Lands SDD-081..088 + SDD-092 implementations on top of v1.0.0-rc.3.
The cross-platform pieces — `AudioTransmitGate`, the per-platform
backend ladder, and the missed-key-up watchdog — are wired into the
audio engine lifecycle. Per-platform live verification on Windows
/ macOS / GNOME-Wayland reference hosts is the remaining work
(RR-PTT-001..006/008 in `release-readiness-go-nogo-record.md`).
`chanora_audio::ptt`
--------------------
* `AudioTransmitGate` now owns an `Arc<AtomicBool>` plus a
`tokio::sync::watch::Sender<bool>` (SAD-075 / SDD-089). The
encoder feed reads the atomic on the hot path; the watchdog
subscribes to the watch channel.
* `MissedKeyUpWatchdog::spawn(gate, timeout)` watches the gate
transitions and self-clears `transmit_active` if the
`false -> true` lifetime exceeds the configured ceiling
(DEC-028, default 30s). Two unit tests cover the timeout-fires
and the no-fire-on-normal-release paths.
`chanora_audio::ptt_backends`
-----------------------------
* `DesktopPttBackend` trait + `PttBinding` value type + `PttInputClass`
enum + `PttBackendError` (SDD-081). `PttBinding` deliberately
carries only `input_class` and an opaque `platform_key`
string; raw key codes never appear in the type surface.
* `select()` factory (SAD-071): runtime ladder evaluation per
OS. Windows → Raw Input → low-level hook → Focused; macOS →
Event Tap → Focused; Linux → GNOME-Wayland portal probe →
Focused.
* `FocusedPttBackend` (SDD-087): universal terminal fallback;
integrates with the existing Flutter Listener-driven PTT.
* `WindowsRawInputBackend` + `WindowsHookBackend` (SDD-083 /
SDD-084): three-rung ladder evaluated once at engine start.
Each backend runs a dedicated worker thread that holds the
OS-level handle; `start`/`stop` lifecycle is honest. Live
`RegisterRawInputDevices` / `SetWindowsHookEx` wiring is
platform-verification work — the scaffolding lets the
descriptor + watchdog + capability event be exercised
end-to-end now.
* `MacOSEventTapBackend` (SDD-085): two-rung ladder with
explicit `PermissionState` (Granted / Denied / Undetermined).
`Undetermined` resolves to `L0Focused` so capability
advertising matches actual runtime behaviour even before
Input Monitoring is granted. Live `CGEventTap` + `IOHIDCheckAccess`
wiring is platform-verification work.
* `LinuxGnomeWaylandBackend` (SDD-086): probes GNOME-on-Wayland
via `XDG_SESSION_TYPE` + `XDG_CURRENT_DESKTOP`, then verifies
the `org.freedesktop.portal.GlobalShortcuts` D-Bus interface
is reachable by reading the `version` property over a
blocking zbus session. Reports `gnome-wayland-portal` /
`L2GlobalHoldToTalk`. Other Linux environments fall through
to the universal Focused backend (DEC-025).
`chanora_audio::engine`
-----------------------
* Engine now owns `transmit_gate: AudioTransmitGate` and
threads a `flag_arc()` clone into the existing capture
state for the cheap hot-path read. `set_transmit_active` /
`transmit_active()` go through the gate so subscribers see
every transition.
* `start_audio` selects the highest-capability backend via
`ptt_backends::select()`, calls `backend.start(gate, none())`,
and spawns the watchdog. Both are released in `stop()` and
on Drop.
* New `engine.rebind_ptt(binding) -> PttBackendDescriptor`
drives the binding-capture flow without restarting the engine.
* New `engine.ptt_descriptor()` returns the privacy-safe
descriptor for the initial UI render before the first
capability event arrives.
`chanora_core`
--------------
* Re-exports `PttBinding` + `PttInputClass`.
* New `ChanoraSession::set_ptt_binding(binding)` — calls
`audio.rebind_ptt` and broadcasts the freshly-published
`SessionEvent::PttCapability` so the UI badge updates live.
* New `ChanoraSession::ptt_descriptor()` for the initial render.
`chanora_bridge`
----------------
* New `BridgePttInputClass` enum + `set_ptt_binding(input_class,
platform_key)` async function. The `platform_key` string is
opaque to the bridge and never logged.
* New `ptt_descriptor()` async accessor returning the
`(level, backend_id, bound_input_class)` triple.
Flutter
-------
* `_AudioControls` now has a "Configure" button next to the
capability badge; `_PttBindingCaptureDialog` captures the
next key press (via `Focus.onKeyEvent`) or mouse side button
(via `Listener.onPointerDown` filtered to button bitmasks
`0x08` / `0x10`). The captured value is the platform-neutral
`LogicalKeyboardKey.keyLabel` or `mouse-side-button:{button}`.
* The dialog explicitly tells the user that the actual key
value never leaves it (DEC-027).
* New ARB keys: `pttConfigureAction`, `pttConfigureTitle`,
`pttConfigurePrompt`, `pttConfigureWaiting`,
`pttConfigureCaptured`, `pttConfigurePrivacyNote`,
`pttConfigureSaveAction` (en + zh-Hans).
