surface.
2902 for &variant in CaixaDialeto::ALL {
2903 assert_eq!(
2904 <CaixaDialeto as AsRef<str>>::as_ref(&variant),
2905 variant.as_str(),
2906 "AsRef<str> impl on CaixaDialeto::{variant:?} must \
2907 byte-equal CaixaDialeto::as_str on the same instance \
2908 — divergence signals a silent detour off the \
2909 substrate-primitive accessor"
2910 );
2911 }
2912 }
2913
2914 #[test]
2915 fn caixa_dialeto_as_ref_str_routes_through_display_via_shared_accessor() {
2916 // Fail-before-pass-after byte-parity pin on the three-path
2917 // convergence discipline the [`CaixaDialeto`] closed-set
2918 // dialect-classification enum now carries on the `&str`-
2919 // projection axis: `<CaixaDialeto as AsRef<str>>::as_ref(&v)`
2920 // (the newly lifted impl), `format!("{v}")` (the pre-existing
2921 // [`fmt::Display`] impl), and `v.as_str()` (the substrate-
2922 // primitive `pub const fn` accessor both trait impls delegate
2923 // through) must resolve to the same byte-string on every
2924 // instance across the four-arm closed set. Refuses any future
2925 // divergence between the two trait impls (a stray
2926 // [`fmt::Display::fmt`] rewrite that hand-rolls the arms
2927 // rather than delegating through the shared accessor; a
2928 // hypothetical `AsRef<str>` rewrite that inlines a per-arm
2929 // literal cascade) that would silently split the two
2930 // projection paths of the same closed-set typed enum. Mirrors
2931 // the sibling three-path-convergence discipline the peer
2932 // [`crate::aplicacao::RateLimitUnit`] typed enum carries
2933 // (`rate_limit_unit_as_ref_str_routes_through_display_via_shared_accessor`,
2934 // d8136db), the peer [`crate::CaixaKind`] triple
2935 // (`caixa_kind_as_ref_str_routes_through_display_via_shared_accessor`,
2936 // cd2091f), and the [`crate::CaixaVersion`] typed newtype
2937 // triple (`caixa_version_as_ref_str_routes_through_display_via_shared_accessor`,
2938 // 16d5c7e).
2939 for &variant in CaixaDialeto::ALL {
2940 let via_as_ref: &str = <CaixaDialeto as AsRef<str>>::as_ref(&variant);
2941 let via_display: String = format!("{variant}");
2942 let via_accessor: &str = variant.as_str();
2943 assert_eq!(via_as_ref, via_accessor);
2944 assert_eq!(via_display, via_accessor);
2945 assert_eq!(via_as_ref, via_display.as_str());
2946 }
2947 }
2948
2949 #[test]
2950 fn caixa_dialeto_is_molde_family_returns_true_on_molde_and_positional_arms() {
2951 // Fail-before-pass-after per-arm shape pin on the two `defmolde`
2952 // declaration-family arms: [`CaixaDialeto::is_molde_family`] must
2953 // return `true` for [`CaixaDialeto::Molde`] and
2954 // [`CaixaDialeto::MoldePosicional`] — the two-arity closure of
2955 // one declaration ([`CaixaDialeto::MoldePosicional`]'s docstring:
2956 // "same declaration as [`Self::Molde`], written with the package
2957 // name as a bare positional symbol … one arity of one
2958 // declaration, not a third schema"). A future accidental flip that
2959 // reversed a per-arm arm's return without touching the paired
2960 // false-arm pin would silently open the substrate primitive to
2961 // false-positive on either arm — the `feira dialeto` verb's
2962 // `--strict-palavra` gate would then silently accept
2963 // repo-surface declarations under `(defcaixa …)` on one arm and
2964 // reject them on the other. Pinning the two true arms explicitly
2965 // here refuses that split at caixa-core build time.
2966 assert!(
2967 CaixaDialeto::Molde.is_molde_family(),
2968 "CaixaDialeto::Molde.is_molde_family() must return true — \
2969 Molde is the primary `defmolde` arm"
2970 );
2971 assert!(
2972 CaixaDialeto::MoldePosicional.is_molde_family(),
2973 "CaixaDialeto::MoldePosicional.is_molde_family() must return \
2974 true — MoldePosicional is the positional-arity form of the \
2975 same `defmolde` declaration Molde carries"
2976 );
2977 }
2978
2979 #[test]
2980 fn caixa_dialeto_is_molde_family_returns_false_on_pacote_and_desconhecido_arms() {
2981 // Fail-before-pass-after per-arm shape pin on the two non-`defmolde`
2982 // arms: [`CaixaDialeto::is_molde_family`] must return `false` for
2983 // [`CaixaDialeto::Pacote`] (the sibling `defcaixa` tatara-lisp
2984 // package manifest, `palavra_canonica → "defcaixa"`) and for
2985 // [`CaixaDialeto::Desconhecido`] (the residue that names no
2986 // known declaration, `palavra_canonica → "?"`). Pinning the two
2987 // false arms explicitly here refuses a future accidental flip
2988 // that let the predicate widen to include either arm — the
2989 // `feira dialeto` verb's `--strict-palavra` gate would then
2990 // spuriously refuse every `(defcaixa …)` package manifest as if
2991 // it were a repo-surface declaration.
2992 assert!(
2993 !CaixaDialeto::Pacote.is_molde_family(),
2994 "CaixaDialeto::Pacote.is_molde_family() must return false — \
2995 Pacote is the `defcaixa` tatara-lisp package manifest, not \
2996 the `defmolde` repo-surface declaration"
2997 );
2998 assert!(
2999 !CaixaDialeto::Desconhecido.is_molde_family(),
3000 "CaixaDialeto::Desconhecido.is_molde_family() must return \
3001 false — the residue arm names no known declaration; it is \
3002 not silently promoted into the `defmolde` family"
3003 );
3004 }
3005
3006 #[test]
3007 fn caixa_dialeto_is_molde_family_agrees_with_palavra_canonica_defmolde_projection() {
3008 // Load-bearing pin: for every arm in [`CaixaDialeto::ALL`], the
3009 // typed [`CaixaDialeto::is_molde_family`] predicate must agree
3010 // byte-for-byte with the paired [`CaixaDialeto::palavra_canonica`]
3011 // projection's `== "defmolde"` classifier — i.e. the two paths
3012 // partition the four-arm discriminator set into the same
3013 // `{Molde, MoldePosicional}` and `{Pacote, Desconhecido}` halves.
3014 // Pre-lift the sibling [`CaixaDialeto::palavra_canonica`] projection
3015 // (which returns `"defmolde"` for `Molde | MoldePosicional`,
3016 // `"defcaixa"` for `Pacote`, `"?"` for `Desconhecido`) was the
3017 // only substrate-side surface carrying the two-arm collapse; the
3018 // hand-rolled `matches!(d, CaixaDialeto::Molde |
3019 // CaixaDialeto::MoldePosicional)` sites in the `feira dialeto`
3020 // verb expressed no compile-time link back to it. A future arm
3021 // addition — the module doc's "third dialect" hazard actualises
3022 // as a fifth arm belonging to the `defmolde` family — would land
3023 // one match arm at [`Self::palavra_canonica`]'s `defmolde` return
3024 // (extending the sibling projection) but silently split the
3025 // hand-rolled two-arm `matches!` predicate sites if the new arm's
3026 // `is_molde_family` return were forgotten. Pinning byte-equality
3027 // between the two paths here makes any such split a caixa-core
3028 // build-time failure at this test rather than surfacing far from
3029 // the arm-addition commit as a downstream `--strict-palavra` /
3030 // `caixa.lisp`-holds-wrong-declaration gate silently ignoring the
3031 // new arm.
3032 for &d in CaixaDialeto::ALL {
3033 let via_palavra_canonica = d.palavra_canonica() == "defmolde";
3034 let via_is_molde_family = d.is_molde_family();
3035 assert_eq!(
3036 via_is_molde_family, via_palavra_canonica,
3037 "CaixaDialeto::{d:?}.is_molde_family() ({via_is_molde_family}) \
3038 must agree with CaixaDialeto::{d:?}.palavra_canonica() == \
3039 \"defmolde\" ({via_palavra_canonica}) — a split between the \
3040 typed predicate and the sibling keyword projection would let \
3041 a future arm addition land at one path and drift at the other, \
3042 which is exactly the drift this pin refuses"
3043 );
3044 }
3045 }
3046
3047 #[test]
3048 fn caixa_dialeto_is_molde_family_is_const_fn() {
3049 // Const-context pin: [`CaixaDialeto::is_molde_family`] must remain
3050 // `const fn` (its match is a fieldless-arm literal-pattern
3051 // discriminator, so no non-const operation exists on the resolution
3052 // path). Downstream consumers reaching for the predicate from a
3053 // `const` context (a future substrate-wide const-fold-driven audit
3054 // table that materializes per-arm gate-membership at build time,
3055 // a per-arm CR-admission-webhook gate registration in a `const`
3056 // context) rely on the const-ness. A future accidental downgrade
3057 // to non-`const` (an added runtime helper reachable only from a
3058 // non-`const` context) trips at caixa-core build time rather than
3059 // surfacing as a downstream `const`-context regression far from
3060 // the predicate declaration. Peer of the sibling
3061 // [`caixa_dialeto_as_str_is_const_fn`] pin on the paired
3062 // [`CaixaDialeto::as_str`] byte-string axis.
3063 const ARMS: [(CaixaDialeto, bool); 4] = [
3064 (CaixaDialeto::Pacote, CaixaDialeto::Pacote.is_molde_family()),
3065 (CaixaDialeto::Molde, CaixaDialeto::Molde.is_molde_family()),
3066 (
3067 CaixaDialeto::MoldePosicional,
3068 CaixaDialeto::MoldePosicional.is_molde_family(),
3069 ),
3070 (
3071 CaixaDialeto::Desconhecido,
3072 CaixaDialeto::Desconhecido.is_molde_family(),
3073 ),
3074 ];
3075 // Materialize the const-fold-evaluated table into a runtime slice
3076 // assertion — carries the same `bool = const fn call` shape a raw
3077 // `assert!(const_bool)` would, without tripping the
3078 // `assertions_on_constants` clippy lint that a per-arm
3079 // `assert!(CONST)` on a `const bool` triggers when the arm-count
3080 // is enumerated flat rather than compared as a whole-table shape.
3081 assert_eq!(
3082 ARMS,
3083 [
3084 (CaixaDialeto::Pacote, false),
3085 (CaixaDialeto::Molde, true),
3086 (CaixaDialeto::MoldePosicional, true),
3087 (CaixaDialeto::Desconhecido, false),
3088 ],
3089 "CaixaDialeto::is_molde_family() must evaluate in const context \
3090 for every arm and land on the {{false, true, true, false}} \
3091 partition — a future accidental downgrade to non-`const` \
3092 would trip the const-context array-initializer here"
3093 );
3094 }
3095
3096 #[test]
3097 fn caixa_dialeto_as_str_is_const_fn() {
3098 // Const-context pin: [`CaixaDialeto::as_str`] must remain
3099 // `const fn` (its match arms return `pub const` byte-strings, so
3100 // no non-const operation exists on the resolution path).
3101 // Downstream consumers reaching for the accessor from a `const`
3102 // context (a future substrate-wide const-fold-driven audit table
3103 // that materializes every dialect's census label at build time,
3104 // a per-arm CR-admission-webhook message registration in a
3105 // `const` gate) rely on the const-ness. A future accidental
3106 // downgrade to non-`const` (an added runtime helper reachable
3107 // only from a non-`const` context, a manual hand-rolled `impl`
3108 // that shadows this method) trips at caixa-core build time
3109 // rather than surfacing as a downstream `const`-context
3110 // regression far from the accessor declaration. Peer of the
3111 // sibling [`crate::kind::tests::caixa_kind_wire_name_is_const_fn`]
3112 // pin on the paired [`crate::CaixaKind`] byte-string axis.
3113 const PACOTE: &str = CaixaDialeto::Pacote.as_str();
3114 const MOLDE: &str = CaixaDialeto::Molde.as_str();
3115 const MOLDE_POSICIONAL: &str = CaixaDialeto::MoldePosicional.as_str();
3116 const DESCONHECIDO: &str = CaixaDialeto::Desconhecido.as_str();
3117 assert_eq!(PACOTE, "Pacote");
3118 assert_eq!(MOLDE, "Molde");
3119 assert_eq!(MOLDE_POSICIONAL, "MoldePosicional");
3120 assert_eq!(DESCONHECIDO, "Desconhecido");
3121 }
3122
3123 #[test]
3124 fn caixa_dialeto_is_variant_predicates_partition_the_arm_set() {
3125 // Fail-before-pass-after pin on the [`gen_platform::IsVariant`]
3126 // derive: for each of the four variants at [`CaixaDialeto::ALL`]`[idx]`
3127 // the observed four-slot predicate row must equal a one-hot row
3128 // with the `true` at exactly `idx`. Pre-derive the closed four-arm
3129 // dialect-classification partition lived only inside the paired
3130 // per-arm projections' four-arm match resolvers ([`Self::as_str`] /
3131 // [`Self::palavra_canonica`] / [`Self::consumidor`] /
3132 // [`Self::descricao`]) plus the two-arm [`Self::is_molde_family`]
3133 // hand-rolled `matches!` (now routed through the derived
3134 // predicates); a future rebrand (an accidental
3135 // `#[is_variant(name = "…")]` drift, a manual hand-rolled `impl`
3136 // that shadows the derive-generated method, an arm rename that
3137 // reroutes one arm through the wrong predicate lane) trips this
3138 // pin at caixa-core build time rather than surfacing far from the
3139 // derive declaration as a downstream [`Self::is_molde_family`]
3140 // consumer accepting the wrong arm-set. The expected row is
3141 // generated live from the [`Self::ALL`] declaration order rather
3142 // than transcribed by hand so a copy-paste flip reroutes at the
3143 // identity-diagonal assertion.
3144 //
3145 // Peer of the sibling
3146 // [`crate::kind::tests::caixa_kind_is_variant_predicates_partition_the_arm_set`]
3147 // / [`crate::supervisor::tests::restart_strategy_is_variant_predicates_partition_the_arm_set`]
3148 // / [`crate::aplicacao::tests::placement_strategy_is_variant_predicates_partition_the_arm_set`]
3149 // / [`crate::upgrade::tests::upgrade_instruction_is_variant_predicates_partition_the_arm_set`]
3150 // pins on the sibling closed-set typed-enum discriminator axes.
3151 for (idx, &variant) in CaixaDialeto::ALL.iter().enumerate() {
3152 let observed = [
3153 variant.is_pacote(),
3154 variant.is_molde(),
3155 variant.is_molde_posicional(),
3156 variant.is_desconhecido(),
3157 ];
3158 let mut expected = [false; 4];
3159 expected[idx] = true;
3160 assert_eq!(
3161 observed, expected,
3162 "CaixaDialeto::{variant:?} at ALL[{idx}] is_* predicates \
3163 must fire only on their own arm lane (identity diagonal); \
3164 got {observed:?}",
3165 );
3166 }
3167 }
3168
3169 #[test]
3170 fn caixa_dialeto_is_variant_predicates_are_const_fn() {
3171 // The [`gen_platform::IsVariant`] derive emits `const fn`
3172 // predicates on the peer [`crate::CaixaKind`] +
3173 // [`crate::upgrade::UpgradeInstruction`] +
3174 // [`crate::supervisor::RestartStrategy`] +
3175 // [`crate::supervisor::RestartPolicy`] +
3176 // [`crate::aplicacao::PlacementStrategy`] +
3177 // [`crate::aplicacao::RateLimitUnit`] +
3178 // [`crate::dep::DepList`] closed-set typed enums — pin the same
3179 // posture on [`CaixaDialeto`] so a future accidental downgrade
3180 // to non-`const` (an added runtime helper reachable only from a
3181 // non-`const` context, a manual hand-rolled `impl` that shadows
3182 // the derive-generated method) trips at caixa-core build time
3183 // rather than surfacing as a downstream `const`-context
3184 // regression far from the derive declaration.
3185 // Use `const { assert!(…) }` (peer of the sibling
3186 // [`crate::render::PathShapeViolation`] +
3187 // [`crate::aplicacao::RateLimitUnit`] +
3188 // [`caixa_theme::style::Semantic`] const-fn pins) so the
3189 // const-context evaluation trips at const-fold time without
3190 // opening a per-`const bool` `assertions_on_constants` clippy
3191 // debt row this crate does not carry today for `dialeto.rs`.
3192 const { assert!(CaixaDialeto::Pacote.is_pacote()) };
3193 const { assert!(CaixaDialeto::Molde.is_molde()) };
3194 const { assert!(CaixaDialeto::MoldePosicional.is_molde_posicional()) };
3195 const { assert!(CaixaDialeto::Desconhecido.is_desconhecido()) };
3196 }
3197
3198 #[test]
3199 fn caixa_dialeto_from_wire_accepts_every_as_str_output() {
3200 // Fail-before-pass-after per-arm accept pin on the newly lifted
3201 // [`CaixaDialeto::from_wire`] reverse projection: every arm in
3202 // [`CaixaDialeto::ALL`] must parse back through `from_wire` when
3203 // fed its own [`CaixaDialeto::as_str`] output, landing on
3204 // `Some(same_variant)` — a regression that hand-rolled either
3205 // side's per-arm match without threading through the shared
3206 // four-string closed set would silently disagree on any future
3207 // arm rename and this pin flags it at caixa-core build time.
3208 // Peer of the sibling
3209 // [`crate::kind::tests::caixa_kind_wire_round_trips_through_from_wire`]
3210 // (2aa6d23) /
3211 // `placement_strategy_from_wire_accepts_every_lifted_constant`
3212 // (18c7342) /
3213 // `dep_list_round_trips_through_as_str_and_from_wire` (45ee563)
3214 // shape on the sibling closed-set typed-enum reverse-projection
3215 // axes.
3216 for &variant in CaixaDialeto::ALL {
3217 let wire = variant.as_str();
3218 let parsed = CaixaDialeto::from_wire(wire).unwrap_or_else(|| {
3219 panic!(
3220 "CaixaDialeto::from_wire({wire:?}) must accept every \
3221 CaixaDialeto::as_str output — got None for the \
3222 wire byte-string of {variant:?}"
3223 )
3224 });
3225 assert_eq!(
3226 parsed, variant,
3227 "CaixaDialeto::from_wire(CaixaDialeto::{variant:?}.as_str()) \
3228 must return CaixaDialeto::{variant:?} — the (as_str, \
3229 from_wire) pair must form a total round-trip on the \
3230 closed four-arm CaixaDialeto arm-set"
3231 );
3232 }
3233 }
3234
3235 #[test]
3236 fn caixa_dialeto_from_wire_rejects_unknown_byte_strings() {
3237 // Rejection pin on the parser's accept-set: any string outside
3238 // the four-arm [`CaixaDialeto::as_str`] output set must return
3239 // `None`. A future accidental widening of the accept-set (a
3240 // case-insensitive match that accepts `"pacote"` on the wire
3241 // axis, a hand-rolled Levenshtein-forgiving arm-lookup that
3242 // admits `"Pacotee"` typos, a silent acceptance of the sibling
3243 // [`Self::palavra_canonica`] `"defcaixa"` / `"defmolde"`
3244 // byte-shapes on this axis) would silently drift the parser's
3245 // accept-set from the emitter's — a downstream audit-report
3246 // re-loader that bound a prior audit's [`Self::as_str`] output
3247 // back to the typed enum through this parser would then bind a
3248 // malformed byte-string to a plausibly-wrong typed arm the
3249 // caller does not route through any fallback, silently
3250 // misclassifying the reloaded row. Also rejects the sibling
3251 // [`Self::palavra_canonica`] (`"defcaixa"` / `"defmolde"`) and
3252 // the sibling [`Self::consumidor`] (`"caixa-core / feira"`,
3253 // `"pleme-doc-gen"`, `"nobody known"`) byte-shapes, which are
3254 // the substrate's *distinct-axis* projections on the same enum
3255 // — the two-axis split the sibling
3256 // [`Self::palavra_canonica`] / [`Self::consumidor`] /
3257 // [`Self::descricao`] docstrings explicitly frame forbids
3258 // accepting one axis's byte-shapes as parseable on the other
3259 // axis. Peer of the sibling
3260 // [`crate::kind::tests::caixa_kind_from_wire_rejects_unknown_byte_strings`]
3261 // (2aa6d23) /
3262 // `placement_strategy_from_wire_rejects_unknown_byte_strings`
3263 // (18c7342) /
3264 // `dep_list_from_wire_returns_none_on_unknown_wire_scalar`
3265 // (45ee563) rejection pins on the sibling closed-set typed-enum
3266 // reverse-projection axes.
3267 for bad in [
3268 "",
3269 " ",
3270 "pacote",
3271 "PACOTE",
3272 "molde",
3273 "MoldePositional",
3274 "desconhecido",
3275 "Unknown",
3276 "defcaixa",
3277 "defmolde",
3278 "?",
3279 "caixa-core / feira",
3280 "pleme-doc-gen",
3281 "nobody known",
3282 "Pacote ",
3283 " Pacote",
3284 ] {
3285 assert!(
3286 CaixaDialeto::from_wire(bad).is_none(),
3287 "CaixaDialeto::from_wire({bad:?}) must return None — the \
3288 parser's accept-set is exactly the four CaixaDialeto::as_str \
3289 outputs; a widening would silently split the parser's \
3290 accept-set from the emitter's arm-set"
3291 );
3292 }
3293 }
3294
3295 #[test]
3296 fn cabeca_errada_ctor_matches_struct_literal_wrap() {
3297 // Fail-before-pass-after byte-identity pin: the lifted
3298 // [`DialetoError::cabeca_errada`] ctor MUST land on the exact
3299 // same struct-literal shape the pre-lift open-coded wire-up
3300 // block wrote by hand — `DialetoError::CabecaErrada {
3301 // encontrado: <head>.to_string() }`. A future accidental
3302 // divergence (`.into()` swap, per-arm constant substitution, an
3303 // added default field, an `.to_ascii_lowercase()` normalization
3304 // silently injected into the ctor body, a rebrand of the
3305 // `encontrado` field carrying a distinct byte-shape) trips this
3306 // pin at caixa-core build time rather than surfacing far from
3307 // the ctor declaration as a downstream `classify_form`
3308 // wrong-head consumer emitting one diagnostic shape while a
3309 // hand-written test peer opens another. Peer of the sibling
3310 // `unknown_byte_unit_ctor_matches_struct_literal_wrap`
3311 // (limits.rs; 29fac09) / `duplicate_from_ctor_matches_struct_
3312 // literal_wrap` (upgrade.rs; 7e52aec) shape on the sibling
3313 // single-slot `{ <field>: String }` envelope constructors.
3314 assert_eq!(
3315 DialetoError::cabeca_errada("defflake"),
3316 DialetoError::CabecaErrada {
3317 encontrado: "defflake".to_string(),
3318 },
3319 "DialetoError::cabeca_errada must byte-equal the pre-lift \
3320 open-coded struct-literal — a drift here means the ctor \
3321 stopped being a substrate primitive for the wrong-head \
3322 fallthrough site"
3323 );
3324 }
3325
3326 #[test]
3327 fn cabeca_errada_routes_encontrado_verbatim_across_boundary_inputs() {
3328 // Fail-before-pass-after boundary-sweep pin: the lifted
3329 // [`DialetoError::cabeca_errada`] ctor MUST route its
3330 // `encontrado: &str` argument verbatim into the
3331 // [`DialetoError::CabecaErrada`] `encontrado: String` field
3332 // for every boundary-covering `&str` input — empty string, a
3333 // canonical `defcaixa`-adjacent head, a non-ASCII head, a
3334 // whitespace-carrying head, a Unicode-full-width head. Any
3335 // wrapper-side truncation, silent `.trim()`, accidental
3336 // `.to_ascii_lowercase()` normalization, or `.into()` divergence
3337 // on the ctor body surfaces here as a byte-mismatch against the
3338 // input rather than at a downstream
3339 // [`DialetoError::to_string()`] diagnostic-shape drift at a
3340 // wrong-head fallthrough consumer far from the ctor declaration.
3341 // Peer of the sibling `limits_codec_unit_only_ctors_route_unit_
3342 // verbatim_across_every_variant` (limits.rs; 29fac09) shape on
3343 // the sibling single-slot `{ <field>: String }` envelope
3344 // boundary-sweep discipline.
