PluginProbe
OpenStation: Desktop Windows, Dock & Virtual Desktops for WP Admin / 1.1.12
OpenStation: Desktop Windows, Dock & Virtual Desktops for WP Admin v1.1.12
1.1.12 1.1.11 1.1.10 1.1.9 1.1.8 1.1.7 1.1.6 1.1.5 1.1.4 1.1.3 1.1.2 1.1.1 1.1.0 1.0.1 1.0.0 0.9.8 0.9.7 0.9.6 0.9.4 0.9.5 0.9.3 0.9.2 0.9.1 0.9.0 0.8.9 All 36 releases
desktop-mode / includes / render / assets.php

assets.php in OpenStation: Desktop Windows, Dock & Virtual Desktops for WP Admin 1.1.12, at includes/render/assets.php

1,309 lines 64.1 KB
No matching file
Up and down to move Enter to open Esc to close
Raw Download Zip
1 <?php
2 /**
3 * OpenStation — Asset enqueue.
4 *
5 * Loads the desktop shell CSS + JS bundles when OpenStation is
6 * active and the request isn't chromeless / classic-overridden.
7 * Owns the entire `openstation_enqueue_assets()` body — the
8 * largest hook in the original render.php and the natural seam
9 * for "what does the shell ship to the browser today?".
10 *
11 * Extracted from `render.php` during the architecture-0.8.1 PHP
12 * slicing (phase 6).
13 *
14 * @package OpenStation
15 */
16
17 defined( 'ABSPATH' ) || exit;
18
19 /**
20 * Enqueues the OpenStation shell assets (CSS + JS) when OpenStation is active.
21 *
22 * Only loads the full desktop shell scripts and styles when the user has
23 * OpenStation enabled and the request is not a chromeless iframe load.
24 */
25 function openstation_enqueue_assets() {
26 if ( ! is_admin() ) {
27 return;
28 }
29
30 // Auto-enqueue the iframe bridge anywhere a openstation user
31 // might land. The bundle self-bails when not inside an iframe
32 // (`window.parent === window`), so it's a no-op on the parent
33 // shell — but cheap insurance against the failure mode the
34 // developer hit: an internal admin navigation drops the
35 // `?openstation_chromeless=1` flag, the chromeless inline bridge doesn't
36 // run, and `wp.os.iframe` silently disappears. With this
37 // auto-enqueue, the API is universally present for any same-
38 // origin admin page a openstation user opens — chromeless or
39 // accidentally classic.
40 if ( openstation_is_enabled() ) {
41 wp_enqueue_script( 'os-iframe-bridge' );
42
43 // Block Editor cross-window drop receiver. Listens for
44 // `os-drop` postMessages from the parent shell and
45 // inserts the matching block. Only enqueue inside the
46 // post-edit Block Editor screens — every other admin page
47 // would be paying for a bundle it never uses.
48 //
49 // `site-editor.php` (full-site editor) deliberately omitted:
50 // the FSE doesn't expose `wp.data.dispatch('core/block-editor')`
51 // until the user opens a template in the canvas iframe, so
52 // drops arriving before that point would silently time out
53 // after the receiver's 5 s `waitForEditor()` poll. Re-enable
54 // once we have a reliable readiness signal in that context.
55 global $hook_suffix;
56 if ( 'post.php' === $hook_suffix || 'post-new.php' === $hook_suffix ) {
57 wp_enqueue_script( 'os-gutenberg-drop-receiver' );
58 }
59 }
60
61 // Chromeless requests (iframes) need chromeless styles and overrides.
62 if ( openstation_is_chromeless_request() ) {
63 wp_enqueue_style( 'openstation' );
64 wp_enqueue_style( 'os-chromeless' );
65
66 /**
67 * Fires when chromeless styles are enqueued inside a OpenStation iframe.
68 *
69 * Plugin and theme authors can hook here to enqueue their own CSS
70 * overrides for legacy pages rendered in chromeless mode. Use the
71 * `.os-chromeless` body class to scope your rules.
72 */
73 do_action( 'openstation_chromeless_styles' );
74 return;
75 }
76
77 if ( ! openstation_is_shell_request() ) {
78 return;
79 }
80
81 // CSS. Only the sheets that paint surfaces present at boot — the
82 // shell chrome, the dock, desktop tiles and pinned notes. Sheets
83 // for on-demand surfaces (Preferences panel, AI assistant, bug
84 // report) ship as `deferredStyles` in the config blob below and
85 // inject on first open; a native window's sheet rides its
86 // registration's `styles` companion list the same way.
87 wp_enqueue_style( 'openstation' );
88 wp_enqueue_style( 'os-windows' );
89 wp_enqueue_style( 'os-window-overview' );
90 wp_enqueue_style( 'os-dock' );
91 wp_enqueue_style( 'os-dock-peek' );
92 wp_enqueue_style( 'os-workspaces' );
93 wp_enqueue_style( 'os-shortcuts' );
94 wp_enqueue_style( 'os-openstation-layout' );
95 wp_enqueue_style( 'os-files' );
96 wp_enqueue_style( 'os-notes' );
97 // Unconditional like the layout sheet: a live crossing into the
98 // phone band must not find the phone layer unstyled.
99 wp_enqueue_style( 'os-mobile' );
100
101 // Solo mode — a single window freed into a native OS window by the
102 // desktop host. Same shell, everything but that one window hidden.
103 $solo_window = openstation_solo_window_id();
104 if ( '' !== $solo_window ) {
105 wp_enqueue_style( 'os-solo' );
106
107 /*
108 * Hide every window that is not the one this surface was booted
109 * to paint — from the first frame, before any of them exist.
110 *
111 * Solo mode promises one window. Anything that opens a second
112 * (a game launched from a freed Games hub, a plugin calling
113 * `openWindow`) would otherwise land on top of the first, and
114 * solo's CSS stretches every window to fill the viewport, so it
115 * covers what the user was using.
116 *
117 * This has to be CSS rather than JavaScript, and it has to be
118 * inline. A JS rule can only run once the window exists, which
119 * is a frame too late — the user sees the newcomer flash before
120 * it is dealt with. A static stylesheet cannot express it
121 * either, because the selector depends on which window this is.
122 * So the rule is emitted with the id baked in, and no window but
123 * that one is ever painted.
124 *
125 * `visibility` rather than `display`: a hidden-but-laid-out
126 * window still has a size, which canvas-based windows need in
127 * order to initialise without dividing by zero on the way to
128 * being closed.
129 *
130 * The id is `sanitize_key()`-clean (see `openstation_solo_window_id()`),
131 * so it is safe in a selector; it is escaped again here because
132 * the distance between those two facts is exactly where this
133 * kind of bug lives.
134 */
135 wp_add_inline_style(
136 'os-solo',
137 sprintf(
138 'body.os-solo .os-window:not(#wp-window-%1$s){visibility:hidden !important;pointer-events:none !important;}',
139 esc_attr( $solo_window )
140 )
141 );
142 }
143
144 // The rebrand announcement paints on one visit per user and never
145 // again, so its stylesheet is only worth sending to the users who
146 // are actually going to see it. Computed once here and reused for
147 // the `rebrandNotice` config key below, which reads the same answer.
148 $show_rebrand_notice = openstation_should_show_rebrand_notice();
149 if ( $show_rebrand_notice ) {
150 wp_enqueue_style( 'os-announce' );
151 }
152
153 // JS.
154 wp_enqueue_script( 'openstation' );
155
156 // `wp_enqueue_command_palette_assets()` (WP 6.9+) enqueues the
157 // `wp-commands` store package, the `wp-core-commands` script that
158 // registers the WordPress-wide baseline (Add new post, Manage
159 // plugins, Switch theme, Browse patterns, …) AND — critically —
160 // the inline `wp.coreCommands.initializeCommandPalette( … )` call
161 // that actually populates the `core/commands` data store with the
162 // admin-menu commands. Without that inline init, the script loads
163 // but the store stays empty and `src/commands/shell-harvester.ts`
164 // finds nothing to publish.
165 //
166 // WP normally only calls this on screens that opt in to the native
167 // palette; the shell needs it on every admin URL it might wrap.
168 // `function_exists` guard for pre-6.9 sites — the harvester gracefully
169 // no-ops when the store is missing.
170 // See `openstation_defer_core_command_palette()` below for why
171 // Core's own boot-time enqueue is unhooked on shell pages.
172 //
173 // The Core command-palette runtime is NOT enqueued here any more.
174 // Its dependency chain is the whole Gutenberg runtime (~800 KB
175 // gzipped across forty-odd bundles), paid on every boot for a ⌘K
176 // palette most sessions never open. It now ships as an ordered
177 // manifest in the config blob (`commandPalette`, built by
178 // `openstation_build_command_palette_assets_payload()`), and
179 // `src/commands/palette-assets.ts` replays it the first time the
180 // palette is invoked. The shell harvester keeps its idle-time
181 // `install()` — a graceful no-op until the store exists — and
182 // re-installs on `os-command-palette-ready`.
