{"version":3,"sources":["node_modules/@azure/msal-common/dist/utils/Constants.mjs","node_modules/@azure/msal-common/dist/error/AuthErrorCodes.mjs","node_modules/@azure/msal-common/dist/error/AuthError.mjs","node_modules/@azure/msal-common/dist/error/ClientAuthErrorCodes.mjs","node_modules/@azure/msal-common/dist/error/ClientAuthError.mjs","node_modules/@azure/msal-common/dist/crypto/ICrypto.mjs","node_modules/@azure/msal-common/dist/logger/Logger.mjs","node_modules/@azure/msal-common/dist/packageMetadata.mjs","node_modules/@azure/msal-common/dist/authority/AuthorityOptions.mjs","node_modules/@azure/msal-common/dist/error/ClientConfigurationErrorCodes.mjs","node_modules/@azure/msal-common/dist/error/ClientConfigurationError.mjs","node_modules/@azure/msal-common/dist/utils/StringUtils.mjs","node_modules/@azure/msal-common/dist/request/ScopeSet.mjs","node_modules/@azure/msal-common/dist/account/ClientInfo.mjs","node_modules/@azure/msal-common/dist/authority/AuthorityType.mjs","node_modules/@azure/msal-common/dist/authority/ProtocolMode.mjs","node_modules/@azure/msal-common/dist/cache/entities/AccountEntity.mjs","node_modules/@azure/msal-common/dist/account/AuthToken.mjs","node_modules/@azure/msal-common/dist/cache/CacheManager.mjs","node_modules/@azure/msal-common/dist/config/ClientConfiguration.mjs","node_modules/@azure/msal-common/dist/error/ServerError.mjs","node_modules/@azure/msal-common/dist/network/ThrottlingUtils.mjs","node_modules/@azure/msal-common/dist/network/NetworkManager.mjs","node_modules/@azure/msal-common/dist/account/CcsCredential.mjs","node_modules/@azure/msal-common/dist/request/RequestValidator.mjs","node_modules/@azure/msal-common/dist/request/RequestParameterBuilder.mjs","node_modules/@azure/msal-common/dist/telemetry/performance/PerformanceEvent.mjs","node_modules/@azure/msal-common/dist/client/BaseClient.mjs","node_modules/@azure/msal-common/dist/cache/entities/CredentialEntity.mjs","node_modules/@azure/msal-common/dist/cache/entities/IdTokenEntity.mjs","node_modules/@azure/msal-common/dist/utils/TimeUtils.mjs","node_modules/@azure/msal-common/dist/cache/entities/AccessTokenEntity.mjs","node_modules/@azure/msal-common/dist/cache/entities/RefreshTokenEntity.mjs","node_modules/@azure/msal-common/dist/error/InteractionRequiredAuthErrorCodes.mjs","node_modules/@azure/msal-common/dist/error/InteractionRequiredAuthError.mjs","node_modules/@azure/msal-common/dist/cache/entities/CacheRecord.mjs","node_modules/@azure/msal-common/dist/utils/ProtocolUtils.mjs","node_modules/@azure/msal-common/dist/url/UrlString.mjs","node_modules/@azure/msal-common/dist/utils/FunctionWrappers.mjs","node_modules/@azure/msal-common/dist/crypto/PopTokenGenerator.mjs","node_modules/@azure/msal-common/dist/cache/entities/AppMetadataEntity.mjs","node_modules/@azure/msal-common/dist/cache/persistence/TokenCacheContext.mjs","node_modules/@azure/msal-common/dist/response/ResponseHandler.mjs","node_modules/@azure/msal-common/dist/client/AuthorizationCodeClient.mjs","node_modules/@azure/msal-common/dist/client/RefreshTokenClient.mjs","node_modules/@azure/msal-common/dist/client/SilentFlowClient.mjs","node_modules/@azure/msal-common/dist/authority/OpenIdConfigResponse.mjs","node_modules/@azure/msal-common/dist/authority/AuthorityMetadata.mjs","node_modules/@azure/msal-common/dist/cache/entities/AuthorityMetadataEntity.mjs","node_modules/@azure/msal-common/dist/authority/CloudInstanceDiscoveryResponse.mjs","node_modules/@azure/msal-common/dist/authority/CloudInstanceDiscoveryErrorResponse.mjs","node_modules/@azure/msal-common/dist/authority/RegionDiscovery.mjs","node_modules/@azure/msal-common/dist/authority/Authority.mjs","node_modules/@azure/msal-common/dist/authority/AuthorityFactory.mjs","node_modules/@azure/msal-common/dist/cache/entities/ServerTelemetryEntity.mjs","node_modules/@azure/msal-common/dist/cache/entities/ThrottlingEntity.mjs","node_modules/@azure/msal-common/dist/network/INetworkModule.mjs","node_modules/@azure/msal-common/dist/error/JoseHeaderErrorCodes.mjs","node_modules/@azure/msal-common/dist/error/JoseHeaderError.mjs","node_modules/@azure/msal-common/dist/crypto/JoseHeader.mjs","node_modules/@azure/msal-common/dist/telemetry/server/ServerTelemetryManager.mjs","node_modules/@azure/msal-common/dist/telemetry/performance/StubPerformanceClient.mjs","node_modules/@azure/msal-browser/dist/encode/Base64Encode.mjs","node_modules/@azure/msal-browser/dist/error/BrowserAuthErrorCodes.mjs","node_modules/@azure/msal-browser/dist/error/BrowserAuthError.mjs","node_modules/@azure/msal-browser/dist/encode/Base64Decode.mjs","node_modules/@azure/msal-browser/dist/utils/BrowserStringUtils.mjs","node_modules/@azure/msal-browser/dist/utils/BrowserConstants.mjs","node_modules/@azure/msal-browser/dist/crypto/BrowserCrypto.mjs","node_modules/@azure/msal-browser/dist/cache/DatabaseStorage.mjs","node_modules/@azure/msal-browser/dist/cache/MemoryStorage.mjs","node_modules/@azure/msal-browser/dist/cache/AsyncMemoryStorage.mjs","node_modules/@azure/msal-browser/dist/cache/CryptoKeyStore.mjs","node_modules/@azure/msal-browser/dist/crypto/CryptoOps.mjs","node_modules/@azure/msal-browser/dist/error/BrowserConfigurationAuthErrorCodes.mjs","node_modules/@azure/msal-browser/dist/error/BrowserConfigurationAuthError.mjs","node_modules/@azure/msal-browser/dist/cache/BrowserStorage.mjs","node_modules/@azure/msal-browser/dist/utils/BrowserProtocolUtils.mjs","node_modules/@azure/msal-browser/dist/cache/BrowserCacheManager.mjs","node_modules/@azure/msal-browser/dist/utils/BrowserUtils.mjs","node_modules/@azure/msal-browser/dist/event/EventType.mjs","node_modules/@azure/msal-browser/dist/event/EventHandler.mjs","node_modules/@azure/msal-browser/dist/packageMetadata.mjs","node_modules/@azure/msal-browser/dist/interaction_client/BaseInteractionClient.mjs","node_modules/@azure/msal-browser/dist/crypto/PkceGenerator.mjs","node_modules/@azure/msal-browser/dist/interaction_client/StandardInteractionClient.mjs","node_modules/@azure/msal-browser/dist/error/NativeAuthErrorCodes.mjs","node_modules/@azure/msal-browser/dist/broker/nativeBroker/NativeStatusCodes.mjs","node_modules/@azure/msal-browser/dist/error/NativeAuthError.mjs","node_modules/@azure/msal-browser/dist/interaction_client/SilentCacheClient.mjs","node_modules/@azure/msal-browser/dist/interaction_client/NativeInteractionClient.mjs","node_modules/@azure/msal-browser/dist/broker/nativeBroker/NativeMessageHandler.mjs","node_modules/@azure/msal-browser/dist/interaction_handler/InteractionHandler.mjs","node_modules/@azure/msal-browser/dist/interaction_client/PopupClient.mjs","node_modules/@azure/msal-browser/dist/interaction_handler/RedirectHandler.mjs","node_modules/@azure/msal-browser/dist/interaction_client/RedirectClient.mjs","node_modules/@azure/msal-browser/dist/navigation/NavigationClient.mjs","node_modules/@azure/msal-browser/dist/network/FetchClient.mjs","node_modules/@azure/msal-browser/dist/config/Configuration.mjs","node_modules/@azure/msal-browser/dist/interaction_handler/SilentHandler.mjs","node_modules/@azure/msal-browser/dist/interaction_client/SilentIframeClient.mjs","node_modules/@azure/msal-browser/dist/interaction_client/SilentRefreshClient.mjs","node_modules/@azure/msal-browser/dist/cache/TokenCache.mjs","node_modules/@azure/msal-browser/dist/interaction_client/HybridSpaAuthorizationCodeClient.mjs","node_modules/@azure/msal-browser/dist/interaction_client/SilentAuthCodeClient.mjs","node_modules/@azure/msal-browser/dist/controllers/StandardController.mjs"],"sourcesContent":["/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst Constants = {\n LIBRARY_NAME: \"MSAL.JS\",\n SKU: \"msal.js.common\",\n // Prefix for all library cache entries\n CACHE_PREFIX: \"msal\",\n // default authority\n DEFAULT_AUTHORITY: \"https://login.microsoftonline.com/common/\",\n DEFAULT_AUTHORITY_HOST: \"login.microsoftonline.com\",\n DEFAULT_COMMON_TENANT: \"common\",\n // ADFS String\n ADFS: \"adfs\",\n DSTS: \"dstsv2\",\n // Default AAD Instance Discovery Endpoint\n AAD_INSTANCE_DISCOVERY_ENDPT: \"https://login.microsoftonline.com/common/discovery/instance?api-version=1.1&authorization_endpoint=\",\n // CIAM URL\n CIAM_AUTH_URL: \".ciamlogin.com\",\n AAD_TENANT_DOMAIN_SUFFIX: \".onmicrosoft.com\",\n // Resource delimiter - used for certain cache entries\n RESOURCE_DELIM: \"|\",\n // Placeholder for non-existent account ids/objects\n NO_ACCOUNT: \"NO_ACCOUNT\",\n // Claims\n CLAIMS: \"claims\",\n // Consumer UTID\n CONSUMER_UTID: \"9188040d-6c67-4c5b-b112-36a304b66dad\",\n // Default scopes\n OPENID_SCOPE: \"openid\",\n PROFILE_SCOPE: \"profile\",\n OFFLINE_ACCESS_SCOPE: \"offline_access\",\n EMAIL_SCOPE: \"email\",\n // Default response type for authorization code flow\n CODE_RESPONSE_TYPE: \"code\",\n CODE_GRANT_TYPE: \"authorization_code\",\n RT_GRANT_TYPE: \"refresh_token\",\n FRAGMENT_RESPONSE_MODE: \"fragment\",\n S256_CODE_CHALLENGE_METHOD: \"S256\",\n URL_FORM_CONTENT_TYPE: \"application/x-www-form-urlencoded;charset=utf-8\",\n AUTHORIZATION_PENDING: \"authorization_pending\",\n NOT_DEFINED: \"not_defined\",\n EMPTY_STRING: \"\",\n NOT_APPLICABLE: \"N/A\",\n FORWARD_SLASH: \"/\",\n IMDS_ENDPOINT: \"http://169.254.169.254/metadata/instance/compute/location\",\n IMDS_VERSION: \"2020-06-01\",\n IMDS_TIMEOUT: 2000,\n AZURE_REGION_AUTO_DISCOVER_FLAG: \"TryAutoDetect\",\n REGIONAL_AUTH_PUBLIC_CLOUD_SUFFIX: \"login.microsoft.com\",\n REGIONAL_AUTH_NON_MSI_QUERY_STRING: \"allowestsrnonmsi=true\",\n KNOWN_PUBLIC_CLOUDS: [\n \"login.microsoftonline.com\",\n \"login.windows.net\",\n \"login.microsoft.com\",\n \"sts.windows.net\",\n ],\n TOKEN_RESPONSE_TYPE: \"token\",\n ID_TOKEN_RESPONSE_TYPE: \"id_token\",\n SHR_NONCE_VALIDITY: 240,\n INVALID_INSTANCE: \"invalid_instance\",\n};\nconst HttpStatus = {\n SUCCESS_RANGE_START: 200,\n SUCCESS_RANGE_END: 299,\n REDIRECT: 302,\n CLIENT_ERROR_RANGE_START: 400,\n CLIENT_ERROR_RANGE_END: 499,\n SERVER_ERROR_RANGE_START: 500,\n SERVER_ERROR_RANGE_END: 599,\n};\nconst OIDC_DEFAULT_SCOPES = [\n Constants.OPENID_SCOPE,\n Constants.PROFILE_SCOPE,\n Constants.OFFLINE_ACCESS_SCOPE,\n];\nconst OIDC_SCOPES = [...OIDC_DEFAULT_SCOPES, Constants.EMAIL_SCOPE];\n/**\n * Request header names\n */\nconst HeaderNames = {\n CONTENT_TYPE: \"Content-Type\",\n RETRY_AFTER: \"Retry-After\",\n CCS_HEADER: \"X-AnchorMailbox\",\n WWWAuthenticate: \"WWW-Authenticate\",\n AuthenticationInfo: \"Authentication-Info\",\n X_MS_REQUEST_ID: \"x-ms-request-id\",\n X_MS_HTTP_VERSION: \"x-ms-httpver\",\n};\n/**\n * Persistent cache keys MSAL which stay while user is logged in.\n */\nconst PersistentCacheKeys = {\n ID_TOKEN: \"idtoken\",\n CLIENT_INFO: \"client.info\",\n ADAL_ID_TOKEN: \"adal.idtoken\",\n ERROR: \"error\",\n ERROR_DESC: \"error.description\",\n ACTIVE_ACCOUNT: \"active-account\",\n ACTIVE_ACCOUNT_FILTERS: \"active-account-filters\", // new cache entry for active_account for a more robust version for browser\n};\n/**\n * String constants related to AAD Authority\n */\nconst AADAuthorityConstants = {\n COMMON: \"common\",\n ORGANIZATIONS: \"organizations\",\n CONSUMERS: \"consumers\",\n};\n/**\n * Keys in the hashParams sent by AAD Server\n */\nconst AADServerParamKeys = {\n CLIENT_ID: \"client_id\",\n REDIRECT_URI: \"redirect_uri\",\n RESPONSE_TYPE: \"response_type\",\n RESPONSE_MODE: \"response_mode\",\n GRANT_TYPE: \"grant_type\",\n CLAIMS: \"claims\",\n SCOPE: \"scope\",\n ERROR: \"error\",\n ERROR_DESCRIPTION: \"error_description\",\n ACCESS_TOKEN: \"access_token\",\n ID_TOKEN: \"id_token\",\n REFRESH_TOKEN: \"refresh_token\",\n EXPIRES_IN: \"expires_in\",\n STATE: \"state\",\n NONCE: \"nonce\",\n PROMPT: \"prompt\",\n SESSION_STATE: \"session_state\",\n CLIENT_INFO: \"client_info\",\n CODE: \"code\",\n CODE_CHALLENGE: \"code_challenge\",\n CODE_CHALLENGE_METHOD: \"code_challenge_method\",\n CODE_VERIFIER: \"code_verifier\",\n CLIENT_REQUEST_ID: \"client-request-id\",\n X_CLIENT_SKU: \"x-client-SKU\",\n X_CLIENT_VER: \"x-client-VER\",\n X_CLIENT_OS: \"x-client-OS\",\n X_CLIENT_CPU: \"x-client-CPU\",\n X_CLIENT_CURR_TELEM: \"x-client-current-telemetry\",\n X_CLIENT_LAST_TELEM: \"x-client-last-telemetry\",\n X_MS_LIB_CAPABILITY: \"x-ms-lib-capability\",\n X_APP_NAME: \"x-app-name\",\n X_APP_VER: \"x-app-ver\",\n POST_LOGOUT_URI: \"post_logout_redirect_uri\",\n ID_TOKEN_HINT: \"id_token_hint\",\n DEVICE_CODE: \"device_code\",\n CLIENT_SECRET: \"client_secret\",\n CLIENT_ASSERTION: \"client_assertion\",\n CLIENT_ASSERTION_TYPE: \"client_assertion_type\",\n TOKEN_TYPE: \"token_type\",\n REQ_CNF: \"req_cnf\",\n OBO_ASSERTION: \"assertion\",\n REQUESTED_TOKEN_USE: \"requested_token_use\",\n ON_BEHALF_OF: \"on_behalf_of\",\n FOCI: \"foci\",\n CCS_HEADER: \"X-AnchorMailbox\",\n RETURN_SPA_CODE: \"return_spa_code\",\n NATIVE_BROKER: \"nativebroker\",\n LOGOUT_HINT: \"logout_hint\",\n};\n/**\n * Claims request keys\n */\nconst ClaimsRequestKeys = {\n ACCESS_TOKEN: \"access_token\",\n XMS_CC: \"xms_cc\",\n};\n/**\n * we considered making this \"enum\" in the request instead of string, however it looks like the allowed list of\n * prompt values kept changing over past couple of years. There are some undocumented prompt values for some\n * internal partners too, hence the choice of generic \"string\" type instead of the \"enum\"\n */\nconst PromptValue = {\n LOGIN: \"login\",\n SELECT_ACCOUNT: \"select_account\",\n CONSENT: \"consent\",\n NONE: \"none\",\n CREATE: \"create\",\n NO_SESSION: \"no_session\",\n};\n/**\n * SSO Types - generated to populate hints\n */\nconst SSOTypes = {\n ACCOUNT: \"account\",\n SID: \"sid\",\n LOGIN_HINT: \"login_hint\",\n ID_TOKEN: \"id_token\",\n DOMAIN_HINT: \"domain_hint\",\n ORGANIZATIONS: \"organizations\",\n CONSUMERS: \"consumers\",\n ACCOUNT_ID: \"accountIdentifier\",\n HOMEACCOUNT_ID: \"homeAccountIdentifier\",\n};\n/**\n * allowed values for codeVerifier\n */\nconst CodeChallengeMethodValues = {\n PLAIN: \"plain\",\n S256: \"S256\",\n};\n/**\n * allowed values for server response type\n */\nconst ServerResponseType = {\n QUERY: \"query\",\n FRAGMENT: \"fragment\",\n};\n/**\n * allowed values for response_mode\n */\nconst ResponseMode = {\n ...ServerResponseType,\n FORM_POST: \"form_post\",\n};\n/**\n * allowed grant_type\n */\nconst GrantType = {\n IMPLICIT_GRANT: \"implicit\",\n AUTHORIZATION_CODE_GRANT: \"authorization_code\",\n CLIENT_CREDENTIALS_GRANT: \"client_credentials\",\n RESOURCE_OWNER_PASSWORD_GRANT: \"password\",\n REFRESH_TOKEN_GRANT: \"refresh_token\",\n DEVICE_CODE_GRANT: \"device_code\",\n JWT_BEARER: \"urn:ietf:params:oauth:grant-type:jwt-bearer\",\n};\n/**\n * Account types in Cache\n */\nconst CacheAccountType = {\n MSSTS_ACCOUNT_TYPE: \"MSSTS\",\n ADFS_ACCOUNT_TYPE: \"ADFS\",\n MSAV1_ACCOUNT_TYPE: \"MSA\",\n GENERIC_ACCOUNT_TYPE: \"Generic\", // NTLM, Kerberos, FBA, Basic etc\n};\n/**\n * Separators used in cache\n */\nconst Separators = {\n CACHE_KEY_SEPARATOR: \"-\",\n CLIENT_INFO_SEPARATOR: \".\",\n};\n/**\n * Credential Type stored in the cache\n */\nconst CredentialType = {\n ID_TOKEN: \"IdToken\",\n ACCESS_TOKEN: \"AccessToken\",\n ACCESS_TOKEN_WITH_AUTH_SCHEME: \"AccessToken_With_AuthScheme\",\n REFRESH_TOKEN: \"RefreshToken\",\n};\n/**\n * Combine all cache types\n */\nconst CacheType = {\n ADFS: 1001,\n MSA: 1002,\n MSSTS: 1003,\n GENERIC: 1004,\n ACCESS_TOKEN: 2001,\n REFRESH_TOKEN: 2002,\n ID_TOKEN: 2003,\n APP_METADATA: 3001,\n UNDEFINED: 9999,\n};\n/**\n * More Cache related constants\n */\nconst APP_METADATA = \"appmetadata\";\nconst CLIENT_INFO = \"client_info\";\nconst THE_FAMILY_ID = \"1\";\nconst AUTHORITY_METADATA_CONSTANTS = {\n CACHE_KEY: \"authority-metadata\",\n REFRESH_TIME_SECONDS: 3600 * 24, // 24 Hours\n};\nconst AuthorityMetadataSource = {\n CONFIG: \"config\",\n CACHE: \"cache\",\n NETWORK: \"network\",\n HARDCODED_VALUES: \"hardcoded_values\",\n};\nconst SERVER_TELEM_CONSTANTS = {\n SCHEMA_VERSION: 5,\n MAX_CUR_HEADER_BYTES: 80,\n MAX_LAST_HEADER_BYTES: 330,\n MAX_CACHED_ERRORS: 50,\n CACHE_KEY: \"server-telemetry\",\n CATEGORY_SEPARATOR: \"|\",\n VALUE_SEPARATOR: \",\",\n OVERFLOW_TRUE: \"1\",\n OVERFLOW_FALSE: \"0\",\n UNKNOWN_ERROR: \"unknown_error\",\n};\n/**\n * Type of the authentication request\n */\nconst AuthenticationScheme = {\n BEARER: \"Bearer\",\n POP: \"pop\",\n SSH: \"ssh-cert\",\n};\n/**\n * Constants related to throttling\n */\nconst ThrottlingConstants = {\n // Default time to throttle RequestThumbprint in seconds\n DEFAULT_THROTTLE_TIME_SECONDS: 60,\n // Default maximum time to throttle in seconds, overrides what the server sends back\n DEFAULT_MAX_THROTTLE_TIME_SECONDS: 3600,\n // Prefix for storing throttling entries\n THROTTLING_PREFIX: \"throttling\",\n // Value assigned to the x-ms-lib-capability header to indicate to the server the library supports throttling\n X_MS_LIB_CAPABILITY_VALUE: \"retry-after, h429\",\n};\nconst Errors = {\n INVALID_GRANT_ERROR: \"invalid_grant\",\n CLIENT_MISMATCH_ERROR: \"client_mismatch\",\n};\n/**\n * Password grant parameters\n */\nconst PasswordGrantConstants = {\n username: \"username\",\n password: \"password\",\n};\n/**\n * Response codes\n */\nconst ResponseCodes = {\n httpSuccess: 200,\n httpBadRequest: 400,\n};\n/**\n * Region Discovery Sources\n */\nconst RegionDiscoverySources = {\n FAILED_AUTO_DETECTION: \"1\",\n INTERNAL_CACHE: \"2\",\n ENVIRONMENT_VARIABLE: \"3\",\n IMDS: \"4\",\n};\n/**\n * Region Discovery Outcomes\n */\nconst RegionDiscoveryOutcomes = {\n CONFIGURED_MATCHES_DETECTED: \"1\",\n CONFIGURED_NO_AUTO_DETECTION: \"2\",\n CONFIGURED_NOT_DETECTED: \"3\",\n AUTO_DETECTION_REQUESTED_SUCCESSFUL: \"4\",\n AUTO_DETECTION_REQUESTED_FAILED: \"5\",\n};\n/**\n * Specifies the reason for fetching the access token from the identity provider\n */\nconst CacheOutcome = {\n // When a token is found in the cache or the cache is not supposed to be hit when making the request\n NOT_APPLICABLE: \"0\",\n // When the token request goes to the identity provider because force_refresh was set to true. Also occurs if claims were requested\n FORCE_REFRESH_OR_CLAIMS: \"1\",\n // When the token request goes to the identity provider because no cached access token exists\n NO_CACHED_ACCESS_TOKEN: \"2\",\n // When the token request goes to the identity provider because cached access token expired\n CACHED_ACCESS_TOKEN_EXPIRED: \"3\",\n // When the token request goes to the identity provider because refresh_in was used and the existing token needs to be refreshed\n PROACTIVELY_REFRESHED: \"4\",\n};\nconst JsonTypes = {\n Jwt: \"JWT\",\n Jwk: \"JWK\",\n Pop: \"pop\",\n};\nconst ONE_DAY_IN_MS = 86400000;\n\nexport { AADAuthorityConstants, AADServerParamKeys, APP_METADATA, AUTHORITY_METADATA_CONSTANTS, AuthenticationScheme, AuthorityMetadataSource, CLIENT_INFO, CacheAccountType, CacheOutcome, CacheType, ClaimsRequestKeys, CodeChallengeMethodValues, Constants, CredentialType, Errors, GrantType, HeaderNames, HttpStatus, JsonTypes, OIDC_DEFAULT_SCOPES, OIDC_SCOPES, ONE_DAY_IN_MS, PasswordGrantConstants, PersistentCacheKeys, PromptValue, RegionDiscoveryOutcomes, RegionDiscoverySources, ResponseCodes, ResponseMode, SERVER_TELEM_CONSTANTS, SSOTypes, Separators, ServerResponseType, THE_FAMILY_ID, ThrottlingConstants };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * AuthErrorMessage class containing string constants used by error codes and messages.\n */\nconst unexpectedError = \"unexpected_error\";\nconst postRequestFailed = \"post_request_failed\";\n\nexport { postRequestFailed, unexpectedError };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { Constants } from '../utils/Constants.mjs';\nimport { unexpectedError, postRequestFailed } from './AuthErrorCodes.mjs';\nimport * as AuthErrorCodes from './AuthErrorCodes.mjs';\nexport { AuthErrorCodes };\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst AuthErrorMessages = {\n [unexpectedError]: \"Unexpected error in authentication.\",\n [postRequestFailed]: \"Post request failed from the network, could be a 4xx/5xx or a network unavailability. Please check the exact error code for details.\",\n};\n/**\n * AuthErrorMessage class containing string constants used by error codes and messages.\n * @deprecated Use AuthErrorCodes instead\n */\nconst AuthErrorMessage = {\n unexpectedError: {\n code: unexpectedError,\n desc: AuthErrorMessages[unexpectedError],\n },\n postRequestFailed: {\n code: postRequestFailed,\n desc: AuthErrorMessages[postRequestFailed],\n },\n};\n/**\n * General error class thrown by the MSAL.js library.\n */\nclass AuthError extends Error {\n constructor(errorCode, errorMessage, suberror) {\n const errorString = errorMessage\n ? `${errorCode}: ${errorMessage}`\n : errorCode;\n super(errorString);\n Object.setPrototypeOf(this, AuthError.prototype);\n this.errorCode = errorCode || Constants.EMPTY_STRING;\n this.errorMessage = errorMessage || Constants.EMPTY_STRING;\n this.subError = suberror || Constants.EMPTY_STRING;\n this.name = \"AuthError\";\n }\n setCorrelationId(correlationId) {\n this.correlationId = correlationId;\n }\n}\nfunction createAuthError(code, additionalMessage) {\n return new AuthError(code, additionalMessage\n ? `${AuthErrorMessages[code]} ${additionalMessage}`\n : AuthErrorMessages[code]);\n}\n\nexport { AuthError, AuthErrorMessage, AuthErrorMessages, createAuthError };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst clientInfoDecodingError = \"client_info_decoding_error\";\nconst clientInfoEmptyError = \"client_info_empty_error\";\nconst tokenParsingError = \"token_parsing_error\";\nconst nullOrEmptyToken = \"null_or_empty_token\";\nconst endpointResolutionError = \"endpoints_resolution_error\";\nconst networkError = \"network_error\";\nconst openIdConfigError = \"openid_config_error\";\nconst hashNotDeserialized = \"hash_not_deserialized\";\nconst invalidState = \"invalid_state\";\nconst stateMismatch = \"state_mismatch\";\nconst stateNotFound = \"state_not_found\";\nconst nonceMismatch = \"nonce_mismatch\";\nconst authTimeNotFound = \"auth_time_not_found\";\nconst maxAgeTranspired = \"max_age_transpired\";\nconst multipleMatchingTokens = \"multiple_matching_tokens\";\nconst multipleMatchingAccounts = \"multiple_matching_accounts\";\nconst multipleMatchingAppMetadata = \"multiple_matching_appMetadata\";\nconst requestCannotBeMade = \"request_cannot_be_made\";\nconst cannotRemoveEmptyScope = \"cannot_remove_empty_scope\";\nconst cannotAppendScopeSet = \"cannot_append_scopeset\";\nconst emptyInputScopeSet = \"empty_input_scopeset\";\nconst deviceCodePollingCancelled = \"device_code_polling_cancelled\";\nconst deviceCodeExpired = \"device_code_expired\";\nconst deviceCodeUnknownError = \"device_code_unknown_error\";\nconst noAccountInSilentRequest = \"no_account_in_silent_request\";\nconst invalidCacheRecord = \"invalid_cache_record\";\nconst invalidCacheEnvironment = \"invalid_cache_environment\";\nconst noAccountFound = \"no_account_found\";\nconst noCryptoObject = \"no_crypto_object\";\nconst unexpectedCredentialType = \"unexpected_credential_type\";\nconst invalidAssertion = \"invalid_assertion\";\nconst invalidClientCredential = \"invalid_client_credential\";\nconst tokenRefreshRequired = \"token_refresh_required\";\nconst userTimeoutReached = \"user_timeout_reached\";\nconst tokenClaimsCnfRequiredForSignedJwt = \"token_claims_cnf_required_for_signedjwt\";\nconst authorizationCodeMissingFromServerResponse = \"authorization_code_missing_from_server_response\";\nconst bindingKeyNotRemoved = \"binding_key_not_removed\";\nconst endSessionEndpointNotSupported = \"end_session_endpoint_not_supported\";\nconst keyIdMissing = \"key_id_missing\";\nconst noNetworkConnectivity = \"no_network_connectivity\";\nconst userCanceled = \"user_canceled\";\nconst missingTenantIdError = \"missing_tenant_id_error\";\nconst methodNotImplemented = \"method_not_implemented\";\n\nexport { authTimeNotFound, authorizationCodeMissingFromServerResponse, bindingKeyNotRemoved, cannotAppendScopeSet, cannotRemoveEmptyScope, clientInfoDecodingError, clientInfoEmptyError, deviceCodeExpired, deviceCodePollingCancelled, deviceCodeUnknownError, emptyInputScopeSet, endSessionEndpointNotSupported, endpointResolutionError, hashNotDeserialized, invalidAssertion, invalidCacheEnvironment, invalidCacheRecord, invalidClientCredential, invalidState, keyIdMissing, maxAgeTranspired, methodNotImplemented, missingTenantIdError, multipleMatchingAccounts, multipleMatchingAppMetadata, multipleMatchingTokens, networkError, noAccountFound, noAccountInSilentRequest, noCryptoObject, noNetworkConnectivity, nonceMismatch, nullOrEmptyToken, openIdConfigError, requestCannotBeMade, stateMismatch, stateNotFound, tokenClaimsCnfRequiredForSignedJwt, tokenParsingError, tokenRefreshRequired, unexpectedCredentialType, userCanceled, userTimeoutReached };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { AuthError } from './AuthError.mjs';\nimport { clientInfoDecodingError, clientInfoEmptyError, tokenParsingError, nullOrEmptyToken, endpointResolutionError, networkError, openIdConfigError, hashNotDeserialized, invalidState, stateMismatch, stateNotFound, nonceMismatch, authTimeNotFound, maxAgeTranspired, multipleMatchingTokens, multipleMatchingAccounts, multipleMatchingAppMetadata, requestCannotBeMade, cannotRemoveEmptyScope, cannotAppendScopeSet, emptyInputScopeSet, deviceCodePollingCancelled, deviceCodeExpired, deviceCodeUnknownError, noAccountInSilentRequest, invalidCacheRecord, invalidCacheEnvironment, noAccountFound, noCryptoObject, unexpectedCredentialType, invalidAssertion, invalidClientCredential, tokenRefreshRequired, userTimeoutReached, tokenClaimsCnfRequiredForSignedJwt, authorizationCodeMissingFromServerResponse, bindingKeyNotRemoved, endSessionEndpointNotSupported, keyIdMissing, noNetworkConnectivity, userCanceled, missingTenantIdError, methodNotImplemented } from './ClientAuthErrorCodes.mjs';\nimport * as ClientAuthErrorCodes from './ClientAuthErrorCodes.mjs';\nexport { ClientAuthErrorCodes };\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * ClientAuthErrorMessage class containing string constants used by error codes and messages.\n */\nconst ClientAuthErrorMessages = {\n [clientInfoDecodingError]: \"The client info could not be parsed/decoded correctly\",\n [clientInfoEmptyError]: \"The client info was empty\",\n [tokenParsingError]: \"Token cannot be parsed\",\n [nullOrEmptyToken]: \"The token is null or empty\",\n [endpointResolutionError]: \"Endpoints cannot be resolved\",\n [networkError]: \"Network request failed\",\n [openIdConfigError]: \"Could not retrieve endpoints. Check your authority and verify the .well-known/openid-configuration endpoint returns the required endpoints.\",\n [hashNotDeserialized]: \"The hash parameters could not be deserialized\",\n [invalidState]: \"State was not the expected format\",\n [stateMismatch]: \"State mismatch error\",\n [stateNotFound]: \"State not found\",\n [nonceMismatch]: \"Nonce mismatch error\",\n [authTimeNotFound]: \"Max Age was requested and the ID token is missing the auth_time variable.\" +\n \" auth_time is an optional claim and is not enabled by default - it must be enabled.\" +\n \" See https://aka.ms/msaljs/optional-claims for more information.\",\n [maxAgeTranspired]: \"Max Age is set to 0, or too much time has elapsed since the last end-user authentication.\",\n [multipleMatchingTokens]: \"The cache contains multiple tokens satisfying the requirements. \" +\n \"Call AcquireToken again providing more requirements such as authority or account.\",\n [multipleMatchingAccounts]: \"The cache contains multiple accounts satisfying the given parameters. Please pass more info to obtain the correct account\",\n [multipleMatchingAppMetadata]: \"The cache contains multiple appMetadata satisfying the given parameters. Please pass more info to obtain the correct appMetadata\",\n [requestCannotBeMade]: \"Token request cannot be made without authorization code or refresh token.\",\n [cannotRemoveEmptyScope]: \"Cannot remove null or empty scope from ScopeSet\",\n [cannotAppendScopeSet]: \"Cannot append ScopeSet\",\n [emptyInputScopeSet]: \"Empty input ScopeSet cannot be processed\",\n [deviceCodePollingCancelled]: \"Caller has cancelled token endpoint polling during device code flow by setting DeviceCodeRequest.cancel = true.\",\n [deviceCodeExpired]: \"Device code is expired.\",\n [deviceCodeUnknownError]: \"Device code stopped polling for unknown reasons.\",\n [noAccountInSilentRequest]: \"Please pass an account object, silent flow is not supported without account information\",\n [invalidCacheRecord]: \"Cache record object was null or undefined.\",\n [invalidCacheEnvironment]: \"Invalid environment when attempting to create cache entry\",\n [noAccountFound]: \"No account found in cache for given key.\",\n [noCryptoObject]: \"No crypto object detected.\",\n [unexpectedCredentialType]: \"Unexpected credential type.\",\n [invalidAssertion]: \"Client assertion must meet requirements described in https://tools.ietf.org/html/rfc7515\",\n [invalidClientCredential]: \"Client credential (secret, certificate, or assertion) must not be empty when creating a confidential client. An application should at most have one credential\",\n [tokenRefreshRequired]: \"Cannot return token from cache because it must be refreshed. This may be due to one of the following reasons: forceRefresh parameter is set to true, claims have been requested, there is no cached access token or it is expired.\",\n [userTimeoutReached]: \"User defined timeout for device code polling reached\",\n [tokenClaimsCnfRequiredForSignedJwt]: \"Cannot generate a POP jwt if the token_claims are not populated\",\n [authorizationCodeMissingFromServerResponse]: \"Server response does not contain an authorization code to proceed\",\n [bindingKeyNotRemoved]: \"Could not remove the credential's binding key from storage.\",\n [endSessionEndpointNotSupported]: \"The provided authority does not support logout\",\n [keyIdMissing]: \"A keyId value is missing from the requested bound token's cache record and is required to match the token to it's stored binding key.\",\n [noNetworkConnectivity]: \"No network connectivity. Check your internet connection.\",\n [userCanceled]: \"User cancelled the flow.\",\n [missingTenantIdError]: \"A tenant id - not common, organizations, or consumers - must be specified when using the client_credentials flow.\",\n [methodNotImplemented]: \"This method has not been implemented\",\n};\n/**\n * String constants used by error codes and messages.\n * @deprecated Use ClientAuthErrorCodes instead\n */\nconst ClientAuthErrorMessage = {\n clientInfoDecodingError: {\n code: clientInfoDecodingError,\n desc: ClientAuthErrorMessages[clientInfoDecodingError],\n },\n clientInfoEmptyError: {\n code: clientInfoEmptyError,\n desc: ClientAuthErrorMessages[clientInfoEmptyError],\n },\n tokenParsingError: {\n code: tokenParsingError,\n desc: ClientAuthErrorMessages[tokenParsingError],\n },\n nullOrEmptyToken: {\n code: nullOrEmptyToken,\n desc: ClientAuthErrorMessages[nullOrEmptyToken],\n },\n endpointResolutionError: {\n code: endpointResolutionError,\n desc: ClientAuthErrorMessages[endpointResolutionError],\n },\n networkError: {\n code: networkError,\n desc: ClientAuthErrorMessages[networkError],\n },\n unableToGetOpenidConfigError: {\n code: openIdConfigError,\n desc: ClientAuthErrorMessages[openIdConfigError],\n },\n hashNotDeserialized: {\n code: hashNotDeserialized,\n desc: ClientAuthErrorMessages[hashNotDeserialized],\n },\n invalidStateError: {\n code: invalidState,\n desc: ClientAuthErrorMessages[invalidState],\n },\n stateMismatchError: {\n code: stateMismatch,\n desc: ClientAuthErrorMessages[stateMismatch],\n },\n stateNotFoundError: {\n code: stateNotFound,\n desc: ClientAuthErrorMessages[stateNotFound],\n },\n nonceMismatchError: {\n code: nonceMismatch,\n desc: ClientAuthErrorMessages[nonceMismatch],\n },\n authTimeNotFoundError: {\n code: authTimeNotFound,\n desc: ClientAuthErrorMessages[authTimeNotFound],\n },\n maxAgeTranspired: {\n code: maxAgeTranspired,\n desc: ClientAuthErrorMessages[maxAgeTranspired],\n },\n multipleMatchingTokens: {\n code: multipleMatchingTokens,\n desc: ClientAuthErrorMessages[multipleMatchingTokens],\n },\n multipleMatchingAccounts: {\n code: multipleMatchingAccounts,\n desc: ClientAuthErrorMessages[multipleMatchingAccounts],\n },\n multipleMatchingAppMetadata: {\n code: multipleMatchingAppMetadata,\n desc: ClientAuthErrorMessages[multipleMatchingAppMetadata],\n },\n tokenRequestCannotBeMade: {\n code: requestCannotBeMade,\n desc: ClientAuthErrorMessages[requestCannotBeMade],\n },\n removeEmptyScopeError: {\n code: cannotRemoveEmptyScope,\n desc: ClientAuthErrorMessages[cannotRemoveEmptyScope],\n },\n appendScopeSetError: {\n code: cannotAppendScopeSet,\n desc: ClientAuthErrorMessages[cannotAppendScopeSet],\n },\n emptyInputScopeSetError: {\n code: emptyInputScopeSet,\n desc: ClientAuthErrorMessages[emptyInputScopeSet],\n },\n DeviceCodePollingCancelled: {\n code: deviceCodePollingCancelled,\n desc: ClientAuthErrorMessages[deviceCodePollingCancelled],\n },\n DeviceCodeExpired: {\n code: deviceCodeExpired,\n desc: ClientAuthErrorMessages[deviceCodeExpired],\n },\n DeviceCodeUnknownError: {\n code: deviceCodeUnknownError,\n desc: ClientAuthErrorMessages[deviceCodeUnknownError],\n },\n NoAccountInSilentRequest: {\n code: noAccountInSilentRequest,\n desc: ClientAuthErrorMessages[noAccountInSilentRequest],\n },\n invalidCacheRecord: {\n code: invalidCacheRecord,\n desc: ClientAuthErrorMessages[invalidCacheRecord],\n },\n invalidCacheEnvironment: {\n code: invalidCacheEnvironment,\n desc: ClientAuthErrorMessages[invalidCacheEnvironment],\n },\n noAccountFound: {\n code: noAccountFound,\n desc: ClientAuthErrorMessages[noAccountFound],\n },\n noCryptoObj: {\n code: noCryptoObject,\n desc: ClientAuthErrorMessages[noCryptoObject],\n },\n unexpectedCredentialType: {\n code: unexpectedCredentialType,\n desc: ClientAuthErrorMessages[unexpectedCredentialType],\n },\n invalidAssertion: {\n code: invalidAssertion,\n desc: ClientAuthErrorMessages[invalidAssertion],\n },\n invalidClientCredential: {\n code: invalidClientCredential,\n desc: ClientAuthErrorMessages[invalidClientCredential],\n },\n tokenRefreshRequired: {\n code: tokenRefreshRequired,\n desc: ClientAuthErrorMessages[tokenRefreshRequired],\n },\n userTimeoutReached: {\n code: userTimeoutReached,\n desc: ClientAuthErrorMessages[userTimeoutReached],\n },\n tokenClaimsRequired: {\n code: tokenClaimsCnfRequiredForSignedJwt,\n desc: ClientAuthErrorMessages[tokenClaimsCnfRequiredForSignedJwt],\n },\n noAuthorizationCodeFromServer: {\n code: authorizationCodeMissingFromServerResponse,\n desc: ClientAuthErrorMessages[authorizationCodeMissingFromServerResponse],\n },\n bindingKeyNotRemovedError: {\n code: bindingKeyNotRemoved,\n desc: ClientAuthErrorMessages[bindingKeyNotRemoved],\n },\n logoutNotSupported: {\n code: endSessionEndpointNotSupported,\n desc: ClientAuthErrorMessages[endSessionEndpointNotSupported],\n },\n keyIdMissing: {\n code: keyIdMissing,\n desc: ClientAuthErrorMessages[keyIdMissing],\n },\n noNetworkConnectivity: {\n code: noNetworkConnectivity,\n desc: ClientAuthErrorMessages[noNetworkConnectivity],\n },\n userCanceledError: {\n code: userCanceled,\n desc: ClientAuthErrorMessages[userCanceled],\n },\n missingTenantIdError: {\n code: missingTenantIdError,\n desc: ClientAuthErrorMessages[missingTenantIdError],\n },\n};\n/**\n * Error thrown when there is an error in the client code running on the browser.\n */\nclass ClientAuthError extends AuthError {\n constructor(errorCode, additionalMessage) {\n super(errorCode, additionalMessage\n ? `${ClientAuthErrorMessages[errorCode]}: ${additionalMessage}`\n : ClientAuthErrorMessages[errorCode]);\n this.name = \"ClientAuthError\";\n Object.setPrototypeOf(this, ClientAuthError.prototype);\n }\n}\nfunction createClientAuthError(errorCode, additionalMessage) {\n return new ClientAuthError(errorCode, additionalMessage);\n}\n\nexport { ClientAuthError, ClientAuthErrorMessage, ClientAuthErrorMessages, createClientAuthError };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { methodNotImplemented } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst DEFAULT_CRYPTO_IMPLEMENTATION = {\n createNewGuid: () => {\n throw createClientAuthError(methodNotImplemented);\n },\n base64Decode: () => {\n throw createClientAuthError(methodNotImplemented);\n },\n base64Encode: () => {\n throw createClientAuthError(methodNotImplemented);\n },\n async getPublicKeyThumbprint() {\n throw createClientAuthError(methodNotImplemented);\n },\n async removeTokenBindingKey() {\n throw createClientAuthError(methodNotImplemented);\n },\n async clearKeystore() {\n throw createClientAuthError(methodNotImplemented);\n },\n async signJwt() {\n throw createClientAuthError(methodNotImplemented);\n },\n async hashString() {\n throw createClientAuthError(methodNotImplemented);\n },\n};\n\nexport { DEFAULT_CRYPTO_IMPLEMENTATION };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { Constants } from '../utils/Constants.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Log message level.\n */\nvar LogLevel;\n(function (LogLevel) {\n LogLevel[LogLevel[\"Error\"] = 0] = \"Error\";\n LogLevel[LogLevel[\"Warning\"] = 1] = \"Warning\";\n LogLevel[LogLevel[\"Info\"] = 2] = \"Info\";\n LogLevel[LogLevel[\"Verbose\"] = 3] = \"Verbose\";\n LogLevel[LogLevel[\"Trace\"] = 4] = \"Trace\";\n})(LogLevel || (LogLevel = {}));\n/**\n * Class which facilitates logging of messages to a specific place.\n */\nclass Logger {\n constructor(loggerOptions, packageName, packageVersion) {\n // Current log level, defaults to info.\n this.level = LogLevel.Info;\n const defaultLoggerCallback = () => {\n return;\n };\n const setLoggerOptions = loggerOptions || Logger.createDefaultLoggerOptions();\n this.localCallback =\n setLoggerOptions.loggerCallback || defaultLoggerCallback;\n this.piiLoggingEnabled = setLoggerOptions.piiLoggingEnabled || false;\n this.level =\n typeof setLoggerOptions.logLevel === \"number\"\n ? setLoggerOptions.logLevel\n : LogLevel.Info;\n this.correlationId =\n setLoggerOptions.correlationId || Constants.EMPTY_STRING;\n this.packageName = packageName || Constants.EMPTY_STRING;\n this.packageVersion = packageVersion || Constants.EMPTY_STRING;\n }\n static createDefaultLoggerOptions() {\n return {\n loggerCallback: () => {\n // allow users to not set loggerCallback\n },\n piiLoggingEnabled: false,\n logLevel: LogLevel.Info,\n };\n }\n /**\n * Create new Logger with existing configurations.\n */\n clone(packageName, packageVersion, correlationId) {\n return new Logger({\n loggerCallback: this.localCallback,\n piiLoggingEnabled: this.piiLoggingEnabled,\n logLevel: this.level,\n correlationId: correlationId || this.correlationId,\n }, packageName, packageVersion);\n }\n /**\n * Log message with required options.\n */\n logMessage(logMessage, options) {\n if (options.logLevel > this.level ||\n (!this.piiLoggingEnabled && options.containsPii)) {\n return;\n }\n const timestamp = new Date().toUTCString();\n // Add correlationId to logs if set, correlationId provided on log messages take precedence\n const logHeader = `[${timestamp}] : [${options.correlationId || this.correlationId || \"\"}]`;\n const log = `${logHeader} : ${this.packageName}@${this.packageVersion} : ${LogLevel[options.logLevel]} - ${logMessage}`;\n // debug(`msal:${LogLevel[options.logLevel]}${options.containsPii ? \"-Pii\": Constants.EMPTY_STRING}${options.context ? `:${options.context}` : Constants.EMPTY_STRING}`)(logMessage);\n this.executeCallback(options.logLevel, log, options.containsPii || false);\n }\n /**\n * Execute callback with message.\n */\n executeCallback(level, message, containsPii) {\n if (this.localCallback) {\n this.localCallback(level, message, containsPii);\n }\n }\n /**\n * Logs error messages.\n */\n error(message, correlationId) {\n this.logMessage(message, {\n logLevel: LogLevel.Error,\n containsPii: false,\n correlationId: correlationId || Constants.EMPTY_STRING,\n });\n }\n /**\n * Logs error messages with PII.\n */\n errorPii(message, correlationId) {\n this.logMessage(message, {\n logLevel: LogLevel.Error,\n containsPii: true,\n correlationId: correlationId || Constants.EMPTY_STRING,\n });\n }\n /**\n * Logs warning messages.\n */\n warning(message, correlationId) {\n this.logMessage(message, {\n logLevel: LogLevel.Warning,\n containsPii: false,\n correlationId: correlationId || Constants.EMPTY_STRING,\n });\n }\n /**\n * Logs warning messages with PII.\n */\n warningPii(message, correlationId) {\n this.logMessage(message, {\n logLevel: LogLevel.Warning,\n containsPii: true,\n correlationId: correlationId || Constants.EMPTY_STRING,\n });\n }\n /**\n * Logs info messages.\n */\n info(message, correlationId) {\n this.logMessage(message, {\n logLevel: LogLevel.Info,\n containsPii: false,\n correlationId: correlationId || Constants.EMPTY_STRING,\n });\n }\n /**\n * Logs info messages with PII.\n */\n infoPii(message, correlationId) {\n this.logMessage(message, {\n logLevel: LogLevel.Info,\n containsPii: true,\n correlationId: correlationId || Constants.EMPTY_STRING,\n });\n }\n /**\n * Logs verbose messages.\n */\n verbose(message, correlationId) {\n this.logMessage(message, {\n logLevel: LogLevel.Verbose,\n containsPii: false,\n correlationId: correlationId || Constants.EMPTY_STRING,\n });\n }\n /**\n * Logs verbose messages with PII.\n */\n verbosePii(message, correlationId) {\n this.logMessage(message, {\n logLevel: LogLevel.Verbose,\n containsPii: true,\n correlationId: correlationId || Constants.EMPTY_STRING,\n });\n }\n /**\n * Logs trace messages.\n */\n trace(message, correlationId) {\n this.logMessage(message, {\n logLevel: LogLevel.Trace,\n containsPii: false,\n correlationId: correlationId || Constants.EMPTY_STRING,\n });\n }\n /**\n * Logs trace messages with PII.\n */\n tracePii(message, correlationId) {\n this.logMessage(message, {\n logLevel: LogLevel.Trace,\n containsPii: true,\n correlationId: correlationId || Constants.EMPTY_STRING,\n });\n }\n /**\n * Returns whether PII Logging is enabled or not.\n */\n isPiiLoggingEnabled() {\n return this.piiLoggingEnabled || false;\n }\n}\n\nexport { LogLevel, Logger };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/* eslint-disable header/header */\nconst name = \"@azure/msal-common\";\nconst version = \"14.1.0\";\n\nexport { name, version };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst AzureCloudInstance = {\n // AzureCloudInstance is not specified.\n None: \"none\",\n // Microsoft Azure public cloud\n AzurePublic: \"https://login.microsoftonline.com\",\n // Microsoft PPE\n AzurePpe: \"https://login.windows-ppe.net\",\n // Microsoft Chinese national/regional cloud\n AzureChina: \"https://login.chinacloudapi.cn\",\n // Microsoft German national/regional cloud (\"Black Forest\")\n AzureGermany: \"https://login.microsoftonline.de\",\n // US Government cloud\n AzureUsGovernment: \"https://login.microsoftonline.us\",\n};\n\nexport { AzureCloudInstance };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst redirectUriEmpty = \"redirect_uri_empty\";\nconst claimsRequestParsingError = \"claims_request_parsing_error\";\nconst authorityUriInsecure = \"authority_uri_insecure\";\nconst urlParseError = \"url_parse_error\";\nconst urlEmptyError = \"empty_url_error\";\nconst emptyInputScopesError = \"empty_input_scopes_error\";\nconst invalidPromptValue = \"invalid_prompt_value\";\nconst invalidClaims = \"invalid_claims\";\nconst tokenRequestEmpty = \"token_request_empty\";\nconst logoutRequestEmpty = \"logout_request_empty\";\nconst invalidCodeChallengeMethod = \"invalid_code_challenge_method\";\nconst pkceParamsMissing = \"pkce_params_missing\";\nconst invalidCloudDiscoveryMetadata = \"invalid_cloud_discovery_metadata\";\nconst invalidAuthorityMetadata = \"invalid_authority_metadata\";\nconst untrustedAuthority = \"untrusted_authority\";\nconst missingSshJwk = \"missing_ssh_jwk\";\nconst missingSshKid = \"missing_ssh_kid\";\nconst missingNonceAuthenticationHeader = \"missing_nonce_authentication_header\";\nconst invalidAuthenticationHeader = \"invalid_authentication_header\";\nconst cannotSetOIDCOptions = \"cannot_set_OIDCOptions\";\nconst cannotAllowNativeBroker = \"cannot_allow_native_broker\";\nconst authorityMismatch = \"authority_mismatch\";\n\nexport { authorityMismatch, authorityUriInsecure, cannotAllowNativeBroker, cannotSetOIDCOptions, claimsRequestParsingError, emptyInputScopesError, invalidAuthenticationHeader, invalidAuthorityMetadata, invalidClaims, invalidCloudDiscoveryMetadata, invalidCodeChallengeMethod, invalidPromptValue, logoutRequestEmpty, missingNonceAuthenticationHeader, missingSshJwk, missingSshKid, pkceParamsMissing, redirectUriEmpty, tokenRequestEmpty, untrustedAuthority, urlEmptyError, urlParseError };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { AuthError } from './AuthError.mjs';\nimport { redirectUriEmpty, claimsRequestParsingError, authorityUriInsecure, urlParseError, urlEmptyError, emptyInputScopesError, invalidPromptValue, invalidClaims, tokenRequestEmpty, logoutRequestEmpty, invalidCodeChallengeMethod, pkceParamsMissing, invalidCloudDiscoveryMetadata, invalidAuthorityMetadata, untrustedAuthority, missingSshJwk, missingSshKid, missingNonceAuthenticationHeader, invalidAuthenticationHeader, cannotSetOIDCOptions, cannotAllowNativeBroker, authorityMismatch } from './ClientConfigurationErrorCodes.mjs';\nimport * as ClientConfigurationErrorCodes from './ClientConfigurationErrorCodes.mjs';\nexport { ClientConfigurationErrorCodes };\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst ClientConfigurationErrorMessages = {\n [redirectUriEmpty]: \"A redirect URI is required for all calls, and none has been set.\",\n [claimsRequestParsingError]: \"Could not parse the given claims request object.\",\n [authorityUriInsecure]: \"Authority URIs must use https. Please see here for valid authority configuration options: https://docs.microsoft.com/en-us/azure/active-directory/develop/msal-js-initializing-client-applications#configuration-options\",\n [urlParseError]: \"URL could not be parsed into appropriate segments.\",\n [urlEmptyError]: \"URL was empty or null.\",\n [emptyInputScopesError]: \"Scopes cannot be passed as null, undefined or empty array because they are required to obtain an access token.\",\n [invalidPromptValue]: \"Please see here for valid configuration options: https://azuread.github.io/microsoft-authentication-library-for-js/ref/modules/_azure_msal_common.html#commonauthorizationurlrequest\",\n [invalidClaims]: \"Given claims parameter must be a stringified JSON object.\",\n [tokenRequestEmpty]: \"Token request was empty and not found in cache.\",\n [logoutRequestEmpty]: \"The logout request was null or undefined.\",\n [invalidCodeChallengeMethod]: 'code_challenge_method passed is invalid. Valid values are \"plain\" and \"S256\".',\n [pkceParamsMissing]: \"Both params: code_challenge and code_challenge_method are to be passed if to be sent in the request\",\n [invalidCloudDiscoveryMetadata]: \"Invalid cloudDiscoveryMetadata provided. Must be a stringified JSON object containing tenant_discovery_endpoint and metadata fields\",\n [invalidAuthorityMetadata]: \"Invalid authorityMetadata provided. Must by a stringified JSON object containing authorization_endpoint, token_endpoint, issuer fields.\",\n [untrustedAuthority]: \"The provided authority is not a trusted authority. Please include this authority in the knownAuthorities config parameter.\",\n [missingSshJwk]: \"Missing sshJwk in SSH certificate request. A stringified JSON Web Key is required when using the SSH authentication scheme.\",\n [missingSshKid]: \"Missing sshKid in SSH certificate request. A string that uniquely identifies the public SSH key is required when using the SSH authentication scheme.\",\n [missingNonceAuthenticationHeader]: \"Unable to find an authentication header containing server nonce. Either the Authentication-Info or WWW-Authenticate headers must be present in order to obtain a server nonce.\",\n [invalidAuthenticationHeader]: \"Invalid authentication header provided\",\n [cannotSetOIDCOptions]: \"Cannot set OIDCOptions parameter. Please change the protocol mode to OIDC or use a non-Microsoft authority.\",\n [cannotAllowNativeBroker]: \"Cannot set allowNativeBroker parameter to true when not in AAD protocol mode.\",\n [authorityMismatch]: \"Authority mismatch error. Authority provided in login request or PublicClientApplication config does not match the environment of the provided account. Please use a matching account or make an interactive request to login to this authority.\",\n};\n/**\n * ClientConfigurationErrorMessage class containing string constants used by error codes and messages.\n * @deprecated Use ClientConfigurationErrorCodes instead\n */\nconst ClientConfigurationErrorMessage = {\n redirectUriNotSet: {\n code: redirectUriEmpty,\n desc: ClientConfigurationErrorMessages[redirectUriEmpty],\n },\n claimsRequestParsingError: {\n code: claimsRequestParsingError,\n desc: ClientConfigurationErrorMessages[claimsRequestParsingError],\n },\n authorityUriInsecure: {\n code: authorityUriInsecure,\n desc: ClientConfigurationErrorMessages[authorityUriInsecure],\n },\n urlParseError: {\n code: urlParseError,\n desc: ClientConfigurationErrorMessages[urlParseError],\n },\n urlEmptyError: {\n code: urlEmptyError,\n desc: ClientConfigurationErrorMessages[urlEmptyError],\n },\n emptyScopesError: {\n code: emptyInputScopesError,\n desc: ClientConfigurationErrorMessages[emptyInputScopesError],\n },\n invalidPrompt: {\n code: invalidPromptValue,\n desc: ClientConfigurationErrorMessages[invalidPromptValue],\n },\n invalidClaimsRequest: {\n code: invalidClaims,\n desc: ClientConfigurationErrorMessages[invalidClaims],\n },\n tokenRequestEmptyError: {\n code: tokenRequestEmpty,\n desc: ClientConfigurationErrorMessages[tokenRequestEmpty],\n },\n logoutRequestEmptyError: {\n code: logoutRequestEmpty,\n desc: ClientConfigurationErrorMessages[logoutRequestEmpty],\n },\n invalidCodeChallengeMethod: {\n code: invalidCodeChallengeMethod,\n desc: ClientConfigurationErrorMessages[invalidCodeChallengeMethod],\n },\n invalidCodeChallengeParams: {\n code: pkceParamsMissing,\n desc: ClientConfigurationErrorMessages[pkceParamsMissing],\n },\n invalidCloudDiscoveryMetadata: {\n code: invalidCloudDiscoveryMetadata,\n desc: ClientConfigurationErrorMessages[invalidCloudDiscoveryMetadata],\n },\n invalidAuthorityMetadata: {\n code: invalidAuthorityMetadata,\n desc: ClientConfigurationErrorMessages[invalidAuthorityMetadata],\n },\n untrustedAuthority: {\n code: untrustedAuthority,\n desc: ClientConfigurationErrorMessages[untrustedAuthority],\n },\n missingSshJwk: {\n code: missingSshJwk,\n desc: ClientConfigurationErrorMessages[missingSshJwk],\n },\n missingSshKid: {\n code: missingSshKid,\n desc: ClientConfigurationErrorMessages[missingSshKid],\n },\n missingNonceAuthenticationHeader: {\n code: missingNonceAuthenticationHeader,\n desc: ClientConfigurationErrorMessages[missingNonceAuthenticationHeader],\n },\n invalidAuthenticationHeader: {\n code: invalidAuthenticationHeader,\n desc: ClientConfigurationErrorMessages[invalidAuthenticationHeader],\n },\n cannotSetOIDCOptions: {\n code: cannotSetOIDCOptions,\n desc: ClientConfigurationErrorMessages[cannotSetOIDCOptions],\n },\n cannotAllowNativeBroker: {\n code: cannotAllowNativeBroker,\n desc: ClientConfigurationErrorMessages[cannotAllowNativeBroker],\n },\n authorityMismatch: {\n code: authorityMismatch,\n desc: ClientConfigurationErrorMessages[authorityMismatch],\n },\n};\n/**\n * Error thrown when there is an error in configuration of the MSAL.js library.\n */\nclass ClientConfigurationError extends AuthError {\n constructor(errorCode) {\n super(errorCode, ClientConfigurationErrorMessages[errorCode]);\n this.name = \"ClientConfigurationError\";\n Object.setPrototypeOf(this, ClientConfigurationError.prototype);\n }\n}\nfunction createClientConfigurationError(errorCode) {\n return new ClientConfigurationError(errorCode);\n}\n\nexport { ClientConfigurationError, ClientConfigurationErrorMessage, ClientConfigurationErrorMessages, createClientConfigurationError };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * @hidden\n */\nclass StringUtils {\n /**\n * Check if stringified object is empty\n * @param strObj\n */\n static isEmptyObj(strObj) {\n if (strObj) {\n try {\n const obj = JSON.parse(strObj);\n return Object.keys(obj).length === 0;\n }\n catch (e) { }\n }\n return true;\n }\n static startsWith(str, search) {\n return str.indexOf(search) === 0;\n }\n static endsWith(str, search) {\n return (str.length >= search.length &&\n str.lastIndexOf(search) === str.length - search.length);\n }\n /**\n * Parses string into an object.\n *\n * @param query\n */\n static queryStringToObject(query) {\n const obj = {};\n const params = query.split(\"&\");\n const decode = (s) => decodeURIComponent(s.replace(/\\+/g, \" \"));\n params.forEach((pair) => {\n if (pair.trim()) {\n const [key, value] = pair.split(/=(.+)/g, 2); // Split on the first occurence of the '=' character\n if (key && value) {\n obj[decode(key)] = decode(value);\n }\n }\n });\n return obj;\n }\n /**\n * Trims entries in an array.\n *\n * @param arr\n */\n static trimArrayEntries(arr) {\n return arr.map((entry) => entry.trim());\n }\n /**\n * Removes empty strings from array\n * @param arr\n */\n static removeEmptyStringsFromArray(arr) {\n return arr.filter((entry) => {\n return !!entry;\n });\n }\n /**\n * Attempts to parse a string into JSON\n * @param str\n */\n static jsonParseHelper(str) {\n try {\n return JSON.parse(str);\n }\n catch (e) {\n return null;\n }\n }\n /**\n * Tests if a given string matches a given pattern, with support for wildcards and queries.\n * @param pattern Wildcard pattern to string match. Supports \"*\" for wildcards and \"?\" for queries\n * @param input String to match against\n */\n static matchPattern(pattern, input) {\n /**\n * Wildcard support: https://stackoverflow.com/a/3117248/4888559\n * Queries: replaces \"?\" in string with escaped \"\\?\" for regex test\n */\n // eslint-disable-next-line security/detect-non-literal-regexp\n const regex = new RegExp(pattern\n .replace(/\\\\/g, \"\\\\\\\\\")\n .replace(/\\*/g, \"[^ ]*\")\n .replace(/\\?/g, \"\\\\?\"));\n return regex.test(input);\n }\n}\n\nexport { StringUtils };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { createClientConfigurationError } from '../error/ClientConfigurationError.mjs';\nimport { StringUtils } from '../utils/StringUtils.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { Constants, OIDC_SCOPES } from '../utils/Constants.mjs';\nimport { emptyInputScopesError } from '../error/ClientConfigurationErrorCodes.mjs';\nimport { cannotAppendScopeSet, cannotRemoveEmptyScope, emptyInputScopeSet } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * The ScopeSet class creates a set of scopes. Scopes are case-insensitive, unique values, so the Set object in JS makes\n * the most sense to implement for this class. All scopes are trimmed and converted to lower case strings in intersection and union functions\n * to ensure uniqueness of strings.\n */\nclass ScopeSet {\n constructor(inputScopes) {\n // Filter empty string and null/undefined array items\n const scopeArr = inputScopes\n ? StringUtils.trimArrayEntries([...inputScopes])\n : [];\n const filteredInput = scopeArr\n ? StringUtils.removeEmptyStringsFromArray(scopeArr)\n : [];\n // Validate and filter scopes (validate function throws if validation fails)\n this.validateInputScopes(filteredInput);\n this.scopes = new Set(); // Iterator in constructor not supported by IE11\n filteredInput.forEach((scope) => this.scopes.add(scope));\n }\n /**\n * Factory method to create ScopeSet from space-delimited string\n * @param inputScopeString\n * @param appClientId\n * @param scopesRequired\n */\n static fromString(inputScopeString) {\n const scopeString = inputScopeString || Constants.EMPTY_STRING;\n const inputScopes = scopeString.split(\" \");\n return new ScopeSet(inputScopes);\n }\n /**\n * Creates the set of scopes to search for in cache lookups\n * @param inputScopeString\n * @returns\n */\n static createSearchScopes(inputScopeString) {\n const scopeSet = new ScopeSet(inputScopeString);\n if (!scopeSet.containsOnlyOIDCScopes()) {\n scopeSet.removeOIDCScopes();\n }\n else {\n scopeSet.removeScope(Constants.OFFLINE_ACCESS_SCOPE);\n }\n return scopeSet;\n }\n /**\n * Used to validate the scopes input parameter requested by the developer.\n * @param {Array} inputScopes - Developer requested permissions. Not all scopes are guaranteed to be included in the access token returned.\n * @param {boolean} scopesRequired - Boolean indicating whether the scopes array is required or not\n */\n validateInputScopes(inputScopes) {\n // Check if scopes are required but not given or is an empty array\n if (!inputScopes || inputScopes.length < 1) {\n throw createClientConfigurationError(emptyInputScopesError);\n }\n }\n /**\n * Check if a given scope is present in this set of scopes.\n * @param scope\n */\n containsScope(scope) {\n const lowerCaseScopes = this.printScopesLowerCase().split(\" \");\n const lowerCaseScopesSet = new ScopeSet(lowerCaseScopes);\n // compare lowercase scopes\n return scope\n ? lowerCaseScopesSet.scopes.has(scope.toLowerCase())\n : false;\n }\n /**\n * Check if a set of scopes is present in this set of scopes.\n * @param scopeSet\n */\n containsScopeSet(scopeSet) {\n if (!scopeSet || scopeSet.scopes.size <= 0) {\n return false;\n }\n return (this.scopes.size >= scopeSet.scopes.size &&\n scopeSet.asArray().every((scope) => this.containsScope(scope)));\n }\n /**\n * Check if set of scopes contains only the defaults\n */\n containsOnlyOIDCScopes() {\n let defaultScopeCount = 0;\n OIDC_SCOPES.forEach((defaultScope) => {\n if (this.containsScope(defaultScope)) {\n defaultScopeCount += 1;\n }\n });\n return this.scopes.size === defaultScopeCount;\n }\n /**\n * Appends single scope if passed\n * @param newScope\n */\n appendScope(newScope) {\n if (newScope) {\n this.scopes.add(newScope.trim());\n }\n }\n /**\n * Appends multiple scopes if passed\n * @param newScopes\n */\n appendScopes(newScopes) {\n try {\n newScopes.forEach((newScope) => this.appendScope(newScope));\n }\n catch (e) {\n throw createClientAuthError(cannotAppendScopeSet);\n }\n }\n /**\n * Removes element from set of scopes.\n * @param scope\n */\n removeScope(scope) {\n if (!scope) {\n throw createClientAuthError(cannotRemoveEmptyScope);\n }\n this.scopes.delete(scope.trim());\n }\n /**\n * Removes default scopes from set of scopes\n * Primarily used to prevent cache misses if the default scopes are not returned from the server\n */\n removeOIDCScopes() {\n OIDC_SCOPES.forEach((defaultScope) => {\n this.scopes.delete(defaultScope);\n });\n }\n /**\n * Combines an array of scopes with the current set of scopes.\n * @param otherScopes\n */\n unionScopeSets(otherScopes) {\n if (!otherScopes) {\n throw createClientAuthError(emptyInputScopeSet);\n }\n const unionScopes = new Set(); // Iterator in constructor not supported in IE11\n otherScopes.scopes.forEach((scope) => unionScopes.add(scope.toLowerCase()));\n this.scopes.forEach((scope) => unionScopes.add(scope.toLowerCase()));\n return unionScopes;\n }\n /**\n * Check if scopes intersect between this set and another.\n * @param otherScopes\n */\n intersectingScopeSets(otherScopes) {\n if (!otherScopes) {\n throw createClientAuthError(emptyInputScopeSet);\n }\n // Do not allow OIDC scopes to be the only intersecting scopes\n if (!otherScopes.containsOnlyOIDCScopes()) {\n otherScopes.removeOIDCScopes();\n }\n const unionScopes = this.unionScopeSets(otherScopes);\n const sizeOtherScopes = otherScopes.getScopeCount();\n const sizeThisScopes = this.getScopeCount();\n const sizeUnionScopes = unionScopes.size;\n return sizeUnionScopes < sizeThisScopes + sizeOtherScopes;\n }\n /**\n * Returns size of set of scopes.\n */\n getScopeCount() {\n return this.scopes.size;\n }\n /**\n * Returns the scopes as an array of string values\n */\n asArray() {\n const array = [];\n this.scopes.forEach((val) => array.push(val));\n return array;\n }\n /**\n * Prints scopes into a space-delimited string\n */\n printScopes() {\n if (this.scopes) {\n const scopeArr = this.asArray();\n return scopeArr.join(\" \");\n }\n return Constants.EMPTY_STRING;\n }\n /**\n * Prints scopes into a space-delimited lower-case string (used for caching)\n */\n printScopesLowerCase() {\n return this.printScopes().toLowerCase();\n }\n}\n\nexport { ScopeSet };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { Separators, Constants } from '../utils/Constants.mjs';\nimport { clientInfoEmptyError, clientInfoDecodingError } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Function to build a client info object from server clientInfo string\n * @param rawClientInfo\n * @param crypto\n */\nfunction buildClientInfo(rawClientInfo, crypto) {\n if (!rawClientInfo) {\n throw createClientAuthError(clientInfoEmptyError);\n }\n try {\n const decodedClientInfo = crypto.base64Decode(rawClientInfo);\n return JSON.parse(decodedClientInfo);\n }\n catch (e) {\n throw createClientAuthError(clientInfoDecodingError);\n }\n}\n/**\n * Function to build a client info object from cached homeAccountId string\n * @param homeAccountId\n */\nfunction buildClientInfoFromHomeAccountId(homeAccountId) {\n if (!homeAccountId) {\n throw createClientAuthError(clientInfoDecodingError);\n }\n const clientInfoParts = homeAccountId.split(Separators.CLIENT_INFO_SEPARATOR, 2);\n return {\n uid: clientInfoParts[0],\n utid: clientInfoParts.length < 2\n ? Constants.EMPTY_STRING\n : clientInfoParts[1],\n };\n}\n\nexport { buildClientInfo, buildClientInfoFromHomeAccountId };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Authority types supported by MSAL.\n */\nconst AuthorityType = {\n Default: 0,\n Adfs: 1,\n Dsts: 2,\n Ciam: 3,\n};\n\nexport { AuthorityType };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Protocol modes supported by MSAL.\n */\nconst ProtocolMode = {\n AAD: \"AAD\",\n OIDC: \"OIDC\",\n};\n\nexport { ProtocolMode };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { Separators, CacheAccountType, Constants } from '../../utils/Constants.mjs';\nimport { buildClientInfo } from '../../account/ClientInfo.mjs';\nimport { createClientAuthError } from '../../error/ClientAuthError.mjs';\nimport { AuthorityType } from '../../authority/AuthorityType.mjs';\nimport { ProtocolMode } from '../../authority/ProtocolMode.mjs';\nimport { invalidCacheEnvironment } from '../../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Type that defines required and optional parameters for an Account field (based on universal cache schema implemented by all MSALs).\n *\n * Key : Value Schema\n *\n * Key: --\n *\n * Value Schema:\n * {\n * homeAccountId: home account identifier for the auth scheme,\n * environment: entity that issued the token, represented as a full host\n * realm: Full tenant or organizational identifier that the account belongs to\n * localAccountId: Original tenant-specific accountID, usually used for legacy cases\n * username: primary username that represents the user, usually corresponds to preferred_username in the v2 endpt\n * authorityType: Accounts authority type as a string\n * name: Full name for the account, including given name and family name,\n * lastModificationTime: last time this entity was modified in the cache\n * lastModificationApp:\n * idTokenClaims: Object containing claims parsed from ID token\n * nativeAccountId: Account identifier on the native device\n * }\n * @internal\n */\nclass AccountEntity {\n /**\n * Generate Account Id key component as per the schema: -\n */\n generateAccountId() {\n const accountId = [this.homeAccountId, this.environment];\n return accountId.join(Separators.CACHE_KEY_SEPARATOR).toLowerCase();\n }\n /**\n * Generate Account Cache Key as per the schema: --\n */\n generateAccountKey() {\n return AccountEntity.generateAccountCacheKey({\n homeAccountId: this.homeAccountId,\n environment: this.environment,\n tenantId: this.realm,\n username: this.username,\n localAccountId: this.localAccountId,\n });\n }\n /**\n * Returns the AccountInfo interface for this account.\n */\n getAccountInfo() {\n return {\n homeAccountId: this.homeAccountId,\n environment: this.environment,\n tenantId: this.realm,\n username: this.username,\n localAccountId: this.localAccountId,\n name: this.name,\n idTokenClaims: this.idTokenClaims,\n nativeAccountId: this.nativeAccountId,\n authorityType: this.authorityType,\n };\n }\n /**\n * Generates account key from interface\n * @param accountInterface\n */\n static generateAccountCacheKey(accountInterface) {\n const accountKey = [\n accountInterface.homeAccountId,\n accountInterface.environment || Constants.EMPTY_STRING,\n accountInterface.tenantId || Constants.EMPTY_STRING,\n ];\n return accountKey.join(Separators.CACHE_KEY_SEPARATOR).toLowerCase();\n }\n /**\n * Build Account cache from IdToken, clientInfo and authority/policy. Associated with AAD.\n * @param accountDetails\n */\n static createAccount(accountDetails, authority) {\n const account = new AccountEntity();\n if (authority.authorityType === AuthorityType.Adfs) {\n account.authorityType = CacheAccountType.ADFS_ACCOUNT_TYPE;\n }\n else if (authority.protocolMode === ProtocolMode.AAD) {\n account.authorityType = CacheAccountType.MSSTS_ACCOUNT_TYPE;\n }\n else {\n account.authorityType = CacheAccountType.GENERIC_ACCOUNT_TYPE;\n }\n account.clientInfo = accountDetails.clientInfo;\n account.homeAccountId = accountDetails.homeAccountId;\n account.nativeAccountId = accountDetails.nativeAccountId;\n const env = accountDetails.environment ||\n (authority && authority.getPreferredCache());\n if (!env) {\n throw createClientAuthError(invalidCacheEnvironment);\n }\n account.environment = env;\n // non AAD scenarios can have empty realm\n account.realm =\n accountDetails.idTokenClaims.tid || Constants.EMPTY_STRING;\n account.idTokenClaims = accountDetails.idTokenClaims;\n // How do you account for MSA CID here?\n account.localAccountId =\n accountDetails.idTokenClaims.oid ||\n accountDetails.idTokenClaims.sub ||\n Constants.EMPTY_STRING;\n /*\n * In B2C scenarios the emails claim is used instead of preferred_username and it is an array.\n * In most cases it will contain a single email. This field should not be relied upon if a custom\n * policy is configured to return more than 1 email.\n */\n const preferredUsername = accountDetails.idTokenClaims.preferred_username ||\n accountDetails.idTokenClaims.upn;\n const email = accountDetails.idTokenClaims.emails\n ? accountDetails.idTokenClaims.emails[0]\n : null;\n account.username = preferredUsername || email || Constants.EMPTY_STRING;\n account.name = accountDetails.idTokenClaims.name;\n account.cloudGraphHostName = accountDetails.cloudGraphHostName;\n account.msGraphHost = accountDetails.msGraphHost;\n return account;\n }\n /**\n * Creates an AccountEntity object from AccountInfo\n * @param accountInfo\n * @param cloudGraphHostName\n * @param msGraphHost\n * @returns\n */\n static createFromAccountInfo(accountInfo, cloudGraphHostName, msGraphHost) {\n const account = new AccountEntity();\n account.authorityType =\n accountInfo.authorityType || CacheAccountType.GENERIC_ACCOUNT_TYPE;\n account.homeAccountId = accountInfo.homeAccountId;\n account.localAccountId = accountInfo.localAccountId;\n account.nativeAccountId = accountInfo.nativeAccountId;\n account.realm = accountInfo.tenantId;\n account.environment = accountInfo.environment;\n account.username = accountInfo.username;\n account.name = accountInfo.name;\n account.idTokenClaims = accountInfo.idTokenClaims;\n account.cloudGraphHostName = cloudGraphHostName;\n account.msGraphHost = msGraphHost;\n return account;\n }\n /**\n * Generate HomeAccountId from server response\n * @param serverClientInfo\n * @param authType\n */\n static generateHomeAccountId(serverClientInfo, authType, logger, cryptoObj, idTokenClaims) {\n const accountId = idTokenClaims?.sub\n ? idTokenClaims.sub\n : Constants.EMPTY_STRING;\n // since ADFS does not have tid and does not set client_info\n if (authType === AuthorityType.Adfs ||\n authType === AuthorityType.Dsts) {\n return accountId;\n }\n // for cases where there is clientInfo\n if (serverClientInfo) {\n try {\n const clientInfo = buildClientInfo(serverClientInfo, cryptoObj);\n if (clientInfo.uid && clientInfo.utid) {\n return `${clientInfo.uid}${Separators.CLIENT_INFO_SEPARATOR}${clientInfo.utid}`;\n }\n }\n catch (e) { }\n }\n // default to \"sub\" claim\n logger.verbose(\"No client info in response\");\n return accountId;\n }\n /**\n * Validates an entity: checks for all expected params\n * @param entity\n */\n static isAccountEntity(entity) {\n if (!entity) {\n return false;\n }\n return (entity.hasOwnProperty(\"homeAccountId\") &&\n entity.hasOwnProperty(\"environment\") &&\n entity.hasOwnProperty(\"realm\") &&\n entity.hasOwnProperty(\"localAccountId\") &&\n entity.hasOwnProperty(\"username\") &&\n entity.hasOwnProperty(\"authorityType\"));\n }\n /**\n * Helper function to determine whether 2 accountInfo objects represent the same account\n * @param accountA\n * @param accountB\n * @param compareClaims - If set to true idTokenClaims will also be compared to determine account equality\n */\n static accountInfoIsEqual(accountA, accountB, compareClaims) {\n if (!accountA || !accountB) {\n return false;\n }\n let claimsMatch = true; // default to true so as to not fail comparison below if compareClaims: false\n if (compareClaims) {\n const accountAClaims = (accountA.idTokenClaims ||\n {});\n const accountBClaims = (accountB.idTokenClaims ||\n {});\n // issued at timestamp and nonce are expected to change each time a new id token is acquired\n claimsMatch =\n accountAClaims.iat === accountBClaims.iat &&\n accountAClaims.nonce === accountBClaims.nonce;\n }\n return (accountA.homeAccountId === accountB.homeAccountId &&\n accountA.localAccountId === accountB.localAccountId &&\n accountA.username === accountB.username &&\n accountA.tenantId === accountB.tenantId &&\n accountA.environment === accountB.environment &&\n accountA.nativeAccountId === accountB.nativeAccountId &&\n claimsMatch);\n }\n}\n\nexport { AccountEntity };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { tokenParsingError, nullOrEmptyToken, maxAgeTranspired } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Extract token by decoding the rawToken\n *\n * @param encodedToken\n */\nfunction extractTokenClaims(encodedToken, base64Decode) {\n const jswPayload = getJWSPayload(encodedToken);\n // token will be decoded to get the username\n try {\n // base64Decode() should throw an error if there is an issue\n const base64Decoded = base64Decode(jswPayload);\n return JSON.parse(base64Decoded);\n }\n catch (err) {\n throw createClientAuthError(tokenParsingError);\n }\n}\n/**\n * decode a JWT\n *\n * @param authToken\n */\nfunction getJWSPayload(authToken) {\n if (!authToken) {\n throw createClientAuthError(nullOrEmptyToken);\n }\n const tokenPartsRegex = /^([^\\.\\s]*)\\.([^\\.\\s]+)\\.([^\\.\\s]*)$/;\n const matches = tokenPartsRegex.exec(authToken);\n if (!matches || matches.length < 4) {\n throw createClientAuthError(tokenParsingError);\n }\n /**\n * const crackedToken = {\n * header: matches[1],\n * JWSPayload: matches[2],\n * JWSSig: matches[3],\n * };\n */\n return matches[2];\n}\n/**\n * Determine if the token's max_age has transpired\n */\nfunction checkMaxAge(authTime, maxAge) {\n /*\n * per https://openid.net/specs/openid-connect-core-1_0.html#AuthRequest\n * To force an immediate re-authentication: If an app requires that a user re-authenticate prior to access,\n * provide a value of 0 for the max_age parameter and the AS will force a fresh login.\n */\n const fiveMinuteSkew = 300000; // five minutes in milliseconds\n if (maxAge === 0 || Date.now() - fiveMinuteSkew > authTime + maxAge) {\n throw createClientAuthError(maxAgeTranspired);\n }\n}\n\nexport { checkMaxAge, extractTokenClaims, getJWSPayload };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { Separators, CredentialType, AuthenticationScheme, THE_FAMILY_ID, APP_METADATA, AUTHORITY_METADATA_CONSTANTS } from '../utils/Constants.mjs';\nimport { ScopeSet } from '../request/ScopeSet.mjs';\nimport { AccountEntity } from './entities/AccountEntity.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { extractTokenClaims } from '../account/AuthToken.mjs';\nimport { name, version } from '../packageMetadata.mjs';\nimport { invalidCacheRecord, bindingKeyNotRemoved, multipleMatchingAppMetadata, methodNotImplemented } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Interface class which implement cache storage functions used by MSAL to perform validity checks, and store tokens.\n * @internal\n */\nclass CacheManager {\n constructor(clientId, cryptoImpl, logger) {\n this.clientId = clientId;\n this.cryptoImpl = cryptoImpl;\n this.commonLogger = logger.clone(name, version);\n }\n /**\n * Returns all the accounts in the cache that match the optional filter. If no filter is provided, all accounts are returned.\n * @param accountFilter - (Optional) filter to narrow down the accounts returned\n * @returns Array of AccountInfo objects in cache\n */\n getAllAccounts(accountFilter) {\n if (accountFilter) {\n return this.getAccountsFilteredBy(accountFilter).map((accountEntity) => {\n return accountEntity.getAccountInfo();\n });\n }\n const allAccountKeys = this.getAccountKeys();\n if (allAccountKeys.length < 1) {\n return [];\n }\n const accountEntities = allAccountKeys.reduce((accounts, key) => {\n const entity = this.getAccount(key);\n if (!entity) {\n return accounts;\n }\n accounts.push(entity);\n return accounts;\n }, []);\n const allAccounts = accountEntities.map((accountEntity) => {\n return this.getAccountInfoFromEntity(accountEntity);\n });\n return allAccounts;\n }\n /**\n * Gets accountInfo object based on provided filters\n */\n getAccountInfoFilteredBy(accountFilter) {\n const allAccounts = this.getAccountsFilteredBy(accountFilter);\n if (allAccounts.length > 0) {\n return this.getAccountInfoFromEntity(allAccounts[0]);\n }\n else {\n return null;\n }\n }\n getAccountInfoFromEntity(accountEntity) {\n const accountInfo = accountEntity.getAccountInfo();\n const idToken = this.getIdToken(accountInfo);\n if (idToken) {\n accountInfo.idToken = idToken.secret;\n accountInfo.idTokenClaims = extractTokenClaims(idToken.secret, this.cryptoImpl.base64Decode);\n }\n return accountInfo;\n }\n /**\n * saves a cache record\n * @param cacheRecord\n */\n async saveCacheRecord(cacheRecord, storeInCache) {\n if (!cacheRecord) {\n throw createClientAuthError(invalidCacheRecord);\n }\n if (!!cacheRecord.account) {\n this.setAccount(cacheRecord.account);\n }\n if (!!cacheRecord.idToken && storeInCache?.idToken !== false) {\n this.setIdTokenCredential(cacheRecord.idToken);\n }\n if (!!cacheRecord.accessToken && storeInCache?.accessToken !== false) {\n await this.saveAccessToken(cacheRecord.accessToken);\n }\n if (!!cacheRecord.refreshToken &&\n storeInCache?.refreshToken !