feat(build): ratchet the tooling-directory exclude across every published build tsconfig - #7409

Merged
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet
Sep 2, 2026
Merged

feat(build): ratchet the tooling-directory exclude across every published build tsconfig#7409
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet

Conversation

@claude

@claudeclaudeBot commented Sep 2, 2026

Copy link
Copy Markdown
Contributor

Fixes#7212

Implements the maintainer's ruling of 2026-09-02 (comment 5508046691, option 2): a static, per-PR gate that reads each published package's build tsconfig.json and requires the directory form of the tooling exclude wherever the emitter honours exclude — landed together with the conversion of its initial red set, so main is green on merge.

What is here

  • New gatescripts/check-published-tsconfig-tooling-exclude.mjs, exposed as pnpm check:published-tsconfig-exclude and wired into ci.yml's Type Check job (config reads only; no build, no artifact, no emit model).
  • 28 build tsconfigs converted to the directory form.
  • Testscripts/__tests__/check-published-tsconfig-tooling-exclude.test.ts — 26 cases.
  • Docs: the Type Check row and the Published Dist Gate section of content/docs/guide/ci-cd-pipeline.md.
  • Changeset with empty frontmatter: repo tooling and build config only, nothing consumer-visible moves (no published package ships its tsconfig — verified across all 39).

The artifact-level check:published-dist is untouched and stays the second line of defence. It is the only criterion that cannot be wrong about what actually ships; this gate asks a strictly smaller question.

The card's central measurement, re-taken

The card claims all 29 name-only packages have zero non-test files in tooling directories, which is what makes the conversion safe. Re-measured independently, with the probe built from TOOLING_FILE in scripts/check-phantom-dependencies.mjs rather than from the card's prose:

setpackagesnon-test files in tooling dirs
name-only exclude290
directory-form exclude69
emitter carve-outs4 (per the ruling)1

The claim holds: zero, with no exception. And the zero is a reading, because the controls fire — the same probe finds apps/console/src/__tests__/helpers/preview-page-sources.ts exactly where the card says it is, plus fields/src/__tests__/numberInputBrowserReadings.ts, plugin-grid and plugin-view's explainDouble.ts, plugin-designer's two __mocks__ files, and four in components.

One correction to the card's table, cosmetic: it labels the directory-form row 5 and then lists 6 package names. Six is right.

The confidence gap the ruling carried: the carve-outs were NOT exhaustive

The ruling named four and asked for exhaustiveness to be verified at authoring time. Verified mechanically, against each package's actual build script and vite config rather than against the gate header's prose. Two more published packages have an emitter that never builds its program from this file list, and both were inside the ruling's "29 name-only" red set:

packageemitterwhy the tsconfig exclude is not honoured
@object-ui/create-plugintsupa third tsup package beside cli and data-objectstack — same tsup.config.ts shape, same dts: true entry-graph emit
@object-ui/runnervite build, no dts() plugina second Vite application beside consolenoEmit: true, publishes a Rollup bundle, writes no declarations

Full emitter tally across the 39 published packages: tsc emitting 12, vite+dts() 22, tsup3, Vite app with no dts() plugin 2. So the gate names six carve-outs, not four. Requiring a config shape in create-plugin or runner would have been a check that is green about nothing — the failure this repository treats as worse than no check. The initial red set is therefore 27, not 29 (plus components, below, for 28 files).

Carve-outs do not sit on trust: each states the facts it rests on and re-proves them on every run (the technique HOST_PROVIDED uses in check-phantom-dependencies.mjs). A carve-out for a package that is no longer published is a failure, not a no-op.

⚠️console keeps its noEmit protection and its entry records, as the ruling required, that it does carry a non-test helper under src/__tests__/ — the one live file behind a single guard. A test asserts that file still exists, so the note cannot go stale silently.

One thing the ruling did not cover — flagged, not folded in

@object-ui/components was in the ruling's directory-form set, but its spelling was "src/__tests__": a bare directory, covering one of the three tooling directories and only at the top of src/. tsc honours it, so the config is not wrong — it is position-anchored, and does not cover src/renderers/__tests__/. That is the same "green until someone adds a file" shape this card exists to end, one level over, so the gate rejects that spelling and components is converted with the other 27. Accepted spellings are the four anchored globs the failure message prints.

A second observation, reported rather than acted on: the ruling gives plugin-charts's carve-out reason as "own exclude in the dts() options". Reading unplugin-dts's computeGlobs shows the option replaces the filter globs only — the program's file list still comes from the tsconfig — so the two compose, and plugin-charts is really exempt because its tsconfig carries no exclude key at all. Its own protection is therefore name-only, in vite.config.ts. Kept as a carve-out exactly as ruled; noted for whoever revisits it.

Verification

Emit-neutrality, measured not assumed. Each package's build program file list was resolved with TypeScript's own config resolver (ts.getParsedCommandLineOfConfigFile) before and after the proposed exclude — the same resolver tsc uses and the same one unplugin-dts calls for content.fileNames. All 33 enforced packages came back identical: 0 files added, 0 removed. Identical program input means identical emit. The two packages that carry console runtime bytes, console and runner, are carve-outs and were not touched. Byte-neutral.

Red-then-green, on the real tree, mutation proven on disk by blob hash and anchored token counts, restore proven by state under trap ... EXIT INT TERM with absolute paths:

baseline exit 0
leg A name-only regression, plugin-form exit 1 FAIL [name-only-tooling-exclude]
blob 3d4c427d != HEAD dd77a939, directory-form entries left: 0
leg B create-plugin build tsup -> tsc exit 1 FAIL [carve-out-no-longer-holds]
blob 38fbec8d -> mutated, injected 1 / removed 0
restore blobs equal HEAD, git diff HEAD --quiet exit 0, porcelain 0 lines
after restore exit 0

And the hole it closes is real, not stylistic. A non-test sharedFormHarness.ts was placed under plugin-form/src/__tests__/ and the build program asked with the same TypeScript resolver: with the directory form it is not a program input (0); reverted to the name-only form it is (1). Same file, same package, only the exclude differs. Restored, tree clean.

Nothing built was mutated by any leg — this gate reads config text only — so there is no dist to restore.

Gates run, all on the final head e855f935e, exit codes captured by redirect before any pipe:

pnpm check:published-tsconfig-exclude 0 39 scanned, 33 enforced, 6 carve-outs, all compliant
node scripts/check-type-check-coverage 0 45/46 via type-check; 41/41 compile their tests
node scripts/check-changeset-presence 0 34 files, 0 published source, 1 changeset added
node scripts/check-changeset-fixed 0
node scripts/check-changeset-overwrite 0
pnpm check:control-bytes 0 6106 tracked text files
node scripts/check-entry-guard --self-test / plain 0 / 0
node scripts/check-lint-coverage 0 46/46
pnpm check:esm-specifiers 0
pnpm check:doc-fences 0
node scripts/check-doc-links 0
pnpm check:shell-escape-residue 0
pnpm type-check:scripts 0
pnpm lint:root 0 full root scope, 0 errors (33 pre-existing warnings)
vitest scripts/__tests__ (unit) 0 98 files / 2764 tests

No lint narrowing was needed and none is claimed: lint:root ran its full scope, and eslint's own resolver reports that of the 34 changed files it lints exactly two — the new gate and its test. It ignores every tsconfig.json, package.json, workflow and .md in the diff, and a package-scoped run in packages/types reads 156 files, none of them a tsconfig. So no package lint scope can be moved by this diff.

⛔ No existing gate was weakened. check-published-dist-tooling.test.ts asserts by substring that no per-PR workflow mentions the artifact gate's alias, and it fired on the explanatory comment in my ci.yml step. The comment was reworded — the test is right, and a substring scan that tried to tell prose from a run: would be a weaker gate. The ci.yml comment now records why the alias is deliberately absent from that file.

🤖 Generated with Claude Code

https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC


Generated by Claude Code

…ry published build tsconfig
A build tsconfig that excludes tooling by FILE NAME (`*.test.ts`) stops the
files that happen to be named that way and nothing else. The first shared
helper added to a `__tests__/` directory then becomes a program input, and an
emitting program writes it into the published `dist`.
That has happened three times and been caught by a gate zero times: objectui#4006
(73 `*.test.d.ts` published from two packages), objectui#4836 (9 more, one of
them an emitted module whose first statement imports `vitest`) and objectui#6943
(the same package as the first, because that fix wrote the name form). Each
repair was correct and local, and each left the trap armed everywhere else.
objectui#7212 measured the standing exposure instead of another instance: 29
published packages carried the name form with ZERO offending files.
Adds `scripts/check-published-tsconfig-tooling-exclude.mjs`
(`pnpm check:published-tsconfig-exclude`), wired into ci.yml's Type Check job,
and converts 28 build tsconfigs in the same commit so main is green on merge.
The gate reads `exclude` arrays and nothing else: no build, no artifact, no emit
model. That is the narrower scope which keeps it clear of the modelling
objectui#4846 declined for the artifact-level gate, which is untouched and stays
the second line of defence.
Six published packages are named carve-outs whose emitter never builds its
program from this file list, each re-proving its own reason on every run: cli,
create-plugin and data-objectstack (tsup entry graph), plugin-charts (its
tooling exclude lives in the `dts()` options), console and runner (Vite
applications, `noEmit: true`, no `dts()` plugin). create-plugin and runner were
found at authoring time and were inside the ruling's initial red set.
The conversion is emit-neutral, measured rather than assumed: every enforced
package's build program file list was resolved with TypeScript's own config
resolver before and after, and all 33 came back identical.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC
@github-actions

Copy link
Copy Markdown
Contributor

✅ Console Performance Budget

MetricValueBudget
Eager closure (gzip, 48 chunks)3177.2 KB3191.4 KB
Main entry chunk (gzip)143.2 KB350 KB
Entry fileindex-CDQS-v_Q.js
StatusPASS

The eager closure is every chunk the entry reaches through static imports — what the browser fetches and parses before the app renders. The entry chunk on its own is a small fraction of it.


📦 Bundle Size Report

PackageSizeGzipped
app-shell (consoleActionDispatch.js)0.20KB0.19KB
app-shell (index.js)15.67KB5.75KB
app-shell (runtime-config.js)20.68KB7.36KB
app-shell (types.js)0.01KB0.04KB
app-shell (urlParams.js)10.06KB3.86KB
auth (ActiveOrganizationStorage.js)25.05KB9.16KB
auth (AuthContext.js)0.31KB0.24KB
auth (AuthGuard.js)2.07KB1.00KB
auth (AuthProvider.js)40.18KB10.59KB
auth (AuthShell.js)3.49KB1.40KB
auth (ForgotPasswordForm.js)12.21KB3.45KB
auth (LoginForm.js)18.15KB5.39KB
auth (PreviewBanner.js)0.90KB0.50KB
auth (RegisterForm.js)6.65KB2.22KB
auth (SocialSignInButtons.js)9.61KB3.89KB
auth (UserMenu.js)3.41KB1.23KB
auth (auth-gate-events.js)1.29KB0.66KB
auth (authStyles.js)5.04KB1.72KB
auth (createAuthClient.js)40.21KB10.80KB
auth (createAuthenticatedFetch.js)8.46KB3.43KB
auth (index.js)3.19KB1.44KB
auth (invitation-status.js)1.22KB0.70KB
auth (org-roles.js)6.66KB2.78KB
auth (phone-identifier.js)1.11KB0.66KB
auth (types.js)0.59KB0.35KB
auth (useAuth.js)5.30KB1.02KB
auth (useWorkspaceAdminStatus.js)5.13KB2.35KB
collaboration (CommentThread.js)26.08KB7.56KB
collaboration (LiveCursors.js)3.17KB1.27KB
collaboration (PresenceAvatars.js)6.49KB2.64KB
collaboration (PresenceProvider.js)2.79KB1.13KB
collaboration (index.js)1.68KB0.73KB
collaboration (useCollaborationTranslation.js)6.05KB2.52KB
collaboration (useCommentSearch.js)1.98KB0.88KB
collaboration (useConflictResolution.js)7.75KB1.86KB
collaboration (useMentionNotifications.js)1.81KB0.68KB
collaboration (usePresence.js)6.33KB1.84KB
collaboration (useRealtimeSubscription.js)7.91KB2.01KB
components (index.js)514.87KB117.50KB
core (index.js)5.80KB2.32KB
create-plugin (index.js)10.08KB3.26KB
data-objectstack (index.js)178.20KB49.60KB
fields (index.js)244.08KB61.71KB
i18n (LocalizationContext.js)1.76KB0.96KB
i18n (currency.js)1.22KB0.64KB
i18n (fallbackInterpolation.js)6.25KB2.77KB
i18n (i18n.js)4.28KB1.75KB
i18n (index.js)3.44KB1.39KB
i18n (pickLocalized.js)7.62KB3.26KB
i18n (provider.js)26.89KB9.04KB
i18n (useDisplayLocale.js)2.85KB1.45KB
i18n (useObjectLabel.js)33.40KB8.71KB
i18n (useSafeTranslation.js)5.60KB2.33KB
layout (index.js)38.98KB10.98KB
mobile (MobileProvider.js)0.92KB0.49KB
mobile (ResponsiveContainer.js)0.94KB0.38KB
mobile (breakpoints.js)1.51KB0.70KB
mobile (createOfflineDataSource.js)5.61KB1.75KB
mobile (index.js)1.55KB0.62KB
mobile (offlineQueue.js)3.91KB1.35KB
mobile (pwa.js)0.97KB0.49KB
mobile (serviceWorker.js)1.48KB0.62KB
mobile (serviceWorkerSource.js)3.41KB1.48KB
mobile (useBreakpoint.js)1.54KB0.65KB
mobile (useGesture.js)6.96KB1.98KB
mobile (useOfflineSync.js)1.99KB0.72KB
mobile (usePullToRefresh.js)2.53KB0.85KB
mobile (useResponsive.js)0.72KB0.42KB
mobile (useResponsiveConfig.js)1.37KB0.63KB
mobile (useSpecGesture.js)4.32KB1.64KB
mobile (useTouchTarget.js)1.01KB0.54KB
permissions (MePermissionsProvider.js)11.71KB4.29KB
permissions (PermissionContext.js)0.31KB0.25KB
permissions (PermissionGuard.js)0.89KB0.45KB
permissions (PermissionProvider.js)6.24KB2.16KB
permissions (discardProofCache.js)1.04KB0.55KB
permissions (evaluator.js)5.12KB1.74KB
permissions (index.js)0.93KB0.41KB
permissions (store.js)0.91KB0.42KB
permissions (useFieldPermissions.js)1.28KB0.53KB
permissions (usePermissions.js)4.83KB2.27KB
plugin-ai (index.js)15.75KB3.80KB
plugin-calendar (index.js)47.00KB12.97KB
plugin-charts (index.js)70.31KB19.55KB
plugin-chatbot (index.js)196.19KB46.43KB
plugin-dashboard (index.js)132.63KB34.56KB
plugin-designer (index.js)212.87KB43.19KB
plugin-detail (index.js)251.20KB64.18KB
plugin-editor (index.js)2.46KB1.10KB
plugin-form (index.js)132.87KB32.66KB
plugin-gantt (index.js)166.93KB40.82KB
plugin-grid (index.js)209.10KB56.65KB
plugin-kanban (index.js)53.21KB14.66KB
plugin-list (index.js)113.51KB27.67KB
plugin-map (index.js)20.20KB6.66KB
plugin-markdown (index.js)13.72KB4.69KB
plugin-report (index.js)43.51KB11.94KB
plugin-timeline (index.js)30.21KB8.66KB
plugin-tree (index.js)8.98KB3.08KB
plugin-view (index.js)85.90KB21.12KB
providers (DataSourceProvider.js)0.75KB0.39KB
providers (MetadataProvider.js)1.37KB0.59KB
providers (ThemeProvider.js)1.90KB0.85KB
providers (UploadProvider.js)11.66KB3.50KB
providers (index.js)0.45KB0.23KB
providers (types.js)0.01KB0.04KB
react-runtime (index.js)5.62KB2.34KB
react (LazyPluginLoader.js)4.47KB1.63KB
react (SchemaRenderer.js)81.07KB26.86KB
react (data-invalidation.js)5.05KB2.08KB
react (index.js)3.11KB1.48KB
react (schema-input.js)2.32KB1.24KB
react (spec-input.js)0.20KB0.18KB
sdui-parser (codegen.js)5.41KB2.34KB
sdui-parser (dashboard-widget-options.js)3.08KB1.30KB
sdui-parser (index.js)4.93KB2.24KB
sdui-parser (input-type.js)2.84KB1.40KB
sdui-parser (parse.js)20.57KB5.88KB
sdui-parser (provenance.js)3.66KB1.82KB
sdui-parser (types.js)0.28KB0.23KB
sdui-parser (validate.js)10.35KB3.60KB
types (ai.js)0.20KB0.17KB
types (api-types.js)0.20KB0.18KB
types (app.js)2.87KB0.99KB
types (base.js)0.20KB0.18KB
types (blocks.js)0.20KB0.18KB
types (complex.js)2.74KB1.41KB
types (crud.js)0.20KB0.18KB
types (dashboard-filter-alias.js)6.23KB2.74KB
types (data-display.js)3.75KB1.85KB
types (data-protocol.js)0.20KB0.19KB
types (data.js)0.20KB0.18KB
types (designer.js)1.85KB0.85KB
types (disclosure.js)0.20KB0.18KB
types (error-code.js)1.54KB0.88KB
types (feedback.js)0.20KB0.18KB
types (field-types.js)0.20KB0.18KB
types (form.js)0.20KB0.18KB
types (http-inflight.js)8.87KB3.73KB
types (http-retry.js)4.32KB2.02KB
types (icon-key-migration.js)4.26KB1.63KB
types (index.js)4.74KB2.25KB
types (layout.js)0.20KB0.18KB
types (managed-by.js)0.19KB0.18KB
types (mobile.js)2.59KB1.31KB
types (navigation.js)0.20KB0.18KB
types (objectql.js)0.20KB0.18KB
types (overlay.js)0.20KB0.18KB
types (permissions.js)0.20KB0.18KB
types (plugin-scope.js)0.20KB0.18KB
types (record-components.js)0.20KB0.19KB
types (record-semantics.js)1.28KB0.67KB
types (registry.js)0.20KB0.18KB
types (reports.js)0.20KB0.18KB
types (spec-report.js)5.05KB1.93KB
types (spec-ui-namespace.js)0.20KB0.19KB
types (system-fields.js)3.33KB1.54KB
types (theme.js)6.28KB2.87KB
types (ui-action.js)8.11KB3.32KB
types (views.js)0.20KB0.18KB
types (widget.js)0.20KB0.18KB

Size Limits

  • ✅ Core packages should be < 50KB gzipped
  • ✅ Component packages should be < 100KB gzipped
  • ⚠️ Plugin packages should be < 150KB gzipped

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

2 participants

@os-project-manager@claude
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Add copy buttons to all
 blocks\n(function() {\n function addCopyButtons() {\n document.querySelectorAll('pre code').forEach(function(codeBlock) {\n if (codeBlock.parentElement.hasAttribute('data-copy-added')) return;\n codeBlock.parentElement.setAttribute('data-copy-added', 'true');\n \n var btn = document.createElement('button');\n btn.textContent = 'Copy';\n btn.style.cssText = 'position:absolute;top:4px;right:4px;padding:2px 8px;font-size:11px;background:#4ecdc4;border:none;border-radius:4px;color:#1a1a2e;cursor:pointer;opacity:0.7;transition:opacity 0.2s;';\n btn.onmouseover = function() { this.style.opacity = '1'; };\n btn.onmouseout = function() { this.style.opacity = '0.7'; };\n btn.onclick = function() {\n navigator.clipboard.writeText(codeBlock.textContent).then(function() {\n btn.textContent = 'Copied!';\n setTimeout(function() { btn.textContent = 'Copy'; }, 1500);\n });\n };\n codeBlock.parentElement.style.position = 'relative';\n codeBlock.parentElement.appendChild(btn);\n });\n }\n \n addCopyButtons();\n \n // Re-run on dynamic content\n var observer = new MutationObserver(addCopyButtons);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Add Copy Buttons to Code Blocks");
}
} catch(__e) { console.warn('[Userscript:Add Copy Buttons to Code Blocks]', __e); }
})();
(function(){
try {
var __m = "github.com";
var __re = new RegExp('^' + "github\\.com" + '
Skip to content

feat(build): ratchet the tooling-directory exclude across every published build tsconfig - #7409

Merged
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet
Sep 2, 2026
Merged

feat(build): ratchet the tooling-directory exclude across every published build tsconfig#7409
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet

Conversation

@claude

@claudeclaudeBot commented Sep 2, 2026

Copy link
Copy Markdown
Contributor

Fixes#7212

Implements the maintainer's ruling of 2026-09-02 (comment 5508046691, option 2): a static, per-PR gate that reads each published package's build tsconfig.json and requires the directory form of the tooling exclude wherever the emitter honours exclude — landed together with the conversion of its initial red set, so main is green on merge.