183 $command_palette = openstation_build_command_palette_assets_payload();
184
185 if ( function_exists( 'wp_enqueue_command_palette_assets' ) ) {
186 // Expose the same menu-commands array WP serializes into
187 // `wp.coreCommands.initializeCommandPalette(...)` on a window
188 // slot the shell harvester can read. Built in PHP from `$menu`
189 // / `$submenu`, then injected as a `before` inline on our own
190 // bundle — that runs synchronously before `desktop.min.js`
191 // boots the shell harvester, so the lookup is guaranteed
192 // populated by the time `src/commands/shell-harvester.ts`
193 // classifies any command. Decoupled from WP's command-palette
194 // mount timing (which fires from a core-registered hook we
195 // can't reorder) — and, since the palette bundles went lazy,
196 // from whether they have loaded at all.
197 $menu_map = openstation_build_command_menu_map();
198 wp_add_inline_script(
199 'openstation',
200 'window.__openStationMenuCommands = ' . wp_json_encode( $menu_map ) . ';',
201 'before'
202 );
203 }
204
205 // Pass configuration to JavaScript.
206 global $title, $parent_file, $menu;
207
208 $menu_icon = 'dashicons-admin-generic';
209 if ( ! empty( $parent_file ) && ! empty( $menu ) ) {
210 foreach ( $menu as $item ) {
211 if ( ! empty( $item[2] ) && $item[2] === $parent_file && ! empty( $item[6] ) ) {
212 $menu_icon = $item[6];
213 break;
214 }
215 }
216 }
217
218 // Build dock items from the admin menu. Core pages are ordered
219 // first (Dashboard, Posts, Plugins, Users, Settings, …), then
220 // plugin-contributed top-level routes. `openstation_dock_placement`
221 // is the per-item filter escape hatch for hiding. Shared with the
222 // REST menu endpoint so live refreshes (post plugin-activation)
223 // produce the same ordering as the boot payload.
224 $menu_payload = openstation_build_menu_payload();
225 $dock_items = $menu_payload['dockItems'];
226 $native_windows = isset( $menu_payload['nativeWindows'] )
227 ? $menu_payload['nativeWindows']
228 : array();
229
230 // The BOOT page prints every registry window's template as a real
231 // `<template>` tag (`openstation_render_native_window_templates()`,
232 // admin_footer @ 20 — before footer scripts, so the tags are in
233 // the DOM before the shell boots and `ensureTemplate()` adopts
234 // them by id). The payload's `templateHtml` copy exists for the
235 // MID-SESSION path — a bridge or probe payload delivering a
236 // window whose plugin activated after the page rendered — so on
237 // the boot config it is ~27 KB of the same markup twice. Strip it
238 // here, and only here: the bridge and probe payloads keep theirs.
239 foreach ( $native_windows as &$native_window_row ) {
240 if ( is_array( $native_window_row ) ) {
241 $native_window_row['templateHtml'] = '';
242 }
243 }
244 unset( $native_window_row );
245 $native_window_script_data = isset( $menu_payload['nativeWindowScriptData'] )
246 ? $menu_payload['nativeWindowScriptData']
247 : array();
248 $server_widgets = isset( $menu_payload['serverWidgets'] )
249 ? $menu_payload['serverWidgets']
250 : array();
251 $server_wallpapers = isset( $menu_payload['serverWallpapers'] )
252 ? $menu_payload['serverWallpapers']
253 : array();
254 $server_command_scripts = isset( $menu_payload['serverCommandScripts'] )
255 ? $menu_payload['serverCommandScripts']
256 : array();
257 $server_commands = isset( $menu_payload['serverCommands'] )
258 ? $menu_payload['serverCommands']
259 : array();
260 $server_settings_tab_scripts = isset( $menu_payload['serverSettingsTabScripts'] )
261 ? $menu_payload['serverSettingsTabScripts']
262 : array();
263 $server_settings_tabs = isset( $menu_payload['serverSettingsTabs'] )
264 ? $menu_payload['serverSettingsTabs']
265 : array();
266 $server_dock_rail_renderer_scripts = isset( $menu_payload['serverDockRailRendererScripts'] )
267 ? $menu_payload['serverDockRailRendererScripts']
268 : array();
269 $server_titlebar_button_scripts = isset( $menu_payload['serverTitleBarButtonScripts'] )
270 ? $menu_payload['serverTitleBarButtonScripts']
271 : array();
272 $server_window_action_scripts = isset( $menu_payload['serverWindowActionScripts'] )
273 ? $menu_payload['serverWindowActionScripts']
274 : array();
275 $server_window_theme_scripts = isset( $menu_payload['serverWindowThemeScripts'] )
276 ? $menu_payload['serverWindowThemeScripts']
277 : array();
278 $server_window_themes = isset( $menu_payload['serverWindowThemes'] )
279 ? $menu_payload['serverWindowThemes']
280 : array();
281 $server_window_control_scripts = isset( $menu_payload['serverWindowControlScripts'] )
282 ? $menu_payload['serverWindowControlScripts']
283 : array();
284 $server_window_controls = isset( $menu_payload['serverWindowControls'] )
285 ? $menu_payload['serverWindowControls']
286 : array();
287 $server_window_slot_scripts = isset( $menu_payload['serverWindowSlotScripts'] )
288 ? $menu_payload['serverWindowSlotScripts']
289 : array();
290 $server_window_slots = isset( $menu_payload['serverWindowSlots'] )
291 ? $menu_payload['serverWindowSlots']
292 : array();
293 $server_window_chrome_scripts = isset( $menu_payload['serverWindowChromeScripts'] )
294 ? $menu_payload['serverWindowChromeScripts']
295 : array();
296 $server_window_chromes = isset( $menu_payload['serverWindowChromes'] )
297 ? $menu_payload['serverWindowChromes']
298 : array();
299 $server_window_notices = isset( $menu_payload['serverWindowNotices'] )
300 ? $menu_payload['serverWindowNotices']
301 : array();
302 $server_games = isset( $menu_payload['serverGames'] )
303 ? $menu_payload['serverGames']
304 : array();
305 // Boot-time copy of the desktop-theme library. Without it the
306 // shell's registry seeds EMPTY, and the consequences are subtle
307 // rather than obvious: PHP has already applied the user's theme
308 // server-side (stylesheet + shell attribute), but the client
309 // can't resolve the slug to an entry, so it believes nothing is
310 // active. Themed ICONS never paint, and switching back to the
311 // system default no-ops the first time — `applyDesktopTheme()`
312 // dedupes on an `activeId` that was never set.
313 $server_desktop_themes = isset( $menu_payload['serverDesktopThemes'] )
314 ? $menu_payload['serverDesktopThemes']
315 : array();
316
317 // Slim the theme library for BOOT: `cssText` and `tokens` are
318 // each ~20 KB per theme, and neither is read at boot — the ACTIVE
319 // theme's stylesheet is server-delivered (see
320 // `openstation_enqueue_desktop_theme_style()`, whose stamp
321 // `bootAlreadyApplied()` detects), and an inactive theme's CSS
322 // only matters at the moment the user picks it in the Preferences
323 // picker — which fetches the full entries from
324 // `GET desktop-mode/v1/desktop-themes` (`ensureFullDesktopThemes()`
325 // client-side). `cssDeferred` marks the gap so the shell can tell
326 // a slimmed entry from a theme that genuinely ships no CSS.
327 // Bridge and probe payloads keep full entries.
328 foreach ( $server_desktop_themes as &$desktop_theme_row ) {
329 if ( is_array( $desktop_theme_row ) ) {
330 $desktop_theme_row['cssText'] = '';
331 $desktop_theme_row['tokens'] = new stdClass();
332 $desktop_theme_row['cssDeferred'] = true;
333 }
334 }
335 unset( $desktop_theme_row );
336 $desktop_icons = isset( $menu_payload['desktopIcons'] )
337 ? $menu_payload['desktopIcons']
338 : array();
339
340 // Files-on-the-Desktop payload (Phase 0+1). Plugin-registered
341 // file types and openers ship as metadata only; the JS side
342 // holds the executable handlers and resolves on double-click.
343 $server_file_types = function_exists( 'openstation_build_file_types_payload' )
344 ? openstation_build_file_types_payload()
345 : array();
346 $server_file_openers = function_exists( 'openstation_build_file_openers_payload' )
347 ? openstation_build_file_openers_payload()
348 : array();
349 // Entries in the menu payload carry dependency handles; their
350 // payloads ride once in `scriptDepPayloads` (GH#892). The file
351 // lists stay whole: no sync module reads them on the client, and
352 // compacting them here was the only write to the map after the
353 // menu payload froze its own, so a refresh could not match it.
