Files
BFM-decomp/tools/p16_permute.py
T
Drew T 63d029b563 fix(phase-30 S43): the §148 "GTE macro wall" is a SILENT CPP FALLBACK — permuter lane was dead on 63 drafts
- ROOT CAUSE (reproduced): make_base_c ran cpp_expand_macros BEFORE #include lines were
  dropped, so `cpp -P -nostdinc -` died on `#include "common.h"` (rc=1, empty stdout) and the
  `return c` fallback handed back the UNEXPANDED draft. hide_asm then ate the gte_* #define
  block + the function itself -> "Function not found in base.c" -> decomp-permuter no-opped
  in 0s, indistinguishable at the call site from "searched, found nothing".
- FIX: strip #include inside cpp_expand_macros (byte-neutral) + RAISE on cpp failure (R32/R35,
  no silent fallback); NEW defines_fn() assertion in setup() guards the OUTPUT so it catches
  every swallow cause (this, the §G comment class, future macro shapes); main() catches per-fn
  so a bad draft is loud+counted but cannot abort a batch.
- VERIFIED: func_8017C6F4 base.c keeps the def, 0 gte_ macros left, 35 asm b64-carriers;
  proxy validated over 388 stored drafts = 0 false alarms, 0 cpp raises (macro-free untouched);
  permuter now loads at base score 65 and iterates (was a 0s no-op).
- BLAST RADIUS (14,899 drafts scanned): 63 carry `#define … __asm__` + `#include`, incl. the
  behemoth renderer drafts — the permuter was silently dead on the highest-byte-weight targets.
- CONSEQUENCE (R14): §147/§148's ~40-probe floors were measured with the permuter UNAVAILABLE;
  "the permuter also plateaus" was never actually tested on those functions. §148 note corrected.
2026-08-05 15:59:27 -06:00

336 lines
17 KiB
Python

#!/usr/bin/env python3
"""p16_permute.py — measure decomp-permuter close-rate on m2c near-miss drafts (Phase 16).
For each function: take its (sig-unified) m2c draft, expand M2C_FIELD macros to plain casts so
pycparser can parse it, build base.c + target.o, run decomp-permuter (time-boxed, -j), and report
whether it reached score 0 (a byte match). This measures the permuter's yield — the differentiator
that decides whether the unattended 5-day run is worthwhile.
A score-0 hit is written to .run/permuter/<fn>/output-*/source.c; we copy it to --winners for gating.
python3 tools/p16_permute.py --funcs func_A,func_B --secs 300 --j 8
python3 tools/p16_permute.py --from-drafts .run/drafts-full-uni --near-max 8 --limit 12 --secs 300
"""
import argparse, base64, os, re, subprocess, sys, glob, shutil, time
REPO = os.path.dirname(os.path.dirname(os.path.abspath(__file__)))
sys.path.insert(0, os.path.dirname(os.path.abspath(__file__)))
import masked_diff # shared scalar-typedef-redef regex (SCALAR_TYPEDEF_RE), used by prep below
import permuter_weights # §31-directed mutation: residual class -> settings.toml [weight_overrides] (T5)
OV = "ov_SC01_077"
ASM = f"asm/{OV}/nonmatchings/{OV}"
PY = ".venv/bin/python"
TYPEDEFS = ("typedef unsigned char u8; typedef unsigned short u16; typedef unsigned int u32;\n"
"typedef signed char s8; typedef short s16; typedef int s32; typedef float f32;\n"
"typedef unsigned long long u64; typedef long long s64; typedef double f64;\n"
"typedef s32 M2C_UNK; typedef s8 M2C_UNK8; typedef s16 M2C_UNK16; typedef s32 M2C_UNK32; typedef s64 M2C_UNK64;\n"
"#define NULL ((void*)0)\n")
def sh(cmd, **kw):
return subprocess.run(cmd, capture_output=True, text=True, cwd=REPO, **kw)
def split_args(s):
"""split a top-level comma-separated arg list (balanced parens)."""