What is here

  • New gatescripts/check-published-tsconfig-tooling-exclude.mjs, exposed as pnpm check:published-tsconfig-exclude and wired into ci.yml's Type Check job (config reads only; no build, no artifact, no emit model).
  • 28 build tsconfigs converted to the directory form.
  • Testscripts/__tests__/check-published-tsconfig-tooling-exclude.test.ts — 26 cases.
  • Docs: the Type Check row and the Published Dist Gate section of content/docs/guide/ci-cd-pipeline.md.
  • Changeset with empty frontmatter: repo tooling and build config only, nothing consumer-visible moves (no published package ships its tsconfig — verified across all 39).

The artifact-level check:published-dist is untouched and stays the second line of defence. It is the only criterion that cannot be wrong about what actually ships; this gate asks a strictly smaller question.

The card's central measurement, re-taken

The card claims all 29 name-only packages have zero non-test files in tooling directories, which is what makes the conversion safe. Re-measured independently, with the probe built from TOOLING_FILE in scripts/check-phantom-dependencies.mjs rather than from the card's prose:

setpackagesnon-test files in tooling dirs
name-only exclude290
directory-form exclude69
emitter carve-outs4 (per the ruling)1

The claim holds: zero, with no exception. And the zero is a reading, because the controls fire — the same probe finds apps/console/src/__tests__/helpers/preview-page-sources.ts exactly where the card says it is, plus fields/src/__tests__/numberInputBrowserReadings.ts, plugin-grid and plugin-view's explainDouble.ts, plugin-designer's two __mocks__ files, and four in components.

One correction to the card's table, cosmetic: it labels the directory-form row 5 and then lists 6 package names. Six is right.

The confidence gap the ruling carried: the carve-outs were NOT exhaustive

The ruling named four and asked for exhaustiveness to be verified at authoring time. Verified mechanically, against each package's actual build script and vite config rather than against the gate header's prose. Two more published packages have an emitter that never builds its program from this file list, and both were inside the ruling's "29 name-only" red set:

packageemitterwhy the tsconfig exclude is not honoured
@object-ui/create-plugintsupa third tsup package beside cli and data-objectstack — same tsup.config.ts shape, same dts: true entry-graph emit
@object-ui/runnervite build, no dts() plugina second Vite application beside consolenoEmit: true, publishes a Rollup bundle, writes no declarations

Full emitter tally across the 39 published packages: tsc emitting 12, vite+dts() 22, tsup3, Vite app with no dts() plugin 2. So the gate names six carve-outs, not four. Requiring a config shape in create-plugin or runner would have been a check that is green about nothing — the failure this repository treats as worse than no check. The initial red set is therefore 27, not 29 (plus components, below, for 28 files).

Carve-outs do not sit on trust: each states the facts it rests on and re-proves them on every run (the technique HOST_PROVIDED uses in check-phantom-dependencies.mjs). A carve-out for a package that is no longer published is a failure, not a no-op.

⚠️console keeps its noEmit protection and its entry records, as the ruling required, that it does carry a non-test helper under src/__tests__/ — the one live file behind a single guard. A test asserts that file still exists, so the note cannot go stale silently.

One thing the ruling did not cover — flagged, not folded in

@object-ui/components was in the ruling's directory-form set, but its spelling was "src/__tests__": a bare directory, covering one of the three tooling directories and only at the top of src/. tsc honours it, so the config is not wrong — it is position-anchored, and does not cover src/renderers/__tests__/. That is the same "green until someone adds a file" shape this card exists to end, one level over, so the gate rejects that spelling and components is converted with the other 27. Accepted spellings are the four anchored globs the failure message prints.

A second observation, reported rather than acted on: the ruling gives plugin-charts's carve-out reason as "own exclude in the dts() options". Reading unplugin-dts's computeGlobs shows the option replaces the filter globs only — the program's file list still comes from the tsconfig — so the two compose, and plugin-charts is really exempt because its tsconfig carries no exclude key at all. Its own protection is therefore name-only, in vite.config.ts. Kept as a carve-out exactly as ruled; noted for whoever revisits it.

Verification

Emit-neutrality, measured not assumed. Each package's build program file list was resolved with TypeScript's own config resolver (ts.getParsedCommandLineOfConfigFile) before and after the proposed exclude — the same resolver tsc uses and the same one unplugin-dts calls for content.fileNames. All 33 enforced packages came back identical: 0 files added, 0 removed. Identical program input means identical emit. The two packages that carry console runtime bytes, console and runner, are carve-outs and were not touched. Byte-neutral.

Red-then-green, on the real tree, mutation proven on disk by blob hash and anchored token counts, restore proven by state under trap ... EXIT INT TERM with absolute paths:

baseline exit 0
leg A name-only regression, plugin-form exit 1 FAIL [name-only-tooling-exclude]
blob 3d4c427d != HEAD dd77a939, directory-form entries left: 0
leg B create-plugin build tsup -> tsc exit 1 FAIL [carve-out-no-longer-holds]
blob 38fbec8d -> mutated, injected 1 / removed 0
restore blobs equal HEAD, git diff HEAD --quiet exit 0, porcelain 0 lines
after restore exit 0

And the hole it closes is real, not stylistic. A non-test sharedFormHarness.ts was placed under plugin-form/src/__tests__/ and the build program asked with the same TypeScript resolver: with the directory form it is not a program input (0); reverted to the name-only form it is (1). Same file, same package, only the exclude differs. Restored, tree clean.

Nothing built was mutated by any leg — this gate reads config text only — so there is no dist to restore.

Gates run, all on the final head e855f935e, exit codes captured by redirect before any pipe:

pnpm check:published-tsconfig-exclude 0 39 scanned, 33 enforced, 6 carve-outs, all compliant
node scripts/check-type-check-coverage 0 45/46 via type-check; 41/41 compile their tests
node scripts/check-changeset-presence 0 34 files, 0 published source, 1 changeset added
node scripts/check-changeset-fixed 0
node scripts/check-changeset-overwrite 0
pnpm check:control-bytes 0 6106 tracked text files
node scripts/check-entry-guard --self-test / plain 0 / 0
node scripts/check-lint-coverage 0 46/46
pnpm check:esm-specifiers 0
pnpm check:doc-fences 0
node scripts/check-doc-links 0
pnpm check:shell-escape-residue 0
pnpm type-check:scripts 0
pnpm lint:root 0 full root scope, 0 errors (33 pre-existing warnings)
vitest scripts/__tests__ (unit) 0 98 files / 2764 tests

No lint narrowing was needed and none is claimed: lint:root ran its full scope, and eslint's own resolver reports that of the 34 changed files it lints exactly two — the new gate and its test. It ignores every tsconfig.json, package.json, workflow and .md in the diff, and a package-scoped run in packages/types reads 156 files, none of them a tsconfig. So no package lint scope can be moved by this diff.

⛔ No existing gate was weakened. check-published-dist-tooling.test.ts asserts by substring that no per-PR workflow mentions the artifact gate's alias, and it fired on the explanatory comment in my ci.yml step. The comment was reworded — the test is right, and a substring scan that tried to tell prose from a run: would be a weaker gate. The ci.yml comment now records why the alias is deliberately absent from that file.

🤖 Generated with Claude Code

https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC


Generated by Claude Code

…ry published build tsconfig
A build tsconfig that excludes tooling by FILE NAME (`*.test.ts`) stops the
files that happen to be named that way and nothing else. The first shared
helper added to a `__tests__/` directory then becomes a program input, and an
emitting program writes it into the published `dist`.
That has happened three times and been caught by a gate zero times: objectui#4006
(73 `*.test.d.ts` published from two packages), objectui#4836 (9 more, one of
them an emitted module whose first statement imports `vitest`) and objectui#6943
(the same package as the first, because that fix wrote the name form). Each
repair was correct and local, and each left the trap armed everywhere else.
objectui#7212 measured the standing exposure instead of another instance: 29
published packages carried the name form with ZERO offending files.
Adds `scripts/check-published-tsconfig-tooling-exclude.mjs`
(`pnpm check:published-tsconfig-exclude`), wired into ci.yml's Type Check job,
and converts 28 build tsconfigs in the same commit so main is green on merge.
The gate reads `exclude` arrays and nothing else: no build, no artifact, no emit
model. That is the narrower scope which keeps it clear of the modelling
objectui#4846 declined for the artifact-level gate, which is untouched and stays
the second line of defence.
Six published packages are named carve-outs whose emitter never builds its
program from this file list, each re-proving its own reason on every run: cli,
create-plugin and data-objectstack (tsup entry graph), plugin-charts (its
tooling exclude lives in the `dts()` options), console and runner (Vite
applications, `noEmit: true`, no `dts()` plugin). create-plugin and runner were
found at authoring time and were inside the ruling's initial red set.
The conversion is emit-neutral, measured rather than assumed: every enforced
package's build program file list was resolved with TypeScript's own config
resolver before and after, and all 33 came back identical.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC
@github-actions

Copy link
Copy Markdown
Contributor

✅ Console Performance Budget

MetricValueBudget
Eager closure (gzip, 48 chunks)3177.2 KB3191.4 KB
Main entry chunk (gzip)143.2 KB350 KB
Entry fileindex-CDQS-v_Q.js
StatusPASS

The eager closure is every chunk the entry reaches through static imports — what the browser fetches and parses before the app renders. The entry chunk on its own is a small fraction of it.


📦 Bundle Size Report

PackageSizeGzipped
app-shell (consoleActionDispatch.js)0.20KB0.19KB
app-shell (index.js)15.67KB5.75KB
app-shell (runtime-config.js)20.68KB7.36KB
app-shell (types.js)0.01KB0.04KB
app-shell (urlParams.js)10.06KB3.86KB
auth (ActiveOrganizationStorage.js)25.05KB9.16KB
auth (AuthContext.js)0.31KB0.24KB
auth (AuthGuard.js)2.07KB1.00KB
auth (AuthProvider.js)40.18KB10.59KB
auth (AuthShell.js)3.49KB1.40KB
auth (ForgotPasswordForm.js)12.21KB3.45KB
auth (LoginForm.js)18.15KB5.39KB
auth (PreviewBanner.js)0.90KB0.50KB
auth (RegisterForm.js)6.65KB2.22KB
auth (SocialSignInButtons.js)9.61KB3.89KB
auth (UserMenu.js)3.41KB1.23KB
auth (auth-gate-events.js)1.29KB0.66KB
auth (authStyles.js)5.04KB1.72KB
auth (createAuthClient.js)40.21KB10.80KB
auth (createAuthenticatedFetch.js)8.46KB3.43KB
auth (index.js)3.19KB1.44KB
auth (invitation-status.js)1.22KB0.70KB
auth (org-roles.js)6.66KB2.78KB
auth (phone-identifier.js)1.11KB0.66KB
auth (types.js)0.59KB0.35KB
auth (useAuth.js)5.30KB1.02KB
auth (useWorkspaceAdminStatus.js)5.13KB2.35KB
collaboration (CommentThread.js)26.08KB7.56KB
collaboration (LiveCursors.js)3.17KB1.27KB
collaboration (PresenceAvatars.js)6.49KB2.64KB
collaboration (PresenceProvider.js)2.79KB1.13KB
collaboration (index.js)1.68KB0.73KB
collaboration (useCollaborationTranslation.js)6.05KB2.52KB
collaboration (useCommentSearch.js)1.98KB0.88KB
collaboration (useConflictResolution.js)7.75KB1.86KB
collaboration (useMentionNotifications.js)1.81KB0.68KB
collaboration (usePresence.js)6.33KB1.84KB
collaboration (useRealtimeSubscription.js)7.91KB2.01KB
components (index.js)514.87KB117.50KB
core (index.js)5.80KB2.32KB
create-plugin (index.js)10.08KB3.26KB
data-objectstack (index.js)178.20KB49.60KB
fields (index.js)244.08KB61.71KB
i18n (LocalizationContext.js)1.76KB0.96KB
i18n (currency.js)1.22KB0.64KB
i18n (fallbackInterpolation.js)6.25KB2.77KB
i18n (i18n.js)4.28KB1.75KB
i18n (index.js)3.44KB1.39KB
i18n (pickLocalized.js)7.62KB3.26KB
i18n (provider.js)26.89KB9.04KB
i18n (useDisplayLocale.js)2.85KB1.45KB
i18n (useObjectLabel.js)33.40KB8.71KB
i18n (useSafeTranslation.js)5.60KB2.33KB
layout (index.js)38.98KB10.98KB
mobile (MobileProvider.js)0.92KB0.49KB
mobile (ResponsiveContainer.js)0.94KB0.38KB
mobile (breakpoints.js)1.51KB0.70KB
mobile (createOfflineDataSource.js)5.61KB1.75KB
mobile (index.js)1.55KB0.62KB
mobile (offlineQueue.js)3.91KB1.35KB
mobile (pwa.js)0.97KB0.49KB
mobile (serviceWorker.js)1.48KB0.62KB
mobile (serviceWorkerSource.js)3.41KB1.48KB
mobile (useBreakpoint.js)1.54KB0.65KB
mobile (useGesture.js)6.96KB1.98KB
mobile (useOfflineSync.js)1.99KB0.72KB
mobile (usePullToRefresh.js)2.53KB0.85KB
mobile (useResponsive.js)0.72KB0.42KB
mobile (useResponsiveConfig.js)1.37KB0.63KB
mobile (useSpecGesture.js)4.32KB1.64KB
mobile (useTouchTarget.js)1.01KB0.54KB
permissions (MePermissionsProvider.js)11.71KB4.29KB
permissions (PermissionContext.js)0.31KB0.25KB
permissions (PermissionGuard.js)0.89KB0.45KB
permissions (PermissionProvider.js)6.24KB2.16KB
permissions (discardProofCache.js)1.04KB0.55KB
permissions (evaluator.js)5.12KB1.74KB
permissions (index.js)0.93KB0.41KB
permissions (store.js)0.91KB0.42KB
permissions (useFieldPermissions.js)1.28KB0.53KB
permissions (usePermissions.js)4.83KB2.27KB
plugin-ai (index.js)15.75KB3.80KB
plugin-calendar (index.js)47.00KB12.97KB
plugin-charts (index.js)70.31KB19.55KB
plugin-chatbot (index.js)196.19KB46.43KB
plugin-dashboard (index.js)132.63KB34.56KB
plugin-designer (index.js)212.87KB43.19KB
plugin-detail (index.js)251.20KB64.18KB
plugin-editor (index.js)2.46KB1.10KB
plugin-form (index.js)132.87KB32.66KB
plugin-gantt (index.js)166.93KB40.82KB
plugin-grid (index.js)209.10KB56.65KB
plugin-kanban (index.js)53.21KB14.66KB
plugin-list (index.js)113.51KB27.67KB
plugin-map (index.js)20.20KB6.66KB
plugin-markdown (index.js)13.72KB4.69KB
plugin-report (index.js)43.51KB11.94KB
plugin-timeline (index.js)30.21KB8.66KB
plugin-tree (index.js)8.98KB3.08KB
plugin-view (index.js)85.90KB21.12KB
providers (DataSourceProvider.js)0.75KB0.39KB
providers (MetadataProvider.js)1.37KB0.59KB
providers (ThemeProvider.js)1.90KB0.85KB
providers (UploadProvider.js)11.66KB3.50KB
providers (index.js)0.45KB0.23KB
providers (types.js)0.01KB0.04KB
react-runtime (index.js)5.62KB2.34KB
react (LazyPluginLoader.js)4.47KB1.63KB
react (SchemaRenderer.js)81.07KB26.86KB
react (data-invalidation.js)5.05KB2.08KB
react (index.js)3.11KB1.48KB
react (schema-input.js)2.32KB1.24KB
react (spec-input.js)0.20KB0.18KB
sdui-parser (codegen.js)5.41KB2.34KB
sdui-parser (dashboard-widget-options.js)3.08KB1.30KB
sdui-parser (index.js)4.93KB2.24KB
sdui-parser (input-type.js)2.84KB1.40KB
sdui-parser (parse.js)20.57KB5.88KB
sdui-parser (provenance.js)3.66KB1.82KB
sdui-parser (types.js)0.28KB0.23KB
sdui-parser (validate.js)10.35KB3.60KB
types (ai.js)0.20KB0.17KB
types (api-types.js)0.20KB0.18KB
types (app.js)2.87KB0.99KB
types (base.js)0.20KB0.18KB
types (blocks.js)0.20KB0.18KB
types (complex.js)2.74KB1.41KB
types (crud.js)0.20KB0.18KB
types (dashboard-filter-alias.js)6.23KB2.74KB
types (data-display.js)3.75KB1.85KB
types (data-protocol.js)0.20KB0.19KB
types (data.js)0.20KB0.18KB
types (designer.js)1.85KB0.85KB
types (disclosure.js)0.20KB0.18KB
types (error-code.js)1.54KB0.88KB
types (feedback.js)0.20KB0.18KB
types (field-types.js)0.20KB0.18KB
types (form.js)0.20KB0.18KB
types (http-inflight.js)8.87KB3.73KB
types (http-retry.js)4.32KB2.02KB
types (icon-key-migration.js)4.26KB1.63KB
types (index.js)4.74KB2.25KB
types (layout.js)0.20KB0.18KB
types (managed-by.js)0.19KB0.18KB
types (mobile.js)2.59KB1.31KB
types (navigation.js)0.20KB0.18KB
types (objectql.js)0.20KB0.18KB
types (overlay.js)0.20KB0.18KB
types (permissions.js)0.20KB0.18KB
types (plugin-scope.js)0.20KB0.18KB
types (record-components.js)0.20KB0.19KB
types (record-semantics.js)1.28KB0.67KB
types (registry.js)0.20KB0.18KB
types (reports.js)0.20KB0.18KB
types (spec-report.js)5.05KB1.93KB
types (spec-ui-namespace.js)0.20KB0.19KB
types (system-fields.js)3.33KB1.54KB
types (theme.js)6.28KB2.87KB
types (ui-action.js)8.11KB3.32KB
types (views.js)0.20KB0.18KB
types (widget.js)0.20KB0.18KB

Size Limits

  • ✅ Core packages should be < 50KB gzipped
  • ✅ Component packages should be < 100KB gzipped
  • ⚠️ Plugin packages should be < 150KB gzipped

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

2 participants

@os-project-manager@claude
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Force GitHub README to respect dark mode\n(function() {\n var style = document.createElement('style');\n style.textContent = '\n .markdown-body {\n color-scheme: dark light;\n }\n .markdown-body pre { background: #161b22 !important; }\n .markdown-body code { background: rgba(110, 118, 129, 0.4) !important; }\n .markdown-body table th, .markdown-body table td { border-color: #30363d !important; }\n .markdown-body img { background: #0d1117; }\n .markdown-body blockquote { border-left-color: #8b949e; }\n .markdown-body hr { border-color: #30363d; }\n ';\n document.head.appendChild(style);\n})();", "GitHub Dark Mode README Fix"); } } catch(__e) { console.warn('[Userscript:GitHub Dark Mode README Fix]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

feat(build): ratchet the tooling-directory exclude across every published build tsconfig - #7409

Merged
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet
Sep 2, 2026
Merged

feat(build): ratchet the tooling-directory exclude across every published build tsconfig#7409
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet

Conversation

@claude

@claudeclaudeBot commented Sep 2, 2026

Copy link
Copy Markdown
Contributor

Fixes#7212

Implements the maintainer's ruling of 2026-09-02 (comment 5508046691, option 2): a static, per-PR gate that reads each published package's build tsconfig.json and requires the directory form of the tooling exclude wherever the emitter honours exclude — landed together with the conversion of its initial red set, so main is green on merge.

