Skip to main content

makeover_immediate/
lib.rs

1//! The immediate-mode renderer for [`makeover_layout`].
2//!
3//! <!-- wiki: makeover-immediate -->
4//!
5//! Named for the mode, not the library, the way `makeover-tui` is named for
6//! the target and not for ratatui. Immediate mode is the constraint that
7//! actually separates this renderer from the other two, and egui is the
8//! backend it is written against.
9//!
10//! It is the harshest renderer the description has to survive: no
11//! `box-shadow`, no `inset`, no cascade, no retained tree to mutate, and
12//! `Visuals.widgets.*.bg_stroke` is a single stroke with no per-side control.
13//! A two-tone lit edge is not something egui can be configured into producing,
14//! so it gets painted by hand here, once, instead of in every consuming app.
15//!
16//! # What this crate does and does not own
17//!
18//! It owns the *expression*: two mitred polylines for a bevel and a `Frame`
19//! for a filled region. It owns no colours, no sizes and no substitutions:
20//! makeover derives `surface-well` and every consumer reads the real token.
21//! [`Palette`] is supplied by the caller,
22//! already resolved, and every radius, margin and stroke width arrives in
23//! [`FrameStyle`].
24//!
25//! That split is why the crate has no dependency on `makeover` itself: the app
26//! already resolves a theme, and coupling a renderer to a colour crate's
27//! version would buy nothing.
28//!
29//! # The cascade is the real difference
30//!
31//! A stylesheet can say "a pressed button inverts its bevel" once and let the
32//! cascade carry it. An immediate-mode renderer has nowhere to put that, so
33//! every call site decides. [`makeover_layout::Depth::pressed`] is what keeps
34//! the decision from being re-derived per widget.
35//!
36//! # Overlays
37//!
38//! [`Palette::cast`] is what overlaying means in immediate mode. [`frame`] hands
39//! the cast shadow to the `egui::Frame` for any depth whose fill is
40//! [`Fill::Overlay`], keyed off the fill rather than the variant.
41//!
42//! # The table
43//!
44//! [`table`] draws `makeover_layout::CellPart`. Two things it forces, both named
45//! where they land:
46//!
47//! - **`egui_extras`**, this crate's one dependency past egui. egui has no
48//!   table, and `Grid` gives no per-column sizing, no sticky header and no
49//!   scroll sync. A third answer here would reimplement that crate worse.
50//! - **[`Palette::action`]**, on the footing [`Palette::content`] sits on: a
51//!   link in a cell needs the action intent.
52//!
53//! Narrowing works differently from the terminal's and the module header says
54//! why: a content column cannot be measured before the app's closure has drawn
55//! it, so `egui_extras` sizes it and the declared floor budgets it.
56//!
57//! Three things are host idiom rather than description, which is why they land
58//! here and not in `makeover-layout`, and all three are answered on a handle the
59//! app never sees: the `egui_extras` row and builder this crate owns. That is
60//! [`table::cell`]'s reasoning again: what the app cannot reach, the renderer
61//! owes it.
62//!
63//! - **A selected row.** [`table::Body::selected`], a predicate asked per row,
64//!   because `set_selected` is a method on the row. Without it a file list has
65//!   no way to show what is selected, which is most of what a file list does.
66//! - **Scrolling a row into view.** [`table::Body::scroll_to`], because
67//!   `scroll_to_row` is a method on the builder. A keyboard cursor that moves
68//!   off-screen and stays there is the bug this prevents.
69//! - **Dragging a divider.** [`table::TableStyle::resizable`], which is a knob
70//!   because egui_extras offers two settings here and a renderer can honestly
71//!   make either choice.
72//!
73//! Cells are centred on the row's centre line, always, because there is no
74//! second honest answer and egui's own default (top-aligned) is the one thing it
75//! cannot be. That is not a knob.
76//!
77//! [`table::Body`] is also what splits a table's per-frame facts from its
78//! description and from its style. A row count, a selection and a scroll request
79//! are none of them style, and none of them survive the frame.
80//!
81//! # The nodes that are not fields, tables or frames
82//!
83//! [`widget`] draws a meter, a token, a control and a figure. The four are
84//! ordinary nodes, so without them a screen walk has to draw them itself, one
85//! copy per consumer.
86//!
87//! [`Palette`] carries the three status intents together rather than one per
88//! widget, for the reason [`Palette::fill`] is an `Option`: `Tone` is five
89//! members wide, and a resolver missing one has to invent a colour, which is a
90//! substitution this crate does not make.
91//! # Forms
92//!
93//! The field vocabulary sits on top of the depth vocabulary:
94//! [`makeover_layout::Field`] rendered to egui widgets, in [`field`], and a set
95//! of them laid down a column in [`group`].
96//!
97//! `makeover-webview`'s form emitter is the precedent, followed rather than
98//! re-derived, including the parts that are bug fixes: a
99//! select handed a value none of its options carries keeps that value visible
100//! instead of silently reading as the first option, which is a save-the-wrong-
101//! thing bug goingson hit for real.
102//!
103//! What differs is forced by the mode and not chosen:
104//!
105//! - **The value arrives as a `&mut`.** [`Filling`] borrows the app's own field
106//!   and the widget writes through it. There is no DOM to read back out of,
107//!   which is also why the description deliberately does not carry the value.
108//! - **A text control is drawn as a well and a select is not.** The description
109//!   holds that a well is for anything the user looks *into*, and a text field
110//!   is its own example; a select and a checkbox are pressed rather than looked
111//!   into, so they keep egui's own control painting.
112//! - **Focus is not describable, and egui owns all of it here.** **Reach**,
113//!   **focus** and the **focus ring** are this renderer's three answers and
114//!   egui already has all three: its own id stack decides what is reachable,
115//!   its own state decides what holds the keyboard, and it paints exactly one
116//!   ring. A description states none of them, and drawing a second ring on top
117//!   of egui's would break the one-ring rule. The terms
118//!   are defined once in `makeover_layout`'s crate header, "Reach, focus and
119//!   the focus ring". [`makeover_layout::State::Disabled`] *is* drawn, because
120//!   egui has no opinion about it until told.
121//! - **App-level chrome is not drawn here, and it is not this crate's to
122//!   draw.** `quasi-router` names the affordances that outlive one screen: a
123//!   `Chrome` of key bindings, and an `Outcome::Over` for a screen drawn over
124//!   another. Both are answered by `quasi-webview` and `quasi-tui`, and neither
125//!   is answerable here, because this crate depends on `makeover-layout` and
126//!   not on `quasi-router` — it is the peer of `makeover-webview` and
127//!   `makeover-tui`, one layer below the renderers that consume a `Screen`.
128//!   What is missing is the egui crate at *that* layer, which does not exist:
129//!   nothing renders a quasi `Screen` in egui at all, and chrome is one item on
130//!   the list such a crate would owe. Said here because this is where a reader
131//!   looks for it, and because the silent version reads as "egui does not need
132//!   a palette" rather than "nobody has built the renderer yet".
133
134//! # An interval is a sixth control shape
135//!
136//! [`FieldKind::Interval`] is drawn as `Control::Spanned`: two drag boxes on one
137//! row with the word `to` between them.
138//!
139//! - **Dragged rather than typed**, because that is what these controls already
140//!   were. audiofiles' six filter axes are `DragValue` pairs sharing an extent,
141//!   a speed and a suffix, and describing them into two text boxes would be a
142//!   port that cost the app a control.
143//! - **One row, not two wells stacked.** Two wells are two questions on screen
144//!   whatever the description says, and the arrangement is the whole content of
145//!   the kind.
146//! - **An empty end reads as the bound it stands for.** An unset minimum sits
147//!   on the low edge and stores no filter, which is what the shipped control
148//!   did; egui's `DragValue` has no empty state, and a text box in its place
149//!   would cost the app a control. With no extent to fall back on it reads
150//!   zero -- the one number this renderer invents, invented where the
151//!   description declined to say anything.
152//! - **The word rather than a dash**, which on a signed axis is a minus sign.
153//!   audiofiles filters loudness in dBFS.
154//!
155//! `Axis` holds the four facts both boxes share, because they are one axis:
156//! reading `min`, `max`, `step` and `unit` once is what stops the two ends
157//! drifting apart.