354 $script_dep_payloads = isset( $menu_payload['scriptDepPayloads'] )
355 ? (array) $menu_payload['scriptDepPayloads']
356 : array();
357 $user_file_associations = function_exists( 'openstation_get_user_file_associations' )
358 ? openstation_get_user_file_associations( get_current_user_id() )
359 : array();
360 $server_wallpaper_menu_items = function_exists( 'openstation_build_wallpaper_menu_items' )
361 ? openstation_build_wallpaper_menu_items()
362 : array();
363
364 /*
365 * OS-file drop config — what the browser drop manager will
366 * accept when the user drags a file from their native desktop
367 * onto any surface inside OpenStation (wallpaper, a folder,
368 * a window, or a chromeless iframe). The allowed-mimes list is
369 * the user-scoped `get_allowed_mime_types()` (already capability
370 * gated by WordPress); the size cap is `wp_max_upload_size()`.
371 *
372 * Both are filterable so plugins can narrow or widen the set —
373 * e.g. a media-only plugin can restrict drops to images, or a
374 * docs plugin can opt PDFs in for a specific role.
375 */
376 $drop_allowed_mimes_map = current_user_can( 'upload_files' )
377 ? get_allowed_mime_types( get_current_user_id() )
378 : array();
379 /**
380 * Filter the allowed-mime map used by the OS-file drop manager.
381 *
382 * @param array<string,string> $mimes_map `ext => mime-type` map (same shape `get_allowed_mime_types()` returns).
383 * @param int $user_id The current user id.
384 */
385 $drop_allowed_mimes_map = apply_filters( 'openstation_drop_allowed_mimes', $drop_allowed_mimes_map, get_current_user_id() );
386 $drop_allowed_mimes_map = is_array( $drop_allowed_mimes_map ) ? $drop_allowed_mimes_map : array();
387 $drop_allowed_mimes = array_values( array_unique( array_values( $drop_allowed_mimes_map ) ) );
388
389 $drop_max_size = (int) wp_max_upload_size();
390 /**
391 * Filter the per-file size cap (in bytes) used by the OS-file
392 * drop manager. Returning `0` disables the client-side cap —
393 * the server still enforces its own.
394 *
395 * @param int $max_size Default `wp_max_upload_size()`.
396 * @param int $user_id The current user id.
397 */
398 $drop_max_size = (int) apply_filters( 'openstation_drop_max_size', $drop_max_size, get_current_user_id() );
399
400 /**
401 * Filter the master OS-file drop enable gate. Lets plugins
402 * disable the drop manager by role / capability beyond the
403 * default `upload_files` check (e.g. only for admins, or
404 * only on specific multisite blogs).
405 *
406 * @param bool $enabled Default — `current_user_can( 'upload_files' )`.
407 * @param int $user_id The current user id.
408 */
409 $drop_enabled = (bool) apply_filters(
410 'openstation_drop_enabled',
411 current_user_can( 'upload_files' ),
412 get_current_user_id()
413 );
414
415 $drop_config = array(
416 'enabled' => $drop_enabled,
417 'allowedMimes' => $drop_allowed_mimes,
418 'extToMime' => $drop_allowed_mimes_map,
419 'maxSize' => $drop_max_size,
420 );
421
422 // Lazy-bundle URL builder. Each lazy-loaded bundle (AI Assistant,
423 // OS Settings panel, shell-overlays, window-system)
424 // is `<script>`-injected by the main bundle on demand — they don't
425 // go through `wp_register_script`, so they don't pick up WordPress's
426 // usual `?ver=<filemtime>` cache-buster. Without one, the browser
427 // happily serves a stale cached copy across plugin updates that
428 // don't bump `OPENSTATION_VERSION`, and the main bundle's loader
429 // fires a `<script>`-loaded event for a file that's missing the
430 // fresh `window.openStation*` factory the new code expects.
431 //
432 // Mirror the `$built_version( … )` helper in `includes/assets.php`:
433 // prefer the on-disk mtime of the actual file, fall back to the
434 // plugin version when the file is missing (dev environments where
435 // the bundle hasn't been built yet).
436 $suffix = openstation_asset_suffix();
437 $lazy_bundle_url = static function ( $base ) use ( $suffix ) {
438 $path = OPENSTATION_DIR . 'assets/js/' . $base . $suffix . '.js';
439 $ver = file_exists( $path )
440 ? (string) filemtime( $path )
441 : OPENSTATION_VERSION;
442 return esc_url_raw(
443 OPENSTATION_URL . 'assets/js/' . $base . $suffix . '.js?ver=' . $ver
444 );
445 };
446
447 // The page the shell opens first. On the shell screen it is the
448 // validated `target` query arg (else the session's focused window,
449 // the default window, the Dashboard); on a solo boot it is the
450 // request's own URL. Either way the frozen portal flags are gone
451 // from it, so the derived window id matches what the dock would
452 // produce for the same page — otherwise auto-opening the entry
453 // window and clicking the same dock icon would create a duplicate.
454 $boot_target = openstation_shell_boot_target();
455 $current_page = $boot_target['url'];
456 $from_portal = $boot_target['fromPortal'];
457 $from_portal_intent = $boot_target['fromPortalIntent'];
458
459 // On the shell screen `$title` and `$parent_file` describe the
460 // screen ("OpenStation", no menu), not the page about to open. The
461 // dock entry for that page is the identity the entry window folds
462 // into, so its title and icon are the right first paint; the iframe
463 // reports its own title once it lands either way.
464 $current_title = wp_strip_all_tags( (string) $title );
465 if ( openstation_is_shell_screen_request() ) {
466 $boot_meta = openstation_shell_boot_target_meta( $current_page, $dock_items );
467 $current_title = wp_strip_all_tags( $boot_meta['title'] );
468 if ( '' !== $boot_meta['icon'] ) {
469 $menu_icon = $boot_meta['icon'];
470 }
471 }
472
473 /**
474 * Filters the desktop shell configuration passed to JavaScript.
475 *
476 * @param array $config {
477 * Desktop shell configuration.
478 *
479 * @type string $currentPage The current admin page URL.
480 * @type string $currentTitle The current page title.
481 * @type string $currentIcon Dashicon class for the current page.
482 * @type string $adminUrl The base admin URL.
483 * @type string $colorScheme The active admin color scheme.
484 * @type array $dockItems Dock items derived from the admin menu. Core WordPress pages (Dashboard, Posts, Plugins, Users, Settings, CPTs…) are ordered first; plugin-contributed top-level routes (admin.php?page=*) follow. Items hidden via `openstation_dock_placement` are omitted.
485 * @type array $nativeWindows Server-declared native windows (via `openstation_register_window`). Shell registers + syncs tiles based on this list — activation/deactivation is a diff without shell reload.
486 * @type array $serverWidgets Server-declared right-column widgets (via `openstation_register_widget`). Shell syncs the widget registry + dynamically loads plugin scripts so widgets appear in the picker without a shell reload.
487 * @type array $serverWallpapers Server-declared wallpapers (via `openstation_register_wallpaper`). Same lifecycle — shell loads the plugin's JS, reads the full `WallpaperDef` from `window.openStationWallpapers[id]`, and registers / unregisters as plugins activate / deactivate.
488 * @type array $serverCommandScripts Script handles opted-in via `openstation_register_command_script`. Shell injects each URL on activation so commands registered by `wp.os.registerCommand` appear in the palette live. Deactivation unregisters any commands whose `owner` matches the departing handle.
489 * @type array $serverCommands Server-declared command metadata (via `openstation_register_command`). Advisory today — reserved for future pre-registration shims.
490 * @type array $serverSettingsTabScripts Script handles opted-in via `openstation_register_settings_tab_script`. Shell injects each URL on activation so tabs registered by `wp.os.registerSettingsTab` appear in the OS Settings window live. Deactivation unregisters tabs attributable to the departing handle.
491 * @type array $serverSettingsTabs Server-declared settings-tab metadata (via `openstation_register_settings_tab`). Enables live unregistration on plugin deactivation without requiring JS to set `owner`.
492 * @type array $desktopIcons Server-declared desktop icons (via `openstation_register_icon`). Rendered on the wallpaper as clickable shortcut tiles.
493 * @type array $accentColors Swatch list for the OS Settings accent picker. Filterable via `openstation_accent_colors`.
494 * @type array $toastTypes Toast-notification type map. Filterable via `openstation_toast_types`.
495 * @type string $defaultWallpaper Wallpaper slug applied on first boot. Filterable via `openstation_default_wallpaper`.