What is here

  • New gatescripts/check-published-tsconfig-tooling-exclude.mjs, exposed as pnpm check:published-tsconfig-exclude and wired into ci.yml's Type Check job (config reads only; no build, no artifact, no emit model).
  • 28 build tsconfigs converted to the directory form.
  • Testscripts/__tests__/check-published-tsconfig-tooling-exclude.test.ts — 26 cases.
  • Docs: the Type Check row and the Published Dist Gate section of content/docs/guide/ci-cd-pipeline.md.
  • Changeset with empty frontmatter: repo tooling and build config only, nothing consumer-visible moves (no published package ships its tsconfig — verified across all 39).

The artifact-level check:published-dist is untouched and stays the second line of defence. It is the only criterion that cannot be wrong about what actually ships; this gate asks a strictly smaller question.

The card's central measurement, re-taken

The card claims all 29 name-only packages have zero non-test files in tooling directories, which is what makes the conversion safe. Re-measured independently, with the probe built from TOOLING_FILE in scripts/check-phantom-dependencies.mjs rather than from the card's prose:

setpackagesnon-test files in tooling dirs
name-only exclude290
directory-form exclude69
emitter carve-outs4 (per the ruling)1

The claim holds: zero, with no exception. And the zero is a reading, because the controls fire — the same probe finds apps/console/src/__tests__/helpers/preview-page-sources.ts exactly where the card says it is, plus fields/src/__tests__/numberInputBrowserReadings.ts, plugin-grid and plugin-view's explainDouble.ts, plugin-designer's two __mocks__ files, and four in components.

One correction to the card's table, cosmetic: it labels the directory-form row 5 and then lists 6 package names. Six is right.

The confidence gap the ruling carried: the carve-outs were NOT exhaustive

The ruling named four and asked for exhaustiveness to be verified at authoring time. Verified mechanically, against each package's actual build script and vite config rather than against the gate header's prose. Two more published packages have an emitter that never builds its program from this file list, and both were inside the ruling's "29 name-only" red set:

packageemitterwhy the tsconfig exclude is not honoured
@object-ui/create-plugintsupa third tsup package beside cli and data-objectstack — same tsup.config.ts shape, same dts: true entry-graph emit
@object-ui/runnervite build, no dts() plugina second Vite application beside consolenoEmit: true, publishes a Rollup bundle, writes no declarations

Full emitter tally across the 39 published packages: tsc emitting 12, vite+dts() 22, tsup3, Vite app with no dts() plugin 2. So the gate names six carve-outs, not four. Requiring a config shape in create-plugin or runner would have been a check that is green about nothing — the failure this repository treats as worse than no check. The initial red set is therefore 27, not 29 (plus components, below, for 28 files).

Carve-outs do not sit on trust: each states the facts it rests on and re-proves them on every run (the technique HOST_PROVIDED uses in check-phantom-dependencies.mjs). A carve-out for a package that is no longer published is a failure, not a no-op.

⚠️console keeps its noEmit protection and its entry records, as the ruling required, that it does carry a non-test helper under src/__tests__/ — the one live file behind a single guard. A test asserts that file still exists, so the note cannot go stale silently.

One thing the ruling did not cover — flagged, not folded in

@object-ui/components was in the ruling's directory-form set, but its spelling was "src/__tests__": a bare directory, covering one of the three tooling directories and only at the top of src/. tsc honours it, so the config is not wrong — it is position-anchored, and does not cover src/renderers/__tests__/. That is the same "green until someone adds a file" shape this card exists to end, one level over, so the gate rejects that spelling and components is converted with the other 27. Accepted spellings are the four anchored globs the failure message prints.

A second observation, reported rather than acted on: the ruling gives plugin-charts's carve-out reason as "own exclude in the dts() options". Reading unplugin-dts's computeGlobs shows the option replaces the filter globs only — the program's file list still comes from the tsconfig — so the two compose, and plugin-charts is really exempt because its tsconfig carries no exclude key at all. Its own protection is therefore name-only, in vite.config.ts. Kept as a carve-out exactly as ruled; noted for whoever revisits it.

Verification

Emit-neutrality, measured not assumed. Each package's build program file list was resolved with TypeScript's own config resolver (ts.getParsedCommandLineOfConfigFile) before and after the proposed exclude — the same resolver tsc uses and the same one unplugin-dts calls for content.fileNames. All 33 enforced packages came back identical: 0 files added, 0 removed. Identical program input means identical emit. The two packages that carry console runtime bytes, console and runner, are carve-outs and were not touched. Byte-neutral.

Red-then-green, on the real tree, mutation proven on disk by blob hash and anchored token counts, restore proven by state under trap ... EXIT INT TERM with absolute paths:

baseline exit 0
leg A name-only regression, plugin-form exit 1 FAIL [name-only-tooling-exclude]
blob 3d4c427d != HEAD dd77a939, directory-form entries left: 0
leg B create-plugin build tsup -> tsc exit 1 FAIL [carve-out-no-longer-holds]
blob 38fbec8d -> mutated, injected 1 / removed 0
restore blobs equal HEAD, git diff HEAD --quiet exit 0, porcelain 0 lines
after restore exit 0

And the hole it closes is real, not stylistic. A non-test sharedFormHarness.ts was placed under plugin-form/src/__tests__/ and the build program asked with the same TypeScript resolver: with the directory form it is not a program input (0); reverted to the name-only form it is (1). Same file, same package, only the exclude differs. Restored, tree clean.

Nothing built was mutated by any leg — this gate reads config text only — so there is no dist to restore.

Gates run, all on the final head e855f935e, exit codes captured by redirect before any pipe:

pnpm check:published-tsconfig-exclude 0 39 scanned, 33 enforced, 6 carve-outs, all compliant
node scripts/check-type-check-coverage 0 45/46 via type-check; 41/41 compile their tests
node scripts/check-changeset-presence 0 34 files, 0 published source, 1 changeset added
node scripts/check-changeset-fixed 0
node scripts/check-changeset-overwrite 0
pnpm check:control-bytes 0 6106 tracked text files
node scripts/check-entry-guard --self-test / plain 0 / 0
node scripts/check-lint-coverage 0 46/46
pnpm check:esm-specifiers 0
pnpm check:doc-fences 0
node scripts/check-doc-links 0
pnpm check:shell-escape-residue 0
pnpm type-check:scripts 0
pnpm lint:root 0 full root scope, 0 errors (33 pre-existing warnings)
vitest scripts/__tests__ (unit) 0 98 files / 2764 tests

No lint narrowing was needed and none is claimed: lint:root ran its full scope, and eslint's own resolver reports that of the 34 changed files it lints exactly two — the new gate and its test. It ignores every tsconfig.json, package.json, workflow and .md in the diff, and a package-scoped run in packages/types reads 156 files, none of them a tsconfig. So no package lint scope can be moved by this diff.

⛔ No existing gate was weakened. check-published-dist-tooling.test.ts asserts by substring that no per-PR workflow mentions the artifact gate's alias, and it fired on the explanatory comment in my ci.yml step. The comment was reworded — the test is right, and a substring scan that tried to tell prose from a run: would be a weaker gate. The ci.yml comment now records why the alias is deliberately absent from that file.

🤖 Generated with Claude Code

https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC


Generated by Claude Code

…ry published build tsconfig
A build tsconfig that excludes tooling by FILE NAME (`*.test.ts`) stops the
files that happen to be named that way and nothing else. The first shared
helper added to a `__tests__/` directory then becomes a program input, and an
emitting program writes it into the published `dist`.
That has happened three times and been caught by a gate zero times: objectui#4006
(73 `*.test.d.ts` published from two packages), objectui#4836 (9 more, one of
them an emitted module whose first statement imports `vitest`) and objectui#6943
(the same package as the first, because that fix wrote the name form). Each
repair was correct and local, and each left the trap armed everywhere else.
objectui#7212 measured the standing exposure instead of another instance: 29
published packages carried the name form with ZERO offending files.
Adds `scripts/check-published-tsconfig-tooling-exclude.mjs`
(`pnpm check:published-tsconfig-exclude`), wired into ci.yml's Type Check job,
and converts 28 build tsconfigs in the same commit so main is green on merge.
The gate reads `exclude` arrays and nothing else: no build, no artifact, no emit
model. That is the narrower scope which keeps it clear of the modelling
objectui#4846 declined for the artifact-level gate, which is untouched and stays
the second line of defence.
Six published packages are named carve-outs whose emitter never builds its
program from this file list, each re-proving its own reason on every run: cli,
create-plugin and data-objectstack (tsup entry graph), plugin-charts (its
tooling exclude lives in the `dts()` options), console and runner (Vite
applications, `noEmit: true`, no `dts()` plugin). create-plugin and runner were
found at authoring time and were inside the ruling's initial red set.
The conversion is emit-neutral, measured rather than assumed: every enforced
package's build program file list was resolved with TypeScript's own config
resolver before and after, and all 33 came back identical.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC
@github-actions

Copy link
Copy Markdown
Contributor

✅ Console Performance Budget

MetricValueBudget
Eager closure (gzip, 48 chunks)3177.2 KB3191.4 KB
Main entry chunk (gzip)143.2 KB350 KB
Entry fileindex-CDQS-v_Q.js
StatusPASS

The eager closure is every chunk the entry reaches through static imports — what the browser fetches and parses before the app renders. The entry chunk on its own is a small fraction of it.


📦 Bundle Size Report

PackageSizeGzipped
app-shell (consoleActionDispatch.js)0.20KB0.19KB
app-shell (index.js)15.67KB5.75KB
app-shell (runtime-config.js)20.68KB7.36KB
app-shell (types.js)0.01KB0.04KB
app-shell (urlParams.js)10.06KB3.86KB
auth (ActiveOrganizationStorage.js)25.05KB9.16KB
auth (AuthContext.js)0.31KB0.24KB
auth (AuthGuard.js)2.07KB1.00KB
auth (AuthProvider.js)40.18KB10.59KB
auth (AuthShell.js)3.49KB1.40KB
auth (ForgotPasswordForm.js)12.21KB3.45KB
auth (LoginForm.js)18.15KB5.39KB
auth (PreviewBanner.js)0.90KB0.50KB
auth (RegisterForm.js)6.65KB2.22KB
auth (SocialSignInButtons.js)9.61KB3.89KB
auth (UserMenu.js)3.41KB1.23KB
auth (auth-gate-events.js)1.29KB0.66KB
auth (authStyles.js)5.04KB1.72KB
auth (createAuthClient.js)40.21KB10.80KB
auth (createAuthenticatedFetch.js)8.46KB3.43KB
auth (index.js)3.19KB1.44KB
auth (invitation-status.js)1.22KB0.70KB
auth (org-roles.js)6.66KB2.78KB
auth (phone-identifier.js)1.11KB0.66KB
auth (types.js)0.59KB0.35KB
auth (useAuth.js)5.30KB1.02KB
auth (useWorkspaceAdminStatus.js)5.13KB2.35KB
collaboration (CommentThread.js)26.08KB7.56KB
collaboration (LiveCursors.js)3.17KB1.27KB
collaboration (PresenceAvatars.js)6.49KB2.64KB
collaboration (PresenceProvider.js)2.79KB1.13KB
collaboration (index.js)1.68KB0.73KB
collaboration (useCollaborationTranslation.js)6.05KB2.52KB
collaboration (useCommentSearch.js)1.98KB0.88KB
collaboration (useConflictResolution.js)7.75KB1.86KB
collaboration (useMentionNotifications.js)1.81KB0.68KB
collaboration (usePresence.js)6.33KB1.84KB
collaboration (useRealtimeSubscription.js)7.91KB2.01KB
components (index.js)514.87KB117.50KB
core (index.js)5.80KB2.32KB
create-plugin (index.js)10.08KB3.26KB
data-objectstack (index.js)178.20KB49.60KB
fields (index.js)244.08KB61.71KB
i18n (LocalizationContext.js)1.76KB0.96KB
i18n (currency.js)1.22KB0.64KB
i18n (fallbackInterpolation.js)6.25KB2.77KB
i18n (i18n.js)4.28KB1.75KB
i18n (index.js)3.44KB1.39KB
i18n (pickLocalized.js)7.62KB3.26KB
i18n (provider.js)26.89KB9.04KB
i18n (useDisplayLocale.js)2.85KB1.45KB
i18n (useObjectLabel.js)33.40KB8.71KB
i18n (useSafeTranslation.js)5.60KB2.33KB
layout (index.js)38.98KB10.98KB
mobile (MobileProvider.js)0.92KB0.49KB
mobile (ResponsiveContainer.js)0.94KB0.38KB
mobile (breakpoints.js)1.51KB0.70KB
mobile (createOfflineDataSource.js)5.61KB1.75KB
mobile (index.js)1.55KB0.62KB
mobile (offlineQueue.js)3.91KB1.35KB
mobile (pwa.js)0.97KB0.49KB
mobile (serviceWorker.js)1.48KB0.62KB
mobile (serviceWorkerSource.js)3.41KB1.48KB
mobile (useBreakpoint.js)1.54KB0.65KB
mobile (useGesture.js)6.96KB1.98KB
mobile (useOfflineSync.js)1.99KB0.72KB
mobile (usePullToRefresh.js)2.53KB0.85KB
mobile (useResponsive.js)0.72KB0.42KB
mobile (useResponsiveConfig.js)1.37KB0.63KB
mobile (useSpecGesture.js)4.32KB1.64KB
mobile (useTouchTarget.js)1.01KB0.54KB
permissions (MePermissionsProvider.js)11.71KB4.29KB
permissions (PermissionContext.js)0.31KB0.25KB
permissions (PermissionGuard.js)0.89KB0.45KB
permissions (PermissionProvider.js)6.24KB2.16KB
permissions (discardProofCache.js)1.04KB0.55KB
permissions (evaluator.js)5.12KB1.74KB
permissions (index.js)0.93KB0.41KB
permissions (store.js)0.91KB0.42KB
permissions (useFieldPermissions.js)1.28KB0.53KB
permissions (usePermissions.js)4.83KB2.27KB
plugin-ai (index.js)15.75KB3.80KB
plugin-calendar (index.js)47.00KB12.97KB
plugin-charts (index.js)70.31KB19.55KB
plugin-chatbot (index.js)196.19KB46.43KB
plugin-dashboard (index.js)132.63KB34.56KB
plugin-designer (index.js)212.87KB43.19KB
plugin-detail (index.js)251.20KB64.18KB
plugin-editor (index.js)2.46KB1.10KB
plugin-form (index.js)132.87KB32.66KB
plugin-gantt (index.js)166.93KB40.82KB
plugin-grid (index.js)209.10KB56.65KB
plugin-kanban (index.js)53.21KB14.66KB
plugin-list (index.js)113.51KB27.67KB
plugin-map (index.js)20.20KB6.66KB
plugin-markdown (index.js)13.72KB4.69KB
plugin-report (index.js)43.51KB11.94KB
plugin-timeline (index.js)30.21KB8.66KB
plugin-tree (index.js)8.98KB3.08KB
plugin-view (index.js)85.90KB21.12KB
providers (DataSourceProvider.js)0.75KB0.39KB
providers (MetadataProvider.js)1.37KB0.59KB
providers (ThemeProvider.js)1.90KB0.85KB
providers (UploadProvider.js)11.66KB3.50KB
providers (index.js)0.45KB0.23KB
providers (types.js)0.01KB0.04KB
react-runtime (index.js)5.62KB2.34KB
react (LazyPluginLoader.js)4.47KB1.63KB
react (SchemaRenderer.js)81.07KB26.86KB
react (data-invalidation.js)5.05KB2.08KB
react (index.js)3.11KB1.48KB
react (schema-input.js)2.32KB1.24KB
react (spec-input.js)0.20KB0.18KB
sdui-parser (codegen.js)5.41KB2.34KB
sdui-parser (dashboard-widget-options.js)3.08KB1.30KB
sdui-parser (index.js)4.93KB2.24KB
sdui-parser (input-type.js)2.84KB1.40KB
sdui-parser (parse.js)20.57KB5.88KB
sdui-parser (provenance.js)3.66KB1.82KB
sdui-parser (types.js)0.28KB0.23KB
sdui-parser (validate.js)10.35KB3.60KB
types (ai.js)0.20KB0.17KB
types (api-types.js)0.20KB0.18KB
types (app.js)2.87KB0.99KB
types (base.js)0.20KB0.18KB
types (blocks.js)0.20KB0.18KB
types (complex.js)2.74KB1.41KB
types (crud.js)0.20KB0.18KB
types (dashboard-filter-alias.js)6.23KB2.74KB
types (data-display.js)3.75KB1.85KB
types (data-protocol.js)0.20KB0.19KB
types (data.js)0.20KB0.18KB
types (designer.js)1.85KB0.85KB
types (disclosure.js)0.20KB0.18KB
types (error-code.js)1.54KB0.88KB
types (feedback.js)0.20KB0.18KB
types (field-types.js)0.20KB0.18KB
types (form.js)0.20KB0.18KB
types (http-inflight.js)8.87KB3.73KB
types (http-retry.js)4.32KB2.02KB
types (icon-key-migration.js)4.26KB1.63KB
types (index.js)4.74KB2.25KB
types (layout.js)0.20KB0.18KB
types (managed-by.js)0.19KB0.18KB
types (mobile.js)2.59KB1.31KB
types (navigation.js)0.20KB0.18KB
types (objectql.js)0.20KB0.18KB
types (overlay.js)0.20KB0.18KB
types (permissions.js)0.20KB0.18KB
types (plugin-scope.js)0.20KB0.18KB
types (record-components.js)0.20KB0.19KB
types (record-semantics.js)1.28KB0.67KB
types (registry.js)0.20KB0.18KB
types (reports.js)0.20KB0.18KB
types (spec-report.js)5.05KB1.93KB
types (spec-ui-namespace.js)0.20KB0.19KB
types (system-fields.js)3.33KB1.54KB
types (theme.js)6.28KB2.87KB
types (ui-action.js)8.11KB3.32KB
types (views.js)0.20KB0.18KB
types (widget.js)0.20KB0.18KB

Size Limits

  • ✅ Core packages should be < 50KB gzipped
  • ✅ Component packages should be < 100KB gzipped
  • ⚠️ Plugin packages should be < 150KB gzipped

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

2 participants

@os-project-manager@claude
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Highlight search terms from Google/DuckDuckGo/Bing referrer\n(function() {\n var ref = document.referrer;\n var terms = [];\n \n if (ref.includes('google.com') || ref.includes('duckduckgo.com') || ref.includes('bing.com')) {\n var url = new URL(ref);\n var q = url.searchParams.get('q') || url.searchParams.get('p');\n if (q) {\n terms = q.split(/\\s+/).filter(function(t) { return t.length > 2; });\n }\n }\n \n if (terms.length === 0) return;\n \n var style = document.createElement('style');\n style.textContent = '.userscript-highlight { background: #fbbf24; color: #1a1a2e; padding: 1px 3px; border-radius: 2px; }';\n document.head.appendChild(style);\n \n function highlight(node) {\n if (node.nodeType === 3) { // text node\n var text = node.textContent;\n var found = false;\n terms.forEach(function(term) {\n var regex = new RegExp('(' + term.replace(/[.*+?^${}()|[\\]\\\\]/g, '\\\\') + ')', 'gi');\n if (regex.test(text)) {\n found = true;\n var frag = document.createDocumentFragment();\n var parts = text.split(regex);\n parts.forEach(function(part, i) {\n if (i % 2 === 0) {\n frag.appendChild(document.createTextNode(part));\n } else {\n var span = document.createElement('span');\n span.className = 'userscript-highlight';\n span.textContent = part;\n frag.appendChild(span);\n }\n });\n node.parentNode.replaceChild(frag, node);\n }\n });\n } else if (node.nodeType === 1 && node.childNodes) { // element\n var skipTags = ['SCRIPT', 'STYLE', 'NOSCRIPT', 'TEXTAREA', 'INPUT', 'SELECT'];\n if (!skipTags.includes(node.tagName)) {\n Array.from(node.childNodes).forEach(highlight);\n }\n }\n }\n \n highlight(document.body);\n \n // Re-highlight on dynamic content\n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1 || node.nodeType === 3) highlight(node);\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Highlight Search Terms"); } } catch(__e) { console.warn('[Userscript:Highlight Search Terms]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

feat(build): ratchet the tooling-directory exclude across every published build tsconfig - #7409

Merged
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet
Sep 2, 2026
Merged

feat(build): ratchet the tooling-directory exclude across every published build tsconfig#7409
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet

Conversation

@claude

@claudeclaudeBot commented Sep 2, 2026

Copy link
Copy Markdown
Contributor

Fixes#7212

Implements the maintainer's ruling of 2026-09-02 (comment 5508046691, option 2): a static, per-PR gate that reads each published package's build tsconfig.json and requires the directory form of the tooling exclude wherever the emitter honours exclude — landed together with the conversion of its initial red set, so main is green on merge.