3345 for encontrado in [
3346 "",
3347 "defflake",
3348 "def-molde",
3349 "defcaixa ",
3350 " defcaixa",
3351 "μdefcaixa",
3352 "\u{00A0}defcaixa",
3353 "\u{3000}defcaixa",
3354 "def\u{2028}caixa",
3355 ] {
3356 let via_ctor = DialetoError::cabeca_errada(encontrado);
3357 let via_literal = DialetoError::CabecaErrada {
3358 encontrado: encontrado.to_string(),
3359 };
3360 assert_eq!(
3361 via_ctor, via_literal,
3362 "DialetoError::cabeca_errada({encontrado:?}) must byte- \
3363 equal the open-coded struct-literal on the same input — \
3364 a drift here would let the ctor silently normalize / \
3365 truncate the head symbol before it reached the \
3366 CabecaErrada envelope"
3367 );
3368 let DialetoError::CabecaErrada { encontrado: routed } = via_ctor else {
3369 panic!(
3370 "DialetoError::cabeca_errada must construct the \
3371 CabecaErrada arm — got a different variant on \
3372 input {encontrado:?}"
3373 );
3374 };
3375 assert_eq!(
3376 routed, encontrado,
3377 "DialetoError::cabeca_errada must route the input \
3378 {encontrado:?} verbatim into the encontrado field — \
3379 any wrapper-side truncation / normalization surfaces \
3380 here rather than at a downstream diagnostic shape drift"
3381 );
3382 }
3383 }
3384
3385 #[test]
3386 fn classify_form_wrong_head_routes_through_cabeca_errada_ctor() {
3387 // Fail-before-pass-after routing pin: [`classify`]'s wrong-head
3388 // fallthrough site MUST construct its `Err(DialetoError::…)`
3389 // through the substrate-primitive [`DialetoError::cabeca_errada`]
3390 // ctor rather than through an open-coded struct-literal. Pre-
3391 // lift the wire-up hand-rolled a three-line
3392 // `Self::CabecaErrada { encontrado: other.to_string() }` block
3393 // with no compile-time link back to the substrate primitive; a
3394 // future accidental rebrand of the ctor body (an added
3395 // `.trim()` on `encontrado`, a per-arm constant prefix like
3396 // `"unknown-head:"`, a widening of the field into a
3397 // `(String, usize)` tuple carrying a caret offset) would then
3398 // silently split the two paths — the ctor consumers pick up
3399 // the new shape, the open-coded wire-up does not. Pinning
3400 // byte-equality between the observed `Err` and the ctor-
3401 // constructed `Err` refuses that split at caixa-core build
3402 // time rather than surfacing far from the wire-up commit as a
3403 // downstream diagnostic-consumer split.
3404 for head in ["defflake", "deffoobar", "defcaixaz", "let", "defmoldez"] {
3405 let src = format!("({head} :nome \"x\")");
3406 let observed = classify(&src);
3407 let via_ctor = Err(DialetoError::cabeca_errada(head));
3408 assert_eq!(
3409 observed, via_ctor,
3410 "classify({src:?}) must return the same Err shape as \
3411 DialetoError::cabeca_errada({head:?}) — a drift here \
3412 means the wire-up de-lifted its wrong-head fallthrough \
3413 arm off the substrate primitive"
3414 );
3415 }
3416 }
3417
3418 #[test]
3419 fn leitura_ctor_matches_tuple_literal_wrap_on_str_binding() {
3420 // Fail-before-pass-after byte-identity pin: the lifted
3421 // [`DialetoError::leitura`] ctor MUST land on the exact same
3422 // tuple-newtype wrap the pre-lift open-coded wire-up block wrote by
3423 // hand — `DialetoError::Leitura(<into-String-expr>)`. A future
3424 // accidental divergence (an added `.trim()` on the reader reason,
3425 // a per-arm constant prefix like `"tatara-lisp:"`, a widening of
3426 // the tuple carrying a caret offset, a rebrand of the payload
3427 // carrying a distinct byte-shape) trips this pin at caixa-core
3428 // build time rather than surfacing far from the ctor declaration
3429 // as a downstream [`classify`] tatara-lisp-reader consumer
3430 // emitting one diagnostic shape while a hand-written test peer
3431 // opens another. Peer of the sibling
3432 // `cabeca_errada_ctor_matches_struct_literal_wrap` pin above on
3433 // the same [`DialetoError`] envelope's wrong-head axis, and of
3434 // the peer `LimitsError::empty_byte_size` /
3435 // `LimitsError::empty_duration` (7a4b003 / 319216c) shape on the
3436 // sibling `(String)` single-slot tuple-newtype envelope
3437 // constructors.
3438 let reason: &str = "unclosed paren at 1:12";
3439 assert_eq!(
3440 DialetoError::leitura(reason),
3441 DialetoError::Leitura(reason.to_string()),
3442 "DialetoError::leitura must byte-equal the pre-lift open-coded \
3443 tuple-newtype wrap — a drift here means the ctor stopped \
3444 being a substrate primitive for the tatara-lisp-reader \
3445 fallthrough site"
3446 );
3447 }
3448
3449 #[test]
3450 fn leitura_ctor_matches_tuple_literal_wrap_on_string_binding() {
3451 // Fail-before-pass-after byte-identity pin on the `String` wire-up
3452 // shape: the lifted [`DialetoError::leitura`] ctor MUST land on
3453 // the same tuple-newtype wrap when the caller passes an owned
3454 // `String` (the actual [`classify`] wire-up shape — `e.to_string()`
3455 // on a [`tatara_lisp::Error`]-carrying binding). Pins that the
3456 // `impl Into<String>` param covers the owned-`String` path with no
3457 // silent double-allocation or intermediate `&str` reslicing. Peer
3458 // of the sibling `_on_str_binding` pin above — together they close
3459 // the `impl Into<String>` bound's two authored wire-up shapes on
3460 // the ctor's substrate primitive.
3461 let reason: String = String::from("read: unexpected EOF at 3:1");
3462 let via_ctor = DialetoError::leitura(reason.clone());
3463 let via_literal = DialetoError::Leitura(reason.clone());
3464 assert_eq!(
3465 via_ctor, via_literal,
3466 "DialetoError::leitura must byte-equal the pre-lift open-coded \
3467 tuple-newtype wrap on the same owned-String fixture — a drift \
3468 here would let the ctor silently reshape the reader reason \
3469 before it reached the Leitura envelope"
3470 );
3471 let DialetoError::Leitura(routed) = via_ctor else {
3472 panic!(
3473 "DialetoError::leitura must construct the Leitura arm — \
3474 got a different variant on input {reason:?}"
3475 );
3476 };
3477 assert_eq!(
3478 routed, reason,
3479 "DialetoError::leitura must route the input {reason:?} \
3480 verbatim into the tuple-newtype payload — any wrapper-side \
3481 truncation / normalization surfaces here rather than at a \
3482 downstream diagnostic shape drift"
3483 );
3484 }
3485
3486 #[test]
3487 fn leitura_routes_reason_verbatim_across_boundary_inputs() {
3488 // Fail-before-pass-after boundary-sweep pin: the lifted
3489 // [`DialetoError::leitura`] ctor MUST route its
3490 // `reason: impl Into<String>` argument verbatim into the
3491 // [`DialetoError::Leitura`] tuple-newtype `String` payload for
3492 // every boundary-covering input — empty string, a canonical
3493 // tatara-lisp reader error, a non-ASCII reason, a
3494 // whitespace-carrying reason, a Unicode-full-width reason. Any
3495 // wrapper-side truncation, silent `.trim()`, accidental
3496 // `.to_ascii_lowercase()` normalization, or `.into()` divergence
3497 // on the ctor body surfaces here as a byte-mismatch against the
3498 // input rather than at a downstream [`DialetoError::to_string()`]
3499 // diagnostic-shape drift at a tatara-lisp-reader fallthrough
3500 // consumer far from the ctor declaration. Peer of the sibling
3501 // `cabeca_errada_routes_encontrado_verbatim_across_boundary_inputs`
3502 // pin above on the same [`DialetoError`] envelope's wrong-head
3503 // axis.
3504 for reason in [
3505 "",
3506 "unclosed paren at 1:12",
3507 "unexpected token ')'",
3508 "read: eof",
3509 " leading whitespace",
3510 "trailing whitespace ",
3511 "μnicode reason",
3512 "\u{00A0}NBSP-prefixed reason",
3513 "\u{3000}ideographic-space reason",
3514 "reason\u{2028}with-line-separator",
3515 ] {
3516 let via_ctor = DialetoError::leitura(reason);
3517 let via_literal = DialetoError::Leitura(reason.to_string());
3518 assert_eq!(
3519 via_ctor, via_literal,
3520 "DialetoError::leitura({reason:?}) must byte-equal the \
3521 open-coded tuple-newtype wrap on the same input — a \
3522 drift here would let the ctor silently normalize / \
3523 truncate the reader reason before it reached the \
3524 Leitura envelope"
3525 );
3526 let DialetoError::Leitura(routed) = via_ctor else {
3527 panic!(
3528 "DialetoError::leitura must construct the Leitura \
3529 arm — got a different variant on input {reason:?}"
3530 );
3531 };
3532 assert_eq!(
3533 routed, reason,
3534 "DialetoError::leitura must route the input {reason:?} \
3535 verbatim into the tuple-newtype payload — any \
3536 wrapper-side truncation / normalization surfaces here \
3537 rather than at a downstream diagnostic shape drift"
3538 );
3539 }
3540 }
3541
3542 #[test]
3543 fn classify_reader_error_routes_through_leitura_ctor() {
3544 // Fail-before-pass-after routing pin: [`classify`]'s
3545 // tatara-lisp-reader map-err site MUST construct its
3546 // `Err(DialetoError::…)` through the substrate-primitive
3547 // [`DialetoError::leitura`] ctor rather than through an
3548 // open-coded tuple-newtype wrap. Pre-lift the wire-up hand-rolled
3549 // a `Self::Leitura(e.to_string())` block with no compile-time
3550 // link back to the substrate primitive; a future accidental
3551 // rebrand of the ctor body (an added `.trim()` on the reader
3552 // reason, a per-arm constant prefix like `"tatara-lisp:"`, a
3553 // widening of the payload into a `(String, usize)` tuple
3554 // carrying a caret offset) would then silently split the two
3555 // paths — the ctor consumers pick up the new shape, the
3556 // open-coded wire-up does not. Pinning byte-equality between
3557 // the observed `Err` and the ctor-constructed `Err` refuses
3558 // that split at caixa-core build time rather than surfacing far
3559 // from the wire-up commit as a downstream diagnostic-consumer
3560 // split. Peer of the sibling
3561 // `classify_form_wrong_head_routes_through_cabeca_errada_ctor`
3562 // pin above on the same [`DialetoError`] envelope's wrong-head
3563 // fallthrough axis.
3564 //
3565 // The malformed sources below each name a distinct
3566 // tatara-lisp-reader failure shape (unclosed paren, stray close
3567 // paren, unterminated string), so together they sweep the
3568 // reader's rejection surface rather than pinning against one
3569 // specific error message the reader upstream is free to reword.
3570 for src in [
3571 "(defcaixa :nome \"x\"",
3572 "defcaixa :nome \"x\")",
3573 "(defcaixa :nome \"unterminated",
3574 ] {
3575 let observed = classify(src);
3576 let Err(DialetoError::Leitura(reason)) = observed.clone() else {
3577 panic!(
3578 "classify({src:?}) must return the Leitura arm — got \
3579 {observed:?}"
3580 );
3581 };
3582 let via_ctor: Result<CaixaDialeto, DialetoError> =
3583 Err(DialetoError::leitura(reason.clone()));
3584 assert_eq!(
3585 observed, via_ctor,
3586 "classify({src:?}) must return the same Err shape as \
3587 DialetoError::leitura({reason:?}) — a drift here means \
3588 the wire-up de-lifted its tatara-lisp-reader fallthrough \
3589 arm off the substrate primitive"
3590 );
3591 }
3592 }
3593
3594 #[test]
3595 fn caixa_dialeto_try_from_str_routes_through_from_wire_accessor() {
3596 // Fail-before-pass-after byte-parity pin on the lifted
3597 // `impl TryFrom<&str> for CaixaDialeto`: for every arm in
3598 // [`CaixaDialeto::ALL`], the `.try_into()` / `TryFrom::try_from`
3599 // path must resolve to the same variant the sibling
3600 // [`CaixaDialeto::from_wire`] resolver returns on the same
3601 // [`CaixaDialeto::as_str`] wire byte-string input. Pins the
3602 // three-path convergence discipline the [`CaixaDialeto`] closed-
3603 // set typed enum now carries on the `str → Self` reverse-
3604 // projection axis: `<CaixaDialeto as TryFrom<&str>>::try_from(s)`
3605 // (the newly lifted trait-idiomatic reverse projection),
3606 // `CaixaDialeto::from_wire(s)` (the substrate-primitive method-
3607 // named `Option<Self>` accessor the trait impl delegates through),
3608 // and the round-trip identity `variant.as_str() → variant`
3609 // (the four-arm closed accept-set shared between the emitter and
3610 // both reverse-projection consumers) must resolve to the same
3611 // typed [`CaixaDialeto`] discriminator on every arm.
3612 //
3613 // A future silent detour that routes the impl through a
3614 // divergent projection (a per-arm inline
3615 // `match s { "Pacote" => …, … }` re-inlining that opens a
3616 // compile-time link to the un-lifted arm-literal, a swap onto
3617 // the second-axis [`CaixaDialeto::palavra_canonica`] /
3618 // [`CaixaDialeto::consumidor`] / [`CaixaDialeto::descricao`]
3619 // accessors that carry distinct byte-shapes per axis, an accept-
3620 // set widening that silently accepts one axis's byte-shapes as
3621 // parseable on the other axis) trips at caixa-core test time
3622 // under `assert_eq!` rather than at a downstream
3623 // `TryFrom<&str>`-bound consumer's silent split. Peer of the
3624 // sibling
3625 // [`crate::kind::tests::caixa_kind_try_from_str_routes_through_from_wire_accessor`]
3626 // (3c83606) on the top-level [`crate::CaixaKind`] closed-set
3627 // discriminator's reverse-projection axis — extends the trait-
3628 // idiomatic reverse-projection axis onto the seventh closed-set
3629 // fieldless typed enum on the caixa surface (the second one to
3630 // carry the paired `TryFrom<&str>` impl).
3631 for &variant in CaixaDialeto::ALL {
3632 let wire = variant.as_str();
3633 let via_try_from: CaixaDialeto = <CaixaDialeto as TryFrom<&str>>::try_from(wire)
3634 .unwrap_or_else(|()| {
3635 panic!(
3636 "CaixaDialeto::try_from({wire:?}) must accept every \
3637 CaixaDialeto::as_str output — got Err(()) for the \
3638 wire byte-string of {variant:?}"
3639 )
3640 });
3641 let via_from_wire: CaixaDialeto = CaixaDialeto::from_wire(wire).unwrap_or_else(|| {
3642 panic!(
3643 "CaixaDialeto::from_wire({wire:?}) must accept every \
3644 CaixaDialeto::as_str output — got None for the wire \
3645 byte-string of {variant:?}"
3646 )
3647 });
3648 assert_eq!(
3649 via_try_from, variant,
3650 "CaixaDialeto::try_from(CaixaDialeto::{variant:?}.as_str()) \
3651 must return CaixaDialeto::{variant:?} — the trait-idiomatic \
3652 reverse projection must land on the same arm the method-named \
3653 from_wire resolver does",
3654 );
3655 assert_eq!(
3656 via_try_from, via_from_wire,
3657 "CaixaDialeto::try_from({wire:?}) ({via_try_from:?}) must \
3658 byte-equal CaixaDialeto::from_wire({wire:?}) ({via_from_wire:?}) \
3659 on the same input — divergence signals a silent detour off the \
3660 shared substrate-primitive resolver",
3661 );
3662 assert_eq!(
3663 <CaixaDialeto as TryFrom<&str>>::try_from(wire).ok(),
3664 CaixaDialeto::from_wire(wire),
3665 "the Result::ok() projection of TryFrom<&str> must byte-equal \
3666 the sibling from_wire Option<Self> output on {wire:?} — the \
3667 two accessors must share the same accept-set and typed \
3668 outcome per arm",
3669 );
3670 }
3671 }
3672
3673 #[test]
3674 fn caixa_dialeto_try_from_str_rejects_unknown_byte_strings() {
3675 // Rejection witness on the trait-idiomatic reverse-projection
3676 // axis: any string outside the four-arm [`CaixaDialeto::as_str`]
3677 // output set must resolve to `Err(())` through the lifted
3678 // [`impl TryFrom<&str> for CaixaDialeto`]. A future accidental
3679 // widening of the accept-set (a case-insensitive match that
3680 // accepts `"pacote"` on the wire axis, a hand-rolled Levenshtein-
3681 // forgiving arm-lookup that admits `"Pacotee"` typos, a silent
3682 // acceptance of the sibling [`CaixaDialeto::palavra_canonica`]
3683 // `"defcaixa"` / `"defmolde"` byte-shapes on this axis, a swap
3684 // onto the [`CaixaDialeto::consumidor`] `"pleme-doc-gen"` /
3685 // `"caixa-core / feira"` / `"nobody known"` byte-shapes) would
3686 // silently drift the trait-idiomatic parser's accept-set from
3687 // the sibling [`CaixaDialeto::from_wire`] resolver's — a
3688 // downstream `TryFrom<&str>`-bound consumer binding a malformed
3689 // byte-string through this impl would then bind a plausibly-
3690 // wrong typed arm the caller does not route through any fallback,
3691 // silently misclassifying the reloaded row.
3692 //
3693 // Sweeps the same rejection set the sibling
3694 // [`caixa_dialeto_from_wire_rejects_unknown_byte_strings`] pin
3695 // walks (the shared `from_wire` resolver both accessors delegate
3696 // through) so the trait-idiomatic axis and the method-named axis
3697 // stay locked to the same accept-set by construction. Peer of the
3698 // sibling
3699 // [`crate::kind::tests::caixa_kind_try_from_str_rejects_unknown_byte_strings`]
3700 // (3c83606) on the top-level [`crate::CaixaKind`] closed-set
3701 // discriminator's trait-idiomatic reverse-projection axis.
3702 for bad in [
3703 "",
3704 " ",
3705 "pacote",
3706 "PACOTE",
3707 "molde",
3708 "MoldePositional",
3709 "desconhecido",
3710 "Unknown",
3711 "defcaixa",
3712 "defmolde",
3713 "?",
3714 "caixa-core / feira",
3715 "pleme-doc-gen",
3716 "nobody known",
3717 "Pacote ",
3718 " Pacote",
3719 ] {
3720 assert_eq!(
3721 <CaixaDialeto as TryFrom<&str>>::try_from(bad),
3722 Err(()),
3723 "CaixaDialeto::try_from({bad:?}) must return Err(()) — the \
3724 trait-idiomatic parser's accept-set is exactly the four \
3725 CaixaDialeto::as_str outputs; a widening would silently \
3726 split the trait-idiomatic reverse-projection axis from the \
3727 sibling from_wire resolver's arm-set"
3728 );
3729 }
3730 }
3731
3732 #[test]
3733 fn caixa_dialeto_from_str_routes_through_try_from_str_impl() {
3734 // Fail-before-pass-after byte-parity pin on the newly lifted
3735 // `impl std::str::FromStr for CaixaDialeto` — asserts the
3736 // standard-library `.parse()` parse-axis entry point and the
3737 // paired [`super::CaixaDialeto::try_from`] `TryFrom<&str>` impl
3738 // (which in turn routes through the substrate-primitive
3739 // [`super::CaixaDialeto::from_wire`] `Option<Self>` accessor)
3740 // resolve to the same four-arm accept-set across every arm the
3741 // exhaustive [`super::CaixaDialeto::ALL`] slice enumerates.
3742 // Extends the substrate-wide `FromStr` parse-axis campaign —
3743 // opened on [`crate::dep::DepList`] via 6167092 as first-
3744 // mover, extended onto the structurally most fundamental
3745 // closed-set typed enum via [`crate::CaixaKind`] (9867432),
3746 // then onto the first M3-mesh-primitive-defining slot enum
3747 // via [`crate::aplicacao::PlacementStrategy`] (62ef49a) —
3748 // onto the dialect-classification axis every [`crate::Caixa`]
3749 // carries through its parsed manifest form. The peer
3750 // method-named `from_wire` accessor and the paired
3751 // `TryFrom<&str>` trait impl fix the four-arm PascalCase
3752 // accept-set; this pin locks the `FromStr::from_str` trait
3753 // entry point onto the same set so any future divergence (a
3754 // stray per-arm `match s` re-inlining that opens a compile-
3755 // time link to an un-lifted arm-literal, a swap onto a hand-
3756 // rolled parser that widens the accept-set past the four
3757 // lifted [`crate::render::CAIXA_DIALETO_WIRE_*`] consts) trips
3758 // at caixa-core test time.
3759 use std::str::FromStr;
3760 for &variant in CaixaDialeto::ALL {
3761 let wire = variant.as_str();
3762 assert_eq!(
3763 <CaixaDialeto as FromStr>::from_str(wire),
3764 Ok(variant),
3765 "FromStr impl on CaixaDialeto must round-trip \
3766 CaixaDialeto::{variant:?}.as_str() = {wire:?} back to \
3767 Ok(CaixaDialeto::{variant:?}) — divergence from \
3768 CaixaDialeto::try_from signals a silent detour off the \
3769 paired reverse-projection trait impl"
3770 );
3771 assert_eq!(
3772 <CaixaDialeto as FromStr>::from_str(wire).ok(),
3773 CaixaDialeto::from_wire(wire),
3774 "FromStr ok()-projection on {wire:?} must byte-equal \
3775 CaixaDialeto::from_wire on the same input — divergence \
3776 signals the two reverse-projection trait paths have \
3777 drifted off the substrate-primitive accessor"
3778 );
3779 // `.parse::<CaixaDialeto>()` short-form witness — the
3780 // stdlib consumer surface that reaches the enum through
3781 // the `T: FromStr` bound, not through `TryFrom<&str>`.
3782 let via_parse: Result<CaixaDialeto, ()> = wire.parse();
3783 assert_eq!(
3784 via_parse,
3785 Ok(variant),
3786 "`{wire:?}`.parse::<CaixaDialeto>() must resolve to \
3787 Ok(CaixaDialeto::{variant:?}) — divergence signals \
3788 the stdlib `.parse()` short-form has drifted from the \
3789 lifted `FromStr::from_str` impl"
3790 );
3791 }
3792 }
3793
3794 #[test]
3795 fn caixa_dialeto_from_str_rejects_unknown_byte_strings() {
3796 // Rejection witness on the `impl FromStr for CaixaDialeto` —
3797 // sweeps candidate byte-strings outside the four-arm
3798 // PascalCase accept-set the sibling
3799 // [`super::CaixaDialeto::as_str`] emits and asserts every one
3800 // lands on `Err(())`, so a future accidental widening of the
3801 // trait impl's accept-set (a stray case-fold path, a silent
3802 // acceptance of the sibling [`CaixaDialeto::palavra_canonica`]
3803 // `"defcaixa"` / `"defmolde"` byte-shapes on this axis, a
3804 // swap onto the [`CaixaDialeto::consumidor`] /
3805 // [`CaixaDialeto::descricao`] axes' byte-shapes) trips at
3806 // caixa-core test time. Peer of the sibling
3807 // [`caixa_dialeto_try_from_str_rejects_unknown_byte_strings`]
3808 // rejection witness — the two pins together bracket both
3809 // reverse-projection trait impls against the same rejected
3810 // set. Peer of the sibling
3811 // [`crate::kind::tests::caixa_kind_from_str_rejects_unknown_byte_strings`]
3812 // (9867432) rejection witness on the top-level
3813 // [`crate::CaixaKind`] closed-set discriminator's trait-
3814 // idiomatic `FromStr` parse axis.