== false) {\n this.setRefreshTokenCredential(cacheRecord.refreshToken);\n }\n if (!!cacheRecord.appMetadata) {\n this.setAppMetadata(cacheRecord.appMetadata);\n }\n }\n /**\n * saves access token credential\n * @param credential\n */\n async saveAccessToken(credential) {\n const accessTokenFilter = {\n clientId: credential.clientId,\n credentialType: credential.credentialType,\n environment: credential.environment,\n homeAccountId: credential.homeAccountId,\n realm: credential.realm,\n tokenType: credential.tokenType,\n requestedClaimsHash: credential.requestedClaimsHash,\n };\n const tokenKeys = this.getTokenKeys();\n const currentScopes = ScopeSet.fromString(credential.target);\n const removedAccessTokens = [];\n tokenKeys.accessToken.forEach((key) => {\n if (!this.accessTokenKeyMatchesFilter(key, accessTokenFilter, false)) {\n return;\n }\n const tokenEntity = this.getAccessTokenCredential(key);\n if (tokenEntity &&\n this.credentialMatchesFilter(tokenEntity, accessTokenFilter)) {\n const tokenScopeSet = ScopeSet.fromString(tokenEntity.target);\n if (tokenScopeSet.intersectingScopeSets(currentScopes)) {\n removedAccessTokens.push(this.removeAccessToken(key));\n }\n }\n });\n await Promise.all(removedAccessTokens);\n this.setAccessTokenCredential(credential);\n }\n /**\n * Retrieve accounts matching all provided filters; if no filter is set, get all accounts\n * Not checking for casing as keys are all generated in lower case, remember to convert to lower case if object properties are compared\n * @param accountFilter - An object containing Account properties to filter by\n */\n getAccountsFilteredBy(accountFilter) {\n const allAccountKeys = this.getAccountKeys();\n const matchingAccounts = [];\n allAccountKeys.forEach((cacheKey) => {\n if (!this.isAccountKey(cacheKey, accountFilter.homeAccountId, accountFilter.tenantId)) {\n // Don't parse value if the key doesn't match the account filters\n return;\n }\n const entity = this.getAccount(cacheKey);\n if (!entity) {\n return;\n }\n if (!!accountFilter.homeAccountId &&\n !this.matchHomeAccountId(entity, accountFilter.homeAccountId)) {\n return;\n }\n if (!!accountFilter.localAccountId &&\n !this.matchLocalAccountId(entity, accountFilter.localAccountId)) {\n return;\n }\n if (!!accountFilter.username &&\n !this.matchUsername(entity, accountFilter.username)) {\n return;\n }\n if (!!accountFilter.environment &&\n !this.matchEnvironment(entity, accountFilter.environment)) {\n return;\n }\n if (!!accountFilter.realm &&\n !this.matchRealm(entity, accountFilter.realm)) {\n return;\n }\n // tenantId is another name for realm\n if (!!accountFilter.tenantId &&\n !this.matchRealm(entity, accountFilter.tenantId)) {\n return;\n }\n if (!!accountFilter.nativeAccountId &&\n !this.matchNativeAccountId(entity, accountFilter.nativeAccountId)) {\n return;\n }\n if (!!accountFilter.loginHint &&\n !this.matchLoginHint(entity, accountFilter.loginHint)) {\n return;\n }\n if (!!accountFilter.authorityType &&\n !this.matchAuthorityType(entity, accountFilter.authorityType)) {\n return;\n }\n if (!!accountFilter.name &&\n !this.matchName(entity, accountFilter.name)) {\n return;\n }\n matchingAccounts.push(entity);\n });\n return matchingAccounts;\n }\n /**\n * Returns true if the given key matches our account key schema. Also matches homeAccountId and/or tenantId if provided\n * @param key\n * @param homeAccountId\n * @param tenantId\n * @returns\n */\n isAccountKey(key, homeAccountId, tenantId) {\n if (key.split(Separators.CACHE_KEY_SEPARATOR).length < 3) {\n // Account cache keys contain 3 items separated by '-' (each item may also contain '-')\n return false;\n }\n if (homeAccountId &&\n !key.toLowerCase().includes(homeAccountId.toLowerCase())) {\n return false;\n }\n if (tenantId && !key.toLowerCase().includes(tenantId.toLowerCase())) {\n return false;\n }\n // Do not check environment as aliasing can cause false negatives\n return true;\n }\n /**\n * Returns true if the given key matches our credential key schema.\n * @param key\n */\n isCredentialKey(key) {\n if (key.split(Separators.CACHE_KEY_SEPARATOR).length < 6) {\n // Credential cache keys contain 6 items separated by '-' (each item may also contain '-')\n return false;\n }\n const lowerCaseKey = key.toLowerCase();\n // Credential keys must indicate what credential type they represent\n if (lowerCaseKey.indexOf(CredentialType.ID_TOKEN.toLowerCase()) ===\n -1 &&\n lowerCaseKey.indexOf(CredentialType.ACCESS_TOKEN.toLowerCase()) ===\n -1 &&\n lowerCaseKey.indexOf(CredentialType.ACCESS_TOKEN_WITH_AUTH_SCHEME.toLowerCase()) === -1 &&\n lowerCaseKey.indexOf(CredentialType.REFRESH_TOKEN.toLowerCase()) ===\n -1) {\n return false;\n }\n if (lowerCaseKey.indexOf(CredentialType.REFRESH_TOKEN.toLowerCase()) >\n -1) {\n // Refresh tokens must contain the client id or family id\n const clientIdValidation = `${CredentialType.REFRESH_TOKEN}${Separators.CACHE_KEY_SEPARATOR}${this.clientId}${Separators.CACHE_KEY_SEPARATOR}`;\n const familyIdValidation = `${CredentialType.REFRESH_TOKEN}${Separators.CACHE_KEY_SEPARATOR}${THE_FAMILY_ID}${Separators.CACHE_KEY_SEPARATOR}`;\n if (lowerCaseKey.indexOf(clientIdValidation.toLowerCase()) === -1 &&\n lowerCaseKey.indexOf(familyIdValidation.toLowerCase()) === -1) {\n return false;\n }\n }\n else if (lowerCaseKey.indexOf(this.clientId.toLowerCase()) === -1) {\n // Tokens must contain the clientId\n return false;\n }\n return true;\n }\n /**\n * Returns whether or not the given credential entity matches the filter\n * @param entity\n * @param filter\n * @returns\n */\n credentialMatchesFilter(entity, filter) {\n if (!!filter.clientId && !this.matchClientId(entity, filter.clientId)) {\n return false;\n }\n if (!!filter.userAssertionHash &&\n !this.matchUserAssertionHash(entity, filter.userAssertionHash)) {\n return false;\n }\n /*\n * homeAccountId can be undefined, and we want to filter out cached items that have a homeAccountId of \"\"\n * because we don't want a client_credential request to return a cached token that has a homeAccountId\n */\n if (typeof filter.homeAccountId === \"string\" &&\n !this.matchHomeAccountId(entity, filter.homeAccountId)) {\n return false;\n }\n if (!!filter.environment &&\n !this.matchEnvironment(entity, filter.environment)) {\n return false;\n }\n if (!!filter.realm && !this.matchRealm(entity, filter.realm)) {\n return false;\n }\n if (!!filter.credentialType &&\n !this.matchCredentialType(entity, filter.credentialType)) {\n return false;\n }\n if (!!filter.familyId && !this.matchFamilyId(entity, filter.familyId)) {\n return false;\n }\n /*\n * idTokens do not have \"target\", target specific refreshTokens do exist for some types of authentication\n * Resource specific refresh tokens case will be added when the support is deemed necessary\n */\n if (!!filter.target && !this.matchTarget(entity, filter.target)) {\n return false;\n }\n // If request OR cached entity has requested Claims Hash, check if they match\n if (filter.requestedClaimsHash || entity.requestedClaimsHash) {\n // Don't match if either is undefined or they are different\n if (entity.requestedClaimsHash !== filter.requestedClaimsHash) {\n return false;\n }\n }\n // Access Token with Auth Scheme specific matching\n if (entity.credentialType ===\n CredentialType.ACCESS_TOKEN_WITH_AUTH_SCHEME) {\n if (!!filter.tokenType &&\n !this.matchTokenType(entity, filter.tokenType)) {\n return false;\n }\n // KeyId (sshKid) in request must match cached SSH certificate keyId because SSH cert is bound to a specific key\n if (filter.tokenType === AuthenticationScheme.SSH) {\n if (filter.keyId && !this.matchKeyId(entity, filter.keyId)) {\n return false;\n }\n }\n }\n return true;\n }\n /**\n * retrieve appMetadata matching all provided filters; if no filter is set, get all appMetadata\n * @param filter\n */\n getAppMetadataFilteredBy(filter) {\n return this.getAppMetadataFilteredByInternal(filter.environment, filter.clientId);\n }\n /**\n * Support function to help match appMetadata\n * @param environment\n * @param clientId\n */\n getAppMetadataFilteredByInternal(environment, clientId) {\n const allCacheKeys = this.getKeys();\n const matchingAppMetadata = {};\n allCacheKeys.forEach((cacheKey) => {\n // don't parse any non-appMetadata type cache entities\n if (!this.isAppMetadata(cacheKey)) {\n return;\n }\n // Attempt retrieval\n const entity = this.getAppMetadata(cacheKey);\n if (!entity) {\n return;\n }\n if (!!environment && !this.matchEnvironment(entity, environment)) {\n return;\n }\n if (!!clientId && !this.matchClientId(entity, clientId)) {\n return;\n }\n matchingAppMetadata[cacheKey] = entity;\n });\n return matchingAppMetadata;\n }\n /**\n * retrieve authorityMetadata that contains a matching alias\n * @param filter\n */\n getAuthorityMetadataByAlias(host) {\n const allCacheKeys = this.getAuthorityMetadataKeys();\n let matchedEntity = null;\n allCacheKeys.forEach((cacheKey) => {\n // don't parse any non-authorityMetadata type cache entities\n if (!this.isAuthorityMetadata(cacheKey) ||\n cacheKey.indexOf(this.clientId) === -1) {\n return;\n }\n // Attempt retrieval\n const entity = this.getAuthorityMetadata(cacheKey);\n if (!entity) {\n return;\n }\n if (entity.aliases.indexOf(host) === -1) {\n return;\n }\n matchedEntity = entity;\n });\n return matchedEntity;\n }\n /**\n * Removes all accounts and related tokens from cache.\n */\n async removeAllAccounts() {\n const allAccountKeys = this.getAccountKeys();\n const removedAccounts = [];\n allAccountKeys.forEach((cacheKey) => {\n removedAccounts.push(this.removeAccount(cacheKey));\n });\n await Promise.all(removedAccounts);\n }\n /**\n * Removes the account and related tokens for a given account key\n * @param account\n */\n async removeAccount(accountKey) {\n const account = this.getAccount(accountKey);\n if (!account) {\n return;\n }\n await this.removeAccountContext(account);\n this.removeItem(accountKey);\n }\n /**\n * Removes credentials associated with the provided account\n * @param account\n */\n async removeAccountContext(account) {\n const allTokenKeys = this.getTokenKeys();\n const accountId = account.generateAccountId();\n const removedCredentials = [];\n allTokenKeys.idToken.forEach((key) => {\n if (key.indexOf(accountId) === 0) {\n this.removeIdToken(key);\n }\n });\n allTokenKeys.accessToken.forEach((key) => {\n if (key.indexOf(accountId) === 0) {\n removedCredentials.push(this.removeAccessToken(key));\n }\n });\n allTokenKeys.refreshToken.forEach((key) => {\n if (key.indexOf(accountId) === 0) {\n this.removeRefreshToken(key);\n }\n });\n await Promise.all(removedCredentials);\n }\n /**\n * returns a boolean if the given credential is removed\n * @param credential\n */\n async removeAccessToken(key) {\n const credential = this.getAccessTokenCredential(key);\n if (!credential) {\n return;\n }\n // Remove Token Binding Key from key store for PoP Tokens Credentials\n if (credential.credentialType.toLowerCase() ===\n CredentialType.ACCESS_TOKEN_WITH_AUTH_SCHEME.toLowerCase()) {\n if (credential.tokenType === AuthenticationScheme.POP) {\n const accessTokenWithAuthSchemeEntity = credential;\n const kid = accessTokenWithAuthSchemeEntity.keyId;\n if (kid) {\n try {\n await this.cryptoImpl.removeTokenBindingKey(kid);\n }\n catch (error) {\n throw createClientAuthError(bindingKeyNotRemoved);\n }\n }\n }\n }\n return this.removeItem(key);\n }\n /**\n * Removes all app metadata objects from cache.\n */\n removeAppMetadata() {\n const allCacheKeys = this.getKeys();\n allCacheKeys.forEach((cacheKey) => {\n if (this.isAppMetadata(cacheKey)) {\n this.removeItem(cacheKey);\n }\n });\n return true;\n }\n /**\n * Retrieve the cached credentials into a cacherecord\n * @param account\n * @param clientId\n * @param scopes\n * @param environment\n * @param authScheme\n */\n readCacheRecord(account, request, environment) {\n const tokenKeys = this.getTokenKeys();\n const cachedAccount = this.readAccountFromCache(account);\n const cachedIdToken = this.getIdToken(account, tokenKeys);\n const cachedAccessToken = this.getAccessToken(account, request, tokenKeys);\n const cachedRefreshToken = this.getRefreshToken(account, false, tokenKeys);\n const cachedAppMetadata = this.readAppMetadataFromCache(environment);\n if (cachedAccount && cachedIdToken) {\n cachedAccount.idTokenClaims = extractTokenClaims(cachedIdToken.secret, this.cryptoImpl.base64Decode);\n }\n return {\n account: cachedAccount,\n idToken: cachedIdToken,\n accessToken: cachedAccessToken,\n refreshToken: cachedRefreshToken,\n appMetadata: cachedAppMetadata,\n };\n }\n /**\n * Retrieve AccountEntity from cache\n * @param account\n */\n readAccountFromCache(account) {\n const accountKey = AccountEntity.generateAccountCacheKey(account);\n return this.getAccount(accountKey);\n }\n /**\n * Retrieve IdTokenEntity from cache\n * @param clientId\n * @param account\n * @param inputRealm\n */\n getIdToken(account, tokenKeys) {\n this.commonLogger.trace(\"CacheManager - getIdToken called\");\n const idTokenFilter = {\n homeAccountId: account.homeAccountId,\n environment: account.environment,\n credentialType: CredentialType.ID_TOKEN,\n clientId: this.clientId,\n realm: account.tenantId,\n };\n const idTokens = this.getIdTokensByFilter(idTokenFilter, tokenKeys);\n const numIdTokens = idTokens.length;\n if (numIdTokens < 1) {\n this.commonLogger.info(\"CacheManager:getIdToken - No token found\");\n return null;\n }\n else if (numIdTokens > 1) {\n this.commonLogger.info(\"CacheManager:getIdToken - Multiple id tokens found, clearing them\");\n idTokens.forEach((idToken) => {\n this.removeIdToken(idToken.generateCredentialKey());\n });\n return null;\n }\n this.commonLogger.info(\"CacheManager:getIdToken - Returning id token\");\n return idTokens[0];\n }\n /**\n * Gets all idTokens matching the given filter\n * @param filter\n * @returns\n */\n getIdTokensByFilter(filter, tokenKeys) {\n const idTokenKeys = (tokenKeys && tokenKeys.idToken) || this.getTokenKeys().idToken;\n const idTokens = [];\n idTokenKeys.forEach((key) => {\n if (!this.idTokenKeyMatchesFilter(key, {\n clientId: this.clientId,\n ...filter,\n })) {\n return;\n }\n const idToken = this.getIdTokenCredential(key);\n if (idToken && this.credentialMatchesFilter(idToken, filter)) {\n idTokens.push(idToken);\n }\n });\n return idTokens;\n }\n /**\n * Validate the cache key against filter before retrieving and parsing cache value\n * @param key\n * @param filter\n * @returns\n */\n idTokenKeyMatchesFilter(inputKey, filter) {\n const key = inputKey.toLowerCase();\n if (filter.clientId &&\n key.indexOf(filter.clientId.toLowerCase()) === -1) {\n return false;\n }\n if (filter.homeAccountId &&\n key.indexOf(filter.homeAccountId.toLowerCase()) === -1) {\n return false;\n }\n return true;\n }\n /**\n * Removes idToken from the cache\n * @param key\n */\n removeIdToken(key) {\n this.removeItem(key);\n }\n /**\n * Removes refresh token from the cache\n * @param key\n */\n removeRefreshToken(key) {\n this.removeItem(key);\n }\n /**\n * Retrieve AccessTokenEntity from cache\n * @param clientId\n * @param account\n * @param scopes\n * @param authScheme\n */\n getAccessToken(account, request, tokenKeys) {\n this.commonLogger.trace(\"CacheManager - getAccessToken called\");\n const scopes = ScopeSet.createSearchScopes(request.scopes);\n const authScheme = request.authenticationScheme || AuthenticationScheme.BEARER;\n /*\n * Distinguish between Bearer and PoP/SSH token cache types\n * Cast to lowercase to handle \"bearer\" from ADFS\n */\n const credentialType = authScheme &&\n authScheme.toLowerCase() !==\n AuthenticationScheme.BEARER.toLowerCase()\n ? CredentialType.ACCESS_TOKEN_WITH_AUTH_SCHEME\n : CredentialType.ACCESS_TOKEN;\n const accessTokenFilter = {\n homeAccountId: account.homeAccountId,\n environment: account.environment,\n credentialType: credentialType,\n clientId: this.clientId,\n realm: account.tenantId,\n target: scopes,\n tokenType: authScheme,\n keyId: request.sshKid,\n requestedClaimsHash: request.requestedClaimsHash,\n };\n const accessTokenKeys = (tokenKeys && tokenKeys.accessToken) ||\n this.getTokenKeys().accessToken;\n const accessTokens = [];\n accessTokenKeys.forEach((key) => {\n // Validate key\n if (this.accessTokenKeyMatchesFilter(key, accessTokenFilter, true)) {\n const accessToken = this.getAccessTokenCredential(key);\n // Validate value\n if (accessToken &&\n this.credentialMatchesFilter(accessToken, accessTokenFilter)) {\n accessTokens.push(accessToken);\n }\n }\n });\n const numAccessTokens = accessTokens.length;\n if (numAccessTokens < 1) {\n this.commonLogger.info(\"CacheManager:getAccessToken - No token found\");\n return null;\n }\n else if (numAccessTokens > 1) {\n this.commonLogger.info(\"CacheManager:getAccessToken - Multiple access tokens found, clearing them\");\n accessTokens.forEach((accessToken) => {\n void this.removeAccessToken(accessToken.generateCredentialKey());\n });\n return null;\n }\n this.commonLogger.info(\"CacheManager:getAccessToken - Returning access token\");\n return accessTokens[0];\n }\n /**\n * Validate the cache key against filter before retrieving and parsing cache value\n * @param key\n * @param filter\n * @param keyMustContainAllScopes\n * @returns\n */\n accessTokenKeyMatchesFilter(inputKey, filter, keyMustContainAllScopes) {\n const key = inputKey.toLowerCase();\n if (filter.clientId &&\n key.indexOf(filter.clientId.toLowerCase()) === -1) {\n return false;\n }\n if (filter.homeAccountId &&\n key.indexOf(filter.homeAccountId.toLowerCase()) === -1) {\n return false;\n }\n if (filter.realm && key.indexOf(filter.realm.toLowerCase()) === -1) {\n return false;\n }\n if (filter.requestedClaimsHash &&\n key.indexOf(filter.requestedClaimsHash.toLowerCase()) === -1) {\n return false;\n }\n if (filter.target) {\n const scopes = filter.target.asArray();\n for (let i = 0; i < scopes.length; i++) {\n if (keyMustContainAllScopes &&\n !key.includes(scopes[i].toLowerCase())) {\n // When performing a cache lookup a missing scope would be a cache miss\n return false;\n }\n else if (!keyMustContainAllScopes &&\n key.includes(scopes[i].toLowerCase())) {\n // When performing a cache write, any token with a subset of requested scopes should be replaced\n return true;\n }\n }\n }\n return true;\n }\n /**\n * Gets all access tokens matching the filter\n * @param filter\n * @returns\n */\n getAccessTokensByFilter(filter) {\n const tokenKeys = this.getTokenKeys();\n const accessTokens = [];\n tokenKeys.accessToken.forEach((key) => {\n if (!this.accessTokenKeyMatchesFilter(key, filter, true)) {\n return;\n }\n const accessToken = this.getAccessTokenCredential(key);\n if (accessToken &&\n this.credentialMatchesFilter(accessToken, filter)) {\n accessTokens.push(accessToken);\n }\n });\n return accessTokens;\n }\n /**\n * Helper to retrieve the appropriate refresh token from cache\n * @param clientId\n * @param account\n * @param familyRT\n */\n getRefreshToken(account, familyRT, tokenKeys) {\n this.commonLogger.trace(\"CacheManager - getRefreshToken called\");\n const id = familyRT ? THE_FAMILY_ID : undefined;\n const refreshTokenFilter = {\n homeAccountId: account.homeAccountId,\n environment: account.environment,\n credentialType: CredentialType.REFRESH_TOKEN,\n clientId: this.clientId,\n familyId: id,\n };\n const refreshTokenKeys = (tokenKeys && tokenKeys.refreshToken) ||\n this.getTokenKeys().refreshToken;\n const refreshTokens = [];\n refreshTokenKeys.forEach((key) => {\n // Validate key\n if (this.refreshTokenKeyMatchesFilter(key, refreshTokenFilter)) {\n const refreshToken = this.getRefreshTokenCredential(key);\n // Validate value\n if (refreshToken &&\n this.credentialMatchesFilter(refreshToken, refreshTokenFilter)) {\n refreshTokens.push(refreshToken);\n }\n }\n });\n const numRefreshTokens = refreshTokens.length;\n if (numRefreshTokens < 1) {\n this.commonLogger.info(\"CacheManager:getRefreshToken - No refresh token found.\");\n return null;\n }\n // address the else case after remove functions address environment aliases\n this.commonLogger.info(\"CacheManager:getRefreshToken - returning refresh token\");\n return refreshTokens[0];\n }\n /**\n * Validate the cache key against filter before retrieving and parsing cache value\n * @param key\n * @param filter\n */\n refreshTokenKeyMatchesFilter(inputKey, filter) {\n const key = inputKey.toLowerCase();\n if (filter.familyId &&\n key.indexOf(filter.familyId.toLowerCase()) === -1) {\n return false;\n }\n // If familyId is used, clientId is not in the key\n if (!filter.familyId &&\n filter.clientId &&\n key.indexOf(filter.clientId.toLowerCase()) === -1) {\n return false;\n }\n if (filter.homeAccountId &&\n key.indexOf(filter.homeAccountId.toLowerCase()) === -1) {\n return false;\n }\n return true;\n }\n /**\n * Retrieve AppMetadataEntity from cache\n */\n readAppMetadataFromCache(environment) {\n const appMetadataFilter = {\n environment,\n clientId: this.clientId,\n };\n const appMetadata = this.getAppMetadataFilteredBy(appMetadataFilter);\n const appMetadataEntries = Object.keys(appMetadata).map((key) => appMetadata[key]);\n const numAppMetadata = appMetadataEntries.length;\n if (numAppMetadata < 1) {\n return null;\n }\n else if (numAppMetadata > 1) {\n throw createClientAuthError(multipleMatchingAppMetadata);\n }\n return appMetadataEntries[0];\n }\n /**\n * Return the family_id value associated with FOCI\n * @param environment\n * @param clientId\n */\n isAppMetadataFOCI(environment) {\n const appMetadata = this.readAppMetadataFromCache(environment);\n return !!(appMetadata && appMetadata.familyId === THE_FAMILY_ID);\n }\n /**\n * helper to match account ids\n * @param value\n * @param homeAccountId\n */\n matchHomeAccountId(entity, homeAccountId) {\n return !!(typeof entity.homeAccountId === \"string\" &&\n homeAccountId === entity.homeAccountId);\n }\n /**\n * helper to match account ids\n * @param entity\n * @param localAccountId\n * @returns\n */\n matchLocalAccountId(entity, localAccountId) {\n return !!(typeof entity.localAccountId === \"string\" &&\n localAccountId === entity.localAccountId);\n }\n /**\n * helper to match usernames\n * @param entity\n * @param username\n * @returns\n */\n matchUsername(entity, username) {\n return !!(typeof entity.username === \"string\" &&\n username.toLowerCase() === entity.username.toLowerCase());\n }\n /**\n * helper to match names\n * @param entity\n * @param name\n * @returns true if the downcased name properties are present and match in the filter and the entity\n */\n matchName(entity, name) {\n return !!(name.toLowerCase() === entity.name?.toLowerCase());\n }\n /**\n * helper to match assertion\n * @param value\n * @param oboAssertion\n */\n matchUserAssertionHash(entity, userAssertionHash) {\n return !!(entity.userAssertionHash &&\n userAssertionHash === entity.userAssertionHash);\n }\n /**\n * helper to match environment\n * @param value\n * @param environment\n */\n matchEnvironment(entity, environment) {\n const cloudMetadata = this.getAuthorityMetadataByAlias(environment);\n if (cloudMetadata &&\n cloudMetadata.aliases.indexOf(entity.environment) > -1) {\n return true;\n }\n return false;\n }\n /**\n * helper to match credential type\n * @param entity\n * @param credentialType\n */\n matchCredentialType(entity, credentialType) {\n return (entity.credentialType &&\n credentialType.toLowerCase() === entity.credentialType.toLowerCase());\n }\n /**\n * helper to match client ids\n * @param entity\n * @param clientId\n */\n matchClientId(entity, clientId) {\n return !!(entity.clientId && clientId === entity.clientId);\n }\n /**\n * helper to match family ids\n * @param entity\n * @param familyId\n */\n matchFamilyId(entity, familyId) {\n return !!(entity.familyId && familyId === entity.familyId);\n }\n /**\n * helper to match realm\n * @param entity\n * @param realm\n */\n matchRealm(entity, realm) {\n return !!(entity.realm && realm === entity.realm);\n }\n /**\n * helper to match nativeAccountId\n * @param entity\n * @param nativeAccountId\n * @returns boolean indicating the match result\n */\n matchNativeAccountId(entity, nativeAccountId) {\n return !!(entity.nativeAccountId && nativeAccountId === entity.nativeAccountId);\n }\n /**\n * helper to match loginHint which can be either:\n * 1. login_hint ID token claim\n * 2. username in cached account object\n * 3. upn in ID token claims\n * @param entity\n * @param loginHint\n * @returns\n */\n matchLoginHint(entity, loginHint) {\n if (entity.idTokenClaims?.login_hint === loginHint) {\n return true;\n }\n if (entity.username === loginHint) {\n return true;\n }\n if (entity.idTokenClaims?.upn === loginHint) {\n return true;\n }\n return false;\n }\n matchAuthorityType(entity, authorityType) {\n return !!(entity.authorityType &&\n authorityType.toLowerCase() === entity.authorityType.toLowerCase());\n }\n /**\n * Returns true if the target scopes are a subset of the current entity's scopes, false otherwise.\n * @param entity\n * @param target\n */\n matchTarget(entity, target) {\n const isNotAccessTokenCredential = entity.credentialType !== CredentialType.ACCESS_TOKEN &&\n entity.credentialType !==\n CredentialType.ACCESS_TOKEN_WITH_AUTH_SCHEME;\n if (isNotAccessTokenCredential || !entity.target) {\n return false;\n }\n const entityScopeSet = ScopeSet.fromString(entity.target);\n return entityScopeSet.containsScopeSet(target);\n }\n /**\n * Returns true if the credential's tokenType or Authentication Scheme matches the one in the request, false otherwise\n * @param entity\n * @param tokenType\n */\n matchTokenType(entity, tokenType) {\n return !!(entity.tokenType && entity.tokenType === tokenType);\n }\n /**\n * Returns true if the credential's keyId matches the one in the request, false otherwise\n * @param entity\n * @param tokenType\n */\n matchKeyId(entity, keyId) {\n return !!(entity.keyId && entity.keyId === keyId);\n }\n /**\n * returns if a given cache entity is of the type appmetadata\n * @param key\n */\n isAppMetadata(key) {\n return key.indexOf(APP_METADATA) !== -1;\n }\n /**\n * returns if a given cache entity is of the type authoritymetadata\n * @param key\n */\n isAuthorityMetadata(key) {\n return key.indexOf(AUTHORITY_METADATA_CONSTANTS.CACHE_KEY) !== -1;\n }\n /**\n * returns cache key used for cloud instance metadata\n */\n generateAuthorityMetadataCacheKey(authority) {\n return `${AUTHORITY_METADATA_CONSTANTS.CACHE_KEY}-${this.clientId}-${authority}`;\n }\n /**\n * Helper to convert serialized data to object\n * @param obj\n * @param json\n */\n static toObject(obj, json) {\n for (const propertyName in json) {\n obj[propertyName] = json[propertyName];\n }\n return obj;\n }\n}\n/** @internal */\nclass DefaultStorageClass extends CacheManager {\n setAccount() {\n throw createClientAuthError(methodNotImplemented);\n }\n getAccount() {\n throw createClientAuthError(methodNotImplemented);\n }\n setIdTokenCredential() {\n throw createClientAuthError(methodNotImplemented);\n }\n getIdTokenCredential() {\n throw createClientAuthError(methodNotImplemented);\n }\n setAccessTokenCredential() {\n throw createClientAuthError(methodNotImplemented);\n }\n getAccessTokenCredential() {\n throw createClientAuthError(methodNotImplemented);\n }\n setRefreshTokenCredential() {\n throw createClientAuthError(methodNotImplemented);\n }\n getRefreshTokenCredential() {\n throw createClientAuthError(methodNotImplemented);\n }\n setAppMetadata() {\n throw createClientAuthError(methodNotImplemented);\n }\n getAppMetadata() {\n throw createClientAuthError(methodNotImplemented);\n }\n setServerTelemetry() {\n throw createClientAuthError(methodNotImplemented);\n }\n getServerTelemetry() {\n throw createClientAuthError(methodNotImplemented);\n }\n setAuthorityMetadata() {\n throw createClientAuthError(methodNotImplemented);\n }\n getAuthorityMetadata() {\n throw createClientAuthError(methodNotImplemented);\n }\n getAuthorityMetadataKeys() {\n throw createClientAuthError(methodNotImplemented);\n }\n setThrottlingCache() {\n throw createClientAuthError(methodNotImplemented);\n }\n getThrottlingCache() {\n throw createClientAuthError(methodNotImplemented);\n }\n removeItem() {\n throw createClientAuthError(methodNotImplemented);\n }\n containsKey() {\n throw createClientAuthError(methodNotImplemented);\n }\n getKeys() {\n throw createClientAuthError(methodNotImplemented);\n }\n getAccountKeys() {\n throw createClientAuthError(methodNotImplemented);\n }\n getTokenKeys() {\n throw createClientAuthError(methodNotImplemented);\n }\n async clear() {\n throw createClientAuthError(methodNotImplemented);\n }\n updateCredentialCacheKey() {\n throw createClientAuthError(methodNotImplemented);\n }\n}\n\nexport { CacheManager, DefaultStorageClass };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { DEFAULT_CRYPTO_IMPLEMENTATION } from '../crypto/ICrypto.mjs';\nimport { Logger, LogLevel } from '../logger/Logger.mjs';\nimport { Constants } from '../utils/Constants.mjs';\nimport { version } from '../packageMetadata.mjs';\nimport { AzureCloudInstance } from '../authority/AuthorityOptions.mjs';\nimport { DefaultStorageClass } from '../cache/CacheManager.mjs';\nimport { ProtocolMode } from '../authority/ProtocolMode.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { methodNotImplemented } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n// Token renewal offset default in seconds\nconst DEFAULT_TOKEN_RENEWAL_OFFSET_SEC = 300;\nconst DEFAULT_SYSTEM_OPTIONS = {\n tokenRenewalOffsetSeconds: DEFAULT_TOKEN_RENEWAL_OFFSET_SEC,\n preventCorsPreflight: false,\n};\nconst DEFAULT_LOGGER_IMPLEMENTATION = {\n loggerCallback: () => {\n // allow users to not set loggerCallback\n },\n piiLoggingEnabled: false,\n logLevel: LogLevel.Info,\n correlationId: Constants.EMPTY_STRING,\n};\nconst DEFAULT_CACHE_OPTIONS = {\n claimsBasedCachingEnabled: false,\n};\nconst DEFAULT_NETWORK_IMPLEMENTATION = {\n async sendGetRequestAsync() {\n throw createClientAuthError(methodNotImplemented);\n },\n async sendPostRequestAsync() {\n throw createClientAuthError(methodNotImplemented);\n },\n};\nconst DEFAULT_LIBRARY_INFO = {\n sku: Constants.SKU,\n version: version,\n cpu: Constants.EMPTY_STRING,\n os: Constants.EMPTY_STRING,\n};\nconst DEFAULT_CLIENT_CREDENTIALS = {\n clientSecret: Constants.EMPTY_STRING,\n clientAssertion: undefined,\n};\nconst DEFAULT_AZURE_CLOUD_OPTIONS = {\n azureCloudInstance: AzureCloudInstance.None,\n tenant: `${Constants.DEFAULT_COMMON_TENANT}`,\n};\nconst DEFAULT_TELEMETRY_OPTIONS = {\n application: {\n appName: \"\",\n appVersion: \"\",\n },\n};\n/**\n * Function that sets the default options when not explicitly configured from app developer\n *\n * @param Configuration\n *\n * @returns Configuration\n */\nfunction buildClientConfiguration({ authOptions: userAuthOptions, systemOptions: userSystemOptions, loggerOptions: userLoggerOption, cacheOptions: userCacheOptions, storageInterface: storageImplementation, networkInterface: networkImplementation, cryptoInterface: cryptoImplementation, clientCredentials: clientCredentials, libraryInfo: libraryInfo, telemetry: telemetry, serverTelemetryManager: serverTelemetryManager, persistencePlugin: persistencePlugin, serializableCache: serializableCache, }) {\n const loggerOptions = {\n ...DEFAULT_LOGGER_IMPLEMENTATION,\n ...userLoggerOption,\n };\n return {\n authOptions: buildAuthOptions(userAuthOptions),\n systemOptions: { ...DEFAULT_SYSTEM_OPTIONS, ...userSystemOptions },\n loggerOptions: loggerOptions,\n cacheOptions: { ...DEFAULT_CACHE_OPTIONS, ...userCacheOptions },\n storageInterface: storageImplementation ||\n new DefaultStorageClass(userAuthOptions.clientId, DEFAULT_CRYPTO_IMPLEMENTATION, new Logger(loggerOptions)),\n networkInterface: networkImplementation || DEFAULT_NETWORK_IMPLEMENTATION,\n cryptoInterface: cryptoImplementation || DEFAULT_CRYPTO_IMPLEMENTATION,\n clientCredentials: clientCredentials || DEFAULT_CLIENT_CREDENTIALS,\n libraryInfo: { ...DEFAULT_LIBRARY_INFO, ...libraryInfo },\n telemetry: { ...DEFAULT_TELEMETRY_OPTIONS, ...telemetry },\n serverTelemetryManager: serverTelemetryManager || null,\n persistencePlugin: persistencePlugin || null,\n serializableCache: serializableCache || null,\n };\n}\n/**\n * Construct authoptions from the client and platform passed values\n * @param authOptions\n */\nfunction buildAuthOptions(authOptions) {\n return {\n clientCapabilities: [],\n azureCloudOptions: DEFAULT_AZURE_CLOUD_OPTIONS,\n skipAuthorityMetadataCache: false,\n ...authOptions,\n };\n}\n/**\n * Returns true if config has protocolMode set to ProtocolMode.OIDC, false otherwise\n * @param ClientConfiguration\n */\nfunction isOidcProtocolMode(config) {\n return (config.authOptions.authority.options.protocolMode === ProtocolMode.OIDC);\n}\n\nexport { DEFAULT_SYSTEM_OPTIONS, buildClientConfiguration, isOidcProtocolMode };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { AuthError } from './AuthError.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Error thrown when there is an error with the server code, for example, unavailability.\n */\nclass ServerError extends AuthError {\n constructor(errorCode, errorMessage, subError) {\n super(errorCode, errorMessage, subError);\n this.name = \"ServerError\";\n Object.setPrototypeOf(this, ServerError.prototype);\n }\n}\n\nexport { ServerError };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { ThrottlingConstants, Constants, HeaderNames } from '../utils/Constants.mjs';\nimport { ServerError } from '../error/ServerError.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/** @internal */\nclass ThrottlingUtils {\n /**\n * Prepares a RequestThumbprint to be stored as a key.\n * @param thumbprint\n */\n static generateThrottlingStorageKey(thumbprint) {\n return `${ThrottlingConstants.THROTTLING_PREFIX}.${JSON.stringify(thumbprint)}`;\n }\n /**\n * Performs necessary throttling checks before a network request.\n * @param cacheManager\n * @param thumbprint\n */\n static preProcess(cacheManager, thumbprint) {\n const key = ThrottlingUtils.generateThrottlingStorageKey(thumbprint);\n const value = cacheManager.getThrottlingCache(key);\n if (value) {\n if (value.throttleTime < Date.now()) {\n cacheManager.removeItem(key);\n return;\n }\n throw new ServerError(value.errorCodes?.join(\" \") || Constants.EMPTY_STRING, value.errorMessage, value.subError);\n }\n }\n /**\n * Performs necessary throttling checks after a network request.\n * @param cacheManager\n * @param thumbprint\n * @param response\n */\n static postProcess(cacheManager, thumbprint, response) {\n if (ThrottlingUtils.checkResponseStatus(response) ||\n ThrottlingUtils.checkResponseForRetryAfter(response)) {\n const thumbprintValue = {\n throttleTime: ThrottlingUtils.calculateThrottleTime(parseInt(response.headers[HeaderNames.RETRY_AFTER])),\n error: response.body.error,\n errorCodes: response.body.error_codes,\n errorMessage: response.body.error_description,\n subError: response.body.suberror,\n };\n cacheManager.setThrottlingCache(ThrottlingUtils.generateThrottlingStorageKey(thumbprint), thumbprintValue);\n }\n }\n /**\n * Checks a NetworkResponse object's status codes against 429 or 5xx\n * @param response\n */\n static checkResponseStatus(response) {\n return (response.status === 429 ||\n (response.status >= 500 && response.status < 600));\n }\n /**\n * Checks a NetworkResponse object's RetryAfter header\n * @param response\n */\n static checkResponseForRetryAfter(response) {\n if (response.headers) {\n return (response.headers.hasOwnProperty(HeaderNames.RETRY_AFTER) &&\n (response.status < 200 || response.status >= 300));\n }\n return false;\n }\n /**\n * Calculates the Unix-time value for a throttle to expire given throttleTime in seconds.\n * @param throttleTime\n */\n static calculateThrottleTime(throttleTime) {\n const time = throttleTime <= 0 ? 0 : throttleTime;\n const currentSeconds = Date.now() / 1000;\n return Math.floor(Math.min(currentSeconds +\n (time || ThrottlingConstants.DEFAULT_THROTTLE_TIME_SECONDS), currentSeconds +\n ThrottlingConstants.DEFAULT_MAX_THROTTLE_TIME_SECONDS) * 1000);\n }\n static removeThrottle(cacheManager, clientId, request, homeAccountIdentifier) {\n const thumbprint = {\n clientId: clientId,\n authority: request.authority,\n scopes: request.scopes,\n homeAccountIdentifier: homeAccountIdentifier,\n claims: request.claims,\n authenticationScheme: request.authenticationScheme,\n resourceRequestMethod: request.resourceRequestMethod,\n resourceRequestUri: request.resourceRequestUri,\n shrClaims: request.shrClaims,\n sshKid: request.sshKid,\n };\n const key = this.generateThrottlingStorageKey(thumbprint);\n cacheManager.removeItem(key);\n }\n}\n\nexport { ThrottlingUtils };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { ThrottlingUtils } from './ThrottlingUtils.mjs';\nimport { AuthError } from '../error/AuthError.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { networkError } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/** @internal */\nclass NetworkManager {\n constructor(networkClient, cacheManager) {\n this.networkClient = networkClient;\n this.cacheManager = cacheManager;\n }\n /**\n * Wraps sendPostRequestAsync with necessary preflight and postflight logic\n * @param thumbprint\n * @param tokenEndpoint\n * @param options\n */\n async sendPostRequest(thumbprint, tokenEndpoint, options) {\n ThrottlingUtils.preProcess(this.cacheManager, thumbprint);\n let response;\n try {\n response = await this.networkClient.sendPostRequestAsync(tokenEndpoint, options);\n }\n catch (e) {\n if (e instanceof AuthError) {\n throw e;\n }\n else {\n throw createClientAuthError(networkError);\n }\n }\n ThrottlingUtils.postProcess(this.cacheManager, thumbprint, response);\n return response;\n }\n}\n\nexport { NetworkManager };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst CcsCredentialType = {\n HOME_ACCOUNT_ID: \"home_account_id\",\n UPN: \"UPN\",\n};\n\nexport { CcsCredentialType };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { createClientConfigurationError } from '../error/ClientConfigurationError.mjs';\nimport { CodeChallengeMethodValues, PromptValue } from '../utils/Constants.mjs';\nimport { redirectUriEmpty, invalidPromptValue, invalidClaims, pkceParamsMissing, invalidCodeChallengeMethod } from '../error/ClientConfigurationErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Validates server consumable params from the \"request\" objects\n */\nclass RequestValidator {\n /**\n * Utility to check if the `redirectUri` in the request is a non-null value\n * @param redirectUri\n */\n static validateRedirectUri(redirectUri) {\n if (!redirectUri) {\n throw createClientConfigurationError(redirectUriEmpty);\n }\n }\n /**\n * Utility to validate prompt sent by the user in the request\n * @param prompt\n */\n static validatePrompt(prompt) {\n const promptValues = [];\n for (const value in PromptValue) {\n promptValues.push(PromptValue[value]);\n }\n if (promptValues.indexOf(prompt) < 0) {\n throw createClientConfigurationError(invalidPromptValue);\n }\n }\n static validateClaims(claims) {\n try {\n JSON.parse(claims);\n }\n catch (e) {\n throw createClientConfigurationError(invalidClaims);\n }\n }\n /**\n * Utility to validate code_challenge and code_challenge_method\n * @param codeChallenge\n * @param codeChallengeMethod\n */\n static validateCodeChallengeParams(codeChallenge, codeChallengeMethod) {\n if (!codeChallenge || !codeChallengeMethod) {\n throw createClientConfigurationError(pkceParamsMissing);\n }\n else {\n this.validateCodeChallengeMethod(codeChallengeMethod);\n }\n }\n /**\n * Utility to validate code_challenge_method\n * @param codeChallengeMethod\n */\n static validateCodeChallengeMethod(codeChallengeMethod) {\n if ([\n CodeChallengeMethodValues.PLAIN,\n CodeChallengeMethodValues.S256,\n ].indexOf(codeChallengeMethod) < 0) {\n throw createClientConfigurationError(invalidCodeChallengeMethod);\n }\n }\n /**\n * Removes unnecessary, duplicate, and empty string query parameters from extraQueryParameters\n * @param request\n */\n static sanitizeEQParams(eQParams, queryParams) {\n if (!eQParams) {\n return {};\n }\n // Remove any query parameters already included in SSO params\n queryParams.forEach((_value, key) => {\n if (eQParams[key]) {\n delete eQParams[key];\n }\n });\n // remove empty string parameters\n return Object.fromEntries(Object.entries(eQParams).filter((kv) => kv[1] !== \"\"));\n }\n}\n\nexport { RequestValidator };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { AADServerParamKeys, Constants, ResponseMode, OIDC_DEFAULT_SCOPES, SSOTypes, HeaderNames, CLIENT_INFO, ClaimsRequestKeys, PasswordGrantConstants, AuthenticationScheme, ThrottlingConstants } from '../utils/Constants.mjs';\nimport { ScopeSet } from './ScopeSet.mjs';\nimport { createClientConfigurationError } from '../error/ClientConfigurationError.mjs';\nimport { RequestValidator } from './RequestValidator.mjs';\nimport { pkceParamsMissing, invalidClaims } from '../error/ClientConfigurationErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/** @internal */\nclass RequestParameterBuilder {\n constructor() {\n this.parameters = new Map();\n }\n /**\n * add response_type = code\n */\n addResponseTypeCode() {\n this.parameters.set(AADServerParamKeys.RESPONSE_TYPE, encodeURIComponent(Constants.CODE_RESPONSE_TYPE));\n }\n /**\n * add response_type = token id_token\n */\n addResponseTypeForTokenAndIdToken() {\n this.parameters.set(AADServerParamKeys.RESPONSE_TYPE, encodeURIComponent(`${Constants.TOKEN_RESPONSE_TYPE} ${Constants.ID_TOKEN_RESPONSE_TYPE}`));\n }\n /**\n * add response_mode. defaults to query.\n * @param responseMode\n */\n addResponseMode(responseMode) {\n this.parameters.set(AADServerParamKeys.RESPONSE_MODE, encodeURIComponent(responseMode ? responseMode : ResponseMode.QUERY));\n }\n /**\n * Add flag to indicate STS should attempt to use WAM if available\n */\n addNativeBroker() {\n this.parameters.set(AADServerParamKeys.NATIVE_BROKER, encodeURIComponent(\"1\"));\n }\n /**\n * add scopes. set addOidcScopes to false to prevent default scopes in non-user scenarios\n * @param scopeSet\n * @param addOidcScopes\n */\n addScopes(scopes, addOidcScopes = true, defaultScopes = OIDC_DEFAULT_SCOPES) {\n // Always add openid to the scopes when adding OIDC scopes\n if (addOidcScopes &&\n !defaultScopes.includes(\"openid\") &&\n !scopes.includes(\"openid\")) {\n defaultScopes.push(\"openid\");\n }\n const requestScopes = addOidcScopes\n ? [...(scopes || []), ...defaultScopes]\n : scopes || [];\n const scopeSet = new ScopeSet(requestScopes);\n this.parameters.set(AADServerParamKeys.SCOPE, encodeURIComponent(scopeSet.printScopes()));\n }\n /**\n * add clientId\n * @param clientId\n */\n addClientId(clientId) {\n this.parameters.set(AADServerParamKeys.CLIENT_ID, encodeURIComponent(clientId));\n }\n /**\n * add redirect_uri\n * @param redirectUri\n */\n addRedirectUri(redirectUri) {\n RequestValidator.validateRedirectUri(redirectUri);\n this.parameters.set(AADServerParamKeys.REDIRECT_URI, encodeURIComponent(redirectUri));\n }\n /**\n * add post logout redirectUri\n * @param redirectUri\n */\n addPostLogoutRedirectUri(redirectUri) {\n RequestValidator.validateRedirectUri(redirectUri);\n this.parameters.set(AADServerParamKeys.POST_LOGOUT_URI, encodeURIComponent(redirectUri));\n }\n /**\n * add id_token_hint to logout request\n * @param idTokenHint\n */\n addIdTokenHint(idTokenHint) {\n this.parameters.set(AADServerParamKeys.ID_TOKEN_HINT, encodeURIComponent(idTokenHint));\n }\n /**\n * add domain_hint\n * @param domainHint\n */\n addDomainHint(domainHint) {\n this.parameters.set(SSOTypes.DOMAIN_HINT, encodeURIComponent(domainHint));\n }\n /**\n * add login_hint\n * @param loginHint\n */\n addLoginHint(loginHint) {\n this.parameters.set(SSOTypes.LOGIN_HINT, encodeURIComponent(loginHint));\n }\n /**\n * Adds the CCS (Cache Credential Service) query parameter for login_hint\n * @param loginHint\n */\n addCcsUpn(loginHint) {\n this.parameters.set(HeaderNames.CCS_HEADER, encodeURIComponent(`UPN:${loginHint}`));\n }\n /**\n * Adds the CCS (Cache Credential Service) query parameter for account object\n * @param loginHint\n */\n addCcsOid(clientInfo) {\n this.parameters.set(HeaderNames.CCS_HEADER, encodeURIComponent(`Oid:${clientInfo.uid}@${clientInfo.utid}`));\n }\n /**\n * add sid\n * @param sid\n */\n addSid(sid) {\n this.parameters.set(SSOTypes.SID, encodeURIComponent(sid));\n }\n /**\n * add claims\n * @param claims\n */\n addClaims(claims, clientCapabilities) {\n const mergedClaims = this.addClientCapabilitiesToClaims(claims, clientCapabilities);\n RequestValidator.validateClaims(mergedClaims);\n this.parameters.set(AADServerParamKeys.CLAIMS, encodeURIComponent(mergedClaims));\n }\n /**\n * add correlationId\n * @param correlationId\n */\n addCorrelationId(correlationId) {\n this.parameters.set(AADServerParamKeys.CLIENT_REQUEST_ID, encodeURIComponent(correlationId));\n }\n /**\n * add library info query params\n * @param libraryInfo\n */\n addLibraryInfo(libraryInfo) {\n // Telemetry Info\n this.parameters.set(AADServerParamKeys.X_CLIENT_SKU, libraryInfo.sku);\n this.parameters.set(AADServerParamKeys.X_CLIENT_VER, libraryInfo.version);\n if (libraryInfo.os) {\n this.parameters.set(AADServerParamKeys.X_CLIENT_OS, libraryInfo.os);\n }\n if (libraryInfo.cpu) {\n this.parameters.set(AADServerParamKeys.X_CLIENT_CPU, libraryInfo.cpu);\n }\n }\n /**\n * Add client telemetry parameters\n * @param appTelemetry\n */\n addApplicationTelemetry(appTelemetry) {\n if (appTelemetry?.appName) {\n this.parameters.set(AADServerParamKeys.X_APP_NAME, appTelemetry.appName);\n }\n if (appTelemetry?.appVersion) {\n this.parameters.set(AADServerParamKeys.X_APP_VER, appTelemetry.appVersion);\n }\n }\n /**\n * add prompt\n * @param prompt\n */\n addPrompt(prompt) {\n RequestValidator.validatePrompt(prompt);\n this.parameters.set(`${AADServerParamKeys.PROMPT}`, encodeURIComponent(prompt));\n }\n /**\n * add state\n * @param state\n */\n addState(state) {\n if (state) {\n this.parameters.set(AADServerParamKeys.STATE, encodeURIComponent(state));\n }\n }\n /**\n * add nonce\n * @param nonce\n */\n addNonce(nonce) {\n this.parameters.set(AADServerParamKeys.NONCE, encodeURIComponent(nonce));\n }\n /**\n * add code_challenge and code_challenge_method\n * - throw if either of them are not passed\n * @param codeChallenge\n * @param codeChallengeMethod\n */\n addCodeChallengeParams(codeChallenge, codeChallengeMethod) {\n RequestValidator.validateCodeChallengeParams(codeChallenge, codeChallengeMethod);\n if (codeChallenge && codeChallengeMethod) {\n this.parameters.set(AADServerParamKeys.CODE_CHALLENGE, encodeURIComponent(codeChallenge));\n this.parameters.set(AADServerParamKeys.CODE_CHALLENGE_METHOD, encodeURIComponent(codeChallengeMethod));\n }\n else {\n throw createClientConfigurationError(pkceParamsMissing);\n }\n }\n /**\n * add the `authorization_code` passed by the user to exchange for a token\n * @param code\n */\n addAuthorizationCode(code) {\n this.parameters.set(AADServerParamKeys.CODE, encodeURIComponent(code));\n }\n /**\n * add the `authorization_code` passed by the user to exchange for a token\n * @param code\n */\n addDeviceCode(code) {\n this.parameters.set(AADServerParamKeys.DEVICE_CODE, encodeURIComponent(code));\n }\n /**\n * add the `refreshToken` passed by the user\n * @param refreshToken\n */\n addRefreshToken(refreshToken) {\n this.parameters.set(AADServerParamKeys.REFRESH_TOKEN, encodeURIComponent(refreshToken));\n }\n /**\n * add the `code_verifier` passed by the user to exchange for a token\n * @param codeVerifier\n */\n addCodeVerifier(codeVerifier) {\n this.parameters.set(AADServerParamKeys.CODE_VERIFIER, encodeURIComponent(codeVerifier));\n }\n /**\n * add client_secret\n * @param clientSecret\n */\n addClientSecret(clientSecret) {\n this.parameters.set(AADServerParamKeys.CLIENT_SECRET, encodeURIComponent(clientSecret));\n }\n /**\n * add clientAssertion for confidential client flows\n * @param clientAssertion\n */\n addClientAssertion(clientAssertion) {\n if (clientAssertion) {\n this.parameters.set(AADServerParamKeys.CLIENT_ASSERTION, encodeURIComponent(clientAssertion));\n }\n }\n /**\n * add clientAssertionType for confidential client flows\n * @param clientAssertionType\n */\n addClientAssertionType(clientAssertionType) {\n if (clientAssertionType) {\n this.parameters.set(AADServerParamKeys.CLIENT_ASSERTION_TYPE, encodeURIComponent(clientAssertionType));\n }\n }\n /**\n * add OBO assertion for confidential client flows\n * @param clientAssertion\n */\n addOboAssertion(oboAssertion) {\n this.parameters.set(AADServerParamKeys.OBO_ASSERTION, encodeURIComponent(oboAssertion));\n }\n /**\n * add grant type\n * @param grantType\n */\n addRequestTokenUse(tokenUse) {\n this.parameters.set(AADServerParamKeys.REQUESTED_TOKEN_USE, encodeURIComponent(tokenUse));\n }\n /**\n * add grant type\n * @param grantType\n */\n addGrantType(grantType) {\n this.parameters.set(AADServerParamKeys.GRANT_TYPE, encodeURIComponent(grantType));\n }\n /**\n * add client info\n *\n */\n addClientInfo() {\n this.parameters.set(CLIENT_INFO, \"1\");\n }\n /**\n * add extraQueryParams\n * @param eQParams\n */\n addExtraQueryParameters(eQParams) {\n const sanitizedEQParams = RequestValidator.sanitizeEQParams(eQParams, this.parameters);\n Object.keys(sanitizedEQParams).forEach((key) => {\n this.parameters.set(key, eQParams[key]);\n });\n }\n addClientCapabilitiesToClaims(claims, clientCapabilities) {\n let mergedClaims;\n // Parse provided claims into JSON object or initialize empty object\n if (!claims) {\n mergedClaims = {};\n }\n else {\n try {\n mergedClaims = JSON.parse(claims);\n }\n catch (e) {\n throw createClientConfigurationError(invalidClaims);\n }\n }\n if (clientCapabilities && clientCapabilities.length > 0) {\n if (!mergedClaims.hasOwnProperty(ClaimsRequestKeys.ACCESS_TOKEN)) {\n // Add access_token key to claims object\n mergedClaims[ClaimsRequestKeys.ACCESS_TOKEN] = {};\n }\n // Add xms_cc claim with provided clientCapabilities to access_token key\n mergedClaims[ClaimsRequestKeys.ACCESS_TOKEN][ClaimsRequestKeys.XMS_CC] = {\n values: clientCapabilities,\n };\n }\n return JSON.stringify(mergedClaims);\n }\n /**\n * adds `username` for Password Grant flow\n * @param username\n */\n addUsername(username) {\n this.parameters.set(PasswordGrantConstants.username, encodeURIComponent(username));\n }\n /**\n * adds `password` for Password Grant flow\n * @param password\n */\n addPassword(password) {\n this.parameters.set(PasswordGrantConstants.password, encodeURIComponent(password));\n }\n /**\n * add pop_jwk to query params\n * @param cnfString\n */\n addPopToken(cnfString) {\n if (cnfString) {\n this.parameters.set(AADServerParamKeys.TOKEN_TYPE, AuthenticationScheme.POP);\n this.parameters.set(AADServerParamKeys.REQ_CNF, encodeURIComponent(cnfString));\n }\n }\n /**\n * add SSH JWK and key ID to query params\n */\n addSshJwk(sshJwkString) {\n if (sshJwkString) {\n this.parameters.set(AADServerParamKeys.TOKEN_TYPE, AuthenticationScheme.SSH);\n this.parameters.set(AADServerParamKeys.REQ_CNF, encodeURIComponent(sshJwkString));\n }\n }\n /**\n * add server telemetry fields\n * @param serverTelemetryManager\n */\n addServerTelemetry(serverTelemetryManager) {\n this.parameters.set(AADServerParamKeys.X_CLIENT_CURR_TELEM, serverTelemetryManager.generateCurrentRequestHeaderValue());\n this.parameters.set(AADServerParamKeys.X_CLIENT_LAST_TELEM, serverTelemetryManager.generateLastRequestHeaderValue());\n }\n /**\n * Adds parameter that indicates to the server that throttling is supported\n */\n addThrottling() {\n this.parameters.set(AADServerParamKeys.X_MS_LIB_CAPABILITY, ThrottlingConstants.X_MS_LIB_CAPABILITY_VALUE);\n }\n /**\n * Adds logout_hint parameter for \"silent\" logout which prevent server account picker\n */\n addLogoutHint(logoutHint) {\n this.parameters.set(AADServerParamKeys.LOGOUT_HINT, encodeURIComponent(logoutHint));\n }\n /**\n * Utility to create a URL from the params map\n */\n createQueryString() {\n const queryParameterArray = new Array();\n this.parameters.forEach((value, key) => {\n queryParameterArray.push(`${key}=${value}`);\n });\n return queryParameterArray.join(\"&\");\n }\n}\n\nexport { RequestParameterBuilder };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Enumeration of operations that are instrumented by have their performance measured by the PerformanceClient.\n *\n * @export\n * @enum {number}\n */\nconst PerformanceEvents = {\n /**\n * acquireTokenByCode API (msal-browser and msal-node).\n * Used to acquire tokens by trading an authorization code against the token endpoint.\n */\n AcquireTokenByCode: \"acquireTokenByCode\",\n /**\n * acquireTokenByRefreshToken API (msal-browser and msal-node).\n * Used to renew an access token using a refresh token against the token endpoint.\n */\n AcquireTokenByRefreshToken: \"acquireTokenByRefreshToken\",\n /**\n * acquireTokenSilent API (msal-browser and msal-node).\n * Used to silently acquire a new access token (from the cache or the network).\n */\n AcquireTokenSilent: \"acquireTokenSilent\",\n /**\n * acquireTokenSilentAsync (msal-browser).\n * Internal API for acquireTokenSilent.\n */\n AcquireTokenSilentAsync: \"acquireTokenSilentAsync\",\n /**\n * acquireTokenPopup (msal-browser).\n * Used to acquire a new access token interactively through pop ups\n */\n AcquireTokenPopup: \"acquireTokenPopup\",\n /**\n * getPublicKeyThumbprint API in CryptoOpts class (msal-browser).\n * Used to generate a public/private keypair and generate a public key thumbprint for pop requests.\n */\n CryptoOptsGetPublicKeyThumbprint: \"cryptoOptsGetPublicKeyThumbprint\",\n /**\n * signJwt API in CryptoOpts class (msal-browser).\n * Used to signed a pop token.\n */\n CryptoOptsSignJwt: \"cryptoOptsSignJwt\",\n /**\n * acquireToken API in the SilentCacheClient class (msal-browser).\n * Used to read access tokens from the cache.\n */\n SilentCacheClientAcquireToken: \"silentCacheClientAcquireToken\",\n /**\n * acquireToken API in the SilentIframeClient class (msal-browser).\n * Used to acquire a new set of tokens from the authorize endpoint in a hidden iframe.\n */\n SilentIframeClientAcquireToken: \"silentIframeClientAcquireToken\",\n /**\n * acquireToken API in SilentRereshClient (msal-browser).\n * Used to acquire a new set of tokens from the token endpoint using a refresh token.\n */\n SilentRefreshClientAcquireToken: \"silentRefreshClientAcquireToken\",\n /**\n * ssoSilent API (msal-browser).\n * Used to silently acquire an authorization code and set of tokens using a hidden iframe.\n */\n SsoSilent: \"ssoSilent\",\n /**\n * getDiscoveredAuthority API in StandardInteractionClient class (msal-browser).\n * Used to load authority metadata for a request.\n */\n StandardInteractionClientGetDiscoveredAuthority: \"standardInteractionClientGetDiscoveredAuthority\",\n /**\n * acquireToken APIs in msal-browser.\n * Used to make an /authorize endpoint call with native brokering enabled.\n */\n FetchAccountIdWithNativeBroker: \"fetchAccountIdWithNativeBroker\",\n /**\n * acquireToken API in NativeInteractionClient class (msal-browser).\n * Used to acquire a token from Native component when native brokering is enabled.\n */\n NativeInteractionClientAcquireToken: \"nativeInteractionClientAcquireToken\",\n /**\n * Time spent creating default headers for requests to token endpoint\n */\n BaseClientCreateTokenRequestHeaders: \"baseClientCreateTokenRequestHeaders\",\n /**\n * Time spent sending/waiting for the response of a request to the token endpoint\n */\n BaseClientExecutePostToTokenEndpoint: \"baseClientExecutePostToTokenEndpoint\",\n /**\n * Used to measure the time taken for completing embedded-broker handshake (PW-Broker).\n */\n BrokerHandhshake: \"brokerHandshake\",\n /**\n * acquireTokenByRefreshToken API in BrokerClientApplication (PW-Broker) .\n */\n AcquireTokenByRefreshTokenInBroker: \"acquireTokenByRefreshTokenInBroker\",\n /**\n * Time taken for token acquisition by broker\n */\n AcquireTokenByBroker: \"acquireTokenByBroker\",\n /**\n * Time spent on the network for refresh token acquisition\n */\n RefreshTokenClientExecuteTokenRequest: \"refreshTokenClientExecuteTokenRequest\",\n /**\n * Time taken for acquiring refresh token , records RT size\n */\n RefreshTokenClientAcquireToken: \"refreshTokenClientAcquireToken\",\n /**\n * Time taken for acquiring cached refresh token\n */\n RefreshTokenClientAcquireTokenWithCachedRefreshToken: \"refreshTokenClientAcquireTokenWithCachedRefreshToken\",\n /**\n * acquireTokenByRefreshToken API in RefreshTokenClient (msal-common).\n */\n RefreshTokenClientAcquireTokenByRefreshToken: \"refreshTokenClientAcquireTokenByRefreshToken\",\n /**\n * Helper function to create token request body in RefreshTokenClient (msal-common).\n */\n RefreshTokenClientCreateTokenRequestBody: \"refreshTokenClientCreateTokenRequestBody\",\n /**\n * acquireTokenFromCache (msal-browser).\n * Internal API for acquiring token from cache\n */\n AcquireTokenFromCache: \"acquireTokenFromCache\",\n /**\n * acquireTokenBySilentIframe (msal-browser).\n * Internal API for acquiring token by silent Iframe\n */\n AcquireTokenBySilentIframe: \"acquireTokenBySilentIframe\",\n /**\n * Internal API for initializing base request in BaseInteractionClient (msal-browser)\n */\n InitializeBaseRequest: \"initializeBaseRequest\",\n /**\n * Internal API for initializing silent request in SilentCacheClient (msal-browser)\n */\n InitializeSilentRequest: \"initializeSilentRequest\",\n InitializeClientApplication: \"initializeClientApplication\",\n /**\n * Helper function in SilentIframeClient class (msal-browser).\n */\n SilentIframeClientTokenHelper: \"silentIframeClientTokenHelper\",\n /**\n * SilentHandler\n */\n SilentHandlerInitiateAuthRequest: \"silentHandlerInitiateAuthRequest\",\n SilentHandlerMonitorIframeForHash: \"silentHandlerMonitorIframeForHash\",\n SilentHandlerLoadFrame: \"silentHandlerLoadFrame\",\n /**\n * Helper functions in StandardInteractionClient class (msal-browser)\n */\n StandardInteractionClientCreateAuthCodeClient: \"standardInteractionClientCreateAuthCodeClient\",\n StandardInteractionClientGetClientConfiguration: \"standardInteractionClientGetClientConfiguration\",\n StandardInteractionClientInitializeAuthorizationRequest: \"standardInteractionClientInitializeAuthorizationRequest\",\n StandardInteractionClientInitializeAuthorizationCodeRequest: \"standardInteractionClientInitializeAuthorizationCodeRequest\",\n /**\n * getAuthCodeUrl API (msal-browser and msal-node).\n */\n GetAuthCodeUrl: \"getAuthCodeUrl\",\n /**\n * Functions from InteractionHandler (msal-browser)\n */\n HandleCodeResponseFromServer: \"handleCodeResponseFromServer\",\n HandleCodeResponseFromHash: \"handleCodeResponseFromHash\",\n UpdateTokenEndpointAuthority: \"updateTokenEndpointAuthority\",\n /**\n * APIs in Authorization Code Client (msal-common)\n */\n AuthClientAcquireToken: \"authClientAcquireToken\",\n AuthClientExecuteTokenRequest: \"authClientExecuteTokenRequest\",\n AuthClientCreateTokenRequestBody: \"authClientCreateTokenRequestBody\",\n AuthClientCreateQueryString: \"authClientCreateQueryString\",\n /**\n * Generate functions in PopTokenGenerator (msal-common)\n */\n PopTokenGenerateCnf: \"popTokenGenerateCnf\",\n PopTokenGenerateKid: \"popTokenGenerateKid\",\n /**\n * handleServerTokenResponse API in ResponseHandler (msal-common)\n */\n HandleServerTokenResponse: \"handleServerTokenResponse\",\n /**\n * Authority functions\n */\n AuthorityFactoryCreateDiscoveredInstance: \"authorityFactoryCreateDiscoveredInstance\",\n AuthorityResolveEndpointsAsync: \"authorityResolveEndpointsAsync\",\n AuthorityGetCloudDiscoveryMetadataFromNetwork: \"authorityGetCloudDiscoveryMetadataFromNetwork\",\n AuthorityUpdateCloudDiscoveryMetadata: \"authorityUpdateCloudDiscoveryMetadata\",\n AuthorityGetEndpointMetadataFromNetwork: \"authorityGetEndpointMetadataFromNetwork\",\n AuthorityUpdateEndpointMetadata: \"authorityUpdateEndpointMetadata\",\n AuthorityUpdateMetadataWithRegionalInformation: \"authorityUpdateMetadataWithRegionalInformation\",\n /**\n * Region Discovery functions\n */\n RegionDiscoveryDetectRegion: \"regionDiscoveryDetectRegion\",\n RegionDiscoveryGetRegionFromIMDS: \"regionDiscoveryGetRegionFromIMDS\",\n RegionDiscoveryGetCurrentVersion: \"regionDiscoveryGetCurrentVersion\",\n AcquireTokenByCodeAsync: \"acquireTokenByCodeAsync\",\n GetEndpointMetadataFromNetwork: \"getEndpointMetadataFromNetwork\",\n GetCloudDiscoveryMetadataFromNetworkMeasurement: \"getCloudDiscoveryMetadataFromNetworkMeasurement\",\n HandleRedirectPromiseMeasurement: \"handleRedirectPromiseMeasurement\",\n UpdateCloudDiscoveryMetadataMeasurement: \"updateCloudDiscoveryMetadataMeasurement\",\n UsernamePasswordClientAcquireToken: \"usernamePasswordClientAcquireToken\",\n NativeMessageHandlerHandshake: \"nativeMessageHandlerHandshake\",\n NativeGenerateAuthResult: \"nativeGenerateAuthResult\",\n /**\n * Cache operations\n */\n ClearTokensAndKeysWithClaims: \"clearTokensAndKeysWithClaims\",\n /**\n * Crypto Operations\n */\n GeneratePkceCodes: \"generatePkceCodes\",\n GenerateCodeVerifier: \"generateCodeVerifier\",\n GenerateCodeChallengeFromVerifier: \"generateCodeChallengeFromVerifier\",\n Sha256Digest: \"sha256Digest\",\n GetRandomValues: \"getRandomValues\",\n};\n/**\n * State of the performance event.\n *\n * @export\n * @enum {number}\n */\nconst PerformanceEventStatus = {\n NotStarted: 0,\n InProgress: 1,\n Completed: 2,\n};\nconst IntFields = new Set([\n \"accessTokenSize\",\n \"durationMs\",\n \"idTokenSize\",\n \"matsSilentStatus\",\n \"matsHttpStatus\",\n \"refreshTokenSize\",\n \"queuedTimeMs\",\n \"startTimeMs\",\n \"status\",\n]);\n\nexport { IntFields, PerformanceEventStatus, PerformanceEvents };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { buildClientConfiguration } from '../config/ClientConfiguration.mjs';\nimport { NetworkManager } from '../network/NetworkManager.mjs';\nimport { Logger } from '../logger/Logger.mjs';\nimport { HeaderNames, Constants } from '../utils/Constants.mjs';\nimport { name, version } from '../packageMetadata.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { CcsCredentialType } from '../account/CcsCredential.mjs';\nimport { buildClientInfoFromHomeAccountId } from '../account/ClientInfo.mjs';\nimport { RequestParameterBuilder } from '../request/RequestParameterBuilder.mjs';\nimport { PerformanceEvents } from '../telemetry/performance/PerformanceEvent.mjs';\nimport { endpointResolutionError } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Base application class which will construct requests to send to and handle responses from the Microsoft STS using the authorization code flow.\n * @internal\n */\nclass BaseClient {\n constructor(configuration, performanceClient) {\n // Set the configuration\n this.config = buildClientConfiguration(configuration);\n // Initialize the logger\n this.logger = new Logger(this.config.loggerOptions, name, version);\n // Initialize crypto\n this.cryptoUtils = this.config.cryptoInterface;\n // Initialize storage interface\n this.cacheManager = this.config.storageInterface;\n // Set the network interface\n this.networkClient = this.config.networkInterface;\n // Set the NetworkManager\n this.networkManager = new NetworkManager(this.networkClient, this.cacheManager);\n // Set TelemetryManager\n this.serverTelemetryManager = this.config.serverTelemetryManager;\n // set Authority\n this.authority = this.config.authOptions.authority;\n // set performance telemetry client\n this.performanceClient = performanceClient;\n }\n /**\n * Creates default headers for requests to token endpoint\n */\n createTokenRequestHeaders(ccsCred) {\n const headers = {};\n headers[HeaderNames.CONTENT_TYPE] = Constants.URL_FORM_CONTENT_TYPE;\n if (!this.config.systemOptions.preventCorsPreflight && ccsCred) {\n switch (ccsCred.type) {\n case CcsCredentialType.HOME_ACCOUNT_ID:\n try {\n const clientInfo = buildClientInfoFromHomeAccountId(ccsCred.credential);\n headers[HeaderNames.CCS_HEADER] = `Oid:${clientInfo.uid}@${clientInfo.utid}`;\n }\n catch (e) {\n this.logger.verbose(\"Could not parse home account ID for CCS Header: \" +\n e);\n }\n break;\n case CcsCredentialType.UPN:\n headers[HeaderNames.CCS_HEADER] = `UPN: ${ccsCred.credential}`;\n break;\n }\n }\n return headers;\n }\n /**\n * Http post to token endpoint\n * @param tokenEndpoint\n * @param queryString\n * @param headers\n * @param thumbprint\n */\n async executePostToTokenEndpoint(tokenEndpoint, queryString, headers, thumbprint, correlationId) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.BaseClientExecutePostToTokenEndpoint, correlationId);\n const response = await this.networkManager.sendPostRequest(thumbprint, tokenEndpoint, { body: queryString, headers: headers });\n this.performanceClient?.addFields({\n refreshTokenSize: response.body.refresh_token?.length || 0,\n httpVerToken: response.headers?.[HeaderNames.X_MS_HTTP_VERSION] || \"\",\n }, correlationId);\n if (this.config.serverTelemetryManager &&\n response.status < 500 &&\n response.status !== 429) {\n // Telemetry data successfully logged by server, clear Telemetry cache\n this.config.serverTelemetryManager.clearTelemetryCache();\n }\n return response;\n }\n /**\n * Updates the authority object of the client. Endpoint discovery must be completed.\n * @param updatedAuthority\n */\n updateAuthority(updatedAuthority) {\n if (!updatedAuthority.discoveryComplete()) {\n throw createClientAuthError(endpointResolutionError);\n }\n this.authority = updatedAuthority;\n }\n /**\n * Creates query string for the /token request\n * @param request\n */\n createTokenQueryParameters(request) {\n const parameterBuilder = new RequestParameterBuilder();\n if (request.tokenQueryParameters) {\n parameterBuilder.addExtraQueryParameters(request.tokenQueryParameters);\n }\n return parameterBuilder.createQueryString();\n }\n}\n\nexport { BaseClient };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { CredentialType, CacheType, Separators, Constants, AuthenticationScheme } from '../../utils/Constants.mjs';\nimport { createClientAuthError } from '../../error/ClientAuthError.mjs';\nimport { unexpectedCredentialType } from '../../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Base type for credentials to be stored in the cache: eg: ACCESS_TOKEN, ID_TOKEN etc\n *\n * Key:Value Schema:\n *\n * Key: -------\n *\n * Value Schema:\n * {\n * homeAccountId: home account identifier for the auth scheme,\n * environment: entity that issued the token, represented as a full host\n * credentialType: Type of credential as a string, can be one of the following: RefreshToken, AccessToken, IdToken, Password, Cookie, Certificate, Other\n * clientId: client ID of the application\n * secret: Actual credential as a string\n * familyId: Family ID identifier, usually only used for refresh tokens\n * realm: Full tenant or organizational identifier that the account belongs to\n * target: Permissions that are included in the token, or for refresh tokens, the resource identifier.\n * tokenType: Matches the authentication scheme for which the token was issued (i.e. Bearer or pop)\n * requestedClaimsHash: Matches the SHA 256 hash of the claims object included in the token request\n * userAssertionHash: Matches the SHA 256 hash of the obo_assertion for the OBO flow\n * }\n */\nclass CredentialEntity {\n /**\n * Generate Account Id key component as per the schema: -\n */\n generateAccountId() {\n return CredentialEntity.generateAccountIdForCacheKey(this.homeAccountId, this.environment);\n }\n /**\n * Generate Credential Id key component as per the schema: --\n */\n generateCredentialId() {\n return CredentialEntity.generateCredentialIdForCacheKey(this.credentialType, this.clientId, this.realm, this.familyId);\n }\n /**\n * Generate target key component as per schema: \n */\n generateTarget() {\n return CredentialEntity.generateTargetForCacheKey(this.target);\n }\n /**\n * generates credential key\n */\n generateCredentialKey() {\n return CredentialEntity.generateCredentialCacheKey(this.homeAccountId, this.environment, this.credentialType, this.clientId, this.realm, this.target, this.familyId, this.tokenType, this.requestedClaimsHash);\n }\n /**\n * returns the type of the cache (in this case credential)\n */\n generateType() {\n switch (this.credentialType) {\n case CredentialType.ID_TOKEN:\n return CacheType.ID_TOKEN;\n case CredentialType.ACCESS_TOKEN:\n case CredentialType.ACCESS_TOKEN_WITH_AUTH_SCHEME:\n return CacheType.ACCESS_TOKEN;\n case CredentialType.REFRESH_TOKEN:\n return CacheType.REFRESH_TOKEN;\n default: {\n throw createClientAuthError(unexpectedCredentialType);\n }\n }\n }\n /**\n * generates credential key\n * -\\-----\n */\n static generateCredentialCacheKey(homeAccountId, environment, credentialType, clientId, realm, target, familyId, tokenType, requestedClaimsHash) {\n const credentialKey = [\n this.generateAccountIdForCacheKey(homeAccountId, environment),\n this.generateCredentialIdForCacheKey(credentialType, clientId, realm, familyId),\n this.generateTargetForCacheKey(target),\n this.generateClaimsHashForCacheKey(requestedClaimsHash),\n this.generateSchemeForCacheKey(tokenType),\n ];\n return credentialKey.join(Separators.CACHE_KEY_SEPARATOR).toLowerCase();\n }\n /**\n * generates Account Id for keys\n * @param homeAccountId\n * @param environment\n */\n static generateAccountIdForCacheKey(homeAccountId, environment) {\n const accountId = [homeAccountId, environment];\n return accountId.join(Separators.CACHE_KEY_SEPARATOR).toLowerCase();\n }\n /**\n * Generates Credential Id for keys\n * @param credentialType\n * @param realm\n * @param clientId\n * @param familyId\n */\n static generateCredentialIdForCacheKey(credentialType, clientId, realm, familyId) {\n const clientOrFamilyId = credentialType === CredentialType.REFRESH_TOKEN\n ? familyId || clientId\n : clientId;\n const credentialId = [\n credentialType,\n clientOrFamilyId,\n realm || Constants.EMPTY_STRING,\n ];\n return credentialId.join(Separators.CACHE_KEY_SEPARATOR).toLowerCase();\n }\n /**\n * Generate target key component as per schema: \n */\n static generateTargetForCacheKey(scopes) {\n return (scopes || Constants.EMPTY_STRING).toLowerCase();\n }\n /**\n * Generate requested claims key component as per schema: \n */\n static generateClaimsHashForCacheKey(requestedClaimsHash) {\n return (requestedClaimsHash || Constants.EMPTY_STRING).toLowerCase();\n }\n /**\n * Generate scheme key componenet as per schema: \n */\n static generateSchemeForCacheKey(tokenType) {\n /*\n * PoP Tokens and SSH certs include scheme in cache key\n * Cast to lowercase to handle \"bearer\" from ADFS\n */\n return tokenType &&\n tokenType.toLowerCase() !==\n AuthenticationScheme.BEARER.toLowerCase()\n ? tokenType.toLowerCase()\n : Constants.EMPTY_STRING;\n }\n}\n\nexport { CredentialEntity };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { CredentialEntity } from './CredentialEntity.mjs';\nimport { CredentialType } from '../../utils/Constants.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * ID_TOKEN Cache\n *\n * Key:Value Schema:\n *\n * Key Example: uid.utid-login.microsoftonline.com-idtoken-clientId-contoso.com-\n *\n * Value Schema:\n * {\n * homeAccountId: home account identifier for the auth scheme,\n * environment: entity that issued the token, represented as a full host\n * credentialType: Type of credential as a string, can be one of the following: RefreshToken, AccessToken, IdToken, Password, Cookie, Certificate, Other\n * clientId: client ID of the application\n * secret: Actual credential as a string\n * realm: Full tenant or organizational identifier that the account belongs to\n * }\n */\nclass IdTokenEntity extends CredentialEntity {\n /**\n * Create IdTokenEntity\n * @param homeAccountId\n * @param authenticationResult\n * @param clientId\n * @param authority\n */\n static createIdTokenEntity(homeAccountId, environment, idToken, clientId, tenantId) {\n const idTokenEntity = new IdTokenEntity();\n idTokenEntity.credentialType = CredentialType.ID_TOKEN;\n idTokenEntity.homeAccountId = homeAccountId;\n idTokenEntity.environment = environment;\n idTokenEntity.clientId = clientId;\n idTokenEntity.secret = idToken;\n idTokenEntity.realm = tenantId;\n return idTokenEntity;\n }\n /**\n * Validates an entity: checks for all expected params\n * @param entity\n */\n static isIdTokenEntity(entity) {\n if (!entity) {\n return false;\n }\n return (entity.hasOwnProperty(\"homeAccountId\") &&\n entity.hasOwnProperty(\"environment\") &&\n entity.hasOwnProperty(\"credentialType\") &&\n entity.hasOwnProperty(\"realm\") &&\n entity.hasOwnProperty(\"clientId\") &&\n entity.hasOwnProperty(\"secret\") &&\n entity[\"credentialType\"] === CredentialType.ID_TOKEN);\n }\n}\n\nexport { IdTokenEntity };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Utility class which exposes functions for managing date and time operations.\n */\nclass TimeUtils {\n /**\n * return the current time in Unix time (seconds).\n */\n static nowSeconds() {\n // Date.getTime() returns in milliseconds.\n return Math.round(new Date().getTime() / 1000.0);\n }\n /**\n * check if a token is expired based on given UTC time in seconds.\n * @param expiresOn\n */\n static isTokenExpired(expiresOn, offset) {\n // check for access token expiry\n const expirationSec = Number(expiresOn) || 0;\n const offsetCurrentTimeSec = TimeUtils.nowSeconds() + offset;\n // If current time + offset is greater than token expiration time, then token is expired.\n return offsetCurrentTimeSec > expirationSec;\n }\n /**\n * If the current time is earlier than the time that a token was cached at, we must discard the token\n * i.e. The system clock was turned back after acquiring the cached token\n * @param cachedAt\n * @param offset\n */\n static wasClockTurnedBack(cachedAt) {\n const cachedAtSec = Number(cachedAt);\n return cachedAtSec > TimeUtils.nowSeconds();\n }\n /**\n * Waits for t number of milliseconds\n * @param t number\n * @param value T\n */\n static delay(t, value) {\n return new Promise((resolve) => setTimeout(() => resolve(value), t));\n }\n}\n\nexport { TimeUtils };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { CredentialEntity } from './CredentialEntity.mjs';\nimport { CredentialType, AuthenticationScheme } from '../../utils/Constants.mjs';\nimport { TimeUtils } from '../../utils/TimeUtils.mjs';\nimport { createClientAuthError } from '../../error/ClientAuthError.mjs';\nimport { extractTokenClaims } from '../../account/AuthToken.mjs';\nimport { tokenClaimsCnfRequiredForSignedJwt } from '../../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * ACCESS_TOKEN Credential Type\n *\n * Key:Value Schema:\n *\n * Key Example: uid.utid-login.microsoftonline.com-accesstoken-clientId-contoso.com-user.read\n *\n * Value Schema:\n * {\n * homeAccountId: home account identifier for the auth scheme,\n * environment: entity that issued the token, represented as a full host\n * credentialType: Type of credential as a string, can be one of the following: RefreshToken, AccessToken, IdToken, Password, Cookie, Certificate, Other\n * clientId: client ID of the application\n * secret: Actual credential as a string\n * familyId: Family ID identifier, usually only used for refresh tokens\n * realm: Full tenant or organizational identifier that the account belongs to\n * target: Permissions that are included in the token, or for refresh tokens, the resource identifier.