What is here

  • New gatescripts/check-published-tsconfig-tooling-exclude.mjs, exposed as pnpm check:published-tsconfig-exclude and wired into ci.yml's Type Check job (config reads only; no build, no artifact, no emit model).
  • 28 build tsconfigs converted to the directory form.
  • Testscripts/__tests__/check-published-tsconfig-tooling-exclude.test.ts — 26 cases.
  • Docs: the Type Check row and the Published Dist Gate section of content/docs/guide/ci-cd-pipeline.md.
  • Changeset with empty frontmatter: repo tooling and build config only, nothing consumer-visible moves (no published package ships its tsconfig — verified across all 39).

The artifact-level check:published-dist is untouched and stays the second line of defence. It is the only criterion that cannot be wrong about what actually ships; this gate asks a strictly smaller question.

The card's central measurement, re-taken

The card claims all 29 name-only packages have zero non-test files in tooling directories, which is what makes the conversion safe. Re-measured independently, with the probe built from TOOLING_FILE in scripts/check-phantom-dependencies.mjs rather than from the card's prose:

setpackagesnon-test files in tooling dirs
name-only exclude290
directory-form exclude69
emitter carve-outs4 (per the ruling)1

The claim holds: zero, with no exception. And the zero is a reading, because the controls fire — the same probe finds apps/console/src/__tests__/helpers/preview-page-sources.ts exactly where the card says it is, plus fields/src/__tests__/numberInputBrowserReadings.ts, plugin-grid and plugin-view's explainDouble.ts, plugin-designer's two __mocks__ files, and four in components.

One correction to the card's table, cosmetic: it labels the directory-form row 5 and then lists 6 package names. Six is right.

The confidence gap the ruling carried: the carve-outs were NOT exhaustive

The ruling named four and asked for exhaustiveness to be verified at authoring time. Verified mechanically, against each package's actual build script and vite config rather than against the gate header's prose. Two more published packages have an emitter that never builds its program from this file list, and both were inside the ruling's "29 name-only" red set:

packageemitterwhy the tsconfig exclude is not honoured
@object-ui/create-plugintsupa third tsup package beside cli and data-objectstack — same tsup.config.ts shape, same dts: true entry-graph emit
@object-ui/runnervite build, no dts() plugina second Vite application beside consolenoEmit: true, publishes a Rollup bundle, writes no declarations

Full emitter tally across the 39 published packages: tsc emitting 12, vite+dts() 22, tsup3, Vite app with no dts() plugin 2. So the gate names six carve-outs, not four. Requiring a config shape in create-plugin or runner would have been a check that is green about nothing — the failure this repository treats as worse than no check. The initial red set is therefore 27, not 29 (plus components, below, for 28 files).

Carve-outs do not sit on trust: each states the facts it rests on and re-proves them on every run (the technique HOST_PROVIDED uses in check-phantom-dependencies.mjs). A carve-out for a package that is no longer published is a failure, not a no-op.

⚠️console keeps its noEmit protection and its entry records, as the ruling required, that it does carry a non-test helper under src/__tests__/ — the one live file behind a single guard. A test asserts that file still exists, so the note cannot go stale silently.

One thing the ruling did not cover — flagged, not folded in

@object-ui/components was in the ruling's directory-form set, but its spelling was "src/__tests__": a bare directory, covering one of the three tooling directories and only at the top of src/. tsc honours it, so the config is not wrong — it is position-anchored, and does not cover src/renderers/__tests__/. That is the same "green until someone adds a file" shape this card exists to end, one level over, so the gate rejects that spelling and components is converted with the other 27. Accepted spellings are the four anchored globs the failure message prints.

A second observation, reported rather than acted on: the ruling gives plugin-charts's carve-out reason as "own exclude in the dts() options". Reading unplugin-dts's computeGlobs shows the option replaces the filter globs only — the program's file list still comes from the tsconfig — so the two compose, and plugin-charts is really exempt because its tsconfig carries no exclude key at all. Its own protection is therefore name-only, in vite.config.ts. Kept as a carve-out exactly as ruled; noted for whoever revisits it.

Verification

Emit-neutrality, measured not assumed. Each package's build program file list was resolved with TypeScript's own config resolver (ts.getParsedCommandLineOfConfigFile) before and after the proposed exclude — the same resolver tsc uses and the same one unplugin-dts calls for content.fileNames. All 33 enforced packages came back identical: 0 files added, 0 removed. Identical program input means identical emit. The two packages that carry console runtime bytes, console and runner, are carve-outs and were not touched. Byte-neutral.

Red-then-green, on the real tree, mutation proven on disk by blob hash and anchored token counts, restore proven by state under trap ... EXIT INT TERM with absolute paths:

baseline exit 0
leg A name-only regression, plugin-form exit 1 FAIL [name-only-tooling-exclude]
blob 3d4c427d != HEAD dd77a939, directory-form entries left: 0
leg B create-plugin build tsup -> tsc exit 1 FAIL [carve-out-no-longer-holds]
blob 38fbec8d -> mutated, injected 1 / removed 0
restore blobs equal HEAD, git diff HEAD --quiet exit 0, porcelain 0 lines
after restore exit 0

And the hole it closes is real, not stylistic. A non-test sharedFormHarness.ts was placed under plugin-form/src/__tests__/ and the build program asked with the same TypeScript resolver: with the directory form it is not a program input (0); reverted to the name-only form it is (1). Same file, same package, only the exclude differs. Restored, tree clean.

Nothing built was mutated by any leg — this gate reads config text only — so there is no dist to restore.

Gates run, all on the final head e855f935e, exit codes captured by redirect before any pipe:

pnpm check:published-tsconfig-exclude 0 39 scanned, 33 enforced, 6 carve-outs, all compliant
node scripts/check-type-check-coverage 0 45/46 via type-check; 41/41 compile their tests
node scripts/check-changeset-presence 0 34 files, 0 published source, 1 changeset added
node scripts/check-changeset-fixed 0
node scripts/check-changeset-overwrite 0
pnpm check:control-bytes 0 6106 tracked text files
node scripts/check-entry-guard --self-test / plain 0 / 0
node scripts/check-lint-coverage 0 46/46
pnpm check:esm-specifiers 0
pnpm check:doc-fences 0
node scripts/check-doc-links 0
pnpm check:shell-escape-residue 0
pnpm type-check:scripts 0
pnpm lint:root 0 full root scope, 0 errors (33 pre-existing warnings)
vitest scripts/__tests__ (unit) 0 98 files / 2764 tests

No lint narrowing was needed and none is claimed: lint:root ran its full scope, and eslint's own resolver reports that of the 34 changed files it lints exactly two — the new gate and its test. It ignores every tsconfig.json, package.json, workflow and .md in the diff, and a package-scoped run in packages/types reads 156 files, none of them a tsconfig. So no package lint scope can be moved by this diff.

⛔ No existing gate was weakened. check-published-dist-tooling.test.ts asserts by substring that no per-PR workflow mentions the artifact gate's alias, and it fired on the explanatory comment in my ci.yml step. The comment was reworded — the test is right, and a substring scan that tried to tell prose from a run: would be a weaker gate. The ci.yml comment now records why the alias is deliberately absent from that file.

🤖 Generated with Claude Code

https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC


Generated by Claude Code

…ry published build tsconfig
A build tsconfig that excludes tooling by FILE NAME (`*.test.ts`) stops the
files that happen to be named that way and nothing else. The first shared
helper added to a `__tests__/` directory then becomes a program input, and an
emitting program writes it into the published `dist`.
That has happened three times and been caught by a gate zero times: objectui#4006
(73 `*.test.d.ts` published from two packages), objectui#4836 (9 more, one of
them an emitted module whose first statement imports `vitest`) and objectui#6943
(the same package as the first, because that fix wrote the name form). Each
repair was correct and local, and each left the trap armed everywhere else.
objectui#7212 measured the standing exposure instead of another instance: 29
published packages carried the name form with ZERO offending files.
Adds `scripts/check-published-tsconfig-tooling-exclude.mjs`
(`pnpm check:published-tsconfig-exclude`), wired into ci.yml's Type Check job,
and converts 28 build tsconfigs in the same commit so main is green on merge.
The gate reads `exclude` arrays and nothing else: no build, no artifact, no emit
model. That is the narrower scope which keeps it clear of the modelling
objectui#4846 declined for the artifact-level gate, which is untouched and stays
the second line of defence.
Six published packages are named carve-outs whose emitter never builds its
program from this file list, each re-proving its own reason on every run: cli,
create-plugin and data-objectstack (tsup entry graph), plugin-charts (its
tooling exclude lives in the `dts()` options), console and runner (Vite
applications, `noEmit: true`, no `dts()` plugin). create-plugin and runner were
found at authoring time and were inside the ruling's initial red set.
The conversion is emit-neutral, measured rather than assumed: every enforced
package's build program file list was resolved with TypeScript's own config
resolver before and after, and all 33 came back identical.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC
@github-actions

Copy link
Copy Markdown
Contributor

✅ Console Performance Budget

MetricValueBudget
Eager closure (gzip, 48 chunks)3177.2 KB3191.4 KB
Main entry chunk (gzip)143.2 KB350 KB
Entry fileindex-CDQS-v_Q.js
StatusPASS

The eager closure is every chunk the entry reaches through static imports — what the browser fetches and parses before the app renders. The entry chunk on its own is a small fraction of it.


📦 Bundle Size Report

PackageSizeGzipped
app-shell (consoleActionDispatch.js)0.20KB0.19KB
app-shell (index.js)15.67KB5.75KB
app-shell (runtime-config.js)20.68KB7.36KB
app-shell (types.js)0.01KB0.04KB
app-shell (urlParams.js)10.06KB3.86KB
auth (ActiveOrganizationStorage.js)25.05KB9.16KB
auth (AuthContext.js)0.31KB0.24KB
auth (AuthGuard.js)2.07KB1.00KB
auth (AuthProvider.js)40.18KB10.59KB
auth (AuthShell.js)3.49KB1.40KB
auth (ForgotPasswordForm.js)12.21KB3.45KB
auth (LoginForm.js)18.15KB5.39KB
auth (PreviewBanner.js)0.90KB0.50KB
auth (RegisterForm.js)6.65KB2.22KB
auth (SocialSignInButtons.js)9.61KB3.89KB
auth (UserMenu.js)3.41KB1.23KB
auth (auth-gate-events.js)1.29KB0.66KB
auth (authStyles.js)5.04KB1.72KB
auth (createAuthClient.js)40.21KB10.80KB
auth (createAuthenticatedFetch.js)8.46KB3.43KB
auth (index.js)3.19KB1.44KB
auth (invitation-status.js)1.22KB0.70KB
auth (org-roles.js)6.66KB2.78KB
auth (phone-identifier.js)1.11KB0.66KB
auth (types.js)0.59KB0.35KB
auth (useAuth.js)5.30KB1.02KB
auth (useWorkspaceAdminStatus.js)5.13KB2.35KB
collaboration (CommentThread.js)26.08KB7.56KB
collaboration (LiveCursors.js)3.17KB1.27KB
collaboration (PresenceAvatars.js)6.49KB2.64KB
collaboration (PresenceProvider.js)2.79KB1.13KB
collaboration (index.js)1.68KB0.73KB
collaboration (useCollaborationTranslation.js)6.05KB2.52KB
collaboration (useCommentSearch.js)1.98KB0.88KB
collaboration (useConflictResolution.js)7.75KB1.86KB
collaboration (useMentionNotifications.js)1.81KB0.68KB
collaboration (usePresence.js)6.33KB1.84KB
collaboration (useRealtimeSubscription.js)7.91KB2.01KB
components (index.js)514.87KB117.50KB
core (index.js)5.80KB2.32KB
create-plugin (index.js)10.08KB3.26KB
data-objectstack (index.js)178.20KB49.60KB
fields (index.js)244.08KB61.71KB
i18n (LocalizationContext.js)1.76KB0.96KB
i18n (currency.js)1.22KB0.64KB
i18n (fallbackInterpolation.js)6.25KB2.77KB
i18n (i18n.js)4.28KB1.75KB
i18n (index.js)3.44KB1.39KB
i18n (pickLocalized.js)7.62KB3.26KB
i18n (provider.js)26.89KB9.04KB
i18n (useDisplayLocale.js)2.85KB1.45KB
i18n (useObjectLabel.js)33.40KB8.71KB
i18n (useSafeTranslation.js)5.60KB2.33KB
layout (index.js)38.98KB10.98KB
mobile (MobileProvider.js)0.92KB0.49KB
mobile (ResponsiveContainer.js)0.94KB0.38KB
mobile (breakpoints.js)1.51KB0.70KB
mobile (createOfflineDataSource.js)5.61KB1.75KB
mobile (index.js)1.55KB0.62KB
mobile (offlineQueue.js)3.91KB1.35KB
mobile (pwa.js)0.97KB0.49KB
mobile (serviceWorker.js)1.48KB0.62KB
mobile (serviceWorkerSource.js)3.41KB1.48KB
mobile (useBreakpoint.js)1.54KB0.65KB
mobile (useGesture.js)6.96KB1.98KB
mobile (useOfflineSync.js)1.99KB0.72KB
mobile (usePullToRefresh.js)2.53KB0.85KB
mobile (useResponsive.js)0.72KB0.42KB
mobile (useResponsiveConfig.js)1.37KB0.63KB
mobile (useSpecGesture.js)4.32KB1.64KB
mobile (useTouchTarget.js)1.01KB0.54KB
permissions (MePermissionsProvider.js)11.71KB4.29KB
permissions (PermissionContext.js)0.31KB0.25KB
permissions (PermissionGuard.js)0.89KB0.45KB
permissions (PermissionProvider.js)6.24KB2.16KB
permissions (discardProofCache.js)1.04KB0.55KB
permissions (evaluator.js)5.12KB1.74KB
permissions (index.js)0.93KB0.41KB
permissions (store.js)0.91KB0.42KB
permissions (useFieldPermissions.js)1.28KB0.53KB
permissions (usePermissions.js)4.83KB2.27KB
plugin-ai (index.js)15.75KB3.80KB
plugin-calendar (index.js)47.00KB12.97KB
plugin-charts (index.js)70.31KB19.55KB
plugin-chatbot (index.js)196.19KB46.43KB
plugin-dashboard (index.js)132.63KB34.56KB
plugin-designer (index.js)212.87KB43.19KB
plugin-detail (index.js)251.20KB64.18KB
plugin-editor (index.js)2.46KB1.10KB
plugin-form (index.js)132.87KB32.66KB
plugin-gantt (index.js)166.93KB40.82KB
plugin-grid (index.js)209.10KB56.65KB
plugin-kanban (index.js)53.21KB14.66KB
plugin-list (index.js)113.51KB27.67KB
plugin-map (index.js)20.20KB6.66KB
plugin-markdown (index.js)13.72KB4.69KB
plugin-report (index.js)43.51KB11.94KB
plugin-timeline (index.js)30.21KB8.66KB
plugin-tree (index.js)8.98KB3.08KB
plugin-view (index.js)85.90KB21.12KB
providers (DataSourceProvider.js)0.75KB0.39KB
providers (MetadataProvider.js)1.37KB0.59KB
providers (ThemeProvider.js)1.90KB0.85KB
providers (UploadProvider.js)11.66KB3.50KB
providers (index.js)0.45KB0.23KB
providers (types.js)0.01KB0.04KB
react-runtime (index.js)5.62KB2.34KB
react (LazyPluginLoader.js)4.47KB1.63KB
react (SchemaRenderer.js)81.07KB26.86KB
react (data-invalidation.js)5.05KB2.08KB
react (index.js)3.11KB1.48KB
react (schema-input.js)2.32KB1.24KB
react (spec-input.js)0.20KB0.18KB
sdui-parser (codegen.js)5.41KB2.34KB
sdui-parser (dashboard-widget-options.js)3.08KB1.30KB
sdui-parser (index.js)4.93KB2.24KB
sdui-parser (input-type.js)2.84KB1.40KB
sdui-parser (parse.js)20.57KB5.88KB
sdui-parser (provenance.js)3.66KB1.82KB
sdui-parser (types.js)0.28KB0.23KB
sdui-parser (validate.js)10.35KB3.60KB
types (ai.js)0.20KB0.17KB
types (api-types.js)0.20KB0.18KB
types (app.js)2.87KB0.99KB
types (base.js)0.20KB0.18KB
types (blocks.js)0.20KB0.18KB
types (complex.js)2.74KB1.41KB
types (crud.js)0.20KB0.18KB
types (dashboard-filter-alias.js)6.23KB2.74KB
types (data-display.js)3.75KB1.85KB
types (data-protocol.js)0.20KB0.19KB
types (data.js)0.20KB0.18KB
types (designer.js)1.85KB0.85KB
types (disclosure.js)0.20KB0.18KB
types (error-code.js)1.54KB0.88KB
types (feedback.js)0.20KB0.18KB
types (field-types.js)0.20KB0.18KB
types (form.js)0.20KB0.18KB
types (http-inflight.js)8.87KB3.73KB
types (http-retry.js)4.32KB2.02KB
types (icon-key-migration.js)4.26KB1.63KB
types (index.js)4.74KB2.25KB
types (layout.js)0.20KB0.18KB
types (managed-by.js)0.19KB0.18KB
types (mobile.js)2.59KB1.31KB
types (navigation.js)0.20KB0.18KB
types (objectql.js)0.20KB0.18KB
types (overlay.js)0.20KB0.18KB
types (permissions.js)0.20KB0.18KB
types (plugin-scope.js)0.20KB0.18KB
types (record-components.js)0.20KB0.19KB
types (record-semantics.js)1.28KB0.67KB
types (registry.js)0.20KB0.18KB
types (reports.js)0.20KB0.18KB
types (spec-report.js)5.05KB1.93KB
types (spec-ui-namespace.js)0.20KB0.19KB
types (system-fields.js)3.33KB1.54KB
types (theme.js)6.28KB2.87KB
types (ui-action.js)8.11KB3.32KB
types (views.js)0.20KB0.18KB
types (widget.js)0.20KB0.18KB

Size Limits

  • ✅ Core packages should be < 50KB gzipped
  • ✅ Component packages should be < 100KB gzipped
  • ⚠️ Plugin packages should be < 150KB gzipped

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

2 participants

@os-project-manager@claude
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Strip utm_, fbclid, gclid, etc. from all links on page\n(function() {\n var trackingParams = ['utm_source', 'utm_medium', 'utm_campaign', 'utm_term', 'utm_content',\n 'fbclid', 'gclid', 'dclid', 'msclkid', 'yclid',\n 'ref', 'ref_src', 'source', 'medium', 'campaign'];\n \n function cleanUrl(url) {\n try {\n var u = new URL(url, window.location.origin);\n var changed = false;\n trackingParams.forEach(function(p) {\n if (u.searchParams.has(p)) {\n u.searchParams.delete(p);\n changed = true;\n }\n });\n return changed ? u.toString() : url;\n } catch (e) {\n return url;\n }\n }\n \n function cleanLinks() {\n document.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n \n cleanLinks();\n \n var observer = new MutationObserver(function(mutations) {\n mutations.forEach(function(m) {\n m.addedNodes.forEach(function(node) {\n if (node.nodeType === 1) {\n if (node.tagName === 'A') cleanLinks();\n node.querySelectorAll('a[href]').forEach(function(a) {\n var clean = cleanUrl(a.href);\n if (clean !== a.href) a.href = clean;\n });\n }\n });\n });\n });\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "Remove Tracking Parameters from Links"); } } catch(__e) { console.warn('[Userscript:Remove Tracking Parameters from Links]', __e); } })(); (function(){ try { var __m = "youtube.com"; var __re = new RegExp('^' + "youtube\\.com" + '
Skip to content

feat(build): ratchet the tooling-directory exclude across every published build tsconfig - #7409

Merged
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet
Sep 2, 2026
Merged

feat(build): ratchet the tooling-directory exclude across every published build tsconfig#7409
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet

Conversation

@claude

@claudeclaudeBot commented Sep 2, 2026

Copy link
Copy Markdown
Contributor

Fixes#7212

Implements the maintainer's ruling of 2026-09-02 (comment 5508046691, option 2): a static, per-PR gate that reads each published package's build tsconfig.json and requires the directory form of the tooling exclude wherever the emitter honours exclude — landed together with the conversion of its initial red set, so main is green on merge.