3815 use std::str::FromStr;
3816 let rejected: &[&str] = &[
3817 "",
3818 " ",
3819 "pacote",
3820 "PACOTE",
3821 "molde",
3822 "MoldePositional",
3823 "desconhecido",
3824 "Unknown",
3825 "defcaixa",
3826 "defmolde",
3827 "?",
3828 "caixa-core / feira",
3829 "pleme-doc-gen",
3830 "nobody known",
3831 "Pacote ",
3832 " Pacote",
3833 "Pacote\n",
3834 "\"Pacote\"",
3835 ];
3836 for &input in rejected {
3837 assert_eq!(
3838 <CaixaDialeto as FromStr>::from_str(input),
3839 Err(()),
3840 "FromStr impl on CaixaDialeto must reject unknown \
3841 byte-string {input:?} — divergence signals a silent \
3842 accept-set widening past the four lifted \
3843 crate::render::CAIXA_DIALETO_WIRE_* wire constants"
3844 );
3845 assert_eq!(
3846 <CaixaDialeto as FromStr>::from_str(input).ok(),
3847 CaixaDialeto::from_wire(input),
3848 "FromStr ok()-projection on {input:?} must byte-equal \
3849 CaixaDialeto::from_wire on the same input — \
3850 divergence signals the FromStr trait path has drifted \
3851 off the substrate-primitive accessor"
3852 );
3853 let via_parse: Result<CaixaDialeto, ()> = input.parse();
3854 assert_eq!(
3855 via_parse,
3856 Err(()),
3857 "`{input:?}`.parse::<CaixaDialeto>() must reject the \
3858 unknown byte-string — divergence signals the stdlib \
3859 `.parse()` short-form has drifted from the lifted \
3860 `FromStr::from_str` impl"
3861 );
3862 }
3863 }
3864
3865 #[test]
3866 fn caixa_dialeto_from_into_static_str_routes_through_as_str_accessor() {
3867 // Fail-before-pass-after byte-parity pin on the newly lifted
3868 // `impl From<CaixaDialeto> for &'static str` — asserts the
3869 // standard-library trait impl and the substrate-primitive
3870 // [`CaixaDialeto::as_str`] `pub const fn` accessor resolve to
3871 // the same four-arm emit-set across every arm the exhaustive
3872 // [`CaixaDialeto::ALL`] slice enumerates. Any future silent
3873 // detour that routes the trait impl through a divergent
3874 // projection (a per-arm inline `match dialeto { Pacote =>
3875 // "Pacote", … }` re-inlining that opens a compile-time link to
3876 // the un-lifted arm-literal, an accidental swap onto the second-
3877 // axis [`CaixaDialeto::palavra_canonica`] /
3878 // [`CaixaDialeto::consumidor`] / [`CaixaDialeto::descricao`]
3879 // accessors that carry distinct byte-shapes per axis) trips at
3880 // caixa-core test time under `assert_eq!` rather than at a
3881 // downstream `impl Into<&'static str>`-bound consumer's silent
3882 // split. Sweeps every one of the four arms [`CaixaDialeto::ALL`]
3883 // carries so no arm's projection is covered only by the sibling
3884 // method-named `as_str` / [`std::fmt::Display`] / [`AsRef<str>`]
3885 // paths. Materializes the `<&'static str as
3886 // From<CaixaDialeto>>::from` output in a `const`-shape binding
3887 // to make the `'static` lifetime promise a build-time invariant
3888 // — a future accidental downgrade of any of the four arms'
3889 // returned literals to a non-`&'static str` (a `String::leak()`-
3890 // produced return, a `Box::leak`-cast, an intermediate lifetime-
3891 // erasing helper) trips at caixa-core build time rather than at
3892 // a downstream `'static`-bound consumer. Peer of the sibling
3893 // [`crate::supervisor::tests::restart_strategy_from_into_static_str_routes_through_as_str_accessor`]
3894 // (523157d) /
3895 // [`crate::supervisor::tests::restart_policy_from_into_static_str_routes_through_as_str_accessor`]
3896 // (9fb37d0) /
3897 // [`crate::kind::tests::caixa_kind_from_into_static_str_routes_through_as_str_accessor`]
3898 // (edb827b) pins on the sibling closed-set typed-enum forward-
3899 // projection axes — extends the trait-idiomatic forward-
3900 // projection axis onto the fourth closed-set fieldless typed
3901 // enum on the caixa surface (the dialect-classification axis,
3902 // second-of-two closed-set typed enums in caixa-core outside
3903 // the OTP-shape M2 slot).
3904 const PACOTE: &str = CaixaDialeto::Pacote.as_str();
3905 const MOLDE: &str = CaixaDialeto::Molde.as_str();
3906 const MOLDE_POSICIONAL: &str = CaixaDialeto::MoldePosicional.as_str();
3907 const DESCONHECIDO: &str = CaixaDialeto::Desconhecido.as_str();
3908 for &variant in CaixaDialeto::ALL {
3909 let via_trait: &'static str = <&'static str as From<CaixaDialeto>>::from(variant);
3910 let via_method: &'static str = variant.as_str();
3911 assert_eq!(
3912 via_trait, via_method,
3913 "From<CaixaDialeto> for &'static str impl must round-trip \
3914 CaixaDialeto::{variant:?} to the same `PascalCase` byte-string \
3915 CaixaDialeto::as_str returns — divergence signals a silent \
3916 detour off the substrate-primitive accessor"
3917 );
3918 let via_into: &'static str = variant.into();
3919 assert_eq!(
3920 via_into, via_method,
3921 "Into<&'static str>::into on CaixaDialeto::{variant:?} must \
3922 byte-equal CaixaDialeto::as_str on the same input — the \
3923 blanket-derived Into shape must resolve to the same as_str \
3924 dispatch as the explicit From impl"
3925 );
3926 }
3927 assert_eq!(
3928 [PACOTE, MOLDE, MOLDE_POSICIONAL, DESCONHECIDO],
3929 ["Pacote", "Molde", "MoldePosicional", "Desconhecido"],
3930 "const-context CaixaDialeto::as_str must resolve to the four \
3931 `PascalCase` variant-name byte-strings — a future accidental \
3932 downgrade of any arm to a non-const or non-static byte-string \
3933 breaks the `&'static str`-lifetime promise the paired \
3934 From<CaixaDialeto> for &'static str impl carries by \
3935 construction"
3936 );
3937 }
3938
3939 #[test]
3940 fn caixa_dialeto_from_into_static_str_and_as_str_partition_the_emit_set() {
3941 // Cross-axis partition pin: the paired trait-idiomatic
3942 // `From<CaixaDialeto> for &'static str` forward projection and
3943 // the method-named [`CaixaDialeto::as_str`] forward projection
3944 // must resolve identically on *every* arm, not just the ones
3945 // named in the primary byte-parity pin above. Sweeps every
3946 // [`CaixaDialeto::ALL`] arm and asserts the trait's `From::from`
3947 // output byte-equals the method-named accessor's return-value on
3948 // each, locking the two forward-projection paths together by
3949 // construction so any future detour (a stray `From` special-case
3950 // that lands on a divergent per-arm literal outside the paired
3951 // `as_str` dispatch, a hypothetical rebrand touching one axis
3952 // without the other) trips at caixa-core test time. Peer of the
3953 // sibling forward-projection partition pins
3954 // [`crate::supervisor::tests::restart_strategy_from_into_static_str_and_as_str_partition_the_emit_set`]
3955 // (523157d) /
3956 // [`crate::supervisor::tests::restart_policy_from_into_static_str_and_as_str_partition_the_emit_set`]
3957 // (9fb37d0) /
3958 // [`crate::kind::tests::caixa_kind_from_into_static_str_and_as_str_partition_the_emit_set`]
3959 // (edb827b) — extends the round-trip discipline onto the fourth
3960 // closed-set typed enum on the caixa surface, closing the two-way
3961 // `Self ↔ &'static str` round-trip on the trait-idiomatic pair
3962 // (`From<Self> for &'static str` + `TryFrom<&str> for Self`) as
3963 // well as the pre-existing method-named pair (`as_str` +
3964 // `from_wire`).
3965 for &variant in CaixaDialeto::ALL {
3966 let via_trait: &'static str = <&'static str as From<CaixaDialeto>>::from(variant);
3967 let via_method: &'static str = variant.as_str();
3968 assert_eq!(
3969 via_trait, via_method,
3970 "From<CaixaDialeto> for &'static str and \
3971 CaixaDialeto::as_str must resolve identically on \
3972 CaixaDialeto::{variant:?} — divergence signals the \
3973 two forward-projection paths have drifted onto different \
3974 emit-sets"
3975 );
3976 }
3977 // Round-trip witness: every arm's forward `From` output re-parses
3978 // through the paired trait-idiomatic reverse `TryFrom<&str>` back
3979 // to the original variant. Closes the two-way `CaixaDialeto ↔
3980 // &'static str` round-trip on the trait-idiomatic axis pair
3981 // directly (no wire-vocab intermediate the peer [`CaixaKind`]
3982 // axis pair requires — the emit-side [`CaixaDialeto::as_str`]
3983 // and the parse-side [`CaixaDialeto::from_wire`] share the same
3984 // `PascalCase` byte-string vocabulary by construction), mirroring
3985 // the pre-existing method-named `as_str` + `from_wire` round-trip
3986 // on the substrate-primitive axis pair.
3987 for &variant in CaixaDialeto::ALL {
3988 let emitted: &'static str = variant.into();
3989 let re_parsed: Result<CaixaDialeto, ()> =
3990 <CaixaDialeto as TryFrom<&str>>::try_from(emitted);
3991 assert_eq!(
3992 re_parsed,
3993 Ok(variant),
3994 "trait-idiomatic axis pair must round-trip \
3995 CaixaDialeto::{variant:?} through `.into::<&'static \
3996 str>()` and back through `TryFrom<&str>` — a break signals \
3997 the forward-emit and reverse-parse axes have drifted onto \
3998 different vocabularies"
3999 );
4000 }
4001 }
4002
4003 #[test]
4004 fn caixa_dialeto_is_molde_family_routes_through_is_variant_derived_predicates() {
4005 // Byte-parity pin on the post-lift [`CaixaDialeto::is_molde_family`]
4006 // convergence: for every arm in [`CaixaDialeto::ALL`], the typed
4007 // predicate must byte-equal the direct
4008 // `self.is_molde() || self.is_molde_posicional()` composition of
4009 // the two derived per-arm predicates. Pre-lift the predicate
4010 // hand-rolled `matches!(self, Self::Molde | Self::MoldePosicional)`
4011 // with no compile-time link back to the closed-set typed dispatch;
4012 // post-lift it routes through the derived predicates so a future
4013 // arm rename or `#[is_variant(name = "…")]` override lands at
4014 // exactly one dispatch on the substrate primitive. Pinning the
4015 // byte-equality here refuses a future accidental split between
4016 // the composed predicate and the paired derived predicates
4017 // (a hand-rolled shadow `impl` that overrides one path but not
4018 // the other, an accidental rebrand of `is_molde_family`'s body
4019 // back to the pre-lift `matches!` form) at caixa-core build time.
4020 for &d in CaixaDialeto::ALL {
4021 let via_derived = d.is_molde() || d.is_molde_posicional();
4022 let via_is_molde_family = d.is_molde_family();
4023 assert_eq!(
4024 via_is_molde_family, via_derived,
4025 "CaixaDialeto::{d:?}.is_molde_family() ({via_is_molde_family}) \
4026 must byte-equal the composed derived predicates \
4027 is_molde() || is_molde_posicional() ({via_derived}) — a \
4028 split between the composed predicate and its derived \
4029 building blocks would let a future arm rename land at one \
4030 path and drift at the other, which is exactly the drift \
4031 the IsVariant lift refuses"
4032 );
4033 }
4034 }
4035
4036 #[test]
4037 fn caixa_dialeto_from_borrowed_into_static_str_routes_through_as_str_accessor() {
4038 // Fail-before-pass-after byte-parity pin on the newly lifted
4039 // `impl From<&CaixaDialeto> for &'static str` — asserts the
4040 // borrowed-input standard-library trait impl and the substrate-
4041 // primitive [`CaixaDialeto::as_str`] `pub const fn` accessor
4042 // resolve to the same four-arm emit-set across every arm the
4043 // exhaustive [`CaixaDialeto::ALL`] slice enumerates. Rust's
4044 // `From` trait does not auto-derive the borrowed-input sibling
4045 // from a paired owned-input impl (no `impl<T, U> From<&T> for U
4046 // where T: Copy, U: From<T>` blanket in `core`), so the
4047 // borrowed-input axis is a distinct trait-idiomatic surface that
4048 // a `.iter().map(Into::into)` shape over [`CaixaDialeto::ALL`]
4049 // (whose iterator yields `&CaixaDialeto`, not `CaixaDialeto`)
4050 // reaches through this impl and no other — the paired owned-
4051 // input [`From<CaixaDialeto>`] impl requires an explicit
4052 // `.copied()` / dereference before the trait fires.
4053 // Materializes the `<&'static str as From<&CaixaDialeto>>::from`
4054 // output in a `const`-shape binding to make the `'static`
4055 // lifetime promise a build-time invariant — a future accidental
4056 // downgrade of any of the four arms' returned literals to a
4057 // non-`&'static str` trips at caixa-core build time rather than
4058 // at a downstream `'static`-bound consumer. Peer of the sibling
4059 // [`crate::dep::tests::dep_list_from_borrowed_into_static_str_routes_through_as_str_accessor`]
4060 // (64aa742) /
4061 // [`crate::kind::tests::caixa_kind_from_borrowed_into_static_str_routes_through_as_str_accessor`]
4062 // (5ab993a) pins on the sibling closed-set typed-enum borrowed-
4063 // input forward-projection axes — extends the borrowed-input
4064 // axis discipline onto the third peer on the substrate-wide
4065 // campaign, the dialect-classification axis.
4066 const PACOTE: &str = CaixaDialeto::Pacote.as_str();
4067 const MOLDE: &str = CaixaDialeto::Molde.as_str();
4068 const MOLDE_POSICIONAL: &str = CaixaDialeto::MoldePosicional.as_str();
4069 const DESCONHECIDO: &str = CaixaDialeto::Desconhecido.as_str();
4070 for variant in CaixaDialeto::ALL {
4071 let via_trait: &'static str = <&'static str as From<&CaixaDialeto>>::from(variant);
4072 let via_method: &'static str = variant.as_str();
4073 assert_eq!(
4074 via_trait, via_method,
4075 "From<&CaixaDialeto> for &'static str impl must round-trip \
4076 &CaixaDialeto::{variant:?} to the same `PascalCase` byte-\
4077 string CaixaDialeto::as_str returns — divergence signals a \
4078 silent detour off the substrate-primitive accessor"
4079 );
4080 let via_into: &'static str = variant.into();
4081 assert_eq!(
4082 via_into, via_method,
4083 "Into<&'static str>::into on &CaixaDialeto::{variant:?} must \
4084 byte-equal CaixaDialeto::as_str on the same input — the \
4085 blanket-derived Into shape must resolve to the same as_str \
4086 dispatch as the explicit From impl"
4087 );
4088 }
4089 assert_eq!(
4090 [PACOTE, MOLDE, MOLDE_POSICIONAL, DESCONHECIDO],
4091 ["Pacote", "Molde", "MoldePosicional", "Desconhecido"],
4092 "const-context CaixaDialeto::as_str must resolve to the four \
4093 `PascalCase` variant-name byte-strings — the borrowed-input \
4094 From<&CaixaDialeto> for &'static str impl inherits its \
4095 `'static` lifetime promise from the same accessor the owned-\
4096 input sibling routes through"
4097 );
4098 }
4099
4100 #[test]
4101 fn caixa_dialeto_from_owned_and_borrowed_into_static_str_agree_on_every_arm() {
4102 // Cross-axis partition pin: the paired trait-idiomatic
4103 // owned-input `From<CaixaDialeto> for &'static str` and
4104 // borrowed-input `From<&CaixaDialeto> for &'static str` (this
4105 // lift) forward projections must resolve identically on every
4106 // arm, locking the two input-shape paths together so any future
4107 // detour trips at caixa-core test time. Then a witness that a
4108 // `.iter().map(Into::into)` pipe over [`CaixaDialeto::ALL`]
4109 // (whose iterator yields `&CaixaDialeto`) materializes the four-
4110 // arm accept-set through the borrowed-input axis alone — the
4111 // exact shape a future M4 admission-webhook rejection body
4112 // composer, a future substrate-wide per-arm diagnostic column,
4113 // or a `HashMap::<&'static str, CaixaDialeto>::from_iter(
4114 // CaixaDialeto::ALL.iter().map(|d| (d.into(), *d)))`-style
4115 // per-dialect lookup reaches through — closing the two-way
4116 // owned/borrowed input-shape symmetry on the forward-projection
4117 // trait-idiomatic axis. Peer of the sibling
4118 // [`crate::dep::tests::dep_list_from_owned_and_borrowed_into_static_str_agree_on_every_arm`]
4119 // (64aa742) /
4120 // [`crate::kind::tests::caixa_kind_from_owned_and_borrowed_into_static_str_agree_on_every_arm`]
4121 // (5ab993a) partition pins — extends the borrowed-input axis
4122 // discipline onto the third peer on the substrate-wide campaign.
4123 for &variant in CaixaDialeto::ALL {
4124 let owned: &'static str = <&'static str as From<CaixaDialeto>>::from(variant);
4125 let borrowed: &'static str = <&'static str as From<&CaixaDialeto>>::from(&variant);
4126 assert_eq!(
4127 owned, borrowed,
4128 "From<CaixaDialeto> and From<&CaixaDialeto> for &'static str \
4129 must resolve identically on CaixaDialeto::{variant:?} — \
4130 divergence signals the owned-input and borrowed-input \
4131 forward-projection paths have drifted onto different \
4132 emit-sets"
4133 );
4134 }
4135 let via_iter: Vec<&'static str> = CaixaDialeto::ALL.iter().map(Into::into).collect();
4136 let via_method: Vec<&'static str> = CaixaDialeto::ALL.iter().map(|d| d.as_str()).collect();
4137 assert_eq!(
4138 via_iter, via_method,
4139 "`.iter().map(Into::into)` over CaixaDialeto::ALL must byte-\
4140 equal `.iter().map(|d| d.as_str())` on every arm — the \
4141 borrowed-input `From<&CaixaDialeto> for &'static str` axis \
4142 is what makes the `.iter().map(Into::into)` shape route \
4143 through the substrate-primitive `CaixaDialeto::as_str` \
4144 accessor rather than through a per-call-site `.copied()` / \
4145 dereference detour"
4146 );
4147 // Direct round-trip witness on the borrowed-input axis: every
4148 // arm's borrowed `From` output re-parses through the paired
4149 // trait-idiomatic reverse `TryFrom<&str>` back to the original
4150 // variant. Unlike the peer [`crate::CaixaKind`] axis pair
4151 // (whose forward `From<Self> for &'static str` emits the
4152 // lowercase Portuguese `as_str` diagnostic vocabulary while
4153 // the reverse `TryFrom<&str>` parses the `PascalCase`
4154 // `wire_name` author-surface vocabulary, forcing the round-trip
4155 // through an intermediate wire-vocab hop), [`CaixaDialeto`]'s
4156 // [`CaixaDialeto::as_str`] emit and [`CaixaDialeto::from_wire`]
4157 // parse share the same `PascalCase` vocabulary by construction,
4158 // so the borrowed-input forward axis and the reverse axis
4159 // compose directly.
4160 for &variant in CaixaDialeto::ALL {
4161 let borrowed: &'static str = <&'static str as From<&CaixaDialeto>>::from(&variant);
4162 let re_parsed: Result<CaixaDialeto, ()> =
4163 <CaixaDialeto as TryFrom<&str>>::try_from(borrowed);
4164 assert_eq!(
4165 re_parsed,
4166 Ok(variant),
4167 "trait-idiomatic borrowed-input round-trip must project \
4168 &CaixaDialeto::{variant:?} through \
4169 `<&'static str>::from(&variant)` and back through \
4170 `TryFrom<&str>` — a break signals the borrowed-input \
4171 forward-emit axis and the reverse-parse axis have \
4172 drifted onto different vocabularies"
4173 );
4174 }
4175 }
4176
4177 #[test]
4178 fn caixa_dialeto_from_into_owned_string_routes_through_as_str_accessor() {
4179 // Fail-before-pass-after byte-parity pin on the newly lifted
4180 // `impl From<CaixaDialeto> for String` — asserts the owned-`String`
4181 // -returning standard-library trait impl and the substrate-
4182 // primitive [`CaixaDialeto::as_str`] `pub const fn` accessor
4183 // resolve to the same four-arm emit-set across every arm the
4184 // exhaustive [`CaixaDialeto::ALL`] slice enumerates. Rust's
4185 // standard library does not carry a blanket
4186 // `impl<T: AsRef<str>> From<T> for String` (nor an
4187 // `impl<T: fmt::Display> From<T> for String`), so the
4188 // owned-`String` forward-projection axis is a distinct trait-
4189 // idiomatic surface that a `let key: String = dialeto.into();`-
4190 // shaped call site reaches through this impl and no other — the
4191 // paired sibling `From<CaixaDialeto> for &'static str` impl
4192 // forces every owned-`String` call site through an explicit
4193 // `.to_owned()` / `String::from` restatement. Peer of the
4194 // first-mover
4195 // [`crate::supervisor::tests::restart_strategy_from_into_owned_string_routes_through_as_str_accessor`]
4196 // (7baa18a), the second-peer
4197 // [`crate::supervisor::tests::restart_policy_from_into_owned_string_routes_through_as_str_accessor`]
4198 // (7851725), and the third-peer
4199 // [`crate::kind::tests::caixa_kind_from_into_owned_string_routes_through_as_str_accessor`]
4200 // (231a18c) — extends the trait-idiomatic owned-`String`
4201 // forward-projection axis onto the fourth closed-set fieldless
4202 // typed enum on the caixa surface (the dialect-classification
4203 // axis, second peer outside the M2 OTP-shape sibling axis).
4204 for &variant in CaixaDialeto::ALL {
4205 let via_trait: String = <String as From<CaixaDialeto>>::from(variant);
4206 let via_method: &'static str = variant.as_str();
4207 assert_eq!(
4208 via_trait.as_str(),
4209 via_method,
4210 "From<CaixaDialeto> for String impl must round-trip \
4211 CaixaDialeto::{variant:?} to the same `PascalCase` \
4212 arm-string CaixaDialeto::as_str returns — divergence \
4213 signals a silent detour off the substrate-primitive \
4214 accessor"
4215 );
4216 let via_into: String = variant.into();
4217 assert_eq!(
4218 via_into.as_str(),
4219 via_method,
4220 "Into<String>::into on CaixaDialeto::{variant:?} must \
4221 byte-equal CaixaDialeto::as_str on the same input — the \
4222 blanket-derived Into shape must resolve to the same \
4223 as_str dispatch as the explicit From impl"
4224 );
4225 }
4226 }
4227
4228 #[test]
4229 fn caixa_dialeto_from_into_owned_string_and_static_str_agree_on_every_arm() {
4230 // Cross-axis partition pin: the paired trait-idiomatic
4231 // owned-`String` `From<CaixaDialeto> for String` (this lift) and
4232 // owned-`&'static str` `From<CaixaDialeto> for &'static str`
4233 // (c189a6f) forward projections must resolve identically on
4234 // every arm, locking the two return-type-shape paths together
4235 // so any future detour trips at caixa-core test time. Also
4236 // byte-parity witness against the sibling
4237 // [`ToString::to_string`] surface routed through
4238 // [`std::fmt::Display`] — the three owned-heap-string paths
4239 // (`.into::<String>()`, `String::from`, `.to_string()`) must
4240 // resolve identically on every arm so a future consumer that
4241 // picks any of the three lands on the same four-arm
4242 // `PascalCase` accept-set. Then a `.iter().copied()
4243 // .map(String::from)` pipe witness over [`CaixaDialeto::ALL`]
4244 // that materializes the four-arm accept-set through the
4245 // owned-`String` axis alone — the exact shape a future M4
4246 // admission-webhook rejection body composer or a
4247 // `HashMap::<String, CaixaDialeto>::from_iter(
4248 // CaixaDialeto::ALL.iter().copied().map(|d| (d.into(), d)))`-
4249 // style owned-key per-dialect lookup reaches through — closing
4250 // the owned-`String` forward-projection axis's iterator-pipe
4251 // shape. Then a direct round-trip witness through the paired
4252 // trait-idiomatic reverse [`TryFrom<&str>`] axis on the
4253 // owned-`String`'s [`String::as_str`] borrow that closes the
4254 // two-way `Self → String → Self` round-trip on the trait-
4255 // idiomatic owned-`String` forward + reverse axis pair.
4256 //
4257 // Unlike the peer [`crate::CaixaKind`] axis pair (whose forward
4258 // `From` emit lands on the lowercase Portuguese `as_str`
4259 // diagnostic vocabulary while the reverse `TryFrom<&str>` parses
4260 // the `PascalCase` `wire_name` author-surface vocabulary,
4261 // forcing the round-trip through an intermediate
4262 // [`crate::CaixaKind::wire_name`] hop), [`CaixaDialeto`]'s
4263 // [`CaixaDialeto::as_str`] emit and [`CaixaDialeto::from_wire`]
4264 // parse share the same `PascalCase` vocabulary by construction
4265 // (there is no wire/diagnostic axis split on this enum), so
4266 // the owned-`String` forward axis and the reverse axis compose
4267 // directly — matching the peer
4268 // [`crate::supervisor::RestartStrategy`] /
4269 // [`crate::supervisor::RestartPolicy`] owned-`String` axis
4270 // pairs (whose forward emit and reverse parse also share one
4271 // `PascalCase` vocabulary by construction).
