Repository navigation
Delete the dead lock_inventory::wired_vendor_integrity reader (#782) - #1370
Merged
Mikola Lysenko (mikolalysenko) merged 3 commits intoOct 9, 2026
Merged
Conversation
Assisted-by: Claude Code:claude-opus-5-5
wired_vendor_integrity read the integrity a rewired npm-family or Python lock records for a vendored artifact. Repair, its only consumer, stopped calling it, and since then it survived only through its own tests: a sixth reader of package-lock, pnpm, yarn, bun and the Python locks that looked live and had to be kept in step with the real entry walks. Delete wired.rs, its module line and re-export, its module-doc and bun discovery doc mentions, and the tests that exercised only it. The FIFO and dangling bun.lock tests keep their other assertions. No behavior changes: nothing outside the deleted tests called it. Assisted-by: Claude Code:claude-opus-5-5
Mikola Lysenko (mikolalysenko)
marked this pull request as ready for review
October 9, 2026 20:13
Collaborator
Author
|
BugBot review Generated by Claude Code |
20 tasks
Mikola Lysenko (mikolalysenko)
pushed a commit
that referenced
this pull request
Oct 9, 2026
There was a problem hiding this comment.
✅ Bugbot reviewed your changes and found no new issues!
Comment @cursor review or bugbot run to trigger another review on this PR
Reviewed by Cursor Bugbot for commit 392bc1f. Configure here.
Collaborator
Author
|
[agent] Generated by Claude Code |
Tanmay Singla (Tanmay182003)
approved these changes
Oct 9, 2026
Mikola Lysenko (mikolalysenko)
enabled auto-merge
October 9, 2026 22:24
Mikola Lysenko (mikolalysenko)
deleted the
arch-refactor/782-dead-wired-integrity
branch
October 9, 2026 23:08
Mikola Lysenko (mikolalysenko)
pushed a commit
that referenced
this pull request
Oct 9, 2026
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
LLM Description written by Claude Code:claude-opus-5-5
Refs #782 (the #801 slice; the tracking issue keeps the rest).
Summary
Delete
vendor::lock_inventory::wired_vendor_integrity(lock_inventory/wired.rs). It read the integrity a rewired lock records for a vendored artifact, for package-lock/shrinkwrap, pnpm, yarn classic and berry, bun.lock, bun.lockb and the Python locks. Nothing in the workspace calls it outside its own tests, so it was a sixth lock reader that looked live and had to be kept in step with the real entry walks.Why (leverage)
doc/06-discovery-vex.md.lock_inventory/tests.rs. The larger candidates (manifest-load cluster An unparseable .socket/manifest.json is reported under five different --json error codes depending on the command #931/apply, apply --check and vendor report noManifest (exit 0) when .socket/manifest.json exists but can't be stat'd #998/scan reads a corrupt manifest as empty, so --prune skips GC and reports success #1063/A directory at .socket/manifest.json exits 2 with no --json output when --manifest-path spells the path, but exits 1 with manifest_unreadable under the default path #1123, Vendored requirements.txt refuses asix (==1.16.0)pin that the inventory and hosted mode accept, because exact pins are read by three grammars #1365) are still held by open fixer PRs.What changed
vendor/lock_inventory/wired.rs: deleted.vendor/lock_inventory/mod.rs:mod wired, thepub usere-export and the module-doc line that said repair reads it are gone.vendor/lock_inventory/tests.rs: the 5 tests that exercised onlywired_vendor_integrityare deleted.fifo_lockfiles_fail_fast_instead_of_wedgingandbun_dangling_text_lock_link_leaves_the_binary_lock_livekeep all their other assertions and drop just the wired one.vex/discover/bun.rs: module doc no longer names it as a second user of the bun lock gate.Not in this slice, because open PRs change those files:
PnpmLock::wired_integrityand its test (formats/pnpm/mod.rs, #1320), the doc line inutils/python_lock.rs(#1332), and the"wired_vendor_integrity("needle in thevex/discover/mod.rsforbidden-reader guard (#1321, #1349). The needle is still harmless, since the guard forbids a name that no longer exists.Deleted (
git diff --numstat origin/main)wired.rs−220,mod.rs+1/−5,bun.rs+2/−2).tests.rs+4/−216,wired.rstest module −40).Behavior
None. No production code called the function; the CLI and node crates never referenced it.
Test evidence
cargo clippy --workspace --all-features -- -D warnings: clean, so nothing it used became dead code.cargo test -p socket-patch-core --lib: 6096 passed, 4 failed. The 4 are the root-sandbox permission tests that fail onmaintoo (copy_tree::relax_loop_must_not_traverse_symlinked_root,vlt_heal::an_unremovable_hidden_lock_keeps_every_store_entry,pypi_poetry::wire_write_failure_maps_error_and_leaves_lock_untouched,pypi_requirements::wire_failure_rolls_back_already_written_files); CI runs unprivileged.cargo test -p socket-patch-core --lib lock_inventory: 142 passed.rustfmt --checkon the touched files: clean (tests.rswas clean onmainand is reformatted after the tuple shrank).Risk
Low. It only deletes code; the compiler and clippy prove nothing else called it.
🤖 Generated with Claude Code
https://claude.ai/code/session_01XNXgguh8iNycd4sv7u5cPe
Note
Low Risk
Pure deletion of uncalled code; clippy and existing tests confirm no remaining callers.
Overview
Removes the unused
wired_vendor_integritylock reader (~220 lines inlock_inventory/wired.rs), which duplicated integrity lookups across npm-family, yarn, bun, and Python locks after repair stopped calling it.lock_inventory/mod.rsdrops thewiredsubmodule, its re-export, and module docs that tied repair to that API.lock_inventory/tests.rsdeletes five tests dedicated towired_vendor_integrityand trims related assertions from FIFO and Bun #735 tests.vex/discover/bun.rsdoc comment no longer lists it besidebun_workspacefor the text-vs-binary lock gate.No runtime behavior change: nothing outside those tests referenced the function.
Reviewed by Cursor Bugbot for commit 392bc1f. Configure here.