What is here

  • New gatescripts/check-published-tsconfig-tooling-exclude.mjs, exposed as pnpm check:published-tsconfig-exclude and wired into ci.yml's Type Check job (config reads only; no build, no artifact, no emit model).
  • 28 build tsconfigs converted to the directory form.
  • Testscripts/__tests__/check-published-tsconfig-tooling-exclude.test.ts — 26 cases.
  • Docs: the Type Check row and the Published Dist Gate section of content/docs/guide/ci-cd-pipeline.md.
  • Changeset with empty frontmatter: repo tooling and build config only, nothing consumer-visible moves (no published package ships its tsconfig — verified across all 39).

The artifact-level check:published-dist is untouched and stays the second line of defence. It is the only criterion that cannot be wrong about what actually ships; this gate asks a strictly smaller question.

The card's central measurement, re-taken

The card claims all 29 name-only packages have zero non-test files in tooling directories, which is what makes the conversion safe. Re-measured independently, with the probe built from TOOLING_FILE in scripts/check-phantom-dependencies.mjs rather than from the card's prose:

setpackagesnon-test files in tooling dirs
name-only exclude290
directory-form exclude69
emitter carve-outs4 (per the ruling)1

The claim holds: zero, with no exception. And the zero is a reading, because the controls fire — the same probe finds apps/console/src/__tests__/helpers/preview-page-sources.ts exactly where the card says it is, plus fields/src/__tests__/numberInputBrowserReadings.ts, plugin-grid and plugin-view's explainDouble.ts, plugin-designer's two __mocks__ files, and four in components.

One correction to the card's table, cosmetic: it labels the directory-form row 5 and then lists 6 package names. Six is right.

The confidence gap the ruling carried: the carve-outs were NOT exhaustive

The ruling named four and asked for exhaustiveness to be verified at authoring time. Verified mechanically, against each package's actual build script and vite config rather than against the gate header's prose. Two more published packages have an emitter that never builds its program from this file list, and both were inside the ruling's "29 name-only" red set:

packageemitterwhy the tsconfig exclude is not honoured
@object-ui/create-plugintsupa third tsup package beside cli and data-objectstack — same tsup.config.ts shape, same dts: true entry-graph emit
@object-ui/runnervite build, no dts() plugina second Vite application beside consolenoEmit: true, publishes a Rollup bundle, writes no declarations

Full emitter tally across the 39 published packages: tsc emitting 12, vite+dts() 22, tsup3, Vite app with no dts() plugin 2. So the gate names six carve-outs, not four. Requiring a config shape in create-plugin or runner would have been a check that is green about nothing — the failure this repository treats as worse than no check. The initial red set is therefore 27, not 29 (plus components, below, for 28 files).

Carve-outs do not sit on trust: each states the facts it rests on and re-proves them on every run (the technique HOST_PROVIDED uses in check-phantom-dependencies.mjs). A carve-out for a package that is no longer published is a failure, not a no-op.

⚠️console keeps its noEmit protection and its entry records, as the ruling required, that it does carry a non-test helper under src/__tests__/ — the one live file behind a single guard. A test asserts that file still exists, so the note cannot go stale silently.

One thing the ruling did not cover — flagged, not folded in

@object-ui/components was in the ruling's directory-form set, but its spelling was "src/__tests__": a bare directory, covering one of the three tooling directories and only at the top of src/. tsc honours it, so the config is not wrong — it is position-anchored, and does not cover src/renderers/__tests__/. That is the same "green until someone adds a file" shape this card exists to end, one level over, so the gate rejects that spelling and components is converted with the other 27. Accepted spellings are the four anchored globs the failure message prints.

A second observation, reported rather than acted on: the ruling gives plugin-charts's carve-out reason as "own exclude in the dts() options". Reading unplugin-dts's computeGlobs shows the option replaces the filter globs only — the program's file list still comes from the tsconfig — so the two compose, and plugin-charts is really exempt because its tsconfig carries no exclude key at all. Its own protection is therefore name-only, in vite.config.ts. Kept as a carve-out exactly as ruled; noted for whoever revisits it.

Verification

Emit-neutrality, measured not assumed. Each package's build program file list was resolved with TypeScript's own config resolver (ts.getParsedCommandLineOfConfigFile) before and after the proposed exclude — the same resolver tsc uses and the same one unplugin-dts calls for content.fileNames. All 33 enforced packages came back identical: 0 files added, 0 removed. Identical program input means identical emit. The two packages that carry console runtime bytes, console and runner, are carve-outs and were not touched. Byte-neutral.

Red-then-green, on the real tree, mutation proven on disk by blob hash and anchored token counts, restore proven by state under trap ... EXIT INT TERM with absolute paths:

baseline exit 0
leg A name-only regression, plugin-form exit 1 FAIL [name-only-tooling-exclude]
blob 3d4c427d != HEAD dd77a939, directory-form entries left: 0
leg B create-plugin build tsup -> tsc exit 1 FAIL [carve-out-no-longer-holds]
blob 38fbec8d -> mutated, injected 1 / removed 0
restore blobs equal HEAD, git diff HEAD --quiet exit 0, porcelain 0 lines
after restore exit 0

And the hole it closes is real, not stylistic. A non-test sharedFormHarness.ts was placed under plugin-form/src/__tests__/ and the build program asked with the same TypeScript resolver: with the directory form it is not a program input (0); reverted to the name-only form it is (1). Same file, same package, only the exclude differs. Restored, tree clean.

Nothing built was mutated by any leg — this gate reads config text only — so there is no dist to restore.

Gates run, all on the final head e855f935e, exit codes captured by redirect before any pipe:

pnpm check:published-tsconfig-exclude 0 39 scanned, 33 enforced, 6 carve-outs, all compliant
node scripts/check-type-check-coverage 0 45/46 via type-check; 41/41 compile their tests
node scripts/check-changeset-presence 0 34 files, 0 published source, 1 changeset added
node scripts/check-changeset-fixed 0
node scripts/check-changeset-overwrite 0
pnpm check:control-bytes 0 6106 tracked text files
node scripts/check-entry-guard --self-test / plain 0 / 0
node scripts/check-lint-coverage 0 46/46
pnpm check:esm-specifiers 0
pnpm check:doc-fences 0
node scripts/check-doc-links 0
pnpm check:shell-escape-residue 0
pnpm type-check:scripts 0
pnpm lint:root 0 full root scope, 0 errors (33 pre-existing warnings)
vitest scripts/__tests__ (unit) 0 98 files / 2764 tests

No lint narrowing was needed and none is claimed: lint:root ran its full scope, and eslint's own resolver reports that of the 34 changed files it lints exactly two — the new gate and its test. It ignores every tsconfig.json, package.json, workflow and .md in the diff, and a package-scoped run in packages/types reads 156 files, none of them a tsconfig. So no package lint scope can be moved by this diff.

⛔ No existing gate was weakened. check-published-dist-tooling.test.ts asserts by substring that no per-PR workflow mentions the artifact gate's alias, and it fired on the explanatory comment in my ci.yml step. The comment was reworded — the test is right, and a substring scan that tried to tell prose from a run: would be a weaker gate. The ci.yml comment now records why the alias is deliberately absent from that file.

🤖 Generated with Claude Code

https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC


Generated by Claude Code

…ry published build tsconfig
A build tsconfig that excludes tooling by FILE NAME (`*.test.ts`) stops the
files that happen to be named that way and nothing else. The first shared
helper added to a `__tests__/` directory then becomes a program input, and an
emitting program writes it into the published `dist`.
That has happened three times and been caught by a gate zero times: objectui#4006
(73 `*.test.d.ts` published from two packages), objectui#4836 (9 more, one of
them an emitted module whose first statement imports `vitest`) and objectui#6943
(the same package as the first, because that fix wrote the name form). Each
repair was correct and local, and each left the trap armed everywhere else.
objectui#7212 measured the standing exposure instead of another instance: 29
published packages carried the name form with ZERO offending files.
Adds `scripts/check-published-tsconfig-tooling-exclude.mjs`
(`pnpm check:published-tsconfig-exclude`), wired into ci.yml's Type Check job,
and converts 28 build tsconfigs in the same commit so main is green on merge.
The gate reads `exclude` arrays and nothing else: no build, no artifact, no emit
model. That is the narrower scope which keeps it clear of the modelling
objectui#4846 declined for the artifact-level gate, which is untouched and stays
the second line of defence.
Six published packages are named carve-outs whose emitter never builds its
program from this file list, each re-proving its own reason on every run: cli,
create-plugin and data-objectstack (tsup entry graph), plugin-charts (its
tooling exclude lives in the `dts()` options), console and runner (Vite
applications, `noEmit: true`, no `dts()` plugin). create-plugin and runner were
found at authoring time and were inside the ruling's initial red set.
The conversion is emit-neutral, measured rather than assumed: every enforced
package's build program file list was resolved with TypeScript's own config
resolver before and after, and all 33 came back identical.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC
@github-actions

Copy link
Copy Markdown
Contributor

✅ Console Performance Budget

MetricValueBudget
Eager closure (gzip, 48 chunks)3177.2 KB3191.4 KB
Main entry chunk (gzip)143.2 KB350 KB
Entry fileindex-CDQS-v_Q.js
StatusPASS

The eager closure is every chunk the entry reaches through static imports — what the browser fetches and parses before the app renders. The entry chunk on its own is a small fraction of it.


📦 Bundle Size Report

PackageSizeGzipped
app-shell (consoleActionDispatch.js)0.20KB0.19KB
app-shell (index.js)15.67KB5.75KB
app-shell (runtime-config.js)20.68KB7.36KB
app-shell (types.js)0.01KB0.04KB
app-shell (urlParams.js)10.06KB3.86KB
auth (ActiveOrganizationStorage.js)25.05KB9.16KB
auth (AuthContext.js)0.31KB0.24KB
auth (AuthGuard.js)2.07KB1.00KB
auth (AuthProvider.js)40.18KB10.59KB
auth (AuthShell.js)3.49KB1.40KB
auth (ForgotPasswordForm.js)12.21KB3.45KB
auth (LoginForm.js)18.15KB5.39KB
auth (PreviewBanner.js)0.90KB0.50KB
auth (RegisterForm.js)6.65KB2.22KB
auth (SocialSignInButtons.js)9.61KB3.89KB
auth (UserMenu.js)3.41KB1.23KB
auth (auth-gate-events.js)1.29KB0.66KB
auth (authStyles.js)5.04KB1.72KB
auth (createAuthClient.js)40.21KB10.80KB
auth (createAuthenticatedFetch.js)8.46KB3.43KB
auth (index.js)3.19KB1.44KB
auth (invitation-status.js)1.22KB0.70KB
auth (org-roles.js)6.66KB2.78KB
auth (phone-identifier.js)1.11KB0.66KB
auth (types.js)0.59KB0.35KB
auth (useAuth.js)5.30KB1.02KB
auth (useWorkspaceAdminStatus.js)5.13KB2.35KB
collaboration (CommentThread.js)26.08KB7.56KB
collaboration (LiveCursors.js)3.17KB1.27KB
collaboration (PresenceAvatars.js)6.49KB2.64KB
collaboration (PresenceProvider.js)2.79KB1.13KB
collaboration (index.js)1.68KB0.73KB
collaboration (useCollaborationTranslation.js)6.05KB2.52KB
collaboration (useCommentSearch.js)1.98KB0.88KB
collaboration (useConflictResolution.js)7.75KB1.86KB
collaboration (useMentionNotifications.js)1.81KB0.68KB
collaboration (usePresence.js)6.33KB1.84KB
collaboration (useRealtimeSubscription.js)7.91KB2.01KB
components (index.js)514.87KB117.50KB
core (index.js)5.80KB2.32KB
create-plugin (index.js)10.08KB3.26KB
data-objectstack (index.js)178.20KB49.60KB
fields (index.js)244.08KB61.71KB
i18n (LocalizationContext.js)1.76KB0.96KB
i18n (currency.js)1.22KB0.64KB
i18n (fallbackInterpolation.js)6.25KB2.77KB
i18n (i18n.js)4.28KB1.75KB
i18n (index.js)3.44KB1.39KB
i18n (pickLocalized.js)7.62KB3.26KB
i18n (provider.js)26.89KB9.04KB
i18n (useDisplayLocale.js)2.85KB1.45KB
i18n (useObjectLabel.js)33.40KB8.71KB
i18n (useSafeTranslation.js)5.60KB2.33KB
layout (index.js)38.98KB10.98KB
mobile (MobileProvider.js)0.92KB0.49KB
mobile (ResponsiveContainer.js)0.94KB0.38KB
mobile (breakpoints.js)1.51KB0.70KB
mobile (createOfflineDataSource.js)5.61KB1.75KB
mobile (index.js)1.55KB0.62KB
mobile (offlineQueue.js)3.91KB1.35KB
mobile (pwa.js)0.97KB0.49KB
mobile (serviceWorker.js)1.48KB0.62KB
mobile (serviceWorkerSource.js)3.41KB1.48KB
mobile (useBreakpoint.js)1.54KB0.65KB
mobile (useGesture.js)6.96KB1.98KB
mobile (useOfflineSync.js)1.99KB0.72KB
mobile (usePullToRefresh.js)2.53KB0.85KB
mobile (useResponsive.js)0.72KB0.42KB
mobile (useResponsiveConfig.js)1.37KB0.63KB
mobile (useSpecGesture.js)4.32KB1.64KB
mobile (useTouchTarget.js)1.01KB0.54KB
permissions (MePermissionsProvider.js)11.71KB4.29KB
permissions (PermissionContext.js)0.31KB0.25KB
permissions (PermissionGuard.js)0.89KB0.45KB
permissions (PermissionProvider.js)6.24KB2.16KB
permissions (discardProofCache.js)1.04KB0.55KB
permissions (evaluator.js)5.12KB1.74KB
permissions (index.js)0.93KB0.41KB
permissions (store.js)0.91KB0.42KB
permissions (useFieldPermissions.js)1.28KB0.53KB
permissions (usePermissions.js)4.83KB2.27KB
plugin-ai (index.js)15.75KB3.80KB
plugin-calendar (index.js)47.00KB12.97KB
plugin-charts (index.js)70.31KB19.55KB
plugin-chatbot (index.js)196.19KB46.43KB
plugin-dashboard (index.js)132.63KB34.56KB
plugin-designer (index.js)212.87KB43.19KB
plugin-detail (index.js)251.20KB64.18KB
plugin-editor (index.js)2.46KB1.10KB
plugin-form (index.js)132.87KB32.66KB
plugin-gantt (index.js)166.93KB40.82KB
plugin-grid (index.js)209.10KB56.65KB
plugin-kanban (index.js)53.21KB14.66KB
plugin-list (index.js)113.51KB27.67KB
plugin-map (index.js)20.20KB6.66KB
plugin-markdown (index.js)13.72KB4.69KB
plugin-report (index.js)43.51KB11.94KB
plugin-timeline (index.js)30.21KB8.66KB
plugin-tree (index.js)8.98KB3.08KB
plugin-view (index.js)85.90KB21.12KB
providers (DataSourceProvider.js)0.75KB0.39KB
providers (MetadataProvider.js)1.37KB0.59KB
providers (ThemeProvider.js)1.90KB0.85KB
providers (UploadProvider.js)11.66KB3.50KB
providers (index.js)0.45KB0.23KB
providers (types.js)0.01KB0.04KB
react-runtime (index.js)5.62KB2.34KB
react (LazyPluginLoader.js)4.47KB1.63KB
react (SchemaRenderer.js)81.07KB26.86KB
react (data-invalidation.js)5.05KB2.08KB
react (index.js)3.11KB1.48KB
react (schema-input.js)2.32KB1.24KB
react (spec-input.js)0.20KB0.18KB
sdui-parser (codegen.js)5.41KB2.34KB
sdui-parser (dashboard-widget-options.js)3.08KB1.30KB
sdui-parser (index.js)4.93KB2.24KB
sdui-parser (input-type.js)2.84KB1.40KB
sdui-parser (parse.js)20.57KB5.88KB
sdui-parser (provenance.js)3.66KB1.82KB
sdui-parser (types.js)0.28KB0.23KB
sdui-parser (validate.js)10.35KB3.60KB
types (ai.js)0.20KB0.17KB
types (api-types.js)0.20KB0.18KB
types (app.js)2.87KB0.99KB
types (base.js)0.20KB0.18KB
types (blocks.js)0.20KB0.18KB
types (complex.js)2.74KB1.41KB
types (crud.js)0.20KB0.18KB
types (dashboard-filter-alias.js)6.23KB2.74KB
types (data-display.js)3.75KB1.85KB
types (data-protocol.js)0.20KB0.19KB
types (data.js)0.20KB0.18KB
types (designer.js)1.85KB0.85KB
types (disclosure.js)0.20KB0.18KB
types (error-code.js)1.54KB0.88KB
types (feedback.js)0.20KB0.18KB
types (field-types.js)0.20KB0.18KB
types (form.js)0.20KB0.18KB
types (http-inflight.js)8.87KB3.73KB
types (http-retry.js)4.32KB2.02KB
types (icon-key-migration.js)4.26KB1.63KB
types (index.js)4.74KB2.25KB
types (layout.js)0.20KB0.18KB
types (managed-by.js)0.19KB0.18KB
types (mobile.js)2.59KB1.31KB
types (navigation.js)0.20KB0.18KB
types (objectql.js)0.20KB0.18KB
types (overlay.js)0.20KB0.18KB
types (permissions.js)0.20KB0.18KB
types (plugin-scope.js)0.20KB0.18KB
types (record-components.js)0.20KB0.19KB
types (record-semantics.js)1.28KB0.67KB
types (registry.js)0.20KB0.18KB
types (reports.js)0.20KB0.18KB
types (spec-report.js)5.05KB1.93KB
types (spec-ui-namespace.js)0.20KB0.19KB
types (system-fields.js)3.33KB1.54KB
types (theme.js)6.28KB2.87KB
types (ui-action.js)8.11KB3.32KB
types (views.js)0.20KB0.18KB
types (widget.js)0.20KB0.18KB

Size Limits

  • ✅ Core packages should be < 50KB gzipped
  • ✅ Component packages should be < 100KB gzipped
  • ⚠️ Plugin packages should be < 150KB gzipped

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

2 participants

@os-project-manager@claude
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Auto-enable theater mode on YouTube\n(function() {\n function tryTheater() {\n var btn = document.querySelector('button[aria-label=\"Theater mode\"], ytd-player #player button[title=\"Theater mode\"]');\n if (btn && !btn.classList.contains('activated')) {\n btn.click();\n }\n }\n \n // Try immediately\n tryTheater();\n \n // Try after navigation (SPA)\n var lastUrl = location.href;\n setInterval(function() {\n if (location.href !== lastUrl) {\n lastUrl = location.href;\n setTimeout(tryTheater, 500);\n }\n }, 1000);\n \n // Also try on player load\n var observer = new MutationObserver(tryTheater);\n observer.observe(document.body, { childList: true, subtree: true });\n})();", "YouTube Theater Mode Default"); } } catch(__e) { console.warn('[Userscript:YouTube Theater Mode Default]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

feat(build): ratchet the tooling-directory exclude across every published build tsconfig - #7409

Merged
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet
Sep 2, 2026
Merged

feat(build): ratchet the tooling-directory exclude across every published build tsconfig#7409
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet

Conversation

@claude

@claudeclaudeBot commented Sep 2, 2026

Copy link
Copy Markdown
Contributor

Fixes#7212

Implements the maintainer's ruling of 2026-09-02 (comment 5508046691, option 2): a static, per-PR gate that reads each published package's build tsconfig.json and requires the directory form of the tooling exclude wherever the emitter honours exclude — landed together with the conversion of its initial red set, so main is green on merge.

