Skip to main content

rto_graph/
lib.rs

1//! Provenance-tagged knowledge graph store.
2//!
3//! Every edge in a Roteiro graph carries a [`Provenance`] tag recording how it
4//! was produced: deterministically derived from source ASTs, authored by a
5//! human or agent in an ADR/blueprint, or inferred heuristically from docs and
6//! other artifacts. See ADR-0001.
7//!
8//! The graph is a set of [`Node`]s addressed by a deterministic natural
9//! [`Node::key`], connected by [`Edge`]s. Facts extracted from one source blob
10//! are grouped into a [`FactSet`] and applied atomically to a [`Store`].
11//!
12//! @rto:0001
13
14mod artifact;
15// Who wrote the change under review, from its `Co-Authored-By` trailers (#649).
16// In *this* crate for the reason `model_choice` and `review_corpus` are: the
17// comparison is against the model this crate resolves, and keeping the rule pure
18// is what lets "would this reviewer be reviewing its own work" be answered with
19// no engine, no git and no network.
20pub mod authorship;
21// Audio metadata (ADR-0016): codec, rate, bit depth, channels, duration and tags,
22// read from the container without decoding and without a model. Unlike the media
23// module below, these *are* `derived` facts and do live in `nodes`/`edges` — the
24// complement of ADR-0015 rather than an exception to it.
25#[cfg(feature = "audio-metadata")]
26pub mod audio;
27mod cache;
28// RFC 3339 UTC formatting for evidence timestamps (#667). Here rather than in
29// `rto-exec` because `rto-exec` is optional and the render paths, which are
30// gated on nothing, need the same formatter — twice now, in two different
31// renderers. `rto-exec` re-exports it; see the module for the history.
32mod clock;
33mod codegraph;
34mod config_keys;
35mod context;
36// The holder for the media extractors' process-wide native engines — and the
37// deterministic release that keeps a Metal build from aborting at exit (#291) —
38// now lives one level down, next to the llama.cpp backend that shares the same
39// mechanism: `rto_llama::EngineSlot` (#296).
40mod extract;
41// Analyzer findings (ADR-0012): a *separate* artifact store, deliberately not a
42// provenance class and deliberately not in `nodes`/`edges`.
43mod findings;
44mod git;
45#[cfg(feature = "inference")]
46mod infer;
47mod links;
48mod markers;
49// Generated media content (ADR-0015): ASR transcripts and VLM descriptions. Like
50// findings, a *separate* artifact store — generated text is not a deterministic
51// function of the bytes, so it is not a `derived` fact and never enters
52// `nodes`/`edges`.
53pub mod media;
54// Episodic agent memory (ADR-0013): what a session learned, which has no
55// generating function at all — so it is neither `derived` nor `authored`, and it
56// gets a *separate* artifact store on the same terms as findings and media.
57mod memory;
58mod migrations;
59mod model;
60// Which model serves which task, and **why** (Stage 33). Deliberately in *this*
61// crate: `gix` is pinned here without transports, so a resolver that decides
62// which model runs structurally cannot grow a "check for a newer one" call.
63#[cfg(feature = "models")]
64pub mod model_choice;
65#[cfg(feature = "models")]
66mod models;
67mod provenance;
68mod query;
69// Stage 35 — the adjudicated review corpus, and the two pure decisions made over
70// it. In *this* crate for the same reason `model_choice` is: `gix` is pinned here
71// without transports, and both a historical record that must not be "refreshed
72// from the GitHub API" and a suppression rule that must not "just ask CI" are
73// precisely the code that would otherwise acquire such a call.
74pub mod compile_claim;
75pub mod review_corpus;
76pub mod review_score;
77// Stage 35b — the reviewer's judgement, which is likewise pure: prompt assembly,
78// response parsing and the compile-claim site derivation are functions of bytes,
79// so what the reviewer *decides* is testable with no model and no network. The
80// loop that calls an engine is in the binary, where the engine already is.
81pub mod reviewer;
82mod store;
83mod sync;
84mod text;
85/// The project-level dependency shape of a workspace: roles, parents, and the
86/// config-key baseline the cross-repo views pivot on (#623).
87pub mod topology;
88// Whether a producer's identity is measured or asserted (ADR-0019 §5). In *this*
89// crate rather than in `rto-remote` because `rto-remote` depends on this one, so
90// `ModelSource::Remote` cannot name a type that lives there — and because the
91// grade qualifies `Producer`, which is here. Two variants and a sentence: it
92// brings no transport with it.
