mirror of
https://github.com/permissionlesstech/bitchat.git
synced 2026-07-25 23:45:20 +00:00
Compare commits
131
Commits
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
02828731b9 | ||
|
|
f5b2150f11 | ||
|
|
d285c6ad53 | ||
|
|
8296630cf3 | ||
|
|
c74e212ea3 | ||
|
|
7a0c821807 | ||
|
|
0d251ad20c | ||
|
|
c8ceac1968 | ||
|
|
9ccff9cce4 | ||
|
|
66536063ca | ||
|
|
e191e9c6f2 | ||
|
|
b31a63ce37 | ||
|
|
0f26a27980 | ||
|
|
b28fb26504 | ||
|
|
68eeba97ff | ||
|
|
ba0861a446 | ||
|
|
424c47be82 | ||
|
|
20c1c0f687 | ||
|
|
f688e529f6 | ||
|
|
ebdcdf83dd | ||
|
|
2c04f65c83 | ||
|
|
293380e671 | ||
|
|
96e32ba990 | ||
|
|
0a2f4d9c9d | ||
|
|
914135adb0 | ||
|
|
cd7ffa0df9 | ||
|
|
bbe1ed0652 | ||
|
|
f07b032b99 | ||
|
|
2cbcb290f7 | ||
|
|
9cf7c80518 | ||
|
|
f76fd8a538 | ||
|
|
09c2c12838 | ||
|
|
8378ff949a | ||
|
|
ca63893197 | ||
|
|
fdf28aa5bb | ||
|
|
5aaa209020 | ||
|
|
266827ceff | ||
|
|
97bc3f53bc | ||
|
|
9dc0ba6991 | ||
|
|
af954b05ea | ||
|
|
c8381737bb | ||
|
|
fa136d8973 | ||
|
|
7fbe6a4a7e | ||
|
|
4791114406 | ||
|
|
1a6a08f92a | ||
|
|
0b007eee1a | ||
|
|
1480b51c76 | ||
|
|
0e38ccfb3b | ||
|
|
e74f36927f | ||
|
|
cf3b85f65c | ||
|
|
8899cb7f9e | ||
|
|
22be3d6392 | ||
|
|
8a867a17a1 | ||
|
|
ed86ed1065 | ||
|
|
e74d9a7937 | ||
|
|
8289a6d05e | ||
|
|
38331e62f1 | ||
|
|
7fb1f4a219 | ||
|
|
99d1d1dccd | ||
|
|
879d8cba12 | ||
|
|
ac3a2f2d34 | ||
|
|
45650854e7 | ||
|
|
75dd83d9cc | ||
|
|
93d01b8fa6 | ||
|
|
6c0dbbbd0d | ||
|
|
09087b74cc | ||
|
|
cc76086615 | ||
|
|
638f3f5005 | ||
|
|
6091ee83ad | ||
|
|
82736c4991 | ||
|
|
707b22878d | ||
|
|
80bed1f395 | ||
|
|
4b287f7490 | ||
|
|
3caf2d7663 | ||
|
|
14d025cc2a | ||
|
|
19b28cf49d | ||
|
|
a2825ca288 | ||
|
|
3a995e20b6 | ||
|
|
6bda919dd4 | ||
|
|
4093ee6733 | ||
|
|
eb2c128cab | ||
|
|
3eb4f2bd72 | ||
|
|
193cfdc06a | ||
|
|
ffa0d7aa4f | ||
|
|
9e84f5e822 | ||
|
|
df36b19afe | ||
|
|
ab0da61533 | ||
|
|
3be8fbf1c4 | ||
|
|
764f016d17 | ||
|
|
a6cb8872fb | ||
|
|
3daf02732a | ||
|
|
0d1cdc7644 | ||
|
|
43eef0d49c | ||
|
|
bafa461f26 | ||
|
|
602d2316ef | ||
|
|
c60eff2c11 | ||
|
|
4cfcefcda6 | ||
|
|
3e137d784c | ||
|
|
452e9e74fd | ||
|
|
3afd74ffc8 | ||
|
|
951e056a55 | ||
|
|
d265cfc765 | ||
|
|
473f5c7cce | ||
|
|
b5834cfc76 | ||
|
|
097d916da7 | ||
|
|
4b000b0785 | ||
|
|
19437a0bc6 | ||
|
|
34bae4a89d | ||
|
|
0331871980 | ||
|
|
f9f6ac92b8 | ||
|
|
ca374fd823 | ||
|
|
96f2986d65 | ||
|
|
b6e45e3228 | ||
|
|
c88ab3dd05 | ||
|
|
7d83310bc2 | ||
|
|
264a95b61a | ||
|
|
8562a76367 | ||
|
|
7e86d2061f | ||
|
|
a136b5b7e9 | ||
|
|
c043cf6354 | ||
|
|
72093f9648 | ||
|
|
187a5c3195 | ||
|
|
02b2a006c5 | ||
|
|
2403a6eb90 | ||
|
|
e47c5ae7b3 | ||
|
|
c1f5868d2d | ||
|
|
0515f4c6e8 | ||
|
|
8c7e3e7b9b | ||
|
|
90a5e8ba9d | ||
|
|
6206184862 | ||
|
|
74cf0d89cc |
@@ -0,0 +1,85 @@
|
|||||||
|
name: Arti Binary Provenance
|
||||||
|
|
||||||
|
# The Arti xcframework is a vendored binary; these checks turn the policy in
|
||||||
|
# docs/ARTI-BINARY-PROVENANCE.md into an enforced gate:
|
||||||
|
# 1. The checked-in binary must match the hash manifest in the provenance doc.
|
||||||
|
# 2. A PR that changes the binary must also change at least one provenance
|
||||||
|
# input (Rust source, lockfile, build script, or the doc itself).
|
||||||
|
|
||||||
|
on:
|
||||||
|
push:
|
||||||
|
branches:
|
||||||
|
- main
|
||||||
|
paths:
|
||||||
|
- "localPackages/Arti/**"
|
||||||
|
- "docs/ARTI-BINARY-PROVENANCE.md"
|
||||||
|
pull_request:
|
||||||
|
paths:
|
||||||
|
- "localPackages/Arti/**"
|
||||||
|
- "docs/ARTI-BINARY-PROVENANCE.md"
|
||||||
|
|
||||||
|
jobs:
|
||||||
|
verify-hashes:
|
||||||
|
name: Verify xcframework hashes against provenance doc
|
||||||
|
runs-on: ubuntu-latest
|
||||||
|
|
||||||
|
steps:
|
||||||
|
- name: Checkout code
|
||||||
|
uses: actions/checkout@v5
|
||||||
|
|
||||||
|
- name: Compare artifact hashes with manifest
|
||||||
|
run: |
|
||||||
|
set -euo pipefail
|
||||||
|
doc="docs/ARTI-BINARY-PROVENANCE.md"
|
||||||
|
|
||||||
|
# Extract the manifest: lines of "<sha256> <path>" from the doc.
|
||||||
|
grep -E '^[0-9a-f]{64} localPackages/Arti/Frameworks/arti\.xcframework/' "$doc" \
|
||||||
|
| sort -k2 > expected.txt
|
||||||
|
|
||||||
|
if [ ! -s expected.txt ]; then
|
||||||
|
echo "::error::No hash manifest found in $doc"
|
||||||
|
exit 1
|
||||||
|
fi
|
||||||
|
|
||||||
|
# Hash the same file set the doc documents.
|
||||||
|
find localPackages/Arti/Frameworks/arti.xcframework -maxdepth 3 -type f -print0 \
|
||||||
|
| sort -z | xargs -0 sha256sum | sed 's/ \.\// /' | sort -k2 > actual.txt
|
||||||
|
|
||||||
|
if ! diff -u expected.txt actual.txt; then
|
||||||
|
echo "::error::Checked-in arti.xcframework does not match the manifest in $doc. If the binary change is intentional, rebuild per the doc and update the manifest in the same PR."
|
||||||
|
exit 1
|
||||||
|
fi
|
||||||
|
echo "All $(wc -l < actual.txt) artifact hashes match the provenance manifest."
|
||||||
|
|
||||||
|
require-provenance-evidence:
|
||||||
|
name: Binary changes must ship with provenance inputs
|
||||||
|
runs-on: ubuntu-latest
|
||||||
|
if: github.event_name == 'pull_request'
|
||||||
|
|
||||||
|
steps:
|
||||||
|
- name: Checkout code
|
||||||
|
uses: actions/checkout@v5
|
||||||
|
with:
|
||||||
|
fetch-depth: 0
|
||||||
|
|
||||||
|
- name: Check changed files
|
||||||
|
run: |
|
||||||
|
set -euo pipefail
|
||||||
|
base="origin/${{ github.base_ref }}"
|
||||||
|
git fetch --no-tags --depth=1 origin "${{ github.base_ref }}"
|
||||||
|
changed=$(git diff --name-only "$base"...HEAD)
|
||||||
|
echo "Changed files:"
|
||||||
|
echo "$changed"
|
||||||
|
|
||||||
|
if ! echo "$changed" | grep -q '^localPackages/Arti/Frameworks/arti\.xcframework/'; then
|
||||||
|
echo "No binary artifact changes; nothing to verify."
|
||||||
|
exit 0
|
||||||
|
fi
|
||||||
|
|
||||||
|
if echo "$changed" | grep -Eq '^(localPackages/Arti/(Cargo\.(toml|lock)|build-ios\.sh|arti-bitchat/)|docs/ARTI-BINARY-PROVENANCE\.md)'; then
|
||||||
|
echo "Binary change is accompanied by provenance inputs."
|
||||||
|
exit 0
|
||||||
|
fi
|
||||||
|
|
||||||
|
echo "::error::arti.xcframework changed without matching source, lockfile, build-script, or provenance-doc changes. See docs/ARTI-BINARY-PROVENANCE.md (\"Do not accept an xcframework-only update\")."
|
||||||
|
exit 1
|
||||||
@@ -5,23 +5,175 @@ on:
|
|||||||
branches:
|
branches:
|
||||||
- main
|
- main
|
||||||
pull_request:
|
pull_request:
|
||||||
branches:
|
|
||||||
- main
|
|
||||||
|
|
||||||
jobs:
|
jobs:
|
||||||
test:
|
test:
|
||||||
name: Run Swift Tests
|
name: Run Swift Tests (${{ matrix.name }})
|
||||||
runs-on: macos-latest
|
runs-on: macos-latest
|
||||||
|
# A hung test must fail fast, not hold a runner for GitHub's 360-minute
|
||||||
|
# default (observed: intermittent app-suite hangs starving the queue).
|
||||||
|
# The long steps carry tighter individual bounds (5-minute test watchdog,
|
||||||
|
# 6-minute benchmark step, 10-minute floor gate that may re-run the
|
||||||
|
# benchmarks up to twice on a noisy runner); this is the backstop.
|
||||||
|
timeout-minutes: 25
|
||||||
|
|
||||||
|
strategy:
|
||||||
|
fail-fast: false # Don't cancel other matrix jobs when one fails
|
||||||
|
matrix:
|
||||||
|
include:
|
||||||
|
- name: app
|
||||||
|
path: .
|
||||||
|
- name: BitLogger
|
||||||
|
path: localPackages/BitLogger
|
||||||
|
- name: BitFoundation
|
||||||
|
path: localPackages/BitFoundation
|
||||||
|
|
||||||
steps:
|
steps:
|
||||||
- name: Checkout code
|
- name: Checkout code
|
||||||
uses: actions/checkout@v5
|
uses: actions/checkout@v5
|
||||||
|
|
||||||
- name: Set up Swift
|
# Use the Xcode-bundled Swift toolchain: it always matches the SDK on
|
||||||
uses: swift-actions/setup-swift@v2
|
# the runner image. A standalone swift.org toolchain (setup-swift) broke
|
||||||
|
# whenever the image's Xcode moved ahead of it ("this SDK is not
|
||||||
|
# supported by the compiler").
|
||||||
|
- name: Note toolchain version (cache key)
|
||||||
|
id: swift-version
|
||||||
|
run: echo "version=$(swift --version 2>/dev/null | head -1 | shasum | cut -c1-12)" >> "$GITHUB_OUTPUT"
|
||||||
|
|
||||||
- name: Build the package
|
- name: Cache build artifacts
|
||||||
run: swift build
|
uses: actions/cache@v4
|
||||||
|
with:
|
||||||
|
path: ${{ matrix.path }}/.build
|
||||||
|
key: ${{ runner.os }}-${{ steps.swift-version.outputs.version }}-${{ matrix.name }}-${{ hashFiles(format('{0}/**/*.swift', matrix.path), format('{0}/**/Package.resolved', matrix.path)) }}
|
||||||
|
restore-keys: |
|
||||||
|
${{ runner.os }}-${{ steps.swift-version.outputs.version }}-${{ matrix.name }}-${{ hashFiles(format('{0}/**/Package.resolved', matrix.path)) }}
|
||||||
|
${{ runner.os }}-${{ steps.swift-version.outputs.version }}-${{ matrix.name }}-
|
||||||
|
|
||||||
|
- name: Build tests
|
||||||
|
# Built separately so the hang watchdog below times only test
|
||||||
|
# execution: a cold-cache coverage build on a slow runner can
|
||||||
|
# legitimately take several minutes, and is already bounded by the
|
||||||
|
# 15-minute job timeout.
|
||||||
|
run: swift build --build-tests --enable-code-coverage --package-path ${{ matrix.path }}
|
||||||
|
|
||||||
- name: Run Tests
|
- name: Run Tests
|
||||||
run: swift test --parallel
|
# Perf benchmarks are excluded here and run in their own serial step
|
||||||
|
# below: measuring while parallel test processes contend for cores
|
||||||
|
# produces noisy numbers, and the XCTest measure machinery has hung
|
||||||
|
# intermittently under parallel workers on loaded runners. Excluded
|
||||||
|
# via --skip (not just the env guard): every app run since the
|
||||||
|
# baselines landed timed out at the 15-minute job limit with the
|
||||||
|
# baseline tests dispatched into the parallel phase.
|
||||||
|
#
|
||||||
|
# The watchdog samples any still-running test processes after 5
|
||||||
|
# minutes (the suite passes in seconds when healthy; the build is
|
||||||
|
# done by this step) and kills the run, so a hang fails fast with
|
||||||
|
# stacks in the log instead of a silent timeout.
|
||||||
|
env:
|
||||||
|
BITCHAT_SKIP_PERF_BASELINES: "1"
|
||||||
|
run: |
|
||||||
|
swift test --skip-build --parallel --quiet --enable-code-coverage \
|
||||||
|
--skip PerformanceBaselineTests \
|
||||||
|
--package-path ${{ matrix.path }} &
|
||||||
|
test_pid=$!
|
||||||
|
(
|
||||||
|
sleep 300
|
||||||
|
if kill -0 "$test_pid" 2>/dev/null; then
|
||||||
|
echo "::group::Tests still running after 5 minutes — sampling before kill"
|
||||||
|
for pid in $(pgrep -if 'swiftpm-testing|xctest|PackageTests' || true); do
|
||||||
|
echo "--- sample of pid $pid ---"
|
||||||
|
sample "$pid" 5 2>/dev/null || true
|
||||||
|
done
|
||||||
|
echo "::endgroup::"
|
||||||
|
pkill -KILL -P "$test_pid" 2>/dev/null || true
|
||||||
|
kill -KILL "$test_pid" 2>/dev/null || true
|
||||||
|
fi
|
||||||
|
) &
|
||||||
|
watchdog_pid=$!
|
||||||
|
wait "$test_pid" && status=0 || status=$?
|
||||||
|
kill "$watchdog_pid" 2>/dev/null || true
|
||||||
|
exit "$status"
|
||||||
|
|
||||||
|
# Benchmarks run serially on an otherwise idle runner for stable
|
||||||
|
# numbers; BITCHAT_PERF_LOG captures the PERF[...] lines for the gate.
|
||||||
|
- name: Run performance benchmarks (serial)
|
||||||
|
if: matrix.name == 'app'
|
||||||
|
timeout-minutes: 6
|
||||||
|
env:
|
||||||
|
BITCHAT_PERF_LOG: ${{ github.workspace }}/perf-output.log
|
||||||
|
run: swift test --quiet --filter PerformanceBaselineTests
|
||||||
|
|
||||||
|
# Order-of-magnitude performance regression gate. Floors are deliberately
|
||||||
|
# generous (see bitchatTests/Performance/perf-floors.json) so this
|
||||||
|
# catches algorithmic regressions, never runner variance. If a metric
|
||||||
|
# still lands below floor (a saturated runner can dip one), the script
|
||||||
|
# re-runs the benchmarks — appending to the same log and keeping each
|
||||||
|
# benchmark's best value per metric — so noise clears on retry while a
|
||||||
|
# real regression fails every attempt. Floors are never lowered by this.
|
||||||
|
- name: Performance floor gate
|
||||||
|
if: matrix.name == 'app'
|
||||||
|
timeout-minutes: 10
|
||||||
|
run: ./scripts/check-perf-floors.sh perf-output.log
|
||||||
|
|
||||||
|
# Informational only: surfaces per-file and total line coverage in the
|
||||||
|
# job log so coverage trends are visible on every PR. No thresholds —
|
||||||
|
# this must never be the reason a build goes red.
|
||||||
|
- name: Coverage summary
|
||||||
|
run: |
|
||||||
|
BIN_PATH=$(swift build --show-bin-path --package-path ${{ matrix.path }})
|
||||||
|
PROF="$BIN_PATH/codecov/default.profdata"
|
||||||
|
XCTEST=$(find "$BIN_PATH" -maxdepth 1 -name '*.xctest' | head -1)
|
||||||
|
BINARY="$XCTEST/Contents/MacOS/$(basename "$XCTEST" .xctest)"
|
||||||
|
if [ -f "$PROF" ] && [ -f "$BINARY" ]; then
|
||||||
|
xcrun llvm-cov report "$BINARY" -instr-profile "$PROF" \
|
||||||
|
-ignore-filename-regex='(Tests|\.build|checkouts|Mocks|_PreviewHelpers)' || true
|
||||||
|
else
|
||||||
|
echo "No coverage data found; skipping summary."
|
||||||
|
fi
|
||||||
|
|
||||||
|
# SPM tests above only compile the macOS slice; this job covers the
|
||||||
|
# iOS-conditional code paths (UIKit, CoreBluetooth restoration, etc.).
|
||||||
|
ios-build:
|
||||||
|
name: Build iOS app (simulator)
|
||||||
|
runs-on: macos-latest
|
||||||
|
timeout-minutes: 15
|
||||||
|
|
||||||
|
steps:
|
||||||
|
- name: Checkout code
|
||||||
|
uses: actions/checkout@v5
|
||||||
|
|
||||||
|
- name: Build iOS (simulator, no signing)
|
||||||
|
# arm64 only: the vendored arti.xcframework has no x86_64 simulator slice.
|
||||||
|
run: |
|
||||||
|
set -o pipefail
|
||||||
|
xcodebuild -project bitchat.xcodeproj \
|
||||||
|
-scheme "bitchat (iOS)" \
|
||||||
|
-sdk iphonesimulator \
|
||||||
|
-destination 'generic/platform=iOS Simulator' \
|
||||||
|
ARCHS=arm64 \
|
||||||
|
CODE_SIGNING_ALLOWED=NO \
|
||||||
|
build
|
||||||
|
|
||||||
|
# Advisory only: SwiftLint reports style violations without ever failing the
|
||||||
|
# build. Runs in a pinned container (no Xcode plugin, no pbxproj changes) so
|
||||||
|
# it can never break the documented xcodebuild path or block a merge.
|
||||||
|
lint:
|
||||||
|
name: SwiftLint (advisory)
|
||||||
|
runs-on: ubuntu-latest
|
||||||
|
timeout-minutes: 15
|
||||||
|
# This job runs a third-party container image, so give it the least
|
||||||
|
# privilege we can: a read-only token, and no credentials left in the
|
||||||
|
# checkout for the container to find.
|
||||||
|
permissions:
|
||||||
|
contents: read
|
||||||
|
container:
|
||||||
|
# Tag for readability, digest for immutability (tags can be repointed).
|
||||||
|
# Bump both together, deliberately — never a floating tag.
|
||||||
|
image: ghcr.io/realm/swiftlint:0.65.0@sha256:a482729f4b58741875af1566f23397f3f6db300372756fc31606d0a4527fab9e
|
||||||
|
continue-on-error: true
|
||||||
|
steps:
|
||||||
|
- uses: actions/checkout@v5
|
||||||
|
with:
|
||||||
|
persist-credentials: false
|
||||||
|
- name: Run SwiftLint
|
||||||
|
run: swiftlint lint --reporter github-actions-logging
|
||||||
|
|||||||
@@ -8,6 +8,7 @@ plans/
|
|||||||
## AI
|
## AI
|
||||||
CLAUDE.md
|
CLAUDE.md
|
||||||
AGENTS.md
|
AGENTS.md
|
||||||
|
.claude/
|
||||||
|
|
||||||
## compatibility with Xcode 8 and earlier (ignoring not required starting Xcode 9)
|
## compatibility with Xcode 8 and earlier (ignoring not required starting Xcode 9)
|
||||||
*.xcscmblueprint
|
*.xcscmblueprint
|
||||||
|
|||||||
@@ -0,0 +1,33 @@
|
|||||||
|
# Build artifacts and generated sources; keeps local `swiftlint` runs clean
|
||||||
|
# (CI checkouts are fresh, so this only matters in a working tree).
|
||||||
|
excluded:
|
||||||
|
- .build
|
||||||
|
- .swiftpm
|
||||||
|
- .DerivedData
|
||||||
|
- DerivedData
|
||||||
|
- build
|
||||||
|
- localPackages/*/.build
|
||||||
|
|
||||||
|
disabled_rules:
|
||||||
|
- line_length
|
||||||
|
- type_name
|
||||||
|
- identifier_name
|
||||||
|
- statement_position
|
||||||
|
- implicit_optional_initialization
|
||||||
|
- force_try
|
||||||
|
- vertical_whitespace
|
||||||
|
- for_where
|
||||||
|
- control_statement
|
||||||
|
- void_function_in_ternary
|
||||||
|
- redundant_discardable_let # SwiftUI breaks without it
|
||||||
|
# To be enabled as we fix the issues
|
||||||
|
- trailing_whitespace
|
||||||
|
- cyclomatic_complexity
|
||||||
|
- function_body_length
|
||||||
|
- function_parameter_count
|
||||||
|
- type_body_length
|
||||||
|
- file_length
|
||||||
|
- large_tuple
|
||||||
|
- force_cast
|
||||||
|
- multiple_closures_with_trailing_closure
|
||||||
|
- nesting
|
||||||
@@ -1,4 +1,4 @@
|
|||||||
MARKETING_VERSION = 1.5.1
|
MARKETING_VERSION = 1.5.3
|
||||||
CURRENT_PROJECT_VERSION = 1
|
CURRENT_PROJECT_VERSION = 1
|
||||||
|
|
||||||
IPHONEOS_DEPLOYMENT_TARGET = 16.0
|
IPHONEOS_DEPLOYMENT_TARGET = 16.0
|
||||||
@@ -9,3 +9,4 @@ DEVELOPMENT_TEAM = L3N5LHJD5Y
|
|||||||
CODE_SIGN_STYLE = Automatic
|
CODE_SIGN_STYLE = Automatic
|
||||||
|
|
||||||
PRODUCT_BUNDLE_IDENTIFIER = chat.bitchat
|
PRODUCT_BUNDLE_IDENTIFIER = chat.bitchat
|
||||||
|
APP_GROUP_ID = group.chat.bitchat
|
||||||
|
|||||||
+42
-16
@@ -1,6 +1,6 @@
|
|||||||
# bitchat Privacy Policy
|
# bitchat Privacy Policy
|
||||||
|
|
||||||
*Last updated: January 2025*
|
*Last updated: June 2026*
|
||||||
|
|
||||||
## Our Commitment
|
## Our Commitment
|
||||||
|
|
||||||
@@ -9,7 +9,7 @@ bitchat is designed with privacy as its foundation. We believe private communica
|
|||||||
## Summary
|
## Summary
|
||||||
|
|
||||||
- **No personal data collection** - We don't collect names, emails, or phone numbers
|
- **No personal data collection** - We don't collect names, emails, or phone numbers
|
||||||
- **No servers** - Everything happens on your device and through peer-to-peer connections
|
- **No accounts or company servers** - Mesh chat works peer-to-peer; optional Nostr features use public or user-selected relays
|
||||||
- **No tracking** - We have no analytics, telemetry, or user tracking
|
- **No tracking** - We have no analytics, telemetry, or user tracking
|
||||||
- **Open source** - You can verify these claims by reading our code
|
- **Open source** - You can verify these claims by reading our code
|
||||||
|
|
||||||
@@ -17,11 +17,11 @@ bitchat is designed with privacy as its foundation. We believe private communica
|
|||||||
|
|
||||||
### On Your Device Only
|
### On Your Device Only
|
||||||
|
|
||||||
1. **Identity Key**
|
1. **Identity Keys**
|
||||||
- A cryptographic key generated on first launch
|
- Cryptographic private keys generated on first launch or when optional Nostr identities are created
|
||||||
- Stored locally in your device's secure storage
|
- Stored locally in your device's secure storage
|
||||||
- Allows you to maintain "favorite" relationships across app restarts
|
- Allows you to maintain "favorite" relationships across app restarts
|
||||||
- Never leaves your device
|
- Private keys never leave your device; public keys are shared when needed for messaging
|
||||||
|
|
||||||
2. **Nickname**
|
2. **Nickname**
|
||||||
- The display name you choose (or auto-generated)
|
- The display name you choose (or auto-generated)
|
||||||
@@ -38,12 +38,19 @@ bitchat is designed with privacy as its foundation. We believe private communica
|
|||||||
- Stored only on your device
|
- Stored only on your device
|
||||||
- Allows you to recognize these peers in future sessions
|
- Allows you to recognize these peers in future sessions
|
||||||
|
|
||||||
|
5. **Optional Location Channel State**
|
||||||
|
- Your selected geohash channel, bookmarked geohashes, teleport flags, and bookmark display names
|
||||||
|
- Stored locally on your device so the location-channel UI can restore your choices
|
||||||
|
- Per-geohash Nostr identities are derived locally from a device seed stored in secure storage
|
||||||
|
- Exact latitude and longitude are not persisted by bitchat
|
||||||
|
|
||||||
### Temporary Session Data
|
### Temporary Session Data
|
||||||
|
|
||||||
During each session, bitchat temporarily maintains:
|
During each session, bitchat temporarily maintains:
|
||||||
- Active peer connections (forgotten when app closes)
|
- Active peer connections (forgotten when app closes)
|
||||||
- Routing information for message delivery
|
- Routing information for message delivery
|
||||||
- Cached messages for offline peers (12 hours max)
|
- Cached messages for offline peers (12 hours max)
|
||||||
|
- Your current location while optional location channels are enabled, used locally to compute geohash channels and friendly place names
|
||||||
|
|
||||||
## What Information is Shared
|
## What Information is Shared
|
||||||
|
|
||||||
@@ -62,13 +69,21 @@ When you join a password-protected room:
|
|||||||
- Your nickname appears in the member list
|
- Your nickname appears in the member list
|
||||||
- Room owners can see you've joined
|
- Room owners can see you've joined
|
||||||
|
|
||||||
|
### With Nostr Relays (Optional Features)
|
||||||
|
|
||||||
|
If you enable Nostr-backed features:
|
||||||
|
- Private fallback messages to mutual favorites are sent as encrypted NIP-17 gift wraps. Relays can see event metadata, but not message content.
|
||||||
|
- Public location-channel messages, location notes, and presence are scoped with geohash tags. Relays and other participants can see the geohash tag, event kind, timestamp, and public key used for that geohash.
|
||||||
|
- Exact GPS coordinates are not included in Nostr events by bitchat. The geohash precision you choose can still reveal an approximate area, from region-level to building-level.
|
||||||
|
- Automatic presence heartbeats are limited to low-precision geohashes (region, province, and city). More precise geohash posts happen only when you use those channels or location notes.
|
||||||
|
|
||||||
## What We DON'T Do
|
## What We DON'T Do
|
||||||
|
|
||||||
bitchat **never**:
|
bitchat **never**:
|
||||||
- Collects personal information
|
- Collects personal information
|
||||||
- Tracks your location
|
- Sells or shares your exact GPS location
|
||||||
- Stores data on servers
|
- Stores data on servers we operate
|
||||||
- Shares data with third parties
|
- Sells your data to advertisers or data brokers
|
||||||
- Uses analytics or telemetry
|
- Uses analytics or telemetry
|
||||||
- Creates user profiles
|
- Creates user profiles
|
||||||
- Requires registration
|
- Requires registration
|
||||||
@@ -84,19 +99,27 @@ All private messages use end-to-end encryption:
|
|||||||
## Your Rights
|
## Your Rights
|
||||||
|
|
||||||
You have complete control:
|
You have complete control:
|
||||||
- **Delete Everything**: Triple-tap the logo to instantly wipe all data
|
- **Delete Local State**: Triple-tap the logo to instantly wipe local keys, sessions, caches, and preferences
|
||||||
- **Leave Anytime**: Close the app and your presence disappears
|
- **Leave Anytime**: Close the app and local presence stops; relay-backed presence ages out
|
||||||
- **No Account**: Nothing to delete from servers because there are none
|
- **No Account**: No account record exists for you to delete from us
|
||||||
- **Portability**: Your data never leaves your device unless you export it
|
- **Portability**: Your local state stays on your device unless you send messages, use optional relay-backed features, or export it
|
||||||
|
|
||||||
## Bluetooth & Permissions
|
## Bluetooth & Permissions
|
||||||
|
|
||||||
bitchat requires Bluetooth permission to function:
|
bitchat requires Bluetooth permission to function:
|
||||||
- Used only for peer-to-peer communication
|
- Used only for peer-to-peer communication
|
||||||
- No location data is accessed or stored
|
|
||||||
- Bluetooth is not used for tracking
|
- Bluetooth is not used for tracking
|
||||||
- You can revoke this permission at any time in system settings
|
- You can revoke this permission at any time in system settings
|
||||||
|
|
||||||
|
## Location Permission
|
||||||
|
|
||||||
|
Location permission is optional and is used only for location channels:
|
||||||
|
- Used to compute local geohash channels and display names
|
||||||
|
- Requested as when-in-use permission
|
||||||
|
- Exact coordinates are not shared in messages or stored by bitchat
|
||||||
|
- Selected and bookmarked geohashes may persist locally until you remove them, use panic wipe, or delete the app
|
||||||
|
- You can revoke this permission at any time in system settings
|
||||||
|
|
||||||
## Children's Privacy
|
## Children's Privacy
|
||||||
|
|
||||||
bitchat does not knowingly collect information from children. The app has no age verification because it collects no personal information from anyone.
|
bitchat does not knowingly collect information from children. The app has no age verification because it collects no personal information from anyone.
|
||||||
@@ -106,12 +129,15 @@ bitchat does not knowingly collect information from children. The app has no age
|
|||||||
- **Messages**: Deleted from memory when app closes (unless room retention is enabled)
|
- **Messages**: Deleted from memory when app closes (unless room retention is enabled)
|
||||||
- **Identity Key**: Persists until you delete the app
|
- **Identity Key**: Persists until you delete the app
|
||||||
- **Favorites**: Persist until you remove them or delete the app
|
- **Favorites**: Persist until you remove them or delete the app
|
||||||
|
- **Location channel choices**: Selected/bookmarked geohashes persist locally until removed, panic-wiped, or the app is deleted
|
||||||
|
- **Nostr relay data**: Public geohash events and encrypted gift wraps may be retained by relays according to each relay's policy
|
||||||
- **Everything Else**: Exists only during active sessions
|
- **Everything Else**: Exists only during active sessions
|
||||||
|
|
||||||
## Security Measures
|
## Security Measures
|
||||||
|
|
||||||
- All communication is encrypted
|
- All communication is encrypted
|
||||||
- No data transmitted to servers (there are none)
|
- No accounts or company servers
|
||||||
|
- Optional Nostr relays receive only the events needed for Nostr-backed private fallback or public location channels
|
||||||
- Open source code for public audit
|
- Open source code for public audit
|
||||||
- Regular security updates
|
- Regular security updates
|
||||||
- Cryptographic signatures prevent tampering
|
- Cryptographic signatures prevent tampering
|
||||||
@@ -121,7 +147,7 @@ bitchat does not knowingly collect information from children. The app has no age
|
|||||||
If we update this policy:
|
If we update this policy:
|
||||||
- The "Last updated" date will change
|
- The "Last updated" date will change
|
||||||
- The updated policy will be included in the app
|
- The updated policy will be included in the app
|
||||||
- No retroactive changes can affect data (since we don't collect any)
|
- No retroactive changes can make us collect data already held only in your app
|
||||||
|
|
||||||
## Contact
|
## Contact
|
||||||
|
|
||||||
@@ -132,7 +158,7 @@ bitchat is an open source project. For privacy questions:
|
|||||||
|
|
||||||
## Philosophy
|
## Philosophy
|
||||||
|
|
||||||
Privacy isn't just a feature—it's the entire point. bitchat proves that modern communication doesn't require surrendering your privacy. No accounts, no servers, no surveillance. Just people talking freely.
|
Privacy isn't just a feature—it's the entire point. bitchat proves that modern communication doesn't require surrendering your privacy. No accounts, no company servers, no analytics. Just people talking freely.
|
||||||
|
|
||||||
---
|
---
|
||||||
|
|
||||||
|
|||||||
+16
-4
@@ -13,10 +13,11 @@ let package = Package(
|
|||||||
.executable(
|
.executable(
|
||||||
name: "bitchat",
|
name: "bitchat",
|
||||||
targets: ["bitchat"]
|
targets: ["bitchat"]
|
||||||
),
|
)
|
||||||
],
|
],
|
||||||
dependencies: [
|
dependencies: [
|
||||||
.package(path: "localPackages/Arti"),
|
.package(path: "localPackages/Arti"),
|
||||||
|
.package(path: "localPackages/BitFoundation"),
|
||||||
.package(path: "localPackages/BitLogger"),
|
.package(path: "localPackages/BitLogger"),
|
||||||
.package(url: "https://github.com/21-DOT-DEV/swift-secp256k1", exact: "0.21.1")
|
.package(url: "https://github.com/21-DOT-DEV/swift-secp256k1", exact: "0.21.1")
|
||||||
],
|
],
|
||||||
@@ -25,6 +26,7 @@ let package = Package(
|
|||||||
name: "bitchat",
|
name: "bitchat",
|
||||||
dependencies: [
|
dependencies: [
|
||||||
.product(name: "P256K", package: "swift-secp256k1"),
|
.product(name: "P256K", package: "swift-secp256k1"),
|
||||||
|
.product(name: "BitFoundation", package: "BitFoundation"),
|
||||||
.product(name: "BitLogger", package: "BitLogger"),
|
.product(name: "BitLogger", package: "BitLogger"),
|
||||||
.product(name: "Tor", package: "Arti")
|
.product(name: "Tor", package: "Arti")
|
||||||
],
|
],
|
||||||
@@ -32,6 +34,7 @@ let package = Package(
|
|||||||
exclude: [
|
exclude: [
|
||||||
"Info.plist",
|
"Info.plist",
|
||||||
"Assets.xcassets",
|
"Assets.xcassets",
|
||||||
|
"_PreviewHelpers/PreviewAssets.xcassets",
|
||||||
"bitchat.entitlements",
|
"bitchat.entitlements",
|
||||||
"bitchat-macOS.entitlements",
|
"bitchat-macOS.entitlements",
|
||||||
"LaunchScreen.storyboard",
|
"LaunchScreen.storyboard",
|
||||||
@@ -43,15 +46,24 @@ let package = Package(
|
|||||||
),
|
),
|
||||||
.testTarget(
|
.testTarget(
|
||||||
name: "bitchatTests",
|
name: "bitchatTests",
|
||||||
dependencies: ["bitchat"],
|
dependencies: [
|
||||||
|
"bitchat",
|
||||||
|
.product(name: "BitFoundation", package: "BitFoundation")
|
||||||
|
],
|
||||||
path: "bitchatTests",
|
path: "bitchatTests",
|
||||||
exclude: [
|
exclude: [
|
||||||
"Info.plist",
|
"Info.plist",
|
||||||
"README.md"
|
"README.md",
|
||||||
|
// CI perf gate data (read by scripts/check-perf-floors.sh),
|
||||||
|
// not a test resource.
|
||||||
|
"Performance/perf-floors.json"
|
||||||
],
|
],
|
||||||
resources: [
|
resources: [
|
||||||
.process("Localization"),
|
.process("Localization"),
|
||||||
.process("Noise")
|
// Only the vector fixture: declaring the whole "Noise"
|
||||||
|
// directory would claim its .swift test files as resources
|
||||||
|
// and silently drop them from compilation.
|
||||||
|
.process("Noise/NoiseTestVectors.json")
|
||||||
]
|
]
|
||||||
)
|
)
|
||||||
]
|
]
|
||||||
|
|||||||
Generated
+33
-15
@@ -10,6 +10,8 @@
|
|||||||
17901751FD8010AFC8E750F2 /* bitchatShareExtension.appex in Embed Foundation Extensions */ = {isa = PBXBuildFile; fileRef = 61F92EBA29C47C0FCC482F1F /* bitchatShareExtension.appex */; settings = {ATTRIBUTES = (RemoveHeadersOnCopy, ); }; };
|
17901751FD8010AFC8E750F2 /* bitchatShareExtension.appex in Embed Foundation Extensions */ = {isa = PBXBuildFile; fileRef = 61F92EBA29C47C0FCC482F1F /* bitchatShareExtension.appex */; settings = {ATTRIBUTES = (RemoveHeadersOnCopy, ); }; };
|
||||||
3EE336D150427F736F32B56C /* P256K in Frameworks */ = {isa = PBXBuildFile; productRef = B1D9136AA0083366353BFA2F /* P256K */; };
|
3EE336D150427F736F32B56C /* P256K in Frameworks */ = {isa = PBXBuildFile; productRef = B1D9136AA0083366353BFA2F /* P256K */; };
|
||||||
885BBED78092484A5B069461 /* P256K in Frameworks */ = {isa = PBXBuildFile; productRef = 4EB6BA1B8464F1EA38F4E286 /* P256K */; };
|
885BBED78092484A5B069461 /* P256K in Frameworks */ = {isa = PBXBuildFile; productRef = 4EB6BA1B8464F1EA38F4E286 /* P256K */; };
|
||||||
|
A6BCF9482F80953E001CF9B9 /* BitFoundation in Frameworks */ = {isa = PBXBuildFile; productRef = A6BCF9472F80953E001CF9B9 /* BitFoundation */; };
|
||||||
|
A6BCF94A2F809550001CF9B9 /* BitFoundation in Frameworks */ = {isa = PBXBuildFile; productRef = A6BCF9492F809550001CF9B9 /* BitFoundation */; };
|
||||||
A6E3E5702E77036A0032EA8A /* BitLogger in Frameworks */ = {isa = PBXBuildFile; productRef = A6E3E56F2E77036A0032EA8A /* BitLogger */; };
|
A6E3E5702E77036A0032EA8A /* BitLogger in Frameworks */ = {isa = PBXBuildFile; productRef = A6E3E56F2E77036A0032EA8A /* BitLogger */; };
|
||||||
A6E3E5722E7703760032EA8A /* BitLogger in Frameworks */ = {isa = PBXBuildFile; productRef = A6E3E5712E7703760032EA8A /* BitLogger */; };
|
A6E3E5722E7703760032EA8A /* BitLogger in Frameworks */ = {isa = PBXBuildFile; productRef = A6E3E5712E7703760032EA8A /* BitLogger */; };
|
||||||
A6E3EA7F2E7706720032EA8A /* Tor in Frameworks */ = {isa = PBXBuildFile; productRef = A6E3EA7E2E7706720032EA8A /* Tor */; };
|
A6E3EA7F2E7706720032EA8A /* Tor in Frameworks */ = {isa = PBXBuildFile; productRef = A6E3EA7E2E7706720032EA8A /* Tor */; };
|
||||||
@@ -156,6 +158,7 @@
|
|||||||
A6E3E5722E7703760032EA8A /* BitLogger in Frameworks */,
|
A6E3E5722E7703760032EA8A /* BitLogger in Frameworks */,
|
||||||
3EE336D150427F736F32B56C /* P256K in Frameworks */,
|
3EE336D150427F736F32B56C /* P256K in Frameworks */,
|
||||||
A6E3EA812E7706A80032EA8A /* Tor in Frameworks */,
|
A6E3EA812E7706A80032EA8A /* Tor in Frameworks */,
|
||||||
|
A6BCF94A2F809550001CF9B9 /* BitFoundation in Frameworks */,
|
||||||
);
|
);
|
||||||
};
|
};
|
||||||
B5A5CC493FFB3D8966548140 /* Frameworks */ = {
|
B5A5CC493FFB3D8966548140 /* Frameworks */ = {
|
||||||
@@ -164,6 +167,7 @@
|
|||||||
A6E3E5702E77036A0032EA8A /* BitLogger in Frameworks */,
|
A6E3E5702E77036A0032EA8A /* BitLogger in Frameworks */,
|
||||||
885BBED78092484A5B069461 /* P256K in Frameworks */,
|
885BBED78092484A5B069461 /* P256K in Frameworks */,
|
||||||
A6E3EA7F2E7706720032EA8A /* Tor in Frameworks */,
|
A6E3EA7F2E7706720032EA8A /* Tor in Frameworks */,
|
||||||
|
A6BCF9482F80953E001CF9B9 /* BitFoundation in Frameworks */,
|
||||||
);
|
);
|
||||||
};
|
};
|
||||||
/* End PBXFrameworksBuildPhase section */
|
/* End PBXFrameworksBuildPhase section */
|
||||||
@@ -223,6 +227,7 @@
|
|||||||
B1D9136AA0083366353BFA2F /* P256K */,
|
B1D9136AA0083366353BFA2F /* P256K */,
|
||||||
A6E3E5712E7703760032EA8A /* BitLogger */,
|
A6E3E5712E7703760032EA8A /* BitLogger */,
|
||||||
A6E3EA802E7706A80032EA8A /* Tor */,
|
A6E3EA802E7706A80032EA8A /* Tor */,
|
||||||
|
A6BCF9492F809550001CF9B9 /* BitFoundation */,
|
||||||
);
|
);
|
||||||
productName = bitchat_macOS;
|
productName = bitchat_macOS;
|
||||||
productReference = 8F3A7C058C2C8E1A06C8CF8B /* bitchat.app */;
|
productReference = 8F3A7C058C2C8E1A06C8CF8B /* bitchat.app */;
|
||||||
@@ -303,6 +308,7 @@
|
|||||||
4EB6BA1B8464F1EA38F4E286 /* P256K */,
|
4EB6BA1B8464F1EA38F4E286 /* P256K */,
|
||||||
A6E3E56F2E77036A0032EA8A /* BitLogger */,
|
A6E3E56F2E77036A0032EA8A /* BitLogger */,
|
||||||
A6E3EA7E2E7706720032EA8A /* Tor */,
|
A6E3EA7E2E7706720032EA8A /* Tor */,
|
||||||
|
A6BCF9472F80953E001CF9B9 /* BitFoundation */,
|
||||||
);
|
);
|
||||||
productName = bitchat_iOS;
|
productName = bitchat_iOS;
|
||||||
productReference = 96D0D41CA19EE5A772AA8434 /* bitchat.app */;
|
productReference = 96D0D41CA19EE5A772AA8434 /* bitchat.app */;
|
||||||
@@ -315,7 +321,7 @@
|
|||||||
isa = PBXProject;
|
isa = PBXProject;
|
||||||
attributes = {
|
attributes = {
|
||||||
BuildIndependentTargetsInParallel = YES;
|
BuildIndependentTargetsInParallel = YES;
|
||||||
LastUpgradeCheck = 1640;
|
LastUpgradeCheck = 2650;
|
||||||
};
|
};
|
||||||
buildConfigurationList = 3EA424CBD51200895D361189 /* Build configuration list for PBXProject "bitchat" */;
|
buildConfigurationList = 3EA424CBD51200895D361189 /* Build configuration list for PBXProject "bitchat" */;
|
||||||
developmentRegion = en;
|
developmentRegion = en;
|
||||||
@@ -344,6 +350,7 @@
|
|||||||
B8C407587481BBB190741C93 /* XCRemoteSwiftPackageReference "swift-secp256k1" */,
|
B8C407587481BBB190741C93 /* XCRemoteSwiftPackageReference "swift-secp256k1" */,
|
||||||
A6E3E56E2E77036A0032EA8A /* XCLocalSwiftPackageReference "localPackages/BitLogger" */,
|
A6E3E56E2E77036A0032EA8A /* XCLocalSwiftPackageReference "localPackages/BitLogger" */,
|
||||||
A6E3EA7D2E7706720032EA8A /* XCLocalSwiftPackageReference "localPackages/Arti" */,
|
A6E3EA7D2E7706720032EA8A /* XCLocalSwiftPackageReference "localPackages/Arti" */,
|
||||||
|
A6BCF9462F80953E001CF9B9 /* XCLocalSwiftPackageReference "localPackages/BitFoundation" */,
|
||||||
);
|
);
|
||||||
preferredProjectObjectVersion = 90;
|
preferredProjectObjectVersion = 90;
|
||||||
projectDirPath = "";
|
projectDirPath = "";
|
||||||
@@ -439,7 +446,6 @@
|
|||||||
CODE_SIGNING_ALLOWED = YES;
|
CODE_SIGNING_ALLOWED = YES;
|
||||||
CODE_SIGNING_REQUIRED = YES;
|
CODE_SIGNING_REQUIRED = YES;
|
||||||
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
||||||
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
|
||||||
INFOPLIST_FILE = bitchatTests/Info.plist;
|
INFOPLIST_FILE = bitchatTests/Info.plist;
|
||||||
IPHONEOS_DEPLOYMENT_TARGET = "$(IPHONEOS_DEPLOYMENT_TARGET)";
|
IPHONEOS_DEPLOYMENT_TARGET = "$(IPHONEOS_DEPLOYMENT_TARGET)";
|
||||||
LD_RUNPATH_SEARCH_PATHS = (
|
LD_RUNPATH_SEARCH_PATHS = (
|
||||||
@@ -464,7 +470,6 @@
|
|||||||
CODE_SIGNING_ALLOWED = YES;
|
CODE_SIGNING_ALLOWED = YES;
|
||||||
CODE_SIGNING_REQUIRED = YES;
|
CODE_SIGNING_REQUIRED = YES;
|
||||||
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
||||||
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
|
||||||
INFOPLIST_FILE = bitchatTests/Info.plist;
|
INFOPLIST_FILE = bitchatTests/Info.plist;
|
||||||
IPHONEOS_DEPLOYMENT_TARGET = "$(IPHONEOS_DEPLOYMENT_TARGET)";
|
IPHONEOS_DEPLOYMENT_TARGET = "$(IPHONEOS_DEPLOYMENT_TARGET)";
|
||||||
LD_RUNPATH_SEARCH_PATHS = (
|
LD_RUNPATH_SEARCH_PATHS = (
|
||||||
@@ -491,7 +496,6 @@
|
|||||||
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
||||||
COMBINE_HIDPI_IMAGES = YES;
|
COMBINE_HIDPI_IMAGES = YES;
|
||||||
DEAD_CODE_STRIPPING = YES;
|
DEAD_CODE_STRIPPING = YES;
|
||||||
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
|
||||||
INFOPLIST_FILE = bitchatTests/Info.plist;
|
INFOPLIST_FILE = bitchatTests/Info.plist;
|
||||||
LD_RUNPATH_SEARCH_PATHS = (
|
LD_RUNPATH_SEARCH_PATHS = (
|
||||||
"$(inherited)",
|
"$(inherited)",
|
||||||
@@ -516,7 +520,6 @@
|
|||||||
CODE_SIGN_ALLOW_ENTITLEMENTS_MODIFICATION = YES;
|
CODE_SIGN_ALLOW_ENTITLEMENTS_MODIFICATION = YES;
|
||||||
CODE_SIGN_ENTITLEMENTS = bitchatShareExtension/bitchatShareExtension.entitlements;
|
CODE_SIGN_ENTITLEMENTS = bitchatShareExtension/bitchatShareExtension.entitlements;
|
||||||
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
||||||
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
|
||||||
INFOPLIST_FILE = bitchatShareExtension/Info.plist;
|
INFOPLIST_FILE = bitchatShareExtension/Info.plist;
|
||||||
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
||||||
IPHONEOS_DEPLOYMENT_TARGET = "$(IPHONEOS_DEPLOYMENT_TARGET)";
|
IPHONEOS_DEPLOYMENT_TARGET = "$(IPHONEOS_DEPLOYMENT_TARGET)";
|
||||||
@@ -548,7 +551,7 @@
|
|||||||
CODE_SIGNING_REQUIRED = YES;
|
CODE_SIGNING_REQUIRED = YES;
|
||||||
CODE_SIGN_ENTITLEMENTS = bitchat/bitchat.entitlements;
|
CODE_SIGN_ENTITLEMENTS = bitchat/bitchat.entitlements;
|
||||||
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
||||||
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
DEVELOPMENT_ASSET_PATHS = bitchat/_PreviewHelpers;
|
||||||
ENABLE_PREVIEWS = NO;
|
ENABLE_PREVIEWS = NO;
|
||||||
INFOPLIST_FILE = bitchat/Info.plist;
|
INFOPLIST_FILE = bitchat/Info.plist;
|
||||||
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
||||||
@@ -558,7 +561,7 @@
|
|||||||
"$(inherited)",
|
"$(inherited)",
|
||||||
"@executable_path/Frameworks",
|
"@executable_path/Frameworks",
|
||||||
);
|
);
|
||||||
MARKETING_VERSION = "$(MARKETING_VERSION)";
|
MARKETING_VERSION = 1.5.3;
|
||||||
PRODUCT_BUNDLE_IDENTIFIER = "$(PRODUCT_BUNDLE_IDENTIFIER)";
|
PRODUCT_BUNDLE_IDENTIFIER = "$(PRODUCT_BUNDLE_IDENTIFIER)";
|
||||||
PRODUCT_NAME = bitchat;
|
PRODUCT_NAME = bitchat;
|
||||||
SDKROOT = iphoneos;
|
SDKROOT = iphoneos;
|
||||||
@@ -582,7 +585,6 @@
|
|||||||
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
||||||
COMBINE_HIDPI_IMAGES = YES;
|
COMBINE_HIDPI_IMAGES = YES;
|
||||||
DEAD_CODE_STRIPPING = YES;
|
DEAD_CODE_STRIPPING = YES;
|
||||||
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
|
||||||
INFOPLIST_FILE = bitchatTests/Info.plist;
|
INFOPLIST_FILE = bitchatTests/Info.plist;
|
||||||
LD_RUNPATH_SEARCH_PATHS = (
|
LD_RUNPATH_SEARCH_PATHS = (
|
||||||
"$(inherited)",
|
"$(inherited)",
|
||||||
@@ -608,7 +610,7 @@
|
|||||||
CODE_SIGNING_REQUIRED = YES;
|
CODE_SIGNING_REQUIRED = YES;
|
||||||
CODE_SIGN_ENTITLEMENTS = bitchat/bitchat.entitlements;
|
CODE_SIGN_ENTITLEMENTS = bitchat/bitchat.entitlements;
|
||||||
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
||||||
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
DEVELOPMENT_ASSET_PATHS = bitchat/_PreviewHelpers;
|
||||||
ENABLE_PREVIEWS = YES;
|
ENABLE_PREVIEWS = YES;
|
||||||
INFOPLIST_FILE = bitchat/Info.plist;
|
INFOPLIST_FILE = bitchat/Info.plist;
|
||||||
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
||||||
@@ -618,7 +620,7 @@
|
|||||||
"$(inherited)",
|
"$(inherited)",
|
||||||
"@executable_path/Frameworks",
|
"@executable_path/Frameworks",
|
||||||
);
|
);
|
||||||
MARKETING_VERSION = "$(MARKETING_VERSION)";
|
MARKETING_VERSION = 1.5.3;
|
||||||
PRODUCT_BUNDLE_IDENTIFIER = "$(PRODUCT_BUNDLE_IDENTIFIER)";
|
PRODUCT_BUNDLE_IDENTIFIER = "$(PRODUCT_BUNDLE_IDENTIFIER)";
|
||||||
PRODUCT_NAME = bitchat;
|
PRODUCT_NAME = bitchat;
|
||||||
SDKROOT = iphoneos;
|
SDKROOT = iphoneos;
|
||||||
@@ -644,7 +646,6 @@
|
|||||||
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
||||||
COMBINE_HIDPI_IMAGES = YES;
|
COMBINE_HIDPI_IMAGES = YES;
|
||||||
DEAD_CODE_STRIPPING = YES;
|
DEAD_CODE_STRIPPING = YES;
|
||||||
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
|
||||||
ENABLE_PREVIEWS = YES;
|
ENABLE_PREVIEWS = YES;
|
||||||
INFOPLIST_FILE = bitchat/Info.plist;
|
INFOPLIST_FILE = bitchat/Info.plist;
|
||||||
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
||||||
@@ -654,7 +655,7 @@
|
|||||||
"@executable_path/../Frameworks",
|
"@executable_path/../Frameworks",
|
||||||
);
|
);
|
||||||
MACOSX_DEPLOYMENT_TARGET = "$(MACOSX_DEPLOYMENT_TARGET)";
|
MACOSX_DEPLOYMENT_TARGET = "$(MACOSX_DEPLOYMENT_TARGET)";
|
||||||
MARKETING_VERSION = "$(MARKETING_VERSION)";
|
MARKETING_VERSION = 1.5.3;
|
||||||
PRODUCT_BUNDLE_IDENTIFIER = "$(PRODUCT_BUNDLE_IDENTIFIER)";
|
PRODUCT_BUNDLE_IDENTIFIER = "$(PRODUCT_BUNDLE_IDENTIFIER)";
|
||||||
PRODUCT_NAME = bitchat;
|
PRODUCT_NAME = bitchat;
|
||||||
REGISTER_APP_GROUPS = YES;
|
REGISTER_APP_GROUPS = YES;
|
||||||
@@ -667,6 +668,7 @@
|
|||||||
isa = XCBuildConfiguration;
|
isa = XCBuildConfiguration;
|
||||||
buildSettings = {
|
buildSettings = {
|
||||||
ALWAYS_SEARCH_USER_PATHS = NO;
|
ALWAYS_SEARCH_USER_PATHS = NO;
|
||||||
|
CLANG_ANALYZER_LOCALIZABILITY_NONLOCALIZED = YES;
|
||||||
CLANG_ANALYZER_NONNULL = YES;
|
CLANG_ANALYZER_NONNULL = YES;
|
||||||
CLANG_ANALYZER_NUMBER_OBJECT_CONVERSION = YES_AGGRESSIVE;
|
CLANG_ANALYZER_NUMBER_OBJECT_CONVERSION = YES_AGGRESSIVE;
|
||||||
CLANG_CXX_LANGUAGE_STANDARD = "gnu++14";
|
CLANG_CXX_LANGUAGE_STANDARD = "gnu++14";
|
||||||
@@ -700,6 +702,7 @@
|
|||||||
CURRENT_PROJECT_VERSION = "$(CURRENT_PROJECT_VERSION)";
|
CURRENT_PROJECT_VERSION = "$(CURRENT_PROJECT_VERSION)";
|
||||||
DEAD_CODE_STRIPPING = YES;
|
DEAD_CODE_STRIPPING = YES;
|
||||||
DEBUG_INFORMATION_FORMAT = "dwarf-with-dsym";
|
DEBUG_INFORMATION_FORMAT = "dwarf-with-dsym";
|
||||||
|
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
||||||
ENABLE_NS_ASSERTIONS = NO;
|
ENABLE_NS_ASSERTIONS = NO;
|
||||||
ENABLE_STRICT_OBJC_MSGSEND = YES;
|
ENABLE_STRICT_OBJC_MSGSEND = YES;
|
||||||
ENABLE_USER_SCRIPT_SANDBOXING = YES;
|
ENABLE_USER_SCRIPT_SANDBOXING = YES;
|
||||||
@@ -717,6 +720,7 @@
|
|||||||
MTL_ENABLE_DEBUG_INFO = NO;
|
MTL_ENABLE_DEBUG_INFO = NO;
|
||||||
MTL_FAST_MATH = YES;
|
MTL_FAST_MATH = YES;
|
||||||
PRODUCT_NAME = "$(TARGET_NAME)";
|
PRODUCT_NAME = "$(TARGET_NAME)";
|
||||||
|
STRING_CATALOG_GENERATE_SYMBOLS = NO;
|
||||||
SWIFT_COMPILATION_MODE = wholemodule;
|
SWIFT_COMPILATION_MODE = wholemodule;
|
||||||
SWIFT_OPTIMIZATION_LEVEL = "-O";
|
SWIFT_OPTIMIZATION_LEVEL = "-O";
|
||||||
SWIFT_VERSION = "$(SWIFT_VERSION)";
|
SWIFT_VERSION = "$(SWIFT_VERSION)";
|
||||||
@@ -736,7 +740,6 @@
|
|||||||
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
||||||
COMBINE_HIDPI_IMAGES = YES;
|
COMBINE_HIDPI_IMAGES = YES;
|
||||||
DEAD_CODE_STRIPPING = YES;
|
DEAD_CODE_STRIPPING = YES;
|
||||||
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
|
||||||
ENABLE_PREVIEWS = NO;
|
ENABLE_PREVIEWS = NO;
|
||||||
INFOPLIST_FILE = bitchat/Info.plist;
|
INFOPLIST_FILE = bitchat/Info.plist;
|
||||||
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
||||||
@@ -746,7 +749,7 @@
|
|||||||
"@executable_path/../Frameworks",
|
"@executable_path/../Frameworks",
|
||||||
);
|
);
|
||||||
MACOSX_DEPLOYMENT_TARGET = "$(MACOSX_DEPLOYMENT_TARGET)";
|
MACOSX_DEPLOYMENT_TARGET = "$(MACOSX_DEPLOYMENT_TARGET)";
|
||||||
MARKETING_VERSION = "$(MARKETING_VERSION)";
|
MARKETING_VERSION = 1.5.3;
|
||||||
PRODUCT_BUNDLE_IDENTIFIER = "$(PRODUCT_BUNDLE_IDENTIFIER)";
|
PRODUCT_BUNDLE_IDENTIFIER = "$(PRODUCT_BUNDLE_IDENTIFIER)";
|
||||||
PRODUCT_NAME = bitchat;
|
PRODUCT_NAME = bitchat;
|
||||||
REGISTER_APP_GROUPS = YES;
|
REGISTER_APP_GROUPS = YES;
|
||||||
@@ -759,6 +762,7 @@
|
|||||||
isa = XCBuildConfiguration;
|
isa = XCBuildConfiguration;
|
||||||
buildSettings = {
|
buildSettings = {
|
||||||
ALWAYS_SEARCH_USER_PATHS = NO;
|
ALWAYS_SEARCH_USER_PATHS = NO;
|
||||||
|
CLANG_ANALYZER_LOCALIZABILITY_NONLOCALIZED = YES;
|
||||||
CLANG_ANALYZER_NONNULL = YES;
|
CLANG_ANALYZER_NONNULL = YES;
|
||||||
CLANG_ANALYZER_NUMBER_OBJECT_CONVERSION = YES_AGGRESSIVE;
|
CLANG_ANALYZER_NUMBER_OBJECT_CONVERSION = YES_AGGRESSIVE;
|
||||||
CLANG_CXX_LANGUAGE_STANDARD = "gnu++14";
|
CLANG_CXX_LANGUAGE_STANDARD = "gnu++14";
|
||||||
@@ -792,6 +796,7 @@
|
|||||||
CURRENT_PROJECT_VERSION = "$(CURRENT_PROJECT_VERSION)";
|
CURRENT_PROJECT_VERSION = "$(CURRENT_PROJECT_VERSION)";
|
||||||
DEAD_CODE_STRIPPING = YES;
|
DEAD_CODE_STRIPPING = YES;
|
||||||
DEBUG_INFORMATION_FORMAT = dwarf;
|
DEBUG_INFORMATION_FORMAT = dwarf;
|
||||||
|
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
||||||
ENABLE_STRICT_OBJC_MSGSEND = YES;
|
ENABLE_STRICT_OBJC_MSGSEND = YES;
|
||||||
ENABLE_TESTABILITY = YES;
|
ENABLE_TESTABILITY = YES;
|
||||||
ENABLE_USER_SCRIPT_SANDBOXING = YES;
|
ENABLE_USER_SCRIPT_SANDBOXING = YES;
|
||||||
@@ -816,6 +821,7 @@
|
|||||||
MTL_FAST_MATH = YES;
|
MTL_FAST_MATH = YES;
|
||||||
ONLY_ACTIVE_ARCH = YES;
|
ONLY_ACTIVE_ARCH = YES;
|
||||||
PRODUCT_NAME = "$(TARGET_NAME)";
|
PRODUCT_NAME = "$(TARGET_NAME)";
|
||||||
|
STRING_CATALOG_GENERATE_SYMBOLS = NO;
|
||||||
SWIFT_ACTIVE_COMPILATION_CONDITIONS = DEBUG;
|
SWIFT_ACTIVE_COMPILATION_CONDITIONS = DEBUG;
|
||||||
SWIFT_OPTIMIZATION_LEVEL = "-Onone";
|
SWIFT_OPTIMIZATION_LEVEL = "-Onone";
|
||||||
SWIFT_VERSION = "$(SWIFT_VERSION)";
|
SWIFT_VERSION = "$(SWIFT_VERSION)";
|
||||||
@@ -832,7 +838,6 @@
|
|||||||
CODE_SIGN_ALLOW_ENTITLEMENTS_MODIFICATION = YES;
|
CODE_SIGN_ALLOW_ENTITLEMENTS_MODIFICATION = YES;
|
||||||
CODE_SIGN_ENTITLEMENTS = bitchatShareExtension/bitchatShareExtension.entitlements;
|
CODE_SIGN_ENTITLEMENTS = bitchatShareExtension/bitchatShareExtension.entitlements;
|
||||||
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
CODE_SIGN_STYLE = "$(CODE_SIGN_STYLE)";
|
||||||
DEVELOPMENT_TEAM = "$(DEVELOPMENT_TEAM)";
|
|
||||||
INFOPLIST_FILE = bitchatShareExtension/Info.plist;
|
INFOPLIST_FILE = bitchatShareExtension/Info.plist;
|
||||||
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
INFOPLIST_KEY_CFBundleDisplayName = bitchat;
|
||||||
IPHONEOS_DEPLOYMENT_TARGET = "$(IPHONEOS_DEPLOYMENT_TARGET)";
|
IPHONEOS_DEPLOYMENT_TARGET = "$(IPHONEOS_DEPLOYMENT_TARGET)";
|
||||||
@@ -907,6 +912,10 @@
|
|||||||
/* End XCConfigurationList section */
|
/* End XCConfigurationList section */
|
||||||
|
|
||||||
/* Begin XCLocalSwiftPackageReference section */
|
/* Begin XCLocalSwiftPackageReference section */
|
||||||
|
A6BCF9462F80953E001CF9B9 /* XCLocalSwiftPackageReference "localPackages/BitFoundation" */ = {
|
||||||
|
isa = XCLocalSwiftPackageReference;
|
||||||
|
relativePath = localPackages/BitFoundation;
|
||||||
|
};
|
||||||
A6E3E56E2E77036A0032EA8A /* XCLocalSwiftPackageReference "localPackages/BitLogger" */ = {
|
A6E3E56E2E77036A0032EA8A /* XCLocalSwiftPackageReference "localPackages/BitLogger" */ = {
|
||||||
isa = XCLocalSwiftPackageReference;
|
isa = XCLocalSwiftPackageReference;
|
||||||
relativePath = localPackages/BitLogger;
|
relativePath = localPackages/BitLogger;
|
||||||
@@ -934,6 +943,15 @@
|
|||||||
package = B8C407587481BBB190741C93 /* XCRemoteSwiftPackageReference "swift-secp256k1" */;
|
package = B8C407587481BBB190741C93 /* XCRemoteSwiftPackageReference "swift-secp256k1" */;
|
||||||
productName = P256K;
|
productName = P256K;
|
||||||
};
|
};
|
||||||
|
A6BCF9472F80953E001CF9B9 /* BitFoundation */ = {
|
||||||
|
isa = XCSwiftPackageProductDependency;
|
||||||
|
productName = BitFoundation;
|
||||||
|
};
|
||||||
|
A6BCF9492F809550001CF9B9 /* BitFoundation */ = {
|
||||||
|
isa = XCSwiftPackageProductDependency;
|
||||||
|
package = A6BCF9462F80953E001CF9B9 /* XCLocalSwiftPackageReference "localPackages/BitFoundation" */;
|
||||||
|
productName = BitFoundation;
|
||||||
|
};
|
||||||
A6E3E56F2E77036A0032EA8A /* BitLogger */ = {
|
A6E3E56F2E77036A0032EA8A /* BitLogger */ = {
|
||||||
isa = XCSwiftPackageProductDependency;
|
isa = XCSwiftPackageProductDependency;
|
||||||
productName = BitLogger;
|
productName = BitLogger;
|
||||||
|
|||||||
@@ -1,6 +1,6 @@
|
|||||||
<?xml version="1.0" encoding="UTF-8"?>
|
<?xml version="1.0" encoding="UTF-8"?>
|
||||||
<Scheme
|
<Scheme
|
||||||
LastUpgradeVersion = "1640"
|
LastUpgradeVersion = "2650"
|
||||||
version = "1.3">
|
version = "1.3">
|
||||||
<BuildAction
|
<BuildAction
|
||||||
parallelizeBuildables = "YES"
|
parallelizeBuildables = "YES"
|
||||||
|
|||||||
@@ -1,6 +1,6 @@
|
|||||||
<?xml version="1.0" encoding="UTF-8"?>
|
<?xml version="1.0" encoding="UTF-8"?>
|
||||||
<Scheme
|
<Scheme
|
||||||
LastUpgradeVersion = "1640"
|
LastUpgradeVersion = "2650"
|
||||||
version = "1.3">
|
version = "1.3">
|
||||||
<BuildAction
|
<BuildAction
|
||||||
parallelizeBuildables = "YES"
|
parallelizeBuildables = "YES"
|
||||||
|
|||||||
@@ -0,0 +1,102 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Combine
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum SharedContentKind: String, Sendable, Equatable {
|
||||||
|
case text
|
||||||
|
case url
|
||||||
|
}
|
||||||
|
|
||||||
|
enum RuntimeScenePhase: String, Sendable, Equatable {
|
||||||
|
case active
|
||||||
|
case inactive
|
||||||
|
case background
|
||||||
|
}
|
||||||
|
|
||||||
|
enum TorLifecycleEvent: String, Sendable, Equatable {
|
||||||
|
case willStart
|
||||||
|
case willRestart
|
||||||
|
case didBecomeReady
|
||||||
|
case preferenceChanged
|
||||||
|
}
|
||||||
|
|
||||||
|
enum AppEvent: Sendable, Equatable {
|
||||||
|
case launched
|
||||||
|
case startupCompleted
|
||||||
|
case scenePhaseChanged(RuntimeScenePhase)
|
||||||
|
case openedURL(String)
|
||||||
|
case sharedContentAccepted(SharedContentKind)
|
||||||
|
case notificationOpened(peerID: PeerID?)