496 * @type array $session Saved session (windows, focused, updated).
497 * @type string $sessionUrl REST endpoint for saving the session.
498 * @type string $mediaUrl REST endpoint for media uploads (wp/v2/media).
499 * @type string $restUrl REST API root from rest_url(), safe for pretty and plain permalink installs.
500 * @type string $defaultWindowUrl REST endpoint for saving the default-window preference.
501 * @type array $defaultWindow { enabled: bool, url: string } — current default-window preference.
502 * @type bool $canUpload Whether the user holds the `upload_files` capability.
503 * @type string $pluginUrl Plugin base URL (no trailing slash). Used by the shell to locate vendor assets and by plugins to build asset URLs.
504 * @type string $pluginVersion Plugin semver string. Surfaced in the OS Settings → About tab; plugins can read it to gate features by version.
505 * @type string $aboutFeedUrl Authenticated admin-AJAX URL that returns the cached OpenStation journal feed for the About tab.
506 * @type string $restNonce Nonce for the session REST endpoint.
507 * @type string $soloWindow Window id when the shell was asked to paint exactly one window (`?openstation_solo=<id>`); '' otherwise. No dock, taskbar, wallpaper or desk, and no session restore.
508 * @type string $portalUrl Canonical `/openstation/` URL.
509 * @type bool $fromPortal Whether the shell was reached via the portal.
510 * @type bool $fromPortalIntent Whether the portal redirect resolved from an explicit `?target=…` (user navigation intent) rather than the session's focused window or the default-window fallback. Distinguishes a bare `/openstation/` visit from a portal-redirected admin-bar click so the shell can honour the URL the user actually asked for.
511 * @type array $seenIntros Slugs of one-time announcements the user has dismissed (e.g. `['openstation-rebrand']`).
512 * @type string $seenIntrosUrl REST endpoint for the seen-intros surface — POST `/seen` to mark, DELETE the base to reset.
513 * @type bool $shellTour Whether this site offers the first-boot shell tour (`openstation_show_shell_tour`). Whether this user already had it is `seenIntros` containing `shell-tour`.
514 * @type string $shellTourBundleUrl URL of the lazy shell-tour bundle, injected on first use.
515 * @type array $firstRun `{ installedAt, firstEnabledAt, enabledAt }`, epoch seconds, 0 when unknown — the first-run stamps, read-only.
516 * @type bool $rebrandNotice Whether to offer this user the one-off announcement explaining the rename from Desktop Mode to OpenStation. True only when migration 5 flagged this user as a Desktop Mode user from before the rename AND they haven't dismissed the `openstation-rebrand` intro. Only ever present in the shell config, so the announcement never reaches the classic admin.
517 * @type array|null $usageFeedback What the one-time usage feedback prompt needs (`restUrl`), or `null` when this user is not owed it: the feature is off, they have had OpenStation on for fewer than seven days by the `openstation_enabled_at` stamp, or they already answered or dismissed the `usage-feedback` intro. Carries no user data.
518 * @type string $usageFeedbackBundleUrl URL of the lazy `usage-feedback` bundle, the form the prompt opens.
519 * }
520 */
521 $config = apply_filters(
522 'openstation_shell_config',
523 array(
524 'currentPage' => esc_url( $current_page ),
525 'currentTitle' => $current_title,
526 'currentIcon' => sanitize_html_class( $menu_icon ),
527 // `self_admin_url()`: the base a window id is derived from,
528 // and the URL the shell leaves for on exit. Both want the
529 // admin the screen is in, which is the network one when the
530 // network shell screen is what rendered.
531 'adminUrl' => esc_url( self_admin_url() ),
532 'homeUrl' => esc_url( home_url( '/' ) ),
533 // Decoded: the shell assigns this to `window.location`,
534 // where `&amp;` would make `_wpnonce` arrive as
535 // `amp;_wpnonce` and fail the nonce check.
536 'logoutUrl' => esc_url_raw(
537 html_entity_decode( wp_logout_url(), ENT_QUOTES, 'UTF-8' )
538 ),
539 'colorScheme' => sanitize_html_class( get_user_option( 'admin_color' ), 'fresh' ),
540 'dockItems' => $dock_items,
541 // Baseline menu fingerprint. The shell seeds its last-known
542 // signature from this so the first off-allowlist menu change
543 // (vs. this boot state) is caught without a wasted probe. GH#325.
544 'menuSig' => isset( $menu_payload['menuSig'] ) ? (string) $menu_payload['menuSig'] : '',
545 'nativeWindows' => $native_windows,
546 // Handle-keyed script data the entries above reference —
547 // one copy per bundle, not one per window. See
548 // `openstation_collect_native_windows_payload()`.
549 'nativeWindowScriptData' => $native_window_script_data,
550 'serverWidgets' => $server_widgets,
551 'serverWallpapers' => $server_wallpapers,
552 'serverCommandScripts' => $server_command_scripts,
553 'serverCommands' => $server_commands,
554 'serverSettingsTabScripts' => $server_settings_tab_scripts,
555 'serverSettingsTabs' => $server_settings_tabs,
556 'serverDockRailRendererScripts' => $server_dock_rail_renderer_scripts,
557 'serverTitleBarButtonScripts' => $server_titlebar_button_scripts,
558 'serverWindowActionScripts' => $server_window_action_scripts,
559 'serverWindowThemeScripts' => $server_window_theme_scripts,
560 'serverWindowThemes' => $server_window_themes,
561 'serverWindowControlScripts' => $server_window_control_scripts,
562 'serverWindowControls' => $server_window_controls,
563 'serverWindowSlotScripts' => $server_window_slot_scripts,
564 'serverWindowSlots' => $server_window_slots,
565 'serverWindowChromeScripts' => $server_window_chrome_scripts,
566 'serverWindowChromes' => $server_window_chromes,
567 'serverWindowNotices' => $server_window_notices,
568 // Boot-time copy of the payload's `serverGames` — the same
569 // list the live-refresh path applies. Without it the games
570 // registry only fills after the first chromeless
571 // full-payload refresh and the Games hub boots empty.
572 'serverGames' => $server_games,
573 'serverDesktopThemes' => $server_desktop_themes,
574 'desktopIcons' => $desktop_icons,
575 'serverFileTypes' => $server_file_types,
576 'serverFileOpeners' => $server_file_openers,
577 // Handle => dependency payload for every `scriptDeps` list in
578 // this config; see `openstation_compact_script_deps()`.
579 'scriptDepPayloads' => (object) $script_dep_payloads,
580 'userFileAssociations' => $user_file_associations,
581 'filesUrl' => esc_url_raw( rest_url( 'desktop-mode/v1/files' ) ),
582 // Pinned-notes REST base (`includes/notes/rest.php`). The
583 // notes layer boots only when this is present.
584 'notesUrl' => esc_url_raw( rest_url( 'desktop-mode/v1/notes' ) ),
585 // Gates the "Convert to post" note affordance — the convert
586 // route (and its dock drop target) only make sense for users
587 // who can author posts.
588 'canCreatePosts' => current_user_can( 'edit_posts' ),
589 'serverWallpaperMenuItems' => $server_wallpaper_menu_items,
590 'accentColors' => openstation_get_accent_colors(),
591 'toastTypes' => openstation_get_toast_types(),
592 'coreUpdate' => openstation_get_core_update(),
593 'coreNotices' => openstation_get_core_notices(),
594 'pluginNotices' => openstation_get_plugin_notices(),
595 'defaultWallpaper' => openstation_get_default_wallpaper(),
596 'session' => openstation_get_session( get_current_user_id() ),
597 // The session route runs in the main site's blog context
598 // whichever desktop posts to it, so the network screen's
599 // URL says which session it is addressing — see
600 // `openstation_rest_session_network()`.
601 'sessionUrl' => esc_url_raw(
602 is_network_admin()
603 ? add_query_arg( 'network', '1', rest_url( 'desktop-mode/v1/session' ) )
604 : rest_url( 'desktop-mode/v1/session' )
605 ),
606 'restUrl' => esc_url_raw( rest_url() ),
607 'mediaUrl' => esc_url_raw( rest_url( 'wp/v2/media' ) ),
608 'dropConfig' => $drop_config,
609 'defaultWindowUrl' => esc_url_raw( rest_url( 'desktop-mode/v1/default-window' ) ),
610 'defaultWindow' => openstation_get_default_window( get_current_user_id() ),
611 'canUpload' => current_user_can( 'upload_files' ),
612 'pluginUrl' => esc_url_raw( untrailingslashit( OPENSTATION_URL ) ),
613 'pluginVersion' => OPENSTATION_VERSION,
614 'aboutFeedUrl' => esc_url_raw(
615 add_query_arg(
616 array(
617 'action' => 'openstation_about_feed',
618 'nonce' => wp_create_nonce( 'openstation_about_feed' ),
619 ),
620 admin_url( 'admin-ajax.php' )
621 )
622 ),
623 'iframeBridgeUrl' => $lazy_bundle_url( 'iframe-bridge' ),
624 // URL of the AI Assistant lazy bundle. The main bundle
625 // ships a stub matching the public `wp.os.ai` API; the
626 // stub `<script>`-injects this URL the first time the user
627 // opens the assistant. Picking `.js` vs `.min.js` here keeps
628 // the SCRIPT_DEBUG gate server-side, matching iframeBridgeUrl.