What is here

  • New gatescripts/check-published-tsconfig-tooling-exclude.mjs, exposed as pnpm check:published-tsconfig-exclude and wired into ci.yml's Type Check job (config reads only; no build, no artifact, no emit model).
  • 28 build tsconfigs converted to the directory form.
  • Testscripts/__tests__/check-published-tsconfig-tooling-exclude.test.ts — 26 cases.
  • Docs: the Type Check row and the Published Dist Gate section of content/docs/guide/ci-cd-pipeline.md.
  • Changeset with empty frontmatter: repo tooling and build config only, nothing consumer-visible moves (no published package ships its tsconfig — verified across all 39).

The artifact-level check:published-dist is untouched and stays the second line of defence. It is the only criterion that cannot be wrong about what actually ships; this gate asks a strictly smaller question.

The card's central measurement, re-taken

The card claims all 29 name-only packages have zero non-test files in tooling directories, which is what makes the conversion safe. Re-measured independently, with the probe built from TOOLING_FILE in scripts/check-phantom-dependencies.mjs rather than from the card's prose:

setpackagesnon-test files in tooling dirs
name-only exclude290
directory-form exclude69
emitter carve-outs4 (per the ruling)1

The claim holds: zero, with no exception. And the zero is a reading, because the controls fire — the same probe finds apps/console/src/__tests__/helpers/preview-page-sources.ts exactly where the card says it is, plus fields/src/__tests__/numberInputBrowserReadings.ts, plugin-grid and plugin-view's explainDouble.ts, plugin-designer's two __mocks__ files, and four in components.

One correction to the card's table, cosmetic: it labels the directory-form row 5 and then lists 6 package names. Six is right.

The confidence gap the ruling carried: the carve-outs were NOT exhaustive

The ruling named four and asked for exhaustiveness to be verified at authoring time. Verified mechanically, against each package's actual build script and vite config rather than against the gate header's prose. Two more published packages have an emitter that never builds its program from this file list, and both were inside the ruling's "29 name-only" red set:

packageemitterwhy the tsconfig exclude is not honoured
@object-ui/create-plugintsupa third tsup package beside cli and data-objectstack — same tsup.config.ts shape, same dts: true entry-graph emit
@object-ui/runnervite build, no dts() plugina second Vite application beside consolenoEmit: true, publishes a Rollup bundle, writes no declarations

Full emitter tally across the 39 published packages: tsc emitting 12, vite+dts() 22, tsup3, Vite app with no dts() plugin 2. So the gate names six carve-outs, not four. Requiring a config shape in create-plugin or runner would have been a check that is green about nothing — the failure this repository treats as worse than no check. The initial red set is therefore 27, not 29 (plus components, below, for 28 files).

Carve-outs do not sit on trust: each states the facts it rests on and re-proves them on every run (the technique HOST_PROVIDED uses in check-phantom-dependencies.mjs). A carve-out for a package that is no longer published is a failure, not a no-op.

⚠️console keeps its noEmit protection and its entry records, as the ruling required, that it does carry a non-test helper under src/__tests__/ — the one live file behind a single guard. A test asserts that file still exists, so the note cannot go stale silently.

One thing the ruling did not cover — flagged, not folded in

@object-ui/components was in the ruling's directory-form set, but its spelling was "src/__tests__": a bare directory, covering one of the three tooling directories and only at the top of src/. tsc honours it, so the config is not wrong — it is position-anchored, and does not cover src/renderers/__tests__/. That is the same "green until someone adds a file" shape this card exists to end, one level over, so the gate rejects that spelling and components is converted with the other 27. Accepted spellings are the four anchored globs the failure message prints.

A second observation, reported rather than acted on: the ruling gives plugin-charts's carve-out reason as "own exclude in the dts() options". Reading unplugin-dts's computeGlobs shows the option replaces the filter globs only — the program's file list still comes from the tsconfig — so the two compose, and plugin-charts is really exempt because its tsconfig carries no exclude key at all. Its own protection is therefore name-only, in vite.config.ts. Kept as a carve-out exactly as ruled; noted for whoever revisits it.

Verification

Emit-neutrality, measured not assumed. Each package's build program file list was resolved with TypeScript's own config resolver (ts.getParsedCommandLineOfConfigFile) before and after the proposed exclude — the same resolver tsc uses and the same one unplugin-dts calls for content.fileNames. All 33 enforced packages came back identical: 0 files added, 0 removed. Identical program input means identical emit. The two packages that carry console runtime bytes, console and runner, are carve-outs and were not touched. Byte-neutral.

Red-then-green, on the real tree, mutation proven on disk by blob hash and anchored token counts, restore proven by state under trap ... EXIT INT TERM with absolute paths:

baseline exit 0
leg A name-only regression, plugin-form exit 1 FAIL [name-only-tooling-exclude]
blob 3d4c427d != HEAD dd77a939, directory-form entries left: 0
leg B create-plugin build tsup -> tsc exit 1 FAIL [carve-out-no-longer-holds]
blob 38fbec8d -> mutated, injected 1 / removed 0
restore blobs equal HEAD, git diff HEAD --quiet exit 0, porcelain 0 lines
after restore exit 0

And the hole it closes is real, not stylistic. A non-test sharedFormHarness.ts was placed under plugin-form/src/__tests__/ and the build program asked with the same TypeScript resolver: with the directory form it is not a program input (0); reverted to the name-only form it is (1). Same file, same package, only the exclude differs. Restored, tree clean.

Nothing built was mutated by any leg — this gate reads config text only — so there is no dist to restore.

Gates run, all on the final head e855f935e, exit codes captured by redirect before any pipe:

pnpm check:published-tsconfig-exclude 0 39 scanned, 33 enforced, 6 carve-outs, all compliant
node scripts/check-type-check-coverage 0 45/46 via type-check; 41/41 compile their tests
node scripts/check-changeset-presence 0 34 files, 0 published source, 1 changeset added
node scripts/check-changeset-fixed 0
node scripts/check-changeset-overwrite 0
pnpm check:control-bytes 0 6106 tracked text files
node scripts/check-entry-guard --self-test / plain 0 / 0
node scripts/check-lint-coverage 0 46/46
pnpm check:esm-specifiers 0
pnpm check:doc-fences 0
node scripts/check-doc-links 0
pnpm check:shell-escape-residue 0
pnpm type-check:scripts 0
pnpm lint:root 0 full root scope, 0 errors (33 pre-existing warnings)
vitest scripts/__tests__ (unit) 0 98 files / 2764 tests

No lint narrowing was needed and none is claimed: lint:root ran its full scope, and eslint's own resolver reports that of the 34 changed files it lints exactly two — the new gate and its test. It ignores every tsconfig.json, package.json, workflow and .md in the diff, and a package-scoped run in packages/types reads 156 files, none of them a tsconfig. So no package lint scope can be moved by this diff.

⛔ No existing gate was weakened. check-published-dist-tooling.test.ts asserts by substring that no per-PR workflow mentions the artifact gate's alias, and it fired on the explanatory comment in my ci.yml step. The comment was reworded — the test is right, and a substring scan that tried to tell prose from a run: would be a weaker gate. The ci.yml comment now records why the alias is deliberately absent from that file.

🤖 Generated with Claude Code

https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC


Generated by Claude Code

…ry published build tsconfig
A build tsconfig that excludes tooling by FILE NAME (`*.test.ts`) stops the
files that happen to be named that way and nothing else. The first shared
helper added to a `__tests__/` directory then becomes a program input, and an
emitting program writes it into the published `dist`.
That has happened three times and been caught by a gate zero times: objectui#4006
(73 `*.test.d.ts` published from two packages), objectui#4836 (9 more, one of
them an emitted module whose first statement imports `vitest`) and objectui#6943
(the same package as the first, because that fix wrote the name form). Each
repair was correct and local, and each left the trap armed everywhere else.
objectui#7212 measured the standing exposure instead of another instance: 29
published packages carried the name form with ZERO offending files.
Adds `scripts/check-published-tsconfig-tooling-exclude.mjs`
(`pnpm check:published-tsconfig-exclude`), wired into ci.yml's Type Check job,
and converts 28 build tsconfigs in the same commit so main is green on merge.
The gate reads `exclude` arrays and nothing else: no build, no artifact, no emit
model. That is the narrower scope which keeps it clear of the modelling
objectui#4846 declined for the artifact-level gate, which is untouched and stays
the second line of defence.
Six published packages are named carve-outs whose emitter never builds its
program from this file list, each re-proving its own reason on every run: cli,
create-plugin and data-objectstack (tsup entry graph), plugin-charts (its
tooling exclude lives in the `dts()` options), console and runner (Vite
applications, `noEmit: true`, no `dts()` plugin). create-plugin and runner were
found at authoring time and were inside the ruling's initial red set.
The conversion is emit-neutral, measured rather than assumed: every enforced
package's build program file list was resolved with TypeScript's own config
resolver before and after, and all 33 came back identical.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC
@github-actions

Copy link
Copy Markdown
Contributor

✅ Console Performance Budget

MetricValueBudget
Eager closure (gzip, 48 chunks)3177.2 KB3191.4 KB
Main entry chunk (gzip)143.2 KB350 KB
Entry fileindex-CDQS-v_Q.js
StatusPASS

The eager closure is every chunk the entry reaches through static imports — what the browser fetches and parses before the app renders. The entry chunk on its own is a small fraction of it.


📦 Bundle Size Report

PackageSizeGzipped
app-shell (consoleActionDispatch.js)0.20KB0.19KB
app-shell (index.js)15.67KB5.75KB
app-shell (runtime-config.js)20.68KB7.36KB
app-shell (types.js)0.01KB0.04KB
app-shell (urlParams.js)10.06KB3.86KB
auth (ActiveOrganizationStorage.js)25.05KB9.16KB
auth (AuthContext.js)0.31KB0.24KB
auth (AuthGuard.js)2.07KB1.00KB
auth (AuthProvider.js)40.18KB10.59KB
auth (AuthShell.js)3.49KB1.40KB
auth (ForgotPasswordForm.js)12.21KB3.45KB
auth (LoginForm.js)18.15KB5.39KB
auth (PreviewBanner.js)0.90KB0.50KB
auth (RegisterForm.js)6.65KB2.22KB
auth (SocialSignInButtons.js)9.61KB3.89KB
auth (UserMenu.js)3.41KB1.23KB
auth (auth-gate-events.js)1.29KB0.66KB
auth (authStyles.js)5.04KB1.72KB
auth (createAuthClient.js)40.21KB10.80KB
auth (createAuthenticatedFetch.js)8.46KB3.43KB
auth (index.js)3.19KB1.44KB
auth (invitation-status.js)1.22KB0.70KB
auth (org-roles.js)6.66KB2.78KB
auth (phone-identifier.js)1.11KB0.66KB
auth (types.js)0.59KB0.35KB
auth (useAuth.js)5.30KB1.02KB
auth (useWorkspaceAdminStatus.js)5.13KB2.35KB
collaboration (CommentThread.js)26.08KB7.56KB
collaboration (LiveCursors.js)3.17KB1.27KB
collaboration (PresenceAvatars.js)6.49KB2.64KB
collaboration (PresenceProvider.js)2.79KB1.13KB
collaboration (index.js)1.68KB0.73KB
collaboration (useCollaborationTranslation.js)6.05KB2.52KB
collaboration (useCommentSearch.js)1.98KB0.88KB
collaboration (useConflictResolution.js)7.75KB1.86KB
collaboration (useMentionNotifications.js)1.81KB0.68KB
collaboration (usePresence.js)6.33KB1.84KB
collaboration (useRealtimeSubscription.js)7.91KB2.01KB
components (index.js)514.87KB117.50KB
core (index.js)5.80KB2.32KB
create-plugin (index.js)10.08KB3.26KB
data-objectstack (index.js)178.20KB49.60KB
fields (index.js)244.08KB61.71KB
i18n (LocalizationContext.js)1.76KB0.96KB
i18n (currency.js)1.22KB0.64KB
i18n (fallbackInterpolation.js)6.25KB2.77KB
i18n (i18n.js)4.28KB1.75KB
i18n (index.js)3.44KB1.39KB
i18n (pickLocalized.js)7.62KB3.26KB
i18n (provider.js)26.89KB9.04KB
i18n (useDisplayLocale.js)2.85KB1.45KB
i18n (useObjectLabel.js)33.40KB8.71KB
i18n (useSafeTranslation.js)5.60KB2.33KB
layout (index.js)38.98KB10.98KB
mobile (MobileProvider.js)0.92KB0.49KB
mobile (ResponsiveContainer.js)0.94KB0.38KB
mobile (breakpoints.js)1.51KB0.70KB
mobile (createOfflineDataSource.js)5.61KB1.75KB
mobile (index.js)1.55KB0.62KB
mobile (offlineQueue.js)3.91KB1.35KB
mobile (pwa.js)0.97KB0.49KB
mobile (serviceWorker.js)1.48KB0.62KB
mobile (serviceWorkerSource.js)3.41KB1.48KB
mobile (useBreakpoint.js)1.54KB0.65KB
mobile (useGesture.js)6.96KB1.98KB
mobile (useOfflineSync.js)1.99KB0.72KB
mobile (usePullToRefresh.js)2.53KB0.85KB
mobile (useResponsive.js)0.72KB0.42KB
mobile (useResponsiveConfig.js)1.37KB0.63KB
mobile (useSpecGesture.js)4.32KB1.64KB
mobile (useTouchTarget.js)1.01KB0.54KB
permissions (MePermissionsProvider.js)11.71KB4.29KB
permissions (PermissionContext.js)0.31KB0.25KB
permissions (PermissionGuard.js)0.89KB0.45KB
permissions (PermissionProvider.js)6.24KB2.16KB
permissions (discardProofCache.js)1.04KB0.55KB
permissions (evaluator.js)5.12KB1.74KB
permissions (index.js)0.93KB0.41KB
permissions (store.js)0.91KB0.42KB
permissions (useFieldPermissions.js)1.28KB0.53KB
permissions (usePermissions.js)4.83KB2.27KB
plugin-ai (index.js)15.75KB3.80KB
plugin-calendar (index.js)47.00KB12.97KB
plugin-charts (index.js)70.31KB19.55KB
plugin-chatbot (index.js)196.19KB46.43KB
plugin-dashboard (index.js)132.63KB34.56KB
plugin-designer (index.js)212.87KB43.19KB
plugin-detail (index.js)251.20KB64.18KB
plugin-editor (index.js)2.46KB1.10KB
plugin-form (index.js)132.87KB32.66KB
plugin-gantt (index.js)166.93KB40.82KB
plugin-grid (index.js)209.10KB56.65KB
plugin-kanban (index.js)53.21KB14.66KB
plugin-list (index.js)113.51KB27.67KB
plugin-map (index.js)20.20KB6.66KB
plugin-markdown (index.js)13.72KB4.69KB
plugin-report (index.js)43.51KB11.94KB
plugin-timeline (index.js)30.21KB8.66KB
plugin-tree (index.js)8.98KB3.08KB
plugin-view (index.js)85.90KB21.12KB
providers (DataSourceProvider.js)0.75KB0.39KB
providers (MetadataProvider.js)1.37KB0.59KB
providers (ThemeProvider.js)1.90KB0.85KB
providers (UploadProvider.js)11.66KB3.50KB
providers (index.js)0.45KB0.23KB
providers (types.js)0.01KB0.04KB
react-runtime (index.js)5.62KB2.34KB
react (LazyPluginLoader.js)4.47KB1.63KB
react (SchemaRenderer.js)81.07KB26.86KB
react (data-invalidation.js)5.05KB2.08KB
react (index.js)3.11KB1.48KB
react (schema-input.js)2.32KB1.24KB
react (spec-input.js)0.20KB0.18KB
sdui-parser (codegen.js)5.41KB2.34KB
sdui-parser (dashboard-widget-options.js)3.08KB1.30KB
sdui-parser (index.js)4.93KB2.24KB
sdui-parser (input-type.js)2.84KB1.40KB
sdui-parser (parse.js)20.57KB5.88KB
sdui-parser (provenance.js)3.66KB1.82KB
sdui-parser (types.js)0.28KB0.23KB
sdui-parser (validate.js)10.35KB3.60KB
types (ai.js)0.20KB0.17KB
types (api-types.js)0.20KB0.18KB
types (app.js)2.87KB0.99KB
types (base.js)0.20KB0.18KB
types (blocks.js)0.20KB0.18KB
types (complex.js)2.74KB1.41KB
types (crud.js)0.20KB0.18KB
types (dashboard-filter-alias.js)6.23KB2.74KB
types (data-display.js)3.75KB1.85KB
types (data-protocol.js)0.20KB0.19KB
types (data.js)0.20KB0.18KB
types (designer.js)1.85KB0.85KB
types (disclosure.js)0.20KB0.18KB
types (error-code.js)1.54KB0.88KB
types (feedback.js)0.20KB0.18KB
types (field-types.js)0.20KB0.18KB
types (form.js)0.20KB0.18KB
types (http-inflight.js)8.87KB3.73KB
types (http-retry.js)4.32KB2.02KB
types (icon-key-migration.js)4.26KB1.63KB
types (index.js)4.74KB2.25KB
types (layout.js)0.20KB0.18KB
types (managed-by.js)0.19KB0.18KB
types (mobile.js)2.59KB1.31KB
types (navigation.js)0.20KB0.18KB
types (objectql.js)0.20KB0.18KB
types (overlay.js)0.20KB0.18KB
types (permissions.js)0.20KB0.18KB
types (plugin-scope.js)0.20KB0.18KB
types (record-components.js)0.20KB0.19KB
types (record-semantics.js)1.28KB0.67KB
types (registry.js)0.20KB0.18KB
types (reports.js)0.20KB0.18KB
types (spec-report.js)5.05KB1.93KB
types (spec-ui-namespace.js)0.20KB0.19KB
types (system-fields.js)3.33KB1.54KB
types (theme.js)6.28KB2.87KB
types (ui-action.js)8.11KB3.32KB
types (views.js)0.20KB0.18KB
types (widget.js)0.20KB0.18KB

Size Limits

  • ✅ Core packages should be < 50KB gzipped
  • ✅ Component packages should be < 100KB gzipped
  • ⚠️ Plugin packages should be < 150KB gzipped

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

2 participants

@os-project-manager@claude
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Remove or un-stick sticky/fixed headers that block content\n(function() {\n function unstick() {\n document.querySelectorAll('header, nav, [role=\"banner\"], .header, .navbar, .sticky, .fixed-top, [style*=\"position: fixed\"], [style*=\"position:sticky\"]').forEach(function(el) {\n if (el.style.position === 'fixed' || el.style.position === 'sticky' || \n getComputedStyle(el).position === 'fixed' || getComputedStyle(el).position === 'sticky') {\n el.style.position = 'static';\n el.style.top = 'auto';\n el.style.zIndex = 'auto';\n }\n });\n }\n \n unstick();\n \n var observer = new MutationObserver(unstick);\n observer.observe(document.body, { childList: true, subtree: true, attributes: true, attributeFilter: ['style', 'class'] });\n})();", "Kill Sticky Headers"); } } catch(__e) { console.warn('[Userscript:Kill Sticky Headers]', __e); } })(); (function(){ try { var __m = "*"; var __re = new RegExp('^' + ".*" + '
Skip to content

feat(build): ratchet the tooling-directory exclude across every published build tsconfig - #7409

Merged
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet
Sep 2, 2026
Merged

feat(build): ratchet the tooling-directory exclude across every published build tsconfig#7409
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet

Conversation

@claude

@claudeclaudeBot commented Sep 2, 2026

Copy link
Copy Markdown
Contributor

Fixes#7212

Implements the maintainer's ruling of 2026-09-02 (comment 5508046691, option 2): a static, per-PR gate that reads each published package's build tsconfig.json and requires the directory form of the tooling exclude wherever the emitter honours exclude — landed together with the conversion of its initial red set, so main is green on merge.