out, depth, cur = [], 0, ""
for ch in s:
if ch == "(": depth += 1; cur += ch
elif ch == ")": depth -= 1; cur += ch
elif ch == "," and depth == 0: out.append(cur); cur = ""
else: cur += ch
if cur.strip():
out.append(cur)
return out
def expand_m2c_field(c):
"""M2C_FIELD(EXPR, TYPE, OFF) -> (*(TYPE)((s8*)(EXPR)+(OFF))), innermost-first, repeatedly."""
while True:
i = c.find("M2C_FIELD(")
if i < 0:
return c
# find the matching close paren for this call
j = i + len("M2C_FIELD(")
depth = 1
while j < len(c) and depth:
if c[j] == "(": depth += 1
elif c[j] == ")": depth -= 1
j += 1
inner = c[i + len("M2C_FIELD("):j - 1]
args = split_args(inner)
if len(args) != 3:
# malformed; bail to avoid an infinite loop
return c
expr, typ, off = (a.strip() for a in args)
# if expr still has M2C_FIELD, expand it first (recurse on the substring)
if "M2C_FIELD(" in expr:
expr = expand_m2c_field(expr)
repl = f"(*({typ})((s8*)({expr})+({off})))"
c = c[:i] + repl + c[j:]
def _stmt_end(text, i):
"""from index i, return the index just past the terminating ';' at brace/paren depth 0, respecting
() [] {} and string/char literals -- so a multi-line __asm__ block is captured as one statement."""
depth, j, n = 0, i, len(text)
while j < n:
c = text[j]
if c in '"\'':
q = c; j += 1
while j < n and text[j] != q:
j += 2 if text[j] == "\\" else 1
j += 1; continue
if c in "([{":
depth += 1
elif c in ")]}":
depth -= 1
elif c == ";" and depth == 0:
return j + 1
j += 1
return n
def hide_asm(c):
"""Replace each register-`__asm__` pin declaration and each `__asm__` statement with a
`#pragma _permuter b64literal <b64>` carrier. pycparser parses the pragma as an opaque node;
decomp-permuter's process_pragmas (ast_util.to_c) DECODES it back to the original text when it
serializes a candidate for compilation -> cc1 still sees the real pins/GTE asm (regalloc still
steered, mvmva/GTE ops still compile), while pycparser never chokes on `__asm__`. (No submodule
edit: this reuses decomp-permuter's OWN b64literal pragma carrier.)"""
out, i = [], 0
pat = re.compile(r"\b__asm__\b")
while True:
m = pat.search(c, i)
if not m:
out.append(c[i:]); break
a = m.start()
# statement start = just past the previous ; { } -- captures a `register T x __asm__(...)` pin
# from `register`, and a bare `__asm__(...)` statement from itself.
b = max(c.rfind(";", i, a), c.rfind("{", i, a), c.rfind("}", i, a))
start = b + 1 if b >= 0 else i
end = _stmt_end(c, a)
out.append(c[i:start])
chunk = c[start:end].strip()
out.append("\n#pragma _permuter b64literal " + base64.b64encode(chunk.encode()).decode() + "\n")
i = end
return "".join(out)
def drop_preproc_and_scalar_typedefs(c):
"""Prepare draft C for the permuter/gate: strip scalar/M2C typedef REDEFS (TYPEDEFS/common.h
provide them) and drop #include (the permuter's preprocess runs `cpp -nostdinc` with no -I, so an
include can't resolve). KEEP #define (cpp expands it), custom struct/union/fn-ptr typedefs (the
draft's OWN types -- dropping them left their uses undeclared), and extern callee/data decls (so
the fn compiles in its REAL signature context)."""
c = masked_diff.strip_scalar_typedefs(c) # T4: splits multi-typedef lines the old regex couldn't
return "\n".join(ln for ln in c.splitlines() if not ln.lstrip().startswith("#include"))
COMMENT_RE = re.compile(r"/\*.*?\*/|//[^\n]*", re.DOTALL)
def strip_c_comments(c):
"""Drop C block+line comments before building base.c. A draft's header comment (often long, with
non-ASCII em-dashes/§ and prose that trips one of the prep regexes) can lose its closing */ ->
`cpp -P -nostdinc` dies 'unterminated comment' and decomp-permuter no-ops SILENTLY at preprocess
(Phase 24 T7 §G: this had masked the permuter on every commented giant draft — 'no match (0s)').