\n * cachedAt: Absolute device time when entry was created in the cache.\n * expiresOn: Token expiry time, calculated based on current UTC time in seconds. Represented as a string.\n * extendedExpiresOn: Additional extended expiry time until when token is valid in case of server-side outage. Represented as string in UTC seconds.\n * keyId: used for POP and SSH tokenTypes\n * tokenType: Type of the token issued. Usually \"Bearer\"\n * }\n */\nclass AccessTokenEntity extends CredentialEntity {\n /**\n * Create AccessTokenEntity\n * @param homeAccountId\n * @param environment\n * @param accessToken\n * @param clientId\n * @param tenantId\n * @param scopes\n * @param expiresOn\n * @param extExpiresOn\n */\n static createAccessTokenEntity(homeAccountId, environment, accessToken, clientId, tenantId, scopes, expiresOn, extExpiresOn, cryptoUtils, refreshOn, tokenType, userAssertionHash, keyId, requestedClaims, requestedClaimsHash) {\n const atEntity = new AccessTokenEntity();\n atEntity.homeAccountId = homeAccountId;\n atEntity.credentialType = CredentialType.ACCESS_TOKEN;\n atEntity.secret = accessToken;\n const currentTime = TimeUtils.nowSeconds();\n atEntity.cachedAt = currentTime.toString();\n /*\n * Token expiry time.\n * This value should be  calculated based on the current UTC time measured locally and the value  expires_in Represented as a string in JSON.\n */\n atEntity.expiresOn = expiresOn.toString();\n atEntity.extendedExpiresOn = extExpiresOn.toString();\n if (refreshOn) {\n atEntity.refreshOn = refreshOn.toString();\n }\n atEntity.environment = environment;\n atEntity.clientId = clientId;\n atEntity.realm = tenantId;\n atEntity.target = scopes;\n atEntity.userAssertionHash = userAssertionHash;\n atEntity.tokenType = tokenType || AuthenticationScheme.BEARER;\n if (requestedClaims) {\n atEntity.requestedClaims = requestedClaims;\n atEntity.requestedClaimsHash = requestedClaimsHash;\n }\n /*\n * Create Access Token With Auth Scheme instead of regular access token\n * Cast to lower to handle \"bearer\" from ADFS\n */\n if (atEntity.tokenType?.toLowerCase() !==\n AuthenticationScheme.BEARER.toLowerCase()) {\n atEntity.credentialType =\n CredentialType.ACCESS_TOKEN_WITH_AUTH_SCHEME;\n switch (atEntity.tokenType) {\n case AuthenticationScheme.POP:\n // Make sure keyId is present and add it to credential\n const tokenClaims = extractTokenClaims(accessToken, cryptoUtils.base64Decode);\n if (!tokenClaims?.cnf?.kid) {\n throw createClientAuthError(tokenClaimsCnfRequiredForSignedJwt);\n }\n atEntity.keyId = tokenClaims.cnf.kid;\n break;\n case AuthenticationScheme.SSH:\n atEntity.keyId = keyId;\n }\n }\n return atEntity;\n }\n /**\n * Validates an entity: checks for all expected params\n * @param entity\n */\n static isAccessTokenEntity(entity) {\n if (!entity) {\n return false;\n }\n return (entity.hasOwnProperty(\"homeAccountId\") &&\n entity.hasOwnProperty(\"environment\") &&\n entity.hasOwnProperty(\"credentialType\") &&\n entity.hasOwnProperty(\"realm\") &&\n entity.hasOwnProperty(\"clientId\") &&\n entity.hasOwnProperty(\"secret\") &&\n entity.hasOwnProperty(\"target\") &&\n (entity[\"credentialType\"] === CredentialType.ACCESS_TOKEN ||\n entity[\"credentialType\"] ===\n CredentialType.ACCESS_TOKEN_WITH_AUTH_SCHEME));\n }\n}\n\nexport { AccessTokenEntity };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { CredentialEntity } from './CredentialEntity.mjs';\nimport { CredentialType } from '../../utils/Constants.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * REFRESH_TOKEN Cache\n *\n * Key:Value Schema:\n *\n * Key Example: uid.utid-login.microsoftonline.com-refreshtoken-clientId--\n *\n * Value:\n * {\n * homeAccountId: home account identifier for the auth scheme,\n * environment: entity that issued the token, represented as a full host\n * credentialType: Type of credential as a string, can be one of the following: RefreshToken, AccessToken, IdToken, Password, Cookie, Certificate, Other\n * clientId: client ID of the application\n * secret: Actual credential as a string\n * familyId: Family ID identifier, '1' represents Microsoft Family\n * realm: Full tenant or organizational identifier that the account belongs to\n * target: Permissions that are included in the token, or for refresh tokens, the resource identifier.\n * }\n */\nclass RefreshTokenEntity extends CredentialEntity {\n /**\n * Create RefreshTokenEntity\n * @param homeAccountId\n * @param authenticationResult\n * @param clientId\n * @param authority\n */\n static createRefreshTokenEntity(homeAccountId, environment, refreshToken, clientId, familyId, userAssertionHash) {\n const rtEntity = new RefreshTokenEntity();\n rtEntity.clientId = clientId;\n rtEntity.credentialType = CredentialType.REFRESH_TOKEN;\n rtEntity.environment = environment;\n rtEntity.homeAccountId = homeAccountId;\n rtEntity.secret = refreshToken;\n rtEntity.userAssertionHash = userAssertionHash;\n if (familyId)\n rtEntity.familyId = familyId;\n return rtEntity;\n }\n /**\n * Validates an entity: checks for all expected params\n * @param entity\n */\n static isRefreshTokenEntity(entity) {\n if (!entity) {\n return false;\n }\n return (entity.hasOwnProperty(\"homeAccountId\") &&\n entity.hasOwnProperty(\"environment\") &&\n entity.hasOwnProperty(\"credentialType\") &&\n entity.hasOwnProperty(\"clientId\") &&\n entity.hasOwnProperty(\"secret\") &&\n entity[\"credentialType\"] === CredentialType.REFRESH_TOKEN);\n }\n}\n\nexport { RefreshTokenEntity };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n// Codes defined by MSAL\nconst noTokensFound = \"no_tokens_found\";\nconst nativeAccountUnavailable = \"native_account_unavailable\";\n// Codes potentially returned by server\nconst interactionRequired = \"interaction_required\";\nconst consentRequired = \"consent_required\";\nconst loginRequired = \"login_required\";\n\nexport { consentRequired, interactionRequired, loginRequired, nativeAccountUnavailable, noTokensFound };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { Constants } from '../utils/Constants.mjs';\nimport { AuthError } from './AuthError.mjs';\nimport { noTokensFound, nativeAccountUnavailable, interactionRequired, consentRequired, loginRequired } from './InteractionRequiredAuthErrorCodes.mjs';\nimport * as InteractionRequiredAuthErrorCodes from './InteractionRequiredAuthErrorCodes.mjs';\nexport { InteractionRequiredAuthErrorCodes };\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * InteractionRequiredServerErrorMessage contains string constants used by error codes and messages returned by the server indicating interaction is required\n */\nconst InteractionRequiredServerErrorMessage = [\n interactionRequired,\n consentRequired,\n loginRequired,\n];\nconst InteractionRequiredAuthSubErrorMessage = [\n \"message_only\",\n \"additional_action\",\n \"basic_action\",\n \"user_password_expired\",\n \"consent_required\",\n];\nconst InteractionRequiredAuthErrorMessages = {\n [noTokensFound]: \"No refresh token found in the cache. Please sign-in.\",\n [nativeAccountUnavailable]: \"The requested account is not available in the native broker. It may have been deleted or logged out. Please sign-in again using an interactive API.\",\n};\n/**\n * Interaction required errors defined by the SDK\n * @deprecated Use InteractionRequiredAuthErrorCodes instead\n */\nconst InteractionRequiredAuthErrorMessage = {\n noTokensFoundError: {\n code: noTokensFound,\n desc: InteractionRequiredAuthErrorMessages[noTokensFound],\n },\n native_account_unavailable: {\n code: nativeAccountUnavailable,\n desc: InteractionRequiredAuthErrorMessages[nativeAccountUnavailable],\n },\n};\n/**\n * Error thrown when user interaction is required.\n */\nclass InteractionRequiredAuthError extends AuthError {\n constructor(errorCode, errorMessage, subError, timestamp, traceId, correlationId, claims) {\n super(errorCode, errorMessage, subError);\n Object.setPrototypeOf(this, InteractionRequiredAuthError.prototype);\n this.timestamp = timestamp || Constants.EMPTY_STRING;\n this.traceId = traceId || Constants.EMPTY_STRING;\n this.correlationId = correlationId || Constants.EMPTY_STRING;\n this.claims = claims || Constants.EMPTY_STRING;\n this.name = \"InteractionRequiredAuthError\";\n }\n}\n/**\n * Helper function used to determine if an error thrown by the server requires interaction to resolve\n * @param errorCode\n * @param errorString\n * @param subError\n */\nfunction isInteractionRequiredError(errorCode, errorString, subError) {\n const isInteractionRequiredErrorCode = !!errorCode &&\n InteractionRequiredServerErrorMessage.indexOf(errorCode) > -1;\n const isInteractionRequiredSubError = !!subError &&\n InteractionRequiredAuthSubErrorMessage.indexOf(subError) > -1;\n const isInteractionRequiredErrorDesc = !!errorString &&\n InteractionRequiredServerErrorMessage.some((irErrorCode) => {\n return errorString.indexOf(irErrorCode) > -1;\n });\n return (isInteractionRequiredErrorCode ||\n isInteractionRequiredErrorDesc ||\n isInteractionRequiredSubError);\n}\n/**\n * Creates an InteractionRequiredAuthError\n */\nfunction createInteractionRequiredAuthError(errorCode) {\n return new InteractionRequiredAuthError(errorCode, InteractionRequiredAuthErrorMessages[errorCode]);\n}\n\nexport { InteractionRequiredAuthError, InteractionRequiredAuthErrorMessage, InteractionRequiredAuthSubErrorMessage, InteractionRequiredServerErrorMessage, createInteractionRequiredAuthError, isInteractionRequiredError };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/** @internal */\nclass CacheRecord {\n constructor(accountEntity, idTokenEntity, accessTokenEntity, refreshTokenEntity, appMetadataEntity) {\n this.account = accountEntity || null;\n this.idToken = idTokenEntity || null;\n this.accessToken = accessTokenEntity || null;\n this.refreshToken = refreshTokenEntity || null;\n this.appMetadata = appMetadataEntity || null;\n }\n}\n\nexport { CacheRecord };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { Constants } from './Constants.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { noCryptoObject, invalidState } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Class which provides helpers for OAuth 2.0 protocol specific values\n */\nclass ProtocolUtils {\n /**\n * Appends user state with random guid, or returns random guid.\n * @param userState\n * @param randomGuid\n */\n static setRequestState(cryptoObj, userState, meta) {\n const libraryState = ProtocolUtils.generateLibraryState(cryptoObj, meta);\n return userState\n ? `${libraryState}${Constants.RESOURCE_DELIM}${userState}`\n : libraryState;\n }\n /**\n * Generates the state value used by the common library.\n * @param randomGuid\n * @param cryptoObj\n */\n static generateLibraryState(cryptoObj, meta) {\n if (!cryptoObj) {\n throw createClientAuthError(noCryptoObject);\n }\n // Create a state object containing a unique id and the timestamp of the request creation\n const stateObj = {\n id: cryptoObj.createNewGuid(),\n };\n if (meta) {\n stateObj.meta = meta;\n }\n const stateString = JSON.stringify(stateObj);\n return cryptoObj.base64Encode(stateString);\n }\n /**\n * Parses the state into the RequestStateObject, which contains the LibraryState info and the state passed by the user.\n * @param state\n * @param cryptoObj\n */\n static parseRequestState(cryptoObj, state) {\n if (!cryptoObj) {\n throw createClientAuthError(noCryptoObject);\n }\n if (!state) {\n throw createClientAuthError(invalidState);\n }\n try {\n // Split the state between library state and user passed state and decode them separately\n const splitState = state.split(Constants.RESOURCE_DELIM);\n const libraryState = splitState[0];\n const userState = splitState.length > 1\n ? splitState.slice(1).join(Constants.RESOURCE_DELIM)\n : Constants.EMPTY_STRING;\n const libraryStateString = cryptoObj.base64Decode(libraryState);\n const libraryStateObj = JSON.parse(libraryStateString);\n return {\n userRequestState: userState || Constants.EMPTY_STRING,\n libraryState: libraryStateObj,\n };\n }\n catch (e) {\n throw createClientAuthError(invalidState);\n }\n }\n}\n\nexport { ProtocolUtils };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { createClientConfigurationError } from '../error/ClientConfigurationError.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { StringUtils } from '../utils/StringUtils.mjs';\nimport { AADAuthorityConstants, Constants, ServerResponseType } from '../utils/Constants.mjs';\nimport { urlEmptyError, urlParseError, authorityUriInsecure } from '../error/ClientConfigurationErrorCodes.mjs';\nimport { hashNotDeserialized } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Url object class which can perform various transformations on url strings.\n */\nclass UrlString {\n get urlString() {\n return this._urlString;\n }\n constructor(url) {\n this._urlString = url;\n if (!this._urlString) {\n // Throws error if url is empty\n throw createClientConfigurationError(urlEmptyError);\n }\n if (!this.getHash()) {\n this._urlString = UrlString.canonicalizeUri(url);\n }\n }\n /**\n * Ensure urls are lower case and end with a / character.\n * @param url\n */\n static canonicalizeUri(url) {\n if (url) {\n let lowerCaseUrl = url.toLowerCase();\n if (StringUtils.endsWith(lowerCaseUrl, \"?\")) {\n lowerCaseUrl = lowerCaseUrl.slice(0, -1);\n }\n else if (StringUtils.endsWith(lowerCaseUrl, \"?/\")) {\n lowerCaseUrl = lowerCaseUrl.slice(0, -2);\n }\n if (!StringUtils.endsWith(lowerCaseUrl, \"/\")) {\n lowerCaseUrl += \"/\";\n }\n return lowerCaseUrl;\n }\n return url;\n }\n /**\n * Throws if urlString passed is not a valid authority URI string.\n */\n validateAsUri() {\n // Attempts to parse url for uri components\n let components;\n try {\n components = this.getUrlComponents();\n }\n catch (e) {\n throw createClientConfigurationError(urlParseError);\n }\n // Throw error if URI or path segments are not parseable.\n if (!components.HostNameAndPort || !components.PathSegments) {\n throw createClientConfigurationError(urlParseError);\n }\n // Throw error if uri is insecure.\n if (!components.Protocol ||\n components.Protocol.toLowerCase() !== \"https:\") {\n throw createClientConfigurationError(authorityUriInsecure);\n }\n }\n /**\n * Given a url and a query string return the url with provided query string appended\n * @param url\n * @param queryString\n */\n static appendQueryString(url, queryString) {\n if (!queryString) {\n return url;\n }\n return url.indexOf(\"?\") < 0\n ? `${url}?${queryString}`\n : `${url}&${queryString}`;\n }\n /**\n * Returns a url with the hash removed\n * @param url\n */\n static removeHashFromUrl(url) {\n return UrlString.canonicalizeUri(url.split(\"#\")[0]);\n }\n /**\n * Given a url like https://a:b/common/d?e=f#g, and a tenantId, returns https://a:b/tenantId/d\n * @param href The url\n * @param tenantId The tenant id to replace\n */\n replaceTenantPath(tenantId) {\n const urlObject = this.getUrlComponents();\n const pathArray = urlObject.PathSegments;\n if (tenantId &&\n pathArray.length !== 0 &&\n (pathArray[0] === AADAuthorityConstants.COMMON ||\n pathArray[0] === AADAuthorityConstants.ORGANIZATIONS)) {\n pathArray[0] = tenantId;\n }\n return UrlString.constructAuthorityUriFromObject(urlObject);\n }\n /**\n * Returns the anchor part(#) of the URL\n */\n getHash() {\n return UrlString.parseHash(this.urlString);\n }\n /**\n * Parses out the components from a url string.\n * @returns An object with the various components. Please cache this value insted of calling this multiple times on the same url.\n */\n getUrlComponents() {\n // https://gist.github.com/curtisz/11139b2cfcaef4a261e0\n const regEx = RegExp(\"^(([^:/?#]+):)?(//([^/?#]*))?([^?#]*)(\\\\?([^#]*))?(#(.*))?\");\n // If url string does not match regEx, we throw an error\n const match = this.urlString.match(regEx);\n if (!match) {\n throw createClientConfigurationError(urlParseError);\n }\n // Url component object\n const urlComponents = {\n Protocol: match[1],\n HostNameAndPort: match[4],\n AbsolutePath: match[5],\n QueryString: match[7],\n };\n let pathSegments = urlComponents.AbsolutePath.split(\"/\");\n pathSegments = pathSegments.filter((val) => val && val.length > 0); // remove empty elements\n urlComponents.PathSegments = pathSegments;\n if (urlComponents.QueryString &&\n urlComponents.QueryString.endsWith(\"/\")) {\n urlComponents.QueryString = urlComponents.QueryString.substring(0, urlComponents.QueryString.length - 1);\n }\n return urlComponents;\n }\n static getDomainFromUrl(url) {\n const regEx = RegExp(\"^([^:/?#]+://)?([^/?#]*)\");\n const match = url.match(regEx);\n if (!match) {\n throw createClientConfigurationError(urlParseError);\n }\n return match[2];\n }\n static getAbsoluteUrl(relativeUrl, baseUrl) {\n if (relativeUrl[0] === Constants.FORWARD_SLASH) {\n const url = new UrlString(baseUrl);\n const baseComponents = url.getUrlComponents();\n return (baseComponents.Protocol +\n \"//\" +\n baseComponents.HostNameAndPort +\n relativeUrl);\n }\n return relativeUrl;\n }\n /**\n * Parses hash string from given string. Returns empty string if no hash symbol is found.\n * @param hashString\n */\n static parseHash(hashString) {\n const hashIndex1 = hashString.indexOf(\"#\");\n const hashIndex2 = hashString.indexOf(\"#/\");\n if (hashIndex2 > -1) {\n return hashString.substring(hashIndex2 + 2);\n }\n else if (hashIndex1 > -1) {\n return hashString.substring(hashIndex1 + 1);\n }\n return Constants.EMPTY_STRING;\n }\n /**\n * Parses query string from given string. Returns empty string if no query symbol is found.\n * @param queryString\n */\n static parseQueryString(queryString) {\n const queryIndex1 = queryString.indexOf(\"?\");\n const queryIndex2 = queryString.indexOf(\"/?\");\n if (queryIndex2 > -1) {\n return queryString.substring(queryIndex2 + 2);\n }\n else if (queryIndex1 > -1) {\n return queryString.substring(queryIndex1 + 1);\n }\n return Constants.EMPTY_STRING;\n }\n /**\n * Parses query server response string from given string.\n * Extract hash between '?code=' and '#' if trailing '# is present.\n * Returns empty string if no query symbol is found.\n * @param queryString\n */\n static parseQueryServerResponse(queryString) {\n const queryIndex1 = queryString.indexOf(\"?code\");\n const queryIndex2 = queryString.indexOf(\"/?code\");\n const hashIndex = queryString.indexOf(\"#\");\n if (queryIndex2 > -1 && hashIndex > -1) {\n return queryString.substring(queryIndex2 + 2, hashIndex);\n }\n else if (queryIndex2 > -1) {\n return queryString.substring(queryIndex2 + 2);\n }\n else if (queryIndex1 > -1 && hashIndex > -1) {\n return queryString.substring(queryIndex1 + 1, hashIndex);\n }\n else if (queryIndex1 > -1) {\n return queryString.substring(queryIndex1 + 1);\n }\n return Constants.EMPTY_STRING;\n }\n static constructAuthorityUriFromObject(urlObject) {\n return new UrlString(urlObject.Protocol +\n \"//\" +\n urlObject.HostNameAndPort +\n \"/\" +\n urlObject.PathSegments.join(\"/\"));\n }\n /**\n * Returns URL hash as server auth code response object.\n */\n static getDeserializedHash(hash) {\n // Check if given hash is empty\n if (!hash) {\n return {};\n }\n // Strip the # symbol if present\n const parsedHash = UrlString.parseHash(hash);\n // If # symbol was not present, above will return empty string, so give original hash value\n const deserializedHash = StringUtils.queryStringToObject(parsedHash || hash);\n // Check if deserialization didn't work\n if (!deserializedHash) {\n throw createClientAuthError(hashNotDeserialized);\n }\n return deserializedHash;\n }\n /**\n * Returns URL query string as server auth code response object.\n */\n static getDeserializedQueryString(query) {\n // Check if given query is empty\n if (!query) {\n return {};\n }\n // Strip the ? symbol if present\n const parsedQueryString = UrlString.parseQueryString(query);\n // If ? symbol was not present, above will return empty string, so give original query value\n const deserializedQueryString = StringUtils.queryStringToObject(parsedQueryString || query);\n // Check if deserialization didn't work\n if (!deserializedQueryString) {\n throw createClientAuthError(hashNotDeserialized);\n }\n return deserializedQueryString;\n }\n /**\n * Returns either deserialized query string or deserialized hash, depending on the serverResponseType\n * as a server auth code response object.\n */\n static getDeserializedCodeResponse(serverResponseType, hashFragment) {\n const hashUrlString = new UrlString(hashFragment);\n let serverParams;\n if (serverResponseType === ServerResponseType.QUERY) {\n serverParams = UrlString.getDeserializedQueryString(hashFragment);\n }\n else {\n serverParams = UrlString.getDeserializedHash(hashUrlString.getHash());\n }\n return serverParams;\n }\n /**\n * Check if the hash of the URL string contains known properties\n */\n static hashContainsKnownProperties(hash) {\n if (!hash || hash.indexOf(\"=\") < 0) {\n // Hash doesn't contain key/value pairs\n return false;\n }\n const parameters = UrlString.getDeserializedHash(hash);\n return !!(parameters.code ||\n parameters.error_description ||\n parameters.error ||\n parameters.state);\n }\n}\n\nexport { UrlString };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Wraps a function with a performance measurement.\n * Usage: invoke(functionToCall, performanceClient, \"EventName\", \"correlationId\")(...argsToPassToFunction)\n * @param callback\n * @param eventName\n * @param logger\n * @param telemetryClient\n * @param correlationId\n * @returns\n * @internal\n */\n// eslint-disable-next-line @typescript-eslint/no-explicit-any\nconst invoke = (callback, eventName, logger, telemetryClient, correlationId) => {\n return (...args) => {\n logger.trace(`Executing function ${eventName}`);\n const inProgressEvent = telemetryClient?.startMeasurement(eventName, correlationId);\n try {\n const result = callback(...args);\n inProgressEvent?.end({\n success: true,\n });\n logger.trace(`Returning result from ${eventName}`);\n return result;\n }\n catch (e) {\n logger.trace(`Error occurred in ${eventName}`);\n try {\n logger.trace(JSON.stringify(e));\n }\n catch (e) {\n logger.trace(\"Unable to print error message.\");\n }\n inProgressEvent?.end({\n success: false,\n });\n throw e;\n }\n };\n};\n/**\n * Wraps an async function with a performance measurement.\n * Usage: invokeAsync(functionToCall, performanceClient, \"EventName\", \"correlationId\")(...argsToPassToFunction)\n * @param callback\n * @param eventName\n * @param logger\n * @param telemetryClient\n * @param correlationId\n * @returns\n * @internal\n *\n */\n// eslint-disable-next-line @typescript-eslint/no-explicit-any\nconst invokeAsync = (callback, eventName, logger, telemetryClient, correlationId) => {\n return (...args) => {\n logger.trace(`Executing function ${eventName}`);\n const inProgressEvent = telemetryClient?.startMeasurement(eventName, correlationId);\n telemetryClient?.setPreQueueTime(eventName, correlationId);\n return callback(...args)\n .then((response) => {\n logger.trace(`Returning result from ${eventName}`);\n inProgressEvent?.end({\n success: true,\n });\n return response;\n })\n .catch((e) => {\n logger.trace(`Error occurred in ${eventName}`);\n try {\n logger.trace(JSON.stringify(e));\n }\n catch (e) {\n logger.trace(\"Unable to print error message.\");\n }\n inProgressEvent?.end({\n success: false,\n });\n throw e;\n });\n };\n};\n\nexport { invoke, invokeAsync };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { TimeUtils } from '../utils/TimeUtils.mjs';\nimport { UrlString } from '../url/UrlString.mjs';\nimport { PerformanceEvents } from '../telemetry/performance/PerformanceEvent.mjs';\nimport { invokeAsync } from '../utils/FunctionWrappers.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst KeyLocation = {\n SW: \"sw\",\n UHW: \"uhw\",\n};\n/** @internal */\nclass PopTokenGenerator {\n constructor(cryptoUtils, performanceClient) {\n this.cryptoUtils = cryptoUtils;\n this.performanceClient = performanceClient;\n }\n /**\n * Generates the req_cnf validated at the RP in the POP protocol for SHR parameters\n * and returns an object containing the keyid, the full req_cnf string and the req_cnf string hash\n * @param request\n * @returns\n */\n async generateCnf(request, logger) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.PopTokenGenerateCnf, request.correlationId);\n const reqCnf = await invokeAsync(this.generateKid.bind(this), PerformanceEvents.PopTokenGenerateCnf, logger, this.performanceClient, request.correlationId)(request);\n const reqCnfString = this.cryptoUtils.base64Encode(JSON.stringify(reqCnf));\n return {\n kid: reqCnf.kid,\n reqCnfString,\n reqCnfHash: await this.cryptoUtils.hashString(reqCnfString),\n };\n }\n /**\n * Generates key_id for a SHR token request\n * @param request\n * @returns\n */\n async generateKid(request) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.PopTokenGenerateKid, request.correlationId);\n const kidThumbprint = await this.cryptoUtils.getPublicKeyThumbprint(request);\n return {\n kid: kidThumbprint,\n xms_ksl: KeyLocation.SW,\n };\n }\n /**\n * Signs the POP access_token with the local generated key-pair\n * @param accessToken\n * @param request\n * @returns\n */\n async signPopToken(accessToken, keyId, request) {\n return this.signPayload(accessToken, keyId, request);\n }\n /**\n * Utility function to generate the signed JWT for an access_token\n * @param payload\n * @param kid\n * @param request\n * @param claims\n * @returns\n */\n async signPayload(payload, keyId, request, claims) {\n // Deconstruct request to extract SHR parameters\n const { resourceRequestMethod, resourceRequestUri, shrClaims, shrNonce, } = request;\n const resourceUrlString = resourceRequestUri\n ? new UrlString(resourceRequestUri)\n : undefined;\n const resourceUrlComponents = resourceUrlString?.getUrlComponents();\n return await this.cryptoUtils.signJwt({\n at: payload,\n ts: TimeUtils.nowSeconds(),\n m: resourceRequestMethod?.toUpperCase(),\n u: resourceUrlComponents?.HostNameAndPort,\n nonce: shrNonce || this.cryptoUtils.createNewGuid(),\n p: resourceUrlComponents?.AbsolutePath,\n q: resourceUrlComponents?.QueryString\n ? [[], resourceUrlComponents.QueryString]\n : undefined,\n client_claims: shrClaims || undefined,\n ...claims,\n }, keyId, request.correlationId);\n }\n}\n\nexport { PopTokenGenerator };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { Separators, APP_METADATA } from '../../utils/Constants.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * APP_METADATA Cache\n *\n * Key:Value Schema:\n *\n * Key: appmetadata--\n *\n * Value:\n * {\n * clientId: client ID of the application\n * environment: entity that issued the token, represented as a full host\n * familyId: Family ID identifier, '1' represents Microsoft Family\n * }\n */\nclass AppMetadataEntity {\n /**\n * Generate AppMetadata Cache Key as per the schema: appmetadata--\n */\n generateAppMetadataKey() {\n return AppMetadataEntity.generateAppMetadataCacheKey(this.environment, this.clientId);\n }\n /**\n * Generate AppMetadata Cache Key\n */\n static generateAppMetadataCacheKey(environment, clientId) {\n const appMetaDataKeyArray = [\n APP_METADATA,\n environment,\n clientId,\n ];\n return appMetaDataKeyArray\n .join(Separators.CACHE_KEY_SEPARATOR)\n .toLowerCase();\n }\n /**\n * Creates AppMetadataEntity\n * @param clientId\n * @param environment\n * @param familyId\n */\n static createAppMetadataEntity(clientId, environment, familyId) {\n const appMetadata = new AppMetadataEntity();\n appMetadata.clientId = clientId;\n appMetadata.environment = environment;\n if (familyId) {\n appMetadata.familyId = familyId;\n }\n return appMetadata;\n }\n /**\n * Validates an entity: checks for all expected params\n * @param entity\n */\n static isAppMetadataEntity(key, entity) {\n if (!entity) {\n return false;\n }\n return (key.indexOf(APP_METADATA) === 0 &&\n entity.hasOwnProperty(\"clientId\") &&\n entity.hasOwnProperty(\"environment\"));\n }\n}\n\nexport { AppMetadataEntity };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * This class instance helps track the memory changes facilitating\n * decisions to read from and write to the persistent cache\n */ class TokenCacheContext {\n constructor(tokenCache, hasChanged) {\n this.cache = tokenCache;\n this.hasChanged = hasChanged;\n }\n /**\n * boolean which indicates the changes in cache\n */\n get cacheHasChanged() {\n return this.hasChanged;\n }\n /**\n * function to retrieve the token cache\n */\n get tokenCache() {\n return this.cache;\n }\n}\n\nexport { TokenCacheContext };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { buildClientInfo } from '../account/ClientInfo.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { ServerError } from '../error/ServerError.mjs';\nimport { ScopeSet } from '../request/ScopeSet.mjs';\nimport { AccountEntity } from '../cache/entities/AccountEntity.mjs';\nimport { IdTokenEntity } from '../cache/entities/IdTokenEntity.mjs';\nimport { AccessTokenEntity } from '../cache/entities/AccessTokenEntity.mjs';\nimport { RefreshTokenEntity } from '../cache/entities/RefreshTokenEntity.mjs';\nimport { isInteractionRequiredError, InteractionRequiredAuthError } from '../error/InteractionRequiredAuthError.mjs';\nimport { CacheRecord } from '../cache/entities/CacheRecord.mjs';\nimport { ProtocolUtils } from '../utils/ProtocolUtils.mjs';\nimport { Constants, HttpStatus, AuthenticationScheme, THE_FAMILY_ID } from '../utils/Constants.mjs';\nimport { PopTokenGenerator } from '../crypto/PopTokenGenerator.mjs';\nimport { AppMetadataEntity } from '../cache/entities/AppMetadataEntity.mjs';\nimport { TokenCacheContext } from '../cache/persistence/TokenCacheContext.mjs';\nimport { PerformanceEvents } from '../telemetry/performance/PerformanceEvent.mjs';\nimport { extractTokenClaims, checkMaxAge } from '../account/AuthToken.mjs';\nimport { stateNotFound, invalidState, stateMismatch, nonceMismatch, authTimeNotFound, invalidCacheEnvironment, keyIdMissing } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Class that handles response parsing.\n * @internal\n */\nclass ResponseHandler {\n constructor(clientId, cacheStorage, cryptoObj, logger, serializableCache, persistencePlugin, performanceClient) {\n this.clientId = clientId;\n this.cacheStorage = cacheStorage;\n this.cryptoObj = cryptoObj;\n this.logger = logger;\n this.serializableCache = serializableCache;\n this.persistencePlugin = persistencePlugin;\n this.performanceClient = performanceClient;\n }\n /**\n * Function which validates server authorization code response.\n * @param serverResponseHash\n * @param cachedState\n * @param cryptoObj\n */\n validateServerAuthorizationCodeResponse(serverResponseHash, cachedState, cryptoObj) {\n if (!serverResponseHash.state || !cachedState) {\n throw serverResponseHash.state\n ? createClientAuthError(stateNotFound, \"Cached State\")\n : createClientAuthError(stateNotFound, \"Server State\");\n }\n let decodedServerResponseHash;\n let decodedCachedState;\n try {\n decodedServerResponseHash = decodeURIComponent(serverResponseHash.state);\n }\n catch (e) {\n throw createClientAuthError(invalidState, serverResponseHash.state);\n }\n try {\n decodedCachedState = decodeURIComponent(cachedState);\n }\n catch (e) {\n throw createClientAuthError(invalidState, serverResponseHash.state);\n }\n if (decodedServerResponseHash !== decodedCachedState) {\n throw createClientAuthError(stateMismatch);\n }\n // Check for error\n if (serverResponseHash.error ||\n serverResponseHash.error_description ||\n serverResponseHash.suberror) {\n if (isInteractionRequiredError(serverResponseHash.error, serverResponseHash.error_description, serverResponseHash.suberror)) {\n throw new InteractionRequiredAuthError(serverResponseHash.error || Constants.EMPTY_STRING, serverResponseHash.error_description, serverResponseHash.suberror, serverResponseHash.timestamp || Constants.EMPTY_STRING, serverResponseHash.trace_id || Constants.EMPTY_STRING, serverResponseHash.correlation_id || Constants.EMPTY_STRING, serverResponseHash.claims || Constants.EMPTY_STRING);\n }\n throw new ServerError(serverResponseHash.error || Constants.EMPTY_STRING, serverResponseHash.error_description, serverResponseHash.suberror);\n }\n if (serverResponseHash.client_info) {\n buildClientInfo(serverResponseHash.client_info, cryptoObj);\n }\n }\n /**\n * Function which validates server authorization token response.\n * @param serverResponse\n * @param refreshAccessToken\n */\n validateTokenResponse(serverResponse, refreshAccessToken) {\n // Check for error\n if (serverResponse.error ||\n serverResponse.error_description ||\n serverResponse.suberror) {\n const errString = `${serverResponse.error_codes} - [${serverResponse.timestamp}]: ${serverResponse.error_description} - Correlation ID: ${serverResponse.correlation_id} - Trace ID: ${serverResponse.trace_id}`;\n const serverError = new ServerError(serverResponse.error, errString, serverResponse.suberror);\n // check if 500 error\n if (refreshAccessToken &&\n serverResponse.status &&\n serverResponse.status >= HttpStatus.SERVER_ERROR_RANGE_START &&\n serverResponse.status <= HttpStatus.SERVER_ERROR_RANGE_END) {\n this.logger.warning(`executeTokenRequest:validateTokenResponse - AAD is currently unavailable and the access token is unable to be refreshed.\\n${serverError}`);\n // don't throw an exception, but alert the user via a log that the token was unable to be refreshed\n return;\n // check if 400 error\n }\n else if (refreshAccessToken &&\n serverResponse.status &&\n serverResponse.status >= HttpStatus.CLIENT_ERROR_RANGE_START &&\n serverResponse.status <= HttpStatus.CLIENT_ERROR_RANGE_END) {\n this.logger.warning(`executeTokenRequest:validateTokenResponse - AAD is currently available but is unable to refresh the access token.\\n${serverError}`);\n // don't throw an exception, but alert the user via a log that the token was unable to be refreshed\n return;\n }\n if (isInteractionRequiredError(serverResponse.error, serverResponse.error_description, serverResponse.suberror)) {\n throw new InteractionRequiredAuthError(serverResponse.error, serverResponse.error_description, serverResponse.suberror, serverResponse.timestamp || Constants.EMPTY_STRING, serverResponse.trace_id || Constants.EMPTY_STRING, serverResponse.correlation_id || Constants.EMPTY_STRING, serverResponse.claims || Constants.EMPTY_STRING);\n }\n throw serverError;\n }\n }\n /**\n * Returns a constructed token response based on given string. Also manages the cache updates and cleanups.\n * @param serverTokenResponse\n * @param authority\n */\n async handleServerTokenResponse(serverTokenResponse, authority, reqTimestamp, request, authCodePayload, userAssertionHash, handlingRefreshTokenResponse, forceCacheRefreshTokenResponse, serverRequestId) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.HandleServerTokenResponse, serverTokenResponse.correlation_id);\n // create an idToken object (not entity)\n let idTokenClaims;\n if (serverTokenResponse.id_token) {\n idTokenClaims = extractTokenClaims(serverTokenResponse.id_token || Constants.EMPTY_STRING, this.cryptoObj.base64Decode);\n // token nonce check (TODO: Add a warning if no nonce is given?)\n if (authCodePayload && authCodePayload.nonce) {\n if (idTokenClaims.nonce !== authCodePayload.nonce) {\n throw createClientAuthError(nonceMismatch);\n }\n }\n // token max_age check\n if (request.maxAge || request.maxAge === 0) {\n const authTime = idTokenClaims.auth_time;\n if (!authTime) {\n throw createClientAuthError(authTimeNotFound);\n }\n checkMaxAge(authTime, request.maxAge);\n }\n }\n // generate homeAccountId\n this.homeAccountIdentifier = AccountEntity.generateHomeAccountId(serverTokenResponse.client_info || Constants.EMPTY_STRING, authority.authorityType, this.logger, this.cryptoObj, idTokenClaims);\n // save the response tokens\n let requestStateObj;\n if (!!authCodePayload && !!authCodePayload.state) {\n requestStateObj = ProtocolUtils.parseRequestState(this.cryptoObj, authCodePayload.state);\n }\n // Add keyId from request to serverTokenResponse if defined\n serverTokenResponse.key_id =\n serverTokenResponse.key_id || request.sshKid || undefined;\n const cacheRecord = this.generateCacheRecord(serverTokenResponse, authority, reqTimestamp, request, idTokenClaims, userAssertionHash, authCodePayload);\n let cacheContext;\n try {\n if (this.persistencePlugin && this.serializableCache) {\n this.logger.verbose(\"Persistence enabled, calling beforeCacheAccess\");\n cacheContext = new TokenCacheContext(this.serializableCache, true);\n await this.persistencePlugin.beforeCacheAccess(cacheContext);\n }\n /*\n * When saving a refreshed tokens to the cache, it is expected that the account that was used is present in the cache.\n * If not present, we should return null, as it's the case that another application called removeAccount in between\n * the calls to getAllAccounts and acquireTokenSilent. We should not overwrite that removal, unless explicitly flagged by\n * the developer, as in the case of refresh token flow used in ADAL Node to MSAL Node migration.\n */\n if (handlingRefreshTokenResponse &&\n !forceCacheRefreshTokenResponse &&\n cacheRecord.account) {\n const key = cacheRecord.account.generateAccountKey();\n const account = this.cacheStorage.getAccount(key);\n if (!account) {\n this.logger.warning(\"Account used to refresh tokens not in persistence, refreshed tokens will not be stored in the cache\");\n return ResponseHandler.generateAuthenticationResult(this.cryptoObj, authority, cacheRecord, false, request, idTokenClaims, requestStateObj, undefined, serverRequestId);\n }\n }\n await this.cacheStorage.saveCacheRecord(cacheRecord, request.storeInCache);\n }\n finally {\n if (this.persistencePlugin &&\n this.serializableCache &&\n cacheContext) {\n this.logger.verbose(\"Persistence enabled, calling afterCacheAccess\");\n await this.persistencePlugin.afterCacheAccess(cacheContext);\n }\n }\n return ResponseHandler.generateAuthenticationResult(this.cryptoObj, authority, cacheRecord, false, request, idTokenClaims, requestStateObj, serverTokenResponse, serverRequestId);\n }\n /**\n * Generates CacheRecord\n * @param serverTokenResponse\n * @param idTokenObj\n * @param authority\n */\n generateCacheRecord(serverTokenResponse, authority, reqTimestamp, request, idTokenClaims, userAssertionHash, authCodePayload) {\n const env = authority.getPreferredCache();\n if (!env) {\n throw createClientAuthError(invalidCacheEnvironment);\n }\n // IdToken: non AAD scenarios can have empty realm\n let cachedIdToken;\n let cachedAccount;\n if (serverTokenResponse.id_token && !!idTokenClaims) {\n cachedIdToken = IdTokenEntity.createIdTokenEntity(this.homeAccountIdentifier, env, serverTokenResponse.id_token, this.clientId, idTokenClaims.tid || \"\");\n cachedAccount = AccountEntity.createAccount({\n homeAccountId: this.homeAccountIdentifier,\n idTokenClaims: idTokenClaims,\n clientInfo: serverTokenResponse.client_info,\n cloudGraphHostName: authCodePayload?.cloud_graph_host_name,\n msGraphHost: authCodePayload?.msgraph_host,\n }, authority);\n }\n // AccessToken\n let cachedAccessToken = null;\n if (serverTokenResponse.access_token) {\n // If scopes not returned in server response, use request scopes\n const responseScopes = serverTokenResponse.scope\n ? ScopeSet.fromString(serverTokenResponse.scope)\n : new ScopeSet(request.scopes || []);\n /*\n * Use timestamp calculated before request\n * Server may return timestamps as strings, parse to numbers if so.\n */\n const expiresIn = (typeof serverTokenResponse.expires_in === \"string\"\n ? parseInt(serverTokenResponse.expires_in, 10)\n : serverTokenResponse.expires_in) || 0;\n const extExpiresIn = (typeof serverTokenResponse.ext_expires_in === \"string\"\n ? parseInt(serverTokenResponse.ext_expires_in, 10)\n : serverTokenResponse.ext_expires_in) || 0;\n const refreshIn = (typeof serverTokenResponse.refresh_in === \"string\"\n ? parseInt(serverTokenResponse.refresh_in, 10)\n : serverTokenResponse.refresh_in) || undefined;\n const tokenExpirationSeconds = reqTimestamp + expiresIn;\n const extendedTokenExpirationSeconds = tokenExpirationSeconds + extExpiresIn;\n const refreshOnSeconds = refreshIn && refreshIn > 0\n ? reqTimestamp + refreshIn\n : undefined;\n // non AAD scenarios can have empty realm\n cachedAccessToken = AccessTokenEntity.createAccessTokenEntity(this.homeAccountIdentifier, env, serverTokenResponse.access_token || Constants.EMPTY_STRING, this.clientId, idTokenClaims?.tid || authority.tenant, responseScopes.printScopes(), tokenExpirationSeconds, extendedTokenExpirationSeconds, this.cryptoObj, refreshOnSeconds, serverTokenResponse.token_type, userAssertionHash, serverTokenResponse.key_id, request.claims, request.requestedClaimsHash);\n }\n // refreshToken\n let cachedRefreshToken = null;\n if (serverTokenResponse.refresh_token) {\n cachedRefreshToken = RefreshTokenEntity.createRefreshTokenEntity(this.homeAccountIdentifier, env, serverTokenResponse.refresh_token || Constants.EMPTY_STRING, this.clientId, serverTokenResponse.foci, userAssertionHash);\n }\n // appMetadata\n let cachedAppMetadata = null;\n if (serverTokenResponse.foci) {\n cachedAppMetadata = AppMetadataEntity.createAppMetadataEntity(this.clientId, env, serverTokenResponse.foci);\n }\n return new CacheRecord(cachedAccount, cachedIdToken, cachedAccessToken, cachedRefreshToken, cachedAppMetadata);\n }\n /**\n * Creates an @AuthenticationResult from @CacheRecord , @IdToken , and a boolean that states whether or not the result is from cache.\n *\n * Optionally takes a state string that is set as-is in the response.\n *\n * @param cacheRecord\n * @param idTokenObj\n * @param fromTokenCache\n * @param stateString\n */\n static async generateAuthenticationResult(cryptoObj, authority, cacheRecord, fromTokenCache, request, idTokenClaims, requestState, serverTokenResponse, requestId) {\n let accessToken = Constants.EMPTY_STRING;\n let responseScopes = [];\n let expiresOn = null;\n let extExpiresOn;\n let refreshOn;\n let familyId = Constants.EMPTY_STRING;\n if (cacheRecord.accessToken) {\n if (cacheRecord.accessToken.tokenType === AuthenticationScheme.POP) {\n const popTokenGenerator = new PopTokenGenerator(cryptoObj);\n const { secret, keyId } = cacheRecord.accessToken;\n if (!keyId) {\n throw createClientAuthError(keyIdMissing);\n }\n accessToken = await popTokenGenerator.signPopToken(secret, keyId, request);\n }\n else {\n accessToken = cacheRecord.accessToken.secret;\n }\n responseScopes = ScopeSet.fromString(cacheRecord.accessToken.target).asArray();\n expiresOn = new Date(Number(cacheRecord.accessToken.expiresOn) * 1000);\n extExpiresOn = new Date(Number(cacheRecord.accessToken.extendedExpiresOn) * 1000);\n if (cacheRecord.accessToken.refreshOn) {\n refreshOn = new Date(Number(cacheRecord.accessToken.refreshOn) * 1000);\n }\n }\n if (cacheRecord.appMetadata) {\n familyId =\n cacheRecord.appMetadata.familyId === THE_FAMILY_ID\n ? THE_FAMILY_ID\n : \"\";\n }\n const uid = idTokenClaims?.oid || idTokenClaims?.sub || \"\";\n const tid = idTokenClaims?.tid || \"\";\n // for hybrid + native bridge enablement, send back the native account Id\n if (serverTokenResponse?.spa_accountid && !!cacheRecord.account) {\n cacheRecord.account.nativeAccountId =\n serverTokenResponse?.spa_accountid;\n }\n return {\n authority: authority.canonicalAuthority,\n uniqueId: uid,\n tenantId: tid,\n scopes: responseScopes,\n account: cacheRecord.account\n ? cacheRecord.account.getAccountInfo()\n : null,\n idToken: cacheRecord?.idToken?.secret || \"\",\n idTokenClaims: idTokenClaims || {},\n accessToken: accessToken,\n fromCache: fromTokenCache,\n expiresOn: expiresOn,\n extExpiresOn: extExpiresOn,\n refreshOn: refreshOn,\n correlationId: request.correlationId,\n requestId: requestId || Constants.EMPTY_STRING,\n familyId: familyId,\n tokenType: cacheRecord.accessToken?.tokenType || Constants.EMPTY_STRING,\n state: requestState\n ? requestState.userRequestState\n : Constants.EMPTY_STRING,\n cloudGraphHostName: cacheRecord.account?.cloudGraphHostName ||\n Constants.EMPTY_STRING,\n msGraphHost: cacheRecord.account?.msGraphHost || Constants.EMPTY_STRING,\n code: serverTokenResponse?.spa_code,\n fromNativeBroker: false,\n };\n }\n}\n\nexport { ResponseHandler };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { BaseClient } from './BaseClient.mjs';\nimport { RequestParameterBuilder } from '../request/RequestParameterBuilder.mjs';\nimport { Separators, AADServerParamKeys, GrantType, AuthenticationScheme, PromptValue, HeaderNames } from '../utils/Constants.mjs';\nimport { isOidcProtocolMode } from '../config/ClientConfiguration.mjs';\nimport { ResponseHandler } from '../response/ResponseHandler.mjs';\nimport { StringUtils } from '../utils/StringUtils.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { UrlString } from '../url/UrlString.mjs';\nimport { PopTokenGenerator } from '../crypto/PopTokenGenerator.mjs';\nimport { TimeUtils } from '../utils/TimeUtils.mjs';\nimport { buildClientInfo, buildClientInfoFromHomeAccountId } from '../account/ClientInfo.mjs';\nimport { CcsCredentialType } from '../account/CcsCredential.mjs';\nimport { createClientConfigurationError } from '../error/ClientConfigurationError.mjs';\nimport { RequestValidator } from '../request/RequestValidator.mjs';\nimport { PerformanceEvents } from '../telemetry/performance/PerformanceEvent.mjs';\nimport { invokeAsync } from '../utils/FunctionWrappers.mjs';\nimport { requestCannotBeMade, authorizationCodeMissingFromServerResponse } from '../error/ClientAuthErrorCodes.mjs';\nimport { logoutRequestEmpty, missingSshJwk } from '../error/ClientConfigurationErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Oauth2.0 Authorization Code client\n * @internal\n */\nclass AuthorizationCodeClient extends BaseClient {\n constructor(configuration, performanceClient) {\n super(configuration, performanceClient);\n // Flag to indicate if client is for hybrid spa auth code redemption\n this.includeRedirectUri = true;\n this.oidcDefaultScopes =\n this.config.authOptions.authority.options.OIDCOptions?.defaultScopes;\n }\n /**\n * Creates the URL of the authorization request letting the user input credentials and consent to the\n * application. The URL target the /authorize endpoint of the authority configured in the\n * application object.\n *\n * Once the user inputs their credentials and consents, the authority will send a response to the redirect URI\n * sent in the request and should contain an authorization code, which can then be used to acquire tokens via\n * acquireToken(AuthorizationCodeRequest)\n * @param request\n */\n async getAuthCodeUrl(request) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.GetAuthCodeUrl, request.correlationId);\n const queryString = await invokeAsync(this.createAuthCodeUrlQueryString.bind(this), PerformanceEvents.AuthClientCreateQueryString, this.logger, this.performanceClient, request.correlationId)(request);\n return UrlString.appendQueryString(this.authority.authorizationEndpoint, queryString);\n }\n /**\n * API to acquire a token in exchange of 'authorization_code` acquired by the user in the first leg of the\n * authorization_code_grant\n * @param request\n */\n async acquireToken(request, authCodePayload) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.AuthClientAcquireToken, request.correlationId);\n if (!request.code) {\n throw createClientAuthError(requestCannotBeMade);\n }\n const reqTimestamp = TimeUtils.nowSeconds();\n const response = await invokeAsync(this.executeTokenRequest.bind(this), PerformanceEvents.AuthClientExecuteTokenRequest, this.logger, this.performanceClient, request.correlationId)(this.authority, request);\n // Retrieve requestId from response headers\n const requestId = response.headers?.[HeaderNames.X_MS_REQUEST_ID];\n const responseHandler = new ResponseHandler(this.config.authOptions.clientId, this.cacheManager, this.cryptoUtils, this.logger, this.config.serializableCache, this.config.persistencePlugin, this.performanceClient);\n // Validate response. This function throws a server error if an error is returned by the server.\n responseHandler.validateTokenResponse(response.body);\n return invokeAsync(responseHandler.handleServerTokenResponse.bind(responseHandler), PerformanceEvents.HandleServerTokenResponse, this.logger, this.performanceClient, request.correlationId)(response.body, this.authority, reqTimestamp, request, authCodePayload, undefined, undefined, undefined, requestId);\n }\n /**\n * Handles the hash fragment response from public client code request. Returns a code response used by\n * the client to exchange for a token in acquireToken.\n * @param hashFragment\n */\n handleFragmentResponse(hashFragment, cachedState) {\n // Handle responses.\n const responseHandler = new ResponseHandler(this.config.authOptions.clientId, this.cacheManager, this.cryptoUtils, this.logger, null, null);\n const serverParams = UrlString.getDeserializedCodeResponse(this.config.authOptions.authority.options.OIDCOptions\n ?.serverResponseType, hashFragment);\n // Get code response\n responseHandler.validateServerAuthorizationCodeResponse(serverParams, cachedState, this.cryptoUtils);\n // throw when there is no auth code in the response\n if (!serverParams.code) {\n throw createClientAuthError(authorizationCodeMissingFromServerResponse);\n }\n return {\n ...serverParams,\n // Code param is optional in ServerAuthorizationCodeResponse but required in AuthorizationCodePaylod\n code: serverParams.code,\n };\n }\n /**\n * Used to log out the current user, and redirect the user to the postLogoutRedirectUri.\n * Default behaviour is to redirect the user to `window.location.href`.\n * @param authorityUri\n */\n getLogoutUri(logoutRequest) {\n // Throw error if logoutRequest is null/undefined\n if (!logoutRequest) {\n throw createClientConfigurationError(logoutRequestEmpty);\n }\n const queryString = this.createLogoutUrlQueryString(logoutRequest);\n // Construct logout URI\n return UrlString.appendQueryString(this.authority.endSessionEndpoint, queryString);\n }\n /**\n * Executes POST request to token endpoint\n * @param authority\n * @param request\n */\n async executeTokenRequest(authority, request) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.AuthClientExecuteTokenRequest, request.correlationId);\n const queryParametersString = this.createTokenQueryParameters(request);\n const endpoint = UrlString.appendQueryString(authority.tokenEndpoint, queryParametersString);\n const requestBody = await invokeAsync(this.createTokenRequestBody.bind(this), PerformanceEvents.AuthClientCreateTokenRequestBody, this.logger, this.performanceClient, request.correlationId)(request);\n let ccsCredential = undefined;\n if (request.clientInfo) {\n try {\n const clientInfo = buildClientInfo(request.clientInfo, this.cryptoUtils);\n ccsCredential = {\n credential: `${clientInfo.uid}${Separators.CLIENT_INFO_SEPARATOR}${clientInfo.utid}`,\n type: CcsCredentialType.HOME_ACCOUNT_ID,\n };\n }\n catch (e) {\n this.logger.verbose(\"Could not parse client info for CCS Header: \" + e);\n }\n }\n const headers = this.createTokenRequestHeaders(ccsCredential || request.ccsCredential);\n const thumbprint = {\n clientId: request.tokenBodyParameters?.clientId ||\n this.config.authOptions.clientId,\n authority: authority.canonicalAuthority,\n scopes: request.scopes,\n claims: request.claims,\n authenticationScheme: request.authenticationScheme,\n resourceRequestMethod: request.resourceRequestMethod,\n resourceRequestUri: request.resourceRequestUri,\n shrClaims: request.shrClaims,\n sshKid: request.sshKid,\n };\n return invokeAsync(this.executePostToTokenEndpoint.bind(this), PerformanceEvents.BaseClientExecutePostToTokenEndpoint, this.logger, this.performanceClient, request.correlationId)(endpoint, requestBody, headers, thumbprint, request.correlationId);\n }\n /**\n * Generates a map for all the params to be sent to the service\n * @param request\n */\n async createTokenRequestBody(request) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.AuthClientCreateTokenRequestBody, request.correlationId);\n const parameterBuilder = new RequestParameterBuilder();\n parameterBuilder.addClientId(request.tokenBodyParameters?.[AADServerParamKeys.CLIENT_ID] ||\n this.config.authOptions.clientId);\n /*\n * For hybrid spa flow, there will be a code but no verifier\n * In this scenario, don't include redirect uri as auth code will not be bound to redirect URI\n */\n if (!this.includeRedirectUri) {\n // Just validate\n RequestValidator.validateRedirectUri(request.redirectUri);\n }\n else {\n // Validate and include redirect uri\n parameterBuilder.addRedirectUri(request.redirectUri);\n }\n // Add scope array, parameter builder will add default scopes and dedupe\n parameterBuilder.addScopes(request.scopes, true, this.oidcDefaultScopes);\n // add code: user set, not validated\n parameterBuilder.addAuthorizationCode(request.code);\n // Add library metadata\n parameterBuilder.addLibraryInfo(this.config.libraryInfo);\n parameterBuilder.addApplicationTelemetry(this.config.telemetry.application);\n parameterBuilder.addThrottling();\n if (this.serverTelemetryManager && !isOidcProtocolMode(this.config)) {\n parameterBuilder.addServerTelemetry(this.serverTelemetryManager);\n }\n // add code_verifier if passed\n if (request.codeVerifier) {\n parameterBuilder.addCodeVerifier(request.codeVerifier);\n }\n if (this.config.clientCredentials.clientSecret) {\n parameterBuilder.addClientSecret(this.config.clientCredentials.clientSecret);\n }\n if (this.config.clientCredentials.clientAssertion) {\n const clientAssertion = this.config.clientCredentials.clientAssertion;\n parameterBuilder.addClientAssertion(clientAssertion.assertion);\n parameterBuilder.addClientAssertionType(clientAssertion.assertionType);\n }\n parameterBuilder.addGrantType(GrantType.AUTHORIZATION_CODE_GRANT);\n parameterBuilder.addClientInfo();\n if (request.authenticationScheme === AuthenticationScheme.POP) {\n const popTokenGenerator = new PopTokenGenerator(this.cryptoUtils, this.performanceClient);\n const reqCnfData = await invokeAsync(popTokenGenerator.generateCnf.bind(popTokenGenerator), PerformanceEvents.PopTokenGenerateCnf, this.logger, this.performanceClient, request.correlationId)(request, this.logger);\n // SPA PoP requires full Base64Url encoded req_cnf string (unhashed)\n parameterBuilder.addPopToken(reqCnfData.reqCnfString);\n }\n else if (request.authenticationScheme === AuthenticationScheme.SSH) {\n if (request.sshJwk) {\n parameterBuilder.addSshJwk(request.sshJwk);\n }\n else {\n throw createClientConfigurationError(missingSshJwk);\n }\n }\n const correlationId = request.correlationId ||\n this.config.cryptoInterface.createNewGuid();\n parameterBuilder.addCorrelationId(correlationId);\n if (!StringUtils.isEmptyObj(request.claims) ||\n (this.config.authOptions.clientCapabilities &&\n this.config.authOptions.clientCapabilities.length > 0)) {\n parameterBuilder.addClaims(request.claims, this.config.authOptions.clientCapabilities);\n }\n let ccsCred = undefined;\n if (request.clientInfo) {\n try {\n const clientInfo = buildClientInfo(request.clientInfo, this.cryptoUtils);\n ccsCred = {\n credential: `${clientInfo.uid}${Separators.CLIENT_INFO_SEPARATOR}${clientInfo.utid}`,\n type: CcsCredentialType.HOME_ACCOUNT_ID,\n };\n }\n catch (e) {\n this.logger.verbose(\"Could not parse client info for CCS Header: \" + e);\n }\n }\n else {\n ccsCred = request.ccsCredential;\n }\n // Adds these as parameters in the request instead of headers to prevent CORS preflight request\n if (this.config.systemOptions.preventCorsPreflight && ccsCred) {\n switch (ccsCred.type) {\n case CcsCredentialType.HOME_ACCOUNT_ID:\n try {\n const clientInfo = buildClientInfoFromHomeAccountId(ccsCred.credential);\n parameterBuilder.addCcsOid(clientInfo);\n }\n catch (e) {\n this.logger.verbose(\"Could not parse home account ID for CCS Header: \" +\n e);\n }\n break;\n case CcsCredentialType.UPN:\n parameterBuilder.addCcsUpn(ccsCred.credential);\n break;\n }\n }\n if (request.tokenBodyParameters) {\n parameterBuilder.addExtraQueryParameters(request.tokenBodyParameters);\n }\n // Add hybrid spa parameters if not already provided\n if (request.enableSpaAuthorizationCode &&\n (!request.tokenBodyParameters ||\n !request.tokenBodyParameters[AADServerParamKeys.RETURN_SPA_CODE])) {\n parameterBuilder.addExtraQueryParameters({\n [AADServerParamKeys.RETURN_SPA_CODE]: \"1\",\n });\n }\n return parameterBuilder.createQueryString();\n }\n /**\n * This API validates the `AuthorizationCodeUrlRequest` and creates a URL\n * @param request\n */\n async createAuthCodeUrlQueryString(request) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.AuthClientCreateQueryString, request.correlationId);\n const parameterBuilder = new RequestParameterBuilder();\n parameterBuilder.addClientId(request.extraQueryParameters?.[AADServerParamKeys.CLIENT_ID] ||\n this.config.authOptions.clientId);\n const requestScopes = [\n ...(request.scopes || []),\n ...(request.extraScopesToConsent || []),\n ];\n parameterBuilder.addScopes(requestScopes, true, this.oidcDefaultScopes);\n // validate the redirectUri (to be a non null value)\n parameterBuilder.addRedirectUri(request.redirectUri);\n // generate the correlationId if not set by the user and add\n const correlationId = request.correlationId ||\n this.config.cryptoInterface.createNewGuid();\n parameterBuilder.addCorrelationId(correlationId);\n // add response_mode. If not passed in it defaults to query.\n parameterBuilder.addResponseMode(request.responseMode);\n // add response_type = code\n parameterBuilder.addResponseTypeCode();\n // add library info parameters\n parameterBuilder.addLibraryInfo(this.config.libraryInfo);\n if (!isOidcProtocolMode(this.config)) {\n parameterBuilder.addApplicationTelemetry(this.config.telemetry.application);\n }\n // add client_info=1\n parameterBuilder.addClientInfo();\n if (request.codeChallenge && request.codeChallengeMethod) {\n parameterBuilder.addCodeChallengeParams(request.codeChallenge, request.codeChallengeMethod);\n }\n if (request.prompt) {\n parameterBuilder.addPrompt(request.prompt);\n }\n if (request.domainHint) {\n parameterBuilder.addDomainHint(request.domainHint);\n }\n // Add sid or loginHint with preference for login_hint claim (in request) -> sid -> loginHint (upn/email) -> username of AccountInfo object\n if (request.prompt !== PromptValue.SELECT_ACCOUNT) {\n // AAD will throw if prompt=select_account is passed with an account hint\n if (request.sid && request.prompt === PromptValue.NONE) {\n // SessionID is only used in silent calls\n this.logger.verbose(\"createAuthCodeUrlQueryString: Prompt is none, adding sid from request\");\n parameterBuilder.addSid(request.sid);\n }\n else if (request.account) {\n const accountSid = this.extractAccountSid(request.account);\n const accountLoginHintClaim = this.extractLoginHint(request.account);\n // If login_hint claim is present, use it over sid/username\n if (accountLoginHintClaim) {\n this.logger.verbose(\"createAuthCodeUrlQueryString: login_hint claim present on account\");\n parameterBuilder.addLoginHint(accountLoginHintClaim);\n try {\n const clientInfo = buildClientInfoFromHomeAccountId(request.account.homeAccountId);\n parameterBuilder.addCcsOid(clientInfo);\n }\n catch (e) {\n this.logger.verbose(\"createAuthCodeUrlQueryString: Could not parse home account ID for CCS Header\");\n }\n }\n else if (accountSid && request.prompt === PromptValue.NONE) {\n /*\n * If account and loginHint are provided, we will check account first for sid before adding loginHint\n * SessionId is only used in silent calls\n */\n this.logger.verbose(\"createAuthCodeUrlQueryString: Prompt is none, adding sid from account\");\n parameterBuilder.addSid(accountSid);\n try {\n const clientInfo = buildClientInfoFromHomeAccountId(request.account.homeAccountId);\n parameterBuilder.addCcsOid(clientInfo);\n }\n catch (e) {\n this.logger.verbose(\"createAuthCodeUrlQueryString: Could not parse home account ID for CCS Header\");\n }\n }\n else if (request.loginHint) {\n this.logger.verbose(\"createAuthCodeUrlQueryString: Adding login_hint from request\");\n parameterBuilder.addLoginHint(request.loginHint);\n parameterBuilder.addCcsUpn(request.loginHint);\n }\n else if (request.account.username) {\n // Fallback to account username if provided\n this.logger.verbose(\"createAuthCodeUrlQueryString: Adding login_hint from account\");\n parameterBuilder.addLoginHint(request.account.username);\n try {\n const clientInfo = buildClientInfoFromHomeAccountId(request.account.homeAccountId);\n parameterBuilder.addCcsOid(clientInfo);\n }\n catch (e) {\n this.logger.verbose(\"createAuthCodeUrlQueryString: Could not parse home account ID for CCS Header\");\n }\n }\n }\n else if (request.loginHint) {\n this.logger.verbose(\"createAuthCodeUrlQueryString: No account, adding login_hint from request\");\n parameterBuilder.addLoginHint(request.loginHint);\n parameterBuilder.addCcsUpn(request.loginHint);\n }\n }\n else {\n this.logger.verbose(\"createAuthCodeUrlQueryString: Prompt is select_account, ignoring account hints\");\n }\n if (request.nonce) {\n parameterBuilder.addNonce(request.nonce);\n }\n if (request.state) {\n parameterBuilder.addState(request.state);\n }\n if (request.claims ||\n (this.config.authOptions.clientCapabilities &&\n this.config.authOptions.clientCapabilities.length > 0)) {\n parameterBuilder.addClaims(request.claims, this.config.authOptions.clientCapabilities);\n }\n if (request.extraQueryParameters) {\n parameterBuilder.addExtraQueryParameters(request.extraQueryParameters);\n }\n if (request.nativeBroker) {\n // signal ests that this is a WAM call\n parameterBuilder.addNativeBroker();\n // pass the req_cnf for POP\n if (request.authenticationScheme === AuthenticationScheme.POP) {\n const popTokenGenerator = new PopTokenGenerator(this.cryptoUtils);\n // to reduce the URL length, it is recommended to send the hash of the req_cnf instead of the whole string\n const reqCnfData = await invokeAsync(popTokenGenerator.generateCnf.bind(popTokenGenerator), PerformanceEvents.PopTokenGenerateCnf, this.logger, this.performanceClient, request.correlationId)(request, this.logger);\n parameterBuilder.addPopToken(reqCnfData.reqCnfHash);\n }\n }\n return parameterBuilder.createQueryString();\n }\n /**\n * This API validates the `EndSessionRequest` and creates a URL\n * @param request\n */\n createLogoutUrlQueryString(request) {\n const parameterBuilder = new RequestParameterBuilder();\n if (request.postLogoutRedirectUri) {\n parameterBuilder.addPostLogoutRedirectUri(request.postLogoutRedirectUri);\n }\n if (request.correlationId) {\n parameterBuilder.addCorrelationId(request.correlationId);\n }\n if (request.idTokenHint) {\n parameterBuilder.addIdTokenHint(request.idTokenHint);\n }\n if (request.state) {\n parameterBuilder.addState(request.state);\n }\n if (request.logoutHint) {\n parameterBuilder.addLogoutHint(request.logoutHint);\n }\n if (request.extraQueryParameters) {\n parameterBuilder.addExtraQueryParameters(request.extraQueryParameters);\n }\n return parameterBuilder.createQueryString();\n }\n /**\n * Helper to get sid from account. Returns null if idTokenClaims are not present or sid is not present.\n * @param account\n */\n extractAccountSid(account) {\n return account.idTokenClaims?.sid || null;\n }\n extractLoginHint(account) {\n return account.idTokenClaims?.login_hint || null;\n }\n}\n\nexport { AuthorizationCodeClient };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { isOidcProtocolMode } from '../config/ClientConfiguration.mjs';\nimport { BaseClient } from './BaseClient.mjs';\nimport { RequestParameterBuilder } from '../request/RequestParameterBuilder.mjs';\nimport { AADServerParamKeys, GrantType, AuthenticationScheme, HeaderNames, Errors } from '../utils/Constants.mjs';\nimport { ResponseHandler } from '../response/ResponseHandler.mjs';\nimport { PopTokenGenerator } from '../crypto/PopTokenGenerator.mjs';\nimport { StringUtils } from '../utils/StringUtils.mjs';\nimport { createClientConfigurationError } from '../error/ClientConfigurationError.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { ServerError } from '../error/ServerError.mjs';\nimport { TimeUtils } from '../utils/TimeUtils.mjs';\nimport { UrlString } from '../url/UrlString.mjs';\nimport { CcsCredentialType } from '../account/CcsCredential.mjs';\nimport { buildClientInfoFromHomeAccountId } from '../account/ClientInfo.mjs';\nimport { createInteractionRequiredAuthError, InteractionRequiredAuthError } from '../error/InteractionRequiredAuthError.mjs';\nimport { PerformanceEvents } from '../telemetry/performance/PerformanceEvent.mjs';\nimport { invokeAsync } from '../utils/FunctionWrappers.mjs';\nimport { tokenRequestEmpty, missingSshJwk } from '../error/ClientConfigurationErrorCodes.mjs';\nimport { noAccountInSilentRequest } from '../error/ClientAuthErrorCodes.mjs';\nimport { noTokensFound } from '../error/InteractionRequiredAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * OAuth2.0 refresh token client\n * @internal\n */\nclass RefreshTokenClient extends BaseClient {\n constructor(configuration, performanceClient) {\n super(configuration, performanceClient);\n }\n async acquireToken(request) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.RefreshTokenClientAcquireToken, request.correlationId);\n const reqTimestamp = TimeUtils.nowSeconds();\n const response = await invokeAsync(this.executeTokenRequest.bind(this), PerformanceEvents.RefreshTokenClientExecuteTokenRequest, this.logger, this.performanceClient, request.correlationId)(request, this.authority);\n // Retrieve requestId from response headers\n const requestId = response.headers?.[HeaderNames.X_MS_REQUEST_ID];\n const responseHandler = new ResponseHandler(this.config.authOptions.clientId, this.cacheManager, this.cryptoUtils, this.logger, this.config.serializableCache, this.config.persistencePlugin);\n responseHandler.validateTokenResponse(response.body);\n return invokeAsync(responseHandler.handleServerTokenResponse.bind(responseHandler), PerformanceEvents.HandleServerTokenResponse, this.logger, this.performanceClient, request.correlationId)(response.body, this.authority, reqTimestamp, request, undefined, undefined, true, request.forceCache, requestId);\n }\n /**\n * Gets cached refresh token and attaches to request, then calls acquireToken API\n * @param request\n */\n async acquireTokenByRefreshToken(request) {\n // Cannot renew token if no request object is given.\n if (!request) {\n throw createClientConfigurationError(tokenRequestEmpty);\n }\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.RefreshTokenClientAcquireTokenByRefreshToken, request.correlationId);\n // We currently do not support silent flow for account === null use cases; This will be revisited for confidential flow usecases\n if (!request.account) {\n throw createClientAuthError(noAccountInSilentRequest);\n }\n // try checking if FOCI is enabled for the given application\n const isFOCI = this.cacheManager.isAppMetadataFOCI(request.account.environment);\n // if the app is part of the family, retrive a Family refresh token if present and make a refreshTokenRequest\n if (isFOCI) {\n try {\n return invokeAsync(this.acquireTokenWithCachedRefreshToken.bind(this), PerformanceEvents.RefreshTokenClientAcquireTokenWithCachedRefreshToken, this.logger, this.performanceClient, request.correlationId)(request, true);\n }\n catch (e) {\n const noFamilyRTInCache = e instanceof InteractionRequiredAuthError &&\n e.errorCode ===\n noTokensFound;\n const clientMismatchErrorWithFamilyRT = e instanceof ServerError &&\n e.errorCode === Errors.INVALID_GRANT_ERROR &&\n e.subError === Errors.CLIENT_MISMATCH_ERROR;\n // if family Refresh Token (FRT) cache acquisition fails or if client_mismatch error is seen with FRT, reattempt with application Refresh Token (ART)\n if (noFamilyRTInCache || clientMismatchErrorWithFamilyRT) {\n return invokeAsync(this.acquireTokenWithCachedRefreshToken.bind(this), PerformanceEvents.RefreshTokenClientAcquireTokenWithCachedRefreshToken, this.logger, this.performanceClient, request.correlationId)(request, false);\n // throw in all other cases\n }\n else {\n throw e;\n }\n }\n }\n // fall back to application refresh token acquisition\n return invokeAsync(this.acquireTokenWithCachedRefreshToken.bind(this), PerformanceEvents.RefreshTokenClientAcquireTokenWithCachedRefreshToken, this.logger, this.performanceClient, request.correlationId)(request, false);\n }\n /**\n * makes a network call to acquire tokens by exchanging RefreshToken available in userCache; throws if refresh token is not cached\n * @param request\n */\n async acquireTokenWithCachedRefreshToken(request, foci) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.RefreshTokenClientAcquireTokenWithCachedRefreshToken, request.correlationId);\n // fetches family RT or application RT based on FOCI value\n const refreshToken = this.cacheManager.getRefreshToken(request.account, foci);\n if (!refreshToken) {\n throw createInteractionRequiredAuthError(noTokensFound);\n }\n // attach cached RT size to the current measurement\n const refreshTokenRequest = {\n ...request,\n refreshToken: refreshToken.secret,\n authenticationScheme: request.authenticationScheme || AuthenticationScheme.BEARER,\n ccsCredential: {\n credential: request.account.homeAccountId,\n type: CcsCredentialType.HOME_ACCOUNT_ID,\n },\n };\n return invokeAsync(this.acquireToken.bind(this), PerformanceEvents.RefreshTokenClientAcquireToken, this.logger, this.performanceClient, request.correlationId)(refreshTokenRequest);\n }\n /**\n * Constructs the network message and makes a NW call to the underlying secure token service\n * @param request\n * @param authority\n */\n async executeTokenRequest(request, authority) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.RefreshTokenClientExecuteTokenRequest, request.correlationId);\n const queryParametersString = this.createTokenQueryParameters(request);\n const endpoint = UrlString.appendQueryString(authority.tokenEndpoint, queryParametersString);\n const requestBody = await invokeAsync(this.createTokenRequestBody.bind(this), PerformanceEvents.RefreshTokenClientCreateTokenRequestBody, this.logger, this.performanceClient, request.correlationId)(request);\n const headers = this.createTokenRequestHeaders(request.ccsCredential);\n const thumbprint = {\n clientId: request.tokenBodyParameters?.clientId ||\n this.config.authOptions.clientId,\n authority: authority.canonicalAuthority,\n scopes: request.scopes,\n claims: request.claims,\n authenticationScheme: request.authenticationScheme,\n resourceRequestMethod: request.resourceRequestMethod,\n resourceRequestUri: request.resourceRequestUri,\n shrClaims: request.shrClaims,\n sshKid: request.sshKid,\n };\n return invokeAsync(this.executePostToTokenEndpoint.bind(this), PerformanceEvents.BaseClientExecutePostToTokenEndpoint, this.logger, this.performanceClient, request.correlationId)(endpoint, requestBody, headers, thumbprint, request.correlationId);\n }\n /**\n * Helper function to create the token request body\n * @param request\n */\n async createTokenRequestBody(request) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.RefreshTokenClientCreateTokenRequestBody, request.correlationId);\n const correlationId = request.correlationId;\n const parameterBuilder = new RequestParameterBuilder();\n parameterBuilder.addClientId(request.tokenBodyParameters?.[AADServerParamKeys.CLIENT_ID] ||\n this.config.authOptions.clientId);\n if (request.redirectUri) {\n parameterBuilder.addRedirectUri(request.redirectUri);\n }\n parameterBuilder.addScopes(request.scopes, true, this.config.authOptions.authority.options.OIDCOptions?.defaultScopes);\n parameterBuilder.addGrantType(GrantType.REFRESH_TOKEN_GRANT);\n parameterBuilder.addClientInfo();\n parameterBuilder.addLibraryInfo(this.config.libraryInfo);\n parameterBuilder.addApplicationTelemetry(this.config.telemetry.application);\n parameterBuilder.addThrottling();\n if (this.serverTelemetryManager && !isOidcProtocolMode(this.config)) {\n parameterBuilder.addServerTelemetry(this.serverTelemetryManager);\n }\n parameterBuilder.addCorrelationId(correlationId);\n parameterBuilder.addRefreshToken(request.refreshToken);\n if (this.config.clientCredentials.clientSecret) {\n parameterBuilder.addClientSecret(this.config.clientCredentials.clientSecret);\n }\n if (this.config.clientCredentials.clientAssertion) {\n const clientAssertion = this.config.clientCredentials.clientAssertion;\n parameterBuilder.addClientAssertion(clientAssertion.assertion);\n parameterBuilder.addClientAssertionType(clientAssertion.assertionType);\n }\n if (request.authenticationScheme === AuthenticationScheme.POP) {\n const popTokenGenerator = new PopTokenGenerator(this.cryptoUtils, this.performanceClient);\n const reqCnfData = await invokeAsync(popTokenGenerator.generateCnf.bind(popTokenGenerator), PerformanceEvents.PopTokenGenerateCnf, this.logger, this.performanceClient, request.correlationId)(request, this.logger);\n // SPA PoP requires full Base64Url encoded req_cnf string (unhashed)\n parameterBuilder.addPopToken(reqCnfData.reqCnfString);\n }\n else if (request.authenticationScheme === AuthenticationScheme.SSH) {\n if (request.sshJwk) {\n parameterBuilder.addSshJwk(request.sshJwk);\n }\n else {\n throw createClientConfigurationError(missingSshJwk);\n }\n }\n if (!StringUtils.isEmptyObj(request.claims) ||\n (this.config.authOptions.clientCapabilities &&\n this.config.authOptions.clientCapabilities.length > 0)) {\n parameterBuilder.addClaims(request.claims, this.config.authOptions.clientCapabilities);\n }\n if (this.config.systemOptions.preventCorsPreflight &&\n request.ccsCredential) {\n switch (request.ccsCredential.type) {\n case CcsCredentialType.HOME_ACCOUNT_ID:\n try {\n const clientInfo = buildClientInfoFromHomeAccountId(request.ccsCredential.credential);\n parameterBuilder.addCcsOid(clientInfo);\n }\n catch (e) {\n this.logger.verbose(\"Could not parse home account ID for CCS Header: \" +\n e);\n }\n break;\n case CcsCredentialType.UPN:\n parameterBuilder.addCcsUpn(request.ccsCredential.credential);\n break;\n }\n }\n if (request.tokenBodyParameters) {\n parameterBuilder.addExtraQueryParameters(request.tokenBodyParameters);\n }\n return parameterBuilder.createQueryString();\n }\n}\n\nexport { RefreshTokenClient };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { BaseClient } from './BaseClient.mjs';\nimport { TimeUtils } from '../utils/TimeUtils.mjs';\nimport { RefreshTokenClient } from './RefreshTokenClient.mjs';\nimport { ClientAuthError, createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { createClientConfigurationError } from '../error/ClientConfigurationError.mjs';\nimport { ResponseHandler } from '../response/ResponseHandler.mjs';\nimport { CacheOutcome } from '../utils/Constants.mjs';\nimport { StringUtils } from '../utils/StringUtils.mjs';\nimport { extractTokenClaims, checkMaxAge } from '../account/AuthToken.mjs';\nimport { tokenRefreshRequired, noAccountInSilentRequest, authTimeNotFound } from '../error/ClientAuthErrorCodes.mjs';\nimport { tokenRequestEmpty } from '../error/ClientConfigurationErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/** @internal */\nclass SilentFlowClient extends BaseClient {\n constructor(configuration, performanceClient) {\n super(configuration, performanceClient);\n }\n /**\n * Retrieves a token from cache if it is still valid, or uses the cached refresh token to renew\n * the given token and returns the renewed token\n * @param request\n */\n async acquireToken(request) {\n try {\n const [authResponse, cacheOutcome] = await this.acquireCachedToken(request);\n // if the token is not expired but must be refreshed; get a new one in the background\n if (cacheOutcome === CacheOutcome.PROACTIVELY_REFRESHED) {\n this.logger.info(\"SilentFlowClient:acquireCachedToken - Cached access token's refreshOn property has been exceeded'. It's not expired, but must be refreshed.