Commit b93678e
jgstern-agent
fix(io_boundary): add huggingface_hub + sentence_transformers to net_send catalog (WI-jihuj)
The 2026-04-23 self-audit found that hypergumbo's embeddings extra
demonstrably contacts HuggingFace Hub (the dogfood run printed an
"unauthenticated requests to the HF Hub" warning), but io-boundaries
reported zero matching net_send chains.
Root cause: python.yaml#net_send covered the low-level HTTP clients
(requests, aiohttp.ClientSession, httpx.{Client,AsyncClient}) but the
HF stack lives one layer above them — sentence_transformers'
SentenceTransformer constructor calls into huggingface_hub, which calls
requests internally. The io-boundary tracer can only see edges into
hypergumbo's own source, not into vendored deps, so the wrapper-layer
constructor + huggingface_hub.* entries are required to surface the
chain.
Additions to python.yaml#net_send:
- huggingface_hub.snapshot_download / hf_hub_download (functions)
- huggingface_hub.HfApi.{model_info, list_repo_files, download_file}
- sentence_transformers.SentenceTransformer (constructor)
Test test_python_catalog_has_huggingface_hub_net_send asserts all three
are loaded as net_send primitives. All 243 io_boundary + catalog tests
pass.
Signed-off-by: jgstern-agent <josh-agent@iterabloom.com>1 parent 0628bb1 commit b93678e
4 files changed
Lines changed: 36 additions & 57 deletions
File tree
- .ci
- packages/hypergumbo-core
- src/hypergumbo_core/io_primitives
- tests
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1 | 1 | | |
2 | | - | |
| 2 | + | |
3 | 3 | | |
4 | | - | |
5 | | - | |
6 | | - | |
7 | | - | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
8 | 9 | | |
9 | 10 | | |
10 | | - | |
11 | 11 | | |
12 | | - | |
13 | | - | |
14 | | - | |
15 | | - | |
16 | | - | |
17 | | - | |
18 | | - | |
19 | | - | |
20 | | - | |
21 | | - | |
22 | | - | |
23 | | - | |
24 | | - | |
25 | | - | |
26 | | - | |
27 | | - | |
28 | | - | |
29 | | - | |
30 | | - | |
31 | | - | |
32 | | - | |
33 | | - | |
34 | | - | |
35 | | - | |
36 | | - | |
37 | | - | |
38 | | - | |
39 | | - | |
40 | | - | |
41 | | - | |
42 | | - | |
43 | | - | |
44 | | - | |
45 | | - | |
46 | | - | |
47 | | - | |
48 | | - | |
49 | | - | |
50 | | - | |
51 | | - | |
52 | | - | |
53 | | - | |
54 | | - | |
55 | | - | |
56 | | - | |
57 | | - | |
58 | | - | |
59 | | - | |
60 | | - | |
61 | | - | |
62 | | - | |
| 12 | + | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
31 | 31 | | |
32 | 32 | | |
33 | 33 | | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
34 | 38 | | |
35 | 39 | | |
36 | 40 | | |
| |||
Lines changed: 12 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
112 | 112 | | |
113 | 113 | | |
114 | 114 | | |
| 115 | + | |
| 116 | + | |
| 117 | + | |
| 118 | + | |
| 119 | + | |
| 120 | + | |
| 121 | + | |
| 122 | + | |
| 123 | + | |
| 124 | + | |
| 125 | + | |
| 126 | + | |
115 | 127 | | |
116 | 128 | | |
117 | 129 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
80 | 80 | | |
81 | 81 | | |
82 | 82 | | |
| 83 | + | |
| 84 | + | |
| 85 | + | |
| 86 | + | |
| 87 | + | |
| 88 | + | |
| 89 | + | |
| 90 | + | |
| 91 | + | |
| 92 | + | |
| 93 | + | |
| 94 | + | |
| 95 | + | |
83 | 96 | | |
84 | 97 | | |
85 | 98 | | |
| |||
0 commit comments