629 'aiAssistantBundleUrl' => $lazy_bundle_url( 'ai-assistant' ),
630 // URL of the shell-overlays lazy bundle. Pre-loaded by
631 // the main bundle after first paint so action-triggered
632 // overlays (toast, confirm dialog, context menus) feel
633 // instant the first time they fire.
634 'shellOverlaysBundleUrl' => $lazy_bundle_url( 'shell-overlays' ),
635 // The shell-bundle diet: features whose right moment is a
636 // user gesture (or a presence signal) ride their own
637 // bundles instead of the boot-critical `desktop[.min].js`.
638 // Each sentinel in the shell loads its bundle at that
639 // moment — see the entry file each bundle names.
640 'fileDropBundleUrl' => $lazy_bundle_url( 'file-drop' ),
641 'filesOverlaysBundleUrl' => $lazy_bundle_url( 'files-overlays' ),
642 'notesBundleUrl' => $lazy_bundle_url( 'notes' ),
643 'dockConstellationBundleUrl' => $lazy_bundle_url( 'dock-constellation' ),
644 'windowLinkVisualsBundleUrl' => $lazy_bundle_url( 'window-link-visuals' ),
645 // Presence hint for the notes sentinel: a desktop with no
646 // notes skips the notes bundle AND the boot-time list
647 // request. Two id-only existence probes at most.
648 'hasNotes' => function_exists( 'openstation_notes_user_has_any' )
649 ? openstation_notes_user_has_any()
650 : false,
651 // URL of the full `<os-*>` component kit. The shell
652 // never loads this — its own bundles import the
653 // components they render. It exists for
654 // `wp.os.loadComponents()`, i.e. for plugin code that
655 // CANNOT import: a plugin shipped as a zip has no path
656 // to this repo at build time, so before this URL its
657 // only routes to a `<os-switch>` were to bundle a second
658 // copy or hand-roll one. Shipping the URL costs one
659 // string and keeps the SCRIPT_DEBUG choice server-side.
660 'componentsBundleUrl' => $lazy_bundle_url( 'os-components' ),
661 // Mio — the desk companion. `mio` carries the
662 // appearance + physics (see `openstation_mio_config()`);
663 // `mioBundleUrl` is the lazy PixiJS bundle the shell
664 // controller injects the first time a user switches the
665 // Mio on from its dock tile. Shipping the URL
666 // unconditionally costs one short string and keeps the
667 // SCRIPT_DEBUG choice server-side, matching every other
668 // lazy bundle here.
669 //
670 // Both keys ship whether or not the user has Mio on,
671 // and that is the whole of its cost to a shell that doesn't:
672 // ~470 bytes gzipped of config, plus a URL. No script, no
673 // style, no PixiJS. The config has to be here rather than
674 // fetched on first toggle, or the `openstation_mio_config`
675 // filter would silently not apply until the next reload.
676 'mio' => openstation_mio_config(),
677 'mioBundleUrl' => $lazy_bundle_url( 'mio' ),
678 // URL of the lazy window-system bundle (Stage 11).
679 // Holds the `Window` class and its DOM / pointer / tab /
680 // chrome helpers — the single largest module split out of
681 // the main bundle. Loaded on first `windowManager.open()`
682 // / `openNew()` call (both async); pre-loaded
683 // by the shell after first paint when no session is being
684 // restored and no `openCurrentPage` will fire.
685 'windowSystemBundleUrl' => $lazy_bundle_url( 'window-system' ),
686 // URL of the lazy phone-layer bundle. Injected by the main
687 // bundle only when the mode resolves to `mobile`, so a
688 // desktop never fetches it. `mode` carries the preference
689 // and breakpoints the first-paint head stamp already used,
690 // plus the server's default tab-bar pins — see
691 // `includes/mobile.php`.
692 'mobileBundleUrl' => $lazy_bundle_url( 'mobile' ),
693 'mode' => openstation_mode_config( get_current_user_id() ),
694 // URL of the item-visibility-menu lazy bundle — the
695 // right-click "hide from dock / desktop" menu. Injected by
696 // the main bundle's loader shim on the first right-click.
697 'itemVisibilityMenuBundleUrl' => $lazy_bundle_url( 'item-visibility-menu' ),
698 // URL of the workspace-wizard lazy bundle — the modal
699 // behind "Edit this workspace…". Injected by the main
700 // bundle's loader shim on first open.
701 'workspaceWizardBundleUrl' => $lazy_bundle_url( 'workspace-wizard' ),
702 // Server-side view of the workspace templates, so a plugin
703 // can add or drop one from PHP. The client merges these
704 // with its own built-ins by id — see
705 // `src/workspaces/server-sync.ts`.
706 'workspacePresets' => openstation_workspace_presets(),
707 // URL of the release-card lazy bundle — the vinyl core-
708 // update announcement. Injected by `maybeShowUpdate()` only
709 // when a core update is actually pending.
710 'releaseCardBundleUrl' => $lazy_bundle_url( 'release-card' ),
711 'restNonce' => wp_create_nonce( 'wp_rest' ),
712 // Non-empty when the shell was asked to paint exactly one
713 // window and nothing else. See `OPENSTATION_SOLO_FLAG`.
714 'soloWindow' => openstation_solo_window_id(),
715 'osSettings' => openstation_get_os_settings( get_current_user_id() ),
716 'osSettingsUrl' => esc_url_raw( rest_url( 'desktop-mode/v1/os-settings' ) ),
717 'seenIntros' => openstation_get_seen_intros( get_current_user_id() ),
718 'seenIntrosUrl' => esc_url_raw( rest_url( 'desktop-mode/v1/intros' ) ),
719 // True only for a user migration 5 flagged as a Desktop Mode
720 // user from before the rename, who hasn't dismissed the
721 // announcement yet. Same value that gated `os-announce`
722 // above; the dialog cannot paint without that stylesheet, so
723 // the two must not diverge.
724 'rebrandNotice' => $show_rebrand_notice,
725 // The first-boot shell tour: whether this site offers it
726 // (the `openstation_show_shell_tour` filter), and the lazy
727 // bundle that runs it. Whether THIS user already had it is
728 // `seenIntros` containing `shell-tour`; the shell reads that
729 // itself so a reset can replay the tour without a new boot.
730 'shellTour' => openstation_should_offer_shell_tour( get_current_user_id() ),
731 'shellTourBundleUrl' => $lazy_bundle_url( 'shell-tour' ),
732 // The first-run stamps, read-only, epoch seconds (0 when
733 // unknown): when the plugin was installed, when anyone first
734 // enabled it, and when this user did. See
735 // `includes/first-run/stamps.php`.
736 'firstRun' => openstation_first_run_config( get_current_user_id() ),
737 // Null for everyone but a user who has had OpenStation on
738 // long enough and has not answered yet; the gate lives in
739 // `includes/feedback/usage.php`. The form is a lazy bundle
740 // fetched only when the user says yes to the prompt.
741 'usageFeedback' => function_exists( 'openstation_usage_feedback_config' ) ? openstation_usage_feedback_config() : null,
742 'usageFeedbackBundleUrl' => $lazy_bundle_url( 'usage-feedback' ),
743 'aiSearchUrl' => esc_url_raw( rest_url( 'desktop-mode/v1/ai/search' ) ),
744 // AI assistant availability + per-user toggle. Drives whether the
745 // Cmd+K palette and admin-bar icon appear, and the setup placeholder.
746 'aiAssistant' => function_exists( 'openstation_ai_assistant_config' )
747 ? openstation_ai_assistant_config()
748 : null,
749 // Lets the Features tab re-check provider availability without a
750 // reload after a connector is configured in Settings → Connectors.
751 'aiStatusUrl' => esc_url_raw( rest_url( 'desktop-mode/v1/ai/status' ) ),
752 'extendedOptions' => current_user_can( 'manage_options' ) ? openstation_get_extended_options() : null,
753 'extendedOptionsUrl' => esc_url_raw( rest_url( 'desktop-mode/v1/extended-options' ) ),
754 // Site-wide games kill switch (Extended options). Exposed to
755 // every user — the shell skips the challenges Heartbeat
756 // channel when the framework is off.