93pub mod trust;
94mod workspace;
95
96pub use artifact::{ARTIFACT_SCHEMA, GraphArtifact};
97#[cfg(feature = "audio-metadata")]
98pub use audio::{AUDIO_STREAM_KIND, AudioDuration, AudioFacts, AudioTag, Exactness};
99pub use cache::{CacheError, ObjectCache, ObjectSweep};
100pub use clock::{age_in_days, rfc3339_from_unix, rfc3339_utc, unix_from_rfc3339};
101pub use codegraph::{ORACLE_SCHEMA, OracleError, OracleReport, compare as compare_codegraph};
102pub use config_keys::{
103    ConfigKey, canonicalize as canonicalize_config_key, flatten as flatten_config, is_config_path,
104    is_secret_key, is_tooling_config_path, normalize as normalize_config_key,
105};
106pub use context::{
107    BoundedEdges, ContextEdge, ContextNode, ContextRefresh, NodeContext, OmittedEdges,
108    TOOL_CONTEXT_EDGE_CAP, ToolContext, build_context, context, dependents, refresh_contexts,
109    tool_context,
110};
111pub use extract::{
112    Extractor, FileNodeExtractor, IngestConfig, MediaEngineGuard, Registry, RustExtractor,
113    cap_content, is_prose, release_media_engines,
114};
115pub use findings::{
116    AdvisoryDb, AnalysisRun, CommandPolicy, EnvironmentPolicy, FINDING_KEY_PREFIX, Finding,
117    FindingKey, FindingsApplied, FindingsError, FindingsLayer, Isolation, MAX_ANALYZER_ID,
118    MAX_IDENTITY_PART, NetworkPolicy, RunnerKind, SECURITY_LAYER_PREFIX, Severity, SourceIdentity,
119    WorktreeAccess, WorktreeId, analyzer_id_error, is_valid_analyzer_id, layer_key,
120};
121pub use git::{
122    BaseResolution, BlobRef, ChangeStatus, ChangedFile, GitError, GraphSource, PathAuthor, Repo,
123    Submodule, Upstream,
124};
125#[cfg(feature = "inference")]
126pub use infer::{
127    DuplicateConfig, DuplicatePair, DuplicateReport, EMBED_REF, Embedder, HashEmbedder,
128    InferenceConfig, duplicates, duplicates_with, embed, infer_edges, infer_edges_with, similarity,
129};
130pub use links::{
131    EXTERNAL_REF_KIND, LINKS_AUTHORED_REF, LINKS_REF, external_ref_key, external_ref_node,
132    external_ref_node_with, external_ref_target,
133};
134/// The whole-file scan opt-out (`roteiro:ignore-file`), so every scanner that
135/// reads sources honours one directive rather than each defining its own.
136pub use markers::is_scan_exempt;
137pub use media::{
138    CandidateCount, GateReason, GateThresholds, GeneratedContent, MAX_MODEL_ID, MAX_PROMPT,
139    MEDIA_PRODUCER_PREFIX, MEDIA_SCHEMA, MediaBlob, MediaBuildOptions, MediaBuildReport,
140    MediaError, MediaFilter, MediaKind, MediaOutcome, MediaProducer, MediaRecord, MediaSkip,
141    MediaStatus, MediaWrite, Producer, ProducerId, ProducerSummary, ProducerSummaryAvailable,
142    SkipEntry, build_media, is_valid_model_id, media_blobs, status as media_status,
143};
144pub use memory::{
145    AnchorState, CACHE_BUDGET_ENV, CACHE_SCHEMA, CacheEntry, CacheStats, CacheSweep, CacheWrite,
146    DEFAULT_BASE_CONFIDENCE, DEFAULT_CACHE_BUDGET_BYTES, DEFAULT_DECAY_SPAN, DEFAULT_HALF_LIFE,
147    DEFAULT_MEMORY_SCOPE, Decay, MAX_MEMORY_BODY, MAX_MEMORY_SCOPE, MEMORY_SCHEMA, MemoryAnchor,
148    MemoryError, MemoryFilter, MemoryForgotten, MemoryKind, MemoryListing, MemoryRecord,
149    MemoryWrite, RECALL_SCHEMA, Recall, RecallOptions, Recalled, anchor_penalty,
150    cache_budget_bytes,
151};
152pub use model::{Direction, Edge, EdgeKind, FactSet, Node, NodeKind, Span};
153#[cfg(feature = "models")]
154pub use model_choice::{
155    DEFAULT_GENERATIVE, DEFAULT_OCR, ModelChoice, ModelChoiceError, ModelPins, ModelSource,
156    ModelTask, RemoteTier, TASKS as MODEL_TASKS, resolve as resolve_model,
157    resolve_all_with as resolve_models, resolve_with as resolve_model_with,
158    resolve_with_remote as resolve_model_with_remote, set_model_pins,
159};
160#[cfg(feature = "models")]
161pub use models::{
162    DownloadError, DownloadEvent, ModelFile, ModelKind, ModelRole, ModelSpec, ModelVariant,
163    Platform, REGISTRY, RangeKind, RangeReply, Removal, ResourceTier, discard_partial,
164    download_resumable, download_verified, ensure_model_dir, find as find_model, installed_size,
165    interpret_range_response, is_installed, model_dir, partial_meta_path, partial_path,
166    remove_model, set_model_store, sha256_hex, store_root, verify_sha256,
167};
168pub use provenance::Provenance;
169pub use query::{
170    ConfigSecretItem, ConfigSecretReport, CouplingItem, CouplingOrder, CouplingReport,
171    DEFAULT_MIN_LINES, DebtDensityReport, DebtItem, DebtReport, DensityItem, DensityOrder, EdgeRef,
172    Explanation, GeneratedHit, Listing, MemoryHit, NodeSummary, Path, PathHop, RedactionState,
173    SCHEMA, SearchHit, SearchOptions, SearchResults, config_secrets, coupling, debt, debt_density,
174    explain, list_kind, path, search, search_channels, window,
175};
176pub use store::{ImportApplied, SchemaAhead, Store, StoreError};
177pub use sync::{
178    DEFAULT_KEEP_GENERATIONS, ReclaimReport, SyncError, SyncReport, sweep_superseded, sync,
179    sync_index, sync_tree, sync_worktree,
180};
181pub use text::{
182    Heading, first_h1, heading_id, heading_id_from, heading_text, headings, markdown_dialect,
183    slugify,
184};
185pub use trust::ProducerTrust;
186pub use workspace::{
187    Follow, ResolvedWorkspace, RootScan, Workspace, WorkspaceError, WorkspaceSet,
188    discover_repos_under, parse_qualified, scan_root,
189};