158//!
159//! # A number draws its unit
160//!
161//! [`Field::unit`], and this host is the one with somewhere better than the
162//! label to put it: egui's `Slider` draws a suffix beside its readout.
163//!
164//! So a slider takes it as a suffix, inside the control. A typed number has no
165//! readout of its own and takes it as a muted label after the box. Every other
166//! kind ignores it, and the description says which those are --
167//! `FieldKind::measurable`, rather than a `matches!` kept here.
168//!
169//! # The slider's track is a curve
170//!
171//! `makeover-layout` says what a slider is: a fraction and a function
172//! taking numbers to numbers, with `min` and `max` being `f(0)` and `f(1)`
173//! rather than the control's extent. This host has the easiest job of the
174//! three, because egui already has the control -- `Slider::logarithmic` is a
175//! constant-ratio track, so the mapping is a builder call rather than an
176//! arithmetic of its own.
177//!
178//! Two things worth knowing. The granularity rides on the curve, so a range
179//! reads `Field::curve.step()` and every other kind reads `Field::step`; the
180//! step is in the value's own units under either curve, so the display
181//! precision derives from it directly. And the fallback for a ratio curve
182//! across zero is asked of `Curve::is_ratio` rather than matched on the
183//! variant, so this renderer and a terminal cannot disagree about when a
184//! logarithmic request is honoured.
185//!
186//! # The slider, the unanswered chooser, and the option that is not offered
187//! yet
188//!
189//! Three things a description can say here.
190//!
191//! - **[`FieldKind::Range`] is a fifth control shape**, `Control::Slid`, drawn
192//!   with egui's `Slider`. A range missing an end falls back to a well rather
193//!   than to invented bounds, which is what
194//!   `makeover_layout::Field::bounded` is for.
195//! - **`Field::placeholder` reads on a chooser**, so a select with nothing
196//!   chosen does not show an empty box.
197//! - **`Choice::unavailable` is drawn rather than dropped.** The option stays
198//!   in the list, inert, with its precondition beside it instead of behind a
199//!   hover — a greyed row with no reason reads as a dead end, which is the
200//!   whole finding.
201//! - **`Choice::detail` is drawn under the option in a
202//!   radio group and inside the row in a combo.** A closed chooser hides its
203//!   list, so everything an option carries has to travel with its row; a group
204//!   has a line to spare and putting a sentence beside the control instead
205//!   would push every option's radio out of line with its neighbours.
206//!
207//! The value still arrives as a `&mut String` and a slider is a number, so the
208//! parse and the write-back are this renderer's, and the write happens only on
209//! a real drag: a value the app put there that this host cannot read survives
210//! being looked at.
211
212#![forbid(unsafe_code)]
213
214use egui::{
215    Color32, ComboBox, CornerRadius, DragValue, Margin, Painter, Rect, Response, RichText, Shape,
216    Slider, Stroke, TextEdit, Ui,
217};
218use makeover_layout::{
219    Bevel, Choice, Depth, Edge, Field, FieldKind, Fill, State, ThemeVariant, Tone,
220};
221use std::ops::RangeInclusive;
222
223/// Columns, narrowing, cell parts and the sort caret, over `egui_extras`.
224pub mod table;
225pub mod widget;
226
227/// The resolved colours this renderer needs, as flat values.
228///
229/// Built by the app from whatever it already uses to resolve a theme, then
230/// held and reused. Deliberately not a trait and not string-keyed: a bevel is
231/// painted per widget per frame, and a map lookup per edge is a cost with
232/// nothing to show for it.
233#[derive(Debug, Clone, Copy, PartialEq, Eq)]
234pub struct Palette {
235    /// `surface-page`.
236    pub page: Color32,
237    /// `surface-raised`.
238    pub raised: Color32,
239    /// `surface-overlay`.
240    pub overlay: Color32,
241    /// `surface-well`.
242    ///
243    /// Required, not optional. makeover derives it for every theme, so a
244    /// resolved palette without a well is not a thing that exists here.
245    /// `makeover-tui` keeps its own `Option` for a different reason, since a
246    /// terminal can have the colour and still be unable to show it.
247    pub well: Color32,
248    /// `surface-sunken`.
249    ///
250    /// A surface set back from the one it sits on, by colour and nothing else.
251    /// Not a well: a well is a hole with an edge, and this has no edge. An
252    /// immediate-mode renderer paints an arbitrary rect, so unlike
253    /// `makeover-tui` it has no excuse for declining this one.
254    ///
255    /// Required rather than optional, on the same footing as `well`: all 31
256    /// themes makeover embeds author it.
257    pub sunken: Color32,
258    /// `bevel-light`.
259    pub bevel_light: Color32,
260    /// `bevel-dark`.
261    pub bevel_dark: Color32,
262    /// `elevation`.
263    ///
264    /// What a surface that floats OVER the page is cast onto it with. The one
265    /// intent here that is about a surface's relationship to the page rather
266    /// than about the surface, which is why it is a translucent near-black on
267    /// every theme rather than something read off the palette's own ramp.
268    ///
269    /// **Only for a surface that overlays.** A menu, a tooltip, a modal. A
270    /// surface *in* the layout takes a bevel, and reaching for this on a panel
271    /// or a card is how a pre-Platinum look survives a conversion under a new
272    /// name.
273    ///
274    /// egui has a real answer for this where a terminal does not: see
275    /// [`Palette::cast`], which is the shadow to hand an
276    /// [`egui::Frame`](egui::Frame).
277    pub elevation: Color32,
278    /// `content`.
279    ///
280    /// Ordinary text.
281    pub content: Color32,
282    /// `content-secondary`.
283    ///
284    /// Inactive but usable: it still answers a press. The middle tone of the
285    /// three (wiki `three-tone-convention`), and the one an unchosen option in
286    /// a choice field takes.
287    ///
288    /// Not [`content_muted`](Self::content_muted), which carries a claim:
289    /// `State::Disabled` resolves to it, so a live control wearing it tells the
290    /// user it will not answer. `makeover-tui` draws the same widget the same
291    /// way from `makeover-tui@230bf63`.
292    ///
293    /// A step of `content` toward the page, derived at load by `makeover`
294    /// rather than authored, so it is read off the resolved theme here like
295    /// any other token and never re-derived.
296    pub content_secondary: Color32,
297    /// `content-muted`.
298    ///
299    /// A field's hint, and what
300    /// [`makeover_layout::State::Disabled`](makeover_layout::State::Disabled)
301    /// resolves to. Both readings come from the description rather than from
302    /// here: `State::Disabled` names this intent by token.
303    pub content_muted: Color32,
304    /// `action-primary`.
305    ///
306    /// What a control is drawn in.
307    ///
308    /// This is the intent [`CellPart`](makeover_layout::CellPart) exists to
309    /// separate. A cell holding a control that takes the cell's text colour is
310    /// the drift `CellPart` names.
311    pub action: Color32,
312    /// `danger`.
313    ///
314    /// A field's error message, a destructive control, a bar that has run over.
315    pub danger: Color32,
316    /// `success`.
317    ///
318    /// The three status intents arrive together and not one at a time:
319    /// [`Tone`] is five members wide and a resolver missing one has to invent
320    /// a colour for it, which is the substitution [`Palette::fill`] refuses.
321    pub success: Color32,
322    /// `warning`.
323    pub warning: Color32,
324    /// `info`.
325    pub info: Color32,
326    /// `border`, the authored line colour.
327    ///
328    /// A neutral badge's edge: a badge on the raised ground is raised too, so
329    /// the edge is what draws it.
330    pub border: Color32,
331    /// `info-surface`: raised with 12 percent of `info`. A badge's fill.
332    ///
333    /// The four tone surfaces arrive together for the status intents' reason.
334    pub info_surface: Color32,
335    /// `success-surface`.
336    pub success_surface: Color32,
337    /// `warning-surface`.
338    pub warning_surface: Color32,
339    /// `danger-surface`.
340    pub danger_surface: Color32,
341    /// `row-stripe`: every second row of a table, ink mixed into raised at 5
342    /// percent (wiki `table-model`).
343    pub row_stripe: Color32,
344    /// `row-hover`: the row under the pointer, at 9 percent.
