e25580e3a3
Wires the #55-cutover fieldtest into a durable regression net. The
fieldtest exercised the post-cutover ParamMode={Own,Borrow} surface as a
downstream LLM author would and produced 12 fixtures + a report; left as
loose files they would be dead fixtures that drift. This commits them as
a protected property.
crates/ail/tests/cut55_cutover_surface.rs — one table-driven test running
each fixture through `ail check` and asserting accept (exit 0) or reject
at the right pipeline stage. Reject rows key on the bracketed diagnostic
CODE (consume-while-borrowed, borrow-over-value, borrow-return-not-permitted,
surface-parse-error), NOT message text, so the test is decoupled from the
diagnostic-wording improvement tracked separately.
examples/fieldtest/cut55_*.ail — the corpus. cut55_2c is the #58 repro
(now correctly rejected). cut55_2b was misanalysed by the fieldtest as a
consume-while-borrowed reject; in fact bump's recursive param is
(borrow List) so the tail is only borrowed, never consumed into an own
slot — `ail check` correctly accepts it. Renamed to
cut55_2b_borrow_traversal_clean and recast as the #58 false-positive
guard (a borrow-position use of a heap sub-binder must stay accepted).
cut55_1b similarly does not fire over-strict-mode (its recursive call
consumes the tail, so the lint's consume_count==0 premise fails) — comment
corrected; it is a plain accept. cut55_1c is the genuine over-strict-mode
example (accepts exit 0, emits the warning).
docs/specs/0065-eliminate-implicit-mode fieldtest report — moved 2c to
the reject set, added the 2b false-positive-guard section, marked the
double-free spec_gap RESOLVED (it shipped as the #58 fix).
Relates to #55.
41 lines
1.2 KiB
Plaintext
41 lines
1.2 KiB
Plaintext
; Fieldtest cut55-1 — decision (a): a list helper that READS without consuming.
|
|
;
|
|
; As an author reading the ledger (model/contract 0008): "reach for
|
|
; `borrow` only to read/pass-through a heap value you were lent". A
|
|
; length count walks the list and reads it; it does not move any heap
|
|
; field out. So `xs` should be `(borrow (con List))`. The recursive
|
|
; call passes the tail through in a read position — still a borrow.
|
|
;
|
|
; Expected: ail check -> ok. ail run -> prints 3.
|
|
|
|
(module cut55_1_readonly_length
|
|
|
|
(data List
|
|
(doc "Monomorphic Int list.")
|
|
(ctor Nil)
|
|
(ctor Cons (con Int) (con List)))
|
|
|
|
(fn length
|
|
(doc "Borrow xs and count its elements without consuming it.")
|
|
(type
|
|
(fn-type
|
|
(params (borrow (con List)))
|
|
(ret (own (con Int)))))
|
|
(params xs)
|
|
(body
|
|
(match xs
|
|
(case (pat-ctor Nil) 0)
|
|
(case (pat-ctor Cons h t)
|
|
(app + 1 (app length t))))))
|
|
|
|
(fn main
|
|
(type (fn-type (params) (ret (own (con Unit))) (effects IO)))
|
|
(params)
|
|
(body
|
|
(let xs
|
|
(term-ctor List Cons 10
|
|
(term-ctor List Cons 20
|
|
(term-ctor List Cons 30
|
|
(term-ctor List Nil))))
|
|
(seq (app print (app length xs)) (do io/print_str "\n"))))))
|