Commit Graph

8 Commits

Author SHA1 Message Date
Teknium b818085298 simplify(compat): doctor/status — drop 13 re-exports + the doctor_* globals() facade (97 names), repoint 6 callers / 13 tests 2026-09-03 13:10:52 -07:00
Royalaid efd7277f0f fix(search): propagate order through code sandbox 2026-09-03 04:56:59 +05:30
Royalaid 3c864fe331 fix(search): terminate rg root options 2026-09-03 04:56:59 +05:30
Royalaid 092b355f90 fix(search): scope macOS globs and mark bounded totals 2026-09-03 04:56:59 +05:30
Royalaid e11d91339d fix(search): fail closed and preserve explicit roots 2026-09-03 04:56:59 +05:30
Royalaid 3880e4af62 fix(search): close ordering and resolver gaps 2026-09-03 04:56:59 +05:30
Teknium 979b7d14fd fix(search): path-scoped grep pruning + execution-backend gating for macOS TCC exclusions
Two fixups the #75785 review required before landing:
- grep fallback no longer uses --exclude-dir for protected dirs: grep
  matches exclude-dir globs against BASENAMES anywhere in the tree, so
  --exclude-dir=Downloads silently skipped every nested directory named
  Downloads (a repo's own Downloads/ included). Protected-dir searches now
  route through find's path-scoped -prune (same traversal-prevention the
  find backend uses) feeding grep via -exec. Regression test proves a
  nested work/repo/Downloads/notes.txt is still found while ~/Downloads is
  not (live filesystem, real find+grep).
- exclusions gated on env.is_local (new BaseEnvironment flag, True on
  LocalEnvironment): sys.platform/Path.home() describe the controller, not
  the execution host — a macOS controller driving a Linux SSH/container
  backend must not prune the remote's unprotected Downloads. Environments
  without the flag default to local semantics (warning-carrying skip,
  never data loss).

Both sabotage-verified: restoring basename --exclude-dir fails 2 tests.
2026-08-26 06:26:02 -07:00
takealook97 5fd6811dfe fix: avoid macOS privacy prompts during broad searches 2026-08-26 06:26:02 -07:00