CodeSampleX

Sample

golang.org/x/sys v0.0.0-20220406155245-289d7a0edf71: unix.O_RDWR

Verified sample for golang golang.org/x/sys v0.0.0-20220406155245-289d7a0edf71: unix.O_RDWR. The contract ran on go 1.26 · linux debian/x64 · docker and…

sha256:78c451dab4cdcc218137777bce5fdb09dca401f7385e00a57017889f77838430

This network offers one thing: a sample that builds. It ran the sample in a sandbox and kept the signed receipt. It grades nothing and warrants nothing — whether the same code builds where you are is not something it measured. How many distinct signing keys filed a passing contract receipt. One is the author alone; more than one means somebody else built it too. A key is self-generated with nothing registered behind it, so it counts keys, not people. MIT-0

Execution evidence

The declared environment and the signed runs are kept apart, so you can see exactly what this sample ran and where.

Evidence basis
Signed contract pass
Verification receipts
1
Signing keys that built it
1
Declared environment linux 24 · ubuntu · glibc 2.39 x64 go

Verification-run environments

Environment Contract Stages Run
go 1.26 · linux debian/x64 · docker ed25519:c1973797be207ac4 PASS compile:SKIPPED · contract:PASS · load:PASS · resolve:PASS
CONTAINER_RUN · golang@1golang:1.26@sha256:e30143be198a…
2026-09-03

Case

HOW
Goal
verify golang.org/x/sys/unix.O_RDWR in pkg:golang/golang.org/x/sys@v0.0.0-20220406155245-289d7a0edf71
Packages
Symbols
  • golang.org/x/sys/unix.O_RDWR
Created
2026-09-03T07:12:12Z

Contract

  1. unix.O_RDWR matches syscall.O_RDWR flag with access mode value 2
  2. unix.Open with unix.O_RDWR without unix.O_CREAT fails with unix.ENOENT for non-existent file
  3. unix.Open with unix.O_RDWR allows both writing and reading on the file descriptor
  4. file descriptor opened with unix.O_RDONLY fails write with unix.EBADF while unix.O_RDWR succeeds

Files

  • PROMPT.md
  • csx.json
  • go.mod
  • go.sum
  • spec.json
  • test/contract.go

Download the source artifact (tar.gz)

Source

PROMPT.md
Clean-room public code sample — generation instructions

Write a brand-new, minimal, self-contained code sample in this clean-room directory.
Do not copy, paraphrase, or reference any existing project source. Work only from this spec.

A csx.json manifest scaffold already exists. Do not recreate it from memory. Preserve its case.goal, packages and symbols; fill its empty case.contract with exact assertions and correct its environment, commands and verifierAdapter for the files you generate.

Goal: verify golang.org/x/sys/unix.O_RDWR in pkg:golang/golang.org/x/sys@v0.0.0-20220406155245-289d7a0edf71
Kind: HOW

Use EXACTLY these public packages and versions:
  - pkg:golang/golang.org/x/sys@v0.0.0-20220406155245-289d7a0edf71
Demonstrate these symbols/APIs:
  - golang.org/x/sys/unix.O_RDWR

Rules:
  - One focused purpose; the smallest project that proves the goal.
  - Include a contract test (test/contract.*) that runs OFFLINE and exits 0 exactly when the goal behavior works.
  - Pin every dependency with a lockfile so resolution is reproducible.
  - No secrets, credentials, or tokens. No real URLs (only example.com or localhost). No absolute paths.
  - No personal names, emails, company names, or project identifiers of any kind.
  - No binaries and no generated output (node_modules, dist, target, venv, .git, .env).
  - Keep it under 200 files and 256KB packed.
csx.json
{"case":{"caseId":"case:sha256:bb64168b56f0eb7916c6f31514c9d50e92a296531e4e1d78b40d4255e4b74c59","contract":["unix.O_RDWR matches syscall.O_RDWR flag with access mode value 2","unix.Open with unix.O_RDWR without unix.O_CREAT fails with unix.ENOENT for non-existent file","unix.Open with unix.O_RDWR allows both writing and reading on the file descriptor","file descriptor opened with unix.O_RDONLY fails write with unix.EBADF while unix.O_RDWR succeeds"],"goal":"verify golang.org/x/sys/unix.O_RDWR in pkg:golang/golang.org/x/sys@v0.0.0-20220406155245-289d7a0edf71","kind":"HOW","packages":["pkg:golang/golang.org/x/sys@v0.0.0-20220406155245-289d7a0edf71"],"schemaVersion":1,"symbols":["golang.org/x/sys/unix.O_RDWR"]},"contractCommand":["go","run","./test"],"environment":{"arch":"x64","distro":"ubuntu","ecosystem":"golang","libc":"glibc","libcVersion":"2.39","os":"linux","osVersionBucket":"24","packageManager":"go","schemaVersion":1},"license":"MIT-0","packages":["pkg:golang/golang.org/x/sys@v0.0.0-20220406155245-289d7a0edf71"],"schemaVersion":1,"subject":"pkg:golang/golang.org/x/sys@v0.0.0-20220406155245-289d7a0edf71","symbols":["golang.org/x/sys/unix.O_RDWR"],"verifierAdapter":"golang@1"}
go.mod
module sample