345    pub row_hover: Color32,
346    /// `row-rule`: the hairline between rows and around a table, at 26
347    /// percent.
348    pub row_rule: Color32,
349    /// `row-selected`: a selected row, raised with 18 percent of the accent.
350    ///
351    /// A fill and never a foreground, so a row that is red for a failure stays
352    /// red while it is selected.
353    pub row_selected: Color32,
354}
355
356impl Palette {
357    /// Resolve a surface intent, or `None` for one this renderer does not know.
358    ///
359    /// A plain lookup, and no substitution.
360    ///
361    /// `Option`, because [`Fill`] is `#[non_exhaustive]` and a total function
362    /// over an open enum can only stay total by inventing a colour for a member
363    /// it has never heard of. Every member the description has today is
364    /// answered with `Some`.
365    #[must_use]
366    pub const fn fill(&self, fill: Fill) -> Option<Color32> {
367        match fill {
368            Fill::Page => Some(self.page),
369            Fill::Raised => Some(self.raised),
370            Fill::Overlay => Some(self.overlay),
371            Fill::Well => Some(self.well),
372            Fill::Sunken => Some(self.sunken),
373            _ => None,
374        }
375    }
376
377    /// The colour a [`Tone`] reads as.
378    ///
379    /// Total, unlike [`fill`](Self::fill), and the difference is not an
380    /// inconsistency. `Fill` is `#[non_exhaustive]` and `Tone` is not: the
381    /// description layer settled tone at five members and grows surfaces, so a
382    /// total function here cannot be made to invent a colour by an upstream
383    /// release the way a total `fill` could.
384    ///
385    /// [`Tone::Neutral`] is [`content`](Self::content) rather than a colour of
386    /// its own, which is what "an ordinary fact" means: a neutral badge is text
387    /// in a box, not a fifth status.
388    #[must_use]
389    pub const fn tone(&self, tone: Tone) -> Color32 {
390        match tone {
391            Tone::Neutral => self.content,
392            Tone::Info => self.info,
393            Tone::Success => self.success,
394            Tone::Warning => self.warning,
395            Tone::Danger => self.danger,
396        }
397    }
398
399    /// What a badge of this tone is filled with: its tone surface, or the
400    /// raised surface for [`Tone::Neutral`], as `makeover-webview` fills one.
401    #[must_use]
402    pub const fn tone_surface(&self, tone: Tone) -> Color32 {
403        match tone {
404            Tone::Neutral => self.raised,
405            Tone::Info => self.info_surface,
406            Tone::Success => self.success_surface,
407            Tone::Warning => self.warning_surface,
408            Tone::Danger => self.danger_surface,
409        }
410    }
411
412    /// What a badge of this tone is edged with: its tone, or
413    /// [`border`](Self::border) for [`Tone::Neutral`], whose tone is the ink.
414    #[must_use]
415    pub const fn tone_edge(&self, tone: Tone) -> Color32 {
416        match tone {
417            Tone::Neutral => self.border,
418            other => self.tone(other),
419        }
420    }
421
422    /// The cast shadow for a surface that overlays the page.
423    ///
424    /// What "overlaying" means in immediate mode, answered rather than skipped.
425    /// egui already paints shadows for its menus and windows through
426    /// [`egui::Frame::shadow`], so the honest port is to hand that machinery the
427    /// theme's tone instead of egui's own default, not to invent a painter here
428    /// the way [`paint_bevel`] had to.
429    ///
430    /// The geometry matches what `makeover-webview` composes, in points rather
431    /// than pixels: a small downward offset and a wide soft blur. A Platinum-era
432    /// menu sits just off the page rather than hovering above it.
433    ///
434    /// ```no_run
435    /// # let palette: makeover_immediate::Palette = unimplemented!();
436    /// # let ui: &mut egui::Ui = unimplemented!();
437    /// egui::Frame::popup(ui.style())
438    ///     .shadow(palette.cast())
439    ///     .show(ui, |ui| { ui.label("over the page"); });
440    /// ```
441    #[must_use]
442    pub const fn cast(&self) -> egui::Shadow {
443        egui::Shadow {
444            offset: [0, 2],
445            blur: 24,
446            spread: 0,
447            color: self.elevation,
448        }
449    }
450
451    /// Resolve a bevel edge intent.
452    #[must_use]
453    pub const fn edge(&self, edge: Edge) -> Color32 {
454        match edge {
455            Edge::Light => self.bevel_light,
456            Edge::Dark => self.bevel_dark,
457        }
458    }
459}
460
461/// The geometry a framed region is drawn with.
462///
463/// Every field is a value, which is why they all arrive from the caller:
464/// radius and border width belong to `makeover-geometry`, and margins come
465/// from its relational gaps.
466#[derive(Debug, Clone, Copy, PartialEq)]
467pub struct FrameStyle {
468    /// Corner radius. Square under the Platinum default.
469    pub radius: CornerRadius,
470    /// Inner margin between the frame and its contents.
471    pub margin: Margin,
472    /// Bevel stroke width, in points.
473    pub stroke: f32,
474}
475
476impl Default for FrameStyle {
477    /// A one-point square frame with no inner margin.
478    fn default() -> Self {
479        Self {
480            radius: CornerRadius::ZERO,
481            margin: Margin::ZERO,
482            stroke: 1.0,
483        }
484    }
485}
486
487/// Paint a two-tone edge just inside `rect`.
488///
489/// Fill first, bevel after: this adds two polylines and nothing else, so it
490/// composes over whatever is already there. That is what lets it go over an
491/// [`egui::TextEdit`] after `ui.add`, where the widget's own fill has landed.
492///
493/// Two three-point polylines meeting at opposite corners, rather than four
494/// segments, so egui mitres the corner joins instead of leaving a notch.
495///
496/// The dark polyline is drawn second, so the two corners where the runs meet
497/// take its tone. That is the right answer here rather than a concession.
498/// [`makeover_layout::Bevel`] holds those corners to belong to both edges, and
499/// a renderer with room to divide one should; at the default one-point stroke
500/// the corner is a one-point square, so the division is sub-pixel and
501/// antialiasing resolves it to the same blend the mitre already gives. Splitting
502/// it would add a seam and no information. `makeover-tui` does split, because a
503/// terminal cell is large enough that not splitting costs a visible cell of edge
504/// weight — the same rule, at a resolution where it has something to say.
505pub fn paint_bevel(painter: &Painter, rect: Rect, bevel: Bevel, palette: &Palette, stroke: f32) {
506    let (top_left, bottom_right) = bevel.edges();
507
508    // Inset by half a stroke so the line lands inside `rect` rather than
509    // straddling its edge, which on a fractional-scale display is the
510    // difference between one crisp pixel and two dim ones.
511    let r = rect.shrink(stroke / 2.0);
512
513    painter.add(Shape::line(
514        vec![r.left_bottom(), r.left_top(), r.right_top()],
515        Stroke::new(stroke, palette.edge(top_left)),
516    ));
517    painter.add(Shape::line(
518        vec![r.right_top(), r.right_bottom(), r.left_bottom()],
519        Stroke::new(stroke, palette.edge(bottom_right)),
520    ));
521}
522
523/// Draw a region at a given [`Depth`]: its fill and its edge, together.
524///
525/// [`Depth::Flat`] gets neither, and inherits whatever it sits on. That is the
526/// difference between level-with and painted-the-same-colour, and it is the
527/// reason `Depth::fill` returns an [`Option`] rather than defaulting to the
528/// page.
529pub fn frame<R>(
530    ui: &mut Ui,
531    depth: Depth,
532    palette: &Palette,
533    style: FrameStyle,
534    add_contents: impl FnOnce(&mut Ui) -> R,
535) -> R {
536    let mut f = egui::Frame::new()
537        .corner_radius(style.radius)
538        .inner_margin(style.margin);
539    // Two ways there is no fill to paint, and they collapse to the same
540    // outcome: the depth names none (Depth::Flat), or it names one this
541    // renderer cannot resolve. Either way the frame goes unfilled and the
542    // bevel below carries the depth on its own, which is the rule this
543    // module already documents for Flat.