Dependencies
------------
* `chanora_audio` adds (Linux only) `zbus = "5"` with the
`tokio` runtime selector + `blocking-api` feature for the
GlobalShortcuts portal probe.
* `chanora_audio` adds `tokio` `test-util` to dev-deps for
`start_paused` watchdog tests (the live watchdog tests use
multi-threaded real time).
Verification
------------
* `cargo test --workspace` with `CHANORA_DISABLE_KEYRING=1`:
57 tests green (was 53). chanora_audio rises from 4 to 8.
* `cargo deny check`: advisories ok, bans ok, licenses ok,
sources ok.
* `cargo about generate --offline`: regenerates
`docs/security/license-inventory.{md,html}`. The crate count
rises from 364 to 383 with the addition of the zbus tree.
* `tools/dump_flutter_licenses.sh`: 94 packages, zero without
LICENSE (unchanged).
* `flutter analyze`: clean.
* `cargo build -p chanora_bridge --release` + `flutter build
linux --release`: clean Linux x86_64 bundle.
Documentation
-------------
* `docs/release/release-readiness-go-nogo-record.md` flips
RR-PTT-007 (missed-key-up watchdog) to Done with a pointer
to the two passing unit tests; bumps to v0.9.4. Live
per-platform traces (RR-PTT-001..005, RR-PTT-008) remain
open and are blocked only on platform reference hosts.
Per-platform live verification (Raw Input registration, Event Tap
creation under granted permission, GlobalShortcuts CreateSession +
BindShortcuts) is queued for the platform owners' reference hosts
per `staged-release-plan.md`.
86 lines
2.6 KiB
Rust
86 lines
2.6 KiB
Rust
//! The universal `FocusedPttBackend` (SDD-087). PTT works only
|
|
//! while the Chanora window has input focus; the actual press and
|
|
//! release events come from the Flutter side through the existing
|
|
//! bridge `set_ptt` command, which the audio engine routes through
|
|
//! the [`AudioTransmitGate`].
|
|
//!
|
|
//! This backend therefore does not hook the OS itself — it merely
|
|
//! exposes a privacy-safe descriptor and stores the active binding
|
|
//! for diagnostics. Reports `PttCapabilityLevel::L0Focused` and
|
|
//! `backend_id = "focused"`.
|
|
|
|
use super::{AudioTransmitGate, DesktopPttBackend, PttBackendError, PttBinding};
|
|
use crate::ptt::{PttBackendDescriptor, PttCapabilityLevel};
|
|
|
|
/// Universal Focused-PTT fallback. Reports
|
|
/// `PttCapabilityLevel::L0Focused` and `backend_id = "focused"`.
|
|
/// Press / release events arrive from the Flutter `Listener`
|
|
/// widget through the existing bridge `set_ptt` command.
|
|
pub struct FocusedPttBackend {
|
|
binding: PttBinding,
|
|
gate: Option<AudioTransmitGate>,
|
|
}
|
|
|
|
impl FocusedPttBackend {
|
|
/// Construct an idle Focused backend. The audio engine arms it
|
|
/// during `start_audio`.
|
|
pub fn new() -> Self {
|
|
Self {
|
|
binding: PttBinding::none(),
|
|
gate: None,
|
|
}
|
|
}
|
|
}
|
|
|
|
impl Default for FocusedPttBackend {
|
|
fn default() -> Self {
|
|
Self::new()
|
|
}
|
|
}
|
|
|
|
impl DesktopPttBackend for FocusedPttBackend {
|
|
fn descriptor(&self) -> PttBackendDescriptor {
|
|
PttBackendDescriptor {
|
|
level: PttCapabilityLevel::L0Focused,
|
|
backend_id: "focused",
|
|
bound_input_class: match self.binding.class_str() {
|
|
"" => None,
|
|
s => Some(class_str_to_static(s)),
|
|
},
|
|
}
|
|
}
|
|
|
|
fn start(
|
|
&mut self,
|
|
gate: AudioTransmitGate,
|
|
binding: PttBinding,
|
|
) -> Result<(), PttBackendError> {
|
|
self.gate = Some(gate);
|
|
self.binding = binding;
|
|
Ok(())
|
|
}
|
|
|
|
fn stop(&mut self) {
|
|
// Clear the gate on stop so a re-arm starts cleanly.
|
|
if let Some(g) = self.gate.take() {
|
|
g.set(false);
|
|
}
|
|
}
|
|
|
|
fn rebind(&mut self, binding: PttBinding) -> Result<(), PttBackendError> {
|
|
self.binding = binding;
|
|
Ok(())
|
|
}
|
|
}
|
|
|
|
/// Map a runtime `bound_input_class` string back to the static
|
|
/// equivalent. The set is closed (`"keyboard"`,
|
|
/// `"mouse-side-button"`); anything else falls through to
|
|
/// `"keyboard"` as the documented default.
|
|
fn class_str_to_static(s: &str) -> &'static str {
|
|
match s {
|
|
"mouse-side-button" => "mouse-side-button",
|
|
_ => "keyboard",
|
|
}
|
|
}
|