4272 for &variant in CaixaDialeto::ALL {
4273 let owned_string: String = <String as From<CaixaDialeto>>::from(variant);
4274 let owned_static: &'static str = <&'static str as From<CaixaDialeto>>::from(variant);
4275 assert_eq!(
4276 owned_string.as_str(),
4277 owned_static,
4278 "From<CaixaDialeto> for String and From<CaixaDialeto> for \
4279 &'static str must resolve identically on \
4280 CaixaDialeto::{variant:?} — divergence signals the \
4281 owned-`String` and owned-`&'static str` forward-\
4282 projection return-type-shape paths have drifted onto \
4283 different emit-sets"
4284 );
4285 let via_to_string: String = variant.to_string();
4286 assert_eq!(
4287 owned_string, via_to_string,
4288 "From<CaixaDialeto> for String must byte-equal \
4289 CaixaDialeto::to_string on CaixaDialeto::{variant:?} — \
4290 divergence signals the trait-idiomatic owned-`String` \
4291 forward-projection axis and the ToString-through-\
4292 Display axis have drifted onto different emit-sets"
4293 );
4294 }
4295 let via_iter: Vec<String> = CaixaDialeto::ALL
4296 .iter()
4297 .copied()
4298 .map(String::from)
4299 .collect();
4300 let via_method: Vec<String> = CaixaDialeto::ALL
4301 .iter()
4302 .map(|d| d.as_str().to_owned())
4303 .collect();
4304 assert_eq!(
4305 via_iter, via_method,
4306 "`.iter().copied().map(String::from)` over CaixaDialeto::ALL \
4307 must byte-equal `.iter().map(|d| d.as_str().to_owned())` on \
4308 every arm — the owned-`String` `From<CaixaDialeto> for \
4309 String` axis is what makes the `String::from` composition \
4310 route through the substrate-primitive `CaixaDialeto::as_str` \
4311 accessor rather than through a per-call-site `.to_owned()` / \
4312 `String::from(dialeto.as_str())` detour"
4313 );
4314 for &variant in CaixaDialeto::ALL {
4315 let emitted: String = variant.into();
4316 let re_parsed: Result<CaixaDialeto, ()> =
4317 <CaixaDialeto as TryFrom<&str>>::try_from(emitted.as_str());
4318 assert_eq!(
4319 re_parsed,
4320 Ok(variant),
4321 "trait-idiomatic owned-`String` forward-projection + \
4322 reverse-projection axis pair must round-trip \
4323 CaixaDialeto::{variant:?} through `.into::<String>()` \
4324 and back through `TryFrom<&str>` on the owned-`String`'s \
4325 String::as_str borrow — a break signals the owned-\
4326 `String` forward-emit and reverse-parse axes have \
4327 drifted onto different vocabularies (unlike the peer \
4328 CaixaKind axis pair, CaixaDialeto's forward emit and \
4329 reverse parse share one PascalCase vocabulary by \
4330 construction, so the round-trip composes directly)"
4331 );
4332 }
4333 }
4334
4335 #[test]
4336 fn caixa_dialeto_from_into_borrowed_owned_string_routes_through_as_str_accessor() {
4337 // Fail-before-pass-after byte-parity pin on the newly lifted
4338 // `impl From<&CaixaDialeto> for String` — asserts the borrowed-
4339 // input owned-`String`-returning standard-library trait impl and
4340 // the substrate-primitive [`super::CaixaDialeto::as_str`]
4341 // `pub const fn` accessor resolve to the same four-arm emit-set
4342 // across every arm the exhaustive [`super::CaixaDialeto::ALL`]
4343 // slice enumerates. Rust's standard library does not carry a
4344 // blanket `impl<T: AsRef<str>> From<&T> for String` (nor an
4345 // `impl<T: fmt::Display> From<&T> for String`), so the
4346 // borrowed-input owned-`String` forward-projection axis is a
4347 // distinct trait-idiomatic surface that a
4348 // `let key: String = (&dialeto).into();`-shaped call site
4349 // reaches through this impl and no other — the paired sibling
4350 // `From<CaixaDialeto> for String` impl forces every borrowed-
4351 // input call site through an explicit `Copy` deref
4352 // (`String::from(*dialeto)`) or an `.as_str().to_owned()` /
4353 // `.to_string()` detour. Peer of the first-mover
4354 // [`crate::supervisor::tests::restart_strategy_from_into_borrowed_owned_string_routes_through_as_str_accessor`]
4355 // (579385f), the second-peer
4356 // [`crate::supervisor::tests::restart_policy_from_into_borrowed_owned_string_routes_through_as_str_accessor`]
4357 // (8465740), the third-peer
4358 // [`crate::dep::tests::dep_list_from_into_borrowed_owned_string_routes_through_as_str_accessor`]
4359 // (e0cb617), and the fourth-peer
4360 // [`crate::kind::tests::caixa_kind_from_into_borrowed_owned_string_routes_through_as_str_accessor`]
4361 // (e76436d) — extends the trait-idiomatic borrowed-input owned-
4362 // `String` forward-projection axis onto the fourth closed-set
4363 // fieldless typed enum on the caixa surface (the dialect-
4364 // classification axis, second peer outside the M2 OTP-shape
4365 // sibling axis to reach the 2×2-completion corner).
4366 for &variant in CaixaDialeto::ALL {
4367 let via_trait: String = <String as From<&CaixaDialeto>>::from(&variant);
4368 let via_method: &'static str = variant.as_str();
4369 assert_eq!(
4370 via_trait.as_str(),
4371 via_method,
4372 "From<&CaixaDialeto> for String impl must round-trip \
4373 &CaixaDialeto::{variant:?} to the same `PascalCase` \
4374 arm-string CaixaDialeto::as_str returns — divergence \
4375 signals a silent detour off the substrate-primitive \
4376 accessor"
4377 );
4378 let via_into: String = (&variant).into();
4379 assert_eq!(
4380 via_into.as_str(),
4381 via_method,
4382 "Into<String>::into on &CaixaDialeto::{variant:?} must \
4383 byte-equal CaixaDialeto::as_str on the same input — \
4384 the blanket-derived Into shape must resolve to the \
4385 same as_str dispatch as the explicit From impl"
4386 );
4387 }
4388 }
4389
4390 #[test]
4391 fn caixa_dialeto_from_into_borrowed_owned_string_agrees_with_paired_axes_on_every_arm() {
4392 // Cross-axis partition pin: the newly lifted trait-idiomatic
4393 // borrowed-input owned-`String` `From<&CaixaDialeto> for String`
4394 // (this lift), the paired owned-input owned-`String`
4395 // `From<CaixaDialeto> for String` (88942cd), the paired
4396 // borrowed-input owned-`&'static str`
4397 // `From<&CaixaDialeto> for &'static str` (807b0b5), and the
4398 // paired owned-input owned-`&'static str`
4399 // `From<CaixaDialeto> for &'static str` (c189a6f) — every corner
4400 // of the `{Self, &Self} × {&'static str, String}` 2×2 trait-
4401 // idiomatic projection family — must resolve identically on
4402 // every arm, locking the four return-shape × input-shape paths
4403 // together so any future detour trips at caixa-core test time.
4404 // Also byte-parity witness against the sibling
4405 // [`ToString::to_string`] surface routed through
4406 // [`std::fmt::Display`] and a direct round-trip witness through
4407 // the paired trait-idiomatic reverse [`TryFrom<&str>`] axis on
4408 // the owned-`String`'s [`String::as_str`] borrow that closes
4409 // the two-way `&Self → String → Self` round-trip on the trait-
4410 // idiomatic borrowed-input owned-`String` forward + reverse
4411 // axis pair. Peer of the first-mover
4412 // [`crate::supervisor::tests::restart_strategy_from_into_borrowed_owned_string_agrees_with_paired_axes_on_every_arm`]
4413 // (579385f), the second-peer
4414 // [`crate::supervisor::tests::restart_policy_from_into_borrowed_owned_string_agrees_with_paired_axes_on_every_arm`]
4415 // (8465740), the third-peer
4416 // [`crate::dep::tests::dep_list_from_into_borrowed_owned_string_agrees_with_paired_axes_on_every_arm`]
4417 // (e0cb617), and the fourth-peer
4418 // [`crate::kind::tests::caixa_kind_from_into_borrowed_owned_string_agrees_with_paired_axes_on_every_arm`]
4419 // (e76436d) — closes the whole `{Self, &Self} × {&'static str,
4420 // String}` 2×2 projection corner on the fifth substrate-wide
4421 // closed-set fieldless typed enum peer (the dialect-
4422 // classification axis, second peer outside the M2 OTP-shape
4423 // sibling pair).
4424 //
4425 // Unlike the peer [`crate::CaixaKind`] axis pair (whose forward
4426 // `From` emit lands on the lowercase Portuguese `as_str`
4427 // diagnostic vocabulary while the reverse `TryFrom<&str>`
4428 // parses the `PascalCase` `wire_name` author-surface vocabulary,
4429 // forcing the round-trip through an intermediate
4430 // [`crate::CaixaKind::wire_name`] hop), [`super::CaixaDialeto`]'s
4431 // [`super::CaixaDialeto::as_str`] emit and
4432 // [`super::CaixaDialeto::from_wire`] parse share the same
4433 // `PascalCase` vocabulary by construction (there is no
4434 // wire/diagnostic axis split on this enum), so the borrowed-
4435 // input owned-`String` forward axis and the reverse axis compose
4436 // directly — matching the peer
4437 // [`crate::supervisor::RestartStrategy`] /
4438 // [`crate::supervisor::RestartPolicy`] / [`crate::dep::DepList`]
4439 // borrowed-input owned-`String` axis pairs.
4440 for &dialeto in CaixaDialeto::ALL {
4441 let borrowed_string: String = <String as From<&CaixaDialeto>>::from(&dialeto);
4442 let owned_string: String = <String as From<CaixaDialeto>>::from(dialeto);
4443 let borrowed_static: &'static str =
4444 <&'static str as From<&CaixaDialeto>>::from(&dialeto);
4445 let owned_static: &'static str = <&'static str as From<CaixaDialeto>>::from(dialeto);
4446 assert_eq!(
4447 borrowed_string, owned_string,
4448 "From<&CaixaDialeto> for String and From<CaixaDialeto> \
4449 for String must resolve identically on \
4450 CaixaDialeto::{dialeto:?} — divergence signals the \
4451 borrowed-input and owned-input owned-`String` forward-\
4452 projection input-shape paths have drifted onto \
4453 different emit-sets"
4454 );
4455 assert_eq!(
4456 borrowed_string.as_str(),
4457 borrowed_static,
4458 "From<&CaixaDialeto> for String and From<&CaixaDialeto> \
4459 for &'static str must resolve identically on \
4460 CaixaDialeto::{dialeto:?} — divergence signals the \
4461 borrowed-input `&'static str` and owned-`String` \
4462 return-shape paths have drifted onto different \
4463 emit-sets"
4464 );
4465 assert_eq!(
4466 borrowed_string.as_str(),
4467 owned_static,
4468 "From<&CaixaDialeto> for String and From<CaixaDialeto> \
4469 for &'static str must resolve identically on \
4470 CaixaDialeto::{dialeto:?} — divergence signals a break \
4471 in the diagonal corner of the {{Self, &Self}} × \
4472 {{&'static str, String}} 2×2 trait-idiomatic \
4473 projection family"
4474 );
4475 let via_to_string: String = dialeto.to_string();
4476 assert_eq!(
4477 borrowed_string, via_to_string,
4478 "From<&CaixaDialeto> for String must byte-equal \
4479 CaixaDialeto::to_string on CaixaDialeto::{dialeto:?} — \
4480 divergence signals the trait-idiomatic borrowed-input \
4481 owned-`String` forward-projection axis and the \
4482 ToString-through-Display axis have drifted onto \
4483 different emit-sets"
4484 );
4485 }
4486 let via_iter: Vec<String> = CaixaDialeto::ALL.iter().map(String::from).collect();
4487 let via_method: Vec<String> = CaixaDialeto::ALL
4488 .iter()
4489 .map(|d| d.as_str().to_owned())
4490 .collect();
4491 assert_eq!(
4492 via_iter, via_method,
4493 "`.iter().map(String::from)` over CaixaDialeto::ALL — a \
4494 call site whose iteration axis holds `&CaixaDialeto` by \
4495 construction — must byte-equal `.iter().map(|d| \
4496 d.as_str().to_owned())` on every arm — the borrowed-input \
4497 owned-`String` `From<&CaixaDialeto> for String` axis is \
4498 what makes the `String::from` composition route through \
4499 the substrate-primitive `CaixaDialeto::as_str` accessor \
4500 without a spurious `Copy` deref (which would only be \
4501 reachable through the owned-input `From<CaixaDialeto> for \
4502 String` axis by first calling `.copied()` on the iterator)"
4503 );
4504 for &variant in CaixaDialeto::ALL {
4505 let emitted: String = (&variant).into();
4506 let re_parsed: Result<CaixaDialeto, ()> =
4507 <CaixaDialeto as TryFrom<&str>>::try_from(emitted.as_str());
4508 assert_eq!(
4509 re_parsed,
4510 Ok(variant),
4511 "trait-idiomatic borrowed-input owned-`String` \
4512 forward-projection + reverse-projection axis pair \
4513 must round-trip &CaixaDialeto::{variant:?} through \
4514 `.into::<String>()` on the borrowed-input surface and \
4515 back through `TryFrom<&str>` on the owned-`String`'s \
4516 String::as_str borrow — a break signals the \
4517 borrowed-input owned-`String` forward-emit and \
4518 reverse-parse axes have drifted onto different \
4519 vocabularies (unlike the peer CaixaKind axis pair, \
4520 CaixaDialeto's forward emit and reverse parse share \
4521 one PascalCase vocabulary by construction, so the \
4522 round-trip composes directly)"
4523 );
4524 }
4525 }
4526
4527 #[test]
4528 fn caixa_dialeto_from_into_static_cow_str_routes_through_as_str_accessor() {
4529 // Fail-before-pass-after byte-parity pin on the newly lifted
4530 // `impl From<CaixaDialeto> for std::borrow::Cow<'static, str>`
4531 // — asserts the standard-library trait impl and the
4532 // substrate-primitive [`super::CaixaDialeto::as_str`]
4533 // `pub const fn` accessor resolve to the same four-arm
4534 // emit-set across every arm the exhaustive
4535 // [`super::CaixaDialeto::ALL`] slice enumerates. Rust's
4536 // standard library does not carry a blanket
4537 // `impl<T: AsRef<str>> From<T> for std::borrow::Cow<'static,
4538 // str>` (nor an `impl<T: fmt::Display> From<T> for
4539 // std::borrow::Cow<'static, str>`), so the
4540 // [`std::borrow::Cow<'static, str>`] forward-projection axis
4541 // is a distinct trait-idiomatic surface that a
4542 // `let key: std::borrow::Cow<'static, str> = dialeto.into();`-
4543 // shaped call site reaches through this impl and no other —
4544 // the paired sibling `From<CaixaDialeto> for &'static str`
4545 // and `From<CaixaDialeto> for String` impls force every
4546 // [`std::borrow::Cow<'static, str>`]-parameterized call site
4547 // through a `std::borrow::Cow::Borrowed(dialeto.as_str())` /
4548 // `std::borrow::Cow::Owned(dialeto.to_string())` /
4549 // `String::from(dialeto).into()` composition whose type
4550 // bounds have no compile-time link back to the substrate
4551 // primitive.
4552 //
4553 // Also asserts the projection lands on the zero-alloc
4554 // [`std::borrow::Cow::Borrowed`] arm (not the
4555 // [`std::borrow::Cow::Owned`] arm) — the substrate-primitive
4556 // [`super::CaixaDialeto::as_str`] accessor's `&'static str`
4557 // return lifetime by construction makes the borrowed arm the
4558 // type-correct projection with no runtime allocation. Any
4559 // future silent detour that routes the impl through the
4560 // owned arm (an accidental
4561 // `std::borrow::Cow::Owned(dialeto.to_string())` rewrite that
4562 // would allocate on every call site where the `&'static str`
4563 // return of [`super::CaixaDialeto::as_str`] makes the
4564 // zero-alloc borrowed projection type-correct) trips at
4565 // caixa-core test time under the
4566 // [`std::borrow::Cow::Borrowed`] discriminator witness rather
4567 // than at a downstream
4568 // [`std::borrow::Cow<'static, str>`]-bound consumer's silent
4569 // allocation.
4570 //
4571 // Second peer on the outside-M3 caixa-core tier of the
4572 // substrate-wide trait-idiomatic
4573 // [`std::borrow::Cow<'static, str>`] forward-projection
4574 // family — extends the axis off the two-list dep-graph
4575 // [`crate::dep::DepList`] pair (6858bac / 702cdf4) that
4576 // opened + closed the tier onto the dialect-classification
4577 // [`super::CaixaDialeto`] enum (the sole remaining
4578 // internal-classification peer on the caixa-core surface).
4579 // Every future closed-set fieldless typed enum peer on the
4580 // substrate is a future target of the campaign.
4581 for &variant in CaixaDialeto::ALL {
4582 let via_trait: std::borrow::Cow<'static, str> =
4583 <std::borrow::Cow<'static, str> as From<CaixaDialeto>>::from(variant);
4584 let via_method: &'static str = variant.as_str();
4585 assert_eq!(
4586 via_trait.as_ref(),
4587 via_method,
4588 "From<CaixaDialeto> for Cow<'static, str> impl must \
4589 round-trip CaixaDialeto::{variant:?} to the same \
4590 PascalCase byte-string CaixaDialeto::as_str returns \
4591 — divergence signals a silent detour off the \
4592 substrate-primitive accessor"
4593 );
4594 assert!(
4595 matches!(via_trait, std::borrow::Cow::Borrowed(_)),
4596 "From<CaixaDialeto> for Cow<'static, str> impl must \
4597 land on the zero-alloc Cow::Borrowed arm on \
4598 CaixaDialeto::{variant:?} — a Cow::Owned outcome \
4599 signals the projection has silently allocated where \
4600 the substrate-primitive CaixaDialeto::as_str \
4601 `&'static str` return makes the borrowed arm the \
4602 type-correct projection"
4603 );
4604 let via_into: std::borrow::Cow<'static, str> = variant.into();
4605 assert_eq!(
4606 via_into.as_ref(),
4607 via_method,
4608 "Into<Cow<'static, str>>::into on \
4609 CaixaDialeto::{variant:?} must byte-equal \
4610 CaixaDialeto::as_str on the same input — the \
4611 blanket-derived Into shape must resolve to the same \
4612 as_str dispatch as the explicit From impl"
4613 );
4614 assert!(
4615 matches!(via_into, std::borrow::Cow::Borrowed(_)),
4616 "Into<Cow<'static, str>>::into on \
4617 CaixaDialeto::{variant:?} must land on the zero-alloc \
4618 Cow::Borrowed arm — the blanket-derived Into shape \
4619 must resolve to the same Cow::Borrowed dispatch as \
4620 the explicit From impl"
4621 );
4622 }
4623 }
4624
4625 #[test]
4626 fn caixa_dialeto_from_into_static_cow_str_agrees_with_paired_axes_on_every_arm() {
4627 // Cross-axis partition pin: the newly lifted trait-idiomatic
4628 // `From<CaixaDialeto> for std::borrow::Cow<'static, str>`
4629 // (this lift), the paired owned-input
4630 // `From<CaixaDialeto> for &'static str`, and the paired
4631 // owned-input `From<CaixaDialeto> for String` forward
4632 // projections must resolve identically on every arm, locking
4633 // the three return-shape paths together by construction so
4634 // any future detour trips at caixa-core test time. Also
4635 // byte-parity witness against the sibling
4636 // [`ToString::to_string`] surface routed through
4637 // [`std::fmt::Display`] — every owned-heap-string path (the
4638 // [`std::borrow::Cow::Owned`] promotion of this axis's
4639 // `.into_owned()`, `From<CaixaDialeto> for String`, and
4640 // `.to_string()`) resolves to the same PascalCase byte-string
4641 // per arm.
4642 //
4643 // Then a `.iter().copied().map(std::borrow::Cow::from)` pipe
4644 // witness over [`super::CaixaDialeto::ALL`] that materializes
4645 // the four-arm accept-set through the
4646 // [`std::borrow::Cow<'static, str>`] axis alone — the exact
4647 // shape a future `axum::response::IntoResponse` per-arm
4648 // rejection-body composer, a future M4
4649 // `mesh.pleme.io/v1alpha1/Manifesto` CR materializer's
4650 // admission-webhook per-arm rejection-reason emitter whose
4651 // typing rules out the sibling [`AsRef<str>`] borrowed
4652 // return, or a future substrate-wide per-arm diagnostic
4653 // surface that binds through a
4654 // [`std::borrow::Cow<'static, str>`] boundary reaches through
4655 // — closing the composable-projection axis on the dialect-
4656 // classification closed-set fieldless typed enum peer. The
4657 // pipe witness also pins the zero-alloc discipline: every
4658 // element in the collected vector satisfies the
4659 // [`std::borrow::Cow::Borrowed`] arm predicate, so a future
4660 // accidental silent-allocation regression on the pipe's
4661 // iteration axis is a caixa-core-test-time failure.
4662 //
4663 // Then a direct round-trip witness through
4664 // [`TryFrom<&str>`] on the projection's
4665 // [`std::borrow::Cow::as_ref`] borrow — unlike the peer
4666 // [`crate::CaixaKind`] axis pair (whose forward emit lands
4667 // on the lowercase Portuguese diagnostic vocabulary while
4668 // the reverse parse lands on the `PascalCase` wire
4669 // vocabulary, forcing the round-trip through an intermediate
4670 // [`crate::CaixaKind::wire_name`] hop),
4671 // [`super::CaixaDialeto`]'s forward emit and reverse parse
4672 // share one `PascalCase` vocabulary by construction, so the
4673 // [`std::borrow::Cow<'static, str>`] projection composes
4674 // directly with the trait-idiomatic reverse [`TryFrom<&str>`]
4675 // axis without the wire-vocab intermediate hop.
4676 for &variant in CaixaDialeto::ALL {
4677 let via_cow: std::borrow::Cow<'static, str> =
4678 <std::borrow::Cow<'static, str> as From<CaixaDialeto>>::from(variant);
4679 let via_static: &'static str = <&'static str as From<CaixaDialeto>>::from(variant);
4680 let via_string: String = <String as From<CaixaDialeto>>::from(variant);
4681 assert_eq!(
4682 via_cow.as_ref(),
4683 via_static,
4684 "From<CaixaDialeto> for Cow<'static, str> and \
4685 From<CaixaDialeto> for &'static str must resolve \
4686 identically on CaixaDialeto::{variant:?} — \
4687 divergence signals the Cow<'static, str> and \
4688 &'static str return-shape paths have drifted onto \
4689 different emit-sets"
4690 );
4691 assert_eq!(
4692 via_cow.as_ref(),
4693 via_string.as_str(),
4694 "From<CaixaDialeto> for Cow<'static, str> and \
4695 From<CaixaDialeto> for String must resolve \
4696 identically on CaixaDialeto::{variant:?} — \
4697 divergence signals the Cow<'static, str> and String \
4698 return-shape paths have drifted onto different \
4699 emit-sets"
4700 );
4701 let via_to_string: String = variant.to_string();
4702 assert_eq!(
4703 via_cow.as_ref(),
4704 via_to_string.as_str(),
4705 "From<CaixaDialeto> for Cow<'static, str> must \
4706 byte-equal CaixaDialeto::to_string on \
4707 CaixaDialeto::{variant:?} — divergence signals the \
4708 trait-idiomatic Cow<'static, str> forward-projection \
4709 axis and the ToString-through-Display axis have \
4710 drifted onto different emit-sets"
4711 );
4712 }
4713 let via_iter: Vec<std::borrow::Cow<'static, str>> = CaixaDialeto::ALL
4714 .iter()
4715 .copied()
4716 .map(std::borrow::Cow::from)
4717 .collect();
4718 let via_method: Vec<std::borrow::Cow<'static, str>> = CaixaDialeto::ALL
4719 .iter()
4720 .map(|d| std::borrow::Cow::Borrowed(d.as_str()))
4721 .collect();
4722 assert_eq!(
4723 via_iter, via_method,
4724 "`.iter().copied().map(Cow::from)` over \
4725 CaixaDialeto::ALL must byte-equal `.iter().map(|d| \
4726 Cow::Borrowed(d.as_str()))` on every arm — the \
4727 trait-idiomatic `From<CaixaDialeto> for Cow<'static, \
4728 str>` axis is what makes the `Cow::from` composition \
4729 route through the substrate-primitive \
4730 CaixaDialeto::as_str accessor rather than a per-call-\
4731 site open-code"
4732 );
4733 for cow in &via_iter {
4734 assert!(
4735 matches!(cow, std::borrow::Cow::Borrowed(_)),
4736 "`.iter().copied().map(Cow::from)` over \
4737 CaixaDialeto::ALL must land on the zero-alloc \
4738 Cow::Borrowed arm on every element — a Cow::Owned \
4739 outcome signals the pipe has silently allocated \
4740 where the substrate-primitive \
4741 CaixaDialeto::as_str `&'static str` return makes \
4742 the borrowed arm the type-correct projection"
4743 );
4744 }
4745 for &variant in CaixaDialeto::ALL {
4746 let via_cow: std::borrow::Cow<'static, str> =
4747 <std::borrow::Cow<'static, str> as From<CaixaDialeto>>::from(variant);
4748 let re_parsed: Result<CaixaDialeto, ()> =
4749 <CaixaDialeto as TryFrom<&str>>::try_from(via_cow.as_ref());
4750 assert_eq!(
4751 re_parsed,
4752 Ok(variant),
4753 "trait-idiomatic Cow<'static, str> forward-projection \
4754 + reverse-projection axis pair must round-trip \
4755 CaixaDialeto::{variant:?} through `.into::<Cow<\
4756 'static, str>>()` on the owned-input surface and \
4757 back through `TryFrom<&str>` on the projection's \
4758 Cow::as_ref borrow — a break signals the \
4759 Cow<'static, str> forward-emit and reverse-parse \
4760 axes have drifted onto different vocabularies \
4761 (unlike the peer CaixaKind axis pair, CaixaDialeto's \
4762 forward emit and reverse parse share one PascalCase \
4763 vocabulary by construction, so the round-trip \
4764 composes directly)"
4765 );
4766 }
4767 }
4768
4769 #[test]
4770 fn caixa_dialeto_from_borrowed_into_static_cow_str_routes_through_as_str_accessor() {
4771 // Fail-before-pass-after byte-parity pin on the newly lifted
4772 // `impl From<&CaixaDialeto> for std::borrow::Cow<'static,
4773 // str>` — asserts the borrowed-input standard-library trait
4774 // impl and the substrate-primitive
4775 // [`super::CaixaDialeto::as_str`] `pub const fn` accessor
4776 // resolve to the same four-arm PascalCase emit-set across
4777 // every arm the exhaustive [`super::CaixaDialeto::ALL`] slice
4778 // enumerates. Rust's standard library does not carry a blanket
4779 // `impl<T: AsRef<str>> From<&T> for Cow<'static, str>` (nor a
4780 // `Copy`-based `impl<T: Copy, U: From<T>> From<&T> for U`), so
4781 // the borrowed-input `Cow<'static, str>` forward-projection
4782 // axis is a distinct trait-idiomatic surface that a
4783 // `let key: Cow<'static, str> = (&dialeto).into();`-shaped
4784 // call site or a `CaixaDialeto::ALL.iter().map(Cow::from)`-
4785 // shaped pipe reaches through this impl and no other — the
4786 // paired owned-input `From<CaixaDialeto> for Cow<'static, str>`
4787 // impl (8322511) forces every borrowed-input call site
4788 // through an explicit `Copy` deref (`Cow::from(*dialeto)`) or
4789 // a `Cow::Borrowed(dialeto.as_str())` open-code whose type
4790 // bounds have no compile-time link back to the substrate
4791 // primitive.