go 1.22

require golang.org/x/sys v0.0.0-20220406155245-289d7a0edf71
go.sum
golang.org/x/sys v0.0.0-20220406155245-289d7a0edf71 h1:PRD0hj6tTuUnCFD08vkvjkYFbQg/9lV8KIxe1y4/cvU=
golang.org/x/sys v0.0.0-20220406155245-289d7a0edf71/go.mod h1:oPkhp1MJrh7nUepCBck5+mAzfO9JrbApNNgaTdGDITg=
spec.json
{
  "schemaVersion": 1,
  "goal": "verify golang.org/x/sys/unix.O_RDWR in pkg:golang/golang.org/x/sys@v0.0.0-20220406155245-289d7a0edf71",
  "kind": "HOW",
  "packages": [
    "pkg:golang/golang.org/x/sys@v0.0.0-20220406155245-289d7a0edf71"
  ],
  "symbols": [
    "golang.org/x/sys/unix.O_RDWR"
  ]
}
test/contract.go
package main

import (
	"bytes"
	"errors"
	"fmt"
	"os"
	"path/filepath"
	"syscall"

	"golang.org/x/sys/unix"
)

func main() {
	if err := runTests(); err != nil {
		fmt.Fprintf(os.Stderr, "Contract test failed: %v\n", err)
		os.Exit(1)
	}
	fmt.Println("PASS: unix.O_RDWR contract passed")
}

func runTests() error {
	// 1. unix.O_RDWR matches syscall.O_RDWR flag with access mode value 2
	if unix.O_RDWR != 2 {
		return fmt.Errorf("expected unix.O_RDWR to be 2, got %d", unix.O_RDWR)
	}
	if unix.O_RDWR != syscall.O_RDWR {
		return fmt.Errorf("expected unix.O_RDWR to match syscall.O_RDWR (%d), got %d", syscall.O_RDWR, unix.O_RDWR)
	}
	if (unix.O_RDWR & unix.O_ACCMODE) != unix.O_RDWR {
		return fmt.Errorf("expected (unix.O_RDWR & unix.O_ACCMODE) to equal unix.O_RDWR")
	}

	tmpDir, err := os.MkdirTemp("", "ordwr-contract-*")
	if err != nil {
		return fmt.Errorf("failed to create temporary directory: %w", err)
	}
	defer os.RemoveAll(tmpDir)

	filePath := filepath.Join(tmpDir, "rw_test.dat")

	// 2. unix.Open with unix.O_RDWR without unix.O_CREAT fails with unix.ENOENT for non-existent file
	fdMissing, err := unix.Open(filePath, unix.O_RDWR, 0)
	if err == nil {
		unix.Close(fdMissing)
		return fmt.Errorf("expected unix.Open to fail for non-existent file without O_CREAT")
	}
	if !errors.Is(err, unix.ENOENT) {
		return fmt.Errorf("expected error to be unix.ENOENT, got: %w", err)
	}

	// 3. unix.Open with unix.O_RDWR|unix.O_CREAT creates file and allows both writing and reading
	fd, err := unix.Open(filePath, unix.O_RDWR|unix.O_CREAT|unix.O_TRUNC, 0600)
	if err != nil {
		return fmt.Errorf("failed to open file with O_RDWR|O_CREAT: %w", err)
	}
	defer unix.Close(fd)

	payload := []byte("CodeSampleX O_RDWR contract test payload")
	written, err := unix.Write(fd, payload)
	if err != nil {
		return fmt.Errorf("unix.Write failed: %w", err)
	}
	if written != len(payload) {
		return fmt.Errorf("expected to write %d bytes, wrote %d", len(payload), written)
	}

	// Seek to beginning and read back
	offset, err := unix.Seek(fd, 0, unix.SEEK_SET)
	if err != nil {
		return fmt.Errorf("unix.Seek failed: %w", err)
	}
	if offset != 0 {
		return fmt.Errorf("expected offset 0 after seek, got %d", offset)
	}

	readBuf := make([]byte, len(payload))
	nRead, err := unix.Read(fd, readBuf)
	if err != nil {
		return fmt.Errorf("unix.Read failed: %w", err)
	}
	if nRead != len(payload) {
		return fmt.Errorf("expected to read %d bytes, read %d", len(payload), nRead)
	}
	if !bytes.Equal(readBuf, payload) {
		return fmt.Errorf("read data mismatch: expected %q, got %q", payload, readBuf)
	}

	// 4. File descriptor opened with unix.O_RDONLY forbids writing (unix.EBADF)
	fdRO, err := unix.Open(filePath, unix.O_RDONLY, 0)
	if err != nil {
		return fmt.Errorf("failed to open file with O_RDONLY: %w", err)
	}
	defer unix.Close(fdRO)

	_, writeErr := unix.Write(fdRO, []byte("forbidden write"))
	if writeErr == nil {
		return fmt.Errorf("expected write on O_RDONLY fd to fail, but succeeded")
	}
	if !errors.Is(writeErr, unix.EBADF) {
		return fmt.Errorf("expected write error on O_RDONLY to be unix.EBADF, got: %w", writeErr)
	}

	return nil
}

Origin Seeder

anonymous