\");\n // refresh the access token in the background\n const refreshTokenClient = new RefreshTokenClient(this.config, this.performanceClient);\n refreshTokenClient\n .acquireTokenByRefreshToken(request)\n .catch(() => {\n // do nothing, this is running in the background and no action is to be taken upon success or failure\n });\n }\n // return the cached token\n return authResponse;\n }\n catch (e) {\n if (e instanceof ClientAuthError &&\n e.errorCode === tokenRefreshRequired) {\n const refreshTokenClient = new RefreshTokenClient(this.config, this.performanceClient);\n return refreshTokenClient.acquireTokenByRefreshToken(request);\n }\n else {\n throw e;\n }\n }\n }\n /**\n * Retrieves token from cache or throws an error if it must be refreshed.\n * @param request\n */\n async acquireCachedToken(request) {\n let lastCacheOutcome = CacheOutcome.NOT_APPLICABLE;\n // Cannot renew token if no request object is given.\n if (!request) {\n throw createClientConfigurationError(tokenRequestEmpty);\n }\n if (request.forceRefresh) {\n // Must refresh due to present force_refresh flag.\n lastCacheOutcome = CacheOutcome.FORCE_REFRESH_OR_CLAIMS;\n this.serverTelemetryManager?.setCacheOutcome(CacheOutcome.FORCE_REFRESH_OR_CLAIMS);\n this.logger.info(\"SilentFlowClient:acquireCachedToken - Skipping cache because forceRefresh is true.\");\n throw createClientAuthError(tokenRefreshRequired);\n }\n else if (!this.config.cacheOptions.claimsBasedCachingEnabled &&\n !StringUtils.isEmptyObj(request.claims)) {\n lastCacheOutcome = CacheOutcome.FORCE_REFRESH_OR_CLAIMS;\n // Must refresh due to request parameters.\n this.logger.info(\"SilentFlowClient:acquireCachedToken - Skipping cache because claims-based caching is disabled and claims were requested.\");\n throw createClientAuthError(tokenRefreshRequired);\n }\n // We currently do not support silent flow for account === null use cases; This will be revisited for confidential flow usecases\n if (!request.account) {\n throw createClientAuthError(noAccountInSilentRequest);\n }\n const environment = request.authority || this.authority.getPreferredCache();\n const cacheRecord = this.cacheManager.readCacheRecord(request.account, request, environment);\n if (!cacheRecord.accessToken) {\n // must refresh due to non-existent access_token\n lastCacheOutcome = CacheOutcome.NO_CACHED_ACCESS_TOKEN;\n this.serverTelemetryManager?.setCacheOutcome(CacheOutcome.NO_CACHED_ACCESS_TOKEN);\n this.logger.info(\"SilentFlowClient:acquireCachedToken - No access token found in cache for the given properties.\");\n throw createClientAuthError(tokenRefreshRequired);\n }\n else if (TimeUtils.wasClockTurnedBack(cacheRecord.accessToken.cachedAt) ||\n TimeUtils.isTokenExpired(cacheRecord.accessToken.expiresOn, this.config.systemOptions.tokenRenewalOffsetSeconds)) {\n // must refresh due to the expires_in value\n lastCacheOutcome = CacheOutcome.CACHED_ACCESS_TOKEN_EXPIRED;\n this.serverTelemetryManager?.setCacheOutcome(CacheOutcome.CACHED_ACCESS_TOKEN_EXPIRED);\n this.logger.info(`SilentFlowClient:acquireCachedToken - Cached access token is expired or will expire within ${this.config.systemOptions.tokenRenewalOffsetSeconds} seconds.`);\n throw createClientAuthError(tokenRefreshRequired);\n }\n else if (cacheRecord.accessToken.refreshOn &&\n TimeUtils.isTokenExpired(cacheRecord.accessToken.refreshOn, 0)) {\n // must refresh (in the background) due to the refresh_in value\n lastCacheOutcome = CacheOutcome.PROACTIVELY_REFRESHED;\n this.serverTelemetryManager?.setCacheOutcome(CacheOutcome.PROACTIVELY_REFRESHED);\n this.logger.info(\"SilentFlowClient:acquireCachedToken - Cached access token's refreshOn property has been exceeded'.\");\n // don't throw ClientAuthError.createRefreshRequiredError(), return cached token instead\n }\n if (this.config.serverTelemetryManager) {\n this.config.serverTelemetryManager.incrementCacheHits();\n }\n return [\n await this.generateResultFromCacheRecord(cacheRecord, request),\n lastCacheOutcome,\n ];\n }\n /**\n * Helper function to build response object from the CacheRecord\n * @param cacheRecord\n */\n async generateResultFromCacheRecord(cacheRecord, request) {\n let idTokenClaims;\n if (cacheRecord.idToken) {\n idTokenClaims = extractTokenClaims(cacheRecord.idToken.secret, this.config.cryptoInterface.base64Decode);\n }\n // token max_age check\n if (request.maxAge || request.maxAge === 0) {\n const authTime = idTokenClaims?.auth_time;\n if (!authTime) {\n throw createClientAuthError(authTimeNotFound);\n }\n checkMaxAge(authTime, request.maxAge);\n }\n return await ResponseHandler.generateAuthenticationResult(this.cryptoUtils, this.authority, cacheRecord, true, request, idTokenClaims);\n }\n}\n\nexport { SilentFlowClient };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nfunction isOpenIdConfigResponse(response) {\n return (response.hasOwnProperty(\"authorization_endpoint\") &&\n response.hasOwnProperty(\"token_endpoint\") &&\n response.hasOwnProperty(\"issuer\") &&\n response.hasOwnProperty(\"jwks_uri\"));\n}\n\nexport { isOpenIdConfigResponse };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst rawMetdataJSON = {\n endpointMetadata: {\n \"https://login.microsoftonline.com/common/\": {\n token_endpoint: \"https://login.microsoftonline.com/common/oauth2/v2.0/token\",\n token_endpoint_auth_methods_supported: [\n \"client_secret_post\",\n \"private_key_jwt\",\n \"client_secret_basic\",\n ],\n jwks_uri: \"https://login.microsoftonline.com/common/discovery/v2.0/keys\",\n response_modes_supported: [\"query\", \"fragment\", \"form_post\"],\n subject_types_supported: [\"pairwise\"],\n id_token_signing_alg_values_supported: [\"RS256\"],\n response_types_supported: [\n \"code\",\n \"id_token\",\n \"code id_token\",\n \"id_token token\",\n ],\n scopes_supported: [\"openid\", \"profile\", \"email\", \"offline_access\"],\n issuer: \"https://login.microsoftonline.com/{tenantid}/v2.0\",\n request_uri_parameter_supported: false,\n userinfo_endpoint: \"https://graph.microsoft.com/oidc/userinfo\",\n authorization_endpoint: \"https://login.microsoftonline.com/common/oauth2/v2.0/authorize\",\n device_authorization_endpoint: \"https://login.microsoftonline.com/common/oauth2/v2.0/devicecode\",\n http_logout_supported: true,\n frontchannel_logout_supported: true,\n end_session_endpoint: \"https://login.microsoftonline.com/common/oauth2/v2.0/logout\",\n claims_supported: [\n \"sub\",\n \"iss\",\n \"cloud_instance_name\",\n \"cloud_instance_host_name\",\n \"cloud_graph_host_name\",\n \"msgraph_host\",\n \"aud\",\n \"exp\",\n \"iat\",\n \"auth_time\",\n \"acr\",\n \"nonce\",\n \"preferred_username\",\n \"name\",\n \"tid\",\n \"ver\",\n \"at_hash\",\n \"c_hash\",\n \"email\",\n ],\n kerberos_endpoint: \"https://login.microsoftonline.com/common/kerberos\",\n tenant_region_scope: null,\n cloud_instance_name: \"microsoftonline.com\",\n cloud_graph_host_name: \"graph.windows.net\",\n msgraph_host: \"graph.microsoft.com\",\n rbac_url: \"https://pas.windows.net\",\n },\n \"https://login.chinacloudapi.cn/common/\": {\n token_endpoint: \"https://login.chinacloudapi.cn/common/oauth2/v2.0/token\",\n token_endpoint_auth_methods_supported: [\n \"client_secret_post\",\n \"private_key_jwt\",\n \"client_secret_basic\",\n ],\n jwks_uri: \"https://login.chinacloudapi.cn/common/discovery/v2.0/keys\",\n response_modes_supported: [\"query\", \"fragment\", \"form_post\"],\n subject_types_supported: [\"pairwise\"],\n id_token_signing_alg_values_supported: [\"RS256\"],\n response_types_supported: [\n \"code\",\n \"id_token\",\n \"code id_token\",\n \"id_token token\",\n ],\n scopes_supported: [\"openid\", \"profile\", \"email\", \"offline_access\"],\n issuer: \"https://login.partner.microsoftonline.cn/{tenantid}/v2.0\",\n request_uri_parameter_supported: false,\n userinfo_endpoint: \"https://microsoftgraph.chinacloudapi.cn/oidc/userinfo\",\n authorization_endpoint: \"https://login.chinacloudapi.cn/common/oauth2/v2.0/authorize\",\n device_authorization_endpoint: \"https://login.chinacloudapi.cn/common/oauth2/v2.0/devicecode\",\n http_logout_supported: true,\n frontchannel_logout_supported: true,\n end_session_endpoint: \"https://login.chinacloudapi.cn/common/oauth2/v2.0/logout\",\n claims_supported: [\n \"sub\",\n \"iss\",\n \"cloud_instance_name\",\n \"cloud_instance_host_name\",\n \"cloud_graph_host_name\",\n \"msgraph_host\",\n \"aud\",\n \"exp\",\n \"iat\",\n \"auth_time\",\n \"acr\",\n \"nonce\",\n \"preferred_username\",\n \"name\",\n \"tid\",\n \"ver\",\n \"at_hash\",\n \"c_hash\",\n \"email\",\n ],\n kerberos_endpoint: \"https://login.chinacloudapi.cn/common/kerberos\",\n tenant_region_scope: null,\n cloud_instance_name: \"partner.microsoftonline.cn\",\n cloud_graph_host_name: \"graph.chinacloudapi.cn\",\n msgraph_host: \"microsoftgraph.chinacloudapi.cn\",\n rbac_url: \"https://pas.chinacloudapi.cn\",\n },\n \"https://login.microsoftonline.us/common/\": {\n token_endpoint: \"https://login.microsoftonline.us/common/oauth2/v2.0/token\",\n token_endpoint_auth_methods_supported: [\n \"client_secret_post\",\n \"private_key_jwt\",\n \"client_secret_basic\",\n ],\n jwks_uri: \"https://login.microsoftonline.us/common/discovery/v2.0/keys\",\n response_modes_supported: [\"query\", \"fragment\", \"form_post\"],\n subject_types_supported: [\"pairwise\"],\n id_token_signing_alg_values_supported: [\"RS256\"],\n response_types_supported: [\n \"code\",\n \"id_token\",\n \"code id_token\",\n \"id_token token\",\n ],\n scopes_supported: [\"openid\", \"profile\", \"email\", \"offline_access\"],\n issuer: \"https://login.microsoftonline.us/{tenantid}/v2.0\",\n request_uri_parameter_supported: false,\n userinfo_endpoint: \"https://graph.microsoft.com/oidc/userinfo\",\n authorization_endpoint: \"https://login.microsoftonline.us/common/oauth2/v2.0/authorize\",\n device_authorization_endpoint: \"https://login.microsoftonline.us/common/oauth2/v2.0/devicecode\",\n http_logout_supported: true,\n frontchannel_logout_supported: true,\n end_session_endpoint: \"https://login.microsoftonline.us/common/oauth2/v2.0/logout\",\n claims_supported: [\n \"sub\",\n \"iss\",\n \"cloud_instance_name\",\n \"cloud_instance_host_name\",\n \"cloud_graph_host_name\",\n \"msgraph_host\",\n \"aud\",\n \"exp\",\n \"iat\",\n \"auth_time\",\n \"acr\",\n \"nonce\",\n \"preferred_username\",\n \"name\",\n \"tid\",\n \"ver\",\n \"at_hash\",\n \"c_hash\",\n \"email\",\n ],\n kerberos_endpoint: \"https://login.microsoftonline.us/common/kerberos\",\n tenant_region_scope: null,\n cloud_instance_name: \"microsoftonline.us\",\n cloud_graph_host_name: \"graph.windows.net\",\n msgraph_host: \"graph.microsoft.com\",\n rbac_url: \"https://pasff.usgovcloudapi.net\",\n },\n \"https://login.microsoftonline.com/consumers/\": {\n token_endpoint: \"https://login.microsoftonline.com/consumers/oauth2/v2.0/token\",\n token_endpoint_auth_methods_supported: [\n \"client_secret_post\",\n \"private_key_jwt\",\n \"client_secret_basic\",\n ],\n jwks_uri: \"https://login.microsoftonline.com/consumers/discovery/v2.0/keys\",\n response_modes_supported: [\"query\", \"fragment\", \"form_post\"],\n subject_types_supported: [\"pairwise\"],\n id_token_signing_alg_values_supported: [\"RS256\"],\n response_types_supported: [\n \"code\",\n \"id_token\",\n \"code id_token\",\n \"id_token token\",\n ],\n scopes_supported: [\"openid\", \"profile\", \"email\", \"offline_access\"],\n issuer: \"https://login.microsoftonline.com/9188040d-6c67-4c5b-b112-36a304b66dad/v2.0\",\n request_uri_parameter_supported: false,\n userinfo_endpoint: \"https://graph.microsoft.com/oidc/userinfo\",\n authorization_endpoint: \"https://login.microsoftonline.com/consumers/oauth2/v2.0/authorize\",\n device_authorization_endpoint: \"https://login.microsoftonline.com/consumers/oauth2/v2.0/devicecode\",\n http_logout_supported: true,\n frontchannel_logout_supported: true,\n end_session_endpoint: \"https://login.microsoftonline.com/consumers/oauth2/v2.0/logout\",\n claims_supported: [\n \"sub\",\n \"iss\",\n \"cloud_instance_name\",\n \"cloud_instance_host_name\",\n \"cloud_graph_host_name\",\n \"msgraph_host\",\n \"aud\",\n \"exp\",\n \"iat\",\n \"auth_time\",\n \"acr\",\n \"nonce\",\n \"preferred_username\",\n \"name\",\n \"tid\",\n \"ver\",\n \"at_hash\",\n \"c_hash\",\n \"email\",\n ],\n kerberos_endpoint: \"https://login.microsoftonline.com/consumers/kerberos\",\n tenant_region_scope: null,\n cloud_instance_name: \"microsoftonline.com\",\n cloud_graph_host_name: \"graph.windows.net\",\n msgraph_host: \"graph.microsoft.com\",\n rbac_url: \"https://pas.windows.net\",\n },\n \"https://login.chinacloudapi.cn/consumers/\": {\n token_endpoint: \"https://login.chinacloudapi.cn/consumers/oauth2/v2.0/token\",\n token_endpoint_auth_methods_supported: [\n \"client_secret_post\",\n \"private_key_jwt\",\n \"client_secret_basic\",\n ],\n jwks_uri: \"https://login.chinacloudapi.cn/consumers/discovery/v2.0/keys\",\n response_modes_supported: [\"query\", \"fragment\", \"form_post\"],\n subject_types_supported: [\"pairwise\"],\n id_token_signing_alg_values_supported: [\"RS256\"],\n response_types_supported: [\n \"code\",\n \"id_token\",\n \"code id_token\",\n \"id_token token\",\n ],\n scopes_supported: [\"openid\", \"profile\", \"email\", \"offline_access\"],\n issuer: \"https://login.partner.microsoftonline.cn/9188040d-6c67-4c5b-b112-36a304b66dad/v2.0\",\n request_uri_parameter_supported: false,\n userinfo_endpoint: \"https://microsoftgraph.chinacloudapi.cn/oidc/userinfo\",\n authorization_endpoint: \"https://login.chinacloudapi.cn/consumers/oauth2/v2.0/authorize\",\n device_authorization_endpoint: \"https://login.chinacloudapi.cn/consumers/oauth2/v2.0/devicecode\",\n http_logout_supported: true,\n frontchannel_logout_supported: true,\n end_session_endpoint: \"https://login.chinacloudapi.cn/consumers/oauth2/v2.0/logout\",\n claims_supported: [\n \"sub\",\n \"iss\",\n \"cloud_instance_name\",\n \"cloud_instance_host_name\",\n \"cloud_graph_host_name\",\n \"msgraph_host\",\n \"aud\",\n \"exp\",\n \"iat\",\n \"auth_time\",\n \"acr\",\n \"nonce\",\n \"preferred_username\",\n \"name\",\n \"tid\",\n \"ver\",\n \"at_hash\",\n \"c_hash\",\n \"email\",\n ],\n kerberos_endpoint: \"https://login.chinacloudapi.cn/consumers/kerberos\",\n tenant_region_scope: null,\n cloud_instance_name: \"partner.microsoftonline.cn\",\n cloud_graph_host_name: \"graph.chinacloudapi.cn\",\n msgraph_host: \"microsoftgraph.chinacloudapi.cn\",\n rbac_url: \"https://pas.chinacloudapi.cn\",\n },\n \"https://login.microsoftonline.us/consumers/\": {\n token_endpoint: \"https://login.microsoftonline.us/consumers/oauth2/v2.0/token\",\n token_endpoint_auth_methods_supported: [\n \"client_secret_post\",\n \"private_key_jwt\",\n \"client_secret_basic\",\n ],\n jwks_uri: \"https://login.microsoftonline.us/consumers/discovery/v2.0/keys\",\n response_modes_supported: [\"query\", \"fragment\", \"form_post\"],\n subject_types_supported: [\"pairwise\"],\n id_token_signing_alg_values_supported: [\"RS256\"],\n response_types_supported: [\n \"code\",\n \"id_token\",\n \"code id_token\",\n \"id_token token\",\n ],\n scopes_supported: [\"openid\", \"profile\", \"email\", \"offline_access\"],\n issuer: \"https://login.microsoftonline.us/9188040d-6c67-4c5b-b112-36a304b66dad/v2.0\",\n request_uri_parameter_supported: false,\n userinfo_endpoint: \"https://graph.microsoft.com/oidc/userinfo\",\n authorization_endpoint: \"https://login.microsoftonline.us/consumers/oauth2/v2.0/authorize\",\n device_authorization_endpoint: \"https://login.microsoftonline.us/consumers/oauth2/v2.0/devicecode\",\n http_logout_supported: true,\n frontchannel_logout_supported: true,\n end_session_endpoint: \"https://login.microsoftonline.us/consumers/oauth2/v2.0/logout\",\n claims_supported: [\n \"sub\",\n \"iss\",\n \"cloud_instance_name\",\n \"cloud_instance_host_name\",\n \"cloud_graph_host_name\",\n \"msgraph_host\",\n \"aud\",\n \"exp\",\n \"iat\",\n \"auth_time\",\n \"acr\",\n \"nonce\",\n \"preferred_username\",\n \"name\",\n \"tid\",\n \"ver\",\n \"at_hash\",\n \"c_hash\",\n \"email\",\n ],\n kerberos_endpoint: \"https://login.microsoftonline.us/consumers/kerberos\",\n tenant_region_scope: null,\n cloud_instance_name: \"microsoftonline.us\",\n cloud_graph_host_name: \"graph.windows.net\",\n msgraph_host: \"graph.microsoft.com\",\n rbac_url: \"https://pasff.usgovcloudapi.net\",\n },\n \"https://login.microsoftonline.com/organizations/\": {\n token_endpoint: \"https://login.microsoftonline.com/organizations/oauth2/v2.0/token\",\n token_endpoint_auth_methods_supported: [\n \"client_secret_post\",\n \"private_key_jwt\",\n \"client_secret_basic\",\n ],\n jwks_uri: \"https://login.microsoftonline.com/organizations/discovery/v2.0/keys\",\n response_modes_supported: [\"query\", \"fragment\", \"form_post\"],\n subject_types_supported: [\"pairwise\"],\n id_token_signing_alg_values_supported: [\"RS256\"],\n response_types_supported: [\n \"code\",\n \"id_token\",\n \"code id_token\",\n \"id_token token\",\n ],\n scopes_supported: [\"openid\", \"profile\", \"email\", \"offline_access\"],\n issuer: \"https://login.microsoftonline.com/{tenantid}/v2.0\",\n request_uri_parameter_supported: false,\n userinfo_endpoint: \"https://graph.microsoft.com/oidc/userinfo\",\n authorization_endpoint: \"https://login.microsoftonline.com/organizations/oauth2/v2.0/authorize\",\n device_authorization_endpoint: \"https://login.microsoftonline.com/organizations/oauth2/v2.0/devicecode\",\n http_logout_supported: true,\n frontchannel_logout_supported: true,\n end_session_endpoint: \"https://login.microsoftonline.com/organizations/oauth2/v2.0/logout\",\n claims_supported: [\n \"sub\",\n \"iss\",\n \"cloud_instance_name\",\n \"cloud_instance_host_name\",\n \"cloud_graph_host_name\",\n \"msgraph_host\",\n \"aud\",\n \"exp\",\n \"iat\",\n \"auth_time\",\n \"acr\",\n \"nonce\",\n \"preferred_username\",\n \"name\",\n \"tid\",\n \"ver\",\n \"at_hash\",\n \"c_hash\",\n \"email\",\n ],\n kerberos_endpoint: \"https://login.microsoftonline.com/organizations/kerberos\",\n tenant_region_scope: null,\n cloud_instance_name: \"microsoftonline.com\",\n cloud_graph_host_name: \"graph.windows.net\",\n msgraph_host: \"graph.microsoft.com\",\n rbac_url: \"https://pas.windows.net\",\n },\n \"https://login.chinacloudapi.cn/organizations/\": {\n token_endpoint: \"https://login.chinacloudapi.cn/organizations/oauth2/v2.0/token\",\n token_endpoint_auth_methods_supported: [\n \"client_secret_post\",\n \"private_key_jwt\",\n \"client_secret_basic\",\n ],\n jwks_uri: \"https://login.chinacloudapi.cn/organizations/discovery/v2.0/keys\",\n response_modes_supported: [\"query\", \"fragment\", \"form_post\"],\n subject_types_supported: [\"pairwise\"],\n id_token_signing_alg_values_supported: [\"RS256\"],\n response_types_supported: [\n \"code\",\n \"id_token\",\n \"code id_token\",\n \"id_token token\",\n ],\n scopes_supported: [\"openid\", \"profile\", \"email\", \"offline_access\"],\n issuer: \"https://login.partner.microsoftonline.cn/{tenantid}/v2.0\",\n request_uri_parameter_supported: false,\n userinfo_endpoint: \"https://microsoftgraph.chinacloudapi.cn/oidc/userinfo\",\n authorization_endpoint: \"https://login.chinacloudapi.cn/organizations/oauth2/v2.0/authorize\",\n device_authorization_endpoint: \"https://login.chinacloudapi.cn/organizations/oauth2/v2.0/devicecode\",\n http_logout_supported: true,\n frontchannel_logout_supported: true,\n end_session_endpoint: \"https://login.chinacloudapi.cn/organizations/oauth2/v2.0/logout\",\n claims_supported: [\n \"sub\",\n \"iss\",\n \"cloud_instance_name\",\n \"cloud_instance_host_name\",\n \"cloud_graph_host_name\",\n \"msgraph_host\",\n \"aud\",\n \"exp\",\n \"iat\",\n \"auth_time\",\n \"acr\",\n \"nonce\",\n \"preferred_username\",\n \"name\",\n \"tid\",\n \"ver\",\n \"at_hash\",\n \"c_hash\",\n \"email\",\n ],\n kerberos_endpoint: \"https://login.chinacloudapi.cn/organizations/kerberos\",\n tenant_region_scope: null,\n cloud_instance_name: \"partner.microsoftonline.cn\",\n cloud_graph_host_name: \"graph.chinacloudapi.cn\",\n msgraph_host: \"microsoftgraph.chinacloudapi.cn\",\n rbac_url: \"https://pas.chinacloudapi.cn\",\n },\n \"https://login.microsoftonline.us/organizations/\": {\n token_endpoint: \"https://login.microsoftonline.us/organizations/oauth2/v2.0/token\",\n token_endpoint_auth_methods_supported: [\n \"client_secret_post\",\n \"private_key_jwt\",\n \"client_secret_basic\",\n ],\n jwks_uri: \"https://login.microsoftonline.us/organizations/discovery/v2.0/keys\",\n response_modes_supported: [\"query\", \"fragment\", \"form_post\"],\n subject_types_supported: [\"pairwise\"],\n id_token_signing_alg_values_supported: [\"RS256\"],\n response_types_supported: [\n \"code\",\n \"id_token\",\n \"code id_token\",\n \"id_token token\",\n ],\n scopes_supported: [\"openid\", \"profile\", \"email\", \"offline_access\"],\n issuer: \"https://login.microsoftonline.us/{tenantid}/v2.0\",\n request_uri_parameter_supported: false,\n userinfo_endpoint: \"https://graph.microsoft.com/oidc/userinfo\",\n authorization_endpoint: \"https://login.microsoftonline.us/organizations/oauth2/v2.0/authorize\",\n device_authorization_endpoint: \"https://login.microsoftonline.us/organizations/oauth2/v2.0/devicecode\",\n http_logout_supported: true,\n frontchannel_logout_supported: true,\n end_session_endpoint: \"https://login.microsoftonline.us/organizations/oauth2/v2.0/logout\",\n claims_supported: [\n \"sub\",\n \"iss\",\n \"cloud_instance_name\",\n \"cloud_instance_host_name\",\n \"cloud_graph_host_name\",\n \"msgraph_host\",\n \"aud\",\n \"exp\",\n \"iat\",\n \"auth_time\",\n \"acr\",\n \"nonce\",\n \"preferred_username\",\n \"name\",\n \"tid\",\n \"ver\",\n \"at_hash\",\n \"c_hash\",\n \"email\",\n ],\n kerberos_endpoint: \"https://login.microsoftonline.us/organizations/kerberos\",\n tenant_region_scope: null,\n cloud_instance_name: \"microsoftonline.us\",\n cloud_graph_host_name: \"graph.windows.net\",\n msgraph_host: \"graph.microsoft.com\",\n rbac_url: \"https://pasff.usgovcloudapi.net\",\n },\n },\n instanceDiscoveryMetadata: {\n \"https://login.microsoftonline.com/common/\": {\n tenant_discovery_endpoint: \"https://login.microsoftonline.com/common/v2.0/.well-known/openid-configuration\",\n \"api-version\": \"1.1\",\n metadata: [\n {\n preferred_network: \"login.microsoftonline.com\",\n preferred_cache: \"login.windows.net\",\n aliases: [\n \"login.microsoftonline.com\",\n \"login.windows.net\",\n \"login.microsoft.com\",\n \"sts.windows.net\",\n ],\n },\n {\n preferred_network: \"login.partner.microsoftonline.cn\",\n preferred_cache: \"login.partner.microsoftonline.cn\",\n aliases: [\n \"login.partner.microsoftonline.cn\",\n \"login.chinacloudapi.cn\",\n ],\n },\n {\n preferred_network: \"login.microsoftonline.de\",\n preferred_cache: \"login.microsoftonline.de\",\n aliases: [\"login.microsoftonline.de\"],\n },\n {\n preferred_network: \"login.microsoftonline.us\",\n preferred_cache: \"login.microsoftonline.us\",\n aliases: [\n \"login.microsoftonline.us\",\n \"login.usgovcloudapi.net\",\n ],\n },\n {\n preferred_network: \"login-us.microsoftonline.com\",\n preferred_cache: \"login-us.microsoftonline.com\",\n aliases: [\"login-us.microsoftonline.com\"],\n },\n ],\n },\n \"https://login.chinacloudapi.cn/common/\": {\n tenant_discovery_endpoint: \"https://login.chinacloudapi.cn/common/v2.0/.well-known/openid-configuration\",\n \"api-version\": \"1.1\",\n metadata: [\n {\n preferred_network: \"login.microsoftonline.com\",\n preferred_cache: \"login.windows.net\",\n aliases: [\n \"login.microsoftonline.com\",\n \"login.windows.net\",\n \"login.microsoft.com\",\n \"sts.windows.net\",\n ],\n },\n {\n preferred_network: \"login.partner.microsoftonline.cn\",\n preferred_cache: \"login.partner.microsoftonline.cn\",\n aliases: [\n \"login.partner.microsoftonline.cn\",\n \"login.chinacloudapi.cn\",\n ],\n },\n {\n preferred_network: \"login.microsoftonline.de\",\n preferred_cache: \"login.microsoftonline.de\",\n aliases: [\"login.microsoftonline.de\"],\n },\n {\n preferred_network: \"login.microsoftonline.us\",\n preferred_cache: \"login.microsoftonline.us\",\n aliases: [\n \"login.microsoftonline.us\",\n \"login.usgovcloudapi.net\",\n ],\n },\n {\n preferred_network: \"login-us.microsoftonline.com\",\n preferred_cache: \"login-us.microsoftonline.com\",\n aliases: [\"login-us.microsoftonline.com\"],\n },\n ],\n },\n \"https://login.microsoftonline.us/common/\": {\n tenant_discovery_endpoint: \"https://login.microsoftonline.us/common/v2.0/.well-known/openid-configuration\",\n \"api-version\": \"1.1\",\n metadata: [\n {\n preferred_network: \"login.microsoftonline.com\",\n preferred_cache: \"login.windows.net\",\n aliases: [\n \"login.microsoftonline.com\",\n \"login.windows.net\",\n \"login.microsoft.com\",\n \"sts.windows.net\",\n ],\n },\n {\n preferred_network: \"login.partner.microsoftonline.cn\",\n preferred_cache: \"login.partner.microsoftonline.cn\",\n aliases: [\n \"login.partner.microsoftonline.cn\",\n \"login.chinacloudapi.cn\",\n ],\n },\n {\n preferred_network: \"login.microsoftonline.de\",\n preferred_cache: \"login.microsoftonline.de\",\n aliases: [\"login.microsoftonline.de\"],\n },\n {\n preferred_network: \"login.microsoftonline.us\",\n preferred_cache: \"login.microsoftonline.us\",\n aliases: [\n \"login.microsoftonline.us\",\n \"login.usgovcloudapi.net\",\n ],\n },\n {\n preferred_network: \"login-us.microsoftonline.com\",\n preferred_cache: \"login-us.microsoftonline.com\",\n aliases: [\"login-us.microsoftonline.com\"],\n },\n ],\n },\n \"https://login.microsoftonline.com/consumers/\": {\n tenant_discovery_endpoint: \"https://login.microsoftonline.com/consumers/v2.0/.well-known/openid-configuration\",\n \"api-version\": \"1.1\",\n metadata: [\n {\n preferred_network: \"login.microsoftonline.com\",\n preferred_cache: \"login.windows.net\",\n aliases: [\n \"login.microsoftonline.com\",\n \"login.windows.net\",\n \"login.microsoft.com\",\n \"sts.windows.net\",\n ],\n },\n {\n preferred_network: \"login.partner.microsoftonline.cn\",\n preferred_cache: \"login.partner.microsoftonline.cn\",\n aliases: [\n \"login.partner.microsoftonline.cn\",\n \"login.chinacloudapi.cn\",\n ],\n },\n {\n preferred_network: \"login.microsoftonline.de\",\n preferred_cache: \"login.microsoftonline.de\",\n aliases: [\"login.microsoftonline.de\"],\n },\n {\n preferred_network: \"login.microsoftonline.us\",\n preferred_cache: \"login.microsoftonline.us\",\n aliases: [\n \"login.microsoftonline.us\",\n \"login.usgovcloudapi.net\",\n ],\n },\n {\n preferred_network: \"login-us.microsoftonline.com\",\n preferred_cache: \"login-us.microsoftonline.com\",\n aliases: [\"login-us.microsoftonline.com\"],\n },\n ],\n },\n \"https://login.chinacloudapi.cn/consumers/\": {\n tenant_discovery_endpoint: \"https://login.chinacloudapi.cn/consumers/v2.0/.well-known/openid-configuration\",\n \"api-version\": \"1.1\",\n metadata: [\n {\n preferred_network: \"login.microsoftonline.com\",\n preferred_cache: \"login.windows.net\",\n aliases: [\n \"login.microsoftonline.com\",\n \"login.windows.net\",\n \"login.microsoft.com\",\n \"sts.windows.net\",\n ],\n },\n {\n preferred_network: \"login.partner.microsoftonline.cn\",\n preferred_cache: \"login.partner.microsoftonline.cn\",\n aliases: [\n \"login.partner.microsoftonline.cn\",\n \"login.chinacloudapi.cn\",\n ],\n },\n {\n preferred_network: \"login.microsoftonline.de\",\n preferred_cache: \"login.microsoftonline.de\",\n aliases: [\"login.microsoftonline.de\"],\n },\n {\n preferred_network: \"login.microsoftonline.us\",\n preferred_cache: \"login.microsoftonline.us\",\n aliases: [\n \"login.microsoftonline.us\",\n \"login.usgovcloudapi.net\",\n ],\n },\n {\n preferred_network: \"login-us.microsoftonline.com\",\n preferred_cache: \"login-us.microsoftonline.com\",\n aliases: [\"login-us.microsoftonline.com\"],\n },\n ],\n },\n \"https://login.microsoftonline.us/consumers/\": {\n tenant_discovery_endpoint: \"https://login.microsoftonline.us/consumers/v2.0/.well-known/openid-configuration\",\n \"api-version\": \"1.1\",\n metadata: [\n {\n preferred_network: \"login.microsoftonline.com\",\n preferred_cache: \"login.windows.net\",\n aliases: [\n \"login.microsoftonline.com\",\n \"login.windows.net\",\n \"login.microsoft.com\",\n \"sts.windows.net\",\n ],\n },\n {\n preferred_network: \"login.partner.microsoftonline.cn\",\n preferred_cache: \"login.partner.microsoftonline.cn\",\n aliases: [\n \"login.partner.microsoftonline.cn\",\n \"login.chinacloudapi.cn\",\n ],\n },\n {\n preferred_network: \"login.microsoftonline.de\",\n preferred_cache: \"login.microsoftonline.de\",\n aliases: [\"login.microsoftonline.de\"],\n },\n {\n preferred_network: \"login.microsoftonline.us\",\n preferred_cache: \"login.microsoftonline.us\",\n aliases: [\n \"login.microsoftonline.us\",\n \"login.usgovcloudapi.net\",\n ],\n },\n {\n preferred_network: \"login-us.microsoftonline.com\",\n preferred_cache: \"login-us.microsoftonline.com\",\n aliases: [\"login-us.microsoftonline.com\"],\n },\n ],\n },\n \"https://login.microsoftonline.com/organizations/\": {\n tenant_discovery_endpoint: \"https://login.microsoftonline.com/organizations/v2.0/.well-known/openid-configuration\",\n \"api-version\": \"1.1\",\n metadata: [\n {\n preferred_network: \"login.microsoftonline.com\",\n preferred_cache: \"login.windows.net\",\n aliases: [\n \"login.microsoftonline.com\",\n \"login.windows.net\",\n \"login.microsoft.com\",\n \"sts.windows.net\",\n ],\n },\n {\n preferred_network: \"login.partner.microsoftonline.cn\",\n preferred_cache: \"login.partner.microsoftonline.cn\",\n aliases: [\n \"login.partner.microsoftonline.cn\",\n \"login.chinacloudapi.cn\",\n ],\n },\n {\n preferred_network: \"login.microsoftonline.de\",\n preferred_cache: \"login.microsoftonline.de\",\n aliases: [\"login.microsoftonline.de\"],\n },\n {\n preferred_network: \"login.microsoftonline.us\",\n preferred_cache: \"login.microsoftonline.us\",\n aliases: [\n \"login.microsoftonline.us\",\n \"login.usgovcloudapi.net\",\n ],\n },\n {\n preferred_network: \"login-us.microsoftonline.com\",\n preferred_cache: \"login-us.microsoftonline.com\",\n aliases: [\"login-us.microsoftonline.com\"],\n },\n ],\n },\n \"https://login.chinacloudapi.cn/organizations/\": {\n tenant_discovery_endpoint: \"https://login.chinacloudapi.cn/organizations/v2.0/.well-known/openid-configuration\",\n \"api-version\": \"1.1\",\n metadata: [\n {\n preferred_network: \"login.microsoftonline.com\",\n preferred_cache: \"login.windows.net\",\n aliases: [\n \"login.microsoftonline.com\",\n \"login.windows.net\",\n \"login.microsoft.com\",\n \"sts.windows.net\",\n ],\n },\n {\n preferred_network: \"login.partner.microsoftonline.cn\",\n preferred_cache: \"login.partner.microsoftonline.cn\",\n aliases: [\n \"login.partner.microsoftonline.cn\",\n \"login.chinacloudapi.cn\",\n ],\n },\n {\n preferred_network: \"login.microsoftonline.de\",\n preferred_cache: \"login.microsoftonline.de\",\n aliases: [\"login.microsoftonline.de\"],\n },\n {\n preferred_network: \"login.microsoftonline.us\",\n preferred_cache: \"login.microsoftonline.us\",\n aliases: [\n \"login.microsoftonline.us\",\n \"login.usgovcloudapi.net\",\n ],\n },\n {\n preferred_network: \"login-us.microsoftonline.com\",\n preferred_cache: \"login-us.microsoftonline.com\",\n aliases: [\"login-us.microsoftonline.com\"],\n },\n ],\n },\n \"https://login.microsoftonline.us/organizations/\": {\n tenant_discovery_endpoint: \"https://login.microsoftonline.us/organizations/v2.0/.well-known/openid-configuration\",\n \"api-version\": \"1.1\",\n metadata: [\n {\n preferred_network: \"login.microsoftonline.com\",\n preferred_cache: \"login.windows.net\",\n aliases: [\n \"login.microsoftonline.com\",\n \"login.windows.net\",\n \"login.microsoft.com\",\n \"sts.windows.net\",\n ],\n },\n {\n preferred_network: \"login.partner.microsoftonline.cn\",\n preferred_cache: \"login.partner.microsoftonline.cn\",\n aliases: [\n \"login.partner.microsoftonline.cn\",\n \"login.chinacloudapi.cn\",\n ],\n },\n {\n preferred_network: \"login.microsoftonline.de\",\n preferred_cache: \"login.microsoftonline.de\",\n aliases: [\"login.microsoftonline.de\"],\n },\n {\n preferred_network: \"login.microsoftonline.us\",\n preferred_cache: \"login.microsoftonline.us\",\n aliases: [\n \"login.microsoftonline.us\",\n \"login.usgovcloudapi.net\",\n ],\n },\n {\n preferred_network: \"login-us.microsoftonline.com\",\n preferred_cache: \"login-us.microsoftonline.com\",\n aliases: [\"login-us.microsoftonline.com\"],\n },\n ],\n },\n },\n};\nconst EndpointMetadata = rawMetdataJSON.endpointMetadata;\nconst InstanceDiscoveryMetadata = rawMetdataJSON.instanceDiscoveryMetadata;\nconst InstanceDiscoveryMetadataAliases = new Set();\nfor (const key in InstanceDiscoveryMetadata) {\n for (const metadata of InstanceDiscoveryMetadata[key].metadata) {\n for (const alias of metadata.aliases) {\n InstanceDiscoveryMetadataAliases.add(alias);\n }\n }\n}\n\nexport { EndpointMetadata, InstanceDiscoveryMetadata, InstanceDiscoveryMetadataAliases, rawMetdataJSON };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { AUTHORITY_METADATA_CONSTANTS } from '../../utils/Constants.mjs';\nimport { TimeUtils } from '../../utils/TimeUtils.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/** @internal */\nclass AuthorityMetadataEntity {\n constructor() {\n this.expiresAt =\n TimeUtils.nowSeconds() +\n AUTHORITY_METADATA_CONSTANTS.REFRESH_TIME_SECONDS;\n }\n /**\n * Update the entity with new aliases, preferred_cache and preferred_network values\n * @param metadata\n * @param fromNetwork\n */\n updateCloudDiscoveryMetadata(metadata, fromNetwork) {\n this.aliases = metadata.aliases;\n this.preferred_cache = metadata.preferred_cache;\n this.preferred_network = metadata.preferred_network;\n this.aliasesFromNetwork = fromNetwork;\n }\n /**\n * Update the entity with new endpoints\n * @param metadata\n * @param fromNetwork\n */\n updateEndpointMetadata(metadata, fromNetwork) {\n this.authorization_endpoint = metadata.authorization_endpoint;\n this.token_endpoint = metadata.token_endpoint;\n this.end_session_endpoint = metadata.end_session_endpoint;\n this.issuer = metadata.issuer;\n this.endpointsFromNetwork = fromNetwork;\n this.jwks_uri = metadata.jwks_uri;\n }\n /**\n * Save the authority that was used to create this cache entry\n * @param authority\n */\n updateCanonicalAuthority(authority) {\n this.canonical_authority = authority;\n }\n /**\n * Reset the exiresAt value\n */\n resetExpiresAt() {\n this.expiresAt =\n TimeUtils.nowSeconds() +\n AUTHORITY_METADATA_CONSTANTS.REFRESH_TIME_SECONDS;\n }\n /**\n * Returns whether or not the data needs to be refreshed\n */\n isExpired() {\n return this.expiresAt <= TimeUtils.nowSeconds();\n }\n /**\n * Validates an entity: checks for all expected params\n * @param entity\n */\n static isAuthorityMetadataEntity(key, entity) {\n if (!entity) {\n return false;\n }\n return (key.indexOf(AUTHORITY_METADATA_CONSTANTS.CACHE_KEY) === 0 &&\n entity.hasOwnProperty(\"aliases\") &&\n entity.hasOwnProperty(\"preferred_cache\") &&\n entity.hasOwnProperty(\"preferred_network\") &&\n entity.hasOwnProperty(\"canonical_authority\") &&\n entity.hasOwnProperty(\"authorization_endpoint\") &&\n entity.hasOwnProperty(\"token_endpoint\") &&\n entity.hasOwnProperty(\"issuer\") &&\n entity.hasOwnProperty(\"aliasesFromNetwork\") &&\n entity.hasOwnProperty(\"endpointsFromNetwork\") &&\n entity.hasOwnProperty(\"expiresAt\") &&\n entity.hasOwnProperty(\"jwks_uri\"));\n }\n}\n\nexport { AuthorityMetadataEntity };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nfunction isCloudInstanceDiscoveryResponse(response) {\n return (response.hasOwnProperty(\"tenant_discovery_endpoint\") &&\n response.hasOwnProperty(\"metadata\"));\n}\n\nexport { isCloudInstanceDiscoveryResponse };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nfunction isCloudInstanceDiscoveryErrorResponse(response) {\n return (response.hasOwnProperty(\"error\") &&\n response.hasOwnProperty(\"error_description\"));\n}\n\nexport { isCloudInstanceDiscoveryErrorResponse };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { Constants, ResponseCodes, RegionDiscoverySources } from '../utils/Constants.mjs';\nimport { PerformanceEvents } from '../telemetry/performance/PerformanceEvent.mjs';\nimport { invokeAsync } from '../utils/FunctionWrappers.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass RegionDiscovery {\n constructor(networkInterface, logger, performanceClient, correlationId) {\n this.networkInterface = networkInterface;\n this.logger = logger;\n this.performanceClient = performanceClient;\n this.correlationId = correlationId;\n }\n /**\n * Detect the region from the application's environment.\n *\n * @returns Promise\n */\n async detectRegion(environmentRegion, regionDiscoveryMetadata) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.RegionDiscoveryDetectRegion, this.correlationId);\n // Initialize auto detected region with the region from the envrionment\n let autodetectedRegionName = environmentRegion;\n // Check if a region was detected from the environment, if not, attempt to get the region from IMDS\n if (!autodetectedRegionName) {\n const options = RegionDiscovery.IMDS_OPTIONS;\n try {\n const localIMDSVersionResponse = await invokeAsync(this.getRegionFromIMDS.bind(this), PerformanceEvents.RegionDiscoveryGetRegionFromIMDS, this.logger, this.performanceClient, this.correlationId)(Constants.IMDS_VERSION, options);\n if (localIMDSVersionResponse.status ===\n ResponseCodes.httpSuccess) {\n autodetectedRegionName = localIMDSVersionResponse.body;\n regionDiscoveryMetadata.region_source =\n RegionDiscoverySources.IMDS;\n }\n // If the response using the local IMDS version failed, try to fetch the current version of IMDS and retry.\n if (localIMDSVersionResponse.status ===\n ResponseCodes.httpBadRequest) {\n const currentIMDSVersion = await invokeAsync(this.getCurrentVersion.bind(this), PerformanceEvents.RegionDiscoveryGetCurrentVersion, this.logger, this.performanceClient, this.correlationId)(options);\n if (!currentIMDSVersion) {\n regionDiscoveryMetadata.region_source =\n RegionDiscoverySources.FAILED_AUTO_DETECTION;\n return null;\n }\n const currentIMDSVersionResponse = await invokeAsync(this.getRegionFromIMDS.bind(this), PerformanceEvents.RegionDiscoveryGetRegionFromIMDS, this.logger, this.performanceClient, this.correlationId)(currentIMDSVersion, options);\n if (currentIMDSVersionResponse.status ===\n ResponseCodes.httpSuccess) {\n autodetectedRegionName =\n currentIMDSVersionResponse.body;\n regionDiscoveryMetadata.region_source =\n RegionDiscoverySources.IMDS;\n }\n }\n }\n catch (e) {\n regionDiscoveryMetadata.region_source =\n RegionDiscoverySources.FAILED_AUTO_DETECTION;\n return null;\n }\n }\n else {\n regionDiscoveryMetadata.region_source =\n RegionDiscoverySources.ENVIRONMENT_VARIABLE;\n }\n // If no region was auto detected from the environment or from the IMDS endpoint, mark the attempt as a FAILED_AUTO_DETECTION\n if (!autodetectedRegionName) {\n regionDiscoveryMetadata.region_source =\n RegionDiscoverySources.FAILED_AUTO_DETECTION;\n }\n return autodetectedRegionName || null;\n }\n /**\n * Make the call to the IMDS endpoint\n *\n * @param imdsEndpointUrl\n * @returns Promise>\n */\n async getRegionFromIMDS(version, options) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.RegionDiscoveryGetRegionFromIMDS, this.correlationId);\n return this.networkInterface.sendGetRequestAsync(`${Constants.IMDS_ENDPOINT}?api-version=${version}&format=text`, options, Constants.IMDS_TIMEOUT);\n }\n /**\n * Get the most recent version of the IMDS endpoint available\n *\n * @returns Promise\n */\n async getCurrentVersion(options) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.RegionDiscoveryGetCurrentVersion, this.correlationId);\n try {\n const response = await this.networkInterface.sendGetRequestAsync(`${Constants.IMDS_ENDPOINT}?format=json`, options);\n // When IMDS endpoint is called without the api version query param, bad request response comes back with latest version.\n if (response.status === ResponseCodes.httpBadRequest &&\n response.body &&\n response.body[\"newest-versions\"] &&\n response.body[\"newest-versions\"].length > 0) {\n return response.body[\"newest-versions\"][0];\n }\n return null;\n }\n catch (e) {\n return null;\n }\n }\n}\n// Options for the IMDS endpoint request\nRegionDiscovery.IMDS_OPTIONS = {\n headers: {\n Metadata: \"true\",\n },\n};\n\nexport { RegionDiscovery };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { AuthorityType } from './AuthorityType.mjs';\nimport { isOpenIdConfigResponse } from './OpenIdConfigResponse.mjs';\nimport { UrlString } from '../url/UrlString.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { Constants, AuthorityMetadataSource, RegionDiscoveryOutcomes, AADAuthorityConstants } from '../utils/Constants.mjs';\nimport { EndpointMetadata, InstanceDiscoveryMetadata, InstanceDiscoveryMetadataAliases } from './AuthorityMetadata.mjs';\nimport { createClientConfigurationError } from '../error/ClientConfigurationError.mjs';\nimport { ProtocolMode } from './ProtocolMode.mjs';\nimport { AuthorityMetadataEntity } from '../cache/entities/AuthorityMetadataEntity.mjs';\nimport { AzureCloudInstance } from './AuthorityOptions.mjs';\nimport { isCloudInstanceDiscoveryResponse } from './CloudInstanceDiscoveryResponse.mjs';\nimport { isCloudInstanceDiscoveryErrorResponse } from './CloudInstanceDiscoveryErrorResponse.mjs';\nimport { RegionDiscovery } from './RegionDiscovery.mjs';\nimport { AuthError } from '../error/AuthError.mjs';\nimport { PerformanceEvents } from '../telemetry/performance/PerformanceEvent.mjs';\nimport { invokeAsync } from '../utils/FunctionWrappers.mjs';\nimport { endpointResolutionError, endSessionEndpointNotSupported, openIdConfigError } from '../error/ClientAuthErrorCodes.mjs';\nimport { invalidAuthorityMetadata, untrustedAuthority, invalidCloudDiscoveryMetadata } from '../error/ClientConfigurationErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * The authority class validates the authority URIs used by the user, and retrieves the OpenID Configuration Data from the\n * endpoint. It will store the pertinent config data in this object for use during token calls.\n * @internal\n */\nclass Authority {\n constructor(authority, networkInterface, cacheManager, authorityOptions, logger, performanceClient, correlationId) {\n this.canonicalAuthority = authority;\n this._canonicalAuthority.validateAsUri();\n this.networkInterface = networkInterface;\n this.cacheManager = cacheManager;\n this.authorityOptions = authorityOptions;\n this.regionDiscoveryMetadata = {\n region_used: undefined,\n region_source: undefined,\n region_outcome: undefined,\n };\n this.logger = logger;\n this.performanceClient = performanceClient;\n this.correlationId = correlationId;\n this.regionDiscovery = new RegionDiscovery(networkInterface, this.logger, this.performanceClient, this.correlationId);\n }\n /**\n * Get {@link AuthorityType}\n * @param authorityUri {@link IUri}\n * @private\n */\n getAuthorityType(authorityUri) {\n // CIAM auth url pattern is being standardized as: .ciamlogin.com\n if (authorityUri.HostNameAndPort.endsWith(Constants.CIAM_AUTH_URL)) {\n return AuthorityType.Ciam;\n }\n const pathSegments = authorityUri.PathSegments;\n if (pathSegments.length) {\n switch (pathSegments[0].toLowerCase()) {\n case Constants.ADFS:\n return AuthorityType.Adfs;\n case Constants.DSTS:\n return AuthorityType.Dsts;\n }\n }\n return AuthorityType.Default;\n }\n // See above for AuthorityType\n get authorityType() {\n return this.getAuthorityType(this.canonicalAuthorityUrlComponents);\n }\n /**\n * ProtocolMode enum representing the way endpoints are constructed.\n */\n get protocolMode() {\n return this.authorityOptions.protocolMode;\n }\n /**\n * Returns authorityOptions which can be used to reinstantiate a new authority instance\n */\n get options() {\n return this.authorityOptions;\n }\n /**\n * A URL that is the authority set by the developer\n */\n get canonicalAuthority() {\n return this._canonicalAuthority.urlString;\n }\n /**\n * Sets canonical authority.\n */\n set canonicalAuthority(url) {\n this._canonicalAuthority = new UrlString(url);\n this._canonicalAuthority.validateAsUri();\n this._canonicalAuthorityUrlComponents = null;\n }\n /**\n * Get authority components.\n */\n get canonicalAuthorityUrlComponents() {\n if (!this._canonicalAuthorityUrlComponents) {\n this._canonicalAuthorityUrlComponents =\n this._canonicalAuthority.getUrlComponents();\n }\n return this._canonicalAuthorityUrlComponents;\n }\n /**\n * Get hostname and port i.e. login.microsoftonline.com\n */\n get hostnameAndPort() {\n return this.canonicalAuthorityUrlComponents.HostNameAndPort.toLowerCase();\n }\n /**\n * Get tenant for authority.\n */\n get tenant() {\n return this.canonicalAuthorityUrlComponents.PathSegments[0];\n }\n /**\n * OAuth /authorize endpoint for requests\n */\n get authorizationEndpoint() {\n if (this.discoveryComplete()) {\n return this.replacePath(this.metadata.authorization_endpoint);\n }\n else {\n throw createClientAuthError(endpointResolutionError);\n }\n }\n /**\n * OAuth /token endpoint for requests\n */\n get tokenEndpoint() {\n if (this.discoveryComplete()) {\n return this.replacePath(this.metadata.token_endpoint);\n }\n else {\n throw createClientAuthError(endpointResolutionError);\n }\n }\n get deviceCodeEndpoint() {\n if (this.discoveryComplete()) {\n return this.replacePath(this.metadata.token_endpoint.replace(\"/token\", \"/devicecode\"));\n }\n else {\n throw createClientAuthError(endpointResolutionError);\n }\n }\n /**\n * OAuth logout endpoint for requests\n */\n get endSessionEndpoint() {\n if (this.discoveryComplete()) {\n // ROPC policies may not have end_session_endpoint set\n if (!this.metadata.end_session_endpoint) {\n throw createClientAuthError(endSessionEndpointNotSupported);\n }\n return this.replacePath(this.metadata.end_session_endpoint);\n }\n else {\n throw createClientAuthError(endpointResolutionError);\n }\n }\n /**\n * OAuth issuer for requests\n */\n get selfSignedJwtAudience() {\n if (this.discoveryComplete()) {\n return this.replacePath(this.metadata.issuer);\n }\n else {\n throw createClientAuthError(endpointResolutionError);\n }\n }\n /**\n * Jwks_uri for token signing keys\n */\n get jwksUri() {\n if (this.discoveryComplete()) {\n return this.replacePath(this.metadata.jwks_uri);\n }\n else {\n throw createClientAuthError(endpointResolutionError);\n }\n }\n /**\n * Returns a flag indicating that tenant name can be replaced in authority {@link IUri}\n * @param authorityUri {@link IUri}\n * @private\n */\n canReplaceTenant(authorityUri) {\n return (authorityUri.PathSegments.length === 1 &&\n !Authority.reservedTenantDomains.has(authorityUri.PathSegments[0]) &&\n this.getAuthorityType(authorityUri) === AuthorityType.Default &&\n this.protocolMode === ProtocolMode.AAD);\n }\n /**\n * Replaces tenant in url path with current tenant. Defaults to common.\n * @param urlString\n */\n replaceTenant(urlString) {\n return urlString.replace(/{tenant}|{tenantid}/g, this.tenant);\n }\n /**\n * Replaces path such as tenant or policy with the current tenant or policy.\n * @param urlString\n */\n replacePath(urlString) {\n let endpoint = urlString;\n const cachedAuthorityUrl = new UrlString(this.metadata.canonical_authority);\n const cachedAuthorityUrlComponents = cachedAuthorityUrl.getUrlComponents();\n const cachedAuthorityParts = cachedAuthorityUrlComponents.PathSegments;\n const currentAuthorityParts = this.canonicalAuthorityUrlComponents.PathSegments;\n currentAuthorityParts.forEach((currentPart, index) => {\n let cachedPart = cachedAuthorityParts[index];\n if (index === 0 &&\n this.canReplaceTenant(cachedAuthorityUrlComponents)) {\n const tenantId = new UrlString(this.metadata.authorization_endpoint).getUrlComponents().PathSegments[0];\n /**\n * Check if AAD canonical authority contains tenant domain name, for example \"testdomain.onmicrosoft.com\",\n * by comparing its first path segment to the corresponding authorization endpoint path segment, which is\n * always resolved with tenant id by OIDC.\n */\n if (cachedPart !== tenantId) {\n this.logger.verbose(`Replacing tenant domain name ${cachedPart} with id ${tenantId}`);\n cachedPart = tenantId;\n }\n }\n if (currentPart !== cachedPart) {\n endpoint = endpoint.replace(`/${cachedPart}/`, `/${currentPart}/`);\n }\n });\n return this.replaceTenant(endpoint);\n }\n /**\n * The default open id configuration endpoint for any canonical authority.\n */\n get defaultOpenIdConfigurationEndpoint() {\n const canonicalAuthorityHost = this.hostnameAndPort;\n if (this.canonicalAuthority.endsWith(\"v2.0/\") ||\n this.authorityType === AuthorityType.Adfs ||\n (this.protocolMode !== ProtocolMode.AAD &&\n !this.isAliasOfKnownMicrosoftAuthority(canonicalAuthorityHost))) {\n return `${this.canonicalAuthority}.well-known/openid-configuration`;\n }\n return `${this.canonicalAuthority}v2.0/.well-known/openid-configuration`;\n }\n /**\n * Boolean that returns whethr or not tenant discovery has been completed.\n */\n discoveryComplete() {\n return !!this.metadata;\n }\n /**\n * Perform endpoint discovery to discover aliases, preferred_cache, preferred_network\n * and the /authorize, /token and logout endpoints.\n */\n async resolveEndpointsAsync() {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.AuthorityResolveEndpointsAsync, this.correlationId);\n let metadataEntity = this.cacheManager.getAuthorityMetadataByAlias(this.hostnameAndPort);\n if (!metadataEntity) {\n metadataEntity = new AuthorityMetadataEntity();\n metadataEntity.updateCanonicalAuthority(this.canonicalAuthority);\n }\n const cloudDiscoverySource = await invokeAsync(this.updateCloudDiscoveryMetadata.bind(this), PerformanceEvents.AuthorityUpdateCloudDiscoveryMetadata, this.logger, this.performanceClient, this.correlationId)(metadataEntity);\n this.canonicalAuthority = this.canonicalAuthority.replace(this.hostnameAndPort, metadataEntity.preferred_network);\n const endpointSource = await invokeAsync(this.updateEndpointMetadata.bind(this), PerformanceEvents.AuthorityUpdateEndpointMetadata, this.logger, this.performanceClient, this.correlationId)(metadataEntity);\n if (cloudDiscoverySource !== AuthorityMetadataSource.CACHE &&\n endpointSource !== AuthorityMetadataSource.CACHE) {\n // Reset the expiration time unless both values came from a successful cache lookup\n metadataEntity.resetExpiresAt();\n metadataEntity.updateCanonicalAuthority(this.canonicalAuthority);\n }\n const cacheKey = this.cacheManager.generateAuthorityMetadataCacheKey(metadataEntity.preferred_cache);\n this.cacheManager.setAuthorityMetadata(cacheKey, metadataEntity);\n this.metadata = metadataEntity;\n }\n /**\n * Update AuthorityMetadataEntity with new endpoints and return where the information came from\n * @param metadataEntity\n */\n async updateEndpointMetadata(metadataEntity) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.AuthorityUpdateEndpointMetadata, this.correlationId);\n this.logger.verbose(\"Attempting to get endpoint metadata from authority configuration\");\n let metadata = this.getEndpointMetadataFromConfig();\n if (metadata) {\n this.logger.verbose(\"Found endpoint metadata in authority configuration\");\n metadataEntity.updateEndpointMetadata(metadata, false);\n return AuthorityMetadataSource.CONFIG;\n }\n this.logger.verbose(\"Did not find endpoint metadata in the config... Attempting to get endpoint metadata from the hardcoded values.\");\n // skipAuthorityMetadataCache is used to bypass hardcoded authority metadata and force a network metadata cache lookup and network metadata request if no cached response is available.\n if (this.authorityOptions.skipAuthorityMetadataCache) {\n this.logger.verbose(\"Skipping hardcoded metadata cache since skipAuthorityMetadataCache is set to true. Attempting to get endpoint metadata from the network metadata cache.\");\n }\n else {\n let hardcodedMetadata = this.getEndpointMetadataFromHardcodedValues();\n if (hardcodedMetadata) {\n this.logger.verbose(\"Found endpoint metadata from hardcoded values.\");\n // If the user prefers to use an azure region replace the global endpoints with regional information.\n if (this.authorityOptions.azureRegionConfiguration?.azureRegion) {\n hardcodedMetadata = await invokeAsync(this.updateMetadataWithRegionalInformation.bind(this), PerformanceEvents.AuthorityUpdateMetadataWithRegionalInformation, this.logger, this.performanceClient, this.correlationId)(hardcodedMetadata);\n }\n metadataEntity.updateEndpointMetadata(hardcodedMetadata, false);\n return AuthorityMetadataSource.HARDCODED_VALUES;\n }\n else {\n this.logger.verbose(\"Did not find endpoint metadata in hardcoded values... Attempting to get endpoint metadata from the network metadata cache.\");\n }\n }\n // Check cached metadata entity expiration status\n const metadataEntityExpired = metadataEntity.isExpired();\n if (this.isAuthoritySameType(metadataEntity) &&\n metadataEntity.endpointsFromNetwork &&\n !metadataEntityExpired) {\n // No need to update\n this.logger.verbose(\"Found endpoint metadata in the cache.\");\n return AuthorityMetadataSource.CACHE;\n }\n else if (metadataEntityExpired) {\n this.logger.verbose(\"The metadata entity is expired.\");\n }\n metadata = await invokeAsync(this.getEndpointMetadataFromNetwork.bind(this), PerformanceEvents.AuthorityGetEndpointMetadataFromNetwork, this.logger, this.performanceClient, this.correlationId)();\n if (metadata) {\n // If the user prefers to use an azure region replace the global endpoints with regional information.\n if (this.authorityOptions.azureRegionConfiguration?.azureRegion) {\n metadata = await invokeAsync(this.updateMetadataWithRegionalInformation.bind(this), PerformanceEvents.AuthorityUpdateMetadataWithRegionalInformation, this.logger, this.performanceClient, this.correlationId)(metadata);\n }\n metadataEntity.updateEndpointMetadata(metadata, true);\n return AuthorityMetadataSource.NETWORK;\n }\n else {\n // Metadata could not be obtained from the config, cache, network or hardcoded values\n throw createClientAuthError(openIdConfigError, this.defaultOpenIdConfigurationEndpoint);\n }\n }\n /**\n * Compares the number of url components after the domain to determine if the cached\n * authority metadata can be used for the requested authority. Protects against same domain different\n * authority such as login.microsoftonline.com/tenant and login.microsoftonline.com/tfp/tenant/policy\n * @param metadataEntity\n */\n isAuthoritySameType(metadataEntity) {\n const cachedAuthorityUrl = new UrlString(metadataEntity.canonical_authority);\n const cachedParts = cachedAuthorityUrl.getUrlComponents().PathSegments;\n return (cachedParts.length ===\n this.canonicalAuthorityUrlComponents.PathSegments.length);\n }\n /**\n * Parse authorityMetadata config option\n */\n getEndpointMetadataFromConfig() {\n if (this.authorityOptions.authorityMetadata) {\n try {\n return JSON.parse(this.authorityOptions.authorityMetadata);\n }\n catch (e) {\n throw createClientConfigurationError(invalidAuthorityMetadata);\n }\n }\n return null;\n }\n /**\n * Gets OAuth endpoints from the given OpenID configuration endpoint.\n *\n * @param hasHardcodedMetadata boolean\n */\n async getEndpointMetadataFromNetwork() {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.AuthorityGetEndpointMetadataFromNetwork, this.correlationId);\n const options = {};\n /*\n * TODO: Add a timeout if the authority exists in our library's\n * hardcoded list of metadata\n */\n const openIdConfigurationEndpoint = this.defaultOpenIdConfigurationEndpoint;\n this.logger.verbose(`Authority.getEndpointMetadataFromNetwork: attempting to retrieve OAuth endpoints from ${openIdConfigurationEndpoint}`);\n try {\n const response = await this.networkInterface.sendGetRequestAsync(openIdConfigurationEndpoint, options);\n const isValidResponse = isOpenIdConfigResponse(response.body);\n if (isValidResponse) {\n return response.body;\n }\n else {\n this.logger.verbose(`Authority.getEndpointMetadataFromNetwork: could not parse response as OpenID configuration`);\n return null;\n }\n }\n catch (e) {\n this.logger.verbose(`Authority.getEndpointMetadataFromNetwork: ${e}`);\n return null;\n }\n }\n /**\n * Get OAuth endpoints for common authorities.\n */\n getEndpointMetadataFromHardcodedValues() {\n if (this.canonicalAuthority in EndpointMetadata) {\n return EndpointMetadata[this.canonicalAuthority];\n }\n return null;\n }\n /**\n * Update the retrieved metadata with regional information.\n * User selected Azure region will be used if configured.\n */\n async updateMetadataWithRegionalInformation(metadata) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.AuthorityUpdateMetadataWithRegionalInformation, this.correlationId);\n const userConfiguredAzureRegion = this.authorityOptions.azureRegionConfiguration?.azureRegion;\n if (userConfiguredAzureRegion) {\n if (userConfiguredAzureRegion !==\n Constants.AZURE_REGION_AUTO_DISCOVER_FLAG) {\n this.regionDiscoveryMetadata.region_outcome =\n RegionDiscoveryOutcomes.CONFIGURED_NO_AUTO_DETECTION;\n this.regionDiscoveryMetadata.region_used =\n userConfiguredAzureRegion;\n return Authority.replaceWithRegionalInformation(metadata, userConfiguredAzureRegion);\n }\n const autodetectedRegionName = await invokeAsync(this.regionDiscovery.detectRegion.bind(this.regionDiscovery), PerformanceEvents.RegionDiscoveryDetectRegion, this.logger, this.performanceClient, this.correlationId)(this.authorityOptions.azureRegionConfiguration\n ?.environmentRegion, this.regionDiscoveryMetadata);\n if (autodetectedRegionName) {\n this.regionDiscoveryMetadata.region_outcome =\n RegionDiscoveryOutcomes.AUTO_DETECTION_REQUESTED_SUCCESSFUL;\n this.regionDiscoveryMetadata.region_used =\n autodetectedRegionName;\n return Authority.replaceWithRegionalInformation(metadata, autodetectedRegionName);\n }\n this.regionDiscoveryMetadata.region_outcome =\n RegionDiscoveryOutcomes.AUTO_DETECTION_REQUESTED_FAILED;\n }\n return metadata;\n }\n /**\n * Updates the AuthorityMetadataEntity with new aliases, preferred_network and preferred_cache\n * and returns where the information was retrieved from\n * @param metadataEntity\n * @returns AuthorityMetadataSource\n */\n async updateCloudDiscoveryMetadata(metadataEntity) {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.AuthorityUpdateCloudDiscoveryMetadata, this.correlationId);\n this.logger.verbose(\"Attempting to get cloud discovery metadata from authority configuration\");\n this.logger.verbosePii(`Known Authorities: ${this.authorityOptions.knownAuthorities ||\n Constants.NOT_APPLICABLE}`);\n this.logger.verbosePii(`Authority Metadata: ${this.authorityOptions.authorityMetadata ||\n Constants.NOT_APPLICABLE}`);\n this.logger.verbosePii(`Canonical Authority: ${metadataEntity.canonical_authority || Constants.NOT_APPLICABLE}`);\n let metadata = this.getCloudDiscoveryMetadataFromConfig();\n if (metadata) {\n this.logger.verbose(\"Found cloud discovery metadata in authority configuration\");\n metadataEntity.updateCloudDiscoveryMetadata(metadata, false);\n return AuthorityMetadataSource.CONFIG;\n }\n // If the cached metadata came from config but that config was not passed to this instance, we must go to hardcoded values\n this.logger.verbose(\"Did not find cloud discovery metadata in the config... Attempting to get cloud discovery metadata from the hardcoded values.\");\n if (this.options.skipAuthorityMetadataCache) {\n this.logger.verbose(\"Skipping hardcoded cloud discovery metadata cache since skipAuthorityMetadataCache is set to true. Attempting to get cloud discovery metadata from the network metadata cache.\");\n }\n else {\n const hardcodedMetadata = this.getCloudDiscoveryMetadataFromHardcodedValues();\n if (hardcodedMetadata) {\n this.logger.verbose(\"Found cloud discovery metadata from hardcoded values.\");\n metadataEntity.updateCloudDiscoveryMetadata(hardcodedMetadata, false);\n return AuthorityMetadataSource.HARDCODED_VALUES;\n }\n this.logger.verbose(\"Did not find cloud discovery metadata in hardcoded values... Attempting to get cloud discovery metadata from the network metadata cache.\");\n }\n const metadataEntityExpired = metadataEntity.isExpired();\n if (this.isAuthoritySameType(metadataEntity) &&\n metadataEntity.aliasesFromNetwork &&\n !metadataEntityExpired) {\n this.logger.verbose(\"Found cloud discovery metadata in the cache.\");\n // No need to update\n return AuthorityMetadataSource.CACHE;\n }\n else if (metadataEntityExpired) {\n this.logger.verbose(\"The metadata entity is expired.\");\n }\n metadata = await invokeAsync(this.getCloudDiscoveryMetadataFromNetwork.bind(this), PerformanceEvents.AuthorityGetCloudDiscoveryMetadataFromNetwork, this.logger, this.performanceClient, this.correlationId)();\n if (metadata) {\n metadataEntity.updateCloudDiscoveryMetadata(metadata, true);\n return AuthorityMetadataSource.NETWORK;\n }\n // Metadata could not be obtained from the config, cache, network or hardcoded values\n throw createClientConfigurationError(untrustedAuthority);\n }\n /**\n * Parse cloudDiscoveryMetadata config or check knownAuthorities\n */\n getCloudDiscoveryMetadataFromConfig() {\n // CIAM does not support cloud discovery metadata\n if (this.authorityType === AuthorityType.Ciam) {\n this.logger.verbose(\"CIAM authorities do not support cloud discovery metadata, generate the aliases from authority host.\");\n return Authority.createCloudDiscoveryMetadataFromHost(this.hostnameAndPort);\n }\n // Check if network response was provided in config\n if (this.authorityOptions.cloudDiscoveryMetadata) {\n this.logger.verbose(\"The cloud discovery metadata has been provided as a network response, in the config.\");\n try {\n this.logger.verbose(\"Attempting to parse the cloud discovery metadata.\");\n const parsedResponse = JSON.parse(this.authorityOptions.cloudDiscoveryMetadata);\n const metadata = Authority.getCloudDiscoveryMetadataFromNetworkResponse(parsedResponse.metadata, this.hostnameAndPort);\n this.logger.verbose(\"Parsed the cloud discovery metadata.\");\n if (metadata) {\n this.logger.verbose(\"There is returnable metadata attached to the parsed cloud discovery metadata.\");\n return metadata;\n }\n else {\n this.logger.verbose(\"There is no metadata attached to the parsed cloud discovery metadata.\");\n }\n }\n catch (e) {\n this.logger.verbose(\"Unable to parse the cloud discovery metadata. Throwing Invalid Cloud Discovery Metadata Error.\");\n throw createClientConfigurationError(invalidCloudDiscoveryMetadata);\n }\n }\n // If cloudDiscoveryMetadata is empty or does not contain the host, check knownAuthorities\n if (this.isInKnownAuthorities()) {\n this.logger.verbose(\"The host is included in knownAuthorities. Creating new cloud discovery metadata from the host.\");\n return Authority.createCloudDiscoveryMetadataFromHost(this.hostnameAndPort);\n }\n return null;\n }\n /**\n * Called to get metadata from network if CloudDiscoveryMetadata was not populated by config\n *\n * @param hasHardcodedMetadata boolean\n */\n async getCloudDiscoveryMetadataFromNetwork() {\n this.performanceClient?.addQueueMeasurement(PerformanceEvents.AuthorityGetCloudDiscoveryMetadataFromNetwork, this.correlationId);\n const instanceDiscoveryEndpoint = `${Constants.AAD_INSTANCE_DISCOVERY_ENDPT}${this.canonicalAuthority}oauth2/v2.0/authorize`;\n const options = {};\n /*\n * TODO: Add a timeout if the authority exists in our library's\n * hardcoded list of metadata\n */\n let match = null;\n try {\n const response = await this.networkInterface.sendGetRequestAsync(instanceDiscoveryEndpoint, options);\n let typedResponseBody;\n let metadata;\n if (isCloudInstanceDiscoveryResponse(response.body)) {\n typedResponseBody =\n response.body;\n metadata = typedResponseBody.metadata;\n this.logger.verbosePii(`tenant_discovery_endpoint is: ${typedResponseBody.tenant_discovery_endpoint}`);\n }\n else if (isCloudInstanceDiscoveryErrorResponse(response.body)) {\n this.logger.warning(`A CloudInstanceDiscoveryErrorResponse was returned. The cloud instance discovery network request's status code is: ${response.status}`);\n typedResponseBody =\n response.body;\n if (typedResponseBody.error === Constants.INVALID_INSTANCE) {\n this.logger.error(\"The CloudInstanceDiscoveryErrorResponse error is invalid_instance.\");\n return null;\n }\n this.logger.warning(`The CloudInstanceDiscoveryErrorResponse error is ${typedResponseBody.error}`);\n this.logger.warning(`The CloudInstanceDiscoveryErrorResponse error description is ${typedResponseBody.error_description}`);\n this.logger.warning(\"Setting the value of the CloudInstanceDiscoveryMetadata (returned from the network) to []\");\n metadata = [];\n }\n else {\n this.logger.error(\"AAD did not return a CloudInstanceDiscoveryResponse or CloudInstanceDiscoveryErrorResponse\");\n return null;\n }\n this.logger.verbose(\"Attempting to find a match between the developer's authority and the CloudInstanceDiscoveryMetadata returned from the network request.\");\n match = Authority.getCloudDiscoveryMetadataFromNetworkResponse(metadata, this.hostnameAndPort);\n }\n catch (error) {\n if (error instanceof AuthError) {\n this.logger.error(`There was a network error while attempting to get the cloud discovery instance metadata.\\nError: ${error.errorCode}\\nError Description: ${error.errorMessage}`);\n }\n else {\n const typedError = error;\n this.logger.error(`A non-MSALJS error was thrown while attempting to get the cloud instance discovery metadata.\\nError: ${typedError.name}\\nError Description: ${typedError.message}`);\n }\n return null;\n }\n // Custom Domain scenario, host is trusted because Instance Discovery call succeeded\n if (!match) {\n this.logger.warning(\"The developer's authority was not found within the CloudInstanceDiscoveryMetadata returned from the network request.\");\n this.logger.verbose(\"Creating custom Authority for custom domain scenario.\");\n match = Authority.createCloudDiscoveryMetadataFromHost(this.hostnameAndPort);\n }\n return match;\n }\n /**\n * Get cloud discovery metadata for common authorities\n */\n getCloudDiscoveryMetadataFromHardcodedValues() {\n if (this.canonicalAuthority in InstanceDiscoveryMetadata) {\n const hardcodedMetadataResponse = InstanceDiscoveryMetadata[this.canonicalAuthority];\n const metadata = Authority.getCloudDiscoveryMetadataFromNetworkResponse(hardcodedMetadataResponse.metadata, this.hostnameAndPort);\n return metadata;\n }\n return null;\n }\n /**\n * Helper function to determine if this host is included in the knownAuthorities config option\n */\n isInKnownAuthorities() {\n const matches = this.authorityOptions.knownAuthorities.filter((authority) => {\n return (UrlString.getDomainFromUrl(authority).toLowerCase() ===\n this.hostnameAndPort);\n });\n return matches.length > 0;\n }\n /**\n * helper function to populate the authority based on azureCloudOptions\n * @param authorityString\n * @param azureCloudOptions\n */\n static generateAuthority(authorityString, azureCloudOptions) {\n let authorityAzureCloudInstance;\n if (azureCloudOptions &&\n azureCloudOptions.azureCloudInstance !== AzureCloudInstance.None) {\n const tenant = azureCloudOptions.tenant\n ? azureCloudOptions.tenant\n : Constants.DEFAULT_COMMON_TENANT;\n authorityAzureCloudInstance = `${azureCloudOptions.azureCloudInstance}/${tenant}/`;\n }\n return authorityAzureCloudInstance\n ? authorityAzureCloudInstance\n : authorityString;\n }\n /**\n * Creates cloud discovery metadata object from a given host\n * @param host\n */\n static createCloudDiscoveryMetadataFromHost(host) {\n return {\n preferred_network: host,\n preferred_cache: host,\n aliases: [host],\n };\n }\n /**\n * Searches instance discovery network response for the entry that contains the host in the aliases list\n * @param response\n * @param authority\n */\n static getCloudDiscoveryMetadataFromNetworkResponse(response, authority) {\n for (let i = 0; i < response.length; i++) {\n const metadata = response[i];\n if (metadata.aliases.indexOf(authority) > -1) {\n return metadata;\n }\n }\n return null;\n }\n /**\n * helper function to generate environment from authority object\n */\n getPreferredCache() {\n if (this.discoveryComplete()) {\n return this.metadata.preferred_cache;\n }\n else {\n throw createClientAuthError(endpointResolutionError);\n }\n }\n /**\n * Returns whether or not the provided host is an alias of this authority instance\n * @param host\n */\n isAlias(host) {\n return this.metadata.aliases.indexOf(host) > -1;\n }\n /**\n * Returns whether or not the provided host is an alias of a known Microsoft authority for purposes of endpoint discovery\n * @param host\n */\n isAliasOfKnownMicrosoftAuthority(host) {\n return InstanceDiscoveryMetadataAliases.has(host);\n }\n /**\n * Checks whether the provided host is that of a public cloud authority\n *\n * @param authority string\n * @returns bool\n */\n static isPublicCloudAuthority(host) {\n return Constants.KNOWN_PUBLIC_CLOUDS.indexOf(host) >= 0;\n }\n /**\n * Rebuild the authority string with the region\n *\n * @param host string\n * @param region string\n */\n static buildRegionalAuthorityString(host, region, queryString) {\n // Create and validate a Url string object with the initial authority string\n const authorityUrlInstance = new UrlString(host);\n authorityUrlInstance.validateAsUri();\n const authorityUrlParts = authorityUrlInstance.getUrlComponents();\n let hostNameAndPort = `${region}.${authorityUrlParts.HostNameAndPort}`;\n if (this.isPublicCloudAuthority(authorityUrlParts.HostNameAndPort)) {\n hostNameAndPort = `${region}.${Constants.REGIONAL_AUTH_PUBLIC_CLOUD_SUFFIX}`;\n }\n // Include the query string portion of the url\n const url = UrlString.constructAuthorityUriFromObject({\n ...authorityUrlInstance.getUrlComponents(),\n HostNameAndPort: hostNameAndPort,\n }).urlString;\n // Add the query string if a query string was provided\n if (queryString)\n return `${url}?${queryString}`;\n return url;\n }\n /**\n * Replace the endpoints in the metadata object with their regional equivalents.\n *\n * @param metadata OpenIdConfigResponse\n * @param azureRegion string\n */\n static replaceWithRegionalInformation(metadata, azureRegion) {\n const regionalMetadata = { ...metadata };\n regionalMetadata.authorization_endpoint =\n Authority.buildRegionalAuthorityString(regionalMetadata.authorization_endpoint, azureRegion);\n // TODO: Enquire on whether we should leave the query string or remove it before releasing the feature\n regionalMetadata.token_endpoint =\n Authority.buildRegionalAuthorityString(regionalMetadata.token_endpoint, azureRegion, Constants.REGIONAL_AUTH_NON_MSI_QUERY_STRING);\n if (regionalMetadata.end_session_endpoint) {\n regionalMetadata.end_session_endpoint =\n Authority.buildRegionalAuthorityString(regionalMetadata.end_session_endpoint, azureRegion);\n }\n return regionalMetadata;\n }\n /**\n * Transform CIAM_AUTHORIY as per the below rules:\n * If no path segments found and it is a CIAM authority (hostname ends with .ciamlogin.com), then transform it\n *\n * NOTE: The transformation path should go away once STS supports CIAM with the format: `tenantIdorDomain.ciamlogin.com`\n * `ciamlogin.com` can also change in the future and we should accommodate the same\n *\n * @param authority\n */\n static transformCIAMAuthority(authority) {\n let ciamAuthority = authority.endsWith(Constants.FORWARD_SLASH)\n ? authority\n : `${authority}${Constants.FORWARD_SLASH}`;\n const authorityUrl = new UrlString(authority);\n const authorityUrlComponents = authorityUrl.getUrlComponents();\n // check if transformation is needed\n if (authorityUrlComponents.PathSegments.length === 0 &&\n authorityUrlComponents.HostNameAndPort.endsWith(Constants.CIAM_AUTH_URL)) {\n const tenantIdOrDomain = authorityUrlComponents.HostNameAndPort.split(\".\")[0];\n ciamAuthority = `${ciamAuthority}${tenantIdOrDomain}${Constants.AAD_TENANT_DOMAIN_SUFFIX}`;\n }\n return ciamAuthority;\n }\n}\n// Reserved tenant domain names that will not be replaced with tenant id\nAuthority.reservedTenantDomains = new Set([\n \"{tenant}\",\n \"{tenantid}\",\n AADAuthorityConstants.COMMON,\n AADAuthorityConstants.CONSUMERS,\n AADAuthorityConstants.ORGANIZATIONS,\n]);\n\nexport { Authority };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { Authority } from './Authority.mjs';\nimport { createClientConfigurationError } from '../error/ClientConfigurationError.mjs';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { PerformanceEvents } from '../telemetry/performance/PerformanceEvent.mjs';\nimport { invokeAsync } from '../utils/FunctionWrappers.mjs';\nimport { endpointResolutionError } from '../error/ClientAuthErrorCodes.mjs';\nimport { urlEmptyError } from '../error/ClientConfigurationErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/** @internal */\nclass AuthorityFactory {\n /**\n * Create an authority object of the correct type based on the url\n * Performs basic authority validation - checks to see if the authority is of a valid type (i.e. aad, b2c, adfs)\n *\n * Also performs endpoint discovery.\n *\n * @param authorityUri\n * @param networkClient\n * @param protocolMode\n */\n static async createDiscoveredInstance(authorityUri, networkClient, cacheManager, authorityOptions, logger, performanceClient, correlationId) {\n performanceClient?.addQueueMeasurement(PerformanceEvents.AuthorityFactoryCreateDiscoveredInstance, correlationId);\n const authorityUriFinal = Authority.transformCIAMAuthority(authorityUri);\n // Initialize authority and perform discovery endpoint check.\n const acquireTokenAuthority = AuthorityFactory.createInstance(authorityUriFinal, networkClient, cacheManager, authorityOptions, logger, performanceClient, correlationId);\n try {\n await invokeAsync(acquireTokenAuthority.resolveEndpointsAsync.bind(acquireTokenAuthority), PerformanceEvents.AuthorityResolveEndpointsAsync, logger, performanceClient, correlationId)();\n return acquireTokenAuthority;\n }\n catch (e) {\n throw createClientAuthError(endpointResolutionError);\n }\n }\n /**\n * Create an authority object of the correct type based on the url\n * Performs basic authority validation - checks to see if the authority is of a valid type (i.e. aad, b2c, adfs)\n *\n * Does not perform endpoint discovery.