4792 //
4793 // Also asserts the projection lands on the zero-alloc
4794 // [`std::borrow::Cow::Borrowed`] arm (not the
4795 // [`std::borrow::Cow::Owned`] arm) — the substrate-primitive
4796 // [`super::CaixaDialeto::as_str`] accessor's `&'static str`
4797 // return lifetime by construction makes the borrowed arm the
4798 // type-correct projection with no runtime allocation on the
4799 // borrowed-input surface just as on the paired owned-input
4800 // surface.
4801 //
4802 // Closes the `{Self, &Self}` input-shape corner on the
4803 // outside-M3 caixa-core dialect-classification
4804 // [`Cow<'static, str>`] axis on the second outside-M3
4805 // caixa-core closed-set fieldless typed enum peer on the
4806 // caixa surface, exactly as 702cdf4 closed it on the first
4807 // outside-M3 caixa-core peer ([`crate::dep::DepList`]) one
4808 // commit after the owning half (6858bac) landed, as afdf0f4
4809 // closed it on the second M3-mesh-primitive peer
4810 // ([`crate::aplicacao::PlacementStrategy`]) one commit after
4811 // the owning half (eee504d) landed, as 25690ef closed it on
4812 // the first M3-mesh-primitive peer
4813 // ([`crate::aplicacao::WitShape`]) one commit after the
4814 // owning half (8634dec) landed, as d45c409 closed it on the
4815 // top-level [`crate::CaixaKind`] one commit after the owning
4816 // half (99c1735) landed, and as 9b3e4b3 / ee577fd closed it
4817 // on the M2 OTP-shape [`crate::supervisor::RestartStrategy`]
4818 // / [`crate::supervisor::RestartPolicy`] sibling peers one
4819 // commit after (7dd28b3 / 0612398) landed.
4820 for &variant in CaixaDialeto::ALL {
4821 let via_trait: std::borrow::Cow<'static, str> =
4822 <std::borrow::Cow<'static, str> as From<&CaixaDialeto>>::from(&variant);
4823 let via_method: &'static str = variant.as_str();
4824 assert_eq!(
4825 via_trait.as_ref(),
4826 via_method,
4827 "From<&CaixaDialeto> for Cow<'static, str> impl must \
4828 round-trip &CaixaDialeto::{variant:?} to the same \
4829 PascalCase byte-string CaixaDialeto::as_str returns \
4830 — divergence signals a silent detour off the \
4831 substrate-primitive accessor"
4832 );
4833 assert!(
4834 matches!(via_trait, std::borrow::Cow::Borrowed(_)),
4835 "From<&CaixaDialeto> for Cow<'static, str> impl must \
4836 land on the zero-alloc Cow::Borrowed arm on \
4837 &CaixaDialeto::{variant:?} — a Cow::Owned outcome \
4838 signals the projection has silently allocated where \
4839 the substrate-primitive CaixaDialeto::as_str \
4840 `&'static str` return makes the borrowed arm the \
4841 type-correct projection"
4842 );
4843 let via_into: std::borrow::Cow<'static, str> = (&variant).into();
4844 assert_eq!(
4845 via_into.as_ref(),
4846 via_method,
4847 "Into<Cow<'static, str>>::into on \
4848 &CaixaDialeto::{variant:?} must byte-equal \
4849 CaixaDialeto::as_str on the same input — the \
4850 blanket-derived Into shape on the borrowed-input \
4851 surface must resolve to the same as_str dispatch as \
4852 the explicit From impl"
4853 );
4854 assert!(
4855 matches!(via_into, std::borrow::Cow::Borrowed(_)),
4856 "Into<Cow<'static, str>>::into on \
4857 &CaixaDialeto::{variant:?} must land on the \
4858 zero-alloc Cow::Borrowed arm — the blanket-derived \
4859 Into shape on the borrowed-input surface must \
4860 resolve to the same Cow::Borrowed dispatch as the \
4861 explicit From impl"
4862 );
4863 }
4864 }
4865
4866 #[test]
4867 #[allow(
4868 clippy::too_many_lines,
4869 reason = "cross-axis partition pin folds four return-shape paths \
4870 (borrowed-input Cow<'static, str>, owned-input Cow<'static, str>, \
4871 borrowed-input &'static str, borrowed-input String) plus the \
4872 ToString-through-Display witness plus a `.iter().map(Cow::from)` \
4873 pipe witness with zero-alloc discriminator plus a direct \
4874 round-trip witness through TryFrom<&str> over four typed \
4875 variants; the linear per-axis repetition is exactly what the \
4876 fold is pinning — a helper would hide the shape it locks"
4877 )]
4878 fn caixa_dialeto_from_borrowed_into_static_cow_str_agrees_with_paired_axes_on_every_arm() {
4879 // Cross-axis partition pin: the newly lifted trait-idiomatic
4880 // borrowed-input `From<&CaixaDialeto> for
4881 // std::borrow::Cow<'static, str>` (this lift), the paired
4882 // owned-input `From<CaixaDialeto> for
4883 // std::borrow::Cow<'static, str>`, the paired borrowed-input
4884 // `From<&CaixaDialeto> for &'static str`, and the paired
4885 // borrowed-input `From<&CaixaDialeto> for String` forward
4886 // projections must resolve identically on every arm, locking
4887 // the four return-shape paths together by construction so any
4888 // future detour trips at caixa-core test time. Also
4889 // byte-parity witness against the sibling
4890 // [`ToString::to_string`] surface routed through
4891 // [`std::fmt::Display`].
4892 //
4893 // Then a `.iter().map(std::borrow::Cow::from)` pipe witness
4894 // over [`super::CaixaDialeto::ALL`] — whose iterator yields
4895 // `&CaixaDialeto` by construction, so the borrowed-input
4896 // [`std::borrow::Cow<'static, str>`] axis is what routes the
4897 // pipe through the substrate-primitive
4898 // [`super::CaixaDialeto::as_str`] accessor with the zero-alloc
4899 // [`std::borrow::Cow::Borrowed`] arm and without a spurious
4900 // [`Copy`] deref. Every collected element satisfies the
4901 // [`std::borrow::Cow::Borrowed`]-arm predicate so a future
4902 // accidental silent-allocation regression on the pipe's
4903 // iteration axis is a caixa-core-test-time failure.
4904 //
4905 // Then a direct round-trip witness through [`TryFrom<&str>`]
4906 // on the projection's [`std::borrow::Cow::as_ref`] borrow —
4907 // unlike the peer [`crate::CaixaKind`] axis pair (whose
4908 // forward emit lands on the lowercase Portuguese diagnostic
4909 // vocabulary while the reverse parse lands on the
4910 // `PascalCase` wire vocabulary, forcing the round-trip
4911 // through an intermediate [`crate::CaixaKind::wire_name`]
4912 // hop), [`super::CaixaDialeto`]'s forward emit and reverse
4913 // parse share one `PascalCase` vocabulary by construction, so
4914 // the borrowed-input [`std::borrow::Cow<'static, str>`]
4915 // projection composes directly with the trait-idiomatic
4916 // reverse [`TryFrom<&str>`] axis without the wire-vocab
4917 // intermediate hop.
4918 for &variant in CaixaDialeto::ALL {
4919 let via_borrowed_cow: std::borrow::Cow<'static, str> =
4920 <std::borrow::Cow<'static, str> as From<&CaixaDialeto>>::from(&variant);
4921 let via_owned_cow: std::borrow::Cow<'static, str> =
4922 <std::borrow::Cow<'static, str> as From<CaixaDialeto>>::from(variant);
4923 let via_borrowed_static: &'static str =
4924 <&'static str as From<&CaixaDialeto>>::from(&variant);
4925 let via_borrowed_string: String = <String as From<&CaixaDialeto>>::from(&variant);
4926 assert_eq!(
4927 via_borrowed_cow.as_ref(),
4928 via_owned_cow.as_ref(),
4929 "From<&CaixaDialeto> for Cow<'static, str> and \
4930 From<CaixaDialeto> for Cow<'static, str> must \
4931 resolve identically on CaixaDialeto::{variant:?} — \
4932 divergence signals the borrowed-input and \
4933 owned-input Cow<'static, str> return-shape paths \
4934 have drifted onto different emit-sets"
4935 );
4936 assert_eq!(
4937 via_borrowed_cow.as_ref(),
4938 via_borrowed_static,
4939 "From<&CaixaDialeto> for Cow<'static, str> and \
4940 From<&CaixaDialeto> for &'static str must resolve \
4941 identically on CaixaDialeto::{variant:?} — \
4942 divergence signals the borrowed-input Cow<'static, \
4943 str> and borrowed-input &'static str return-shape \
4944 paths have drifted onto different emit-sets"
4945 );
4946 assert_eq!(
4947 via_borrowed_cow.as_ref(),
4948 via_borrowed_string.as_str(),
4949 "From<&CaixaDialeto> for Cow<'static, str> and \
4950 From<&CaixaDialeto> for String must resolve \
4951 identically on CaixaDialeto::{variant:?} — \
4952 divergence signals the borrowed-input Cow<'static, \
4953 str> and borrowed-input String return-shape paths \
4954 have drifted onto different emit-sets"
4955 );
4956 let via_to_string: String = variant.to_string();
4957 assert_eq!(
4958 via_borrowed_cow.as_ref(),
4959 via_to_string.as_str(),
4960 "From<&CaixaDialeto> for Cow<'static, str> must \
4961 byte-equal CaixaDialeto::to_string on \
4962 CaixaDialeto::{variant:?} — divergence signals the \
4963 borrowed-input Cow<'static, str> forward-projection \
4964 axis and the ToString-through-Display axis have \
4965 drifted onto different emit-sets"
4966 );
4967 }
4968 let via_iter: Vec<std::borrow::Cow<'static, str>> = CaixaDialeto::ALL
4969 .iter()
4970 .map(std::borrow::Cow::from)
4971 .collect();
4972 let via_method: Vec<std::borrow::Cow<'static, str>> = CaixaDialeto::ALL
4973 .iter()
4974 .map(|d| std::borrow::Cow::Borrowed(d.as_str()))
4975 .collect();
4976 assert_eq!(
4977 via_iter, via_method,
4978 "`.iter().map(Cow::from)` over CaixaDialeto::ALL must \
4979 byte-equal `.iter().map(|d| Cow::Borrowed(d.as_str()))` \
4980 on every arm — the trait-idiomatic `From<&CaixaDialeto> \
4981 for Cow<'static, str>` axis is what makes the \
4982 `Cow::from` composition on the borrowed-iteration axis \
4983 route through the substrate-primitive \
4984 CaixaDialeto::as_str accessor without a spurious Copy \
4985 deref"
4986 );
4987 for cow in &via_iter {
4988 assert!(
4989 matches!(cow, std::borrow::Cow::Borrowed(_)),
4990 "`.iter().map(Cow::from)` over CaixaDialeto::ALL \
4991 must land on the zero-alloc Cow::Borrowed arm on \
4992 every element — a Cow::Owned outcome signals the \
4993 borrowed-iteration pipe has silently allocated \
4994 where the substrate-primitive CaixaDialeto::as_str \
4995 `&'static str` return makes the borrowed arm the \
4996 type-correct projection"
4997 );
4998 }
4999 for &variant in CaixaDialeto::ALL {
5000 let via_cow: std::borrow::Cow<'static, str> =
5001 <std::borrow::Cow<'static, str> as From<&CaixaDialeto>>::from(&variant);
5002 let re_parsed: Result<CaixaDialeto, ()> =
5003 <CaixaDialeto as TryFrom<&str>>::try_from(via_cow.as_ref());
5004 assert_eq!(
5005 re_parsed,
5006 Ok(variant),
5007 "trait-idiomatic borrowed-input Cow<'static, str> \
5008 forward-projection + reverse-projection axis pair \
5009 must round-trip &CaixaDialeto::{variant:?} through \
5010 `.into::<Cow<'static, str>>()` on the borrowed-input \
5011 surface and back through `TryFrom<&str>` on the \
5012 projection's Cow::as_ref borrow — a break signals \
5013 the borrowed-input Cow<'static, str> forward-emit \
5014 and reverse-parse axes have drifted onto different \
5015 vocabularies (unlike the peer CaixaKind axis pair, \
5016 CaixaDialeto's forward emit and reverse parse share \
5017 one PascalCase vocabulary by construction, so the \
5018 round-trip composes directly)"
5019 );
5020 }
5021 }
5022
5023 #[test]
5024 fn caixa_dialeto_from_into_box_str_routes_through_as_str_accessor() {
5025 // Fail-before-pass-after byte-parity pin on the newly lifted
5026 // `impl From<CaixaDialeto> for Box<str>` — asserts the owned-
5027 // input standard-library trait impl and the substrate-primitive
5028 // [`super::CaixaDialeto::as_str`] `pub const fn` accessor
5029 // resolve to the same four-arm PascalCase emit-set across every
5030 // arm the exhaustive [`super::CaixaDialeto::ALL`] slice
5031 // enumerates. Extends the caixa-core-internal tier of the
5032 // substrate-wide [`Box<str>`] forward-projection campaign onto
5033 // the third caixa-core-internal peer, after the render-side
5034 // path-shape-diagnostic
5035 // [`super::super::render::PathShapeViolation`] pair (0d87a72,
5036 // both corners in one axis) opened the tier and the outside-M3
5037 // caixa-core two-list dep-graph [`super::super::dep::DepList`]
5038 // pair (4aada99, both corners in one axis) extended it. Rust's
5039 // standard library carries `impl From<&str> for Box<str>` and
5040 // `impl From<String> for Box<str>` but no blanket
5041 // `impl<T: AsRef<str>> From<T> for Box<str>`, so this axis is a
5042 // distinct trait-idiomatic surface that a
5043 // `let key: Box<str> = dialeto.into();`-shaped call site reaches
5044 // through this impl and no other — a paired
5045 // `Box::from(dialeto.as_str())` open-code has no compile-time
5046 // link back to the substrate primitive.
5047 for &variant in CaixaDialeto::ALL {
5048 let via_trait: Box<str> = <Box<str> as From<CaixaDialeto>>::from(variant);
5049 let via_method: &'static str = variant.as_str();
5050 assert_eq!(
5051 via_trait.as_ref(),
5052 via_method,
5053 "From<CaixaDialeto> for Box<str> impl must round-trip \
5054 CaixaDialeto::{variant:?} to the same PascalCase \
5055 byte-string CaixaDialeto::as_str returns — divergence \
5056 signals a silent detour off the substrate-primitive \
5057 accessor"
5058 );
5059 let via_into: Box<str> = variant.into();
5060 assert_eq!(
5061 via_into.as_ref(),
5062 via_method,
5063 "Into<Box<str>>::into on CaixaDialeto::{variant:?} must \
5064 byte-equal CaixaDialeto::as_str on the same input — \
5065 the blanket-derived Into shape must resolve to the \
5066 same as_str dispatch as the explicit From impl"
5067 );
5068 }
5069 }
5070
5071 #[test]
5072 fn caixa_dialeto_from_borrowed_into_box_str_routes_through_as_str_accessor() {
5073 // Fail-before-pass-after byte-parity pin on the newly lifted
5074 // `impl From<&CaixaDialeto> for Box<str>` — asserts the
5075 // borrowed-input standard-library trait impl and the substrate-
5076 // primitive [`super::CaixaDialeto::as_str`] `pub const fn`
5077 // accessor resolve to the same four-arm PascalCase emit-set
5078 // across every arm the exhaustive [`super::CaixaDialeto::ALL`]
5079 // slice enumerates. Rust's standard library carries
5080 // `impl From<&str> for Box<str>` and `impl From<String> for
5081 // Box<str>` but no blanket
5082 // `impl<T: AsRef<str>> From<&T> for Box<str>` (nor a `Copy`-
5083 // based `impl<T: Copy, U: From<T>> From<&T> for U`), so the
5084 // borrowed-input [`Box<str>`] forward-projection axis is a
5085 // distinct trait-idiomatic surface that a
5086 // `CaixaDialeto::ALL.iter().map(Box::<str>::from)`-shaped pipe
5087 // (whose iterator over `&'static [CaixaDialeto]` yields
5088 // `&CaixaDialeto` by construction) or a
5089 // `let key: Box<str> = (&dialeto).into();`-shaped call site
5090 // reaches through this impl and no other — the paired owned-
5091 // input `From<CaixaDialeto> for Box<str>` impl alone would
5092 // force every borrowed-input call site through an explicit
5093 // `Copy` deref (`Box::<str>::from(*dialeto)`) or a
5094 // `Box::<str>::from(dialeto.as_str())` open-code whose type
5095 // bounds have no compile-time link back to the substrate
5096 // primitive.
5097 //
5098 // Closes the `{Self, &Self}` input-shape corner on the third
5099 // caixa-core-internal closed-set fieldless typed enum peer of
5100 // the substrate-wide [`Box<str>`] forward-projection campaign,
5101 // matching the trajectory the paired render-side path-shape-
5102 // diagnostic [`super::super::render::PathShapeViolation`] pair
5103 // (0d87a72, both corners in one axis) and the paired outside-M3
5104 // caixa-core two-list dep-graph [`super::super::dep::DepList`]
5105 // pair (4aada99, both corners in one axis) walked before it.
5106 for &variant in CaixaDialeto::ALL {
5107 let via_trait: Box<str> = <Box<str> as From<&CaixaDialeto>>::from(&variant);
5108 let via_method: &'static str = variant.as_str();
5109 assert_eq!(
5110 via_trait.as_ref(),
5111 via_method,
5112 "From<&CaixaDialeto> for Box<str> impl must round-trip \
5113 &CaixaDialeto::{variant:?} to the same PascalCase \
5114 byte-string CaixaDialeto::as_str returns — divergence \
5115 signals a silent detour off the substrate-primitive \
5116 accessor"
5117 );
5118 let via_into: Box<str> = (&variant).into();
5119 assert_eq!(
5120 via_into.as_ref(),
5121 via_method,
5122 "Into<Box<str>>::into on &CaixaDialeto::{variant:?} \
5123 must byte-equal CaixaDialeto::as_str on the same \
5124 input — the blanket-derived Into shape on the \
5125 borrowed-input surface must resolve to the same \
5126 as_str dispatch as the explicit From impl"
5127 );
5128 }
5129
5130 // Pipe witness — the distinguishing shape that forces the
5131 // borrowed-input axis to be independent of the owned-input
5132 // peer. `CaixaDialeto::ALL.iter()` yields `&CaixaDialeto` by
5133 // construction, so `.map(Box::<str>::from)` resolves through
5134 // the borrowed-input `From<&CaixaDialeto> for Box<str>` impl
5135 // and no other — without this axis, the same pipe would force
5136 // an explicit `.copied()` restatement whose type bounds bypass
5137 // the substrate primitive.
5138 let via_pipe: Vec<Box<str>> = CaixaDialeto::ALL.iter().map(Box::<str>::from).collect();
5139 let via_accessor: Vec<&'static str> =
5140 CaixaDialeto::ALL.iter().map(|d| d.as_str()).collect();
5141 assert_eq!(
5142 via_pipe.len(),
5143 via_accessor.len(),
5144 "CaixaDialeto::ALL.iter().map(Box::<str>::from) pipe must \
5145 preserve arity against the paired CaixaDialeto::as_str \
5146 accessor — a length divergence signals the borrowed-input \
5147 axis has silently rejected an arm"
5148 );
5149 for (pipe_arm, accessor_arm) in via_pipe.iter().zip(via_accessor.iter()) {
5150 assert_eq!(
5151 pipe_arm.as_ref(),
5152 *accessor_arm,
5153 "CaixaDialeto::ALL.iter().map(Box::<str>::from) pipe \
5154 must byte-equal the paired \
5155 CaixaDialeto::ALL.iter().map(|d| d.as_str()) pipe on \
5156 every arm — divergence signals the borrowed-input \
5157 `From<&CaixaDialeto> for Box<str>` axis has silently \
5158 detoured off the substrate-primitive accessor"
5159 );
5160 }
5161 }
5162
5163 #[test]
5164 fn caixa_dialeto_from_into_arc_str_routes_through_as_str_accessor() {
5165 // Fail-before-pass-after byte-parity pin on the newly lifted
5166 // `impl From<CaixaDialeto> for std::sync::Arc<str>` — asserts the
5167 // owned-input standard-library trait impl and the substrate-
5168 // primitive [`super::CaixaDialeto::as_str`] `pub const fn` accessor
5169 // resolve to the same four-arm PascalCase emit-set across every
5170 // arm the exhaustive [`super::CaixaDialeto::ALL`] slice enumerates.
5171 // Extends the caixa-core-internal tier of the substrate-wide
5172 // [`std::sync::Arc<str>`] forward-projection campaign onto the
5173 // third caixa-core-internal peer, after the structurally most
5174 // fundamental [`super::super::CaixaKind`] pair (c17be64, both
5175 // corners in one axis) opened the tier and the outside-M3 two-list
5176 // dep-graph [`super::super::dep::DepList`] pair (d8a4652, both
5177 // corners in one axis) extended it. Rust's standard library
5178 // carries `impl From<&str> for std::sync::Arc<str>` and
5179 // `impl From<String> for std::sync::Arc<str>` but no blanket
5180 // `impl<T: AsRef<str>> From<T> for std::sync::Arc<str>` (nor an
5181 // `impl<T: fmt::Display> From<T> for std::sync::Arc<str>`), so
5182 // this axis is a distinct trait-idiomatic surface that a
5183 // `let key: std::sync::Arc<str> = dialeto.into();`-shaped call
5184 // site reaches through this impl and no other — a paired
5185 // `std::sync::Arc::<str>::from(dialeto.as_str())` open-code has no
5186 // compile-time link back to the substrate primitive, and a two-
5187 // step `std::sync::Arc::<str>::from(String::from(dialeto))`
5188 // composition through the owned-`String` axis allocates twice
5189 // where the single-step trait impl allocates once.
5190 //
5191 // Cross-axis byte-parity witness against the sibling owned-input
5192 // `{&'static str, String, Cow<'static, str>, Box<str>}` return-
5193 // shape axes — locking the five return-shape paths on the owned-
5194 // input surface together by construction so any future detour off
5195 // the substrate-primitive [`super::CaixaDialeto::as_str`] accessor
5196 // trips at caixa-core test time.
