pub struct Committer { /* private fields */ }Expand description
Capability-rooted workspace snapshot, revalidation, commit, and recovery engine.
Implementations§
Source§impl Committer
impl Committer
Sourcepub fn open(
workspace_root: impl AsRef<Path>,
blobs: BlobStore,
config: CommitConfig,
) -> Result<Committer, CommitError>
pub fn open( workspace_root: impl AsRef<Path>, blobs: BlobStore, config: CommitConfig, ) -> Result<Committer, CommitError>
Open one ambient workspace boundary and create its protected runtime directory.
§Errors
Returns an error if the root cannot be opened or a reserved internal path is not a real directory.
Sourcepub fn open_with_workspace_data(
workspace_root: impl AsRef<Path>,
config: CommitConfig,
) -> Result<(Committer, DataDirectory), CommitError>
pub fn open_with_workspace_data( workspace_root: impl AsRef<Path>, config: CommitConfig, ) -> Result<(Committer, DataDirectory), CommitError>
Open one workspace and derive its committer and durable data store from the
same pinned .vsh-runtime directory capability.
§Errors
Returns an error if any protected directory, coordination file, or blob store cannot be created and verified without following a workspace symlink.
Sourcepub fn artifact_store(&self) -> BlobStore
pub fn artifact_store(&self) -> BlobStore
Return a cheap handle to the immutable artifact store owned by this committer.
Sourcepub const fn config(&self) -> CommitConfig
pub const fn config(&self) -> CommitConfig
Return immutable commit bounds.
Sourcepub fn snapshot(
&self,
limits: SnapshotLimits,
) -> Result<BaseSnapshot, CommitError>
pub fn snapshot( &self, limits: SnapshotLimits, ) -> Result<BaseSnapshot, CommitError>
Capture an eager-metadata, lazy-content snapshot below the workspace capability.
§Errors
Returns an error for unsupported nodes, unstable enumeration, or a size bound.
Sourcepub fn revalidate(
&self,
plan: &CommitPlan<'_>,
) -> Result<Vec<RevalidationConflict>, CommitError>
pub fn revalidate( &self, plan: &CommitPlan<'_>, ) -> Result<Vec<RevalidationConflict>, CommitError>
Revalidate exactly the artifact’s ReadSet and WriteSet without mutating the host.
§Errors
Returns an error when safe host observation fails or bounds are exceeded.
Sourcepub fn commit<S>(
&self,
store: &S,
reservation: CommitReservation,
plan: &CommitPlan<'_>,
) -> Result<CommitReceipt, CommitError>where
S: TransactionStore + ?Sized,
pub fn commit<S>(
&self,
store: &S,
reservation: CommitReservation,
plan: &CommitPlan<'_>,
) -> Result<CommitReceipt, CommitError>where
S: TransactionStore + ?Sized,
Consume a reservation and commit one exact artifact with production fault policy.
§Errors
Returns a stale, binding, I/O, or recovery-required error. Once mutation begins, failures preserve durable recovery obligations.
Sourcepub fn commit_with_faults<S, F>(
&self,
store: &S,
reservation: CommitReservation,
plan: &CommitPlan<'_>,
faults: &F,
) -> Result<CommitReceipt, CommitError>
pub fn commit_with_faults<S, F>( &self, store: &S, reservation: CommitReservation, plan: &CommitPlan<'_>, faults: &F, ) -> Result<CommitReceipt, CommitError>
Commit with an explicit durable-boundary fault injector.
This is public so downstream crash harnesses can validate filesystem/platform behavior without private hooks.
§Errors
Returns the same errors as Self::commit, plus injected failures.
Sourcepub fn recover<S>(&self, store: &S) -> Result<RecoveryReport, CommitError>where
S: TransactionStore + ?Sized,
pub fn recover<S>(&self, store: &S) -> Result<RecoveryReport, CommitError>where
S: TransactionStore + ?Sized,
Recover every durable transaction workspace under this capability root.
Completed-marker transactions are finalized; interrupted ones are rolled back in reverse order. Ambiguous ownership is reported and never deleted.
§Errors
Returns an error for corrupt journals, unsafe state transitions, or host I/O.