Comments are pure noise for the permuter, so strip them. (Drafts have no /* */ in string literals.)"""
return COMMENT_RE.sub("", c)
_DEFINE_ASM_RE = re.compile(r'^\s*#\s*define\b[^\n]*__asm__', re.M)
def cpp_expand_macros(c):
"""Macro-expand a draft whose GTE ops are `#define`s CONTAINING `__asm__` (the PsyQ `inline_c.h`
convention this codebase uses for RTPT/RTPS/NCLIP/etc).
`hide_asm` is built for `__asm__` STATEMENTS and `register ... __asm__("$sN")` pins inside a function
body: it scans back to the previous `;`/`{`/`}` and forward to the next top-level `;`. A multi-line
`#define gte_ldv0(r0) __asm__ volatile (...)` has neither boundary where hide_asm expects, so it chews
through the macro DEFINITIONS and swallows the function itself. pycparser then reports "Function <fn>
not found in base.c" and decomp-permuter **silently no-ops in 0s** — the same false-negative signature
as the §G comment bug, and it would disable the permuter on every GTE-using draft (i.e. most of the
renderer code). Pre-expanding with cpp turns each GTE op into an inline `__asm__` statement, which
hide_asm then hides correctly via the b64 pragma carrier.
Applied ONLY when the collision is actually present, so macro-free drafts are byte-untouched.
P30 S43: the `#include` MUST be stripped BEFORE the cpp call. `-nostdinc` with no `-I` cannot
resolve `common.h`, so cpp died rc=1 with EMPTY stdout and the old `return c` fallback handed back
the UNEXPANDED draft -- silently restoring the exact failure this function exists to prevent
(hide_asm eats the macro block + the function; pycparser then says "Function <fn> not found in
base.c"; decomp-permuter no-ops in 0s). That disabled the permuter on EVERY GTE-using draft, i.e.
most of the renderer code, and it read as a compiler wall in the §148 write-up. Includes are
dropped downstream by drop_preproc_and_scalar_typedefs regardless, so removing them here is
byte-neutral for the output. A cpp failure now RAISES (R32/R35: no silent fallback)."""
if not _DEFINE_ASM_RE.search(c):
return c
src = "\n".join(ln for ln in c.splitlines() if not ln.lstrip().startswith("#include"))
p = subprocess.run(["mipsel-linux-gnu-cpp", "-P", "-nostdinc", "-"],
input=src, capture_output=True, text=True)
if p.returncode or not p.stdout.strip():
raise RuntimeError(f"cpp macro-expansion failed (rc={p.returncode}): "
f"{p.stderr.strip().splitlines()[:3]}")
return p.stdout
def make_base_c(draft_c):
"""permuter base.c = scalar typedefs + the draft's custom typedefs/#defines/externs + the
M2C_FIELD-expanded, asm-hidden body. Keeping externs + custom types is essential: without them the
permuter matches in a DIFFERENT context than the whole-binary build (-> winners don't byte-gate)."""
body = strip_c_comments(draft_c)
body = cpp_expand_macros(body) # GTE `#define ... __asm__` would otherwise be eaten by hide_asm
body = expand_m2c_field(body)
body = hide_asm(body)
body = drop_preproc_and_scalar_typedefs(body)
return TYPEDEFS + body + "\n"
def defines_fn(base_c, fn):
"""True iff base.c still contains a DEFINITION of fn (a declarator ending in `{`, not `;`).