What is here

  • New gatescripts/check-published-tsconfig-tooling-exclude.mjs, exposed as pnpm check:published-tsconfig-exclude and wired into ci.yml's Type Check job (config reads only; no build, no artifact, no emit model).
  • 28 build tsconfigs converted to the directory form.
  • Testscripts/__tests__/check-published-tsconfig-tooling-exclude.test.ts — 26 cases.
  • Docs: the Type Check row and the Published Dist Gate section of content/docs/guide/ci-cd-pipeline.md.
  • Changeset with empty frontmatter: repo tooling and build config only, nothing consumer-visible moves (no published package ships its tsconfig — verified across all 39).

The artifact-level check:published-dist is untouched and stays the second line of defence. It is the only criterion that cannot be wrong about what actually ships; this gate asks a strictly smaller question.

The card's central measurement, re-taken

The card claims all 29 name-only packages have zero non-test files in tooling directories, which is what makes the conversion safe. Re-measured independently, with the probe built from TOOLING_FILE in scripts/check-phantom-dependencies.mjs rather than from the card's prose:

setpackagesnon-test files in tooling dirs
name-only exclude290
directory-form exclude69
emitter carve-outs4 (per the ruling)1

The claim holds: zero, with no exception. And the zero is a reading, because the controls fire — the same probe finds apps/console/src/__tests__/helpers/preview-page-sources.ts exactly where the card says it is, plus fields/src/__tests__/numberInputBrowserReadings.ts, plugin-grid and plugin-view's explainDouble.ts, plugin-designer's two __mocks__ files, and four in components.

One correction to the card's table, cosmetic: it labels the directory-form row 5 and then lists 6 package names. Six is right.

The confidence gap the ruling carried: the carve-outs were NOT exhaustive

The ruling named four and asked for exhaustiveness to be verified at authoring time. Verified mechanically, against each package's actual build script and vite config rather than against the gate header's prose. Two more published packages have an emitter that never builds its program from this file list, and both were inside the ruling's "29 name-only" red set:

packageemitterwhy the tsconfig exclude is not honoured
@object-ui/create-plugintsupa third tsup package beside cli and data-objectstack — same tsup.config.ts shape, same dts: true entry-graph emit
@object-ui/runnervite build, no dts() plugina second Vite application beside consolenoEmit: true, publishes a Rollup bundle, writes no declarations

Full emitter tally across the 39 published packages: tsc emitting 12, vite+dts() 22, tsup3, Vite app with no dts() plugin 2. So the gate names six carve-outs, not four. Requiring a config shape in create-plugin or runner would have been a check that is green about nothing — the failure this repository treats as worse than no check. The initial red set is therefore 27, not 29 (plus components, below, for 28 files).

Carve-outs do not sit on trust: each states the facts it rests on and re-proves them on every run (the technique HOST_PROVIDED uses in check-phantom-dependencies.mjs). A carve-out for a package that is no longer published is a failure, not a no-op.

⚠️console keeps its noEmit protection and its entry records, as the ruling required, that it does carry a non-test helper under src/__tests__/ — the one live file behind a single guard. A test asserts that file still exists, so the note cannot go stale silently.

One thing the ruling did not cover — flagged, not folded in

@object-ui/components was in the ruling's directory-form set, but its spelling was "src/__tests__": a bare directory, covering one of the three tooling directories and only at the top of src/. tsc honours it, so the config is not wrong — it is position-anchored, and does not cover src/renderers/__tests__/. That is the same "green until someone adds a file" shape this card exists to end, one level over, so the gate rejects that spelling and components is converted with the other 27. Accepted spellings are the four anchored globs the failure message prints.

A second observation, reported rather than acted on: the ruling gives plugin-charts's carve-out reason as "own exclude in the dts() options". Reading unplugin-dts's computeGlobs shows the option replaces the filter globs only — the program's file list still comes from the tsconfig — so the two compose, and plugin-charts is really exempt because its tsconfig carries no exclude key at all. Its own protection is therefore name-only, in vite.config.ts. Kept as a carve-out exactly as ruled; noted for whoever revisits it.

Verification

Emit-neutrality, measured not assumed. Each package's build program file list was resolved with TypeScript's own config resolver (ts.getParsedCommandLineOfConfigFile) before and after the proposed exclude — the same resolver tsc uses and the same one unplugin-dts calls for content.fileNames. All 33 enforced packages came back identical: 0 files added, 0 removed. Identical program input means identical emit. The two packages that carry console runtime bytes, console and runner, are carve-outs and were not touched. Byte-neutral.

Red-then-green, on the real tree, mutation proven on disk by blob hash and anchored token counts, restore proven by state under trap ... EXIT INT TERM with absolute paths:

baseline exit 0
leg A name-only regression, plugin-form exit 1 FAIL [name-only-tooling-exclude]
blob 3d4c427d != HEAD dd77a939, directory-form entries left: 0
leg B create-plugin build tsup -> tsc exit 1 FAIL [carve-out-no-longer-holds]
blob 38fbec8d -> mutated, injected 1 / removed 0
restore blobs equal HEAD, git diff HEAD --quiet exit 0, porcelain 0 lines
after restore exit 0

And the hole it closes is real, not stylistic. A non-test sharedFormHarness.ts was placed under plugin-form/src/__tests__/ and the build program asked with the same TypeScript resolver: with the directory form it is not a program input (0); reverted to the name-only form it is (1). Same file, same package, only the exclude differs. Restored, tree clean.

Nothing built was mutated by any leg — this gate reads config text only — so there is no dist to restore.

Gates run, all on the final head e855f935e, exit codes captured by redirect before any pipe:

pnpm check:published-tsconfig-exclude 0 39 scanned, 33 enforced, 6 carve-outs, all compliant
node scripts/check-type-check-coverage 0 45/46 via type-check; 41/41 compile their tests
node scripts/check-changeset-presence 0 34 files, 0 published source, 1 changeset added
node scripts/check-changeset-fixed 0
node scripts/check-changeset-overwrite 0
pnpm check:control-bytes 0 6106 tracked text files
node scripts/check-entry-guard --self-test / plain 0 / 0
node scripts/check-lint-coverage 0 46/46
pnpm check:esm-specifiers 0
pnpm check:doc-fences 0
node scripts/check-doc-links 0
pnpm check:shell-escape-residue 0
pnpm type-check:scripts 0
pnpm lint:root 0 full root scope, 0 errors (33 pre-existing warnings)
vitest scripts/__tests__ (unit) 0 98 files / 2764 tests

No lint narrowing was needed and none is claimed: lint:root ran its full scope, and eslint's own resolver reports that of the 34 changed files it lints exactly two — the new gate and its test. It ignores every tsconfig.json, package.json, workflow and .md in the diff, and a package-scoped run in packages/types reads 156 files, none of them a tsconfig. So no package lint scope can be moved by this diff.

⛔ No existing gate was weakened. check-published-dist-tooling.test.ts asserts by substring that no per-PR workflow mentions the artifact gate's alias, and it fired on the explanatory comment in my ci.yml step. The comment was reworded — the test is right, and a substring scan that tried to tell prose from a run: would be a weaker gate. The ci.yml comment now records why the alias is deliberately absent from that file.

🤖 Generated with Claude Code

https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC


Generated by Claude Code

…ry published build tsconfig
A build tsconfig that excludes tooling by FILE NAME (`*.test.ts`) stops the
files that happen to be named that way and nothing else. The first shared
helper added to a `__tests__/` directory then becomes a program input, and an
emitting program writes it into the published `dist`.
That has happened three times and been caught by a gate zero times: objectui#4006
(73 `*.test.d.ts` published from two packages), objectui#4836 (9 more, one of
them an emitted module whose first statement imports `vitest`) and objectui#6943
(the same package as the first, because that fix wrote the name form). Each
repair was correct and local, and each left the trap armed everywhere else.
objectui#7212 measured the standing exposure instead of another instance: 29
published packages carried the name form with ZERO offending files.
Adds `scripts/check-published-tsconfig-tooling-exclude.mjs`
(`pnpm check:published-tsconfig-exclude`), wired into ci.yml's Type Check job,
and converts 28 build tsconfigs in the same commit so main is green on merge.
The gate reads `exclude` arrays and nothing else: no build, no artifact, no emit
model. That is the narrower scope which keeps it clear of the modelling
objectui#4846 declined for the artifact-level gate, which is untouched and stays
the second line of defence.
Six published packages are named carve-outs whose emitter never builds its
program from this file list, each re-proving its own reason on every run: cli,
create-plugin and data-objectstack (tsup entry graph), plugin-charts (its
tooling exclude lives in the `dts()` options), console and runner (Vite
applications, `noEmit: true`, no `dts()` plugin). create-plugin and runner were
found at authoring time and were inside the ruling's initial red set.
The conversion is emit-neutral, measured rather than assumed: every enforced
package's build program file list was resolved with TypeScript's own config
resolver before and after, and all 33 came back identical.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC
@github-actions

Copy link
Copy Markdown
Contributor

✅ Console Performance Budget

MetricValueBudget
Eager closure (gzip, 48 chunks)3177.2 KB3191.4 KB
Main entry chunk (gzip)143.2 KB350 KB
Entry fileindex-CDQS-v_Q.js
StatusPASS

The eager closure is every chunk the entry reaches through static imports — what the browser fetches and parses before the app renders. The entry chunk on its own is a small fraction of it.


📦 Bundle Size Report

PackageSizeGzipped
app-shell (consoleActionDispatch.js)0.20KB0.19KB
app-shell (index.js)15.67KB5.75KB
app-shell (runtime-config.js)20.68KB7.36KB
app-shell (types.js)0.01KB0.04KB
app-shell (urlParams.js)10.06KB3.86KB
auth (ActiveOrganizationStorage.js)25.05KB9.16KB
auth (AuthContext.js)0.31KB0.24KB
auth (AuthGuard.js)2.07KB1.00KB
auth (AuthProvider.js)40.18KB10.59KB
auth (AuthShell.js)3.49KB1.40KB
auth (ForgotPasswordForm.js)12.21KB3.45KB
auth (LoginForm.js)18.15KB5.39KB
auth (PreviewBanner.js)0.90KB0.50KB
auth (RegisterForm.js)6.65KB2.22KB
auth (SocialSignInButtons.js)9.61KB3.89KB
auth (UserMenu.js)3.41KB1.23KB
auth (auth-gate-events.js)1.29KB0.66KB
auth (authStyles.js)5.04KB1.72KB
auth (createAuthClient.js)40.21KB10.80KB
auth (createAuthenticatedFetch.js)8.46KB3.43KB
auth (index.js)3.19KB1.44KB
auth (invitation-status.js)1.22KB0.70KB
auth (org-roles.js)6.66KB2.78KB
auth (phone-identifier.js)1.11KB0.66KB
auth (types.js)0.59KB0.35KB
auth (useAuth.js)5.30KB1.02KB
auth (useWorkspaceAdminStatus.js)5.13KB2.35KB
collaboration (CommentThread.js)26.08KB7.56KB
collaboration (LiveCursors.js)3.17KB1.27KB
collaboration (PresenceAvatars.js)6.49KB2.64KB
collaboration (PresenceProvider.js)2.79KB1.13KB
collaboration (index.js)1.68KB0.73KB
collaboration (useCollaborationTranslation.js)6.05KB2.52KB
collaboration (useCommentSearch.js)1.98KB0.88KB
collaboration (useConflictResolution.js)7.75KB1.86KB
collaboration (useMentionNotifications.js)1.81KB0.68KB
collaboration (usePresence.js)6.33KB1.84KB
collaboration (useRealtimeSubscription.js)7.91KB2.01KB
components (index.js)514.87KB117.50KB
core (index.js)5.80KB2.32KB
create-plugin (index.js)10.08KB3.26KB
data-objectstack (index.js)178.20KB49.60KB
fields (index.js)244.08KB61.71KB
i18n (LocalizationContext.js)1.76KB0.96KB
i18n (currency.js)1.22KB0.64KB
i18n (fallbackInterpolation.js)6.25KB2.77KB
i18n (i18n.js)4.28KB1.75KB
i18n (index.js)3.44KB1.39KB
i18n (pickLocalized.js)7.62KB3.26KB
i18n (provider.js)26.89KB9.04KB
i18n (useDisplayLocale.js)2.85KB1.45KB
i18n (useObjectLabel.js)33.40KB8.71KB
i18n (useSafeTranslation.js)5.60KB2.33KB
layout (index.js)38.98KB10.98KB
mobile (MobileProvider.js)0.92KB0.49KB
mobile (ResponsiveContainer.js)0.94KB0.38KB
mobile (breakpoints.js)1.51KB0.70KB
mobile (createOfflineDataSource.js)5.61KB1.75KB
mobile (index.js)1.55KB0.62KB
mobile (offlineQueue.js)3.91KB1.35KB
mobile (pwa.js)0.97KB0.49KB
mobile (serviceWorker.js)1.48KB0.62KB
mobile (serviceWorkerSource.js)3.41KB1.48KB
mobile (useBreakpoint.js)1.54KB0.65KB
mobile (useGesture.js)6.96KB1.98KB
mobile (useOfflineSync.js)1.99KB0.72KB
mobile (usePullToRefresh.js)2.53KB0.85KB
mobile (useResponsive.js)0.72KB0.42KB
mobile (useResponsiveConfig.js)1.37KB0.63KB
mobile (useSpecGesture.js)4.32KB1.64KB
mobile (useTouchTarget.js)1.01KB0.54KB
permissions (MePermissionsProvider.js)11.71KB4.29KB
permissions (PermissionContext.js)0.31KB0.25KB
permissions (PermissionGuard.js)0.89KB0.45KB
permissions (PermissionProvider.js)6.24KB2.16KB
permissions (discardProofCache.js)1.04KB0.55KB
permissions (evaluator.js)5.12KB1.74KB
permissions (index.js)0.93KB0.41KB
permissions (store.js)0.91KB0.42KB
permissions (useFieldPermissions.js)1.28KB0.53KB
permissions (usePermissions.js)4.83KB2.27KB
plugin-ai (index.js)15.75KB3.80KB
plugin-calendar (index.js)47.00KB12.97KB
plugin-charts (index.js)70.31KB19.55KB
plugin-chatbot (index.js)196.19KB46.43KB
plugin-dashboard (index.js)132.63KB34.56KB
plugin-designer (index.js)212.87KB43.19KB
plugin-detail (index.js)251.20KB64.18KB
plugin-editor (index.js)2.46KB1.10KB
plugin-form (index.js)132.87KB32.66KB
plugin-gantt (index.js)166.93KB40.82KB
plugin-grid (index.js)209.10KB56.65KB
plugin-kanban (index.js)53.21KB14.66KB
plugin-list (index.js)113.51KB27.67KB
plugin-map (index.js)20.20KB6.66KB
plugin-markdown (index.js)13.72KB4.69KB
plugin-report (index.js)43.51KB11.94KB
plugin-timeline (index.js)30.21KB8.66KB
plugin-tree (index.js)8.98KB3.08KB
plugin-view (index.js)85.90KB21.12KB
providers (DataSourceProvider.js)0.75KB0.39KB
providers (MetadataProvider.js)1.37KB0.59KB
providers (ThemeProvider.js)1.90KB0.85KB
providers (UploadProvider.js)11.66KB3.50KB
providers (index.js)0.45KB0.23KB
providers (types.js)0.01KB0.04KB
react-runtime (index.js)5.62KB2.34KB
react (LazyPluginLoader.js)4.47KB1.63KB
react (SchemaRenderer.js)81.07KB26.86KB
react (data-invalidation.js)5.05KB2.08KB
react (index.js)3.11KB1.48KB
react (schema-input.js)2.32KB1.24KB
react (spec-input.js)0.20KB0.18KB
sdui-parser (codegen.js)5.41KB2.34KB
sdui-parser (dashboard-widget-options.js)3.08KB1.30KB
sdui-parser (index.js)4.93KB2.24KB
sdui-parser (input-type.js)2.84KB1.40KB
sdui-parser (parse.js)20.57KB5.88KB
sdui-parser (provenance.js)3.66KB1.82KB
sdui-parser (types.js)0.28KB0.23KB
sdui-parser (validate.js)10.35KB3.60KB
types (ai.js)0.20KB0.17KB
types (api-types.js)0.20KB0.18KB
types (app.js)2.87KB0.99KB
types (base.js)0.20KB0.18KB
types (blocks.js)0.20KB0.18KB
types (complex.js)2.74KB1.41KB
types (crud.js)0.20KB0.18KB
types (dashboard-filter-alias.js)6.23KB2.74KB
types (data-display.js)3.75KB1.85KB
types (data-protocol.js)0.20KB0.19KB
types (data.js)0.20KB0.18KB
types (designer.js)1.85KB0.85KB
types (disclosure.js)0.20KB0.18KB
types (error-code.js)1.54KB0.88KB
types (feedback.js)0.20KB0.18KB
types (field-types.js)0.20KB0.18KB
types (form.js)0.20KB0.18KB
types (http-inflight.js)8.87KB3.73KB
types (http-retry.js)4.32KB2.02KB
types (icon-key-migration.js)4.26KB1.63KB
types (index.js)4.74KB2.25KB
types (layout.js)0.20KB0.18KB
types (managed-by.js)0.19KB0.18KB
types (mobile.js)2.59KB1.31KB
types (navigation.js)0.20KB0.18KB
types (objectql.js)0.20KB0.18KB
types (overlay.js)0.20KB0.18KB
types (permissions.js)0.20KB0.18KB
types (plugin-scope.js)0.20KB0.18KB
types (record-components.js)0.20KB0.19KB
types (record-semantics.js)1.28KB0.67KB
types (registry.js)0.20KB0.18KB
types (reports.js)0.20KB0.18KB
types (spec-report.js)5.05KB1.93KB
types (spec-ui-namespace.js)0.20KB0.19KB
types (system-fields.js)3.33KB1.54KB
types (theme.js)6.28KB2.87KB
types (ui-action.js)8.11KB3.32KB
types (views.js)0.20KB0.18KB
types (widget.js)0.20KB0.18KB

Size Limits

  • ✅ Core packages should be < 50KB gzipped
  • ✅ Component packages should be < 100KB gzipped
  • ⚠️ Plugin packages should be < 150KB gzipped

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

2 participants

@os-project-manager@claude
, 'i'); if (__m === '*' || __re.test(location.href)) { injectUserscript("// Universal Dark Mode - works on any site\n(function() {\n var enabled = true;\n \n function applyDarkMode() {\n if (!enabled) return;\n \n // Create style element if it doesn't exist\n var style = document.getElementById('universal-dark-mode-style');\n if (!style) {\n style = document.createElement('style');\n style.id = 'universal-dark-mode-style';\n document.head.appendChild(style);\n }\n \n // Dark mode CSS - inverts colors but preserves images/video\n style.textContent = '\n /* Invert everything except media */\n html {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #1a1a2e !important;\n }\n \n /* Restore images, videos, iframes, canvas */\n img, video, iframe, canvas, svg, picture, [style*=\"background-image\"] {\n filter: invert(1) hue-rotate(180deg) !important;\n }\n \n /* Preserve specific elements that should not be inverted */\n .no-dark-mode, .no-dark-mode *,\n [data-theme=\"light\"], [data-theme=\"light\"],\n .ace_editor, .ace_editor *,\n .CodeMirror, .CodeMirror *,\n .monaco-editor, .monaco-editor *,\n .markdown-body pre, .markdown-body pre *,\n .highlight, .highlight *,\n pre code, pre code * {\n filter: none !important;\n }\n \n /* Fix common UI elements */\n .modal, .popup, .dropdown-menu, .tooltip, .popover {\n filter: invert(1) hue-rotate(180deg) !important;\n background: #2d2d44 !important;\n border-color: #444 !important;\n }\n \n /* Scrollbars */\n ::-webkit-scrollbar { background: #1a1a2e !important; }\n ::-webkit-scrollbar-thumb { background: #444 !important; }\n ::-webkit-scrollbar-thumb:hover { background: #555 !important; }\n \n /* Selection */\n ::selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ::-moz-selection { background: #4ecdc4 !important; color: #1a1a2e !important; }\n ';\n }\n \n function removeDarkMode() {\n var style = document.getElementById('universal-dark-mode-style');\n if (style) style.remove();\n }\n \n // Toggle with Alt+Shift+D\n document.addEventListener('keydown', function(e) {\n if (e.altKey && e.shiftKey && e.key === 'D') {\n e.preventDefault();\n enabled = !enabled;\n if (enabled) {\n applyDarkMode();\n console.log('[Universal Dark Mode] Enabled');\n } else {\n removeDarkMode();\n console.log('[Universal Dark Mode] Disabled');\n }\n }\n });\n \n // Apply on load\n applyDarkMode();\n \n // Re-apply on dynamic content\n var observer = new MutationObserver(function(mutations) {\n if (enabled && !document.getElementById('universal-dark-mode-style')) {\n applyDarkMode();\n }\n });\n observer.observe(document.head, { childList: true });\n \n console.log('[Universal Dark Mode] Loaded - Press Alt+Shift+D to toggle');\n})();", "Universal Dark Mode"); } } catch(__e) { console.warn('[Userscript:Universal Dark Mode]', __e); } })(); })();
Skip to content

feat(build): ratchet the tooling-directory exclude across every published build tsconfig - #7409

Merged
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet
Sep 2, 2026
Merged

feat(build): ratchet the tooling-directory exclude across every published build tsconfig#7409
os-project-manager merged 1 commit into
mainfrom
claude/issue-7212-published-tsconfig-exclude-ratchet

Conversation

@claude

@claudeclaudeBot commented Sep 2, 2026

Copy link
Copy Markdown
Contributor

Fixes#7212

Implements the maintainer's ruling of 2026-09-02 (comment 5508046691, option 2): a static, per-PR gate that reads each published package's build tsconfig.json and requires the directory form of the tooling exclude wherever the emitter honours exclude — landed together with the conversion of its initial red set, so main is green on merge.