|
||||||
|
case deepLinkOpened(String)
|
||||||
|
case torLifecycleChanged(TorLifecycleEvent)
|
||||||
|
case nostrRelayConnectionChanged(Bool)
|
||||||
|
case terminationRequested
|
||||||
|
}
|
||||||
|
|
||||||
|
actor AppEventStream {
|
||||||
|
private var continuations: [UUID: AsyncStream<AppEvent>.Continuation] = [:]
|
||||||
|
|
||||||
|
func stream() -> AsyncStream<AppEvent> {
|
||||||
|
let id = UUID()
|
||||||
|
return AsyncStream { continuation in
|
||||||
|
continuations[id] = continuation
|
||||||
|
continuation.onTermination = { [id] _ in
|
||||||
|
Task {
|
||||||
|
await self.removeContinuation(id)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func emit(_ event: AppEvent) {
|
||||||
|
for continuation in continuations.values {
|
||||||
|
continuation.yield(event)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func finish() {
|
||||||
|
for continuation in continuations.values {
|
||||||
|
continuation.finish()
|
||||||
|
}
|
||||||
|
continuations.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
private func removeContinuation(_ id: UUID) {
|
||||||
|
continuations.removeValue(forKey: id)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Identity key for a direct conversation. Equality and hashing use the
|
||||||
|
/// canonical `id` only; `routingPeerID` carries the transport-level peer ID
|
||||||
|
/// the conversation is keyed under (see `ConversationID.directPeer`).
|
||||||
|
struct PeerHandle: Sendable, Identifiable {
|
||||||
|
let id: String
|
||||||
|
let routingPeerID: PeerID
|
||||||
|
}
|
||||||
|
|
||||||
|
extension PeerHandle: Equatable {
|
||||||
|
static func == (lhs: PeerHandle, rhs: PeerHandle) -> Bool {
|
||||||
|
lhs.id == rhs.id
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
extension PeerHandle: Hashable {
|
||||||
|
func hash(into hasher: inout Hasher) {
|
||||||
|
hasher.combine(id)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
enum ConversationID: Hashable, Sendable {
|
||||||
|
case mesh
|
||||||
|
case geohash(String)
|
||||||
|
case direct(PeerHandle)
|
||||||
|
|
||||||
|
init(channelID: ChannelID) {
|
||||||
|
switch channelID {
|
||||||
|
case .mesh:
|
||||||
|
self = .mesh
|
||||||
|
case .location(let channel):
|
||||||
|
self = .geohash(channel.geohash.lowercased())
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,100 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Combine
|
||||||
|
import CoreBluetooth
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
@MainActor
|
||||||
|
final class AppChromeModel: ObservableObject {
|
||||||
|
@Published private(set) var hasUnreadPrivateMessages = false
|
||||||
|
@Published var nickname: String
|
||||||
|
@Published var showingFingerprintFor: PeerID?
|
||||||
|
@Published var isAppInfoPresented = false
|
||||||
|
@Published var isLocationChannelsSheetPresented = false
|
||||||
|
@Published var showBluetoothAlert = false
|
||||||
|
@Published var bluetoothAlertMessage = ""
|
||||||
|
@Published var bluetoothState: CBManagerState = .unknown
|
||||||
|
@Published var showScreenshotPrivacyWarning = false
|
||||||
|
|
||||||
|
private let chatViewModel: ChatViewModel
|
||||||
|
private var cancellables = Set<AnyCancellable>()
|
||||||
|
|
||||||
|
init(chatViewModel: ChatViewModel, privateInboxModel: PrivateInboxModel) {
|
||||||
|
self.chatViewModel = chatViewModel
|
||||||
|
self.nickname = chatViewModel.nickname
|
||||||
|
|
||||||
|
bind(privateInboxModel: privateInboxModel)
|
||||||
|
}
|
||||||
|
|
||||||
|
var shouldSuppressScreenshotNotification: Bool {
|
||||||
|
isLocationChannelsSheetPresented || isAppInfoPresented
|
||||||
|
}
|
||||||
|
|
||||||
|
func setNickname(_ nickname: String) {
|
||||||
|
self.nickname = nickname
|
||||||
|
if chatViewModel.nickname != nickname {
|
||||||
|
chatViewModel.nickname = nickname
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func validateAndSaveNickname() {
|
||||||
|
chatViewModel.validateAndSaveNickname()
|
||||||
|
if nickname != chatViewModel.nickname {
|
||||||
|
nickname = chatViewModel.nickname
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func openMostRelevantPrivateChat() {
|
||||||
|
chatViewModel.openMostRelevantPrivateChat()
|
||||||
|
}
|
||||||
|
|
||||||
|
func showFingerprint(for peerID: PeerID) {
|
||||||
|
showingFingerprintFor = peerID
|
||||||
|
}
|
||||||
|
|
||||||
|
func clearFingerprint() {
|
||||||
|
showingFingerprintFor = nil
|
||||||
|
}
|
||||||
|
|
||||||
|
func presentAppInfo() {
|
||||||
|
isAppInfoPresented = true
|
||||||
|
}
|
||||||
|
|
||||||
|
func triggerScreenshotPrivacyWarning() {
|
||||||
|
showScreenshotPrivacyWarning = true
|
||||||
|
}
|
||||||
|
|
||||||
|
func panicClearAllData() {
|
||||||
|
chatViewModel.panicClearAllData()
|
||||||
|
}
|
||||||
|
|
||||||
|
private func bind(privateInboxModel: PrivateInboxModel) {
|
||||||
|
privateInboxModel.$unreadPeerIDs
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] unreadPeerIDs in
|
||||||
|
self?.hasUnreadPrivateMessages = !unreadPeerIDs.isEmpty
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
chatViewModel.$nickname
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] nickname in
|
||||||
|
guard let self, self.nickname != nickname else { return }
|
||||||
|
self.nickname = nickname
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
chatViewModel.$showBluetoothAlert
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$showBluetoothAlert)
|
||||||
|
|
||||||
|
chatViewModel.$bluetoothAlertMessage
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$bluetoothAlertMessage)
|
||||||
|
|
||||||
|
chatViewModel.$bluetoothState
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$bluetoothState)
|
||||||
|
|
||||||
|
hasUnreadPrivateMessages = !privateInboxModel.unreadPeerIDs.isEmpty
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,388 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Combine
|
||||||
|
import Foundation
|
||||||
|
import SwiftUI
|
||||||
|
import Tor
|
||||||
|
import UserNotifications
|
||||||
|
#if os(iOS)
|
||||||
|
import UIKit
|
||||||
|
#elseif os(macOS)
|
||||||
|
import AppKit
|
||||||
|
#endif
|
||||||
|
|
||||||
|
@MainActor
|
||||||
|
final class AppRuntime: ObservableObject {
|
||||||
|
let chatViewModel: ChatViewModel
|
||||||
|
let events = AppEventStream()
|
||||||
|
/// Single source of truth for conversation message state and selection
|
||||||
|
/// (docs/CONVERSATION-STORE-DESIGN.md). Owned here; the feature models
|
||||||
|
/// and `ChatViewModel` observe and mutate it through its intent API.
|
||||||
|
let conversations: ConversationStore
|
||||||
|
let peerIdentityStore: PeerIdentityStore
|
||||||
|
let locationPresenceStore: LocationPresenceStore
|
||||||
|
let publicChatModel: PublicChatModel
|
||||||
|
let privateInboxModel: PrivateInboxModel
|
||||||
|
let privateConversationModel: PrivateConversationModel
|
||||||
|
let verificationModel: VerificationModel
|
||||||
|
let conversationUIModel: ConversationUIModel
|
||||||
|
let locationChannelsModel: LocationChannelsModel
|
||||||
|
let peerListModel: PeerListModel
|
||||||
|
let appChromeModel: AppChromeModel
|
||||||
|
|
||||||
|
private let idBridge: NostrIdentityBridge
|
||||||
|
private var cancellables = Set<AnyCancellable>()
|
||||||
|
private var started = false
|
||||||
|
private var lastNostrRelayConnectedState = false
|
||||||
|
private var didHandleInitialNostrConnection = false
|
||||||
|
|
||||||
|
#if os(iOS)
|
||||||
|
private var didHandleInitialActive = false
|
||||||
|
private var didEnterBackground = false
|
||||||
|
#endif
|
||||||
|
|
||||||
|
init(
|
||||||
|
keychain: KeychainManagerProtocol = KeychainManager(),
|
||||||
|
idBridge: NostrIdentityBridge = NostrIdentityBridge()
|
||||||
|
) {
|
||||||
|
self.idBridge = idBridge
|
||||||
|
let conversations = ConversationStore()
|
||||||
|
let peerIdentityStore = PeerIdentityStore()
|
||||||
|
let locationPresenceStore = LocationPresenceStore()
|
||||||
|
let locationManager = LocationChannelManager.shared
|
||||||
|
self.conversations = conversations
|
||||||
|
self.peerIdentityStore = peerIdentityStore
|
||||||
|
self.locationPresenceStore = locationPresenceStore
|
||||||
|
self.chatViewModel = ChatViewModel(
|
||||||
|
keychain: keychain,
|
||||||
|
idBridge: idBridge,
|
||||||
|
identityManager: SecureIdentityStateManager(keychain),
|
||||||
|
conversations: conversations,
|
||||||
|
peerIdentityStore: peerIdentityStore,
|
||||||
|
locationPresenceStore: locationPresenceStore,
|
||||||
|
locationManager: locationManager
|
||||||
|
)
|
||||||
|
self.publicChatModel = PublicChatModel(conversations: conversations)
|
||||||
|
self.privateInboxModel = PrivateInboxModel(conversations: conversations)
|
||||||
|
self.locationChannelsModel = LocationChannelsModel(manager: locationManager)
|
||||||
|
self.privateConversationModel = PrivateConversationModel(
|
||||||
|
chatViewModel: self.chatViewModel,
|
||||||
|
conversations: conversations,
|
||||||
|
locationChannelsModel: self.locationChannelsModel,
|
||||||
|
peerIdentityStore: peerIdentityStore
|
||||||
|
)
|
||||||
|
self.verificationModel = VerificationModel(
|
||||||
|
chatViewModel: self.chatViewModel,
|
||||||
|
privateConversationModel: self.privateConversationModel,
|
||||||
|
peerIdentityStore: peerIdentityStore
|
||||||
|
)
|
||||||
|
self.conversationUIModel = ConversationUIModel(
|
||||||
|
chatViewModel: self.chatViewModel,
|
||||||
|
privateConversationModel: self.privateConversationModel,
|
||||||
|
conversations: conversations
|
||||||
|
)
|
||||||
|
self.peerListModel = PeerListModel(
|
||||||
|
chatViewModel: self.chatViewModel,
|
||||||
|
conversations: conversations,
|
||||||
|
locationChannelsModel: self.locationChannelsModel,
|
||||||
|
peerIdentityStore: peerIdentityStore,
|
||||||
|
locationPresenceStore: locationPresenceStore
|
||||||
|
)
|
||||||
|
self.appChromeModel = AppChromeModel(
|
||||||
|
chatViewModel: self.chatViewModel,
|
||||||
|
privateInboxModel: self.privateInboxModel
|
||||||
|
)
|
||||||
|
|
||||||
|
GeoRelayDirectory.shared.prefetchIfNeeded()
|
||||||
|
bindRuntimeObservers()
|
||||||
|
NotificationDelegate.shared.runtime = self
|
||||||
|
}
|
||||||
|
|
||||||
|
func start() {
|
||||||
|
guard !started else {
|
||||||
|
checkForSharedContent()
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
started = true
|
||||||
|
NotificationDelegate.shared.runtime = self
|
||||||
|
VerificationService.shared.configure(with: chatViewModel.meshService)
|
||||||
|
announceInitialTorStatusIfNeeded()
|
||||||
|
|
||||||
|
Task(priority: .utility) { [weak self] in
|
||||||
|
guard let self else { return }
|
||||||
|
let nickname = await MainActor.run { self.chatViewModel.nickname }
|
||||||
|
let npub = await MainActor.run {
|
||||||
|
try? self.idBridge.getCurrentNostrIdentity()?.npub
|
||||||
|
}
|
||||||
|
await MainActor.run {
|
||||||
|
_ = VerificationService.shared.buildMyQRString(nickname: nickname, npub: npub)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
NetworkActivationService.shared.start()
|
||||||
|
GeohashPresenceService.shared.start()
|
||||||
|
checkForSharedContent()
|
||||||
|
|
||||||
|
record(.launched)
|
||||||
|
record(.startupCompleted)
|
||||||
|
}
|
||||||
|
|
||||||
|
func handleOpenURL(_ url: URL) {
|
||||||
|
record(.openedURL(url.absoluteString))
|
||||||
|
|
||||||
|
if url.scheme == "bitchat", url.host == "share" {
|
||||||
|
checkForSharedContent()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func handleDidBecomeActiveNotification() {
|
||||||
|
chatViewModel.handleDidBecomeActive()
|
||||||
|
checkForSharedContent()
|
||||||
|
}
|
||||||
|
|
||||||
|
#if os(macOS)
|
||||||
|
func handleMacDidBecomeActiveNotification() {
|
||||||
|
record(.scenePhaseChanged(.active))
|
||||||
|
chatViewModel.handleDidBecomeActive()
|
||||||
|
checkForSharedContent()
|
||||||
|
}
|
||||||
|
#endif
|
||||||
|
|
||||||
|
#if os(iOS)
|
||||||
|
func handleScenePhaseChange(_ newPhase: ScenePhase) {
|
||||||
|
switch newPhase {
|
||||||
|
case .background:
|
||||||
|
record(.scenePhaseChanged(.background))
|
||||||
|
TorManager.shared.setAppForeground(false)
|
||||||
|
TorManager.shared.goDormantOnBackground()
|
||||||
|
chatViewModel.endGeohashSampling()
|
||||||
|
NostrRelayManager.shared.disconnect()
|
||||||
|
didEnterBackground = true
|
||||||
|
|
||||||
|
case .active:
|
||||||
|
record(.scenePhaseChanged(.active))
|
||||||
|
chatViewModel.meshService.startServices()
|
||||||
|
TorManager.shared.setAppForeground(true)
|
||||||
|
let shouldRefreshNostrConnections = didHandleInitialActive && didEnterBackground
|
||||||
|
|
||||||
|
if didHandleInitialActive && didEnterBackground {
|
||||||
|
if TorManager.shared.isAutoStartAllowed() && !TorManager.shared.isReady {
|
||||||
|
TorManager.shared.ensureRunningOnForeground()
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
didHandleInitialActive = true
|
||||||
|
}
|
||||||
|
|
||||||
|
didEnterBackground = false
|
||||||
|
|
||||||
|
if shouldRefreshNostrConnections && TorManager.shared.isAutoStartAllowed() {
|
||||||
|
Task.detached {
|
||||||
|
let _ = await TorManager.shared.awaitReady(timeout: 60)
|
||||||
|
await MainActor.run {
|
||||||
|
TorURLSession.shared.rebuild()
|
||||||
|
NostrRelayManager.shared.resetAllConnections()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
chatViewModel.handleDidBecomeActive()
|
||||||
|
checkForSharedContent()
|
||||||
|
|
||||||
|
case .inactive:
|
||||||
|
record(.scenePhaseChanged(.inactive))
|
||||||
|
|
||||||
|
@unknown default:
|
||||||
|
break
|
||||||
|
}
|
||||||
|
}
|
||||||
|
#endif
|
||||||
|
|
||||||
|
func applicationWillTerminate() {
|
||||||
|
record(.terminationRequested)
|
||||||
|
chatViewModel.applicationWillTerminate()
|
||||||
|
}
|
||||||
|
|
||||||
|
func handleNotificationResponse(identifier: String, userInfo: [AnyHashable: Any]) {
|
||||||
|
if identifier.hasPrefix("private-"), let peerID = PeerID(str: userInfo["peerID"] as? String) {
|
||||||
|
record(.notificationOpened(peerID: peerID))
|
||||||
|
chatViewModel.startPrivateChat(with: peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
if let deepLink = userInfo["deeplink"] as? String, let url = URL(string: deepLink) {
|
||||||
|
record(.deepLinkOpened(deepLink))
|
||||||
|
openExternalURL(url)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func presentationOptions(
|
||||||
|
forNotificationIdentifier identifier: String,
|
||||||
|
userInfo: [AnyHashable: Any]
|
||||||
|
) async -> UNNotificationPresentationOptions {
|
||||||
|
if identifier.hasPrefix("private-"), let peerID = PeerID(str: userInfo["peerID"] as? String) {
|
||||||
|
if conversations.selectedPrivatePeerID == peerID {
|
||||||
|
return []
|
||||||
|
}
|
||||||
|
return [.banner, .sound]
|
||||||
|
}
|
||||||
|
|
||||||
|
if identifier.hasPrefix("geo-activity-"),
|
||||||
|
let deepLink = userInfo["deeplink"] as? String,
|
||||||
|
let geohash = deepLink.components(separatedBy: "/").last,
|
||||||
|
case .location(let channel) = locationChannelsModel.selectedChannel,
|
||||||
|
channel.geohash == geohash {
|
||||||
|
return []
|
||||||
|
}
|
||||||
|
|
||||||
|
return [.banner, .sound]
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private extension AppRuntime {
|
||||||
|
func bindRuntimeObservers() {
|
||||||
|
NostrRelayManager.shared.$isConnected
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] isConnected in
|
||||||
|
self?.handleNostrRelayConnectionChanged(isConnected)
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
NotificationCenter.default.publisher(for: .TorWillRestart)
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.record(.torLifecycleChanged(.willRestart))
|
||||||
|
self?.chatViewModel.handleTorWillRestart()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
NotificationCenter.default.publisher(for: .TorDidBecomeReady)
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.record(.torLifecycleChanged(.didBecomeReady))
|
||||||
|
self?.chatViewModel.handleTorDidBecomeReady()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
NotificationCenter.default.publisher(for: .TorWillStart)
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.record(.torLifecycleChanged(.willStart))
|
||||||
|
self?.chatViewModel.handleTorWillStart()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
NotificationCenter.default.publisher(for: .TorUserPreferenceChanged)
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] notification in
|
||||||
|
self?.record(.torLifecycleChanged(.preferenceChanged))
|
||||||
|
self?.chatViewModel.handleTorPreferenceChanged(notification)
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
#if os(iOS)
|
||||||
|
NotificationCenter.default.publisher(for: UIApplication.userDidTakeScreenshotNotification)
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.handleScreenshotCaptured()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
#endif
|
||||||
|
}
|
||||||
|
|
||||||
|
func checkForSharedContent() {
|
||||||
|
guard let userDefaults = UserDefaults(suiteName: BitchatApp.groupID),
|
||||||
|
let sharedContent = userDefaults.string(forKey: "sharedContent"),
|
||||||
|
let sharedDate = userDefaults.object(forKey: "sharedContentDate") as? Date else {
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
guard Date().timeIntervalSince(sharedDate) < TransportConfig.uiShareAcceptWindowSeconds else {
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
let contentKind = SharedContentKind(rawValue: userDefaults.string(forKey: "sharedContentType") ?? "") ?? .text
|
||||||
|
|
||||||
|
userDefaults.removeObject(forKey: "sharedContent")
|
||||||
|
userDefaults.removeObject(forKey: "sharedContentType")
|
||||||
|
userDefaults.removeObject(forKey: "sharedContentDate")
|
||||||
|
|
||||||
|
switch contentKind {
|
||||||
|
case .url:
|
||||||
|
if let data = sharedContent.data(using: .utf8),
|
||||||
|
let urlData = try? JSONSerialization.jsonObject(with: data) as? [String: String],
|
||||||
|
let url = urlData["url"] {
|
||||||
|
chatViewModel.sendMessage(url)
|
||||||
|
} else {
|
||||||
|
chatViewModel.sendMessage(sharedContent)
|
||||||
|
}
|
||||||
|
case .text:
|
||||||
|
chatViewModel.sendMessage(sharedContent)
|
||||||
|
}
|
||||||
|
|
||||||
|
record(.sharedContentAccepted(contentKind))
|
||||||
|
}
|
||||||
|
|
||||||
|
func handleNostrRelayConnectionChanged(_ isConnected: Bool) {
|
||||||
|
record(.nostrRelayConnectionChanged(isConnected))
|
||||||
|
|
||||||
|
let becameConnected = isConnected && !lastNostrRelayConnectedState
|
||||||
|
lastNostrRelayConnectedState = isConnected
|
||||||
|
|
||||||
|
guard started, becameConnected else { return }
|
||||||
|
|
||||||
|
let isInitialConnection = !didHandleInitialNostrConnection
|
||||||
|
didHandleInitialNostrConnection = true
|
||||||
|
|
||||||
|
if !chatViewModel.nostrHandlersSetup {
|
||||||
|
chatViewModel.setupNostrMessageHandling()
|
||||||
|
chatViewModel.nostrHandlersSetup = true
|
||||||
|
}
|
||||||
|
|
||||||
|
guard !isInitialConnection else { return }
|
||||||
|
|
||||||
|
chatViewModel.resubscribeCurrentGeohash()
|
||||||
|
chatViewModel.geoChannelCoordinator?.refreshSampling()
|
||||||
|
}
|
||||||
|
|
||||||
|
func announceInitialTorStatusIfNeeded() {
|
||||||
|
if TorManager.shared.torEnforced &&
|
||||||
|
!chatViewModel.torStatusAnnounced &&
|
||||||
|
TorManager.shared.isAutoStartAllowed() {
|
||||||
|
chatViewModel.torStatusAnnounced = true
|
||||||
|
chatViewModel.addGeohashOnlySystemMessage(
|
||||||
|
String(localized: "system.tor.starting", comment: "System message when Tor is starting")
|
||||||
|
)
|
||||||
|
} else if !TorManager.shared.torEnforced && !chatViewModel.torStatusAnnounced {
|
||||||
|
chatViewModel.torStatusAnnounced = true
|
||||||
|
chatViewModel.addGeohashOnlySystemMessage(
|
||||||
|
String(localized: "system.tor.dev_bypass", comment: "System message when Tor bypass is enabled in development")
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func handleScreenshotCaptured() {
|
||||||
|
if appChromeModel.isLocationChannelsSheetPresented {
|
||||||
|
appChromeModel.triggerScreenshotPrivacyWarning()
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
if appChromeModel.isAppInfoPresented {
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
chatViewModel.handleScreenshotCaptured()
|
||||||
|
}
|
||||||
|
|
||||||
|
func openExternalURL(_ url: URL) {
|
||||||
|
#if os(iOS)
|
||||||
|
UIApplication.shared.open(url)
|
||||||
|
#else
|
||||||
|
NSWorkspace.shared.open(url)
|
||||||
|
#endif
|
||||||
|
}
|
||||||
|
|
||||||
|
func record(_ event: AppEvent) {
|
||||||
|
Task {
|
||||||
|
await events.emit(event)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,918 @@
|
|||||||
|
//
|
||||||
|
// ConversationStore.swift
|
||||||
|
// bitchat
|
||||||
|
//
|
||||||
|
// Single source of truth for conversation message state (see
|
||||||
|
// docs/CONVERSATION-STORE-DESIGN.md). One `Conversation` object per
|
||||||
|
// `ConversationID`; all mutations flow through the store's intent API and
|
||||||
|
// every mutation emits a `ConversationChange` after state is consistent.
|
||||||
|
//
|
||||||
|
// The store also owns conversation selection: the active public channel and
|
||||||
|
// the selected private peer (the two UI selection axes) plus the derived
|
||||||
|
// `selectedConversationID`.
|
||||||
|
//
|
||||||
|
// This is free and unencumbered software released into the public domain.
|
||||||
|
// For more information, see <https://unlicense.org>
|
||||||
|
//
|
||||||
|
|
||||||
|
import BitFoundation
|
||||||
|
import BitLogger
|
||||||
|
import Combine
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
// MARK: - Conversation
|
||||||
|
|
||||||
|
/// A single conversation timeline (`.mesh`, `.geohash`, or `.direct`).
|
||||||
|
///
|
||||||
|
/// Publishing granularity is per conversation: views observe ONE
|
||||||
|
/// `Conversation` object, so an append to chat A never invalidates observers
|
||||||
|
/// of chat B.
|
||||||
|
///
|
||||||
|
/// Mutations are `fileprivate` by design — only `ConversationStore`'s intent
|
||||||
|
/// API may mutate a conversation, keeping the store the sole writer.
|
||||||
|
@MainActor
|
||||||
|
final class Conversation: ObservableObject, Identifiable {
|
||||||
|
let id: ConversationID
|
||||||
|
/// Maximum retained messages; oldest are trimmed on overflow.
|
||||||
|
let cap: Int
|
||||||
|
|
||||||
|
@Published private(set) var messages: [BitchatMessage] = []
|
||||||
|
@Published private(set) var isUnread: Bool = false
|
||||||
|
|
||||||
|
/// Incrementally-maintained message-ID → index map for O(1) dedup and
|
||||||
|
/// delivery-status lookup. Kept in sync on every mutation:
|
||||||
|
/// - tail append: single insert
|
||||||
|
/// - out-of-order insert: suffix reindex from the insertion point
|
||||||
|
/// - trim: full rebuild — `removeFirst(k)` is already O(n), so the
|
||||||
|
/// rebuild does not change the asymptotics, and trim only happens once
|
||||||
|
/// the cap (1337) is reached. Simple and correct beats the
|
||||||
|
/// offset-tracking alternative here.
|
||||||
|
private var indexByMessageID: [String: Int] = [:]
|
||||||
|
|
||||||
|
fileprivate init(id: ConversationID, cap: Int) {
|
||||||
|
self.id = id
|
||||||
|
self.cap = max(1, cap)
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: Reads
|
||||||
|
|
||||||
|
func containsMessage(withID messageID: String) -> Bool {
|
||||||
|
indexByMessageID[messageID] != nil
|
||||||
|
}
|
||||||
|
|
||||||
|
func message(withID messageID: String) -> BitchatMessage? {
|
||||||
|
guard let index = indexByMessageID[messageID] else { return nil }
|
||||||
|
return messages[index]
|
||||||
|
}
|
||||||
|
|
||||||
|
/// All message IDs currently in this conversation (unordered).
|
||||||
|
var messageIDs: Dictionary<String, Int>.Keys {
|
||||||
|
indexByMessageID.keys
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: Store-internal mutations
|
||||||
|
|
||||||
|
/// Result of an ordered insert. `trimmedMessageIDs` reports messages
|
||||||
|
/// evicted by the cap so the store can keep its message-ID →
|
||||||
|
/// conversation map exact.
|
||||||
|
fileprivate struct InsertResult {
|
||||||
|
let inserted: Bool
|
||||||
|
let trimmedMessageIDs: [String]
|
||||||
|
|
||||||
|
static let duplicate = InsertResult(inserted: false, trimmedMessageIDs: [])
|
||||||
|
}
|
||||||
|
|
||||||
|
fileprivate enum UpsertOutcome {
|
||||||
|
case appended(trimmedMessageIDs: [String])
|
||||||
|
case updated
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Inserts a message in timestamp order, deduplicating by message ID.
|
||||||
|
/// Fast path appends when the timestamp is >= the current tail;
|
||||||
|
/// otherwise a binary search finds the upper-bound insertion point so
|
||||||
|
/// arrival order is preserved among equal timestamps.
|
||||||
|
/// Reports `inserted: false` if a message with the same ID already exists.
|
||||||
|
fileprivate func insert(_ message: BitchatMessage) -> InsertResult {
|
||||||
|
guard indexByMessageID[message.id] == nil else { return .duplicate }
|
||||||
|
|
||||||
|
if let last = messages.last, message.timestamp < last.timestamp {
|
||||||
|
let index = insertionIndex(for: message.timestamp)
|
||||||
|
messages.insert(message, at: index)
|
||||||
|
reindex(from: index)
|
||||||
|
} else {
|
||||||
|
messages.append(message)
|
||||||
|
indexByMessageID[message.id] = messages.count - 1
|
||||||
|
}
|
||||||
|
|
||||||
|
return InsertResult(inserted: true, trimmedMessageIDs: trimIfNeeded())
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Replace-or-append by message ID. An existing message keeps its
|
||||||
|
/// timeline position (in-place updates like media progress reuse the
|
||||||
|
/// original timestamp); a new message goes through ordered insertion.
|
||||||
|
fileprivate func upsert(_ message: BitchatMessage) -> UpsertOutcome {
|
||||||
|
if let index = indexByMessageID[message.id] {
|
||||||
|
messages[index] = message
|
||||||
|
return .updated
|
||||||
|
}
|
||||||
|
let result = insert(message)
|
||||||
|
return .appended(trimmedMessageIDs: result.trimmedMessageIDs)
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Applies a delivery status keyed by message ID, honoring the
|
||||||
|
/// no-downgrade rule (the SOLE enforcement point — every delivery
|
||||||
|
/// update flows through the store): equal statuses are skipped, and
|
||||||
|
/// `.read` is never downgraded to `.delivered` or `.sent`.
|
||||||
|
/// Returns `true` when the status was applied.
|
||||||
|
fileprivate func applyDeliveryStatus(_ status: DeliveryStatus, forMessageID messageID: String) -> Bool {
|
||||||
|
guard let index = indexByMessageID[messageID] else { return false }
|
||||||
|
let message = messages[index]
|
||||||
|
guard !Self.shouldSkipStatusUpdate(current: message.deliveryStatus, new: status) else { return false }
|
||||||
|
|
||||||
|
message.deliveryStatus = status
|
||||||
|
// BitchatMessage is a reference type; write back through the
|
||||||
|
// subscript so the @Published wrapper emits.
|
||||||
|
messages[index] = message
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Republishes a message without changing state. Used for mirrored
|
||||||
|
/// copies that share a BitchatMessage instance: the first conversation's
|
||||||
|
/// status apply mutated the shared object, so this conversation's
|
||||||
|
/// observers still need an @Published emission to re-render.
|
||||||
|
@discardableResult
|
||||||
|
fileprivate func republishMessage(withID messageID: String) -> Bool {
|
||||||
|
guard let index = indexByMessageID[messageID] else { return false }
|
||||||
|
messages[index] = messages[index]
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
fileprivate func setUnread(_ unread: Bool) -> Bool {
|
||||||
|
guard isUnread != unread else { return false }
|
||||||
|
isUnread = unread
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Removes a single message by ID. Returns the removed message, or
|
||||||
|
/// `nil` when no message with that ID exists.
|
||||||
|
fileprivate func remove(messageID: String) -> BitchatMessage? {
|
||||||
|
guard let index = indexByMessageID[messageID] else { return nil }
|
||||||
|
let removed = messages.remove(at: index)
|
||||||
|
indexByMessageID.removeValue(forKey: messageID)
|
||||||
|
reindex(from: index)
|
||||||
|
return removed
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Removes every message matching `predicate`. Returns the removed
|
||||||
|
/// message IDs (empty when nothing matched).
|
||||||
|
fileprivate func removeAll(where predicate: (BitchatMessage) -> Bool) -> [String] {
|
||||||
|
var removedIDs: [String] = []
|
||||||
|
messages.removeAll { message in
|
||||||
|
guard predicate(message) else { return false }
|
||||||
|
removedIDs.append(message.id)
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
guard !removedIDs.isEmpty else { return [] }
|
||||||
|
for id in removedIDs {
|
||||||
|
indexByMessageID.removeValue(forKey: id)
|
||||||
|
}
|
||||||
|
reindex(from: 0)
|
||||||
|
return removedIDs
|
||||||
|
}
|
||||||
|
|
||||||
|
fileprivate func clearMessages() {
|
||||||
|
messages.removeAll()
|
||||||
|
indexByMessageID.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: Diagnostics
|
||||||
|
|
||||||
|
/// Appends human-readable invariant violations for this conversation
|
||||||
|
/// (empty when healthy): the ID index must be the exact inverse of the
|
||||||
|
/// messages array, the cap must hold, and timestamps must be
|
||||||
|
/// non-decreasing (equal timestamps keep arrival order, so only strict
|
||||||
|
/// inversions are violations). O(messages); allocates only on violation.
|
||||||
|
fileprivate func collectInvariantViolations(into violations: inout [String], label: String) {
|
||||||
|
if indexByMessageID.count != messages.count {
|
||||||
|
violations.append("\(label): index has \(indexByMessageID.count) entries for \(messages.count) messages")
|
||||||
|
}
|
||||||
|
if messages.count > cap {
|
||||||
|
violations.append("\(label): \(messages.count) messages exceeds cap \(cap)")
|
||||||
|
}
|
||||||
|
var previousTimestamp: Date?
|
||||||
|
for position in messages.indices {
|
||||||
|
let message = messages[position]
|
||||||
|
// Count equality + every message resolving to its own position
|
||||||
|
// proves the index is exactly the inverse map (no stale extras).
|
||||||
|
if let index = indexByMessageID[message.id] {
|
||||||
|
if index != position {
|
||||||
|
violations.append("\(label): message \(message.id.prefix(8))… at \(position) indexed at \(index)")
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
violations.append("\(label): message \(message.id.prefix(8))… at \(position) missing from index")
|
||||||
|
}
|
||||||
|
if let previousTimestamp, message.timestamp < previousTimestamp {
|
||||||
|
violations.append("\(label): timestamp order violated at \(position)")
|
||||||
|
}
|
||||||
|
previousTimestamp = message.timestamp
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: Internals
|
||||||
|
|
||||||
|
static func shouldSkipStatusUpdate(current: DeliveryStatus?, new: DeliveryStatus) -> Bool {
|
||||||
|
guard let current else { return false }
|
||||||
|
if current == new { return true }
|
||||||
|
|
||||||
|
switch (current, new) {
|
||||||
|
case (.read, .delivered), (.read, .sent):
|
||||||
|
return true
|
||||||
|
default:
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Upper-bound binary search: first index whose timestamp is strictly
|
||||||
|
/// greater than `timestamp`, so equal-timestamp messages keep arrival
|
||||||
|
/// order.
|
||||||
|
private func insertionIndex(for timestamp: Date) -> Int {
|
||||||
|
var low = 0
|
||||||
|
var high = messages.count
|
||||||
|
while low < high {
|
||||||
|
let mid = (low + high) / 2
|
||||||
|
if messages[mid].timestamp <= timestamp {
|
||||||
|
low = mid + 1
|
||||||
|
} else {
|
||||||
|
high = mid
|
||||||
|
}
|
||||||
|
}
|
||||||
|
return low
|
||||||
|
}
|
||||||
|
|
||||||
|
private func reindex(from start: Int) {
|
||||||
|
for index in start..<messages.count {
|
||||||
|
indexByMessageID[messages[index].id] = index
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Trims oldest messages over the cap; returns the trimmed message IDs.
|
||||||
|
private func trimIfNeeded() -> [String] {
|
||||||
|
guard messages.count > cap else { return [] }
|
||||||
|
let overflow = messages.count - cap
|
||||||
|
let trimmedIDs = messages.prefix(overflow).map(\.id)
|
||||||
|
for id in trimmedIDs {
|
||||||
|
indexByMessageID.removeValue(forKey: id)
|
||||||
|
}
|
||||||
|
messages.removeFirst(overflow)
|
||||||
|
reindex(from: 0)
|
||||||
|
return trimmedIDs
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: - ConversationChange
|
||||||
|
|
||||||
|
/// Typed mutation events for non-UI consumers (delivery tracking,
|
||||||
|
/// notifications, sync) that need "something changed in conversation X"
|
||||||
|
/// without subscribing to whole message arrays. Emitted on the store's
|
||||||
|
/// `changes` subject AFTER the corresponding state is consistent.
|
||||||
|
enum ConversationChange {
|
||||||
|
case appended(ConversationID, BitchatMessage)
|
||||||
|
case updated(ConversationID, messageID: String)
|
||||||
|
case statusChanged(ConversationID, messageID: String, DeliveryStatus)
|
||||||
|
case messageRemoved(ConversationID, messageID: String)
|
||||||
|
case cleared(ConversationID)
|
||||||
|
case removed(ConversationID)
|
||||||
|
case migrated(from: ConversationID, to: ConversationID)
|
||||||
|
case unreadChanged(ConversationID, isUnread: Bool)
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: - ConversationStore
|
||||||
|
|
||||||
|
/// Sole writer and sole holder of conversation message state. All mutations
|
||||||
|
/// go through the intent API below; backing collections are `private(set)`.
|
||||||
|
/// Reads are synchronous — writers and readers share the main actor, so
|
||||||
|
/// after an intent returns every observer sees the result.
|
||||||
|
@MainActor
|
||||||
|
final class ConversationStore: ObservableObject {
|
||||||
|
/// Conversation creation order; published so list-style consumers can
|
||||||
|
/// observe conversations appearing/disappearing without rebuilding from
|
||||||
|
/// the dictionary.
|
||||||
|
@Published private(set) var conversationIDs: [ConversationID] = []
|
||||||
|
@Published private(set) var selectedConversationID: ConversationID?
|
||||||
|
@Published private(set) var unreadConversations: Set<ConversationID> = []
|
||||||
|
|
||||||
|
// MARK: Selection state
|
||||||
|
// The two UI selection axes: which public channel is active, and which
|
||||||
|
// private chat (if any) is open on top of it. `selectedConversationID`
|
||||||
|
// is derived: the open private chat wins, otherwise the active public
|
||||||
|
// channel's conversation. Mutate via `setActiveChannel` /
|
||||||
|
// `setSelectedPrivatePeer` only.
|
||||||
|
|
||||||
|
@Published private(set) var activeChannel: ChannelID = .mesh
|
||||||
|
@Published private(set) var selectedPrivatePeerID: PeerID?
|
||||||
|
|
||||||
|
private(set) var conversationsByID: [ConversationID: Conversation] = [:]
|
||||||
|
|
||||||
|
/// Store-level message-ID → conversation-membership map for ID-only
|
||||||
|
/// lookups (delivery receipts arrive with a message ID, not a
|
||||||
|
/// conversation). Maintained incrementally at every mutation point —
|
||||||
|
/// all mutation is centralized in the intent API below, so the map is
|
||||||
|
/// exact, never scanned or rebuilt.
|
||||||
|
///
|
||||||
|
/// The value is a `Set` because a private message can legitimately live
|
||||||
|
/// in TWO direct conversations: step 2's raw per-peer keying mirrors a
|
||||||
|
/// message into both the stable-key and ephemeral-peer chats
|
||||||
|
/// (`mirrorToEphemeralIfNeeded`). A delivery update must reach both
|
||||||
|
/// copies.
|
||||||
|
private var conversationIDsByMessageID: [String: Set<ConversationID>] = [:]
|
||||||
|
|
||||||
|
/// Monotonic count of messages inserted into any conversation (appends,
|
||||||
|
/// upsert-appends, migration inserts). Field-observability only: the
|
||||||
|
/// periodic store audit folds the delta into its heartbeat line so logs
|
||||||
|
/// carry throughput context. Never read on a hot path.
|
||||||
|
private(set) var appendCount: Int = 0
|
||||||
|
|
||||||
|
/// Sample counter for the mirrored-republish debug log in the ID-only
|
||||||
|
/// `setDeliveryStatus` fan-out (first + every Nth occurrence).
|
||||||
|
private var mirroredRepublishLogCount = 0
|
||||||
|
|
||||||
|
let changes = PassthroughSubject<ConversationChange, Never>()
|
||||||
|
|
||||||
|
// MARK: Intent API
|
||||||
|
|
||||||
|
/// Returns the conversation for `id`, creating it (with the cap policy
|
||||||
|
/// for its kind) on first access.
|
||||||
|
@discardableResult
|
||||||
|
func conversation(for id: ConversationID) -> Conversation {
|
||||||
|
if let existing = conversationsByID[id] {
|
||||||
|
return existing
|
||||||
|
}
|
||||||
|
let conversation = Conversation(id: id, cap: Self.cap(for: id))
|
||||||
|
conversationsByID[id] = conversation
|
||||||
|
conversationIDs.append(id)
|
||||||
|
return conversation
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Appends a message in timestamp order. Returns `false` (and emits
|
||||||
|
/// nothing) if a message with the same ID is already present.
|
||||||
|
@discardableResult
|
||||||
|
func append(_ message: BitchatMessage, to id: ConversationID) -> Bool {
|
||||||
|
let conversation = conversation(for: id)
|
||||||
|
let result = conversation.insert(message)
|
||||||
|
guard result.inserted else { return false }
|
||||||
|
registerMessageID(message.id, in: id)
|
||||||
|
unregisterMessageIDs(result.trimmedMessageIDs, from: id)
|
||||||
|
changes.send(.appended(id, message))
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Replace-or-append by message ID (media progress, edits).
|
||||||
|
func upsertByID(_ message: BitchatMessage, in id: ConversationID) {
|
||||||
|
let conversation = conversation(for: id)
|
||||||
|
switch conversation.upsert(message) {
|
||||||
|
case .appended(let trimmedMessageIDs):
|
||||||
|
registerMessageID(message.id, in: id)
|
||||||
|
unregisterMessageIDs(trimmedMessageIDs, from: id)
|
||||||
|
changes.send(.appended(id, message))
|
||||||
|
case .updated:
|
||||||
|
changes.send(.updated(id, messageID: message.id))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Applies a delivery status keyed by message ID. Returns `false` when
|
||||||
|
/// the message is unknown or the update would downgrade the status
|
||||||
|
/// (read beats delivered beats sent).
|
||||||
|
@discardableResult
|
||||||
|
func setDeliveryStatus(_ status: DeliveryStatus, forMessageID messageID: String, in id: ConversationID) -> Bool {
|
||||||
|
guard let conversation = conversationsByID[id],
|
||||||
|
conversation.applyDeliveryStatus(status, forMessageID: messageID) else {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
changes.send(.statusChanged(id, messageID: messageID, status))
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Applies a delivery status to EVERY conversation containing
|
||||||
|
/// `messageID` (ID-only — delivery receipts don't know conversations;
|
||||||
|
/// mirrored private copies live in two direct chats). Returns `false`
|
||||||
|
/// when the message is unknown or no copy changed (equal status or
|
||||||
|
/// downgrade — read beats delivered beats sent).
|
||||||
|
///
|
||||||
|
/// `BitchatMessage` is a reference type, so mirrored copies sharing one
|
||||||
|
/// instance are mutated by the first conversation's apply. The skipped
|
||||||
|
/// conversations still hold the changed message, so they get an explicit
|
||||||
|
/// republish and `.statusChanged` event - otherwise a view observing the
|
||||||
|
/// mirrored conversation would render stale status. Distinct copies whose
|
||||||
|
/// update was genuinely rejected (downgrade) are left untouched, guarded
|
||||||
|
/// by status equality.
|
||||||
|
@discardableResult
|
||||||
|
func setDeliveryStatus(_ status: DeliveryStatus, forMessageID messageID: String) -> Bool {
|
||||||
|
guard let ids = conversationIDsByMessageID[messageID] else { return false }
|
||||||
|
var applied = false
|
||||||
|
var skipped: [ConversationID] = []
|
||||||
|
for id in ids {
|
||||||
|
if setDeliveryStatus(status, forMessageID: messageID, in: id) {
|
||||||
|
applied = true
|
||||||
|
} else {
|
||||||
|
skipped.append(id)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
guard applied else { return false }
|
||||||
|
for id in skipped {
|
||||||
|
guard let conversation = conversationsByID[id],
|
||||||
|
conversation.message(withID: messageID)?.deliveryStatus == status,
|
||||||
|
conversation.republishMessage(withID: messageID) else { continue }
|
||||||
|
// Field proof the mirrored-copy republish path actually fires;
|
||||||
|
// sampled (first + every Nth) so mirrored chats can't spam logs.
|
||||||
|
mirroredRepublishLogCount += 1
|
||||||
|
if mirroredRepublishLogCount == 1
|
||||||
|
|| mirroredRepublishLogCount.isMultiple(of: TransportConfig.conversationStoreMirroredRepublishLogInterval) {
|
||||||
|
SecureLogger.debug(
|
||||||
|
"mirrored republish #\(mirroredRepublishLogCount) for \(messageID.prefix(8))… in \(id.auditDescription)",
|
||||||
|
category: .session
|
||||||
|
)
|
||||||
|
}
|
||||||
|
changes.send(.statusChanged(id, messageID: messageID, status))
|
||||||
|
}
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Current delivery status of `messageID` in whichever conversation
|
||||||
|
/// holds it (mirrored copies share status — see `setDeliveryStatus`).
|
||||||
|
func deliveryStatus(forMessageID messageID: String) -> DeliveryStatus? {
|
||||||
|
guard let ids = conversationIDsByMessageID[messageID] else { return nil }
|
||||||
|
for id in ids {
|
||||||
|
if let status = conversationsByID[id]?.message(withID: messageID)?.deliveryStatus {
|
||||||
|
return status
|
||||||
|
}
|
||||||
|
}
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Every conversation currently containing `messageID` (empty when the
|
||||||
|
/// message is unknown).
|
||||||
|
func conversationIDs(forMessageID messageID: String) -> Set<ConversationID> {
|
||||||
|
conversationIDsByMessageID[messageID] ?? []
|
||||||
|
}
|
||||||
|
|
||||||
|
func markRead(_ id: ConversationID) {
|
||||||
|
guard unreadConversations.contains(id) else { return }
|
||||||
|
unreadConversations.remove(id)
|
||||||
|
conversationsByID[id]?.setUnread(false)
|
||||||
|
changes.send(.unreadChanged(id, isUnread: false))
|
||||||
|
}
|
||||||
|
|
||||||
|
func markUnread(_ id: ConversationID) {
|
||||||
|
guard !unreadConversations.contains(id) else { return }
|
||||||
|
let conversation = conversation(for: id)
|
||||||
|
unreadConversations.insert(id)
|
||||||
|
conversation.setUnread(true)
|
||||||
|
changes.send(.unreadChanged(id, isUnread: true))
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Selects a conversation (creating it if needed) or clears the
|
||||||
|
/// selection with `nil`.
|
||||||
|
func select(_ id: ConversationID?) {
|
||||||
|
if let id {
|
||||||
|
conversation(for: id)
|
||||||
|
}
|
||||||
|
guard selectedConversationID != id else { return }
|
||||||
|
selectedConversationID = id
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Switches the active public channel. While no private chat is open
|
||||||
|
/// the selection follows the channel.
|
||||||
|
func setActiveChannel(_ channelID: ChannelID) {
|
||||||
|
if activeChannel != channelID {
|
||||||
|
activeChannel = channelID
|
||||||
|
}
|
||||||
|
refreshDerivedSelection()
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Opens a private chat (`nil` closes it, returning the selection to the
|
||||||
|
/// active public channel's conversation).
|
||||||
|
func setSelectedPrivatePeer(_ peerID: PeerID?) {
|
||||||
|
if selectedPrivatePeerID != peerID {
|
||||||
|
selectedPrivatePeerID = peerID
|
||||||
|
}
|
||||||
|
refreshDerivedSelection()
|
||||||
|
}
|
||||||
|
|
||||||
|
private func refreshDerivedSelection() {
|
||||||
|
if let peerID = selectedPrivatePeerID {
|
||||||
|
select(.directPeer(peerID))
|
||||||
|
} else {
|
||||||
|
select(ConversationID(channelID: activeChannel))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Moves all messages from `source` into `destination` (the
|
||||||
|
/// ephemeral↔stable peer-ID handoff): dedups by message ID, preserves
|
||||||
|
/// timestamp order, carries unread state over, and hands off the
|
||||||
|
/// selection — mirroring `ChatPrivateConversationCoordinator`'s
|
||||||
|
/// migration semantics. The source conversation is removed. Emits a
|
||||||
|
/// single `.migrated(from:to:)` once the whole move is consistent.
|
||||||
|
func migrateConversation(from source: ConversationID, to destination: ConversationID) {
|
||||||
|
guard source != destination, let sourceConversation = conversationsByID[source] else { return }
|
||||||
|
|
||||||
|
let destinationConversation = conversation(for: destination)
|
||||||
|
for message in sourceConversation.messages {
|
||||||
|
let result = destinationConversation.insert(message)
|
||||||
|
guard result.inserted else { continue }
|
||||||
|
registerMessageID(message.id, in: destination)
|
||||||
|
unregisterMessageIDs(result.trimmedMessageIDs, from: destination)
|
||||||
|
}
|
||||||
|
for messageID in sourceConversation.messageIDs {
|
||||||
|
unregisterMessageID(messageID, from: source)
|
||||||
|
}
|
||||||
|
|
||||||
|
let wasUnread = unreadConversations.contains(source)
|
||||||
|
let wasSelected = selectedConversationID == source
|
||||||
|
|
||||||
|
conversationsByID.removeValue(forKey: source)
|
||||||
|
conversationIDs.removeAll { $0 == source }
|
||||||
|
unreadConversations.remove(source)
|
||||||
|
|
||||||
|
if wasUnread, !unreadConversations.contains(destination) {
|
||||||
|
unreadConversations.insert(destination)
|
||||||
|
destinationConversation.setUnread(true)
|
||||||
|
}
|
||||||
|
if wasSelected {
|
||||||
|
selectedConversationID = destination
|
||||||
|
// Keep the private-peer selection axis consistent with the
|
||||||
|
// handed-off selection.
|
||||||
|
if let peerID = selectedPrivatePeerID,
|
||||||
|
source == .directPeer(peerID),
|
||||||
|
case .direct(let destinationHandle) = destination {
|
||||||
|
selectedPrivatePeerID = destinationHandle.routingPeerID
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
changes.send(.migrated(from: source, to: destination))
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Removes a single message by ID from a conversation. Returns the
|
||||||
|
/// removed message, or `nil` (emitting nothing) when the conversation or
|
||||||
|
/// message is unknown.
|
||||||
|
@discardableResult
|
||||||
|
func removeMessage(withID messageID: String, from id: ConversationID) -> BitchatMessage? {
|
||||||
|
guard let conversation = conversationsByID[id],
|
||||||
|
let removed = conversation.remove(messageID: messageID) else {
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
unregisterMessageID(messageID, from: id)
|
||||||
|
changes.send(.messageRemoved(id, messageID: messageID))
|
||||||
|
return removed
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Removes every message matching `predicate` from a conversation,
|
||||||
|
/// emitting one `.messageRemoved` per removed message after the
|
||||||
|
/// conversation is consistent. No-op for unknown conversations.
|
||||||
|
func removeMessages(from id: ConversationID, where predicate: (BitchatMessage) -> Bool) {
|
||||||
|
guard let conversation = conversationsByID[id] else { return }
|
||||||
|
let removedIDs = conversation.removeAll(where: predicate)
|
||||||
|
unregisterMessageIDs(removedIDs, from: id)
|
||||||
|
for messageID in removedIDs {
|
||||||
|
changes.send(.messageRemoved(id, messageID: messageID))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Empties a conversation's timeline but keeps the conversation (and
|
||||||
|
/// its unread/selection state) alive.
|
||||||
|
func clear(_ id: ConversationID) {
|
||||||
|
guard let conversation = conversationsByID[id] else { return }
|
||||||
|
for messageID in conversation.messageIDs {
|
||||||
|
unregisterMessageID(messageID, from: id)
|
||||||
|
}
|
||||||
|
conversation.clearMessages()
|
||||||
|
changes.send(.cleared(id))
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Removes a conversation entirely, including unread state; clears the
|
||||||
|
/// selection if it pointed at the removed conversation.
|
||||||
|
func removeConversation(_ id: ConversationID) {
|
||||||
|
guard let conversation = conversationsByID.removeValue(forKey: id) else { return }
|
||||||
|
for messageID in conversation.messageIDs {
|
||||||
|
unregisterMessageID(messageID, from: id)
|
||||||
|
}
|
||||||
|
conversationIDs.removeAll { $0 == id }
|
||||||
|
unreadConversations.remove(id)
|
||||||
|
if selectedConversationID == id {
|
||||||
|
selectedConversationID = nil
|
||||||
|
}
|
||||||
|
changes.send(.removed(id))
|
||||||
|
}
|
||||||
|
|
||||||
|
func clearAll() {
|
||||||
|
let removedIDs = conversationIDs
|
||||||
|
guard !removedIDs.isEmpty || selectedConversationID != nil else { return }
|
||||||
|
|
||||||
|
conversationsByID.removeAll()
|
||||||
|
conversationIDs.removeAll()
|
||||||
|
unreadConversations.removeAll()
|
||||||
|
conversationIDsByMessageID.removeAll()
|
||||||
|
if selectedConversationID != nil {
|
||||||
|
selectedConversationID = nil
|
||||||
|
}
|
||||||
|
|
||||||
|
for id in removedIDs {
|
||||||
|
changes.send(.removed(id))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: Diagnostics
|
||||||
|
|
||||||
|
/// Total messages across all conversations. O(#conversations) — heartbeat
|
||||||
|
/// logging only, never a hot path.
|
||||||
|
var totalMessageCount: Int {
|
||||||
|
conversationsByID.values.reduce(0) { $0 + $1.messages.count }
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Number of distinct message IDs in the store-level membership map.
|
||||||
|
var messageIDMapCount: Int {
|
||||||
|
conversationIDsByMessageID.count
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Verifies the store's correctness invariants and returns human-readable
|
||||||
|
/// violations (empty = healthy). Intended for a periodic field audit:
|
||||||
|
/// O(total messages) and allocation-free while healthy. Checks:
|
||||||
|
/// - the `conversationIDs` ordering array matches `conversationsByID`
|
||||||
|
/// - per conversation: ID index exact, cap held, timestamp order
|
||||||
|
/// (see `Conversation.collectInvariantViolations`)
|
||||||
|
/// - the message-ID → conversation map matches reality exactly: every
|
||||||
|
/// mapped membership points at a live conversation actually holding
|
||||||
|
/// the message, and total memberships equal total messages (with the
|
||||||
|
/// forward check, equality proves no conversation message is missing
|
||||||
|
/// from the map)
|
||||||
|
/// - `unreadConversations` only references existing conversations
|
||||||
|
/// - `selectedConversationID`, when set, references an existing
|
||||||
|
/// conversation (`select(_:)` creates on selection and
|
||||||
|
/// `removeConversation`/`clearAll` clear it, so existence is the
|
||||||
|
/// invariant for both the channel-derived and direct-peer cases)
|
||||||
|
func auditInvariants() -> [String] {
|
||||||
|
var violations: [String] = []
|
||||||
|
|
||||||
|
if conversationIDs.count != conversationsByID.count {
|
||||||
|
violations.append("conversationIDs lists \(conversationIDs.count) conversations but dictionary holds \(conversationsByID.count)")
|
||||||
|
}
|
||||||
|
for id in conversationIDs where conversationsByID[id] == nil {
|
||||||
|
violations.append("conversationIDs lists \(id.auditDescription) but no conversation exists")
|
||||||
|
}
|
||||||
|
|
||||||
|
var totalMessages = 0
|
||||||
|
for (id, conversation) in conversationsByID {
|
||||||
|
totalMessages += conversation.messages.count
|
||||||
|
conversation.collectInvariantViolations(into: &violations, label: id.auditDescription)
|
||||||
|
}
|
||||||
|
|
||||||
|
var totalMappedMemberships = 0
|
||||||
|
for (messageID, ids) in conversationIDsByMessageID {
|
||||||
|
totalMappedMemberships += ids.count
|
||||||
|
if ids.isEmpty {
|
||||||
|
violations.append("message map: \(messageID.prefix(8))… has an empty membership set")
|
||||||
|
}
|
||||||
|
for id in ids {
|
||||||
|
guard let conversation = conversationsByID[id] else {
|
||||||
|
violations.append("message map: \(messageID.prefix(8))… claims unknown conversation \(id.auditDescription)")
|
||||||
|
continue
|
||||||
|
}
|
||||||
|
if !conversation.containsMessage(withID: messageID) {
|
||||||
|
violations.append("message map: \(messageID.prefix(8))… not present in claimed conversation \(id.auditDescription)")
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
if totalMappedMemberships != totalMessages {
|
||||||
|
violations.append("message map holds \(totalMappedMemberships) memberships but conversations hold \(totalMessages) messages")
|
||||||
|
}
|
||||||
|
|
||||||
|
for id in unreadConversations where conversationsByID[id] == nil {
|
||||||
|
violations.append("unreadConversations contains unknown conversation \(id.auditDescription)")
|
||||||
|
}
|
||||||
|
|
||||||
|
if let selected = selectedConversationID, conversationsByID[selected] == nil {
|
||||||
|
violations.append("selectedConversationID \(selected.auditDescription) has no conversation")
|
||||||
|
}
|
||||||
|
|
||||||
|
return violations
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: Internals
|
||||||
|
|
||||||
|
private func registerMessageID(_ messageID: String, in id: ConversationID) {
|
||||||
|
conversationIDsByMessageID[messageID, default: []].insert(id)
|
||||||
|
// Single choke point for every successful insertion (append, upsert
|
||||||
|
// append, migration insert) — the audit heartbeat's throughput delta.
|
||||||
|
appendCount += 1
|
||||||
|
}
|
||||||
|
|
||||||
|
private func unregisterMessageID(_ messageID: String, from id: ConversationID) {
|
||||||
|
guard var ids = conversationIDsByMessageID[messageID] else { return }
|
||||||
|
ids.remove(id)
|
||||||
|
if ids.isEmpty {
|
||||||
|
conversationIDsByMessageID.removeValue(forKey: messageID)
|
||||||
|
} else {
|
||||||
|
conversationIDsByMessageID[messageID] = ids
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private func unregisterMessageIDs(_ messageIDs: [String], from id: ConversationID) {
|
||||||
|
for messageID in messageIDs {
|
||||||
|
unregisterMessageID(messageID, from: id)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func cap(for id: ConversationID) -> Int {
|
||||||
|
switch id {
|
||||||
|
case .mesh:
|
||||||
|
return TransportConfig.meshTimelineCap
|
||||||
|
case .geohash:
|
||||||
|
return TransportConfig.geoTimelineCap
|
||||||
|
case .direct:
|
||||||
|
return TransportConfig.privateChatCap
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: - Direct-conversation keying + derived views
|
||||||
|
|
||||||
|
extension ConversationID {
|
||||||
|
/// Direct-conversation ID keyed by the *raw* routing peer ID.
|
||||||
|
///
|
||||||
|
/// Direct conversations are deliberately keyed per `PeerID`, not per
|
||||||
|
/// resolved identity: the private-chat coordinators mirror messages into
|
||||||
|
/// both the ephemeral and stable peer's conversations
|
||||||
|
/// (`mirrorToEphemeralIfNeeded`) and consolidate/migrate between them
|
||||||
|
/// explicitly, so a raw lookup by whichever peer ID is selected always
|
||||||
|
/// finds the right timeline without an identity-resolution layer.
|
||||||
|
static func directPeer(_ peerID: PeerID) -> ConversationID {
|
||||||
|
.direct(PeerHandle(id: "peer:\(peerID.id)", routingPeerID: peerID))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
extension ConversationStore {
|
||||||
|
/// All direct conversations' messages keyed by routing peer ID — the
|
||||||
|
/// shape `ChatViewModel.privateChats` exposes to the coordinators.
|
||||||
|
/// Values are the conversations' backing arrays (COW), so building this
|
||||||
|
/// is O(#conversations), not O(#messages).
|
||||||
|
func directMessagesByRoutingPeerID() -> [PeerID: [BitchatMessage]] {
|
||||||
|
var messagesByPeerID: [PeerID: [BitchatMessage]] = [:]
|
||||||
|
messagesByPeerID.reserveCapacity(conversationsByID.count)
|
||||||
|
for (id, conversation) in conversationsByID {
|
||||||
|
guard case .direct(let handle) = id else { continue }
|
||||||
|
messagesByPeerID[handle.routingPeerID] = conversation.messages
|
||||||
|
}
|
||||||
|
return messagesByPeerID
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Unread direct conversations as routing peer IDs — the shape
|
||||||
|
/// `ChatViewModel.unreadPrivateMessages` exposes to the coordinators.
|
||||||
|
func unreadDirectRoutingPeerIDs() -> Set<PeerID> {
|
||||||
|
var peerIDs = Set<PeerID>()
|
||||||
|
for id in unreadConversations {
|
||||||
|
guard case .direct(let handle) = id else { continue }
|
||||||
|
peerIDs.insert(handle.routingPeerID)
|
||||||
|
}
|
||||||
|
return peerIDs
|
||||||
|
}
|
||||||
|
|
||||||
|
/// `true` when any direct conversation contains a message with `messageID`
|
||||||
|
/// (O(1) via the store-level message-ID → conversation map).
|
||||||
|
func directConversationsContainMessage(withID messageID: String) -> Bool {
|
||||||
|
conversationIDs(forMessageID: messageID).contains { id in
|
||||||
|
if case .direct = id { return true }
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Message IDs across all direct conversations (read-receipt pruning
|
||||||
|
/// keeps only receipts whose messages still exist).
|
||||||
|
func directMessageIDs() -> Set<String> {
|
||||||
|
var messageIDs = Set<String>()
|
||||||
|
for (id, conversation) in conversationsByID {
|
||||||
|
guard case .direct = id else { continue }
|
||||||
|
messageIDs.formUnion(conversation.messageIDs)
|
||||||
|
}
|
||||||
|
return messageIDs
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Removes every direct conversation (panic clear).
|
||||||
|
func removeAllDirectConversations() {
|
||||||
|
let directIDs = conversationIDs.filter { id in
|
||||||
|
if case .direct = id { return true }
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
for id in directIDs {
|
||||||
|
removeConversation(id)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: - Diagnostics support
|
||||||
|
|
||||||
|
extension ConversationID {
|
||||||
|
/// Short, log-safe description for audit/diagnostic lines. Direct
|
||||||
|
/// conversations truncate the handle so full peer keys never hit logs.
|
||||||
|
fileprivate var auditDescription: String {
|
||||||
|
switch self {
|
||||||
|
case .mesh:
|
||||||
|
return "mesh"
|
||||||
|
case .geohash(let geohash):
|
||||||
|
return "geo:\(geohash)"
|
||||||
|
case .direct(let handle):
|
||||||
|
return "direct:\(handle.id.prefix(13))…"
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
#if DEBUG
|
||||||
|
// Test-only corruption hooks for `auditInvariants()` tests. The store is the
|
||||||
|
// sole writer by design — `Conversation`'s mutators are fileprivate and the
|
||||||
|
// store's backing collections are private — so the inconsistent states the
|
||||||
|
// audit exists to catch CANNOT be manufactured through the intent API. These
|
||||||
|
// DEBUG-only hooks deliberately bypass that lockdown to inject exactly those
|
||||||
|
// impossible states. Never call them outside tests.
|
||||||
|
extension Conversation {
|
||||||
|
/// Points an existing message's index entry at the wrong position
|
||||||
|
/// (positions 0 and 1 swap their index entries). Requires >= 2 messages.
|
||||||
|
func _testCorruptIndexEntries() {
|
||||||
|
guard messages.count >= 2 else { return }
|
||||||
|
indexByMessageID[messages[0].id] = 1
|
||||||
|
indexByMessageID[messages[1].id] = 0
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Drops a message's index entry entirely (count mismatch + missing).
|
||||||
|
func _testRemoveIndexEntry(forMessageID messageID: String) {
|
||||||
|
indexByMessageID.removeValue(forKey: messageID)
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Swaps the first and last messages while keeping the index consistent,
|
||||||
|
/// so ONLY the timestamp-order invariant is violated (requires the two
|
||||||
|
/// messages to have distinct timestamps).
|
||||||
|
func _testCorruptOrderingPreservingIndex() {
|
||||||
|
guard messages.count >= 2 else { return }
|
||||||
|
messages.swapAt(0, messages.count - 1)
|
||||||
|
indexByMessageID[messages[0].id] = 0
|
||||||
|
indexByMessageID[messages[messages.count - 1].id] = messages.count - 1
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
extension ConversationStore {
|
||||||
|
/// Adds a map membership that the conversation does not actually hold.
|
||||||
|
func _testRegisterPhantomMessageID(_ messageID: String, in id: ConversationID) {
|
||||||
|
conversationIDsByMessageID[messageID, default: []].insert(id)
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Drops a real map membership (conversation message missing from map).
|
||||||
|
func _testUnregisterMessageID(_ messageID: String, from id: ConversationID) {
|
||||||
|
conversationIDsByMessageID[messageID]?.remove(id)
|
||||||
|
if conversationIDsByMessageID[messageID]?.isEmpty == true {
|
||||||
|
conversationIDsByMessageID.removeValue(forKey: messageID)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Appends past the conversation cap, bypassing trim (map kept exact so
|
||||||
|
/// only the cap invariant is violated).
|
||||||
|
func _testAppendBypassingCap(_ message: BitchatMessage, to id: ConversationID) {
|
||||||
|
let conversation = conversation(for: id)
|
||||||
|
conversation._testAppendBypassingTrim(message)
|
||||||
|
conversationIDsByMessageID[message.id, default: []].insert(id)
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Marks a nonexistent conversation unread without creating it.
|
||||||
|
func _testInsertUnreadConversationID(_ id: ConversationID) {
|
||||||
|
unreadConversations.insert(id)
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Sets the selection directly, without `select(_:)`'s create-on-select.
|
||||||
|
func _testSetSelectedConversationID(_ id: ConversationID?) {
|
||||||
|
selectedConversationID = id
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
extension Conversation {
|
||||||
|
fileprivate func _testAppendBypassingTrim(_ message: BitchatMessage) {
|
||||||
|
messages.append(message)
|
||||||
|
indexByMessageID[message.id] = messages.count - 1
|
||||||
|
}
|
||||||
|
}
|
||||||
|
#endif
|
||||||
|
|
||||||
|
// MARK: - Public timeline derived views
|
||||||
|
|
||||||
|
extension ConversationStore {
|
||||||
|
/// Removes a message by ID from whichever public (mesh/geohash)
|
||||||
|
/// conversation contains it. Returns the removed message, if any.
|
||||||
|
@discardableResult
|
||||||
|
func removePublicMessage(withID messageID: String) -> BitchatMessage? {
|
||||||
|
for id in conversationIDs(forMessageID: messageID) {
|
||||||
|
switch id {
|
||||||
|
case .mesh, .geohash:
|
||||||
|
return removeMessage(withID: messageID, from: id)
|
||||||
|
case .direct:
|
||||||
|
continue
|
||||||
|
}
|
||||||
|
}
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,207 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Combine
|
||||||
|
import SwiftUI
|
||||||
|
#if os(iOS)
|
||||||
|
import UIKit
|
||||||
|
#endif
|
||||||
|
|
||||||
|
@MainActor
|
||||||
|
final class ConversationUIModel: ObservableObject {
|
||||||
|
@Published private(set) var showAutocomplete = false
|
||||||
|
@Published private(set) var autocompleteSuggestions: [String] = []
|
||||||
|
@Published private(set) var currentNickname: String
|
||||||
|
@Published private(set) var isBatchingPublic = false
|
||||||
|
@Published private(set) var canSendMediaInCurrentContext = true
|
||||||
|
|
||||||
|
private let chatViewModel: ChatViewModel
|
||||||
|
private let privateConversationModel: PrivateConversationModel
|
||||||
|
private let conversations: ConversationStore
|
||||||
|
private var activeChannel: ChannelID
|
||||||
|
private var cancellables = Set<AnyCancellable>()
|
||||||
|
|
||||||
|
init(
|
||||||
|
chatViewModel: ChatViewModel,
|
||||||
|
privateConversationModel: PrivateConversationModel,
|
||||||
|
conversations: ConversationStore
|
||||||
|
) {
|
||||||
|
self.chatViewModel = chatViewModel
|
||||||
|
self.privateConversationModel = privateConversationModel
|
||||||
|
self.conversations = conversations
|
||||||
|
self.activeChannel = conversations.activeChannel
|
||||||
|
self.currentNickname = chatViewModel.nickname
|
||||||
|
self.isBatchingPublic = chatViewModel.isBatchingPublic
|
||||||
|
self.showAutocomplete = chatViewModel.showAutocomplete
|
||||||
|
self.autocompleteSuggestions = chatViewModel.autocompleteSuggestions
|
||||||
|
self.canSendMediaInCurrentContext = chatViewModel.canSendMediaInCurrentContext
|
||||||
|
|
||||||
|
bind()
|
||||||
|
}
|
||||||
|
|
||||||
|
func setCurrentColorScheme(_ colorScheme: ColorScheme) {
|
||||||
|
chatViewModel.currentColorScheme = colorScheme
|
||||||
|
}
|
||||||
|
|
||||||
|
func setCurrentTheme(_ theme: AppTheme) {
|
||||||
|
chatViewModel.currentTheme = theme
|
||||||
|
}
|
||||||
|
|
||||||
|
func sendMessage(_ message: String) {
|
||||||
|
chatViewModel.sendMessage(message)
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Resends a failed private message through the normal send path,
|
||||||
|
/// removing the failed original so the re-submission replaces it
|
||||||
|
/// instead of stacking a duplicate under the red bubble.
