Issue #193 in-scope JSON/YAML/TOML closure campaign
Generated: 2026-08-03
Source: adversarial-fuzzing/v1
Four bounded workers exercised 36 cases across Rust, CLI, and Python surfaces. All expected relations held; malformed and unsupported inputs matched their documented intentional boundaries.
| Fuzz run description | Iterations | Pass | Result |
|---|---|---|---|
| Cross-format scalar values, empty structure, and include filtering | 6 | 6/6 | PASS |
| CLI extraction diagnostics for malformed and unsupported format inputs | 11 | 11/11 | PASS |
| Python binding parity for JSON, YAML, TOML reports and diagnostics | 15 | 15/15 | PASS |
| Repeated variable ambiguity and TOML size/depth/occurrence hardening | 4 | 4/4 | PASS |
Adversarial fuzz worker
PASS
| Fuzz run description | Iterations | Pass | Result |
|---|---|---|---|
| Cross-format scalar values, empty structure, and include filtering | 6 | 6/6 | PASS |
| Case | Template / input | Outcome |
|---|---|---|
| json-success | JSON object name placeholder with static boolean | PASS: name=Ada |
| yaml-filter | YAML mapping with one included and one excluded variable | PASS: only kept=yes was returned |
| toml-success | TOML table scalar placeholder with static boolean | PASS: name=example |
Adversarial fuzz worker
PASS
| Fuzz run description | Iterations | Pass | Result |
|---|---|---|---|
| CLI extraction diagnostics for malformed and unsupported format inputs | 11 | 11/11 | PASS |
| Case | Template / input | Outcome |
|---|---|---|
| cli-json-success | Text CLI JSON extraction fixture | PASS: format=json and JSON paths emitted |
| cli-yaml-success | Text CLI YAML extraction fixture | PASS: frontmatter skipped and YAML paths emitted |
| json-cli-malformed | JSON envelope for malformed rendered JSON | PASS: ERR_EXTRACT_JSON_MALFORMED |
| json-cli-unsupported | JSON envelope for unsupported extraction format syntax | PASS: stable format-specific boundary |
Adversarial fuzz worker
PASS
| Fuzz run description | Iterations | Pass | Result |
|---|---|---|---|
| Python binding parity for JSON, YAML, TOML reports and diagnostics | 15 | 15/15 | PASS |
| Case | Template / input | Outcome |
|---|---|---|
| py-json-realistic | Python binding reads the shared JSON ATM fixture | PASS: values and object paths match Rust contract |
| py-yaml-realistic | Python binding reads the shared YAML ATM fixture | PASS: values and sequence paths match Rust contract |
| py-toml-limit | Python binding rejects an oversized TOML value | PASS: ERR_EXTRACT_INPUT_LIMIT |
Adversarial fuzz worker
PASS
| Fuzz run description | Iterations | Pass | Result |
|---|---|---|---|
| Repeated variable ambiguity and TOML size/depth/occurrence hardening | 4 | 4/4 | PASS |
| Case | Template / input | Outcome |
|---|---|---|
| json-ambiguity | Same variable at two JSON object paths | PASS: no value fabricated; ambiguity diagnostic retained |
| yaml-ambiguity | Same variable at two YAML mapping paths | PASS: no value fabricated; ambiguity diagnostic retained |
| toml-occurrence-limit | 10,001 TOML placeholders exceed occurrence policy | PASS: ERR_EXTRACT_INPUT_LIMIT |