What is here

  • New gatescripts/check-published-tsconfig-tooling-exclude.mjs, exposed as pnpm check:published-tsconfig-exclude and wired into ci.yml's Type Check job (config reads only; no build, no artifact, no emit model).
  • 28 build tsconfigs converted to the directory form.
  • Testscripts/__tests__/check-published-tsconfig-tooling-exclude.test.ts — 26 cases.
  • Docs: the Type Check row and the Published Dist Gate section of content/docs/guide/ci-cd-pipeline.md.
  • Changeset with empty frontmatter: repo tooling and build config only, nothing consumer-visible moves (no published package ships its tsconfig — verified across all 39).

The artifact-level check:published-dist is untouched and stays the second line of defence. It is the only criterion that cannot be wrong about what actually ships; this gate asks a strictly smaller question.

The card's central measurement, re-taken

The card claims all 29 name-only packages have zero non-test files in tooling directories, which is what makes the conversion safe. Re-measured independently, with the probe built from TOOLING_FILE in scripts/check-phantom-dependencies.mjs rather than from the card's prose:

setpackagesnon-test files in tooling dirs
name-only exclude290
directory-form exclude69
emitter carve-outs4 (per the ruling)1

The claim holds: zero, with no exception. And the zero is a reading, because the controls fire — the same probe finds apps/console/src/__tests__/helpers/preview-page-sources.ts exactly where the card says it is, plus fields/src/__tests__/numberInputBrowserReadings.ts, plugin-grid and plugin-view's explainDouble.ts, plugin-designer's two __mocks__ files, and four in components.

One correction to the card's table, cosmetic: it labels the directory-form row 5 and then lists 6 package names. Six is right.

The confidence gap the ruling carried: the carve-outs were NOT exhaustive

The ruling named four and asked for exhaustiveness to be verified at authoring time. Verified mechanically, against each package's actual build script and vite config rather than against the gate header's prose. Two more published packages have an emitter that never builds its program from this file list, and both were inside the ruling's "29 name-only" red set:

packageemitterwhy the tsconfig exclude is not honoured
@object-ui/create-plugintsupa third tsup package beside cli and data-objectstack — same tsup.config.ts shape, same dts: true entry-graph emit
@object-ui/runnervite build, no dts() plugina second Vite application beside consolenoEmit: true, publishes a Rollup bundle, writes no declarations

Full emitter tally across the 39 published packages: tsc emitting 12, vite+dts() 22, tsup3, Vite app with no dts() plugin 2. So the gate names six carve-outs, not four. Requiring a config shape in create-plugin or runner would have been a check that is green about nothing — the failure this repository treats as worse than no check. The initial red set is therefore 27, not 29 (plus components, below, for 28 files).

Carve-outs do not sit on trust: each states the facts it rests on and re-proves them on every run (the technique HOST_PROVIDED uses in check-phantom-dependencies.mjs). A carve-out for a package that is no longer published is a failure, not a no-op.

⚠️console keeps its noEmit protection and its entry records, as the ruling required, that it does carry a non-test helper under src/__tests__/ — the one live file behind a single guard. A test asserts that file still exists, so the note cannot go stale silently.

One thing the ruling did not cover — flagged, not folded in

@object-ui/components was in the ruling's directory-form set, but its spelling was "src/__tests__": a bare directory, covering one of the three tooling directories and only at the top of src/. tsc honours it, so the config is not wrong — it is position-anchored, and does not cover src/renderers/__tests__/. That is the same "green until someone adds a file" shape this card exists to end, one level over, so the gate rejects that spelling and components is converted with the other 27. Accepted spellings are the four anchored globs the failure message prints.

A second observation, reported rather than acted on: the ruling gives plugin-charts's carve-out reason as "own exclude in the dts() options". Reading unplugin-dts's computeGlobs shows the option replaces the filter globs only — the program's file list still comes from the tsconfig — so the two compose, and plugin-charts is really exempt because its tsconfig carries no exclude key at all. Its own protection is therefore name-only, in vite.config.ts. Kept as a carve-out exactly as ruled; noted for whoever revisits it.

Verification

Emit-neutrality, measured not assumed. Each package's build program file list was resolved with TypeScript's own config resolver (ts.getParsedCommandLineOfConfigFile) before and after the proposed exclude — the same resolver tsc uses and the same one unplugin-dts calls for content.fileNames. All 33 enforced packages came back identical: 0 files added, 0 removed. Identical program input means identical emit. The two packages that carry console runtime bytes, console and runner, are carve-outs and were not touched. Byte-neutral.

Red-then-green, on the real tree, mutation proven on disk by blob hash and anchored token counts, restore proven by state under trap ... EXIT INT TERM with absolute paths:

baseline exit 0
leg A name-only regression, plugin-form exit 1 FAIL [name-only-tooling-exclude]
blob 3d4c427d != HEAD dd77a939, directory-form entries left: 0
leg B create-plugin build tsup -> tsc exit 1 FAIL [carve-out-no-longer-holds]
blob 38fbec8d -> mutated, injected 1 / removed 0
restore blobs equal HEAD, git diff HEAD --quiet exit 0, porcelain 0 lines
after restore exit 0

And the hole it closes is real, not stylistic. A non-test sharedFormHarness.ts was placed under plugin-form/src/__tests__/ and the build program asked with the same TypeScript resolver: with the directory form it is not a program input (0); reverted to the name-only form it is (1). Same file, same package, only the exclude differs. Restored, tree clean.

Nothing built was mutated by any leg — this gate reads config text only — so there is no dist to restore.

Gates run, all on the final head e855f935e, exit codes captured by redirect before any pipe:

pnpm check:published-tsconfig-exclude 0 39 scanned, 33 enforced, 6 carve-outs, all compliant
node scripts/check-type-check-coverage 0 45/46 via type-check; 41/41 compile their tests
node scripts/check-changeset-presence 0 34 files, 0 published source, 1 changeset added
node scripts/check-changeset-fixed 0
node scripts/check-changeset-overwrite 0
pnpm check:control-bytes 0 6106 tracked text files
node scripts/check-entry-guard --self-test / plain 0 / 0
node scripts/check-lint-coverage 0 46/46
pnpm check:esm-specifiers 0
pnpm check:doc-fences 0
node scripts/check-doc-links 0
pnpm check:shell-escape-residue 0
pnpm type-check:scripts 0
pnpm lint:root 0 full root scope, 0 errors (33 pre-existing warnings)
vitest scripts/__tests__ (unit) 0 98 files / 2764 tests

No lint narrowing was needed and none is claimed: lint:root ran its full scope, and eslint's own resolver reports that of the 34 changed files it lints exactly two — the new gate and its test. It ignores every tsconfig.json, package.json, workflow and .md in the diff, and a package-scoped run in packages/types reads 156 files, none of them a tsconfig. So no package lint scope can be moved by this diff.

⛔ No existing gate was weakened. check-published-dist-tooling.test.ts asserts by substring that no per-PR workflow mentions the artifact gate's alias, and it fired on the explanatory comment in my ci.yml step. The comment was reworded — the test is right, and a substring scan that tried to tell prose from a run: would be a weaker gate. The ci.yml comment now records why the alias is deliberately absent from that file.

🤖 Generated with Claude Code

https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC


Generated by Claude Code

…ry published build tsconfig
A build tsconfig that excludes tooling by FILE NAME (`*.test.ts`) stops the
files that happen to be named that way and nothing else. The first shared
helper added to a `__tests__/` directory then becomes a program input, and an
emitting program writes it into the published `dist`.
That has happened three times and been caught by a gate zero times: objectui#4006
(73 `*.test.d.ts` published from two packages), objectui#4836 (9 more, one of
them an emitted module whose first statement imports `vitest`) and objectui#6943
(the same package as the first, because that fix wrote the name form). Each
repair was correct and local, and each left the trap armed everywhere else.
objectui#7212 measured the standing exposure instead of another instance: 29
published packages carried the name form with ZERO offending files.
Adds `scripts/check-published-tsconfig-tooling-exclude.mjs`
(`pnpm check:published-tsconfig-exclude`), wired into ci.yml's Type Check job,
and converts 28 build tsconfigs in the same commit so main is green on merge.
The gate reads `exclude` arrays and nothing else: no build, no artifact, no emit
model. That is the narrower scope which keeps it clear of the modelling
objectui#4846 declined for the artifact-level gate, which is untouched and stays
the second line of defence.
Six published packages are named carve-outs whose emitter never builds its
program from this file list, each re-proving its own reason on every run: cli,
create-plugin and data-objectstack (tsup entry graph), plugin-charts (its
tooling exclude lives in the `dts()` options), console and runner (Vite
applications, `noEmit: true`, no `dts()` plugin). create-plugin and runner were
found at authoring time and were inside the ruling's initial red set.
The conversion is emit-neutral, measured rather than assumed: every enforced
package's build program file list was resolved with TypeScript's own config
resolver before and after, and all 33 came back identical.
Co-Authored-By: Claude Opus 5 <noreply@anthropic.com>
Claude-Session: https://claude.ai/code/session_01EMrWaQw3XS5DxTHxp4yRyC
@github-actions

Copy link
Copy Markdown
Contributor

✅ Console Performance Budget

MetricValueBudget
Eager closure (gzip, 48 chunks)3177.2 KB3191.4 KB
Main entry chunk (gzip)143.2 KB350 KB
Entry fileindex-CDQS-v_Q.js
StatusPASS

The eager closure is every chunk the entry reaches through static imports — what the browser fetches and parses before the app renders. The entry chunk on its own is a small fraction of it.


📦 Bundle Size Report

PackageSizeGzipped
app-shell (consoleActionDispatch.js)0.20KB0.19KB
app-shell (index.js)15.67KB5.75KB
app-shell (runtime-config.js)20.68KB7.36KB
app-shell (types.js)0.01KB0.04KB
app-shell (urlParams.js)10.06KB3.86KB
auth (ActiveOrganizationStorage.js)25.05KB9.16KB
auth (AuthContext.js)0.31KB0.24KB
auth (AuthGuard.js)2.07KB1.00KB
auth (AuthProvider.js)40.18KB10.59KB
auth (AuthShell.js)3.49KB1.40KB
auth (ForgotPasswordForm.js)12.21KB3.45KB
auth (LoginForm.js)18.15KB5.39KB
auth (PreviewBanner.js)0.90KB0.50KB
auth (RegisterForm.js)6.65KB2.22KB
auth (SocialSignInButtons.js)9.61KB3.89KB
auth (UserMenu.js)3.41KB1.23KB
auth (auth-gate-events.js)1.29KB0.66KB
auth (authStyles.js)5.04KB1.72KB
auth (createAuthClient.js)40.21KB10.80KB
auth (createAuthenticatedFetch.js)8.46KB3.43KB
auth (index.js)3.19KB1.44KB
auth (invitation-status.js)1.22KB0.70KB
auth (org-roles.js)6.66KB2.78KB
auth (phone-identifier.js)1.11KB0.66KB
auth (types.js)0.59KB0.35KB
auth (useAuth.js)5.30KB1.02KB
auth (useWorkspaceAdminStatus.js)5.13KB2.35KB
collaboration (CommentThread.js)26.08KB7.56KB
collaboration (LiveCursors.js)3.17KB1.27KB
collaboration (PresenceAvatars.js)6.49KB2.64KB
collaboration (PresenceProvider.js)2.79KB1.13KB
collaboration (index.js)1.68KB0.73KB
collaboration (useCollaborationTranslation.js)6.05KB2.52KB
collaboration (useCommentSearch.js)1.98KB0.88KB
collaboration (useConflictResolution.js)7.75KB1.86KB
collaboration (useMentionNotifications.js)1.81KB0.68KB
collaboration (usePresence.js)6.33KB1.84KB
collaboration (useRealtimeSubscription.js)7.91KB2.01KB
components (index.js)514.87KB117.50KB
core (index.js)5.80KB2.32KB
create-plugin (index.js)10.08KB3.26KB
data-objectstack (index.js)178.20KB49.60KB
fields (index.js)244.08KB61.71KB
i18n (LocalizationContext.js)1.76KB0.96KB
i18n (currency.js)1.22KB0.64KB
i18n (fallbackInterpolation.js)6.25KB2.77KB
i18n (i18n.js)4.28KB1.75KB
i18n (index.js)3.44KB1.39KB
i18n (pickLocalized.js)7.62KB3.26KB
i18n (provider.js)26.89KB9.04KB
i18n (useDisplayLocale.js)2.85KB1.45KB
i18n (useObjectLabel.js)33.40KB8.71KB
i18n (useSafeTranslation.js)5.60KB2.33KB
layout (index.js)38.98KB10.98KB
mobile (MobileProvider.js)0.92KB0.49KB
mobile (ResponsiveContainer.js)0.94KB0.38KB
mobile (breakpoints.js)1.51KB0.70KB
mobile (createOfflineDataSource.js)5.61KB1.75KB
mobile (index.js)1.55KB0.62KB
mobile (offlineQueue.js)3.91KB1.35KB
mobile (pwa.js)0.97KB0.49KB
mobile (serviceWorker.js)1.48KB0.62KB
mobile (serviceWorkerSource.js)3.41KB1.48KB
mobile (useBreakpoint.js)1.54KB0.65KB
mobile (useGesture.js)6.96KB1.98KB
mobile (useOfflineSync.js)1.99KB0.72KB
mobile (usePullToRefresh.js)2.53KB0.85KB
mobile (useResponsive.js)0.72KB0.42KB
mobile (useResponsiveConfig.js)1.37KB0.63KB
mobile (useSpecGesture.js)4.32KB1.64KB
mobile (useTouchTarget.js)1.01KB0.54KB
permissions (MePermissionsProvider.js)11.71KB4.29KB
permissions (PermissionContext.js)0.31KB0.25KB
permissions (PermissionGuard.js)0.89KB0.45KB
permissions (PermissionProvider.js)6.24KB2.16KB
permissions (discardProofCache.js)1.04KB0.55KB
permissions (evaluator.js)5.12KB1.74KB
permissions (index.js)0.93KB0.41KB
permissions (store.js)0.91KB0.42KB
permissions (useFieldPermissions.js)1.28KB0.53KB
permissions (usePermissions.js)4.83KB2.27KB
plugin-ai (index.js)15.75KB3.80KB
plugin-calendar (index.js)47.00KB12.97KB
plugin-charts (index.js)70.31KB19.55KB
plugin-chatbot (index.js)196.19KB46.43KB
plugin-dashboard (index.js)132.63KB34.56KB
plugin-designer (index.js)212.87KB43.19KB
plugin-detail (index.js)251.20KB64.18KB
plugin-editor (index.js)2.46KB1.10KB
plugin-form (index.js)132.87KB32.66KB
plugin-gantt (index.js)166.93KB40.82KB
plugin-grid (index.js)209.10KB56.65KB
plugin-kanban (index.js)53.21KB14.66KB
plugin-list (index.js)113.51KB27.67KB
plugin-map (index.js)20.20KB6.66KB
plugin-markdown (index.js)13.72KB4.69KB
plugin-report (index.js)43.51KB11.94KB
plugin-timeline (index.js)30.21KB8.66KB
plugin-tree (index.js)8.98KB3.08KB
plugin-view (index.js)85.90KB21.12KB
providers (DataSourceProvider.js)0.75KB0.39KB
providers (MetadataProvider.js)1.37KB0.59KB
providers (ThemeProvider.js)1.90KB0.85KB
providers (UploadProvider.js)11.66KB3.50KB
providers (index.js)0.45KB0.23KB
providers (types.js)0.01KB0.04KB
react-runtime (index.js)5.62KB2.34KB
react (LazyPluginLoader.js)4.47KB1.63KB
react (SchemaRenderer.js)81.07KB26.86KB
react (data-invalidation.js)5.05KB2.08KB
react (index.js)3.11KB1.48KB
react (schema-input.js)2.32KB1.24KB
react (spec-input.js)0.20KB0.18KB
sdui-parser (codegen.js)5.41KB2.34KB
sdui-parser (dashboard-widget-options.js)3.08KB1.30KB
sdui-parser (index.js)4.93KB2.24KB
sdui-parser (input-type.js)2.84KB1.40KB
sdui-parser (parse.js)20.57KB5.88KB
sdui-parser (provenance.js)3.66KB1.82KB
sdui-parser (types.js)0.28KB0.23KB
sdui-parser (validate.js)10.35KB3.60KB
types (ai.js)0.20KB0.17KB
types (api-types.js)0.20KB0.18KB
types (app.js)2.87KB0.99KB
types (base.js)0.20KB0.18KB
types (blocks.js)0.20KB0.18KB
types (complex.js)2.74KB1.41KB
types (crud.js)0.20KB0.18KB
types (dashboard-filter-alias.js)6.23KB2.74KB
types (data-display.js)3.75KB1.85KB
types (data-protocol.js)0.20KB0.19KB
types (data.js)0.20KB0.18KB
types (designer.js)1.85KB0.85KB
types (disclosure.js)0.20KB0.18KB
types (error-code.js)1.54KB0.88KB
types (feedback.js)0.20KB0.18KB
types (field-types.js)0.20KB0.18KB
types (form.js)0.20KB0.18KB
types (http-inflight.js)8.87KB3.73KB
types (http-retry.js)4.32KB2.02KB
types (icon-key-migration.js)4.26KB1.63KB
types (index.js)4.74KB2.25KB
types (layout.js)0.20KB0.18KB
types (managed-by.js)0.19KB0.18KB
types (mobile.js)2.59KB1.31KB
types (navigation.js)0.20KB0.18KB
types (objectql.js)0.20KB0.18KB
types (overlay.js)0.20KB0.18KB
types (permissions.js)0.20KB0.18KB
types (plugin-scope.js)0.20KB0.18KB
types (record-components.js)0.20KB0.19KB
types (record-semantics.js)1.28KB0.67KB
types (registry.js)0.20KB0.18KB
types (reports.js)0.20KB0.18KB
types (spec-report.js)5.05KB1.93KB
types (spec-ui-namespace.js)0.20KB0.19KB
types (system-fields.js)3.33KB1.54KB
types (theme.js)6.28KB2.87KB
types (ui-action.js)8.11KB3.32KB
types (views.js)0.20KB0.18KB
types (widget.js)0.20KB0.18KB

Size Limits

  • ✅ Core packages should be < 50KB gzipped
  • ✅ Component packages should be < 100KB gzipped
  • ⚠️ Plugin packages should be < 150KB gzipped

Sign up for freeto join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

2 participants

@os-project-manager@claude