|
||||||
|
func resendFailedPrivateMessage(_ message: BitchatMessage) {
|
||||||
|
chatViewModel.removePrivateMessage(withID: message.id)
|
||||||
|
chatViewModel.sendMessage(message.content)
|
||||||
|
}
|
||||||
|
|
||||||
|
func clearCurrentConversation() {
|
||||||
|
chatViewModel.sendMessage("/clear")
|
||||||
|
}
|
||||||
|
|
||||||
|
func sendHug(to sender: String) {
|
||||||
|
chatViewModel.sendMessage("/hug @\(sender)")
|
||||||
|
}
|
||||||
|
|
||||||
|
func sendSlap(to sender: String) {
|
||||||
|
chatViewModel.sendMessage("/slap @\(sender)")
|
||||||
|
}
|
||||||
|
|
||||||
|
func block(peerID: PeerID?, displayName: String?) {
|
||||||
|
guard let displayName else { return }
|
||||||
|
|
||||||
|
if let peerID, peerID.isGeoChat,
|
||||||
|
let full = chatViewModel.fullNostrHex(forSenderPeerID: peerID) {
|
||||||
|
chatViewModel.blockGeohashUser(pubkeyHexLowercased: full, displayName: displayName)
|
||||||
|
} else if let peerID, !peerID.isGeoDM, !peerID.isGeoChat {
|
||||||
|
// Mesh: block the peer's stable Noise identity resolved from the
|
||||||
|
// tapped peerID rather than re-resolving a display-name string.
|
||||||
|
chatViewModel.blockMeshPeer(peerID: peerID, displayName: displayName)
|
||||||
|
} else {
|
||||||
|
chatViewModel.sendMessage("/block \(displayName)")
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Mesh counterpart of `block(peerID:displayName:)`. Resolves the unblock by
|
||||||
|
/// the tapped peer's stable identity so the exact row is unblocked — this
|
||||||
|
/// also works for offline peers, which the `/unblock <displayName>` command
|
||||||
|
/// cannot resolve.
|
||||||
|
func unblock(peerID: PeerID, displayName: String) {
|
||||||
|
chatViewModel.unblockMeshPeer(peerID: peerID, displayName: displayName)
|
||||||
|
}
|
||||||
|
|
||||||
|
func updateAutocomplete(for text: String, cursorPosition: Int) {
|
||||||
|
chatViewModel.updateAutocomplete(for: text, cursorPosition: cursorPosition)
|
||||||
|
}
|
||||||
|
|
||||||
|
func completeNickname(_ nickname: String, in text: inout String) -> Int {
|
||||||
|
chatViewModel.completeNickname(nickname, in: &text)
|
||||||
|
}
|
||||||
|
|
||||||
|
func formatMessage(_ message: BitchatMessage, colorScheme: ColorScheme, theme: AppTheme? = nil) -> AttributedString {
|
||||||
|
chatViewModel.formatMessageAsText(message, colorScheme: colorScheme, theme: theme)
|
||||||
|
}
|
||||||
|
|
||||||
|
func formatMessageHeader(_ message: BitchatMessage, colorScheme: ColorScheme, theme: AppTheme? = nil) -> AttributedString {
|
||||||
|
chatViewModel.formatMessageHeader(message, colorScheme: colorScheme, theme: theme)
|
||||||
|
}
|
||||||
|
|
||||||
|
func mediaAttachment(for message: BitchatMessage) -> BitchatMessage.Media? {
|
||||||
|
message.mediaAttachment(for: currentNickname)
|
||||||
|
}
|
||||||
|
|
||||||
|
func isSelfSender(peerID: PeerID?, displayName: String?) -> Bool {
|
||||||
|
chatViewModel.isSelfSender(peerID: peerID, displayName: displayName)
|
||||||
|
}
|
||||||
|
|
||||||
|
func isSentByCurrentUser(_ message: BitchatMessage) -> Bool {
|
||||||
|
message.sender == currentNickname || message.sender.hasPrefix(currentNickname + "#")
|
||||||
|
}
|
||||||
|
|
||||||
|
func isMediaMessageFromCurrentUser(_ message: BitchatMessage) -> Bool {
|
||||||
|
message.sender == currentNickname || message.senderPeerID == chatViewModel.meshService.myPeerID
|
||||||
|
}
|
||||||
|
|
||||||
|
func senderDisplayName(for peerID: PeerID, fallbackMessages: [BitchatMessage]) -> String? {
|
||||||
|
if peerID.isGeoDM || peerID.isGeoChat {
|
||||||
|
return chatViewModel.geohashDisplayName(for: peerID)
|
||||||
|
}
|
||||||
|
if let nickname = chatViewModel.meshService.peerNickname(peerID: peerID) {
|
||||||
|
return nickname
|
||||||
|
}
|
||||||
|
return fallbackMessages.last(where: { $0.senderPeerID == peerID && $0.sender != "system" })?.sender
|
||||||
|
}
|
||||||
|
|
||||||
|
#if os(iOS)
|
||||||
|
func processSelectedImage(_ image: UIImage?) {
|
||||||
|
chatViewModel.processThenSendImage(image)
|
||||||
|
}
|
||||||
|
#endif
|
||||||
|
|
||||||
|
func processSelectedImage(from url: URL?) {
|
||||||
|
#if os(macOS)
|
||||||
|
chatViewModel.processThenSendImage(from: url)
|
||||||
|
#endif
|
||||||
|
}
|
||||||
|
|
||||||
|
func sendVoiceNote(at url: URL) {
|
||||||
|
chatViewModel.sendVoiceNote(at: url)
|
||||||
|
}
|
||||||
|
|
||||||
|
func cancelMediaSend(messageID: String) {
|
||||||
|
chatViewModel.cancelMediaSend(messageID: messageID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func deleteMediaMessage(messageID: String) {
|
||||||
|
chatViewModel.deleteMediaMessage(messageID: messageID)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func bind() {
|
||||||
|
chatViewModel.$nickname
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$currentNickname)
|
||||||
|
|
||||||
|
chatViewModel.$showAutocomplete
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$showAutocomplete)
|
||||||
|
|
||||||
|
chatViewModel.$autocompleteSuggestions
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$autocompleteSuggestions)
|
||||||
|
|
||||||
|
chatViewModel.$isBatchingPublic
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$isBatchingPublic)
|
||||||
|
|
||||||
|
conversations.$activeChannel
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] channel in
|
||||||
|
self?.activeChannel = channel
|
||||||
|
self?.refreshComputedState()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
privateConversationModel.$selectedPeerID
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refreshComputedState()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func refreshComputedState() {
|
||||||
|
if let selectedPeerID = privateConversationModel.selectedPeerID {
|
||||||
|
canSendMediaInCurrentContext = !(selectedPeerID.isGeoDM || selectedPeerID.isGeoChat)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
switch activeChannel {
|
||||||
|
case .mesh:
|
||||||
|
canSendMediaInCurrentContext = true
|
||||||
|
case .location:
|
||||||
|
canSendMediaInCurrentContext = false
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,176 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Combine
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
@MainActor
|
||||||
|
final class LocationChannelsModel: ObservableObject {
|
||||||
|
@Published private(set) var permissionState: LocationChannelManager.PermissionState
|
||||||
|
@Published private(set) var availableChannels: [GeohashChannel]
|
||||||
|
@Published private(set) var selectedChannel: ChannelID
|
||||||
|
@Published private(set) var teleported: Bool
|
||||||
|
@Published private(set) var bookmarks: [String]
|
||||||
|
@Published private(set) var bookmarkNames: [String: String]
|
||||||
|
@Published private(set) var locationNames: [GeohashChannelLevel: String]
|
||||||
|
@Published private(set) var userTorEnabled: Bool
|
||||||
|
|
||||||
|
private let manager: LocationChannelManager
|
||||||
|
private let network: NetworkActivationService
|
||||||
|
private var cancellables = Set<AnyCancellable>()
|
||||||
|
|
||||||
|
init(
|
||||||
|
manager: LocationChannelManager? = nil,
|
||||||
|
network: NetworkActivationService? = nil
|
||||||
|
) {
|
||||||
|
let manager = manager ?? .shared
|
||||||
|
let network = network ?? .shared
|
||||||
|
|
||||||
|
self.manager = manager
|
||||||
|
self.network = network
|
||||||
|
self.permissionState = manager.permissionState
|
||||||
|
self.availableChannels = manager.availableChannels
|
||||||
|
self.selectedChannel = manager.selectedChannel
|
||||||
|
self.teleported = manager.teleported
|
||||||
|
self.bookmarks = manager.bookmarks
|
||||||
|
self.bookmarkNames = manager.bookmarkNames
|
||||||
|
self.locationNames = manager.locationNames
|
||||||
|
self.userTorEnabled = network.userTorEnabled
|
||||||
|
|
||||||
|
bind()
|
||||||
|
}
|
||||||
|
|
||||||
|
var currentBuildingGeohash: String? {
|
||||||
|
availableChannels.first(where: { $0.level == .building })?.geohash
|
||||||
|
}
|
||||||
|
|
||||||
|
func isSelected(_ channel: GeohashChannel) -> Bool {
|
||||||
|
guard case .location(let selected) = selectedChannel else { return false }
|
||||||
|
return selected == channel
|
||||||
|
}
|
||||||
|
|
||||||
|
func isBookmarked(_ geohash: String) -> Bool {
|
||||||
|
manager.isBookmarked(geohash)
|
||||||
|
}
|
||||||
|
|
||||||
|
func enableLocationChannels() {
|
||||||
|
manager.enableLocationChannels()
|
||||||
|
}
|
||||||
|
|
||||||
|
func refreshChannels() {
|
||||||
|
manager.refreshChannels()
|
||||||
|
}
|
||||||
|
|
||||||
|
func enableAndRefresh() {
|
||||||
|
manager.enableLocationChannels()
|
||||||
|
manager.refreshChannels()
|
||||||
|
}
|
||||||
|
|
||||||
|
func beginLiveRefresh() {
|
||||||
|
manager.beginLiveRefresh()
|
||||||
|
}
|
||||||
|
|
||||||
|
func endLiveRefresh() {
|
||||||
|
manager.endLiveRefresh()
|
||||||
|
}
|
||||||
|
|
||||||
|
func select(_ channel: ChannelID) {
|
||||||
|
manager.select(channel)
|
||||||
|
}
|
||||||
|
|
||||||
|
func markTeleported(for geohash: String, _ flag: Bool) {
|
||||||
|
manager.markTeleported(for: geohash, flag)
|
||||||
|
}
|
||||||
|
|
||||||
|
func toggleBookmark(_ geohash: String) {
|
||||||
|
manager.toggleBookmark(geohash)
|
||||||
|
}
|
||||||
|
|
||||||
|
func resolveBookmarkNameIfNeeded(for geohash: String) {
|
||||||
|
manager.resolveBookmarkNameIfNeeded(for: geohash)
|
||||||
|
}
|
||||||
|
|
||||||
|
func locationName(for level: GeohashChannelLevel) -> String? {
|
||||||
|
locationNames[level]
|
||||||
|
}
|
||||||
|
|
||||||
|
func setUserTorEnabled(_ enabled: Bool) {
|
||||||
|
network.setUserTorEnabled(enabled)
|
||||||
|
}
|
||||||
|
|
||||||
|
func refreshMeshChannelsIfNeeded() {
|
||||||
|
guard case .mesh = selectedChannel,
|
||||||
|
permissionState == .authorized,
|
||||||
|
availableChannels.isEmpty else {
|
||||||
|
return
|
||||||
|
}
|
||||||
|
refreshChannels()
|
||||||
|
}
|
||||||
|
|
||||||
|
func openLocationChannel(for geohash: String) {
|
||||||
|
let normalized = geohash.trimmingCharacters(in: .whitespacesAndNewlines).lowercased()
|
||||||
|
let allowed = Set("0123456789bcdefghjkmnpqrstuvwxyz")
|
||||||
|
guard (2...12).contains(normalized.count),
|
||||||
|
normalized.allSatisfy({ allowed.contains($0) }) else {
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
let channel = GeohashChannel(level: level(forLength: normalized.count), geohash: normalized)
|
||||||
|
let isRegional = availableChannels.contains { $0.geohash == normalized }
|
||||||
|
if !isRegional && !availableChannels.isEmpty {
|
||||||
|
markTeleported(for: normalized, true)
|
||||||
|
}
|
||||||
|
select(.location(channel))
|
||||||
|
}
|
||||||
|
|
||||||
|
func teleport(to geohash: String) {
|
||||||
|
let normalized = geohash.trimmingCharacters(in: .whitespacesAndNewlines).lowercased()
|
||||||
|
let channel = GeohashChannel(level: level(forLength: normalized.count), geohash: normalized)
|
||||||
|
markTeleported(for: normalized, true)
|
||||||
|
select(.location(channel))
|
||||||
|
}
|
||||||
|
|
||||||
|
private func bind() {
|
||||||
|
manager.$permissionState
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$permissionState)
|
||||||
|
|
||||||
|
manager.$availableChannels
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$availableChannels)
|
||||||
|
|
||||||
|
manager.$selectedChannel
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$selectedChannel)
|
||||||
|
|
||||||
|
manager.$teleported
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$teleported)
|
||||||
|
|
||||||
|
manager.$bookmarks
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$bookmarks)
|
||||||
|
|
||||||
|
manager.$bookmarkNames
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$bookmarkNames)
|
||||||
|
|
||||||
|
manager.$locationNames
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$locationNames)
|
||||||
|
|
||||||
|
network.$userTorEnabled
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$userTorEnabled)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func level(forLength length: Int) -> GeohashChannelLevel {
|
||||||
|
switch length {
|
||||||
|
case 0...2: return .region
|
||||||
|
case 3...4: return .province
|
||||||
|
case 5: return .city
|
||||||
|
case 6: return .neighborhood
|
||||||
|
case 7: return .block
|
||||||
|
case 8...12: return .building
|
||||||
|
default: return .block
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,51 @@
|
|||||||
|
import Combine
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
@MainActor
|
||||||
|
final class LocationPresenceStore: ObservableObject {
|
||||||
|
@Published private(set) var currentGeohash: String?
|
||||||
|
@Published private(set) var geoNicknames: [String: String] = [:]
|
||||||
|
@Published private(set) var teleportedGeo: Set<String> = []
|
||||||
|
|
||||||
|
func setCurrentGeohash(_ geohash: String?) {
|
||||||
|
currentGeohash = geohash?.lowercased()
|
||||||
|
}
|
||||||
|
|
||||||
|
func setNickname(_ nickname: String, for pubkeyHex: String) {
|
||||||
|
geoNicknames[pubkeyHex.lowercased()] = nickname
|
||||||
|
}
|
||||||
|
|
||||||
|
func replaceGeoNicknames(_ nicknames: [String: String]) {
|
||||||
|
geoNicknames = Dictionary(
|
||||||
|
uniqueKeysWithValues: nicknames.map { key, value in
|
||||||
|
(key.lowercased(), value)
|
||||||
|
}
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
func clearGeoNicknames() {
|
||||||
|
geoNicknames.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
func markTeleported(_ pubkeyHex: String) {
|
||||||
|
teleportedGeo.insert(pubkeyHex.lowercased())
|
||||||
|
}
|
||||||
|
|
||||||
|
func clearTeleported(_ pubkeyHex: String) {
|
||||||
|
teleportedGeo.remove(pubkeyHex.lowercased())
|
||||||
|
}
|
||||||
|
|
||||||
|
func replaceTeleportedGeo(_ pubkeys: Set<String>) {
|
||||||
|
teleportedGeo = Set(pubkeys.map { $0.lowercased() })
|
||||||
|
}
|
||||||
|
|
||||||
|
func clearTeleportedGeo() {
|
||||||
|
teleportedGeo.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
func reset() {
|
||||||
|
currentGeohash = nil
|
||||||
|
geoNicknames.removeAll()
|
||||||
|
teleportedGeo.removeAll()
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,125 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Combine
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
@MainActor
|
||||||
|
final class PeerIdentityStore: ObservableObject {
|
||||||
|
@Published private(set) var encryptionStatuses: [PeerID: EncryptionStatus] = [:]
|
||||||
|
@Published private(set) var verifiedFingerprints: Set<String> = []
|
||||||
|
|
||||||
|
private(set) var peerFingerprintsByPeerID: [PeerID: String] = [:]
|
||||||
|
private(set) var selectedPrivateChatFingerprint: String?
|
||||||
|
|
||||||
|
private var stablePeerIDsByShortID: [PeerID: PeerID] = [:]
|
||||||
|
private var encryptionStatusCache: [PeerID: EncryptionStatus] = [:]
|
||||||
|
|
||||||
|
func stablePeerID(forShortID peerID: PeerID) -> PeerID? {
|
||||||
|
stablePeerIDsByShortID[peerID]
|
||||||
|
}
|
||||||
|
|
||||||
|
func shortPeerID(forStablePeerID stablePeerID: PeerID) -> PeerID? {
|
||||||
|
stablePeerIDsByShortID.first(where: { $0.value == stablePeerID })?.key
|
||||||
|
}
|
||||||
|
|
||||||
|
func setStablePeerID(_ stablePeerID: PeerID, forShortID peerID: PeerID) {
|
||||||
|
stablePeerIDsByShortID[peerID] = stablePeerID
|
||||||
|
}
|
||||||
|
|
||||||
|
func replaceStablePeerIDs(_ mappings: [PeerID: PeerID]) {
|
||||||
|
stablePeerIDsByShortID = mappings
|
||||||
|
}
|
||||||
|
|
||||||
|
func fingerprint(for peerID: PeerID) -> String? {
|
||||||
|
peerFingerprintsByPeerID[peerID]
|
||||||
|
}
|
||||||
|
|
||||||
|
func setFingerprint(_ fingerprint: String?, for peerID: PeerID) {
|
||||||
|
if let fingerprint {
|
||||||
|
peerFingerprintsByPeerID[peerID] = fingerprint
|
||||||
|
} else {
|
||||||
|
peerFingerprintsByPeerID.removeValue(forKey: peerID)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func replaceFingerprintMappings(_ mappings: [PeerID: String]) {
|
||||||
|
peerFingerprintsByPeerID = mappings
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
func migrateFingerprintMapping(
|
||||||
|
from oldPeerID: PeerID,
|
||||||
|
to newPeerID: PeerID,
|
||||||
|
fallback: String? = nil
|
||||||
|
) -> String? {
|
||||||
|
let fingerprint = peerFingerprintsByPeerID.removeValue(forKey: oldPeerID) ?? fallback
|
||||||
|
if let fingerprint {
|
||||||
|
peerFingerprintsByPeerID[newPeerID] = fingerprint
|
||||||
|
if selectedPrivateChatFingerprint == nil {
|
||||||
|
selectedPrivateChatFingerprint = fingerprint
|
||||||
|
}
|
||||||
|
}
|
||||||
|
return fingerprint
|
||||||
|
}
|
||||||
|
|
||||||
|
func setSelectedPrivateChatFingerprint(_ fingerprint: String?) {
|
||||||
|
selectedPrivateChatFingerprint = fingerprint
|
||||||
|
}
|
||||||
|
|
||||||
|
func cachedEncryptionStatus(for peerID: PeerID) -> EncryptionStatus? {
|
||||||
|
encryptionStatusCache[peerID]
|
||||||
|
}
|
||||||
|
|
||||||
|
func setCachedEncryptionStatus(_ status: EncryptionStatus, for peerID: PeerID) {
|
||||||
|
encryptionStatusCache[peerID] = status
|
||||||
|
}
|
||||||
|
|
||||||
|
func invalidateEncryptionCache(for peerID: PeerID? = nil) {
|
||||||
|
if let peerID {
|
||||||
|
encryptionStatusCache.removeValue(forKey: peerID)
|
||||||
|
} else {
|
||||||
|
encryptionStatusCache.removeAll()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func encryptionStatus(for peerID: PeerID) -> EncryptionStatus? {
|
||||||
|
encryptionStatuses[peerID]
|
||||||
|
}
|
||||||
|
|
||||||
|
func setEncryptionStatus(_ status: EncryptionStatus?, for peerID: PeerID) {
|
||||||
|
if let status {
|
||||||
|
encryptionStatuses[peerID] = status
|
||||||
|
} else {
|
||||||
|
encryptionStatuses.removeValue(forKey: peerID)
|
||||||
|
}
|
||||||
|
invalidateEncryptionCache(for: peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func replaceEncryptionStatuses(_ statuses: [PeerID: EncryptionStatus]) {
|
||||||
|
encryptionStatuses = statuses
|
||||||
|
}
|
||||||
|
|
||||||
|
func setVerifiedFingerprints(_ fingerprints: Set<String>) {
|
||||||
|
verifiedFingerprints = fingerprints
|
||||||
|
}
|
||||||
|
|
||||||
|
func setVerified(_ fingerprint: String, verified: Bool) {
|
||||||
|
if verified {
|
||||||
|
verifiedFingerprints.insert(fingerprint)
|
||||||
|
} else {
|
||||||
|
verifiedFingerprints.remove(fingerprint)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func isVerified(_ fingerprint: String) -> Bool {
|
||||||
|
verifiedFingerprints.contains(fingerprint)
|
||||||
|
}
|
||||||
|
|
||||||
|
func clearAll() {
|
||||||
|
encryptionStatuses.removeAll()
|
||||||
|
verifiedFingerprints.removeAll()
|
||||||
|
peerFingerprintsByPeerID.removeAll()
|
||||||
|
selectedPrivateChatFingerprint = nil
|
||||||
|
stablePeerIDsByShortID.removeAll()
|
||||||
|
encryptionStatusCache.removeAll()
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,260 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Combine
|
||||||
|
import SwiftUI
|
||||||
|
|
||||||
|
struct MeshPeerRow: Identifiable, Equatable {
|
||||||
|
let peerID: PeerID
|
||||||
|
let displayName: String
|
||||||
|
let isMe: Bool
|
||||||
|
let hasUnread: Bool
|
||||||
|
let isBlocked: Bool
|
||||||
|
let isFavorite: Bool
|
||||||
|
let isConnected: Bool
|
||||||
|
let isReachable: Bool
|
||||||
|
let isMutualFavorite: Bool
|
||||||
|
let encryptionStatus: EncryptionStatus
|
||||||
|
let showsVerifiedBadgeWhenOffline: Bool
|
||||||
|
|
||||||
|
var id: String { peerID.id }
|
||||||
|
}
|
||||||
|
|
||||||
|
struct GeohashPersonRow: Identifiable, Equatable {
|
||||||
|
let id: String
|
||||||
|
let displayName: String
|
||||||
|
let isMe: Bool
|
||||||
|
let isTeleported: Bool
|
||||||
|
let isBlocked: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
@MainActor
|
||||||
|
final class PeerListModel: ObservableObject {
|
||||||
|
@Published private(set) var allPeers: [BitchatPeer] = []
|
||||||
|
@Published private(set) var meshRows: [MeshPeerRow] = []
|
||||||
|
@Published private(set) var geohashPeople: [GeohashPersonRow] = []
|
||||||
|
@Published private(set) var reachableMeshPeerCount = 0
|
||||||
|
@Published private(set) var connectedMeshPeerCount = 0
|
||||||
|
@Published private(set) var visibleGeohashPeerCount = 0
|
||||||
|
@Published private(set) var renderID = ""
|
||||||
|
|
||||||
|
private let chatViewModel: ChatViewModel
|
||||||
|
private let conversations: ConversationStore
|
||||||
|
private let locationChannelsModel: LocationChannelsModel
|
||||||
|
private let peerIdentityStore: PeerIdentityStore
|
||||||
|
private let locationPresenceStore: LocationPresenceStore
|
||||||
|
private var cancellables = Set<AnyCancellable>()
|
||||||
|
|
||||||
|
init(
|
||||||
|
chatViewModel: ChatViewModel,
|
||||||
|
conversations: ConversationStore,
|
||||||
|
locationChannelsModel: LocationChannelsModel? = nil,
|
||||||
|
peerIdentityStore: PeerIdentityStore? = nil,
|
||||||
|
locationPresenceStore: LocationPresenceStore? = nil
|
||||||
|
) {
|
||||||
|
self.chatViewModel = chatViewModel
|
||||||
|
self.conversations = conversations
|
||||||
|
self.locationChannelsModel = locationChannelsModel ?? LocationChannelsModel()
|
||||||
|
self.peerIdentityStore = peerIdentityStore ?? chatViewModel.peerIdentityStore
|
||||||
|
self.locationPresenceStore = locationPresenceStore ?? chatViewModel.locationPresenceStore
|
||||||
|
self.allPeers = chatViewModel.allPeers
|
||||||
|
|
||||||
|
bind()
|
||||||
|
refresh()
|
||||||
|
}
|
||||||
|
|
||||||
|
func colorForMeshPeer(id peerID: PeerID, isDark: Bool) -> Color {
|
||||||
|
chatViewModel.colorForMeshPeer(id: peerID, isDark: isDark)
|
||||||
|
}
|
||||||
|
|
||||||
|
func colorForGeohashPerson(id: String, isDark: Bool) -> Color {
|
||||||
|
chatViewModel.colorForNostrPubkey(id, isDark: isDark)
|
||||||
|
}
|
||||||
|
|
||||||
|
func participantCount(for geohash: String) -> Int {
|
||||||
|
chatViewModel.geohashParticipantCount(for: geohash)
|
||||||
|
}
|
||||||
|
|
||||||
|
func startConversation(with peerID: PeerID) {
|
||||||
|
chatViewModel.startPrivateChat(with: peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func toggleFavorite(peerID: PeerID) {
|
||||||
|
chatViewModel.toggleFavorite(peerID: peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func openGeohashDirectMessage(with pubkeyHex: String) {
|
||||||
|
chatViewModel.startGeohashDM(withPubkeyHex: pubkeyHex)
|
||||||
|
}
|
||||||
|
|
||||||
|
func blockGeohashUser(pubkeyHexLowercased: String, displayName: String) {
|
||||||
|
chatViewModel.blockGeohashUser(
|
||||||
|
pubkeyHexLowercased: pubkeyHexLowercased,
|
||||||
|
displayName: displayName
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
func unblockGeohashUser(pubkeyHexLowercased: String, displayName: String) {
|
||||||
|
chatViewModel.unblockGeohashUser(
|
||||||
|
pubkeyHexLowercased: pubkeyHexLowercased,
|
||||||
|
displayName: displayName
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func bind() {
|
||||||
|
chatViewModel.$allPeers
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] peers in
|
||||||
|
self?.allPeers = peers
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
chatViewModel.$nickname
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
locationPresenceStore.$teleportedGeo
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
conversations.$unreadConversations
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
peerIdentityStore.$encryptionStatuses
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
peerIdentityStore.$verifiedFingerprints
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
NotificationCenter.default.publisher(for: Notification.Name("peerStatusUpdated"))
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
chatViewModel.participantTracker.$visiblePeople
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
locationChannelsModel.$selectedChannel
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
locationChannelsModel.$teleported
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
locationChannelsModel.$availableChannels
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refresh()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func refresh() {
|
||||||
|
let myPeerID = chatViewModel.meshService.myPeerID
|
||||||
|
let meshRows = allPeers.map { peer in
|
||||||
|
let isMe = peer.peerID == myPeerID
|
||||||
|
let verifiedBadge: Bool
|
||||||
|
if !isMe && !peer.isConnected,
|
||||||
|
let fingerprint = chatViewModel.getFingerprint(for: peer.peerID) {
|
||||||
|
verifiedBadge = peerIdentityStore.isVerified(fingerprint)
|
||||||
|
} else {
|
||||||
|
verifiedBadge = false
|
||||||
|
}
|
||||||
|
|
||||||
|
return MeshPeerRow(
|
||||||
|
peerID: peer.peerID,
|
||||||
|
displayName: isMe ? chatViewModel.nickname : peer.nickname,
|
||||||
|
isMe: isMe,
|
||||||
|
hasUnread: chatViewModel.hasUnreadMessages(for: peer.peerID),
|
||||||
|
isBlocked: !isMe && chatViewModel.isPeerBlocked(peer.peerID),
|
||||||
|
isFavorite: peer.favoriteStatus?.isFavorite ?? false,
|
||||||
|
isConnected: peer.isConnected,
|
||||||
|
isReachable: peer.isReachable,
|
||||||
|
isMutualFavorite: peer.isMutualFavorite,
|
||||||
|
encryptionStatus: chatViewModel.getEncryptionStatus(for: peer.peerID),
|
||||||
|
showsVerifiedBadgeWhenOffline: verifiedBadge
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
let meshCounts = meshRows.reduce(into: (reachable: 0, connected: 0)) { counts, row in
|
||||||
|
guard !row.isMe else { return }
|
||||||
|
if row.isConnected {
|
||||||
|
counts.connected += 1
|
||||||
|
counts.reachable += 1
|
||||||
|
} else if row.isReachable {
|
||||||
|
counts.reachable += 1
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
let geohashPeople = buildGeohashPeople()
|
||||||
|
|
||||||
|
self.meshRows = meshRows
|
||||||
|
reachableMeshPeerCount = meshCounts.reachable
|
||||||
|
connectedMeshPeerCount = meshCounts.connected
|
||||||
|
self.geohashPeople = geohashPeople
|
||||||
|
visibleGeohashPeerCount = geohashPeople.count
|
||||||
|
renderID = (
|
||||||
|
meshRows.map {
|
||||||
|
"\($0.id)-\($0.isConnected)-\($0.isReachable)-\($0.hasUnread)-\($0.isFavorite)-\($0.isBlocked)"
|
||||||
|
} +
|
||||||
|
geohashPeople.map {
|
||||||
|
"geo:\($0.id)-\($0.isTeleported)-\($0.isBlocked)-\($0.displayName)"
|
||||||
|
}
|
||||||
|
).joined(separator: "|")
|
||||||
|
}
|
||||||
|
|
||||||
|
private func buildGeohashPeople() -> [GeohashPersonRow] {
|
||||||
|
let myHex = currentGeohashIdentityHex()
|
||||||
|
let teleportedSet = Set(locationPresenceStore.teleportedGeo.map { $0.lowercased() })
|
||||||
|
|
||||||
|
return chatViewModel.visibleGeohashPeople().map { person in
|
||||||
|
let isMe = person.id == myHex
|
||||||
|
return GeohashPersonRow(
|
||||||
|
id: person.id,
|
||||||
|
displayName: person.displayName,
|
||||||
|
isMe: isMe,
|
||||||
|
isTeleported: teleportedSet.contains(person.id.lowercased()) || (isMe && locationChannelsModel.teleported),
|
||||||
|
isBlocked: !isMe && chatViewModel.isGeohashUserBlocked(pubkeyHexLowercased: person.id)
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private func currentGeohashIdentityHex() -> String? {
|
||||||
|
guard case .location(let channel) = locationChannelsModel.selectedChannel,
|
||||||
|
let identity = try? chatViewModel.idBridge.deriveIdentity(forGeohash: channel.geohash) else {
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
return identity.publicKeyHex.lowercased()
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,329 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Combine
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
/// Feature model for private (direct) conversations.
|
||||||
|
///
|
||||||
|
/// Reads the single-writer `ConversationStore` directly: `messages(for:)`
|
||||||
|
/// returns the peer's conversation backing array (no mirror dictionary), and
|
||||||
|
/// the store's typed `changes` subject drives invalidation — a change in the
|
||||||
|
/// SELECTED peer's conversation republishes this model, while appends to
|
||||||
|
/// other private chats only surface through the unread set. Direct
|
||||||
|
/// conversations are keyed by raw routing peer ID; the coordinators'
|
||||||
|
/// ephemeral/stable mirroring guarantees the selected peer's key always
|
||||||
|
/// holds the full timeline (see `ConversationID.directPeer`).
|
||||||
|
@MainActor
|
||||||
|
final class PrivateInboxModel: ObservableObject {
|
||||||
|
@Published private(set) var selectedPeerID: PeerID?
|
||||||
|
@Published private(set) var unreadPeerIDs: Set<PeerID> = []
|
||||||
|
|
||||||
|
private let conversations: ConversationStore
|
||||||
|
private var cancellables = Set<AnyCancellable>()
|
||||||
|
|
||||||
|
init(conversations: ConversationStore) {
|
||||||
|
self.conversations = conversations
|
||||||
|
self.selectedPeerID = conversations.selectedPrivatePeerID
|
||||||
|
self.unreadPeerIDs = conversations.unreadDirectRoutingPeerIDs()
|
||||||
|
|
||||||
|
bind()
|
||||||
|
}
|
||||||
|
|
||||||
|
func messages(for peerID: PeerID?) -> [BitchatMessage] {
|
||||||
|
guard let peerID else { return [] }
|
||||||
|
return conversations.conversationsByID[.directPeer(peerID)]?.messages ?? []
|
||||||
|
}
|
||||||
|
|
||||||
|
private func bind() {
|
||||||
|
conversations.$selectedPrivatePeerID
|
||||||
|
.dropFirst()
|
||||||
|
.sink { [weak self] peerID in
|
||||||
|
guard let self, self.selectedPeerID != peerID else { return }
|
||||||
|
self.selectedPeerID = peerID
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
conversations.changes
|
||||||
|
.sink { [weak self] change in
|
||||||
|
self?.apply(change)
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func apply(_ change: ConversationChange) {
|
||||||
|
switch change {
|
||||||
|
case .appended(let id, _),
|
||||||
|
.updated(let id, _),
|
||||||
|
.statusChanged(let id, _, _),
|
||||||
|
.messageRemoved(let id, _),
|
||||||
|
.cleared(let id):
|
||||||
|
republishIfSelected(id)
|
||||||
|
|
||||||
|
case .unreadChanged(let id, _):
|
||||||
|
guard isDirect(id) else { return }
|
||||||
|
refreshUnreadPeerIDs()
|
||||||
|
|
||||||
|
case .removed(let id):
|
||||||
|
guard isDirect(id) else { return }
|
||||||
|
refreshUnreadPeerIDs()
|
||||||
|
republishIfSelected(id)
|
||||||
|
|
||||||
|
case .migrated(let source, let destination):
|
||||||
|
guard isDirect(source) || isDirect(destination) else { return }
|
||||||
|
refreshUnreadPeerIDs()
|
||||||
|
republishIfSelected(source)
|
||||||
|
republishIfSelected(destination)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private func republishIfSelected(_ id: ConversationID) {
|
||||||
|
guard let selectedPeerID, id == .directPeer(selectedPeerID) else { return }
|
||||||
|
objectWillChange.send()
|
||||||
|
}
|
||||||
|
|
||||||
|
private func refreshUnreadPeerIDs() {
|
||||||
|
let next = conversations.unreadDirectRoutingPeerIDs()
|
||||||
|
guard unreadPeerIDs != next else { return }
|
||||||
|
unreadPeerIDs = next
|
||||||
|
}
|
||||||
|
|
||||||
|
private func isDirect(_ id: ConversationID) -> Bool {
|
||||||
|
if case .direct = id { return true }
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
enum PrivateConversationAvailability: Equatable {
|
||||||
|
case bluetoothConnected
|
||||||
|
case meshReachable
|
||||||
|
case nostrAvailable
|
||||||
|
case offline
|
||||||
|
}
|
||||||
|
|
||||||
|
struct PrivateConversationHeaderState: Equatable {
|
||||||
|
let conversationPeerID: PeerID
|
||||||
|
let headerPeerID: PeerID
|
||||||
|
let displayName: String
|
||||||
|
let availability: PrivateConversationAvailability
|
||||||
|
let isFavorite: Bool
|
||||||
|
let encryptionStatus: EncryptionStatus?
|
||||||
|
|
||||||
|
var supportsFavoriteToggle: Bool {
|
||||||
|
!conversationPeerID.isGeoDM
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
@MainActor
|
||||||
|
final class PrivateConversationModel: ObservableObject {
|
||||||
|
@Published private(set) var selectedPeerID: PeerID?
|
||||||
|
@Published private(set) var selectedHeaderState: PrivateConversationHeaderState?
|
||||||
|
|
||||||
|
private let chatViewModel: ChatViewModel
|
||||||
|
private let conversations: ConversationStore
|
||||||
|
private let locationChannelsModel: LocationChannelsModel
|
||||||
|
private let peerIdentityStore: PeerIdentityStore
|
||||||
|
private var cancellables = Set<AnyCancellable>()
|
||||||
|
|
||||||
|
init(
|
||||||
|
chatViewModel: ChatViewModel,
|
||||||
|
conversations: ConversationStore,
|
||||||
|
locationChannelsModel: LocationChannelsModel? = nil,
|
||||||
|
peerIdentityStore: PeerIdentityStore? = nil
|
||||||
|
) {
|
||||||
|
self.chatViewModel = chatViewModel
|
||||||
|
self.conversations = conversations
|
||||||
|
self.locationChannelsModel = locationChannelsModel ?? LocationChannelsModel()
|
||||||
|
self.peerIdentityStore = peerIdentityStore ?? chatViewModel.peerIdentityStore
|
||||||
|
let initialPeerID = conversations.selectedPrivatePeerID
|
||||||
|
self.selectedPeerID = initialPeerID
|
||||||
|
self.selectedHeaderState = initialPeerID.flatMap { peerID in
|
||||||
|
makeHeaderState(for: peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
bind()
|
||||||
|
}
|
||||||
|
|
||||||
|
func startConversation(with peerID: PeerID) {
|
||||||
|
chatViewModel.startPrivateChat(with: peerID)
|
||||||
|
refreshSelectedConversation()
|
||||||
|
}
|
||||||
|
|
||||||
|
func openConversation(for peerID: PeerID) {
|
||||||
|
if peerID.isGeoChat {
|
||||||
|
guard let full = chatViewModel.fullNostrHex(forSenderPeerID: peerID) else { return }
|
||||||
|
chatViewModel.startGeohashDM(withPubkeyHex: full)
|
||||||
|
} else {
|
||||||
|
chatViewModel.startPrivateChat(with: peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
refreshSelectedConversation()
|
||||||
|
}
|
||||||
|
|
||||||
|
func endConversation() {
|
||||||
|
chatViewModel.endPrivateChat()
|
||||||
|
refreshSelectedConversation()
|
||||||
|
}
|
||||||
|
|
||||||
|
func toggleFavorite(peerID: PeerID) {
|
||||||
|
chatViewModel.toggleFavorite(peerID: peerID)
|
||||||
|
refreshSelectedConversation()
|
||||||
|
}
|
||||||
|
|
||||||
|
func toggleFavoriteForSelectedConversation() {
|
||||||
|
guard let headerPeerID = selectedHeaderState?.headerPeerID else { return }
|
||||||
|
toggleFavorite(peerID: headerPeerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func markMessagesAsRead(from peerID: PeerID) {
|
||||||
|
chatViewModel.markPrivateMessagesAsRead(from: peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func bind() {
|
||||||
|
conversations.$selectedPrivatePeerID
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refreshSelectedConversation()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
chatViewModel.$allPeers
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refreshSelectedConversation()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
peerIdentityStore.$encryptionStatuses
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refreshSelectedConversation()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
NotificationCenter.default.publisher(for: .favoriteStatusChanged)
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refreshSelectedConversation()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
NotificationCenter.default.publisher(for: Notification.Name("peerStatusUpdated"))
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refreshSelectedConversation()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
locationChannelsModel.$selectedChannel
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.refreshSelectedConversation()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func refreshSelectedConversation() {
|
||||||
|
selectedPeerID = conversations.selectedPrivatePeerID
|
||||||
|
selectedHeaderState = selectedPeerID.flatMap { peerID in
|
||||||
|
makeHeaderState(for: peerID)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private func makeHeaderState(for conversationPeerID: PeerID) -> PrivateConversationHeaderState {
|
||||||
|
let headerPeerID = chatViewModel.getShortIDForNoiseKey(conversationPeerID)
|
||||||
|
let peer = chatViewModel.getPeer(byID: headerPeerID)
|
||||||
|
let displayName = resolveDisplayName(for: conversationPeerID, headerPeerID: headerPeerID, peer: peer)
|
||||||
|
// Geo DMs are always routed over Nostr (NIP-17); their nostr_ keys
|
||||||
|
// never resolve to a reachable mesh peer, so resolveAvailability would
|
||||||
|
// report .offline. Report .nostrAvailable so the header shows the
|
||||||
|
// globe instead of a misleading "offline" tag.
|
||||||
|
let availability = conversationPeerID.isGeoDM
|
||||||
|
? .nostrAvailable
|
||||||
|
: resolveAvailability(for: headerPeerID, peer: peer)
|
||||||
|
let encryptionStatus: EncryptionStatus? = conversationPeerID.isGeoDM
|
||||||
|
? nil
|
||||||
|
: chatViewModel.getEncryptionStatus(for: headerPeerID)
|
||||||
|
|
||||||
|
return PrivateConversationHeaderState(
|
||||||
|
conversationPeerID: conversationPeerID,
|
||||||
|
headerPeerID: headerPeerID,
|
||||||
|
displayName: displayName,
|
||||||
|
availability: availability,
|
||||||
|
isFavorite: chatViewModel.isFavorite(peerID: headerPeerID),
|
||||||
|
encryptionStatus: encryptionStatus
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func resolveDisplayName(
|
||||||
|
for conversationPeerID: PeerID,
|
||||||
|
headerPeerID: PeerID,
|
||||||
|
peer: BitchatPeer?
|
||||||
|
) -> String {
|
||||||
|
if conversationPeerID.isGeoDM, case .location(let channel) = locationChannelsModel.selectedChannel {
|
||||||
|
return "#\(channel.geohash)/@\(chatViewModel.geohashDisplayName(for: conversationPeerID))"
|
||||||
|
}
|
||||||
|
if let displayName = peer?.displayName {
|
||||||
|
return displayName
|
||||||
|
}
|
||||||
|
if let nickname = chatViewModel.meshService.peerNickname(peerID: headerPeerID) {
|
||||||
|
return nickname
|
||||||
|
}
|
||||||
|
if let favorite = FavoritesPersistenceService.shared.getFavoriteStatus(
|
||||||
|
for: Data(hexString: headerPeerID.id) ?? Data()
|
||||||
|
), !favorite.peerNickname.isEmpty {
|
||||||
|
return favorite.peerNickname
|
||||||
|
}
|
||||||
|
if headerPeerID.id.count == 16 {
|
||||||
|
let candidates = chatViewModel.identityManager.getCryptoIdentitiesByPeerIDPrefix(headerPeerID)
|
||||||
|
if let identity = candidates.first,
|
||||||
|
let social = chatViewModel.identityManager.getSocialIdentity(for: identity.fingerprint) {
|
||||||
|
if let pet = social.localPetname, !pet.isEmpty {
|
||||||
|
return pet
|
||||||
|
}
|
||||||
|
if !social.claimedNickname.isEmpty {
|
||||||
|
return social.claimedNickname
|
||||||
|
}
|
||||||
|
}
|
||||||
|
} else if let noiseKey = headerPeerID.noiseKey {
|
||||||
|
let fingerprint = noiseKey.sha256Fingerprint()
|
||||||
|
if let social = chatViewModel.identityManager.getSocialIdentity(for: fingerprint) {
|
||||||
|
if let pet = social.localPetname, !pet.isEmpty {
|
||||||
|
return pet
|
||||||
|
}
|
||||||
|
if !social.claimedNickname.isEmpty {
|
||||||
|
return social.claimedNickname
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
return String(localized: "common.unknown", comment: "Fallback label for unknown peer")
|
||||||
|
}
|
||||||
|
|
||||||
|
private func resolveAvailability(for headerPeerID: PeerID, peer: BitchatPeer?) -> PrivateConversationAvailability {
|
||||||
|
if let connectionState = peer?.connectionState {
|
||||||
|
switch connectionState {
|
||||||
|
case .bluetoothConnected:
|
||||||
|
return .bluetoothConnected
|
||||||
|
case .meshReachable:
|
||||||
|
return .meshReachable
|
||||||
|
case .nostrAvailable:
|
||||||
|
return .nostrAvailable
|
||||||
|
case .offline:
|
||||||
|
return .offline
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
if chatViewModel.meshService.isPeerReachable(headerPeerID) {
|
||||||
|
return .meshReachable
|
||||||
|
}
|
||||||
|
if let noiseKey = Data(hexString: headerPeerID.id),
|
||||||
|
let favoriteStatus = FavoritesPersistenceService.shared.getFavoriteStatus(for: noiseKey),
|
||||||
|
favoriteStatus.isMutual {
|
||||||
|
return .nostrAvailable
|
||||||
|
}
|
||||||
|
if chatViewModel.meshService.isPeerConnected(headerPeerID) || chatViewModel.connectedPeers.contains(headerPeerID) {
|
||||||
|
return .bluetoothConnected
|
||||||
|
}
|
||||||
|
|
||||||
|
return .offline
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,77 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Combine
|
||||||
|
import SwiftUI
|
||||||
|
|
||||||
|
/// Feature model for the active public (mesh/geohash) timeline.
|
||||||
|
///
|
||||||
|
/// Observes ONE `Conversation` object in the single-writer
|
||||||
|
/// `ConversationStore` — the active channel's — so appends to background
|
||||||
|
/// conversations (other geohashes, private chats) never invalidate it.
|
||||||
|
/// `messages` reads the observed conversation's backing array directly;
|
||||||
|
/// there is no mirror copy.
|
||||||
|
@MainActor
|
||||||
|
final class PublicChatModel: ObservableObject {
|
||||||
|
@Published private(set) var activeChannel: ChannelID
|
||||||
|
|
||||||
|
/// The active public conversation's timeline.
|
||||||
|
var messages: [BitchatMessage] { activeConversation.messages }
|
||||||
|
|
||||||
|
private let conversations: ConversationStore
|
||||||
|
private var activeConversation: Conversation
|
||||||
|
private var activeConversationCancellable: AnyCancellable?
|
||||||
|
private var cancellables = Set<AnyCancellable>()
|
||||||
|
|
||||||
|
init(conversations: ConversationStore) {
|
||||||
|
let channel = conversations.activeChannel
|
||||||
|
self.conversations = conversations
|
||||||
|
self.activeChannel = channel
|
||||||
|
self.activeConversation = conversations.conversation(for: ConversationID(channelID: channel))
|
||||||
|
|
||||||
|
observeActiveConversation()
|
||||||
|
bind()
|
||||||
|
}
|
||||||
|
|
||||||
|
private func bind() {
|
||||||
|
conversations.$activeChannel
|
||||||
|
.dropFirst()
|
||||||
|
.sink { [weak self] channel in
|
||||||
|
guard let self else { return }
|
||||||
|
self.activeChannel = channel
|
||||||
|
self.retargetActiveConversation(to: channel)
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
// The store replaces a conversation's object when it is removed
|
||||||
|
// (panic clear); retarget to the fresh instance so the observation
|
||||||
|
// never goes stale.
|
||||||
|
conversations.changes
|
||||||
|
.sink { [weak self] change in
|
||||||
|
guard let self,
|
||||||
|
case .removed(let id) = change,
|
||||||
|
id == self.activeConversation.id else { return }
|
||||||
|
self.retargetActiveConversation(to: self.activeChannel)
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func retargetActiveConversation(to channel: ChannelID) {
|
||||||
|
let conversation = conversations.conversation(for: ConversationID(channelID: channel))
|
||||||
|
guard conversation !== activeConversation else {
|
||||||
|
// Same object (e.g. re-selected channel): keep the existing
|
||||||
|
// observation, but `messages` may still differ from what views
|
||||||
|
// last rendered, so republish.
|
||||||
|
objectWillChange.send()
|
||||||
|
return
|
||||||
|
}
|
||||||
|
objectWillChange.send()
|
||||||
|
activeConversation = conversation
|
||||||
|
observeActiveConversation()
|
||||||
|
}
|
||||||
|
|
||||||
|
private func observeActiveConversation() {
|
||||||
|
activeConversationCancellable = activeConversation.objectWillChange
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.objectWillChange.send()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,152 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Combine
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct FingerprintPresentationState: Equatable {
|
||||||
|
let statusPeerID: PeerID
|
||||||
|
let peerNickname: String
|
||||||
|
let encryptionStatus: EncryptionStatus
|
||||||
|
let theirFingerprint: String?
|
||||||
|
let myFingerprint: String
|
||||||
|
let isVerified: Bool
|
||||||
|
|
||||||
|
var canToggleVerification: Bool {
|
||||||
|
encryptionStatus == .noiseSecured || encryptionStatus == .noiseVerified
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
enum VerificationScanOutcome: Equatable {
|
||||||
|
case requested(String)
|
||||||
|
case notFound
|
||||||
|
case invalid
|
||||||
|
}
|
||||||
|
|
||||||
|
@MainActor
|
||||||
|
final class VerificationModel: ObservableObject {
|
||||||
|
@Published private(set) var currentNickname: String
|
||||||
|
@Published private(set) var selectedPeerID: PeerID?
|
||||||
|
|
||||||
|
private let chatViewModel: ChatViewModel
|
||||||
|
private let peerIdentityStore: PeerIdentityStore
|
||||||
|
private var cancellables = Set<AnyCancellable>()
|
||||||
|
|
||||||
|
init(
|
||||||
|
chatViewModel: ChatViewModel,
|
||||||
|
privateConversationModel: PrivateConversationModel,
|
||||||
|
peerIdentityStore: PeerIdentityStore? = nil
|
||||||
|
) {
|
||||||
|
self.chatViewModel = chatViewModel
|
||||||
|
self.peerIdentityStore = peerIdentityStore ?? chatViewModel.peerIdentityStore
|
||||||
|
self.currentNickname = chatViewModel.nickname
|
||||||
|
self.selectedPeerID = privateConversationModel.selectedPeerID
|
||||||
|
|
||||||
|
bind(privateConversationModel: privateConversationModel)
|
||||||
|
}
|
||||||
|
|
||||||
|
func myQRString() -> String {
|
||||||
|
let npub = try? chatViewModel.idBridge.getCurrentNostrIdentity()?.npub
|
||||||
|
return VerificationService.shared.buildMyQRString(nickname: currentNickname, npub: npub) ?? ""
|
||||||
|
}
|
||||||
|
|
||||||
|
func beginQRVerification(with qr: VerificationService.VerificationQR) -> Bool {
|
||||||
|
chatViewModel.beginQRVerification(with: qr)
|
||||||
|
}
|
||||||
|
|
||||||
|
func verifyScannedPayload(_ payload: String) -> VerificationScanOutcome {
|
||||||
|
guard let qr = VerificationService.shared.verifyScannedQR(payload) else {
|
||||||
|
return .invalid
|
||||||
|
}
|
||||||
|
|
||||||
|
guard chatViewModel.beginQRVerification(with: qr) else {
|
||||||
|
return .notFound
|
||||||
|
}
|
||||||
|
|
||||||
|
return .requested(qr.nickname)
|
||||||
|
}
|
||||||
|
|
||||||
|
func verifyFingerprint(for peerID: PeerID) {
|
||||||
|
chatViewModel.verifyFingerprint(for: peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func unverifyFingerprint(for peerID: PeerID) {
|
||||||
|
chatViewModel.unverifyFingerprint(for: peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func isVerified(peerID: PeerID) -> Bool {
|
||||||
|
guard let fingerprint = chatViewModel.getFingerprint(for: peerID) else { return false }
|
||||||
|
return peerIdentityStore.isVerified(fingerprint)
|
||||||
|
}
|
||||||
|
|
||||||
|
func fingerprintPresentation(for peerID: PeerID) -> FingerprintPresentationState {
|
||||||
|
let statusPeerID = chatViewModel.getShortIDForNoiseKey(peerID)
|
||||||
|
let encryptionStatus = chatViewModel.getEncryptionStatus(for: statusPeerID)
|
||||||
|
let theirFingerprint = chatViewModel.getFingerprint(for: statusPeerID)
|
||||||
|
let peerNickname = resolveDisplayName(for: peerID, statusPeerID: statusPeerID)
|
||||||
|
|
||||||
|
return FingerprintPresentationState(
|
||||||
|
statusPeerID: statusPeerID,
|
||||||
|
peerNickname: peerNickname,
|
||||||
|
encryptionStatus: encryptionStatus,
|
||||||
|
theirFingerprint: theirFingerprint,
|
||||||
|
myFingerprint: chatViewModel.getMyFingerprint(),
|
||||||
|
isVerified: theirFingerprint.map { peerIdentityStore.isVerified($0) } ?? false
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func bind(privateConversationModel: PrivateConversationModel) {
|
||||||
|
chatViewModel.$nickname
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$currentNickname)
|
||||||
|
|
||||||
|
privateConversationModel.$selectedPeerID
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.assign(to: &$selectedPeerID)
|
||||||
|
|
||||||
|
peerIdentityStore.$encryptionStatuses
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.objectWillChange.send()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
peerIdentityStore.$verifiedFingerprints
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.objectWillChange.send()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
|
||||||
|
chatViewModel.$allPeers
|
||||||
|
.receive(on: DispatchQueue.main)
|
||||||
|
.sink { [weak self] _ in
|
||||||
|
self?.objectWillChange.send()
|
||||||
|
}
|
||||||
|
.store(in: &cancellables)
|
||||||
|
}
|
||||||
|
|
||||||
|
private func resolveDisplayName(for peerID: PeerID, statusPeerID: PeerID) -> String {
|
||||||
|
if let peer = chatViewModel.getPeer(byID: statusPeerID) {
|
||||||
|
return peer.displayName
|
||||||
|
}
|
||||||
|
if let name = chatViewModel.meshService.peerNickname(peerID: statusPeerID) {
|
||||||
|
return name
|
||||||
|
}
|
||||||
|
if let data = peerID.noiseKey {
|
||||||
|
if let favorite = FavoritesPersistenceService.shared.getFavoriteStatus(for: data),
|
||||||
|
!favorite.peerNickname.isEmpty {
|
||||||
|
return favorite.peerNickname
|
||||||
|
}
|
||||||
|
let fingerprint = data.sha256Fingerprint()
|
||||||
|
if let social = chatViewModel.identityManager.getSocialIdentity(for: fingerprint) {
|
||||||
|
if let pet = social.localPetname, !pet.isEmpty {
|
||||||
|
return pet
|
||||||
|
}
|
||||||
|
if !social.claimedNickname.isEmpty {
|
||||||
|
return social.claimedNickname
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
return String(localized: "common.unknown", comment: "Label for an unknown peer")
|
||||||
|
}
|
||||||
|
}
|
||||||
+33
-188
@@ -6,7 +6,6 @@
|
|||||||
// For more information, see <https://unlicense.org>
|
// For more information, see <https://unlicense.org>
|
||||||
//
|
//
|
||||||
|
|
||||||
import Tor
|
|
||||||
import SwiftUI
|
import SwiftUI
|
||||||
import UserNotifications
|
import UserNotifications
|
||||||
|
|
||||||
@@ -15,118 +14,49 @@ struct BitchatApp: App {
|
|||||||
static let bundleID = Bundle.main.bundleIdentifier ?? "chat.bitchat"
|
static let bundleID = Bundle.main.bundleIdentifier ?? "chat.bitchat"
|
||||||
static let groupID = "group.\(bundleID)"
|
static let groupID = "group.\(bundleID)"
|
||||||
|
|
||||||
@StateObject private var chatViewModel: ChatViewModel
|
@StateObject private var runtime: AppRuntime
|
||||||
|
@AppStorage(AppTheme.storageKey) private var appThemeRawValue = AppTheme.matrix.rawValue
|
||||||
#if os(iOS)
|
#if os(iOS)
|
||||||
@Environment(\.scenePhase) var scenePhase
|
@Environment(\.scenePhase) var scenePhase
|
||||||
@UIApplicationDelegateAdaptor(AppDelegate.self) var appDelegate
|
@UIApplicationDelegateAdaptor(AppDelegate.self) var appDelegate
|
||||||
// Skip the very first .active-triggered Tor restart on cold launch
|
|
||||||
@State private var didHandleInitialActive: Bool = false
|
|
||||||
@State private var didEnterBackground: Bool = false
|
|
||||||
#elseif os(macOS)
|
#elseif os(macOS)
|
||||||
@NSApplicationDelegateAdaptor(MacAppDelegate.self) var appDelegate
|
@NSApplicationDelegateAdaptor(MacAppDelegate.self) var appDelegate
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
private let idBridge = NostrIdentityBridge()
|
|
||||||
|
|
||||||
init() {
|
init() {
|
||||||
let keychain = KeychainManager()
|
_runtime = StateObject(wrappedValue: AppRuntime())
|
||||||
let idBridge = self.idBridge
|
|
||||||
_chatViewModel = StateObject(
|
|
||||||
wrappedValue: ChatViewModel(
|
|
||||||
keychain: keychain,
|
|
||||||
idBridge: idBridge,
|
|
||||||
identityManager: SecureIdentityStateManager(keychain)
|
|
||||||
)
|
|
||||||
)
|
|
||||||
|
|
||||||
UNUserNotificationCenter.current().delegate = NotificationDelegate.shared
|
UNUserNotificationCenter.current().delegate = NotificationDelegate.shared
|
||||||
// Warm up georelay directory and refresh if stale (once/day)
|
|
||||||
GeoRelayDirectory.shared.prefetchIfNeeded()
|
|
||||||
}
|
}
|
||||||
|
|
||||||
var body: some Scene {
|
var body: some Scene {
|
||||||
WindowGroup {
|
WindowGroup {
|
||||||
ContentView()
|
ContentView()
|
||||||
.environmentObject(chatViewModel)
|
.environment(\.appTheme, AppTheme(rawValue: appThemeRawValue) ?? .matrix)
|
||||||
|
.environmentObject(runtime.publicChatModel)
|
||||||
|
.environmentObject(runtime.privateInboxModel)
|
||||||
|
.environmentObject(runtime.privateConversationModel)
|
||||||
|
.environmentObject(runtime.verificationModel)
|
||||||
|
.environmentObject(runtime.conversationUIModel)
|
||||||
|
.environmentObject(runtime.locationChannelsModel)
|
||||||
|
.environmentObject(runtime.peerListModel)
|
||||||
|
.environmentObject(runtime.appChromeModel)
|
||||||
.onAppear {
|
.onAppear {
|
||||||
NotificationDelegate.shared.chatViewModel = chatViewModel
|
appDelegate.runtime = runtime
|
||||||
// Inject live Noise service into VerificationService to avoid creating new BLE instances
|
runtime.start()
|
||||||
VerificationService.shared.configure(with: chatViewModel.meshService.getNoiseService())
|
|
||||||
// Prewarm Nostr identity and QR to make first VERIFY sheet fast
|
|
||||||
let nickname = chatViewModel.nickname
|
|
||||||
DispatchQueue.global(qos: .utility).async {
|
|
||||||
let npub = try? idBridge.getCurrentNostrIdentity()?.npub
|
|
||||||
_ = VerificationService.shared.buildMyQRString(nickname: nickname, npub: npub)
|
|
||||||
}
|
|
||||||
|
|
||||||
appDelegate.chatViewModel = chatViewModel
|
|
||||||
|
|
||||||
// Initialize network activation policy; will start Tor/Nostr only when allowed
|
|
||||||
NetworkActivationService.shared.start()
|
|
||||||
|
|
||||||
// Start presence service (will wait for Tor readiness)
|
|
||||||
GeohashPresenceService.shared.start()
|
|
||||||
|
|
||||||
// Check for shared content
|
|
||||||
checkForSharedContent()
|
|
||||||
}
|
}
|
||||||
.onOpenURL { url in
|
.onOpenURL { url in
|
||||||
handleURL(url)
|
runtime.handleOpenURL(url)
|
||||||
}
|
}
|
||||||
#if os(iOS)
|
#if os(iOS)
|
||||||
.onChange(of: scenePhase) { newPhase in
|
.onChange(of: scenePhase) { newPhase in
|
||||||
switch newPhase {
|
runtime.handleScenePhaseChange(newPhase)
|
||||||
case .background:
|
|
||||||
// Keep BLE mesh running in background; BLEService adapts scanning automatically
|
|
||||||
// Always send Tor to dormant on background for a clean restart later.
|
|
||||||
TorManager.shared.setAppForeground(false)
|
|
||||||
TorManager.shared.goDormantOnBackground()
|
|
||||||
// Stop geohash sampling while backgrounded
|
|
||||||
Task { @MainActor in
|
|
||||||
chatViewModel.endGeohashSampling()
|
|
||||||
}
|
|
||||||
// Proactively disconnect Nostr to avoid spurious socket errors while Tor is down
|
|
||||||
NostrRelayManager.shared.disconnect()
|
|
||||||
didEnterBackground = true
|
|
||||||
case .active:
|
|
||||||
// Restart services when becoming active
|
|
||||||
chatViewModel.meshService.startServices()
|
|
||||||
TorManager.shared.setAppForeground(true)
|
|
||||||
// On initial cold launch, Tor was just started in onAppear.
|
|
||||||
// Skip the deterministic restart the first time we become active.
|
|
||||||
if didHandleInitialActive && didEnterBackground {
|
|
||||||
if TorManager.shared.isAutoStartAllowed() && !TorManager.shared.isReady {
|
|
||||||
TorManager.shared.ensureRunningOnForeground()
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
didHandleInitialActive = true
|
|
||||||
}
|
|
||||||
didEnterBackground = false
|
|
||||||
if TorManager.shared.isAutoStartAllowed() {
|
|
||||||
Task.detached {
|
|
||||||
let _ = await TorManager.shared.awaitReady(timeout: 60)
|
|
||||||
await MainActor.run {
|
|
||||||
// Rebuild proxied sessions to bind to the live Tor after readiness
|
|
||||||
TorURLSession.shared.rebuild()
|
|
||||||
// Reconnect Nostr via fresh sessions; will gate until Tor 100%
|
|
||||||
NostrRelayManager.shared.resetAllConnections()
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
checkForSharedContent()
|
|
||||||
case .inactive:
|
|
||||||
break
|
|
||||||
@unknown default:
|
|
||||||
break
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
.onReceive(NotificationCenter.default.publisher(for: UIApplication.didBecomeActiveNotification)) { _ in
|
.onReceive(NotificationCenter.default.publisher(for: UIApplication.didBecomeActiveNotification)) { _ in
|
||||||
// Check for shared content when app becomes active
|
runtime.handleDidBecomeActiveNotification()
|
||||||
checkForSharedContent()
|
|
||||||
}
|
}
|
||||||
#elseif os(macOS)
|
#elseif os(macOS)
|
||||||
.onReceive(NotificationCenter.default.publisher(for: NSApplication.didBecomeActiveNotification)) { _ in
|
.onReceive(NotificationCenter.default.publisher(for: NSApplication.didBecomeActiveNotification)) { _ in
|
||||||
// App became active
|
runtime.handleMacDidBecomeActiveNotification()
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
}
|
}
|
||||||
@@ -135,66 +65,18 @@ struct BitchatApp: App {
|
|||||||
.windowResizability(.contentSize)
|
.windowResizability(.contentSize)
|
||||||
#endif
|
#endif
|
||||||
}
|
}
|
||||||
|
|
||||||
private func handleURL(_ url: URL) {
|
|
||||||
if url.scheme == "bitchat" && url.host == "share" {
|
|
||||||
// Handle shared content
|
|
||||||
checkForSharedContent()
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
private func checkForSharedContent() {
|
|
||||||
// Check app group for shared content from extension
|
|
||||||
guard let userDefaults = UserDefaults(suiteName: BitchatApp.groupID) else {
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
guard let sharedContent = userDefaults.string(forKey: "sharedContent"),
|
|
||||||
let sharedDate = userDefaults.object(forKey: "sharedContentDate") as? Date else {
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
// Only process if shared within configured window
|
|
||||||
if Date().timeIntervalSince(sharedDate) < TransportConfig.uiShareAcceptWindowSeconds {
|
|
||||||
let contentType = userDefaults.string(forKey: "sharedContentType") ?? "text"
|
|
||||||
|
|
||||||
// Clear the shared content
|
|
||||||
userDefaults.removeObject(forKey: "sharedContent")
|
|
||||||
userDefaults.removeObject(forKey: "sharedContentType")
|
|
||||||
userDefaults.removeObject(forKey: "sharedContentDate")
|
|
||||||
// No need to force synchronize here
|
|
||||||
|
|
||||||
// Send the shared content immediately on the main queue
|
|
||||||
DispatchQueue.main.async {
|
|
||||||
if contentType == "url" {
|
|
||||||
// Try to parse as JSON first
|
|
||||||
if let data = sharedContent.data(using: .utf8),
|
|
||||||
let urlData = try? JSONSerialization.jsonObject(with: data) as? [String: String],
|
|
||||||
let url = urlData["url"] {
|
|
||||||
// Send plain URL
|
|
||||||
self.chatViewModel.sendMessage(url)
|
|
||||||
} else {
|
|
||||||
// Fallback to simple URL
|
|
||||||
self.chatViewModel.sendMessage(sharedContent)
|
|
||||||
}
|
|
||||||
} else {
|
|
||||||
self.chatViewModel.sendMessage(sharedContent)
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
|
|
||||||
#if os(iOS)
|
#if os(iOS)
|
||||||
final class AppDelegate: NSObject, UIApplicationDelegate {
|
final class AppDelegate: NSObject, UIApplicationDelegate {
|
||||||
weak var chatViewModel: ChatViewModel?
|
weak var runtime: AppRuntime?
|
||||||
|
|
||||||
func application(_ application: UIApplication, didFinishLaunchingWithOptions launchOptions: [UIApplication.LaunchOptionsKey: Any]? = nil) -> Bool {
|
func application(_ application: UIApplication, didFinishLaunchingWithOptions launchOptions: [UIApplication.LaunchOptionsKey: Any]? = nil) -> Bool {
|
||||||
return true
|
true
|
||||||
}
|
}
|
||||||
|
|
||||||
func applicationWillTerminate(_ application: UIApplication) {
|
func applicationWillTerminate(_ application: UIApplication) {
|
||||||
chatViewModel?.applicationWillTerminate()
|
runtime?.applicationWillTerminate()
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
@@ -203,44 +85,29 @@ final class AppDelegate: NSObject, UIApplicationDelegate {
|
|||||||
import AppKit
|
import AppKit
|
||||||
|
|
||||||
final class MacAppDelegate: NSObject, NSApplicationDelegate {
|
final class MacAppDelegate: NSObject, NSApplicationDelegate {
|
||||||
weak var chatViewModel: ChatViewModel?
|
weak var runtime: AppRuntime?
|
||||||
|
|
||||||
func applicationWillTerminate(_ notification: Notification) {
|
func applicationWillTerminate(_ notification: Notification) {
|
||||||
chatViewModel?.applicationWillTerminate()
|
runtime?.applicationWillTerminate()
|
||||||
}
|
}
|
||||||
|
|
||||||
func applicationShouldTerminateAfterLastWindowClosed(_ sender: NSApplication) -> Bool {
|
func applicationShouldTerminateAfterLastWindowClosed(_ sender: NSApplication) -> Bool {
|
||||||
return true
|
true
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
final class NotificationDelegate: NSObject, UNUserNotificationCenterDelegate {
|
final class NotificationDelegate: NSObject, UNUserNotificationCenterDelegate {
|
||||||
static let shared = NotificationDelegate()
|
static let shared = NotificationDelegate()
|
||||||
weak var chatViewModel: ChatViewModel?
|
weak var runtime: AppRuntime?