544    if let Some(fill) = depth.fill().and_then(|f| palette.fill(f)) {
545        f = f.fill(fill);
546    }
547    // A surface that overlays the page is cast onto it. [`Palette::cast`] has
548    // answered what that means here since 0.10.0 and nothing could reach it: a
549    // description had no way to say Overlay until makeover-layout 0.14.0, so
550    // the answer sat beside the question. Keyed off the fill rather than the
551    // variant, so it stays right for whatever else the description calls an
552    // overlay later.
553    if depth.fill() == Some(Fill::Overlay) {
554        f = f.shadow(palette.cast());
555    }
556    let framed = f.show(ui, add_contents);
557    if let Some(bevel) = depth.bevel() {
558        paint_bevel(
559            ui.painter(),
560            framed.response.rect,
561            bevel,
562            palette,
563            style.stroke,
564        );
565    }
566    framed.inner
567}
568
569/// The geometry a field group is drawn with.
570///
571/// Values again, for the reason [`FrameStyle`] is: every number here belongs to
572/// `makeover-geometry` and arrives already resolved.
573#[derive(Debug, Clone, Copy, PartialEq)]
574pub struct FieldStyle {
575    /// The well a text control sits in.
576    pub frame: FrameStyle,
577    /// Between a field's own parts: its label, its control, its hint and its
578    /// error.
579    pub gap: f32,
580    /// Between one field and the next.
581    pub group_gap: f32,
582    /// What marks a required field, appended to its label.
583    ///
584    /// A knob rather than a constant, because it is the one piece of *copy* in
585    /// this crate and copy is not a renderer's call. A webview does not need it
586    /// at all — it emits the `required` attribute and the browser answers — so
587    /// this renderer is the first place where a compulsory field either shows
588    /// that it is or silently does not.
589    pub required_marker: &'static str,
590}
591
592impl Default for FieldStyle {
593    /// The default frame, no gaps, and an asterisk.
594    fn default() -> Self {
595        Self {
596            frame: FrameStyle::default(),
597            gap: 0.0,
598            group_gap: 0.0,
599            required_marker: "*",
600        }
601    }
602}
603
604/// What the field currently holds, borrowed from wherever the app keeps it.
605///
606/// The immediate-mode counterpart of `makeover_webview::form::Value`, and the
607/// place the two renderers are forced apart: there the value is read back out
608/// of the DOM after the fact, and here the widget writes through this borrow as
609/// it is edited. Same reason the description carries neither.
610///
611/// An enum rather than a bag of options, on the reasoning
612/// `makeover_webview::form::Value` records: a checkbox holding a string is
613/// unsayable here, where a struct would let it be said and then have to cope.
614///
615/// `#[non_exhaustive]` since [`Ticked`](Self::Ticked) arrived, which is the
616/// breaking change that made room for it: a host builds these and never matches
617/// on them, so the next shape of held value costs nobody a match arm.
618#[derive(Debug, Default)]
619#[non_exhaustive]
620pub enum Filling<'a> {
621    /// Nothing to edit. The control is drawn and does not answer.
622    #[default]
623    Absent,
624    /// The buffer behind anything that takes typed text, a select included:
625    /// what a select holds is the `value` of one of its [`Choice`]s.
626    ///
627    /// [`Choice`]: makeover_layout::Choice
628    Text(&'a mut String),
629    /// A checkbox, on or off.
630    On(&'a mut bool),
631    /// The values of a [`FieldKind::Checklist`]'s ticked options.
632    ///
633    /// The values rather than a bool per option, because the options are the
634    /// description's and the set is the app's: a host keeps what was ticked
635    /// under the option values it submits, and a parallel list of bools would
636    /// have to be re-aligned with the options every time the list changed.
637    /// Ticking pushes the option's value and unticking removes it, so the order
638    /// is the order things were ticked in, which is no order a handler should
639    /// read anything into.
640    Ticked(&'a mut Vec<String>),
641    /// The two buffers behind a [`FieldKind::Interval`], lower first.
642    ///
643    /// Two buffers rather than one string with a separator, which is
644    /// [`makeover_layout::Field::upper_name`]'s reason one level down: an
645    /// interval is submitted under two names, so it is edited as two values,
646    /// and a delimiter this crate owned could appear inside either of them.
647    ///
648    /// Either end may be empty while the other stands. An open end is an
649    /// answer -- "over 120 BPM" -- rather than a half-filled box.
650    Between {
651        /// The lower end's buffer.
652        lower: &'a mut String,
653        /// The upper end's buffer.
654        upper: &'a mut String,
655    },
656}
657
658/// The label, marked if the field is compulsory.
659fn label_text(field: &Field<'_>, style: &FieldStyle) -> String {
660    if field.required {
661        format!("{} {}", field.label, style.required_marker)
662    } else {
663        field.label.to_owned()
664    }
665}
666
667/// The four shapes a control comes in here, which is fewer than there are
668/// kinds.
669///
670/// [`FieldKind`] is `#[non_exhaustive]` and grows; this does not, because the
671/// ways egui has of asking for a value do not. Reducing the open set to this
672/// closed one in one total function is what keeps a new kind from needing a new
673/// arm at every match below.
674#[derive(Debug, Clone, Copy, PartialEq, Eq)]
675enum Control {
676    /// Typed into, so it is drawn as a well: the user looks into it.
677    Typed,
678    /// Picked from a control that shows one option at a time. Pressed rather
679    /// than looked into, so egui's own control painting stands.
680    Chosen,
681    /// Picked from options that are all on screen at once.
682    ///
683    /// Apart from [`Chosen`](Self::Chosen) because the description holds them
684    /// apart, and holding them apart is the whole content of
685    /// [`FieldKind::Radio`]: same question, and an answer the user can read
686    /// without opening anything.
687    Listed,
688    /// Ticked from options that are all on screen at once, as many as apply.
689    ///
690    /// Apart from [`Listed`](Self::Listed) because picking one leaves the
691    /// others standing, and apart from [`Toggled`](Self::Toggled) because it is
692    /// one question: [`FieldKind::Checklist`] asks it above its boxes, where a
693    /// checkbox is its own label.
694    Ticked,
695    /// Held on or off.
696    Toggled,
697    /// Dragged across an extent that is on screen the whole time.
698    ///
699    /// Apart from [`Typed`](Self::Typed) for the reason
700    /// [`FieldKind::Range`] is apart from `Number`: the two ends are what the
701    /// question means, so a well with a figure in it is not a quieter version
702    /// of this control, it is a different one.
703    Slid,
704    /// Picked from a list of themes that arrives grouped and marked.
705    ///
706    /// Apart from [`Chosen`](Self::Chosen) rather than folded into it, and the
707    /// distinction is the same one [`Listed`](Self::Listed) draws: it is not a
708    /// different question, it is a different amount of structure on screen. A
709    /// theme picker's rows carry a group heading and a contrast mark, and both
710    /// come from members [`Field::options`] does not have, so a shared arm
711    /// would be a `matches!` on the kind inside the loop rather than one arm
712    /// less.
713    Themed,
714    /// Two values dragged across one axis, drawn as one question.
715    ///
716    /// Apart from [`Typed`](Self::Typed) for the reason
717    /// [`FieldKind::Interval`] is apart from `Number`: two wells one under the
718    /// other are two questions on screen, whatever the description says, and
719    /// the arrangement is the whole content of the kind.
720    Spanned,
721}
722
723/// Which shape a kind takes.
724///
725/// The wildcard falls to [`Control::Typed`] on purpose: a kind added to the
726/// description since this renderer was built degrades to a text box, which
727/// accepts any value the others would, rather than to nothing drawn at all.
728///
729/// `FieldKind::File` lands there rather than growing a shape of its own. egui's
730/// honest answer is a button that opens a native picker, which is a fifth
731/// control and a file-dialog dependency, and no consumer of this crate asks for
732/// a file field. The membership test is that every renderer *could* answer
733/// honestly, not that each one does on the day. A path in a text box is not
734/// nothing.
735///
736/// `Field::accept` and `Field::multiple` land on the same position: both are the picker's arguments, and this
737/// renderer has no picker to give them to. They are not lost — the description
738/// still carries them, and the day the native dialog arrives here it is opened
739/// with them rather than with a filter written twice.