\n *\n * @param authorityUrl\n * @param networkInterface\n * @param protocolMode\n */\n static createInstance(authorityUrl, networkInterface, cacheManager, authorityOptions, logger, performanceClient, correlationId) {\n // Throw error if authority url is empty\n if (!authorityUrl) {\n throw createClientConfigurationError(urlEmptyError);\n }\n return new Authority(authorityUrl, networkInterface, cacheManager, authorityOptions, logger, performanceClient, correlationId);\n }\n}\n\nexport { AuthorityFactory };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { SERVER_TELEM_CONSTANTS } from '../../utils/Constants.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass ServerTelemetryEntity {\n constructor() {\n this.failedRequests = [];\n this.errors = [];\n this.cacheHits = 0;\n }\n /**\n * validates if a given cache entry is \"Telemetry\", parses \n * @param key\n * @param entity\n */\n static isServerTelemetryEntity(key, entity) {\n const validateKey = key.indexOf(SERVER_TELEM_CONSTANTS.CACHE_KEY) === 0;\n let validateEntity = true;\n if (entity) {\n validateEntity =\n entity.hasOwnProperty(\"failedRequests\") &&\n entity.hasOwnProperty(\"errors\") &&\n entity.hasOwnProperty(\"cacheHits\");\n }\n return validateKey && validateEntity;\n }\n}\n\nexport { ServerTelemetryEntity };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { ThrottlingConstants } from '../../utils/Constants.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass ThrottlingEntity {\n /**\n * validates if a given cache entry is \"Throttling\", parses \n * @param key\n * @param entity\n */\n static isThrottlingEntity(key, entity) {\n let validateKey = false;\n if (key) {\n validateKey =\n key.indexOf(ThrottlingConstants.THROTTLING_PREFIX) === 0;\n }\n let validateEntity = true;\n if (entity) {\n validateEntity = entity.hasOwnProperty(\"throttleTime\");\n }\n return validateKey && validateEntity;\n }\n}\n\nexport { ThrottlingEntity };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { createClientAuthError } from '../error/ClientAuthError.mjs';\nimport { methodNotImplemented } from '../error/ClientAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst StubbedNetworkModule = {\n sendGetRequestAsync: () => {\n return Promise.reject(createClientAuthError(methodNotImplemented));\n },\n sendPostRequestAsync: () => {\n return Promise.reject(createClientAuthError(methodNotImplemented));\n },\n};\n\nexport { StubbedNetworkModule };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst missingKidError = \"missing_kid_error\";\nconst missingAlgError = \"missing_alg_error\";\n\nexport { missingAlgError, missingKidError };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { AuthError } from './AuthError.mjs';\nimport { missingKidError, missingAlgError } from './JoseHeaderErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst JoseHeaderErrorMessages = {\n [missingKidError]: \"The JOSE Header for the requested JWT, JWS or JWK object requires a keyId to be configured as the 'kid' header claim. No 'kid' value was provided.\",\n [missingAlgError]: \"The JOSE Header for the requested JWT, JWS or JWK object requires an algorithm to be specified as the 'alg' header claim. No 'alg' value was provided.\",\n};\n/**\n * Error thrown when there is an error in the client code running on the browser.\n */\nclass JoseHeaderError extends AuthError {\n constructor(errorCode, errorMessage) {\n super(errorCode, errorMessage);\n this.name = \"JoseHeaderError\";\n Object.setPrototypeOf(this, JoseHeaderError.prototype);\n }\n}\n/** Returns JoseHeaderError object */\nfunction createJoseHeaderError(code) {\n return new JoseHeaderError(code, JoseHeaderErrorMessages[code]);\n}\n\nexport { JoseHeaderError, JoseHeaderErrorMessages, createJoseHeaderError };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { createJoseHeaderError } from '../error/JoseHeaderError.mjs';\nimport { JsonTypes } from '../utils/Constants.mjs';\nimport { missingKidError, missingAlgError } from '../error/JoseHeaderErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/** @internal */\nclass JoseHeader {\n constructor(options) {\n this.typ = options.typ;\n this.alg = options.alg;\n this.kid = options.kid;\n }\n /**\n * Builds SignedHttpRequest formatted JOSE Header from the\n * JOSE Header options provided or previously set on the object and returns\n * the stringified header object.\n * Throws if keyId or algorithm aren't provided since they are required for Access Token Binding.\n * @param shrHeaderOptions\n * @returns\n */\n static getShrHeaderString(shrHeaderOptions) {\n // KeyID is required on the SHR header\n if (!shrHeaderOptions.kid) {\n throw createJoseHeaderError(missingKidError);\n }\n // Alg is required on the SHR header\n if (!shrHeaderOptions.alg) {\n throw createJoseHeaderError(missingAlgError);\n }\n const shrHeader = new JoseHeader({\n // Access Token PoP headers must have type pop, but the type header can be overriden for special cases\n typ: shrHeaderOptions.typ || JsonTypes.Pop,\n kid: shrHeaderOptions.kid,\n alg: shrHeaderOptions.alg,\n });\n return JSON.stringify(shrHeader);\n }\n}\n\nexport { JoseHeader };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { CacheOutcome, Constants, SERVER_TELEM_CONSTANTS, Separators } from '../../utils/Constants.mjs';\nimport { AuthError } from '../../error/AuthError.mjs';\nimport { ServerTelemetryEntity } from '../../cache/entities/ServerTelemetryEntity.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/** @internal */\nclass ServerTelemetryManager {\n constructor(telemetryRequest, cacheManager) {\n this.cacheOutcome = CacheOutcome.NOT_APPLICABLE;\n this.cacheManager = cacheManager;\n this.apiId = telemetryRequest.apiId;\n this.correlationId = telemetryRequest.correlationId;\n this.wrapperSKU = telemetryRequest.wrapperSKU || Constants.EMPTY_STRING;\n this.wrapperVer = telemetryRequest.wrapperVer || Constants.EMPTY_STRING;\n this.telemetryCacheKey =\n SERVER_TELEM_CONSTANTS.CACHE_KEY +\n Separators.CACHE_KEY_SEPARATOR +\n telemetryRequest.clientId;\n }\n /**\n * API to add MSER Telemetry to request\n */\n generateCurrentRequestHeaderValue() {\n const request = `${this.apiId}${SERVER_TELEM_CONSTANTS.VALUE_SEPARATOR}${this.cacheOutcome}`;\n const platformFields = [this.wrapperSKU, this.wrapperVer].join(SERVER_TELEM_CONSTANTS.VALUE_SEPARATOR);\n const regionDiscoveryFields = this.getRegionDiscoveryFields();\n const requestWithRegionDiscoveryFields = [\n request,\n regionDiscoveryFields,\n ].join(SERVER_TELEM_CONSTANTS.VALUE_SEPARATOR);\n return [\n SERVER_TELEM_CONSTANTS.SCHEMA_VERSION,\n requestWithRegionDiscoveryFields,\n platformFields,\n ].join(SERVER_TELEM_CONSTANTS.CATEGORY_SEPARATOR);\n }\n /**\n * API to add MSER Telemetry for the last failed request\n */\n generateLastRequestHeaderValue() {\n const lastRequests = this.getLastRequests();\n const maxErrors = ServerTelemetryManager.maxErrorsToSend(lastRequests);\n const failedRequests = lastRequests.failedRequests\n .slice(0, 2 * maxErrors)\n .join(SERVER_TELEM_CONSTANTS.VALUE_SEPARATOR);\n const errors = lastRequests.errors\n .slice(0, maxErrors)\n .join(SERVER_TELEM_CONSTANTS.VALUE_SEPARATOR);\n const errorCount = lastRequests.errors.length;\n // Indicate whether this header contains all data or partial data\n const overflow = maxErrors < errorCount\n ? SERVER_TELEM_CONSTANTS.OVERFLOW_TRUE\n : SERVER_TELEM_CONSTANTS.OVERFLOW_FALSE;\n const platformFields = [errorCount, overflow].join(SERVER_TELEM_CONSTANTS.VALUE_SEPARATOR);\n return [\n SERVER_TELEM_CONSTANTS.SCHEMA_VERSION,\n lastRequests.cacheHits,\n failedRequests,\n errors,\n platformFields,\n ].join(SERVER_TELEM_CONSTANTS.CATEGORY_SEPARATOR);\n }\n /**\n * API to cache token failures for MSER data capture\n * @param error\n */\n cacheFailedRequest(error) {\n const lastRequests = this.getLastRequests();\n if (lastRequests.errors.length >=\n SERVER_TELEM_CONSTANTS.MAX_CACHED_ERRORS) {\n // Remove a cached error to make room, first in first out\n lastRequests.failedRequests.shift(); // apiId\n lastRequests.failedRequests.shift(); // correlationId\n lastRequests.errors.shift();\n }\n lastRequests.failedRequests.push(this.apiId, this.correlationId);\n if (error instanceof Error && !!error && error.toString()) {\n if (error instanceof AuthError) {\n if (error.subError) {\n lastRequests.errors.push(error.subError);\n }\n else if (error.errorCode) {\n lastRequests.errors.push(error.errorCode);\n }\n else {\n lastRequests.errors.push(error.toString());\n }\n }\n else {\n lastRequests.errors.push(error.toString());\n }\n }\n else {\n lastRequests.errors.push(SERVER_TELEM_CONSTANTS.UNKNOWN_ERROR);\n }\n this.cacheManager.setServerTelemetry(this.telemetryCacheKey, lastRequests);\n return;\n }\n /**\n * Update server telemetry cache entry by incrementing cache hit counter\n */\n incrementCacheHits() {\n const lastRequests = this.getLastRequests();\n lastRequests.cacheHits += 1;\n this.cacheManager.setServerTelemetry(this.telemetryCacheKey, lastRequests);\n return lastRequests.cacheHits;\n }\n /**\n * Get the server telemetry entity from cache or initialize a new one\n */\n getLastRequests() {\n const initialValue = new ServerTelemetryEntity();\n const lastRequests = this.cacheManager.getServerTelemetry(this.telemetryCacheKey);\n return lastRequests || initialValue;\n }\n /**\n * Remove server telemetry cache entry\n */\n clearTelemetryCache() {\n const lastRequests = this.getLastRequests();\n const numErrorsFlushed = ServerTelemetryManager.maxErrorsToSend(lastRequests);\n const errorCount = lastRequests.errors.length;\n if (numErrorsFlushed === errorCount) {\n // All errors were sent on last request, clear Telemetry cache\n this.cacheManager.removeItem(this.telemetryCacheKey);\n }\n else {\n // Partial data was flushed to server, construct a new telemetry cache item with errors that were not flushed\n const serverTelemEntity = new ServerTelemetryEntity();\n serverTelemEntity.failedRequests =\n lastRequests.failedRequests.slice(numErrorsFlushed * 2); // failedRequests contains 2 items for each error\n serverTelemEntity.errors =\n lastRequests.errors.slice(numErrorsFlushed);\n this.cacheManager.setServerTelemetry(this.telemetryCacheKey, serverTelemEntity);\n }\n }\n /**\n * Returns the maximum number of errors that can be flushed to the server in the next network request\n * @param serverTelemetryEntity\n */\n static maxErrorsToSend(serverTelemetryEntity) {\n let i;\n let maxErrors = 0;\n let dataSize = 0;\n const errorCount = serverTelemetryEntity.errors.length;\n for (i = 0; i < errorCount; i++) {\n // failedRequests parameter contains pairs of apiId and correlationId, multiply index by 2 to preserve pairs\n const apiId = serverTelemetryEntity.failedRequests[2 * i] ||\n Constants.EMPTY_STRING;\n const correlationId = serverTelemetryEntity.failedRequests[2 * i + 1] ||\n Constants.EMPTY_STRING;\n const errorCode = serverTelemetryEntity.errors[i] || Constants.EMPTY_STRING;\n // Count number of characters that would be added to header, each character is 1 byte. Add 3 at the end to account for separators\n dataSize +=\n apiId.toString().length +\n correlationId.toString().length +\n errorCode.length +\n 3;\n if (dataSize < SERVER_TELEM_CONSTANTS.MAX_LAST_HEADER_BYTES) {\n // Adding this entry to the header would still keep header size below the limit\n maxErrors += 1;\n }\n else {\n break;\n }\n }\n return maxErrors;\n }\n /**\n * Get the region discovery fields\n *\n * @returns string\n */\n getRegionDiscoveryFields() {\n const regionDiscoveryFields = [];\n regionDiscoveryFields.push(this.regionUsed || Constants.EMPTY_STRING);\n regionDiscoveryFields.push(this.regionSource || Constants.EMPTY_STRING);\n regionDiscoveryFields.push(this.regionOutcome || Constants.EMPTY_STRING);\n return regionDiscoveryFields.join(\",\");\n }\n /**\n * Update the region discovery metadata\n *\n * @param regionDiscoveryMetadata\n * @returns void\n */\n updateRegionDiscoveryMetadata(regionDiscoveryMetadata) {\n this.regionUsed = regionDiscoveryMetadata.region_used;\n this.regionSource = regionDiscoveryMetadata.region_source;\n this.regionOutcome = regionDiscoveryMetadata.region_outcome;\n }\n /**\n * Set cache outcome\n */\n setCacheOutcome(cacheOutcome) {\n this.cacheOutcome = cacheOutcome;\n }\n}\n\nexport { ServerTelemetryManager };\n\n","/*! @azure/msal-common v14.1.0 2023-10-05 */\n'use strict';\nimport { PerformanceEventStatus } from './PerformanceEvent.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass StubPerformanceMeasurement {\n startMeasurement() {\n return;\n }\n endMeasurement() {\n return;\n }\n flushMeasurement() {\n return null;\n }\n}\nclass StubPerformanceClient {\n generateId() {\n return \"callback-id\";\n }\n startMeasurement(measureName, correlationId) {\n return {\n end: () => null,\n discard: () => { },\n add: () => { },\n increment: () => { },\n event: {\n eventId: this.generateId(),\n status: PerformanceEventStatus.InProgress,\n authority: \"\",\n libraryName: \"\",\n libraryVersion: \"\",\n clientId: \"\",\n name: measureName,\n startTimeMs: Date.now(),\n correlationId: correlationId || \"\",\n },\n measurement: new StubPerformanceMeasurement(),\n };\n }\n startPerformanceMeasurement() {\n return new StubPerformanceMeasurement();\n }\n calculateQueuedTime() {\n return 0;\n }\n addQueueMeasurement() {\n return;\n }\n setPreQueueTime() {\n return;\n }\n endMeasurement() {\n return null;\n }\n discardMeasurements() {\n return;\n }\n removePerformanceCallback() {\n return true;\n }\n addPerformanceCallback() {\n return \"\";\n }\n emitEvents() {\n return;\n }\n addFields() {\n return;\n }\n incrementFields() {\n return;\n }\n cacheEventByCorrelationId() {\n return;\n }\n}\n\nexport { StubPerformanceClient, StubPerformanceMeasurement };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Class which exposes APIs to encode plaintext to base64 encoded string. See here for implementation details:\n * https://developer.mozilla.org/en-US/docs/Web/API/WindowBase64/Base64_encoding_and_decoding#Solution_2_%E2%80%93_JavaScript's_UTF-16_%3E_UTF-8_%3E_base64\n */\n/**\n * Returns URL Safe b64 encoded string from a plaintext string.\n * @param input\n */\nfunction urlEncode(input) {\n return encodeURIComponent(base64Encode(input)\n .replace(/=/g, \"\")\n .replace(/\\+/g, \"-\")\n .replace(/\\//g, \"_\"));\n}\n/**\n * Returns URL Safe b64 encoded string from an int8Array.\n * @param inputArr\n */\nfunction urlEncodeArr(inputArr) {\n return base64EncArr(inputArr)\n .replace(/=/g, \"\")\n .replace(/\\+/g, \"-\")\n .replace(/\\//g, \"_\");\n}\n/**\n * Returns b64 encoded string from plaintext string.\n * @param input\n */\nfunction base64Encode(input) {\n return base64EncArr(new TextEncoder().encode(input));\n}\n/**\n * Base64 encode byte array\n * @param aBytes\n */\nfunction base64EncArr(aBytes) {\n const binString = Array.from(aBytes, (x) => String.fromCodePoint(x)).join(\"\");\n return btoa(binString);\n}\n\nexport { base64Encode, urlEncode, urlEncodeArr };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst pkceNotCreated = \"pkce_not_created\";\nconst cryptoNonExistent = \"crypto_nonexistent\";\nconst emptyNavigateUri = \"empty_navigate_uri\";\nconst hashEmptyError = \"hash_empty_error\";\nconst noStateInHash = \"no_state_in_hash\";\nconst hashDoesNotContainKnownProperties = \"hash_does_not_contain_known_properties\";\nconst unableToParseState = \"unable_to_parse_state\";\nconst stateInteractionTypeMismatch = \"state_interaction_type_mismatch\";\nconst interactionInProgress = \"interaction_in_progress\";\nconst popupWindowError = \"popup_window_error\";\nconst emptyWindowError = \"empty_window_error\";\nconst userCancelled = \"user_cancelled\";\nconst monitorPopupTimeout = \"monitor_popup_timeout\";\nconst monitorWindowTimeout = \"monitor_window_timeout\";\nconst redirectInIframe = \"redirect_in_iframe\";\nconst blockIframeReload = \"block_iframe_reload\";\nconst blockNestedPopups = \"block_nested_popups\";\nconst iframeClosedPrematurely = \"iframe_closed_prematurely\";\nconst silentLogoutUnsupported = \"silent_logout_unsupported\";\nconst noAccountError = \"no_account_error\";\nconst silentPromptValueError = \"silent_prompt_value_error\";\nconst noTokenRequestCacheError = \"no_token_request_cache_error\";\nconst unableToParseTokenRequestCacheError = \"unable_to_parse_token_request_cache_error\";\nconst noCachedAuthorityError = \"no_cached_authority_error\";\nconst authRequestNotSetError = \"auth_request_not_set_error\";\nconst invalidCacheType = \"invalid_cache_type\";\nconst nonBrowserEnvironment = \"non_browser_environment\";\nconst databaseNotOpen = \"database_not_open\";\nconst noNetworkConnectivity = \"no_network_connectivity\";\nconst postRequestFailed = \"post_request_failed\";\nconst getRequestFailed = \"get_request_failed\";\nconst failedToParseResponse = \"failed_to_parse_response\";\nconst unableToLoadToken = \"unable_to_load_token\";\nconst cryptoKeyNotFound = \"crypto_key_not_found\";\nconst authCodeRequired = \"auth_code_required\";\nconst authCodeOrNativeAccountIdRequired = \"auth_code_or_nativeAccountId_required\";\nconst spaCodeAndNativeAccountIdPresent = \"spa_code_and_nativeAccountId_present\";\nconst databaseUnavailable = \"database_unavailable\";\nconst unableToAcquireTokenFromNativePlatform = \"unable_to_acquire_token_from_native_platform\";\nconst nativeHandshakeTimeout = \"native_handshake_timeout\";\nconst nativeExtensionNotInstalled = \"native_extension_not_installed\";\nconst nativeConnectionNotEstablished = \"native_connection_not_established\";\nconst uninitializedPublicClientApplication = \"uninitialized_public_client_application\";\nconst nativePromptNotSupported = \"native_prompt_not_supported\";\nconst invalidBase64String = \"invalid_base64_string\";\n\nexport { authCodeOrNativeAccountIdRequired, authCodeRequired, authRequestNotSetError, blockIframeReload, blockNestedPopups, cryptoKeyNotFound, cryptoNonExistent, databaseNotOpen, databaseUnavailable, emptyNavigateUri, emptyWindowError, failedToParseResponse, getRequestFailed, hashDoesNotContainKnownProperties, hashEmptyError, iframeClosedPrematurely, interactionInProgress, invalidBase64String, invalidCacheType, monitorPopupTimeout, monitorWindowTimeout, nativeConnectionNotEstablished, nativeExtensionNotInstalled, nativeHandshakeTimeout, nativePromptNotSupported, noAccountError, noCachedAuthorityError, noNetworkConnectivity, noStateInHash, noTokenRequestCacheError, nonBrowserEnvironment, pkceNotCreated, popupWindowError, postRequestFailed, redirectInIframe, silentLogoutUnsupported, silentPromptValueError, spaCodeAndNativeAccountIdPresent, stateInteractionTypeMismatch, unableToAcquireTokenFromNativePlatform, unableToLoadToken, unableToParseState, unableToParseTokenRequestCacheError, uninitializedPublicClientApplication, userCancelled };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { AuthError } from '@azure/msal-common';\nimport { pkceNotCreated, cryptoNonExistent, emptyNavigateUri, hashEmptyError, noStateInHash, hashDoesNotContainKnownProperties, unableToParseState, stateInteractionTypeMismatch, interactionInProgress, popupWindowError, emptyWindowError, userCancelled, monitorPopupTimeout, monitorWindowTimeout, redirectInIframe, blockIframeReload, blockNestedPopups, iframeClosedPrematurely, silentLogoutUnsupported, noAccountError, silentPromptValueError, noTokenRequestCacheError, unableToParseTokenRequestCacheError, noCachedAuthorityError, authRequestNotSetError, invalidCacheType, nonBrowserEnvironment, databaseNotOpen, noNetworkConnectivity, postRequestFailed, getRequestFailed, failedToParseResponse, unableToLoadToken, cryptoKeyNotFound, authCodeRequired, authCodeOrNativeAccountIdRequired, spaCodeAndNativeAccountIdPresent, databaseUnavailable, unableToAcquireTokenFromNativePlatform, nativeHandshakeTimeout, nativeExtensionNotInstalled, nativeConnectionNotEstablished, uninitializedPublicClientApplication, nativePromptNotSupported, invalidBase64String } from './BrowserAuthErrorCodes.mjs';\nimport * as BrowserAuthErrorCodes from './BrowserAuthErrorCodes.mjs';\nexport { BrowserAuthErrorCodes };\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst ErrorLink = \"For more visit: aka.ms/msaljs/browser-errors\";\n/**\n * BrowserAuthErrorMessage class containing string constants used by error codes and messages.\n */\nconst BrowserAuthErrorMessages = {\n [pkceNotCreated]: \"The PKCE code challenge and verifier could not be generated.\",\n [cryptoNonExistent]: \"The crypto object or function is not available.\",\n [emptyNavigateUri]: \"Navigation URI is empty. Please check stack trace for more info.\",\n [hashEmptyError]: `Hash value cannot be processed because it is empty. Please verify that your redirectUri is not clearing the hash. ${ErrorLink}`,\n [noStateInHash]: \"Hash does not contain state. Please verify that the request originated from msal.\",\n [hashDoesNotContainKnownProperties]: `Hash does not contain known properites. Please verify that your redirectUri is not changing the hash. ${ErrorLink}`,\n [unableToParseState]: \"Unable to parse state. Please verify that the request originated from msal.\",\n [stateInteractionTypeMismatch]: \"Hash contains state but the interaction type does not match the caller.\",\n [interactionInProgress]: `Interaction is currently in progress. Please ensure that this interaction has been completed before calling an interactive API. ${ErrorLink}`,\n [popupWindowError]: \"Error opening popup window. This can happen if you are using IE or if popups are blocked in the browser.\",\n [emptyWindowError]: \"window.open returned null or undefined window object.\",\n [userCancelled]: \"User cancelled the flow.\",\n [monitorPopupTimeout]: `Token acquisition in popup failed due to timeout. ${ErrorLink}`,\n [monitorWindowTimeout]: `Token acquisition in iframe failed due to timeout. ${ErrorLink}`,\n [redirectInIframe]: \"Redirects are not supported for iframed or brokered applications. Please ensure you are using MSAL.js in a top frame of the window if using the redirect APIs, or use the popup APIs.\",\n [blockIframeReload]: `Request was blocked inside an iframe because MSAL detected an authentication response. ${ErrorLink}`,\n [blockNestedPopups]: \"Request was blocked inside a popup because MSAL detected it was running in a popup.\",\n [iframeClosedPrematurely]: \"The iframe being monitored was closed prematurely.\",\n [silentLogoutUnsupported]: \"Silent logout not supported. Please call logoutRedirect or logoutPopup instead.\",\n [noAccountError]: \"No account object provided to acquireTokenSilent and no active account has been set. Please call setActiveAccount or provide an account on the request.\",\n [silentPromptValueError]: \"The value given for the prompt value is not valid for silent requests - must be set to 'none' or 'no_session'.\",\n [noTokenRequestCacheError]: \"No token request found in cache.\",\n [unableToParseTokenRequestCacheError]: \"The cached token request could not be parsed.\",\n [noCachedAuthorityError]: \"No cached authority found.\",\n [authRequestNotSetError]: \"Auth Request not set. Please ensure initiateAuthRequest was called from the InteractionHandler\",\n [invalidCacheType]: \"Invalid cache type\",\n [nonBrowserEnvironment]: \"Login and token requests are not supported in non-browser environments.\",\n [databaseNotOpen]: \"Database is not open!\",\n [noNetworkConnectivity]: \"No network connectivity. Check your internet connection.\",\n [postRequestFailed]: \"Network request failed: If the browser threw a CORS error, check that the redirectUri is registered in the Azure App Portal as type 'SPA'\",\n [getRequestFailed]: \"Network request failed. Please check the network trace to determine root cause.\",\n [failedToParseResponse]: \"Failed to parse network response. Check network trace.\",\n [unableToLoadToken]: \"Error loading token to cache.\",\n [cryptoKeyNotFound]: \"Cryptographic Key or Keypair not found in browser storage.\",\n [authCodeRequired]: \"An authorization code must be provided (as the `code` property on the request) to this flow.\",\n [authCodeOrNativeAccountIdRequired]: \"An authorization code or nativeAccountId must be provided to this flow.\",\n [spaCodeAndNativeAccountIdPresent]: \"Request cannot contain both spa code and native account id.\",\n [databaseUnavailable]: \"IndexedDB, which is required for persistent cryptographic key storage, is unavailable. This may be caused by browser privacy features which block persistent storage in third-party contexts.\",\n [unableToAcquireTokenFromNativePlatform]: `Unable to acquire token from native platform. ${ErrorLink}`,\n [nativeHandshakeTimeout]: \"Timed out while attempting to establish connection to browser extension\",\n [nativeExtensionNotInstalled]: \"Native extension is not installed. If you think this is a mistake call the initialize function.\",\n [nativeConnectionNotEstablished]: `Connection to native platform has not been established. Please install a compatible browser extension and run initialize(). ${ErrorLink}`,\n [uninitializedPublicClientApplication]: `You must call and await the initialize function before attempting to call any other MSAL API. ${ErrorLink}`,\n [nativePromptNotSupported]: \"The provided prompt is not supported by the native platform. This request should be routed to the web based flow.\",\n [invalidBase64String]: \"Invalid base64 encoded string.\",\n};\n/**\n * BrowserAuthErrorMessage class containing string constants used by error codes and messages.\n * @deprecated Use exported BrowserAuthErrorCodes instead.\n * In your app you can do :\n * ```\n * import { BrowserAuthErrorCodes } from \"@azure/msal-browser\";\n * ```\n */\nconst BrowserAuthErrorMessage = {\n pkceNotGenerated: {\n code: pkceNotCreated,\n desc: BrowserAuthErrorMessages[pkceNotCreated],\n },\n cryptoDoesNotExist: {\n code: cryptoNonExistent,\n desc: BrowserAuthErrorMessages[cryptoNonExistent],\n },\n emptyNavigateUriError: {\n code: emptyNavigateUri,\n desc: BrowserAuthErrorMessages[emptyNavigateUri],\n },\n hashEmptyError: {\n code: hashEmptyError,\n desc: BrowserAuthErrorMessages[hashEmptyError],\n },\n hashDoesNotContainStateError: {\n code: noStateInHash,\n desc: BrowserAuthErrorMessages[noStateInHash],\n },\n hashDoesNotContainKnownPropertiesError: {\n code: hashDoesNotContainKnownProperties,\n desc: BrowserAuthErrorMessages[hashDoesNotContainKnownProperties],\n },\n unableToParseStateError: {\n code: unableToParseState,\n desc: BrowserAuthErrorMessages[unableToParseState],\n },\n stateInteractionTypeMismatchError: {\n code: stateInteractionTypeMismatch,\n desc: BrowserAuthErrorMessages[stateInteractionTypeMismatch],\n },\n interactionInProgress: {\n code: interactionInProgress,\n desc: BrowserAuthErrorMessages[interactionInProgress],\n },\n popupWindowError: {\n code: popupWindowError,\n desc: BrowserAuthErrorMessages[popupWindowError],\n },\n emptyWindowError: {\n code: emptyWindowError,\n desc: BrowserAuthErrorMessages[emptyWindowError],\n },\n userCancelledError: {\n code: userCancelled,\n desc: BrowserAuthErrorMessages[userCancelled],\n },\n monitorPopupTimeoutError: {\n code: monitorPopupTimeout,\n desc: BrowserAuthErrorMessages[monitorPopupTimeout],\n },\n monitorIframeTimeoutError: {\n code: monitorWindowTimeout,\n desc: BrowserAuthErrorMessages[monitorWindowTimeout],\n },\n redirectInIframeError: {\n code: redirectInIframe,\n desc: BrowserAuthErrorMessages[redirectInIframe],\n },\n blockTokenRequestsInHiddenIframeError: {\n code: blockIframeReload,\n desc: BrowserAuthErrorMessages[blockIframeReload],\n },\n blockAcquireTokenInPopupsError: {\n code: blockNestedPopups,\n desc: BrowserAuthErrorMessages[blockNestedPopups],\n },\n iframeClosedPrematurelyError: {\n code: iframeClosedPrematurely,\n desc: BrowserAuthErrorMessages[iframeClosedPrematurely],\n },\n silentLogoutUnsupportedError: {\n code: silentLogoutUnsupported,\n desc: BrowserAuthErrorMessages[silentLogoutUnsupported],\n },\n noAccountError: {\n code: noAccountError,\n desc: BrowserAuthErrorMessages[noAccountError],\n },\n silentPromptValueError: {\n code: silentPromptValueError,\n desc: BrowserAuthErrorMessages[silentPromptValueError],\n },\n noTokenRequestCacheError: {\n code: noTokenRequestCacheError,\n desc: BrowserAuthErrorMessages[noTokenRequestCacheError],\n },\n unableToParseTokenRequestCacheError: {\n code: unableToParseTokenRequestCacheError,\n desc: BrowserAuthErrorMessages[unableToParseTokenRequestCacheError],\n },\n noCachedAuthorityError: {\n code: noCachedAuthorityError,\n desc: BrowserAuthErrorMessages[noCachedAuthorityError],\n },\n authRequestNotSet: {\n code: authRequestNotSetError,\n desc: BrowserAuthErrorMessages[authRequestNotSetError],\n },\n invalidCacheType: {\n code: invalidCacheType,\n desc: BrowserAuthErrorMessages[invalidCacheType],\n },\n notInBrowserEnvironment: {\n code: nonBrowserEnvironment,\n desc: BrowserAuthErrorMessages[nonBrowserEnvironment],\n },\n databaseNotOpen: {\n code: databaseNotOpen,\n desc: BrowserAuthErrorMessages[databaseNotOpen],\n },\n noNetworkConnectivity: {\n code: noNetworkConnectivity,\n desc: BrowserAuthErrorMessages[noNetworkConnectivity],\n },\n postRequestFailed: {\n code: postRequestFailed,\n desc: BrowserAuthErrorMessages[postRequestFailed],\n },\n getRequestFailed: {\n code: getRequestFailed,\n desc: BrowserAuthErrorMessages[getRequestFailed],\n },\n failedToParseNetworkResponse: {\n code: failedToParseResponse,\n desc: BrowserAuthErrorMessages[failedToParseResponse],\n },\n unableToLoadTokenError: {\n code: unableToLoadToken,\n desc: BrowserAuthErrorMessages[unableToLoadToken],\n },\n signingKeyNotFoundInStorage: {\n code: cryptoKeyNotFound,\n desc: BrowserAuthErrorMessages[cryptoKeyNotFound],\n },\n authCodeRequired: {\n code: authCodeRequired,\n desc: BrowserAuthErrorMessages[authCodeRequired],\n },\n authCodeOrNativeAccountRequired: {\n code: authCodeOrNativeAccountIdRequired,\n desc: BrowserAuthErrorMessages[authCodeOrNativeAccountIdRequired],\n },\n spaCodeAndNativeAccountPresent: {\n code: spaCodeAndNativeAccountIdPresent,\n desc: BrowserAuthErrorMessages[spaCodeAndNativeAccountIdPresent],\n },\n databaseUnavailable: {\n code: databaseUnavailable,\n desc: BrowserAuthErrorMessages[databaseUnavailable],\n },\n unableToAcquireTokenFromNativePlatform: {\n code: unableToAcquireTokenFromNativePlatform,\n desc: BrowserAuthErrorMessages[unableToAcquireTokenFromNativePlatform],\n },\n nativeHandshakeTimeout: {\n code: nativeHandshakeTimeout,\n desc: BrowserAuthErrorMessages[nativeHandshakeTimeout],\n },\n nativeExtensionNotInstalled: {\n code: nativeExtensionNotInstalled,\n desc: BrowserAuthErrorMessages[nativeExtensionNotInstalled],\n },\n nativeConnectionNotEstablished: {\n code: nativeConnectionNotEstablished,\n desc: BrowserAuthErrorMessages[nativeConnectionNotEstablished],\n },\n uninitializedPublicClientApplication: {\n code: uninitializedPublicClientApplication,\n desc: BrowserAuthErrorMessages[uninitializedPublicClientApplication],\n },\n nativePromptNotSupported: {\n code: nativePromptNotSupported,\n desc: BrowserAuthErrorMessages[nativePromptNotSupported],\n },\n invalidBase64StringError: {\n code: invalidBase64String,\n desc: BrowserAuthErrorMessages[invalidBase64String],\n },\n};\n/**\n * Browser library error class thrown by the MSAL.js library for SPAs\n */\nclass BrowserAuthError extends AuthError {\n constructor(errorCode) {\n super(errorCode, BrowserAuthErrorMessages[errorCode]);\n Object.setPrototypeOf(this, BrowserAuthError.prototype);\n this.name = \"BrowserAuthError\";\n }\n}\nfunction createBrowserAuthError(errorCode) {\n return new BrowserAuthError(errorCode);\n}\n\nexport { BrowserAuthError, BrowserAuthErrorMessage, BrowserAuthErrorMessages, createBrowserAuthError };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { invalidBase64String } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Class which exposes APIs to decode base64 strings to plaintext. See here for implementation details:\n * https://developer.mozilla.org/en-US/docs/Glossary/Base64#the_unicode_problem\n */\n/**\n * Returns a URL-safe plaintext decoded string from b64 encoded input.\n * @param input\n */\nfunction base64Decode(input) {\n return new TextDecoder().decode(base64DecToArr(input));\n}\n/**\n * Decodes base64 into Uint8Array\n * @param base64String\n */\nfunction base64DecToArr(base64String) {\n let encodedString = base64String.replace(/-/g, \"+\").replace(/_/g, \"/\");\n switch (encodedString.length % 4) {\n case 0:\n break;\n case 2:\n encodedString += \"==\";\n break;\n case 3:\n encodedString += \"=\";\n break;\n default:\n throw createBrowserAuthError(invalidBase64String);\n }\n const binString = atob(encodedString);\n return Uint8Array.from(binString, (m) => m.codePointAt(0) || 0);\n}\n\nexport { base64Decode };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { Constants } from '@azure/msal-common';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Utility functions for strings in a browser. See here for implementation details:\n * https://developer.mozilla.org/en-US/docs/Web/API/WindowBase64/Base64_encoding_and_decoding#Solution_2_%E2%80%93_JavaScript's_UTF-16_%3E_UTF-8_%3E_base64\n */\nclass BrowserStringUtils {\n /**\n * Converts string to Uint8Array\n * @param sDOMStr\n */\n static stringToUtf8Arr(sDOMStr) {\n let nChr;\n let nArrLen = 0;\n const nStrLen = sDOMStr.length;\n /* mapping... */\n for (let nMapIdx = 0; nMapIdx < nStrLen; nMapIdx++) {\n nChr = sDOMStr.charCodeAt(nMapIdx);\n nArrLen +=\n nChr < 0x80\n ? 1\n : nChr < 0x800\n ? 2\n : nChr < 0x10000\n ? 3\n : nChr < 0x200000\n ? 4\n : nChr < 0x4000000\n ? 5\n : 6;\n }\n const aBytes = new Uint8Array(nArrLen);\n /* transcription... */\n for (let nIdx = 0, nChrIdx = 0; nIdx < nArrLen; nChrIdx++) {\n nChr = sDOMStr.charCodeAt(nChrIdx);\n if (nChr < 128) {\n /* one byte */\n aBytes[nIdx++] = nChr;\n }\n else if (nChr < 0x800) {\n /* two bytes */\n aBytes[nIdx++] = 192 + (nChr >>> 6);\n aBytes[nIdx++] = 128 + (nChr & 63);\n }\n else if (nChr < 0x10000) {\n /* three bytes */\n aBytes[nIdx++] = 224 + (nChr >>> 12);\n aBytes[nIdx++] = 128 + ((nChr >>> 6) & 63);\n aBytes[nIdx++] = 128 + (nChr & 63);\n }\n else if (nChr < 0x200000) {\n /* four bytes */\n aBytes[nIdx++] = 240 + (nChr >>> 18);\n aBytes[nIdx++] = 128 + ((nChr >>> 12) & 63);\n aBytes[nIdx++] = 128 + ((nChr >>> 6) & 63);\n aBytes[nIdx++] = 128 + (nChr & 63);\n }\n else if (nChr < 0x4000000) {\n /* five bytes */\n aBytes[nIdx++] = 248 + (nChr >>> 24);\n aBytes[nIdx++] = 128 + ((nChr >>> 18) & 63);\n aBytes[nIdx++] = 128 + ((nChr >>> 12) & 63);\n aBytes[nIdx++] = 128 + ((nChr >>> 6) & 63);\n aBytes[nIdx++] = 128 + (nChr & 63);\n } /* if (nChr <= 0x7fffffff) */\n else {\n /* six bytes */\n aBytes[nIdx++] = 252 + (nChr >>> 30);\n aBytes[nIdx++] = 128 + ((nChr >>> 24) & 63);\n aBytes[nIdx++] = 128 + ((nChr >>> 18) & 63);\n aBytes[nIdx++] = 128 + ((nChr >>> 12) & 63);\n aBytes[nIdx++] = 128 + ((nChr >>> 6) & 63);\n aBytes[nIdx++] = 128 + (nChr & 63);\n }\n }\n return aBytes;\n }\n /**\n * Converts Uint8Array to a string\n * @param aBytes\n */\n static utf8ArrToString(aBytes) {\n let sView = Constants.EMPTY_STRING;\n for (let nPart, nLen = aBytes.length, nIdx = 0; nIdx < nLen; nIdx++) {\n nPart = aBytes[nIdx];\n sView += String.fromCharCode(nPart > 251 && nPart < 254 && nIdx + 5 < nLen /* six bytes */\n ? /* (nPart - 252 << 30) may be not so safe in ECMAScript! So...: */\n (nPart - 252) * 1073741824 +\n ((aBytes[++nIdx] - 128) << 24) +\n ((aBytes[++nIdx] - 128) << 18) +\n ((aBytes[++nIdx] - 128) << 12) +\n ((aBytes[++nIdx] - 128) << 6) +\n aBytes[++nIdx] -\n 128\n : nPart > 247 &&\n nPart < 252 &&\n nIdx + 4 < nLen /* five bytes */\n ? ((nPart - 248) << 24) +\n ((aBytes[++nIdx] - 128) << 18) +\n ((aBytes[++nIdx] - 128) << 12) +\n ((aBytes[++nIdx] - 128) << 6) +\n aBytes[++nIdx] -\n 128\n : nPart > 239 &&\n nPart < 248 &&\n nIdx + 3 < nLen /* four bytes */\n ? ((nPart - 240) << 18) +\n ((aBytes[++nIdx] - 128) << 12) +\n ((aBytes[++nIdx] - 128) << 6) +\n aBytes[++nIdx] -\n 128\n : nPart > 223 &&\n nPart < 240 &&\n nIdx + 2 < nLen /* three bytes */\n ? ((nPart - 224) << 12) +\n ((aBytes[++nIdx] - 128) << 6) +\n aBytes[++nIdx] -\n 128\n : nPart > 191 &&\n nPart < 224 &&\n nIdx + 1 < nLen /* two bytes */\n ? ((nPart - 192) << 6) + aBytes[++nIdx] - 128\n : /* nPart < 127 ? */ /* one byte */\n nPart);\n }\n return sView;\n }\n /**\n * Returns stringified jwk.\n * @param jwk\n */\n static getSortedObjectString(obj) {\n return JSON.stringify(obj, Object.keys(obj).sort());\n }\n}\n\nexport { BrowserStringUtils };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { OIDC_DEFAULT_SCOPES } from '@azure/msal-common';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Constants\n */\nconst BrowserConstants = {\n /**\n * Interaction in progress cache value\n */\n INTERACTION_IN_PROGRESS_VALUE: \"interaction_in_progress\",\n /**\n * Invalid grant error code\n */\n INVALID_GRANT_ERROR: \"invalid_grant\",\n /**\n * Default popup window width\n */\n POPUP_WIDTH: 483,\n /**\n * Default popup window height\n */\n POPUP_HEIGHT: 600,\n /**\n * Name of the popup window starts with\n */\n POPUP_NAME_PREFIX: \"msal\",\n /**\n * Default popup monitor poll interval in milliseconds\n */\n DEFAULT_POLL_INTERVAL_MS: 30,\n /**\n * Msal-browser SKU\n */\n MSAL_SKU: \"msal.js.browser\",\n};\nconst NativeConstants = {\n CHANNEL_ID: \"53ee284d-920a-4b59-9d30-a60315b26836\",\n PREFERRED_EXTENSION_ID: \"ppnbnpeolgkicgegkbkbjmhlideopiji\",\n MATS_TELEMETRY: \"MATS\",\n};\nconst NativeExtensionMethod = {\n HandshakeRequest: \"Handshake\",\n HandshakeResponse: \"HandshakeResponse\",\n GetToken: \"GetToken\",\n Response: \"Response\",\n};\nconst BrowserCacheLocation = {\n LocalStorage: \"localStorage\",\n SessionStorage: \"sessionStorage\",\n MemoryStorage: \"memoryStorage\",\n};\n/**\n * HTTP Request types supported by MSAL.\n */\nconst HTTP_REQUEST_TYPE = {\n GET: \"GET\",\n POST: \"POST\",\n};\n/**\n * Temporary cache keys for MSAL, deleted after any request.\n */\nconst TemporaryCacheKeys = {\n AUTHORITY: \"authority\",\n ACQUIRE_TOKEN_ACCOUNT: \"acquireToken.account\",\n SESSION_STATE: \"session.state\",\n REQUEST_STATE: \"request.state\",\n NONCE_IDTOKEN: \"nonce.id_token\",\n ORIGIN_URI: \"request.origin\",\n RENEW_STATUS: \"token.renew.status\",\n URL_HASH: \"urlHash\",\n REQUEST_PARAMS: \"request.params\",\n SCOPES: \"scopes\",\n INTERACTION_STATUS_KEY: \"interaction.status\",\n CCS_CREDENTIAL: \"ccs.credential\",\n CORRELATION_ID: \"request.correlationId\",\n NATIVE_REQUEST: \"request.native\",\n REDIRECT_CONTEXT: \"request.redirect.context\",\n};\nconst StaticCacheKeys = {\n ACCOUNT_KEYS: \"msal.account.keys\",\n TOKEN_KEYS: \"msal.token.keys\",\n};\n/**\n * Cache keys stored in-memory\n */\nconst InMemoryCacheKeys = {\n WRAPPER_SKU: \"wrapper.sku\",\n WRAPPER_VER: \"wrapper.version\",\n};\n/**\n * API Codes for Telemetry purposes.\n * Before adding a new code you must claim it in the MSAL Telemetry tracker as these number spaces are shared across all MSALs\n * 0-99 Silent Flow\n * 800-899 Auth Code Flow\n */\nconst ApiId = {\n acquireTokenRedirect: 861,\n acquireTokenPopup: 862,\n ssoSilent: 863,\n acquireTokenSilent_authCode: 864,\n handleRedirectPromise: 865,\n acquireTokenByCode: 866,\n acquireTokenSilent_silentFlow: 61,\n logout: 961,\n logoutPopup: 962,\n};\n/*\n * Interaction type of the API - used for state and telemetry\n */\nvar InteractionType;\n(function (InteractionType) {\n InteractionType[\"Redirect\"] = \"redirect\";\n InteractionType[\"Popup\"] = \"popup\";\n InteractionType[\"Silent\"] = \"silent\";\n InteractionType[\"None\"] = \"none\";\n})(InteractionType || (InteractionType = {}));\n/**\n * Types of interaction currently in progress.\n * Used in events in wrapper libraries to invoke functions when certain interaction is in progress or all interactions are complete.\n */\nconst InteractionStatus = {\n /**\n * Initial status before interaction occurs\n */\n Startup: \"startup\",\n /**\n * Status set when all login calls occuring\n */\n Login: \"login\",\n /**\n * Status set when logout call occuring\n */\n Logout: \"logout\",\n /**\n * Status set for acquireToken calls\n */\n AcquireToken: \"acquireToken\",\n /**\n * Status set for ssoSilent calls\n */\n SsoSilent: \"ssoSilent\",\n /**\n * Status set when handleRedirect in progress\n */\n HandleRedirect: \"handleRedirect\",\n /**\n * Status set when interaction is complete\n */\n None: \"none\",\n};\nconst DEFAULT_REQUEST = {\n scopes: OIDC_DEFAULT_SCOPES,\n};\n/**\n * JWK Key Format string (Type MUST be defined for window crypto APIs)\n */\nconst KEY_FORMAT_JWK = \"jwk\";\n// Supported wrapper SKUs\nconst WrapperSKU = {\n React: \"@azure/msal-react\",\n Angular: \"@azure/msal-angular\",\n};\n// DatabaseStorage Constants\nconst DB_NAME = \"msal.db\";\nconst DB_VERSION = 1;\nconst DB_TABLE_NAME = `${DB_NAME}.keys`;\nconst CacheLookupPolicy = {\n /*\n * acquireTokenSilent will attempt to retrieve an access token from the cache. If the access token is expired\n * or cannot be found the refresh token will be used to acquire a new one. Finally, if the refresh token\n * is expired acquireTokenSilent will attempt to acquire new access and refresh tokens.\n */\n Default: 0,\n /*\n * acquireTokenSilent will only look for access tokens in the cache. It will not attempt to renew access or\n * refresh tokens.\n */\n AccessToken: 1,\n /*\n * acquireTokenSilent will attempt to retrieve an access token from the cache. If the access token is expired or\n * cannot be found, the refresh token will be used to acquire a new one. If the refresh token is expired, it\n * will not be renewed and acquireTokenSilent will fail.\n */\n AccessTokenAndRefreshToken: 2,\n /*\n * acquireTokenSilent will not attempt to retrieve access tokens from the cache and will instead attempt to\n * exchange the cached refresh token for a new access token. If the refresh token is expired, it will not be\n * renewed and acquireTokenSilent will fail.\n */\n RefreshToken: 3,\n /*\n * acquireTokenSilent will not look in the cache for the access token. It will go directly to network with the\n * cached refresh token. If the refresh token is expired an attempt will be made to renew it. This is equivalent to\n * setting \"forceRefresh: true\".\n */\n RefreshTokenAndNetwork: 4,\n /*\n * acquireTokenSilent will attempt to renew both access and refresh tokens. It will not look in the cache. This will\n * always fail if 3rd party cookies are blocked by the browser.\n */\n Skip: 5,\n};\n\nexport { ApiId, BrowserCacheLocation, BrowserConstants, CacheLookupPolicy, DB_NAME, DB_TABLE_NAME, DB_VERSION, DEFAULT_REQUEST, HTTP_REQUEST_TYPE, InMemoryCacheKeys, InteractionStatus, InteractionType, KEY_FORMAT_JWK, NativeConstants, NativeExtensionMethod, StaticCacheKeys, TemporaryCacheKeys, WrapperSKU };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { BrowserStringUtils } from '../utils/BrowserStringUtils.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { PerformanceEvents } from '@azure/msal-common';\nimport { KEY_FORMAT_JWK } from '../utils/BrowserConstants.mjs';\nimport { cryptoNonExistent } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * This file defines functions used by the browser library to perform cryptography operations such as\n * hashing and encoding. It also has helper functions to validate the availability of specific APIs.\n */\n/**\n * See here for more info on RsaHashedKeyGenParams: https://developer.mozilla.org/en-US/docs/Web/API/RsaHashedKeyGenParams\n */\n// RSA KeyGen Algorithm\nconst PKCS1_V15_KEYGEN_ALG = \"RSASSA-PKCS1-v1_5\";\n// SHA-256 hashing algorithm\nconst S256_HASH_ALG = \"SHA-256\";\n// MOD length for PoP tokens\nconst MODULUS_LENGTH = 2048;\n// Public Exponent\nconst PUBLIC_EXPONENT = new Uint8Array([0x01, 0x00, 0x01]);\nconst keygenAlgorithmOptions = {\n name: PKCS1_V15_KEYGEN_ALG,\n hash: S256_HASH_ALG,\n modulusLength: MODULUS_LENGTH,\n publicExponent: PUBLIC_EXPONENT,\n};\n/**\n * Check whether browser crypto is available.\n */\nfunction validateCryptoAvailable(logger) {\n if (\"crypto\" in window) {\n logger.verbose(\"BrowserCrypto: modern crypto interface available\");\n }\n else {\n logger.error(\"BrowserCrypto: crypto interface is unavailable\");\n throw createBrowserAuthError(cryptoNonExistent);\n }\n}\n/**\n * Returns a sha-256 hash of the given dataString as an ArrayBuffer.\n * @param dataString\n */\nasync function sha256Digest(dataString, performanceClient, correlationId) {\n performanceClient?.addQueueMeasurement(PerformanceEvents.Sha256Digest, correlationId);\n const data = BrowserStringUtils.stringToUtf8Arr(dataString);\n return window.crypto.subtle.digest(S256_HASH_ALG, data);\n}\n/**\n * Populates buffer with cryptographically random values.\n * @param dataBuffer\n */\nfunction getRandomValues(dataBuffer) {\n return window.crypto.getRandomValues(dataBuffer);\n}\n/**\n * Creates a new random GUID\n * @returns\n */\nfunction createNewGuid() {\n return window.crypto.randomUUID();\n}\n/**\n * Generates a keypair based on current keygen algorithm config.\n * @param extractable\n * @param usages\n */\nasync function generateKeyPair(extractable, usages) {\n return window.crypto.subtle.generateKey(keygenAlgorithmOptions, extractable, usages);\n}\n/**\n * Export key as Json Web Key (JWK)\n * @param key\n */\nasync function exportJwk(key) {\n return window.crypto.subtle.exportKey(KEY_FORMAT_JWK, key);\n}\n/**\n * Imports key as Json Web Key (JWK), can set extractable and usages.\n * @param key\n * @param extractable\n * @param usages\n */\nasync function importJwk(key, extractable, usages) {\n return window.crypto.subtle.importKey(KEY_FORMAT_JWK, key, keygenAlgorithmOptions, extractable, usages);\n}\n/**\n * Signs given data with given key\n * @param key\n * @param data\n */\nasync function sign(key, data) {\n return window.crypto.subtle.sign(keygenAlgorithmOptions, key, data);\n}\n\nexport { createNewGuid, exportJwk, generateKeyPair, getRandomValues, importJwk, sha256Digest, sign, validateCryptoAvailable };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { DB_NAME, DB_VERSION, DB_TABLE_NAME } from '../utils/BrowserConstants.mjs';\nimport { databaseUnavailable, databaseNotOpen } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Storage wrapper for IndexedDB storage in browsers: https://developer.mozilla.org/en-US/docs/Web/API/IndexedDB_API\n */\nclass DatabaseStorage {\n constructor() {\n this.dbName = DB_NAME;\n this.version = DB_VERSION;\n this.tableName = DB_TABLE_NAME;\n this.dbOpen = false;\n }\n /**\n * Opens IndexedDB instance.\n */\n async open() {\n return new Promise((resolve, reject) => {\n const openDB = window.indexedDB.open(this.dbName, this.version);\n openDB.addEventListener(\"upgradeneeded\", (e) => {\n const event = e;\n event.target.result.createObjectStore(this.tableName);\n });\n openDB.addEventListener(\"success\", (e) => {\n const event = e;\n this.db = event.target.result;\n this.dbOpen = true;\n resolve();\n });\n openDB.addEventListener(\"error\", () => reject(createBrowserAuthError(databaseUnavailable)));\n });\n }\n /**\n * Closes the connection to IndexedDB database when all pending transactions\n * complete.\n */\n closeConnection() {\n const db = this.db;\n if (db && this.dbOpen) {\n db.close();\n this.dbOpen = false;\n }\n }\n /**\n * Opens database if it's not already open\n */\n async validateDbIsOpen() {\n if (!this.dbOpen) {\n return await this.open();\n }\n }\n /**\n * Retrieves item from IndexedDB instance.\n * @param key\n */\n async getItem(key) {\n await this.validateDbIsOpen();\n return new Promise((resolve, reject) => {\n // TODO: Add timeouts?\n if (!this.db) {\n return reject(createBrowserAuthError(databaseNotOpen));\n }\n const transaction = this.db.transaction([this.tableName], \"readonly\");\n const objectStore = transaction.objectStore(this.tableName);\n const dbGet = objectStore.get(key);\n dbGet.addEventListener(\"success\", (e) => {\n const event = e;\n this.closeConnection();\n resolve(event.target.result);\n });\n dbGet.addEventListener(\"error\", (e) => {\n this.closeConnection();\n reject(e);\n });\n });\n }\n /**\n * Adds item to IndexedDB under given key\n * @param key\n * @param payload\n */\n async setItem(key, payload) {\n await this.validateDbIsOpen();\n return new Promise((resolve, reject) => {\n // TODO: Add timeouts?\n if (!this.db) {\n return reject(createBrowserAuthError(databaseNotOpen));\n }\n const transaction = this.db.transaction([this.tableName], \"readwrite\");\n const objectStore = transaction.objectStore(this.tableName);\n const dbPut = objectStore.put(payload, key);\n dbPut.addEventListener(\"success\", () => {\n this.closeConnection();\n resolve();\n });\n dbPut.addEventListener(\"error\", (e) => {\n this.closeConnection();\n reject(e);\n });\n });\n }\n /**\n * Removes item from IndexedDB under given key\n * @param key\n */\n async removeItem(key) {\n await this.validateDbIsOpen();\n return new Promise((resolve, reject) => {\n if (!this.db) {\n return reject(createBrowserAuthError(databaseNotOpen));\n }\n const transaction = this.db.transaction([this.tableName], \"readwrite\");\n const objectStore = transaction.objectStore(this.tableName);\n const dbDelete = objectStore.delete(key);\n dbDelete.addEventListener(\"success\", () => {\n this.closeConnection();\n resolve();\n });\n dbDelete.addEventListener(\"error\", (e) => {\n this.closeConnection();\n reject(e);\n });\n });\n }\n /**\n * Get all the keys from the storage object as an iterable array of strings.\n */\n async getKeys() {\n await this.validateDbIsOpen();\n return new Promise((resolve, reject) => {\n if (!this.db) {\n return reject(createBrowserAuthError(databaseNotOpen));\n }\n const transaction = this.db.transaction([this.tableName], \"readonly\");\n const objectStore = transaction.objectStore(this.tableName);\n const dbGetKeys = objectStore.getAllKeys();\n dbGetKeys.addEventListener(\"success\", (e) => {\n const event = e;\n this.closeConnection();\n resolve(event.target.result);\n });\n dbGetKeys.addEventListener(\"error\", (e) => {\n this.closeConnection();\n reject(e);\n });\n });\n }\n /**\n *\n * Checks whether there is an object under the search key in the object store\n */\n async containsKey(key) {\n await this.validateDbIsOpen();\n return new Promise((resolve, reject) => {\n if (!this.db) {\n return reject(createBrowserAuthError(databaseNotOpen));\n }\n const transaction = this.db.transaction([this.tableName], \"readonly\");\n const objectStore = transaction.objectStore(this.tableName);\n const dbContainsKey = objectStore.count(key);\n dbContainsKey.addEventListener(\"success\", (e) => {\n const event = e;\n this.closeConnection();\n resolve(event.target.result === 1);\n });\n dbContainsKey.addEventListener(\"error\", (e) => {\n this.closeConnection();\n reject(e);\n });\n });\n }\n /**\n * Deletes the MSAL database. The database is deleted rather than cleared to make it possible\n * for client applications to downgrade to a previous MSAL version without worrying about forward compatibility issues\n * with IndexedDB database versions.\n */\n async deleteDatabase() {\n // Check if database being deleted exists\n if (this.db && this.dbOpen) {\n this.closeConnection();\n }\n return new Promise((resolve, reject) => {\n const deleteDbRequest = window.indexedDB.deleteDatabase(DB_NAME);\n deleteDbRequest.addEventListener(\"success\", () => resolve(true));\n deleteDbRequest.addEventListener(\"blocked\", () => resolve(true));\n deleteDbRequest.addEventListener(\"error\", () => reject(false));\n });\n }\n}\n\nexport { DatabaseStorage };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass MemoryStorage {\n constructor() {\n this.cache = new Map();\n }\n getItem(key) {\n return this.cache.get(key) || null;\n }\n setItem(key, value) {\n this.cache.set(key, value);\n }\n removeItem(key) {\n this.cache.delete(key);\n }\n getKeys() {\n const cacheKeys = [];\n this.cache.forEach((value, key) => {\n cacheKeys.push(key);\n });\n return cacheKeys;\n }\n containsKey(key) {\n return this.cache.has(key);\n }\n clear() {\n this.cache.clear();\n }\n}\n\nexport { MemoryStorage };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { BrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { DatabaseStorage } from './DatabaseStorage.mjs';\nimport { MemoryStorage } from './MemoryStorage.mjs';\nimport { databaseUnavailable } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * This class allows MSAL to store artifacts asynchronously using the DatabaseStorage IndexedDB wrapper,\n * backed up with the more volatile MemoryStorage object for cases in which IndexedDB may be unavailable.\n */\nclass AsyncMemoryStorage {\n constructor(logger, storeName) {\n this.inMemoryCache = new MemoryStorage();\n this.indexedDBCache = new DatabaseStorage();\n this.logger = logger;\n this.storeName = storeName;\n }\n handleDatabaseAccessError(error) {\n if (error instanceof BrowserAuthError &&\n error.errorCode === databaseUnavailable) {\n this.logger.error(\"Could not access persistent storage. This may be caused by browser privacy features which block persistent storage in third-party contexts.\");\n }\n else {\n throw error;\n }\n }\n /**\n * Get the item matching the given key. Tries in-memory cache first, then in the asynchronous\n * storage object if item isn't found in-memory.\n * @param key\n */\n async getItem(key) {\n const item = this.inMemoryCache.getItem(key);\n if (!item) {\n try {\n this.logger.verbose(\"Queried item not found in in-memory cache, now querying persistent storage.\");\n return await this.indexedDBCache.getItem(key);\n }\n catch (e) {\n this.handleDatabaseAccessError(e);\n }\n }\n return item;\n }\n /**\n * Sets the item in the in-memory cache and then tries to set it in the asynchronous\n * storage object with the given key.\n * @param key\n * @param value\n */\n async setItem(key, value) {\n this.inMemoryCache.setItem(key, value);\n try {\n await this.indexedDBCache.setItem(key, value);\n }\n catch (e) {\n this.handleDatabaseAccessError(e);\n }\n }\n /**\n * Removes the item matching the key from the in-memory cache, then tries to remove it from the asynchronous storage object.\n * @param key\n */\n async removeItem(key) {\n this.inMemoryCache.removeItem(key);\n try {\n await this.indexedDBCache.removeItem(key);\n }\n catch (e) {\n this.handleDatabaseAccessError(e);\n }\n }\n /**\n * Get all the keys from the in-memory cache as an iterable array of strings. If no keys are found, query the keys in the\n * asynchronous storage object.\n */\n async getKeys() {\n const cacheKeys = this.inMemoryCache.getKeys();\n if (cacheKeys.length === 0) {\n try {\n this.logger.verbose(\"In-memory cache is empty, now querying persistent storage.\");\n return await this.indexedDBCache.getKeys();\n }\n catch (e) {\n this.handleDatabaseAccessError(e);\n }\n }\n return cacheKeys;\n }\n /**\n * Returns true or false if the given key is present in the cache.\n * @param key\n */\n async containsKey(key) {\n const containsKey = this.inMemoryCache.containsKey(key);\n if (!containsKey) {\n try {\n this.logger.verbose(\"Key not found in in-memory cache, now querying persistent storage.\");\n return await this.indexedDBCache.containsKey(key);\n }\n catch (e) {\n this.handleDatabaseAccessError(e);\n }\n }\n return containsKey;\n }\n /**\n * Clears in-memory Map\n */\n clearInMemory() {\n // InMemory cache is a Map instance, clear is straightforward\n this.logger.verbose(`Deleting in-memory keystore ${this.storeName}`);\n this.inMemoryCache.clear();\n this.logger.verbose(`In-memory keystore ${this.storeName} deleted`);\n }\n /**\n * Tries to delete the IndexedDB database\n * @returns\n */\n async clearPersistent() {\n try {\n this.logger.verbose(\"Deleting persistent keystore\");\n const dbDeleted = await this.indexedDBCache.deleteDatabase();\n if (dbDeleted) {\n this.logger.verbose(\"Persistent keystore deleted\");\n }\n return dbDeleted;\n }\n catch (e) {\n this.handleDatabaseAccessError(e);\n return false;\n }\n }\n}\n\nexport { AsyncMemoryStorage };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { AsyncMemoryStorage } from './AsyncMemoryStorage.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst CryptoKeyStoreNames = {\n asymmetricKeys: \"asymmetricKeys\",\n symmetricKeys: \"symmetricKeys\",\n};\n/**\n * MSAL CryptoKeyStore DB Version 2\n */\nclass CryptoKeyStore {\n constructor(logger) {\n this.logger = logger;\n this.asymmetricKeys = new AsyncMemoryStorage(this.logger, CryptoKeyStoreNames.asymmetricKeys);\n this.symmetricKeys = new AsyncMemoryStorage(this.logger, CryptoKeyStoreNames.symmetricKeys);\n }\n async clear() {\n // Delete in-memory keystores\n this.asymmetricKeys.clearInMemory();\n this.symmetricKeys.clearInMemory();\n /**\n * There is only one database, so calling clearPersistent on asymmetric keystore takes care of\n * every persistent keystore\n */\n try {\n await this.asymmetricKeys.clearPersistent();\n return true;\n }\n catch (e) {\n if (e instanceof Error) {\n this.logger.error(`Clearing keystore failed with error: ${e.message}`);\n }\n else {\n this.logger.error(\"Clearing keystore failed with unknown error\");\n }\n return false;\n }\n }\n}\n\nexport { CryptoKeyStore, CryptoKeyStoreNames };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { PerformanceEvents, JoseHeader } from '@azure/msal-common';\nimport { base64Encode, urlEncode, urlEncodeArr } from '../encode/Base64Encode.mjs';\nimport { base64Decode } from '../encode/Base64Decode.mjs';\nimport { validateCryptoAvailable, createNewGuid, generateKeyPair, exportJwk, importJwk, sign, sha256Digest } from './BrowserCrypto.mjs';\nimport { BrowserStringUtils } from '../utils/BrowserStringUtils.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { CryptoKeyStore } from '../cache/CryptoKeyStore.mjs';\nimport { cryptoKeyNotFound } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * This class implements MSAL's crypto interface, which allows it to perform base64 encoding and decoding, generating cryptographically random GUIDs and\n * implementing Proof Key for Code Exchange specs for the OAuth Authorization Code Flow using PKCE (rfc here: https://tools.ietf.org/html/rfc7636).\n */\nclass CryptoOps {\n constructor(logger, performanceClient) {\n this.logger = logger;\n // Browser crypto needs to be validated first before any other classes can be set.\n validateCryptoAvailable(logger);\n this.cache = new CryptoKeyStore(this.logger);\n this.performanceClient = performanceClient;\n }\n /**\n * Creates a new random GUID - used to populate state and nonce.\n * @returns string (GUID)\n */\n createNewGuid() {\n return createNewGuid();\n }\n /**\n * Encodes input string to base64.\n * @param input\n */\n base64Encode(input) {\n return base64Encode(input);\n }\n /**\n * Decodes input string from base64.\n * @param input\n */\n base64Decode(input) {\n return base64Decode(input);\n }\n /**\n * Generates a keypair, stores it and returns a thumbprint\n * @param request\n */\n async getPublicKeyThumbprint(request) {\n const publicKeyThumbMeasurement = this.performanceClient?.startMeasurement(PerformanceEvents.CryptoOptsGetPublicKeyThumbprint, request.correlationId);\n // Generate Keypair\n const keyPair = await generateKeyPair(CryptoOps.EXTRACTABLE, CryptoOps.POP_KEY_USAGES);\n // Generate Thumbprint for Public Key\n const publicKeyJwk = await exportJwk(keyPair.publicKey);\n const pubKeyThumprintObj = {\n e: publicKeyJwk.e,\n kty: publicKeyJwk.kty,\n n: publicKeyJwk.n,\n };\n const publicJwkString = BrowserStringUtils.getSortedObjectString(pubKeyThumprintObj);\n const publicJwkHash = await this.hashString(publicJwkString);\n // Generate Thumbprint for Private Key\n const privateKeyJwk = await exportJwk(keyPair.privateKey);\n // Re-import private key to make it unextractable\n const unextractablePrivateKey = await importJwk(privateKeyJwk, false, [\"sign\"]);\n // Store Keypair data in keystore\n await this.cache.asymmetricKeys.setItem(publicJwkHash, {\n privateKey: unextractablePrivateKey,\n publicKey: keyPair.publicKey,\n requestMethod: request.resourceRequestMethod,\n requestUri: request.resourceRequestUri,\n });\n if (publicKeyThumbMeasurement) {\n publicKeyThumbMeasurement.end({\n success: true,\n });\n }\n return publicJwkHash;\n }\n /**\n * Removes cryptographic keypair from key store matching the keyId passed in\n * @param kid\n */\n async removeTokenBindingKey(kid) {\n await this.cache.asymmetricKeys.removeItem(kid);\n const keyFound = await this.cache.asymmetricKeys.containsKey(kid);\n return !keyFound;\n }\n /**\n * Removes all cryptographic keys from IndexedDB storage\n */\n async clearKeystore() {\n return await this.cache.clear();\n }\n /**\n * Signs the given object as a jwt payload with private key retrieved by given kid.\n * @param payload\n * @param kid\n */\n async signJwt(payload, kid, correlationId) {\n const signJwtMeasurement = this.performanceClient?.startMeasurement(PerformanceEvents.CryptoOptsSignJwt, correlationId);\n const cachedKeyPair = await this.cache.asymmetricKeys.getItem(kid);\n if (!cachedKeyPair) {\n throw createBrowserAuthError(cryptoKeyNotFound);\n }\n // Get public key as JWK\n const publicKeyJwk = await exportJwk(cachedKeyPair.publicKey);\n const publicKeyJwkString = BrowserStringUtils.getSortedObjectString(publicKeyJwk);\n // Base64URL encode public key thumbprint with keyId only: BASE64URL({ kid: \"FULL_PUBLIC_KEY_HASH\" })\n const encodedKeyIdThumbprint = urlEncode(JSON.stringify({ kid: kid }));\n // Generate header\n const shrHeader = JoseHeader.getShrHeaderString({\n kid: encodedKeyIdThumbprint,\n alg: publicKeyJwk.alg,\n });\n const encodedShrHeader = urlEncode(shrHeader);\n // Generate payload\n payload.cnf = {\n jwk: JSON.parse(publicKeyJwkString),\n };\n const encodedPayload = urlEncode(JSON.stringify(payload));\n // Form token string\n const tokenString = `${encodedShrHeader}.${encodedPayload}`;\n // Sign token\n const tokenBuffer = BrowserStringUtils.stringToUtf8Arr(tokenString);\n const signatureBuffer = await sign(cachedKeyPair.privateKey, tokenBuffer);\n const encodedSignature = urlEncodeArr(new Uint8Array(signatureBuffer));\n const signedJwt = `${tokenString}.${encodedSignature}`;\n if (signJwtMeasurement) {\n signJwtMeasurement.end({\n success: true,\n });\n }\n return signedJwt;\n }\n /**\n * Returns the SHA-256 hash of an input string\n * @param plainText\n */\n async hashString(plainText) {\n const hashBuffer = await sha256Digest(plainText);\n const hashBytes = new Uint8Array(hashBuffer);\n return urlEncodeArr(hashBytes);\n }\n}\nCryptoOps.POP_KEY_USAGES = [\"sign\", \"verify\"];\nCryptoOps.EXTRACTABLE = true;\n\nexport { CryptoOps };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst storageNotSupported = \"storage_not_supported\";\nconst stubbedPublicClientApplicationCalled = \"stubbed_public_client_application_called\";\nconst inMemRedirectUnavailable = \"in_mem_redirect_unavailable\";\n\nexport { inMemRedirectUnavailable, storageNotSupported, stubbedPublicClientApplicationCalled };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { AuthError } from '@azure/msal-common';\nimport { storageNotSupported, stubbedPublicClientApplicationCalled, inMemRedirectUnavailable } from './BrowserConfigurationAuthErrorCodes.mjs';\nimport * as BrowserConfigurationAuthErrorCodes from './BrowserConfigurationAuthErrorCodes.mjs';\nexport { BrowserConfigurationAuthErrorCodes };\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst BrowserConfigurationAuthErrorMessages = {\n [storageNotSupported]: \"Given storage configuration option was not supported.\",\n [stubbedPublicClientApplicationCalled]: \"Stub instance of Public Client Application was called. If using msal-react, please ensure context is not used without a provider. For more visit: aka.ms/msaljs/browser-errors\",\n [inMemRedirectUnavailable]: \"Redirect cannot be supported. In-memory storage was selected and storeAuthStateInCookie=false, which would cause the library to be unable to handle the incoming hash. If you would like to use the redirect API, please use session/localStorage or set storeAuthStateInCookie=true.\",\n};\n/**\n * BrowserAuthErrorMessage class containing string constants used by error codes and messages.\n * @deprecated Use BrowserAuthErrorCodes instead\n */\nconst BrowserConfigurationAuthErrorMessage = {\n storageNotSupportedError: {\n code: storageNotSupported,\n desc: BrowserConfigurationAuthErrorMessages[storageNotSupported],\n },\n stubPcaInstanceCalled: {\n code: stubbedPublicClientApplicationCalled,\n desc: BrowserConfigurationAuthErrorMessages[stubbedPublicClientApplicationCalled],\n },\n inMemRedirectUnavailable: {\n code: inMemRedirectUnavailable,\n desc: BrowserConfigurationAuthErrorMessages[inMemRedirectUnavailable],\n },\n};\n/**\n * Browser library error class thrown by the MSAL.js library for SPAs\n */\nclass BrowserConfigurationAuthError extends AuthError {\n constructor(errorCode, errorMessage) {\n super(errorCode, errorMessage);\n this.name = \"BrowserConfigurationAuthError\";\n Object.setPrototypeOf(this, BrowserConfigurationAuthError.prototype);\n }\n}\nfunction createBrowserConfigurationAuthError(errorCode) {\n return new BrowserConfigurationAuthError(errorCode, BrowserConfigurationAuthErrorMessages[errorCode]);\n}\n\nexport { BrowserConfigurationAuthError, BrowserConfigurationAuthErrorMessage, BrowserConfigurationAuthErrorMessages, createBrowserConfigurationAuthError };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { createBrowserConfigurationAuthError } from '../error/BrowserConfigurationAuthError.mjs';\nimport { BrowserCacheLocation } from '../utils/BrowserConstants.mjs';\nimport { storageNotSupported } from '../error/BrowserConfigurationAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass BrowserStorage {\n constructor(cacheLocation) {\n this.validateWindowStorage(cacheLocation);\n this.windowStorage = window[cacheLocation];\n }\n validateWindowStorage(cacheLocation) {\n if ((cacheLocation !== BrowserCacheLocation.LocalStorage &&\n cacheLocation !== BrowserCacheLocation.SessionStorage) ||\n !window[cacheLocation]) {\n throw createBrowserConfigurationAuthError(storageNotSupported);\n }\n }\n getItem(key) {\n return this.windowStorage.getItem(key);\n }\n setItem(key, value) {\n this.windowStorage.setItem(key, value);\n }\n removeItem(key) {\n this.windowStorage.removeItem(key);\n }\n getKeys() {\n return Object.keys(this.windowStorage);\n }\n containsKey(key) {\n return this.windowStorage.hasOwnProperty(key);\n }\n}\n\nexport { BrowserStorage };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { ProtocolUtils, createClientAuthError, ClientAuthErrorCodes, UrlString } from '@azure/msal-common';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass BrowserProtocolUtils {\n /**\n * Extracts the BrowserStateObject from the state string.\n * @param browserCrypto\n * @param state\n */\n static extractBrowserRequestState(browserCrypto, state) {\n if (!state) {\n return null;\n }\n try {\n const requestStateObj = ProtocolUtils.parseRequestState(browserCrypto, state);\n return requestStateObj.libraryState.meta;\n }\n catch (e) {\n throw createClientAuthError(ClientAuthErrorCodes.invalidState);\n }\n }\n /**\n * Parses properties of server response from url hash\n * @param locationHash Hash from url\n */\n static parseServerResponseFromHash(locationHash) {\n if (!locationHash) {\n return {};\n }\n const hashUrlString = new UrlString(locationHash);\n return UrlString.getDeserializedHash(hashUrlString.getHash());\n }\n}\n\nexport { BrowserProtocolUtils };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { CacheManager, CredentialType, RefreshTokenEntity, AccessTokenEntity, IdTokenEntity, AccountEntity, createClientAuthError, ClientAuthErrorCodes, AppMetadataEntity, ServerTelemetryEntity, AuthorityMetadataEntity, Constants, PersistentCacheKeys, ThrottlingEntity, PerformanceEvents, StringUtils, ProtocolUtils, AuthToken, CacheRecord, DEFAULT_CRYPTO_IMPLEMENTATION, CcsCredentialType } from '@azure/msal-common';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { BrowserCacheLocation, StaticCacheKeys, InMemoryCacheKeys, TemporaryCacheKeys } from '../utils/BrowserConstants.mjs';\nimport { BrowserStorage } from './BrowserStorage.mjs';\nimport { MemoryStorage } from './MemoryStorage.mjs';\nimport { BrowserProtocolUtils } from '../utils/BrowserProtocolUtils.mjs';\nimport { base64Decode } from '../encode/Base64Decode.mjs';\nimport { base64Encode } from '../encode/Base64Encode.mjs';\nimport { noTokenRequestCacheError, unableToParseTokenRequestCacheError, noCachedAuthorityError, interactionInProgress } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * This class implements the cache storage interface for MSAL through browser local or session storage.\n * Cookies are only used if storeAuthStateInCookie is true, and are only used for\n * parameters such as state and nonce, generally.\n */\nclass BrowserCacheManager extends CacheManager {\n constructor(clientId, cacheConfig, cryptoImpl, logger) {\n super(clientId, cryptoImpl, logger);\n // Cookie life calculation (hours * minutes * seconds * ms)\n this.COOKIE_LIFE_MULTIPLIER = 24 * 60 * 60 * 1000;\n this.cacheConfig = cacheConfig;\n this.logger = logger;\n this.internalStorage = new MemoryStorage();\n this.browserStorage = this.setupBrowserStorage(this.cacheConfig.cacheLocation);\n this.temporaryCacheStorage = this.setupTemporaryCacheStorage(this.cacheConfig.temporaryCacheLocation, this.cacheConfig.cacheLocation);\n // Migrate cache entries from older versions of MSAL.\n if (cacheConfig.cacheMigrationEnabled) {\n this.migrateCacheEntries();\n this.createKeyMaps();\n }\n }\n /**\n * Returns a window storage class implementing the IWindowStorage interface that corresponds to the configured cacheLocation.\n * @param cacheLocation\n */\n setupBrowserStorage(cacheLocation) {\n switch (cacheLocation) {\n case BrowserCacheLocation.LocalStorage:\n case BrowserCacheLocation.SessionStorage:\n try {\n return new BrowserStorage(cacheLocation);\n }\n catch (e) {\n this.logger.verbose(e);\n break;\n }\n }\n this.cacheConfig.cacheLocation = BrowserCacheLocation.MemoryStorage;\n return new MemoryStorage();\n }\n /**\n * Returns a window storage class implementing the IWindowStorage interface that corresponds to the configured temporaryCacheLocation.\n * @param temporaryCacheLocation\n * @param cacheLocation\n */\n setupTemporaryCacheStorage(temporaryCacheLocation, cacheLocation) {\n switch (cacheLocation) {\n case BrowserCacheLocation.LocalStorage:\n case BrowserCacheLocation.SessionStorage:\n try {\n // Temporary cache items will always be stored in session storage to mitigate problems caused by multiple tabs\n return new BrowserStorage(temporaryCacheLocation ||\n BrowserCacheLocation.SessionStorage);\n }\n catch (e) {\n this.logger.verbose(e);\n return this.internalStorage;\n }\n case BrowserCacheLocation.MemoryStorage:\n default:\n return this.internalStorage;\n }\n }\n /**\n * Migrate all old cache entries to new schema. No rollback supported.\n * @param storeAuthStateInCookie\n */\n migrateCacheEntries() {\n const idTokenKey = `${Constants.CACHE_PREFIX}.${PersistentCacheKeys.ID_TOKEN}`;\n const clientInfoKey = `${Constants.CACHE_PREFIX}.${PersistentCacheKeys.CLIENT_INFO}`;\n const errorKey = `${Constants.CACHE_PREFIX}.${PersistentCacheKeys.ERROR}`;\n const errorDescKey = `${Constants.CACHE_PREFIX}.${PersistentCacheKeys.ERROR_DESC}`;\n const idTokenValue = this.browserStorage.getItem(idTokenKey);\n const clientInfoValue = this.browserStorage.getItem(clientInfoKey);\n const errorValue = this.browserStorage.getItem(errorKey);\n const errorDescValue = this.browserStorage.getItem(errorDescKey);\n const values = [\n idTokenValue,\n clientInfoValue,\n errorValue,\n errorDescValue,\n ];\n const keysToMigrate = [\n PersistentCacheKeys.ID_TOKEN,\n PersistentCacheKeys.CLIENT_INFO,\n PersistentCacheKeys.ERROR,\n PersistentCacheKeys.ERROR_DESC,\n ];\n keysToMigrate.forEach((cacheKey, index) => this.migrateCacheEntry(cacheKey, values[index]));\n }\n /**\n * Utility function to help with migration.\n * @param newKey\n * @param value\n * @param storeAuthStateInCookie\n */\n migrateCacheEntry(newKey, value) {\n if (value) {\n this.setTemporaryCache(newKey, value, true);\n }\n }\n /**\n * Searches all cache entries for MSAL accounts and creates the account key map\n * This is used to migrate users from older versions of MSAL which did not create the map.\n * @returns\n */\n createKeyMaps() {\n this.logger.trace(\"BrowserCacheManager - createKeyMaps called.\");\n const accountKeys = this.getItem(StaticCacheKeys.ACCOUNT_KEYS);\n const tokenKeys = this.getItem(`${StaticCacheKeys.TOKEN_KEYS}.${this.clientId}`);\n if (accountKeys && tokenKeys) {\n this.logger.verbose(\"BrowserCacheManager:createKeyMaps - account and token key maps already exist, skipping migration.\");\n // Key maps already exist, no need to iterate through cache\n return;\n }\n const allKeys = this.browserStorage.getKeys();\n allKeys.forEach((key) => {\n if (this.isCredentialKey(key)) {\n // Get item, parse, validate and write key to map\n const value = this.getItem(key);\n if (value) {\n const credObj = this.validateAndParseJson(value);\n if (credObj && credObj.hasOwnProperty(\"credentialType\")) {\n switch (credObj[\"credentialType\"]) {\n case CredentialType.ID_TOKEN:\n if (IdTokenEntity.isIdTokenEntity(credObj)) {\n this.logger.trace(\"BrowserCacheManager:createKeyMaps - idToken found, saving key to token key map\");\n this.logger.tracePii(`BrowserCacheManager:createKeyMaps - idToken with key: ${key} found, saving key to token key map`);\n const idTokenEntity = CacheManager.toObject(new IdTokenEntity(), credObj);\n const newKey = this.updateCredentialCacheKey(key, idTokenEntity);\n this.addTokenKey(newKey, CredentialType.ID_TOKEN);\n return;\n }\n else {\n this.logger.trace(\"BrowserCacheManager:createKeyMaps - key found matching idToken schema with value containing idToken credentialType field but value failed IdTokenEntity validation, skipping.\");\n this.logger.tracePii(`BrowserCacheManager:createKeyMaps - failed idToken validation on key: ${key}`);\n }\n break;\n case CredentialType.ACCESS_TOKEN:\n case CredentialType.ACCESS_TOKEN_WITH_AUTH_SCHEME:\n if (AccessTokenEntity.isAccessTokenEntity(credObj)) {\n this.logger.trace(\"BrowserCacheManager:createKeyMaps - accessToken found, saving key to token key map\");\n this.logger.tracePii(`BrowserCacheManager:createKeyMaps - accessToken with key: ${key} found, saving key to token key map`);\n const accessTokenEntity = CacheManager.toObject(new AccessTokenEntity(), credObj);\n const newKey = this.updateCredentialCacheKey(key, accessTokenEntity);\n this.addTokenKey(newKey, CredentialType.ACCESS_TOKEN);\n return;\n }\n else {\n this.logger.trace(\"BrowserCacheManager:createKeyMaps - key found matching accessToken schema with value containing accessToken credentialType field but value failed AccessTokenEntity validation, skipping.\");\n this.logger.tracePii(`BrowserCacheManager:createKeyMaps - failed accessToken validation on key: ${key}`);\n }\n break;\n case CredentialType.REFRESH_TOKEN:\n if (RefreshTokenEntity.isRefreshTokenEntity(credObj)) {\n this.logger.trace(\"BrowserCacheManager:createKeyMaps - refreshToken found, saving key to token key map\");\n this.logger.tracePii(`BrowserCacheManager:createKeyMaps - refreshToken with key: ${key} found, saving key to token key map`);\n const refreshTokenEntity = CacheManager.toObject(new RefreshTokenEntity(), credObj);\n const newKey = this.updateCredentialCacheKey(key, refreshTokenEntity);\n this.addTokenKey(newKey, CredentialType.REFRESH_TOKEN);\n return;\n }\n else {\n this.logger.trace(\"BrowserCacheManager:createKeyMaps - key found matching refreshToken schema with value containing refreshToken credentialType field but value failed RefreshTokenEntity validation, skipping.