5197 for &variant in CaixaDialeto::ALL {
5198 let via_trait: std::sync::Arc<str> =
5199 <std::sync::Arc<str> as From<CaixaDialeto>>::from(variant);
5200 let via_method: &'static str = variant.as_str();
5201 assert_eq!(
5202 via_trait.as_ref(),
5203 via_method,
5204 "From<CaixaDialeto> for std::sync::Arc<str> impl must \
5205 round-trip CaixaDialeto::{variant:?} to the same \
5206 PascalCase byte-string CaixaDialeto::as_str returns — \
5207 divergence signals a silent detour off the substrate-\
5208 primitive accessor"
5209 );
5210 let via_into: std::sync::Arc<str> = variant.into();
5211 assert_eq!(
5212 via_into.as_ref(),
5213 via_method,
5214 "Into<std::sync::Arc<str>>::into on CaixaDialeto::\
5215 {variant:?} must byte-equal CaixaDialeto::as_str on the \
5216 same input — the blanket-derived Into shape must resolve \
5217 to the same as_str dispatch as the explicit From impl"
5218 );
5219 let owned_static: &'static str = <&'static str as From<CaixaDialeto>>::from(variant);
5220 assert_eq!(
5221 via_trait.as_ref(),
5222 owned_static,
5223 "From<CaixaDialeto> for std::sync::Arc<str> and \
5224 From<CaixaDialeto> for &'static str must resolve \
5225 identically on CaixaDialeto::{variant:?} — divergence \
5226 signals the owned-input std::sync::Arc<str> and \
5227 &'static str return-shape paths have drifted onto \
5228 different emit-sets"
5229 );
5230 let owned_string: String = <String as From<CaixaDialeto>>::from(variant);
5231 assert_eq!(
5232 via_trait.as_ref(),
5233 owned_string.as_str(),
5234 "From<CaixaDialeto> for std::sync::Arc<str> and \
5235 From<CaixaDialeto> for String must resolve identically \
5236 on CaixaDialeto::{variant:?} — divergence signals the \
5237 owned-input std::sync::Arc<str> and owned-`String` \
5238 return-shape paths have drifted onto different emit-sets"
5239 );
5240 let owned_cow: std::borrow::Cow<'static, str> =
5241 <std::borrow::Cow<'static, str> as From<CaixaDialeto>>::from(variant);
5242 assert_eq!(
5243 via_trait.as_ref(),
5244 owned_cow.as_ref(),
5245 "From<CaixaDialeto> for std::sync::Arc<str> and \
5246 From<CaixaDialeto> for Cow<'static, str> must resolve \
5247 identically on CaixaDialeto::{variant:?} — divergence \
5248 signals the owned-input std::sync::Arc<str> and \
5249 Cow<'static, str> return-shape paths have drifted onto \
5250 different emit-sets"
5251 );
5252 let owned_box: Box<str> = <Box<str> as From<CaixaDialeto>>::from(variant);
5253 assert_eq!(
5254 via_trait.as_ref(),
5255 owned_box.as_ref(),
5256 "From<CaixaDialeto> for std::sync::Arc<str> and \
5257 From<CaixaDialeto> for Box<str> must resolve identically \
5258 on CaixaDialeto::{variant:?} — divergence signals the \
5259 owned-input std::sync::Arc<str> and Box<str> return-\
5260 shape paths have drifted onto different emit-sets"
5261 );
5262 }
5263 }
5264
5265 #[test]
5266 #[allow(
5267 clippy::too_many_lines,
5268 reason = "cross-axis partition pin folds four borrowed-input \
5269 return-shape paths (&'static str, String, Cow<'static, \
5270 str>, Box<str>) plus the paired owned-input Arc<str> \
5271 witness and the .iter().map(std::sync::Arc::<str>::from) \
5272 pipe witness into one exhaustive round-trip over \
5273 CaixaDialeto::ALL — the accepted line-count cost of \
5274 keying the whole borrowed-input Arc<str> corner to the \
5275 substrate-primitive as_str accessor at the same test-site"
5276 )]
5277 fn caixa_dialeto_from_borrowed_into_arc_str_routes_through_as_str_accessor() {
5278 // Fail-before-pass-after byte-parity pin on the newly lifted
5279 // `impl From<&CaixaDialeto> for std::sync::Arc<str>` — asserts the
5280 // borrowed-input standard-library trait impl and the substrate-
5281 // primitive [`super::CaixaDialeto::as_str`] `pub const fn` accessor
5282 // resolve to the same four-arm PascalCase emit-set across every
5283 // arm the exhaustive [`super::CaixaDialeto::ALL`] slice enumerates.
5284 // Rust's standard library does not carry a blanket
5285 // `impl<T: AsRef<str>> From<&T> for std::sync::Arc<str>` (nor a
5286 // `Copy`-based `impl<T: Copy, U: From<T>> From<&T> for U`), so
5287 // the borrowed-input `std::sync::Arc<str>` forward-projection axis
5288 // is a distinct trait-idiomatic surface that a
5289 // `let key: std::sync::Arc<str> = (&dialeto).into();`-shaped call
5290 // site or a
5291 // `CaixaDialeto::ALL.iter().map(std::sync::Arc::<str>::from)`-shaped
5292 // pipe reaches through this impl and no other — the paired owned-
5293 // input `From<CaixaDialeto> for std::sync::Arc<str>` impl alone
5294 // forces every borrowed-input call site through a spurious `Copy`
5295 // deref (`std::sync::Arc::<str>::from((*dialeto).as_str())`) or a
5296 // `.copied()` restatement whose type bounds have no compile-time
5297 // link back to the substrate primitive.
5298 //
5299 // Closes the `{Self, &Self}` input-shape corner on the caixa-
5300 // core-internal tier of the substrate-wide trait-idiomatic
5301 // [`std::sync::Arc<str>`] forward-projection campaign for the
5302 // third caixa-core-internal enum peer, matching the
5303 // `{Self, &Self} × {&'static str, String, Cow<'static, str>,
5304 // Box<str>}` 2×4 forward-projection matrix the peer projection
5305 // surfaces already close on this same enum.
5306 //
5307 // Cross-axis partition pin against the paired owned-input
5308 // [`From<CaixaDialeto> for std::sync::Arc<str>`] and the sibling
5309 // borrowed-input `{&'static str, String, Cow<'static, str>,
5310 // Box<str>}` return-shape axes — locking the five return-shape ×
5311 // input-shape paths on the borrowed-input surface together by
5312 // construction so any future detour off the substrate-primitive
5313 // accessor trips at caixa-core test time. Then a
5314 // `.iter().map(std::sync::Arc::<str>::from)` pipe witness over
5315 // [`super::CaixaDialeto::ALL`] — whose iterator yields
5316 // `&CaixaDialeto` by construction, so the borrowed-input
5317 // [`std::sync::Arc<str>`] axis is what routes the pipe through the
5318 // substrate-primitive [`super::CaixaDialeto::as_str`] accessor
5319 // without a spurious [`Copy`] deref (which would only be reachable
5320 // through the owned-input
5321 // [`From<CaixaDialeto> for std::sync::Arc<str>`] axis by first
5322 // calling `.copied()` on the iterator).
5323 for &variant in CaixaDialeto::ALL {
5324 let via_trait: std::sync::Arc<str> =
5325 <std::sync::Arc<str> as From<&CaixaDialeto>>::from(&variant);
5326 let via_method: &'static str = variant.as_str();
5327 assert_eq!(
5328 via_trait.as_ref(),
5329 via_method,
5330 "From<&CaixaDialeto> for std::sync::Arc<str> impl must \
5331 round-trip &CaixaDialeto::{variant:?} to the same \
5332 PascalCase byte-string CaixaDialeto::as_str returns — \
5333 divergence signals a silent detour off the substrate-\
5334 primitive accessor"
5335 );
5336 let via_into: std::sync::Arc<str> = (&variant).into();
5337 assert_eq!(
5338 via_into.as_ref(),
5339 via_method,
5340 "Into<std::sync::Arc<str>>::into on &CaixaDialeto::\
5341 {variant:?} must byte-equal CaixaDialeto::as_str on the \
5342 same input — the blanket-derived Into shape on the \
5343 borrowed-input surface must resolve to the same as_str \
5344 dispatch as the explicit From impl"
5345 );
5346 let owned_arc: std::sync::Arc<str> =
5347 <std::sync::Arc<str> as From<CaixaDialeto>>::from(variant);
5348 assert_eq!(
5349 via_trait, owned_arc,
5350 "From<&CaixaDialeto> for std::sync::Arc<str> and \
5351 From<CaixaDialeto> for std::sync::Arc<str> must resolve \
5352 identically on CaixaDialeto::{variant:?} — divergence \
5353 signals the borrowed-input and owned-input \
5354 std::sync::Arc<str> forward-projection input-shape paths \
5355 have drifted onto different emit-sets"
5356 );
5357 let borrowed_static: &'static str =
5358 <&'static str as From<&CaixaDialeto>>::from(&variant);
5359 assert_eq!(
5360 via_trait.as_ref(),
5361 borrowed_static,
5362 "From<&CaixaDialeto> for std::sync::Arc<str> and \
5363 From<&CaixaDialeto> for &'static str must resolve \
5364 identically on CaixaDialeto::{variant:?} — divergence \
5365 signals the borrowed-input std::sync::Arc<str> and \
5366 &'static str return-shape paths have drifted onto \
5367 different emit-sets"
5368 );
5369 let borrowed_string: String = <String as From<&CaixaDialeto>>::from(&variant);
5370 assert_eq!(
5371 via_trait.as_ref(),
5372 borrowed_string.as_str(),
5373 "From<&CaixaDialeto> for std::sync::Arc<str> and \
5374 From<&CaixaDialeto> for String must resolve identically \
5375 on CaixaDialeto::{variant:?} — divergence signals the \
5376 borrowed-input std::sync::Arc<str> and owned-`String` \
5377 return-shape paths have drifted onto different emit-sets"
5378 );
5379 let borrowed_cow: std::borrow::Cow<'static, str> =
5380 <std::borrow::Cow<'static, str> as From<&CaixaDialeto>>::from(&variant);
5381 assert_eq!(
5382 via_trait.as_ref(),
5383 borrowed_cow.as_ref(),
5384 "From<&CaixaDialeto> for std::sync::Arc<str> and \
5385 From<&CaixaDialeto> for Cow<'static, str> must resolve \
5386 identically on CaixaDialeto::{variant:?} — divergence \
5387 signals the borrowed-input std::sync::Arc<str> and \
5388 Cow<'static, str> return-shape paths have drifted onto \
5389 different emit-sets"
5390 );
5391 let borrowed_box: Box<str> = <Box<str> as From<&CaixaDialeto>>::from(&variant);
5392 assert_eq!(
5393 via_trait.as_ref(),
5394 borrowed_box.as_ref(),
5395 "From<&CaixaDialeto> for std::sync::Arc<str> and \
5396 From<&CaixaDialeto> for Box<str> must resolve \
5397 identically on CaixaDialeto::{variant:?} — divergence \
5398 signals the borrowed-input std::sync::Arc<str> and \
5399 Box<str> return-shape paths have drifted onto different \
5400 emit-sets"
5401 );
5402 }
5403 let via_iter: Vec<std::sync::Arc<str>> = CaixaDialeto::ALL
5404 .iter()
5405 .map(std::sync::Arc::<str>::from)
5406 .collect();
5407 let via_method: Vec<std::sync::Arc<str>> = CaixaDialeto::ALL
5408 .iter()
5409 .map(|d| std::sync::Arc::<str>::from(d.as_str()))
5410 .collect();
5411 assert_eq!(
5412 via_iter, via_method,
5413 "`.iter().map(std::sync::Arc::<str>::from)` over \
5414 CaixaDialeto::ALL — a call site whose iteration axis holds \
5415 `&CaixaDialeto` by construction — must byte-equal \
5416 `.iter().map(|d| std::sync::Arc::<str>::from(d.as_str()))` \
5417 on every arm — the borrowed-input std::sync::Arc<str> \
5418 `From<&CaixaDialeto> for std::sync::Arc<str>` axis is what \
5419 makes the `std::sync::Arc::<str>::from` composition route \
5420 through the substrate-primitive `CaixaDialeto::as_str` \
5421 accessor without a spurious `Copy` deref (which would only \
5422 be reachable through the owned-input \
5423 `From<CaixaDialeto> for std::sync::Arc<str>` axis by first \
5424 calling `.copied()` on the iterator)"
5425 );
5426 }
5427
5428 #[test]
5429 fn caixa_dialeto_from_into_rc_str_routes_through_as_str_accessor() {
5430 // Fail-before-pass-after byte-parity pin on the newly lifted
5431 // `impl From<CaixaDialeto> for std::rc::Rc<str>` — asserts the
5432 // owned-input standard-library trait impl and the substrate-
5433 // primitive [`super::CaixaDialeto::as_str`] `pub const fn` accessor
5434 // resolve to the same four-arm PascalCase emit-set across every
5435 // arm the exhaustive [`super::CaixaDialeto::ALL`] slice enumerates.
5436 // Extends the caixa-core-internal tier of the substrate-wide
5437 // [`std::rc::Rc<str>`] forward-projection campaign onto the second
5438 // caixa-core-internal peer, after the structurally most
5439 // fundamental [`super::super::CaixaKind`] pair (4fdfa37, both
5440 // corners in one axis) opened the campaign. Rust's standard
5441 // library carries `impl From<&str> for std::rc::Rc<str>` and
5442 // `impl From<String> for std::rc::Rc<str>` but no blanket
5443 // `impl<T: AsRef<str>> From<T> for std::rc::Rc<str>` (nor an
5444 // `impl<T: fmt::Display> From<T> for std::rc::Rc<str>`), and — the
5445 // `std::sync::Arc<str>` and `std::rc::Rc<str>` trait tables are
5446 // disjoint — so this axis is a distinct trait-idiomatic surface
5447 // that a `let key: std::rc::Rc<str> = dialeto.into();`-shaped
5448 // call site reaches through this impl and no other.
5449 //
5450 // Cross-axis byte-parity witness against the sibling owned-input
5451 // `{&'static str, String, Cow<'static, str>, Box<str>,
5452 // std::sync::Arc<str>}` return-shape axes — locking the six
5453 // return-shape paths on the owned-input surface together by
5454 // construction so any future detour off the substrate-primitive
5455 // [`super::CaixaDialeto::as_str`] accessor trips at caixa-core
5456 // test time.
5457 for &variant in CaixaDialeto::ALL {
5458 let via_trait: std::rc::Rc<str> =
5459 <std::rc::Rc<str> as From<CaixaDialeto>>::from(variant);
5460 let via_method: &'static str = variant.as_str();
5461 assert_eq!(
5462 via_trait.as_ref(),
5463 via_method,
5464 "From<CaixaDialeto> for std::rc::Rc<str> impl must \
5465 round-trip CaixaDialeto::{variant:?} to the same \
5466 PascalCase byte-string CaixaDialeto::as_str returns — \
5467 divergence signals a silent detour off the substrate-\
5468 primitive accessor"
5469 );
5470 let via_into: std::rc::Rc<str> = variant.into();
5471 assert_eq!(
5472 via_into.as_ref(),
5473 via_method,
5474 "Into<std::rc::Rc<str>>::into on CaixaDialeto::\
5475 {variant:?} must byte-equal CaixaDialeto::as_str on the \
5476 same input — the blanket-derived Into shape must resolve \
5477 to the same as_str dispatch as the explicit From impl"
5478 );
5479 let owned_static: &'static str = <&'static str as From<CaixaDialeto>>::from(variant);
5480 assert_eq!(
5481 via_trait.as_ref(),
5482 owned_static,
5483 "From<CaixaDialeto> for std::rc::Rc<str> and \
5484 From<CaixaDialeto> for &'static str must resolve \
5485 identically on CaixaDialeto::{variant:?} — divergence \
5486 signals the owned-input std::rc::Rc<str> and \
5487 &'static str return-shape paths have drifted onto \
5488 different emit-sets"
5489 );
5490 let owned_string: String = <String as From<CaixaDialeto>>::from(variant);
5491 assert_eq!(
5492 via_trait.as_ref(),
5493 owned_string.as_str(),
5494 "From<CaixaDialeto> for std::rc::Rc<str> and \
5495 From<CaixaDialeto> for String must resolve identically \
5496 on CaixaDialeto::{variant:?} — divergence signals the \
5497 owned-input std::rc::Rc<str> and owned-`String` \
5498 return-shape paths have drifted onto different emit-sets"
5499 );
5500 let owned_cow: std::borrow::Cow<'static, str> =
5501 <std::borrow::Cow<'static, str> as From<CaixaDialeto>>::from(variant);
5502 assert_eq!(
5503 via_trait.as_ref(),
5504 owned_cow.as_ref(),
5505 "From<CaixaDialeto> for std::rc::Rc<str> and \
5506 From<CaixaDialeto> for Cow<'static, str> must resolve \
5507 identically on CaixaDialeto::{variant:?} — divergence \
5508 signals the owned-input std::rc::Rc<str> and \
5509 Cow<'static, str> return-shape paths have drifted onto \
5510 different emit-sets"
5511 );
5512 let owned_box: Box<str> = <Box<str> as From<CaixaDialeto>>::from(variant);
5513 assert_eq!(
5514 via_trait.as_ref(),
5515 owned_box.as_ref(),
5516 "From<CaixaDialeto> for std::rc::Rc<str> and \
5517 From<CaixaDialeto> for Box<str> must resolve identically \
5518 on CaixaDialeto::{variant:?} — divergence signals the \
5519 owned-input std::rc::Rc<str> and Box<str> return-\
5520 shape paths have drifted onto different emit-sets"
5521 );
5522 let owned_arc: std::sync::Arc<str> =
5523 <std::sync::Arc<str> as From<CaixaDialeto>>::from(variant);
5524 assert_eq!(
5525 via_trait.as_ref(),
5526 owned_arc.as_ref(),
5527 "From<CaixaDialeto> for std::rc::Rc<str> and \
5528 From<CaixaDialeto> for std::sync::Arc<str> must resolve \
5529 identically on CaixaDialeto::{variant:?} — divergence \
5530 signals the owned-input std::rc::Rc<str> and \
5531 std::sync::Arc<str> return-shape paths have drifted \
5532 onto different emit-sets"
5533 );
5534 }
5535 }
5536
5537 #[test]
5538 #[allow(
5539 clippy::too_many_lines,
5540 reason = "cross-axis partition pin folds five borrowed-input \
5541 return-shape paths (&'static str, String, Cow<'static, \
5542 str>, Box<str>, std::sync::Arc<str>) plus the paired \
5543 owned-input Rc<str> witness and the \
5544 .iter().map(std::rc::Rc::<str>::from) pipe witness into \
5545 one exhaustive round-trip over CaixaDialeto::ALL — the \
5546 accepted line-count cost of keying the whole borrowed-\
5547 input Rc<str> corner to the substrate-primitive as_str \
5548 accessor at the same test-site"
5549 )]
5550 fn caixa_dialeto_from_borrowed_into_rc_str_routes_through_as_str_accessor() {
5551 // Fail-before-pass-after byte-parity pin on the newly lifted
5552 // `impl From<&CaixaDialeto> for std::rc::Rc<str>` — asserts the
5553 // borrowed-input standard-library trait impl and the substrate-
5554 // primitive [`super::CaixaDialeto::as_str`] `pub const fn` accessor
5555 // resolve to the same four-arm PascalCase emit-set across every
5556 // arm the exhaustive [`super::CaixaDialeto::ALL`] slice enumerates.
5557 // Rust's standard library does not carry a blanket
5558 // `impl<T: AsRef<str>> From<&T> for std::rc::Rc<str>` (nor a
5559 // `Copy`-based `impl<T: Copy, U: From<T>> From<&T> for U`), so
5560 // the borrowed-input `std::rc::Rc<str>` forward-projection axis is
5561 // a distinct trait-idiomatic surface that a
5562 // `let key: std::rc::Rc<str> = (&dialeto).into();`-shaped call
5563 // site or a
5564 // `CaixaDialeto::ALL.iter().map(std::rc::Rc::<str>::from)`-shaped
5565 // pipe reaches through this impl and no other.
5566 //
5567 // Cross-axis partition pin against the paired owned-input
5568 // [`From<CaixaDialeto> for std::rc::Rc<str>`] and the sibling
5569 // borrowed-input `{&'static str, String, Cow<'static, str>,
5570 // Box<str>, std::sync::Arc<str>}` return-shape axes — locking the
5571 // six return-shape × input-shape paths on the borrowed-input
5572 // surface together by construction so any future detour off the
5573 // substrate-primitive accessor trips at caixa-core test time.
5574 // Then a `.iter().map(std::rc::Rc::<str>::from)` pipe witness
5575 // over [`super::CaixaDialeto::ALL`] — whose iterator yields
5576 // `&CaixaDialeto` by construction, so the borrowed-input
5577 // [`std::rc::Rc<str>`] axis is what routes the pipe through the
5578 // substrate-primitive [`super::CaixaDialeto::as_str`] accessor
5579 // without a spurious [`Copy`] deref.
5580 for &variant in CaixaDialeto::ALL {
5581 let via_trait: std::rc::Rc<str> =
5582 <std::rc::Rc<str> as From<&CaixaDialeto>>::from(&variant);
5583 let via_method: &'static str = variant.as_str();
5584 assert_eq!(
5585 via_trait.as_ref(),
5586 via_method,
5587 "From<&CaixaDialeto> for std::rc::Rc<str> impl must \
5588 round-trip &CaixaDialeto::{variant:?} to the same \
5589 PascalCase byte-string CaixaDialeto::as_str returns — \
5590 divergence signals a silent detour off the substrate-\
5591 primitive accessor"
5592 );
5593 let via_into: std::rc::Rc<str> = (&variant).into();
5594 assert_eq!(
5595 via_into.as_ref(),
5596 via_method,
5597 "Into<std::rc::Rc<str>>::into on &CaixaDialeto::\
5598 {variant:?} must byte-equal CaixaDialeto::as_str on the \
5599 same input — the blanket-derived Into shape on the \
5600 borrowed-input surface must resolve to the same as_str \
5601 dispatch as the explicit From impl"
5602 );
5603 let owned_rc: std::rc::Rc<str> =
5604 <std::rc::Rc<str> as From<CaixaDialeto>>::from(variant);
5605 assert_eq!(
5606 via_trait, owned_rc,
5607 "From<&CaixaDialeto> for std::rc::Rc<str> and \
5608 From<CaixaDialeto> for std::rc::Rc<str> must resolve \
5609 identically on CaixaDialeto::{variant:?} — divergence \
5610 signals the borrowed-input and owned-input \
5611 std::rc::Rc<str> forward-projection input-shape paths \
5612 have drifted onto different emit-sets"
5613 );
5614 let borrowed_static: &'static str =
5615 <&'static str as From<&CaixaDialeto>>::from(&variant);
5616 assert_eq!(
5617 via_trait.as_ref(),
5618 borrowed_static,
5619 "From<&CaixaDialeto> for std::rc::Rc<str> and \
5620 From<&CaixaDialeto> for &'static str must resolve \
5621 identically on CaixaDialeto::{variant:?} — divergence \
5622 signals the borrowed-input std::rc::Rc<str> and \
5623 &'static str return-shape paths have drifted onto \
5624 different emit-sets"
5625 );
5626 let borrowed_string: String = <String as From<&CaixaDialeto>>::from(&variant);
5627 assert_eq!(
5628 via_trait.as_ref(),
5629 borrowed_string.as_str(),
5630 "From<&CaixaDialeto> for std::rc::Rc<str> and \
5631 From<&CaixaDialeto> for String must resolve identically \
5632 on CaixaDialeto::{variant:?} — divergence signals the \
5633 borrowed-input std::rc::Rc<str> and owned-`String` \
5634 return-shape paths have drifted onto different emit-sets"
5635 );
5636 let borrowed_cow: std::borrow::Cow<'static, str> =
5637 <std::borrow::Cow<'static, str> as From<&CaixaDialeto>>::from(&variant);
5638 assert_eq!(
5639 via_trait.as_ref(),
5640 borrowed_cow.as_ref(),
5641 "From<&CaixaDialeto> for std::rc::Rc<str> and \
5642 From<&CaixaDialeto> for Cow<'static, str> must resolve \
5643 identically on CaixaDialeto::{variant:?} — divergence \
5644 signals the borrowed-input std::rc::Rc<str> and \
5645 Cow<'static, str> return-shape paths have drifted onto \
5646 different emit-sets"
5647 );
5648 let borrowed_box: Box<str> = <Box<str> as From<&CaixaDialeto>>::from(&variant);
5649 assert_eq!(
5650 via_trait.as_ref(),
5651 borrowed_box.as_ref(),
5652 "From<&CaixaDialeto> for std::rc::Rc<str> and \
5653 From<&CaixaDialeto> for Box<str> must resolve \
5654 identically on CaixaDialeto::{variant:?} — divergence \
5655 signals the borrowed-input std::rc::Rc<str> and \
5656 Box<str> return-shape paths have drifted onto different \
5657 emit-sets"
5658 );
5659 let borrowed_arc: std::sync::Arc<str> =
5660 <std::sync::Arc<str> as From<&CaixaDialeto>>::from(&variant);
5661 assert_eq!(
5662 via_trait.as_ref(),
5663 borrowed_arc.as_ref(),
5664 "From<&CaixaDialeto> for std::rc::Rc<str> and \
5665 From<&CaixaDialeto> for std::sync::Arc<str> must \
5666 resolve identically on CaixaDialeto::{variant:?} — \
5667 divergence signals the borrowed-input std::rc::Rc<str> \
5668 and std::sync::Arc<str> return-shape paths have drifted \
5669 onto different emit-sets"
5670 );
5671 }
5672 let via_iter: Vec<std::rc::Rc<str>> = CaixaDialeto::ALL
5673 .iter()
5674 .map(std::rc::Rc::<str>::from)
5675 .collect();
5676 let via_method: Vec<std::rc::Rc<str>> = CaixaDialeto::ALL
5677 .iter()
5678 .map(|d| std::rc::Rc::<str>::from(d.as_str()))
5679 .collect();
5680 assert_eq!(
5681 via_iter, via_method,
5682 "`.iter().map(std::rc::Rc::<str>::from)` over \
5683 CaixaDialeto::ALL — a call site whose iteration axis holds \
5684 `&CaixaDialeto` by construction — must byte-equal \
5685 `.iter().map(|d| std::rc::Rc::<str>::from(d.as_str()))` \
5686 on every arm — the borrowed-input std::rc::Rc<str> \
5687 `From<&CaixaDialeto> for std::rc::Rc<str>` axis is what \
5688 makes the `std::rc::Rc::<str>::from` composition route \
5689 through the substrate-primitive `CaixaDialeto::as_str` \
5690 accessor without a spurious `Copy` deref (which would only \
5691 be reachable through the owned-input \
5692 `From<CaixaDialeto> for std::rc::Rc<str>` axis by first \
5693 calling `.copied()` on the iterator)"
5694 );
5695 }
5696
5697 #[test]
5698 #[allow(
5699 clippy::too_many_lines,
5700 reason = "cross-axis partition pin folds the substrate-primitive \
5701 as_str accessor's `.as_bytes()` byte-tail plus the \
5702 paired str-view (AsRef<str>, Display, as_str) and \
5703 reverse-projection ({&'static str, String, \
5704 Cow<'static, str>, Box<str>, std::sync::Arc<str>, \
5705 std::rc::Rc<str>}) return-shape axes' `.as_bytes()` \
5706 byte-tails plus a <T: AsRef<[u8]>>-bound-consumer \
5707 witness plus a blake3::Hasher::update-shape byte-\
5708 input surface witness into one exhaustive round-trip \
5709 over CaixaDialeto::ALL — the accepted line-count cost \
5710 of opening the byte-view axis keyed to the substrate-\
5711 primitive as_str accessor at the same test-site"
5712 )]
5713 #[allow(
5714 clippy::needless_borrows_for_generic_args,
5715 reason = "the borrowed-input surface (&variant) is exercised \
5716 deliberately: the `<T: AsRef<[u8]>>`-bound consumer \
5717 and the `blake3::Hasher::update`-shape byte-input \
5718 surface both accept either owned or borrowed input \
5719 through the standard-library blanket \
5720 `impl<T: ?Sized + AsRef<[u8]>> AsRef<[u8]> for &T`, \
5721 and this pin round-trips both input shapes to lock \
5722 the borrowed-input path load-bearing against a \
5723 future silent regression"
5724 )]
5725 fn caixa_dialeto_as_ref_bytes_routes_through_as_str_accessor() {
5726 // `<T: AsRef<[u8]>>`-bound-consumer witness helper: a generic
5727 // byte-input function accepts a [`super::CaixaDialeto`]
5728 // directly through the trait bound, without the caller open-
5729 // coding the two-hop `dialeto.as_str().as_bytes()`
5730 // composition. Lifted to the top of the function per
5731 // `clippy::items_after_statements`.
