FUZZ-4177-ENC-01
- Minimal template / frontmatter
valid formula template; no template defect required- Input
payload=legit\u0000withnul; bd_executable=/bin/echo- Expected
- An invalid Beads variable value is rejected before spawn or receives a cause-specific argv-construction diagnostic.
- Observed
- `Command::spawn` returns InvalidInput for an interior NUL and the stage maps it to BEADS_BD_UNAVAILABLE.
- Requirement / ADR
- ADR-0021 defines BEADS_BD_UNAVAILABLE as inability to start the configured executable.
- Requirement / ADR follow-up
- No new ADR is needed; validate variable values before spawn or add a distinct stable argv-construction code.
- Root cause
- Only Beads variable keys are validated; values reach `Command::args` unchecked and the generic I/O mapping erases the cause.
- Recommended fix
- Reject control bytes in Beads variable values before process creation, or map argv construction errors separately.