\");\n this.logger.tracePii(`BrowserCacheManager:createKeyMaps - failed refreshToken validation on key: ${key}`);\n }\n break;\n // If credentialType isn't one of our predefined ones, it may not be an MSAL cache value. Ignore.\n }\n }\n }\n }\n if (this.isAccountKey(key)) {\n const value = this.getItem(key);\n if (value) {\n const accountObj = this.validateAndParseJson(value);\n if (accountObj &&\n AccountEntity.isAccountEntity(accountObj)) {\n this.logger.trace(\"BrowserCacheManager:createKeyMaps - account found, saving key to account key map\");\n this.logger.tracePii(`BrowserCacheManager:createKeyMaps - account with key: ${key} found, saving key to account key map`);\n this.addAccountKeyToMap(key);\n }\n }\n }\n });\n }\n /**\n * Parses passed value as JSON object, JSON.parse() will throw an error.\n * @param input\n */\n validateAndParseJson(jsonValue) {\n try {\n const parsedJson = JSON.parse(jsonValue);\n /**\n * There are edge cases in which JSON.parse will successfully parse a non-valid JSON object\n * (e.g. JSON.parse will parse an escaped string into an unescaped string), so adding a type check\n * of the parsed value is necessary in order to be certain that the string represents a valid JSON object.\n *\n */\n return parsedJson && typeof parsedJson === \"object\"\n ? parsedJson\n : null;\n }\n catch (error) {\n return null;\n }\n }\n /**\n * fetches the entry from the browser storage based off the key\n * @param key\n */\n getItem(key) {\n return this.browserStorage.getItem(key);\n }\n /**\n * sets the entry in the browser storage\n * @param key\n * @param value\n */\n setItem(key, value) {\n this.browserStorage.setItem(key, value);\n }\n /**\n * fetch the account entity from the platform cache\n * @param accountKey\n */\n getAccount(accountKey) {\n this.logger.trace(\"BrowserCacheManager.getAccount called\");\n const account = this.getItem(accountKey);\n if (!account) {\n this.removeAccountKeyFromMap(accountKey);\n return null;\n }\n const parsedAccount = this.validateAndParseJson(account);\n if (!parsedAccount || !AccountEntity.isAccountEntity(parsedAccount)) {\n this.removeAccountKeyFromMap(accountKey);\n return null;\n }\n return CacheManager.toObject(new AccountEntity(), parsedAccount);\n }\n /**\n * set account entity in the platform cache\n * @param account\n */\n setAccount(account) {\n this.logger.trace(\"BrowserCacheManager.setAccount called\");\n const key = account.generateAccountKey();\n this.setItem(key, JSON.stringify(account));\n this.addAccountKeyToMap(key);\n }\n /**\n * Returns the array of account keys currently cached\n * @returns\n */\n getAccountKeys() {\n this.logger.trace(\"BrowserCacheManager.getAccountKeys called\");\n const accountKeys = this.getItem(StaticCacheKeys.ACCOUNT_KEYS);\n if (accountKeys) {\n return JSON.parse(accountKeys);\n }\n this.logger.verbose(\"BrowserCacheManager.getAccountKeys - No account keys found\");\n return [];\n }\n /**\n * Add a new account to the key map\n * @param key\n */\n addAccountKeyToMap(key) {\n this.logger.trace(\"BrowserCacheManager.addAccountKeyToMap called\");\n this.logger.tracePii(`BrowserCacheManager.addAccountKeyToMap called with key: ${key}`);\n const accountKeys = this.getAccountKeys();\n if (accountKeys.indexOf(key) === -1) {\n // Only add key if it does not already exist in the map\n accountKeys.push(key);\n this.setItem(StaticCacheKeys.ACCOUNT_KEYS, JSON.stringify(accountKeys));\n this.logger.verbose(\"BrowserCacheManager.addAccountKeyToMap account key added\");\n }\n else {\n this.logger.verbose(\"BrowserCacheManager.addAccountKeyToMap account key already exists in map\");\n }\n }\n /**\n * Remove an account from the key map\n * @param key\n */\n removeAccountKeyFromMap(key) {\n this.logger.trace(\"BrowserCacheManager.removeAccountKeyFromMap called\");\n this.logger.tracePii(`BrowserCacheManager.removeAccountKeyFromMap called with key: ${key}`);\n const accountKeys = this.getAccountKeys();\n const removalIndex = accountKeys.indexOf(key);\n if (removalIndex > -1) {\n accountKeys.splice(removalIndex, 1);\n this.setItem(StaticCacheKeys.ACCOUNT_KEYS, JSON.stringify(accountKeys));\n this.logger.trace(\"BrowserCacheManager.removeAccountKeyFromMap account key removed\");\n }\n else {\n this.logger.trace(\"BrowserCacheManager.removeAccountKeyFromMap key not found in existing map\");\n }\n }\n /**\n * Extends inherited removeAccount function to include removal of the account key from the map\n * @param key\n */\n async removeAccount(key) {\n void super.removeAccount(key);\n this.removeAccountKeyFromMap(key);\n }\n /**\n * Removes given idToken from the cache and from the key map\n * @param key\n */\n removeIdToken(key) {\n super.removeIdToken(key);\n this.removeTokenKey(key, CredentialType.ID_TOKEN);\n }\n /**\n * Removes given accessToken from the cache and from the key map\n * @param key\n */\n async removeAccessToken(key) {\n void super.removeAccessToken(key);\n this.removeTokenKey(key, CredentialType.ACCESS_TOKEN);\n }\n /**\n * Removes given refreshToken from the cache and from the key map\n * @param key\n */\n removeRefreshToken(key) {\n super.removeRefreshToken(key);\n this.removeTokenKey(key, CredentialType.REFRESH_TOKEN);\n }\n /**\n * Gets the keys for the cached tokens associated with this clientId\n * @returns\n */\n getTokenKeys() {\n this.logger.trace(\"BrowserCacheManager.getTokenKeys called\");\n const item = this.getItem(`${StaticCacheKeys.TOKEN_KEYS}.${this.clientId}`);\n if (item) {\n const tokenKeys = this.validateAndParseJson(item);\n if (tokenKeys &&\n tokenKeys.hasOwnProperty(\"idToken\") &&\n tokenKeys.hasOwnProperty(\"accessToken\") &&\n tokenKeys.hasOwnProperty(\"refreshToken\")) {\n return tokenKeys;\n }\n else {\n this.logger.error(\"BrowserCacheManager.getTokenKeys - Token keys found but in an unknown format. Returning empty key map.\");\n }\n }\n else {\n this.logger.verbose(\"BrowserCacheManager.getTokenKeys - No token keys found\");\n }\n return {\n idToken: [],\n accessToken: [],\n refreshToken: [],\n };\n }\n /**\n * Adds the given key to the token key map\n * @param key\n * @param type\n */\n addTokenKey(key, type) {\n this.logger.trace(\"BrowserCacheManager addTokenKey called\");\n const tokenKeys = this.getTokenKeys();\n switch (type) {\n case CredentialType.ID_TOKEN:\n if (tokenKeys.idToken.indexOf(key) === -1) {\n this.logger.info(\"BrowserCacheManager: addTokenKey - idToken added to map\");\n tokenKeys.idToken.push(key);\n }\n break;\n case CredentialType.ACCESS_TOKEN:\n if (tokenKeys.accessToken.indexOf(key) === -1) {\n this.logger.info(\"BrowserCacheManager: addTokenKey - accessToken added to map\");\n tokenKeys.accessToken.push(key);\n }\n break;\n case CredentialType.REFRESH_TOKEN:\n if (tokenKeys.refreshToken.indexOf(key) === -1) {\n this.logger.info(\"BrowserCacheManager: addTokenKey - refreshToken added to map\");\n tokenKeys.refreshToken.push(key);\n }\n break;\n default:\n this.logger.error(`BrowserCacheManager:addTokenKey - CredentialType provided invalid. CredentialType: ${type}`);\n throw createClientAuthError(ClientAuthErrorCodes.unexpectedCredentialType);\n }\n this.setItem(`${StaticCacheKeys.TOKEN_KEYS}.${this.clientId}`, JSON.stringify(tokenKeys));\n }\n /**\n * Removes the given key from the token key map\n * @param key\n * @param type\n */\n removeTokenKey(key, type) {\n this.logger.trace(\"BrowserCacheManager removeTokenKey called\");\n const tokenKeys = this.getTokenKeys();\n switch (type) {\n case CredentialType.ID_TOKEN:\n this.logger.infoPii(`BrowserCacheManager: removeTokenKey - attempting to remove idToken with key: ${key} from map`);\n const idRemoval = tokenKeys.idToken.indexOf(key);\n if (idRemoval > -1) {\n this.logger.info(\"BrowserCacheManager: removeTokenKey - idToken removed from map\");\n tokenKeys.idToken.splice(idRemoval, 1);\n }\n else {\n this.logger.info(\"BrowserCacheManager: removeTokenKey - idToken does not exist in map. Either it was previously removed or it was never added.\");\n }\n break;\n case CredentialType.ACCESS_TOKEN:\n this.logger.infoPii(`BrowserCacheManager: removeTokenKey - attempting to remove accessToken with key: ${key} from map`);\n const accessRemoval = tokenKeys.accessToken.indexOf(key);\n if (accessRemoval > -1) {\n this.logger.info(\"BrowserCacheManager: removeTokenKey - accessToken removed from map\");\n tokenKeys.accessToken.splice(accessRemoval, 1);\n }\n else {\n this.logger.info(\"BrowserCacheManager: removeTokenKey - accessToken does not exist in map. Either it was previously removed or it was never added.\");\n }\n break;\n case CredentialType.REFRESH_TOKEN:\n this.logger.infoPii(`BrowserCacheManager: removeTokenKey - attempting to remove refreshToken with key: ${key} from map`);\n const refreshRemoval = tokenKeys.refreshToken.indexOf(key);\n if (refreshRemoval > -1) {\n this.logger.info(\"BrowserCacheManager: removeTokenKey - refreshToken removed from map\");\n tokenKeys.refreshToken.splice(refreshRemoval, 1);\n }\n else {\n this.logger.info(\"BrowserCacheManager: removeTokenKey - refreshToken does not exist in map. Either it was previously removed or it was never added.\");\n }\n break;\n default:\n this.logger.error(`BrowserCacheManager:removeTokenKey - CredentialType provided invalid. CredentialType: ${type}`);\n throw createClientAuthError(ClientAuthErrorCodes.unexpectedCredentialType);\n }\n this.setItem(`${StaticCacheKeys.TOKEN_KEYS}.${this.clientId}`, JSON.stringify(tokenKeys));\n }\n /**\n * generates idToken entity from a string\n * @param idTokenKey\n */\n getIdTokenCredential(idTokenKey) {\n const value = this.getItem(idTokenKey);\n if (!value) {\n this.logger.trace(\"BrowserCacheManager.getIdTokenCredential: called, no cache hit\");\n this.removeTokenKey(idTokenKey, CredentialType.ID_TOKEN);\n return null;\n }\n const parsedIdToken = this.validateAndParseJson(value);\n if (!parsedIdToken || !IdTokenEntity.isIdTokenEntity(parsedIdToken)) {\n this.logger.trace(\"BrowserCacheManager.getIdTokenCredential: called, no cache hit\");\n this.removeTokenKey(idTokenKey, CredentialType.ID_TOKEN);\n return null;\n }\n this.logger.trace(\"BrowserCacheManager.getIdTokenCredential: cache hit\");\n return CacheManager.toObject(new IdTokenEntity(), parsedIdToken);\n }\n /**\n * set IdToken credential to the platform cache\n * @param idToken\n */\n setIdTokenCredential(idToken) {\n this.logger.trace(\"BrowserCacheManager.setIdTokenCredential called\");\n const idTokenKey = idToken.generateCredentialKey();\n this.setItem(idTokenKey, JSON.stringify(idToken));\n this.addTokenKey(idTokenKey, CredentialType.ID_TOKEN);\n }\n /**\n * generates accessToken entity from a string\n * @param key\n */\n getAccessTokenCredential(accessTokenKey) {\n const value = this.getItem(accessTokenKey);\n if (!value) {\n this.logger.trace(\"BrowserCacheManager.getAccessTokenCredential: called, no cache hit\");\n this.removeTokenKey(accessTokenKey, CredentialType.ACCESS_TOKEN);\n return null;\n }\n const parsedAccessToken = this.validateAndParseJson(value);\n if (!parsedAccessToken ||\n !AccessTokenEntity.isAccessTokenEntity(parsedAccessToken)) {\n this.logger.trace(\"BrowserCacheManager.getAccessTokenCredential: called, no cache hit\");\n this.removeTokenKey(accessTokenKey, CredentialType.ACCESS_TOKEN);\n return null;\n }\n this.logger.trace(\"BrowserCacheManager.getAccessTokenCredential: cache hit\");\n return CacheManager.toObject(new AccessTokenEntity(), parsedAccessToken);\n }\n /**\n * set accessToken credential to the platform cache\n * @param accessToken\n */\n setAccessTokenCredential(accessToken) {\n this.logger.trace(\"BrowserCacheManager.setAccessTokenCredential called\");\n const accessTokenKey = accessToken.generateCredentialKey();\n this.setItem(accessTokenKey, JSON.stringify(accessToken));\n this.addTokenKey(accessTokenKey, CredentialType.ACCESS_TOKEN);\n }\n /**\n * generates refreshToken entity from a string\n * @param refreshTokenKey\n */\n getRefreshTokenCredential(refreshTokenKey) {\n const value = this.getItem(refreshTokenKey);\n if (!value) {\n this.logger.trace(\"BrowserCacheManager.getRefreshTokenCredential: called, no cache hit\");\n this.removeTokenKey(refreshTokenKey, CredentialType.REFRESH_TOKEN);\n return null;\n }\n const parsedRefreshToken = this.validateAndParseJson(value);\n if (!parsedRefreshToken ||\n !RefreshTokenEntity.isRefreshTokenEntity(parsedRefreshToken)) {\n this.logger.trace(\"BrowserCacheManager.getRefreshTokenCredential: called, no cache hit\");\n this.removeTokenKey(refreshTokenKey, CredentialType.REFRESH_TOKEN);\n return null;\n }\n this.logger.trace(\"BrowserCacheManager.getRefreshTokenCredential: cache hit\");\n return CacheManager.toObject(new RefreshTokenEntity(), parsedRefreshToken);\n }\n /**\n * set refreshToken credential to the platform cache\n * @param refreshToken\n */\n setRefreshTokenCredential(refreshToken) {\n this.logger.trace(\"BrowserCacheManager.setRefreshTokenCredential called\");\n const refreshTokenKey = refreshToken.generateCredentialKey();\n this.setItem(refreshTokenKey, JSON.stringify(refreshToken));\n this.addTokenKey(refreshTokenKey, CredentialType.REFRESH_TOKEN);\n }\n /**\n * fetch appMetadata entity from the platform cache\n * @param appMetadataKey\n */\n getAppMetadata(appMetadataKey) {\n const value = this.getItem(appMetadataKey);\n if (!value) {\n this.logger.trace(\"BrowserCacheManager.getAppMetadata: called, no cache hit\");\n return null;\n }\n const parsedMetadata = this.validateAndParseJson(value);\n if (!parsedMetadata ||\n !AppMetadataEntity.isAppMetadataEntity(appMetadataKey, parsedMetadata)) {\n this.logger.trace(\"BrowserCacheManager.getAppMetadata: called, no cache hit\");\n return null;\n }\n this.logger.trace(\"BrowserCacheManager.getAppMetadata: cache hit\");\n return CacheManager.toObject(new AppMetadataEntity(), parsedMetadata);\n }\n /**\n * set appMetadata entity to the platform cache\n * @param appMetadata\n */\n setAppMetadata(appMetadata) {\n this.logger.trace(\"BrowserCacheManager.setAppMetadata called\");\n const appMetadataKey = appMetadata.generateAppMetadataKey();\n this.setItem(appMetadataKey, JSON.stringify(appMetadata));\n }\n /**\n * fetch server telemetry entity from the platform cache\n * @param serverTelemetryKey\n */\n getServerTelemetry(serverTelemetryKey) {\n const value = this.getItem(serverTelemetryKey);\n if (!value) {\n this.logger.trace(\"BrowserCacheManager.getServerTelemetry: called, no cache hit\");\n return null;\n }\n const parsedMetadata = this.validateAndParseJson(value);\n if (!parsedMetadata ||\n !ServerTelemetryEntity.isServerTelemetryEntity(serverTelemetryKey, parsedMetadata)) {\n this.logger.trace(\"BrowserCacheManager.getServerTelemetry: called, no cache hit\");\n return null;\n }\n this.logger.trace(\"BrowserCacheManager.getServerTelemetry: cache hit\");\n return CacheManager.toObject(new ServerTelemetryEntity(), parsedMetadata);\n }\n /**\n * set server telemetry entity to the platform cache\n * @param serverTelemetryKey\n * @param serverTelemetry\n */\n setServerTelemetry(serverTelemetryKey, serverTelemetry) {\n this.logger.trace(\"BrowserCacheManager.setServerTelemetry called\");\n this.setItem(serverTelemetryKey, JSON.stringify(serverTelemetry));\n }\n /**\n *\n */\n getAuthorityMetadata(key) {\n const value = this.internalStorage.getItem(key);\n if (!value) {\n this.logger.trace(\"BrowserCacheManager.getAuthorityMetadata: called, no cache hit\");\n return null;\n }\n const parsedMetadata = this.validateAndParseJson(value);\n if (parsedMetadata &&\n AuthorityMetadataEntity.isAuthorityMetadataEntity(key, parsedMetadata)) {\n this.logger.trace(\"BrowserCacheManager.getAuthorityMetadata: cache hit\");\n return CacheManager.toObject(new AuthorityMetadataEntity(), parsedMetadata);\n }\n return null;\n }\n /**\n *\n */\n getAuthorityMetadataKeys() {\n const allKeys = this.internalStorage.getKeys();\n return allKeys.filter((key) => {\n return this.isAuthorityMetadata(key);\n });\n }\n /**\n * Sets wrapper metadata in memory\n * @param wrapperSKU\n * @param wrapperVersion\n */\n setWrapperMetadata(wrapperSKU, wrapperVersion) {\n this.internalStorage.setItem(InMemoryCacheKeys.WRAPPER_SKU, wrapperSKU);\n this.internalStorage.setItem(InMemoryCacheKeys.WRAPPER_VER, wrapperVersion);\n }\n /**\n * Returns wrapper metadata from in-memory storage\n */\n getWrapperMetadata() {\n const sku = this.internalStorage.getItem(InMemoryCacheKeys.WRAPPER_SKU) ||\n Constants.EMPTY_STRING;\n const version = this.internalStorage.getItem(InMemoryCacheKeys.WRAPPER_VER) ||\n Constants.EMPTY_STRING;\n return [sku, version];\n }\n /**\n *\n * @param entity\n */\n setAuthorityMetadata(key, entity) {\n this.logger.trace(\"BrowserCacheManager.setAuthorityMetadata called\");\n this.internalStorage.setItem(key, JSON.stringify(entity));\n }\n /**\n * Gets the active account\n */\n getActiveAccount() {\n const activeAccountKeyFilters = this.generateCacheKey(PersistentCacheKeys.ACTIVE_ACCOUNT_FILTERS);\n const activeAccountValueFilters = this.getItem(activeAccountKeyFilters);\n if (!activeAccountValueFilters) {\n // if new active account cache type isn't found, it's an old version, so look for that instead\n this.logger.trace(\"BrowserCacheManager.getActiveAccount: No active account filters cache schema found, looking for legacy schema\");\n const activeAccountKeyLocal = this.generateCacheKey(PersistentCacheKeys.ACTIVE_ACCOUNT);\n const activeAccountValueLocal = this.getItem(activeAccountKeyLocal);\n if (!activeAccountValueLocal) {\n this.logger.trace(\"BrowserCacheManager.getActiveAccount: No active account found\");\n return null;\n }\n const activeAccount = this.getAccountInfoByFilter({\n localAccountId: activeAccountValueLocal,\n })[0] || null;\n if (activeAccount) {\n this.logger.trace(\"BrowserCacheManager.getActiveAccount: Legacy active account cache schema found\");\n this.logger.trace(\"BrowserCacheManager.getActiveAccount: Adding active account filters cache schema\");\n this.setActiveAccount(activeAccount);\n return activeAccount;\n }\n return null;\n }\n const activeAccountValueObj = this.validateAndParseJson(activeAccountValueFilters);\n if (activeAccountValueObj) {\n this.logger.trace(\"BrowserCacheManager.getActiveAccount: Active account filters schema found\");\n return (this.getAccountInfoByFilter({\n homeAccountId: activeAccountValueObj.homeAccountId,\n localAccountId: activeAccountValueObj.localAccountId,\n })[0] || null);\n }\n this.logger.trace(\"BrowserCacheManager.getActiveAccount: No active account found\");\n return null;\n }\n /**\n * Sets the active account's localAccountId in cache\n * @param account\n */\n setActiveAccount(account) {\n const activeAccountKey = this.generateCacheKey(PersistentCacheKeys.ACTIVE_ACCOUNT_FILTERS);\n const activeAccountKeyLocal = this.generateCacheKey(PersistentCacheKeys.ACTIVE_ACCOUNT);\n if (account) {\n this.logger.verbose(\"setActiveAccount: Active account set\");\n const activeAccountValue = {\n homeAccountId: account.homeAccountId,\n localAccountId: account.localAccountId,\n };\n this.browserStorage.setItem(activeAccountKey, JSON.stringify(activeAccountValue));\n this.browserStorage.setItem(activeAccountKeyLocal, account.localAccountId);\n }\n else {\n this.logger.verbose(\"setActiveAccount: No account passed, active account not set\");\n this.browserStorage.removeItem(activeAccountKey);\n this.browserStorage.removeItem(activeAccountKeyLocal);\n }\n }\n /**\n * Gets a list of accounts that match all of the filters provided\n * @param account\n */\n getAccountInfoByFilter(accountFilter) {\n const allAccounts = this.getAllAccounts();\n this.logger.trace(`BrowserCacheManager.getAccountInfoByFilter: total ${allAccounts.length} accounts found`);\n return allAccounts.filter((accountObj) => {\n if (accountFilter.username &&\n accountFilter.username.toLowerCase() !==\n accountObj.username.toLowerCase()) {\n return false;\n }\n if (accountFilter.homeAccountId &&\n accountFilter.homeAccountId !== accountObj.homeAccountId) {\n return false;\n }\n if (accountFilter.localAccountId &&\n accountFilter.localAccountId !== accountObj.localAccountId) {\n return false;\n }\n if (accountFilter.tenantId &&\n accountFilter.tenantId !== accountObj.tenantId) {\n return false;\n }\n if (accountFilter.environment &&\n accountFilter.environment !== accountObj.environment) {\n return false;\n }\n return true;\n });\n }\n /**\n * Checks the cache for accounts matching loginHint or SID\n * @param loginHint\n * @param sid\n */\n getAccountInfoByHints(loginHint, sid) {\n const matchingAccounts = this.getAllAccounts().filter((accountInfo) => {\n if (sid) {\n const accountSid = accountInfo.idTokenClaims &&\n accountInfo.idTokenClaims[\"sid\"];\n return sid === accountSid;\n }\n if (loginHint) {\n return loginHint === accountInfo.username;\n }\n return false;\n });\n if (matchingAccounts.length === 1) {\n return matchingAccounts[0];\n }\n else if (matchingAccounts.length > 1) {\n throw createClientAuthError(ClientAuthErrorCodes.multipleMatchingAccounts);\n }\n return null;\n }\n /**\n * fetch throttling entity from the platform cache\n * @param throttlingCacheKey\n */\n getThrottlingCache(throttlingCacheKey) {\n const value = this.getItem(throttlingCacheKey);\n if (!value) {\n this.logger.trace(\"BrowserCacheManager.getThrottlingCache: called, no cache hit\");\n return null;\n }\n const parsedThrottlingCache = this.validateAndParseJson(value);\n if (!parsedThrottlingCache ||\n !ThrottlingEntity.isThrottlingEntity(throttlingCacheKey, parsedThrottlingCache)) {\n this.logger.trace(\"BrowserCacheManager.getThrottlingCache: called, no cache hit\");\n return null;\n }\n this.logger.trace(\"BrowserCacheManager.getThrottlingCache: cache hit\");\n return CacheManager.toObject(new ThrottlingEntity(), parsedThrottlingCache);\n }\n /**\n * set throttling entity to the platform cache\n * @param throttlingCacheKey\n * @param throttlingCache\n */\n setThrottlingCache(throttlingCacheKey, throttlingCache) {\n this.logger.trace(\"BrowserCacheManager.setThrottlingCache called\");\n this.setItem(throttlingCacheKey, JSON.stringify(throttlingCache));\n }\n /**\n * Gets cache item with given key.\n * Will retrieve from cookies if storeAuthStateInCookie is set to true.\n * @param key\n */\n getTemporaryCache(cacheKey, generateKey) {\n const key = generateKey ? this.generateCacheKey(cacheKey) : cacheKey;\n if (this.cacheConfig.storeAuthStateInCookie) {\n const itemCookie = this.getItemCookie(key);\n if (itemCookie) {\n this.logger.trace(\"BrowserCacheManager.getTemporaryCache: storeAuthStateInCookies set to true, retrieving from cookies\");\n return itemCookie;\n }\n }\n const value = this.temporaryCacheStorage.getItem(key);\n if (!value) {\n // If temp cache item not found in session/memory, check local storage for items set by old versions\n if (this.cacheConfig.cacheLocation ===\n BrowserCacheLocation.LocalStorage) {\n const item = this.browserStorage.getItem(key);\n if (item) {\n this.logger.trace(\"BrowserCacheManager.getTemporaryCache: Temporary cache item found in local storage\");\n return item;\n }\n }\n this.logger.trace(\"BrowserCacheManager.getTemporaryCache: No cache item found in local storage\");\n return null;\n }\n this.logger.trace(\"BrowserCacheManager.getTemporaryCache: Temporary cache item returned\");\n return value;\n }\n /**\n * Sets the cache item with the key and value given.\n * Stores in cookie if storeAuthStateInCookie is set to true.\n * This can cause cookie overflow if used incorrectly.\n * @param key\n * @param value\n */\n setTemporaryCache(cacheKey, value, generateKey) {\n const key = generateKey ? this.generateCacheKey(cacheKey) : cacheKey;\n this.temporaryCacheStorage.setItem(key, value);\n if (this.cacheConfig.storeAuthStateInCookie) {\n this.logger.trace(\"BrowserCacheManager.setTemporaryCache: storeAuthStateInCookie set to true, setting item cookie\");\n this.setItemCookie(key, value);\n }\n }\n /**\n * Removes the cache item with the given key.\n * Will also clear the cookie item if storeAuthStateInCookie is set to true.\n * @param key\n */\n removeItem(key) {\n this.browserStorage.removeItem(key);\n this.temporaryCacheStorage.removeItem(key);\n if (this.cacheConfig.storeAuthStateInCookie) {\n this.logger.trace(\"BrowserCacheManager.removeItem: storeAuthStateInCookie is true, clearing item cookie\");\n this.clearItemCookie(key);\n }\n }\n /**\n * Checks whether key is in cache.\n * @param key\n */\n containsKey(key) {\n return (this.browserStorage.containsKey(key) ||\n this.temporaryCacheStorage.containsKey(key));\n }\n /**\n * Gets all keys in window.\n */\n getKeys() {\n return [\n ...this.browserStorage.getKeys(),\n ...this.temporaryCacheStorage.getKeys(),\n ];\n }\n /**\n * Clears all cache entries created by MSAL.\n */\n async clear() {\n // Removes all accounts and their credentials\n await this.removeAllAccounts();\n this.removeAppMetadata();\n // Removes all remaining MSAL cache items\n this.getKeys().forEach((cacheKey) => {\n // Check if key contains msal prefix; For now, we are clearing all the cache items created by MSAL.js\n if ((this.browserStorage.containsKey(cacheKey) ||\n this.temporaryCacheStorage.containsKey(cacheKey)) &&\n (cacheKey.indexOf(Constants.CACHE_PREFIX) !== -1 ||\n cacheKey.indexOf(this.clientId) !== -1)) {\n this.removeItem(cacheKey);\n }\n });\n this.internalStorage.clear();\n }\n /**\n * Clears all access tokes that have claims prior to saving the current one\n * @param performanceClient {IPerformanceClient}\n * @returns\n */\n async clearTokensAndKeysWithClaims(performanceClient) {\n performanceClient.addQueueMeasurement(PerformanceEvents.ClearTokensAndKeysWithClaims);\n const tokenKeys = this.getTokenKeys();\n const removedAccessTokens = [];\n tokenKeys.accessToken.forEach((key) => {\n // if the access token has claims in its key, remove the token key and the token\n const credential = this.getAccessTokenCredential(key);\n if (credential?.requestedClaimsHash &&\n key.includes(credential.requestedClaimsHash.toLowerCase())) {\n removedAccessTokens.push(this.removeAccessToken(key));\n }\n });\n await Promise.all(removedAccessTokens);\n // warn if any access tokens are removed\n if (removedAccessTokens.length > 0) {\n this.logger.warning(`${removedAccessTokens.length} access tokens with claims in the cache keys have been removed from the cache.`);\n }\n }\n /**\n * Add value to cookies\n * @param cookieName\n * @param cookieValue\n * @param expires\n */\n setItemCookie(cookieName, cookieValue, expires) {\n let cookieStr = `${encodeURIComponent(cookieName)}=${encodeURIComponent(cookieValue)};path=/;SameSite=Lax;`;\n if (expires) {\n const expireTime = this.getCookieExpirationTime(expires);\n cookieStr += `expires=${expireTime};`;\n }\n if (this.cacheConfig.secureCookies) {\n cookieStr += \"Secure;\";\n }\n document.cookie = cookieStr;\n }\n /**\n * Get one item by key from cookies\n * @param cookieName\n */\n getItemCookie(cookieName) {\n const name = `${encodeURIComponent(cookieName)}=`;\n const cookieList = document.cookie.split(\";\");\n for (let i = 0; i < cookieList.length; i++) {\n let cookie = cookieList[i];\n while (cookie.charAt(0) === \" \") {\n cookie = cookie.substring(1);\n }\n if (cookie.indexOf(name) === 0) {\n return decodeURIComponent(cookie.substring(name.length, cookie.length));\n }\n }\n return Constants.EMPTY_STRING;\n }\n /**\n * Clear all msal-related cookies currently set in the browser. Should only be used to clear temporary cache items.\n */\n clearMsalCookies() {\n const cookiePrefix = `${Constants.CACHE_PREFIX}.${this.clientId}`;\n const cookieList = document.cookie.split(\";\");\n cookieList.forEach((cookie) => {\n while (cookie.charAt(0) === \" \") {\n // eslint-disable-next-line no-param-reassign\n cookie = cookie.substring(1);\n }\n if (cookie.indexOf(cookiePrefix) === 0) {\n const cookieKey = cookie.split(\"=\")[0];\n this.clearItemCookie(cookieKey);\n }\n });\n }\n /**\n * Clear an item in the cookies by key\n * @param cookieName\n */\n clearItemCookie(cookieName) {\n this.setItemCookie(cookieName, Constants.EMPTY_STRING, -1);\n }\n /**\n * Get cookie expiration time\n * @param cookieLifeDays\n */\n getCookieExpirationTime(cookieLifeDays) {\n const today = new Date();\n const expr = new Date(today.getTime() + cookieLifeDays * this.COOKIE_LIFE_MULTIPLIER);\n return expr.toUTCString();\n }\n /**\n * Gets the cache object referenced by the browser\n */\n getCache() {\n return this.browserStorage;\n }\n /**\n * interface compat, we cannot overwrite browser cache; Functionality is supported by individual entities in browser\n */\n setCache() {\n // sets nothing\n }\n /**\n * Prepend msal. to each key; Skip for any JSON object as Key (defined schemas do not need the key appended: AccessToken Keys or the upcoming schema)\n * @param key\n * @param addInstanceId\n */\n generateCacheKey(key) {\n const generatedKey = this.validateAndParseJson(key);\n if (!generatedKey) {\n if (StringUtils.startsWith(key, Constants.CACHE_PREFIX) ||\n StringUtils.startsWith(key, PersistentCacheKeys.ADAL_ID_TOKEN)) {\n return key;\n }\n return `${Constants.CACHE_PREFIX}.${this.clientId}.${key}`;\n }\n return JSON.stringify(key);\n }\n /**\n * Create authorityKey to cache authority\n * @param state\n */\n generateAuthorityKey(stateString) {\n const { libraryState: { id: stateId }, } = ProtocolUtils.parseRequestState(this.cryptoImpl, stateString);\n return this.generateCacheKey(`${TemporaryCacheKeys.AUTHORITY}.${stateId}`);\n }\n /**\n * Create Nonce key to cache nonce\n * @param state\n */\n generateNonceKey(stateString) {\n const { libraryState: { id: stateId }, } = ProtocolUtils.parseRequestState(this.cryptoImpl, stateString);\n return this.generateCacheKey(`${TemporaryCacheKeys.NONCE_IDTOKEN}.${stateId}`);\n }\n /**\n * Creates full cache key for the request state\n * @param stateString State string for the request\n */\n generateStateKey(stateString) {\n // Use the library state id to key temp storage for uniqueness for multiple concurrent requests\n const { libraryState: { id: stateId }, } = ProtocolUtils.parseRequestState(this.cryptoImpl, stateString);\n return this.generateCacheKey(`${TemporaryCacheKeys.REQUEST_STATE}.${stateId}`);\n }\n /**\n * Gets the cached authority based on the cached state. Returns empty if no cached state found.\n */\n getCachedAuthority(cachedState) {\n const stateCacheKey = this.generateStateKey(cachedState);\n const state = this.getTemporaryCache(stateCacheKey);\n if (!state) {\n return null;\n }\n const authorityCacheKey = this.generateAuthorityKey(state);\n return this.getTemporaryCache(authorityCacheKey);\n }\n /**\n * Updates account, authority, and state in cache\n * @param serverAuthenticationRequest\n * @param account\n */\n updateCacheEntries(state, nonce, authorityInstance, loginHint, account) {\n this.logger.trace(\"BrowserCacheManager.updateCacheEntries called\");\n // Cache the request state\n const stateCacheKey = this.generateStateKey(state);\n this.setTemporaryCache(stateCacheKey, state, false);\n // Cache the nonce\n const nonceCacheKey = this.generateNonceKey(state);\n this.setTemporaryCache(nonceCacheKey, nonce, false);\n // Cache authorityKey\n const authorityCacheKey = this.generateAuthorityKey(state);\n this.setTemporaryCache(authorityCacheKey, authorityInstance, false);\n if (account) {\n const ccsCredential = {\n credential: account.homeAccountId,\n type: CcsCredentialType.HOME_ACCOUNT_ID,\n };\n this.setTemporaryCache(TemporaryCacheKeys.CCS_CREDENTIAL, JSON.stringify(ccsCredential), true);\n }\n else if (loginHint) {\n const ccsCredential = {\n credential: loginHint,\n type: CcsCredentialType.UPN,\n };\n this.setTemporaryCache(TemporaryCacheKeys.CCS_CREDENTIAL, JSON.stringify(ccsCredential), true);\n }\n }\n /**\n * Reset all temporary cache items\n * @param state\n */\n resetRequestCache(state) {\n this.logger.trace(\"BrowserCacheManager.resetRequestCache called\");\n // check state and remove associated cache items\n if (state) {\n this.getKeys().forEach((key) => {\n if (key.indexOf(state) !== -1) {\n this.removeItem(key);\n }\n });\n // delete generic interactive request parameters\n this.removeItem(this.generateStateKey(state));\n this.removeItem(this.generateNonceKey(state));\n this.removeItem(this.generateAuthorityKey(state));\n }\n this.removeItem(this.generateCacheKey(TemporaryCacheKeys.REQUEST_PARAMS));\n this.removeItem(this.generateCacheKey(TemporaryCacheKeys.ORIGIN_URI));\n this.removeItem(this.generateCacheKey(TemporaryCacheKeys.URL_HASH));\n this.removeItem(this.generateCacheKey(TemporaryCacheKeys.CORRELATION_ID));\n this.removeItem(this.generateCacheKey(TemporaryCacheKeys.CCS_CREDENTIAL));\n this.removeItem(this.generateCacheKey(TemporaryCacheKeys.NATIVE_REQUEST));\n this.setInteractionInProgress(false);\n }\n /**\n * Removes temporary cache for the provided state\n * @param stateString\n */\n cleanRequestByState(stateString) {\n this.logger.trace(\"BrowserCacheManager.cleanRequestByState called\");\n // Interaction is completed - remove interaction status.\n if (stateString) {\n const stateKey = this.generateStateKey(stateString);\n const cachedState = this.temporaryCacheStorage.getItem(stateKey);\n this.logger.infoPii(`BrowserCacheManager.cleanRequestByState: Removing temporary cache items for state: ${cachedState}`);\n this.resetRequestCache(cachedState || Constants.EMPTY_STRING);\n }\n this.clearMsalCookies();\n }\n /**\n * Looks in temporary cache for any state values with the provided interactionType and removes all temporary cache items for that state\n * Used in scenarios where temp cache needs to be cleaned but state is not known, such as clicking browser back button.\n * @param interactionType\n */\n cleanRequestByInteractionType(interactionType) {\n this.logger.trace(\"BrowserCacheManager.cleanRequestByInteractionType called\");\n // Loop through all keys to find state key\n this.getKeys().forEach((key) => {\n // If this key is not the state key, move on\n if (key.indexOf(TemporaryCacheKeys.REQUEST_STATE) === -1) {\n return;\n }\n // Retrieve state value, return if not a valid value\n const stateValue = this.temporaryCacheStorage.getItem(key);\n if (!stateValue) {\n return;\n }\n // Extract state and ensure it matches given InteractionType, then clean request cache\n const parsedState = BrowserProtocolUtils.extractBrowserRequestState(this.cryptoImpl, stateValue);\n if (parsedState &&\n parsedState.interactionType === interactionType) {\n this.logger.infoPii(`BrowserCacheManager.cleanRequestByInteractionType: Removing temporary cache items for state: ${stateValue}`);\n this.resetRequestCache(stateValue);\n }\n });\n this.clearMsalCookies();\n this.setInteractionInProgress(false);\n }\n cacheCodeRequest(authCodeRequest) {\n this.logger.trace(\"BrowserCacheManager.cacheCodeRequest called\");\n const encodedValue = base64Encode(JSON.stringify(authCodeRequest));\n this.setTemporaryCache(TemporaryCacheKeys.REQUEST_PARAMS, encodedValue, true);\n }\n /**\n * Gets the token exchange parameters from the cache. Throws an error if nothing is found.\n */\n getCachedRequest(state) {\n this.logger.trace(\"BrowserCacheManager.getCachedRequest called\");\n // Get token request from cache and parse as TokenExchangeParameters.\n const encodedTokenRequest = this.getTemporaryCache(TemporaryCacheKeys.REQUEST_PARAMS, true);\n if (!encodedTokenRequest) {\n throw createBrowserAuthError(noTokenRequestCacheError);\n }\n let parsedRequest;\n try {\n parsedRequest = JSON.parse(base64Decode(encodedTokenRequest));\n }\n catch (e) {\n this.logger.errorPii(`Attempted to parse: ${encodedTokenRequest}`);\n this.logger.error(`Parsing cached token request threw with error: ${e}`);\n throw createBrowserAuthError(unableToParseTokenRequestCacheError);\n }\n this.removeItem(this.generateCacheKey(TemporaryCacheKeys.REQUEST_PARAMS));\n // Get cached authority and use if no authority is cached with request.\n if (!parsedRequest.authority) {\n const authorityCacheKey = this.generateAuthorityKey(state);\n const cachedAuthority = this.getTemporaryCache(authorityCacheKey);\n if (!cachedAuthority) {\n throw createBrowserAuthError(noCachedAuthorityError);\n }\n parsedRequest.authority = cachedAuthority;\n }\n return parsedRequest;\n }\n /**\n * Gets cached native request for redirect flows\n */\n getCachedNativeRequest() {\n this.logger.trace(\"BrowserCacheManager.getCachedNativeRequest called\");\n const cachedRequest = this.getTemporaryCache(TemporaryCacheKeys.NATIVE_REQUEST, true);\n if (!cachedRequest) {\n this.logger.trace(\"BrowserCacheManager.getCachedNativeRequest: No cached native request found\");\n return null;\n }\n const parsedRequest = this.validateAndParseJson(cachedRequest);\n if (!parsedRequest) {\n this.logger.error(\"BrowserCacheManager.getCachedNativeRequest: Unable to parse native request\");\n return null;\n }\n return parsedRequest;\n }\n isInteractionInProgress(matchClientId) {\n const clientId = this.getInteractionInProgress();\n if (matchClientId) {\n return clientId === this.clientId;\n }\n else {\n return !!clientId;\n }\n }\n getInteractionInProgress() {\n const key = `${Constants.CACHE_PREFIX}.${TemporaryCacheKeys.INTERACTION_STATUS_KEY}`;\n return this.getTemporaryCache(key, false);\n }\n setInteractionInProgress(inProgress) {\n // Ensure we don't overwrite interaction in progress for a different clientId\n const key = `${Constants.CACHE_PREFIX}.${TemporaryCacheKeys.INTERACTION_STATUS_KEY}`;\n if (inProgress) {\n if (this.getInteractionInProgress()) {\n throw createBrowserAuthError(interactionInProgress);\n }\n else {\n // No interaction is in progress\n this.setTemporaryCache(key, this.clientId, false);\n }\n }\n else if (!inProgress &&\n this.getInteractionInProgress() === this.clientId) {\n this.removeItem(key);\n }\n }\n /**\n * Returns username retrieved from ADAL or MSAL v1 idToken\n * @deprecated\n */\n getLegacyLoginHint() {\n // Only check for adal/msal token if no SSO params are being used\n const adalIdTokenString = this.getTemporaryCache(PersistentCacheKeys.ADAL_ID_TOKEN);\n if (adalIdTokenString) {\n this.browserStorage.removeItem(PersistentCacheKeys.ADAL_ID_TOKEN);\n this.logger.verbose(\"Cached ADAL id token retrieved.\");\n }\n // Check for cached MSAL v1 id token\n const msalIdTokenString = this.getTemporaryCache(PersistentCacheKeys.ID_TOKEN, true);\n if (msalIdTokenString) {\n this.removeItem(this.generateCacheKey(PersistentCacheKeys.ID_TOKEN));\n this.logger.verbose(\"Cached MSAL.js v1 id token retrieved\");\n }\n const cachedIdTokenString = msalIdTokenString || adalIdTokenString;\n if (cachedIdTokenString) {\n const idTokenClaims = AuthToken.extractTokenClaims(cachedIdTokenString, base64Decode);\n if (idTokenClaims.preferred_username) {\n this.logger.verbose(\"No SSO params used and ADAL/MSAL v1 token retrieved, setting ADAL/MSAL v1 preferred_username as loginHint\");\n return idTokenClaims.preferred_username;\n }\n else if (idTokenClaims.upn) {\n this.logger.verbose(\"No SSO params used and ADAL/MSAL v1 token retrieved, setting ADAL/MSAL v1 upn as loginHint\");\n return idTokenClaims.upn;\n }\n else {\n this.logger.verbose(\"No SSO params used and ADAL/MSAL v1 token retrieved, however, no account hint claim found. Enable preferred_username or upn id token claim to get SSO.\");\n }\n }\n return null;\n }\n /**\n * Updates a credential's cache key if the current cache key is outdated\n */\n updateCredentialCacheKey(currentCacheKey, credential) {\n const updatedCacheKey = credential.generateCredentialKey();\n if (currentCacheKey !== updatedCacheKey) {\n const cacheItem = this.getItem(currentCacheKey);\n if (cacheItem) {\n this.removeItem(currentCacheKey);\n this.setItem(updatedCacheKey, cacheItem);\n this.logger.verbose(`Updated an outdated ${credential.credentialType} cache key`);\n return updatedCacheKey;\n }\n else {\n this.logger.error(`Attempted to update an outdated ${credential.credentialType} cache key but no item matching the outdated key was found in storage`);\n }\n }\n return currentCacheKey;\n }\n /**\n * Returns application id as redirect context during AcquireTokenRedirect flow.\n */\n getRedirectRequestContext() {\n return this.getTemporaryCache(TemporaryCacheKeys.REDIRECT_CONTEXT, true);\n }\n /**\n * Sets application id as the redirect context during AcquireTokenRedirect flow.\n * @param value\n */\n setRedirectRequestContext(value) {\n this.setTemporaryCache(TemporaryCacheKeys.REDIRECT_CONTEXT, value, true);\n }\n /**\n * Builds credential entities from AuthenticationResult object and saves the resulting credentials to the cache\n * @param result\n * @param request\n */\n async hydrateCache(result, request) {\n const idTokenEntity = IdTokenEntity.createIdTokenEntity(result.account?.homeAccountId, result.account?.environment, result.idToken, this.clientId, result.tenantId);\n let claimsHash;\n if (request.claims) {\n claimsHash = await this.cryptoImpl.hashString(request.claims);\n }\n const accessTokenEntity = AccessTokenEntity.createAccessTokenEntity(result.account?.homeAccountId, result.account.environment, result.accessToken, this.clientId, result.tenantId, result.scopes.join(\" \"), result.expiresOn?.getTime() || 0, result.extExpiresOn?.getTime() || 0, this.cryptoImpl, undefined, // refreshOn\n result.tokenType, undefined, // userAssertionHash\n request.sshKid, request.claims, claimsHash);\n const cacheRecord = new CacheRecord(undefined, idTokenEntity, accessTokenEntity);\n return this.saveCacheRecord(cacheRecord);\n }\n}\nconst DEFAULT_BROWSER_CACHE_MANAGER = (clientId, logger) => {\n const cacheOptions = {\n cacheLocation: BrowserCacheLocation.MemoryStorage,\n temporaryCacheLocation: BrowserCacheLocation.MemoryStorage,\n storeAuthStateInCookie: false,\n secureCookies: false,\n cacheMigrationEnabled: false,\n claimsBasedCachingEnabled: false,\n };\n return new BrowserCacheManager(clientId, cacheOptions, DEFAULT_CRYPTO_IMPLEMENTATION, logger);\n};\n\nexport { BrowserCacheManager, DEFAULT_BROWSER_CACHE_MANAGER };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { Constants, UrlString } from '@azure/msal-common';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { BrowserConstants, InteractionType } from './BrowserConstants.mjs';\nimport { blockIframeReload, redirectInIframe, blockNestedPopups, nonBrowserEnvironment, uninitializedPublicClientApplication } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Utility class for browser specific functions\n */\nclass BrowserUtils {\n // #region Window Navigation and URL management\n /**\n * Clears hash from window url.\n */\n static clearHash(contentWindow) {\n // Office.js sets history.replaceState to null\n contentWindow.location.hash = Constants.EMPTY_STRING;\n if (typeof contentWindow.history.replaceState === \"function\") {\n // Full removes \"#\" from url\n contentWindow.history.replaceState(null, Constants.EMPTY_STRING, `${contentWindow.location.origin}${contentWindow.location.pathname}${contentWindow.location.search}`);\n }\n }\n /**\n * Replaces current hash with hash from provided url\n */\n static replaceHash(url) {\n const urlParts = url.split(\"#\");\n urlParts.shift(); // Remove part before the hash\n window.location.hash =\n urlParts.length > 0 ? urlParts.join(\"#\") : Constants.EMPTY_STRING;\n }\n /**\n * Returns boolean of whether the current window is in an iframe or not.\n */\n static isInIframe() {\n return window.parent !== window;\n }\n /**\n * Returns boolean of whether or not the current window is a popup opened by msal\n */\n static isInPopup() {\n return (typeof window !== \"undefined\" &&\n !!window.opener &&\n window.opener !== window &&\n typeof window.name === \"string\" &&\n window.name.indexOf(`${BrowserConstants.POPUP_NAME_PREFIX}.`) === 0);\n }\n // #endregion\n /**\n * Returns current window URL as redirect uri\n */\n static getCurrentUri() {\n return window.location.href.split(\"?\")[0].split(\"#\")[0];\n }\n /**\n * Gets the homepage url for the current window location.\n */\n static getHomepage() {\n const currentUrl = new UrlString(window.location.href);\n const urlComponents = currentUrl.getUrlComponents();\n return `${urlComponents.Protocol}//${urlComponents.HostNameAndPort}/`;\n }\n /**\n * Throws error if we have completed an auth and are\n * attempting another auth request inside an iframe.\n */\n static blockReloadInHiddenIframes() {\n const isResponseHash = UrlString.hashContainsKnownProperties(window.location.hash);\n // return an error if called from the hidden iframe created by the msal js silent calls\n if (isResponseHash && BrowserUtils.isInIframe()) {\n throw createBrowserAuthError(blockIframeReload);\n }\n }\n /**\n * Block redirect operations in iframes unless explicitly allowed\n * @param interactionType Interaction type for the request\n * @param allowRedirectInIframe Config value to allow redirects when app is inside an iframe\n */\n static blockRedirectInIframe(interactionType, allowRedirectInIframe) {\n const isIframedApp = BrowserUtils.isInIframe();\n if (interactionType === InteractionType.Redirect &&\n isIframedApp &&\n !allowRedirectInIframe) {\n // If we are not in top frame, we shouldn't redirect. This is also handled by the service.\n throw createBrowserAuthError(redirectInIframe);\n }\n }\n /**\n * Block redirectUri loaded in popup from calling AcquireToken APIs\n */\n static blockAcquireTokenInPopups() {\n // Popups opened by msal popup APIs are given a name that starts with \"msal.\"\n if (BrowserUtils.isInPopup()) {\n throw createBrowserAuthError(blockNestedPopups);\n }\n }\n /**\n * Throws error if token requests are made in non-browser environment\n * @param isBrowserEnvironment Flag indicating if environment is a browser.\n */\n static blockNonBrowserEnvironment(isBrowserEnvironment) {\n if (!isBrowserEnvironment) {\n throw createBrowserAuthError(nonBrowserEnvironment);\n }\n }\n /**\n * Throws error if initialize hasn't been called\n * @param initialized\n */\n static blockAPICallsBeforeInitialize(initialized) {\n if (!initialized) {\n throw createBrowserAuthError(uninitializedPublicClientApplication);\n }\n }\n}\n\nexport { BrowserUtils };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst EventType = {\n INITIALIZE_START: \"msal:initializeStart\",\n INITIALIZE_END: \"msal:initializeEnd\",\n ACCOUNT_ADDED: \"msal:accountAdded\",\n ACCOUNT_REMOVED: \"msal:accountRemoved\",\n LOGIN_START: \"msal:loginStart\",\n LOGIN_SUCCESS: \"msal:loginSuccess\",\n LOGIN_FAILURE: \"msal:loginFailure\",\n ACQUIRE_TOKEN_START: \"msal:acquireTokenStart\",\n ACQUIRE_TOKEN_SUCCESS: \"msal:acquireTokenSuccess\",\n ACQUIRE_TOKEN_FAILURE: \"msal:acquireTokenFailure\",\n ACQUIRE_TOKEN_NETWORK_START: \"msal:acquireTokenFromNetworkStart\",\n SSO_SILENT_START: \"msal:ssoSilentStart\",\n SSO_SILENT_SUCCESS: \"msal:ssoSilentSuccess\",\n SSO_SILENT_FAILURE: \"msal:ssoSilentFailure\",\n ACQUIRE_TOKEN_BY_CODE_START: \"msal:acquireTokenByCodeStart\",\n ACQUIRE_TOKEN_BY_CODE_SUCCESS: \"msal:acquireTokenByCodeSuccess\",\n ACQUIRE_TOKEN_BY_CODE_FAILURE: \"msal:acquireTokenByCodeFailure\",\n HANDLE_REDIRECT_START: \"msal:handleRedirectStart\",\n HANDLE_REDIRECT_END: \"msal:handleRedirectEnd\",\n POPUP_OPENED: \"msal:popupOpened\",\n LOGOUT_START: \"msal:logoutStart\",\n LOGOUT_SUCCESS: \"msal:logoutSuccess\",\n LOGOUT_FAILURE: \"msal:logoutFailure\",\n LOGOUT_END: \"msal:logoutEnd\",\n RESTORE_FROM_BFCACHE: \"msal:restoreFromBFCache\",\n};\n\nexport { EventType };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { AccountEntity, CacheManager } from '@azure/msal-common';\nimport { EventType } from './EventType.mjs';\nimport { createNewGuid } from '../crypto/BrowserCrypto.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass EventHandler {\n constructor(logger, browserCrypto) {\n this.eventCallbacks = new Map();\n this.logger = logger;\n this.browserCrypto = browserCrypto;\n this.listeningToStorageEvents = false;\n this.handleAccountCacheChange =\n this.handleAccountCacheChange.bind(this);\n }\n /**\n * Adds event callbacks to array\n * @param callback\n */\n addEventCallback(callback) {\n if (typeof window !== \"undefined\") {\n const callbackId = createNewGuid();\n this.eventCallbacks.set(callbackId, callback);\n this.logger.verbose(`Event callback registered with id: ${callbackId}`);\n return callbackId;\n }\n return null;\n }\n /**\n * Removes callback with provided id from callback array\n * @param callbackId\n */\n removeEventCallback(callbackId) {\n this.eventCallbacks.delete(callbackId);\n this.logger.verbose(`Event callback ${callbackId} removed.`);\n }\n /**\n * Adds event listener that emits an event when a user account is added or removed from localstorage in a different browser tab or window\n */\n enableAccountStorageEvents() {\n if (typeof window === \"undefined\") {\n return;\n }\n if (!this.listeningToStorageEvents) {\n this.logger.verbose(\"Adding account storage listener.\");\n this.listeningToStorageEvents = true;\n window.addEventListener(\"storage\", this.handleAccountCacheChange);\n }\n else {\n this.logger.verbose(\"Account storage listener already registered.\");\n }\n }\n /**\n * Removes event listener that emits an event when a user account is added or removed from localstorage in a different browser tab or window\n */\n disableAccountStorageEvents() {\n if (typeof window === \"undefined\") {\n return;\n }\n if (this.listeningToStorageEvents) {\n this.logger.verbose(\"Removing account storage listener.\");\n window.removeEventListener(\"storage\", this.handleAccountCacheChange);\n this.listeningToStorageEvents = false;\n }\n else {\n this.logger.verbose(\"No account storage listener registered.\");\n }\n }\n /**\n * Emits events by calling callback with event message\n * @param eventType\n * @param interactionType\n * @param payload\n * @param error\n */\n emitEvent(eventType, interactionType, payload, error) {\n if (typeof window !== \"undefined\") {\n const message = {\n eventType: eventType,\n interactionType: interactionType || null,\n payload: payload || null,\n error: error || null,\n timestamp: Date.now(),\n };\n this.logger.info(`Emitting event: ${eventType}`);\n this.eventCallbacks.forEach((callback, callbackId) => {\n this.logger.verbose(`Emitting event to callback ${callbackId}: ${eventType}`);\n callback.apply(null, [message]);\n });\n }\n }\n /**\n * Emit account added/removed events when cached accounts are changed in a different tab or frame\n */\n handleAccountCacheChange(e) {\n try {\n const cacheValue = e.newValue || e.oldValue;\n if (!cacheValue) {\n return;\n }\n const parsedValue = JSON.parse(cacheValue);\n if (typeof parsedValue !== \"object\" ||\n !AccountEntity.isAccountEntity(parsedValue)) {\n return;\n }\n const accountEntity = CacheManager.toObject(new AccountEntity(), parsedValue);\n const accountInfo = accountEntity.getAccountInfo();\n if (!e.oldValue && e.newValue) {\n this.logger.info(\"Account was added to cache in a different window\");\n this.emitEvent(EventType.ACCOUNT_ADDED, undefined, accountInfo);\n }\n else if (!e.newValue && e.oldValue) {\n this.logger.info(\"Account was removed from cache in a different window\");\n this.emitEvent(EventType.ACCOUNT_REMOVED, undefined, accountInfo);\n }\n }\n catch (e) {\n return;\n }\n }\n}\n\nexport { EventHandler };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\n/* eslint-disable header/header */\nconst name = \"@azure/msal-browser\";\nconst version = \"3.2.0\";\n\nexport { name, version };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { AccountEntity, PerformanceEvents, AuthenticationScheme, createClientConfigurationError, ClientConfigurationErrorCodes, StringUtils, UrlString, ServerTelemetryManager, AuthorityFactory } from '@azure/msal-common';\nimport { version } from '../packageMetadata.mjs';\nimport { BrowserConstants } from '../utils/BrowserConstants.mjs';\nimport { BrowserUtils } from '../utils/BrowserUtils.mjs';\nimport { createNewGuid } from '../crypto/BrowserCrypto.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass BaseInteractionClient {\n constructor(config, storageImpl, browserCrypto, logger, eventHandler, navigationClient, performanceClient, nativeMessageHandler, correlationId) {\n this.config = config;\n this.browserStorage = storageImpl;\n this.browserCrypto = browserCrypto;\n this.networkClient = this.config.system.networkClient;\n this.eventHandler = eventHandler;\n this.navigationClient = navigationClient;\n this.nativeMessageHandler = nativeMessageHandler;\n this.correlationId = correlationId || createNewGuid();\n this.logger = logger.clone(BrowserConstants.MSAL_SKU, version, this.correlationId);\n this.performanceClient = performanceClient;\n }\n async clearCacheOnLogout(account) {\n if (account) {\n if (AccountEntity.accountInfoIsEqual(account, this.browserStorage.getActiveAccount(), false)) {\n this.logger.verbose(\"Setting active account to null\");\n this.browserStorage.setActiveAccount(null);\n }\n // Clear given account.\n try {\n await this.browserStorage.removeAccount(AccountEntity.generateAccountCacheKey(account));\n this.logger.verbose(\"Cleared cache items belonging to the account provided in the logout request.\");\n }\n catch (error) {\n this.logger.error(\"Account provided in logout request was not found. Local cache unchanged.\");\n }\n }\n else {\n try {\n this.logger.verbose(\"No account provided in logout request, clearing all cache items.\", this.correlationId);\n // Clear all accounts and tokens\n await this.browserStorage.clear();\n // Clear any stray keys from IndexedDB\n await this.browserCrypto.clearKeystore();\n }\n catch (e) {\n this.logger.error(\"Attempted to clear all MSAL cache items and failed. Local cache unchanged.\");\n }\n }\n }\n /**\n * Initializer function for all request APIs\n * @param request\n */\n async initializeBaseRequest(request, account) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.InitializeBaseRequest, request.correlationId);\n const authority = request.authority || this.config.auth.authority;\n if (account) {\n await this.validateRequestAuthority(authority, account);\n }\n const scopes = [...((request && request.scopes) || [])];\n const validatedRequest = {\n ...request,\n correlationId: this.correlationId,\n authority,\n scopes,\n };\n // Set authenticationScheme to BEARER if not explicitly set in the request\n if (!validatedRequest.authenticationScheme) {\n validatedRequest.authenticationScheme = AuthenticationScheme.BEARER;\n this.logger.verbose('Authentication Scheme wasn\\'t explicitly set in request, defaulting to \"Bearer\" request');\n }\n else {\n if (validatedRequest.authenticationScheme ===\n AuthenticationScheme.SSH) {\n if (!request.sshJwk) {\n throw createClientConfigurationError(ClientConfigurationErrorCodes.missingSshJwk);\n }\n if (!request.sshKid) {\n throw createClientConfigurationError(ClientConfigurationErrorCodes.missingSshKid);\n }\n }\n this.logger.verbose(`Authentication Scheme set to \"${validatedRequest.authenticationScheme}\" as configured in Auth request`);\n }\n // Set requested claims hash if claims-based caching is enabled and claims were requested\n if (this.config.cache.claimsBasedCachingEnabled &&\n request.claims &&\n // Checks for empty stringified object \"{}\" which doesn't qualify as requested claims\n !StringUtils.isEmptyObj(request.claims)) {\n validatedRequest.requestedClaimsHash =\n await this.browserCrypto.hashString(request.claims);\n }\n return validatedRequest;\n }\n /**\n *\n * Use to get the redirect uri configured in MSAL or null.\n * @param requestRedirectUri\n * @returns Redirect URL\n *\n */\n getRedirectUri(requestRedirectUri) {\n this.logger.verbose(\"getRedirectUri called\");\n const redirectUri = requestRedirectUri ||\n this.config.auth.redirectUri ||\n BrowserUtils.getCurrentUri();\n return UrlString.getAbsoluteUrl(redirectUri, BrowserUtils.getCurrentUri());\n }\n /*\n * If authority provided in the request does not match environment/authority specified\n * in the account or MSAL config, we throw an error.\n */\n async validateRequestAuthority(authority, account) {\n const discoveredAuthority = await this.getDiscoveredAuthority(authority);\n if (!discoveredAuthority.isAlias(account.environment)) {\n throw createClientConfigurationError(ClientConfigurationErrorCodes.authorityMismatch);\n }\n }\n /**\n *\n * @param apiId\n * @param correlationId\n * @param forceRefresh\n */\n initializeServerTelemetryManager(apiId, forceRefresh) {\n this.logger.verbose(\"initializeServerTelemetryManager called\");\n const telemetryPayload = {\n clientId: this.config.auth.clientId,\n correlationId: this.correlationId,\n apiId: apiId,\n forceRefresh: forceRefresh || false,\n wrapperSKU: this.browserStorage.getWrapperMetadata()[0],\n wrapperVer: this.browserStorage.getWrapperMetadata()[1],\n };\n return new ServerTelemetryManager(telemetryPayload, this.browserStorage);\n }\n /**\n * Used to get a discovered version of the default authority.\n * @param requestAuthority\n * @param requestCorrelationId\n */\n async getDiscoveredAuthority(requestAuthority) {\n this.logger.verbose(\"getDiscoveredAuthority called\");\n const authorityOptions = {\n protocolMode: this.config.auth.protocolMode,\n OIDCOptions: this.config.auth.OIDCOptions,\n knownAuthorities: this.config.auth.knownAuthorities,\n cloudDiscoveryMetadata: this.config.auth.cloudDiscoveryMetadata,\n authorityMetadata: this.config.auth.authorityMetadata,\n };\n if (requestAuthority) {\n this.logger.verbose(\"Creating discovered authority with request authority\");\n return await AuthorityFactory.createDiscoveredInstance(requestAuthority, this.config.system.networkClient, this.browserStorage, authorityOptions, this.logger);\n }\n this.logger.verbose(\"Creating discovered authority with configured authority\");\n return await AuthorityFactory.createDiscoveredInstance(this.config.auth.authority, this.config.system.networkClient, this.browserStorage, authorityOptions, this.logger);\n }\n}\n\nexport { BaseInteractionClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { PerformanceEvents, invoke, invokeAsync } from '@azure/msal-common';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { urlEncodeArr } from '../encode/Base64Encode.mjs';\nimport { getRandomValues, sha256Digest } from './BrowserCrypto.mjs';\nimport { pkceNotCreated } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n// Constant byte array length\nconst RANDOM_BYTE_ARR_LENGTH = 32;\n/**\n * This file defines APIs to generate PKCE codes and code verifiers.\n */\n/**\n * Generates PKCE Codes. See the RFC for more information: https://tools.ietf.org/html/rfc7636\n */\nasync function generatePkceCodes(performanceClient, logger, correlationId) {\n performanceClient.addQueueMeasurement(PerformanceEvents.GeneratePkceCodes, correlationId);\n const codeVerifier = invoke(generateCodeVerifier, PerformanceEvents.GenerateCodeVerifier, logger, performanceClient, correlationId)(performanceClient, logger, correlationId);\n const codeChallenge = await invokeAsync(generateCodeChallengeFromVerifier, PerformanceEvents.GenerateCodeChallengeFromVerifier, logger, performanceClient, correlationId)(codeVerifier, performanceClient, logger, correlationId);\n return {\n verifier: codeVerifier,\n challenge: codeChallenge,\n };\n}\n/**\n * Generates a random 32 byte buffer and returns the base64\n * encoded string to be used as a PKCE Code Verifier\n */\nfunction generateCodeVerifier(performanceClient, logger, correlationId) {\n try {\n // Generate random values as utf-8\n const buffer = new Uint8Array(RANDOM_BYTE_ARR_LENGTH);\n invoke(getRandomValues, PerformanceEvents.GetRandomValues, logger, performanceClient, correlationId)(buffer);\n // encode verifier as base64\n const pkceCodeVerifierB64 = urlEncodeArr(buffer);\n return pkceCodeVerifierB64;\n }\n catch (e) {\n throw createBrowserAuthError(pkceNotCreated);\n }\n}\n/**\n * Creates a base64 encoded PKCE Code Challenge string from the\n * hash created from the PKCE Code Verifier supplied\n */\nasync function generateCodeChallengeFromVerifier(pkceCodeVerifier, performanceClient, logger, correlationId) {\n performanceClient.addQueueMeasurement(PerformanceEvents.GenerateCodeChallengeFromVerifier, correlationId);\n try {\n // hashed verifier\n const pkceHashedCodeVerifier = await invokeAsync(sha256Digest, PerformanceEvents.Sha256Digest, logger, performanceClient, correlationId)(pkceCodeVerifier, performanceClient, correlationId);\n // encode hash as base64\n return urlEncodeArr(new Uint8Array(pkceHashedCodeVerifier));\n }\n catch (e) {\n throw createBrowserAuthError(pkceNotCreated);\n }\n}\n\nexport { generatePkceCodes };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { PerformanceEvents, invokeAsync, Constants, UrlString, AuthorizationCodeClient, Authority, AuthorityFactory, ProtocolUtils } from '@azure/msal-common';\nimport { BaseInteractionClient } from './BaseInteractionClient.mjs';\nimport { BrowserConstants } from '../utils/BrowserConstants.mjs';\nimport { version } from '../packageMetadata.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { BrowserProtocolUtils } from '../utils/BrowserProtocolUtils.mjs';\nimport { BrowserUtils } from '../utils/BrowserUtils.mjs';\nimport { generatePkceCodes } from '../crypto/PkceGenerator.mjs';\nimport { createNewGuid } from '../crypto/BrowserCrypto.mjs';\nimport { noStateInHash, unableToParseState, stateInteractionTypeMismatch } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Defines the class structure and helper functions used by the \"standard\", non-brokered auth flows (popup, redirect, silent (RT), silent (iframe))\n */\nclass StandardInteractionClient extends BaseInteractionClient {\n /**\n * Generates an auth code request tied to the url request.\n * @param request\n */\n async initializeAuthorizationCodeRequest(request) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.StandardInteractionClientInitializeAuthorizationCodeRequest, request.correlationId);\n const generatedPkceParams = await invokeAsync(generatePkceCodes, PerformanceEvents.GeneratePkceCodes, this.logger, this.performanceClient, this.correlationId)(this.performanceClient, this.logger, this.correlationId);\n const authCodeRequest = {\n ...request,\n redirectUri: request.redirectUri,\n code: Constants.EMPTY_STRING,\n codeVerifier: generatedPkceParams.verifier,\n };\n request.codeChallenge = generatedPkceParams.challenge;\n request.codeChallengeMethod = Constants.S256_CODE_CHALLENGE_METHOD;\n return authCodeRequest;\n }\n /**\n * Initializer for the logout request.\n * @param logoutRequest\n */\n initializeLogoutRequest(logoutRequest) {\n this.logger.verbose(\"initializeLogoutRequest called\", logoutRequest?.correlationId);\n const validLogoutRequest = {\n correlationId: this.correlationId || createNewGuid(),\n ...logoutRequest,\n };\n /**\n * Set logout_hint to be login_hint from ID Token Claims if present\n * and logoutHint attribute wasn't manually set in logout request\n */\n if (logoutRequest) {\n // If logoutHint isn't set and an account was passed in, try to extract logoutHint from ID Token Claims\n if (!logoutRequest.logoutHint) {\n if (logoutRequest.account) {\n const logoutHint = this.getLogoutHintFromIdTokenClaims(logoutRequest.account);\n if (logoutHint) {\n this.logger.verbose(\"Setting logoutHint to login_hint ID Token Claim value for the account provided\");\n validLogoutRequest.logoutHint = logoutHint;\n }\n }\n else {\n this.logger.verbose(\"logoutHint was not set and account was not passed into logout request, logoutHint will not be set\");\n }\n }\n else {\n this.logger.verbose(\"logoutHint has already been set in logoutRequest\");\n }\n }\n else {\n this.logger.verbose(\"logoutHint will not be set since no logout request was configured\");\n }\n /*\n * Only set redirect uri if logout request isn't provided or the set uri isn't null.\n * Otherwise, use passed uri, config, or current page.\n */\n if (!logoutRequest || logoutRequest.postLogoutRedirectUri !== null) {\n if (logoutRequest && logoutRequest.postLogoutRedirectUri) {\n this.logger.verbose(\"Setting postLogoutRedirectUri to uri set on logout request\", validLogoutRequest.correlationId);\n validLogoutRequest.postLogoutRedirectUri =\n UrlString.getAbsoluteUrl(logoutRequest.postLogoutRedirectUri, BrowserUtils.getCurrentUri());\n }\n else if (this.config.auth.postLogoutRedirectUri === null) {\n this.logger.verbose(\"postLogoutRedirectUri configured as null and no uri set on request, not passing post logout redirect\", validLogoutRequest.correlationId);\n }\n else if (this.config.auth.postLogoutRedirectUri) {\n this.logger.verbose(\"Setting postLogoutRedirectUri to configured uri\", validLogoutRequest.correlationId);\n validLogoutRequest.postLogoutRedirectUri =\n UrlString.getAbsoluteUrl(this.config.auth.postLogoutRedirectUri, BrowserUtils.getCurrentUri());\n }\n else {\n this.logger.verbose(\"Setting postLogoutRedirectUri to current page\", validLogoutRequest.correlationId);\n validLogoutRequest.postLogoutRedirectUri =\n UrlString.getAbsoluteUrl(BrowserUtils.getCurrentUri(), BrowserUtils.getCurrentUri());\n }\n }\n else {\n this.logger.verbose(\"postLogoutRedirectUri passed as null, not setting post logout redirect uri\", validLogoutRequest.correlationId);\n }\n return validLogoutRequest;\n }\n /**\n * Parses login_hint ID Token Claim out of AccountInfo object to be used as\n * logout_hint in end session request.\n * @param account\n */\n getLogoutHintFromIdTokenClaims(account) {\n const idTokenClaims = account.idTokenClaims;\n if (idTokenClaims) {\n if (idTokenClaims.login_hint) {\n return idTokenClaims.login_hint;\n }\n else {\n this.logger.verbose(\"The ID Token Claims tied to the provided account do not contain a login_hint claim, logoutHint will not be added to logout request\");\n }\n }\n else {\n this.logger.verbose(\"The provided account does not contain ID Token Claims, logoutHint will not be added to logout request\");\n }\n return null;\n }\n /**\n * Creates an Authorization Code Client with the given authority, or the default authority.\n * @param serverTelemetryManager\n * @param authorityUrl\n */\n async createAuthCodeClient(serverTelemetryManager, authorityUrl, requestAzureCloudOptions) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.StandardInteractionClientCreateAuthCodeClient, this.correlationId);\n // Create auth module.\n const clientConfig = await invokeAsync(this.getClientConfiguration.bind(this), PerformanceEvents.StandardInteractionClientGetClientConfiguration, this.logger, this.performanceClient, this.correlationId)(serverTelemetryManager, authorityUrl, requestAzureCloudOptions);\n return new AuthorizationCodeClient(clientConfig, this.performanceClient);\n }\n /**\n * Creates a Client Configuration object with the given request authority, or the default authority.\n * @param serverTelemetryManager\n * @param requestAuthority\n * @param requestCorrelationId\n */\n async getClientConfiguration(serverTelemetryManager, requestAuthority, requestAzureCloudOptions) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.StandardInteractionClientGetClientConfiguration, this.correlationId);\n const discoveredAuthority = await invokeAsync(this.getDiscoveredAuthority.bind(this), PerformanceEvents.StandardInteractionClientGetDiscoveredAuthority, this.logger, this.performanceClient, this.correlationId)(requestAuthority, requestAzureCloudOptions);\n const logger = this.config.system.loggerOptions;\n return {\n authOptions: {\n clientId: this.config.auth.clientId,\n authority: discoveredAuthority,\n clientCapabilities: this.config.auth.clientCapabilities,\n },\n systemOptions: {\n tokenRenewalOffsetSeconds: this.config.system.tokenRenewalOffsetSeconds,\n preventCorsPreflight: true,\n },\n loggerOptions: {\n loggerCallback: logger.loggerCallback,\n piiLoggingEnabled: logger.piiLoggingEnabled,\n logLevel: logger.logLevel,\n correlationId: this.correlationId,\n },\n cacheOptions: {\n claimsBasedCachingEnabled: this.config.cache.claimsBasedCachingEnabled,\n },\n cryptoInterface: this.browserCrypto,\n networkInterface: this.networkClient,\n storageInterface: this.browserStorage,\n serverTelemetryManager: serverTelemetryManager,\n libraryInfo: {\n sku: BrowserConstants.MSAL_SKU,\n version: version,\n cpu: Constants.EMPTY_STRING,\n os: Constants.EMPTY_STRING,\n },\n telemetry: this.config.telemetry,\n };\n }\n /**\n * @param hash\n * @param interactionType\n */\n validateAndExtractStateFromHash(serverParams, interactionType, requestCorrelationId) {\n this.logger.verbose(\"validateAndExtractStateFromHash called\", requestCorrelationId);\n if (!serverParams.state) {\n throw createBrowserAuthError(noStateInHash);\n }\n const platformStateObj = BrowserProtocolUtils.extractBrowserRequestState(this.browserCrypto, serverParams.state);\n if (!platformStateObj) {\n throw createBrowserAuthError(unableToParseState);\n }\n if (platformStateObj.interactionType !== interactionType) {\n throw createBrowserAuthError(stateInteractionTypeMismatch);\n }\n this.logger.verbose(\"Returning state from hash\", requestCorrelationId);\n return serverParams.state;\n }\n /**\n * Used to get a discovered version of the default authority.\n * @param requestAuthority\n * @param requestCorrelationId\n */\n async getDiscoveredAuthority(requestAuthority, requestAzureCloudOptions) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.StandardInteractionClientGetDiscoveredAuthority, this.correlationId);\n const authorityOptions = {\n protocolMode: this.config.auth.protocolMode,\n OIDCOptions: this.config.auth.OIDCOptions,\n knownAuthorities: this.config.auth.knownAuthorities,\n cloudDiscoveryMetadata: this.config.auth.cloudDiscoveryMetadata,\n authorityMetadata: this.config.auth.authorityMetadata,\n skipAuthorityMetadataCache: this.config.auth.skipAuthorityMetadataCache,\n };\n // build authority string based on auth params, precedence - azureCloudInstance + tenant >> authority\n const userAuthority = requestAuthority\n ? requestAuthority\n : this.config.auth.authority;\n // fall back to the authority from config\n const builtAuthority = Authority.generateAuthority(userAuthority, requestAzureCloudOptions || this.config.auth.azureCloudOptions);\n return await invokeAsync(AuthorityFactory.createDiscoveredInstance.bind(AuthorityFactory), PerformanceEvents.AuthorityFactoryCreateDiscoveredInstance, this.logger, this.performanceClient, this.correlationId)(builtAuthority, this.config.system.networkClient, this.browserStorage, authorityOptions, this.logger, this.performanceClient, this.correlationId);\n }\n /**\n * Helper to initialize required request parameters for interactive APIs and ssoSilent()\n * @param request\n * @param interactionType\n */\n async initializeAuthorizationRequest(request, interactionType) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.StandardInteractionClientInitializeAuthorizationRequest, this.correlationId);\n const redirectUri = this.getRedirectUri(request.redirectUri);\n const browserState = {\n interactionType: interactionType,\n };\n const state = ProtocolUtils.setRequestState(this.browserCrypto, (request && request.state) || Constants.EMPTY_STRING, browserState);\n const baseRequest = await invokeAsync(this.initializeBaseRequest.bind(this), PerformanceEvents.InitializeBaseRequest, this.logger, this.performanceClient, this.correlationId)(request);\n const validatedRequest = {\n ...baseRequest,\n redirectUri: redirectUri,\n state: state,\n nonce: request.nonce || createNewGuid(),\n responseMode: this.config.auth.OIDCOptions\n .serverResponseType,\n };\n const account = request.account || this.browserStorage.getActiveAccount();\n if (account) {\n this.logger.verbose(\"Setting validated request account\", this.correlationId);\n this.logger.verbosePii(`Setting validated request account: ${account.homeAccountId}`, this.correlationId);\n validatedRequest.account = account;\n }\n // Check for ADAL/MSAL v1 SSO\n if (!validatedRequest.loginHint && !account) {\n const legacyLoginHint = this.browserStorage.getLegacyLoginHint();\n if (legacyLoginHint) {\n validatedRequest.loginHint = legacyLoginHint;\n }\n }\n return validatedRequest;\n }\n}\n\nexport { StandardInteractionClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst contentError = \"ContentError\";\nconst userSwitch = \"user_switch\";\n\nexport { contentError, userSwitch };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n// Status Codes that can be thrown by WAM\nconst USER_INTERACTION_REQUIRED = \"USER_INTERACTION_REQUIRED\";\nconst USER_CANCEL = \"USER_CANCEL\";\nconst NO_NETWORK = \"NO_NETWORK\";\nconst PERSISTENT_ERROR = \"PERSISTENT_ERROR\";\nconst DISABLED = \"DISABLED\";\nconst ACCOUNT_UNAVAILABLE = \"ACCOUNT_UNAVAILABLE\";\n\nexport { ACCOUNT_UNAVAILABLE, DISABLED, NO_NETWORK, PERSISTENT_ERROR, USER_CANCEL, USER_INTERACTION_REQUIRED };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { AuthError, InteractionRequiredAuthError, createInteractionRequiredAuthError, InteractionRequiredAuthErrorCodes } from '@azure/msal-common';\nimport { createBrowserAuthError } from './BrowserAuthError.mjs';\nimport { contentError, userSwitch } from './NativeAuthErrorCodes.mjs';\nimport { PERSISTENT_ERROR, DISABLED, NO_NETWORK, USER_CANCEL, USER_INTERACTION_REQUIRED, ACCOUNT_UNAVAILABLE } from '../broker/nativeBroker/NativeStatusCodes.mjs';\nimport { noNetworkConnectivity, userCancelled } from './BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst INVALID_METHOD_ERROR = -2147186943;\nconst NativeAuthErrorMessages = {\n [userSwitch]: \"User attempted to switch accounts in the native broker, which is not allowed. All new accounts must sign-in through the standard web flow first, please try again.\",\n};\nclass NativeAuthError extends AuthError {\n constructor(errorCode, description, ext) {\n super(errorCode, description);\n Object.setPrototypeOf(this, NativeAuthError.prototype);\n this.name = \"NativeAuthError\";\n this.ext = ext;\n }\n}\n/**\n * These errors should result in a fallback to the 'standard' browser based auth flow.\n */\nfunction isFatalNativeAuthError(error) {\n if (error.ext &&\n error.ext.status &&\n (error.ext.status === PERSISTENT_ERROR ||\n error.ext.status === DISABLED)) {\n return true;\n }\n if (error.ext &&\n error.ext.error &&\n error.ext.error === INVALID_METHOD_ERROR) {\n return true;\n }\n switch (error.errorCode) {\n case contentError:\n return true;\n default:\n return false;\n }\n}\n/**\n * Create the appropriate error object based on the WAM status code.