740///
741/// `FieldKind::Date` and `FieldKind::DateTime` land there too, on the same
742/// footing and with one thing owed. A
743/// calendar is a sixth control and bare `egui` has none, so a typed value is
744/// the honest answer here; what the app gets is the format the description
745/// names, `makeover_layout::DATE_FORMAT` and `DATETIME_FORMAT`, which is why
746/// those are constants rather than a sentence. audiofiles is the only consumer
747/// of this crate and asks for neither today. A calendar popup is the upgrade
748/// whenever one does.
749///
750/// `Field::as_instant` is carried and not honoured, on
751/// the same footing. It asks for the typed wall-clock value to be submitted as
752/// the moment it names, and this renderer has no submission to convert on: it
753/// draws the control and the app reads the value back, so the conversion would
754/// belong wherever that read happens rather than here. What the app gets is the
755/// local value in `DATETIME_FORMAT`, which is what it got before the member
756/// existed. No described site on this host asks for it today.
757/// One row of a closed chooser, as the single string it has room for.
758///
759/// A combo hides its list, so everything an option carries has to travel with
760/// the row it belongs to: there is no second line to put a detail on and no
761/// space beside the row to put a reason in. That is the same constraint a
762/// `<select>`'s option has in the webview, and it takes the same answer.
763///
764/// The order is what the option *is* before why it cannot be picked, which is
765/// the order the two read in and the order the radio group draws them in.
766fn combo_row(opt: &Choice<'_>) -> String {
767    let mut text = opt.label.to_owned();
768    for extra in [opt.detail, opt.unavailable].into_iter().flatten() {
769        text.push_str("  ");
770        text.push_str(extra);
771    }
772    text
773}
774
775/// How far an option's second line is inset, in points.
776///
777/// The width of egui's radio button plus the gap after it, so the line starts under the label rather than under the control. A
778/// magnitude, which is `makeover-geometry`'s subject and not this crate's --
779/// but this one is measured off a widget egui draws and sizes, so there is
780/// nothing for a spacing scale to say about it.
781const OPTION_DETAIL_INDENT: f32 = 22.0;
782
783const fn control_shape(kind: FieldKind) -> Control {
784    match kind {
785        FieldKind::Select => Control::Chosen,
786        FieldKind::Radio => Control::Listed,
787        FieldKind::Checklist => Control::Ticked,
788        FieldKind::Checkbox => Control::Toggled,
789        FieldKind::Range => Control::Slid,
790        FieldKind::Interval => Control::Spanned,
791        FieldKind::Theme => Control::Themed,
792        _ => Control::Typed,
793    }
794}
795
796/// The shape the field actually gets, which is the kind's unless the field is
797/// missing what that shape needs.
798///
799/// One case, and `makeover-layout` names it: a [`FieldKind::Range`] carries its
800/// extent in [`Field::min`] and [`Field::max`], and a range missing an end has
801/// nothing to slide across. egui's `Slider` demands a `RangeInclusive`, so
802/// inventing one would be this renderer picking bounds the app never stated and
803/// the user then dragging against them.
804///
805/// It falls back to [`Control::Typed`], which is where every kind this renderer
806/// cannot draw natively already lands: a number in a well is a true report of
807/// the value and takes any answer the slider would.
808fn shape_of(field: &Field<'_>) -> Control {
809    match control_shape(field.kind) {
810        Control::Slid if !field.bounded() => Control::Typed,
811        shape => shape,
812    }
813}
814
815/// The unit to draw beside this field's value, if there is one to draw.
816///
817/// Two conditions rather than one: the field has to carry a unit and its kind
818/// has to be one that means anything by it. `FieldKind::measurable` is the
819/// description answering the second, so this renderer does not keep its own
820/// list of which kinds are quantities -- which is the drift that predicate
821/// exists to stop.
822fn unit_of<'a>(field: &Field<'a>) -> Option<&'a str> {
823    field.unit.filter(|_| field.kind.measurable())
824}
825
826/// The two ends of a range, as egui wants them.
827///
828/// `None` when either end is missing or is not a number this host can read.
829/// The description carries the bounds as text on purpose — the bound of a date
830/// is a date — so parsing them is the renderer's job and failing to is a real
831/// outcome rather than an assertion.
832fn extent(field: &Field<'_>) -> Option<RangeInclusive<f64>> {
833    let min = field.min?.parse::<f64>().ok()?;
834    let max = field.max?.parse::<f64>().ok()?;
835    Some(min..=max)
836}
837
838/// How many decimals to write a dragged value back with.
839///
840/// Read off [`Field::step`], which is the only thing that says what
841/// granularity the question has: a step of `0.01` is a two-decimal question and
842/// a step of `1` is a whole-number one. Without a step the host's own
843/// granularity stands, and egui's is continuous, so the value is written back
844/// at whatever precision it round-trips at.
845fn decimals(step: Option<&str>) -> Option<usize> {
846    let step = step?;
847    Some(match step.split_once('.') {
848        Some((_, fraction)) => fraction.trim_end_matches('0').len(),
849        None => 0,
850    })
851}
852
853/// What a select shows for the value it currently holds.
854///
855/// A value no option carries stays on screen as itself rather than reading as
856/// whichever option happens to be first. goingson saved a backup retention of
857/// 10 against a 1/3/7/14/0 list and the browser silently showed it as 1, so the
858/// next save wrote a value nobody chose; `makeover-webview` grew the fix as a
859/// stray `<option>` and this is the same fix in the shape egui allows.
860///
861/// The empty value is the one case that reads as unanswered rather than as an
862/// answer, and [`chosen_text`] is what puts the field's ghost text there.
863fn shown_label<'a>(options: &'a [Choice<'a>], value: &'a str) -> &'a str {
864    options
865        .iter()
866        .find(|opt| opt.value == value)
867        .map_or(value, |opt| opt.label)
868}
869
870/// What a select's closed control reads, and in which tone.
871///
872/// A chooser with nothing chosen showed an empty box: `shown_label` falls back
873/// to the value, and the unanswered value is the empty string. So an app with
874/// an instruction to give — audiofiles' "Select device..." — had nowhere to put
875/// it but a disabled button elsewhere on the screen, which is the affordance
876/// this vocabulary keeps moving messages *off*.
877///
878/// [`Field::placeholder`] is already the description's word for "what the field
879/// reads while it is empty" and was honoured by the typed kinds alone, so
880/// nothing new is said here; the renderer is what had not caught up. Muted
881/// because it is not an answer, the same tone the typed kinds' ghost text takes
882/// three lines up.
883///
884/// A value no option carries but that is *not* empty stays as itself, in
885/// `content`: that is the goingson retention bug and it is a wrong answer
886/// rather than an absent one.
887///
888/// Returns the words and the tone rather than a built [`RichText`], because
889/// what it decides is both of them and only one of them is readable back off a
890/// `RichText`.
891///
892/// [`Field::placeholder`]: makeover_layout::Field::placeholder
893fn chosen_text<'a>(field: &'a Field<'a>, value: &'a str, palette: &Palette) -> (&'a str, Color32) {
894    match field.placeholder {
895        Some(ghost) if value.is_empty() => (ghost, palette.content_muted),
896        _ => (shown_label(field.options, value), palette.content),
897    }
898}
899
900/// What one option in a choice field is drawn in.
901///
902/// The chosen one is the emphasised thing and takes `content`; the rest take
903/// [`content_secondary`](Palette::content_secondary), because an option that is
904/// not chosen is still an option and pressing it chooses it. Muted would be the
905/// lie: [`State::Disabled`] resolves to it, so a five-option field read as one
906/// live row and four dead ones. `makeover-tui` draws it the same way
907/// (`makeover-tui@230bf63`); wiki `three-tone-convention` is the table.
908fn option_color(value: &str, option: &str, palette: &Palette) -> Color32 {
909    if value == option {
910        palette.content
911    } else {
912        palette.content_secondary
913    }
914}
915
916/// Which end of an interval a box is.
917///
918/// Named rather than a bool, because what it selects is not a side but a
919/// fallback: an empty end reads as the bound it stands for, and which bound
920/// that is depends on the end.
921#[derive(Debug, Clone, Copy, PartialEq, Eq)]
922enum Bound {
923    /// The lower end, falling back to the start of the extent.
