The plugin loader runs a synchronous 'pip install' for each plugin's
requirements.txt at startup (1800s timeout each), and only wrote a success
marker — so a plugin whose install fails (heavy optional deps like
torch/whisperx/demucs on a machine that can't build them, or offline)
re-attempts and re-blocks startup on EVERY boot. On a distributed host
(slopsmith-desktop) this hangs the backend past the app's readiness window.
- Honour SLOPSMITH_SKIP_PLUGIN_INSTALL: hosts that bundle their own runtime
(e.g. the desktop app) set it to skip the blocking startup install entirely.
The plugin still loads and degrades gracefully when its optional deps are
absent.
- Write a .failed_<plugin> marker (req-hash keyed) on a failed install and skip
re-attempting the same failing requirements on subsequent boots — retry only
when requirements.txt changes or the marker is cleared. Marker reads are
guarded (unreadable marker -> treat as no-match, never raises out); the
success path writes the success marker and clears any stale failure marker in
independent best-effort blocks so a successful install can never be recorded
as a sticky failure.
Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
(cherry picked from commit 3fa776c6cd1a569bb4206c91fd89cedf4b00f17d)
- diagnostics_redact: keep '.psarc' in the song-filename scrub regex.
The purge swapped it for '.archive' (not a real extension), which
would leak real .psarc filenames still on users' disks into
diagnostic bundles. This is a redaction allow-list, not brand text.
- sloppak: the legacy lyrics-source alias was a no-op
({"notechart": "notechart"}), so old manifests with
lyrics_source=="sng" fell back to "xml" instead of migrating.
Map {"sng": "notechart"} so the rename stays back-compatible.
Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>