757 'gamesEnabled' => openstation_games_enabled(),
758 'currentUserIsAdmin' => current_user_can( 'manage_options' ),
759 // Null on single-site installs; its `networkAdmin` null
760 // without `manage_network`, which is what keeps the dock
761 // tile from registering.
762 'multisite' => openstation_multisite_payload(),
763 'portalUrl' => esc_url( openstation_portal_url() ),
764 'fromPortal' => $from_portal,
765 'fromPortalIntent' => $from_portal_intent,
766 // One-shot like the boot target: a switch from another
767 // site's overview lands in this one's.
768 'landInOverview' => openstation_shell_lands_in_overview(),
769 'arrivalDirection' => openstation_shell_arrival_direction(),
770 'hopLinkOffer' => function_exists( 'openstation_network_link_offer' ) ? openstation_network_link_offer() : null,
771 'pwa' => array(
772 'manifestUrl' => esc_url_raw( openstation_pwa_manifest_url() ),
773 'swUrl' => esc_url_raw( openstation_pwa_sw_url() ),
774 // Extensionless retry target for hosts whose nginx 404s
775 // virtual .js paths before WordPress runs (WordPress.com).
776 'swFallbackUrl' => esc_url_raw( openstation_pwa_sw_fallback_url() ),
777 // The site's home path — the scope the registration
778 // asks for, so a subdirectory network's sites each get
779 // their own worker instead of fighting over the root.
780 'swScope' => openstation_pwa_sw_scope(),
781 // The worker's per-user flags, computed HERE rather than
782 // baked into the served `sw.js`.
783 //
784 // A service worker is origin-wide but these are per-user
785 // preferences, so putting them in the script bytes made
786 // the body differ between an anonymous and a logged-in
787 // request — and any in-scope logged-out navigation then
788 // installed a "new" worker, which at the time reloaded
789 // the shell. The bytes are identical for everyone now;
790 // the shell posts these to the worker at boot.
791 //
792 // Computed server-side, not read from the settings
793 // snapshot client-side, because
794 // `openstation_pwa_admin_asset_cache_enabled()` applies
795 // the `openstation_pwa_admin_asset_cache` filter — an
796 // operator's site-wide veto has to keep working.
797 'swConfig' => array(
798 'adminAssetCache' => (bool) openstation_pwa_admin_asset_cache_enabled(),
799 'windowPrewarm' => ! empty( openstation_get_os_settings( get_current_user_id() )['windowPrewarmEnabled'] ),
800 ),
801 // The build this shell document belongs to. When a new
802 // worker takes over mid-session the shell asks it for
803 // the stamp it was served with and compares; only a
804 // difference — the shell's own files changed on the
805 // server — offers the user a reload. Never automatic.
806 'shellBuild' => openstation_shell_build_stamp(),
807 'stateUrl' => esc_url_raw( rest_url( 'desktop-mode/v1/pwa-state' ) ),
808 'state' => openstation_pwa_get_user_state( get_current_user_id() ),
809 // Mirrors the manifest's `name` field — used by the
810 // install pill so the button reads "Install <site>"
811 // rather than "Install <current page>" (which would
812 // be misleading: we install the whole site as an
813 // app, not the dashboard window the user happens to
814 // be viewing).
815 'appName' => get_bloginfo( 'name' ),
816 // Operators set the `openstation_pwa_force_replace_sw`
817 // filter to `true` when another root-scope service
818 // worker on the origin is blocking openstation
819 // installability (foreign-SW guard in
820 // `src/pwa/sw-register.ts`). Default `false` preserves
821 // the polite behaviour where we yield to existing PWAs.
822 'forceReplaceSw' => openstation_pwa_force_replace_sw(),
823 ),
824 // Ordered Core command-palette asset manifest, replayed on
825 // first palette invocation. `null` on pre-6.9 sites.
826 'commandPalette' => $command_palette,
827 // Stylesheets for shell surfaces that render on demand —
828 // the Preferences panel, the AI assistant, the bug-report
829 // window. None of them is a server-registered native
830 // window (they are built client-side by the shell
831 // bundle), so the `styles` companion mechanism can't
832 // carry their CSS; instead the shell injects each sheet
833 // the first time its surface opens, via
834 // `ensureDeferredStyle()` in `src/deferred-styles.ts`.
835 // Same resolved shape a native window's `styleUrl` /
836 // `styleInline` travels in.
837 // Which of the `deferredStyles` entries a game needs.
838 // `launchGame()` injects these before the window paints.
839 'gameStyleHandles' => function_exists( 'openstation_games_style_handles' )
840 ? openstation_games_style_handles()
841 : array(),
842 'deferredStyles' => openstation_build_deferred_styles(
843 array_merge(
844 array(
845 'desktop-mode-ai-assistant',
846 'desktop-mode-bug-report',
847 // The explorer's shared sheet. It rides the WP
848 // Explorer APP as a companion style, but the
849 // desktop FOLDER window paints its preview pane
850 // with the same `os-my-wordpress__*` classes and
851 // — being a native window opened straight from
852 // JS — carries no companion styles of its own.
853 // Without this, the pane rendered unstyled until
854 // the explorer had been opened once in the
855 // session.
856 'desktop-mode-my-wordpress',
857 ),
858 // The Games sheets. They also ride the hub window as
859 // companion styles, but a game is reachable without
860 // the hub — the challenge toast, solo mode, and
861 // `wp.os.games.launch()` all land in `launchGame()`
862 // with no hub window in the tab. Listing them here
863 // costs a URL each in the boot config and no CSS
864 // until `launchGame()` asks.
865 function_exists( 'openstation_games_style_handles' )
866 ? openstation_games_style_handles()
867 : array()
868 )
869 ),
870 )
871 );
872
873 wp_localize_script( 'openstation', 'openStationConfig', $config );
874
875 /**
876 * Fires when OpenStation assets are enqueued.
877 */
878 do_action( 'openstation_mode_init' );
879 }
880 add_action( 'admin_enqueue_scripts', 'openstation_enqueue_assets' );
881
882 /**
883 * Keep Core's boot-time command-palette enqueue off shell pages.
884 *
885 * WordPress 7.0 hooks `wp_enqueue_command_palette_assets()` on
886 * `admin_enqueue_scripts` by default, which puts the palette's whole
887 * dependency chain — the Gutenberg runtime, ~800 KB gzipped — on
888 * every admin page. On a SHELL page that is pure dead weight: the
889 * shell suppresses Core's palette unconditionally (the ⌘K keystroke
890 * and the admin-bar icon both route to the shell's own palette), so
891 * the runtime it powers can never be shown. Unhooking here lets the
892 * deferred manifest (`openstation_build_command_palette_assets_payload()`)
893 * capture the chain instead, and the shell loads it on the first
894 * palette invocation.
895 *
896 * Deliberately scoped: classic-mode requests keep Core's default,
897 * because a classic page is Core's own UI where Core's palette is the
898 * right one.
899 *
900 * Windows are handled separately by
901 * {@see openstation_chromeless_should_trim_command_palette()} in
902 * `includes/render/chromeless-trim.php` — same idea, but it has to
903 * drop the whole palette *family* rather than just unhook Core's
904 * callback, and it exempts block-editor screens. Unhooking alone is
905 * not enough there: a third-party palette extension that declares
906 * `wp-commands` keeps the entire chain queued as its dependency.
907 *
908 * Priority 0, ahead of Core's default 10, so the removal lands
909 * before the callback fires. On WP 6.9 (function exists, no default
910 * hook) the `remove_action()` is a harmless no-op.
911 */
912 function openstation_defer_core_command_palette() {
913 if ( ! openstation_is_shell_request() ) {
914 return;
915 }
916 remove_action( 'admin_enqueue_scripts', 'wp_enqueue_command_palette_assets' );
917 }
918 add_action( 'admin_enqueue_scripts', 'openstation_defer_core_command_palette', 0 );
919
920 /**
921 * Emits `<link rel="preload">` hints for the shell's critical-path
922 * assets so the browser starts fetching them as soon as it parses
923 * the document `<head>`.
924 *
925 * Without this, the browser doesn't discover the main `desktop.min.js`
926 * bundle URL until it parses the footer `<script>` tag — typically
927 * ~1 RTT after the rest of the page has started loading. For a 464 KB
928 * bundle on a midrange phone that's a measurable FCP delay; on a
929 * slow connection it dominates first paint entirely.
930 *
931 * Hooked at `admin_print_styles @ 1` so the preload tags land in
932 * `<head>` BEFORE the regular `<link rel="stylesheet">` tags (which
933 * default to priority 10) and well before the footer `<script>`
934 * tag. The `wp_resource_hints` filter is frontend-only (`wp_head`-
935 * driven) and isn't invoked in admin context, so we emit our own
936 * tags.