924    Low,
925    /// The upper end, falling back to its end.
926    High,
927}
928
929/// The facts an interval's two boxes share.
930///
931/// One struct because they are one axis: [`Field::min`], [`Field::max`],
932/// [`Field::step`] and [`Field::unit`] describe the question rather than either
933/// end of it, so reading them once is what stops the two boxes drifting apart.
934struct Axis<'a> {
935    /// The extent both ends are dragged inside, when it is one this host can
936    /// read.
937    extent: Option<RangeInclusive<f64>>,
938    /// The granularity, as the description writes it.
939    step: Option<&'a str>,
940    /// What the axis is measured in.
941    unit: Option<&'a str>,
942}
943
944impl Axis<'_> {
945    /// What an empty end reads as: the bound it stands for.
946    ///
947    /// Zero with no extent to fall back on. That is the one number this
948    /// renderer invents, and it invents it where the description declined to
949    /// say anything: an unbounded interval has no edge for the end to sit on,
950    /// and a drag box has to start somewhere.
951    fn edge(&self, which: Bound) -> f64 {
952        self.extent.as_ref().map_or(0.0, |extent| match which {
953            Bound::Low => *extent.start(),
954            Bound::High => *extent.end(),
955        })
956    }
957
958    /// One end of the interval, as a drag box.
959    ///
960    /// # An empty end reads as its bound
961    ///
962    /// Which is what the shipped control did before it was described: an unset
963    /// minimum sits on the low edge and stores no filter. egui's `DragValue`
964    /// holds a number and has no empty state to offer, so the alternative was a
965    /// text box, and that would cost the app a control on the way into being
966    /// described.
967    ///
968    /// With no extent to fall back on, an empty end reads zero. That is the one
969    /// number this renderer invents, and it invents it where the description
970    /// declined to say anything: an unbounded interval has no edge for the end
971    /// to sit on, and a drag box has to start somewhere.
972    ///
973    /// Nothing is written back until the user drags, so a value the app put
974    /// there survives being looked at -- the same guarantee the slider makes.
975    fn end(&self, ui: &mut Ui, value: &mut String, which: Bound) -> Response {
976        let mut number = value.parse::<f64>().unwrap_or(self.edge(which));
977        let mut drag = DragValue::new(&mut number);
978        if let Some(extent) = self.extent.clone() {
979            drag = drag.range(extent);
980        }
981        if let Some(places) = decimals(self.step) {
982            drag = drag.max_decimals(places);
983        }
984        if let Some(step) = self.step.and_then(|s| s.parse::<f64>().ok()) {
985            drag = drag.speed(step);
986        }
987        // Inside the control, beside the readout, which is where `Field::unit`
988        // was decided to belong and where these boxes already put it.
989        if let Some(unit) = self.unit {
990            drag = drag.suffix(format!(" {unit}"));
991        }
992        let response = ui.add(drag);
993        if response.changed() {
994            *value = match decimals(self.step) {
995                Some(places) => format!("{number:.places$}"),
996                None => number.to_string(),
997            };
998        }
999        response
1000    }
1001}
1002
1003/// The control alone, without its label, hint or error.
1004fn control(
1005    ui: &mut Ui,
1006    field: &Field<'_>,
1007    filling: Filling<'_>,
1008    palette: &Palette,
1009    style: &FieldStyle,
1010    named_by: Option<egui::Id>,
1011) -> Response {
1012    // The mismatch path: described as one thing and filled as another. Nothing
1013    // here can fix it, so it is drawn as the empty, inert version of what was
1014    // described — visible on screen, in the way an empty select is at the
1015    // webview renderer, rather than reported in a log nobody reads.
1016    let mut discard = String::new();
1017    // The interval's second scratch buffer. Two ends means the mismatch path
1018    // needs two places to write nothing to.
1019    let mut spare = String::new();
1020    let mut off = false;
1021
1022    match shape_of(field) {
1023        Control::Slid => {
1024            let value = match filling {
1025                Filling::Text(text) => text,
1026                _ => &mut discard,
1027            };
1028            // `shape_of` has already refused an unbounded range, so the extent
1029            // is only missing here if a bound is not a number — a date range,
1030            // say, which this control cannot draw either.
1031            let Some(extent) = extent(field) else {
1032                return ui.label(RichText::new(value.as_str()).color(palette.content));
1033            };
1034
1035            // A value the host cannot read starts at the low end rather than at
1036            // zero, which may be outside the extent entirely. Nothing is
1037            // written back until the user drags, so an unreadable value the app
1038            // put there survives being looked at.
1039            let mut number = value.parse::<f64>().unwrap_or(*extent.start());
1040            // The granularity is the curve's as of makeover-layout 0.32.0. It
1041            // is still in the value's own units, so the display precision is
1042            // read off it exactly as before.
1043            let step = field.curve.step();
1044            let mut slider = Slider::new(&mut number, extent.clone()).text("");
1045            if let Some(places) = decimals(step) {
1046                slider = slider.max_decimals(places);
1047            }
1048            if let Some(step) = step.and_then(|s| s.parse::<f64>().ok()) {
1049                slider = slider.step_by(step);
1050            }
1051            // egui's own constant-ratio track, which is this host's answer to
1052            // `Curve::Logarithmic`. `is_ratio` rather than a match on the
1053            // variant, because a ratio across zero is not one: makeover-layout
1054            // decides the fallback so that four renderers cannot disagree about
1055            // when it applies.
1056            if field.curve.is_ratio(*extent.start(), *extent.end()) {
1057                slider = slider.logarithmic(true);
1058            }
1059            // The unit goes inside the control, beside the readout egui already
1060            // draws. That placement is the argument `Field::unit` was decided
1061            // on: it is where these controls put it before they were described,
1062            // and it is the one a label could never reach.
1063            if let Some(unit) = unit_of(field) {
1064                slider = slider.suffix(format!(" {unit}"));
1065            }
1066            let response = ui.add(slider);
1067            if response.changed() {
1068                *value = match decimals(step) {
1069                    Some(places) => format!("{number:.places$}"),
1070                    None => number.to_string(),
1071                };
1072            }
1073            response
1074        }
1075        // One question, so one row. Two wells stacked would be two questions on
1076        // screen whatever the description said, which is the reading
1077        // `FieldKind::Interval` exists to prevent.
1078        //
1079        // Dragged rather than typed, because that is what these controls
1080        // already were: audiofiles' six filter axes are `DragValue` pairs with
1081        // a shared extent, a speed and a suffix, and a port that turned them
1082        // into text boxes would be a description costing the app a control.
1083        Control::Spanned => {
1084            let (lower, upper) = match filling {
1085                Filling::Between { lower, upper } => (lower, upper),
1086                _ => (&mut discard, &mut spare),
1087            };
1088            let axis = Axis {
1089                extent: extent(field),
1090                step: field.step,
1091                unit: unit_of(field),
1092            };
1093            ui.horizontal(|ui| {
1094                let low = axis.end(ui, lower, Bound::Low);
1095                // The word rather than a dash. A dash between two numbers is a
1096                // minus sign on a signed axis, and audiofiles filters loudness
1097                // in dBFS.
1098                ui.label(RichText::new("to").color(palette.content_secondary));
1099                let high = axis.end(ui, upper, Bound::High);
1100                // Both ends, by name. A union response carries the first id, so
1101                // labelling the union outside this arm names the lower box and
1102                // leaves the upper one announced as whatever number is in it --
1103                // which is how an interval half-kept the fix that gave every
1104                // other shape its question.
1105                if let Some(id) = named_by {
1106                    low.clone().labelled_by(id);
1107                    high.clone().labelled_by(id);
1108                }
1109                low | high
1110            })
1111            .inner
1112        }
1113        Control::Typed => {
1114            let text = match filling {
1115                Filling::Text(text) => text,
1116                _ => &mut discard,
1117            };
1118            // An empty frame and no margin: the well is this crate's, and egui's
1119            // own control background and padding would sit underneath it saying
1120            // something different about both.
1121            // Keyed on the description's own `multiline` and not on the
1122            // member: a markdown field is several lines by definition, and a
1123            // single-line edit would be a control the value cannot fit in. egui
1124            // does nothing else with the markdown, which is the honest answer
1125            // rather than a gap -- the source is text, and editing it as text
1126            // loses none of it.