\n * @param code\n * @param description\n * @param ext\n * @returns\n */\nfunction createNativeAuthError(code, description, ext) {\n if (ext && ext.status) {\n switch (ext.status) {\n case ACCOUNT_UNAVAILABLE:\n return createInteractionRequiredAuthError(InteractionRequiredAuthErrorCodes.nativeAccountUnavailable);\n case USER_INTERACTION_REQUIRED:\n return new InteractionRequiredAuthError(code, description);\n case USER_CANCEL:\n return createBrowserAuthError(userCancelled);\n case NO_NETWORK:\n return createBrowserAuthError(noNetworkConnectivity);\n }\n }\n return new NativeAuthError(code, NativeAuthErrorMessages[code] || description, ext);\n}\n\nexport { NativeAuthError, NativeAuthErrorMessages, createNativeAuthError, isFatalNativeAuthError };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { StandardInteractionClient } from './StandardInteractionClient.mjs';\nimport { invokeAsync, PerformanceEvents, SilentFlowClient } from '@azure/msal-common';\nimport { ApiId } from '../utils/BrowserConstants.mjs';\nimport { BrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { cryptoKeyNotFound } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass SilentCacheClient extends StandardInteractionClient {\n /**\n * Returns unexpired tokens from the cache, if available\n * @param silentRequest\n */\n async acquireToken(silentRequest) {\n // Telemetry manager only used to increment cacheHits here\n const serverTelemetryManager = this.initializeServerTelemetryManager(ApiId.acquireTokenSilent_silentFlow);\n const silentAuthClient = await this.createSilentFlowClient(serverTelemetryManager, silentRequest.authority, silentRequest.azureCloudOptions);\n this.logger.verbose(\"Silent auth client created\");\n try {\n const response = await silentAuthClient.acquireCachedToken(silentRequest);\n const authResponse = response[0];\n this.performanceClient.addFields({\n fromCache: true,\n }, silentRequest.correlationId);\n return authResponse;\n }\n catch (error) {\n if (error instanceof BrowserAuthError &&\n error.errorCode === cryptoKeyNotFound) {\n this.logger.verbose(\"Signing keypair for bound access token not found. Refreshing bound access token and generating a new crypto keypair.\");\n }\n throw error;\n }\n }\n /**\n * API to silenty clear the browser cache.\n * @param logoutRequest\n */\n logout(logoutRequest) {\n this.logger.verbose(\"logoutRedirect called\");\n const validLogoutRequest = this.initializeLogoutRequest(logoutRequest);\n return this.clearCacheOnLogout(validLogoutRequest?.account);\n }\n /**\n * Creates an Silent Flow Client with the given authority, or the default authority.\n * @param serverTelemetryManager\n * @param authorityUrl\n */\n async createSilentFlowClient(serverTelemetryManager, authorityUrl, azureCloudOptions) {\n // Create auth module.\n const clientConfig = await invokeAsync(this.getClientConfiguration.bind(this), PerformanceEvents.StandardInteractionClientGetClientConfiguration, this.logger, this.performanceClient, this.correlationId)(serverTelemetryManager, authorityUrl, azureCloudOptions);\n return new SilentFlowClient(clientConfig, this.performanceClient);\n }\n async initializeSilentRequest(request, account) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.InitializeSilentRequest, this.correlationId);\n const baseRequest = await invokeAsync(this.initializeBaseRequest.bind(this), PerformanceEvents.InitializeBaseRequest, this.logger, this.performanceClient, this.correlationId)(request, account);\n return {\n ...request,\n ...baseRequest,\n account: account,\n forceRefresh: request.forceRefresh || false,\n };\n }\n}\n\nexport { SilentCacheClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { PerformanceEvents, TimeUtils, ScopeSet, createClientAuthError, ClientAuthErrorCodes, AuthToken, AccountEntity, Constants, AuthorityType, AuthenticationScheme, PopTokenGenerator, IdTokenEntity, AccessTokenEntity, CacheRecord, createAuthError, AuthErrorCodes, UrlString, OIDC_DEFAULT_SCOPES, invokeAsync, AADServerParamKeys, PromptValue } from '@azure/msal-common';\nimport { BaseInteractionClient } from './BaseInteractionClient.mjs';\nimport { TemporaryCacheKeys, NativeConstants, NativeExtensionMethod, ApiId } from '../utils/BrowserConstants.mjs';\nimport { NativeAuthError, isFatalNativeAuthError, createNativeAuthError } from '../error/NativeAuthError.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { SilentCacheClient } from './SilentCacheClient.mjs';\nimport { base64Decode } from '../encode/Base64Decode.mjs';\nimport { userSwitch } from '../error/NativeAuthErrorCodes.mjs';\nimport { nativePromptNotSupported } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nconst BrokerServerParamKeys = {\n BROKER_CLIENT_ID: \"brk_client_id\",\n BROKER_REDIRECT_URI: \"brk_redirect_uri\",\n};\nclass NativeInteractionClient extends BaseInteractionClient {\n constructor(config, browserStorage, browserCrypto, logger, eventHandler, navigationClient, apiId, performanceClient, provider, accountId, nativeStorageImpl, correlationId) {\n super(config, browserStorage, browserCrypto, logger, eventHandler, navigationClient, performanceClient, provider, correlationId);\n this.apiId = apiId;\n this.accountId = accountId;\n this.nativeMessageHandler = provider;\n this.nativeStorageManager = nativeStorageImpl;\n this.silentCacheClient = new SilentCacheClient(config, this.nativeStorageManager, browserCrypto, logger, eventHandler, navigationClient, performanceClient, provider, correlationId);\n }\n /**\n * Acquire token from native platform via browser extension\n * @param request\n */\n async acquireToken(request) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.NativeInteractionClientAcquireToken, request.correlationId);\n this.logger.trace(\"NativeInteractionClient - acquireToken called.\");\n // start the perf measurement\n const nativeATMeasurement = this.performanceClient.startMeasurement(PerformanceEvents.NativeInteractionClientAcquireToken, request.correlationId);\n const reqTimestamp = TimeUtils.nowSeconds();\n // initialize native request\n const nativeRequest = await this.initializeNativeRequest(request);\n // check if the tokens can be retrieved from internal cache\n try {\n const result = await this.acquireTokensFromCache(this.accountId, nativeRequest);\n nativeATMeasurement.end({\n success: true,\n isNativeBroker: false,\n fromCache: true,\n });\n return result;\n }\n catch (e) {\n // continue with a native call for any and all errors\n this.logger.info(\"MSAL internal Cache does not contain tokens, proceed to make a native call\");\n }\n // fall back to native calls\n const messageBody = {\n method: NativeExtensionMethod.GetToken,\n request: nativeRequest,\n };\n const response = await this.nativeMessageHandler.sendMessage(messageBody);\n const validatedResponse = this.validateNativeResponse(response);\n return this.handleNativeResponse(validatedResponse, nativeRequest, reqTimestamp)\n .then((result) => {\n nativeATMeasurement.end({\n success: true,\n isNativeBroker: true,\n requestId: result.requestId,\n });\n return result;\n })\n .catch((error) => {\n nativeATMeasurement.end({\n success: false,\n errorCode: error.errorCode,\n subErrorCode: error.subError,\n isNativeBroker: true,\n });\n throw error;\n });\n }\n /**\n * Creates silent flow request\n * @param request\n * @param cachedAccount\n * @returns CommonSilentFlowRequest\n */\n createSilentCacheRequest(request, cachedAccount) {\n return {\n authority: request.authority,\n correlationId: this.correlationId,\n scopes: ScopeSet.fromString(request.scope).asArray(),\n account: cachedAccount,\n forceRefresh: false,\n };\n }\n /**\n * Fetches the tokens from the cache if un-expired\n * @param nativeAccountId\n * @param request\n * @returns authenticationResult\n */\n async acquireTokensFromCache(nativeAccountId, request) {\n if (!nativeAccountId) {\n this.logger.warning(\"NativeInteractionClient:acquireTokensFromCache - No nativeAccountId provided\");\n throw createClientAuthError(ClientAuthErrorCodes.noAccountFound);\n }\n // fetch the account from browser cache\n const account = this.browserStorage.getAccountInfoFilteredBy({\n nativeAccountId,\n });\n if (!account) {\n throw createClientAuthError(ClientAuthErrorCodes.noAccountFound);\n }\n // leverage silent flow for cached tokens retrieval\n try {\n const silentRequest = this.createSilentCacheRequest(request, account);\n const result = await this.silentCacheClient.acquireToken(silentRequest);\n return {\n ...result,\n account,\n };\n }\n catch (e) {\n throw e;\n }\n }\n /**\n * Acquires a token from native platform then redirects to the redirectUri instead of returning the response\n * @param request\n */\n async acquireTokenRedirect(request) {\n this.logger.trace(\"NativeInteractionClient - acquireTokenRedirect called.\");\n const nativeRequest = await this.initializeNativeRequest(request);\n const messageBody = {\n method: NativeExtensionMethod.GetToken,\n request: nativeRequest,\n };\n try {\n const response = await this.nativeMessageHandler.sendMessage(messageBody);\n this.validateNativeResponse(response);\n }\n catch (e) {\n // Only throw fatal errors here to allow application to fallback to regular redirect. Otherwise proceed and the error will be thrown in handleRedirectPromise\n if (e instanceof NativeAuthError && isFatalNativeAuthError(e)) {\n throw e;\n }\n }\n this.browserStorage.setTemporaryCache(TemporaryCacheKeys.NATIVE_REQUEST, JSON.stringify(nativeRequest), true);\n const navigationOptions = {\n apiId: ApiId.acquireTokenRedirect,\n timeout: this.config.system.redirectNavigationTimeout,\n noHistory: false,\n };\n const redirectUri = this.config.auth.navigateToLoginRequestUrl\n ? window.location.href\n : this.getRedirectUri(request.redirectUri);\n await this.navigationClient.navigateExternal(redirectUri, navigationOptions); // Need to treat this as external to ensure handleRedirectPromise is run again\n }\n /**\n * If the previous page called native platform for a token using redirect APIs, send the same request again and return the response\n */\n async handleRedirectPromise() {\n this.logger.trace(\"NativeInteractionClient - handleRedirectPromise called.\");\n if (!this.browserStorage.isInteractionInProgress(true)) {\n this.logger.info(\"handleRedirectPromise called but there is no interaction in progress, returning null.\");\n return null;\n }\n // remove prompt from the request to prevent WAM from prompting twice\n const cachedRequest = this.browserStorage.getCachedNativeRequest();\n if (!cachedRequest) {\n this.logger.verbose(\"NativeInteractionClient - handleRedirectPromise called but there is no cached request, returning null.\");\n return null;\n }\n const { prompt, ...request } = cachedRequest;\n if (prompt) {\n this.logger.verbose(\"NativeInteractionClient - handleRedirectPromise called and prompt was included in the original request, removing prompt from cached request to prevent second interaction with native broker window.\");\n }\n this.browserStorage.removeItem(this.browserStorage.generateCacheKey(TemporaryCacheKeys.NATIVE_REQUEST));\n const messageBody = {\n method: NativeExtensionMethod.GetToken,\n request: request,\n };\n const reqTimestamp = TimeUtils.nowSeconds();\n try {\n this.logger.verbose(\"NativeInteractionClient - handleRedirectPromise sending message to native broker.\");\n const response = await this.nativeMessageHandler.sendMessage(messageBody);\n this.validateNativeResponse(response);\n const result = this.handleNativeResponse(response, request, reqTimestamp);\n this.browserStorage.setInteractionInProgress(false);\n return result;\n }\n catch (e) {\n this.browserStorage.setInteractionInProgress(false);\n throw e;\n }\n }\n /**\n * Logout from native platform via browser extension\n * @param request\n */\n logout() {\n this.logger.trace(\"NativeInteractionClient - logout called.\");\n return Promise.reject(\"Logout not implemented yet\");\n }\n /**\n * Transform response from native platform into AuthenticationResult object which will be returned to the end user\n * @param response\n * @param request\n * @param reqTimestamp\n */\n async handleNativeResponse(response, request, reqTimestamp) {\n this.logger.trace(\"NativeInteractionClient - handleNativeResponse called.\");\n if (response.account.id !== request.accountId) {\n // User switch in native broker prompt is not supported. All users must first sign in through web flow to ensure server state is in sync\n throw createNativeAuthError(userSwitch);\n }\n // Get the preferred_cache domain for the given authority\n const authority = await this.getDiscoveredAuthority(request.authority);\n // generate identifiers\n const idTokenClaims = AuthToken.extractTokenClaims(response.id_token, base64Decode);\n const homeAccountIdentifier = this.createHomeAccountIdentifier(response, idTokenClaims);\n const accountEntity = AccountEntity.createAccount({\n homeAccountId: homeAccountIdentifier,\n idTokenClaims: idTokenClaims,\n clientInfo: response.client_info,\n nativeAccountId: response.account.id,\n }, authority);\n // generate authenticationResult\n const result = await this.generateAuthenticationResult(response, request, idTokenClaims, accountEntity, authority.canonicalAuthority, reqTimestamp);\n // cache accounts and tokens in the appropriate storage\n this.cacheAccount(accountEntity);\n this.cacheNativeTokens(response, request, homeAccountIdentifier, idTokenClaims, result.accessToken, result.tenantId, reqTimestamp);\n return result;\n }\n /**\n * creates an homeAccountIdentifier for the account\n * @param response\n * @param idTokenObj\n * @returns\n */\n createHomeAccountIdentifier(response, idTokenClaims) {\n // Save account in browser storage\n const homeAccountIdentifier = AccountEntity.generateHomeAccountId(response.client_info || Constants.EMPTY_STRING, AuthorityType.Default, this.logger, this.browserCrypto, idTokenClaims);\n return homeAccountIdentifier;\n }\n /**\n * Helper to generate scopes\n * @param response\n * @param request\n * @returns\n */\n generateScopes(response, request) {\n return response.scope\n ? ScopeSet.fromString(response.scope)\n : ScopeSet.fromString(request.scope);\n }\n /**\n * If PoP token is requesred, records the PoP token if returned from the WAM, else generates one in the browser\n * @param request\n * @param response\n */\n async generatePopAccessToken(response, request) {\n if (request.tokenType === AuthenticationScheme.POP) {\n /**\n * This code prioritizes SHR returned from the native layer. In case of error/SHR not calculated from WAM and the AT\n * is still received, SHR is calculated locally\n */\n // Check if native layer returned an SHR token\n if (response.shr) {\n this.logger.trace(\"handleNativeServerResponse: SHR is enabled in native layer\");\n return response.shr;\n }\n // Generate SHR in msal js if WAM does not compute it when POP is enabled\n const popTokenGenerator = new PopTokenGenerator(this.browserCrypto);\n const shrParameters = {\n resourceRequestMethod: request.resourceRequestMethod,\n resourceRequestUri: request.resourceRequestUri,\n shrClaims: request.shrClaims,\n shrNonce: request.shrNonce,\n };\n /**\n * KeyID must be present in the native request from when the PoP key was generated in order for\n * PopTokenGenerator to query the full key for signing\n */\n if (!request.keyId) {\n throw createClientAuthError(ClientAuthErrorCodes.keyIdMissing);\n }\n return await popTokenGenerator.signPopToken(response.access_token, request.keyId, shrParameters);\n }\n else {\n return response.access_token;\n }\n }\n /**\n * Generates authentication result\n * @param response\n * @param request\n * @param idTokenObj\n * @param accountEntity\n * @param authority\n * @param reqTimestamp\n * @returns\n */\n async generateAuthenticationResult(response, request, idTokenClaims, accountEntity, authority, reqTimestamp) {\n // Add Native Broker fields to Telemetry\n const mats = this.addTelemetryFromNativeResponse(response);\n // If scopes not returned in server response, use request scopes\n const responseScopes = response.scope\n ? ScopeSet.fromString(response.scope)\n : ScopeSet.fromString(request.scope);\n const accountProperties = response.account.properties || {};\n const uid = accountProperties[\"UID\"] ||\n idTokenClaims.oid ||\n idTokenClaims.sub ||\n Constants.EMPTY_STRING;\n const tid = accountProperties[\"TenantId\"] ||\n idTokenClaims.tid ||\n Constants.EMPTY_STRING;\n // generate PoP token as needed\n const responseAccessToken = await this.generatePopAccessToken(response, request);\n const tokenType = request.tokenType === AuthenticationScheme.POP\n ? AuthenticationScheme.POP\n : AuthenticationScheme.BEARER;\n const result = {\n authority: authority,\n uniqueId: uid,\n tenantId: tid,\n scopes: responseScopes.asArray(),\n account: accountEntity.getAccountInfo(),\n idToken: response.id_token,\n idTokenClaims: idTokenClaims,\n accessToken: responseAccessToken,\n fromCache: mats ? this.isResponseFromCache(mats) : false,\n expiresOn: new Date(Number(reqTimestamp + response.expires_in) * 1000),\n tokenType: tokenType,\n correlationId: this.correlationId,\n state: response.state,\n fromNativeBroker: true,\n };\n return result;\n }\n /**\n * cache the account entity in browser storage\n * @param accountEntity\n */\n cacheAccount(accountEntity) {\n // Store the account info and hence `nativeAccountId` in browser cache\n this.browserStorage.setAccount(accountEntity);\n // Remove any existing cached tokens for this account in browser storage\n this.browserStorage.removeAccountContext(accountEntity).catch((e) => {\n this.logger.error(`Error occurred while removing account context from browser storage. ${e}`);\n });\n }\n /**\n * Stores the access_token and id_token in inmemory storage\n * @param response\n * @param request\n * @param homeAccountIdentifier\n * @param idTokenObj\n * @param responseAccessToken\n * @param tenantId\n * @param reqTimestamp\n */\n cacheNativeTokens(response, request, homeAccountIdentifier, idTokenClaims, responseAccessToken, tenantId, reqTimestamp) {\n const cachedIdToken = IdTokenEntity.createIdTokenEntity(homeAccountIdentifier, request.authority, response.id_token || \"\", request.clientId, idTokenClaims.tid || \"\");\n // cache accessToken in inmemory storage\n const expiresIn = request.tokenType === AuthenticationScheme.POP\n ? Constants.SHR_NONCE_VALIDITY\n : (typeof response.expires_in === \"string\"\n ? parseInt(response.expires_in, 10)\n : response.expires_in) || 0;\n const tokenExpirationSeconds = reqTimestamp + expiresIn;\n const responseScopes = this.generateScopes(response, request);\n const cachedAccessToken = AccessTokenEntity.createAccessTokenEntity(homeAccountIdentifier, request.authority, responseAccessToken, request.clientId, idTokenClaims.tid || tenantId, responseScopes.printScopes(), tokenExpirationSeconds, 0, this.browserCrypto);\n const nativeCacheRecord = new CacheRecord(undefined, cachedIdToken, cachedAccessToken);\n void this.nativeStorageManager.saveCacheRecord(nativeCacheRecord, request.storeInCache);\n }\n addTelemetryFromNativeResponse(response) {\n const mats = this.getMATSFromResponse(response);\n if (!mats) {\n return null;\n }\n this.performanceClient.addFields({\n extensionId: this.nativeMessageHandler.getExtensionId(),\n extensionVersion: this.nativeMessageHandler.getExtensionVersion(),\n matsBrokerVersion: mats.broker_version,\n matsAccountJoinOnStart: mats.account_join_on_start,\n matsAccountJoinOnEnd: mats.account_join_on_end,\n matsDeviceJoin: mats.device_join,\n matsPromptBehavior: mats.prompt_behavior,\n matsApiErrorCode: mats.api_error_code,\n matsUiVisible: mats.ui_visible,\n matsSilentCode: mats.silent_code,\n matsSilentBiSubCode: mats.silent_bi_sub_code,\n matsSilentMessage: mats.silent_message,\n matsSilentStatus: mats.silent_status,\n matsHttpStatus: mats.http_status,\n matsHttpEventCount: mats.http_event_count,\n }, this.correlationId);\n return mats;\n }\n /**\n * Validates native platform response before processing\n * @param response\n */\n validateNativeResponse(response) {\n if (response.hasOwnProperty(\"access_token\") &&\n response.hasOwnProperty(\"id_token\") &&\n response.hasOwnProperty(\"client_info\") &&\n response.hasOwnProperty(\"account\") &&\n response.hasOwnProperty(\"scope\") &&\n response.hasOwnProperty(\"expires_in\")) {\n return response;\n }\n else {\n throw createAuthError(AuthErrorCodes.unexpectedError, \"Response missing expected properties.\");\n }\n }\n /**\n * Gets MATS telemetry from native response\n * @param response\n * @returns\n */\n getMATSFromResponse(response) {\n if (response.properties.MATS) {\n try {\n return JSON.parse(response.properties.MATS);\n }\n catch (e) {\n this.logger.error(\"NativeInteractionClient - Error parsing MATS telemetry, returning null instead\");\n }\n }\n return null;\n }\n /**\n * Returns whether or not response came from native cache\n * @param response\n * @returns\n */\n isResponseFromCache(mats) {\n if (typeof mats.is_cached === \"undefined\") {\n this.logger.verbose(\"NativeInteractionClient - MATS telemetry does not contain field indicating if response was served from cache. Returning false.\");\n return false;\n }\n return !!mats.is_cached;\n }\n /**\n * Translates developer provided request object into NativeRequest object\n * @param request\n */\n async initializeNativeRequest(request) {\n this.logger.trace(\"NativeInteractionClient - initializeNativeRequest called\");\n const authority = request.authority || this.config.auth.authority;\n if (request.account) {\n await this.validateRequestAuthority(authority, request.account);\n }\n const canonicalAuthority = new UrlString(authority);\n canonicalAuthority.validateAsUri();\n // scopes are expected to be received by the native broker as \"scope\" and will be added to the request below. Other properties that should be dropped from the request to the native broker can be included in the object destructuring here.\n const { scopes, ...remainingProperties } = request;\n const scopeSet = new ScopeSet(scopes || []);\n scopeSet.appendScopes(OIDC_DEFAULT_SCOPES);\n const getPrompt = () => {\n // If request is silent, prompt is always none\n switch (this.apiId) {\n case ApiId.ssoSilent:\n case ApiId.acquireTokenSilent_silentFlow:\n this.logger.trace(\"initializeNativeRequest: silent request sets prompt to none\");\n return PromptValue.NONE;\n }\n // Prompt not provided, request may proceed and native broker decides if it needs to prompt\n if (!request.prompt) {\n this.logger.trace(\"initializeNativeRequest: prompt was not provided\");\n return undefined;\n }\n // If request is interactive, check if prompt provided is allowed to go directly to native broker\n switch (request.prompt) {\n case PromptValue.NONE:\n case PromptValue.CONSENT:\n case PromptValue.LOGIN:\n this.logger.trace(\"initializeNativeRequest: prompt is compatible with native flow\");\n return request.prompt;\n default:\n this.logger.trace(`initializeNativeRequest: prompt = ${request.prompt} is not compatible with native flow`);\n throw createBrowserAuthError(nativePromptNotSupported);\n }\n };\n const validatedRequest = {\n ...remainingProperties,\n accountId: this.accountId,\n clientId: this.config.auth.clientId,\n authority: canonicalAuthority.urlString,\n scope: scopeSet.printScopes(),\n redirectUri: this.getRedirectUri(request.redirectUri),\n prompt: getPrompt(),\n correlationId: this.correlationId,\n tokenType: request.authenticationScheme,\n windowTitleSubstring: document.title,\n extraParameters: {\n ...request.extraQueryParameters,\n ...request.tokenQueryParameters,\n },\n extendedExpiryToken: false, // Make this configurable?\n };\n this.handleExtraBrokerParams(validatedRequest);\n validatedRequest.extraParameters =\n validatedRequest.extraParameters || {};\n validatedRequest.extraParameters.telemetry =\n NativeConstants.MATS_TELEMETRY;\n if (request.authenticationScheme === AuthenticationScheme.POP) {\n // add POP request type\n const shrParameters = {\n resourceRequestUri: request.resourceRequestUri,\n resourceRequestMethod: request.resourceRequestMethod,\n shrClaims: request.shrClaims,\n shrNonce: request.shrNonce,\n };\n const popTokenGenerator = new PopTokenGenerator(this.browserCrypto);\n const reqCnfData = await invokeAsync(popTokenGenerator.generateCnf.bind(popTokenGenerator), PerformanceEvents.PopTokenGenerateCnf, this.logger, this.performanceClient, this.correlationId)(shrParameters, this.logger);\n // to reduce the URL length, it is recommended to send the hash of the req_cnf instead of the whole string\n validatedRequest.reqCnf = reqCnfData.reqCnfHash;\n validatedRequest.keyId = reqCnfData.kid;\n }\n return validatedRequest;\n }\n /**\n * Handles extra broker request parameters\n * @param request {NativeTokenRequest}\n * @private\n */\n handleExtraBrokerParams(request) {\n if (!request.extraParameters) {\n return;\n }\n if (request.extraParameters.hasOwnProperty(BrokerServerParamKeys.BROKER_CLIENT_ID) &&\n request.extraParameters.hasOwnProperty(BrokerServerParamKeys.BROKER_REDIRECT_URI) &&\n request.extraParameters.hasOwnProperty(AADServerParamKeys.CLIENT_ID)) {\n const child_client_id = request.extraParameters[AADServerParamKeys.CLIENT_ID];\n const child_redirect_uri = request.redirectUri;\n const brk_redirect_uri = request.extraParameters[BrokerServerParamKeys.BROKER_REDIRECT_URI];\n request.extraParameters = {\n child_client_id,\n child_redirect_uri,\n };\n request.redirectUri = brk_redirect_uri;\n }\n }\n}\n\nexport { NativeInteractionClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { NativeConstants, NativeExtensionMethod } from '../../utils/BrowserConstants.mjs';\nimport { PerformanceEvents, createAuthError, AuthErrorCodes, AuthenticationScheme } from '@azure/msal-common';\nimport { createNativeAuthError } from '../../error/NativeAuthError.mjs';\nimport { createBrowserAuthError } from '../../error/BrowserAuthError.mjs';\nimport { createNewGuid } from '../../crypto/BrowserCrypto.mjs';\nimport { nativeHandshakeTimeout, nativeExtensionNotInstalled } from '../../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass NativeMessageHandler {\n constructor(logger, handshakeTimeoutMs, performanceClient, extensionId) {\n this.logger = logger;\n this.handshakeTimeoutMs = handshakeTimeoutMs;\n this.extensionId = extensionId;\n this.resolvers = new Map(); // Used for non-handshake messages\n this.handshakeResolvers = new Map(); // Used for handshake messages\n this.messageChannel = new MessageChannel();\n this.windowListener = this.onWindowMessage.bind(this); // Window event callback doesn't have access to 'this' unless it's bound\n this.performanceClient = performanceClient;\n this.handshakeEvent = performanceClient.startMeasurement(PerformanceEvents.NativeMessageHandlerHandshake);\n }\n /**\n * Sends a given message to the extension and resolves with the extension response\n * @param body\n */\n async sendMessage(body) {\n this.logger.trace(\"NativeMessageHandler - sendMessage called.\");\n const req = {\n channel: NativeConstants.CHANNEL_ID,\n extensionId: this.extensionId,\n responseId: createNewGuid(),\n body: body,\n };\n this.logger.trace(\"NativeMessageHandler - Sending request to browser extension\");\n this.logger.tracePii(`NativeMessageHandler - Sending request to browser extension: ${JSON.stringify(req)}`);\n this.messageChannel.port1.postMessage(req);\n return new Promise((resolve, reject) => {\n this.resolvers.set(req.responseId, { resolve, reject });\n });\n }\n /**\n * Returns an instance of the MessageHandler that has successfully established a connection with an extension\n * @param {Logger} logger\n * @param {number} handshakeTimeoutMs\n * @param {IPerformanceClient} performanceClient\n * @param {ICrypto} crypto\n */\n static async createProvider(logger, handshakeTimeoutMs, performanceClient) {\n logger.trace(\"NativeMessageHandler - createProvider called.\");\n try {\n const preferredProvider = new NativeMessageHandler(logger, handshakeTimeoutMs, performanceClient, NativeConstants.PREFERRED_EXTENSION_ID);\n await preferredProvider.sendHandshakeRequest();\n return preferredProvider;\n }\n catch (e) {\n // If preferred extension fails for whatever reason, fallback to using any installed extension\n const backupProvider = new NativeMessageHandler(logger, handshakeTimeoutMs, performanceClient);\n await backupProvider.sendHandshakeRequest();\n return backupProvider;\n }\n }\n /**\n * Send handshake request helper.\n */\n async sendHandshakeRequest() {\n this.logger.trace(\"NativeMessageHandler - sendHandshakeRequest called.\");\n // Register this event listener before sending handshake\n window.addEventListener(\"message\", this.windowListener, false); // false is important, because content script message processing should work first\n const req = {\n channel: NativeConstants.CHANNEL_ID,\n extensionId: this.extensionId,\n responseId: createNewGuid(),\n body: {\n method: NativeExtensionMethod.HandshakeRequest,\n },\n };\n this.handshakeEvent.add({\n extensionId: this.extensionId,\n extensionHandshakeTimeoutMs: this.handshakeTimeoutMs,\n });\n this.messageChannel.port1.onmessage = (event) => {\n this.onChannelMessage(event);\n };\n window.postMessage(req, window.origin, [this.messageChannel.port2]);\n return new Promise((resolve, reject) => {\n this.handshakeResolvers.set(req.responseId, { resolve, reject });\n this.timeoutId = window.setTimeout(() => {\n /*\n * Throw an error if neither HandshakeResponse nor original Handshake request are received in a reasonable timeframe.\n * This typically suggests an event handler stopped propagation of the Handshake request but did not respond to it on the MessageChannel port\n */\n window.removeEventListener(\"message\", this.windowListener, false);\n this.messageChannel.port1.close();\n this.messageChannel.port2.close();\n this.handshakeEvent.end({\n extensionHandshakeTimedOut: true,\n success: false,\n });\n reject(createBrowserAuthError(nativeHandshakeTimeout));\n this.handshakeResolvers.delete(req.responseId);\n }, this.handshakeTimeoutMs); // Use a reasonable timeout in milliseconds here\n });\n }\n /**\n * Invoked when a message is posted to the window. If a handshake request is received it means the extension is not installed.\n * @param event\n */\n onWindowMessage(event) {\n this.logger.trace(\"NativeMessageHandler - onWindowMessage called\");\n // We only accept messages from ourselves\n if (event.source !== window) {\n return;\n }\n const request = event.data;\n if (!request.channel ||\n request.channel !== NativeConstants.CHANNEL_ID) {\n return;\n }\n if (request.extensionId && request.extensionId !== this.extensionId) {\n return;\n }\n if (request.body.method === NativeExtensionMethod.HandshakeRequest) {\n const handshakeResolver = this.handshakeResolvers.get(request.responseId);\n /*\n * Filter out responses with no matched resolvers sooner to keep channel ports open while waiting for\n * the proper response.\n */\n if (!handshakeResolver) {\n this.logger.trace(`NativeMessageHandler.onWindowMessage - resolver can't be found for request ${request.responseId}`);\n return;\n }\n // If we receive this message back it means no extension intercepted the request, meaning no extension supporting handshake protocol is installed\n this.logger.verbose(request.extensionId\n ? `Extension with id: ${request.extensionId} not installed`\n : \"No extension installed\");\n clearTimeout(this.timeoutId);\n this.messageChannel.port1.close();\n this.messageChannel.port2.close();\n window.removeEventListener(\"message\", this.windowListener, false);\n this.handshakeEvent.end({\n success: false,\n extensionInstalled: false,\n });\n handshakeResolver.reject(createBrowserAuthError(nativeExtensionNotInstalled));\n }\n }\n /**\n * Invoked when a message is received from the extension on the MessageChannel port\n * @param event\n */\n onChannelMessage(event) {\n this.logger.trace(\"NativeMessageHandler - onChannelMessage called.\");\n const request = event.data;\n const resolver = this.resolvers.get(request.responseId);\n const handshakeResolver = this.handshakeResolvers.get(request.responseId);\n try {\n const method = request.body.method;\n if (method === NativeExtensionMethod.Response) {\n if (!resolver) {\n return;\n }\n const response = request.body.response;\n this.logger.trace(\"NativeMessageHandler - Received response from browser extension\");\n this.logger.tracePii(`NativeMessageHandler - Received response from browser extension: ${JSON.stringify(response)}`);\n if (response.status !== \"Success\") {\n resolver.reject(createNativeAuthError(response.code, response.description, response.ext));\n }\n else if (response.result) {\n if (response.result[\"code\"] &&\n response.result[\"description\"]) {\n resolver.reject(createNativeAuthError(response.result[\"code\"], response.result[\"description\"], response.result[\"ext\"]));\n }\n else {\n resolver.resolve(response.result);\n }\n }\n else {\n throw createAuthError(AuthErrorCodes.unexpectedError, \"Event does not contain result.\");\n }\n this.resolvers.delete(request.responseId);\n }\n else if (method === NativeExtensionMethod.HandshakeResponse) {\n if (!handshakeResolver) {\n this.logger.trace(`NativeMessageHandler.onChannelMessage - resolver can't be found for request ${request.responseId}`);\n return;\n }\n clearTimeout(this.timeoutId); // Clear setTimeout\n window.removeEventListener(\"message\", this.windowListener, false); // Remove 'No extension' listener\n this.extensionId = request.extensionId;\n this.extensionVersion = request.body.version;\n this.logger.verbose(`NativeMessageHandler - Received HandshakeResponse from extension: ${this.extensionId}`);\n this.handshakeEvent.end({\n extensionInstalled: true,\n success: true,\n });\n handshakeResolver.resolve();\n this.handshakeResolvers.delete(request.responseId);\n }\n // Do nothing if method is not Response or HandshakeResponse\n }\n catch (err) {\n this.logger.error(\"Error parsing response from WAM Extension\");\n this.logger.errorPii(`Error parsing response from WAM Extension: ${err}`);\n this.logger.errorPii(`Unable to parse ${event}`);\n if (resolver) {\n resolver.reject(err);\n }\n else if (handshakeResolver) {\n handshakeResolver.reject(err);\n }\n }\n }\n /**\n * Returns the Id for the browser extension this handler is communicating with\n * @returns\n */\n getExtensionId() {\n return this.extensionId;\n }\n /**\n * Returns the version for the browser extension this handler is communicating with\n * @returns\n */\n getExtensionVersion() {\n return this.extensionVersion;\n }\n /**\n * Returns boolean indicating whether or not the request should attempt to use native broker\n * @param logger\n * @param config\n * @param nativeExtensionProvider\n * @param authenticationScheme\n */\n static isNativeAvailable(config, logger, nativeExtensionProvider, authenticationScheme) {\n logger.trace(\"isNativeAvailable called\");\n if (!config.system.allowNativeBroker) {\n logger.trace(\"isNativeAvailable: allowNativeBroker is not enabled, returning false\");\n // Developer disabled WAM\n return false;\n }\n if (!nativeExtensionProvider) {\n logger.trace(\"isNativeAvailable: WAM extension provider is not initialized, returning false\");\n // Extension is not available\n return false;\n }\n if (authenticationScheme) {\n switch (authenticationScheme) {\n case AuthenticationScheme.BEARER:\n case AuthenticationScheme.POP:\n logger.trace(\"isNativeAvailable: authenticationScheme is supported, returning true\");\n return true;\n default:\n logger.trace(\"isNativeAvailable: authenticationScheme is not supported, returning false\");\n return false;\n }\n }\n return true;\n }\n}\n\nexport { NativeMessageHandler };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { PerformanceEvents, createClientAuthError, ClientAuthErrorCodes, ServerError, invokeAsync, AuthorityFactory } from '@azure/msal-common';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { TemporaryCacheKeys } from '../utils/BrowserConstants.mjs';\nimport { hashEmptyError, userCancelled } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Abstract class which defines operations for a browser interaction handling class.\n */\nclass InteractionHandler {\n constructor(authCodeModule, storageImpl, authCodeRequest, logger, performanceClient) {\n this.authModule = authCodeModule;\n this.browserStorage = storageImpl;\n this.authCodeRequest = authCodeRequest;\n this.logger = logger;\n this.performanceClient = performanceClient;\n }\n /**\n * Function to handle response parameters from hash.\n * @param locationHash\n */\n async handleCodeResponseFromHash(locationHash, state, authority, networkModule) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.HandleCodeResponseFromHash, this.authCodeRequest.correlationId);\n // Check that location hash isn't empty.\n if (!locationHash) {\n throw createBrowserAuthError(hashEmptyError);\n }\n // Handle code response.\n const stateKey = this.browserStorage.generateStateKey(state);\n const requestState = this.browserStorage.getTemporaryCache(stateKey);\n if (!requestState) {\n throw createClientAuthError(ClientAuthErrorCodes.stateNotFound, \"Cached State\");\n }\n let authCodeResponse;\n try {\n authCodeResponse = this.authModule.handleFragmentResponse(locationHash, requestState);\n }\n catch (e) {\n if (e instanceof ServerError &&\n e.subError === userCancelled) {\n // Translate server error caused by user closing native prompt to corresponding first class MSAL error\n throw createBrowserAuthError(userCancelled);\n }\n else {\n throw e;\n }\n }\n return invokeAsync(this.handleCodeResponseFromServer.bind(this), PerformanceEvents.HandleCodeResponseFromServer, this.logger, this.performanceClient, this.authCodeRequest.correlationId)(authCodeResponse, state, authority, networkModule);\n }\n /**\n * Process auth code response from AAD\n * @param authCodeResponse\n * @param state\n * @param authority\n * @param networkModule\n * @returns\n */\n async handleCodeResponseFromServer(authCodeResponse, state, authority, networkModule, validateNonce = true) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.HandleCodeResponseFromServer, this.authCodeRequest.correlationId);\n this.logger.trace(\"InteractionHandler.handleCodeResponseFromServer called\");\n // Handle code response.\n const stateKey = this.browserStorage.generateStateKey(state);\n const requestState = this.browserStorage.getTemporaryCache(stateKey);\n if (!requestState) {\n throw createClientAuthError(ClientAuthErrorCodes.stateNotFound, \"Cached State\");\n }\n // Get cached items\n const nonceKey = this.browserStorage.generateNonceKey(requestState);\n const cachedNonce = this.browserStorage.getTemporaryCache(nonceKey);\n // Assign code to request\n this.authCodeRequest.code = authCodeResponse.code;\n // Check for new cloud instance\n if (authCodeResponse.cloud_instance_host_name) {\n await invokeAsync(this.updateTokenEndpointAuthority.bind(this), PerformanceEvents.UpdateTokenEndpointAuthority, this.logger, this.performanceClient, this.authCodeRequest.correlationId)(authCodeResponse.cloud_instance_host_name, authority, networkModule);\n }\n // Nonce validation not needed when redirect not involved (e.g. hybrid spa, renewing token via rt)\n if (validateNonce) {\n authCodeResponse.nonce = cachedNonce || undefined;\n }\n authCodeResponse.state = requestState;\n // Add CCS parameters if available\n if (authCodeResponse.client_info) {\n this.authCodeRequest.clientInfo = authCodeResponse.client_info;\n }\n else {\n const cachedCcsCred = this.checkCcsCredentials();\n if (cachedCcsCred) {\n this.authCodeRequest.ccsCredential = cachedCcsCred;\n }\n }\n // Acquire token with retrieved code.\n const tokenResponse = (await invokeAsync(this.authModule.acquireToken.bind(this.authModule), PerformanceEvents.AuthClientAcquireToken, this.logger, this.performanceClient, this.authCodeRequest.correlationId)(this.authCodeRequest, authCodeResponse));\n this.browserStorage.cleanRequestByState(state);\n return tokenResponse;\n }\n /**\n * Updates authority based on cloudInstanceHostname\n * @param cloudInstanceHostname\n * @param authority\n * @param networkModule\n */\n async updateTokenEndpointAuthority(cloudInstanceHostname, authority, networkModule) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.UpdateTokenEndpointAuthority, this.authCodeRequest.correlationId);\n const cloudInstanceAuthorityUri = `https://${cloudInstanceHostname}/${authority.tenant}/`;\n const cloudInstanceAuthority = await AuthorityFactory.createDiscoveredInstance(cloudInstanceAuthorityUri, networkModule, this.browserStorage, authority.options, this.logger, this.performanceClient, this.authCodeRequest.correlationId);\n this.authModule.updateAuthority(cloudInstanceAuthority);\n }\n /**\n * Looks up ccs creds in the cache\n */\n checkCcsCredentials() {\n // Look up ccs credential in temp cache\n const cachedCcsCred = this.browserStorage.getTemporaryCache(TemporaryCacheKeys.CCS_CREDENTIAL, true);\n if (cachedCcsCred) {\n try {\n return JSON.parse(cachedCcsCred);\n }\n catch (e) {\n this.authModule.logger.error(\"Cache credential could not be parsed\");\n this.authModule.logger.errorPii(`Cache credential could not be parsed: ${cachedCcsCred}`);\n }\n }\n return null;\n }\n}\n\nexport { InteractionHandler };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { OIDC_DEFAULT_SCOPES, PerformanceEvents, Constants, UrlString, ThrottlingUtils, ProtocolUtils, AuthError, ProtocolMode, ServerResponseType } from '@azure/msal-common';\nimport { StandardInteractionClient } from './StandardInteractionClient.mjs';\nimport { EventType } from '../event/EventType.mjs';\nimport { ApiId, InteractionType, BrowserConstants } from '../utils/BrowserConstants.mjs';\nimport { BrowserUtils } from '../utils/BrowserUtils.mjs';\nimport { NativeInteractionClient } from './NativeInteractionClient.mjs';\nimport { NativeMessageHandler } from '../broker/nativeBroker/NativeMessageHandler.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { InteractionHandler } from '../interaction_handler/InteractionHandler.mjs';\nimport { nativeConnectionNotEstablished, emptyNavigateUri, userCancelled, hashDoesNotContainKnownProperties, monitorPopupTimeout, emptyWindowError, popupWindowError } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass PopupClient extends StandardInteractionClient {\n constructor(config, storageImpl, browserCrypto, logger, eventHandler, navigationClient, performanceClient, nativeStorageImpl, nativeMessageHandler, correlationId) {\n super(config, storageImpl, browserCrypto, logger, eventHandler, navigationClient, performanceClient, nativeMessageHandler, correlationId);\n // Properly sets this reference for the unload event.\n this.unloadWindow = this.unloadWindow.bind(this);\n this.nativeStorage = nativeStorageImpl;\n }\n /**\n * Acquires tokens by opening a popup window to the /authorize endpoint of the authority\n * @param request\n */\n acquireToken(request) {\n try {\n const popupName = this.generatePopupName(request.scopes || OIDC_DEFAULT_SCOPES, request.authority || this.config.auth.authority);\n const popupWindowAttributes = request.popupWindowAttributes || {};\n // asyncPopups flag is true. Acquires token without first opening popup. Popup will be opened later asynchronously.\n if (this.config.system.asyncPopups) {\n this.logger.verbose(\"asyncPopups set to true, acquiring token\");\n // Passes on popup position and dimensions if in request\n return this.acquireTokenPopupAsync(request, popupName, popupWindowAttributes);\n }\n else {\n // asyncPopups flag is set to false. Opens popup before acquiring token.\n this.logger.verbose(\"asyncPopup set to false, opening popup before acquiring token\");\n const popup = this.openSizedPopup(\"about:blank\", popupName, popupWindowAttributes);\n return this.acquireTokenPopupAsync(request, popupName, popupWindowAttributes, popup);\n }\n }\n catch (e) {\n return Promise.reject(e);\n }\n }\n /**\n * Clears local cache for the current user then opens a popup window prompting the user to sign-out of the server\n * @param logoutRequest\n */\n logout(logoutRequest) {\n try {\n this.logger.verbose(\"logoutPopup called\");\n const validLogoutRequest = this.initializeLogoutRequest(logoutRequest);\n const popupName = this.generateLogoutPopupName(validLogoutRequest);\n const authority = logoutRequest && logoutRequest.authority;\n const mainWindowRedirectUri = logoutRequest && logoutRequest.mainWindowRedirectUri;\n const popupWindowAttributes = logoutRequest?.popupWindowAttributes || {};\n // asyncPopups flag is true. Acquires token without first opening popup. Popup will be opened later asynchronously.\n if (this.config.system.asyncPopups) {\n this.logger.verbose(\"asyncPopups set to true\");\n // Passes on popup position and dimensions if in request\n return this.logoutPopupAsync(validLogoutRequest, popupName, popupWindowAttributes, authority, undefined, mainWindowRedirectUri);\n }\n else {\n // asyncPopups flag is set to false. Opens popup before logging out.\n this.logger.verbose(\"asyncPopup set to false, opening popup\");\n const popup = this.openSizedPopup(\"about:blank\", popupName, popupWindowAttributes);\n return this.logoutPopupAsync(validLogoutRequest, popupName, popupWindowAttributes, authority, popup, mainWindowRedirectUri);\n }\n }\n catch (e) {\n // Since this function is synchronous we need to reject\n return Promise.reject(e);\n }\n }\n /**\n * Helper which obtains an access_token for your API via opening a popup window in the user's browser\n * @param validRequest\n * @param popupName\n * @param popup\n * @param popupWindowAttributes\n *\n * @returns A promise that is fulfilled when this function has completed, or rejected if an error was raised.\n */\n async acquireTokenPopupAsync(request, popupName, popupWindowAttributes, popup) {\n this.logger.verbose(\"acquireTokenPopupAsync called\");\n const serverTelemetryManager = this.initializeServerTelemetryManager(ApiId.acquireTokenPopup);\n this.performanceClient.setPreQueueTime(PerformanceEvents.StandardInteractionClientInitializeAuthorizationRequest, request.correlationId);\n const validRequest = await this.initializeAuthorizationRequest(request, InteractionType.Popup);\n this.browserStorage.updateCacheEntries(validRequest.state, validRequest.nonce, validRequest.authority, validRequest.loginHint || Constants.EMPTY_STRING, validRequest.account || null);\n try {\n // Create auth code request and generate PKCE params\n this.performanceClient.setPreQueueTime(PerformanceEvents.StandardInteractionClientInitializeAuthorizationCodeRequest, request.correlationId);\n const authCodeRequest = await this.initializeAuthorizationCodeRequest(validRequest);\n // Initialize the client\n this.performanceClient.setPreQueueTime(PerformanceEvents.StandardInteractionClientCreateAuthCodeClient, request.correlationId);\n const authClient = await this.createAuthCodeClient(serverTelemetryManager, validRequest.authority, validRequest.azureCloudOptions);\n this.logger.verbose(\"Auth code client created\");\n const isNativeBroker = NativeMessageHandler.isNativeAvailable(this.config, this.logger, this.nativeMessageHandler, request.authenticationScheme);\n // Start measurement for server calls with native brokering enabled\n let fetchNativeAccountIdMeasurement;\n if (isNativeBroker) {\n fetchNativeAccountIdMeasurement =\n this.performanceClient.startMeasurement(PerformanceEvents.FetchAccountIdWithNativeBroker, request.correlationId);\n }\n // Create acquire token url.\n const navigateUrl = await authClient.getAuthCodeUrl({\n ...validRequest,\n nativeBroker: isNativeBroker,\n });\n // Create popup interaction handler.\n const interactionHandler = new InteractionHandler(authClient, this.browserStorage, authCodeRequest, this.logger, this.performanceClient);\n // Show the UI once the url has been created. Get the window handle for the popup.\n const popupParameters = {\n popup,\n popupName,\n popupWindowAttributes,\n };\n const popupWindow = this.initiateAuthRequest(navigateUrl, popupParameters);\n this.eventHandler.emitEvent(EventType.POPUP_OPENED, InteractionType.Popup, { popupWindow }, null);\n // Monitor the window for the hash. Return the string value and close the popup when the hash is received. Default timeout is 60 seconds.\n const hash = await this.monitorPopupForHash(popupWindow);\n // Deserialize hash fragment response parameters.\n const serverParams = UrlString.getDeserializedHash(hash);\n const state = this.validateAndExtractStateFromHash(serverParams, InteractionType.Popup, validRequest.correlationId);\n // Remove throttle if it exists\n ThrottlingUtils.removeThrottle(this.browserStorage, this.config.auth.clientId, authCodeRequest);\n if (serverParams.accountId) {\n this.logger.verbose(\"Account id found in hash, calling WAM for token\");\n // end measurement for server call with native brokering enabled\n if (fetchNativeAccountIdMeasurement) {\n fetchNativeAccountIdMeasurement.end({\n success: true,\n isNativeBroker: true,\n });\n }\n if (!this.nativeMessageHandler) {\n throw createBrowserAuthError(nativeConnectionNotEstablished);\n }\n const nativeInteractionClient = new NativeInteractionClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, ApiId.acquireTokenPopup, this.performanceClient, this.nativeMessageHandler, serverParams.accountId, this.nativeStorage, validRequest.correlationId);\n const { userRequestState } = ProtocolUtils.parseRequestState(this.browserCrypto, state);\n return nativeInteractionClient\n .acquireToken({\n ...validRequest,\n state: userRequestState,\n prompt: undefined, // Server should handle the prompt, ideally native broker can do this part silently\n })\n .finally(() => {\n this.browserStorage.cleanRequestByState(state);\n });\n }\n // Handle response from hash string.\n const result = await interactionHandler.handleCodeResponseFromHash(hash, state, authClient.authority, this.networkClient);\n return result;\n }\n catch (e) {\n if (popup) {\n // Close the synchronous popup if an error is thrown before the window unload event is registered\n popup.close();\n }\n if (e instanceof AuthError) {\n e.setCorrelationId(this.correlationId);\n serverTelemetryManager.cacheFailedRequest(e);\n }\n this.browserStorage.cleanRequestByState(validRequest.state);\n throw e;\n }\n }\n /**\n *\n * @param validRequest\n * @param popupName\n * @param requestAuthority\n * @param popup\n * @param mainWindowRedirectUri\n * @param popupWindowAttributes\n */\n async logoutPopupAsync(validRequest, popupName, popupWindowAttributes, requestAuthority, popup, mainWindowRedirectUri) {\n this.logger.verbose(\"logoutPopupAsync called\");\n this.eventHandler.emitEvent(EventType.LOGOUT_START, InteractionType.Popup, validRequest);\n const serverTelemetryManager = this.initializeServerTelemetryManager(ApiId.logoutPopup);\n try {\n // Clear cache on logout\n await this.clearCacheOnLogout(validRequest.account);\n // Initialize the client\n this.performanceClient.setPreQueueTime(PerformanceEvents.StandardInteractionClientCreateAuthCodeClient, validRequest.correlationId);\n const authClient = await this.createAuthCodeClient(serverTelemetryManager, requestAuthority);\n this.logger.verbose(\"Auth code client created\");\n try {\n authClient.authority.endSessionEndpoint;\n }\n catch {\n if (validRequest.account?.homeAccountId &&\n validRequest.postLogoutRedirectUri &&\n authClient.authority.protocolMode === ProtocolMode.OIDC) {\n void this.browserStorage.removeAccount(validRequest.account?.homeAccountId);\n this.eventHandler.emitEvent(EventType.LOGOUT_SUCCESS, InteractionType.Popup, validRequest);\n if (mainWindowRedirectUri) {\n const navigationOptions = {\n apiId: ApiId.logoutPopup,\n timeout: this.config.system.redirectNavigationTimeout,\n noHistory: false,\n };\n const absoluteUrl = UrlString.getAbsoluteUrl(mainWindowRedirectUri, BrowserUtils.getCurrentUri());\n await this.navigationClient.navigateInternal(absoluteUrl, navigationOptions);\n }\n if (popup) {\n popup.close();\n }\n return;\n }\n }\n // Create logout string and navigate user window to logout.\n const logoutUri = authClient.getLogoutUri(validRequest);\n this.eventHandler.emitEvent(EventType.LOGOUT_SUCCESS, InteractionType.Popup, validRequest);\n // Open the popup window to requestUrl.\n const popupWindow = this.openPopup(logoutUri, {\n popupName,\n popupWindowAttributes,\n popup,\n });\n this.eventHandler.emitEvent(EventType.POPUP_OPENED, InteractionType.Popup, { popupWindow }, null);\n await this.waitForLogoutPopup(popupWindow);\n if (mainWindowRedirectUri) {\n const navigationOptions = {\n apiId: ApiId.logoutPopup,\n timeout: this.config.system.redirectNavigationTimeout,\n noHistory: false,\n };\n const absoluteUrl = UrlString.getAbsoluteUrl(mainWindowRedirectUri, BrowserUtils.getCurrentUri());\n this.logger.verbose(\"Redirecting main window to url specified in the request\");\n this.logger.verbosePii(`Redirecting main window to: ${absoluteUrl}`);\n await this.navigationClient.navigateInternal(absoluteUrl, navigationOptions);\n }\n else {\n this.logger.verbose(\"No main window navigation requested\");\n }\n }\n catch (e) {\n if (popup) {\n // Close the synchronous popup if an error is thrown before the window unload event is registered\n popup.close();\n }\n if (e instanceof AuthError) {\n e.setCorrelationId(this.correlationId);\n serverTelemetryManager.cacheFailedRequest(e);\n }\n this.browserStorage.setInteractionInProgress(false);\n this.eventHandler.emitEvent(EventType.LOGOUT_FAILURE, InteractionType.Popup, null, e);\n this.eventHandler.emitEvent(EventType.LOGOUT_END, InteractionType.Popup);\n throw e;\n }\n this.eventHandler.emitEvent(EventType.LOGOUT_END, InteractionType.Popup);\n }\n /**\n * Opens a popup window with given request Url.\n * @param requestUrl\n */\n initiateAuthRequest(requestUrl, params) {\n // Check that request url is not empty.\n if (requestUrl) {\n this.logger.infoPii(`Navigate to: ${requestUrl}`);\n // Open the popup window to requestUrl.\n return this.openPopup(requestUrl, params);\n }\n else {\n // Throw error if request URL is empty.\n this.logger.error(\"Navigate url is empty\");\n throw createBrowserAuthError(emptyNavigateUri);\n }\n }\n /**\n * Monitors a window until it loads a url with the same origin.\n * @param popupWindow - window that is being monitored\n * @param timeout - timeout for processing hash once popup is redirected back to application\n */\n monitorPopupForHash(popupWindow) {\n return new Promise((resolve, reject) => {\n /*\n * Polling for popups needs to be tick-based,\n * since a non-trivial amount of time can be spent on interaction (which should not count against the timeout).\n */\n const maxTicks = this.config.system.windowHashTimeout /\n this.config.system.pollIntervalMilliseconds;\n let ticks = 0;\n this.logger.verbose(\"PopupHandler.monitorPopupForHash - polling started\");\n const intervalId = setInterval(() => {\n // Window is closed\n if (popupWindow.closed) {\n this.logger.error(\"PopupHandler.monitorPopupForHash - window closed\");\n this.cleanPopup();\n clearInterval(intervalId);\n reject(createBrowserAuthError(userCancelled));\n return;\n }\n let href = Constants.EMPTY_STRING;\n let serverResponseString = Constants.EMPTY_STRING;\n try {\n /*\n * Will throw if cross origin,\n * which should be caught and ignored\n * since we need the interval to keep running while on STS UI.\n */\n href = popupWindow.location.href;\n serverResponseString =\n this.extractServerResponseStringFromPopup(popupWindow, href);\n }\n catch (e) { }\n // Don't process blank pages or cross domain\n if (!href || href === \"about:blank\") {\n return;\n }\n this.logger.verbose(\"PopupHandler.monitorPopupForHash - popup window is on same origin as caller\");\n /*\n * Only run clock when we are on same domain for popups\n * as popup operations can take a long time.\n */\n ticks++;\n if (serverResponseString) {\n this.logger.verbose(\"PopupHandler.monitorPopupForHash - found hash in url\");\n clearInterval(intervalId);\n this.cleanPopup(popupWindow);\n if (UrlString.hashContainsKnownProperties(serverResponseString)) {\n this.logger.verbose(\"PopupHandler.monitorPopupForHash - hash contains known properties, returning.\");\n resolve(serverResponseString);\n }\n else {\n this.logger.error(\"PopupHandler.monitorPopupForHash - found hash in url but it does not contain known properties. Check that your router is not changing the hash prematurely.\");\n this.logger.errorPii(`PopupHandler.monitorPopupForHash - hash found: ${serverResponseString}`);\n reject(createBrowserAuthError(hashDoesNotContainKnownProperties));\n }\n }\n else if (ticks > maxTicks) {\n this.logger.error(\"PopupHandler.monitorPopupForHash - unable to find hash in url, timing out\");\n clearInterval(intervalId);\n reject(createBrowserAuthError(monitorPopupTimeout));\n }\n }, this.config.system.pollIntervalMilliseconds);\n });\n }\n /**\n * Waits for user interaction in logout popup window\n * @param popupWindow\n * @returns\n */\n waitForLogoutPopup(popupWindow) {\n return new Promise((resolve) => {\n this.logger.verbose(\"PopupHandler.waitForLogoutPopup - polling started\");\n const intervalId = setInterval(() => {\n // Window is closed\n if (popupWindow.closed) {\n this.logger.error(\"PopupHandler.waitForLogoutPopup - window closed\");\n this.cleanPopup();\n clearInterval(intervalId);\n resolve();\n }\n let href = Constants.EMPTY_STRING;\n try {\n /*\n * Will throw if cross origin,\n * which should be caught and ignored\n * since we need the interval to keep running while on STS UI.\n */\n href = popupWindow.location.href;\n }\n catch (e) { }\n // Don't process blank pages or cross domain\n if (!href || href === \"about:blank\") {\n return;\n }\n this.logger.verbose(\"PopupHandler.waitForLogoutPopup - popup window is on same origin as caller, closing.\");\n clearInterval(intervalId);\n this.cleanPopup(popupWindow);\n resolve();\n }, this.config.system.pollIntervalMilliseconds);\n });\n }\n /**\n * @hidden\n *\n * Configures popup window for login.\n *\n * @param urlNavigate\n * @param title\n * @param popUpWidth\n * @param popUpHeight\n * @param popupWindowAttributes\n * @ignore\n * @hidden\n */\n openPopup(urlNavigate, popupParams) {\n try {\n let popupWindow;\n // Popup window passed in, setting url to navigate to\n if (popupParams.popup) {\n popupWindow = popupParams.popup;\n this.logger.verbosePii(`Navigating popup window to: ${urlNavigate}`);\n popupWindow.location.assign(urlNavigate);\n }\n else if (typeof popupParams.popup === \"undefined\") {\n // Popup will be undefined if it was not passed in\n this.logger.verbosePii(`Opening popup window to: ${urlNavigate}`);\n popupWindow = this.openSizedPopup(urlNavigate, popupParams.popupName, popupParams.popupWindowAttributes);\n }\n // Popup will be null if popups are blocked\n if (!popupWindow) {\n throw createBrowserAuthError(emptyWindowError);\n }\n if (popupWindow.focus) {\n popupWindow.focus();\n }\n this.currentWindow = popupWindow;\n window.addEventListener(\"beforeunload\", this.unloadWindow);\n return popupWindow;\n }\n catch (e) {\n this.logger.error(\"error opening popup \" + e.message);\n this.browserStorage.setInteractionInProgress(false);\n throw createBrowserAuthError(popupWindowError);\n }\n }\n /**\n * Helper function to set popup window dimensions and position\n * @param urlNavigate\n * @param popupName\n * @param popupWindowAttributes\n * @returns\n */\n openSizedPopup(urlNavigate, popupName, popupWindowAttributes) {\n /**\n * adding winLeft and winTop to account for dual monitor\n * using screenLeft and screenTop for IE8 and earlier\n */\n const winLeft = window.screenLeft ? window.screenLeft : window.screenX;\n const winTop = window.screenTop ? window.screenTop : window.screenY;\n /**\n * window.innerWidth displays browser window\"s height and width excluding toolbars\n * using document.documentElement.clientWidth for IE8 and earlier\n */\n const winWidth = window.innerWidth ||\n document.documentElement.clientWidth ||\n document.body.clientWidth;\n const winHeight = window.innerHeight ||\n document.documentElement.clientHeight ||\n document.body.clientHeight;\n let width = popupWindowAttributes.popupSize?.width;\n let height = popupWindowAttributes.popupSize?.height;\n let top = popupWindowAttributes.popupPosition?.top;\n let left = popupWindowAttributes.popupPosition?.left;\n if (!width || width < 0 || width > winWidth) {\n this.logger.verbose(\"Default popup window width used. Window width not configured or invalid.\");\n width = BrowserConstants.POPUP_WIDTH;\n }\n if (!height || height < 0 || height > winHeight) {\n this.logger.verbose(\"Default popup window height used. Window height not configured or invalid.\");\n height = BrowserConstants.POPUP_HEIGHT;\n }\n if (!top || top < 0 || top > winHeight) {\n this.logger.verbose(\"Default popup window top position used. Window top not configured or invalid.\");\n top = Math.max(0, winHeight / 2 - BrowserConstants.POPUP_HEIGHT / 2 + winTop);\n }\n if (!left || left < 0 || left > winWidth) {\n this.logger.verbose(\"Default popup window left position used. Window left not configured or invalid.\");\n left = Math.max(0, winWidth / 2 - BrowserConstants.POPUP_WIDTH / 2 + winLeft);\n }\n return window.open(urlNavigate, popupName, `width=${width}, height=${height}, top=${top}, left=${left}, scrollbars=yes`);\n }\n /**\n * Event callback to unload main window.\n */\n unloadWindow(e) {\n this.browserStorage.cleanRequestByInteractionType(InteractionType.Popup);\n if (this.currentWindow) {\n this.currentWindow.close();\n }\n // Guarantees browser unload will happen, so no other errors will be thrown.\n e.preventDefault();\n }\n /**\n * Closes popup, removes any state vars created during popup calls.\n * @param popupWindow\n */\n cleanPopup(popupWindow) {\n if (popupWindow) {\n // Close window.\n popupWindow.close();\n }\n // Remove window unload function\n window.removeEventListener(\"beforeunload\", this.unloadWindow);\n // Interaction is completed - remove interaction status.\n this.browserStorage.setInteractionInProgress(false);\n }\n /**\n * Generates the name for the popup based on the client id and request\n * @param clientId\n * @param request\n */\n generatePopupName(scopes, authority) {\n return `${BrowserConstants.POPUP_NAME_PREFIX}.${this.config.auth.clientId}.${scopes.join(\"-\")}.${authority}.${this.correlationId}`;\n }\n /**\n * Generates the name for the popup based on the client id and request for logouts\n * @param clientId\n * @param request\n */\n generateLogoutPopupName(request) {\n const homeAccountId = request.account && request.account.homeAccountId;\n return `${BrowserConstants.POPUP_NAME_PREFIX}.${this.config.auth.clientId}.${homeAccountId}.${this.correlationId}`;\n }\n /**\n * Extracts the server response from the popup window\n */\n extractServerResponseStringFromPopup(popupWindow, href) {\n let serverResponseString;\n if (this.config.auth.OIDCOptions?.serverResponseType ===\n ServerResponseType.QUERY) {\n serverResponseString = UrlString.parseQueryServerResponse(href);\n }\n else {\n serverResponseString = popupWindow.location.hash;\n }\n return serverResponseString;\n }\n}\n\nexport { PopupClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { createClientAuthError, ClientAuthErrorCodes, ServerError } from '@azure/msal-common';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { TemporaryCacheKeys, ApiId } from '../utils/BrowserConstants.mjs';\nimport { InteractionHandler } from './InteractionHandler.mjs';\nimport { emptyNavigateUri, hashEmptyError, userCancelled } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass RedirectHandler extends InteractionHandler {\n constructor(authCodeModule, storageImpl, authCodeRequest, logger, browserCrypto, performanceClient) {\n super(authCodeModule, storageImpl, authCodeRequest, logger, performanceClient);\n this.browserCrypto = browserCrypto;\n }\n /**\n * Redirects window to given URL.\n * @param urlNavigate\n */\n async initiateAuthRequest(requestUrl, params) {\n this.logger.verbose(\"RedirectHandler.initiateAuthRequest called\");\n // Navigate if valid URL\n if (requestUrl) {\n // Cache start page, returns to this page after redirectUri if navigateToLoginRequestUrl is true\n if (params.redirectStartPage) {\n this.logger.verbose(\"RedirectHandler.initiateAuthRequest: redirectStartPage set, caching start page\");\n this.browserStorage.setTemporaryCache(TemporaryCacheKeys.ORIGIN_URI, params.redirectStartPage, true);\n }\n // Set interaction status in the library.\n this.browserStorage.setTemporaryCache(TemporaryCacheKeys.CORRELATION_ID, this.authCodeRequest.correlationId, true);\n this.browserStorage.cacheCodeRequest(this.authCodeRequest);\n this.logger.infoPii(`RedirectHandler.initiateAuthRequest: Navigate to: ${requestUrl}`);\n const navigationOptions = {\n apiId: ApiId.acquireTokenRedirect,\n timeout: params.redirectTimeout,\n noHistory: false,\n };\n // If onRedirectNavigate is implemented, invoke it and provide requestUrl\n if (typeof params.onRedirectNavigate === \"function\") {\n this.logger.verbose(\"RedirectHandler.initiateAuthRequest: Invoking onRedirectNavigate callback\");\n const navigate = params.onRedirectNavigate(requestUrl);\n // Returning false from onRedirectNavigate will stop navigation\n if (navigate !== false) {\n this.logger.verbose(\"RedirectHandler.initiateAuthRequest: onRedirectNavigate did not return false, navigating\");\n await params.navigationClient.navigateExternal(requestUrl, navigationOptions);\n return;\n }\n else {\n this.logger.verbose(\"RedirectHandler.initiateAuthRequest: onRedirectNavigate returned false, stopping navigation\");\n return;\n }\n }\n else {\n // Navigate window to request URL\n this.logger.verbose(\"RedirectHandler.initiateAuthRequest: Navigating window to navigate url\");\n await params.navigationClient.navigateExternal(requestUrl, navigationOptions);\n return;\n }\n }\n else {\n // Throw error if request URL is empty.\n this.logger.info(\"RedirectHandler.initiateAuthRequest: Navigate url is empty\");\n throw createBrowserAuthError(emptyNavigateUri);\n }\n }\n /**\n * Handle authorization code response in the window.\n * @param hash\n */\n async handleCodeResponseFromHash(locationHash, state, authority, networkModule) {\n this.logger.verbose(\"RedirectHandler.handleCodeResponse called\");\n // Check that location hash isn't empty.\n if (!locationHash) {\n throw createBrowserAuthError(hashEmptyError);\n }\n // Interaction is completed - remove interaction status.\n this.browserStorage.setInteractionInProgress(false);\n // Handle code response.\n const stateKey = this.browserStorage.generateStateKey(state);\n const requestState = this.browserStorage.getTemporaryCache(stateKey);\n if (!requestState) {\n throw createClientAuthError(ClientAuthErrorCodes.stateNotFound, \"Cached State\");\n }\n let authCodeResponse;\n try {\n authCodeResponse = this.authModule.handleFragmentResponse(locationHash, requestState);\n }\n catch (e) {\n if (e instanceof ServerError &&\n e.subError === userCancelled) {\n // Translate server error caused by user closing native prompt to corresponding first class MSAL error\n throw createBrowserAuthError(userCancelled);\n }\n else {\n throw e;\n }\n }\n // Get cached items\n const nonceKey = this.browserStorage.generateNonceKey(requestState);\n const cachedNonce = this.browserStorage.getTemporaryCache(nonceKey);\n // Assign code to request\n this.authCodeRequest.code = authCodeResponse.code;\n // Check for new cloud instance\n if (authCodeResponse.cloud_instance_host_name) {\n await this.updateTokenEndpointAuthority(authCodeResponse.cloud_instance_host_name, authority, networkModule);\n }\n authCodeResponse.nonce = cachedNonce || undefined;\n authCodeResponse.state = requestState;\n // Add CCS parameters if available\n if (authCodeResponse.client_info) {\n this.authCodeRequest.clientInfo = authCodeResponse.client_info;\n }\n else {\n const cachedCcsCred = this.checkCcsCredentials();\n if (cachedCcsCred) {\n this.authCodeRequest.ccsCredential = cachedCcsCred;\n }\n }\n // Acquire token with retrieved code.\n const tokenResponse = (await this.authModule.acquireToken(this.authCodeRequest, authCodeResponse));\n this.browserStorage.cleanRequestByState(state);\n return tokenResponse;\n }\n}\n\nexport { RedirectHandler };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { PerformanceEvents, Constants, AuthError, UrlString, ProtocolUtils, ThrottlingUtils, ProtocolMode } from '@azure/msal-common';\nimport { StandardInteractionClient } from './StandardInteractionClient.mjs';\nimport { InteractionType, ApiId, TemporaryCacheKeys } from '../utils/BrowserConstants.mjs';\nimport { RedirectHandler } from '../interaction_handler/RedirectHandler.mjs';\nimport { BrowserUtils } from '../utils/BrowserUtils.mjs';\nimport { EventType } from '../event/EventType.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { NativeInteractionClient } from './NativeInteractionClient.mjs';\nimport { NativeMessageHandler } from '../broker/nativeBroker/NativeMessageHandler.mjs';\nimport { nativeConnectionNotEstablished, noCachedAuthorityError } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass RedirectClient extends StandardInteractionClient {\n constructor(config, storageImpl, browserCrypto, logger, eventHandler, navigationClient, performanceClient, nativeStorageImpl, nativeMessageHandler, correlationId) {\n super(config, storageImpl, browserCrypto, logger, eventHandler, navigationClient, performanceClient, nativeMessageHandler, correlationId);\n this.nativeStorage = nativeStorageImpl;\n }\n /**\n * Redirects the page to the /authorize endpoint of the IDP\n * @param request\n */\n async acquireToken(request) {\n this.performanceClient.setPreQueueTime(PerformanceEvents.StandardInteractionClientInitializeAuthorizationRequest, request.correlationId);\n const validRequest = await this.initializeAuthorizationRequest(request, InteractionType.Redirect);\n this.browserStorage.updateCacheEntries(validRequest.state, validRequest.nonce, validRequest.authority, validRequest.loginHint || Constants.EMPTY_STRING, validRequest.account || null);\n const serverTelemetryManager = this.initializeServerTelemetryManager(ApiId.acquireTokenRedirect);\n const handleBackButton = (event) => {\n // Clear temporary cache if the back button is clicked during the redirect flow.\n if (event.persisted) {\n this.logger.verbose(\"Page was restored from back/forward cache. Clearing temporary cache.\");\n this.browserStorage.cleanRequestByState(validRequest.state);\n this.eventHandler.emitEvent(EventType.RESTORE_FROM_BFCACHE, InteractionType.Redirect);\n }\n };\n try {\n // Create auth code request and generate PKCE params\n this.performanceClient.setPreQueueTime(PerformanceEvents.StandardInteractionClientInitializeAuthorizationCodeRequest, request.correlationId);\n const authCodeRequest = await this.initializeAuthorizationCodeRequest(validRequest);\n // Initialize the client\n this.performanceClient.setPreQueueTime(PerformanceEvents.StandardInteractionClientCreateAuthCodeClient, request.correlationId);\n const authClient = await this.createAuthCodeClient(serverTelemetryManager, validRequest.authority, validRequest.azureCloudOptions);\n this.logger.verbose(\"Auth code client created\");\n // Create redirect interaction handler.\n const interactionHandler = new RedirectHandler(authClient, this.browserStorage, authCodeRequest, this.logger, this.browserCrypto, this.performanceClient);\n // Create acquire token url.\n const navigateUrl = await authClient.getAuthCodeUrl({\n ...validRequest,\n nativeBroker: NativeMessageHandler.isNativeAvailable(this.config, this.logger, this.nativeMessageHandler, request.authenticationScheme),\n });\n const redirectStartPage = this.getRedirectStartPage(request.redirectStartPage);\n this.logger.verbosePii(`Redirect start page: ${redirectStartPage}`);\n // Clear temporary cache if the back button is clicked during the redirect flow.\n window.addEventListener(\"pageshow\", handleBackButton);\n // Show the UI once the url has been created. Response will come back in the hash, which will be handled in the handleRedirectCallback function.\n return await interactionHandler.initiateAuthRequest(navigateUrl, {\n navigationClient: this.navigationClient,\n redirectTimeout: this.config.system.redirectNavigationTimeout,\n redirectStartPage: redirectStartPage,\n onRedirectNavigate: request.onRedirectNavigate,\n });\n }\n catch (e) {\n if (e instanceof AuthError) {\n e.setCorrelationId(this.correlationId);\n serverTelemetryManager.cacheFailedRequest(e);\n }\n window.removeEventListener(\"pageshow\", handleBackButton);\n this.browserStorage.cleanRequestByState(validRequest.state);\n throw e;\n }\n }\n /**\n * Checks if navigateToLoginRequestUrl is set, and:\n * - if true, performs logic to cache and navigate\n * - if false, handles hash string and parses response\n * @param hash\n */\n async handleRedirectPromise(hash) {\n const serverTelemetryManager = this.initializeServerTelemetryManager(ApiId.handleRedirectPromise);\n try {\n if (!this.browserStorage.isInteractionInProgress(true)) {\n this.logger.info(\"handleRedirectPromise called but there is no interaction in progress, returning null.\");\n return null;\n }\n const responseHash = this.getRedirectResponseHash(hash || window.location.hash);\n if (!responseHash) {\n // Not a recognized server response hash or hash not associated with a redirect request\n this.logger.info(\"handleRedirectPromise did not detect a response hash as a result of a redirect. Cleaning temporary cache.\");\n this.browserStorage.cleanRequestByInteractionType(InteractionType.Redirect);\n return null;\n }\n let state;\n try {\n // Deserialize hash fragment response parameters.\n const serverParams = UrlString.getDeserializedHash(responseHash);\n state = this.validateAndExtractStateFromHash(serverParams, InteractionType.Redirect);\n this.logger.verbose(\"State extracted from hash\");\n }\n catch (e) {\n this.logger.info(`handleRedirectPromise was unable to extract state due to: ${e}`);\n this.browserStorage.cleanRequestByInteractionType(InteractionType.Redirect);\n return null;\n }\n // If navigateToLoginRequestUrl is true, get the url where the redirect request was initiated\n const loginRequestUrl = this.browserStorage.getTemporaryCache(TemporaryCacheKeys.ORIGIN_URI, true) || Constants.EMPTY_STRING;\n const loginRequestUrlNormalized = UrlString.removeHashFromUrl(loginRequestUrl);\n const currentUrlNormalized = UrlString.removeHashFromUrl(window.location.href);\n if (loginRequestUrlNormalized === currentUrlNormalized &&\n this.config.auth.navigateToLoginRequestUrl) {\n // We are on the page we need to navigate to - handle hash\n this.logger.verbose(\"Current page is loginRequestUrl, handling hash\");\n const handleHashResult = await this.handleHash(responseHash, state, serverTelemetryManager);\n if (loginRequestUrl.indexOf(\"#\") > -1) {\n // Replace current hash with non-msal hash, if present\n BrowserUtils.replaceHash(loginRequestUrl);\n }\n return handleHashResult;\n }\n else if (!this.config.auth.navigateToLoginRequestUrl) {\n this.logger.verbose(\"NavigateToLoginRequestUrl set to false, handling hash\");\n return this.handleHash(responseHash, state, serverTelemetryManager);\n }\n else if (!BrowserUtils.isInIframe() ||\n this.config.system.allowRedirectInIframe) {\n /*\n * Returned from authority using redirect - need to perform navigation before processing response\n * Cache the hash to be retrieved after the next redirect\n */\n this.browserStorage.setTemporaryCache(TemporaryCacheKeys.URL_HASH, responseHash, true);\n const navigationOptions = {\n apiId: ApiId.handleRedirectPromise,\n timeout: this.config.system.redirectNavigationTimeout,\n noHistory: true,\n };\n /**\n * Default behavior is to redirect to the start page and not process the hash now.\n * The start page is expected to also call handleRedirectPromise which will process the hash in one of the checks above.