|
||||||
|
|
||||||
func userNotificationCenter(_ center: UNUserNotificationCenter, didReceive response: UNNotificationResponse, withCompletionHandler completionHandler: @escaping () -> Void) {
|
func userNotificationCenter(_ center: UNUserNotificationCenter, didReceive response: UNNotificationResponse, withCompletionHandler completionHandler: @escaping () -> Void) {
|
||||||
let identifier = response.notification.request.identifier
|
let identifier = response.notification.request.identifier
|
||||||
let userInfo = response.notification.request.content.userInfo
|
let userInfo = response.notification.request.content.userInfo
|
||||||
|
|
||||||
// Check if this is a private message notification
|
Task { @MainActor in
|
||||||
if identifier.hasPrefix("private-") {
|
self.runtime?.handleNotificationResponse(identifier: identifier, userInfo: userInfo)
|
||||||
// Get peer ID from userInfo
|
|
||||||
if let peerID = userInfo["peerID"] as? String {
|
|
||||||
DispatchQueue.main.async {
|
|
||||||
self.chatViewModel?.startPrivateChat(with: PeerID(str: peerID))
|
|
||||||
}
|
}
|
||||||
}
|
|
||||||
}
|
|
||||||
// Handle deeplink (e.g., geohash activity)
|
|
||||||
if let deep = userInfo["deeplink"] as? String, let url = URL(string: deep) {
|
|
||||||
#if os(iOS)
|
|
||||||
DispatchQueue.main.async { UIApplication.shared.open(url) }
|
|
||||||
#else
|
|
||||||
DispatchQueue.main.async { NSWorkspace.shared.open(url) }
|
|
||||||
#endif
|
|
||||||
}
|
|
||||||
|
|
||||||
completionHandler()
|
completionHandler()
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -248,34 +115,12 @@ final class NotificationDelegate: NSObject, UNUserNotificationCenterDelegate {
|
|||||||
let identifier = notification.request.identifier
|
let identifier = notification.request.identifier
|
||||||
let userInfo = notification.request.content.userInfo
|
let userInfo = notification.request.content.userInfo
|
||||||
|
|
||||||
// Check if this is a private message notification
|
Task {
|
||||||
if identifier.hasPrefix("private-") {
|
let options = await self.runtime?.presentationOptions(
|
||||||
// Get peer ID from userInfo
|
forNotificationIdentifier: identifier,
|
||||||
if let peerID = userInfo["peerID"] as? String {
|
userInfo: userInfo
|
||||||
// Don't show notification if the private chat is already open
|
) ?? [.banner, .sound]
|
||||||
// Access main-actor-isolated property via Task
|
completionHandler(options)
|
||||||
Task { @MainActor in
|
|
||||||
if self.chatViewModel?.selectedPrivateChatPeer == PeerID(str: peerID) {
|
|
||||||
completionHandler([])
|
|
||||||
} else {
|
|
||||||
completionHandler([.banner, .sound])
|
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
return
|
|
||||||
}
|
}
|
||||||
}
|
|
||||||
// Suppress geohash activity notification if we're already in that geohash channel
|
|
||||||
if identifier.hasPrefix("geo-activity-"),
|
|
||||||
let deep = userInfo["deeplink"] as? String,
|
|
||||||
let gh = deep.components(separatedBy: "/").last {
|
|
||||||
if case .location(let ch) = LocationChannelManager.shared.selectedChannel, ch.geohash == gh {
|
|
||||||
completionHandler([])
|
|
||||||
return
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
// Show notification in all other cases
|
|
||||||
completionHandler([.banner, .sound])
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
|
|||||||
@@ -15,30 +15,39 @@ enum ImageUtilsError: Error {
|
|||||||
enum ImageUtils {
|
enum ImageUtils {
|
||||||
private static let compressionQuality: CGFloat = 0.82
|
private static let compressionQuality: CGFloat = 0.82
|
||||||
private static let targetImageBytes: Int = 45_000
|
private static let targetImageBytes: Int = 45_000
|
||||||
|
private static let maxSourceImageBytes: Int = 10 * 1024 * 1024
|
||||||
|
|
||||||
static func processImage(at url: URL, maxDimension: CGFloat = 448) throws -> URL {
|
static func processImage(at url: URL, maxDimension: CGFloat = 448, outputDirectory: URL? = nil) throws -> URL {
|
||||||
// Security H1: Check file size BEFORE reading into memory
|
try validateImageSource(at: url)
|
||||||
let attrs = try FileManager.default.attributesOfItem(atPath: url.path)
|
|
||||||
guard let fileSize = attrs[.size] as? Int else {
|
|
||||||
throw ImageUtilsError.invalidImage
|
|
||||||
}
|
|
||||||
// Allow up to 10MB source images (will be scaled down)
|
|
||||||
guard fileSize <= 10 * 1024 * 1024 else {
|
|
||||||
throw ImageUtilsError.invalidImage
|
|
||||||
}
|
|
||||||
|
|
||||||
let data = try Data(contentsOf: url)
|
let data = try Data(contentsOf: url)
|
||||||
#if os(iOS)
|
#if os(iOS)
|
||||||
guard let image = UIImage(data: data) else { throw ImageUtilsError.invalidImage }
|
guard let image = UIImage(data: data) else { throw ImageUtilsError.invalidImage }
|
||||||
return try processImage(image, maxDimension: maxDimension)
|
return try processImage(image, maxDimension: maxDimension, outputDirectory: outputDirectory)
|
||||||
#else
|
#else
|
||||||
guard let image = NSImage(data: data) else { throw ImageUtilsError.invalidImage }
|
guard let image = NSImage(data: data) else { throw ImageUtilsError.invalidImage }
|
||||||
return try processImage(image, maxDimension: maxDimension)
|
return try processImage(image, maxDimension: maxDimension, outputDirectory: outputDirectory)
|
||||||
#endif
|
#endif
|
||||||
}
|
}
|
||||||
|
|
||||||
|
static func validateImageSource(at url: URL) throws {
|
||||||
|
// Security H1: Check file size BEFORE reading into memory.
|
||||||
|
let attrs = try FileManager.default.attributesOfItem(atPath: url.path)
|
||||||
|
guard let fileSize = attrs[.size] as? Int,
|
||||||
|
fileSize > 0,
|
||||||
|
fileSize <= maxSourceImageBytes else {
|
||||||
|
throw ImageUtilsError.invalidImage
|
||||||
|
}
|
||||||
|
|
||||||
|
let options = [kCGImageSourceShouldCache: false] as CFDictionary
|
||||||
|
guard let source = CGImageSourceCreateWithURL(url as CFURL, options),
|
||||||
|
CGImageSourceGetType(source) != nil else {
|
||||||
|
throw ImageUtilsError.invalidImage
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
#if os(iOS)
|
#if os(iOS)
|
||||||
static func processImage(_ image: UIImage, maxDimension: CGFloat = 448) throws -> URL {
|
static func processImage(_ image: UIImage, maxDimension: CGFloat = 448, outputDirectory: URL? = nil) throws -> URL {
|
||||||
return try autoreleasepool {
|
return try autoreleasepool {
|
||||||
// Scale the image first
|
// Scale the image first
|
||||||
let scaled = scaledImage(image, maxDimension: maxDimension)
|
let scaled = scaledImage(image, maxDimension: maxDimension)
|
||||||
@@ -64,7 +73,7 @@ enum ImageUtils {
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
let outputURL = try makeOutputURL()
|
let outputURL = try makeOutputURL(outputDirectory: outputDirectory)
|
||||||
try jpegData.write(to: outputURL, options: .atomic)
|
try jpegData.write(to: outputURL, options: .atomic)
|
||||||
return outputURL
|
return outputURL
|
||||||
}
|
}
|
||||||
@@ -106,7 +115,7 @@ enum ImageUtils {
|
|||||||
return data as Data
|
return data as Data
|
||||||
}
|
}
|
||||||
#else
|
#else
|
||||||
static func processImage(_ image: NSImage, maxDimension: CGFloat = 448) throws -> URL {
|
static func processImage(_ image: NSImage, maxDimension: CGFloat = 448, outputDirectory: URL? = nil) throws -> URL {
|
||||||
return try autoreleasepool {
|
return try autoreleasepool {
|
||||||
let scaled = scaledImage(image, maxDimension: maxDimension)
|
let scaled = scaledImage(image, maxDimension: maxDimension)
|
||||||
guard let inputCG = scaled.cgImage(forProposedRect: nil, context: nil, hints: nil) else {
|
guard let inputCG = scaled.cgImage(forProposedRect: nil, context: nil, hints: nil) else {
|
||||||
@@ -142,7 +151,7 @@ enum ImageUtils {
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
let outputURL = try makeOutputURL()
|
let outputURL = try makeOutputURL(outputDirectory: outputDirectory)
|
||||||
try jpegData.write(to: outputURL, options: .atomic)
|
try jpegData.write(to: outputURL, options: .atomic)
|
||||||
return outputURL
|
return outputURL
|
||||||
}
|
}
|
||||||
@@ -186,12 +195,17 @@ enum ImageUtils {
|
|||||||
}
|
}
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
private static func makeOutputURL() throws -> URL {
|
private static func makeOutputURL(outputDirectory: URL? = nil) throws -> URL {
|
||||||
let formatter = DateFormatter()
|
let formatter = DateFormatter()
|
||||||
formatter.dateFormat = "yyyyMMdd_HHmmss"
|
formatter.dateFormat = "yyyyMMdd_HHmmss"
|
||||||
let fileName = "img_\(formatter.string(from: Date())).jpg"
|
let fileName = "img_\(formatter.string(from: Date()))_\(UUID().uuidString).jpg"
|
||||||
|
|
||||||
let directory = try applicationFilesDirectory().appendingPathComponent("images/outgoing", isDirectory: true)
|
let directory: URL
|
||||||
|
if let outputDirectory {
|
||||||
|
directory = outputDirectory
|
||||||
|
} else {
|
||||||
|
directory = try applicationFilesDirectory().appendingPathComponent("images/outgoing", isDirectory: true)
|
||||||
|
}
|
||||||
try FileManager.default.createDirectory(at: directory, withIntermediateDirectories: true, attributes: nil)
|
try FileManager.default.createDirectory(at: directory, withIntermediateDirectories: true, attributes: nil)
|
||||||
return directory.appendingPathComponent(fileName)
|
return directory.appendingPathComponent(fileName)
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -9,6 +9,18 @@ final class VoiceNotePlaybackController: NSObject, ObservableObject, AVAudioPlay
|
|||||||
@Published private(set) var duration: TimeInterval = 0
|
@Published private(set) var duration: TimeInterval = 0
|
||||||
@Published private(set) var progress: Double = 0
|
@Published private(set) var progress: Double = 0
|
||||||
|
|
||||||
|
/// rounded so 4.9s shows "00:05"
|
||||||
|
var roundedDuration: Int {
|
||||||
|
guard duration.isFinite else { return 0 }
|
||||||
|
return Int(duration.rounded())
|
||||||
|
}
|
||||||
|
|
||||||
|
/// ceil so "00:01" stays visible until playback ends, capped to rounded duration
|
||||||
|
var remainingSeconds: Int {
|
||||||
|
let remaining = max(0, duration - currentTime)
|
||||||
|
return min(roundedDuration, Int(ceil(remaining)))
|
||||||
|
}
|
||||||
|
|
||||||
private var player: AVAudioPlayer?
|
private var player: AVAudioPlayer?
|
||||||
private var timer: Timer?
|
private var timer: Timer?
|
||||||
private var url: URL
|
private var url: URL
|
||||||
|
|||||||
@@ -2,8 +2,7 @@ import Foundation
|
|||||||
import AVFoundation
|
import AVFoundation
|
||||||
|
|
||||||
/// Manages audio capture for mesh voice notes with predictable encoding settings.
|
/// Manages audio capture for mesh voice notes with predictable encoding settings.
|
||||||
/// Recording runs on an internal serial queue to avoid AVAudioSession contention.
|
actor VoiceRecorder {
|
||||||
final class VoiceRecorder: NSObject, AVAudioRecorderDelegate {
|
|
||||||
enum RecorderError: Error {
|
enum RecorderError: Error {
|
||||||
case microphoneAccessDenied
|
case microphoneAccessDenied
|
||||||
case recorderInitializationFailed
|
case recorderInitializationFailed
|
||||||
@@ -12,21 +11,16 @@ final class VoiceRecorder: NSObject, AVAudioRecorderDelegate {
|
|||||||
|
|
||||||
static let shared = VoiceRecorder()
|
static let shared = VoiceRecorder()
|
||||||
|
|
||||||
private let queue = DispatchQueue(label: "com.bitchat.voice-recorder")
|
|
||||||
private let paddingInterval: TimeInterval = 0.5
|
private let paddingInterval: TimeInterval = 0.5
|
||||||
private let maxRecordingDuration: TimeInterval = 120
|
private let maxRecordingDuration: TimeInterval = 120
|
||||||
|
static let minRecordingDuration: TimeInterval = 1
|
||||||
|
|
||||||
private var recorder: AVAudioRecorder?
|
private var recorder: AVAudioRecorder?
|
||||||
private var currentURL: URL?
|
private var currentURL: URL?
|
||||||
private var stopWorkItem: DispatchWorkItem?
|
|
||||||
|
|
||||||
private override init() {
|
|
||||||
super.init()
|
|
||||||
}
|
|
||||||
|
|
||||||
// MARK: - Permissions
|
// MARK: - Permissions
|
||||||
|
|
||||||
@discardableResult
|
nonisolated
|
||||||
func requestPermission() async -> Bool {
|
func requestPermission() async -> Bool {
|
||||||
#if os(iOS)
|
#if os(iOS)
|
||||||
return await withCheckedContinuation { continuation in
|
return await withCheckedContinuation { continuation in
|
||||||
@@ -47,8 +41,8 @@ final class VoiceRecorder: NSObject, AVAudioRecorderDelegate {
|
|||||||
|
|
||||||
// MARK: - Recording Lifecycle
|
// MARK: - Recording Lifecycle
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
func startRecording() throws -> URL {
|
func startRecording() throws -> URL {
|
||||||
try queue.sync {
|
|
||||||
if recorder?.isRecording == true {
|
if recorder?.isRecording == true {
|
||||||
throw RecorderError.recordingInProgress
|
throw RecorderError.recordingInProgress
|
||||||
}
|
}
|
||||||
@@ -89,64 +83,46 @@ final class VoiceRecorder: NSObject, AVAudioRecorderDelegate {
|
|||||||
]
|
]
|
||||||
|
|
||||||
let audioRecorder = try AVAudioRecorder(url: outputURL, settings: settings)
|
let audioRecorder = try AVAudioRecorder(url: outputURL, settings: settings)
|
||||||
audioRecorder.delegate = self
|
|
||||||
audioRecorder.isMeteringEnabled = true
|
audioRecorder.isMeteringEnabled = true
|
||||||
audioRecorder.prepareToRecord()
|
audioRecorder.prepareToRecord()
|
||||||
audioRecorder.record(forDuration: maxRecordingDuration)
|
audioRecorder.record(forDuration: maxRecordingDuration)
|
||||||
|
|
||||||
recorder = audioRecorder
|
recorder = audioRecorder
|
||||||
currentURL = outputURL
|
currentURL = outputURL
|
||||||
stopWorkItem?.cancel()
|
|
||||||
stopWorkItem = nil
|
|
||||||
return outputURL
|
return outputURL
|
||||||
}
|
}
|
||||||
|
|
||||||
|
func stopRecording() async -> URL? {
|
||||||
|
guard let recorder, recorder.isRecording else {
|
||||||
|
return currentURL
|
||||||
}
|
}
|
||||||
|
|
||||||
func stopRecording(completion: @escaping (URL?) -> Void) {
|
let sessionURL = currentURL
|
||||||
queue.async { [weak self] in
|
|
||||||
guard let self = self, let recorder = self.recorder, recorder.isRecording else {
|
try? await Task.sleep(nanoseconds: UInt64(paddingInterval * 1_000_000_000))
|
||||||
completion(self?.currentURL)
|
|
||||||
return
|
|
||||||
}
|
|
||||||
|
|
||||||
let item = DispatchWorkItem { [weak self] in
|
|
||||||
guard let self = self else { return }
|
|
||||||
recorder.stop()
|
recorder.stop()
|
||||||
self.cleanupSession()
|
|
||||||
let url = self.currentURL
|
// A new session may have started during the sleep — don't touch its state
|
||||||
|
if self.recorder === recorder {
|
||||||
|
cleanupSession()
|
||||||
self.recorder = nil
|
self.recorder = nil
|
||||||
self.currentURL = url
|
currentURL = nil
|
||||||
completion(url)
|
|
||||||
}
|
|
||||||
self.stopWorkItem = item
|
|
||||||
self.queue.asyncAfter(deadline: .now() + self.paddingInterval, execute: item)
|
|
||||||
}
|
}
|
||||||
|
|
||||||
|
return sessionURL
|
||||||
}
|
}
|
||||||
|
|
||||||
func cancelRecording() {
|
func cancelRecording() {
|
||||||
queue.async { [weak self] in
|
if let recorder, recorder.isRecording {
|
||||||
guard let self = self else { return }
|
|
||||||
self.stopWorkItem?.cancel()
|
|
||||||
self.stopWorkItem = nil
|
|
||||||
if let recorder = self.recorder, recorder.isRecording {
|
|
||||||
recorder.stop()
|
recorder.stop()
|
||||||
}
|
}
|
||||||
self.cleanupSession()
|
cleanupSession()
|
||||||
if let url = self.currentURL {
|
if let currentURL {
|
||||||
try? FileManager.default.removeItem(at: url)
|
try? FileManager.default.removeItem(at: currentURL)
|
||||||
}
|
|
||||||
self.recorder = nil
|
|
||||||
self.currentURL = nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
// MARK: - Metering
|
|
||||||
|
|
||||||
func currentAveragePower() -> Float {
|
|
||||||
queue.sync {
|
|
||||||
recorder?.updateMeters()
|
|
||||||
return recorder?.averagePower(forChannel: 0) ?? -160
|
|
||||||
}
|
}
|
||||||
|
recorder = nil
|
||||||
|
currentURL = nil
|
||||||
}
|
}
|
||||||
|
|
||||||
// MARK: - Helpers
|
// MARK: - Helpers
|
||||||
|
|||||||
@@ -81,6 +81,7 @@
|
|||||||
///
|
///
|
||||||
|
|
||||||
import Foundation
|
import Foundation
|
||||||
|
import BitFoundation
|
||||||
|
|
||||||
// MARK: - Three-Layer Identity Model
|
// MARK: - Three-Layer Identity Model
|
||||||
|
|
||||||
@@ -126,10 +127,10 @@ struct SocialIdentity: Codable {
|
|||||||
}
|
}
|
||||||
|
|
||||||
enum TrustLevel: String, Codable {
|
enum TrustLevel: String, Codable {
|
||||||
case unknown = "unknown"
|
case unknown
|
||||||
case casual = "casual"
|
case casual
|
||||||
case trusted = "trusted"
|
case trusted
|
||||||
case verified = "verified"
|
case verified
|
||||||
}
|
}
|
||||||
|
|
||||||
// MARK: - Identity Cache
|
// MARK: - Identity Cache
|
||||||
|
|||||||
@@ -91,6 +91,7 @@
|
|||||||
///
|
///
|
||||||
|
|
||||||
import BitLogger
|
import BitLogger
|
||||||
|
import BitFoundation
|
||||||
import Foundation
|
import Foundation
|
||||||
import CryptoKit
|
import CryptoKit
|
||||||
|
|
||||||
@@ -150,39 +151,69 @@ final class SecureIdentityStateManager: SecureIdentityStateManagerProtocol {
|
|||||||
// Thread safety
|
// Thread safety
|
||||||
private let queue = DispatchQueue(label: "bitchat.identity.state", attributes: .concurrent)
|
private let queue = DispatchQueue(label: "bitchat.identity.state", attributes: .concurrent)
|
||||||
|
|
||||||
// Debouncing for keychain saves
|
// Pending-save coalescing flag. Reads/writes are serialized on `queue`.
|
||||||
private var saveTimer: Timer?
|
// Persistence is done with a fire-and-forget `queue.async(.barrier)` rather
|
||||||
private let saveDebounceInterval: TimeInterval = 2.0 // Save at most once every 2 seconds
|
// than a retained DispatchSourceTimer: a lingering, never-cancelled timer
|
||||||
|
// keeps the dispatch machinery alive and prevents the unit-test process from
|
||||||
|
// exiting. (The original code used Timer.scheduledTimer on a GCD queue with
|
||||||
|
// no run loop, so saves never actually fired.)
|
||||||
private var pendingSave = false
|
private var pendingSave = false
|
||||||
|
|
||||||
// Encryption key
|
// Encryption key
|
||||||
private let encryptionKey: SymmetricKey
|
private let encryptionKey: SymmetricKey
|
||||||
|
/// True when `encryptionKey` is a throwaway generated this session because the
|
||||||
|
/// persisted key could not be read (device locked / access denied). In that
|
||||||
|
/// state we must NOT persist (it would overwrite the real cache with data the
|
||||||
|
/// next launch can't decrypt) and must NOT delete the existing cache.
|
||||||
|
private let encryptionKeyIsEphemeral: Bool
|
||||||
|
|
||||||
init(_ keychain: KeychainManagerProtocol) {
|
init(_ keychain: KeychainManagerProtocol) {
|
||||||
self.keychain = keychain
|
self.keychain = keychain
|
||||||
|
|
||||||
// Generate or retrieve encryption key from keychain
|
// Retrieve (or, only on genuine first run, generate) the cache
|
||||||
|
// encryption key. We MUST distinguish "key doesn't exist yet" from a
|
||||||
|
// transient failure (device locked / access denied): the legacy
|
||||||
|
// getIdentityKey(forKey:) collapses both to nil, and generating+saving a
|
||||||
|
// new key deletes the existing one first — permanently orphaning the
|
||||||
|
// encrypted cache on a launch that merely couldn't read the key.
|
||||||
let loadedKey: SymmetricKey
|
let loadedKey: SymmetricKey
|
||||||
|
let keyIsEphemeral: Bool
|
||||||
|
|
||||||
// Try to load from keychain
|
switch keychain.getIdentityKeyWithResult(forKey: encryptionKeyName) {
|
||||||
if let keyData = keychain.getIdentityKey(forKey: encryptionKeyName) {
|
case .success(let keyData):
|
||||||
loadedKey = SymmetricKey(data: keyData)
|
loadedKey = SymmetricKey(data: keyData)
|
||||||
|
keyIsEphemeral = false
|
||||||
SecureLogger.logKeyOperation(.load, keyType: "identity cache encryption key", success: true)
|
SecureLogger.logKeyOperation(.load, keyType: "identity cache encryption key", success: true)
|
||||||
}
|
|
||||||
// Generate new key if needed
|
case .itemNotFound:
|
||||||
else {
|
// Genuine first run: generate and persist a new key.
|
||||||
loadedKey = SymmetricKey(size: .bits256)
|
let newKey = SymmetricKey(size: .bits256)
|
||||||
let keyData = loadedKey.withUnsafeBytes { Data($0) }
|
let keyData = newKey.withUnsafeBytes { Data($0) }
|
||||||
// Save to keychain
|
|
||||||
let saved = keychain.saveIdentityKey(keyData, forKey: encryptionKeyName)
|
let saved = keychain.saveIdentityKey(keyData, forKey: encryptionKeyName)
|
||||||
|
loadedKey = newKey
|
||||||
|
// If even the save failed, treat the key as ephemeral so we don't
|
||||||
|
// later try to persist a cache the next launch can't read.
|
||||||
|
keyIsEphemeral = !saved
|
||||||
SecureLogger.logKeyOperation(.generate, keyType: "identity cache encryption key", success: saved)
|
SecureLogger.logKeyOperation(.generate, keyType: "identity cache encryption key", success: saved)
|
||||||
|
|
||||||
|
case .deviceLocked, .authenticationFailed, .accessDenied, .otherError:
|
||||||
|
// Transient/critical read failure. Do NOT overwrite the persisted
|
||||||
|
// key. Use a session-only ephemeral key; the real key and cache are
|
||||||
|
// left intact for a healthy launch.
|
||||||
|
SecureLogger.warning("Identity cache key unavailable; using ephemeral key for this session (not persisting)", category: .security)
|
||||||
|
loadedKey = SymmetricKey(size: .bits256)
|
||||||
|
keyIsEphemeral = true
|
||||||
}
|
}
|
||||||
|
|
||||||
self.encryptionKey = loadedKey
|
self.encryptionKey = loadedKey
|
||||||
|
self.encryptionKeyIsEphemeral = keyIsEphemeral
|
||||||
|
|
||||||
// Load identity cache on init
|
// Only read the persisted cache when we hold the real key; with an
|
||||||
|
// ephemeral key the decrypt would fail and discard the real cache.
|
||||||
|
if !keyIsEphemeral {
|
||||||
loadIdentityCache()
|
loadIdentityCache()
|
||||||
}
|
}
|
||||||
|
}
|
||||||
|
|
||||||
deinit {
|
deinit {
|
||||||
forceSave()
|
forceSave()
|
||||||
@@ -201,28 +232,37 @@ final class SecureIdentityStateManager: SecureIdentityStateManagerProtocol {
|
|||||||
let decryptedData = try AES.GCM.open(sealedBox, using: encryptionKey)
|
let decryptedData = try AES.GCM.open(sealedBox, using: encryptionKey)
|
||||||
cache = try JSONDecoder().decode(IdentityCache.self, from: decryptedData)
|
cache = try JSONDecoder().decode(IdentityCache.self, from: decryptedData)
|
||||||
} catch {
|
} catch {
|
||||||
// Log error but continue with empty cache
|
cache = IdentityCache()
|
||||||
SecureLogger.error(error, context: "Failed to load identity cache", category: .security)
|
let deleted = keychain.deleteIdentityKey(forKey: cacheKey)
|
||||||
|
SecureLogger.warning(
|
||||||
|
"Discarded unreadable identity cache; starting fresh (deleted=\(deleted), error=\(error.localizedDescription))",
|
||||||
|
category: .security
|
||||||
|
)
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
/// Persists the cache. Always invoked on `queue` under a barrier (its callers
|
||||||
|
/// run inside `queue.async(.barrier)`), so it simply marks the cache dirty
|
||||||
|
/// and persists it on the same serialized context — no timer, nothing left
|
||||||
|
/// scheduled to keep the process alive.
|
||||||
private func saveIdentityCache() {
|
private func saveIdentityCache() {
|
||||||
// Mark that we need to save
|
|
||||||
pendingSave = true
|
pendingSave = true
|
||||||
|
performSave()
|
||||||
// Cancel any existing timer
|
|
||||||
saveTimer?.invalidate()
|
|
||||||
|
|
||||||
// Schedule a new save after the debounce interval
|
|
||||||
saveTimer = Timer.scheduledTimer(withTimeInterval: saveDebounceInterval, repeats: false) { [weak self] _ in
|
|
||||||
self?.performSave()
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
|
|
||||||
|
/// Writes the cache to the keychain. Must run on `queue` with exclusive
|
||||||
|
/// (barrier) access.
|
||||||
private func performSave() {
|
private func performSave() {
|
||||||
guard pendingSave else { return }
|
guard pendingSave else { return }
|
||||||
pendingSave = false
|
pendingSave = false
|
||||||
|
|
||||||
|
// Never persist under an ephemeral key — it would overwrite the real
|
||||||
|
// cache with data the next launch cannot decrypt.
|
||||||
|
guard !encryptionKeyIsEphemeral else {
|
||||||
|
SecureLogger.debug("Skipping identity cache save (ephemeral key this session)", category: .security)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
do {
|
do {
|
||||||
let data = try JSONEncoder().encode(cache)
|
let data = try JSONEncoder().encode(cache)
|
||||||
let sealedBox = try AES.GCM.seal(data, using: encryptionKey)
|
let sealedBox = try AES.GCM.seal(data, using: encryptionKey)
|
||||||
@@ -235,9 +275,13 @@ final class SecureIdentityStateManager: SecureIdentityStateManagerProtocol {
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
// Force immediate save (for app termination)
|
// Force immediate save (for app termination / lifecycle events). Mutations
|
||||||
|
// already persist synchronously via saveIdentityCache, so this is normally a
|
||||||
|
// no-op (performSave early-returns when nothing is pending). Runs directly on
|
||||||
|
// the caller's thread — deliberately NOT a `queue.sync(barrier)`, which is
|
||||||
|
// reachable from `deinit` and from async tests on the swift-concurrency
|
||||||
|
// cooperative pool where a blocking barrier-sync can starve/deadlock it.
|
||||||
func forceSave() {
|
func forceSave() {
|
||||||
saveTimer?.invalidate()
|
|
||||||
performSave()
|
performSave()
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -331,16 +375,15 @@ final class SecureIdentityStateManager: SecureIdentityStateManagerProtocol {
|
|||||||
|
|
||||||
func updateSocialIdentity(_ identity: SocialIdentity) {
|
func updateSocialIdentity(_ identity: SocialIdentity) {
|
||||||
queue.async(flags: .barrier) {
|
queue.async(flags: .barrier) {
|
||||||
|
let previousClaimedNickname = self.cache.socialIdentities[identity.fingerprint]?.claimedNickname
|
||||||
self.cache.socialIdentities[identity.fingerprint] = identity
|
self.cache.socialIdentities[identity.fingerprint] = identity
|
||||||
|
|
||||||
// Update nickname index
|
// Update nickname index
|
||||||
if let existingIdentity = self.cache.socialIdentities[identity.fingerprint] {
|
if let previousClaimedNickname,
|
||||||
// Remove old nickname from index if changed
|
previousClaimedNickname != identity.claimedNickname {
|
||||||
if existingIdentity.claimedNickname != identity.claimedNickname {
|
self.cache.nicknameIndex[previousClaimedNickname]?.remove(identity.fingerprint)
|
||||||
self.cache.nicknameIndex[existingIdentity.claimedNickname]?.remove(identity.fingerprint)
|
if self.cache.nicknameIndex[previousClaimedNickname]?.isEmpty == true {
|
||||||
if self.cache.nicknameIndex[existingIdentity.claimedNickname]?.isEmpty == true {
|
self.cache.nicknameIndex.removeValue(forKey: previousClaimedNickname)
|
||||||
self.cache.nicknameIndex.removeValue(forKey: existingIdentity.claimedNickname)
|
|
||||||
}
|
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -532,4 +575,16 @@ final class SecureIdentityStateManager: SecureIdentityStateManagerProtocol {
|
|||||||
return cache.verifiedFingerprints
|
return cache.verifiedFingerprints
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
var debugNicknameIndex: [String: Set<String>] {
|
||||||
|
queue.sync { cache.nicknameIndex }
|
||||||
|
}
|
||||||
|
|
||||||
|
func debugEphemeralSession(for peerID: PeerID) -> EphemeralIdentity? {
|
||||||
|
queue.sync { ephemeralSessions[peerID] }
|
||||||
|
}
|
||||||
|
|
||||||
|
func debugLastInteraction(for fingerprint: String) -> Date? {
|
||||||
|
queue.sync { cache.lastInteractions[fingerprint] }
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
+6
-4
@@ -2,6 +2,8 @@
|
|||||||
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">
|
<!DOCTYPE plist PUBLIC "-//Apple//DTD PLIST 1.0//EN" "http://www.apple.com/DTDs/PropertyList-1.0.dtd">
|
||||||
<plist version="1.0">
|
<plist version="1.0">
|
||||||
<dict>
|
<dict>
|
||||||
|
<key>AppGroupID</key>
|
||||||
|
<string>$(APP_GROUP_ID)</string>
|
||||||
<key>CFBundleDevelopmentRegion</key>
|
<key>CFBundleDevelopmentRegion</key>
|
||||||
<string>$(DEVELOPMENT_LANGUAGE)</string>
|
<string>$(DEVELOPMENT_LANGUAGE)</string>
|
||||||
<key>CFBundleDisplayName</key>
|
<key>CFBundleDisplayName</key>
|
||||||
@@ -37,12 +39,12 @@
|
|||||||
<string>bitchat uses Bluetooth to discover and connect with other bitchat users nearby.</string>
|
<string>bitchat uses Bluetooth to discover and connect with other bitchat users nearby.</string>
|
||||||
<key>NSCameraUsageDescription</key>
|
<key>NSCameraUsageDescription</key>
|
||||||
<string>bitchat uses the camera to scan QR codes to verify peers.</string>
|
<string>bitchat uses the camera to scan QR codes to verify peers.</string>
|
||||||
<key>NSPhotoLibraryUsageDescription</key>
|
|
||||||
<string>bitchat lets you pick images from your photo library to share with nearby peers.</string>
|
|
||||||
<key>NSMicrophoneUsageDescription</key>
|
|
||||||
<string>bitchat uses the microphone to record voice notes that relay across the mesh.</string>
|
|
||||||
<key>NSLocationWhenInUseUsageDescription</key>
|
<key>NSLocationWhenInUseUsageDescription</key>
|
||||||
<string>bitchat uses your approximate location to compute local geohash channels for optional public chats. Exact GPS is never shared.</string>
|
<string>bitchat uses your approximate location to compute local geohash channels for optional public chats. Exact GPS is never shared.</string>
|
||||||
|
<key>NSMicrophoneUsageDescription</key>
|
||||||
|
<string>bitchat uses the microphone to record voice notes that relay across the mesh.</string>
|
||||||
|
<key>NSPhotoLibraryUsageDescription</key>
|
||||||
|
<string>bitchat lets you pick images from your photo library to share with nearby peers.</string>
|
||||||
<key>UIBackgroundModes</key>
|
<key>UIBackgroundModes</key>
|
||||||
<array>
|
<array>
|
||||||
<string>bluetooth-central</string>
|
<string>bluetooth-central</string>
|
||||||
|
|||||||
+1449
-155
File diff suppressed because it is too large
Load Diff
@@ -0,0 +1,69 @@
|
|||||||
|
//
|
||||||
|
// BitchatMessage+Media.swift
|
||||||
|
// bitchat
|
||||||
|
//
|
||||||
|
// This is free and unencumbered software released into the public domain.
|
||||||
|
// For more information, see <https://unlicense.org>
|
||||||
|
//
|
||||||
|
|
||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
extension BitchatMessage {
|
||||||
|
enum Media {
|
||||||
|
case voice(URL)
|
||||||
|
case image(URL)
|
||||||
|
|
||||||
|
var url: URL {
|
||||||
|
switch self {
|
||||||
|
case .voice(let url), .image(let url):
|
||||||
|
return url
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// Cache the directory lookup to avoid repeated FileManager calls during view rendering
|
||||||
|
private struct Cache {
|
||||||
|
let filesDir: URL?
|
||||||
|
|
||||||
|
static let shared = Cache()
|
||||||
|
private init() {
|
||||||
|
do {
|
||||||
|
let base = try FileManager.default.url(for: .applicationSupportDirectory, in: .userDomainMask, appropriateFor: nil, create: true)
|
||||||
|
let filesDir = base.appendingPathComponent("files", isDirectory: true)
|
||||||
|
try FileManager.default.createDirectory(at: filesDir, withIntermediateDirectories: true, attributes: nil)
|
||||||
|
self.filesDir = filesDir
|
||||||
|
} catch {
|
||||||
|
filesDir = nil
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func mediaAttachment(for nickname: String) -> Media? {
|
||||||
|
guard let baseDirectory = Cache.shared.filesDir else { return nil }
|
||||||
|
|
||||||
|
func url(for category: MimeType.Category) -> URL? {
|
||||||
|
guard content.hasPrefix(category.messagePrefix),
|
||||||
|
let filename = String(content.dropFirst(category.messagePrefix.count)).trimmedOrNilIfEmpty
|
||||||
|
else {
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
// Check outgoing first for sent messages, incoming for received
|
||||||
|
let subdir = sender == nickname ? "\(category.mediaDir)/outgoing" : "\(category.mediaDir)/incoming"
|
||||||
|
|
||||||
|
// Construct URL directly without fileExists check (avoids blocking disk I/O in view body)
|
||||||
|
// Files are checked during playback/display, so missing files fail gracefully
|
||||||
|
let directory = baseDirectory.appendingPathComponent(subdir, isDirectory: true)
|
||||||
|
return directory.appendingPathComponent(filename)
|
||||||
|
}
|
||||||
|
|
||||||
|
if let url = url(for: .audio) {
|
||||||
|
return .voice(url)
|
||||||
|
}
|
||||||
|
if let url = url(for: .image) {
|
||||||
|
return .image(url)
|
||||||
|
}
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -1,5 +1,6 @@
|
|||||||
import Foundation
|
import Foundation
|
||||||
import CoreBluetooth
|
import CoreBluetooth
|
||||||
|
import BitFoundation
|
||||||
|
|
||||||
/// Represents a peer in the BitChat network with all associated metadata
|
/// Represents a peer in the BitChat network with all associated metadata
|
||||||
struct BitchatPeer: Equatable {
|
struct BitchatPeer: Equatable {
|
||||||
|
|||||||
@@ -11,15 +11,19 @@ import Foundation
|
|||||||
// MARK: - CommandInfo Enum
|
// MARK: - CommandInfo Enum
|
||||||
|
|
||||||
enum CommandInfo: String, Identifiable {
|
enum CommandInfo: String, Identifiable {
|
||||||
|
// Raw values must match the aliases CommandProcessor actually accepts —
|
||||||
|
// the suggestion panel is the app's only command-discovery surface, and
|
||||||
|
// suggesting a spelling the processor rejects teaches users dead ends.
|
||||||
case block
|
case block
|
||||||
case clear
|
case clear
|
||||||
|
case help
|
||||||
case hug
|
case hug
|
||||||
case message = "dm"
|
case message = "msg"
|
||||||
case slap
|
case slap
|
||||||
case unblock
|
case unblock
|
||||||
case who
|
case who
|
||||||
case favorite
|
case favorite = "fav"
|
||||||
case unfavorite
|
case unfavorite = "unfav"
|
||||||
|
|
||||||
var id: String { rawValue }
|
var id: String { rawValue }
|
||||||
|
|
||||||
@@ -29,7 +33,7 @@ enum CommandInfo: String, Identifiable {
|
|||||||
switch self {
|
switch self {
|
||||||
case .block, .hug, .message, .slap, .unblock, .favorite, .unfavorite:
|
case .block, .hug, .message, .slap, .unblock, .favorite, .unfavorite:
|
||||||
return "<" + String(localized: "content.input.nickname_placeholder") + ">"
|
return "<" + String(localized: "content.input.nickname_placeholder") + ">"
|
||||||
case .clear, .who:
|
case .clear, .help, .who:
|
||||||
return nil
|
return nil
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
@@ -38,6 +42,7 @@ enum CommandInfo: String, Identifiable {
|
|||||||
switch self {
|
switch self {
|
||||||
case .block: String(localized: "content.commands.block")
|
case .block: String(localized: "content.commands.block")
|
||||||
case .clear: String(localized: "content.commands.clear")
|
case .clear: String(localized: "content.commands.clear")
|
||||||
|
case .help: String(localized: "content.commands.help")
|
||||||
case .hug: String(localized: "content.commands.hug")
|
case .hug: String(localized: "content.commands.hug")
|
||||||
case .message: String(localized: "content.commands.message")
|
case .message: String(localized: "content.commands.message")
|
||||||
case .slap: String(localized: "content.commands.slap")
|
case .slap: String(localized: "content.commands.slap")
|
||||||
@@ -49,10 +54,12 @@ enum CommandInfo: String, Identifiable {
|
|||||||
}
|
}
|
||||||
|
|
||||||
static func all(isGeoPublic: Bool, isGeoDM: Bool) -> [CommandInfo] {
|
static func all(isGeoPublic: Bool, isGeoDM: Bool) -> [CommandInfo] {
|
||||||
let baseCommands: [CommandInfo] = [.block, .unblock, .clear, .hug, .message, .slap, .who]
|
let baseCommands: [CommandInfo] = [.block, .unblock, .clear, .help, .hug, .message, .slap, .who]
|
||||||
|
// The processor rejects favorites in geohash contexts, so only
|
||||||
|
// suggest them where they actually work: mesh.
|
||||||
if isGeoPublic || isGeoDM {
|
if isGeoPublic || isGeoDM {
|
||||||
return baseCommands + [.favorite, .unfavorite]
|
|
||||||
}
|
|
||||||
return baseCommands
|
return baseCommands
|
||||||
}
|
}
|
||||||
|
return baseCommands + [.favorite, .unfavorite]
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -7,6 +7,7 @@
|
|||||||
//
|
//
|
||||||
|
|
||||||
import Foundation
|
import Foundation
|
||||||
|
import BitFoundation
|
||||||
|
|
||||||
struct ReadReceipt: Codable {
|
struct ReadReceipt: Codable {
|
||||||
let originalMessageID: String
|
let originalMessageID: String
|
||||||
|
|||||||
@@ -96,7 +96,7 @@ struct RequestSyncPacket {
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
guard let pp = p, let mm = m, let dd = payload, pp >= 1, mm > 0 else { return nil }
|
guard let pp = p, let mm = m, let dd = payload, pp >= 1, pp <= GCSFilter.maxP, mm > 0 else { return nil }
|
||||||
return RequestSyncPacket(p: pp, m: mm, data: dd, types: types, sinceTimestamp: sinceTimestamp, fragmentIdFilter: fragmentIdFilter)
|
return RequestSyncPacket(p: pp, m: mm, data: dd, types: types, sinceTimestamp: sinceTimestamp, fragmentIdFilter: fragmentIdFilter)
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -78,6 +78,7 @@
|
|||||||
///
|
///
|
||||||
|
|
||||||
import BitLogger
|
import BitLogger
|
||||||
|
import BitFoundation
|
||||||
import Foundation
|
import Foundation
|
||||||
import CryptoKit
|
import CryptoKit
|
||||||
|
|
||||||
@@ -92,6 +93,7 @@ enum NoisePattern {
|
|||||||
case XX // Most versatile, mutual authentication
|
case XX // Most versatile, mutual authentication
|
||||||
case IK // Initiator knows responder's static key
|
case IK // Initiator knows responder's static key
|
||||||
case NK // Anonymous initiator
|
case NK // Anonymous initiator
|
||||||
|
case X // One-way: single message to a known static key (no response)
|
||||||
}
|
}
|
||||||
|
|
||||||
enum NoiseRole {
|
enum NoiseRole {
|
||||||
@@ -321,6 +323,13 @@ final class NoiseCipherState {
|
|||||||
throw NoiseError.replayDetected
|
throw NoiseError.replayDetected
|
||||||
}
|
}
|
||||||
|
|
||||||
|
// The 4-byte nonce prefix has been stripped, so the remaining bytes
|
||||||
|
// must still hold at least the 16-byte Poly1305 tag. The up-front
|
||||||
|
// `ciphertext.count >= 16` guard is not sufficient here (it counts
|
||||||
|
// the nonce), and `prefix(count - 16)` would trap on a short payload.
|
||||||
|
guard actualCiphertext.count >= 16 else {
|
||||||
|
throw NoiseError.invalidCiphertext
|
||||||
|
}
|
||||||
// Split ciphertext and tag
|
// Split ciphertext and tag
|
||||||
encryptedData = actualCiphertext.prefix(actualCiphertext.count - 16)
|
encryptedData = actualCiphertext.prefix(actualCiphertext.count - 16)
|
||||||
tag = actualCiphertext.suffix(16)
|
tag = actualCiphertext.suffix(16)
|
||||||
@@ -384,6 +393,16 @@ final class NoiseCipherState {
|
|||||||
replayWindow[i] = 0
|
replayWindow[i] = 0
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
#if DEBUG
|
||||||
|
func setNonceForTesting(_ nonce: UInt64) {
|
||||||
|
self.nonce = nonce
|
||||||
|
}
|
||||||
|
|
||||||
|
func extractNonceFromCiphertextPayloadForTesting(_ combinedPayload: Data) throws -> (nonce: UInt64, ciphertext: Data)? {
|
||||||
|
try extractNonceFromCiphertextPayload(combinedPayload)
|
||||||
|
}
|
||||||
|
#endif
|
||||||
}
|
}
|
||||||
|
|
||||||
// MARK: - Symmetric State
|
// MARK: - Symmetric State
|
||||||
@@ -583,10 +602,11 @@ final class NoiseHandshakeState {
|
|||||||
switch pattern {
|
switch pattern {
|
||||||
case .XX:
|
case .XX:
|
||||||
break // No pre-message keys
|
break // No pre-message keys
|
||||||
case .IK, .NK:
|
case .IK, .NK, .X:
|
||||||
if role == .initiator, let remoteStatic = remoteStaticPublic {
|
if role == .initiator, let remoteStatic = remoteStaticPublic {
|
||||||
_ = symmetricState.getHandshakeHash()
|
|
||||||
symmetricState.mixHash(remoteStatic.rawRepresentation)
|
symmetricState.mixHash(remoteStatic.rawRepresentation)
|
||||||
|
} else if role == .responder, let localStatic = localStaticPublic {
|
||||||
|
symmetricState.mixHash(localStatic.rawRepresentation)
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
@@ -861,6 +881,20 @@ final class NoiseHandshakeState {
|
|||||||
func getHandshakeHash() -> Data {
|
func getHandshakeHash() -> Data {
|
||||||
return symmetricState.getHandshakeHash()
|
return symmetricState.getHandshakeHash()
|
||||||
}
|
}
|
||||||
|
|
||||||
|
#if DEBUG
|
||||||
|
func performDHOperationForTesting(_ pattern: NoiseMessagePattern) throws {
|
||||||
|
try performDHOperation(pattern)
|
||||||
|
}
|
||||||
|
|
||||||
|
func setCurrentPatternForTesting(_ currentPattern: Int) {
|
||||||
|
self.currentPattern = currentPattern
|
||||||
|
}
|
||||||
|
|
||||||
|
func setRemoteEphemeralPublicKeyForTesting(_ key: Curve25519.KeyAgreement.PublicKey?) {
|
||||||
|
self.remoteEphemeralPublic = key
|
||||||
|
}
|
||||||
|
#endif
|
||||||
}
|
}
|
||||||
|
|
||||||
// MARK: - Pattern Extensions
|
// MARK: - Pattern Extensions
|
||||||
@@ -871,6 +905,7 @@ extension NoisePattern {
|
|||||||
case .XX: return "XX"
|
case .XX: return "XX"
|
||||||
case .IK: return "IK"
|
case .IK: return "IK"
|
||||||
case .NK: return "NK"
|
case .NK: return "NK"
|
||||||
|
case .X: return "X"
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -892,6 +927,10 @@ extension NoisePattern {
|
|||||||
[.e, .es], // -> e, es
|
[.e, .es], // -> e, es
|
||||||
[.e, .ee] // <- e, ee
|
[.e, .ee] // <- e, ee
|
||||||
]
|
]
|
||||||
|
case .X:
|
||||||
|
return [
|
||||||
|
[.e, .es, .s, .ss] // -> e, es, s, ss (single one-way message)
|
||||||
|
]
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -7,6 +7,7 @@
|
|||||||
//
|
//
|
||||||
|
|
||||||
import BitLogger
|
import BitLogger
|
||||||
|
import BitFoundation
|
||||||
import Foundation
|
import Foundation
|
||||||
|
|
||||||
final class NoiseRateLimiter {
|
final class NoiseRateLimiter {
|
||||||
|
|||||||
@@ -9,6 +9,7 @@
|
|||||||
import BitLogger
|
import BitLogger
|
||||||
import Foundation
|
import Foundation
|
||||||
import CryptoKit
|
import CryptoKit
|
||||||
|
import BitFoundation
|
||||||
|
|
||||||
class NoiseSession {
|
class NoiseSession {
|
||||||
let peerID: PeerID
|
let peerID: PeerID
|
||||||
|
|||||||
@@ -9,11 +9,13 @@
|
|||||||
import BitLogger
|
import BitLogger
|
||||||
import CryptoKit
|
import CryptoKit
|
||||||
import Foundation
|
import Foundation
|
||||||
|
import BitFoundation
|
||||||
|
|
||||||
final class NoiseSessionManager {
|
final class NoiseSessionManager {
|
||||||
private var sessions: [PeerID: NoiseSession] = [:]
|
private var sessions: [PeerID: NoiseSession] = [:]
|
||||||
private let localStaticKey: Curve25519.KeyAgreement.PrivateKey
|
private let localStaticKey: Curve25519.KeyAgreement.PrivateKey
|
||||||
private let keychain: KeychainManagerProtocol
|
private let keychain: KeychainManagerProtocol
|
||||||
|
private let sessionFactory: (PeerID, NoiseRole) -> NoiseSession
|
||||||
private let managerQueue = DispatchQueue(label: "chat.bitchat.noise.manager", attributes: .concurrent)
|
private let managerQueue = DispatchQueue(label: "chat.bitchat.noise.manager", attributes: .concurrent)
|
||||||
|
|
||||||
// Callbacks
|
// Callbacks
|
||||||
@@ -23,7 +25,27 @@ final class NoiseSessionManager {
|
|||||||
init(localStaticKey: Curve25519.KeyAgreement.PrivateKey, keychain: KeychainManagerProtocol) {
|
init(localStaticKey: Curve25519.KeyAgreement.PrivateKey, keychain: KeychainManagerProtocol) {
|
||||||
self.localStaticKey = localStaticKey
|
self.localStaticKey = localStaticKey
|
||||||
self.keychain = keychain
|
self.keychain = keychain
|
||||||
|
self.sessionFactory = { peerID, role in
|
||||||
|
SecureNoiseSession(
|
||||||
|
peerID: peerID,
|
||||||
|
role: role,
|
||||||
|
keychain: keychain,
|
||||||
|
localStaticKey: localStaticKey
|
||||||
|
)
|
||||||
}
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
#if DEBUG
|
||||||
|
init(
|
||||||
|
localStaticKey: Curve25519.KeyAgreement.PrivateKey,
|
||||||
|
keychain: KeychainManagerProtocol,
|
||||||
|
sessionFactory: @escaping (PeerID, NoiseRole) -> NoiseSession
|
||||||
|
) {
|
||||||
|
self.localStaticKey = localStaticKey
|
||||||
|
self.keychain = keychain
|
||||||
|
self.sessionFactory = sessionFactory
|
||||||
|
}
|
||||||
|
#endif
|
||||||
|
|
||||||
// MARK: - Session Management
|
// MARK: - Session Management
|
||||||
|
|
||||||
@@ -66,12 +88,7 @@ final class NoiseSessionManager {
|
|||||||
}
|
}
|
||||||
|
|
||||||
// Create new initiator session
|
// Create new initiator session
|
||||||
let session = SecureNoiseSession(
|
let session = sessionFactory(peerID, .initiator)
|
||||||
peerID: peerID,
|
|
||||||
role: .initiator,
|
|
||||||
keychain: keychain,
|
|
||||||
localStaticKey: localStaticKey
|
|
||||||
)
|
|
||||||
sessions[peerID] = session
|
sessions[peerID] = session
|
||||||
|
|
||||||
do {
|
do {
|
||||||
@@ -117,12 +134,7 @@ final class NoiseSessionManager {
|
|||||||
// Get or create session
|
// Get or create session
|
||||||
let session: NoiseSession
|
let session: NoiseSession
|
||||||
if shouldCreateNew {
|
if shouldCreateNew {
|
||||||
let newSession = SecureNoiseSession(
|
let newSession = sessionFactory(peerID, .responder)
|
||||||
peerID: peerID,
|
|
||||||
role: .responder,
|
|
||||||
keychain: keychain,
|
|
||||||
localStaticKey: localStaticKey
|
|
||||||
)
|
|
||||||
sessions[peerID] = newSession
|
sessions[peerID] = newSession
|
||||||
session = newSession
|
session = newSession
|
||||||
} else {
|
} else {
|
||||||
|
|||||||
@@ -10,7 +10,7 @@ import Foundation
|
|||||||
|
|
||||||
final class SecureNoiseSession: NoiseSession {
|
final class SecureNoiseSession: NoiseSession {
|
||||||
private(set) var messageCount: UInt64 = 0
|
private(set) var messageCount: UInt64 = 0
|
||||||
private let sessionStartTime = Date()
|
private var sessionStartTime = Date()
|
||||||
private(set) var lastActivityTime = Date()
|
private(set) var lastActivityTime = Date()
|
||||||
|
|
||||||
override func encrypt(_ plaintext: Data) throws -> Data {
|
override func encrypt(_ plaintext: Data) throws -> Data {
|
||||||
@@ -77,5 +77,9 @@ final class SecureNoiseSession: NoiseSession {
|
|||||||
func setMessageCountForTesting(_ count: UInt64) {
|
func setMessageCountForTesting(_ count: UInt64) {
|
||||||
messageCount = count
|
messageCount = count
|
||||||
}
|
}
|
||||||
|
|
||||||
|
func setSessionStartTimeForTesting(_ date: Date) {
|
||||||
|
sessionStartTime = date
|
||||||
|
}
|
||||||
#endif
|
#endif
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -0,0 +1,22 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum Base64URLCoding {
|
||||||
|
static func encode(_ data: Data) -> String {
|
||||||
|
data.base64EncodedString()
|
||||||
|
.replacingOccurrences(of: "+", with: "-")
|
||||||
|
.replacingOccurrences(of: "/", with: "_")
|
||||||
|
.replacingOccurrences(of: "=", with: "")
|
||||||
|
}
|
||||||
|
|
||||||
|
static func decode(_ string: String) -> Data? {
|
||||||
|
var base64 = string
|
||||||
|
let padding = (4 - (base64.count % 4)) % 4
|
||||||
|
if padding > 0 {
|
||||||
|
base64 += String(repeating: "=", count: padding)
|
||||||
|
}
|
||||||
|
base64 = base64
|
||||||
|
.replacingOccurrences(of: "-", with: "+")
|
||||||
|
.replacingOccurrences(of: "_", with: "/")
|
||||||
|
return Data(base64Encoded: base64)
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -7,40 +7,160 @@ import UIKit
|
|||||||
import AppKit
|
import AppKit
|
||||||
#endif
|
#endif
|
||||||
|
|
||||||
|
extension Notification.Name {
|
||||||
|
/// Posted after the geo relay directory successfully refreshes its entries.
|
||||||
|
static let geoRelayDirectoryDidRefresh = Notification.Name("bitchat.geoRelayDirectoryDidRefresh")
|
||||||
|
}
|
||||||
|
|
||||||
/// Directory of online Nostr relays with approximate GPS locations, used for geohash routing.
|
/// Directory of online Nostr relays with approximate GPS locations, used for geohash routing.
|
||||||
|
struct GeoRelayDirectoryDependencies {
|
||||||
|
var userDefaults: UserDefaults
|
||||||
|
var notificationCenter: NotificationCenter
|
||||||
|
var now: () -> Date
|
||||||
|
var remoteURL: URL
|
||||||
|
var fetchInterval: TimeInterval
|
||||||
|
var refreshCheckInterval: TimeInterval
|
||||||
|
var retryInitialSeconds: TimeInterval
|
||||||
|
var retryMaxSeconds: TimeInterval
|
||||||
|
var awaitTorReady: @Sendable () async -> Bool
|
||||||
|
var makeFetchData: @MainActor @Sendable () -> (@Sendable (URLRequest) async throws -> Data)
|
||||||
|
var readData: (URL) -> Data?
|
||||||
|
var writeData: (Data, URL) throws -> Void
|
||||||
|
var cacheURL: () -> URL?
|
||||||
|
var bundledCSVURLs: () -> [URL]
|
||||||
|
var currentDirectoryPath: () -> String?
|
||||||
|
var retrySleep: (TimeInterval) async -> Void
|
||||||
|
var activeNotificationName: Notification.Name?
|
||||||
|
var autoStart: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
private extension GeoRelayDirectoryDependencies {
|
||||||
|
@MainActor
|
||||||
|
static func live() -> Self {
|
||||||
|
#if os(iOS)
|
||||||
|
let activeNotificationName: Notification.Name? = UIApplication.didBecomeActiveNotification
|
||||||
|
#elseif os(macOS)
|
||||||
|
let activeNotificationName: Notification.Name? = NSApplication.didBecomeActiveNotification
|
||||||
|
#else
|
||||||
|
let activeNotificationName: Notification.Name? = nil
|
||||||
|
#endif
|
||||||
|
|
||||||
|
return Self(
|
||||||
|
userDefaults: .standard,
|
||||||
|
notificationCenter: .default,
|
||||||
|
now: Date.init,
|
||||||
|
remoteURL: URL(string: "https://raw.githubusercontent.com/permissionlesstech/georelays/refs/heads/main/nostr_relays.csv")!,
|
||||||
|
fetchInterval: TransportConfig.geoRelayFetchIntervalSeconds,
|
||||||
|
refreshCheckInterval: TransportConfig.geoRelayRefreshCheckIntervalSeconds,
|
||||||
|
retryInitialSeconds: TransportConfig.geoRelayRetryInitialSeconds,
|
||||||
|
retryMaxSeconds: TransportConfig.geoRelayRetryMaxSeconds,
|
||||||
|
awaitTorReady: { await TorManager.shared.awaitReady() },
|
||||||
|
makeFetchData: {
|
||||||
|
let session = TorURLSession.shared.session
|
||||||
|
return { request in
|
||||||
|
let (data, _) = try await session.data(for: request)
|
||||||
|
return data
|
||||||
|
}
|
||||||
|
},
|
||||||
|
readData: { try? Data(contentsOf: $0) },
|
||||||
|
writeData: { data, url in
|
||||||
|
try data.write(to: url, options: .atomic)
|
||||||
|
},
|
||||||
|
cacheURL: {
|
||||||
|
do {
|
||||||
|
let base = try FileManager.default.url(
|
||||||
|
for: .applicationSupportDirectory,
|
||||||
|
in: .userDomainMask,
|
||||||
|
appropriateFor: nil,
|
||||||
|
create: true
|
||||||
|
)
|
||||||
|
let dir = base.appendingPathComponent("bitchat", isDirectory: true)
|
||||||
|
try? FileManager.default.createDirectory(at: dir, withIntermediateDirectories: true)
|
||||||
|
return dir.appendingPathComponent("georelays_cache.csv")
|
||||||
|
} catch {
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
},
|
||||||
|
bundledCSVURLs: {
|
||||||
|
[
|
||||||
|
Bundle.main.url(forResource: "nostr_relays", withExtension: "csv"),
|
||||||
|
Bundle.main.url(forResource: "online_relays_gps", withExtension: "csv"),
|
||||||
|
Bundle.main.url(forResource: "online_relays_gps", withExtension: "csv", subdirectory: "relays")
|
||||||
|
].compactMap { $0 }
|
||||||
|
},
|
||||||
|
currentDirectoryPath: { FileManager.default.currentDirectoryPath },
|
||||||
|
retrySleep: { delay in
|
||||||
|
let nanoseconds = UInt64(delay * 1_000_000_000)
|
||||||
|
try? await Task.sleep(nanoseconds: nanoseconds)
|
||||||
|
},
|
||||||
|
activeNotificationName: activeNotificationName,
|
||||||
|
autoStart: true
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
@MainActor
|
@MainActor
|
||||||
final class GeoRelayDirectory {
|
final class GeoRelayDirectory {
|
||||||
struct Entry: Hashable {
|
private final class CleanupState {
|
||||||
|
let notificationCenter: NotificationCenter
|
||||||
|
var observers: [NSObjectProtocol] = []
|
||||||
|
var refreshTimer: Timer?
|
||||||
|
var retryTask: Task<Void, Never>?
|
||||||
|
|
||||||
|
init(notificationCenter: NotificationCenter) {
|
||||||
|
self.notificationCenter = notificationCenter
|
||||||
|
}
|
||||||
|
|
||||||
|
deinit {
|
||||||
|
observers.forEach { notificationCenter.removeObserver($0) }
|
||||||
|
refreshTimer?.invalidate()
|
||||||
|
retryTask?.cancel()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
struct Entry: Hashable, Sendable {
|
||||||
let host: String
|
let host: String
|
||||||
let lat: Double
|
let lat: Double
|
||||||
let lon: Double
|
let lon: Double
|
||||||
}
|
}
|
||||||
|
|
||||||
|
private enum DetachedFetchOutcome: Sendable {
|
||||||
|
case success(entries: [Entry], csv: String)
|
||||||
|
case torNotReady
|
||||||
|
case invalidData
|
||||||
|
case network(String)
|
||||||
|
}
|
||||||
|
|
||||||
static let shared = GeoRelayDirectory()
|
static let shared = GeoRelayDirectory()
|
||||||
|
|
||||||
private(set) var entries: [Entry] = []
|
private(set) var entries: [Entry] = []
|
||||||
private let cacheFileName = "georelays_cache.csv"
|
|
||||||
private let lastFetchKey = "georelay.lastFetchAt"
|
private let lastFetchKey = "georelay.lastFetchAt"
|
||||||
private let remoteURL = URL(string: "https://raw.githubusercontent.com/permissionlesstech/georelays/refs/heads/main/nostr_relays.csv")!
|
private let dependencies: GeoRelayDirectoryDependencies
|
||||||
private let fetchInterval: TimeInterval = TransportConfig.geoRelayFetchIntervalSeconds
|
private let cleanupState: CleanupState
|
||||||
|
|
||||||
private var refreshTimer: Timer?
|
|
||||||
private var retryTask: Task<Void, Never>?
|
|
||||||
private var retryAttempt: Int = 0
|
private var retryAttempt: Int = 0
|
||||||
private var isFetching: Bool = false
|
private var isFetching: Bool = false
|
||||||
private var observers: [NSObjectProtocol] = []
|
|
||||||
|
|
||||||
private init() {
|
private init() {
|
||||||
|
self.dependencies = .live()
|
||||||
|
self.cleanupState = CleanupState(notificationCenter: dependencies.notificationCenter)
|
||||||
entries = loadLocalEntries()
|
entries = loadLocalEntries()
|
||||||
|
if dependencies.autoStart {
|
||||||
registerObservers()
|
registerObservers()
|
||||||
startRefreshTimer()
|
startRefreshTimer()
|
||||||
prefetchIfNeeded()
|
prefetchIfNeeded()
|
||||||
}
|
}
|
||||||
|
}
|
||||||
|
|
||||||
deinit {
|
internal init(dependencies: GeoRelayDirectoryDependencies) {
|
||||||
observers.forEach { NotificationCenter.default.removeObserver($0) }
|
self.dependencies = dependencies
|
||||||
refreshTimer?.invalidate()
|
self.cleanupState = CleanupState(notificationCenter: dependencies.notificationCenter)
|
||||||
retryTask?.cancel()
|
entries = loadLocalEntries()
|
||||||
|
if dependencies.autoStart {
|
||||||
|
registerObservers()
|
||||||
|
startRefreshTimer()
|
||||||
|
prefetchIfNeeded()
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
/// Returns up to `count` relay URLs (wss://) closest to the geohash center.
|
/// Returns up to `count` relay URLs (wss://) closest to the geohash center.
|
||||||
@@ -50,46 +170,29 @@ final class GeoRelayDirectory {
|
|||||||
}
|
}
|
||||||
|
|
||||||
/// Returns up to `count` relay URLs (wss://) closest to the given coordinate.
|
/// Returns up to `count` relay URLs (wss://) closest to the given coordinate.
|
||||||
|
/// Ties break by host so every device with the same directory picks the
|
||||||
|
/// same relay set — publishers and subscribers must agree on relays.
|
||||||
func closestRelays(toLat lat: Double, lon: Double, count: Int = 5) -> [String] {
|
func closestRelays(toLat lat: Double, lon: Double, count: Int = 5) -> [String] {
|
||||||
guard !entries.isEmpty, count > 0 else { return [] }
|
guard !entries.isEmpty, count > 0 else { return [] }
|
||||||
|
|
||||||
if entries.count <= count {
|
|
||||||
return entries
|
return entries
|
||||||
.sorted { a, b in
|
.map { (entry: $0, distance: haversineKm(lat, lon, $0.lat, $0.lon)) }
|
||||||
haversineKm(lat, lon, a.lat, a.lon) < haversineKm(lat, lon, b.lat, b.lon)
|
.sorted { ($0.distance, $0.entry.host) < ($1.distance, $1.entry.host) }
|
||||||
}
|
.prefix(count)
|
||||||
.map { "wss://\($0.host)" }
|
.map { "wss://\($0.entry.host)" }
|
||||||
}
|
|
||||||
|
|
||||||
var best: [(entry: Entry, distance: Double)] = []
|
|
||||||
best.reserveCapacity(count)
|
|
||||||
|
|
||||||
for entry in entries {
|
|
||||||
let distance = haversineKm(lat, lon, entry.lat, entry.lon)
|
|
||||||
if best.count < count {
|
|
||||||
let idx = best.firstIndex { $0.distance > distance } ?? best.count
|
|
||||||
best.insert((entry, distance), at: idx)
|
|
||||||
} else if let worstDistance = best.last?.distance, distance < worstDistance {
|
|
||||||
let idx = best.firstIndex { $0.distance > distance } ?? best.count
|
|
||||||
best.insert((entry, distance), at: idx)
|
|
||||||
best.removeLast()
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
return best.map { "wss://\($0.entry.host)" }
|
|
||||||
}
|
}
|
||||||
|
|
||||||
// MARK: - Remote Fetch
|
// MARK: - Remote Fetch
|
||||||
func prefetchIfNeeded(force: Bool = false) {
|
func prefetchIfNeeded(force: Bool = false) {
|
||||||
guard !isFetching else { return }
|
guard !isFetching else { return }
|
||||||
|
|
||||||
let now = Date()
|
let now = dependencies.now()
|
||||||
let last = UserDefaults.standard.object(forKey: lastFetchKey) as? Date ?? .distantPast
|
let last = dependencies.userDefaults.object(forKey: lastFetchKey) as? Date ?? .distantPast
|
||||||
|
|
||||||
if !force {
|
if !force {
|
||||||
guard now.timeIntervalSince(last) >= fetchInterval else { return }
|
guard now.timeIntervalSince(last) >= dependencies.fetchInterval else { return }
|
||||||
} else if last != .distantPast,
|
} else if last != .distantPast,
|
||||||
now.timeIntervalSince(last) < TransportConfig.geoRelayRetryInitialSeconds {
|
now.timeIntervalSince(last) < dependencies.retryInitialSeconds {
|
||||||
// Skip forced fetches if we just refreshed moments ago.
|
// Skip forced fetches if we just refreshed moments ago.