5732 fn generic_bytes_sink<T: AsRef<[u8]>>(t: T) -> Vec<u8> {
5733 t.as_ref().to_vec()
5734 }
5735 // `blake3::Hasher::update`-shape byte-input surface mock:
5736 // mirrors `blake3::Hasher::update` / `ring::digest::Context::
5737 // update` / `sha2::Sha256::update`'s `impl AsRef<[u8]>`-bound
5738 // `update` signature so a per-caixa BLAKE3 content-address
5739 // closure that composes `hasher.update(dialeto)` on the
5740 // [`crate::Lacre`] closure builder reaches the substrate-
5741 // primitive `as_str` accessor through the
5742 // [`super::CaixaDialeto`] `AsRef<[u8]>` axis and no other.
5743 // Lifted to the top of the function per
5744 // `clippy::items_after_statements`.
5745 struct MockHasher(Vec<u8>);
5746 impl MockHasher {
5747 fn new() -> Self {
5748 Self(Vec::new())
5749 }
5750 fn update(&mut self, bytes: impl AsRef<[u8]>) -> &mut Self {
5751 self.0.extend_from_slice(bytes.as_ref());
5752 self
5753 }
5754 fn finalize(self) -> Vec<u8> {
5755 self.0
5756 }
5757 }
5758
5759 // Fail-before-pass-after byte-parity pin on the newly lifted
5760 // `impl AsRef<[u8]> for CaixaDialeto` — asserts the trait-
5761 // idiomatic byte-view standard-library impl and the substrate-
5762 // primitive [`super::CaixaDialeto::as_str`] `pub const fn`
5763 // accessor's `.as_bytes()` byte-tail resolve to the same
5764 // four-arm PascalCase-byte-string emit-set across every arm
5765 // the exhaustive [`super::CaixaDialeto::ALL`] slice enumerates.
5766 // Extends the substrate-wide trait-idiomatic byte-view axis
5767 // onto the second closed-set fieldless typed enum on the
5768 // caixa-core-internal tier — matching the trajectory the
5769 // sibling [`super::CaixaKind`] first-mover
5770 // [`AsRef<[u8]>`] impl (69d8d86) walked before it.
5771 for &variant in CaixaDialeto::ALL {
5772 let via_trait: &[u8] = <CaixaDialeto as AsRef<[u8]>>::as_ref(&variant);
5773 let via_method_bytes: &[u8] = variant.as_str().as_bytes();
5774 assert_eq!(
5775 via_trait, via_method_bytes,
5776 "AsRef<[u8]> for CaixaDialeto impl must byte-equal \
5777 CaixaDialeto::as_str().as_bytes() on CaixaDialeto::\
5778 {variant:?} — divergence signals a silent detour off \
5779 the substrate-primitive accessor"
5780 );
5781 // Cross-axis witness against the paired str-view axes'
5782 // `.as_bytes()` byte-tails: [`AsRef<str>`] /
5783 // [`std::fmt::Display`] / [`super::CaixaDialeto::as_str`]
5784 // all resolve to the same lifted `CAIXA_DIALETO_WIRE_*`
5785 // const roster, and the byte-view axis must byte-equal
5786 // each of their `.as_bytes()` byte-tails by construction
5787 // — locking the str-view and byte-view axes together at
5788 // the substrate-primitive accessor.
5789 let str_view_ref: &str = <CaixaDialeto as AsRef<str>>::as_ref(&variant);
5790 assert_eq!(
5791 via_trait,
5792 str_view_ref.as_bytes(),
5793 "AsRef<[u8]> for CaixaDialeto and AsRef<str> for \
5794 CaixaDialeto must resolve to byte-equal byte-tails \
5795 on CaixaDialeto::{variant:?} — divergence signals \
5796 the byte-view and str-view axes have drifted off the \
5797 same substrate-primitive as_str accessor"
5798 );
5799 let display_bytes = variant.to_string();
5800 assert_eq!(
5801 via_trait,
5802 display_bytes.as_bytes(),
5803 "AsRef<[u8]> for CaixaDialeto and \
5804 <CaixaDialeto as std::fmt::Display>::to_string must \
5805 resolve to byte-equal byte-tails on CaixaDialeto::\
5806 {variant:?} — divergence signals the byte-view axis \
5807 and the Display formatter axis have drifted off the \
5808 same substrate-primitive as_str accessor"
5809 );
5810 // Cross-axis witness against the paired reverse-
5811 // projection axes' `.as_bytes()` byte-tails: every one of
5812 // `{&'static str, String, Cow<'static, str>, Box<str>,
5813 // std::sync::Arc<str>, std::rc::Rc<str>}` allocates (or
5814 // borrows) the same PascalCase byte-string the substrate-
5815 // primitive accessor emits, so the byte-view axis must
5816 // byte-equal each of their `.as_bytes()` byte-tails by
5817 // construction.
5818 let owned_static: &'static str = <&'static str as From<CaixaDialeto>>::from(variant);
5819 assert_eq!(
5820 via_trait,
5821 owned_static.as_bytes(),
5822 "AsRef<[u8]> for CaixaDialeto and From<CaixaDialeto> \
5823 for &'static str must resolve to byte-equal byte-\
5824 tails on CaixaDialeto::{variant:?}"
5825 );
5826 let owned_string: String = <String as From<CaixaDialeto>>::from(variant);
5827 assert_eq!(
5828 via_trait,
5829 owned_string.as_bytes(),
5830 "AsRef<[u8]> for CaixaDialeto and From<CaixaDialeto> \
5831 for String must resolve to byte-equal byte-tails on \
5832 CaixaDialeto::{variant:?}"
5833 );
5834 let owned_cow: std::borrow::Cow<'static, str> =
5835 <std::borrow::Cow<'static, str> as From<CaixaDialeto>>::from(variant);
5836 assert_eq!(
5837 via_trait,
5838 owned_cow.as_bytes(),
5839 "AsRef<[u8]> for CaixaDialeto and From<CaixaDialeto> \
5840 for Cow<'static, str> must resolve to byte-equal \
5841 byte-tails on CaixaDialeto::{variant:?}"
5842 );
5843 let owned_box: Box<str> = <Box<str> as From<CaixaDialeto>>::from(variant);
5844 assert_eq!(
5845 via_trait,
5846 owned_box.as_bytes(),
5847 "AsRef<[u8]> for CaixaDialeto and From<CaixaDialeto> \
5848 for Box<str> must resolve to byte-equal byte-tails \
5849 on CaixaDialeto::{variant:?}"
5850 );
5851 let owned_arc: std::sync::Arc<str> =
5852 <std::sync::Arc<str> as From<CaixaDialeto>>::from(variant);
5853 assert_eq!(
5854 via_trait,
5855 owned_arc.as_bytes(),
5856 "AsRef<[u8]> for CaixaDialeto and From<CaixaDialeto> \
5857 for std::sync::Arc<str> must resolve to byte-equal \
5858 byte-tails on CaixaDialeto::{variant:?}"
5859 );
5860 let owned_rc_str: std::rc::Rc<str> =
5861 <std::rc::Rc<str> as From<CaixaDialeto>>::from(variant);
5862 assert_eq!(
5863 via_trait,
5864 owned_rc_str.as_bytes(),
5865 "AsRef<[u8]> for CaixaDialeto and From<CaixaDialeto> \
5866 for std::rc::Rc<str> must resolve to byte-equal \
5867 byte-tails on CaixaDialeto::{variant:?}"
5868 );
5869 }
5870 // `<T: AsRef<[u8]>>`-bound-consumer witness: the generic byte-
5871 // input function `generic_bytes_sink` (lifted above per
5872 // `clippy::items_after_statements`) accepts a
5873 // [`super::CaixaDialeto`] directly through the trait bound,
5874 // without the caller open-coding the two-hop
5875 // `dialeto.as_str().as_bytes()` composition. This is the
5876 // shape that reaches the caixa-lacre BLAKE3 content-address
5877 // closure's `blake3::Hasher::update(impl AsRef<[u8]>)` byte-
5878 // input surface through this impl and no other. Exercised on
5879 // both owned and borrowed input surfaces via the standard-
5880 // library blanket `impl<T: ?Sized + AsRef<[u8]>>
5881 // AsRef<[u8]> for &T`.
5882 for &variant in CaixaDialeto::ALL {
5883 let via_generic = generic_bytes_sink(variant);
5884 let via_borrowed_generic = generic_bytes_sink(&variant);
5885 let via_method_bytes = variant.as_str().as_bytes().to_vec();
5886 assert_eq!(
5887 via_generic, via_method_bytes,
5888 "generic `<T: AsRef<[u8]>>`-bound consumer on \
5889 CaixaDialeto::{variant:?} must yield the same byte-\
5890 tail CaixaDialeto::as_str().as_bytes() returns — \
5891 divergence signals the byte-view axis fails to \
5892 bridge a generic byte-input trait bound to the \
5893 substrate-primitive accessor"
5894 );
5895 assert_eq!(
5896 via_borrowed_generic, via_method_bytes,
5897 "generic `<T: AsRef<[u8]>>`-bound consumer on \
5898 &CaixaDialeto::{variant:?} must yield the same byte-\
5899 tail CaixaDialeto::as_str().as_bytes() returns — the \
5900 borrowed-input surface must resolve to the same \
5901 as_str dispatch"
5902 );
5903 }
5904 // `blake3::Hasher::update`-shape byte-input surface witness
5905 // on the caixa-lacre compounding target: the `MockHasher`
5906 // (lifted above per `clippy::items_after_statements`) mirrors
5907 // `blake3::Hasher::update` / `ring::digest::Context::update` /
5908 // `sha2::Sha256::update`'s `impl AsRef<[u8]>`-bound update
5909 // signature and accepts a [`super::CaixaDialeto`] directly,
5910 // routing its byte-tail through the substrate-primitive
5911 // `as_str` accessor — the shape a future per-caixa BLAKE3
5912 // content-address closure composes to fold a `:dialect`
5913 // classification byte-tag into the [`crate::Lacre`] closure
5914 // body.
5915 for &variant in CaixaDialeto::ALL {
5916 let mut owned_hasher = MockHasher::new();
5917 owned_hasher.update(variant);
5918 let owned_folded = owned_hasher.finalize();
5919 assert_eq!(
5920 owned_folded,
5921 variant.as_str().as_bytes(),
5922 "`hasher.update(dialeto)`-shape composition on \
5923 CaixaDialeto::{variant:?} must fold the same byte-\
5924 tail CaixaDialeto::as_str().as_bytes() returns — the \
5925 shape a future per-caixa BLAKE3 content-address \
5926 closure composes to fold a `:dialect` classification \
5927 byte-tag into the Lacre closure body"
5928 );
5929 let mut borrowed_hasher = MockHasher::new();
5930 borrowed_hasher.update(&variant);
5931 let borrowed_folded = borrowed_hasher.finalize();
5932 assert_eq!(
5933 borrowed_folded,
5934 variant.as_str().as_bytes(),
5935 "`hasher.update(&dialeto)`-shape composition on \
5936 &CaixaDialeto::{variant:?} must fold the same byte-\
5937 tail CaixaDialeto::as_str().as_bytes() returns — the \
5938 borrowed-input surface must resolve to the same \
5939 as_str dispatch"
5940 );
5941 }
5942 }
5943
5944 #[test]
5945 #[expect(
5946 clippy::too_many_lines,
5947 reason = "the byte-owned reverse-projection axis is extended \
5948 onto CaixaDialeto here as the second peer on the \
5949 substrate-wide byte-owned Vec<u8>-output projection \
5950 family (after the sibling first-mover CaixaKind, \
5951 b245fd6), so the pin binds the new impl against every \
5952 paired byte-view and str-view axis on the same enum \
5953 plus a generic <T: Into<Vec<u8>>>-bound consumer \
5954 witness and a std::io::Write::write_all-shape owned-\
5955 byte-sink surface witness on both owned and borrowed \
5956 input shapes to lock the whole family against a \
5957 future silent regression"
5958 )]
5959 fn caixa_dialeto_from_into_owned_vec_bytes_routes_through_as_str_accessor() {
5960 // `<T: Into<Vec<u8>>>`-bound-consumer witness helper: a generic
5961 // owned-byte-input function accepts a [`super::CaixaDialeto`]
5962 // directly through the trait bound, without the caller open-
5963 // coding the three-hop `dialeto.as_str().as_bytes().to_vec()`
5964 // composition. Lifted to the top of the function per
5965 // `clippy::items_after_statements`.
5966 fn generic_owned_bytes_sink<T: Into<Vec<u8>>>(t: T) -> Vec<u8> {
5967 t.into()
5968 }
5969 // `std::io::Write::write_all`-shape owned-byte-sink surface
5970 // mock: mirrors `std::io::Write::write_all` /
5971 // `bytes::BytesMut::extend_from_slice` / any per-arm audit-log
5972 // byte-sink that consumes a `Vec<u8>` payload via
5973 // `Into<Vec<u8>>`, so a future per-caixa per-`:dialect` audit-
5974 // log emit reaches the substrate-primitive `as_str` accessor
5975 // through the byte-owned reverse-projection axis and no other.
5976 // Lifted to the top of the function per
5977 // `clippy::items_after_statements`.
5978 struct MockOwnedByteSink(Vec<u8>);
5979 impl MockOwnedByteSink {
5980 fn new() -> Self {
5981 Self(Vec::new())
5982 }
5983 fn write_all(&mut self, bytes: impl Into<Vec<u8>>) -> &mut Self {
5984 self.0.extend_from_slice(&bytes.into());
5985 self
5986 }
5987 fn finalize(self) -> Vec<u8> {
5988 self.0
5989 }
5990 }
5991
5992 // Fail-before-pass-after byte-parity pin on the newly lifted
5993 // `impl From<CaixaDialeto> for Vec<u8>` and
5994 // `impl From<&CaixaDialeto> for Vec<u8>` — asserts the trait-
5995 // idiomatic byte-owned reverse-projection standard-library
5996 // impls and the substrate-primitive
5997 // [`super::CaixaDialeto::as_str`] `pub const fn` accessor's
5998 // `.as_bytes().to_vec()` byte-tail resolve to the same four-arm
5999 // `PascalCase`-byte-string emit-set across every arm the
6000 // exhaustive [`super::CaixaDialeto::ALL`] slice enumerates.
6001 // Extends the substrate-wide trait-idiomatic byte-owned
6002 // reverse-projection axis onto the second closed-set fieldless
6003 // typed enum on the caixa-core-internal tier — matching the
6004 // trajectory the sibling first-mover [`super::CaixaKind`]
6005 // `From<{Self, &Self}> for Vec<u8>` impls (b245fd6) walked
6006 // before it on the caixa-core tier of the byte-owned axis.
6007 for &variant in CaixaDialeto::ALL {
6008 let via_owned_from: Vec<u8> = <Vec<u8> as From<CaixaDialeto>>::from(variant);
6009 let via_borrowed_from: Vec<u8> = <Vec<u8> as From<&CaixaDialeto>>::from(&variant);
6010 let via_method_bytes: Vec<u8> = variant.as_str().as_bytes().to_vec();
6011 assert_eq!(
6012 via_owned_from, via_method_bytes,
6013 "From<CaixaDialeto> for Vec<u8> impl must byte-equal \
6014 CaixaDialeto::as_str().as_bytes().to_vec() on \
6015 CaixaDialeto::{variant:?} — divergence signals a \
6016 silent detour off the substrate-primitive accessor"
6017 );
6018 assert_eq!(
6019 via_borrowed_from, via_method_bytes,
6020 "From<&CaixaDialeto> for Vec<u8> impl must byte-equal \
6021 CaixaDialeto::as_str().as_bytes().to_vec() on \
6022 CaixaDialeto::{variant:?} — divergence signals a \
6023 silent detour off the substrate-primitive accessor"
6024 );
6025 assert_eq!(
6026 via_owned_from, via_borrowed_from,
6027 "From<CaixaDialeto> for Vec<u8> and From<&CaixaDialeto> \
6028 for Vec<u8> must byte-equal each other on \
6029 CaixaDialeto::{variant:?} — divergence signals the \
6030 owned-input and borrowed-input paths have drifted off \
6031 the same substrate-primitive as_str accessor"
6032 );
6033 // Cross-axis witness against the paired [`AsRef<[u8]>`]
6034 // borrowed byte-view axis: the byte-owned reverse-
6035 // projection axis must byte-equal the paired borrowed
6036 // byte-view axis by construction — locking the byte-view
6037 // and byte-owned axes together at the substrate-primitive
6038 // accessor.
6039 let borrowed_bytes: &[u8] = <CaixaDialeto as AsRef<[u8]>>::as_ref(&variant);
6040 assert_eq!(
6041 via_owned_from,
6042 borrowed_bytes.to_vec(),
6043 "From<CaixaDialeto> for Vec<u8> and AsRef<[u8]> for \
6044 CaixaDialeto must resolve to byte-equal byte-tails on \
6045 CaixaDialeto::{variant:?} — divergence signals the \
6046 byte-owned and byte-view axes have drifted off the \
6047 same substrate-primitive as_str accessor"
6048 );
6049 // Cross-axis witness against the str-owned reverse-
6050 // projection family's `.into_bytes()` / `.as_bytes().to_vec()`
6051 // byte-tails: every one of `{String, Cow<'static, str>,
6052 // Box<str>, std::sync::Arc<str>, std::rc::Rc<str>}`
6053 // allocates (or borrows) the same `PascalCase` byte-string
6054 // the substrate-primitive accessor emits, so the byte-
6055 // owned axis must byte-equal each of their owned byte-
6056 // tails by construction.
6057 let owned_string: String = <String as From<CaixaDialeto>>::from(variant);
6058 assert_eq!(
6059 via_owned_from,
6060 owned_string.into_bytes(),
6061 "From<CaixaDialeto> for Vec<u8> and \
6062 String::from(dialeto).into_bytes() must resolve to \
6063 byte-equal byte-tails on CaixaDialeto::{variant:?}"
6064 );
6065 let owned_cow: std::borrow::Cow<'static, str> =
6066 <std::borrow::Cow<'static, str> as From<CaixaDialeto>>::from(variant);
6067 assert_eq!(
6068 via_owned_from,
6069 owned_cow.as_bytes().to_vec(),
6070 "From<CaixaDialeto> for Vec<u8> and From<CaixaDialeto> \
6071 for Cow<'static, str> must resolve to byte-equal \
6072 byte-tails on CaixaDialeto::{variant:?}"
6073 );
6074 let owned_box: Box<str> = <Box<str> as From<CaixaDialeto>>::from(variant);
6075 assert_eq!(
6076 via_owned_from,
6077 owned_box.as_bytes().to_vec(),
6078 "From<CaixaDialeto> for Vec<u8> and From<CaixaDialeto> \
6079 for Box<str> must resolve to byte-equal byte-tails on \
6080 CaixaDialeto::{variant:?}"
6081 );
6082 let owned_arc: std::sync::Arc<str> =
6083 <std::sync::Arc<str> as From<CaixaDialeto>>::from(variant);
6084 assert_eq!(
6085 via_owned_from,
6086 owned_arc.as_bytes().to_vec(),
6087 "From<CaixaDialeto> for Vec<u8> and From<CaixaDialeto> \
6088 for std::sync::Arc<str> must resolve to byte-equal \
6089 byte-tails on CaixaDialeto::{variant:?}"
6090 );
6091 let owned_rc_str: std::rc::Rc<str> =
6092 <std::rc::Rc<str> as From<CaixaDialeto>>::from(variant);
6093 assert_eq!(
6094 via_owned_from,
6095 owned_rc_str.as_bytes().to_vec(),
6096 "From<CaixaDialeto> for Vec<u8> and From<CaixaDialeto> \
6097 for std::rc::Rc<str> must resolve to byte-equal \
6098 byte-tails on CaixaDialeto::{variant:?}"
6099 );
6100 }
6101 // `<T: Into<Vec<u8>>>`-bound-consumer witness on both owned
6102 // and borrowed input shapes: the generic owned-byte-input
6103 // function `generic_owned_bytes_sink` (lifted above per
6104 // `clippy::items_after_statements`) accepts a
6105 // [`super::CaixaDialeto`] and a `&CaixaDialeto` directly
6106 // through the trait bound, without the caller open-coding the
6107 // three-hop `dialeto.as_str().as_bytes().to_vec()` composition.
6108 for &variant in CaixaDialeto::ALL {
6109 let via_generic_owned = generic_owned_bytes_sink(variant);
6110 // Bind the borrowed-input path through an explicit
6111 // `&CaixaDialeto` local so the generic-consumer witness
6112 // routes through `From<&CaixaDialeto> for Vec<u8>` (T binds
6113 // to `&CaixaDialeto`) rather than clippy-collapsing the
6114 // borrow onto the owned-input `From<CaixaDialeto> for
6115 // Vec<u8>` peer.
6116 let variant_ref: &CaixaDialeto = &variant;
6117 let via_generic_borrowed = generic_owned_bytes_sink(variant_ref);
6118 let via_method_bytes = variant.as_str().as_bytes().to_vec();
6119 assert_eq!(
6120 via_generic_owned, via_method_bytes,
6121 "generic `<T: Into<Vec<u8>>>`-bound consumer on \
6122 CaixaDialeto::{variant:?} must yield the same byte-\
6123 tail CaixaDialeto::as_str().as_bytes().to_vec() \
6124 returns — divergence signals the byte-owned axis \
6125 fails to bridge a generic owned-byte-input trait \
6126 bound to the substrate-primitive accessor"
6127 );
6128 assert_eq!(
6129 via_generic_borrowed, via_method_bytes,
6130 "generic `<T: Into<Vec<u8>>>`-bound consumer on \
6131 &CaixaDialeto::{variant:?} must yield the same byte-\
6132 tail CaixaDialeto::as_str().as_bytes().to_vec() \
6133 returns — the borrowed-input surface must resolve to \
6134 the same as_str dispatch"
6135 );
6136 }
6137 // `std::io::Write::write_all`-shape owned-byte-sink surface
6138 // witness: the `MockOwnedByteSink` (lifted above per
6139 // `clippy::items_after_statements`) mirrors
6140 // `std::io::Write::write_all` /
6141 // `bytes::BytesMut::extend_from_slice`'s `impl Into<Vec<u8>>`-
6142 // bound owned-byte input signature and accepts a
6143 // [`super::CaixaDialeto`] directly on both owned and borrowed
6144 // input shapes, routing its byte-tail through the substrate-
6145 // primitive `as_str` accessor — the shape a future per-caixa
6146 // per-`:dialect` audit-log emit composes to fold a `:dialect`
6147 // classification byte-tag into a downstream owned-byte-sink
6148 // surface.