Auto Trait Implementations§
impl Freeze for Committer
impl RefUnwindSafe for Committer
impl Send for Committer
impl Sync for Committer
impl Unpin for Committer
impl UnsafeUnpin for Committer
impl UnwindSafe for Committer
Blanket Implementations§
Source§impl<T> BorrowMut<T> for Twhere
T: ?Sized,
impl<T> BorrowMut<T> for Twhere
T: ?Sized,
Source§fn borrow_mut(&mut self) -> &mut T
fn borrow_mut(&mut self) -> &mut T
impl<ST, DT> CastableFrom<ST, Initialized, Initialized> for DT
impl<ST, DT> CastableFrom<ST, Uninit, Uninit> for DT
Source§impl<T> FmtForward for T
impl<T> FmtForward for T
Source§fn fmt_binary(self) -> FmtBinary<Self>where
Self: Binary,
fn fmt_binary(self) -> FmtBinary<Self>where
Self: Binary,
self to use its Binary implementation when Debug-formatted.Source§fn fmt_display(self) -> FmtDisplay<Self>where
Self: Display,
fn fmt_display(self) -> FmtDisplay<Self>where
Self: Display,
self to use its Display implementation when
Debug-formatted.Source§fn fmt_lower_exp(self) -> FmtLowerExp<Self>where
Self: LowerExp,
fn fmt_lower_exp(self) -> FmtLowerExp<Self>where
Self: LowerExp,
self to use its LowerExp implementation when
Debug-formatted.Source§fn fmt_lower_hex(self) -> FmtLowerHex<Self>where
Self: LowerHex,
fn fmt_lower_hex(self) -> FmtLowerHex<Self>where
Self: LowerHex,
self to use its LowerHex implementation when
Debug-formatted.Source§fn fmt_octal(self) -> FmtOctal<Self>where
Self: Octal,
fn fmt_octal(self) -> FmtOctal<Self>where
Self: Octal,
self to use its Octal implementation when Debug-formatted.Source§fn fmt_pointer(self) -> FmtPointer<Self>where
Self: Pointer,
fn fmt_pointer(self) -> FmtPointer<Self>where
Self: Pointer,
self to use its Pointer implementation when
Debug-formatted.Source§fn fmt_upper_exp(self) -> FmtUpperExp<Self>where
Self: UpperExp,
fn fmt_upper_exp(self) -> FmtUpperExp<Self>where
Self: UpperExp,
self to use its UpperExp implementation when
Debug-formatted.Source§fn fmt_upper_hex(self) -> FmtUpperHex<Self>where
Self: UpperHex,
fn fmt_upper_hex(self) -> FmtUpperHex<Self>where
Self: UpperHex,
self to use its UpperHex implementation when
Debug-formatted.Source§impl<T> IntoEither for T
impl<T> IntoEither for T
Source§fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
fn into_either(self, into_left: bool) -> Either<Self, Self> ⓘ
self into a Left variant of Either<Self, Self>
if into_left is true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
fn into_either_with<F>(self, into_left: F) -> Either<Self, Self> ⓘ
self into a Left variant of Either<Self, Self>
if into_left(&self) returns true.
Converts self into a Right variant of Either<Self, Self>
otherwise. Read moreSource§impl<T> Pipe for Twhere
T: ?Sized,
impl<T> Pipe for Twhere
T: ?Sized,
Source§fn pipe<R>(self, func: impl FnOnce(Self) -> R) -> Rwhere
Self: Sized,
fn pipe<R>(self, func: impl FnOnce(Self) -> R) -> Rwhere
Self: Sized,
Source§fn pipe_ref<'a, R>(&'a self, func: impl FnOnce(&'a Self) -> R) -> Rwhere
R: 'a,
fn pipe_ref<'a, R>(&'a self, func: impl FnOnce(&'a Self) -> R) -> Rwhere
R: 'a,
self and passes that borrow into the pipe function. Read moreSource§fn pipe_ref_mut<'a, R>(&'a mut self, func: impl FnOnce(&'a mut Self) -> R) -> Rwhere
R: 'a,
fn pipe_ref_mut<'a, R>(&'a mut self, func: impl FnOnce(&'a mut Self) -> R) -> Rwhere
R: 'a,