|
||||||
return
|
return
|
||||||
}
|
}
|
||||||
@@ -103,55 +206,79 @@ final class GeoRelayDirectory {
|
|||||||
isFetching = true
|
isFetching = true
|
||||||
|
|
||||||
let request = URLRequest(
|
let request = URLRequest(
|
||||||
url: remoteURL,
|
url: dependencies.remoteURL,
|
||||||
cachePolicy: .reloadIgnoringLocalCacheData,
|
cachePolicy: .reloadIgnoringLocalCacheData,
|
||||||
timeoutInterval: 15
|
timeoutInterval: 15
|
||||||
)
|
)
|
||||||
|
let awaitTorReady = dependencies.awaitTorReady
|
||||||
|
let fetchData = dependencies.makeFetchData()
|
||||||
|
|
||||||
Task.detached { [weak self] in
|
Task { [weak self] in
|
||||||
guard let self else { return }
|
guard let self else { return }
|
||||||
|
|
||||||
let ready = await TorManager.shared.awaitReady()
|
let outcome = await Self.fetchRemoteOutcome(
|
||||||
if !ready {
|
request: request,
|
||||||
await self.handleFetchFailure(.torNotReady)
|
awaitTorReady: awaitTorReady,
|
||||||
return
|
fetchData: fetchData
|
||||||
|
)
|
||||||
|
|
||||||
|
switch outcome {
|
||||||
|
case .success(let parsed, let csv):
|
||||||
|
self.handleFetchSuccess(entries: parsed, csv: csv)
|
||||||
|
case .torNotReady:
|
||||||
|
self.handleFetchFailure(.torNotReady)
|
||||||
|
case .invalidData:
|
||||||
|
self.handleFetchFailure(.invalidData)
|
||||||
|
case .network(let description):
|
||||||
|
self.handleFetchFailure(.network(description))
|
||||||
}
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
nonisolated private static func fetchRemoteOutcome(
|
||||||
|
request: URLRequest,
|
||||||
|
awaitTorReady: @escaping @Sendable () async -> Bool,
|
||||||
|
fetchData: @escaping @Sendable (URLRequest) async throws -> Data
|
||||||
|
) async -> DetachedFetchOutcome {
|
||||||
|
await Task.detached(priority: .utility) {
|
||||||
|
let ready = await awaitTorReady()
|
||||||
|
guard ready else { return .torNotReady }
|
||||||
|
|
||||||
do {
|
do {
|
||||||
let (data, _) = try await TorURLSession.shared.session.data(for: request)
|
let data = try await fetchData(request)
|
||||||
guard let text = String(data: data, encoding: .utf8) else {
|
guard let text = String(data: data, encoding: .utf8) else {
|
||||||
await self.handleFetchFailure(.invalidData)
|
return .invalidData
|
||||||
return
|
|
||||||
}
|
}
|
||||||
|
|
||||||
let parsed = GeoRelayDirectory.parseCSV(text)
|
let parsed = Self.parseCSV(text)
|
||||||
guard !parsed.isEmpty else {
|
guard !parsed.isEmpty else {
|
||||||
await self.handleFetchFailure(.invalidData)
|
return .invalidData
|
||||||
return
|
|
||||||
}
|
}
|
||||||
|
|
||||||
await self.handleFetchSuccess(entries: parsed, csv: text)
|
return .success(entries: parsed, csv: text)
|
||||||
} catch {
|
} catch {
|
||||||
await self.handleFetchFailure(.network(error))
|
return .network(error.localizedDescription)
|
||||||
}
|
|
||||||
}
|
}
|
||||||
|
}.value
|
||||||
}
|
}
|
||||||
|
|
||||||
private enum FetchFailure {
|
private enum FetchFailure {
|
||||||
case torNotReady
|
case torNotReady
|
||||||
case invalidData
|
case invalidData
|
||||||
case network(Error)
|
case network(String)
|
||||||
}
|
}
|
||||||
|
|
||||||
@MainActor
|
@MainActor
|
||||||
private func handleFetchSuccess(entries parsed: [Entry], csv: String) {
|
private func handleFetchSuccess(entries parsed: [Entry], csv: String) {
|
||||||
entries = parsed
|
entries = parsed
|
||||||
persistCache(csv)
|
persistCache(csv)
|
||||||
UserDefaults.standard.set(Date(), forKey: lastFetchKey)
|
dependencies.userDefaults.set(dependencies.now(), forKey: lastFetchKey)
|
||||||
SecureLogger.info("GeoRelayDirectory: refreshed \(parsed.count) relays from remote", category: .session)
|
SecureLogger.info("GeoRelayDirectory: refreshed \(parsed.count) relays from remote", category: .session)
|
||||||
isFetching = false
|
isFetching = false
|
||||||
retryAttempt = 0
|
retryAttempt = 0
|
||||||
cancelRetry()
|
cancelRetry()
|
||||||
|
// Let waiters (e.g. location notes stuck in a "no relays" state) retry.
|
||||||
|
dependencies.notificationCenter.post(name: .geoRelayDirectoryDidRefresh, object: nil)
|
||||||
}
|
}
|
||||||
|
|
||||||
@MainActor
|
@MainActor
|
||||||
@@ -161,8 +288,8 @@ final class GeoRelayDirectory {
|
|||||||
SecureLogger.warning("GeoRelayDirectory: Tor not ready; scheduling retry", category: .session)
|
SecureLogger.warning("GeoRelayDirectory: Tor not ready; scheduling retry", category: .session)
|
||||||
case .invalidData:
|
case .invalidData:
|
||||||
SecureLogger.warning("GeoRelayDirectory: remote fetch returned invalid data; scheduling retry", category: .session)
|
SecureLogger.warning("GeoRelayDirectory: remote fetch returned invalid data; scheduling retry", category: .session)
|
||||||
case .network(let error):
|
case .network(let errorDescription):
|
||||||
SecureLogger.warning("GeoRelayDirectory: remote fetch failed with error: \(error.localizedDescription)", category: .session)
|
SecureLogger.warning("GeoRelayDirectory: remote fetch failed with error: \(errorDescription)", category: .session)
|
||||||
}
|
}
|
||||||
isFetching = false
|
isFetching = false
|
||||||
scheduleRetry()
|
scheduleRetry()
|
||||||
@@ -171,32 +298,34 @@ final class GeoRelayDirectory {
|
|||||||
@MainActor
|
@MainActor
|
||||||
private func scheduleRetry() {
|
private func scheduleRetry() {
|
||||||
retryAttempt = min(retryAttempt + 1, 10)
|
retryAttempt = min(retryAttempt + 1, 10)
|
||||||
let base = TransportConfig.geoRelayRetryInitialSeconds
|
let base = dependencies.retryInitialSeconds
|
||||||
let maxDelay = TransportConfig.geoRelayRetryMaxSeconds
|
let maxDelay = dependencies.retryMaxSeconds
|
||||||
let multiplier = pow(2.0, Double(max(retryAttempt - 1, 0)))
|
let multiplier = pow(2.0, Double(max(retryAttempt - 1, 0)))
|
||||||
let calculated = base * multiplier
|
let calculated = base * multiplier
|
||||||
let delay = min(maxDelay, max(base, calculated))
|
let delay = min(maxDelay, max(base, calculated))
|
||||||
|
|
||||||
cancelRetry()
|
cancelRetry()
|
||||||
retryTask = Task { [weak self] in
|
cleanupState.retryTask = Task { [weak self] in
|
||||||
let nanoseconds = UInt64(delay * 1_000_000_000)
|
guard let self else { return }
|
||||||
try? await Task.sleep(nanoseconds: nanoseconds)
|
await self.dependencies.retrySleep(delay)
|
||||||
|
guard !Task.isCancelled else { return }
|
||||||
await MainActor.run {
|
await MainActor.run {
|
||||||
self?.prefetchIfNeeded(force: true)
|
self.prefetchIfNeeded(force: true)
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
@MainActor
|
@MainActor
|
||||||
private func cancelRetry() {
|
private func cancelRetry() {
|
||||||
retryTask?.cancel()
|
cleanupState.retryTask?.cancel()
|
||||||
retryTask = nil
|
cleanupState.retryTask = nil
|
||||||
}
|
}
|
||||||
|
|
||||||
private func persistCache(_ text: String) {
|
private func persistCache(_ text: String) {
|
||||||
guard let url = cacheURL() else { return }
|
guard let url = dependencies.cacheURL() else { return }
|
||||||
|
guard let data = text.data(using: .utf8) else { return }
|
||||||
do {
|
do {
|
||||||
try text.data(using: .utf8)?.write(to: url, options: .atomic)
|
try dependencies.writeData(data, url)
|
||||||
} catch {
|
} catch {
|
||||||
SecureLogger.warning("GeoRelayDirectory: failed to write cache: \(error)", category: .session)
|
SecureLogger.warning("GeoRelayDirectory: failed to write cache: \(error)", category: .session)
|
||||||
}
|
}
|
||||||
@@ -205,22 +334,18 @@ final class GeoRelayDirectory {
|
|||||||
// MARK: - Loading
|
// MARK: - Loading
|
||||||
private func loadLocalEntries() -> [Entry] {
|
private func loadLocalEntries() -> [Entry] {
|
||||||
// Prefer cached file if present
|
// Prefer cached file if present
|
||||||
if let cache = cacheURL(),
|
if let cache = dependencies.cacheURL(),
|
||||||
let data = try? Data(contentsOf: cache),
|
let data = dependencies.readData(cache),
|
||||||
let text = String(data: data, encoding: .utf8) {
|
let text = String(data: data, encoding: .utf8) {
|
||||||
let arr = Self.parseCSV(text)
|
let arr = Self.parseCSV(text)
|
||||||
if !arr.isEmpty { return arr }
|
if !arr.isEmpty { return arr }
|
||||||
}
|
}
|
||||||
|
|
||||||
// Try bundled resource(s)
|
// Try bundled resource(s)
|
||||||
let bundleCandidates = [
|
let bundleCandidates = dependencies.bundledCSVURLs()
|
||||||
Bundle.main.url(forResource: "nostr_relays", withExtension: "csv"),
|
|
||||||
Bundle.main.url(forResource: "online_relays_gps", withExtension: "csv"),
|
|
||||||
Bundle.main.url(forResource: "online_relays_gps", withExtension: "csv", subdirectory: "relays")
|
|
||||||
].compactMap { $0 }
|
|
||||||
|
|
||||||
for url in bundleCandidates {
|
for url in bundleCandidates {
|
||||||
if let data = try? Data(contentsOf: url),
|
if let data = dependencies.readData(url),
|
||||||
let text = String(data: data, encoding: .utf8) {
|
let text = String(data: data, encoding: .utf8) {
|
||||||
let arr = Self.parseCSV(text)
|
let arr = Self.parseCSV(text)
|
||||||
if !arr.isEmpty { return arr }
|
if !arr.isEmpty { return arr }
|
||||||
@@ -228,8 +353,8 @@ final class GeoRelayDirectory {
|
|||||||
}
|
}
|
||||||
|
|
||||||
// Try filesystem path (development/test)
|
// Try filesystem path (development/test)
|
||||||
if let cwd = FileManager.default.currentDirectoryPath as String?,
|
if let cwd = dependencies.currentDirectoryPath(),
|
||||||
let data = try? Data(contentsOf: URL(fileURLWithPath: cwd).appendingPathComponent("relays/online_relays_gps.csv")),
|
let data = dependencies.readData(URL(fileURLWithPath: cwd).appendingPathComponent("relays/online_relays_gps.csv")),
|
||||||
let text = String(data: data, encoding: .utf8) {
|
let text = String(data: data, encoding: .utf8) {
|
||||||
return Self.parseCSV(text)
|
return Self.parseCSV(text)
|
||||||
}
|
}
|
||||||
@@ -242,42 +367,20 @@ final class GeoRelayDirectory {
|
|||||||
var result: Set<Entry> = []
|
var result: Set<Entry> = []
|
||||||
let lines = text.split(whereSeparator: { $0.isNewline })
|
let lines = text.split(whereSeparator: { $0.isNewline })
|
||||||
for (idx, raw) in lines.enumerated() {
|
for (idx, raw) in lines.enumerated() {
|
||||||
let line = raw.trimmingCharacters(in: .whitespacesAndNewlines)
|
guard let line = raw.trimmedOrNilIfEmpty else { continue }
|
||||||
if line.isEmpty { continue }
|
|
||||||
if idx == 0 && line.lowercased().contains("relay url") { continue }
|
if idx == 0 && line.lowercased().contains("relay url") { continue }
|
||||||
let parts = line.split(separator: ",").map { String($0).trimmingCharacters(in: .whitespaces) }
|
let parts = line.split(separator: ",").map { $0.trimmed }
|
||||||
guard parts.count >= 3 else { continue }
|
guard parts.count >= 3 else { continue }
|
||||||
var host = parts[0]
|
guard let host = NostrRelayURL.directoryAddress(parts[0]) else { continue }
|
||||||
host = host.replacingOccurrences(of: "https://", with: "")
|
|
||||||
host = host.replacingOccurrences(of: "http://", with: "")
|
|
||||||
host = host.replacingOccurrences(of: "wss://", with: "")
|
|
||||||
host = host.replacingOccurrences(of: "ws://", with: "")
|
|
||||||
host = host.trimmingCharacters(in: CharacterSet(charactersIn: "/"))
|
|
||||||
guard let lat = Double(parts[1]), let lon = Double(parts[2]) else { continue }
|
guard let lat = Double(parts[1]), let lon = Double(parts[2]) else { continue }
|
||||||
result.insert(Entry(host: host, lat: lat, lon: lon))
|
result.insert(Entry(host: host, lat: lat, lon: lon))
|
||||||
}
|
}
|
||||||
return Array(result)
|
return Array(result)
|
||||||
}
|
}
|
||||||
|
|
||||||
private func cacheURL() -> URL? {
|
|
||||||
do {
|
|
||||||
let base = try FileManager.default.url(
|
|
||||||
for: .applicationSupportDirectory,
|
|
||||||
in: .userDomainMask,
|
|
||||||
appropriateFor: nil,
|
|
||||||
create: true
|
|
||||||
)
|
|
||||||
let dir = base.appendingPathComponent("bitchat", isDirectory: true)
|
|
||||||
try? FileManager.default.createDirectory(at: dir, withIntermediateDirectories: true)
|
|
||||||
return dir.appendingPathComponent(cacheFileName)
|
|
||||||
} catch {
|
|
||||||
return nil
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
// MARK: - Observers & Timers
|
// MARK: - Observers & Timers
|
||||||
private func registerObservers() {
|
private func registerObservers() {
|
||||||
let center = NotificationCenter.default
|
let center = dependencies.notificationCenter
|
||||||
|
|
||||||
let torReady = center.addObserver(
|
let torReady = center.addObserver(
|
||||||
forName: .TorDidBecomeReady,
|
forName: .TorDidBecomeReady,
|
||||||
@@ -289,11 +392,11 @@ final class GeoRelayDirectory {
|
|||||||
self.prefetchIfNeeded(force: true)
|
self.prefetchIfNeeded(force: true)
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
observers.append(torReady)
|
cleanupState.observers.append(torReady)
|
||||||
|
|
||||||
#if os(iOS)
|
if let activeNotificationName = dependencies.activeNotificationName {
|
||||||
let didBecomeActive = center.addObserver(
|
let didBecomeActive = center.addObserver(
|
||||||
forName: UIApplication.didBecomeActiveNotification,
|
forName: activeNotificationName,
|
||||||
object: nil,
|
object: nil,
|
||||||
queue: .main
|
queue: .main
|
||||||
) { [weak self] _ in
|
) { [weak self] _ in
|
||||||
@@ -302,25 +405,13 @@ final class GeoRelayDirectory {
|
|||||||
self.prefetchIfNeeded()
|
self.prefetchIfNeeded()
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
observers.append(didBecomeActive)
|
cleanupState.observers.append(didBecomeActive)
|
||||||
#elseif os(macOS)
|
|
||||||
let didBecomeActive = center.addObserver(
|
|
||||||
forName: NSApplication.didBecomeActiveNotification,
|
|
||||||
object: nil,
|
|
||||||
queue: .main
|
|
||||||
) { [weak self] _ in
|
|
||||||
guard let self else { return }
|
|
||||||
Task { @MainActor in
|
|
||||||
self.prefetchIfNeeded()
|
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
observers.append(didBecomeActive)
|
|
||||||
#endif
|
|
||||||
}
|
|
||||||
|
|
||||||
private func startRefreshTimer() {
|
private func startRefreshTimer() {
|
||||||
refreshTimer?.invalidate()
|
cleanupState.refreshTimer?.invalidate()
|
||||||
let interval = TransportConfig.geoRelayRefreshCheckIntervalSeconds
|
let interval = dependencies.refreshCheckInterval
|
||||||
guard interval > 0 else { return }
|
guard interval > 0 else { return }
|
||||||
|
|
||||||
let timer = Timer.scheduledTimer(withTimeInterval: interval, repeats: true) { [weak self] _ in
|
let timer = Timer.scheduledTimer(withTimeInterval: interval, repeats: true) { [weak self] _ in
|
||||||
@@ -329,9 +420,13 @@ final class GeoRelayDirectory {
|
|||||||
self.prefetchIfNeeded()
|
self.prefetchIfNeeded()
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
refreshTimer = timer
|
cleanupState.refreshTimer = timer
|
||||||
RunLoop.main.add(timer, forMode: .common)
|
RunLoop.main.add(timer, forMode: .common)
|
||||||
}
|
}
|
||||||
|
|
||||||
|
var debugRetryAttempt: Int { retryAttempt }
|
||||||
|
var debugHasRetryTask: Bool { cleanupState.retryTask != nil }
|
||||||
|
var debugObserverCount: Int { cleanupState.observers.count }
|
||||||
}
|
}
|
||||||
|
|
||||||
// MARK: - Distance
|
// MARK: - Distance
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
import Foundation
|
import Foundation
|
||||||
|
import BitFoundation
|
||||||
|
|
||||||
// MARK: - BitChat-over-Nostr Adapter
|
// MARK: - BitChat-over-Nostr Adapter
|
||||||
|
|
||||||
|
|||||||
@@ -1,3 +1,4 @@
|
|||||||
|
import BitFoundation
|
||||||
import Foundation
|
import Foundation
|
||||||
import CryptoKit
|
import CryptoKit
|
||||||
|
|
||||||
@@ -81,6 +82,13 @@ final class NostrIdentityBridge {
|
|||||||
}
|
}
|
||||||
|
|
||||||
deviceSeedCache = nil
|
deviceSeedCache = nil
|
||||||
|
// Also drop the in-memory derived per-geohash identities. These hold the
|
||||||
|
// actual secp256k1 private keys; if left cached, post-panic geohash
|
||||||
|
// messages would still be signed with pre-panic keys (linkable across the
|
||||||
|
// wipe) until the app is force-quit.
|
||||||
|
cacheLock.lock()
|
||||||
|
derivedIdentityCache.removeAll()
|
||||||
|
cacheLock.unlock()
|
||||||
}
|
}
|
||||||
|
|
||||||
// MARK: - Per-Geohash Identities (Location Channels)
|
// MARK: - Per-Geohash Identities (Location Channels)
|
||||||
|
|||||||
@@ -39,22 +39,23 @@ struct NostrProtocol {
|
|||||||
content: content
|
content: content
|
||||||
)
|
)
|
||||||
|
|
||||||
// 2. Create ephemeral key for this message
|
// 2. Seal the rumor (encrypt to recipient) and sign it with the SENDER'S
|
||||||
let ephemeralKey = try P256K.Schnorr.PrivateKey()
|
// real identity key. NIP-17 requires the seal be signed by the sender
|
||||||
// Created ephemeral key for seal
|
// so the recipient can authenticate who sent the message; signing with
|
||||||
|
// a throwaway key leaves DMs forgeable/impersonatable.
|
||||||
// 3. Seal the rumor (encrypt to recipient)
|
let senderKey = try senderIdentity.schnorrSigningKey()
|
||||||
let sealedEvent = try createSeal(
|
let sealedEvent = try createSeal(
|
||||||
rumor: rumor,
|
rumor: rumor,
|
||||||
recipientPubkey: recipientPubkey,
|
recipientPubkey: recipientPubkey,
|
||||||
senderKey: ephemeralKey
|
senderKey: senderKey
|
||||||
)
|
)
|
||||||
|
|
||||||
// 4. Gift wrap the sealed event (encrypt to recipient again)
|
// 3. Gift wrap the sealed event with a throwaway ephemeral key (the wrap
|
||||||
|
// layer hides the sender's identity from relays; createGiftWrap mints
|
||||||
|
// its own ephemeral key internally).
|
||||||
let giftWrap = try createGiftWrap(
|
let giftWrap = try createGiftWrap(
|
||||||
seal: sealedEvent,
|
seal: sealedEvent,
|
||||||
recipientPubkey: recipientPubkey,
|
recipientPubkey: recipientPubkey
|
||||||
senderKey: ephemeralKey
|
|
||||||
)
|
)
|
||||||
|
|
||||||
// Created gift wrap
|
// Created gift wrap
|
||||||
@@ -84,7 +85,15 @@ struct NostrProtocol {
|
|||||||
throw error
|
throw error
|
||||||
}
|
}
|
||||||
|
|
||||||
// 2. Open the seal
|
// 2. Authenticate the seal. The seal MUST be signed by the sender's real
|
||||||
|
// identity key (NIP-17); without this check a DM is forgeable by anyone
|
||||||
|
// who knows the recipient's npub. Verify the seal's own signature.
|
||||||
|
guard seal.isValidSignature() else {
|
||||||
|
SecureLogger.error("❌ Rejecting DM: seal signature is missing or invalid", category: .session)
|
||||||
|
throw NostrError.invalidEvent
|
||||||
|
}
|
||||||
|
|
||||||
|
// 3. Open the seal
|
||||||
let rumor: NostrEvent
|
let rumor: NostrEvent
|
||||||
do {
|
do {
|
||||||
rumor = try openSeal(
|
rumor = try openSeal(
|
||||||
@@ -97,9 +106,62 @@ struct NostrProtocol {
|
|||||||
throw error
|
throw error
|
||||||
}
|
}
|
||||||
|
|
||||||
return (content: rumor.content, senderPubkey: rumor.pubkey, timestamp: rumor.created_at)
|
// 4. The sender claimed inside the rumor must match the key that actually
|
||||||
|
// signed the seal, otherwise the sender field is unauthenticated and
|
||||||
|
// spoofable.
|
||||||
|
guard seal.pubkey == rumor.pubkey else {
|
||||||
|
SecureLogger.error("❌ Rejecting DM: rumor pubkey does not match seal signer", category: .session)
|
||||||
|
throw NostrError.invalidEvent
|
||||||
}
|
}
|
||||||
|
|
||||||
|
// Return the seal signer's pubkey as the authenticated sender.
|
||||||
|
return (content: rumor.content, senderPubkey: seal.pubkey, timestamp: rumor.created_at)
|
||||||
|
}
|
||||||
|
|
||||||
|
#if DEBUG
|
||||||
|
static func createPrivateMessageWithInvalidSealSignatureForTesting(
|
||||||
|
content: String,
|
||||||
|
recipientPubkey: String,
|
||||||
|
senderIdentity: NostrIdentity
|
||||||
|
) throws -> NostrEvent {
|
||||||
|
let rumor = NostrEvent(
|
||||||
|
pubkey: senderIdentity.publicKeyHex,
|
||||||
|
createdAt: Date(),
|
||||||
|
kind: .dm,
|
||||||
|
tags: [],
|
||||||
|
content: content
|
||||||
|
)
|
||||||
|
var seal = try createSeal(
|
||||||
|
rumor: rumor,
|
||||||
|
recipientPubkey: recipientPubkey,
|
||||||
|
senderKey: senderIdentity.schnorrSigningKey()
|
||||||
|
)
|
||||||
|
seal.sig = String(repeating: "0", count: 128)
|
||||||
|
return try createGiftWrap(seal: seal, recipientPubkey: recipientPubkey)
|
||||||
|
}
|
||||||
|
|
||||||
|
static func createPrivateMessageWithMismatchedSealRumorPubkeyForTesting(
|
||||||
|
content: String,
|
||||||
|
recipientPubkey: String,
|
||||||
|
rumorIdentity: NostrIdentity,
|
||||||
|
sealSignerIdentity: NostrIdentity
|
||||||
|
) throws -> NostrEvent {
|
||||||
|
let rumor = NostrEvent(
|
||||||
|
pubkey: rumorIdentity.publicKeyHex,
|
||||||
|
createdAt: Date(),
|
||||||
|
kind: .dm,
|
||||||
|
tags: [],
|
||||||
|
content: content
|
||||||
|
)
|
||||||
|
let seal = try createSeal(
|
||||||
|
rumor: rumor,
|
||||||
|
recipientPubkey: recipientPubkey,
|
||||||
|
senderKey: sealSignerIdentity.schnorrSigningKey()
|
||||||
|
)
|
||||||
|
return try createGiftWrap(seal: seal, recipientPubkey: recipientPubkey)
|
||||||
|
}
|
||||||
|
#endif
|
||||||
|
|
||||||
/// Create a geohash-scoped ephemeral public message (kind 20000)
|
/// Create a geohash-scoped ephemeral public message (kind 20000)
|
||||||
static func createEphemeralGeohashEvent(
|
static func createEphemeralGeohashEvent(
|
||||||
content: String,
|
content: String,
|
||||||
@@ -109,7 +171,7 @@ struct NostrProtocol {
|
|||||||
teleported: Bool = false
|
teleported: Bool = false
|
||||||
) throws -> NostrEvent {
|
) throws -> NostrEvent {
|
||||||
var tags = [["g", geohash]]
|
var tags = [["g", geohash]]
|
||||||
if let nickname = nickname?.trimmingCharacters(in: .whitespacesAndNewlines), !nickname.isEmpty {
|
if let nickname = nickname?.trimmedOrNilIfEmpty {
|
||||||
tags.append(["n", nickname])
|
tags.append(["n", nickname])
|
||||||
}
|
}
|
||||||
if teleported {
|
if teleported {
|
||||||
@@ -152,7 +214,7 @@ struct NostrProtocol {
|
|||||||
nickname: String? = nil
|
nickname: String? = nil
|
||||||
) throws -> NostrEvent {
|
) throws -> NostrEvent {
|
||||||
var tags = [["g", geohash]]
|
var tags = [["g", geohash]]
|
||||||
if let nickname = nickname?.trimmingCharacters(in: .whitespacesAndNewlines), !nickname.isEmpty {
|
if let nickname = nickname?.trimmedOrNilIfEmpty {
|
||||||
tags.append(["n", nickname])
|
tags.append(["n", nickname])
|
||||||
}
|
}
|
||||||
let event = NostrEvent(
|
let event = NostrEvent(
|
||||||
@@ -195,8 +257,7 @@ struct NostrProtocol {
|
|||||||
|
|
||||||
private static func createGiftWrap(
|
private static func createGiftWrap(
|
||||||
seal: NostrEvent,
|
seal: NostrEvent,
|
||||||
recipientPubkey: String,
|
recipientPubkey: String
|
||||||
senderKey: P256K.Schnorr.PrivateKey // This is the ephemeral key used for the seal
|
|
||||||
) throws -> NostrEvent {
|
) throws -> NostrEvent {
|
||||||
|
|
||||||
let sealJSON = try seal.jsonString()
|
let sealJSON = try seal.jsonString()
|
||||||
@@ -303,7 +364,7 @@ struct NostrProtocol {
|
|||||||
combined.append(nonce24)
|
combined.append(nonce24)
|
||||||
combined.append(sealed.ciphertext)
|
combined.append(sealed.ciphertext)
|
||||||
combined.append(sealed.tag)
|
combined.append(sealed.tag)
|
||||||
return "v2:" + base64URLEncode(combined)
|
return "v2:" + Base64URLCoding.encode(combined)
|
||||||
}
|
}
|
||||||
|
|
||||||
private static func decrypt(
|
private static func decrypt(
|
||||||
@@ -314,7 +375,7 @@ struct NostrProtocol {
|
|||||||
// Expect NIP-44 v2 format
|
// Expect NIP-44 v2 format
|
||||||
guard ciphertext.hasPrefix("v2:") else { throw NostrError.invalidCiphertext }
|
guard ciphertext.hasPrefix("v2:") else { throw NostrError.invalidCiphertext }
|
||||||
let encoded = String(ciphertext.dropFirst(3))
|
let encoded = String(ciphertext.dropFirst(3))
|
||||||
guard let data = base64URLDecode(encoded),
|
guard let data = Base64URLCoding.decode(encoded),
|
||||||
data.count > (24 + 16),
|
data.count > (24 + 16),
|
||||||
let senderPubkeyData = Data(hexString: senderPubkey) else {
|
let senderPubkeyData = Data(hexString: senderPubkey) else {
|
||||||
throw NostrError.invalidCiphertext
|
throw NostrError.invalidCiphertext
|
||||||
@@ -529,6 +590,26 @@ struct NostrEvent: Codable {
|
|||||||
return signed
|
return signed
|
||||||
}
|
}
|
||||||
|
|
||||||
|
/// Validate that the event ID and Schnorr signature match the content and pubkey.
|
||||||
|
/// Returns false when the signature is missing, malformed, or does not verify.
|
||||||
|
func isValidSignature() -> Bool {
|
||||||
|
guard let sig = sig,
|
||||||
|
let sigData = Data(hexString: sig),
|
||||||
|
let pubData = Data(hexString: pubkey),
|
||||||
|
sigData.count == 64,
|
||||||
|
pubData.count == 32,
|
||||||
|
let signature = try? P256K.Schnorr.SchnorrSignature(dataRepresentation: sigData),
|
||||||
|
let (expectedId, eventHash) = try? calculateEventId(),
|
||||||
|
expectedId == id
|
||||||
|
else {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
|
||||||
|
var messageBytes = [UInt8](eventHash)
|
||||||
|
let xonly = P256K.Schnorr.XonlyKey(dataRepresentation: pubData)
|
||||||
|
return xonly.isValid(signature, for: &messageBytes)
|
||||||
|
}
|
||||||
|
|
||||||
private func calculateEventId() throws -> (String, Data) {
|
private func calculateEventId() throws -> (String, Data) {
|
||||||
let serialized = [
|
let serialized = [
|
||||||
0,
|
0,
|
||||||
@@ -560,29 +641,14 @@ enum NostrError: Error {
|
|||||||
case encryptionFailed
|
case encryptionFailed
|
||||||
}
|
}
|
||||||
|
|
||||||
// MARK: - NIP-44 v2 helpers (XChaCha20-Poly1305 + base64url)
|
// MARK: - NIP-44 v2 helpers (XChaCha20-Poly1305)
|
||||||
|
|
||||||
private extension NostrProtocol {
|
private extension NostrProtocol {
|
||||||
static func base64URLEncode(_ data: Data) -> String {
|
|
||||||
return data.base64EncodedString()
|
|
||||||
.replacingOccurrences(of: "+", with: "-")
|
|
||||||
.replacingOccurrences(of: "/", with: "_")
|
|
||||||
.replacingOccurrences(of: "=", with: "")
|
|
||||||
}
|
|
||||||
|
|
||||||
static func base64URLDecode(_ s: String) -> Data? {
|
|
||||||
var str = s
|
|
||||||
let pad = (4 - (str.count % 4)) % 4
|
|
||||||
if pad > 0 { str += String(repeating: "=", count: pad) }
|
|
||||||
str = str.replacingOccurrences(of: "-", with: "+").replacingOccurrences(of: "_", with: "/")
|
|
||||||
return Data(base64Encoded: str)
|
|
||||||
}
|
|
||||||
|
|
||||||
static func deriveNIP44V2Key(from sharedSecretData: Data) throws -> Data {
|
static func deriveNIP44V2Key(from sharedSecretData: Data) throws -> Data {
|
||||||
let derivedKey = HKDF<CryptoKit.SHA256>.deriveKey(
|
let derivedKey = HKDF<CryptoKit.SHA256>.deriveKey(
|
||||||
inputKeyMaterial: SymmetricKey(data: sharedSecretData),
|
inputKeyMaterial: SymmetricKey(data: sharedSecretData),
|
||||||
salt: Data(),
|
salt: Data(),
|
||||||
info: "nip44-v2".data(using: .utf8)!,
|
info: Data("nip44-v2".utf8),
|
||||||
outputByteCount: 32
|
outputByteCount: 32
|
||||||
)
|
)
|
||||||
return derivedKey.withUnsafeBytes { Data($0) }
|
return derivedKey.withUnsafeBytes { Data($0) }
|
||||||
|
|||||||
File diff suppressed because it is too large
Load Diff
@@ -0,0 +1,51 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum NostrRelayURL {
|
||||||
|
static func normalized(_ rawValue: String, defaultScheme: String? = nil) -> String? {
|
||||||
|
var value = rawValue.trimmingCharacters(in: .whitespacesAndNewlines)
|
||||||
|
guard !value.isEmpty else { return nil }
|
||||||
|
|
||||||
|
if !value.contains("://"), let defaultScheme {
|
||||||
|
value = "\(defaultScheme)://\(value)"
|
||||||
|
}
|
||||||
|
|
||||||
|
guard var components = URLComponents(string: value),
|
||||||
|
let rawScheme = components.scheme?.lowercased(),
|
||||||
|
let rawHost = components.host?.lowercased(),
|
||||||
|
!rawHost.isEmpty else {
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
switch rawScheme {
|
||||||
|
case "wss", "https":
|
||||||
|
components.scheme = "wss"
|
||||||
|
if components.port == 443 {
|
||||||
|
components.port = nil
|
||||||
|
}
|
||||||
|
case "ws", "http":
|
||||||
|
components.scheme = "ws"
|
||||||
|
if components.port == 80 {
|
||||||
|
components.port = nil
|
||||||
|
}
|
||||||
|
default:
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
components.host = rawHost
|
||||||
|
if components.path == "/" {
|
||||||
|
components.path = ""
|
||||||
|
}
|
||||||
|
components.fragment = nil
|
||||||
|
|
||||||
|
return components.string
|
||||||
|
}
|
||||||
|
|
||||||
|
static func directoryAddress(_ rawValue: String) -> String? {
|
||||||
|
guard var normalized = normalized(rawValue, defaultScheme: "wss") else { return nil }
|
||||||
|
for prefix in ["wss://", "ws://"] where normalized.hasPrefix(prefix) {
|
||||||
|
normalized.removeFirst(prefix.count)
|
||||||
|
break
|
||||||
|
}
|
||||||
|
return normalized
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -132,4 +132,3 @@ private extension Data {
|
|||||||
replaceSubrange(offset..<(offset+4), with: bytes)
|
replaceSubrange(offset..<(offset+4), with: bytes)
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
|||||||
@@ -7,6 +7,7 @@
|
|||||||
//
|
//
|
||||||
|
|
||||||
import Foundation
|
import Foundation
|
||||||
|
import BitFoundation
|
||||||
import BitLogger
|
import BitLogger
|
||||||
|
|
||||||
/// TLV payload for Bluetooth mesh file transfers (voice notes, images, generic files).
|
/// TLV payload for Bluetooth mesh file transfers (voice notes, images, generic files).
|
||||||
|
|||||||
@@ -60,40 +60,7 @@
|
|||||||
|
|
||||||
import Foundation
|
import Foundation
|
||||||
import CoreBluetooth
|
import CoreBluetooth
|
||||||
|
import BitFoundation
|
||||||
// MARK: - Message Types
|
|
||||||
|
|
||||||
/// Simplified BitChat protocol message types.
|
|
||||||
/// Reduced from 24 types to just 6 essential ones.
|
|
||||||
/// All private communication metadata (receipts, status) is embedded in noiseEncrypted payloads.
|
|
||||||
enum MessageType: UInt8 {
|
|
||||||
// Public messages (unencrypted)
|
|
||||||
case announce = 0x01 // "I'm here" with nickname
|
|
||||||
case message = 0x02 // Public chat message
|
|
||||||
case leave = 0x03 // "I'm leaving"
|
|
||||||
case requestSync = 0x21 // GCS filter-based sync request (local-only)
|
|
||||||
|
|
||||||
// Noise encryption
|
|
||||||
case noiseHandshake = 0x10 // Handshake (init or response determined by payload)
|
|
||||||
case noiseEncrypted = 0x11 // All encrypted payloads (messages, receipts, etc.)
|
|
||||||
|
|
||||||
// Fragmentation (simplified)
|
|
||||||
case fragment = 0x20 // Single fragment type for large messages
|
|
||||||
case fileTransfer = 0x22 // Binary file/audio/image payloads
|
|
||||||
|
|
||||||
var description: String {
|
|
||||||
switch self {
|
|
||||||
case .announce: return "announce"
|
|
||||||
case .message: return "message"
|
|
||||||
case .leave: return "leave"
|
|
||||||
case .requestSync: return "requestSync"
|
|
||||||
case .noiseHandshake: return "noiseHandshake"
|
|
||||||
case .noiseEncrypted: return "noiseEncrypted"
|
|
||||||
case .fragment: return "fragment"
|
|
||||||
case .fileTransfer: return "fileTransfer"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
// MARK: - Noise Payload Types
|
// MARK: - Noise Payload Types
|
||||||
|
|
||||||
@@ -131,35 +98,6 @@ enum LazyHandshakeState {
|
|||||||
case failed(Error) // Handshake failed
|
case failed(Error) // Handshake failed
|
||||||
}
|
}
|
||||||
|
|
||||||
// MARK: - Delivery Status
|
|
||||||
|
|
||||||
// Delivery status for messages
|
|
||||||
enum DeliveryStatus: Codable, Equatable, Hashable {
|
|
||||||
case sending
|
|
||||||
case sent // Left our device
|
|
||||||
case delivered(to: String, at: Date) // Confirmed by recipient
|
|
||||||
case read(by: String, at: Date) // Seen by recipient
|
|
||||||
case failed(reason: String)
|
|
||||||
case partiallyDelivered(reached: Int, total: Int) // For rooms
|
|
||||||
|
|
||||||
var displayText: String {
|
|
||||||
switch self {
|
|
||||||
case .sending:
|
|
||||||
return "Sending..."
|
|
||||||
case .sent:
|
|
||||||
return "Sent"
|
|
||||||
case .delivered(let nickname, _):
|
|
||||||
return "Delivered to \(nickname)"
|
|
||||||
case .read(let nickname, _):
|
|
||||||
return "Read by \(nickname)"
|
|
||||||
case .failed(let reason):
|
|
||||||
return "Failed: \(reason)"
|
|
||||||
case .partiallyDelivered(let reached, let total):
|
|
||||||
return "Delivered to \(reached)/\(total)"
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
// MARK: - Delegate Protocol
|
// MARK: - Delegate Protocol
|
||||||
|
|
||||||
protocol BitchatDelegate: AnyObject {
|
protocol BitchatDelegate: AnyObject {
|
||||||
|
|||||||
@@ -0,0 +1,231 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import BitLogger
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
/// Narrow environment for `BLEAnnounceHandler`.
|
||||||
|
///
|
||||||
|
/// All queue hops (collections barrier, BLE-queue link-state reads, main-actor
|
||||||
|
/// UI notification, delayed re-announce) live inside the closures supplied by
|
||||||
|
/// `BLEService`, keeping the handler queue-agnostic and synchronously testable.
|
||||||
|
struct BLEAnnounceHandlerEnvironment {
|
||||||
|
/// Local peer identity at the time the announce is handled.
|
||||||
|
let localPeerID: () -> PeerID
|
||||||
|
/// TTL value used for direct (non-relayed) packets.
|
||||||
|
let messageTTL: UInt8
|
||||||
|
/// Current time source.
|
||||||
|
let now: () -> Date
|
||||||
|
/// Noise public key already recorded for the peer, if any (registry read).
|
||||||
|
let existingNoisePublicKey: (PeerID) -> Data?
|
||||||
|
/// Verifies the packet signature against the announced signing key.
|
||||||
|
let verifySignature: (_ packet: BitchatPacket, _ signingPublicKey: Data) -> Bool
|
||||||
|
/// Direct link state for the peer (BLE-queue read).
|
||||||
|
let linkState: (PeerID) -> (hasPeripheral: Bool, hasCentral: Bool)
|
||||||
|
/// Runs the registry mutation phase under the collections barrier.
|
||||||
|
let withRegistryBarrier: (() -> Void) -> Void
|
||||||
|
/// Upserts the verified announce into the peer registry.
|
||||||
|
/// Must only be called from inside `withRegistryBarrier`.
|
||||||
|
let upsertVerifiedAnnounce: (
|
||||||
|
_ peerID: PeerID,
|
||||||
|
_ announcement: AnnouncementPacket,
|
||||||
|
_ isConnected: Bool,
|
||||||
|
_ now: Date
|
||||||
|
) -> BLEPeerAnnounceUpdate
|
||||||
|
/// Debounced reconnect-log decision.
|
||||||
|
/// Must only be called from inside `withRegistryBarrier`.
|
||||||
|
let shouldEmitReconnectLog: (_ peerID: PeerID, _ now: Date) -> Bool
|
||||||
|
/// Records verified direct-neighbor claims in the mesh topology.
|
||||||
|
let updateTopology: (_ peerID: PeerID, _ neighbors: [Data]) -> Void
|
||||||
|
/// Persists the announced cryptographic identity for offline verification.
|
||||||
|
let persistIdentity: (AnnouncementPacket) -> Void
|
||||||
|
/// Announce-back dedup check.
|
||||||
|
let dedupContains: (String) -> Bool
|
||||||
|
/// Announce-back dedup marking.
|
||||||
|
let dedupMarkProcessed: (String) -> Void
|
||||||
|
/// Delivers the announce UI events as one ordered main-actor hop:
|
||||||
|
/// `.peerConnected` (if flagged) → initial gossip sync scheduling (if
|
||||||
|
/// flagged) → peer-ID snapshot + data publish + `.peerListUpdated`.
|
||||||
|
/// A single closure keeps the original in-order delivery guarantee that
|
||||||
|
/// separate unstructured tasks would not provide.
|
||||||
|
let deliverAnnounceUIEvents: (
|
||||||
|
_ peerID: PeerID,
|
||||||
|
_ notifyPeerConnected: Bool,
|
||||||
|
_ scheduleInitialSync: Bool
|
||||||
|
) -> Void
|
||||||
|
/// Tracks the announce packet for gossip sync.
|
||||||
|
let trackPacketSeen: (BitchatPacket) -> Void
|
||||||
|
/// Reciprocates the announce for bidirectional discovery.
|
||||||
|
let sendAnnounceBack: () -> Void
|
||||||
|
/// Schedules a delayed re-announce (afterglow) after the given delay.
|
||||||
|
let scheduleAfterglow: (TimeInterval) -> Void
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Outcome of an accepted announce, surfaced so the service can run
|
||||||
|
/// follow-up work (e.g. courier handover) that keys off the announce.
|
||||||
|
struct BLEAnnounceHandlingResult {
|
||||||
|
let peerID: PeerID
|
||||||
|
let announcement: AnnouncementPacket
|
||||||
|
let isDirectAnnounce: Bool
|
||||||
|
let isVerified: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Orchestrates inbound announce packets: preflight validation, signature
|
||||||
|
/// trust, registry/topology updates, identity persistence, UI notification,
|
||||||
|
/// gossip tracking, and the reciprocal announce response.
|
||||||
|
final class BLEAnnounceHandler {
|
||||||
|
private let environment: BLEAnnounceHandlerEnvironment
|
||||||
|
|
||||||
|
init(environment: BLEAnnounceHandlerEnvironment) {
|
||||||
|
self.environment = environment
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
func handle(_ packet: BitchatPacket, from peerID: PeerID) -> BLEAnnounceHandlingResult? {
|
||||||
|
let env = environment
|
||||||
|
let now = env.now()
|
||||||
|
let preflight = BLEAnnouncePreflightPolicy.evaluate(
|
||||||
|
packet: packet,
|
||||||
|
from: peerID,
|
||||||
|
localPeerID: env.localPeerID(),
|
||||||
|
now: now
|
||||||
|
)
|
||||||
|
|
||||||
|
let announcement: AnnouncementPacket
|
||||||
|
switch preflight {
|
||||||
|
case .accept(let acceptance):
|
||||||
|
announcement = acceptance.announcement
|
||||||
|
case .reject(.malformed):
|
||||||
|
SecureLogger.error("❌ Failed to decode announce packet from \(peerID.id.prefix(8))…", category: .session)
|
||||||
|
return nil
|
||||||
|
case .reject(.senderMismatch(let derivedFromKey)):
|
||||||
|
SecureLogger.warning("⚠️ Announce sender mismatch: derived \(derivedFromKey.id.prefix(8))… vs packet \(peerID.id.prefix(8))…", category: .security)
|
||||||
|
return nil
|
||||||
|
case .reject(.selfAnnounce):
|
||||||
|
return nil
|
||||||
|
case .reject(.stale(let ageSeconds)):
|
||||||
|
SecureLogger.debug("⏰ Ignoring stale announce from \(peerID.id.prefix(8))… (age: \(ageSeconds)s)", category: .session)
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
// Suppress announce logs to reduce noise
|
||||||
|
|
||||||
|
// Precompute signature verification outside barrier to reduce contention
|
||||||
|
let existingNoisePublicKey = env.existingNoisePublicKey(peerID)
|
||||||
|
let hasSignature = packet.signature != nil
|
||||||
|
let signatureValid: Bool
|
||||||
|
if hasSignature {
|
||||||
|
signatureValid = env.verifySignature(packet, announcement.signingPublicKey)
|
||||||
|
if !signatureValid {
|
||||||
|
SecureLogger.warning("⚠️ Signature verification for announce failed \(peerID.id.prefix(8))", category: .security)
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
signatureValid = false
|
||||||
|
}
|
||||||
|
let trustDecision = BLEAnnounceTrustPolicy.evaluate(
|
||||||
|
hasSignature: hasSignature,
|
||||||
|
signatureValid: signatureValid,
|
||||||
|
existingNoisePublicKey: existingNoisePublicKey,
|
||||||
|
announcedNoisePublicKey: announcement.noisePublicKey
|
||||||
|
)
|
||||||
|
if case .reject(.keyMismatch) = trustDecision {
|
||||||
|
SecureLogger.warning("⚠️ Announce key mismatch for \(peerID.id.prefix(8))… — keeping unverified", category: .security)
|
||||||
|
}
|
||||||
|
let verifiedAnnounce = trustDecision.isVerified
|
||||||
|
|
||||||
|
var isNewPeer = false
|
||||||
|
var isReconnectedPeer = false
|
||||||
|
let directLinkState = env.linkState(peerID)
|
||||||
|
let isDirectAnnounce = packet.ttl == env.messageTTL
|
||||||
|
|
||||||
|
env.withRegistryBarrier {
|
||||||
|
let hasPeripheralConnection = directLinkState.hasPeripheral
|
||||||
|
let hasCentralSubscription = directLinkState.hasCentral
|
||||||
|
|
||||||
|
// Require verified announce; ignore otherwise (no backward compatibility)
|
||||||
|
if !verifiedAnnounce {
|
||||||
|
SecureLogger.warning("❌ Ignoring unverified announce from \(peerID.id.prefix(8))…", category: .security)
|
||||||
|
// Reset flags to prevent post-barrier code from acting on unverified announces
|
||||||
|
isNewPeer = false
|
||||||
|
isReconnectedPeer = false
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
let update = env.upsertVerifiedAnnounce(
|
||||||
|
peerID,
|
||||||
|
announcement,
|
||||||
|
isDirectAnnounce || hasPeripheralConnection || hasCentralSubscription,
|
||||||
|
now
|
||||||
|
)
|
||||||
|
isNewPeer = update.isNewPeer
|
||||||
|
isReconnectedPeer = update.wasDisconnected
|
||||||
|
|
||||||
|
// Log connection status only for direct connectivity changes; debounce to reduce spam
|
||||||
|
if isDirectAnnounce || hasPeripheralConnection || hasCentralSubscription {
|
||||||
|
let now = env.now()
|
||||||
|
if update.isNewPeer {
|
||||||
|
SecureLogger.debug("🆕 New peer: \(announcement.nickname)", category: .session)
|
||||||
|
} else if update.wasDisconnected {
|
||||||
|
if env.shouldEmitReconnectLog(peerID, now) {
|
||||||
|
SecureLogger.debug("🔄 Peer \(announcement.nickname) reconnected", category: .session)
|
||||||
|
}
|
||||||
|
} else if let previousNickname = update.previousNickname, previousNickname != announcement.nickname {
|
||||||
|
SecureLogger.debug("🔄 Peer \(peerID.id.prefix(8))… changed nickname: \(previousNickname) -> \(announcement.nickname)", category: .session)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// Update topology with verified neighbor claims (only for authenticated announces)
|
||||||
|
if verifiedAnnounce, let neighbors = announcement.directNeighbors {
|
||||||
|
env.updateTopology(peerID, neighbors)
|
||||||
|
}
|
||||||
|
|
||||||
|
// Persist cryptographic identity and signing key for robust offline
|
||||||
|
// verification — only for verified announces. Persisting unverified
|
||||||
|
// announces would let an attacker who replays a victim's noisePublicKey
|
||||||
|
// overwrite the victim's stored signing key/nickname (identity poisoning).
|
||||||
|
if verifiedAnnounce {
|
||||||
|
env.persistIdentity(announcement)
|
||||||
|
}
|
||||||
|
|
||||||
|
let announceBackID = "announce-back-\(peerID)"
|
||||||
|
let shouldSendBack = !env.dedupContains(announceBackID)
|
||||||
|
if shouldSendBack {
|
||||||
|
env.dedupMarkProcessed(announceBackID)
|
||||||
|
}
|
||||||
|
let responsePlan = BLEAnnounceResponsePolicy.plan(
|
||||||
|
isDirectAnnounce: isDirectAnnounce,
|
||||||
|
isNewPeer: isNewPeer,
|
||||||
|
isReconnectedPeer: isReconnectedPeer,
|
||||||
|
shouldSendAnnounceBack: shouldSendBack
|
||||||
|
)
|
||||||
|
|
||||||
|
// Only notify of connection for new or reconnected peers when it is a
|
||||||
|
// direct announce; the list update always follows in the same hop.
|
||||||
|
env.deliverAnnounceUIEvents(
|
||||||
|
peerID,
|
||||||
|
responsePlan.shouldNotifyPeerConnected,
|
||||||
|
responsePlan.shouldNotifyPeerConnected && responsePlan.shouldScheduleInitialSync
|
||||||
|
)
|
||||||
|
|
||||||
|
// Track for sync (include our own and others' announces)
|
||||||
|
env.trackPacketSeen(packet)
|
||||||
|
|
||||||
|
if responsePlan.shouldSendAnnounceBack {
|
||||||
|
// Reciprocate announce for bidirectional discovery
|
||||||
|
// Force send to ensure the peer receives our announce
|
||||||
|
env.sendAnnounceBack()
|
||||||
|
}
|
||||||
|
|
||||||
|
// Afterglow: on first-seen peers, schedule a short re-announce to push presence one more hop
|
||||||
|
if responsePlan.shouldScheduleAfterglow {
|
||||||
|
let delay = Double.random(in: 0.3...0.6)
|
||||||
|
env.scheduleAfterglow(delay)
|
||||||
|
}
|
||||||
|
|
||||||
|
return BLEAnnounceHandlingResult(
|
||||||
|
peerID: peerID,
|
||||||
|
announcement: announcement,
|
||||||
|
isDirectAnnounce: isDirectAnnounce,
|
||||||
|
isVerified: verifiedAnnounce
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,116 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEAnnouncePreflightAcceptance {
|
||||||
|
let announcement: AnnouncementPacket
|
||||||
|
let derivedPeerID: PeerID
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEAnnouncePreflightRejection: Equatable {
|
||||||
|
case malformed
|
||||||
|
case senderMismatch(derivedPeerID: PeerID)
|
||||||
|
case selfAnnounce
|
||||||
|
case stale(ageSeconds: Double)
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEAnnouncePreflightDecision {
|
||||||
|
case accept(BLEAnnouncePreflightAcceptance)
|
||||||
|
case reject(BLEAnnouncePreflightRejection)
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEAnnouncePreflightPolicy {
|
||||||
|
static func evaluate(
|
||||||
|
packet: BitchatPacket,
|
||||||
|
from peerID: PeerID,
|
||||||
|
localPeerID: PeerID,
|
||||||
|
now: Date
|
||||||
|
) -> BLEAnnouncePreflightDecision {
|
||||||
|
guard let announcement = AnnouncementPacket.decode(from: packet.payload) else {
|
||||||
|
return .reject(.malformed)
|
||||||
|
}
|
||||||
|
|
||||||
|
let derivedPeerID = PeerID(publicKey: announcement.noisePublicKey)
|
||||||
|
guard derivedPeerID == peerID else {
|
||||||
|
return .reject(.senderMismatch(derivedPeerID: derivedPeerID))
|
||||||
|
}
|
||||||
|
|
||||||
|
guard peerID != localPeerID else {
|
||||||
|
return .reject(.selfAnnounce)
|
||||||
|
}
|
||||||
|
|
||||||
|
guard !BLEPacketFreshnessPolicy.isStale(timestampMilliseconds: packet.timestamp, now: now) else {
|
||||||
|
return .reject(.stale(ageSeconds: BLEPacketFreshnessPolicy.ageSeconds(
|
||||||
|
timestampMilliseconds: packet.timestamp,
|
||||||
|
now: now
|
||||||
|
)))
|
||||||
|
}
|
||||||
|
|
||||||
|
return .accept(BLEAnnouncePreflightAcceptance(
|
||||||
|
announcement: announcement,
|
||||||
|
derivedPeerID: derivedPeerID
|
||||||
|
))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEAnnounceTrustRejection: Equatable {
|
||||||
|
case missingSignature
|
||||||
|
case invalidSignature
|
||||||
|
case keyMismatch
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEAnnounceTrustDecision: Equatable {
|
||||||
|
case verified
|
||||||
|
case reject(BLEAnnounceTrustRejection)
|
||||||
|
|
||||||
|
var isVerified: Bool {
|
||||||
|
self == .verified
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEAnnounceTrustPolicy {
|
||||||
|
static func evaluate(
|
||||||
|
hasSignature: Bool,
|
||||||
|
signatureValid: Bool,
|
||||||
|
existingNoisePublicKey: Data?,
|
||||||
|
announcedNoisePublicKey: Data
|
||||||
|
) -> BLEAnnounceTrustDecision {
|
||||||
|
if let existingNoisePublicKey, existingNoisePublicKey != announcedNoisePublicKey {
|
||||||
|
return .reject(.keyMismatch)
|
||||||
|
}
|
||||||
|
|
||||||
|
guard hasSignature else {
|
||||||
|
return .reject(.missingSignature)
|
||||||
|
}
|
||||||
|
|
||||||
|
guard signatureValid else {
|
||||||
|
return .reject(.invalidSignature)
|
||||||
|
}
|
||||||
|
|
||||||
|
return .verified
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEAnnounceResponsePlan: Equatable {
|
||||||
|
let shouldNotifyPeerConnected: Bool
|
||||||
|
let shouldScheduleInitialSync: Bool
|
||||||
|
let shouldSendAnnounceBack: Bool
|
||||||
|
let shouldScheduleAfterglow: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEAnnounceResponsePolicy {
|
||||||
|
static func plan(
|
||||||
|
isDirectAnnounce: Bool,
|
||||||
|
isNewPeer: Bool,
|
||||||
|
isReconnectedPeer: Bool,
|
||||||
|
shouldSendAnnounceBack: Bool
|
||||||
|
) -> BLEAnnounceResponsePlan {
|
||||||
|
let shouldNotifyPeerConnected = isDirectAnnounce && (isNewPeer || isReconnectedPeer)
|
||||||
|
|
||||||
|
return BLEAnnounceResponsePlan(
|
||||||
|
shouldNotifyPeerConnected: shouldNotifyPeerConnected,
|
||||||
|
shouldScheduleInitialSync: shouldNotifyPeerConnected,
|
||||||
|
shouldSendAnnounceBack: shouldSendAnnounceBack,
|
||||||
|
shouldScheduleAfterglow: isNewPeer
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,31 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEAnnounceThrottle {
|
||||||
|
private var lastSent: Date
|
||||||
|
private let normalMinimumInterval: TimeInterval
|
||||||
|
private let forcedMinimumInterval: TimeInterval
|
||||||
|
|
||||||
|
init(
|
||||||
|
lastSent: Date = .distantPast,
|
||||||
|
normalMinimumInterval: TimeInterval = TransportConfig.bleAnnounceMinInterval,
|
||||||
|
forcedMinimumInterval: TimeInterval = TransportConfig.bleForceAnnounceMinIntervalSeconds
|
||||||
|
) {
|
||||||
|
self.lastSent = lastSent
|
||||||
|
self.normalMinimumInterval = normalMinimumInterval
|
||||||
|
self.forcedMinimumInterval = forcedMinimumInterval
|
||||||
|
}
|
||||||
|
|
||||||
|
func elapsed(since now: Date) -> TimeInterval {
|
||||||
|
now.timeIntervalSince(lastSent)
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func shouldSend(force: Bool, now: Date) -> Bool {
|
||||||
|
let minimumInterval = force ? forcedMinimumInterval : normalMinimumInterval
|
||||||
|
guard elapsed(since: now) >= minimumInterval else {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
|
||||||
|
lastSent = now
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,293 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEConnectionCandidate<Peripheral> {
|
||||||
|
let peripheral: Peripheral
|
||||||
|
let peripheralID: String
|
||||||
|
let rssi: Int
|
||||||
|
let name: String
|
||||||
|
let isConnectable: Bool
|
||||||
|
let discoveredAt: Date
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEExistingConnectionState {
|
||||||
|
let isConnecting: Bool
|
||||||
|
let isConnected: Bool
|
||||||
|
let lastConnectionAttempt: Date?
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEPeripheralConnectionState {
|
||||||
|
case disconnected
|
||||||
|
case connecting
|
||||||
|
case connected
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEDiscoveryDecision: Equatable {
|
||||||
|
case ignore
|
||||||
|
case queued
|
||||||
|
case scheduleRetry(after: TimeInterval)
|
||||||
|
case cancelStaleConnection
|
||||||
|
case connectNow
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEConnectionQueueDecision<Peripheral> {
|
||||||
|
case none
|
||||||
|
case retryAfter(TimeInterval)
|
||||||
|
case connect(BLEConnectionCandidate<Peripheral>)
|
||||||
|
}
|
||||||
|
|
||||||
|
final class BLEConnectionScheduler<Peripheral> {
|
||||||
|
private let maxCentralLinks: Int
|
||||||
|
private let connectRateLimitInterval: TimeInterval
|
||||||
|
private let candidateCap: Int
|
||||||
|
private let weakLinkCooldownSeconds: TimeInterval
|
||||||
|
private let weakLinkRSSICutoff: Int
|
||||||
|
|
||||||
|
private var lastGlobalConnectAttempt: Date = .distantPast
|
||||||
|
private var candidates: [BLEConnectionCandidate<Peripheral>] = []
|
||||||
|
private var failureCounts: [String: Int] = [:]
|
||||||
|
private var recentConnectTimeouts: [String: Date] = [:]
|
||||||
|
// Tracked separately from connect timeouts: a peer we held a connection
|
||||||
|
// with and lost (walked out of range) usually comes back, so it only gets
|
||||||
|
// a brief rediscovery ignore — not the timeout backoff/cooldown treatment
|
||||||
|
// reserved for peers that never answered a connect attempt.
|
||||||
|
private var recentDisconnects: [String: Date] = [:]
|
||||||
|
private var lastIsolatedAt: Date?
|
||||||
|
|
||||||
|
private let initialDynamicRSSIThreshold: Int
|
||||||
|
private(set) var dynamicRSSIThreshold: Int
|
||||||
|
|
||||||
|
var candidateCount: Int {
|
||||||
|
candidates.count
|
||||||
|
}
|
||||||
|
|
||||||
|
init(
|
||||||
|
maxCentralLinks: Int = TransportConfig.bleMaxCentralLinks,
|
||||||
|
connectRateLimitInterval: TimeInterval = TransportConfig.bleConnectRateLimitInterval,
|
||||||
|
candidateCap: Int = TransportConfig.bleConnectionCandidatesMax,
|
||||||
|
weakLinkCooldownSeconds: TimeInterval = TransportConfig.bleWeakLinkCooldownSeconds,
|
||||||
|
weakLinkRSSICutoff: Int = TransportConfig.bleWeakLinkRSSICutoff,
|
||||||
|
dynamicRSSIThreshold: Int = TransportConfig.bleDynamicRSSIThresholdDefault
|
||||||
|
) {
|
||||||
|
self.maxCentralLinks = maxCentralLinks
|
||||||
|
self.connectRateLimitInterval = connectRateLimitInterval
|
||||||
|
self.candidateCap = candidateCap
|
||||||
|
self.weakLinkCooldownSeconds = weakLinkCooldownSeconds
|
||||||
|
self.weakLinkRSSICutoff = weakLinkRSSICutoff
|
||||||
|
self.initialDynamicRSSIThreshold = dynamicRSSIThreshold
|
||||||
|
self.dynamicRSSIThreshold = dynamicRSSIThreshold
|
||||||
|
}
|
||||||
|
|
||||||
|
func handleDiscovery(
|
||||||
|
_ candidate: BLEConnectionCandidate<Peripheral>,
|
||||||
|
connectedOrConnectingCount: Int,
|
||||||
|
existingState: BLEExistingConnectionState?,
|
||||||
|
peripheralState: BLEPeripheralConnectionState,
|
||||||
|
now: Date
|
||||||
|
) -> BLEDiscoveryDecision {
|
||||||
|
guard candidate.isConnectable else { return .ignore }
|
||||||
|
|
||||||
|
if candidate.rssi <= dynamicRSSIThreshold {
|
||||||
|
enqueue(candidate)
|
||||||
|
return .queued
|
||||||
|
}
|
||||||
|
|
||||||
|
if connectedOrConnectingCount >= maxCentralLinks {
|
||||||
|
enqueue(candidate)
|
||||||
|
return .queued
|
||||||
|
}
|
||||||
|
|
||||||
|
if let retryDelay = rateLimitRetryDelay(now: now) {
|
||||||
|
enqueue(candidate)
|
||||||
|
return .scheduleRetry(after: retryDelay)
|
||||||
|
}
|
||||||
|
|
||||||
|
if let existingState {
|
||||||
|
if existingState.isConnected || existingState.isConnecting {
|
||||||
|
return .ignore
|
||||||
|
}
|
||||||
|
|
||||||
|
if let lastAttempt = existingState.lastConnectionAttempt,
|
||||||
|
now.timeIntervalSince(lastAttempt) < 2.0 {
|
||||||
|
return .ignore
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
if let lastTimeout = recentConnectTimeouts[candidate.peripheralID],
|
||||||
|
now.timeIntervalSince(lastTimeout) < TransportConfig.bleTimeoutDiscoveryIgnoreSeconds {
|
||||||
|
return .ignore
|
||||||
|
}
|
||||||
|
|
||||||
|
if let lastDisconnect = recentDisconnects[candidate.peripheralID],
|
||||||
|
now.timeIntervalSince(lastDisconnect) < TransportConfig.bleDisconnectDiscoveryIgnoreSeconds {
|
||||||
|
return .ignore
|
||||||
|
}
|
||||||
|
|
||||||
|
switch peripheralState {
|
||||||
|
case .disconnected:
|
||||||
|
return .connectNow
|
||||||
|
case .connecting, .connected:
|
||||||
|
return .cancelStaleConnection
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func enqueue(_ candidate: BLEConnectionCandidate<Peripheral>) {
|
||||||
|
if let existingIndex = candidates.firstIndex(where: { $0.peripheralID == candidate.peripheralID }) {
|
||||||
|
candidates[existingIndex] = candidate
|
||||||
|
} else {
|
||||||
|
candidates.append(candidate)
|
||||||
|
}
|
||||||
|
|
||||||
|
candidates.sort {
|
||||||
|
if $0.rssi != $1.rssi { return $0.rssi > $1.rssi }
|
||||||
|
return $0.discoveredAt < $1.discoveredAt
|
||||||
|
}
|
||||||
|
if candidates.count > candidateCap {
|
||||||
|
candidates.removeLast(candidates.count - candidateCap)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func nextCandidate(
|
||||||
|
connectedOrConnectingCount: Int,
|
||||||
|
isAlreadyConnectingOrConnected: (String) -> Bool,
|
||||||
|
now: Date
|
||||||
|
) -> BLEConnectionQueueDecision<Peripheral> {
|
||||||
|
guard connectedOrConnectingCount < maxCentralLinks else { return .none }
|
||||||
|
|
||||||
|
if let retryDelay = rateLimitRetryDelay(now: now) {
|
||||||
|
return .retryAfter(retryDelay)
|
||||||
|
}
|
||||||
|
|
||||||
|
while !candidates.isEmpty {
|
||||||
|
candidates.sort { score($0, now: now) > score($1, now: now) }
|
||||||
|
let candidate = candidates.removeFirst()
|
||||||
|
guard candidate.isConnectable else { continue }
|
||||||
|
|
||||||
|
if let delay = weakLinkRetryDelay(for: candidate, now: now) {
|
||||||
|
enqueue(candidate)
|
||||||
|
return .retryAfter(delay)
|
||||||
|
}
|
||||||
|
|
||||||
|
if let delay = disconnectSettleDelay(for: candidate, now: now) {
|
||||||
|
enqueue(candidate)
|
||||||
|
return .retryAfter(delay)
|
||||||
|
}
|
||||||
|
|
||||||
|
if isAlreadyConnectingOrConnected(candidate.peripheralID) {
|
||||||
|
continue
|
||||||
|
}
|
||||||
|
|
||||||
|
return .connect(candidate)
|
||||||
|
}
|
||||||
|
|
||||||
|
return .none
|
||||||
|
}
|
||||||
|
|
||||||
|
func recordConnectionAttempt(at now: Date) {
|
||||||
|
lastGlobalConnectAttempt = now
|
||||||
|
}
|
||||||
|
|
||||||
|
func recordConnectionSuccess(peripheralID: String) {
|
||||||
|
failureCounts[peripheralID] = 0
|
||||||
|
recentConnectTimeouts.removeValue(forKey: peripheralID)
|
||||||
|
recentDisconnects.removeValue(forKey: peripheralID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func recordConnectionFailure(peripheralID: String) {
|
||||||
|
failureCounts[peripheralID, default: 0] += 1
|
||||||
|
}
|
||||||
|
|
||||||
|
func recordDisconnectError(peripheralID: String, at now: Date) {
|
||||||
|
recentDisconnects[peripheralID] = now
|
||||||
|
}
|
||||||
|
|
||||||
|
func recordConnectionTimeout(peripheralID: String, at now: Date) {
|
||||||
|
recentConnectTimeouts[peripheralID] = now
|
||||||
|
recordConnectionFailure(peripheralID: peripheralID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func pruneConnectionTimeouts(before cutoff: Date) {
|
||||||
|
recentConnectTimeouts = recentConnectTimeouts.filter { $0.value >= cutoff }
|
||||||
|
recentDisconnects = recentDisconnects.filter { $0.value >= cutoff }
|
||||||
|
}
|
||||||
|
|
||||||
|
func reset() {
|
||||||
|
lastGlobalConnectAttempt = .distantPast
|
||||||
|
candidates.removeAll()
|
||||||
|
failureCounts.removeAll()
|
||||||
|
recentConnectTimeouts.removeAll()
|
||||||
|
recentDisconnects.removeAll()
|
||||||
|
lastIsolatedAt = nil
|
||||||
|
dynamicRSSIThreshold = initialDynamicRSSIThreshold
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
func updateRSSIThreshold(
|
||||||
|
connectedCount: Int,
|
||||||
|
connectedOrConnectingLinkCount: Int,
|
||||||
|
now: Date
|
||||||
|
) -> Int {
|
||||||
|
if connectedCount == 0 {
|
||||||
|
if lastIsolatedAt == nil { lastIsolatedAt = now }
|
||||||
|
let isolatedAt = lastIsolatedAt ?? now
|
||||||
|
let elapsed = now.timeIntervalSince(isolatedAt)
|
||||||
|
dynamicRSSIThreshold = elapsed > TransportConfig.bleIsolationRelaxThresholdSeconds
|
||||||
|
? TransportConfig.bleRSSIIsolatedRelaxed
|
||||||
|
: TransportConfig.bleRSSIIsolatedBase
|
||||||
|
return dynamicRSSIThreshold
|
||||||
|
}
|
||||||
|
|
||||||
|
lastIsolatedAt = nil
|
||||||
|
// Flaky links are handled per-peripheral (weak-link cooldown, discovery
|
||||||
|
// ignore window, score bias) — never globally, so one flaky distant peer
|
||||||
|
// can't blind us to every other edge-of-range peer.