1127            let mut edit = if field.kind.multiline() {
1128                TextEdit::multiline(text)
1129            } else {
1130                TextEdit::singleline(text)
1131            }
1132            .frame(egui::Frame::NONE)
1133            .margin(Margin::ZERO)
1134            .text_color(palette.content)
1135            .password(field.kind.confidential());
1136            if let Some(ghost) = field.placeholder {
1137                edit = edit.hint_text(RichText::new(ghost).color(palette.content_muted));
1138            }
1139            let response = frame(ui, Depth::Well, palette, style.frame, |ui| ui.add(edit));
1140            // A typed number has no readout of its own to sit beside, so the
1141            // unit follows the box. Muted, because it is a fact about the value
1142            // rather than a second thing to read.
1143            match unit_of(field) {
1144                Some(unit) => {
1145                    ui.label(RichText::new(unit).color(palette.content_muted));
1146                    response
1147                }
1148                None => response,
1149            }
1150        }
1151        Control::Toggled => {
1152            let on = match filling {
1153                Filling::On(on) => on,
1154                _ => &mut off,
1155            };
1156            ui.checkbox(on, RichText::new(field.label).color(palette.content))
1157        }
1158        Control::Listed => {
1159            let value = match filling {
1160                Filling::Text(text) => text,
1161                _ => &mut discard,
1162            };
1163            // No `shown_label` counterpart, and none is needed: a value no
1164            // option carries leaves every button unfilled, which is already
1165            // the honest report on screen. The select needs the fix because it
1166            // has one slot and must put *something* in it.
1167            let group = ui.vertical(|ui| {
1168                let mut answered: Option<Response> = None;
1169                for opt in field.options {
1170                    // An option that cannot be picked yet is drawn and does not
1171                    // answer, with the precondition beside it rather than
1172                    // behind a hover: a greyed row with no reason reads as a
1173                    // dead end, which is the state `Choice::unavailable` exists
1174                    // to stop being sayable.
1175                    let picked = if let Some(reason) = opt.unavailable {
1176                        ui.horizontal(|ui| {
1177                            let picked = ui
1178                                .add_enabled_ui(false, |ui| {
1179                                    ui.radio_value(
1180                                        value,
1181                                        opt.value.to_owned(),
1182                                        RichText::new(opt.label).color(palette.content_muted),
1183                                    )
1184                                })
1185                                .inner;
1186                            ui.label(RichText::new(reason).color(palette.content_muted));
1187                            picked
1188                        })
1189                        .inner
1190                    } else {
1191                        ui.radio_value(
1192                            value,
1193                            opt.value.to_owned(),
1194                            RichText::new(opt.label).color(option_color(value, opt.value, palette)),
1195                        )
1196                    };
1197                    // What picking it means, under the option rather than
1198                    // beside it. makeover-layout 0.39.0, and the placement is
1199                    // the difference from the reason above: a precondition is
1200                    // short enough to sit on the line, and a sentence saying
1201                    // what a tier is would push every option's control out of
1202                    // line with its neighbours.
1203                    //
1204                    // Indented past the radio, so it reads as belonging to the
1205                    // option above rather than as a label of its own. Muted,
1206                    // the same reading `.form-option-detail` takes in the
1207                    // webview: the line orients the label, it does not compete
1208                    // with it.
1209                    if let Some(detail) = opt.detail {
1210                        ui.horizontal(|ui| {
1211                            ui.add_space(OPTION_DETAIL_INDENT);
1212                            ui.label(RichText::new(detail).color(palette.content_muted));
1213                        });
1214                    }
1215                    answered = Some(match answered {
1216                        Some(prev) => prev.union(picked),
1217                        None => picked,
1218                    });
1219                }
1220                answered
1221            });
1222            // A group described with no options answers as its own empty area
1223            // rather than as no response at all, which keeps the caller's
1224            // `.changed()` chain working on a field whose option list has not
1225            // loaded yet.
1226            group.inner.unwrap_or(group.response)
1227        }
1228        Control::Ticked => {
1229            // A host that lends no set still draws what the description
1230            // marked, which is `Choice::chosen` and the whole of what a
1231            // checklist carries about its answer.
1232            let mut seeded: Vec<String>;
1233            let ticked = if let Filling::Ticked(ticked) = filling {
1234                ticked
1235            } else {
1236                seeded = field
1237                    .options
1238                    .iter()
1239                    .filter(|opt| opt.chosen)
1240                    .map(|opt| opt.value.to_owned())
1241                    .collect();
1242                &mut seeded
1243            };
1244            let group = ui.vertical(|ui| {
1245                let mut answered: Option<Response> = None;
1246                for opt in field.options {
1247                    let mut on = ticked.iter().any(|value| value == opt.value);
1248                    let before = on;
1249                    // The radio group's rule for an option that cannot be
1250                    // picked yet: drawn, inert, and saying why on its own line.
1251                    let color = if !opt.available() {
1252                        palette.content_muted
1253                    } else if on {
1254                        palette.content
1255                    } else {
1256                        palette.content_secondary
1257                    };
1258                    let picked = ui
1259                        .horizontal(|ui| {
1260                            let picked = ui
1261                                .add_enabled_ui(opt.available(), |ui| {
1262                                    ui.checkbox(&mut on, RichText::new(opt.label).color(color))
1263                                })
1264                                .inner;
1265                            if let Some(reason) = opt.unavailable {
1266                                ui.label(RichText::new(reason).color(palette.content_muted));
1267                            }
1268                            picked
1269                        })
1270                        .inner;
1271                    if on != before {
1272                        if on {
1273                            ticked.push(opt.value.to_owned());
1274                        } else {
1275                            ticked.retain(|value| value != opt.value);
1276                        }
1277                    }
1278                    // Under the option, indented past the box, for the reason
1279                    // the radio group gives.
1280                    if let Some(detail) = opt.detail {
1281                        ui.horizontal(|ui| {
1282                            ui.add_space(OPTION_DETAIL_INDENT);
1283                            ui.label(RichText::new(detail).color(palette.content_muted));
1284                        });
1285                    }
1286                    answered = Some(match answered {
1287                        Some(prev) => prev.union(picked),
1288                        None => picked,
1289                    });
1290                }
1291                answered
1292            });
1293            group.inner.unwrap_or(group.response)
1294        }
1295        Control::Chosen => {
1296            let value = match filling {
1297                Filling::Text(text) => text,
1298                _ => &mut discard,
1299            };
1300            let (shown, tone) = chosen_text(field, value, palette);
1301            ComboBox::from_id_salt(field.name)
1302                .selected_text(RichText::new(shown).color(tone))
1303                .show_ui(ui, |ui| {
1304                    for opt in field.options {
1305                        // Same rule as the radio group: shown, inert, and
1306                        // saying why. A closed control hides its list, so the
1307                        // reason has to travel with the row it belongs to.
1308                        // A closed control hides its list, so everything an
1309                        // option carries has to travel with the row it belongs
1310                        // to. That is why both extra strings run into the text
1311                        // here and neither does in the group above: a combo
1312                        // row is a row, the way a `<select>`'s option is.
1313                        let text = combo_row(opt);
1314                        if opt.unavailable.is_some() {
1315                            ui.add_enabled_ui(false, |ui| {
1316                                ui.selectable_value(
1317                                    value,
1318                                    opt.value.to_owned(),
1319                                    RichText::new(text).color(palette.content_muted),
1320                                );
1321                            });
1322                            continue;
1323                        }
1324                        ui.selectable_value(
1325                            value,
1326                            opt.value.to_owned(),
1327                            RichText::new(text).color(option_color(value, opt.value, palette)),
1328                        );
1329                    }
1330                })
1331                .response
1332        }
1333        // The grouping comes out of the order rather than out of a group list:
1334        // `Field::themes` arrives sorted by variant, so the run of one variant
1335        // is the group and a heading opens whenever the variant changes. Same
1336        // walk as `makeover-webview`'s `<optgroup>` emission, which is what
1337        // keeps two renderers from disagreeing about where a group starts.
