Close the non-web-productionization gaps from the 2026-06-18 recheck:
- a11y (#67/#57): assemble each widget's access_node() into an
accesskit::TreeUpdate (op-editor-ui/accessibility.rs); publish on
desktop via accesskit_macos/_windows/_unix SubclassingAdapter off the
raw window handle (op-host-desktop/a11y.rs, NOT accesskit_winit — the
casement winit fork), and on web via a hidden ARIA DOM mirror
(op-host-web/a11y_dom.rs); native/web region enumeration + action
routing in op-host-{native,web}.
- single-instance (#51): fixed-loopback-port guard + second-launch file
forwarding to the running window (op-host-desktop/single_instance.rs).
- layer panel: drop-into-container inserts at index 0 (#12a); container
predicate widened to frame/group/rectangle/ref (#12b); Escape closes
the context menu on both hosts (#14).
- distribution: Homebrew cask fix + op formula + install-op.sh, README
CLI install, CI codesign/notarize/signtool scaffolding gated on secrets.
Codex-reviewed (1 BLOCKER + 3 CONCERNs resolved). main.rs, app_handler.rs,
canvaskit.rs and Cargo.lock are staged whole and carry some unrelated
in-progress WIP they're interleaved with.
panel_height now includes PANEL_PAD_Y*2 and the pressed-row wash is
inset by ROW_HL_INSET_Y within a taller (36px) row; update both stale
assertions to mirror the paint geometry via the same constants.
- shape_picker: add vertical panel padding (PANEL_PAD_Y) and bump row
height to 36 with its own padding-aware hit-test, decoupled from
Select::hit (density row height has no padding concept).
- variables_panel: keep each hover/press wash equal to its hit rect so
the wash tracks the cursor (paint=hit). Center the add-variant "+"
icon and add-variable content in their washes; tighten the active
axis-tab and preset washes to hug their content instead of fixed pills.
Retire the from-scratch wasm32 skia raster web backend and the vendored
skia-safe fork now that CanvasKit is the sole web renderer.
- remove gl-webgl-shim + the `webgl` feature + backend/webgl.rs
- absorb chat streaming, live-sync, codegen, icon search, Figma/file IO,
and system fonts into the `canvaskit` build via a backend-agnostic
`RepaintContext` trait; wire them into `mount_ck` (chat send, image
paste routing, window resize)
- delete the skia raster modules (backend/, a11y, shell_drop/resize,
ime_target, boolean_ops, caret_pump, repaint_scheduler) + the skia
`Inner` mount; op-host-web is now `web` (stub) + `canvaskit` only
- drop [patch.crates-io]; delete vendor/skia-safe-op + crates/wasm-libc-shim
so skia-safe reverts to upstream crates.io 0.97.x (native unchanged,
byte-identical; upstream has no wasm32-unknown-unknown target)
- switch the bundle gate (check-wasm-bundle.sh) to --features canvaskit
Also float new shapes above the frame (z-order), inset the shape-picker
selected-row highlight, and align the web file-menu hover without the
traffic-light inset.
Builds clean: canvaskit + web-stub (wasm32) + native desktop; bundle gate
passes (0 env.*, 4.5 MiB gzip).
Bump the jian submodule from 58742b4 to ba914b6 (branch fix/fixed-size-flex-shrink), which stops taffy from shrinking fixed-size nodes in flex rows (square images / icon buttons / round pins kept their aspect; a fill column shrinks below min-content so a fixed sibling stays in the card). Add fixed_size_layout.rs covering the three cases the fix targets: a both-Number square keeps its size, a fill+Number tile still flex-shares its row, and a fixed sibling stays inside a card when the fill column has wide content.
Two issues with the file-menu overlay: (1) row hover used muted (near-invisible card-on-card in light mode) so rows looked un-hovered on the dense left side; use a 14% muted_foreground wash that reads across the whole row on either theme. (2) the cursor-move drain short-circuited over the sidebar, swallowing hover for the overlay's left half that overlaps the layer panel; let cursor moves reach apply_cursor_move when a dropdown is open. Also paint one synchronous frame before the blocking rfd dialog so the menu dismisses instead of hanging behind it.
The chip's clickable region used a 12px/char estimate plus 16px slop, so empty space left of a narrow status label (in the file-name gap) still opened agent settings. The desktop host now measures the chip text via its shared measure-only backend and feeds the width back through TopBar::chip_text_w; hit_test uses it and drops the slop so the target matches the painted chip. The wasm build falls back to a ~7px/char estimate. Regression test added.
Older TS/LLM exports omit image src and store fill as a bare color string, which the canonical jian loader rejects (missing field / invalid type). load_canonical now runs normalize_legacy_doc first: an iterative walk that injects an empty src into image nodes and wraps a string fill into a solid-fill array before parsing. Covered by two unit tests.
The perf refactor that added overlay args demoted paint_node_with_options to pub(crate), which broke op-host-desktop's scene_painter bridge. Re-expose a thin pub paint_node (base scene only, no reveal/hover/selection/pen overlays) and route the raster export through it, keeping the cross-crate surface minimal.
Point the built-in GlmCoding preset at glm-5.2 (was glm-4.7) and add a glm-5.2 route to the ab-v9 matrix via Zhipu's official coding plan (GLM_BASE + GLM_KEY env). Keys stay env-only.