|
||||||
|
var threshold = TransportConfig.bleDynamicRSSIThresholdDefault
|
||||||
|
if connectedOrConnectingLinkCount >= maxCentralLinks || candidates.count >= candidateCap {
|
||||||
|
threshold = TransportConfig.bleRSSIConnectedThreshold
|
||||||
|
}
|
||||||
|
|
||||||
|
dynamicRSSIThreshold = threshold
|
||||||
|
return threshold
|
||||||
|
}
|
||||||
|
|
||||||
|
private func rateLimitRetryDelay(now: Date) -> TimeInterval? {
|
||||||
|
let elapsed = now.timeIntervalSince(lastGlobalConnectAttempt)
|
||||||
|
guard elapsed < connectRateLimitInterval else { return nil }
|
||||||
|
return connectRateLimitInterval - elapsed + 0.05
|
||||||
|
}
|
||||||
|
|
||||||
|
private func weakLinkRetryDelay(
|
||||||
|
for candidate: BLEConnectionCandidate<Peripheral>,
|
||||||
|
now: Date
|
||||||
|
) -> TimeInterval? {
|
||||||
|
guard let lastTimeout = recentConnectTimeouts[candidate.peripheralID] else { return nil }
|
||||||
|
let elapsed = now.timeIntervalSince(lastTimeout)
|
||||||
|
guard elapsed < weakLinkCooldownSeconds && candidate.rssi <= weakLinkRSSICutoff else { return nil }
|
||||||
|
let remaining = weakLinkCooldownSeconds - elapsed
|
||||||
|
return min(max(2.0, remaining), 15.0)
|
||||||
|
}
|
||||||
|
|
||||||
|
// The disconnect settle window must hold on the queue path too: a stale
|
||||||
|
// candidate enqueued while the peripheral was still connected would
|
||||||
|
// otherwise reconnect immediately via the post-disconnect queue drain,
|
||||||
|
// bypassing the window and recreating reconnect/cancel thrash.
|
||||||
|
private func disconnectSettleDelay(
|
||||||
|
for candidate: BLEConnectionCandidate<Peripheral>,
|
||||||
|
now: Date
|
||||||
|
) -> TimeInterval? {
|
||||||
|
guard let lastDisconnect = recentDisconnects[candidate.peripheralID] else { return nil }
|
||||||
|
let remaining = TransportConfig.bleDisconnectDiscoveryIgnoreSeconds - now.timeIntervalSince(lastDisconnect)
|
||||||
|
guard remaining > 0 else { return nil }
|
||||||
|
return remaining + 0.05
|
||||||
|
}
|
||||||
|
|
||||||
|
private func score(_ candidate: BLEConnectionCandidate<Peripheral>, now: Date) -> Int {
|
||||||
|
let failures = failureCounts[candidate.peripheralID] ?? 0
|
||||||
|
let penalty = min(20, 1 << min(4, failures))
|
||||||
|
let timeoutBias = recentConnectTimeouts[candidate.peripheralID].map {
|
||||||
|
now.timeIntervalSince($0) < 60 ? 10 : 0
|
||||||
|
} ?? 0
|
||||||
|
let base = (candidate.isConnectable ? 1000 : 0) + (candidate.rssi + 100) * 2
|
||||||
|
let recency = -Int(now.timeIntervalSince(candidate.discoveredAt) * 10)
|
||||||
|
return base + recency - penalty - timeoutBias
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,71 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEDirectedRelaySpoolEntry {
|
||||||
|
let recipient: PeerID
|
||||||
|
let packet: BitchatPacket
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEDirectedRelaySpool {
|
||||||
|
private struct StoredPacket {
|
||||||
|
let packet: BitchatPacket
|
||||||
|
let enqueuedAt: Date
|
||||||
|
}
|
||||||
|
|
||||||
|
private var packetsByRecipient: [PeerID: [String: StoredPacket]] = [:]
|
||||||
|
|
||||||
|
var isEmpty: Bool {
|
||||||
|
packetsByRecipient.isEmpty
|
||||||
|
}
|
||||||
|
|
||||||
|
var count: Int {
|
||||||
|
packetsByRecipient.values.reduce(0) { $0 + $1.count }
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
mutating func enqueue(
|
||||||
|
packet: BitchatPacket,
|
||||||
|
recipient: PeerID,
|
||||||
|
messageID: String,
|
||||||
|
enqueuedAt: Date
|
||||||
|
) -> Bool {
|
||||||
|
var packets = packetsByRecipient[recipient] ?? [:]
|
||||||
|
guard packets[messageID] == nil else {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
|
||||||
|
packets[messageID] = StoredPacket(packet: packet, enqueuedAt: enqueuedAt)
|
||||||
|
packetsByRecipient[recipient] = packets
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func drainUnexpired(now: Date, window: TimeInterval) -> [BLEDirectedRelaySpoolEntry] {
|
||||||
|
var entries: [BLEDirectedRelaySpoolEntry] = []
|
||||||
|
|
||||||
|
for (recipient, packets) in packetsByRecipient {
|
||||||
|
for stored in packets.values where now.timeIntervalSince(stored.enqueuedAt) <= window {
|
||||||
|
entries.append(BLEDirectedRelaySpoolEntry(recipient: recipient, packet: stored.packet))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
packetsByRecipient.removeAll()
|
||||||
|
return entries
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func pruneExpired(now: Date, window: TimeInterval) {
|
||||||
|
guard !packetsByRecipient.isEmpty else { return }
|
||||||
|
|
||||||
|
var pruned: [PeerID: [String: StoredPacket]] = [:]
|
||||||
|
for (recipient, packets) in packetsByRecipient {
|
||||||
|
let freshPackets = packets.filter { now.timeIntervalSince($0.value.enqueuedAt) <= window }
|
||||||
|
if !freshPackets.isEmpty {
|
||||||
|
pruned[recipient] = freshPackets
|
||||||
|
}
|
||||||
|
}
|
||||||
|
packetsByRecipient = pruned
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
packetsByRecipient.removeAll()
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,210 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import CryptoKit
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEFanoutSelection: Equatable {
|
||||||
|
let peripheralIDs: Set<String>
|
||||||
|
let centralIDs: Set<String>
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEFanoutSelector {
|
||||||
|
static func selectLinks(
|
||||||
|
peripheralIDs: [String],
|
||||||
|
centralIDs: [String],
|
||||||
|
ingressLink: BLEIngressLinkID?,
|
||||||
|
excludedLinks: Set<BLEIngressLinkID> = [],
|
||||||
|
peripheralPeerBindings: [String: PeerID] = [:],
|
||||||
|
centralPeerBindings: [String: PeerID] = [:],
|
||||||
|
directedPeerHint: PeerID?,
|
||||||
|
packetType: UInt8,
|
||||||
|
messageID: String
|
||||||
|
) -> BLEFanoutSelection {
|
||||||
|
let rawAllowed = allowedLinks(
|
||||||
|
peripheralIDs: peripheralIDs,
|
||||||
|
centralIDs: centralIDs,
|
||||||
|
ingressLink: ingressLink,
|
||||||
|
excludedLinks: excludedLinks
|
||||||
|
)
|
||||||
|
|
||||||
|
if let directedPeerHint,
|
||||||
|
let directedSelection = directLinks(
|
||||||
|
to: directedPeerHint,
|
||||||
|
links: rawAllowed,
|
||||||
|
peripheralPeerBindings: peripheralPeerBindings,
|
||||||
|
centralPeerBindings: centralPeerBindings
|
||||||
|
) {
|
||||||
|
return directedSelection
|
||||||
|
}
|
||||||
|
if let directedPeerHint,
|
||||||
|
hasBoundLink(
|
||||||
|
to: directedPeerHint,
|
||||||
|
peripheralIDs: peripheralIDs,
|
||||||
|
centralIDs: centralIDs,
|
||||||
|
peripheralPeerBindings: peripheralPeerBindings,
|
||||||
|
centralPeerBindings: centralPeerBindings
|
||||||
|
) {
|
||||||
|
return BLEFanoutSelection(peripheralIDs: [], centralIDs: [])
|
||||||
|
}
|
||||||
|
|
||||||
|
let allowed = collapseDuplicateLinksPerPeer(
|
||||||
|
rawAllowed,
|
||||||
|
peripheralPeerBindings: peripheralPeerBindings,
|
||||||
|
centralPeerBindings: centralPeerBindings
|
||||||
|
)
|
||||||
|
|
||||||
|
guard shouldSubset(packetType: packetType, directedPeerHint: directedPeerHint) else {
|
||||||
|
return BLEFanoutSelection(
|
||||||
|
peripheralIDs: Set(allowed.peripheralIDs),
|
||||||
|
centralIDs: Set(allowed.centralIDs)
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
return BLEFanoutSelection(
|
||||||
|
peripheralIDs: deterministicSubset(
|
||||||
|
ids: allowed.peripheralIDs,
|
||||||
|
k: subsetSize(for: allowed.peripheralIDs.count),
|
||||||
|
seed: messageID
|
||||||
|
),
|
||||||
|
centralIDs: deterministicSubset(
|
||||||
|
ids: allowed.centralIDs,
|
||||||
|
k: subsetSize(for: allowed.centralIDs.count),
|
||||||
|
seed: messageID
|
||||||
|
)
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func allowedLinks(
|
||||||
|
peripheralIDs: [String],
|
||||||
|
centralIDs: [String],
|
||||||
|
ingressLink: BLEIngressLinkID?,
|
||||||
|
excludedLinks: Set<BLEIngressLinkID>
|
||||||
|
) -> (peripheralIDs: [String], centralIDs: [String]) {
|
||||||
|
var allowedPeripheralIDs = peripheralIDs
|
||||||
|
var allowedCentralIDs = centralIDs
|
||||||
|
var blockedLinks = excludedLinks
|
||||||
|
|
||||||
|
if let ingressLink {
|
||||||
|
blockedLinks.insert(ingressLink)
|
||||||
|
}
|
||||||
|
|
||||||
|
allowedPeripheralIDs.removeAll { blockedLinks.contains(.peripheral($0)) }
|
||||||
|
allowedCentralIDs.removeAll { blockedLinks.contains(.central($0)) }
|
||||||
|
|
||||||
|
return (allowedPeripheralIDs, allowedCentralIDs)
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func directLinks(
|
||||||
|
to peerID: PeerID,
|
||||||
|
links: (peripheralIDs: [String], centralIDs: [String]),
|
||||||
|
peripheralPeerBindings: [String: PeerID],
|
||||||
|
centralPeerBindings: [String: PeerID]
|
||||||
|
) -> BLEFanoutSelection? {
|
||||||
|
let directLinks = collapseDuplicateLinksPerPeer(
|
||||||
|
(
|
||||||
|
peripheralIDs: links.peripheralIDs.filter { peripheralPeerBindings[$0] == peerID },
|
||||||
|
centralIDs: links.centralIDs.filter { centralPeerBindings[$0] == peerID }
|
||||||
|
),
|
||||||
|
peripheralPeerBindings: peripheralPeerBindings,
|
||||||
|
centralPeerBindings: centralPeerBindings
|
||||||
|
)
|
||||||
|
|
||||||
|
guard !directLinks.peripheralIDs.isEmpty || !directLinks.centralIDs.isEmpty else {
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
return BLEFanoutSelection(
|
||||||
|
peripheralIDs: Set(directLinks.peripheralIDs),
|
||||||
|
centralIDs: Set(directLinks.centralIDs)
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func hasBoundLink(
|
||||||
|
to peerID: PeerID,
|
||||||
|
peripheralIDs: [String],
|
||||||
|
centralIDs: [String],
|
||||||
|
peripheralPeerBindings: [String: PeerID],
|
||||||
|
centralPeerBindings: [String: PeerID]
|
||||||
|
) -> Bool {
|
||||||
|
peripheralIDs.contains { peripheralPeerBindings[$0] == peerID }
|
||||||
|
|| centralIDs.contains { centralPeerBindings[$0] == peerID }
|
||||||
|
}
|
||||||
|
|
||||||
|
// Dual-role pairs hold two live links (we-as-central writing to their
|
||||||
|
// peripheral, and they-as-central subscribed to ours). Sending the same
|
||||||
|
// packet down both doubles airtime for nothing — the receiver's assembler
|
||||||
|
// and deduplicator just discard the copy. Keep one link per bound peer,
|
||||||
|
// preferring the peripheral (write) side: it has per-link flow control
|
||||||
|
// via canSendWriteWithoutResponse, while notifications share the
|
||||||
|
// peripheral manager's update queue across all centrals. Links with no
|
||||||
|
// bound peer yet (pre-announce) pass through untouched.
|
||||||
|
private static func collapseDuplicateLinksPerPeer(
|
||||||
|
_ links: (peripheralIDs: [String], centralIDs: [String]),
|
||||||
|
peripheralPeerBindings: [String: PeerID],
|
||||||
|
centralPeerBindings: [String: PeerID]
|
||||||
|
) -> (peripheralIDs: [String], centralIDs: [String]) {
|
||||||
|
guard !peripheralPeerBindings.isEmpty || !centralPeerBindings.isEmpty else {
|
||||||
|
return links
|
||||||
|
}
|
||||||
|
|
||||||
|
var seenPeers = Set<PeerID>()
|
||||||
|
var keptPeripheralIDs: [String] = []
|
||||||
|
for id in links.peripheralIDs {
|
||||||
|
if let peer = peripheralPeerBindings[id], !seenPeers.insert(peer).inserted {
|
||||||
|
continue
|
||||||
|
}
|
||||||
|
keptPeripheralIDs.append(id)
|
||||||
|
}
|
||||||
|
|
||||||
|
var keptCentralIDs: [String] = []
|
||||||
|
for id in links.centralIDs {
|
||||||
|
if let peer = centralPeerBindings[id], !seenPeers.insert(peer).inserted {
|
||||||
|
continue
|
||||||
|
}
|
||||||
|
keptCentralIDs.append(id)
|
||||||
|
}
|
||||||
|
|
||||||
|
return (keptPeripheralIDs, keptCentralIDs)
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func shouldSubset(packetType: UInt8, directedPeerHint: PeerID?) -> Bool {
|
||||||
|
directedPeerHint == nil
|
||||||
|
&& packetType != MessageType.fragment.rawValue
|
||||||
|
&& packetType != MessageType.announce.rawValue
|
||||||
|
&& packetType != MessageType.requestSync.rawValue
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func subsetSize(for count: Int) -> Int {
|
||||||
|
guard count > 0 else { return 0 }
|
||||||
|
if count <= 2 { return count }
|
||||||
|
|
||||||
|
var value = count - 1
|
||||||
|
var bits = 0
|
||||||
|
while value > 0 {
|
||||||
|
value >>= 1
|
||||||
|
bits += 1
|
||||||
|
}
|
||||||
|
return min(count, max(1, bits + 1))
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func deterministicSubset(ids: [String], k: Int, seed: String) -> Set<String> {
|
||||||
|
guard k > 0 && ids.count > k else { return Set(ids) }
|
||||||
|
|
||||||
|
var scored: [(score: [UInt8], id: String)] = []
|
||||||
|
for id in ids {
|
||||||
|
let data = (seed + "::" + id).data(using: .utf8) ?? Data()
|
||||||
|
let digest = Array(SHA256.hash(data: data))
|
||||||
|
scored.append((digest, id))
|
||||||
|
}
|
||||||
|
|
||||||
|
scored.sort { lhs, rhs in
|
||||||
|
for index in 0..<min(lhs.score.count, rhs.score.count) {
|
||||||
|
if lhs.score[index] != rhs.score[index] {
|
||||||
|
return lhs.score[index] < rhs.score[index]
|
||||||
|
}
|
||||||
|
}
|
||||||
|
return lhs.id < rhs.id
|
||||||
|
}
|
||||||
|
|
||||||
|
return Set(scored.prefix(k).map(\.id))
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,123 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import BitLogger
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
/// Narrow environment for `BLEFileTransferHandler`.
|
||||||
|
///
|
||||||
|
/// All queue hops (collections registry reads/writes, main-actor UI
|
||||||
|
/// notification) live inside the closures supplied by `BLEService`, keeping
|
||||||
|
/// the handler queue-agnostic and synchronously testable.
|
||||||
|
struct BLEFileTransferHandlerEnvironment {
|
||||||
|
/// Local peer identity at the time the transfer is handled.
|
||||||
|
let localPeerID: () -> PeerID
|
||||||
|
/// Local nickname used for sender resolution and collision checks.
|
||||||
|
let localNickname: () -> String
|
||||||
|
/// Snapshot of known peers keyed by ID (registry read).
|
||||||
|
let peersSnapshot: () -> [PeerID: BLEPeerInfo]
|
||||||
|
/// Resolves a display name from a verified packet signature for peers missing from the registry.
|
||||||
|
let signedSenderDisplayName: (_ packet: BitchatPacket, _ peerID: PeerID) -> String?
|
||||||
|
/// Tracks the broadcast file packet for gossip sync.
|
||||||
|
let trackPacketSeen: (BitchatPacket) -> Void
|
||||||
|
/// Enforces the incoming-media storage quota before saving (BCH-01-002).
|
||||||
|
let enforceStorageQuota: (_ reservingBytes: Int) -> Void
|
||||||
|
/// Persists the validated file to the incoming-media store; returns the destination URL.
|
||||||
|
let saveIncomingFile: (
|
||||||
|
_ data: Data,
|
||||||
|
_ preferredName: String?,
|
||||||
|
_ subdirectory: String,
|
||||||
|
_ fallbackExtension: String?,
|
||||||
|
_ defaultPrefix: String
|
||||||
|
) -> URL?
|
||||||
|
/// Updates the registry last-seen timestamp for the peer (async barrier write).
|
||||||
|
let updatePeerLastSeen: (PeerID) -> Void
|
||||||
|
/// Delivers `.messageReceived` to the UI as one main-actor hop.
|
||||||
|
let deliverMessage: (BitchatMessage) -> Void
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Orchestrates inbound file transfers: self-echo policy, sender display-name
|
||||||
|
/// resolution, delivery planning, payload validation, quota-checked storage,
|
||||||
|
/// and UI delivery.
|
||||||
|
final class BLEFileTransferHandler {
|
||||||
|
private let environment: BLEFileTransferHandlerEnvironment
|
||||||
|
|
||||||
|
init(environment: BLEFileTransferHandlerEnvironment) {
|
||||||
|
self.environment = environment
|
||||||
|
}
|
||||||
|
|
||||||
|
func handle(_ packet: BitchatPacket, from peerID: PeerID) {
|
||||||
|
let env = environment
|
||||||
|
if BLEFileTransferPolicy.isSelfEcho(packet: packet, from: peerID, localPeerID: env.localPeerID()) { return }
|
||||||
|
|
||||||
|
let peersSnapshot = env.peersSnapshot()
|
||||||
|
guard let senderNickname = BLEPeerSenderDisplayName.resolveKnownPeer(
|
||||||
|
peerID: peerID,
|
||||||
|
localPeerID: env.localPeerID(),
|
||||||
|
localNickname: env.localNickname(),
|
||||||
|
peers: peersSnapshot,
|
||||||
|
allowConnectedUnverified: true
|
||||||
|
) ?? env.signedSenderDisplayName(packet, peerID) else {
|
||||||
|
SecureLogger.warning("🚫 Dropping file transfer from unverified or unknown peer \(peerID.id.prefix(8))…", category: .security)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
guard let deliveryPlan = BLEFileTransferPolicy.deliveryPlan(packet: packet, localPeerID: env.localPeerID()) else {
|
||||||
|
return
|
||||||
|
}
|
||||||
|
if deliveryPlan.shouldTrackForSync {
|
||||||
|
env.trackPacketSeen(packet)
|
||||||
|
}
|
||||||
|
|
||||||
|
let filePacket: BitchatFilePacket
|
||||||
|
let mime: MimeType
|
||||||
|
switch BLEIncomingFileValidator.validate(payload: packet.payload) {
|
||||||
|
case .success(let acceptance):
|
||||||
|
filePacket = acceptance.filePacket
|
||||||
|
mime = acceptance.mime
|
||||||
|
case .failure(.malformedPayload):
|
||||||
|
SecureLogger.error("❌ Failed to decode file transfer payload", category: .session)
|
||||||
|
return
|
||||||
|
case .failure(.payloadTooLarge(let bytes)):
|
||||||
|
SecureLogger.warning("🚫 Dropping file transfer exceeding size cap (\(bytes) bytes)", category: .security)
|
||||||
|
return
|
||||||
|
case .failure(.unsupportedMime(let mimeType, let bytes)):
|
||||||
|
SecureLogger.warning("🚫 MIME REJECT: '\(mimeType ?? "<empty>")' not supported. Size=\(bytes)b from \(peerID.id.prefix(8))...", category: .security)
|
||||||
|
return
|
||||||
|
case .failure(.magicMismatch(let mime, let bytes, let prefixHex)):
|
||||||
|
SecureLogger.warning("🚫 MAGIC REJECT: MIME='\(mime)' size=\(bytes)b prefix=[\(prefixHex)] from \(peerID.id.prefix(8))...", category: .security)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
// BCH-01-002: Enforce storage quota before saving
|
||||||
|
env.enforceStorageQuota(filePacket.content.count)
|
||||||
|
|
||||||
|
guard let destination = env.saveIncomingFile(
|
||||||
|
filePacket.content,
|
||||||
|
filePacket.fileName,
|
||||||
|
"\(mime.category.mediaDir)/incoming",
|
||||||
|
mime.defaultExtension,
|
||||||
|
mime.category.rawValue
|
||||||
|
) else {
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
if deliveryPlan.isPrivateMessage {
|
||||||
|
env.updatePeerLastSeen(peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
let ts = Date(timeIntervalSince1970: Double(packet.timestamp) / 1000)
|
||||||
|
let message = BitchatMessage(
|
||||||
|
sender: senderNickname,
|
||||||
|
content: "\(mime.category.messagePrefix)\(destination.lastPathComponent)",
|
||||||
|
timestamp: ts,
|
||||||
|
isRelay: false,
|
||||||
|
originalSender: nil,
|
||||||
|
isPrivate: deliveryPlan.isPrivateMessage,
|
||||||
|
recipientNickname: nil,
|
||||||
|
senderPeerID: peerID
|
||||||
|
)
|
||||||
|
|
||||||
|
SecureLogger.debug("📁 Stored incoming media from \(peerID.id.prefix(8))… -> \(destination.lastPathComponent)", category: .session)
|
||||||
|
|
||||||
|
env.deliverMessage(message)
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,71 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEFileTransferDeliveryPlan: Equatable {
|
||||||
|
let isPrivateMessage: Bool
|
||||||
|
let shouldTrackForSync: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEFileTransferPolicy {
|
||||||
|
static func isSelfEcho(packet: BitchatPacket, from peerID: PeerID, localPeerID: PeerID) -> Bool {
|
||||||
|
peerID == localPeerID && packet.ttl != 0
|
||||||
|
}
|
||||||
|
|
||||||
|
static func deliveryPlan(packet: BitchatPacket, localPeerID: PeerID) -> BLEFileTransferDeliveryPlan? {
|
||||||
|
guard let recipientID = packet.recipientID else {
|
||||||
|
return BLEFileTransferDeliveryPlan(isPrivateMessage: false, shouldTrackForSync: true)
|
||||||
|
}
|
||||||
|
|
||||||
|
let isBroadcast = recipientID.allSatisfy { $0 == 0xFF }
|
||||||
|
if isBroadcast {
|
||||||
|
return BLEFileTransferDeliveryPlan(isPrivateMessage: false, shouldTrackForSync: true)
|
||||||
|
}
|
||||||
|
|
||||||
|
guard PeerID(hexData: recipientID) == localPeerID else {
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
return BLEFileTransferDeliveryPlan(isPrivateMessage: true, shouldTrackForSync: false)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEIncomingFileAcceptance {
|
||||||
|
let filePacket: BitchatFilePacket
|
||||||
|
let mime: MimeType
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEIncomingFileRejection: Error, Equatable {
|
||||||
|
case malformedPayload
|
||||||
|
case payloadTooLarge(bytes: Int)
|
||||||
|
case unsupportedMime(mimeType: String?, bytes: Int)
|
||||||
|
case magicMismatch(mime: MimeType, bytes: Int, prefixHex: String)
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEIncomingFileValidator {
|
||||||
|
static func validate(payload: Data) -> Result<BLEIncomingFileAcceptance, BLEIncomingFileRejection> {
|
||||||
|
guard let filePacket = BitchatFilePacket.decode(payload) else {
|
||||||
|
return .failure(.malformedPayload)
|
||||||
|
}
|
||||||
|
|
||||||
|
guard FileTransferLimits.isValidPayload(filePacket.content.count) else {
|
||||||
|
return .failure(.payloadTooLarge(bytes: filePacket.content.count))
|
||||||
|
}
|
||||||
|
|
||||||
|
guard let mime = MimeType(filePacket.mimeType), mime.isAllowed else {
|
||||||
|
return .failure(.unsupportedMime(
|
||||||
|
mimeType: filePacket.mimeType,
|
||||||
|
bytes: filePacket.content.count
|
||||||
|
))
|
||||||
|
}
|
||||||
|
|
||||||
|
guard mime.matches(data: filePacket.content) else {
|
||||||
|
return .failure(.magicMismatch(
|
||||||
|
mime: mime,
|
||||||
|
bytes: filePacket.content.count,
|
||||||
|
prefixHex: filePacket.content.prefix(20).map { String(format: "%02x", $0) }.joined(separator: " ")
|
||||||
|
))
|
||||||
|
}
|
||||||
|
|
||||||
|
return .success(BLEIncomingFileAcceptance(filePacket: filePacket, mime: mime))
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,153 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEFragmentKey: Hashable, Equatable {
|
||||||
|
let sender: UInt64
|
||||||
|
let id: UInt64
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEFragmentHeader: Equatable {
|
||||||
|
let key: BLEFragmentKey
|
||||||
|
let index: Int
|
||||||
|
let total: Int
|
||||||
|
let originalType: UInt8
|
||||||
|
let fragmentData: Data
|
||||||
|
let isBroadcastFragment: Bool
|
||||||
|
|
||||||
|
var idLogString: String {
|
||||||
|
String(format: "%016llx", key.id)
|
||||||
|
}
|
||||||
|
|
||||||
|
init?(packet: BitchatPacket) {
|
||||||
|
// Minimum header: 8 bytes ID + 2 index + 2 total + 1 type.
|
||||||
|
guard packet.payload.count >= 13 else { return nil }
|
||||||
|
|
||||||
|
var senderU64: UInt64 = 0
|
||||||
|
for byte in packet.senderID.prefix(8) {
|
||||||
|
senderU64 = (senderU64 << 8) | UInt64(byte)
|
||||||
|
}
|
||||||
|
|
||||||
|
var fragmentU64: UInt64 = 0
|
||||||
|
for byte in packet.payload.prefix(8) {
|
||||||
|
fragmentU64 = (fragmentU64 << 8) | UInt64(byte)
|
||||||
|
}
|
||||||
|
|
||||||
|
let index = Int((UInt16(packet.payload[8]) << 8) | UInt16(packet.payload[9]))
|
||||||
|
let total = Int((UInt16(packet.payload[10]) << 8) | UInt16(packet.payload[11]))
|
||||||
|
|
||||||
|
guard total > 0 && total <= 10_000 && index >= 0 && index < total else {
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
let isBroadcastFragment: Bool = {
|
||||||
|
guard let recipient = packet.recipientID else { return true }
|
||||||
|
return recipient.count == 8 && recipient.allSatisfy { $0 == 0xFF }
|
||||||
|
}()
|
||||||
|
|
||||||
|
self.key = BLEFragmentKey(sender: senderU64, id: fragmentU64)
|
||||||
|
self.index = index
|
||||||
|
self.total = total
|
||||||
|
self.originalType = packet.payload[12]
|
||||||
|
self.fragmentData = Data(packet.payload.suffix(from: 13))
|
||||||
|
self.isBroadcastFragment = isBroadcastFragment
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEFragmentAssemblyBuffer {
|
||||||
|
enum AppendResult: Equatable {
|
||||||
|
case stored(header: BLEFragmentHeader, started: Bool)
|
||||||
|
case complete(header: BLEFragmentHeader, reassembledData: Data, started: Bool)
|
||||||
|
case oversized(header: BLEFragmentHeader, projectedSize: Int, limit: Int, started: Bool)
|
||||||
|
}
|
||||||
|
|
||||||
|
private struct Metadata {
|
||||||
|
let type: UInt8
|
||||||
|
let total: Int
|
||||||
|
let timestamp: Date
|
||||||
|
}
|
||||||
|
|
||||||
|
private var fragmentsByKey: [BLEFragmentKey: [Int: Data]] = [:]
|
||||||
|
private var metadataByKey: [BLEFragmentKey: Metadata] = [:]
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
fragmentsByKey.removeAll()
|
||||||
|
metadataByKey.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
mutating func removeExpired(before cutoff: Date) -> Int {
|
||||||
|
let expiredKeys = metadataByKey
|
||||||
|
.filter { $0.value.timestamp < cutoff }
|
||||||
|
.map(\.key)
|
||||||
|
|
||||||
|
for key in expiredKeys {
|
||||||
|
fragmentsByKey.removeValue(forKey: key)
|
||||||
|
metadataByKey.removeValue(forKey: key)
|
||||||
|
}
|
||||||
|
|
||||||
|
return expiredKeys.count
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func append(
|
||||||
|
_ header: BLEFragmentHeader,
|
||||||
|
maxInFlightAssemblies: Int,
|
||||||
|
now: Date = Date()
|
||||||
|
) -> AppendResult {
|
||||||
|
let started = startAssemblyIfNeeded(for: header, maxInFlightAssemblies: maxInFlightAssemblies, now: now)
|
||||||
|
|
||||||
|
let currentSize = fragmentsByKey[header.key]?.values.reduce(0) { $0 + $1.count } ?? 0
|
||||||
|
let limit = Self.assemblyLimit(for: header.originalType)
|
||||||
|
let projectedSize = currentSize + header.fragmentData.count
|
||||||
|
|
||||||
|
guard projectedSize <= limit else {
|
||||||
|
fragmentsByKey.removeValue(forKey: header.key)
|
||||||
|
metadataByKey.removeValue(forKey: header.key)
|
||||||
|
return .oversized(header: header, projectedSize: projectedSize, limit: limit, started: started)
|
||||||
|
}
|
||||||
|
|
||||||
|
fragmentsByKey[header.key]?[header.index] = header.fragmentData
|
||||||
|
|
||||||
|
guard let fragments = fragmentsByKey[header.key],
|
||||||
|
fragments.count == header.total else {
|
||||||
|
return .stored(header: header, started: started)
|
||||||
|
}
|
||||||
|
|
||||||
|
let reassembled = (0..<header.total).reduce(into: Data()) { data, index in
|
||||||
|
if let fragment = fragments[index] {
|
||||||
|
data.append(fragment)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
fragmentsByKey.removeValue(forKey: header.key)
|
||||||
|
metadataByKey.removeValue(forKey: header.key)
|
||||||
|
|
||||||
|
return .complete(header: header, reassembledData: reassembled, started: started)
|
||||||
|
}
|
||||||
|
|
||||||
|
private mutating func startAssemblyIfNeeded(
|
||||||
|
for header: BLEFragmentHeader,
|
||||||
|
maxInFlightAssemblies: Int,
|
||||||
|
now: Date
|
||||||
|
) -> Bool {
|
||||||
|
guard fragmentsByKey[header.key] == nil else { return false }
|
||||||
|
|
||||||
|
if fragmentsByKey.count >= maxInFlightAssemblies,
|
||||||
|
let oldest = metadataByKey.min(by: { $0.value.timestamp < $1.value.timestamp })?.key {
|
||||||
|
fragmentsByKey.removeValue(forKey: oldest)
|
||||||
|
metadataByKey.removeValue(forKey: oldest)
|
||||||
|
}
|
||||||
|
|
||||||
|
fragmentsByKey[header.key] = [:]
|
||||||
|
metadataByKey[header.key] = Metadata(type: header.originalType, total: header.total, timestamp: now)
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func assemblyLimit(for originalType: UInt8) -> Int {
|
||||||
|
if originalType == MessageType.fileTransfer.rawValue {
|
||||||
|
// Allow headroom for TLV metadata and binary framing overhead.
|
||||||
|
return FileTransferLimits.maxFramedFileBytes
|
||||||
|
}
|
||||||
|
|
||||||
|
return FileTransferLimits.maxPayloadBytes
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,94 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import BitLogger
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
/// Narrow environment for `BLEFragmentHandler`.
|
||||||
|
///
|
||||||
|
/// All queue hops (the message-queue entry hop and the collections barrier
|
||||||
|
/// around the assembly buffer) live on the `BLEService` side — the entry hop
|
||||||
|
/// in `BLEService.handleFragment`, the barrier inside the supplied closures —
|
||||||
|
/// keeping the handler queue-agnostic and synchronously testable.
|
||||||
|
struct BLEFragmentHandlerEnvironment {
|
||||||
|
/// Local peer identity at the time the fragment is handled.
|
||||||
|
let localPeerID: () -> PeerID
|
||||||
|
/// Tracks broadcast fragments for gossip sync.
|
||||||
|
let trackPacketSeen: (BitchatPacket) -> Void
|
||||||
|
/// Appends the fragment to the assembly buffer (collections barrier write).
|
||||||
|
let appendFragment: (BLEFragmentHeader) -> BLEFragmentAssemblyBuffer.AppendResult
|
||||||
|
/// Ingress acceptance check for the reassembled inner packet.
|
||||||
|
let isAcceptedIngressPayload: (_ packet: BitchatPacket, _ innerSender: PeerID) -> Bool
|
||||||
|
/// Re-enters the receive pipeline with the reassembled packet (TTL already zeroed).
|
||||||
|
let processReassembledPacket: (_ packet: BitchatPacket, _ from: PeerID) -> Void
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Orchestrates inbound fragments: self-fragment suppression, gossip tracking,
|
||||||
|
/// assembly-buffer appends, and reassembled-packet validation and re-injection
|
||||||
|
/// into the receive pipeline.
|
||||||
|
final class BLEFragmentHandler {
|
||||||
|
private let environment: BLEFragmentHandlerEnvironment
|
||||||
|
|
||||||
|
init(environment: BLEFragmentHandlerEnvironment) {
|
||||||
|
self.environment = environment
|
||||||
|
}
|
||||||
|
|
||||||
|
func handle(_ packet: BitchatPacket, from peerID: PeerID) {
|
||||||
|
let env = environment
|
||||||
|
// Don't process our own fragments
|
||||||
|
if peerID == env.localPeerID() {
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
guard let header = BLEFragmentHeader(packet: packet) else { return }
|
||||||
|
|
||||||
|
if header.isBroadcastFragment {
|
||||||
|
env.trackPacketSeen(packet)
|
||||||
|
}
|
||||||
|
|
||||||
|
let assemblyResult = env.appendFragment(header)
|
||||||
|
|
||||||
|
logFragmentAssemblyResult(assemblyResult)
|
||||||
|
|
||||||
|
guard case let .complete(completedHeader, reassembled, _) = assemblyResult else { return }
|
||||||
|
|
||||||
|
// Decode the original packet bytes we reassembled, so flags/compression are preserved
|
||||||
|
if var originalPacket = BinaryProtocol.decode(reassembled) {
|
||||||
|
|
||||||
|
// Reassembled packet validation
|
||||||
|
let innerSender = PeerID(hexData: originalPacket.senderID)
|
||||||
|
if !env.isAcceptedIngressPayload(originalPacket, innerSender) {
|
||||||
|
// Cleanup below
|
||||||
|
} else {
|
||||||
|
SecureLogger.debug("✅ Reassembled packet id=\(completedHeader.idLogString) type=\(originalPacket.type) bytes=\(reassembled.count)", category: .session)
|
||||||
|
originalPacket.ttl = 0
|
||||||
|
env.processReassembledPacket(originalPacket, peerID)
|
||||||
|
}
|
||||||
|
} else {
|
||||||
|
SecureLogger.error("❌ Failed to decode reassembled packet (type=\(completedHeader.originalType), total=\(completedHeader.total))", category: .session)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private func logFragmentAssemblyResult(_ result: BLEFragmentAssemblyBuffer.AppendResult) {
|
||||||
|
func logStartedIfNeeded(header: BLEFragmentHeader, started: Bool) {
|
||||||
|
if started {
|
||||||
|
SecureLogger.debug("📦 Started fragment assembly id=\(header.idLogString) total=\(header.total)", category: .session)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
switch result {
|
||||||
|
case let .stored(header, started):
|
||||||
|
logStartedIfNeeded(header: header, started: started)
|
||||||
|
SecureLogger.debug("📦 Fragment \(header.index + 1)/\(header.total) (len=\(header.fragmentData.count)) for id=\(header.idLogString)", category: .session)
|
||||||
|
|
||||||
|
case let .complete(header, _, started):
|
||||||
|
logStartedIfNeeded(header: header, started: started)
|
||||||
|
SecureLogger.debug("📦 Fragment \(header.index + 1)/\(header.total) (len=\(header.fragmentData.count)) for id=\(header.idLogString)", category: .session)
|
||||||
|
|
||||||
|
case let .oversized(header, projectedSize, limit, started):
|
||||||
|
logStartedIfNeeded(header: header, started: started)
|
||||||
|
SecureLogger.warning(
|
||||||
|
"🚫 Fragment assembly exceeds size limit (\(projectedSize) bytes > \(limit)), evicting. Type=\(header.originalType) Index=\(header.index)/\(header.total)",
|
||||||
|
category: .security
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,70 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEInboundWriteChunk: Equatable {
|
||||||
|
let offset: Int
|
||||||
|
let data: Data
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEInboundWriteAppendMetadata: Equatable {
|
||||||
|
let accumulatedBytes: Int
|
||||||
|
let appendedBytes: Int
|
||||||
|
let offsets: [Int]
|
||||||
|
let packetType: UInt8?
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEInboundWriteBuffer {
|
||||||
|
enum AppendResult {
|
||||||
|
case decoded(packet: BitchatPacket, metadata: BLEInboundWriteAppendMetadata)
|
||||||
|
case waiting(metadata: BLEInboundWriteAppendMetadata)
|
||||||
|
case oversized(metadata: BLEInboundWriteAppendMetadata)
|
||||||
|
}
|
||||||
|
|
||||||
|
private var buffersByCentralID: [String: Data] = [:]
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
buffersByCentralID.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func append(
|
||||||
|
chunks: [BLEInboundWriteChunk],
|
||||||
|
for centralID: String,
|
||||||
|
capBytes: Int
|
||||||
|
) -> AppendResult {
|
||||||
|
var combined = buffersByCentralID[centralID] ?? Data()
|
||||||
|
var appendedBytes = 0
|
||||||
|
var offsets: [Int] = []
|
||||||
|
|
||||||
|
for chunk in chunks where !chunk.data.isEmpty {
|
||||||
|
offsets.append(chunk.offset)
|
||||||
|
let end = chunk.offset + chunk.data.count
|
||||||
|
|
||||||
|
if combined.count < end {
|
||||||
|
combined.append(Data(repeating: 0, count: end - combined.count))
|
||||||
|
}
|
||||||
|
|
||||||
|
combined.replaceSubrange(chunk.offset..<end, with: chunk.data)
|
||||||
|
appendedBytes += chunk.data.count
|
||||||
|
}
|
||||||
|
|
||||||
|
let metadata = BLEInboundWriteAppendMetadata(
|
||||||
|
accumulatedBytes: combined.count,
|
||||||
|
appendedBytes: appendedBytes,
|
||||||
|
offsets: offsets,
|
||||||
|
packetType: combined.count >= 2 ? combined[1] : nil
|
||||||
|
)
|
||||||
|
|
||||||
|
if let packet = BinaryProtocol.decode(combined) {
|
||||||
|
buffersByCentralID.removeValue(forKey: centralID)
|
||||||
|
return .decoded(packet: packet, metadata: metadata)
|
||||||
|
}
|
||||||
|
|
||||||
|
guard combined.count <= capBytes else {
|
||||||
|
buffersByCentralID.removeValue(forKey: centralID)
|
||||||
|
return .oversized(metadata: metadata)
|
||||||
|
}
|
||||||
|
|
||||||
|
buffersByCentralID[centralID] = combined
|
||||||
|
return .waiting(metadata: metadata)
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,168 @@
|
|||||||
|
import BitLogger
|
||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEIncomingFileStore {
|
||||||
|
private static let quotaBytes: Int64 = 100 * 1024 * 1024
|
||||||
|
|
||||||
|
private let fileManager: FileManager
|
||||||
|
private let baseDirectory: URL?
|
||||||
|
private let dateProvider: () -> Date
|
||||||
|
|
||||||
|
init(fileManager: FileManager = .default, baseDirectory: URL? = nil, dateProvider: @escaping () -> Date = Date.init) {
|
||||||
|
self.fileManager = fileManager
|
||||||
|
self.baseDirectory = baseDirectory
|
||||||
|
self.dateProvider = dateProvider
|
||||||
|
}
|
||||||
|
|
||||||
|
func save(
|
||||||
|
data: Data,
|
||||||
|
preferredName: String?,
|
||||||
|
subdirectory: String,
|
||||||
|
fallbackExtension: String?,
|
||||||
|
defaultPrefix: String
|
||||||
|
) -> URL? {
|
||||||
|
do {
|
||||||
|
let base = try filesDirectory().appendingPathComponent(subdirectory, isDirectory: true)
|
||||||
|
try fileManager.createDirectory(at: base, withIntermediateDirectories: true, attributes: nil)
|
||||||
|
let sanitized = sanitizedFileName(
|
||||||
|
preferredName,
|
||||||
|
defaultName: "\(defaultPrefix)_\(Self.timestampString(from: dateProvider()))",
|
||||||
|
fallbackExtension: fallbackExtension
|
||||||
|
)
|
||||||
|
let destination = uniqueFileURL(in: base, fileName: sanitized)
|
||||||
|
try data.write(to: destination, options: .atomic)
|
||||||
|
return destination
|
||||||
|
} catch {
|
||||||
|
SecureLogger.error("❌ Failed to persist incoming media: \(error)", category: .session)
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func enforceQuota(reservingBytes: Int) {
|
||||||
|
do {
|
||||||
|
let base = try filesDirectory()
|
||||||
|
let incomingDirs = [
|
||||||
|
base.appendingPathComponent("voicenotes/incoming", isDirectory: true),
|
||||||
|
base.appendingPathComponent("images/incoming", isDirectory: true),
|
||||||
|
base.appendingPathComponent("files/incoming", isDirectory: true)
|
||||||
|
]
|
||||||
|
var allFiles: [(url: URL, size: Int64, modified: Date)] = []
|
||||||
|
|
||||||
|
for dir in incomingDirs where fileManager.fileExists(atPath: dir.path) {
|
||||||
|
guard let contents = try? fileManager.contentsOfDirectory(
|
||||||
|
at: dir,
|
||||||
|
includingPropertiesForKeys: [.fileSizeKey, .contentModificationDateKey],
|
||||||
|
options: [.skipsHiddenFiles]
|
||||||
|
) else { continue }
|
||||||
|
|
||||||
|
for fileURL in contents {
|
||||||
|
guard let attrs = try? fileURL.resourceValues(forKeys: [.fileSizeKey, .contentModificationDateKey]),
|
||||||
|
let size = attrs.fileSize,
|
||||||
|
let modified = attrs.contentModificationDate else { continue }
|
||||||
|
allFiles.append((url: fileURL, size: Int64(size), modified: modified))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
let currentUsage = allFiles.reduce(0) { $0 + $1.size }
|
||||||
|
let targetUsage = Self.quotaBytes - Int64(reservingBytes)
|
||||||
|
guard currentUsage > targetUsage else { return }
|
||||||
|
|
||||||
|
let needToFree = currentUsage - targetUsage
|
||||||
|
var freedSpace: Int64 = 0
|
||||||
|
for file in allFiles.sorted(by: { $0.modified < $1.modified }) {
|
||||||
|
guard freedSpace < needToFree else { break }
|
||||||
|
do {
|
||||||
|
try fileManager.removeItem(at: file.url)
|
||||||
|
freedSpace += file.size
|
||||||
|
SecureLogger.debug("🗑️ BCH-01-002: Deleted old incoming file to free space: \(file.url.lastPathComponent)", category: .security)
|
||||||
|
} catch {
|
||||||
|
SecureLogger.warning("⚠️ Failed to delete old file for quota: \(error)", category: .security)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
if freedSpace > 0 {
|
||||||
|
SecureLogger.info("📊 BCH-01-002: Freed \(ByteCountFormatter.string(fromByteCount: freedSpace, countStyle: .file)) to stay within incoming files quota", category: .security)
|
||||||
|
}
|
||||||
|
} catch {
|
||||||
|
SecureLogger.warning("⚠️ Could not enforce storage quota: \(error)", category: .security)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private func filesDirectory() throws -> URL {
|
||||||
|
let root = try baseDirectory ?? fileManager.url(
|
||||||
|
for: .applicationSupportDirectory,
|
||||||
|
in: .userDomainMask,
|
||||||
|
appropriateFor: nil,
|
||||||
|
create: true
|
||||||
|
)
|
||||||
|
let filesDir = root.appendingPathComponent("files", isDirectory: true)
|
||||||
|
try fileManager.createDirectory(at: filesDir, withIntermediateDirectories: true, attributes: nil)
|
||||||
|
return filesDir
|
||||||
|
}
|
||||||
|
|
||||||
|
private func sanitizedFileName(_ name: String?, defaultName: String, fallbackExtension: String?) -> String {
|
||||||
|
var candidate = (name ?? "")
|
||||||
|
.replacingOccurrences(of: "\0", with: "")
|
||||||
|
.precomposedStringWithCanonicalMapping
|
||||||
|
.replacingOccurrences(of: "/", with: "_")
|
||||||
|
.replacingOccurrences(of: "\\", with: "_")
|
||||||
|
|
||||||
|
let invalid = CharacterSet(charactersIn: "<>:\"|?*\0").union(.controlCharacters)
|
||||||
|
candidate = candidate.components(separatedBy: invalid).joined(separator: "_").trimmed
|
||||||
|
if candidate.isEmpty { candidate = defaultName }
|
||||||
|
if candidate.hasPrefix(".") { candidate = "_" + candidate }
|
||||||
|
|
||||||
|
if candidate.count > 120 {
|
||||||
|
let ext = (candidate as NSString).pathExtension
|
||||||
|
let base = (candidate as NSString).deletingPathExtension
|
||||||
|
candidate = ext.isEmpty
|
||||||
|
? String(candidate.prefix(120))
|
||||||
|
: String(base.prefix(max(10, 120 - ext.count - 1))) + "." + ext
|
||||||
|
}
|
||||||
|
|
||||||
|
if let fallbackExtension, (candidate as NSString).pathExtension.isEmpty {
|
||||||
|
candidate += ".\(fallbackExtension)"
|
||||||
|
}
|
||||||
|
|
||||||
|
return candidate.isEmpty ? defaultName : candidate
|
||||||
|
}
|
||||||
|
|
||||||
|
private func uniqueFileURL(in directory: URL, fileName: String) -> URL {
|
||||||
|
let directoryPath = directory.standardizedFileURL.path
|
||||||
|
func isInsideDirectory(_ url: URL) -> Bool {
|
||||||
|
url.standardizedFileURL.path.hasPrefix(directoryPath + "/")
|
||||||
|
}
|
||||||
|
|
||||||
|
var candidate = directory.appendingPathComponent(fileName)
|
||||||
|
guard isInsideDirectory(candidate) else {
|
||||||
|
SecureLogger.warning("⚠️ Path traversal blocked: \(fileName)", category: .security)
|
||||||
|
return directory.appendingPathComponent("blocked_\(UUID().uuidString)")
|
||||||
|
}
|
||||||
|
|
||||||
|
if !fileManager.fileExists(atPath: candidate.path) {
|
||||||
|
return candidate
|
||||||
|
}
|
||||||
|
|
||||||
|
let baseName = (fileName as NSString).deletingPathExtension
|
||||||
|
let ext = (fileName as NSString).pathExtension
|
||||||
|
for counter in 1..<100 {
|
||||||
|
let newName = ext.isEmpty ? "\(baseName) (\(counter))" : "\(baseName) (\(counter)).\(ext)"
|
||||||
|
candidate = directory.appendingPathComponent(newName)
|
||||||
|
guard isInsideDirectory(candidate) else {
|
||||||
|
return directory.appendingPathComponent("blocked_\(UUID().uuidString)")
|
||||||
|
}
|
||||||
|
if !fileManager.fileExists(atPath: candidate.path) {
|
||||||
|
return candidate
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
return directory.appendingPathComponent("\(baseName)_\(UUID().uuidString).\(ext.isEmpty ? "dat" : ext)")
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func timestampString(from date: Date) -> String {
|
||||||
|
let formatter = DateFormatter()
|
||||||
|
formatter.dateFormat = "yyyyMMdd_HHmmss"
|
||||||
|
return formatter.string(from: date)
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,108 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum BLEIngressLinkID: Hashable, Equatable {
|
||||||
|
case peripheral(String)
|
||||||
|
case central(String)
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEIngressPacketContext: Equatable {
|
||||||
|
let receivedFromPeerID: PeerID
|
||||||
|
let validationPeerID: PeerID
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEIngressLinkRecord: Equatable {
|
||||||
|
let link: BLEIngressLinkID
|
||||||
|
let peerID: PeerID
|
||||||
|
let timestamp: Date
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEIngressRejection: Error, Equatable {
|
||||||
|
case selfLoopback(packetType: UInt8)
|
||||||
|
case directSenderMismatch(boundPeerID: PeerID, claimedSenderID: PeerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEIngressLinkRegistry {
|
||||||
|
private var ingressByMessageID: [String: BLEIngressLinkRecord] = [:]
|
||||||
|
|
||||||
|
var isEmpty: Bool {
|
||||||
|
ingressByMessageID.isEmpty
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
ingressByMessageID.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
func record(for packet: BitchatPacket) -> BLEIngressLinkRecord? {
|
||||||
|
ingressByMessageID[Self.messageID(for: packet)]
|
||||||
|
}
|
||||||
|
|
||||||
|
func link(for packet: BitchatPacket) -> BLEIngressLinkID? {
|
||||||
|
record(for: packet)?.link
|
||||||
|
}
|
||||||
|
|
||||||
|
func peerID(for packet: BitchatPacket) -> PeerID? {
|
||||||
|
record(for: packet)?.peerID
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func recordIfNew(
|
||||||
|
_ packet: BitchatPacket,
|
||||||
|
link: BLEIngressLinkID,
|
||||||
|
peerID: PeerID,
|
||||||
|
now: Date = Date(),
|
||||||
|
lifetime: TimeInterval
|
||||||
|
) -> Bool {
|
||||||
|
let messageID = Self.messageID(for: packet)
|
||||||
|
if let existing = ingressByMessageID[messageID],
|
||||||
|
now.timeIntervalSince(existing.timestamp) <= lifetime {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
|
||||||
|
ingressByMessageID[messageID] = BLEIngressLinkRecord(link: link, peerID: peerID, timestamp: now)
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func prune(before cutoff: Date) {
|
||||||
|
ingressByMessageID = ingressByMessageID.filter { $0.value.timestamp >= cutoff }
|
||||||
|
}
|
||||||
|
|
||||||
|
static func packetContext(
|
||||||
|
for packet: BitchatPacket,
|
||||||
|
claimedSenderID: PeerID,
|
||||||
|
boundPeerID: PeerID?,
|
||||||
|
localPeerID: PeerID,
|
||||||
|
directAnnounceTTL: UInt8
|
||||||
|
) -> Result<BLEIngressPacketContext, BLEIngressRejection> {
|
||||||
|
if claimedSenderID == localPeerID,
|
||||||
|
!isSelfAuthoredSyncResponse(packet) {
|
||||||
|
return .failure(.selfLoopback(packetType: packet.type))
|
||||||
|
}
|
||||||
|
|
||||||
|
if let boundPeerID,
|
||||||
|
boundPeerID != claimedSenderID,
|
||||||
|
requiresDirectSenderBinding(packet, directAnnounceTTL: directAnnounceTTL) {
|
||||||
|
return .failure(.directSenderMismatch(boundPeerID: boundPeerID, claimedSenderID: claimedSenderID))
|
||||||
|
}
|
||||||
|
|
||||||
|
let receivedFromPeerID = boundPeerID ?? claimedSenderID
|
||||||
|
let validationPeerID = packet.isRSR ? receivedFromPeerID : claimedSenderID
|
||||||
|
return .success(BLEIngressPacketContext(
|
||||||
|
receivedFromPeerID: receivedFromPeerID,
|
||||||
|
validationPeerID: validationPeerID
|
||||||
|
))
|
||||||
|
}
|
||||||
|
|
||||||
|
static func messageID(for packet: BitchatPacket) -> String {
|
||||||
|
let senderID = packet.senderID.hexEncodedString()
|
||||||
|
let digestPrefix = packet.payload.sha256Hash().prefix(4).hexEncodedString()
|
||||||
|
return "\(senderID)-\(packet.timestamp)-\(packet.type)-\(digestPrefix)"
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func requiresDirectSenderBinding(_ packet: BitchatPacket, directAnnounceTTL: UInt8) -> Bool {
|
||||||
|
packet.type == MessageType.announce.rawValue && packet.ttl == directAnnounceTTL
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func isSelfAuthoredSyncResponse(_ packet: BitchatPacket) -> Bool {
|
||||||
|
packet.isRSR && packet.ttl == 0
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,76 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum BLEIngressPacketGuard {
|
||||||
|
enum Rejection: Error, Equatable {
|
||||||
|
case selfLoopback(packetType: UInt8)
|
||||||
|
case directSenderMismatch(boundPeerID: PeerID, claimedSenderID: PeerID)
|
||||||
|
case invalidRSR(peerID: PeerID)
|
||||||
|
case timestampSkew(peerID: PeerID, skewMs: UInt64, maxSkewMs: UInt64)
|
||||||
|
}
|
||||||
|
|
||||||
|
static func evaluate(
|
||||||
|
packet: BitchatPacket,
|
||||||
|
claimedSenderID: PeerID,
|
||||||
|
boundPeerID: PeerID?,
|
||||||
|
localPeerID: PeerID,
|
||||||
|
directAnnounceTTL: UInt8,
|
||||||
|
nowMs: UInt64 = UInt64(Date().timeIntervalSince1970 * 1000),
|
||||||
|
maxTimestampSkewMs: UInt64 = 120_000,
|
||||||
|
isValidSyncResponse: (PeerID) -> Bool
|
||||||
|
) -> Result<BLEIngressPacketContext, Rejection> {
|
||||||
|
let contextResult = BLEIngressLinkRegistry.packetContext(
|
||||||
|
for: packet,
|
||||||
|
claimedSenderID: claimedSenderID,
|
||||||
|
boundPeerID: boundPeerID,
|
||||||
|
localPeerID: localPeerID,
|
||||||
|
directAnnounceTTL: directAnnounceTTL
|
||||||
|
)
|
||||||
|
|
||||||
|
let context: BLEIngressPacketContext
|
||||||
|
switch contextResult {
|
||||||
|
case .success(let acceptedContext):
|
||||||
|
context = acceptedContext
|
||||||
|
case .failure(.selfLoopback(let packetType)):
|
||||||
|
return .failure(.selfLoopback(packetType: packetType))
|
||||||
|
case .failure(.directSenderMismatch(let boundPeerID, let claimedSenderID)):
|
||||||
|
return .failure(.directSenderMismatch(boundPeerID: boundPeerID, claimedSenderID: claimedSenderID))
|
||||||
|
}
|
||||||
|
|
||||||
|
switch validatePayload(
|
||||||
|
packet,
|
||||||
|
from: context.validationPeerID,
|
||||||
|
nowMs: nowMs,
|
||||||
|
maxTimestampSkewMs: maxTimestampSkewMs,
|
||||||
|
isValidSyncResponse: isValidSyncResponse
|
||||||
|
) {
|
||||||
|
case .success:
|
||||||
|
return .success(context)
|
||||||
|
case .failure(let rejection):
|
||||||
|
return .failure(rejection)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
static func validatePayload(
|
||||||
|
_ packet: BitchatPacket,
|
||||||
|
from peerID: PeerID,
|
||||||
|
nowMs: UInt64 = UInt64(Date().timeIntervalSince1970 * 1000),
|
||||||
|
maxTimestampSkewMs: UInt64 = 120_000,
|
||||||
|
isValidSyncResponse: (PeerID) -> Bool
|
||||||
|
) -> Result<Void, Rejection> {
|
||||||
|
if packet.isRSR {
|
||||||
|
guard isValidSyncResponse(peerID) else {
|
||||||
|
return .failure(.invalidRSR(peerID: peerID))
|
||||||
|
}
|
||||||
|
return .success(())
|
||||||
|
}
|
||||||
|
|
||||||
|
let packetTime = packet.timestamp
|
||||||
|
let skew = packetTime > nowMs ? packetTime - nowMs : nowMs - packetTime
|
||||||
|
guard skew <= maxTimestampSkewMs else {
|
||||||
|
return .failure(.timestampSkew(peerID: peerID, skewMs: skew, maxSkewMs: maxTimestampSkewMs))
|
||||||
|
}
|
||||||
|
|
||||||
|
return .success(())
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,243 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import CoreBluetooth
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEPeripheralLinkState {
|
||||||
|
let peripheral: CBPeripheral
|
||||||
|
var characteristic: CBCharacteristic?
|
||||||
|
var peerID: PeerID?
|
||||||
|
var isConnecting: Bool
|
||||||
|
var isConnected: Bool
|
||||||
|
var lastConnectionAttempt: Date?
|
||||||
|
var assembler: NotificationStreamAssembler
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEDirectLinkState: Equatable {
|
||||||
|
let hasPeripheral: Bool
|
||||||
|
let hasCentral: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLESubscribedCentralSnapshot {
|
||||||
|
let centrals: [CBCentral]
|
||||||
|
let peerIDsByCentralUUID: [String: PeerID]
|
||||||
|
|
||||||
|
func central(for peerID: PeerID) -> CBCentral? {
|
||||||
|
centrals.first { peerIDsByCentralUUID[$0.identifier.uuidString] == peerID }
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Owns all BLE link state (peripheral connections we hold as central, and
|
||||||
|
/// central subscriptions we serve as peripheral). The store has no internal
|
||||||
|
/// locking: every access must happen on the single owning queue (the BLE
|
||||||
|
/// queue). Other queues must go through BLEService's `readLinkState`, which
|
||||||
|
/// hops to that queue. Call `assumeOwnership(of:)` to have debug builds trap
|
||||||
|
/// any access from the wrong queue.
|
||||||
|
final class BLELinkStateStore {
|
||||||
|
private(set) var peripherals: [String: BLEPeripheralLinkState] = [:]
|
||||||
|
private(set) var peerToPeripheralUUID: [PeerID: String] = [:]
|
||||||
|
private(set) var subscribedCentrals: [CBCentral] = []
|
||||||
|
private(set) var centralToPeerID: [String: PeerID] = [:]
|
||||||
|
|
||||||
|
#if DEBUG
|
||||||
|
private var ownerQueue: DispatchQueue?
|
||||||
|
#endif
|
||||||
|
|
||||||
|
/// Pin the store to its owning queue. Debug-only enforcement; release
|
||||||
|
/// builds are unchanged.
|
||||||
|
func assumeOwnership(of queue: DispatchQueue) {
|
||||||
|
#if DEBUG
|
||||||
|
ownerQueue = queue
|
||||||
|
#endif
|
||||||
|
}
|
||||||
|
|
||||||
|
@inline(__always)
|
||||||
|
private func assertOwned() {
|
||||||
|
#if DEBUG
|
||||||
|
if let queue = ownerQueue {
|
||||||
|
dispatchPrecondition(condition: .onQueue(queue))
|
||||||
|
}
|
||||||
|
#endif
|
||||||
|
}
|
||||||
|
|
||||||
|
var peripheralStates: [BLEPeripheralLinkState] {
|
||||||
|
assertOwned()
|
||||||
|
return Array(peripherals.values)
|
||||||
|
}
|
||||||
|
|
||||||
|
var subscribedCentralSnapshot: BLESubscribedCentralSnapshot {
|
||||||
|
assertOwned()
|
||||||
|
return BLESubscribedCentralSnapshot(
|
||||||
|
centrals: subscribedCentrals,
|
||||||
|
peerIDsByCentralUUID: centralToPeerID
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
var subscribedCentralCount: Int {
|
||||||
|
assertOwned()
|
||||||
|
return subscribedCentrals.count
|
||||||
|
}
|
||||||
|
|
||||||
|
var connectedOrConnectingPeripheralCount: Int {
|
||||||
|
assertOwned()
|
||||||
|
return peripherals.values.filter { $0.isConnected || $0.isConnecting }.count
|
||||||
|
}
|
||||||
|
|
||||||
|
func state(forPeripheralID peripheralID: String) -> BLEPeripheralLinkState? {
|
||||||
|
assertOwned()
|
||||||
|
return peripherals[peripheralID]
|
||||||
|
}
|
||||||
|
|
||||||
|
func setPeripheralState(_ state: BLEPeripheralLinkState, for peripheralID: String) {
|
||||||
|
assertOwned()
|
||||||
|
peripherals[peripheralID] = state
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
func updatePeripheral(
|
||||||
|
_ peripheralID: String,
|
||||||
|
_ update: (inout BLEPeripheralLinkState) -> Void
|
||||||
|
) -> BLEPeripheralLinkState? {
|
||||||
|
assertOwned()
|
||||||
|
guard var state = peripherals[peripheralID] else { return nil }
|
||||||
|
update(&state)
|
||||||
|
peripherals[peripheralID] = state
|
||||||
|
return state
|
||||||
|
}
|
||||||
|
|
||||||
|
func beginConnecting(to peripheral: CBPeripheral, at date: Date) {
|
||||||
|
setPeripheralState(
|
||||||
|
BLEPeripheralLinkState(
|
||||||
|
peripheral: peripheral,
|
||||||
|
characteristic: nil,
|
||||||
|
peerID: nil,
|
||||||
|
isConnecting: true,
|
||||||
|
isConnected: false,
|
||||||
|
lastConnectionAttempt: date,
|
||||||
|
assembler: NotificationStreamAssembler()
|
||||||
|
),
|
||||||
|
for: peripheral.identifier.uuidString
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
func markConnected(_ peripheral: CBPeripheral) {
|
||||||
|
let peripheralID = peripheral.identifier.uuidString
|
||||||
|
if updatePeripheral(peripheralID, {
|
||||||
|
$0.isConnecting = false
|
||||||
|
$0.isConnected = true
|
||||||
|
}) == nil {
|
||||||
|
setPeripheralState(
|
||||||
|
BLEPeripheralLinkState(
|
||||||
|
peripheral: peripheral,
|
||||||
|
characteristic: nil,
|
||||||
|
peerID: nil,
|
||||||
|
isConnecting: false,
|
||||||
|
isConnected: true,
|
||||||
|
lastConnectionAttempt: nil,
|
||||||
|
assembler: NotificationStreamAssembler()
|
||||||
|
),
|
||||||
|
for: peripheralID
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func updateCharacteristic(_ characteristic: CBCharacteristic, forPeripheralID peripheralID: String) {
|
||||||
|
updatePeripheral(peripheralID) {
|
||||||
|
$0.characteristic = characteristic
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func directPeripheralState(for peerID: PeerID) -> BLEPeripheralLinkState? {
|
||||||
|
assertOwned()
|
||||||
|
return peerToPeripheralUUID[peerID].flatMap { peripherals[$0] }
|
||||||
|
}
|
||||||
|
|
||||||
|
func directLinkState(for peerID: PeerID) -> BLEDirectLinkState {
|
||||||
|
assertOwned()
|
||||||
|
let peripheralUUID = peerToPeripheralUUID[peerID]
|
||||||
|
let hasPeripheral = peripheralUUID.flatMap { peripherals[$0]?.isConnected } ?? false
|
||||||
|
let hasCentral = centralToPeerID.values.contains(peerID)
|
||||||
|
return BLEDirectLinkState(hasPeripheral: hasPeripheral, hasCentral: hasCentral)
|
||||||
|
}
|
||||||
|
|
||||||
|
func links(to peerID: PeerID?) -> Set<BLEIngressLinkID> {
|
||||||
|
assertOwned()
|
||||||
|
guard let peerID else { return [] }
|
||||||
|
|
||||||
|
var links: Set<BLEIngressLinkID> = []
|
||||||
|
if let peripheralUUID = peerToPeripheralUUID[peerID] {
|
||||||
|
links.insert(.peripheral(peripheralUUID))
|
||||||
|
}
|
||||||
|
for (centralUUID, mappedPeerID) in centralToPeerID where mappedPeerID == peerID {
|
||||||
|
links.insert(.central(centralUUID))
|
||||||
|
}
|
||||||
|
return links
|
||||||
|
}
|
||||||
|
|
||||||
|
func peerID(forPeripheralID peripheralID: String) -> PeerID? {
|
||||||
|
assertOwned()
|
||||||
|
return peripherals[peripheralID]?.peerID
|
||||||
|
}
|
||||||
|
|
||||||
|
func peerID(forCentralUUID centralUUID: String) -> PeerID? {
|
||||||
|
assertOwned()
|
||||||
|
return centralToPeerID[centralUUID]
|
||||||
|
}
|
||||||
|
|
||||||
|
func addSubscribedCentral(_ central: CBCentral) {
|
||||||
|
assertOwned()
|
||||||
|
guard !subscribedCentrals.contains(central) else { return }
|
||||||
|
subscribedCentrals.append(central)
|
||||||
|
}
|
||||||
|
|
||||||
|
func removeSubscribedCentral(_ central: CBCentral) -> PeerID? {
|
||||||
|
assertOwned()
|
||||||
|
let centralUUID = central.identifier.uuidString
|
||||||
|
subscribedCentrals.removeAll { $0.identifier == central.identifier }
|
||||||
|
return centralToPeerID.removeValue(forKey: centralUUID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func bindCentral(_ centralUUID: String, to peerID: PeerID) {
|
||||||
|
assertOwned()
|
||||||
|
centralToPeerID[centralUUID] = peerID
|
||||||
|
}
|
||||||
|
|
||||||
|
func bindPeripheral(_ peripheralUUID: String, to peerID: PeerID) {
|
||||||
|
assertOwned()
|
||||||
|
if updatePeripheral(peripheralUUID, { $0.peerID = peerID }) != nil {
|
||||||
|
peerToPeripheralUUID[peerID] = peripheralUUID
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func removePeripheral(_ peripheralID: String) -> PeerID? {
|
||||||
|
assertOwned()
|
||||||
|
let peerID = peripherals.removeValue(forKey: peripheralID)?.peerID
|
||||||
|
if let peerID {
|
||||||
|
peerToPeripheralUUID.removeValue(forKey: peerID)
|
||||||
|
}
|
||||||
|
return peerID
|
||||||
|
}
|
||||||
|
|
||||||
|
func clearPeripherals() -> [PeerID] {
|
||||||
|
assertOwned()
|
||||||
|
let peerIDs = peripherals.compactMap { $0.value.peerID }
|
||||||
|
peripherals.removeAll()
|
||||||
|
peerToPeripheralUUID.removeAll()
|
||||||
|
return peerIDs
|
||||||
|
}
|
||||||
|
|
||||||
|
func clearCentrals() -> [PeerID] {
|
||||||
|
assertOwned()
|
||||||
|
let peerIDs = Array(centralToPeerID.values)
|
||||||
|
subscribedCentrals.removeAll()
|
||||||
|
centralToPeerID.removeAll()
|
||||||
|
return peerIDs
|
||||||
|
}
|
||||||
|
|
||||||
|
func clearAll() {
|
||||||
|
assertOwned()
|
||||||
|
peripherals.removeAll()
|
||||||
|
peerToPeripheralUUID.removeAll()
|
||||||
|
subscribedCentrals.removeAll()
|
||||||
|
centralToPeerID.removeAll()
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,33 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
final class BLELogRateLimiter {
|
||||||
|
private let defaultMinimumInterval: TimeInterval
|
||||||
|
private let queue = DispatchQueue(label: "chat.bitchat.ble.log-rate-limiter")
|
||||||
|
private var lastLogTimeByKey: [String: Date] = [:]
|
||||||
|
|
||||||
|
init(defaultMinimumInterval: TimeInterval) {
|
||||||
|
self.defaultMinimumInterval = defaultMinimumInterval
|
||||||
|
}
|
||||||
|
|
||||||
|
func shouldLog(
|
||||||
|
key: String,
|
||||||
|
now: Date = Date(),
|
||||||
|
minimumInterval: TimeInterval? = nil
|
||||||
|
) -> Bool {
|
||||||
|
queue.sync {
|
||||||
|
let interval = minimumInterval ?? defaultMinimumInterval
|
||||||
|
if let lastLogTime = lastLogTimeByKey[key],
|
||||||
|
now.timeIntervalSince(lastLogTime) < interval {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
lastLogTimeByKey[key] = now
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func removeAll() {
|
||||||
|
queue.sync {
|
||||||
|
lastLogTimeByKey.removeAll()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,62 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEMaintenancePlan: Equatable {
|
||||||
|
let shouldSendAnnounce: Bool
|
||||||
|
let shouldEnsureAdvertising: Bool
|
||||||
|
let shouldRunCleanup: Bool
|
||||||
|
let shouldFlushDirectedSpool: Bool
|
||||||
|
let shouldResetCounter: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEMaintenancePolicy {
|
||||||
|
static func plan(
|
||||||
|
cycle: Int,
|
||||||
|
connectedCount: Int,
|
||||||
|
peerRegistryIsEmpty: Bool,
|
||||||
|
elapsedSinceLastAnnounce: TimeInterval,
|
||||||
|
hasRecentTraffic: Bool,
|
||||||
|
connectedAnnounceJitterOffset: TimeInterval? = nil,
|
||||||
|
highDegreeThreshold: Int = TransportConfig.bleHighDegreeThreshold
|
||||||
|
) -> BLEMaintenancePlan {
|
||||||
|
BLEMaintenancePlan(
|
||||||
|
shouldSendAnnounce: shouldSendAnnounce(
|
||||||
|
connectedCount: connectedCount,
|
||||||
|
elapsedSinceLastAnnounce: elapsedSinceLastAnnounce,
|
||||||
|
hasRecentTraffic: hasRecentTraffic,
|
||||||
|
connectedAnnounceJitterOffset: connectedAnnounceJitterOffset,
|
||||||
|
highDegreeThreshold: highDegreeThreshold
|
||||||
|
),
|
||||||
|
shouldEnsureAdvertising: peerRegistryIsEmpty,
|
||||||
|
shouldRunCleanup: cycle.isMultiple(of: 3),
|
||||||
|
shouldFlushDirectedSpool: !cycle.isMultiple(of: 2),
|
||||||
|
shouldResetCounter: cycle >= 6
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
static func shouldSendAnnounce(
|
||||||
|
connectedCount: Int,
|
||||||
|
elapsedSinceLastAnnounce: TimeInterval,
|
||||||
|
hasRecentTraffic: Bool,
|
||||||
|
connectedAnnounceJitterOffset: TimeInterval? = nil,
|
||||||
|
highDegreeThreshold: Int = TransportConfig.bleHighDegreeThreshold
|
||||||
|
) -> Bool {
|
||||||
|
if hasRecentTraffic && elapsedSinceLastAnnounce >= 10.0 {
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
guard connectedCount > 0 else {
|
||||||
|
return elapsedSinceLastAnnounce >= TransportConfig.bleAnnounceIntervalSeconds
|
||||||
|
}
|
||||||
|
|
||||||
|
let highDegree = connectedCount >= highDegreeThreshold
|
||||||
|
let base = highDegree ?