937 *
938 * Four targets by default, split across two relationship types:
939 * - `desktop[.min].js` (preload) — the shell bundle (biggest win),
940 * consumed by the footer `<script>` on this very load.
941 * - `desktop.css` (preload) — shell base CSS, needed for first
942 * paint. Its registered handle is `filemtime`-stamped so the
943 * stylesheet URL matches this hint exactly (a `?ver=` mismatch makes
944 * the browser treat the preload as unused).
945 * - `window-system[.min].js` (prefetch) — lazy bundle `<script>`-
946 * injected by the main bundle on the first `open()`.
947 * - `shell-overlays[.min].js` (prefetch) — lazy bundle injected on the
948 * first toast / dialog / context-menu.
949 *
950 * The lazy bundles use `prefetch` rather than `preload`: they're loaded
951 * later (often beyond the ~3s window Chrome allows a `preload` before it
952 * warns "preloaded but not used in time"), so `prefetch` keeps the early
953 * low-priority cache fill without the must-use-now contract.
954 *
955 * Plugins can extend the hint list via the `openstation_preload_hints`
956 * filter — e.g. a settings tab whose bundle the user opens on every
957 * visit can opt its own URL into the preload phase.
958 *
959 * Same-origin resources only — no `crossorigin` attribute. CDN hosts
960 * that serve `wp-content/plugins/` from a different origin should
961 * supply absolute URLs through the filter; in that case the consumer
962 * is responsible for the `crossorigin` semantics.
963 */
964 function openstation_print_preload_hints() {
965 if ( ! openstation_is_shell_request() ) {
966 return;
967 }
968
969 $suffix = openstation_asset_suffix();
970
971 $build_url = static function ( $relative ) {
972 $path = OPENSTATION_DIR . $relative;
973 $ver = file_exists( $path ) ? (string) filemtime( $path ) : OPENSTATION_VERSION;
974 return OPENSTATION_URL . $relative . '?ver=' . $ver;
975 };
976
977 $hints = array(
978 // Critical path — consumed on this very page load (the footer
979 // `<script>` and the shell stylesheet), so `preload` is correct.
980 array(
981 'href' => $build_url( 'assets/js/desktop' . $suffix . '.js' ),
982 'as' => 'script',
983 'rel' => 'preload',
984 ),
985 array(
986 'href' => $build_url( 'assets/css/desktop.css' ),
987 'as' => 'style',
988 'rel' => 'preload',
989 ),
990 // Lazy bundles — `<script>`-injected by the main bundle after
991 // first paint (window-system on the first `open()`, shell-overlays
992 // on the first toast / dialog / context-menu). They are frequently
993 // NOT requested within the ~3s window Chrome allows a `preload`,
994 // which produced "resource was preloaded but not used in time"
995 // warnings. `prefetch` is the right hint: same early, low-priority
996 // fetch into the cache, but no must-use-now contract — so the
997 // injected `<script src>` is served from cache with no warning.
998 array(
999 'href' => $build_url( 'assets/js/window-system' . $suffix . '.js' ),
1000 'as' => 'script',
1001 'rel' => 'prefetch',
1002 ),
1003 array(
1004 'href' => $build_url( 'assets/js/shell-overlays' . $suffix . '.js' ),
1005 'as' => 'script',
1006 'rel' => 'prefetch',
1007 ),
1008 );
1009
1010 // The phone layer is needed at boot on a phone and never on a
1011 // desktop; the server cannot see the viewport, so the user agent
1012 // decides whether the hint is worth its bytes. A wrong guess costs
1013 // one low-priority fetch, never a wrong layout — the stamp and the
1014 // bundle loader read the real viewport.
1015 if ( openstation_mode_hint_is_mobile( get_current_user_id() ) ) {
1016 $hints[] = array(
1017 'href' => $build_url( 'assets/js/mobile' . $suffix . '.js' ),
1018 'as' => 'script',
1019 'rel' => 'prefetch',
1020 );
1021 }
1022
1023 /**
1024 * Filters the list of resource preload hints emitted in `<head>`.
1025 *
1026 * Each entry is a `{ 'href' => string, 'as' => string,
1027 * 'rel' => 'preload'|'prefetch' }` array rendered as
1028 * `<link rel="<rel>" as="<as>" href="<href>">`. `rel` is optional and
1029 * defaults to `preload`; any value other than `prefetch` is coerced
1030 * back to `preload`. Unrecognized entries are silently skipped — keep
1031 * the contract permissive so a misconfigured plugin can't tank first
1032 * paint.
1033 *
1034 * @param array $hints Default hints (main bundle + base CSS as
1035 * `preload`; window-system + shell-overlays as
1036 * `prefetch`).
1037 */
1038 $hints = apply_filters( 'openstation_preload_hints', $hints );
1039
1040 if ( ! is_array( $hints ) ) {
1041 return;
1042 }
1043
1044 foreach ( $hints as $hint ) {
1045 if ( ! is_array( $hint ) ) {
1046 continue;
1047 }
1048 $href = isset( $hint['href'] ) ? (string) $hint['href'] : '';
1049 $as = isset( $hint['as'] ) ? (string) $hint['as'] : '';
1050 if ( '' === $href || '' === $as ) {
1051 continue;
1052 }
1053 // `preload` (critical, used on this load) vs `prefetch` (lazy,
1054 // used on a later interaction). Anything else falls back to
1055 // `preload` so a typo can't emit an invalid relationship.
1056 $rel = isset( $hint['rel'] ) ? (string) $hint['rel'] : 'preload';
1057 if ( 'prefetch' !== $rel ) {
1058 $rel = 'preload';
1059 }
1060 printf(
1061 '<link rel="%s" as="%s" href="%s" />' . "\n",
1062 esc_attr( $rel ),
1063 esc_attr( $as ),
1064 esc_url( $href )
1065 );
1066 }
1067 }
1068 add_action( 'admin_print_styles', 'openstation_print_preload_hints', 1 );
1069
1070 /**
1071 * Defers loading of non-critical openstation stylesheets so they
1072 * don't block first paint.
1073 *
1074 * Three stylesheets in the default enqueue list are only needed
1075 * after a user interaction — `dock-peek` (mouseover a dock tile),
1076 * `ai-assistant` (Cmd+K palette), `bug-report` (Report-a-bug
1077 * window). With the normal `<link rel="stylesheet">` tag they sit
1078 * on the critical path and the browser blocks first paint waiting
1079 * for them, even though nothing on screen needs them yet.
1080 *
1081 * The well-known mitigation is the `media="print" onload="…"`
1082 * pattern:
1083 *
1084 * <link rel="stylesheet" media="print"
1085 * onload="this.media='all'; this.onload=null" href="…">
1086 * <noscript><link rel="stylesheet" href="…"></noscript>
1087 *
1088 * `media="print"` makes the browser treat the sheet as
1089 * non-applicable to the current display, so it downloads with
1090 * low priority and doesn't block render. The `onload` handler
1091 * swaps `media` to the original value once the bytes arrive
1092 * (within ms of page load), making the styles take effect long
1093 * before the user clicks anything that needs them. The
1094 * `<noscript>` fallback restores critical-path behavior for JS-off
1095 * browsers, so accessibility isn't degraded.
1096 *
1097 * Filterable via `openstation_deferred_styles` so plugins can opt
1098 * their own non-critical stylesheets in (or pull a built-in out).
1099 * Chromeless iframes are skipped — their CSS pipeline is separate.
1100 *
1101 * @param string $html The original <link> tag HTML.
1102 * @param string $handle The stylesheet handle WP is printing.
1103 * @param string $href The full URL of the stylesheet.
1104 * @param string $media The media attribute value WP resolved.
1105 * @return string Possibly-rewritten tag.
1106 */
1107 function openstation_defer_non_critical_styles( $html, $handle, $href, $media ) {
1108 // Cheap gates first — `style_loader_tag` fires once per enqueued
1109 // stylesheet on EVERY admin page (frontend doesn't go through
1110 // this filter, but admin does, including pages where OpenStation
1111 // is disabled). The deferred handles only ship when OpenStation
1112 // is active, so the in_array check below would always miss on
1113 // classic-only admin pages — but the `apply_filters` call still
1114 // builds an array and walks subscribers per stylesheet. Short-
1115 // circuit on the cheap helper checks (`is_admin` / enabled /
1116 // chromeless) so non-openstation users pay nothing.
1117 if ( ! openstation_is_enabled() ) {
1118 return $html;
1119 }
1120 if ( openstation_is_chromeless_request() ) {
1121 return $html;
1122 }
1123
1124 /**
1125 * Filters the list of stylesheet handles that should be loaded
1126 * deferred via the media-print-onload pattern. Plugins can add
1127 * their own non-critical stylesheets here, or pull a built-in
1128 * out (e.g. a plugin that surfaces the AI assistant on every
1129 * page might want to keep its CSS critical-path).