6149 for &variant in CaixaDialeto::ALL {
6150 let mut owned_sink = MockOwnedByteSink::new();
6151 owned_sink.write_all(variant);
6152 let owned_folded = owned_sink.finalize();
6153 assert_eq!(
6154 owned_folded,
6155 variant.as_str().as_bytes(),
6156 "`sink.write_all(dialeto)`-shape composition on \
6157 CaixaDialeto::{variant:?} must fold the same byte-\
6158 tail CaixaDialeto::as_str().as_bytes() returns"
6159 );
6160 let mut borrowed_sink = MockOwnedByteSink::new();
6161 // Same explicit `&CaixaDialeto` binding as the generic-
6162 // consumer witness above: routes the owned-byte-sink
6163 // surface through `From<&CaixaDialeto> for Vec<u8>` (T
6164 // binds to `&CaixaDialeto`) rather than clippy-collapsing
6165 // the borrow onto the owned-input peer.
6166 let variant_ref: &CaixaDialeto = &variant;
6167 borrowed_sink.write_all(variant_ref);
6168 let borrowed_folded = borrowed_sink.finalize();
6169 assert_eq!(
6170 borrowed_folded,
6171 variant.as_str().as_bytes(),
6172 "`sink.write_all(&dialeto)`-shape composition on \
6173 &CaixaDialeto::{variant:?} must fold the same byte-\
6174 tail CaixaDialeto::as_str().as_bytes() returns — the \
6175 borrowed-input surface must resolve to the same \
6176 as_str dispatch"
6177 );
6178 }
6179 }
6180
6181 #[test]
6182 fn caixa_dialeto_try_from_bytes_routes_through_from_wire_accessor() {
6183 // Fail-before-pass-after byte-parity pin on the newly lifted
6184 // `impl TryFrom<&[u8]> for CaixaDialeto` — asserts the trait-
6185 // idiomatic byte-view reverse-projection standard-library impl
6186 // and the substrate-primitive [`super::CaixaDialeto::from_wire`]
6187 // `Option<Self>` accessor resolve to the same four-arm
6188 // `PascalCase` wire accept-set across every arm the exhaustive
6189 // [`super::CaixaDialeto::ALL`] slice enumerates. Extends the
6190 // substrate-wide trait-idiomatic byte-view reverse-projection
6191 // axis onto the second caixa-core-internal closed-set fieldless
6192 // typed enum peer — mirror of the paired
6193 // [`TryFrom<&str> for CaixaDialeto`] str-view reverse-projection
6194 // axis on the same enum, and the byte-view companion of the
6195 // pre-existing byte-owned reverse-projection family
6196 // ([`AsRef<[u8]>`], [`From<CaixaDialeto> for Vec<u8>`],
6197 // [`From<&CaixaDialeto> for Vec<u8>`]) on this same enum. Peer
6198 // of the sibling
6199 // [`crate::kind::tests::caixa_kind_try_from_bytes_routes_through_from_wire_accessor`]
6200 // (18d1940) on the first-mover [`crate::CaixaKind`] closed-set
6201 // typed-enum peer — tracks the "route through `from_wire` via
6202 // `std::str::from_utf8`" discipline the first-mover established.
6203 //
6204 // Rust's standard library carries no blanket
6205 // `impl<T: for<'a> TryFrom<&'a str>> TryFrom<&[u8]> for T`, so
6206 // a two-hop composition through [`std::str::from_utf8`] + the
6207 // paired [`TryFrom<&str>`] axis is reachable through the pre-
6208 // existing str-view reverse-projection axis alone. But that
6209 // two-hop shape has no compile-time link back to the byte-view
6210 // reverse-projection axis, forces every downstream
6211 // `<T: for<'a> TryFrom<&'a [u8]>>`-bound consumer to open-code
6212 // the composition at every call site, and admits a silent split
6213 // whenever a future call site takes a sibling byte-projection
6214 // axis whose parse arm-set carries no compile-time byte-view
6215 // surface. This impl closes the byte-view reverse-projection
6216 // axis at the substrate-primitive
6217 // [`super::CaixaDialeto::from_wire`] accessor so every future
6218 // `<T: for<'a> TryFrom<&'a [u8]>>`-bound consumer reaches the
6219 // same four-arm `PascalCase` wire accept-set through one trait
6220 // dispatch.
6221 for &variant in CaixaDialeto::ALL {
6222 let wire_bytes: &[u8] = variant.as_str().as_bytes();
6223 assert_eq!(
6224 <CaixaDialeto as TryFrom<&[u8]>>::try_from(wire_bytes),
6225 Ok(variant),
6226 "TryFrom<&[u8]> impl on CaixaDialeto must round-trip \
6227 CaixaDialeto::{variant:?}.as_str().as_bytes() back to \
6228 Ok(CaixaDialeto::{variant:?}) — divergence from \
6229 CaixaDialeto::from_wire signals a silent detour off \
6230 the substrate-primitive accessor"
6231 );
6232 assert_eq!(
6233 <CaixaDialeto as TryFrom<&[u8]>>::try_from(wire_bytes).ok(),
6234 CaixaDialeto::from_wire(variant.as_str()),
6235 "TryFrom<&[u8]> ok()-projection on \
6236 CaixaDialeto::{variant:?}.as_str().as_bytes() must \
6237 byte-equal CaixaDialeto::from_wire on the paired &str \
6238 input"
6239 );
6240 // Cross-axis witness: the byte-view reverse-projection axis
6241 // must agree with the paired str-view reverse-projection
6242 // axis ([`TryFrom<&str>`]) on every accepted arm — the two
6243 // reverse paths share one `PascalCase` accept-set through
6244 // the substrate-primitive `from_wire` accessor.
6245 let via_str: Result<CaixaDialeto, ()> =
6246 <CaixaDialeto as TryFrom<&str>>::try_from(variant.as_str());
6247 let via_bytes: Result<CaixaDialeto, ()> =
6248 <CaixaDialeto as TryFrom<&[u8]>>::try_from(wire_bytes);
6249 assert_eq!(
6250 via_bytes, via_str,
6251 "TryFrom<&[u8]> and TryFrom<&str> reverse-projection \
6252 axes on CaixaDialeto must agree on \
6253 CaixaDialeto::{variant:?} — divergence signals the \
6254 byte-view and str-view reverse paths have drifted off \
6255 the same substrate-primitive from_wire accessor"
6256 );
6257 }
6258 }
6259
6260 #[test]
6261 fn caixa_dialeto_try_from_bytes_rejects_unknown_and_non_utf8_bytes() {
6262 // Rejection witness on the `impl TryFrom<&[u8]> for CaixaDialeto`
6263 // — sweeps two rejection paths the byte-view reverse-projection
6264 // axis collapses onto the single unit-error `Err(())` return:
6265 // the invalid-UTF-8 rejection path ([`std::str::from_utf8`]
6266 // returns `Err` before [`super::CaixaDialeto::from_wire`] runs)
6267 // and the valid-UTF-8-but-unknown-wire rejection path
6268 // ([`super::CaixaDialeto::from_wire`] returns `None` on a byte-
6269 // string outside the four-arm `PascalCase` accept-set). Both
6270 // must reject, so a future accidental widening of the trait
6271 // impl's accept-set (a case-fold path, a silent acceptance of
6272 // the sibling [`super::CaixaDialeto::palavra_canonica`]
6273 // `"defcaixa"` / `"defmolde"` byte-shapes on this axis, a
6274 // `#[serde(rename_all = "…")]` attribute drift that widens the
6275 // parse arm-set silently, a stray fallback that maps invalid
6276 // UTF-8 onto a default arm rather than the trait-idiomatic
6277 // `Err(())`) trips at caixa-core test time. Peer of the sibling
6278 // [`crate::kind::tests::caixa_kind_try_from_bytes_rejects_unknown_and_non_utf8_bytes`]
6279 // (18d1940) on the first-mover [`crate::CaixaKind`] closed-set
6280 // typed-enum peer.
6281 //
6282 // Non-UTF-8 candidates:
6283 // - a lone 0xFF byte (never valid as a UTF-8 leading byte)
6284 // - a lone 0x80 continuation byte with no leading byte
6285 // - a truncated multi-byte sequence (0xC3 without its continuation)
6286 // - a UTF-16 BOM-style byte pair the UTF-8 validator rejects
6287 // - a UTF-16 surrogate half rejected by UTF-8
6288 let non_utf8_rejected: &[&[u8]] = &[
6289 &[0xFF],
6290 &[0x80],
6291 &[0xC3],
6292 &[0xFF, 0xFE],
6293 &[0xED, 0xA0, 0x80],
6294 ];
6295 for &input in non_utf8_rejected {
6296 assert_eq!(
6297 <CaixaDialeto as TryFrom<&[u8]>>::try_from(input),
6298 Err(()),
6299 "TryFrom<&[u8]> impl on CaixaDialeto must reject the \
6300 non-UTF-8 byte-sequence {input:?} with Err(()) — \
6301 silent acceptance signals the UTF-8 validation path \
6302 collapsed onto a default arm rather than the trait-\
6303 idiomatic unit-error"
6304 );
6305 }
6306 // Valid-UTF-8-but-unknown-wire candidates: the empty byte-
6307 // string, case-folded variants of accepted arms, plausible
6308 // typos, the sibling [`super::CaixaDialeto::palavra_canonica`]
6309 // / [`super::CaixaDialeto::consumidor`] byte-shapes (a caller
6310 // who confuses those distinct axes with the census-facing wire
6311 // axis trips here), and whitespace-padded / quoted forms.
6312 let unknown_wire_rejected: &[&[u8]] = &[
6313 b"",
6314 b" ",
6315 b"pacote",
6316 b"PACOTE",
6317 b"molde",
6318 b"MoldePositional",
6319 b"desconhecido",
6320 b"Unknown",
6321 b"defcaixa",
6322 b"defmolde",
6323 b"?",
6324 b"caixa-core / feira",
6325 b"pleme-doc-gen",
6326 b"nobody known",
6327 b"Pacote ",
6328 b" Pacote",
6329 b"Pacote\n",
6330 b"\"Pacote\"",
6331 ];
6332 for &input in unknown_wire_rejected {
6333 assert_eq!(
6334 <CaixaDialeto as TryFrom<&[u8]>>::try_from(input),
6335 Err(()),
6336 "TryFrom<&[u8]> impl on CaixaDialeto must reject the \
6337 valid-UTF-8-but-unknown-wire byte-string {input:?} \
6338 with Err(()) — silent acceptance signals an accept-\
6339 set widening off the paired CaixaDialeto::from_wire \
6340 resolver"
6341 );
6342 // Cross-axis witness: on a byte-string that is valid UTF-8,
6343 // the byte-view reverse-projection axis must agree with the
6344 // paired str-view reverse-projection axis
6345 // ([`TryFrom<&str>`]) — both route through the same
6346 // [`super::CaixaDialeto::from_wire`] resolver, so the two
6347 // rejection paths align by construction.
6348 if let Ok(s) = std::str::from_utf8(input) {
6349 assert_eq!(
6350 <CaixaDialeto as TryFrom<&[u8]>>::try_from(input),
6351 <CaixaDialeto as TryFrom<&str>>::try_from(s),
6352 "TryFrom<&[u8]> and TryFrom<&str> reverse-\
6353 projection axes on CaixaDialeto must agree on the \
6354 valid-UTF-8 input {input:?} — divergence signals \
6355 the two reverse paths have drifted off the same \
6356 substrate-primitive from_wire accessor"
6357 );
6358 }
6359 }
6360 }
6361
6362 #[test]
6363 fn caixa_dialeto_try_from_vec_bytes_routes_through_borrowed_byte_view_axis() {
6364 // Fail-before-pass-after byte-parity pin on the newly lifted
6365 // `impl TryFrom<Vec<u8>> for CaixaDialeto` — asserts the trait-
6366 // idiomatic owned-byte-vec reverse-projection standard-library
6367 // impl and the sibling borrowed-input [`TryFrom<&[u8]>`] axis
6368 // resolve to the same four-arm `PascalCase` wire accept-set
6369 // across every arm the exhaustive [`super::CaixaDialeto::ALL`]
6370 // slice enumerates. Extends the substrate-wide trait-idiomatic
6371 // byte-owned reverse-projection axis onto the second caixa-
6372 // core-internal closed-set fieldless typed enum peer — owned-
6373 // input mirror of the paired [`TryFrom<&[u8]>`] byte-view
6374 // reverse-projection axis (d102cb8), and byte-owned reverse
6375 // companion of the pre-existing byte-owned *forward*-projection
6376 // pair ([`From<CaixaDialeto> for Vec<u8>`], [`From<&CaixaDialeto>
6377 // for Vec<u8>`]) on this same enum. Peer of the sibling
6378 // first-mover
6379 // [`crate::kind::tests::caixa_kind_try_from_vec_bytes_routes_through_borrowed_byte_view_axis`]
6380 // (99c2849) on the [`crate::CaixaKind`] closed-set typed-enum
6381 // peer — tracks the "delegate through `TryFrom<&[u8]>` on the
6382 // `Vec<u8>::as_slice` borrow" discipline the first-mover
6383 // established.
6384 //
6385 // Rust's standard library carries no blanket
6386 // `impl<T: for<'a> TryFrom<&'a [u8]>> TryFrom<Vec<u8>> for T`,
6387 // so an owned-byte-vec caller otherwise picks between an
6388 // open-coded `<T as TryFrom<&[u8]>>::try_from(bytes.as_slice())`
6389 // at every call site whose type bounds have no compile-time
6390 // link back to the byte-owned reverse-projection axis, or a
6391 // `String::from_utf8(bytes)` two-hop shape whose error surface
6392 // leaks the standard-library `FromUtf8Error` type. This impl
6393 // closes the byte-owned reverse-projection axis at the
6394 // substrate-primitive [`super::CaixaDialeto::from_wire`]
6395 // accessor so every future `<T: TryFrom<Vec<u8>>>`-bound owned-
6396 // byte-vec consumer reaches the same four-arm `PascalCase` wire
6397 // accept-set through one trait dispatch.
6398 for &variant in CaixaDialeto::ALL {
6399 let wire_bytes: Vec<u8> = variant.as_str().as_bytes().to_vec();
6400 assert_eq!(
6401 <CaixaDialeto as TryFrom<Vec<u8>>>::try_from(wire_bytes.clone()),
6402 Ok(variant),
6403 "TryFrom<Vec<u8>> impl on CaixaDialeto must round-trip \
6404 CaixaDialeto::{variant:?}.as_str().as_bytes().to_vec() \
6405 back to Ok(CaixaDialeto::{variant:?}) — divergence from \
6406 the sibling TryFrom<&[u8]> axis signals a silent detour \
6407 off the substrate-primitive from_wire accessor"
6408 );
6409 // Cross-axis witness: the owned-byte-vec reverse-projection
6410 // axis must agree with the borrowed byte-slice reverse-
6411 // projection axis on every accepted arm — the two axes
6412 // share one `PascalCase` wire vocabulary through the
6413 // substrate-primitive `from_wire` accessor, and the owned-
6414 // input axis delegates to the borrowed peer by design.
6415 let via_owned: Result<CaixaDialeto, ()> =
6416 <CaixaDialeto as TryFrom<Vec<u8>>>::try_from(wire_bytes.clone());
6417 let via_borrowed: Result<CaixaDialeto, ()> =
6418 <CaixaDialeto as TryFrom<&[u8]>>::try_from(wire_bytes.as_slice());
6419 assert_eq!(
6420 via_owned, via_borrowed,
6421 "TryFrom<Vec<u8>> and TryFrom<&[u8]> reverse-projection \
6422 axes on CaixaDialeto must agree on \
6423 CaixaDialeto::{variant:?} — divergence signals the \
6424 owned-input and borrowed-input byte-view reverse \
6425 paths have drifted off the same substrate-primitive \
6426 from_wire accessor"
6427 );
6428 // Cross-axis witness against the paired str-view reverse
6429 // axis ([`TryFrom<&str>`]) — the three reverse paths (str-
6430 // view, byte-view borrowed, byte-view owned) share one
6431 // substrate primitive.
6432 let via_str: Result<CaixaDialeto, ()> =
6433 <CaixaDialeto as TryFrom<&str>>::try_from(variant.as_str());
6434 assert_eq!(
6435 via_owned, via_str,
6436 "TryFrom<Vec<u8>> and TryFrom<&str> reverse-projection \
6437 axes on CaixaDialeto must agree on \
6438 CaixaDialeto::{variant:?} — divergence signals the \
6439 byte-owned and str-view reverse paths have drifted \
6440 off the same substrate-primitive from_wire accessor"
6441 );
6442 // Four-corner witness: because [`CaixaDialeto`] carries no
6443 // wire-vs-diagnostic split (as_str and from_wire share one
6444 // `PascalCase` byte-vocabulary), the byte-owned reverse-
6445 // projection axis on this enum *does* round-trip against
6446 // the paired byte-owned forward-projection pair. Pin every
6447 // corner of the {owned-input, borrowed-input} ×
6448 // {From<Self> → Vec<u8>, From<&Self> → Vec<u8>} square onto
6449 // the same Ok(variant) return so a future accident that
6450 // drops one corner off the substrate-primitive accessor
6451 // trips here.
6452 let owned_forward: Vec<u8> = <Vec<u8> as From<CaixaDialeto>>::from(variant);
6453 let borrowed_forward: Vec<u8> = <Vec<u8> as From<&CaixaDialeto>>::from(&variant);
6454 assert_eq!(
6455 owned_forward, wire_bytes,
6456 "From<CaixaDialeto> for Vec<u8> forward projection on \
6457 CaixaDialeto::{variant:?} must byte-equal \
6458 variant.as_str().as_bytes().to_vec() — divergence \
6459 signals the paired forward pair drifted off the \
6460 substrate-primitive as_str accessor"
6461 );
6462 assert_eq!(
6463 borrowed_forward, wire_bytes,
6464 "From<&CaixaDialeto> for Vec<u8> forward projection on \
6465 &CaixaDialeto::{variant:?} must byte-equal \
6466 variant.as_str().as_bytes().to_vec() — divergence \
6467 signals the paired forward pair drifted off the \
6468 substrate-primitive as_str accessor"
6469 );
6470 assert_eq!(
6471 <CaixaDialeto as TryFrom<Vec<u8>>>::try_from(owned_forward.clone()),
6472 Ok(variant),
6473 "Four-corner round-trip on CaixaDialeto::{variant:?} \
6474 through From<CaixaDialeto> for Vec<u8> then \
6475 TryFrom<Vec<u8>> for CaixaDialeto must return \
6476 Ok(variant) — divergence signals the byte-owned \
6477 forward pair and the byte-owned reverse axis have \
6478 drifted apart"
6479 );
6480 assert_eq!(
6481 <CaixaDialeto as TryFrom<Vec<u8>>>::try_from(borrowed_forward),
6482 Ok(variant),
6483 "Four-corner round-trip on CaixaDialeto::{variant:?} \
6484 through From<&CaixaDialeto> for Vec<u8> then \
6485 TryFrom<Vec<u8>> for CaixaDialeto must return \
6486 Ok(variant) — divergence signals the borrowed-input \
6487 forward corner and the owned-input reverse corner \
6488 have drifted apart"
6489 );
6490 }
6491 }
6492
6493 #[test]
6494 fn caixa_dialeto_try_from_vec_bytes_rejects_unknown_and_non_utf8_bytes() {
6495 // Rejection witness on the `impl TryFrom<Vec<u8>> for CaixaDialeto`
6496 // — sweeps the same two rejection paths the sibling borrowed
6497 // `TryFrom<&[u8]>` axis collapses onto the single unit-error
6498 // return: the invalid-UTF-8 rejection path (`std::str::from_utf8`
6499 // on the underlying byte-slice returns `Err` before
6500 // [`super::CaixaDialeto::from_wire`] runs) and the valid-UTF-8-
6501 // but-unknown-wire rejection path
6502 // ([`super::CaixaDialeto::from_wire`] returns `None` on a byte-
6503 // string outside the four-arm `PascalCase` accept-set). Both
6504 // must reject so a future accidental widening of the trait
6505 // impl's accept-set (a case-fold path, a silent acceptance of
6506 // the sibling [`super::CaixaDialeto::palavra_canonica`]
6507 // `"defcaixa"` / `"defmolde"` byte-shapes on this axis, a
6508 // `#[serde(rename_all = "…")]` attribute drift that widens the
6509 // parse arm-set silently, a stray `String::from_utf8_lossy`
6510 // detour that widens the input surface with the U+FFFD
6511 // replacement character, an `Option::unwrap_or_default`-shape
6512 // fallback that maps invalid UTF-8 onto a default arm rather
6513 // than the trait-idiomatic `Err(())`) trips at caixa-core test
6514 // time. Peer of the sibling first-mover
6515 // [`crate::kind::tests::caixa_kind_try_from_vec_bytes_rejects_unknown_and_non_utf8_bytes`]
6516 // (99c2849) on the [`crate::CaixaKind`] closed-set typed-enum
6517 // peer.
6518 let non_utf8_rejected: &[&[u8]] = &[
6519 &[0xFF],
6520 &[0x80],
6521 &[0xC3],
6522 &[0xFF, 0xFE],
6523 &[0xED, 0xA0, 0x80], // UTF-16 surrogate half — rejected by UTF-8
6524 ];
6525 for &input in non_utf8_rejected {
6526 let owned: Vec<u8> = input.to_vec();
6527 assert_eq!(
6528 <CaixaDialeto as TryFrom<Vec<u8>>>::try_from(owned),
6529 Err(()),
6530 "TryFrom<Vec<u8>> impl on CaixaDialeto must reject the \
6531 non-UTF-8 byte-sequence {input:?} with Err(()) — \
6532 silent acceptance signals the UTF-8 validation path \
6533 collapsed onto a default arm rather than the trait-\
6534 idiomatic unit-error"
6535 );
6536 // Cross-axis witness: the owned-input axis must agree with
6537 // the borrowed-input axis on every rejected input.
6538 assert_eq!(
6539 <CaixaDialeto as TryFrom<Vec<u8>>>::try_from(input.to_vec()),
6540 <CaixaDialeto as TryFrom<&[u8]>>::try_from(input),
6541 "TryFrom<Vec<u8>> and TryFrom<&[u8]> reverse-projection \
6542 axes on CaixaDialeto must agree on the non-UTF-8 \
6543 input {input:?} — divergence signals the owned-input \
6544 and borrowed-input byte-view reverse paths have \
6545 drifted off the same substrate-primitive from_wire \
6546 accessor"
6547 );
6548 }
6549 // Valid-UTF-8-but-unknown-wire candidates: the empty byte-
6550 // string, case-folded variants of accepted arms, plausible
6551 // typos, the sibling [`super::CaixaDialeto::palavra_canonica`]
6552 // / [`super::CaixaDialeto::consumidor`] byte-shapes (a caller
6553 // who confuses those distinct axes with the census-facing wire
6554 // axis trips here), and whitespace-padded / quoted forms.
6555 let unknown_wire_rejected: &[&[u8]] = &[
6556 b"",
6557 b" ",
6558 b"pacote",
6559 b"PACOTE",
6560 b"molde",
6561 b"MoldePositional",
6562 b"desconhecido",
6563 b"Unknown",
6564 b"defcaixa",
6565 b"defmolde",
6566 b"?",
6567 b"caixa-core / feira",
6568 b"pleme-doc-gen",
6569 b"nobody known",
6570 b"Pacote ",
6571 b" Pacote",
6572 b"Pacote\n",
6573 b"\"Pacote\"",
6574 ];
6575 for &input in unknown_wire_rejected {
6576 let owned: Vec<u8> = input.to_vec();
6577 assert_eq!(
6578 <CaixaDialeto as TryFrom<Vec<u8>>>::try_from(owned),
6579 Err(()),
6580 "TryFrom<Vec<u8>> impl on CaixaDialeto must reject the \
6581 valid-UTF-8-but-unknown-wire byte-string {input:?} \
6582 with Err(()) — silent acceptance signals an accept-\
6583 set widening off the paired CaixaDialeto::from_wire \
6584 resolver"
6585 );
6586 // Cross-axis witness against the borrowed byte-view axis:
6587 // the two paths must agree by construction, since the owned
6588 // axis delegates to the borrowed peer.
6589 assert_eq!(
6590 <CaixaDialeto as TryFrom<Vec<u8>>>::try_from(input.to_vec()),
6591 <CaixaDialeto as TryFrom<&[u8]>>::try_from(input),
6592 "TryFrom<Vec<u8>> and TryFrom<&[u8]> reverse-projection \
6593 axes on CaixaDialeto must agree on the valid-UTF-8-\
6594 but-unknown-wire input {input:?} — divergence signals \
6595 the owned-input and borrowed-input byte-view reverse \
6596 paths have drifted off the same substrate-primitive \
6597 from_wire accessor"
6598 );
6599 }
6600 }
6601}