|
||||||
|
TransportConfig.bleConnectedAnnounceBaseSecondsDense :
|
||||||
|
TransportConfig.bleConnectedAnnounceBaseSecondsSparse
|
||||||
|
let jitter = highDegree ?
|
||||||
|
TransportConfig.bleConnectedAnnounceJitterDense :
|
||||||
|
TransportConfig.bleConnectedAnnounceJitterSparse
|
||||||
|
let jitterOffset = connectedAnnounceJitterOffset ?? Double.random(in: -jitter...jitter)
|
||||||
|
|
||||||
|
return elapsedSinceLastAnnounce >= base + jitterOffset
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,132 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import BitLogger
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
/// Narrow environment for `BLENoisePacketHandler`.
|
||||||
|
///
|
||||||
|
/// All queue hops (collections barrier writes, main-actor UI notification)
|
||||||
|
/// and every `noiseService.*` crypto call live inside the closures supplied by
|
||||||
|
/// `BLEService`, keeping the handler queue-agnostic and synchronously testable.
|
||||||
|
struct BLENoisePacketHandlerEnvironment {
|
||||||
|
/// Local peer identity at the time the packet is handled.
|
||||||
|
let localPeerID: () -> PeerID
|
||||||
|
/// Local peer ID bytes used as the sender of handshake responses.
|
||||||
|
let localPeerIDData: () -> Data
|
||||||
|
/// TTL value used for direct (non-relayed) packets.
|
||||||
|
let messageTTL: UInt8
|
||||||
|
/// Current time source.
|
||||||
|
let now: () -> Date
|
||||||
|
/// Processes an inbound handshake message, returning an optional response payload (crypto).
|
||||||
|
let processHandshakeMessage: (_ peerID: PeerID, _ message: Data) throws -> Data?
|
||||||
|
/// Whether any Noise session (established or pending) exists for the peer (crypto).
|
||||||
|
let hasNoiseSession: (PeerID) -> Bool
|
||||||
|
/// Initiates a fresh Noise handshake with the peer (crypto + send).
|
||||||
|
let initiateHandshake: (PeerID) -> Void
|
||||||
|
/// Broadcasts a packet on the mesh (caller is already on the message queue).
|
||||||
|
let broadcastPacket: (BitchatPacket) -> Void
|
||||||
|
/// Updates the registry last-seen timestamp for the peer (async barrier write).
|
||||||
|
let updatePeerLastSeen: (PeerID) -> Void
|
||||||
|
/// Decrypts an encrypted payload from the peer (crypto).
|
||||||
|
let decrypt: (_ payload: Data, _ peerID: PeerID) throws -> Data
|
||||||
|
/// Clears the peer's Noise session after an unrecoverable decrypt failure (crypto).
|
||||||
|
let clearSession: (PeerID) -> Void
|
||||||
|
/// Delivers `.noisePayloadReceived` to the UI as one main-actor hop.
|
||||||
|
let deliverNoisePayload: (
|
||||||
|
_ peerID: PeerID,
|
||||||
|
_ type: NoisePayloadType,
|
||||||
|
_ payload: Data,
|
||||||
|
_ timestamp: Date
|
||||||
|
) -> Void
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Orchestrates the Noise session domain for inbound packets: handshake
|
||||||
|
/// processing (with response), encrypted payload decryption and dispatch,
|
||||||
|
/// and session recovery on decrypt failure.
|
||||||
|
final class BLENoisePacketHandler {
|
||||||
|
private let environment: BLENoisePacketHandlerEnvironment
|
||||||
|
|
||||||
|
init(environment: BLENoisePacketHandlerEnvironment) {
|
||||||
|
self.environment = environment
|
||||||
|
}
|
||||||
|
|
||||||
|
func handleHandshake(_ packet: BitchatPacket, from peerID: PeerID) {
|
||||||
|
let env = environment
|
||||||
|
// Use NoiseEncryptionService for handshake processing
|
||||||
|
if PeerID(hexData: packet.recipientID) == env.localPeerID() {
|
||||||
|
// Handshake is for us
|
||||||
|
do {
|
||||||
|
if let response = try env.processHandshakeMessage(peerID, packet.payload) {
|
||||||
|
// Send response
|
||||||
|
let responsePacket = BitchatPacket(
|
||||||
|
type: MessageType.noiseHandshake.rawValue,
|
||||||
|
senderID: env.localPeerIDData(),
|
||||||
|
recipientID: Data(hexString: peerID.id),
|
||||||
|
timestamp: UInt64(env.now().timeIntervalSince1970 * 1000),
|
||||||
|
payload: response,
|
||||||
|
signature: nil,
|
||||||
|
ttl: env.messageTTL
|
||||||
|
)
|
||||||
|
// We're on messageQueue from delegate callback
|
||||||
|
env.broadcastPacket(responsePacket)
|
||||||
|
}
|
||||||
|
|
||||||
|
// Session establishment will trigger onPeerAuthenticated callback
|
||||||
|
// which will send any pending messages at the right time
|
||||||
|
} catch {
|
||||||
|
SecureLogger.error("Failed to process handshake: \(error)")
|
||||||
|
// Try initiating a new handshake
|
||||||
|
if !env.hasNoiseSession(peerID) {
|
||||||
|
env.initiateHandshake(peerID)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func handleEncrypted(_ packet: BitchatPacket, from peerID: PeerID) {
|
||||||
|
let env = environment
|
||||||
|
guard let recipientID = PeerID(hexData: packet.recipientID) else {
|
||||||
|
SecureLogger.warning("⚠️ Encrypted message has no recipient ID", category: .session)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
if recipientID != env.localPeerID() {
|
||||||
|
SecureLogger.debug("🔐 Encrypted message not for me (for \(recipientID.id.prefix(8))…, I am \(env.localPeerID().id.prefix(8))…)", category: .session)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
// Update lastSeen for the peer we received from (important for private messages)
|
||||||
|
env.updatePeerLastSeen(peerID)
|
||||||
|
|
||||||
|
do {
|
||||||
|
let decrypted = try env.decrypt(packet.payload, peerID)
|
||||||
|
guard decrypted.count > 0 else { return }
|
||||||
|
|
||||||
|
// First byte indicates the payload type
|
||||||
|
let payloadType = decrypted[0]
|
||||||
|
let payloadData = decrypted.dropFirst()
|
||||||
|
|
||||||
|
guard let noisePayloadType = NoisePayloadType(rawValue: payloadType) else {
|
||||||
|
SecureLogger.warning("⚠️ Unknown noise payload type: \(payloadType)")
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
SecureLogger.debug("🔐 Decrypted noise payload type \(noisePayloadType.description) from \(peerID.id.prefix(8))…", category: .session)
|
||||||
|
|
||||||
|
let ts = Date(timeIntervalSince1970: Double(packet.timestamp) / 1000)
|
||||||
|
env.deliverNoisePayload(peerID, noisePayloadType, Data(payloadData), ts)
|
||||||
|
} catch NoiseEncryptionError.sessionNotEstablished {
|
||||||
|
// We received an encrypted message before establishing a session with this peer.
|
||||||
|
// Trigger a handshake so future messages can be decrypted.
|
||||||
|
SecureLogger.debug("🔑 Encrypted message from \(peerID.id.prefix(8))… without session; initiating handshake")
|
||||||
|
if !env.hasNoiseSession(peerID) {
|
||||||
|
env.initiateHandshake(peerID)
|
||||||
|
}
|
||||||
|
} catch {
|
||||||
|
// Decryption failed - clear the corrupted session and re-initiate handshake
|
||||||
|
// This handles cases where session state got out of sync (nonce mismatch, etc.)
|
||||||
|
SecureLogger.error("❌ Failed to decrypt message from \(peerID.id.prefix(8))…: \(error) - clearing session and re-initiating handshake")
|
||||||
|
env.clearSession(peerID)
|
||||||
|
env.initiateHandshake(peerID)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,25 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum BLENoisePayloadFactory {
|
||||||
|
static func privateMessage(content: String, messageID: String) -> Data? {
|
||||||
|
guard let payload = PrivateMessagePacket(messageID: messageID, content: content).encode() else {
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
return typedPayload(.privateMessage, payload: payload)
|
||||||
|
}
|
||||||
|
|
||||||
|
static func readReceipt(originalMessageID: String) -> Data {
|
||||||
|
typedPayload(.readReceipt, payload: Data(originalMessageID.utf8))
|
||||||
|
}
|
||||||
|
|
||||||
|
static func delivered(messageID: String) -> Data {
|
||||||
|
typedPayload(.delivered, payload: Data(messageID.utf8))
|
||||||
|
}
|
||||||
|
|
||||||
|
static func typedPayload(_ type: NoisePayloadType, payload: Data) -> Data {
|
||||||
|
var typed = Data([type.rawValue])
|
||||||
|
typed.append(payload)
|
||||||
|
return typed
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,46 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEPendingPrivateMessage: Equatable {
|
||||||
|
let content: String
|
||||||
|
let messageID: String
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLENoiseSessionQueues {
|
||||||
|
private var privateMessagesByPeerID: [PeerID: [BLEPendingPrivateMessage]] = [:]
|
||||||
|
private var typedPayloadsByPeerID: [PeerID: [Data]] = [:]
|
||||||
|
|
||||||
|
var isEmpty: Bool {
|
||||||
|
privateMessagesByPeerID.isEmpty && typedPayloadsByPeerID.isEmpty
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
privateMessagesByPeerID.removeAll()
|
||||||
|
typedPayloadsByPeerID.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func appendPrivateMessage(content: String, messageID: String, for peerID: PeerID) {
|
||||||
|
privateMessagesByPeerID[peerID, default: []].append(BLEPendingPrivateMessage(content: content, messageID: messageID))
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func takePrivateMessages(for peerID: PeerID) -> [BLEPendingPrivateMessage] {
|
||||||
|
let messages = privateMessagesByPeerID[peerID] ?? []
|
||||||
|
privateMessagesByPeerID.removeValue(forKey: peerID)
|
||||||
|
return messages
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func prependPrivateMessages(_ messages: [BLEPendingPrivateMessage], for peerID: PeerID) {
|
||||||
|
guard !messages.isEmpty else { return }
|
||||||
|
privateMessagesByPeerID[peerID, default: []].insert(contentsOf: messages, at: 0)
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func appendTypedPayload(_ payload: Data, for peerID: PeerID) {
|
||||||
|
typedPayloadsByPeerID[peerID, default: []].append(payload)
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func takeTypedPayloads(for peerID: PeerID) -> [Data] {
|
||||||
|
let payloads = typedPayloadsByPeerID[peerID] ?? []
|
||||||
|
typedPayloadsByPeerID.removeValue(forKey: peerID)
|
||||||
|
return payloads
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,137 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEOutboundFragmentPlan {
|
||||||
|
let fragmentPackets: [BitchatPacket]
|
||||||
|
let fragmentVersion: UInt8
|
||||||
|
let chunkSize: Int
|
||||||
|
let spacingMs: Int
|
||||||
|
|
||||||
|
var totalFragments: Int {
|
||||||
|
fragmentPackets.count
|
||||||
|
}
|
||||||
|
|
||||||
|
var shouldPauseScanning: Bool {
|
||||||
|
totalFragments > 4
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEOutboundFragmentPlanner {
|
||||||
|
private static let minimumChunkSize = 64
|
||||||
|
private static let fragmentIDLength = 8
|
||||||
|
|
||||||
|
static func makePlan(
|
||||||
|
for request: BLEOutboundFragmentTransferRequest,
|
||||||
|
defaultChunkSize: Int,
|
||||||
|
bleMaxMTU: Int,
|
||||||
|
fragmentID: Data = randomFragmentID()
|
||||||
|
) -> BLEOutboundFragmentPlan? {
|
||||||
|
guard fragmentID.count == fragmentIDLength,
|
||||||
|
let fullData = request.packet.toBinaryData(padding: request.pad) else {
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
let sizing = sizingPolicy(
|
||||||
|
for: request.packet,
|
||||||
|
requestedMaxChunk: request.maxChunk,
|
||||||
|
defaultChunkSize: defaultChunkSize,
|
||||||
|
bleMaxMTU: bleMaxMTU
|
||||||
|
)
|
||||||
|
|
||||||
|
let chunks = stride(from: 0, to: fullData.count, by: sizing.chunkSize).map { offset in
|
||||||
|
Data(fullData[offset..<min(offset + sizing.chunkSize, fullData.count)])
|
||||||
|
}
|
||||||
|
|
||||||
|
guard !chunks.isEmpty else { return nil }
|
||||||
|
|
||||||
|
let fragmentRecipient: Data? = {
|
||||||
|
if let directedPeer = request.directedPeer {
|
||||||
|
return Data(hexString: directedPeer.id)
|
||||||
|
}
|
||||||
|
return request.packet.recipientID
|
||||||
|
}()
|
||||||
|
|
||||||
|
let fragmentPackets = chunks.enumerated().map { index, chunk in
|
||||||
|
makeFragmentPacket(
|
||||||
|
original: request.packet,
|
||||||
|
fragmentID: fragmentID,
|
||||||
|
index: index,
|
||||||
|
total: chunks.count,
|
||||||
|
fragmentData: chunk,
|
||||||
|
fragmentRecipient: fragmentRecipient,
|
||||||
|
fragmentVersion: sizing.fragmentVersion
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
return BLEOutboundFragmentPlan(
|
||||||
|
fragmentPackets: fragmentPackets,
|
||||||
|
fragmentVersion: sizing.fragmentVersion,
|
||||||
|
chunkSize: sizing.chunkSize,
|
||||||
|
spacingMs: spacingMs(for: request)
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func sizingPolicy(
|
||||||
|
for packet: BitchatPacket,
|
||||||
|
requestedMaxChunk: Int?,
|
||||||
|
defaultChunkSize: Int,
|
||||||
|
bleMaxMTU: Int
|
||||||
|
) -> (fragmentVersion: UInt8, chunkSize: Int) {
|
||||||
|
var fragmentVersion: UInt8 = 1
|
||||||
|
var calculatedChunk = defaultChunkSize
|
||||||
|
|
||||||
|
if let route = packet.route, !route.isEmpty {
|
||||||
|
fragmentVersion = 2
|
||||||
|
let routeSize = 1 + (route.count * 8)
|
||||||
|
let overhead = 16 + 8 + 8 + routeSize + 13 + 16
|
||||||
|
calculatedChunk = max(minimumChunkSize, bleMaxMTU - overhead)
|
||||||
|
}
|
||||||
|
|
||||||
|
return (
|
||||||
|
fragmentVersion: fragmentVersion,
|
||||||
|
chunkSize: max(minimumChunkSize, requestedMaxChunk ?? calculatedChunk)
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func makeFragmentPacket(
|
||||||
|
original packet: BitchatPacket,
|
||||||
|
fragmentID: Data,
|
||||||
|
index: Int,
|
||||||
|
total: Int,
|
||||||
|
fragmentData: Data,
|
||||||
|
fragmentRecipient: Data?,
|
||||||
|
fragmentVersion: UInt8
|
||||||
|
) -> BitchatPacket {
|
||||||
|
var payload = Data()
|
||||||
|
payload.append(fragmentID)
|
||||||
|
payload.append(contentsOf: withUnsafeBytes(of: UInt16(index).bigEndian) { Data($0) })
|
||||||
|
payload.append(contentsOf: withUnsafeBytes(of: UInt16(total).bigEndian) { Data($0) })
|
||||||
|
payload.append(packet.type)
|
||||||
|
payload.append(fragmentData)
|
||||||
|
|
||||||
|
return BitchatPacket(
|
||||||
|
type: MessageType.fragment.rawValue,
|
||||||
|
senderID: packet.senderID,
|
||||||
|
recipientID: fragmentRecipient,
|
||||||
|
timestamp: packet.timestamp,
|
||||||
|
payload: payload,
|
||||||
|
signature: nil,
|
||||||
|
ttl: packet.ttl,
|
||||||
|
version: fragmentVersion,
|
||||||
|
route: packet.route,
|
||||||
|
isRSR: packet.isRSR
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func spacingMs(for request: BLEOutboundFragmentTransferRequest) -> Int {
|
||||||
|
if request.directedPeer != nil || request.packet.recipientID != nil {
|
||||||
|
return TransportConfig.bleFragmentSpacingDirectedMs
|
||||||
|
}
|
||||||
|
|
||||||
|
return TransportConfig.bleFragmentSpacingMs
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func randomFragmentID() -> Data {
|
||||||
|
Data((0..<fragmentIDLength).map { _ in UInt8.random(in: 0...255) })
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,181 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEOutboundFragmentTransferRequest {
|
||||||
|
let packet: BitchatPacket
|
||||||
|
let pad: Bool
|
||||||
|
let maxChunk: Int?
|
||||||
|
let directedPeer: PeerID?
|
||||||
|
let transferId: String?
|
||||||
|
|
||||||
|
var resolvedTransferId: String? {
|
||||||
|
guard packet.type == MessageType.fileTransfer.rawValue else { return nil }
|
||||||
|
return transferId ?? packet.payload.sha256Hex()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEOutboundFragmentTransferScheduler {
|
||||||
|
enum QueuePosition {
|
||||||
|
case front
|
||||||
|
case back
|
||||||
|
}
|
||||||
|
|
||||||
|
enum SubmitResult {
|
||||||
|
case start(request: BLEOutboundFragmentTransferRequest, reservedTransferId: String?)
|
||||||
|
case queued(request: BLEOutboundFragmentTransferRequest, transferId: String?, position: QueuePosition)
|
||||||
|
}
|
||||||
|
|
||||||
|
enum CancelResult {
|
||||||
|
case active(transferId: String, workItems: [DispatchWorkItem])
|
||||||
|
case pending(transferId: String)
|
||||||
|
case missing
|
||||||
|
}
|
||||||
|
|
||||||
|
enum SentResult: Equatable {
|
||||||
|
case progress(sentFragments: Int, totalFragments: Int)
|
||||||
|
case complete(sentFragments: Int, totalFragments: Int)
|
||||||
|
case missing
|
||||||
|
}
|
||||||
|
|
||||||
|
private struct ActiveTransferState {
|
||||||
|
let totalFragments: Int
|
||||||
|
var sentFragments: Int
|
||||||
|
var workItems: [DispatchWorkItem]
|
||||||
|
}
|
||||||
|
|
||||||
|
private var activeTransfers: [String: ActiveTransferState] = [:]
|
||||||
|
private var pendingTransfers: [BLEOutboundFragmentTransferRequest] = []
|
||||||
|
|
||||||
|
var activeCount: Int {
|
||||||
|
activeTransfers.count
|
||||||
|
}
|
||||||
|
|
||||||
|
var pendingCount: Int {
|
||||||
|
pendingTransfers.count
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() -> [(id: String, workItems: [DispatchWorkItem])] {
|
||||||
|
let active = activeTransfers.map { ($0.key, $0.value.workItems) }
|
||||||
|
activeTransfers.removeAll()
|
||||||
|
pendingTransfers.removeAll()
|
||||||
|
return active
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func submit(
|
||||||
|
_ request: BLEOutboundFragmentTransferRequest,
|
||||||
|
maxConcurrentTransfers: Int
|
||||||
|
) -> SubmitResult {
|
||||||
|
guard let transferId = request.resolvedTransferId else {
|
||||||
|
return .start(request: request, reservedTransferId: nil)
|
||||||
|
}
|
||||||
|
|
||||||
|
guard activeTransfers.count < maxConcurrentTransfers else {
|
||||||
|
pendingTransfers.append(request)
|
||||||
|
return .queued(request: request, transferId: transferId, position: .back)
|
||||||
|
}
|
||||||
|
|
||||||
|
guard activeTransfers[transferId] == nil else {
|
||||||
|
pendingTransfers.insert(request, at: 0)
|
||||||
|
return .queued(request: request, transferId: transferId, position: .front)
|
||||||
|
}
|
||||||
|
|
||||||
|
activeTransfers[transferId] = ActiveTransferState(totalFragments: 0, sentFragments: 0, workItems: [])
|
||||||
|
return .start(request: request, reservedTransferId: transferId)
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func activateReservedTransfer(
|
||||||
|
id transferId: String,
|
||||||
|
totalFragments: Int,
|
||||||
|
workItems: [DispatchWorkItem]
|
||||||
|
) -> Bool {
|
||||||
|
guard activeTransfers[transferId] != nil else { return false }
|
||||||
|
activeTransfers[transferId] = ActiveTransferState(
|
||||||
|
totalFragments: totalFragments,
|
||||||
|
sentFragments: 0,
|
||||||
|
workItems: workItems
|
||||||
|
)
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func updateWorkItems(_ workItems: [DispatchWorkItem], for transferId: String) -> Bool {
|
||||||
|
guard var state = activeTransfers[transferId] else { return false }
|
||||||
|
state.workItems = workItems
|
||||||
|
activeTransfers[transferId] = state
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func releaseReservation(_ transferId: String) -> [DispatchWorkItem]? {
|
||||||
|
activeTransfers.removeValue(forKey: transferId)?.workItems
|
||||||
|
}
|
||||||
|
|
||||||
|
func isActive(_ transferId: String) -> Bool {
|
||||||
|
activeTransfers[transferId] != nil
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func cancelTransfer(_ transferId: String) -> CancelResult {
|
||||||
|
if let active = activeTransfers.removeValue(forKey: transferId) {
|
||||||
|
return .active(transferId: transferId, workItems: active.workItems)
|
||||||
|
}
|
||||||
|
|
||||||
|
if let pendingIndex = pendingTransfers.firstIndex(where: { $0.resolvedTransferId == transferId || $0.transferId == transferId }) {
|
||||||
|
pendingTransfers.remove(at: pendingIndex)
|
||||||
|
return .pending(transferId: transferId)
|
||||||
|
}
|
||||||
|
|
||||||
|
return .missing
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func markFragmentSent(transferId: String) -> SentResult {
|
||||||
|
guard var state = activeTransfers[transferId] else { return .missing }
|
||||||
|
|
||||||
|
state.sentFragments = min(state.sentFragments + 1, state.totalFragments)
|
||||||
|
let isComplete = state.sentFragments >= state.totalFragments
|
||||||
|
|
||||||
|
if isComplete {
|
||||||
|
activeTransfers.removeValue(forKey: transferId)
|
||||||
|
return .complete(sentFragments: state.sentFragments, totalFragments: state.totalFragments)
|
||||||
|
}
|
||||||
|
|
||||||
|
activeTransfers[transferId] = state
|
||||||
|
return .progress(sentFragments: state.sentFragments, totalFragments: state.totalFragments)
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func reservePendingStarts(maxConcurrentTransfers: Int) -> [SubmitResult] {
|
||||||
|
var availableSlots = max(0, maxConcurrentTransfers - activeTransfers.count)
|
||||||
|
guard availableSlots > 0, !pendingTransfers.isEmpty else { return [] }
|
||||||
|
|
||||||
|
var results: [SubmitResult] = []
|
||||||
|
var blockedFront: [BLEOutboundFragmentTransferRequest] = []
|
||||||
|
|
||||||
|
while availableSlots > 0, !pendingTransfers.isEmpty {
|
||||||
|
let request = pendingTransfers.removeFirst()
|
||||||
|
availableSlots -= 1
|
||||||
|
|
||||||
|
guard let transferId = request.resolvedTransferId else {
|
||||||
|
results.append(.start(request: request, reservedTransferId: nil))
|
||||||
|
continue
|
||||||
|
}
|
||||||
|
|
||||||
|
guard activeTransfers.count < maxConcurrentTransfers else {
|
||||||
|
pendingTransfers.insert(request, at: 0)
|
||||||
|
results.append(.queued(request: request, transferId: transferId, position: .front))
|
||||||
|
break
|
||||||
|
}
|
||||||
|
|
||||||
|
guard activeTransfers[transferId] == nil else {
|
||||||
|
blockedFront.append(request)
|
||||||
|
results.append(.queued(request: request, transferId: transferId, position: .front))
|
||||||
|
continue
|
||||||
|
}
|
||||||
|
|
||||||
|
activeTransfers[transferId] = ActiveTransferState(totalFragments: 0, sentFragments: 0, workItems: [])
|
||||||
|
results.append(.start(request: request, reservedTransferId: transferId))
|
||||||
|
}
|
||||||
|
|
||||||
|
if !blockedFront.isEmpty {
|
||||||
|
pendingTransfers.insert(contentsOf: blockedFront, at: 0)
|
||||||
|
}
|
||||||
|
|
||||||
|
return results
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,91 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEOutboundLinkPlan: Equatable {
|
||||||
|
let directedPeerHint: PeerID?
|
||||||
|
let fragmentChunkSize: Int?
|
||||||
|
let selectedLinks: BLEFanoutSelection
|
||||||
|
let shouldSpoolDirectedPacket: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEOutboundLinkPlanner {
|
||||||
|
static func plan(
|
||||||
|
packet: BitchatPacket,
|
||||||
|
dataCount: Int,
|
||||||
|
peripheralIDs: [String],
|
||||||
|
peripheralWriteLimits: [Int],
|
||||||
|
centralIDs: [String],
|
||||||
|
centralNotifyLimits: [Int],
|
||||||
|
ingressRecord: BLEIngressLinkRecord?,
|
||||||
|
excludedLinks: Set<BLEIngressLinkID>,
|
||||||
|
peripheralPeerBindings: [String: PeerID] = [:],
|
||||||
|
centralPeerBindings: [String: PeerID] = [:],
|
||||||
|
directedOnlyPeer: PeerID?
|
||||||
|
) -> BLEOutboundLinkPlan {
|
||||||
|
if let minLimit = minimumLinkLimit(
|
||||||
|
peripheralWriteLimits: peripheralWriteLimits,
|
||||||
|
centralNotifyLimits: centralNotifyLimits
|
||||||
|
), packet.type != MessageType.fragment.rawValue,
|
||||||
|
dataCount > minLimit {
|
||||||
|
return BLEOutboundLinkPlan(
|
||||||
|
directedPeerHint: directedPeerHint(for: packet, explicitPeer: directedOnlyPeer),
|
||||||
|
fragmentChunkSize: BLEOutboundPacketPolicy.fragmentChunkSize(forLinkLimit: minLimit),
|
||||||
|
selectedLinks: BLEFanoutSelection(peripheralIDs: [], centralIDs: []),
|
||||||
|
shouldSpoolDirectedPacket: false
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
let directedPeerHint = directedPeerHint(for: packet, explicitPeer: directedOnlyPeer)
|
||||||
|
let selectedLinks = BLEFanoutSelector.selectLinks(
|
||||||
|
peripheralIDs: peripheralIDs,
|
||||||
|
centralIDs: centralIDs,
|
||||||
|
ingressLink: ingressRecord?.link,
|
||||||
|
excludedLinks: excludedLinks,
|
||||||
|
peripheralPeerBindings: peripheralPeerBindings,
|
||||||
|
centralPeerBindings: centralPeerBindings,
|
||||||
|
directedPeerHint: directedPeerHint,
|
||||||
|
packetType: packet.type,
|
||||||
|
messageID: BLEOutboundPacketPolicy.messageID(for: packet)
|
||||||
|
)
|
||||||
|
|
||||||
|
return BLEOutboundLinkPlan(
|
||||||
|
directedPeerHint: directedPeerHint,
|
||||||
|
fragmentChunkSize: nil,
|
||||||
|
selectedLinks: selectedLinks,
|
||||||
|
shouldSpoolDirectedPacket: shouldSpoolDirectedPacket(
|
||||||
|
directedPeerHint: directedPeerHint,
|
||||||
|
selectedLinks: selectedLinks,
|
||||||
|
packetType: packet.type
|
||||||
|
)
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
static func directedPeerHint(for packet: BitchatPacket, explicitPeer: PeerID?) -> PeerID? {
|
||||||
|
if let explicitPeer { return explicitPeer }
|
||||||
|
if let recipient = PeerID(str: packet.recipientID?.hexEncodedString()), !recipient.isEmpty {
|
||||||
|
return recipient
|
||||||
|
}
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
static func minimumLinkLimit(peripheralWriteLimits: [Int], centralNotifyLimits: [Int]) -> Int? {
|
||||||
|
[peripheralWriteLimits.min(), centralNotifyLimits.min()]
|
||||||
|
.compactMap { $0 }
|
||||||
|
.min()
|
||||||
|
}
|
||||||
|
|
||||||
|
static func shouldSpoolDirectedPacket(
|
||||||
|
directedPeerHint: PeerID?,
|
||||||
|
selectedLinks: BLEFanoutSelection,
|
||||||
|
packetType: UInt8
|
||||||
|
) -> Bool {
|
||||||
|
guard directedPeerHint != nil,
|
||||||
|
selectedLinks.peripheralIDs.isEmpty,
|
||||||
|
selectedLinks.centralIDs.isEmpty else {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
|
||||||
|
return packetType == MessageType.noiseEncrypted.rawValue ||
|
||||||
|
packetType == MessageType.noiseHandshake.rawValue
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,47 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEPendingNotification<Target> {
|
||||||
|
let data: Data
|
||||||
|
let targets: [Target]?
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEOutboundNotificationBuffer<Target> {
|
||||||
|
enum EnqueueResult {
|
||||||
|
case enqueued(count: Int)
|
||||||
|
case full(count: Int)
|
||||||
|
}
|
||||||
|
|
||||||
|
private var notifications: [BLEPendingNotification<Target>] = []
|
||||||
|
|
||||||
|
var count: Int {
|
||||||
|
notifications.count
|
||||||
|
}
|
||||||
|
|
||||||
|
var isEmpty: Bool {
|
||||||
|
notifications.isEmpty
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
notifications.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func enqueue(data: Data, targets: [Target]?, capCount: Int) -> EnqueueResult {
|
||||||
|
guard notifications.count < capCount else {
|
||||||
|
return .full(count: notifications.count)
|
||||||
|
}
|
||||||
|
|
||||||
|
notifications.append(BLEPendingNotification(data: data, targets: targets))
|
||||||
|
return .enqueued(count: notifications.count)
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func takeAll() -> [BLEPendingNotification<Target>] {
|
||||||
|
let pending = notifications
|
||||||
|
notifications.removeAll()
|
||||||
|
return pending
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func prepend(_ pending: [BLEPendingNotification<Target>]) {
|
||||||
|
guard !pending.isEmpty else { return }
|
||||||
|
notifications.insert(contentsOf: pending, at: 0)
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,43 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum BLEOutboundPacketPolicy {
|
||||||
|
private static let fragmentFrameOverhead = 13 + 8 + 8 + 13
|
||||||
|
|
||||||
|
static func messageID(for packet: BitchatPacket) -> String {
|
||||||
|
BLEIngressLinkRegistry.messageID(for: packet)
|
||||||
|
}
|
||||||
|
|
||||||
|
static func padsBLEFrame(for packetType: UInt8) -> Bool {
|
||||||
|
switch MessageType(rawValue: packetType) {
|
||||||
|
case .noiseEncrypted, .noiseHandshake:
|
||||||
|
return true
|
||||||
|
case .none, .announce, .message, .leave, .requestSync, .fragment, .fileTransfer, .courierEnvelope:
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
static func priority(for packet: BitchatPacket, data: Data) -> BLEOutboundWritePriority {
|
||||||
|
guard let messageType = MessageType(rawValue: packet.type) else { return .low }
|
||||||
|
switch messageType {
|
||||||
|
case .fragment:
|
||||||
|
return .fragment(totalFragments: fragmentTotalCount(from: packet.payload))
|
||||||
|
case .fileTransfer:
|
||||||
|
return .fileTransfer
|
||||||
|
default:
|
||||||
|
return .high
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
static func fragmentChunkSize(forLinkLimit limit: Int) -> Int {
|
||||||
|
max(64, limit - fragmentFrameOverhead)
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func fragmentTotalCount(from payload: Data) -> Int {
|
||||||
|
guard payload.count >= 12 else { return Int(UInt16.max) }
|
||||||
|
let totalHigh = Int(payload[10])
|
||||||
|
let totalLow = Int(payload[11])
|
||||||
|
let total = (totalHigh << 8) | totalLow
|
||||||
|
return max(total, 1)
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,83 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEOutboundWritePriority: Comparable {
|
||||||
|
let level: Int
|
||||||
|
let suborder: Int
|
||||||
|
|
||||||
|
static let high = BLEOutboundWritePriority(level: 0, suborder: 0)
|
||||||
|
|
||||||
|
static func fragment(totalFragments: Int) -> BLEOutboundWritePriority {
|
||||||
|
BLEOutboundWritePriority(level: 1, suborder: max(1, min(totalFragments, Int(UInt16.max))))
|
||||||
|
}
|
||||||
|
|
||||||
|
static let fileTransfer = BLEOutboundWritePriority(level: 2, suborder: Int.max - 1)
|
||||||
|
static let low = BLEOutboundWritePriority(level: 2, suborder: Int.max)
|
||||||
|
|
||||||
|
static func < (lhs: BLEOutboundWritePriority, rhs: BLEOutboundWritePriority) -> Bool {
|
||||||
|
if lhs.level != rhs.level { return lhs.level < rhs.level }
|
||||||
|
return lhs.suborder < rhs.suborder
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEPendingWrite {
|
||||||
|
let priority: BLEOutboundWritePriority
|
||||||
|
let data: Data
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEOutboundWriteBuffer {
|
||||||
|
enum EnqueueResult {
|
||||||
|
case enqueued(trimmedBytes: Int, remainingBytes: Int)
|
||||||
|
case oversized(bytes: Int)
|
||||||
|
}
|
||||||
|
|
||||||
|
private var writesByPeripheralID: [String: [BLEPendingWrite]] = [:]
|
||||||
|
|
||||||
|
var peripheralIDs: [String] {
|
||||||
|
Array(writesByPeripheralID.keys)
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
writesByPeripheralID.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func enqueue(
|
||||||
|
data: Data,
|
||||||
|
for peripheralID: String,
|
||||||
|
priority: BLEOutboundWritePriority,
|
||||||
|
capBytes: Int
|
||||||
|
) -> EnqueueResult {
|
||||||
|
guard data.count <= capBytes else {
|
||||||
|
return .oversized(bytes: data.count)
|
||||||
|
}
|
||||||
|
|
||||||
|
var queue = writesByPeripheralID[peripheralID] ?? []
|
||||||
|
let item = BLEPendingWrite(priority: priority, data: data)
|
||||||
|
let insertIndex = queue.firstIndex { item.priority < $0.priority } ?? queue.count
|
||||||
|
queue.insert(item, at: insertIndex)
|
||||||
|
|
||||||
|
var total = queue.reduce(0) { $0 + $1.data.count }
|
||||||
|
var trimmedBytes = 0
|
||||||
|
|
||||||
|
while total > capBytes && !queue.isEmpty {
|
||||||
|
let removed = queue.removeLast()
|
||||||
|
trimmedBytes += removed.data.count
|
||||||
|
total -= removed.data.count
|
||||||
|
}
|
||||||
|
|
||||||
|
writesByPeripheralID[peripheralID] = queue.isEmpty ? nil : queue
|
||||||
|
return .enqueued(trimmedBytes: trimmedBytes, remainingBytes: total)
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func takeAll(for peripheralID: String) -> [BLEPendingWrite] {
|
||||||
|
let items = writesByPeripheralID[peripheralID] ?? []
|
||||||
|
writesByPeripheralID[peripheralID] = nil
|
||||||
|
return items
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func prepend(_ items: [BLEPendingWrite], for peripheralID: String) {
|
||||||
|
guard !items.isEmpty else { return }
|
||||||
|
var existing = writesByPeripheralID[peripheralID] ?? []
|
||||||
|
existing.insert(contentsOf: items, at: 0)
|
||||||
|
writesByPeripheralID[peripheralID] = existing
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,27 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum BLEPacketFreshnessPolicy {
|
||||||
|
static let defaultMaxAgeSeconds: TimeInterval = 900
|
||||||
|
|
||||||
|
static func isBroadcastRecipient(_ recipientID: Data?) -> Bool {
|
||||||
|
guard let recipientID else { return true }
|
||||||
|
return recipientID.count == 8 && recipientID.allSatisfy { $0 == 0xFF }
|
||||||
|
}
|
||||||
|
|
||||||
|
static func isStale(
|
||||||
|
timestampMilliseconds: UInt64,
|
||||||
|
now: Date,
|
||||||
|
maxAgeSeconds: TimeInterval = defaultMaxAgeSeconds
|
||||||
|
) -> Bool {
|
||||||
|
let nowMilliseconds = UInt64(now.timeIntervalSince1970 * 1000)
|
||||||
|
let maxAgeMilliseconds = UInt64(maxAgeSeconds * 1000)
|
||||||
|
guard nowMilliseconds >= maxAgeMilliseconds else { return false }
|
||||||
|
return timestampMilliseconds < nowMilliseconds - maxAgeMilliseconds
|
||||||
|
}
|
||||||
|
|
||||||
|
static func ageSeconds(timestampMilliseconds: UInt64, now: Date) -> Double {
|
||||||
|
let nowMilliseconds = UInt64(now.timeIntervalSince1970 * 1000)
|
||||||
|
guard nowMilliseconds >= timestampMilliseconds else { return 0 }
|
||||||
|
return Double(nowMilliseconds - timestampMilliseconds) / 1000.0
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,25 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEPeerEventDebouncer {
|
||||||
|
private var lastEmitByPeer: [PeerID: Date] = [:]
|
||||||
|
|
||||||
|
var count: Int {
|
||||||
|
lastEmitByPeer.count
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
mutating func shouldEmit(peerID: PeerID, now: Date, minimumInterval: TimeInterval) -> Bool {
|
||||||
|
if let lastEmit = lastEmitByPeer[peerID],
|
||||||
|
now.timeIntervalSince(lastEmit) < minimumInterval {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
|
||||||
|
lastEmitByPeer[peerID] = now
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
lastEmitByPeer.removeAll()
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,43 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum BLEPeerPublishDecision: Equatable {
|
||||||
|
case publishNow
|
||||||
|
case schedule(delay: TimeInterval)
|
||||||
|
case skip
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEPeerPublishCoalescer {
|
||||||
|
private var lastPublishAt: Date
|
||||||
|
private var publishPending: Bool
|
||||||
|
private let minimumInterval: TimeInterval
|
||||||
|
|
||||||
|
init(
|
||||||
|
lastPublishAt: Date = .distantPast,
|
||||||
|
publishPending: Bool = false,
|
||||||
|
minimumInterval: TimeInterval = 0.1
|
||||||
|
) {
|
||||||
|
self.lastPublishAt = lastPublishAt
|
||||||
|
self.publishPending = publishPending
|
||||||
|
self.minimumInterval = minimumInterval
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func requestPublish(now: Date) -> BLEPeerPublishDecision {
|
||||||
|
let elapsed = now.timeIntervalSince(lastPublishAt)
|
||||||
|
if elapsed >= minimumInterval {
|
||||||
|
lastPublishAt = now
|
||||||
|
return .publishNow
|
||||||
|
}
|
||||||
|
|
||||||
|
guard !publishPending else {
|
||||||
|
return .skip
|
||||||
|
}
|
||||||
|
|
||||||
|
publishPending = true
|
||||||
|
return .schedule(delay: minimumInterval - elapsed)
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func scheduledPublishFired(now: Date) {
|
||||||
|
lastPublishAt = now
|
||||||
|
publishPending = false
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,211 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEPeerInfo: Equatable {
|
||||||
|
let peerID: PeerID
|
||||||
|
var nickname: String
|
||||||
|
var isConnected: Bool
|
||||||
|
var noisePublicKey: Data?
|
||||||
|
var signingPublicKey: Data?
|
||||||
|
var isVerifiedNickname: Bool
|
||||||
|
var lastSeen: Date
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEPeerAnnounceUpdate: Equatable {
|
||||||
|
let isNewPeer: Bool
|
||||||
|
let wasDisconnected: Bool
|
||||||
|
let previousNickname: String?
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEPeerLinkPresence: Equatable {
|
||||||
|
var hasPeripheral: Bool
|
||||||
|
var hasCentral: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLERemovedPeer: Equatable {
|
||||||
|
let peerID: PeerID
|
||||||
|
let nickname: String
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEPeerConnectivityChanges: Equatable {
|
||||||
|
var disconnectedPeerIDs: [PeerID] = []
|
||||||
|
var removedPeers: [BLERemovedPeer] = []
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEPeerRegistry {
|
||||||
|
private var peers: [PeerID: BLEPeerInfo] = [:]
|
||||||
|
|
||||||
|
var isEmpty: Bool {
|
||||||
|
peers.isEmpty
|
||||||
|
}
|
||||||
|
|
||||||
|
var count: Int {
|
||||||
|
peers.count
|
||||||
|
}
|
||||||
|
|
||||||
|
var peerIDs: [PeerID] {
|
||||||
|
Array(peers.keys)
|
||||||
|
}
|
||||||
|
|
||||||
|
var connectedCount: Int {
|
||||||
|
peers.values.filter(\.isConnected).count
|
||||||
|
}
|
||||||
|
|
||||||
|
var connectedPeerIDs: [PeerID] {
|
||||||
|
peers.values.compactMap { $0.isConnected ? $0.peerID : nil }
|
||||||
|
}
|
||||||
|
|
||||||
|
var connectedRoutingData: [Data] {
|
||||||
|
peers.values.filter(\.isConnected).compactMap { $0.peerID.routingData }
|
||||||
|
}
|
||||||
|
|
||||||
|
var snapshotByID: [PeerID: BLEPeerInfo] {
|
||||||
|
peers
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
peers.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
func info(for peerID: PeerID) -> BLEPeerInfo? {
|
||||||
|
peers[peerID]
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func upsert(_ info: BLEPeerInfo) {
|
||||||
|
peers[info.peerID] = info
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
mutating func remove(_ peerID: PeerID) -> BLEPeerInfo? {
|
||||||
|
peers.removeValue(forKey: peerID)
|
||||||
|
}
|
||||||
|
|
||||||
|
func isConnected(_ peerID: PeerID) -> Bool {
|
||||||
|
peers[peerID.toShort()]?.isConnected ?? false
|
||||||
|
}
|
||||||
|
|
||||||
|
func isReachable(_ peerID: PeerID, now: Date) -> Bool {
|
||||||
|
let shortID = peerID.toShort()
|
||||||
|
let meshAttached = connectedCount > 0
|
||||||
|
guard let info = peers[shortID] else { return false }
|
||||||
|
if info.isConnected { return true }
|
||||||
|
guard meshAttached else { return false }
|
||||||
|
|
||||||
|
let retention: TimeInterval = info.isVerifiedNickname
|
||||||
|
? TransportConfig.bleReachabilityRetentionVerifiedSeconds
|
||||||
|
: TransportConfig.bleReachabilityRetentionUnverifiedSeconds
|
||||||
|
return now.timeIntervalSince(info.lastSeen) <= retention
|
||||||
|
}
|
||||||
|
|
||||||
|
func nickname(for peerID: PeerID, connectedOnly: Bool) -> String? {
|
||||||
|
guard let peer = peers[peerID] else { return nil }
|
||||||
|
if connectedOnly && !peer.isConnected { return nil }
|
||||||
|
return peer.nickname
|
||||||
|
}
|
||||||
|
|
||||||
|
func fingerprint(for peerID: PeerID) -> String? {
|
||||||
|
peers[peerID]?.noisePublicKey?.sha256Fingerprint()
|
||||||
|
}
|
||||||
|
|
||||||
|
func displayNicknames(selfNickname: String) -> [PeerID: String] {
|
||||||
|
let connected = peers.filter { $0.value.isConnected }
|
||||||
|
let tuples = connected.map { ($0.key, $0.value.nickname, true) }
|
||||||
|
return PeerDisplayNameResolver.resolve(tuples, selfNickname: selfNickname)
|
||||||
|
}
|
||||||
|
|
||||||
|
func transportSnapshots(selfNickname: String) -> [TransportPeerSnapshot] {
|
||||||
|
let snapshot = Array(peers.values)
|
||||||
|
let resolvedNames = PeerDisplayNameResolver.resolve(
|
||||||
|
snapshot.map { ($0.peerID, $0.nickname, $0.isConnected) },
|
||||||
|
selfNickname: selfNickname
|
||||||
|
)
|
||||||
|
return snapshot.map { info in
|
||||||
|
TransportPeerSnapshot(
|
||||||
|
peerID: info.peerID,
|
||||||
|
nickname: resolvedNames[info.peerID] ?? info.nickname,
|
||||||
|
isConnected: info.isConnected,
|
||||||
|
noisePublicKey: info.noisePublicKey,
|
||||||
|
lastSeen: info.lastSeen
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
func collisionResolvedNickname(for peerID: PeerID, selfNickname: String) -> String? {
|
||||||
|
guard let info = peers[peerID], info.isVerifiedNickname else { return nil }
|
||||||
|
let hasCollision = peers.values.contains {
|
||||||
|
$0.isConnected && $0.nickname == info.nickname && $0.peerID != peerID
|
||||||
|
} || selfNickname == info.nickname
|
||||||
|
return hasCollision ? info.nickname + "#" + String(peerID.id.prefix(4)) : info.nickname
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func markDisconnected(_ peerID: PeerID) {
|
||||||
|
guard var info = peers[peerID] else { return }
|
||||||
|
info.isConnected = false
|
||||||
|
peers[peerID] = info
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func updateLastSeen(_ peerID: PeerID, at date: Date) {
|
||||||
|
guard var peer = peers[peerID] else { return }
|
||||||
|
peer.lastSeen = date
|
||||||
|
peers[peerID] = peer
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func upsertVerifiedAnnounce(
|
||||||
|
peerID: PeerID,
|
||||||
|
nickname: String,
|
||||||
|
noisePublicKey: Data,
|
||||||
|
signingPublicKey: Data?,
|
||||||
|
isConnected: Bool,
|
||||||
|
now: Date
|
||||||
|
) -> BLEPeerAnnounceUpdate {
|
||||||
|
let existing = peers[peerID]
|
||||||
|
let update = BLEPeerAnnounceUpdate(
|
||||||
|
isNewPeer: existing == nil,
|
||||||
|
wasDisconnected: existing?.isConnected == false,
|
||||||
|
previousNickname: existing?.nickname
|
||||||
|
)
|
||||||
|
|
||||||
|
peers[peerID] = BLEPeerInfo(
|
||||||
|
peerID: existing?.peerID ?? peerID,
|
||||||
|
nickname: nickname,
|
||||||
|
isConnected: isConnected,
|
||||||
|
noisePublicKey: noisePublicKey,
|
||||||
|
signingPublicKey: signingPublicKey,
|
||||||
|
isVerifiedNickname: true,
|
||||||
|
lastSeen: now
|
||||||
|
)
|
||||||
|
|
||||||
|
return update
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func reconcileConnectivity(
|
||||||
|
now: Date,
|
||||||
|
linkStates: [PeerID: BLEPeerLinkPresence]
|
||||||
|
) -> BLEPeerConnectivityChanges {
|
||||||
|
var changes = BLEPeerConnectivityChanges()
|
||||||
|
|
||||||
|
for (peerID, peer) in Array(peers) {
|
||||||
|
let age = now.timeIntervalSince(peer.lastSeen)
|
||||||
|
let retention: TimeInterval = peer.isVerifiedNickname
|
||||||
|
? TransportConfig.bleReachabilityRetentionVerifiedSeconds
|
||||||
|
: TransportConfig.bleReachabilityRetentionUnverifiedSeconds
|
||||||
|
|
||||||
|
if peer.isConnected && age > TransportConfig.blePeerInactivityTimeoutSeconds {
|
||||||
|
let state = linkStates[peerID] ?? BLEPeerLinkPresence(hasPeripheral: false, hasCentral: false)
|
||||||
|
if !state.hasPeripheral && !state.hasCentral {
|
||||||
|
var updated = peer
|
||||||
|
updated.isConnected = false
|
||||||
|
peers[peerID] = updated
|
||||||
|
changes.disconnectedPeerIDs.append(peerID)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
if !peer.isConnected && age > retention {
|
||||||
|
peers.removeValue(forKey: peerID)
|
||||||
|
changes.removedPeers.append(BLERemovedPeer(peerID: peerID, nickname: peer.nickname))
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
return changes
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,60 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum BLEPeerSenderDisplayName {
|
||||||
|
static func resolveKnownPeer(
|
||||||
|
peerID: PeerID,
|
||||||
|
localPeerID: PeerID,
|
||||||
|
localNickname: String,
|
||||||
|
peers: [PeerID: BLEPeerInfo],
|
||||||
|
allowConnectedUnverified: Bool
|
||||||
|
) -> String? {
|
||||||
|
if peerID == localPeerID {
|
||||||
|
return localNickname
|
||||||
|
}
|
||||||
|
|
||||||
|
guard let info = peers[peerID] else { return nil }
|
||||||
|
|
||||||
|
if info.isVerifiedNickname {
|
||||||
|
return collisionResolvedName(
|
||||||
|
displayName: info.nickname,
|
||||||
|
collisionNickname: info.nickname,
|
||||||
|
peerID: peerID,
|
||||||
|
localNickname: localNickname,
|
||||||
|
peers: peers
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
if allowConnectedUnverified, info.isConnected {
|
||||||
|
let displayName = info.nickname.isEmpty ? anonymousNickname(for: peerID) : info.nickname
|
||||||
|
return collisionResolvedName(
|
||||||
|
displayName: displayName,
|
||||||
|
collisionNickname: info.nickname,
|
||||||
|
peerID: peerID,
|
||||||
|
localNickname: localNickname,
|
||||||
|
peers: peers
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
return nil
|
||||||
|
}
|
||||||
|
|
||||||
|
static func anonymousNickname(for peerID: PeerID) -> String {
|
||||||
|
"anon" + String(peerID.id.prefix(4))
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func collisionResolvedName(
|
||||||
|
displayName: String,
|
||||||
|
collisionNickname: String,
|
||||||
|
peerID: PeerID,
|
||||||
|
localNickname: String,
|
||||||
|
peers: [PeerID: BLEPeerInfo]
|
||||||
|
) -> String {
|
||||||
|
let hasCollision = peers.values.contains {
|
||||||
|
$0.isConnected && $0.nickname == collisionNickname && $0.peerID != peerID
|
||||||
|
} || localNickname == collisionNickname
|
||||||
|
|
||||||
|
guard hasCollision else { return displayName }
|
||||||
|
return displayName + "#" + String(peerID.id.prefix(4))
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,131 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import BitLogger
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
/// Narrow environment for `BLEPublicMessageHandler`.
|
||||||
|
///
|
||||||
|
/// All queue hops (collections registry reads, BLE-queue link-state reads,
|
||||||
|
/// main-actor UI notification) live inside the closures supplied by
|
||||||
|
/// `BLEService`, keeping the handler queue-agnostic and synchronously testable.
|
||||||
|
struct BLEPublicMessageHandlerEnvironment {
|
||||||
|
/// Local peer identity at the time the message is handled.
|
||||||
|
let localPeerID: () -> PeerID
|
||||||
|
/// Local nickname used for sender resolution and collision checks.
|
||||||
|
let localNickname: () -> String
|
||||||
|
/// Current time source.
|
||||||
|
let now: () -> Date
|
||||||
|
/// Snapshot of known peers keyed by ID (registry read).
|
||||||
|
let peersSnapshot: () -> [PeerID: BLEPeerInfo]
|
||||||
|
/// Verifies a packet's signature against a known signing public key.
|
||||||
|
let verifyPacketSignature: (_ packet: BitchatPacket, _ signingPublicKey: Data) -> Bool
|
||||||
|
/// Resolves a display name from a verified packet signature for peers missing from the registry.
|
||||||
|
let signedSenderDisplayName: (_ packet: BitchatPacket, _ peerID: PeerID) -> String?
|
||||||
|
/// Tracks the broadcast message packet for gossip sync.
|
||||||
|
let trackPacketSeen: (BitchatPacket) -> Void
|
||||||
|
/// Direct link state for the peer (BLE-queue read).
|
||||||
|
let linkState: (PeerID) -> (hasPeripheral: Bool, hasCentral: Bool)
|
||||||
|
/// Resolves and consumes the original message ID for our own re-broadcast.
|
||||||
|
let takeSelfBroadcastMessageID: (BitchatPacket) -> String?
|
||||||
|
/// Delivers `.publicMessageReceived` to the UI as one main-actor hop.
|
||||||
|
let deliverPublicMessage: (
|
||||||
|
_ peerID: PeerID,
|
||||||
|
_ nickname: String,
|
||||||
|
_ content: String,
|
||||||
|
_ timestamp: Date,
|
||||||
|
_ messageID: String?
|
||||||
|
) -> Void
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Orchestrates inbound public (broadcast) messages: freshness/self-echo
|
||||||
|
/// policy, sender display-name resolution, gossip tracking, payload decoding,
|
||||||
|
/// and UI delivery.
|
||||||
|
final class BLEPublicMessageHandler {
|
||||||
|
private let environment: BLEPublicMessageHandlerEnvironment
|
||||||
|
|
||||||
|
init(environment: BLEPublicMessageHandlerEnvironment) {
|
||||||
|
self.environment = environment
|
||||||
|
}
|
||||||
|
|
||||||
|
func handle(_ packet: BitchatPacket, from peerID: PeerID) {
|
||||||
|
let env = environment
|
||||||
|
let now = env.now()
|
||||||
|
let messageDecision = BLEPublicMessagePolicy.evaluate(
|
||||||
|
packet: packet,
|
||||||
|
from: peerID,
|
||||||
|
localPeerID: env.localPeerID(),
|
||||||
|
now: now
|
||||||
|
)
|
||||||
|
|
||||||
|
let messagePolicy: BLEPublicMessageAcceptance
|
||||||
|
switch messageDecision {
|
||||||
|
case .accept(let acceptance):
|
||||||
|
messagePolicy = acceptance
|
||||||
|
case .reject(.selfEcho):
|
||||||
|
return
|
||||||
|
case .reject(.staleBroadcast(let ageSeconds)):
|
||||||
|
SecureLogger.debug("⏰ Ignoring stale broadcast message from \(peerID.id.prefix(8))… (age: \(ageSeconds)s)", category: .session)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
// Snapshot peers to avoid concurrent mutation while iterating during nickname collision checks.
|
||||||
|
let peersSnapshot = env.peersSnapshot()
|
||||||
|
|
||||||
|
// Public messages are always signed by their sender. `senderID` is
|
||||||
|
// attacker-controlled, so registry membership alone is NOT proof of
|
||||||
|
// identity — a peer in the registry as "verified" could be impersonated
|
||||||
|
// by anyone spoofing their senderID. Require a valid packet signature
|
||||||
|
// from the claimed sender (our own echoes are exempt; they are matched
|
||||||
|
// by self-broadcast tracking below).
|
||||||
|
//
|
||||||
|
// Verify against the signing key already in the (synchronously-updated)
|
||||||
|
// peer registry first: identity-cache persistence is asynchronous, so a
|
||||||
|
// message arriving right after a verified announce would otherwise be
|
||||||
|
// dropped because `signedSenderDisplayName` only searches the persisted
|
||||||
|
// cache. Fall back to that persisted-identity lookup for peers not (yet)
|
||||||
|
// in the registry.
|
||||||
|
let isSelf = peerID == env.localPeerID()
|
||||||
|
let registrySigningKey = peersSnapshot[peerID]?.signingPublicKey
|
||||||
|
let verifiedViaRegistry = !isSelf
|
||||||
|
&& (registrySigningKey.map { env.verifyPacketSignature(packet, $0) } ?? false)
|
||||||
|
let signedDisplayName = (isSelf || verifiedViaRegistry) ? nil : env.signedSenderDisplayName(packet, peerID)
|
||||||
|
guard isSelf || verifiedViaRegistry || signedDisplayName != nil else {
|
||||||
|
SecureLogger.warning("🚫 Dropping public message with missing/invalid signature for claimed sender \(peerID.id.prefix(8))…", category: .security)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
// Authenticity is established; prefer the registry's collision-resolved
|
||||||
|
// display name, then the signature-derived name.
|
||||||
|
guard let senderNickname = BLEPeerSenderDisplayName.resolveKnownPeer(
|
||||||
|
peerID: peerID,
|
||||||
|
localPeerID: env.localPeerID(),
|
||||||
|
localNickname: env.localNickname(),
|
||||||
|
peers: peersSnapshot,
|
||||||
|
allowConnectedUnverified: false
|
||||||
|
) ?? signedDisplayName else {
|
||||||
|
SecureLogger.warning("🚫 Dropping public message from unknown peer \(peerID.id.prefix(8))…", category: .security)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
|
||||||
|
if messagePolicy.shouldTrackForSync {
|
||||||
|
env.trackPacketSeen(packet)
|
||||||
|
}
|
||||||
|
|
||||||
|
guard let content = String(data: packet.payload, encoding: .utf8) else {
|
||||||
|
SecureLogger.error("❌ Failed to decode message payload as UTF-8", category: .session)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
// Determine if we have a direct link to the sender
|
||||||
|
let directLink = env.linkState(peerID)
|
||||||
|
let hasDirectLink = directLink.hasPeripheral || directLink.hasCentral
|
||||||
|
|
||||||
|
let pathTag = hasDirectLink ? "direct" : "mesh"
|
||||||
|
SecureLogger.debug("💬 [\(senderNickname)] TTL:\(packet.ttl) (\(pathTag)) chars=\(content.count) bytes=\(packet.payload.count)", category: .session)
|
||||||
|
|
||||||
|
let ts = Date(timeIntervalSince1970: Double(packet.timestamp) / 1000)
|
||||||
|
var resolvedSelfMessageID: String? = nil
|
||||||
|
if peerID == env.localPeerID() {
|
||||||
|
resolvedSelfMessageID = env.takeSelfBroadcastMessageID(packet)
|
||||||
|
}
|
||||||
|
env.deliverPublicMessage(peerID, senderNickname, content, ts, resolvedSelfMessageID)
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,42 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEPublicMessageAcceptance: Equatable {
|
||||||
|
let shouldTrackForSync: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEPublicMessageRejection: Equatable {
|
||||||
|
case selfEcho
|
||||||
|
case staleBroadcast(ageSeconds: Double)
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEPublicMessageDecision: Equatable {
|
||||||
|
case accept(BLEPublicMessageAcceptance)
|
||||||
|
case reject(BLEPublicMessageRejection)
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEPublicMessagePolicy {
|
||||||
|
static func evaluate(
|
||||||
|
packet: BitchatPacket,
|
||||||
|
from peerID: PeerID,
|
||||||
|
localPeerID: PeerID,
|
||||||
|
now: Date
|
||||||
|
) -> BLEPublicMessageDecision {
|
||||||
|
if peerID == localPeerID && packet.ttl != 0 {
|
||||||
|
return .reject(.selfEcho)
|
||||||
|
}
|
||||||
|
|
||||||
|
let isBroadcast = BLEPacketFreshnessPolicy.isBroadcastRecipient(packet.recipientID)
|
||||||
|
if isBroadcast,
|
||||||
|
BLEPacketFreshnessPolicy.isStale(timestampMilliseconds: packet.timestamp, now: now) {
|
||||||
|
return .reject(.staleBroadcast(ageSeconds: BLEPacketFreshnessPolicy.ageSeconds(
|
||||||
|
timestampMilliseconds: packet.timestamp,
|
||||||
|
now: now
|
||||||
|
)))
|
||||||
|
}
|
||||||
|
|
||||||
|
return .accept(BLEPublicMessageAcceptance(
|
||||||
|
shouldTrackForSync: isBroadcast && packet.type == MessageType.message.rawValue
|
||||||
|
))
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,90 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEReceivedPacketContext: Equatable {
|
||||||
|
let senderID: PeerID
|
||||||
|
let messageID: String
|
||||||
|
let messageType: MessageType?
|
||||||
|
let shouldDeduplicate: Bool
|
||||||
|
let logsHandlingDetails: Bool
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLEReceivePipeline {
|
||||||
|
static func context(for packet: BitchatPacket, localPeerID: PeerID) -> BLEReceivedPacketContext {
|
||||||
|
let senderID = PeerID(hexData: packet.senderID)
|
||||||
|
// Include a payload digest so that distinct packets sharing the same
|
||||||
|
// sender/timestamp(ms)/type are not collapsed as duplicates. The
|
||||||
|
// post-handshake flush sends queued messages, delivery and read receipts
|
||||||
|
// back-to-back within a single millisecond; without the digest every
|
||||||
|
// packet after the first would be silently dropped.
|
||||||
|
let digestPrefix = packet.payload.sha256Hash().prefix(4).hexEncodedString()
|
||||||
|
let messageID = "\(senderID)-\(packet.timestamp)-\(packet.type)-\(digestPrefix)"
|
||||||
|
let messageType = MessageType(rawValue: packet.type)
|
||||||
|
let allowSelfSyncReplay = packet.ttl == 0 && senderID == localPeerID
|
||||||
|
let shouldDeduplicate = messageType != .fragment && !allowSelfSyncReplay
|
||||||
|
|
||||||
|
return BLEReceivedPacketContext(
|
||||||
|
senderID: senderID,
|
||||||
|
messageID: messageID,
|
||||||
|
messageType: messageType,
|
||||||
|
shouldDeduplicate: shouldDeduplicate,
|
||||||
|
logsHandlingDetails: messageType != .announce
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
static func shouldCancelScheduledRelayForDuplicate(connectedPeerCount: Int) -> Bool {
|
||||||
|
connectedPeerCount > 2
|
||||||
|
}
|
||||||
|
|
||||||
|
static func relayDecision(
|
||||||
|
for packet: BitchatPacket,
|
||||||
|
senderID: PeerID,
|
||||||
|
localPeerID: PeerID,
|
||||||
|
degree: Int,
|
||||||
|
highDegreeThreshold: Int
|
||||||
|
) -> RelayDecision {
|
||||||
|
RelayController.decide(
|
||||||
|
ttl: packet.ttl,
|
||||||
|
senderIsSelf: senderID == localPeerID,
|
||||||
|
recipientIsSelf: PeerID(hexData: packet.recipientID) == localPeerID,
|
||||||
|
isEncrypted: packet.type == MessageType.noiseEncrypted.rawValue,
|
||||||
|
isDirectedEncrypted: packet.type == MessageType.noiseEncrypted.rawValue && packet.recipientID != nil,
|
||||||
|
isFragment: packet.type == MessageType.fragment.rawValue,
|
||||||
|
isDirectedFragment: packet.type == MessageType.fragment.rawValue && packet.recipientID != nil,
|
||||||
|
isHandshake: packet.type == MessageType.noiseHandshake.rawValue,
|
||||||
|
isAnnounce: packet.type == MessageType.announce.rawValue,
|
||||||
|
degree: degree,
|
||||||
|
highDegreeThreshold: highDegreeThreshold
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLERecentTrafficTracker: Equatable {
|
||||||
|
private var packetTimestamps: [Date] = []
|
||||||
|
|
||||||
|
var count: Int {
|
||||||
|
packetTimestamps.count
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
packetTimestamps.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func recordPacket(at now: Date) {
|
||||||
|
packetTimestamps.append(now)
|
||||||
|
prune(at: now)
|
||||||
|
}
|
||||||
|
|
||||||
|
func hasTraffic(within seconds: TimeInterval, now: Date) -> Bool {
|
||||||
|
let cutoff = now.addingTimeInterval(-seconds)
|
||||||
|
return packetTimestamps.contains { $0 >= cutoff }
|
||||||
|
}
|
||||||
|
|
||||||
|
private mutating func prune(at now: Date) {
|
||||||
|
let cutoff = now.addingTimeInterval(-TransportConfig.bleRecentPacketWindowSeconds)
|
||||||
|
if packetTimestamps.count > TransportConfig.bleRecentPacketWindowMaxCount {
|
||||||
|
packetTimestamps.removeFirst(packetTimestamps.count - TransportConfig.bleRecentPacketWindowMaxCount)
|
||||||
|
}
|
||||||
|
packetTimestamps.removeAll { $0 < cutoff }
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,93 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLERouteForwardingPlan {
|
||||||
|
let shouldSuppressFloodRelay: Bool
|
||||||
|
let forwardPacket: BitchatPacket?
|
||||||
|
let nextHop: PeerID?