1338        Control::Themed => {
1339            let value = match filling {
1340                Filling::Text(text) => text,
1341                _ => &mut discard,
1342            };
1343            let shown = themed_text(field, value);
1344            ComboBox::from_id_salt(field.name)
1345                .selected_text(RichText::new(shown).color(palette.content))
1346                .show_ui(ui, |ui| {
1347                    if let Some(follow) = field.follows {
1348                        // First and outside every heading. It names no theme
1349                        // and sits in no variant, so a heading over it would be
1350                        // inventing a fourth variant for one row.
1351                        ui.selectable_value(
1352                            value,
1353                            follow.value.to_owned(),
1354                            RichText::new(follow.label).color(option_color(
1355                                value,
1356                                follow.value,
1357                                palette,
1358                            )),
1359                        );
1360                    }
1361                    let mut open: Option<ThemeVariant> = None;
1362                    for theme in field.themes {
1363                        if open != Some(theme.variant) {
1364                            // A heading rather than a `selectable_value`: it is
1365                            // not pickable, and egui has no inert row that
1366                            // still reads as a row. `content_muted` is the tone
1367                            // for something that is not an answer, which is the
1368                            // ghost text's tone eight lines up.
1369                            if open.is_some() {
1370                                ui.separator();
1371                            }
1372                            ui.label(
1373                                RichText::new(theme.variant.heading()).color(palette.content_muted),
1374                            );
1375                            open = Some(theme.variant);
1376                        }
1377                        ui.selectable_value(
1378                            value,
1379                            theme.id.to_owned(),
1380                            RichText::new(format!("{}  {}", theme.name, theme.contrast.badge()))
1381                                .color(option_color(value, theme.id, palette)),
1382                        );
1383                    }
1384                })
1385                .response
1386        }
1387    }
1388}
1389
1390/// What a theme picker's closed control reads.
1391///
1392/// [`chosen_text`]'s counterpart, and it is separate for the reason
1393/// [`Control::Themed`] is: the label lives on a [`makeover_layout::ThemeChoice`]
1394/// rather than on a [`Choice`], and the follow row is a third place to look.
1395///
1396/// No placeholder arm. A theme picker is never unanswered in the way a select
1397/// is — an app that resolved a theme to paint this control with has one — and
1398/// falling back to the raw value is the honest report on a stored id whose
1399/// theme has since been deleted.
1400fn themed_text<'a>(field: &'a Field<'a>, value: &'a str) -> &'a str {
1401    if let Some(follow) = field.follows
1402        && follow.value == value
1403    {
1404        return follow.label;
1405    }
1406    field
1407        .themes
1408        .iter()
1409        .find(|theme| theme.id == value)
1410        .map_or(value, |theme| theme.name)
1411}
1412
1413/// One field, as the column the app drops into its form.
1414///
1415/// The anatomy is `makeover-webview`'s, so the two renderers put a form
1416/// together the same way: label, control, hint, error, top to bottom, with a
1417/// checkbox labelling itself instead of taking a label above.
1418///
1419/// Returns [`None`] for a [`FieldKind::Hidden`] field, which is what
1420/// [`FieldKind::visible`] means and is the honest answer here: a webview still
1421/// emits an input for it because the form submits, and an immediate-mode
1422/// renderer has no form and no submission, so a hidden field is a value the app
1423/// already holds and there is nothing to draw or to respond to.
1424///
1425/// `state` is the description's interaction axis.
1426/// [`State::Disabled`] greys the field and stops it answering, through
1427/// [`State::suppresses_interaction`] rather than through a second reading of
1428/// what disabled means. Focus is not on that axis and never reaches here: egui
1429/// owns reach, focus and the ring for this renderer, and one ring means not a
1430/// second one per renderer that happens to have opinions.
1431pub fn field(
1432    ui: &mut Ui,
1433    field: &Field<'_>,
1434    filling: Filling<'_>,
1435    state: Option<State>,
1436    palette: &Palette,
1437    style: &FieldStyle,
1438) -> Option<Response> {
1439    if !field.kind.visible() {
1440        return None;
1441    }
1442    let enabled = !state.is_some_and(State::suppresses_interaction);
1443    let text = if enabled {
1444        palette.content
1445    } else {
1446        palette.content_muted
1447    };
1448
1449    let response = ui
1450        .vertical(|ui| {
1451            ui.spacing_mut().item_spacing.y = style.gap;
1452
1453            // A checkbox labels itself, on the right of the box.
1454            // `FieldKind::labels_itself` is the description saying so, and both
1455            // webview apps special-cased it inline before it did.
1456            let named_by = (!field.kind.labels_itself())
1457                .then(|| ui.label(RichText::new(label_text(field, style)).color(text)));
1458
1459            let response = ui
1460                .add_enabled_ui(enabled, |ui| {
1461                    control(
1462                        ui,
1463                        field,
1464                        filling,
1465                        palette,
1466                        style,
1467                        named_by.as_ref().map(|l| l.id),
1468                    )
1469                })
1470                .inner;
1471
1472            // The label, attached rather than merely adjacent.
1473            //
1474            // Drawing it above the control and stopping there is what this did
1475            // until 2026-08-22, and it put an unnamed box in the accessibility
1476            // tree with some text near it: a screen reader announced a text
1477            // field with no question, and a prefilled one announced its own
1478            // contents instead. audiofiles' four name modals were the site that
1479            // measured it, through a harness reading what the panel drew.
1480            //
1481            // Worth stating why it was worth fixing here rather than in each
1482            // app: `Field::label` is a member the description carries so a
1483            // renderer does not have to guess, `makeover-webview` has always
1484            // named it in `aria-describedby`, and the two renderers disagreeing
1485            // about a fact the description states is the one thing this layer
1486            // exists to prevent. A checkbox is unaffected -- egui names one from
1487            // its own text, which is what `labels_itself` already says.
1488            let response = match named_by {
1489                Some(label) => response.labelled_by(label.id),
1490                None => response,
1491            };
1492
1493            // Standing help, then what the answer costs, then what is wrong
1494            // now. All three, in that order, for the reason the webview
1495            // renderer names all three in `aria-describedby`: an error
1496            // appearing must not take the hint away with it. This host has the
1497            // room, so unlike makeover-tui it never has to choose -- the
1498            // precedence rule on `Field::note` is for the renderer that does.
1499            if let Some(hint) = field.hint {
1500                ui.label(RichText::new(hint).color(palette.content_muted));
1501            }
1502            // The note carries its own tone, and `Palette::tone` is what
1503            // resolves it, so a Neutral note is ordinary content rather than
1504            // a colour this renderer picked.
1505            if let Some((tone, note)) = field.note {
1506                ui.label(RichText::new(note).color(palette.tone(tone)));
1507            }
1508            if let Some(error) = field.error {
1509                ui.label(RichText::new(error).color(palette.danger));
1510            }
1511            response
1512        })
1513        .inner;
1514
1515    Some(response)
1516}
1517
1518/// A set of fields, laid down a column.
1519///
1520/// `show_extended` is the disclosure, and it is a parameter rather than state
1521/// held here because the disclosure belongs to the *form* and not to any field:
1522/// [`Field::extended`] marks which fields are behind one, and the app owns
1523/// whether it is open. That is the same division `makeover-webview` draws when
1524/// it marks the group `data-extended` and emits no control to toggle it.
1525///
1526/// `draw` is called once per field that should be visible, in order. Taking a
1527/// callback rather than a slice of [`Filling`]s is what keeps the app's own
1528/// values borrowed one at a time: a form's fields usually live in different
1529/// structs, and a parallel array would have to be built each frame and kept in
1530/// step with the description by hand.
1531pub fn group<'a>(
1532    ui: &mut Ui,
1533    fields: &'a [Field<'a>],
1534    show_extended: bool,
1535    style: &FieldStyle,
1536    mut draw: impl FnMut(&mut Ui, &'a Field<'a>),
1537) {
1538    ui.vertical(|ui| {
1539        ui.spacing_mut().item_spacing.y = style.group_gap;
1540        for f in fields {
1541            if f.extended && !show_extended {
1542                continue;
1543            }
1544            draw(ui, f);
1545        }
1546    });
1547}
1548
1549#[cfg(test)]
1550mod tests;