self and passes that borrow into the pipe function. Read moreSource§fn pipe_borrow<'a, B, R>(&'a self, func: impl FnOnce(&'a B) -> R) -> R
fn pipe_borrow<'a, B, R>(&'a self, func: impl FnOnce(&'a B) -> R) -> R
Source§fn pipe_borrow_mut<'a, B, R>(
&'a mut self,
func: impl FnOnce(&'a mut B) -> R,
) -> R
fn pipe_borrow_mut<'a, B, R>( &'a mut self, func: impl FnOnce(&'a mut B) -> R, ) -> R
Source§fn pipe_as_ref<'a, U, R>(&'a self, func: impl FnOnce(&'a U) -> R) -> R
fn pipe_as_ref<'a, U, R>(&'a self, func: impl FnOnce(&'a U) -> R) -> R
self, then passes self.as_ref() into the pipe function.Source§fn pipe_as_mut<'a, U, R>(&'a mut self, func: impl FnOnce(&'a mut U) -> R) -> R
fn pipe_as_mut<'a, U, R>(&'a mut self, func: impl FnOnce(&'a mut U) -> R) -> R
self, then passes self.as_mut() into the pipe
function.Source§fn pipe_deref<'a, T, R>(&'a self, func: impl FnOnce(&'a T) -> R) -> R
fn pipe_deref<'a, T, R>(&'a self, func: impl FnOnce(&'a T) -> R) -> R
self, then passes self.deref() into the pipe function.impl<T> Read<Exclusive, BecauseExclusive> for Twhere
T: ?Sized,
Source§impl<T> Tap for T
impl<T> Tap for T
Source§fn tap_borrow<B>(self, func: impl FnOnce(&B)) -> Self
fn tap_borrow<B>(self, func: impl FnOnce(&B)) -> Self
Borrow<B> of a value. Read moreSource§fn tap_borrow_mut<B>(self, func: impl FnOnce(&mut B)) -> Self
fn tap_borrow_mut<B>(self, func: impl FnOnce(&mut B)) -> Self
BorrowMut<B> of a value. Read moreSource§fn tap_ref<R>(self, func: impl FnOnce(&R)) -> Self
fn tap_ref<R>(self, func: impl FnOnce(&R)) -> Self
AsRef<R> view of a value. Read moreSource§fn tap_ref_mut<R>(self, func: impl FnOnce(&mut R)) -> Self
fn tap_ref_mut<R>(self, func: impl FnOnce(&mut R)) -> Self
AsMut<R> view of a value. Read moreSource§fn tap_deref<T>(self, func: impl FnOnce(&T)) -> Self
fn tap_deref<T>(self, func: impl FnOnce(&T)) -> Self
Deref::Target of a value. Read moreSource§fn tap_deref_mut<T>(self, func: impl FnOnce(&mut T)) -> Self
fn tap_deref_mut<T>(self, func: impl FnOnce(&mut T)) -> Self
Deref::Target of a value. Read moreSource§fn tap_dbg(self, func: impl FnOnce(&Self)) -> Self
fn tap_dbg(self, func: impl FnOnce(&Self)) -> Self
.tap() only in debug builds, and is erased in release builds.Source§fn tap_mut_dbg(self, func: impl FnOnce(&mut Self)) -> Self
fn tap_mut_dbg(self, func: impl FnOnce(&mut Self)) -> Self
.tap_mut() only in debug builds, and is erased in release
builds.Source§fn tap_borrow_dbg<B>(self, func: impl FnOnce(&B)) -> Self
fn tap_borrow_dbg<B>(self, func: impl FnOnce(&B)) -> Self
.tap_borrow() only in debug builds, and is erased in release
builds.Source§fn tap_borrow_mut_dbg<B>(self, func: impl FnOnce(&mut B)) -> Self
fn tap_borrow_mut_dbg<B>(self, func: impl FnOnce(&mut B)) -> Self
.tap_borrow_mut() only in debug builds, and is erased in release
builds.Source§fn tap_ref_dbg<R>(self, func: impl FnOnce(&R)) -> Self
fn tap_ref_dbg<R>(self, func: impl FnOnce(&R)) -> Self
.tap_ref() only in debug builds, and is erased in release
builds.Source§fn tap_ref_mut_dbg<R>(self, func: impl FnOnce(&mut R)) -> Self
fn tap_ref_mut_dbg<R>(self, func: impl FnOnce(&mut R)) -> Self
.tap_ref_mut() only in debug builds, and is erased in release
builds.Source§fn tap_deref_dbg<T>(self, func: impl FnOnce(&T)) -> Self
fn tap_deref_dbg<T>(self, func: impl FnOnce(&T)) -> Self
.tap_deref() only in debug builds, and is erased in release
builds.