|
||||||
|
|
||||||
|
static let allowFloodRelay = BLERouteForwardingPlan(
|
||||||
|
shouldSuppressFloodRelay: false,
|
||||||
|
forwardPacket: nil,
|
||||||
|
nextHop: nil
|
||||||
|
)
|
||||||
|
|
||||||
|
static let suppressFloodRelay = BLERouteForwardingPlan(
|
||||||
|
shouldSuppressFloodRelay: true,
|
||||||
|
forwardPacket: nil,
|
||||||
|
nextHop: nil
|
||||||
|
)
|
||||||
|
|
||||||
|
static func forward(_ packet: BitchatPacket, to nextHop: PeerID) -> BLERouteForwardingPlan {
|
||||||
|
BLERouteForwardingPlan(
|
||||||
|
shouldSuppressFloodRelay: true,
|
||||||
|
forwardPacket: packet,
|
||||||
|
nextHop: nextHop
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLERouteForwardingPolicy {
|
||||||
|
static func plan(
|
||||||
|
for packet: BitchatPacket,
|
||||||
|
localPeerID: PeerID,
|
||||||
|
localRoutingData: Data?,
|
||||||
|
routingPeer: (Data) -> PeerID?,
|
||||||
|
isPeerConnected: (PeerID) -> Bool
|
||||||
|
) -> BLERouteForwardingPlan {
|
||||||
|
if PeerID(hexData: packet.recipientID) == localPeerID {
|
||||||
|
return .suppressFloodRelay
|
||||||
|
}
|
||||||
|
|
||||||
|
guard let route = packet.route, !route.isEmpty else {
|
||||||
|
return .allowFloodRelay
|
||||||
|
}
|
||||||
|
|
||||||
|
guard packet.ttl > 1 else {
|
||||||
|
return .suppressFloodRelay
|
||||||
|
}
|
||||||
|
|
||||||
|
guard let localRoutingData else {
|
||||||
|
return .allowFloodRelay
|
||||||
|
}
|
||||||
|
|
||||||
|
guard let localIndex = route.firstIndex(of: localRoutingData) else {
|
||||||
|
return forward(packet, toRouteData: route[0], routingPeer: routingPeer, isPeerConnected: isPeerConnected)
|
||||||
|
}
|
||||||
|
|
||||||
|
if localIndex == route.count - 1 {
|
||||||
|
guard let destinationPeer = PeerID(hexData: packet.recipientID),
|
||||||
|
isPeerConnected(destinationPeer) else {
|
||||||
|
return .allowFloodRelay
|
||||||
|
}
|
||||||
|
return .forward(relayed(packet), to: destinationPeer)
|
||||||
|
}
|
||||||
|
|
||||||
|
return forward(
|
||||||
|
packet,
|
||||||
|
toRouteData: route[localIndex + 1],
|
||||||
|
routingPeer: routingPeer,
|
||||||
|
isPeerConnected: isPeerConnected
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func forward(
|
||||||
|
_ packet: BitchatPacket,
|
||||||
|
toRouteData routeData: Data,
|
||||||
|
routingPeer: (Data) -> PeerID?,
|
||||||
|
isPeerConnected: (PeerID) -> Bool
|
||||||
|
) -> BLERouteForwardingPlan {
|
||||||
|
guard let nextPeer = routingPeer(routeData),
|
||||||
|
isPeerConnected(nextPeer) else {
|
||||||
|
return .allowFloodRelay
|
||||||
|
}
|
||||||
|
|
||||||
|
return .forward(relayed(packet), to: nextPeer)
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func relayed(_ packet: BitchatPacket) -> BitchatPacket {
|
||||||
|
var relayPacket = packet
|
||||||
|
relayPacket.ttl = packet.ttl - 1
|
||||||
|
return relayPacket
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,35 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum BLEScanDutyPlan: Equatable {
|
||||||
|
case continuous
|
||||||
|
case dutyCycle(onDuration: TimeInterval, offDuration: TimeInterval)
|
||||||
|
}
|
||||||
|
|
||||||
|
enum BLEScanDutyPolicy {
|
||||||
|
static func plan(
|
||||||
|
dutyEnabled: Bool,
|
||||||
|
appIsActive: Bool,
|
||||||
|
connectedCount: Int,
|
||||||
|
hasRecentTraffic: Bool,
|
||||||
|
highDegreeThreshold: Int = TransportConfig.bleHighDegreeThreshold
|
||||||
|
) -> BLEScanDutyPlan {
|
||||||
|
let forceContinuousScan = connectedCount <= 2 || hasRecentTraffic
|
||||||
|
let shouldDutyCycle = dutyEnabled && appIsActive && connectedCount > 0 && !forceContinuousScan
|
||||||
|
|
||||||
|
guard shouldDutyCycle else {
|
||||||
|
return .continuous
|
||||||
|
}
|
||||||
|
|
||||||
|
if connectedCount >= highDegreeThreshold {
|
||||||
|
return .dutyCycle(
|
||||||
|
onDuration: TransportConfig.bleDutyOnDurationDense,
|
||||||
|
offDuration: TransportConfig.bleDutyOffDurationDense
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
return .dutyCycle(
|
||||||
|
onDuration: TransportConfig.bleDutyOnDuration,
|
||||||
|
offDuration: TransportConfig.bleDutyOffDuration
|
||||||
|
)
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,43 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLEScheduledRelayStore {
|
||||||
|
private var relays: [String: DispatchWorkItem] = [:]
|
||||||
|
|
||||||
|
var count: Int {
|
||||||
|
relays.count
|
||||||
|
}
|
||||||
|
|
||||||
|
var isEmpty: Bool {
|
||||||
|
relays.isEmpty
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func schedule(_ workItem: DispatchWorkItem, messageID: String) {
|
||||||
|
relays[messageID] = workItem
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
mutating func remove(messageID: String) -> DispatchWorkItem? {
|
||||||
|
relays.removeValue(forKey: messageID)
|
||||||
|
}
|
||||||
|
|
||||||
|
@discardableResult
|
||||||
|
mutating func cancel(messageID: String) -> Bool {
|
||||||
|
guard let workItem = relays.removeValue(forKey: messageID) else {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
|
||||||
|
workItem.cancel()
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func cancelAll() {
|
||||||
|
relays.values.forEach { $0.cancel() }
|
||||||
|
relays.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAllIfOverCapacity(_ maxCount: Int) {
|
||||||
|
if relays.count > maxCount {
|
||||||
|
relays.removeAll()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -0,0 +1,40 @@
|
|||||||
|
import BitFoundation
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
struct BLESelfBroadcastTracker {
|
||||||
|
private struct Entry {
|
||||||
|
let messageID: String
|
||||||
|
let sentAt: Date
|
||||||
|
}
|
||||||
|
|
||||||
|
private var entriesByDedupID: [String: Entry] = [:]
|
||||||
|
|
||||||
|
var isEmpty: Bool {
|
||||||
|
entriesByDedupID.isEmpty
|
||||||
|
}
|
||||||
|
|
||||||
|
var count: Int {
|
||||||
|
entriesByDedupID.count
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func record(messageID: String, packet: BitchatPacket, sentAt: Date) {
|
||||||
|
entriesByDedupID[Self.dedupID(for: packet)] = Entry(messageID: messageID, sentAt: sentAt)
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func takeMessageID(for packet: BitchatPacket) -> String? {
|
||||||
|
entriesByDedupID.removeValue(forKey: Self.dedupID(for: packet))?.messageID
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func prune(before cutoff: Date) {
|
||||||
|
guard !entriesByDedupID.isEmpty else { return }
|
||||||
|
entriesByDedupID = entriesByDedupID.filter { cutoff <= $0.value.sentAt }
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
entriesByDedupID.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
static func dedupID(for packet: BitchatPacket) -> String {
|
||||||
|
"\(packet.senderID.hexEncodedString())-\(packet.timestamp)-\(packet.type)"
|
||||||
|
}
|
||||||
|
}
|
||||||
+1411
-2324
File diff suppressed because it is too large
Load Diff
@@ -0,0 +1,71 @@
|
|||||||
|
import Foundation
|
||||||
|
|
||||||
|
enum BLESubscriptionAnnounceDecision: Equatable {
|
||||||
|
case allowed
|
||||||
|
case rateLimited(backoffSeconds: TimeInterval, attemptCount: Int, suppressAnnounce: Bool)
|
||||||
|
}
|
||||||
|
|
||||||
|
struct BLESubscriptionAnnounceLimiter {
|
||||||
|
private struct State {
|
||||||
|
var lastAnnounceTime: Date
|
||||||
|
var attemptCount: Int
|
||||||
|
var currentBackoffSeconds: TimeInterval
|
||||||
|
}
|
||||||
|
|
||||||
|
private var states: [String: State] = [:]
|
||||||
|
|
||||||
|
var trackedCentralCount: Int {
|
||||||
|
states.count
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func removeAll() {
|
||||||
|
states.removeAll()
|
||||||
|
}
|
||||||
|
|
||||||
|
mutating func decision(for centralID: String, now: Date) -> BLESubscriptionAnnounceDecision {
|
||||||
|
pruneStaleEntries(now: now)
|
||||||
|
|
||||||
|
guard let existing = states[centralID] else {
|
||||||
|
recordAllowedAttempt(for: centralID, now: now)
|
||||||
|
return .allowed
|
||||||
|
}
|
||||||
|
|
||||||
|
let timeSinceLastAnnounce = now.timeIntervalSince(existing.lastAnnounceTime)
|
||||||
|
guard timeSinceLastAnnounce < existing.currentBackoffSeconds else {
|
||||||
|
recordAllowedAttempt(for: centralID, now: now)
|
||||||
|
return .allowed
|
||||||
|
}
|
||||||
|
|
||||||
|
let newAttemptCount = existing.attemptCount + 1
|
||||||
|
let newBackoff = min(
|
||||||
|
existing.currentBackoffSeconds * TransportConfig.bleSubscriptionRateLimitBackoffFactor,
|
||||||
|
TransportConfig.bleSubscriptionRateLimitMaxBackoffSeconds
|
||||||
|
)
|
||||||
|
states[centralID] = State(
|
||||||
|
lastAnnounceTime: now,
|
||||||
|
attemptCount: newAttemptCount,
|
||||||
|
currentBackoffSeconds: newBackoff
|
||||||
|
)
|
||||||
|
|
||||||
|
return .rateLimited(
|
||||||
|
backoffSeconds: existing.currentBackoffSeconds,
|
||||||
|
attemptCount: existing.attemptCount,
|
||||||
|
suppressAnnounce: newAttemptCount >= TransportConfig.bleSubscriptionRateLimitMaxAttempts
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private mutating func recordAllowedAttempt(for centralID: String, now: Date) {
|
||||||
|
states[centralID] = State(
|
||||||
|
lastAnnounceTime: now,
|
||||||
|
attemptCount: 1,
|
||||||
|
currentBackoffSeconds: TransportConfig.bleSubscriptionRateLimitMinSeconds
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private mutating func pruneStaleEntries(now: Date) {
|
||||||
|
let windowSeconds = TransportConfig.bleSubscriptionRateLimitWindowSeconds
|
||||||
|
states = states.filter { _, state in
|
||||||
|
now.timeIntervalSince(state.lastAnnounceTime) < windowSeconds
|
||||||
|
}
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -191,5 +191,22 @@ enum MimeType: CaseIterable, Hashable {
|
|||||||
extension MimeType {
|
extension MimeType {
|
||||||
enum Category: String {
|
enum Category: String {
|
||||||
case audio, image, file
|
case audio, image, file
|
||||||
|
|
||||||
|
/// Ends with a space
|
||||||
|
var messagePrefix: String {
|
||||||
|
switch self {
|
||||||
|
case .audio: "[voice] "
|
||||||
|
case .image: "[image] "
|
||||||
|
case .file: "[file] "
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
var mediaDir: String {
|
||||||
|
switch self {
|
||||||
|
case .audio: "voicenotes"
|
||||||
|
case .image: "images"
|
||||||
|
case .file: "files"
|
||||||
|
}
|
||||||
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -7,6 +7,7 @@
|
|||||||
//
|
//
|
||||||
|
|
||||||
import Foundation
|
import Foundation
|
||||||
|
import BitFoundation
|
||||||
|
|
||||||
/// Result of command processing
|
/// Result of command processing
|
||||||
enum CommandResult {
|
enum CommandResult {
|
||||||
@@ -27,9 +28,9 @@ struct CommandGeoParticipant {
|
|||||||
protocol CommandContextProvider: AnyObject {
|
protocol CommandContextProvider: AnyObject {
|
||||||
// MARK: - State Properties
|
// MARK: - State Properties
|
||||||
var nickname: String { get }
|
var nickname: String { get }
|
||||||
|
var activeChannel: ChannelID { get }
|
||||||
var selectedPrivateChatPeer: PeerID? { get }
|
var selectedPrivateChatPeer: PeerID? { get }
|
||||||
var blockedUsers: Set<String> { get }
|
var blockedUsers: Set<String> { get }
|
||||||
var privateChats: [PeerID: [BitchatMessage]] { get set }
|
|
||||||
var idBridge: NostrIdentityBridge { get }
|
var idBridge: NostrIdentityBridge { get }
|
||||||
|
|
||||||
// MARK: - Peer Lookup
|
// MARK: - Peer Lookup
|
||||||
@@ -41,6 +42,8 @@ protocol CommandContextProvider: AnyObject {
|
|||||||
func startPrivateChat(with peerID: PeerID)
|
func startPrivateChat(with peerID: PeerID)
|
||||||
func sendPrivateMessage(_ content: String, to peerID: PeerID)
|
func sendPrivateMessage(_ content: String, to peerID: PeerID)
|
||||||
func clearCurrentPublicTimeline()
|
func clearCurrentPublicTimeline()
|
||||||
|
/// Empties the peer's chat (single-writer store intent for `/clear`).
|
||||||
|
func clearPrivateChat(_ peerID: PeerID)
|
||||||
func sendPublicRaw(_ content: String)
|
func sendPublicRaw(_ content: String)
|
||||||
|
|
||||||
// MARK: - System Messages
|
// MARK: - System Messages
|
||||||
@@ -74,7 +77,7 @@ final class CommandProcessor {
|
|||||||
|
|
||||||
// Geohash context: disable favoriting in public geohash or GeoDM
|
// Geohash context: disable favoriting in public geohash or GeoDM
|
||||||
let inGeoPublic: Bool = {
|
let inGeoPublic: Bool = {
|
||||||
switch LocationChannelManager.shared.selectedChannel {
|
switch contextProvider?.activeChannel ?? .mesh {
|
||||||
case .mesh: return false
|
case .mesh: return false
|
||||||
case .location: return true
|
case .location: return true
|
||||||
}
|
}
|
||||||
@@ -102,11 +105,28 @@ final class CommandProcessor {
|
|||||||
case "/unfav":
|
case "/unfav":
|
||||||
if inGeoPublic || inGeoDM { return .error(message: "favorites are only for mesh peers in #mesh") }
|
if inGeoPublic || inGeoDM { return .error(message: "favorites are only for mesh peers in #mesh") }
|
||||||
return handleFavorite(args, add: false)
|
return handleFavorite(args, add: false)
|
||||||
|
case "/help":
|
||||||
|
return .success(message: Self.helpText)
|
||||||
default:
|
default:
|
||||||
return .error(message: "unknown command: \(cmd)")
|
return .error(message: "unknown command: \(cmd) — type /help for commands")
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
/// Local-only command reference, printed as a system message. The
|
||||||
|
/// suggestion panel hides once arguments are typed, and typos used to
|
||||||
|
/// dead-end in a bare "unknown command" — this is the way out.
|
||||||
|
static let helpText = """
|
||||||
|
commands:
|
||||||
|
/msg @name [message] — start a private chat
|
||||||
|
/who — list who's here
|
||||||
|
/clear — clear this chat
|
||||||
|
/hug @name — send a hug
|
||||||
|
/slap @name — slap with a large trout
|
||||||
|
/block @name · /unblock @name
|
||||||
|
/fav @name · /unfav @name — favorites (mesh only)
|
||||||
|
/help — this list
|
||||||
|
"""
|
||||||
|
|
||||||
// MARK: - Command Handlers
|
// MARK: - Command Handlers
|
||||||
|
|
||||||
private func handleMessage(_ args: String) -> CommandResult {
|
private func handleMessage(_ args: String) -> CommandResult {
|
||||||
@@ -134,7 +154,7 @@ final class CommandProcessor {
|
|||||||
|
|
||||||
private func handleWho() -> CommandResult {
|
private func handleWho() -> CommandResult {
|
||||||
// Show geohash participants when in a geohash channel; otherwise mesh peers
|
// Show geohash participants when in a geohash channel; otherwise mesh peers
|
||||||
switch LocationChannelManager.shared.selectedChannel {
|
switch contextProvider?.activeChannel ?? .mesh {
|
||||||
case .location(let ch):
|
case .location(let ch):
|
||||||
// Geohash context: show visible geohash participants (exclude self)
|
// Geohash context: show visible geohash participants (exclude self)
|
||||||
guard let vm = contextProvider else { return .success(message: "nobody around") }
|
guard let vm = contextProvider else { return .success(message: "nobody around") }
|
||||||
@@ -158,7 +178,7 @@ final class CommandProcessor {
|
|||||||
|
|
||||||
private func handleClear() -> CommandResult {
|
private func handleClear() -> CommandResult {
|
||||||
if let peerID = contextProvider?.selectedPrivateChatPeer {
|
if let peerID = contextProvider?.selectedPrivateChatPeer {
|
||||||
contextProvider?.privateChats[peerID]?.removeAll()
|
contextProvider?.clearPrivateChat(peerID)
|
||||||
} else {
|
} else {
|
||||||
contextProvider?.clearCurrentPublicTimeline()
|
contextProvider?.clearCurrentPublicTimeline()
|
||||||
}
|
}
|
||||||
@@ -166,7 +186,7 @@ final class CommandProcessor {
|
|||||||
}
|
}
|
||||||
|
|
||||||
private func handleEmote(_ args: String, command: String, action: String, emoji: String, suffix: String = "") -> CommandResult {
|
private func handleEmote(_ args: String, command: String, action: String, emoji: String, suffix: String = "") -> CommandResult {
|
||||||
let targetName = args.trimmingCharacters(in: .whitespaces)
|
let targetName = args.trimmed
|
||||||
guard !targetName.isEmpty else {
|
guard !targetName.isEmpty else {
|
||||||
return .error(message: "usage: /\(command) <nickname>")
|
return .error(message: "usage: /\(command) <nickname>")
|
||||||
}
|
}
|
||||||
@@ -209,7 +229,7 @@ final class CommandProcessor {
|
|||||||
}
|
}
|
||||||
|
|
||||||
private func handleBlock(_ args: String) -> CommandResult {
|
private func handleBlock(_ args: String) -> CommandResult {
|
||||||
let targetName = args.trimmingCharacters(in: .whitespaces)
|
let targetName = args.trimmed
|
||||||
|
|
||||||
if targetName.isEmpty {
|
if targetName.isEmpty {
|
||||||
// List blocked users (mesh) and geohash (Nostr) blocks
|
// List blocked users (mesh) and geohash (Nostr) blocks
|
||||||
@@ -284,7 +304,7 @@ final class CommandProcessor {
|
|||||||
}
|
}
|
||||||
|
|
||||||
private func handleUnblock(_ args: String) -> CommandResult {
|
private func handleUnblock(_ args: String) -> CommandResult {
|
||||||
let targetName = args.trimmingCharacters(in: .whitespaces)
|
let targetName = args.trimmed
|
||||||
guard !targetName.isEmpty else {
|
guard !targetName.isEmpty else {
|
||||||
return .error(message: "usage: /unblock <nickname>")
|
return .error(message: "usage: /unblock <nickname>")
|
||||||
}
|
}
|
||||||
@@ -311,7 +331,7 @@ final class CommandProcessor {
|
|||||||
}
|
}
|
||||||
|
|
||||||
private func handleFavorite(_ args: String, add: Bool) -> CommandResult {
|
private func handleFavorite(_ args: String, add: Bool) -> CommandResult {
|
||||||
let targetName = args.trimmingCharacters(in: .whitespaces)
|
let targetName = args.trimmed
|
||||||
guard !targetName.isEmpty else {
|
guard !targetName.isEmpty else {
|
||||||
return .error(message: "usage: /\(add ? "fav" : "unfav") <nickname>")
|
return .error(message: "usage: /\(add ? "fav" : "unfav") <nickname>")
|
||||||
}
|
}
|
||||||
|
|||||||
@@ -0,0 +1,219 @@
|
|||||||
|
//
|
||||||
|
// CourierStore.swift
|
||||||
|
// bitchat
|
||||||
|
//
|
||||||
|
// This is free and unencumbered software released into the public domain.
|
||||||
|
// For more information, see <https://unlicense.org>
|
||||||
|
//
|
||||||
|
|
||||||
|
import BitFoundation
|
||||||
|
import BitLogger
|
||||||
|
import Combine
|
||||||
|
import Foundation
|
||||||
|
|
||||||
|
/// Holds courier envelopes this device is carrying for offline third parties.
|
||||||
|
///
|
||||||
|
/// Envelopes are opaque ciphertext deposited by mutual favorites; this store
|
||||||
|
/// never learns sender, recipient, or content. Strict quotas keep the device
|
||||||
|
/// from becoming a public mailbag: bounded count, bounded per-depositor
|
||||||
|
/// count, bounded size, and a 24-hour lifetime aligned with the outbox
|
||||||
|
/// retention policy. Carried mail is included in the panic wipe.
|
||||||
|
final class CourierStore {
|
||||||
|
struct StoredEnvelope: Codable, Equatable {
|
||||||
|
let recipientTag: Data
|
||||||
|
let expiry: UInt64
|
||||||
|
let ciphertext: Data
|
||||||
|
let depositorNoiseKey: Data
|
||||||
|
let storedAt: Date
|
||||||
|
|
||||||
|
var envelope: CourierEnvelope {
|
||||||
|
CourierEnvelope(recipientTag: recipientTag, expiry: expiry, ciphertext: ciphertext)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
enum Limits {
|
||||||
|
static let maxEnvelopes = 20
|
||||||
|
static let maxPerDepositor = 5
|
||||||
|
/// Slack on top of the 24h lifetime for depositor clock skew.
|
||||||
|
static let maxExpirySlack: TimeInterval = 60 * 60
|
||||||
|
}
|
||||||
|
|
||||||
|
static let shared = CourierStore()
|
||||||
|
|
||||||
|
/// Number of envelopes currently carried, published on the main thread
|
||||||
|
/// so the UI can show a "carrying mail" indicator.
|
||||||
|
@Published private(set) var carriedCount: Int = 0
|
||||||
|
|
||||||
|
/// Fast path so hot code (announce handling) can skip tag computation.
|
||||||
|
var isEmpty: Bool {
|
||||||
|
queue.sync { envelopes.isEmpty }
|
||||||
|
}
|
||||||
|
|
||||||
|
private var envelopes: [StoredEnvelope] = []
|
||||||
|
private let queue = DispatchQueue(label: "chat.bitchat.courier.store")
|
||||||
|
private let fileURL: URL?
|
||||||
|
private let now: () -> Date
|
||||||
|
|
||||||
|
/// - Parameter fileURL: Overrides the on-disk location (tests). Ignored
|
||||||
|
/// when `persistsToDisk` is false.
|
||||||
|
init(persistsToDisk: Bool = true, fileURL: URL? = nil, now: @escaping () -> Date = Date.init) {
|
||||||
|
self.now = now
|
||||||
|
self.fileURL = persistsToDisk ? (fileURL ?? Self.defaultFileURL()) : nil
|
||||||
|
loadFromDisk()
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: - Depositing (courier side)
|
||||||
|
|
||||||
|
/// Accept an envelope from a depositor. Returns false when quotas or
|
||||||
|
/// validity checks reject it. Trust policy (mutual favorite) is the
|
||||||
|
/// caller's responsibility; this store only enforces resource bounds.
|
||||||
|
@discardableResult
|
||||||
|
func deposit(_ envelope: CourierEnvelope, from depositorNoiseKey: Data) -> Bool {
|
||||||
|
let date = now()
|
||||||
|
guard envelope.recipientTag.count == CourierEnvelope.tagLength,
|
||||||
|
!envelope.ciphertext.isEmpty,
|
||||||
|
envelope.ciphertext.count <= CourierEnvelope.maxCiphertextBytes,
|
||||||
|
!envelope.isExpired(at: date) else {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
// Reject expiries beyond the policy lifetime so depositors can't pin
|
||||||
|
// storage longer than the outbox would retain the message itself.
|
||||||
|
let maxExpiry = date.addingTimeInterval(CourierEnvelope.maxLifetimeSeconds + Limits.maxExpirySlack)
|
||||||
|
guard envelope.expiry <= UInt64(maxExpiry.timeIntervalSince1970 * 1000) else {
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
|
||||||
|
return queue.sync {
|
||||||
|
pruneExpiredLocked(at: date)
|
||||||
|
|
||||||
|
// Identical ciphertext is the same envelope; accept idempotently.
|
||||||
|
if envelopes.contains(where: { $0.ciphertext == envelope.ciphertext }) {
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
guard envelopes.filter({ $0.depositorNoiseKey == depositorNoiseKey }).count < Limits.maxPerDepositor else {
|
||||||
|
SecureLogger.debug("📦 Courier deposit rejected: per-depositor quota reached", category: .session)
|
||||||
|
return false
|
||||||
|
}
|
||||||
|
if envelopes.count >= Limits.maxEnvelopes {
|
||||||
|
// Oldest-first eviction, matching outbox overflow behavior.
|
||||||
|
let evicted = envelopes.removeFirst()
|
||||||
|
SecureLogger.debug("📦 Courier store full - evicted envelope stored at \(evicted.storedAt)", category: .session)
|
||||||
|
}
|
||||||
|
|
||||||
|
envelopes.append(StoredEnvelope(
|
||||||
|
recipientTag: envelope.recipientTag,
|
||||||
|
expiry: envelope.expiry,
|
||||||
|
ciphertext: envelope.ciphertext,
|
||||||
|
depositorNoiseKey: depositorNoiseKey,
|
||||||
|
storedAt: date
|
||||||
|
))
|
||||||
|
persistLocked()
|
||||||
|
return true
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: - Handover (on encountering a peer)
|
||||||
|
|
||||||
|
/// Remove and return all envelopes addressed to the given peer, matching
|
||||||
|
/// the rotating recipient tag across adjacent days. Envelopes are removed
|
||||||
|
/// optimistically: handover happens over a live link, and the depositor's
|
||||||
|
/// outbox still retains the original for direct delivery.
|
||||||
|
func takeEnvelopes(for noiseStaticKey: Data) -> [CourierEnvelope] {
|
||||||
|
let date = now()
|
||||||
|
let candidates = CourierEnvelope.candidateTags(noiseStaticKey: noiseStaticKey, around: date)
|
||||||
|
return queue.sync {
|
||||||
|
pruneExpiredLocked(at: date)
|
||||||
|
let matched = envelopes.filter { candidates.contains($0.recipientTag) }
|
||||||
|
guard !matched.isEmpty else { return [] }
|
||||||
|
envelopes.removeAll { stored in matched.contains(stored) }
|
||||||
|
persistLocked()
|
||||||
|
return matched.map(\.envelope)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: - Maintenance
|
||||||
|
|
||||||
|
func pruneExpired() {
|
||||||
|
let date = now()
|
||||||
|
queue.sync {
|
||||||
|
pruneExpiredLocked(at: date)
|
||||||
|
persistLocked()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
/// Panic wipe: drop all carried mail from memory and disk.
|
||||||
|
func wipe() {
|
||||||
|
queue.sync {
|
||||||
|
envelopes.removeAll()
|
||||||
|
if let fileURL {
|
||||||
|
try? FileManager.default.removeItem(at: fileURL)
|
||||||
|
}
|
||||||
|
publishCountLocked()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
// MARK: - Internals (call only on `queue`)
|
||||||
|
|
||||||
|
private func pruneExpiredLocked(at date: Date) {
|
||||||
|
let before = envelopes.count
|
||||||
|
envelopes.removeAll { $0.envelope.isExpired(at: date) }
|
||||||
|
if envelopes.count != before {
|
||||||
|
SecureLogger.debug("📦 Courier store pruned \(before - envelopes.count) expired envelope(s)", category: .session)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private func publishCountLocked() {
|
||||||
|
let count = envelopes.count
|
||||||
|
DispatchQueue.main.async { [weak self] in
|
||||||
|
self?.carriedCount = count
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private func persistLocked() {
|
||||||
|
publishCountLocked()
|
||||||
|
guard let fileURL else { return }
|
||||||
|
do {
|
||||||
|
if envelopes.isEmpty {
|
||||||
|
try? FileManager.default.removeItem(at: fileURL)
|
||||||
|
return
|
||||||
|
}
|
||||||
|
try FileManager.default.createDirectory(
|
||||||
|
at: fileURL.deletingLastPathComponent(),
|
||||||
|
withIntermediateDirectories: true
|
||||||
|
)
|
||||||
|
let data = try JSONEncoder().encode(envelopes)
|
||||||
|
var options: Data.WritingOptions = [.atomic]
|
||||||
|
#if os(iOS)
|
||||||
|
options.insert(.completeFileProtection)
|
||||||
|
#endif
|
||||||
|
try data.write(to: fileURL, options: options)
|
||||||
|
} catch {
|
||||||
|
SecureLogger.error("Failed to persist courier store: \(error)", category: .session)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private func loadFromDisk() {
|
||||||
|
guard let fileURL else { return }
|
||||||
|
queue.sync {
|
||||||
|
guard let data = try? Data(contentsOf: fileURL),
|
||||||
|
let stored = try? JSONDecoder().decode([StoredEnvelope].self, from: data) else {
|
||||||
|
return
|
||||||
|
}
|
||||||
|
envelopes = stored
|
||||||
|
pruneExpiredLocked(at: now())
|
||||||
|
publishCountLocked()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private static func defaultFileURL() -> URL? {
|
||||||
|
guard let base = try? FileManager.default.url(
|
||||||
|
for: .applicationSupportDirectory,
|
||||||
|
in: .userDomainMask,
|
||||||
|
appropriateFor: nil,
|
||||||
|
create: true
|
||||||
|
) else { return nil }
|
||||||
|
return base
|
||||||
|
.appendingPathComponent("courier", isDirectory: true)
|
||||||
|
.appendingPathComponent("envelopes.json")
|
||||||
|
}
|
||||||
|
}
|
||||||
@@ -1,4 +1,5 @@
|
|||||||
import BitLogger
|
import BitLogger
|
||||||
|
import BitFoundation
|
||||||
import Foundation
|
import Foundation
|
||||||
import Combine
|
import Combine
|
||||||
|
|
||||||
@@ -33,7 +34,23 @@ final class FavoritesPersistenceService: ObservableObject {
|
|||||||
|
|
||||||
static let shared = FavoritesPersistenceService()
|
static let shared = FavoritesPersistenceService()
|
||||||
|
|
||||||
init(keychain: KeychainManagerProtocol = KeychainManager()) {
|
/// Default keychain for the `shared` singleton. Under test this is an
|
||||||
|
/// in-memory keychain so touching `shared` never blocks on securityd
|
||||||
|
/// (`SecItemCopyMatching` can hang in test environments) and never reads
|
||||||
|
/// or writes the developer's real keychain. Production behavior is
|
||||||
|
/// unchanged. Tests that need their own instance keep injecting a mock
|
||||||
|
/// via `init(keychain:)`.
|
||||||
|
private nonisolated static func makeDefaultKeychain() -> KeychainManagerProtocol {
|
||||||
|
// PreviewKeychainManager lives in _PreviewHelpers, a development
|
||||||
|
// asset excluded from archive builds — release code must not
|
||||||
|
// reference it. Tests always run Debug, so the guard is lossless.
|
||||||
|
#if DEBUG
|
||||||
|
if TestEnvironment.isRunningTests { return PreviewKeychainManager() }
|
||||||
|
#endif
|
||||||
|
return KeychainManager()
|
||||||
|
}
|
||||||
|
|
||||||
|
init(keychain: KeychainManagerProtocol = FavoritesPersistenceService.makeDefaultKeychain()) {
|
||||||
self.keychain = keychain
|
self.keychain = keychain
|
||||||
loadFavorites()
|
loadFavorites()
|
||||||
|
|
||||||
|
|||||||
@@ -13,6 +13,25 @@ import Combine
|
|||||||
import BitLogger
|
import BitLogger
|
||||||
import Tor
|
import Tor
|
||||||
|
|
||||||
|
protocol GeohashPresenceTimerProtocol: AnyObject {
|
||||||
|
var isValid: Bool { get }
|
||||||
|
func invalidate()
|
||||||
|
}
|
||||||
|
|
||||||
|
private final class GeohashPresenceTimerAdapter: GeohashPresenceTimerProtocol {
|
||||||
|
private let base: Timer
|
||||||
|
|
||||||
|
init(base: Timer) {
|
||||||
|
self.base = base
|
||||||
|
}
|
||||||
|
|
||||||
|
var isValid: Bool { base.isValid }
|
||||||
|
|
||||||
|
func invalidate() {
|
||||||
|
base.invalidate()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
/// Service that coordinates the broadcasting of presence heartbeats.
|
/// Service that coordinates the broadcasting of presence heartbeats.
|
||||||
///
|
///
|
||||||
/// Behavior:
|
/// Behavior:
|
||||||
@@ -25,18 +44,27 @@ final class GeohashPresenceService: ObservableObject {
|
|||||||
static let shared = GeohashPresenceService()
|
static let shared = GeohashPresenceService()
|
||||||
|
|
||||||
private var subscriptions = Set<AnyCancellable>()
|
private var subscriptions = Set<AnyCancellable>()
|
||||||
private var heartbeatTimer: Timer?
|
private var heartbeatTimer: GeohashPresenceTimerProtocol?
|
||||||
private let idBridge = NostrIdentityBridge()
|
private let availableChannelsProvider: () -> [GeohashChannel]
|
||||||
|
private let locationChanges: AnyPublisher<[GeohashChannel], Never>
|
||||||
|
private let torReadyPublisher: AnyPublisher<Void, Never>
|
||||||
|
private let torIsReady: () -> Bool
|
||||||
|
private let torIsForeground: () -> Bool
|
||||||
|
private let deriveIdentity: (String) throws -> NostrIdentity
|
||||||
|
private let relayLookup: (String, Int) -> [String]
|
||||||
|
private let relaySender: (NostrEvent, [String]) -> Void
|
||||||
|
private let sleeper: (UInt64) async -> Void
|
||||||
|
private let scheduleTimer: (TimeInterval, @escaping () -> Void) -> GeohashPresenceTimerProtocol
|
||||||
|
|
||||||
// MARK: - Constants
|
// MARK: - Constants
|
||||||
|
|
||||||
// Loop interval range in seconds
|
// Loop interval range in seconds
|
||||||
private let loopMinInterval: TimeInterval = 40.0
|
private let loopMinInterval: TimeInterval
|
||||||
private let loopMaxInterval: TimeInterval = 80.0
|
private let loopMaxInterval: TimeInterval
|
||||||
|
|
||||||
// Per-broadcast decorrelation delay range in seconds
|
// Per-broadcast decorrelation delay range in seconds
|
||||||
private let burstMinDelay: TimeInterval = 2.0
|
private let burstMinDelay: TimeInterval
|
||||||
private let burstMaxDelay: TimeInterval = 5.0
|
private let burstMaxDelay: TimeInterval
|
||||||
|
|
||||||
// Privacy: Only broadcast to these levels
|
// Privacy: Only broadcast to these levels
|
||||||
private let allowedPrecisions: Set<Int> = [
|
private let allowedPrecisions: Set<Int> = [
|
||||||
@@ -46,6 +74,74 @@ final class GeohashPresenceService: ObservableObject {
|
|||||||
]
|
]
|
||||||
|
|
||||||
private init() {
|
private init() {
|
||||||
|
let idBridge = NostrIdentityBridge()
|
||||||
|
self.availableChannelsProvider = { LocationStateManager.shared.availableChannels }
|
||||||
|
self.locationChanges = LocationStateManager.shared.$availableChannels.eraseToAnyPublisher()
|
||||||
|
self.torReadyPublisher = NotificationCenter.default.publisher(for: .TorDidBecomeReady)
|
||||||
|
.map { _ in () }
|
||||||
|
.eraseToAnyPublisher()
|
||||||
|
self.torIsReady = { TorManager.shared.isReady }
|
||||||
|
self.torIsForeground = { TorManager.shared.isForeground() }
|
||||||
|
self.deriveIdentity = { try idBridge.deriveIdentity(forGeohash: $0) }
|
||||||
|
self.relayLookup = { geohash, count in
|
||||||
|
GeoRelayDirectory.shared.closestRelays(toGeohash: geohash, count: count)
|
||||||
|
}
|
||||||
|
self.relaySender = { event, relays in
|
||||||
|
NostrRelayManager.shared.sendEvent(event, to: relays)
|
||||||
|
}
|
||||||
|
self.sleeper = { nanoseconds in
|
||||||
|
try? await Task.sleep(nanoseconds: nanoseconds)
|
||||||
|
}
|
||||||
|
self.scheduleTimer = { interval, action in
|
||||||
|
GeohashPresenceTimerAdapter(
|
||||||
|
base: Timer.scheduledTimer(withTimeInterval: interval, repeats: false) { _ in
|
||||||
|
action()
|
||||||
|
}
|
||||||
|
)
|
||||||
|
}
|
||||||
|
self.loopMinInterval = 40.0
|
||||||
|
self.loopMaxInterval = 80.0
|
||||||
|
self.burstMinDelay = 2.0
|
||||||
|
self.burstMaxDelay = 5.0
|
||||||
|
setupObservers()
|
||||||
|
}
|
||||||
|
|
||||||
|
internal init(
|
||||||
|
availableChannelsProvider: @escaping () -> [GeohashChannel],
|
||||||
|
locationChanges: AnyPublisher<[GeohashChannel], Never>,
|
||||||
|
torReadyPublisher: AnyPublisher<Void, Never>,
|
||||||
|
torIsReady: @escaping () -> Bool,
|
||||||
|
torIsForeground: @escaping () -> Bool,
|
||||||
|
deriveIdentity: @escaping (String) throws -> NostrIdentity,
|
||||||
|
relayLookup: @escaping (String, Int) -> [String],
|
||||||
|
relaySender: @escaping (NostrEvent, [String]) -> Void,
|
||||||
|
sleeper: @escaping (UInt64) async -> Void = { nanoseconds in try? await Task.sleep(nanoseconds: nanoseconds) },
|
||||||
|
scheduleTimer: @escaping (TimeInterval, @escaping () -> Void) -> GeohashPresenceTimerProtocol = { interval, action in
|
||||||
|
GeohashPresenceTimerAdapter(
|
||||||
|
base: Timer.scheduledTimer(withTimeInterval: interval, repeats: false) { _ in
|
||||||
|
action()
|
||||||
|
}
|
||||||
|
)
|
||||||
|
},
|
||||||
|
loopMinInterval: TimeInterval = 40.0,
|
||||||
|
loopMaxInterval: TimeInterval = 80.0,
|
||||||
|
burstMinDelay: TimeInterval = 2.0,
|
||||||
|
burstMaxDelay: TimeInterval = 5.0
|
||||||
|
) {
|
||||||
|
self.availableChannelsProvider = availableChannelsProvider
|
||||||
|
self.locationChanges = locationChanges
|
||||||
|
self.torReadyPublisher = torReadyPublisher
|
||||||
|
self.torIsReady = torIsReady
|
||||||
|
self.torIsForeground = torIsForeground
|
||||||
|
self.deriveIdentity = deriveIdentity
|
||||||
|
self.relayLookup = relayLookup
|
||||||
|
self.relaySender = relaySender
|
||||||
|
self.sleeper = sleeper
|
||||||
|
self.scheduleTimer = scheduleTimer
|
||||||
|
self.loopMinInterval = loopMinInterval
|
||||||
|
self.loopMaxInterval = loopMaxInterval
|
||||||
|
self.burstMinDelay = burstMinDelay
|
||||||
|
self.burstMaxDelay = burstMaxDelay
|
||||||
setupObservers()
|
setupObservers()
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -57,7 +153,7 @@ final class GeohashPresenceService: ObservableObject {
|
|||||||
|
|
||||||
private func setupObservers() {
|
private func setupObservers() {
|
||||||
// Monitor location channel changes
|
// Monitor location channel changes
|
||||||
LocationStateManager.shared.$availableChannels
|
locationChanges
|
||||||
.dropFirst()
|
.dropFirst()
|
||||||
.sink { [weak self] _ in
|
.sink { [weak self] _ in
|
||||||
self?.handleLocationChange()
|
self?.handleLocationChange()
|
||||||
@@ -65,28 +161,28 @@ final class GeohashPresenceService: ObservableObject {
|
|||||||
.store(in: &subscriptions)
|
.store(in: &subscriptions)
|
||||||
|
|
||||||
// Monitor Tor readiness to kick off heartbeat if it was stalled
|
// Monitor Tor readiness to kick off heartbeat if it was stalled
|
||||||
NotificationCenter.default.publisher(for: .TorDidBecomeReady)
|
torReadyPublisher
|
||||||
.sink { [weak self] _ in
|
.sink { [weak self] _ in
|
||||||
self?.handleConnectivityChange()
|
self?.handleConnectivityChange()
|
||||||
}
|
}
|
||||||
.store(in: &subscriptions)
|
.store(in: &subscriptions)
|
||||||
}
|
}
|
||||||
|
|
||||||
private func handleLocationChange() {
|
func handleLocationChange() {
|
||||||
// When location changes, we trigger an immediate (but slightly delayed) heartbeat
|
// When location changes, we trigger an immediate (but slightly delayed) heartbeat
|
||||||
// to announce presence in the new zone, then reset the loop.
|
// to announce presence in the new zone, then reset the loop.
|
||||||
SecureLogger.debug("Presence: location changed, scheduling update", category: .session)
|
SecureLogger.debug("Presence: location changed, scheduling update", category: .session)
|
||||||
heartbeatTimer?.invalidate()
|
heartbeatTimer?.invalidate()
|
||||||
|
|
||||||
// Small delay to allow location state to settle
|
// Small delay to allow location state to settle
|
||||||
heartbeatTimer = Timer.scheduledTimer(withTimeInterval: 5.0, repeats: false) { [weak self] _ in
|
heartbeatTimer = scheduleTimer(5.0) { [weak self] in
|
||||||
Task { @MainActor [weak self] in
|
Task { @MainActor [weak self] in
|
||||||
self?.performHeartbeat()
|
self?.performHeartbeat()
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
private func handleConnectivityChange() {
|
func handleConnectivityChange() {
|
||||||
SecureLogger.debug("Presence: connectivity restored, triggering heartbeat", category: .session)
|
SecureLogger.debug("Presence: connectivity restored, triggering heartbeat", category: .session)
|
||||||
// If we were waiting for network, do it now
|
// If we were waiting for network, do it now
|
||||||
if heartbeatTimer == nil || !heartbeatTimer!.isValid {
|
if heartbeatTimer == nil || !heartbeatTimer!.isValid {
|
||||||
@@ -94,33 +190,33 @@ final class GeohashPresenceService: ObservableObject {
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
private func scheduleNextHeartbeat() {
|
func scheduleNextHeartbeat() {
|
||||||
heartbeatTimer?.invalidate()
|
heartbeatTimer?.invalidate()
|
||||||
let interval = TimeInterval.random(in: loopMinInterval...loopMaxInterval)
|
let interval = TimeInterval.random(in: loopMinInterval...loopMaxInterval)
|
||||||
heartbeatTimer = Timer.scheduledTimer(withTimeInterval: interval, repeats: false) { [weak self] _ in
|
heartbeatTimer = scheduleTimer(interval) { [weak self] in
|
||||||
Task { @MainActor [weak self] in
|
Task { @MainActor [weak self] in
|
||||||
self?.performHeartbeat()
|
self?.performHeartbeat()
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
private func performHeartbeat() {
|
func performHeartbeat() {
|
||||||
// Always schedule next loop first ensures continuity even if this one fails/skips
|
// Always schedule next loop first ensures continuity even if this one fails/skips
|
||||||
defer { scheduleNextHeartbeat() }
|
defer { scheduleNextHeartbeat() }
|
||||||
|
|
||||||
// 1. Check preconditions
|
// 1. Check preconditions
|
||||||
guard TorManager.shared.isReady else {
|
guard torIsReady() else {
|
||||||
SecureLogger.debug("Presence: skipping heartbeat (Tor not ready)", category: .session)
|
SecureLogger.debug("Presence: skipping heartbeat (Tor not ready)", category: .session)
|
||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
|
||||||
// App must be active (or at least we shouldn't broadcast if in background, usually)
|
// App must be active (or at least we shouldn't broadcast if in background, usually)
|
||||||
if !TorManager.shared.isForeground() {
|
if !torIsForeground() {
|
||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
|
||||||
// 2. Get channels
|
// 2. Get channels
|
||||||
let channels = LocationStateManager.shared.availableChannels
|
let channels = availableChannelsProvider()
|
||||||
guard !channels.isEmpty else { return }
|
guard !channels.isEmpty else { return }
|
||||||
|
|
||||||
// 3. Filter and broadcast
|
// 3. Filter and broadcast
|
||||||
@@ -136,16 +232,16 @@ final class GeohashPresenceService: ObservableObject {
|
|||||||
// Random delay for decorrelation
|
// Random delay for decorrelation
|
||||||
let delay = TimeInterval.random(in: self.burstMinDelay...self.burstMaxDelay)
|
let delay = TimeInterval.random(in: self.burstMinDelay...self.burstMaxDelay)
|
||||||
let nanoseconds = UInt64(delay * 1_000_000_000)
|
let nanoseconds = UInt64(delay * 1_000_000_000)
|
||||||
try? await Task.sleep(nanoseconds: nanoseconds)
|
await self.sleeper(nanoseconds)
|
||||||
|
|
||||||
self.broadcastPresence(for: channel.geohash)
|
self.broadcastPresence(for: channel.geohash)
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
private func broadcastPresence(for geohash: String) {
|
func broadcastPresence(for geohash: String) {
|
||||||
do {
|
do {
|
||||||
guard let identity = try? idBridge.deriveIdentity(forGeohash: geohash) else {
|
guard let identity = try? deriveIdentity(geohash) else {
|
||||||
return
|
return
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -155,13 +251,10 @@ final class GeohashPresenceService: ObservableObject {
|
|||||||
)
|
)
|
||||||
|
|
||||||
// Send via RelayManager
|
// Send via RelayManager
|
||||||
let targetRelays = GeoRelayDirectory.shared.closestRelays(
|
let targetRelays = relayLookup(geohash, TransportConfig.nostrGeoRelayCount)
|
||||||
toGeohash: geohash,
|
|
||||||
count: TransportConfig.nostrGeoRelayCount
|
|
||||||
)
|
|
||||||
|
|
||||||
if !targetRelays.isEmpty {
|
if !targetRelays.isEmpty {
|
||||||
NostrRelayManager.shared.sendEvent(event, to: targetRelays)
|
relaySender(event, targetRelays)
|
||||||
SecureLogger.debug("Presence: sent heartbeat for \(geohash) (pub=\(identity.publicKeyHex.prefix(6))...)", category: .session)
|
SecureLogger.debug("Presence: sent heartbeat for \(geohash) (pub=\(identity.publicKeyHex.prefix(6))...)", category: .session)
|
||||||
}
|
}
|
||||||
} catch {
|
} catch {
|
||||||
|
|||||||
@@ -7,76 +7,10 @@
|
|||||||
//
|
//
|
||||||
|
|
||||||
import BitLogger
|
import BitLogger
|
||||||
|
import BitFoundation
|
||||||
import Foundation
|
import Foundation
|
||||||
import Security
|
import Security
|
||||||
|
|
||||||
// MARK: - Keychain Error Types
|
|
||||||
// BCH-01-009: Proper error classification to distinguish expected states from critical failures
|
|
||||||
|
|
||||||
/// Result of a keychain read operation with proper error classification
|
|
||||||
enum KeychainReadResult {
|
|
||||||
case success(Data)
|
|
||||||
case itemNotFound // Expected: key doesn't exist yet
|
|
||||||
case accessDenied // Critical: app lacks keychain access
|
|
||||||
case deviceLocked // Recoverable: device is locked
|
|
||||||
case authenticationFailed // Recoverable: biometric/passcode failed
|
|
||||||
case otherError(OSStatus) // Unexpected error
|
|
||||||
|
|
||||||
var isRecoverableError: Bool {
|
|
||||||
switch self {
|
|
||||||
case .deviceLocked, .authenticationFailed:
|
|
||||||
return true
|
|
||||||
default:
|
|
||||||
return false
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
/// Result of a keychain save operation with proper error classification
|
|
||||||
enum KeychainSaveResult {
|
|
||||||
case success
|
|
||||||
case duplicateItem // Can retry with update
|
|
||||||
case accessDenied // Critical: app lacks keychain access
|
|
||||||
case deviceLocked // Recoverable: device is locked
|
|
||||||
case storageFull // Critical: no space available
|
|
||||||
case otherError(OSStatus)
|
|
||||||
|
|
||||||
var isRecoverableError: Bool {
|
|
||||||
switch self {
|
|
||||||
case .duplicateItem, .deviceLocked:
|
|
||||||
return true
|
|
||||||
default:
|
|
||||||
return false
|
|
||||||
}
|
|
||||||
}
|
|
||||||
}
|
|
||||||
|
|
||||||
protocol KeychainManagerProtocol {
|
|
||||||
func saveIdentityKey(_ keyData: Data, forKey key: String) -> Bool
|
|
||||||
func getIdentityKey(forKey key: String) -> Data?
|
|
||||||
func deleteIdentityKey(forKey key: String) -> Bool
|
|
||||||
func deleteAllKeychainData() -> Bool
|
|
||||||
|
|
||||||
func secureClear(_ data: inout Data)
|
|
||||||
func secureClear(_ string: inout String)
|
|
||||||
|
|
||||||
func verifyIdentityKeyExists() -> Bool
|
|
||||||
|
|
||||||
// BCH-01-009: Methods with proper error classification
|
|
||||||
/// Get identity key with detailed result for error handling
|
|
||||||
func getIdentityKeyWithResult(forKey key: String) -> KeychainReadResult
|
|
||||||
/// Save identity key with detailed result for error handling
|
|
||||||
func saveIdentityKeyWithResult(_ keyData: Data, forKey key: String) -> KeychainSaveResult
|
|
||||||
|
|
||||||
// MARK: - Generic Data Storage (consolidated from KeychainHelper)
|
|
||||||
/// Save data with a custom service name
|
|
||||||
func save(key: String, data: Data, service: String, accessible: CFString?)
|
|
||||||
/// Load data from a custom service
|
|
||||||
func load(key: String, service: String) -> Data?
|
|
||||||
/// Delete data from a custom service
|
|
||||||
func delete(key: String, service: String)
|
|
||||||
}
|
|
||||||
|
|
||||||
final class KeychainManager: KeychainManagerProtocol {
|
final class KeychainManager: KeychainManagerProtocol {
|
||||||
// Use consistent service name for all keychain items
|
// Use consistent service name for all keychain items
|
||||||
private let service = BitchatApp.bundleID
|
private let service = BitchatApp.bundleID
|
||||||
|
|||||||
@@ -1,4 +1,5 @@
|
|||||||
import BitLogger
|
import BitLogger
|
||||||
|
import Combine
|
||||||
import Foundation
|
import Foundation
|
||||||
|
|
||||||
/// Dependencies for location notes, allowing tests to stub relay/identity behavior.
|
/// Dependencies for location notes, allowing tests to stub relay/identity behavior.
|
||||||
@@ -14,6 +15,8 @@ struct LocationNotesDependencies {
|
|||||||
var sendEvent: SendEvent
|
var sendEvent: SendEvent
|
||||||
var deriveIdentity: (_ geohash: String) throws -> NostrIdentity
|
var deriveIdentity: (_ geohash: String) throws -> NostrIdentity
|
||||||
var now: () -> Date
|
var now: () -> Date
|
||||||
|
// Fires when the geo relay directory refreshes; used to retry after "no relays".
|
||||||
|
var relayDirectoryUpdates: AnyPublisher<Void, Never> = Empty(completeImmediately: false).eraseToAnyPublisher()
|
||||||
|
|
||||||
private static let idBridge = NostrIdentityBridge()
|
private static let idBridge = NostrIdentityBridge()
|
||||||
|
|
||||||
@@ -39,7 +42,11 @@ struct LocationNotesDependencies {
|
|||||||
deriveIdentity: { geohash in
|
deriveIdentity: { geohash in
|
||||||
try idBridge.deriveIdentity(forGeohash: geohash)
|
try idBridge.deriveIdentity(forGeohash: geohash)
|
||||||
},
|
},
|
||||||
now: { Date() }
|
now: { Date() },
|
||||||
|
relayDirectoryUpdates: NotificationCenter.default
|
||||||
|
.publisher(for: .geoRelayDirectoryDidRefresh)
|
||||||
|
.map { _ in () }
|
||||||
|
.eraseToAnyPublisher()
|
||||||
)
|
)
|
||||||
}
|
}
|
||||||
|
|
||||||
@@ -63,7 +70,7 @@ final class LocationNotesManager: ObservableObject {
|
|||||||
|
|
||||||
var displayName: String {
|
var displayName: String {
|
||||||
let suffix = String(pubkey.suffix(4))
|
let suffix = String(pubkey.suffix(4))
|
||||||
if let nick = nickname, !nick.trimmingCharacters(in: .whitespacesAndNewlines).isEmpty {
|
if let nick = nickname?.trimmedOrNilIfEmpty {
|
||||||
return "\(nick)#\(suffix)"
|
return "\(nick)#\(suffix)"
|
||||||
}
|
}
|
||||||
return "anon#\(suffix)"
|
return "anon#\(suffix)"
|
||||||
@@ -77,6 +84,7 @@ final class LocationNotesManager: ObservableObject {
|
|||||||
@Published private(set) var errorMessage: String?
|
@Published private(set) var errorMessage: String?
|
||||||
private var subscriptionID: String?
|
private var subscriptionID: String?
|
||||||
private var noteIDs = Set<String>() // O(1) duplicate detection
|
private var noteIDs = Set<String>() // O(1) duplicate detection
|
||||||
|
private var directoryUpdateCancellable: AnyCancellable?
|
||||||
private let dependencies: LocationNotesDependencies
|
private let dependencies: LocationNotesDependencies
|
||||||
private let maxNotesInMemory = 500 // Defensive cap (relay limit is 200)
|
private let maxNotesInMemory = 500 // Defensive cap (relay limit is 200)
|
||||||
|
|
||||||
@@ -101,6 +109,15 @@ final class LocationNotesManager: ObservableObject {
|
|||||||
SecureLogger.warning("LocationNotesManager: invalid geohash '\(norm)' (expected 8 valid base32 chars)", category: .session)
|
SecureLogger.warning("LocationNotesManager: invalid geohash '\(norm)' (expected 8 valid base32 chars)", category: .session)
|
||||||
}
|
}
|
||||||
subscribe()
|
subscribe()
|
||||||
|
// The relay directory may load after init (remote fetch over Tor);
|
||||||
|
// retry automatically instead of staying stuck on "no relays".
|
||||||
|
directoryUpdateCancellable = dependencies.relayDirectoryUpdates
|
||||||
|
.sink { [weak self] in
|
||||||
|
Task { @MainActor [weak self] in
|
||||||
|
guard let self, self.state == .noRelays else { return }
|
||||||
|
self.subscribe()
|
||||||
|
}
|
||||||
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
func setGeohash(_ newGeohash: String) {
|
func setGeohash(_ newGeohash: String) {
|
||||||
@@ -199,8 +216,7 @@ final class LocationNotesManager: ObservableObject {
|
|||||||
|
|
||||||
/// Send a location note for the current geohash using the per-geohash identity.
|
/// Send a location note for the current geohash using the per-geohash identity.
|
||||||
func send(content: String, nickname: String) {
|
func send(content: String, nickname: String) {
|
||||||
let trimmed = content.trimmingCharacters(in: .whitespacesAndNewlines)
|
guard let trimmed = content.trimmedOrNilIfEmpty else { return }
|
||||||
guard !trimmed.isEmpty else { return }
|
|
||||||
let relays = dependencies.relayLookup(geohash, TransportConfig.nostrGeoRelayCount)
|
let relays = dependencies.relayLookup(geohash, TransportConfig.nostrGeoRelayCount)
|
||||||
guard !relays.isEmpty else {
|
guard !relays.isEmpty else {
|
||||||
state = .noRelays
|
state = .noRelays
|
||||||
|
|||||||
@@ -5,6 +5,79 @@ import Combine
|
|||||||
#if os(iOS) || os(macOS)
|
#if os(iOS) || os(macOS)
|
||||||
import CoreLocation
|
import CoreLocation
|
||||||
|
|
||||||
|
protocol LocationStateManaging: AnyObject {
|
||||||
|
var delegate: CLLocationManagerDelegate? { get set }
|
||||||
|
var desiredAccuracy: CLLocationAccuracy { get set }
|
||||||
|
var distanceFilter: CLLocationDistance { get set }
|
||||||
|
var authorizationStatus: CLAuthorizationStatus { get }
|
||||||
|
func requestWhenInUseAuthorization()
|
||||||
|
func requestLocation()
|
||||||
|
func startUpdatingLocation()
|
||||||
|
func stopUpdatingLocation()
|
||||||
|
}
|
||||||
|
|
||||||
|
protocol LocationStateGeocoding: AnyObject {
|
||||||
|
func cancelGeocode()
|
||||||
|
func reverseGeocodeLocation(
|
||||||
|
_ location: CLLocation,
|
||||||
|
completionHandler: @escaping ([CLPlacemark]?, Error?) -> Void
|
||||||
|
)
|
||||||
|
}
|
||||||
|
|
||||||
|
private final class CLLocationManagerAdapter: NSObject, LocationStateManaging {
|
||||||
|
private let base = CLLocationManager()
|
||||||
|
|
||||||
|
var delegate: CLLocationManagerDelegate? {
|
||||||
|
get { base.delegate }
|
||||||
|
set { base.delegate = newValue }
|
||||||
|
}
|
||||||
|
|
||||||
|
var desiredAccuracy: CLLocationAccuracy {
|
||||||
|
get { base.desiredAccuracy }
|
||||||
|
set { base.desiredAccuracy = newValue }
|
||||||
|
}
|
||||||
|
|
||||||
|
var distanceFilter: CLLocationDistance {
|
||||||
|
get { base.distanceFilter }
|
||||||
|
set { base.distanceFilter = newValue }
|
||||||
|
}
|
||||||
|
|
||||||
|
var authorizationStatus: CLAuthorizationStatus {
|
||||||
|
base.authorizationStatus
|
||||||
|
}
|
||||||
|
|
||||||
|
func requestWhenInUseAuthorization() {
|
||||||
|
base.requestWhenInUseAuthorization()
|
||||||
|
}
|
||||||
|
|
||||||
|
func requestLocation() {
|
||||||
|
base.requestLocation()
|
||||||
|
}
|
||||||
|
|
||||||
|
func startUpdatingLocation() {
|
||||||
|
base.startUpdatingLocation()
|
||||||
|
}
|
||||||
|
|
||||||
|
func stopUpdatingLocation() {
|
||||||
|
base.stopUpdatingLocation()
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
|
private final class CLGeocoderAdapter: LocationStateGeocoding {
|
||||||
|
private let base = CLGeocoder()
|
||||||
|
|
||||||
|
func cancelGeocode() {
|
||||||
|
base.cancelGeocode()
|
||||||
|
}
|
||||||
|
|
||||||
|
func reverseGeocodeLocation(
|
||||||
|
_ location: CLLocation,
|
||||||
|
completionHandler: @escaping ([CLPlacemark]?, Error?) -> Void
|
||||||
|
) {
|
||||||
|
base.reverseGeocodeLocation(location, completionHandler: completionHandler)
|
||||||
|
}
|
||||||
|
}
|
||||||
|
|
||||||
/// Unified manager for location-based channel state including:
|
/// Unified manager for location-based channel state including:
|
||||||
/// - CoreLocation permissions and one-shot location retrieval
|
/// - CoreLocation permissions and one-shot location retrieval
|
||||||
/// - Geohash channel computation from coordinates
|
/// - Geohash channel computation from coordinates
|
||||||
@@ -26,8 +99,8 @@ final class LocationStateManager: NSObject, CLLocationManagerDelegate, Observabl
|
|||||||
|
|
||||||
// MARK: - Private Properties (CoreLocation)
|
// MARK: - Private Properties (CoreLocation)
|
||||||
|
|
||||||
private let cl = CLLocationManager()
|
private let cl: LocationStateManaging
|
||||||
private let geocoder = CLGeocoder()
|
private let geocoder: LocationStateGeocoding
|
||||||
private var lastLocation: CLLocation?
|
private var lastLocation: CLLocation?
|
||||||
private var refreshTimer: Timer?
|
private var refreshTimer: Timer?
|
||||||
private var isGeocoding: Bool = false
|
private var isGeocoding: Bool = false
|
||||||
@@ -73,6 +146,8 @@ final class LocationStateManager: NSObject, CLLocationManagerDelegate, Observabl
|
|||||||
|
|
||||||
private override init() {
|
private override init() {
|
||||||
self.storage = .standard
|
self.storage = .standard
|
||||||
|
self.cl = CLLocationManagerAdapter()
|
||||||
|
self.geocoder = CLGeocoderAdapter()
|
||||||
super.init()
|
super.init()
|
||||||
|
|
||||||
// Skip CoreLocation setup in test environments
|
// Skip CoreLocation setup in test environments
|
||||||
@@ -92,10 +167,30 @@ final class LocationStateManager: NSObject, CLLocationManagerDelegate, Observabl
|
|||||||
/// Internal initializer for testing with custom storage
|
/// Internal initializer for testing with custom storage
|
||||||
init(storage: UserDefaults) {
|
init(storage: UserDefaults) {
|
||||||
self.storage = storage
|
self.storage = storage
|
||||||
|
self.cl = CLLocationManagerAdapter()
|
||||||
|
self.geocoder = CLGeocoderAdapter()
|
||||||
super.init()
|
super.init()
|
||||||
loadPersistedState()
|
loadPersistedState()
|
||||||
}
|
}
|
||||||
|
|
||||||
|
internal init(
|
||||||
|
storage: UserDefaults,
|
||||||
|
locationManager: LocationStateManaging,
|
||||||
|
geocoder: LocationStateGeocoding,
|
||||||
|
shouldInitializeCoreLocation: Bool
|
||||||
|
) {
|
||||||
|
self.storage = storage
|
||||||
|
self.cl = locationManager
|
||||||
|
self.geocoder = geocoder
|
||||||
|
super.init()
|
||||||
|
loadPersistedState()
|
||||||
|
guard shouldInitializeCoreLocation else { return }
|
||||||
|
cl.delegate = self
|
||||||
|
cl.desiredAccuracy = kCLLocationAccuracyHundredMeters
|
||||||
|
cl.distanceFilter = TransportConfig.locationDistanceFilterMeters
|
||||||
|
initializePermissionState()
|
||||||
|
}
|
||||||
|
|
||||||
private func loadPersistedState() {
|
private func loadPersistedState() {
|
||||||
// Load selected channel
|
// Load selected channel
|
||||||
if let data = storage.data(forKey: selectedChannelKey),
|
if let data = storage.data(forKey: selectedChannelKey),
|
||||||
@@ -132,12 +227,7 @@ final class LocationStateManager: NSObject, CLLocationManagerDelegate, Observabl
|
|||||||
}
|
}
|
||||||
|
|
||||||
private func initializePermissionState() {
|
private func initializePermissionState() {
|
||||||
let status: CLAuthorizationStatus
|
let status = cl.authorizationStatus
|
||||||
if #available(iOS 14.0, macOS 11.0, *) {
|
|
||||||
status = cl.authorizationStatus
|
|
||||||
} else {
|
|
||||||
status = CLLocationManager.authorizationStatus()
|
|
||||||
}
|
|
||||||
updatePermissionState(from: status)
|
updatePermissionState(from: status)
|
||||||
|
|
||||||
// Fall back to persisted teleport state if no location authorization
|
// Fall back to persisted teleport state if no location authorization
|
||||||
@@ -156,12 +246,7 @@ final class LocationStateManager: NSObject, CLLocationManagerDelegate, Observabl
|
|||||||
// MARK: - Public API (Permissions & Location)
|
// MARK: - Public API (Permissions & Location)
|
||||||
|
|
||||||
func enableLocationChannels() {
|
func enableLocationChannels() {
|
||||||
let status: CLAuthorizationStatus
|
let status = cl.authorizationStatus
|
||||||
if #available(iOS 14.0, macOS 11.0, *) {
|
|
||||||
status = cl.authorizationStatus
|
|
||||||
} else {
|
|
||||||
status = CLLocationManager.authorizationStatus()
|
|
||||||
}
|
|
||||||
switch status {
|
switch status {
|
||||||
case .notDetermined:
|
case .notDetermined:
|
||||||
cl.requestWhenInUseAuthorization()
|
cl.requestWhenInUseAuthorization()
|
||||||
@@ -509,10 +594,26 @@ final class LocationStateManager: NSObject, CLLocationManagerDelegate, Observabl
|
|||||||
}
|
}
|
||||||
}
|
}
|
||||||
|
|
||||||
|
/// Removes all persisted location state and resets the in-memory view.
|
||||||
|
/// Used by the panic wipe — selected channel, teleport set and bookmarks
|
||||||
|
/// (which reveal where the user has been) must not survive on device.
|
||||||
|
func panicWipe() {
|
||||||
|
storage.removeObject(forKey: selectedChannelKey)
|
||||||
|
storage.removeObject(forKey: teleportedStoreKey)
|
||||||
|
storage.removeObject(forKey: bookmarksKey)
|
||||||
|
storage.removeObject(forKey: bookmarkNamesKey)
|
||||||
|
teleportedSet.removeAll()
|
||||||
|
bookmarkMembership.removeAll()
|
||||||
|
bookmarks = []
|
||||||
|
bookmarkNames = [:]
|
||||||
|
teleported = false
|
||||||
|
selectedChannel = .mesh
|
||||||
|
}
|
||||||
|
|
||||||
private static func normalizeGeohash(_ s: String) -> String {
|
private static func normalizeGeohash(_ s: String) -> String {
|
||||||
let allowed = Set("0123456789bcdefghjkmnpqrstuvwxyz")
|
let allowed = Set("0123456789bcdefghjkmnpqrstuvwxyz")
|
||||||
return s
|
return s
|
||||||
.trimmingCharacters(in: .whitespacesAndNewlines)
|
.trimmed
|
||||||
.lowercased()
|
.lowercased()
|
||||||
.replacingOccurrences(of: "#", with: "")
|
.replacingOccurrences(of: "#", with: "")
|
||||||
.filter { allowed.contains($0) }
|
.filter { allowed.contains($0) }
|
||||||
|
|||||||
@@ -145,7 +145,7 @@ enum ContentNormalizer {
|
|||||||
}
|
}
|
||||||
|
|
||||||
// Trim and collapse whitespace
|
// Trim and collapse whitespace
|
||||||
let trimmed = simplified.trimmingCharacters(in: .whitespacesAndNewlines)
|
let trimmed = simplified.trimmed
|
||||||
let collapsed = trimmed.replacingOccurrences(of: "\\s+", with: " ", options: .regularExpression)
|
let collapsed = trimmed.replacingOccurrences(of: "\\s+", with: " ", options: .regularExpression)
|
||||||
|
|
||||||
// Take prefix and hash
|
// Take prefix and hash
|
||||||
|
|||||||
@@ -6,6 +6,7 @@
|
|||||||
// This is free and unencumbered software released into the public domain.
|
// This is free and unencumbered software released into the public domain.
|
||||||
//
|
//
|
||||||
|
|
||||||
|
import BitFoundation
|
||||||
import Foundation
|
import Foundation
|
||||||
import SwiftUI
|
import SwiftUI
|
||||||
|
|
||||||
|
|||||||
Some files were not shown because too many files have changed in this diff Show More
Reference in New Issue
Block a user