R32 coverage assertion for the base.c pipeline. decomp-permuter's own failure mode when the
definition is missing is a one-line "Function <fn> not found in base.c" followed by a SILENT
no-op in 0s -- indistinguishable at the call site from "searched hard, found nothing". Every
prep step here can swallow the function (hide_asm chewing an unexpanded multi-line macro block,
an unterminated comment eating the rest of the file, a future cpp/typedef edge) so the check
belongs on the OUTPUT, where it catches all of them, not on each cause."""
return re.search(r"^[^#/\n]*?\b" + re.escape(fn) + r"\s*\([^;{]*\)\s*\{", base_c, re.M) is not None
def winner_to_draft(winner_c):
"""permuter winner (typedefs + externs + body) -> gate-ready draft (externs + body). common.h
provides scalars/macros in the whole-binary TU. The permuter REFORMATS the typedefs (one per
line), so strip by line filter (drop #/typedef lines, keep externs + the function def), NOT a
string-replace of the TYPEDEFS block (that silently fails -> C89 typedef-redefinition error)."""
return drop_preproc_and_scalar_typedefs(winner_c)
def klass_for_fn(fn):
"""(klass, where_stuck) for a fn from the backlog (the wave agent's diagnosed residual class),
used to §31-direct the permuter's mutation weights. ('', '') if not logged."""
try:
import backlog
for r in backlog.load_best():
if r.get("name") == fn:
return r.get("klass") or "", r.get("where_stuck") or ""
except Exception:
pass
return "", ""
def setup(fn, draft_c, asm_subdir=ASM, klass=None, where=""):
pd = os.path.join(REPO, ".run/permuter", fn)
if os.path.exists(pd):
shutil.rmtree(pd)
os.makedirs(pd)
base = make_base_c(draft_c)
if not defines_fn(base, fn):
raise RuntimeError(f"base.c lost the definition of {fn} -- the permuter would report "
f"'not found in base.c' and no-op in 0s. Inspect {pd}/base.c "
f"(prep order: comments -> cpp macros -> M2C_FIELD -> hide_asm -> typedefs).")
open(f"{pd}/base.c", "w").write(base)
s = os.path.join(REPO, asm_subdir, fn + ".s")
tgt = f"{pd}/target.s"
with open(tgt, "w") as f:
f.write('.set noat\n.set noreorder\n.include "macro.inc"\n.section .text\n\n')
f.write(open(s, errors="replace").read())
r = sh(["mipsel-linux-gnu-as", "-Iinclude", "-march=r3000", "-mtune=r3000",
"-no-pad-sections", "-O1", "-G0", tgt, "-o", f"{pd}/target.o"])
if r.returncode:
return None
# §31-directed mutation (T5): a diagnosed residual class biases the permuter's pass weights
# toward that class's levers (docs/gcc-2.7.2-map). klass=None/"" -> no [weight_overrides] table
# -> the plain gcc defaults (identical to the pre-T5 undirected search: a safe superset).
body, prof = permuter_weights.render_settings_toml(fn, klass=klass, where=where)
open(f"{pd}/settings.toml", "w").write(body)
# -O0 for the _o0 split subseg (its target bytes are -O0; an -O2 compile can never match them)
csh = "compile_o0.sh" if asm_subdir.rstrip("/").endswith("_o0") else "compile.sh"
open(f"{pd}/compile.sh", "w").write(f'#!/bin/bash\nexec {REPO}/tools/permuter/{csh} "$@"\n')
os.chmod(f"{pd}/compile.sh", 0o755)
return pd
def run_permuter(pd, secs, j):
env = dict(os.environ, PATH=f"{REPO}/tools/permuter/bin:" + os.environ["PATH"])
try:
# run_masked.py = permuter.py + our floor-free relocation-masked scorer (Phase 24 T2, in-layer
# rebind of src.main.Scorer; no submodule edit). Scores true masked-.text closeness (reaches 0)
# instead of the stock mnemonic-diff floor that made the random walk diverge.
subprocess.run([PY, "tools/permuter/run_masked.py", pd, "-j", str(j), "--stop-on-zero"],
cwd=REPO, env=env, capture_output=True, text=True, timeout=secs)
except subprocess.TimeoutExpired:
pass
# Kill stragglers for THIS function only. The old pattern was `permuter/run_masked.py`, which
# matches EVERY concurrent run — so two p16_permute processes on a 32-thread box silently killed
# each other the moment the first one timed out, and the second's remaining budget vanished with
# no error anywhere. The scratch dir is in argv, so scope the pattern to it.
subprocess.run(["pkill", "-f", f"run_masked.py {pd}"], capture_output=True)
# ONLY output-0-* is a true byte-match; output-<N>-* are intermediate bests (score N != 0)
win = glob.glob(f"{pd}/output-0-*/source.c")
return win[0] if win else None
def main():
ap = argparse.ArgumentParser()
ap.add_argument("--funcs")
ap.add_argument("--from-drafts", default=".run/drafts-full-uni")
ap.add_argument("--near-max", type=int, default=8)
ap.add_argument("--limit", type=int, default=12)
ap.add_argument("--secs", type=int, default=300)
ap.add_argument("--j", type=int, default=8)
ap.add_argument("--winners", default=".run/permuter-winners")
ap.add_argument("--klass", default=None,
help="§31 residual class to direct the mutation weights (default: auto-lookup from the backlog)")
ap.add_argument("--asm-subdir", default=ASM,
help="target asm dir (default: ov_SC01_077's main object). A core in another overlay "
"or split object needs its own, e.g. asm/ov_SC01_000/nonmatchings/ov_SC01_000_after")
a = ap.parse_args()
os.chdir(REPO)
os.makedirs(a.winners, exist_ok=True)
if a.funcs:
funcs = a.funcs.split(",")
else:
# pick near-miss drafts (match_one mismatch in [1, near-max]) from the drafts dir
funcs = []
for cf in sorted(glob.glob(a.from_drafts + "/*.c")):
fn = os.path.basename(cf)[:-2]
r = sh([PY, "tools/match_one.py", fn, "--c", cf, "--asm-subdir", a.asm_subdir])
first = (r.stdout.strip().splitlines() or ["?"])[0]
m = re.search(r"(\d+) mismatched", first)
if m and 1 <= int(m.group(1)) <= a.near_max:
funcs.append(fn)
if len(funcs) >= a.limit:
break
print(f"permuter batch: {len(funcs)} near-miss fns, {a.secs}s each @ -j{a.j}")
won = 0
for k, fn in enumerate(funcs, 1):
cf = os.path.join(a.from_drafts, fn + ".c")
if not os.path.exists(cf):
print(f" [{k}/{len(funcs)}] {fn}: no draft"); continue
klass, where = (a.klass, "") if a.klass else klass_for_fn(fn)
try:
pd = setup(fn, open(cf).read(), asm_subdir=a.asm_subdir, klass=klass, where=where)
except RuntimeError as e: # loud + counted, but one bad draft must not abort the batch
print(f" [{k}/{len(funcs)}] {fn}: SETUP FAILED — {e}", flush=True); continue
if not pd:
print(f" [{k}/{len(funcs)}] {fn}: setup failed (target.o)"); continue
_prof = permuter_weights.classify(klass, where)
print(f" [{k}/{len(funcs)}] {fn}: class={klass or '-'} -> §31 profile={_prof or 'default'}", flush=True)
t0 = time.time()
win = run_permuter(pd, a.secs, a.j)
dt = int(time.time() - t0)
if win:
shutil.copy(win, os.path.join(a.winners, fn + ".c")); won += 1
print(f" [{k}/{len(funcs)}] {fn}: *** MATCH in {dt}s ***", flush=True)
else:
print(f" [{k}/{len(funcs)}] {fn}: no match ({dt}s)", flush=True)
print(f"\nPERMUTER YIELD: {won}/{len(funcs)} closed -> .run/permuter-winners (gate these whole-binary)")
if __name__ == "__main__":
main()