1130 *
1131 * @param string[] $handles Default deferred handles.
1132 */
1133 $deferred = apply_filters(
1134 'openstation_deferred_styles',
1135 array(
1136 'os-dock-peek',
1137 'os-openstation-layout',
1138 'desktop-mode-ai-assistant',
1139 'desktop-mode-bug-report',
1140 'os-window-overview',
1141 )
1142 );
1143
1144 if ( ! in_array( $handle, (array) $deferred, true ) ) {
1145 return $html;
1146 }
1147
1148 $resolved_media = $media ? $media : 'all';
1149 $id = $handle . '-css';
1150
1151 // Two contexts, two escapers for the same `$resolved_media` value:
1152 //
1153 // - `%3$s` lands inside a JS string literal inside the HTML
1154 // `onload="…"` attribute (`this.media='%3$s'`). `esc_attr`
1155 // escapes `"` and `&` but NOT single quotes, so a media
1156 // value containing `'` would break out of the JS string.
1157 // `esc_js` is the correct escaper for "string literal inside
1158 // an event-handler attribute" — escapes single quotes, double
1159 // quotes, backslashes, newlines. Today `$resolved_media`
1160 // comes from `wp_enqueue_style()`'s `$media` parameter (always
1161 // a CSS media type / query produced by WordPress core), so
1162 // this is pure defense-in-depth, but the cost is one extra
1163 // function call.
1164 //
1165 // - `%4$s` lands inside an HTML attribute in the `<noscript>`
1166 // fallback (`media='%4$s'`). That's standard `esc_attr`.
1167 //
1168 // phpcs:disable WordPress.WP.EnqueuedResources.NonEnqueuedStylesheet -- This filter rewrites a tag WordPress is in the process of emitting for an already-registered+enqueued stylesheet handle; the linter doesn't trace the `style_loader_tag` filter context, so the raw <link rel="stylesheet"> output is a false-positive.
1169 $markup = sprintf(
1170 '<link rel=\'stylesheet\' id=\'%1$s\' href=\'%2$s\' media=\'print\' onload="this.media=\'%3$s\'; this.onload=null;" />' . "\n" .
1171 '<noscript><link rel=\'stylesheet\' id=\'%1$s-noscript\' href=\'%2$s\' media=\'%4$s\' /></noscript>' . "\n",
1172 esc_attr( $id ),
1173 esc_url( $href ),
1174 esc_js( $resolved_media ),
1175 esc_attr( $resolved_media )
1176 );
1177 // phpcs:enable WordPress.WP.EnqueuedResources.NonEnqueuedStylesheet
1178
1179 return $markup;
1180 }
1181 add_filter( 'style_loader_tag', 'openstation_defer_non_critical_styles', 10, 4 );
1182
1183 /**
1184 * Build the admin-menu command map (name → URL) and expose it on
1185 * `window.__openStationMenuCommands`. The shell command harvester
1186 * (`src/commands/shell-harvester.ts`) reads this slot to resolve URLs
1187 * for "Go to: …" commands whose JS callbacks
1188 * (`document.location = menuCommand.url`) close over a variable URL
1189 * we can't extract from source. Without this map those commands
1190 * either get skipped (no URL recoverable) or — if the location
1191 * shadow misses — navigate the SHELL out of OpenStation.
1192 *
1193 * Mirrors what WordPress core's `wp_enqueue_command_palette_assets()`
1194 * builds for `wp.coreCommands.initializeCommandPalette(...)`. We
1195 * duplicate the logic here (instead of monkey-patching the JS init
1196 * which is timing-sensitive — WP registers its hook during core load,
1197 * so it always emits its inline before any plugin-added inline on the
1198 * same handle) and ship the result through `wp_add_inline_script` on
1199 * our own bundle handle. That decouples us entirely from WP's command-
1200 * palette mount timing.
1201 *
1202 * @global array $menu
1203 * @global array $submenu
1204 * @return array<int, array{label:string, url:string, name:string}>
1205 */
1206 function openstation_build_command_menu_map() {
1207 global $menu, $submenu, $_parent_pages;
1208 if ( ! is_array( $menu ) ) {
1209 return array();
1210 }
1211 $out = array();
1212
1213 $extract_root_text = static function ( $label ) {
1214 if ( '' === $label || ! is_string( $label ) ) {
1215 return '';
1216 }
1217 if ( class_exists( 'WP_HTML_Tag_Processor' ) ) {
1218 $processor = new WP_HTML_Tag_Processor( $label );
1219 $text = '';
1220 $depth = 0;
1221 while ( $processor->next_token() ) {
1222 $token_type = $processor->get_token_type();
1223 if ( '#text' === $token_type && 0 === $depth ) {
1224 $text .= $processor->get_modifiable_text();
1225 }
1226 if ( '#tag' === $token_type ) {
1227 if ( $processor->is_tag_closer() ) {
1228 if ( $depth > 0 ) {
1229 --$depth;
1230 }
1231 continue;
1232 }
1233 $name = $processor->get_tag();
1234 if ( $name && ! ( class_exists( 'WP_HTML_Processor' ) && WP_HTML_Processor::is_void( $name ) ) ) {
1235 ++$depth;
1236 }
1237 }
1238 }
1239 return trim( $text );
1240 }
1241 return trim( wp_strip_all_tags( $label ) );
1242 };
1243
1244 foreach ( $menu as $menu_item ) {
1245 if ( empty( $menu_item[0] ) || ! is_string( $menu_item[0] ) ) {
1246 continue;
1247 }
1248 if ( ! empty( $menu_item[1] ) && ! current_user_can( $menu_item[1] ) ) {
1249 continue;
1250 }
1251 $menu_label = $extract_root_text( $menu_item[0] );
1252 $menu_slug = $menu_item[2];
1253 $menu_url = '';
1254 // Registered plugin pages win over the direct-file test: a
1255 // legacy file-path slug ('wp-sweep/admin.php') matches the
1256 // `.php` regex yet must route through menu_page_url(). The
1257 // exception is URL-style slugs referencing a real admin file
1258 // (ACF's 'edit.php?post_type=acf-field-group' — also a
1259 // registered page) — those stay direct links, matching
1260 // classic admin's menu-header.php.
1261 if ( ( ! isset( $_parent_pages[ $menu_slug ] ) || openstation_is_admin_file_slug( $menu_slug ) ) && ( preg_match( '/\.php($|\?)/', $menu_slug ) || wp_http_validate_url( $menu_slug ) ) ) {
1262 $menu_url = $menu_slug;
1263 } elseif ( ! empty( menu_page_url( $menu_slug, false ) ) ) {
1264 $menu_url = menu_page_url( $menu_slug, false );
1265 }
1266 if ( '' !== $menu_url ) {
1267 $out[] = array(
1268 'label' => $menu_label,
1269 'url' => $menu_url,
1270 'name' => $menu_slug,
1271 );
1272 }
1273 if ( ! empty( $submenu ) && is_array( $submenu ) && array_key_exists( $menu_slug, $submenu ) ) {
1274 foreach ( $submenu[ $menu_slug ] as $submenu_item ) {
1275 if ( empty( $submenu_item[0] ) ) {
1276 continue;
1277 }
1278 if ( ! empty( $submenu_item[1] ) && ! current_user_can( $submenu_item[1] ) ) {
1279 continue;
1280 }
1281 $submenu_label = $extract_root_text( $submenu_item[0] );
1282 $submenu_slug = $submenu_item[2];
1283 $submenu_url = '';
1284 // Same registered-page vs admin-file rule as the
1285 // top-level loop.
1286 if ( ( ! isset( $_parent_pages[ $submenu_slug ] ) || openstation_is_admin_file_slug( $submenu_slug ) ) && ( preg_match( '/\.php($|\?)/', $submenu_slug ) || wp_http_validate_url( $submenu_slug ) ) ) {
1287 $submenu_url = $submenu_slug;
1288 } elseif ( ! empty( menu_page_url( $submenu_slug, false ) ) ) {
1289 $submenu_url = menu_page_url( $submenu_slug, false );
1290 }
1291 if ( '' === $submenu_url ) {
1292 continue;
1293 }
1294 $out[] = array(
1295 'label' => sprintf(
1296 /* translators: 1: parent menu label, 2: submenu label */
1297 __( '%1$s > %2$s', 'desktop-mode' ),
1298 $menu_label,
1299 $submenu_label
1300 ),
1301 'url' => $submenu_url,
1302 'name' => $menu_slug . '-' . $submenu_item[2],
1303 );
1304 }
1305 }
1306 }
1307 return $out;
1308 }
1309