\n */\n let processHashOnRedirect = true;\n if (!loginRequestUrl || loginRequestUrl === \"null\") {\n // Redirect to home page if login request url is null (real null or the string null)\n const homepage = BrowserUtils.getHomepage();\n // Cache the homepage under ORIGIN_URI to ensure cached hash is processed on homepage\n this.browserStorage.setTemporaryCache(TemporaryCacheKeys.ORIGIN_URI, homepage, true);\n this.logger.warning(\"Unable to get valid login request url from cache, redirecting to home page\");\n processHashOnRedirect =\n await this.navigationClient.navigateInternal(homepage, navigationOptions);\n }\n else {\n // Navigate to page that initiated the redirect request\n this.logger.verbose(`Navigating to loginRequestUrl: ${loginRequestUrl}`);\n processHashOnRedirect =\n await this.navigationClient.navigateInternal(loginRequestUrl, navigationOptions);\n }\n // If navigateInternal implementation returns false, handle the hash now\n if (!processHashOnRedirect) {\n return this.handleHash(responseHash, state, serverTelemetryManager);\n }\n }\n return null;\n }\n catch (e) {\n if (e instanceof AuthError) {\n e.setCorrelationId(this.correlationId);\n serverTelemetryManager.cacheFailedRequest(e);\n }\n this.browserStorage.cleanRequestByInteractionType(InteractionType.Redirect);\n throw e;\n }\n }\n /**\n * Gets the response hash for a redirect request\n * Returns null if interactionType in the state value is not \"redirect\" or the hash does not contain known properties\n * @param hash\n */\n getRedirectResponseHash(hash) {\n this.logger.verbose(\"getRedirectResponseHash called\");\n // Get current location hash from window or cache.\n const isResponseHash = UrlString.hashContainsKnownProperties(hash);\n if (isResponseHash) {\n BrowserUtils.clearHash(window);\n this.logger.verbose(\"Hash contains known properties, returning response hash\");\n return hash;\n }\n const cachedHash = this.browserStorage.getTemporaryCache(TemporaryCacheKeys.URL_HASH, true);\n this.browserStorage.removeItem(this.browserStorage.generateCacheKey(TemporaryCacheKeys.URL_HASH));\n this.logger.verbose(\"Hash does not contain known properties, returning cached hash\");\n return cachedHash;\n }\n /**\n * Checks if hash exists and handles in window.\n * @param hash\n * @param state\n */\n async handleHash(hash, state, serverTelemetryManager) {\n const cachedRequest = this.browserStorage.getCachedRequest(state);\n this.logger.verbose(\"handleHash called, retrieved cached request\");\n const serverParams = UrlString.getDeserializedHash(hash);\n if (serverParams.accountId) {\n this.logger.verbose(\"Account id found in hash, calling WAM for token\");\n if (!this.nativeMessageHandler) {\n throw createBrowserAuthError(nativeConnectionNotEstablished);\n }\n const nativeInteractionClient = new NativeInteractionClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, ApiId.acquireTokenPopup, this.performanceClient, this.nativeMessageHandler, serverParams.accountId, this.nativeStorage, cachedRequest.correlationId);\n const { userRequestState } = ProtocolUtils.parseRequestState(this.browserCrypto, state);\n return nativeInteractionClient\n .acquireToken({\n ...cachedRequest,\n state: userRequestState,\n prompt: undefined, // Server should handle the prompt, ideally native broker can do this part silently\n })\n .finally(() => {\n this.browserStorage.cleanRequestByState(state);\n });\n }\n // Hash contains known properties - handle and return in callback\n const currentAuthority = this.browserStorage.getCachedAuthority(state);\n if (!currentAuthority) {\n throw createBrowserAuthError(noCachedAuthorityError);\n }\n this.performanceClient.setPreQueueTime(PerformanceEvents.StandardInteractionClientCreateAuthCodeClient, cachedRequest.correlationId);\n const authClient = await this.createAuthCodeClient(serverTelemetryManager, currentAuthority);\n this.logger.verbose(\"Auth code client created\");\n ThrottlingUtils.removeThrottle(this.browserStorage, this.config.auth.clientId, cachedRequest);\n const interactionHandler = new RedirectHandler(authClient, this.browserStorage, cachedRequest, this.logger, this.browserCrypto, this.performanceClient);\n return await interactionHandler.handleCodeResponseFromHash(hash, state, authClient.authority, this.networkClient);\n }\n /**\n * Use to log out the current user, and redirect the user to the postLogoutRedirectUri.\n * Default behaviour is to redirect the user to `window.location.href`.\n * @param logoutRequest\n */\n async logout(logoutRequest) {\n this.logger.verbose(\"logoutRedirect called\");\n const validLogoutRequest = this.initializeLogoutRequest(logoutRequest);\n const serverTelemetryManager = this.initializeServerTelemetryManager(ApiId.logout);\n try {\n this.eventHandler.emitEvent(EventType.LOGOUT_START, InteractionType.Redirect, logoutRequest);\n // Clear cache on logout\n await this.clearCacheOnLogout(validLogoutRequest.account);\n const navigationOptions = {\n apiId: ApiId.logout,\n timeout: this.config.system.redirectNavigationTimeout,\n noHistory: false,\n };\n this.performanceClient.setPreQueueTime(PerformanceEvents.StandardInteractionClientCreateAuthCodeClient, validLogoutRequest.correlationId);\n const authClient = await this.createAuthCodeClient(serverTelemetryManager, logoutRequest && logoutRequest.authority);\n this.logger.verbose(\"Auth code client created\");\n if (authClient.authority.protocolMode === ProtocolMode.OIDC) {\n try {\n authClient.authority.endSessionEndpoint;\n }\n catch {\n if (validLogoutRequest.account?.homeAccountId) {\n void this.browserStorage.removeAccount(validLogoutRequest.account?.homeAccountId);\n this.eventHandler.emitEvent(EventType.LOGOUT_SUCCESS, InteractionType.Redirect, validLogoutRequest);\n return;\n }\n }\n }\n // Create logout string and navigate user window to logout.\n const logoutUri = authClient.getLogoutUri(validLogoutRequest);\n this.eventHandler.emitEvent(EventType.LOGOUT_SUCCESS, InteractionType.Redirect, validLogoutRequest);\n // Check if onRedirectNavigate is implemented, and invoke it if so\n if (logoutRequest &&\n typeof logoutRequest.onRedirectNavigate === \"function\") {\n const navigate = logoutRequest.onRedirectNavigate(logoutUri);\n if (navigate !== false) {\n this.logger.verbose(\"Logout onRedirectNavigate did not return false, navigating\");\n // Ensure interaction is in progress\n if (!this.browserStorage.getInteractionInProgress()) {\n this.browserStorage.setInteractionInProgress(true);\n }\n await this.navigationClient.navigateExternal(logoutUri, navigationOptions);\n return;\n }\n else {\n // Ensure interaction is not in progress\n this.browserStorage.setInteractionInProgress(false);\n this.logger.verbose(\"Logout onRedirectNavigate returned false, stopping navigation\");\n }\n }\n else {\n // Ensure interaction is in progress\n if (!this.browserStorage.getInteractionInProgress()) {\n this.browserStorage.setInteractionInProgress(true);\n }\n await this.navigationClient.navigateExternal(logoutUri, navigationOptions);\n return;\n }\n }\n catch (e) {\n if (e instanceof AuthError) {\n e.setCorrelationId(this.correlationId);\n serverTelemetryManager.cacheFailedRequest(e);\n }\n this.eventHandler.emitEvent(EventType.LOGOUT_FAILURE, InteractionType.Redirect, null, e);\n this.eventHandler.emitEvent(EventType.LOGOUT_END, InteractionType.Redirect);\n throw e;\n }\n this.eventHandler.emitEvent(EventType.LOGOUT_END, InteractionType.Redirect);\n }\n /**\n * Use to get the redirectStartPage either from request or use current window\n * @param requestStartPage\n */\n getRedirectStartPage(requestStartPage) {\n const redirectStartPage = requestStartPage || window.location.href;\n return UrlString.getAbsoluteUrl(redirectStartPage, BrowserUtils.getCurrentUri());\n }\n}\n\nexport { RedirectClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass NavigationClient {\n /**\n * Navigates to other pages within the same web application\n * @param url\n * @param options\n */\n navigateInternal(url, options) {\n return NavigationClient.defaultNavigateWindow(url, options);\n }\n /**\n * Navigates to other pages outside the web application i.e. the Identity Provider\n * @param url\n * @param options\n */\n navigateExternal(url, options) {\n return NavigationClient.defaultNavigateWindow(url, options);\n }\n /**\n * Default navigation implementation invoked by the internal and external functions\n * @param url\n * @param options\n */\n static defaultNavigateWindow(url, options) {\n if (options.noHistory) {\n window.location.replace(url);\n }\n else {\n window.location.assign(url);\n }\n return new Promise((resolve) => {\n setTimeout(() => {\n resolve(true);\n }, options.timeout);\n });\n }\n}\n\nexport { NavigationClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { Constants } from '@azure/msal-common';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { HTTP_REQUEST_TYPE } from '../utils/BrowserConstants.mjs';\nimport { getRequestFailed, noNetworkConnectivity, failedToParseResponse, postRequestFailed } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * This class implements the Fetch API for GET and POST requests. See more here: https://developer.mozilla.org/en-US/docs/Web/API/Fetch_API\n */\nclass FetchClient {\n /**\n * Fetch Client for REST endpoints - Get request\n * @param url\n * @param headers\n * @param body\n */\n async sendGetRequestAsync(url, options) {\n let response;\n try {\n response = await fetch(url, {\n method: HTTP_REQUEST_TYPE.GET,\n headers: this.getFetchHeaders(options),\n });\n }\n catch (e) {\n if (window.navigator.onLine) {\n throw createBrowserAuthError(getRequestFailed);\n }\n else {\n throw createBrowserAuthError(noNetworkConnectivity);\n }\n }\n try {\n return {\n headers: this.getHeaderDict(response.headers),\n body: (await response.json()),\n status: response.status,\n };\n }\n catch (e) {\n throw createBrowserAuthError(failedToParseResponse);\n }\n }\n /**\n * Fetch Client for REST endpoints - Post request\n * @param url\n * @param headers\n * @param body\n */\n async sendPostRequestAsync(url, options) {\n const reqBody = (options && options.body) || Constants.EMPTY_STRING;\n let response;\n try {\n response = await fetch(url, {\n method: HTTP_REQUEST_TYPE.POST,\n headers: this.getFetchHeaders(options),\n body: reqBody,\n });\n }\n catch (e) {\n if (window.navigator.onLine) {\n throw createBrowserAuthError(postRequestFailed);\n }\n else {\n throw createBrowserAuthError(noNetworkConnectivity);\n }\n }\n try {\n return {\n headers: this.getHeaderDict(response.headers),\n body: (await response.json()),\n status: response.status,\n };\n }\n catch (e) {\n throw createBrowserAuthError(failedToParseResponse);\n }\n }\n /**\n * Get Fetch API Headers object from string map\n * @param inputHeaders\n */\n getFetchHeaders(options) {\n const headers = new Headers();\n if (!(options && options.headers)) {\n return headers;\n }\n const optionsHeaders = options.headers;\n Object.keys(optionsHeaders).forEach((key) => {\n headers.append(key, optionsHeaders[key]);\n });\n return headers;\n }\n getHeaderDict(headers) {\n const headerDict = {};\n headers.forEach((value, key) => {\n headerDict[key] = value;\n });\n return headerDict;\n }\n}\n\nexport { FetchClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { Constants, StubPerformanceClient, ProtocolMode, Logger, createClientConfigurationError, ClientConfigurationErrorCodes, ServerResponseType, AzureCloudInstance, LogLevel, DEFAULT_SYSTEM_OPTIONS, StubbedNetworkModule } from '@azure/msal-common';\nimport { BrowserCacheLocation, BrowserConstants } from '../utils/BrowserConstants.mjs';\nimport { NavigationClient } from '../navigation/NavigationClient.mjs';\nimport { FetchClient } from '../network/FetchClient.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n// Default timeout for popup windows and iframes in milliseconds\nconst DEFAULT_POPUP_TIMEOUT_MS = 60000;\nconst DEFAULT_IFRAME_TIMEOUT_MS = 6000;\nconst DEFAULT_REDIRECT_TIMEOUT_MS = 30000;\nconst DEFAULT_NATIVE_BROKER_HANDSHAKE_TIMEOUT_MS = 2000;\n/**\n * MSAL function that sets the default options when not explicitly configured from app developer\n *\n * @param auth\n * @param cache\n * @param system\n *\n * @returns Configuration object\n */\nfunction buildConfiguration({ auth: userInputAuth, cache: userInputCache, system: userInputSystem, telemetry: userInputTelemetry, }, isBrowserEnvironment) {\n // Default auth options for browser\n const DEFAULT_AUTH_OPTIONS = {\n clientId: Constants.EMPTY_STRING,\n authority: `${Constants.DEFAULT_AUTHORITY}`,\n knownAuthorities: [],\n cloudDiscoveryMetadata: Constants.EMPTY_STRING,\n authorityMetadata: Constants.EMPTY_STRING,\n redirectUri: Constants.EMPTY_STRING,\n postLogoutRedirectUri: Constants.EMPTY_STRING,\n navigateToLoginRequestUrl: true,\n clientCapabilities: [],\n protocolMode: ProtocolMode.AAD,\n OIDCOptions: {\n serverResponseType: ServerResponseType.FRAGMENT,\n defaultScopes: [\n Constants.OPENID_SCOPE,\n Constants.PROFILE_SCOPE,\n Constants.OFFLINE_ACCESS_SCOPE,\n ],\n },\n azureCloudOptions: {\n azureCloudInstance: AzureCloudInstance.None,\n tenant: Constants.EMPTY_STRING,\n },\n skipAuthorityMetadataCache: false,\n };\n // Default cache options for browser\n const DEFAULT_CACHE_OPTIONS = {\n cacheLocation: BrowserCacheLocation.SessionStorage,\n temporaryCacheLocation: BrowserCacheLocation.SessionStorage,\n storeAuthStateInCookie: false,\n secureCookies: false,\n // Default cache migration to true if cache location is localStorage since entries are preserved across tabs/windows. Migration has little to no benefit in sessionStorage and memoryStorage\n cacheMigrationEnabled: userInputCache &&\n userInputCache.cacheLocation === BrowserCacheLocation.LocalStorage\n ? true\n : false,\n claimsBasedCachingEnabled: false,\n };\n // Default logger options for browser\n const DEFAULT_LOGGER_OPTIONS = {\n // eslint-disable-next-line @typescript-eslint/no-empty-function\n loggerCallback: () => {\n // allow users to not set logger call back\n },\n logLevel: LogLevel.Info,\n piiLoggingEnabled: false,\n };\n // Default system options for browser\n const DEFAULT_BROWSER_SYSTEM_OPTIONS = {\n ...DEFAULT_SYSTEM_OPTIONS,\n loggerOptions: DEFAULT_LOGGER_OPTIONS,\n networkClient: isBrowserEnvironment\n ? new FetchClient()\n : StubbedNetworkModule,\n navigationClient: new NavigationClient(),\n loadFrameTimeout: 0,\n // If loadFrameTimeout is provided, use that as default.\n windowHashTimeout: userInputSystem?.loadFrameTimeout || DEFAULT_POPUP_TIMEOUT_MS,\n iframeHashTimeout: userInputSystem?.loadFrameTimeout || DEFAULT_IFRAME_TIMEOUT_MS,\n navigateFrameWait: 0,\n redirectNavigationTimeout: DEFAULT_REDIRECT_TIMEOUT_MS,\n asyncPopups: false,\n allowRedirectInIframe: false,\n allowNativeBroker: false,\n nativeBrokerHandshakeTimeout: userInputSystem?.nativeBrokerHandshakeTimeout ||\n DEFAULT_NATIVE_BROKER_HANDSHAKE_TIMEOUT_MS,\n pollIntervalMilliseconds: BrowserConstants.DEFAULT_POLL_INTERVAL_MS,\n };\n const providedSystemOptions = {\n ...DEFAULT_BROWSER_SYSTEM_OPTIONS,\n ...userInputSystem,\n loggerOptions: userInputSystem?.loggerOptions || DEFAULT_LOGGER_OPTIONS,\n };\n const DEFAULT_TELEMETRY_OPTIONS = {\n application: {\n appName: Constants.EMPTY_STRING,\n appVersion: Constants.EMPTY_STRING,\n },\n client: new StubPerformanceClient(),\n };\n // Throw an error if user has set OIDCOptions without being in OIDC protocol mode\n if (userInputAuth?.protocolMode !== ProtocolMode.OIDC &&\n userInputAuth?.OIDCOptions) {\n const logger = new Logger(providedSystemOptions.loggerOptions);\n logger.warning(JSON.stringify(createClientConfigurationError(ClientConfigurationErrorCodes.cannotSetOIDCOptions)));\n }\n // Throw an error if user has set allowNativeBroker to true without being in AAD protocol mode\n if (userInputAuth?.protocolMode &&\n userInputAuth.protocolMode !== ProtocolMode.AAD &&\n providedSystemOptions?.allowNativeBroker) {\n throw createClientConfigurationError(ClientConfigurationErrorCodes.cannotAllowNativeBroker);\n }\n const overlayedConfig = {\n auth: {\n ...DEFAULT_AUTH_OPTIONS,\n ...userInputAuth,\n OIDCOptions: {\n ...DEFAULT_AUTH_OPTIONS.OIDCOptions,\n ...userInputAuth?.OIDCOptions,\n },\n },\n cache: { ...DEFAULT_CACHE_OPTIONS, ...userInputCache },\n system: providedSystemOptions,\n telemetry: { ...DEFAULT_TELEMETRY_OPTIONS, ...userInputTelemetry },\n };\n return overlayedConfig;\n}\n\nexport { DEFAULT_IFRAME_TIMEOUT_MS, DEFAULT_NATIVE_BROKER_HANDSHAKE_TIMEOUT_MS, DEFAULT_POPUP_TIMEOUT_MS, DEFAULT_REDIRECT_TIMEOUT_MS, buildConfiguration };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { PerformanceEvents, invokeAsync, Constants, UrlString } from '@azure/msal-common';\nimport { InteractionHandler } from './InteractionHandler.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { DEFAULT_IFRAME_TIMEOUT_MS } from '../config/Configuration.mjs';\nimport { emptyNavigateUri, monitorWindowTimeout, hashDoesNotContainKnownProperties, hashEmptyError } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass SilentHandler extends InteractionHandler {\n constructor(authCodeModule, storageImpl, authCodeRequest, logger, systemOptions, performanceClient) {\n super(authCodeModule, storageImpl, authCodeRequest, logger, performanceClient);\n this.navigateFrameWait = systemOptions.navigateFrameWait;\n this.pollIntervalMilliseconds = systemOptions.pollIntervalMilliseconds;\n }\n /**\n * Creates a hidden iframe to given URL using user-requested scopes as an id.\n * @param urlNavigate\n * @param userRequestScopes\n */\n async initiateAuthRequest(requestUrl) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.SilentHandlerInitiateAuthRequest, this.authCodeRequest.correlationId);\n if (!requestUrl) {\n // Throw error if request URL is empty.\n this.logger.info(\"Navigate url is empty\");\n throw createBrowserAuthError(emptyNavigateUri);\n }\n if (this.navigateFrameWait) {\n return await invokeAsync(this.loadFrame.bind(this), PerformanceEvents.SilentHandlerLoadFrame, this.logger, this.performanceClient, this.authCodeRequest.correlationId)(requestUrl);\n }\n return this.loadFrameSync(requestUrl);\n }\n /**\n * Monitors an iframe content window until it loads a url with a known hash, or hits a specified timeout.\n * @param iframe\n * @param timeout\n */\n monitorIframeForHash(iframe, timeout) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.SilentHandlerMonitorIframeForHash, this.authCodeRequest.correlationId);\n return new Promise((resolve, reject) => {\n if (timeout < DEFAULT_IFRAME_TIMEOUT_MS) {\n this.logger.warning(`system.loadFrameTimeout or system.iframeHashTimeout set to lower (${timeout}ms) than the default (${DEFAULT_IFRAME_TIMEOUT_MS}ms). This may result in timeouts.`);\n }\n /*\n * Polling for iframes can be purely timing based,\n * since we don't need to account for interaction.\n */\n const nowMark = window.performance.now();\n const timeoutMark = nowMark + timeout;\n const intervalId = setInterval(() => {\n if (window.performance.now() > timeoutMark) {\n this.removeHiddenIframe(iframe);\n clearInterval(intervalId);\n reject(createBrowserAuthError(monitorWindowTimeout));\n return;\n }\n let href = Constants.EMPTY_STRING;\n const contentWindow = iframe.contentWindow;\n try {\n /*\n * Will throw if cross origin,\n * which should be caught and ignored\n * since we need the interval to keep running while on STS UI.\n */\n href = contentWindow\n ? contentWindow.location.href\n : Constants.EMPTY_STRING;\n }\n catch (e) { }\n if (!href || href === \"about:blank\") {\n return;\n }\n const contentHash = contentWindow\n ? contentWindow.location.hash\n : Constants.EMPTY_STRING;\n if (contentHash) {\n if (UrlString.hashContainsKnownProperties(contentHash)) {\n // Success case\n this.removeHiddenIframe(iframe);\n clearInterval(intervalId);\n resolve(contentHash);\n return;\n }\n else {\n // Hash is present but incorrect\n this.logger.error(\"SilentHandler:monitorIFrameForHash - a hash is present in the iframe but it does not contain known properties. It's likely that the hash has been replaced by code running on the redirectUri page.\");\n this.logger.errorPii(`SilentHandler:monitorIFrameForHash - the url detected in the iframe is: ${href}`);\n this.removeHiddenIframe(iframe);\n clearInterval(intervalId);\n reject(createBrowserAuthError(hashDoesNotContainKnownProperties));\n return;\n }\n }\n else {\n // No hash is present\n this.logger.error(\"SilentHandler:monitorIFrameForHash - the request has returned to the redirectUri but a hash is not present in the iframe. It's likely that the hash has been removed or the page has been redirected by code running on the redirectUri page.\");\n this.logger.errorPii(`SilentHandler:monitorIFrameForHash - the url detected in the iframe is: ${href}`);\n this.removeHiddenIframe(iframe);\n clearInterval(intervalId);\n reject(createBrowserAuthError(hashEmptyError));\n return;\n }\n }, this.pollIntervalMilliseconds);\n });\n }\n /**\n * @hidden\n * Loads iframe with authorization endpoint URL\n * @ignore\n */\n loadFrame(urlNavigate) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.SilentHandlerLoadFrame, this.authCodeRequest.correlationId);\n /*\n * This trick overcomes iframe navigation in IE\n * IE does not load the page consistently in iframe\n */\n return new Promise((resolve, reject) => {\n const frameHandle = this.createHiddenIframe();\n setTimeout(() => {\n if (!frameHandle) {\n reject(\"Unable to load iframe\");\n return;\n }\n frameHandle.src = urlNavigate;\n resolve(frameHandle);\n }, this.navigateFrameWait);\n });\n }\n /**\n * @hidden\n * Loads the iframe synchronously when the navigateTimeFrame is set to `0`\n * @param urlNavigate\n * @param frameName\n * @param logger\n */\n loadFrameSync(urlNavigate) {\n const frameHandle = this.createHiddenIframe();\n frameHandle.src = urlNavigate;\n return frameHandle;\n }\n /**\n * @hidden\n * Creates a new hidden iframe or gets an existing one for silent token renewal.\n * @ignore\n */\n createHiddenIframe() {\n const authFrame = document.createElement(\"iframe\");\n authFrame.style.visibility = \"hidden\";\n authFrame.style.position = \"absolute\";\n authFrame.style.width = authFrame.style.height = \"0\";\n authFrame.style.border = \"0\";\n authFrame.setAttribute(\"sandbox\", \"allow-scripts allow-same-origin allow-forms\");\n document.getElementsByTagName(\"body\")[0].appendChild(authFrame);\n return authFrame;\n }\n /**\n * @hidden\n * Removes a hidden iframe from the page.\n * @ignore\n */\n removeHiddenIframe(iframe) {\n if (document.body === iframe.parentNode) {\n document.body.removeChild(iframe);\n }\n }\n}\n\nexport { SilentHandler };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { PerformanceEvents, PromptValue, invokeAsync, Constants, AuthError, UrlString, ProtocolUtils } from '@azure/msal-common';\nimport { StandardInteractionClient } from './StandardInteractionClient.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { InteractionType } from '../utils/BrowserConstants.mjs';\nimport { SilentHandler } from '../interaction_handler/SilentHandler.mjs';\nimport { NativeMessageHandler } from '../broker/nativeBroker/NativeMessageHandler.mjs';\nimport { NativeInteractionClient } from './NativeInteractionClient.mjs';\nimport { silentPromptValueError, silentLogoutUnsupported, nativeConnectionNotEstablished } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass SilentIframeClient extends StandardInteractionClient {\n constructor(config, storageImpl, browserCrypto, logger, eventHandler, navigationClient, apiId, performanceClient, nativeStorageImpl, nativeMessageHandler, correlationId) {\n super(config, storageImpl, browserCrypto, logger, eventHandler, navigationClient, performanceClient, nativeMessageHandler, correlationId);\n this.apiId = apiId;\n this.nativeStorage = nativeStorageImpl;\n }\n /**\n * Acquires a token silently by opening a hidden iframe to the /authorize endpoint with prompt=none or prompt=no_session\n * @param request\n */\n async acquireToken(request) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.SilentIframeClientAcquireToken, request.correlationId);\n // Check that we have some SSO data\n if (!request.loginHint &&\n !request.sid &&\n (!request.account || !request.account.username)) {\n this.logger.warning(\"No user hint provided. The authorization server may need more information to complete this request.\");\n }\n // Check that prompt is set to none or no_session, throw error if it is set to anything else.\n if (request.prompt &&\n request.prompt !== PromptValue.NONE &&\n request.prompt !== PromptValue.NO_SESSION) {\n throw createBrowserAuthError(silentPromptValueError);\n }\n // Create silent request\n const silentRequest = await invokeAsync(this.initializeAuthorizationRequest.bind(this), PerformanceEvents.StandardInteractionClientInitializeAuthorizationRequest, this.logger, this.performanceClient, request.correlationId)({\n ...request,\n prompt: request.prompt || PromptValue.NONE,\n }, InteractionType.Silent);\n this.browserStorage.updateCacheEntries(silentRequest.state, silentRequest.nonce, silentRequest.authority, silentRequest.loginHint || Constants.EMPTY_STRING, silentRequest.account || null);\n const serverTelemetryManager = this.initializeServerTelemetryManager(this.apiId);\n try {\n // Initialize the client\n const authClient = await invokeAsync(this.createAuthCodeClient.bind(this), PerformanceEvents.StandardInteractionClientCreateAuthCodeClient, this.logger, this.performanceClient, request.correlationId)(serverTelemetryManager, silentRequest.authority, silentRequest.azureCloudOptions);\n return await invokeAsync(this.silentTokenHelper.bind(this), PerformanceEvents.SilentIframeClientTokenHelper, this.logger, this.performanceClient, request.correlationId)(authClient, silentRequest);\n }\n catch (e) {\n if (e instanceof AuthError) {\n e.setCorrelationId(this.correlationId);\n serverTelemetryManager.cacheFailedRequest(e);\n }\n this.browserStorage.cleanRequestByState(silentRequest.state);\n throw e;\n }\n }\n /**\n * Currently Unsupported\n */\n logout() {\n // Synchronous so we must reject\n return Promise.reject(createBrowserAuthError(silentLogoutUnsupported));\n }\n /**\n * Helper which acquires an authorization code silently using a hidden iframe from given url\n * using the scopes requested as part of the id, and exchanges the code for a set of OAuth tokens.\n * @param navigateUrl\n * @param userRequestScopes\n */\n async silentTokenHelper(authClient, silentRequest) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.SilentIframeClientTokenHelper, silentRequest.correlationId);\n // Create auth code request and generate PKCE params\n const authCodeRequest = await invokeAsync(this.initializeAuthorizationCodeRequest.bind(this), PerformanceEvents.StandardInteractionClientInitializeAuthorizationCodeRequest, this.logger, this.performanceClient, silentRequest.correlationId)(silentRequest);\n // Create authorize request url\n const navigateUrl = await invokeAsync(authClient.getAuthCodeUrl.bind(authClient), PerformanceEvents.GetAuthCodeUrl, this.logger, this.performanceClient, silentRequest.correlationId)({\n ...silentRequest,\n nativeBroker: NativeMessageHandler.isNativeAvailable(this.config, this.logger, this.nativeMessageHandler, silentRequest.authenticationScheme),\n });\n // Create silent handler\n const silentHandler = new SilentHandler(authClient, this.browserStorage, authCodeRequest, this.logger, this.config.system, this.performanceClient);\n // Get the frame handle for the silent request\n const msalFrame = await invokeAsync(silentHandler.initiateAuthRequest.bind(silentHandler), PerformanceEvents.SilentHandlerInitiateAuthRequest, this.logger, this.performanceClient, silentRequest.correlationId)(navigateUrl);\n // Monitor the window for the hash. Return the string value and close the popup when the hash is received. Default timeout is 60 seconds.\n const hash = await invokeAsync(silentHandler.monitorIframeForHash.bind(silentHandler), PerformanceEvents.SilentHandlerMonitorIframeForHash, this.logger, this.performanceClient, silentRequest.correlationId)(msalFrame, this.config.system.iframeHashTimeout);\n // Deserialize hash fragment response parameters.\n const serverParams = UrlString.getDeserializedHash(hash);\n const state = this.validateAndExtractStateFromHash(serverParams, InteractionType.Silent, authCodeRequest.correlationId);\n if (serverParams.accountId) {\n this.logger.verbose(\"Account id found in hash, calling WAM for token\");\n if (!this.nativeMessageHandler) {\n throw createBrowserAuthError(nativeConnectionNotEstablished);\n }\n const nativeInteractionClient = new NativeInteractionClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, this.apiId, this.performanceClient, this.nativeMessageHandler, serverParams.accountId, this.browserStorage, this.correlationId);\n const { userRequestState } = ProtocolUtils.parseRequestState(this.browserCrypto, state);\n return invokeAsync(nativeInteractionClient.acquireToken.bind(nativeInteractionClient), PerformanceEvents.NativeInteractionClientAcquireToken, this.logger, this.performanceClient, silentRequest.correlationId)({\n ...silentRequest,\n state: userRequestState,\n prompt: silentRequest.prompt || PromptValue.NONE,\n }).finally(() => {\n this.browserStorage.cleanRequestByState(state);\n });\n }\n // Handle response from hash string\n return invokeAsync(silentHandler.handleCodeResponseFromHash.bind(silentHandler), PerformanceEvents.HandleCodeResponseFromHash, this.logger, this.performanceClient, silentRequest.correlationId)(hash, state, authClient.authority, this.networkClient);\n }\n}\n\nexport { SilentIframeClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { StandardInteractionClient } from './StandardInteractionClient.mjs';\nimport { PerformanceEvents, invokeAsync, RefreshTokenClient } from '@azure/msal-common';\nimport { ApiId } from '../utils/BrowserConstants.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { silentLogoutUnsupported } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass SilentRefreshClient extends StandardInteractionClient {\n /**\n * Exchanges the refresh token for new tokens\n * @param request\n */\n async acquireToken(request) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.SilentRefreshClientAcquireToken, request.correlationId);\n const baseRequest = await invokeAsync(this.initializeBaseRequest.bind(this), PerformanceEvents.InitializeBaseRequest, this.logger, this.performanceClient, request.correlationId)(request, request.account);\n const silentRequest = {\n ...request,\n ...baseRequest,\n };\n const serverTelemetryManager = this.initializeServerTelemetryManager(ApiId.acquireTokenSilent_silentFlow);\n const refreshTokenClient = await this.createRefreshTokenClient(serverTelemetryManager, silentRequest.authority, silentRequest.azureCloudOptions);\n this.logger.verbose(\"Refresh token client created\");\n // Send request to renew token. Auth module will throw errors if token cannot be renewed.\n return invokeAsync(refreshTokenClient.acquireTokenByRefreshToken.bind(refreshTokenClient), PerformanceEvents.RefreshTokenClientAcquireTokenByRefreshToken, this.logger, this.performanceClient, request.correlationId)(silentRequest)\n .then((result) => result)\n .then((result) => {\n this.performanceClient.addFields({\n fromCache: result.fromCache,\n requestId: result.requestId,\n }, request.correlationId);\n return result;\n })\n .catch((e) => {\n e.setCorrelationId(this.correlationId);\n serverTelemetryManager.cacheFailedRequest(e);\n throw e;\n });\n }\n /**\n * Currently Unsupported\n */\n logout() {\n // Synchronous so we must reject\n return Promise.reject(createBrowserAuthError(silentLogoutUnsupported));\n }\n /**\n * Creates a Refresh Client with the given authority, or the default authority.\n * @param serverTelemetryManager\n * @param authorityUrl\n */\n async createRefreshTokenClient(serverTelemetryManager, authorityUrl, azureCloudOptions) {\n // Create auth module.\n const clientConfig = await invokeAsync(this.getClientConfiguration.bind(this), PerformanceEvents.StandardInteractionClientGetClientConfiguration, this.logger, this.performanceClient, this.correlationId)(serverTelemetryManager, authorityUrl, azureCloudOptions);\n return new RefreshTokenClient(clientConfig, this.performanceClient);\n }\n}\n\nexport { SilentRefreshClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { AuthToken, AccountEntity, CacheRecord, Authority, IdTokenEntity, ScopeSet, AccessTokenEntity, RefreshTokenEntity, Constants } from '@azure/msal-common';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { base64Decode } from '../encode/Base64Decode.mjs';\nimport { unableToLoadToken } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\n/**\n * Token cache manager\n */\nclass TokenCache {\n constructor(configuration, storage, logger, cryptoObj) {\n this.isBrowserEnvironment = typeof window !== \"undefined\";\n this.config = configuration;\n this.storage = storage;\n this.logger = logger;\n this.cryptoObj = cryptoObj;\n }\n // Move getAllAccounts here and cache utility APIs\n /**\n * API to load tokens to msal-browser cache.\n * @param request\n * @param response\n * @param options\n * @returns `AuthenticationResult` for the response that was loaded.\n */\n loadExternalTokens(request, response, options) {\n this.logger.info(\"TokenCache - loadExternalTokens called\");\n if (!response.id_token) {\n throw createBrowserAuthError(unableToLoadToken);\n }\n const idTokenClaims = AuthToken.extractTokenClaims(response.id_token, base64Decode);\n let cacheRecord;\n let authority;\n let cacheRecordAccount;\n if (request.account) {\n cacheRecordAccount = AccountEntity.createFromAccountInfo(request.account);\n cacheRecord = new CacheRecord(cacheRecordAccount, this.loadIdToken(response.id_token, cacheRecordAccount.homeAccountId, request.account.environment, request.account.tenantId), this.loadAccessToken(request, response, cacheRecordAccount.homeAccountId, request.account.environment, request.account.tenantId, options), this.loadRefreshToken(request, response, cacheRecordAccount.homeAccountId, request.account.environment));\n }\n else if (request.authority) {\n const authorityUrl = Authority.generateAuthority(request.authority, request.azureCloudOptions);\n const authorityOptions = {\n protocolMode: this.config.auth.protocolMode,\n knownAuthorities: this.config.auth.knownAuthorities,\n cloudDiscoveryMetadata: this.config.auth.cloudDiscoveryMetadata,\n authorityMetadata: this.config.auth.authorityMetadata,\n skipAuthorityMetadataCache: this.config.auth.skipAuthorityMetadataCache,\n };\n authority = new Authority(authorityUrl, this.config.system.networkClient, this.storage, authorityOptions, this.logger);\n // \"clientInfo\" from options takes precedence over \"clientInfo\" in response\n if (options.clientInfo) {\n this.logger.trace(\"TokenCache - homeAccountId from options\");\n cacheRecordAccount = this.loadAccount(idTokenClaims, authority, options.clientInfo);\n cacheRecord = new CacheRecord(cacheRecordAccount, this.loadIdToken(response.id_token, cacheRecordAccount.homeAccountId, authority.hostnameAndPort, authority.tenant), this.loadAccessToken(request, response, cacheRecordAccount.homeAccountId, authority.hostnameAndPort, authority.tenant, options), this.loadRefreshToken(request, response, cacheRecordAccount.homeAccountId, authority.hostnameAndPort));\n }\n else if (response.client_info) {\n this.logger.trace(\"TokenCache - homeAccountId from response\");\n cacheRecordAccount = this.loadAccount(idTokenClaims, authority, response.client_info);\n cacheRecord = new CacheRecord(cacheRecordAccount, this.loadIdToken(response.id_token, cacheRecordAccount.homeAccountId, authority.hostnameAndPort, authority.tenant), this.loadAccessToken(request, response, cacheRecordAccount.homeAccountId, authority.hostnameAndPort, authority.tenant, options), this.loadRefreshToken(request, response, cacheRecordAccount.homeAccountId, authority.hostnameAndPort));\n }\n else {\n throw createBrowserAuthError(unableToLoadToken);\n }\n }\n else {\n throw createBrowserAuthError(unableToLoadToken);\n }\n return this.generateAuthenticationResult(request, idTokenClaims, cacheRecord, cacheRecordAccount, authority);\n }\n /**\n * Helper function to load account to msal-browser cache\n * @param idToken\n * @param environment\n * @param clientInfo\n * @param authorityType\n * @param requestHomeAccountId\n * @returns `AccountEntity`\n */\n loadAccount(idTokenClaims, authority, clientInfo, requestHomeAccountId) {\n let homeAccountId;\n if (requestHomeAccountId) {\n homeAccountId = requestHomeAccountId;\n }\n else if (authority.authorityType !== undefined && clientInfo) {\n homeAccountId = AccountEntity.generateHomeAccountId(clientInfo, authority.authorityType, this.logger, this.cryptoObj, idTokenClaims);\n }\n if (!homeAccountId) {\n throw createBrowserAuthError(unableToLoadToken);\n }\n const accountEntity = AccountEntity.createAccount({\n homeAccountId,\n idTokenClaims: idTokenClaims,\n clientInfo,\n environment: authority.hostnameAndPort,\n }, authority);\n if (this.isBrowserEnvironment) {\n this.logger.verbose(\"TokenCache - loading account\");\n this.storage.setAccount(accountEntity);\n return accountEntity;\n }\n else {\n throw createBrowserAuthError(unableToLoadToken);\n }\n }\n /**\n * Helper function to load id tokens to msal-browser cache\n * @param idToken\n * @param homeAccountId\n * @param environment\n * @param tenantId\n * @returns `IdTokenEntity`\n */\n loadIdToken(idToken, homeAccountId, environment, tenantId) {\n const idTokenEntity = IdTokenEntity.createIdTokenEntity(homeAccountId, environment, idToken, this.config.auth.clientId, tenantId);\n if (this.isBrowserEnvironment) {\n this.logger.verbose(\"TokenCache - loading id token\");\n this.storage.setIdTokenCredential(idTokenEntity);\n return idTokenEntity;\n }\n else {\n throw createBrowserAuthError(unableToLoadToken);\n }\n }\n /**\n * Helper function to load access tokens to msal-browser cache\n * @param request\n * @param response\n * @param homeAccountId\n * @param environment\n * @param tenantId\n * @returns `AccessTokenEntity`\n */\n loadAccessToken(request, response, homeAccountId, environment, tenantId, options) {\n if (!response.access_token) {\n this.logger.verbose(\"TokenCache - No access token provided for caching\");\n return null;\n }\n if (!response.expires_in) {\n throw createBrowserAuthError(unableToLoadToken);\n }\n if (!options.extendedExpiresOn) {\n throw createBrowserAuthError(unableToLoadToken);\n }\n const scopes = new ScopeSet(request.scopes).printScopes();\n const expiresOn = options.expiresOn ||\n response.expires_in + new Date().getTime() / 1000;\n const extendedExpiresOn = options.extendedExpiresOn;\n const accessTokenEntity = AccessTokenEntity.createAccessTokenEntity(homeAccountId, environment, response.access_token, this.config.auth.clientId, tenantId, scopes, expiresOn, extendedExpiresOn, this.cryptoObj);\n if (this.isBrowserEnvironment) {\n this.logger.verbose(\"TokenCache - loading access token\");\n this.storage.setAccessTokenCredential(accessTokenEntity);\n return accessTokenEntity;\n }\n else {\n throw createBrowserAuthError(unableToLoadToken);\n }\n }\n /**\n * Helper function to load refresh tokens to msal-browser cache\n * @param request\n * @param response\n * @param homeAccountId\n * @param environment\n * @returns `RefreshTokenEntity`\n */\n loadRefreshToken(request, response, homeAccountId, environment) {\n if (!response.refresh_token) {\n this.logger.verbose(\"TokenCache - No refresh token provided for caching\");\n return null;\n }\n const refreshTokenEntity = RefreshTokenEntity.createRefreshTokenEntity(homeAccountId, environment, response.refresh_token, this.config.auth.clientId);\n if (this.isBrowserEnvironment) {\n this.logger.verbose(\"TokenCache - loading refresh token\");\n this.storage.setRefreshTokenCredential(refreshTokenEntity);\n return refreshTokenEntity;\n }\n else {\n throw createBrowserAuthError(unableToLoadToken);\n }\n }\n /**\n * Helper function to generate an `AuthenticationResult` for the result.\n * @param request\n * @param idTokenObj\n * @param cacheRecord\n * @param authority\n * @returns `AuthenticationResult`\n */\n generateAuthenticationResult(request, idTokenClaims, cacheRecord, accountEntity, authority) {\n let accessToken = Constants.EMPTY_STRING;\n let responseScopes = [];\n let expiresOn = null;\n let extExpiresOn;\n if (cacheRecord?.accessToken) {\n accessToken = cacheRecord.accessToken.secret;\n responseScopes = ScopeSet.fromString(cacheRecord.accessToken.target).asArray();\n expiresOn = new Date(Number(cacheRecord.accessToken.expiresOn) * 1000);\n extExpiresOn = new Date(Number(cacheRecord.accessToken.extendedExpiresOn) * 1000);\n }\n const uid = idTokenClaims.oid || idTokenClaims.sub || Constants.EMPTY_STRING;\n const tid = idTokenClaims.tid || Constants.EMPTY_STRING;\n return {\n authority: authority\n ? authority.canonicalAuthority\n : Constants.EMPTY_STRING,\n uniqueId: uid,\n tenantId: tid,\n scopes: responseScopes,\n account: accountEntity.getAccountInfo(),\n idToken: cacheRecord.idToken?.secret || \"\",\n idTokenClaims: idTokenClaims || {},\n accessToken: accessToken,\n fromCache: true,\n expiresOn: expiresOn,\n correlationId: request.correlationId || Constants.EMPTY_STRING,\n requestId: Constants.EMPTY_STRING,\n extExpiresOn: extExpiresOn,\n familyId: Constants.EMPTY_STRING,\n tokenType: cacheRecord?.accessToken?.tokenType || Constants.EMPTY_STRING,\n state: Constants.EMPTY_STRING,\n cloudGraphHostName: accountEntity.cloudGraphHostName || Constants.EMPTY_STRING,\n msGraphHost: accountEntity.msGraphHost || Constants.EMPTY_STRING,\n code: undefined,\n fromNativeBroker: false,\n };\n }\n}\n\nexport { TokenCache };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { AuthorizationCodeClient } from '@azure/msal-common';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass HybridSpaAuthorizationCodeClient extends AuthorizationCodeClient {\n constructor(config) {\n super(config);\n this.includeRedirectUri = false;\n }\n}\n\nexport { HybridSpaAuthorizationCodeClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { invokeAsync, PerformanceEvents, Constants, AuthError } from '@azure/msal-common';\nimport { StandardInteractionClient } from './StandardInteractionClient.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { InteractionType } from '../utils/BrowserConstants.mjs';\nimport { SilentHandler } from '../interaction_handler/SilentHandler.mjs';\nimport { HybridSpaAuthorizationCodeClient } from './HybridSpaAuthorizationCodeClient.mjs';\nimport { authCodeRequired, silentLogoutUnsupported } from '../error/BrowserAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass SilentAuthCodeClient extends StandardInteractionClient {\n constructor(config, storageImpl, browserCrypto, logger, eventHandler, navigationClient, apiId, performanceClient, nativeMessageHandler, correlationId) {\n super(config, storageImpl, browserCrypto, logger, eventHandler, navigationClient, performanceClient, nativeMessageHandler, correlationId);\n this.apiId = apiId;\n }\n /**\n * Acquires a token silently by redeeming an authorization code against the /token endpoint\n * @param request\n */\n async acquireToken(request) {\n // Auth code payload is required\n if (!request.code) {\n throw createBrowserAuthError(authCodeRequired);\n }\n // Create silent request\n const silentRequest = await invokeAsync(this.initializeAuthorizationRequest.bind(this), PerformanceEvents.StandardInteractionClientInitializeAuthorizationRequest, this.logger, this.performanceClient, request.correlationId)(request, InteractionType.Silent);\n this.browserStorage.updateCacheEntries(silentRequest.state, silentRequest.nonce, silentRequest.authority, silentRequest.loginHint || Constants.EMPTY_STRING, silentRequest.account || null);\n const serverTelemetryManager = this.initializeServerTelemetryManager(this.apiId);\n try {\n // Create auth code request (PKCE not needed)\n const authCodeRequest = {\n ...silentRequest,\n code: request.code,\n };\n // Initialize the client\n const clientConfig = await invokeAsync(this.getClientConfiguration.bind(this), PerformanceEvents.StandardInteractionClientGetClientConfiguration, this.logger, this.performanceClient, request.correlationId)(serverTelemetryManager, silentRequest.authority);\n const authClient = new HybridSpaAuthorizationCodeClient(clientConfig);\n this.logger.verbose(\"Auth code client created\");\n // Create silent handler\n const silentHandler = new SilentHandler(authClient, this.browserStorage, authCodeRequest, this.logger, this.config.system, this.performanceClient);\n // Handle auth code parameters from request\n return invokeAsync(silentHandler.handleCodeResponseFromServer.bind(silentHandler), PerformanceEvents.HandleCodeResponseFromServer, this.logger, this.performanceClient, request.correlationId)({\n code: request.code,\n msgraph_host: request.msGraphHost,\n cloud_graph_host_name: request.cloudGraphHostName,\n cloud_instance_host_name: request.cloudInstanceHostName,\n }, silentRequest.state, authClient.authority, this.networkClient, false);\n }\n catch (e) {\n if (e instanceof AuthError) {\n e.setCorrelationId(this.correlationId);\n serverTelemetryManager.cacheFailedRequest(e);\n }\n this.browserStorage.cleanRequestByState(silentRequest.state);\n throw e;\n }\n }\n /**\n * Currently Unsupported\n */\n logout() {\n // Synchronous so we must reject\n return Promise.reject(createBrowserAuthError(silentLogoutUnsupported));\n }\n}\n\nexport { SilentAuthCodeClient };\n\n","/*! @azure/msal-browser v3.2.0 2023-10-05 */\n'use strict';\nimport { CryptoOps } from '../crypto/CryptoOps.mjs';\nimport { DEFAULT_CRYPTO_IMPLEMENTATION, PerformanceEvents, invokeAsync, ServerResponseType, UrlString, Constants, InteractionRequiredAuthError, AuthError, createClientAuthError, ClientAuthErrorCodes, AccountEntity, PromptValue, ServerError } from '@azure/msal-common';\nimport { BrowserCacheManager, DEFAULT_BROWSER_CACHE_MANAGER } from '../cache/BrowserCacheManager.mjs';\nimport { InteractionType, ApiId, TemporaryCacheKeys, CacheLookupPolicy, BrowserCacheLocation, DEFAULT_REQUEST, BrowserConstants } from '../utils/BrowserConstants.mjs';\nimport { BrowserUtils } from '../utils/BrowserUtils.mjs';\nimport { EventType } from '../event/EventType.mjs';\nimport { createBrowserConfigurationAuthError } from '../error/BrowserConfigurationAuthError.mjs';\nimport { EventHandler } from '../event/EventHandler.mjs';\nimport { PopupClient } from '../interaction_client/PopupClient.mjs';\nimport { RedirectClient } from '../interaction_client/RedirectClient.mjs';\nimport { SilentIframeClient } from '../interaction_client/SilentIframeClient.mjs';\nimport { SilentRefreshClient } from '../interaction_client/SilentRefreshClient.mjs';\nimport { TokenCache } from '../cache/TokenCache.mjs';\nimport { NativeInteractionClient } from '../interaction_client/NativeInteractionClient.mjs';\nimport { NativeMessageHandler } from '../broker/nativeBroker/NativeMessageHandler.mjs';\nimport { NativeAuthError, isFatalNativeAuthError } from '../error/NativeAuthError.mjs';\nimport { SilentCacheClient } from '../interaction_client/SilentCacheClient.mjs';\nimport { SilentAuthCodeClient } from '../interaction_client/SilentAuthCodeClient.mjs';\nimport { createBrowserAuthError } from '../error/BrowserAuthError.mjs';\nimport { createNewGuid } from '../crypto/BrowserCrypto.mjs';\nimport { spaCodeAndNativeAccountIdPresent, unableToAcquireTokenFromNativePlatform, authCodeOrNativeAccountIdRequired, nativeConnectionNotEstablished, noAccountError } from '../error/BrowserAuthErrorCodes.mjs';\nimport { inMemRedirectUnavailable } from '../error/BrowserConfigurationAuthErrorCodes.mjs';\n\n/*\n * Copyright (c) Microsoft Corporation. All rights reserved.\n * Licensed under the MIT License.\n */\nclass StandardController {\n /**\n * @constructor\n * Constructor for the PublicClientApplication used to instantiate the PublicClientApplication object\n *\n * Important attributes in the Configuration object for auth are:\n * - clientID: the application ID of your application. You can obtain one by registering your application with our Application registration portal : https://portal.azure.com/#blade/Microsoft_AAD_IAM/ActiveDirectoryMenuBlade/RegisteredAppsPreview\n * - authority: the authority URL for your application.\n * - redirect_uri: the uri of your application registered in the portal.\n *\n * In Azure AD, authority is a URL indicating the Azure active directory that MSAL uses to obtain tokens.\n * It is of the form https://login.microsoftonline.com/{Enter_the_Tenant_Info_Here}\n * If your application supports Accounts in one organizational directory, replace \"Enter_the_Tenant_Info_Here\" value with the Tenant Id or Tenant name (for example, contoso.microsoft.com).\n * If your application supports Accounts in any organizational directory, replace \"Enter_the_Tenant_Info_Here\" value with organizations.\n * If your application supports Accounts in any organizational directory and personal Microsoft accounts, replace \"Enter_the_Tenant_Info_Here\" value with common.\n * To restrict support to Personal Microsoft accounts only, replace \"Enter_the_Tenant_Info_Here\" value with consumers.\n *\n * In Azure B2C, authority is of the form https://{instance}/tfp/{tenant}/{policyName}/\n * Full B2C functionality will be available in this library in future versions.\n *\n * @param configuration Object for the MSAL PublicClientApplication instance\n */\n constructor(operatingContext) {\n this.atsAsyncMeasurement = undefined;\n this.operatingContext = operatingContext;\n this.isBrowserEnvironment =\n this.operatingContext.isBrowserEnvironment();\n // Set the configuration.\n this.config = operatingContext.getConfig();\n this.initialized = false;\n // Initialize logger\n this.logger = this.operatingContext.getLogger();\n // Initialize the network module class.\n this.networkClient = this.config.system.networkClient;\n // Initialize the navigation client class.\n this.navigationClient = this.config.system.navigationClient;\n // Initialize redirectResponse Map\n this.redirectResponse = new Map();\n // Initial hybrid spa map\n this.hybridAuthCodeResponses = new Map();\n // Initialize performance client\n this.performanceClient = this.config.telemetry.client;\n // Initialize the crypto class.\n this.browserCrypto = this.isBrowserEnvironment\n ? new CryptoOps(this.logger, this.performanceClient)\n : DEFAULT_CRYPTO_IMPLEMENTATION;\n this.eventHandler = new EventHandler(this.logger, this.browserCrypto);\n // Initialize the browser storage class.\n this.browserStorage = this.isBrowserEnvironment\n ? new BrowserCacheManager(this.config.auth.clientId, this.config.cache, this.browserCrypto, this.logger)\n : DEFAULT_BROWSER_CACHE_MANAGER(this.config.auth.clientId, this.logger);\n // initialize in memory storage for native flows\n const nativeCacheOptions = {\n cacheLocation: BrowserCacheLocation.MemoryStorage,\n temporaryCacheLocation: BrowserCacheLocation.MemoryStorage,\n storeAuthStateInCookie: false,\n secureCookies: false,\n cacheMigrationEnabled: false,\n claimsBasedCachingEnabled: false,\n };\n this.nativeInternalStorage = new BrowserCacheManager(this.config.auth.clientId, nativeCacheOptions, this.browserCrypto, this.logger);\n // Initialize the token cache\n this.tokenCache = new TokenCache(this.config, this.browserStorage, this.logger, this.browserCrypto);\n this.activeSilentTokenRequests = new Map();\n // Register listener functions\n this.trackPageVisibility = this.trackPageVisibility.bind(this);\n // Register listener functions\n this.trackPageVisibilityWithMeasurement =\n this.trackPageVisibilityWithMeasurement.bind(this);\n }\n static async createController(operatingContext) {\n const controller = new StandardController(operatingContext);\n await controller.initialize();\n return controller;\n }\n trackPageVisibility() {\n if (!this.atsAsyncMeasurement) {\n return;\n }\n this.logger.info(\"Perf: Visibility change detected\");\n this.atsAsyncMeasurement.increment({\n visibilityChangeCount: 1,\n });\n }\n /**\n * Initializer function to perform async startup tasks such as connecting to WAM extension\n */\n async initialize() {\n this.logger.trace(\"initialize called\");\n if (this.initialized) {\n this.logger.info(\"initialize has already been called, exiting early.\");\n return;\n }\n const allowNativeBroker = this.config.system.allowNativeBroker;\n const initMeasurement = this.performanceClient.startMeasurement(PerformanceEvents.InitializeClientApplication);\n this.eventHandler.emitEvent(EventType.INITIALIZE_START);\n if (allowNativeBroker) {\n try {\n this.nativeExtensionProvider =\n await NativeMessageHandler.createProvider(this.logger, this.config.system.nativeBrokerHandshakeTimeout, this.performanceClient);\n }\n catch (e) {\n this.logger.verbose(e);\n }\n }\n if (!this.config.cache.claimsBasedCachingEnabled) {\n this.logger.verbose(\"Claims-based caching is disabled. Clearing the previous cache with claims\");\n await invokeAsync(this.browserStorage.clearTokensAndKeysWithClaims.bind(this.browserStorage), PerformanceEvents.ClearTokensAndKeysWithClaims, this.logger, this.performanceClient)(this.performanceClient);\n }\n this.initialized = true;\n this.eventHandler.emitEvent(EventType.INITIALIZE_END);\n initMeasurement.end({ allowNativeBroker, success: true });\n }\n // #region Redirect Flow\n /**\n * Event handler function which allows users to fire events after the PublicClientApplication object\n * has loaded during redirect flows. This should be invoked on all page loads involved in redirect\n * auth flows.\n * @param hash Hash to process. Defaults to the current value of window.location.hash. Only needs to be provided explicitly if the response to be handled is not contained in the current value.\n * @returns Token response or null. If the return value is null, then no auth redirect was detected.\n */\n async handleRedirectPromise(hash) {\n this.logger.verbose(\"handleRedirectPromise called\");\n // Block token acquisition before initialize has been called\n BrowserUtils.blockAPICallsBeforeInitialize(this.initialized);\n let foundServerResponse = hash;\n if (this.config.auth.OIDCOptions?.serverResponseType ===\n ServerResponseType.QUERY) {\n const url = window.location.href;\n foundServerResponse = UrlString.parseQueryServerResponse(url);\n }\n const loggedInAccounts = this.getAllAccounts();\n if (this.isBrowserEnvironment) {\n /**\n * Store the promise on the PublicClientApplication instance if this is the first invocation of handleRedirectPromise,\n * otherwise return the promise from the first invocation. Prevents race conditions when handleRedirectPromise is called\n * several times concurrently.\n */\n const redirectResponseKey = foundServerResponse || Constants.EMPTY_STRING;\n let response = this.redirectResponse.get(redirectResponseKey);\n if (typeof response === \"undefined\") {\n this.eventHandler.emitEvent(EventType.HANDLE_REDIRECT_START, InteractionType.Redirect);\n this.logger.verbose(\"handleRedirectPromise has been called for the first time, storing the promise\");\n const request = this.browserStorage.getCachedNativeRequest();\n let redirectResponse;\n if (request &&\n NativeMessageHandler.isNativeAvailable(this.config, this.logger, this.nativeExtensionProvider) &&\n this.nativeExtensionProvider &&\n !foundServerResponse) {\n this.logger.trace(\"handleRedirectPromise - acquiring token from native platform\");\n const nativeClient = new NativeInteractionClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, ApiId.handleRedirectPromise, this.performanceClient, this.nativeExtensionProvider, request.accountId, this.nativeInternalStorage, request.correlationId);\n redirectResponse = nativeClient.handleRedirectPromise();\n }\n else {\n this.logger.trace(\"handleRedirectPromise - acquiring token from web flow\");\n const correlationId = this.browserStorage.getTemporaryCache(TemporaryCacheKeys.CORRELATION_ID, true) || Constants.EMPTY_STRING;\n const redirectClient = this.createRedirectClient(correlationId);\n redirectResponse =\n redirectClient.handleRedirectPromise(foundServerResponse);\n }\n response = redirectResponse\n .then((result) => {\n if (result) {\n // Emit login event if number of accounts change\n const isLoggingIn = loggedInAccounts.length <\n this.getAllAccounts().length;\n if (isLoggingIn) {\n this.eventHandler.emitEvent(EventType.LOGIN_SUCCESS, InteractionType.Redirect, result);\n this.logger.verbose(\"handleRedirectResponse returned result, login success\");\n }\n else {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_SUCCESS, InteractionType.Redirect, result);\n this.logger.verbose(\"handleRedirectResponse returned result, acquire token success\");\n }\n }\n this.eventHandler.emitEvent(EventType.HANDLE_REDIRECT_END, InteractionType.Redirect);\n return result;\n })\n .catch((e) => {\n // Emit login event if there is an account\n if (loggedInAccounts.length > 0) {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_FAILURE, InteractionType.Redirect, null, e);\n }\n else {\n this.eventHandler.emitEvent(EventType.LOGIN_FAILURE, InteractionType.Redirect, null, e);\n }\n this.eventHandler.emitEvent(EventType.HANDLE_REDIRECT_END, InteractionType.Redirect);\n throw e;\n });\n this.redirectResponse.set(redirectResponseKey, response);\n }\n else {\n this.logger.verbose(\"handleRedirectPromise has been called previously, returning the result from the first call\");\n }\n return response;\n }\n this.logger.verbose(\"handleRedirectPromise returns null, not browser environment\");\n return null;\n }\n /**\n * Use when you want to obtain an access_token for your API by redirecting the user's browser window to the authorization endpoint. This function redirects\n * the page, so any code that follows this function will not execute.\n *\n * IMPORTANT: It is NOT recommended to have code that is dependent on the resolution of the Promise. This function will navigate away from the current\n * browser window. It currently returns a Promise in order to reflect the asynchronous nature of the code running in this function.\n *\n * @param request\n */\n async acquireTokenRedirect(request) {\n // Preflight request\n const correlationId = this.getRequestCorrelationId(request);\n this.logger.verbose(\"acquireTokenRedirect called\", correlationId);\n this.preflightBrowserEnvironmentCheck(InteractionType.Redirect);\n // If logged in, emit acquire token events\n const isLoggedIn = this.getAllAccounts().length > 0;\n if (isLoggedIn) {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_START, InteractionType.Redirect, request);\n }\n else {\n this.eventHandler.emitEvent(EventType.LOGIN_START, InteractionType.Redirect, request);\n }\n let result;\n if (this.nativeExtensionProvider && this.canUseNative(request)) {\n const nativeClient = new NativeInteractionClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, ApiId.acquireTokenRedirect, this.performanceClient, this.nativeExtensionProvider, this.getNativeAccountId(request), this.nativeInternalStorage, request.correlationId);\n result = nativeClient\n .acquireTokenRedirect(request)\n .catch((e) => {\n if (e instanceof NativeAuthError &&\n isFatalNativeAuthError(e)) {\n this.nativeExtensionProvider = undefined; // If extension gets uninstalled during session prevent future requests from continuing to attempt\n const redirectClient = this.createRedirectClient(request.correlationId);\n return redirectClient.acquireToken(request);\n }\n else if (e instanceof InteractionRequiredAuthError) {\n this.logger.verbose(\"acquireTokenRedirect - Resolving interaction required error thrown by native broker by falling back to web flow\");\n const redirectClient = this.createRedirectClient(request.correlationId);\n return redirectClient.acquireToken(request);\n }\n this.getBrowserStorage().setInteractionInProgress(false);\n throw e;\n });\n }\n else {\n const redirectClient = this.createRedirectClient(request.correlationId);\n result = redirectClient.acquireToken(request);\n }\n return result.catch((e) => {\n // If logged in, emit acquire token events\n if (isLoggedIn) {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_FAILURE, InteractionType.Redirect, null, e);\n }\n else {\n this.eventHandler.emitEvent(EventType.LOGIN_FAILURE, InteractionType.Redirect, null, e);\n }\n throw e;\n });\n }\n // #endregion\n // #region Popup Flow\n /**\n * Use when you want to obtain an access_token for your API via opening a popup window in the user's browser\n *\n * @param request\n *\n * @returns A promise that is fulfilled when this function has completed, or rejected if an error was raised.\n */\n acquireTokenPopup(request) {\n const correlationId = this.getRequestCorrelationId(request);\n const atPopupMeasurement = this.performanceClient.startMeasurement(PerformanceEvents.AcquireTokenPopup, correlationId);\n try {\n this.logger.verbose(\"acquireTokenPopup called\", correlationId);\n this.preflightBrowserEnvironmentCheck(InteractionType.Popup);\n }\n catch (e) {\n // Since this function is syncronous we need to reject\n return Promise.reject(e);\n }\n // If logged in, emit acquire token events\n const loggedInAccounts = this.getAllAccounts();\n if (loggedInAccounts.length > 0) {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_START, InteractionType.Popup, request);\n }\n else {\n this.eventHandler.emitEvent(EventType.LOGIN_START, InteractionType.Popup, request);\n }\n let result;\n if (this.canUseNative(request)) {\n result = this.acquireTokenNative(request, ApiId.acquireTokenPopup)\n .then((response) => {\n this.getBrowserStorage().setInteractionInProgress(false);\n atPopupMeasurement.end({\n success: true,\n isNativeBroker: true,\n requestId: response.requestId,\n });\n return response;\n })\n .catch((e) => {\n if (e instanceof NativeAuthError &&\n isFatalNativeAuthError(e)) {\n this.nativeExtensionProvider = undefined; // If extension gets uninstalled during session prevent future requests from continuing to attempt\n const popupClient = this.createPopupClient(request.correlationId);\n return popupClient.acquireToken(request);\n }\n else if (e instanceof InteractionRequiredAuthError) {\n this.logger.verbose(\"acquireTokenPopup - Resolving interaction required error thrown by native broker by falling back to web flow\");\n const popupClient = this.createPopupClient(request.correlationId);\n return popupClient.acquireToken(request);\n }\n this.getBrowserStorage().setInteractionInProgress(false);\n throw e;\n });\n }\n else {\n const popupClient = this.createPopupClient(request.correlationId);\n result = popupClient.acquireToken(request);\n }\n return result\n .then((result) => {\n /*\n * If logged in, emit acquire token events\n */\n const isLoggingIn = loggedInAccounts.length < this.getAllAccounts().length;\n if (isLoggingIn) {\n this.eventHandler.emitEvent(EventType.LOGIN_SUCCESS, InteractionType.Popup, result);\n }\n else {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_SUCCESS, InteractionType.Popup, result);\n }\n atPopupMeasurement.add({\n accessTokenSize: result.accessToken.length,\n idTokenSize: result.idToken.length,\n });\n atPopupMeasurement.end({\n success: true,\n requestId: result.requestId,\n });\n return result;\n })\n .catch((e) => {\n if (loggedInAccounts.length > 0) {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_FAILURE, InteractionType.Popup, null, e);\n }\n else {\n this.eventHandler.emitEvent(EventType.LOGIN_FAILURE, InteractionType.Popup, null, e);\n }\n atPopupMeasurement.end({\n errorCode: e.errorCode,\n subErrorCode: e.subError,\n success: false,\n });\n // Since this function is syncronous we need to reject\n return Promise.reject(e);\n });\n }\n trackPageVisibilityWithMeasurement() {\n const measurement = this.ssoSilentMeasurement ||\n this.acquireTokenByCodeAsyncMeasurement;\n if (!measurement) {\n return;\n }\n this.logger.info(\"Perf: Visibility change detected in \", measurement.event.name);\n measurement.increment({\n visibilityChangeCount: 1,\n });\n }\n // #endregion\n // #region Silent Flow\n /**\n * This function uses a hidden iframe to fetch an authorization code from the eSTS. There are cases where this may not work:\n * - Any browser using a form of Intelligent Tracking Prevention\n * - If there is not an established session with the service\n *\n * In these cases, the request must be done inside a popup or full frame redirect.\n *\n * For the cases where interaction is required, you cannot send a request with prompt=none.\n *\n * If your refresh token has expired, you can use this function to fetch a new set of tokens silently as long as\n * you session on the server still exists.\n * @param request {@link SsoSilentRequest}\n *\n * @returns A promise that is fulfilled when this function has completed, or rejected if an error was raised.\n */\n async ssoSilent(request) {\n const correlationId = this.getRequestCorrelationId(request);\n const validRequest = {\n ...request,\n // will be PromptValue.NONE or PromptValue.NO_SESSION\n prompt: request.prompt,\n correlationId: correlationId,\n };\n this.preflightBrowserEnvironmentCheck(InteractionType.Silent);\n this.ssoSilentMeasurement = this.performanceClient.startMeasurement(PerformanceEvents.SsoSilent, correlationId);\n this.ssoSilentMeasurement?.increment({\n visibilityChangeCount: 0,\n });\n document.addEventListener(\"visibilitychange\", this.trackPageVisibilityWithMeasurement);\n this.logger.verbose(\"ssoSilent called\", correlationId);\n this.eventHandler.emitEvent(EventType.SSO_SILENT_START, InteractionType.Silent, validRequest);\n let result;\n if (this.canUseNative(validRequest)) {\n result = this.acquireTokenNative(validRequest, ApiId.ssoSilent).catch((e) => {\n // If native token acquisition fails for availability reasons fallback to standard flow\n if (e instanceof NativeAuthError && isFatalNativeAuthError(e)) {\n this.nativeExtensionProvider = undefined; // If extension gets uninstalled during session prevent future requests from continuing to attempt\n const silentIframeClient = this.createSilentIframeClient(validRequest.correlationId);\n return silentIframeClient.acquireToken(validRequest);\n }\n throw e;\n });\n }\n else {\n const silentIframeClient = this.createSilentIframeClient(validRequest.correlationId);\n result = silentIframeClient.acquireToken(validRequest);\n }\n return result\n .then((response) => {\n this.eventHandler.emitEvent(EventType.SSO_SILENT_SUCCESS, InteractionType.Silent, response);\n this.ssoSilentMeasurement?.add({\n accessTokenSize: response.accessToken.length,\n idTokenSize: response.idToken.length,\n });\n this.ssoSilentMeasurement?.end({\n success: true,\n isNativeBroker: response.fromNativeBroker,\n requestId: response.requestId,\n });\n return response;\n })\n .catch((e) => {\n this.eventHandler.emitEvent(EventType.SSO_SILENT_FAILURE, InteractionType.Silent, null, e);\n this.ssoSilentMeasurement?.end({\n errorCode: e.errorCode,\n subErrorCode: e.subError,\n success: false,\n });\n throw e;\n })\n .finally(() => {\n document.removeEventListener(\"visibilitychange\", this.trackPageVisibilityWithMeasurement);\n });\n }\n /**\n * This function redeems an authorization code (passed as code) from the eSTS token endpoint.\n * This authorization code should be acquired server-side using a confidential client to acquire a spa_code.\n * This API is not indended for normal authorization code acquisition and redemption.\n *\n * Redemption of this authorization code will not require PKCE, as it was acquired by a confidential client.\n *\n * @param request {@link AuthorizationCodeRequest}\n * @returns A promise that is fulfilled when this function has completed, or rejected if an error was raised.\n */\n async acquireTokenByCode(request) {\n const correlationId = this.getRequestCorrelationId(request);\n this.preflightBrowserEnvironmentCheck(InteractionType.Silent);\n this.logger.trace(\"acquireTokenByCode called\", correlationId);\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_BY_CODE_START, InteractionType.Silent, request);\n const atbcMeasurement = this.performanceClient.startMeasurement(PerformanceEvents.AcquireTokenByCode, request.correlationId);\n try {\n if (request.code && request.nativeAccountId) {\n // Throw error in case server returns both spa_code and spa_accountid in exchange for auth code.\n throw createBrowserAuthError(spaCodeAndNativeAccountIdPresent);\n }\n else if (request.code) {\n const hybridAuthCode = request.code;\n let response = this.hybridAuthCodeResponses.get(hybridAuthCode);\n if (!response) {\n this.logger.verbose(\"Initiating new acquireTokenByCode request\", correlationId);\n response = this.acquireTokenByCodeAsync({\n ...request,\n correlationId,\n })\n .then((result) => {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_BY_CODE_SUCCESS, InteractionType.Silent, result);\n this.hybridAuthCodeResponses.delete(hybridAuthCode);\n atbcMeasurement.add({\n accessTokenSize: result.accessToken.length,\n idTokenSize: result.idToken.length,\n });\n atbcMeasurement.end({\n success: true,\n isNativeBroker: result.fromNativeBroker,\n requestId: result.requestId,\n });\n return result;\n })\n .catch((error) => {\n this.hybridAuthCodeResponses.delete(hybridAuthCode);\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_BY_CODE_FAILURE, InteractionType.Silent, null, error);\n atbcMeasurement.end({\n errorCode: error.errorCode,\n subErrorCode: error.subError,\n success: false,\n });\n throw error;\n });\n this.hybridAuthCodeResponses.set(hybridAuthCode, response);\n }\n else {\n this.logger.verbose(\"Existing acquireTokenByCode request found\", request.correlationId);\n atbcMeasurement.discard();\n }\n return response;\n }\n else if (request.nativeAccountId) {\n if (this.canUseNative(request, request.nativeAccountId)) {\n return this.acquireTokenNative(request, ApiId.acquireTokenByCode, request.nativeAccountId).catch((e) => {\n // If native token acquisition fails for availability reasons fallback to standard flow\n if (e instanceof NativeAuthError &&\n isFatalNativeAuthError(e)) {\n this.nativeExtensionProvider = undefined; // If extension gets uninstalled during session prevent future requests from continuing to attempt\n }\n throw e;\n });\n }\n else {\n throw createBrowserAuthError(unableToAcquireTokenFromNativePlatform);\n }\n }\n else {\n throw createBrowserAuthError(authCodeOrNativeAccountIdRequired);\n }\n }\n catch (e) {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_BY_CODE_FAILURE, InteractionType.Silent, null, e);\n atbcMeasurement.end({\n errorCode: (e instanceof AuthError && e.errorCode) || undefined,\n subErrorCode: (e instanceof AuthError && e.subError) || undefined,\n success: false,\n });\n throw e;\n }\n }\n /**\n * Creates a SilentAuthCodeClient to redeem an authorization code.\n * @param request\n * @returns Result of the operation to redeem the authorization code\n */\n async acquireTokenByCodeAsync(request) {\n this.logger.trace(\"acquireTokenByCodeAsync called\", request.correlationId);\n this.acquireTokenByCodeAsyncMeasurement =\n this.performanceClient.startMeasurement(PerformanceEvents.AcquireTokenByCodeAsync, request.correlationId);\n this.acquireTokenByCodeAsyncMeasurement?.increment({\n visibilityChangeCount: 0,\n });\n document.addEventListener(\"visibilitychange\", this.trackPageVisibilityWithMeasurement);\n const silentAuthCodeClient = this.createSilentAuthCodeClient(request.correlationId);\n const silentTokenResult = await silentAuthCodeClient\n .acquireToken(request)\n .then((response) => {\n this.acquireTokenByCodeAsyncMeasurement?.end({\n success: true,\n fromCache: response.fromCache,\n isNativeBroker: response.fromNativeBroker,\n requestId: response.requestId,\n });\n return response;\n })\n .catch((tokenRenewalError) => {\n this.acquireTokenByCodeAsyncMeasurement?.end({\n errorCode: tokenRenewalError.errorCode,\n subErrorCode: tokenRenewalError.subError,\n success: false,\n });\n throw tokenRenewalError;\n })\n .finally(() => {\n document.removeEventListener(\"visibilitychange\", this.trackPageVisibilityWithMeasurement);\n });\n return silentTokenResult;\n }\n /**\n * Attempt to acquire an access token from the cache\n * @param silentCacheClient SilentCacheClient\n * @param commonRequest CommonSilentFlowRequest\n * @param silentRequest SilentRequest\n * @returns A promise that, when resolved, returns the access token\n */\n async acquireTokenFromCache(silentCacheClient, commonRequest, silentRequest) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.AcquireTokenFromCache, commonRequest.correlationId);\n switch (silentRequest.cacheLookupPolicy) {\n case CacheLookupPolicy.Default:\n case CacheLookupPolicy.AccessToken:\n case CacheLookupPolicy.AccessTokenAndRefreshToken:\n return invokeAsync(silentCacheClient.acquireToken.bind(silentCacheClient), PerformanceEvents.SilentCacheClientAcquireToken, this.logger, this.performanceClient, commonRequest.correlationId)(commonRequest);\n default:\n throw createClientAuthError(ClientAuthErrorCodes.tokenRefreshRequired);\n }\n }\n /**\n * Attempt to acquire an access token via a refresh token\n * @param commonRequest CommonSilentFlowRequest\n * @param silentRequest SilentRequest\n * @returns A promise that, when resolved, returns the access token\n */\n async acquireTokenByRefreshToken(commonRequest, silentRequest) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.AcquireTokenByRefreshToken, commonRequest.correlationId);\n switch (silentRequest.cacheLookupPolicy) {\n case CacheLookupPolicy.Default:\n case CacheLookupPolicy.AccessTokenAndRefreshToken:\n case CacheLookupPolicy.RefreshToken:\n case CacheLookupPolicy.RefreshTokenAndNetwork:\n const silentRefreshClient = this.createSilentRefreshClient(commonRequest.correlationId);\n return invokeAsync(silentRefreshClient.acquireToken.bind(silentRefreshClient), PerformanceEvents.SilentRefreshClientAcquireToken, this.logger, this.performanceClient, commonRequest.correlationId)(commonRequest);\n default:\n throw createClientAuthError(ClientAuthErrorCodes.tokenRefreshRequired);\n }\n }\n /**\n * Attempt to acquire an access token via an iframe\n * @param request CommonSilentFlowRequest\n * @returns A promise that, when resolved, returns the access token\n */\n async acquireTokenBySilentIframe(request) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.AcquireTokenBySilentIframe, request.correlationId);\n const silentIframeClient = this.createSilentIframeClient(request.correlationId);\n return invokeAsync(silentIframeClient.acquireToken.bind(silentIframeClient), PerformanceEvents.SilentIframeClientAcquireToken, this.logger, this.performanceClient, request.correlationId)(request);\n }\n // #endregion\n // #region Logout\n /**\n * Deprecated logout function. Use logoutRedirect or logoutPopup instead\n * @param logoutRequest\n * @deprecated\n */\n async logout(logoutRequest) {\n const correlationId = this.getRequestCorrelationId(logoutRequest);\n this.logger.warning(\"logout API is deprecated and will be removed in msal-browser v3.0.0. Use logoutRedirect instead.\", correlationId);\n return this.logoutRedirect({\n correlationId,\n ...logoutRequest,\n });\n }\n /**\n * Use to log out the current user, and redirect the user to the postLogoutRedirectUri.\n * Default behaviour is to redirect the user to `window.location.href`.\n * @param logoutRequest\n */\n async logoutRedirect(logoutRequest) {\n const correlationId = this.getRequestCorrelationId(logoutRequest);\n this.preflightBrowserEnvironmentCheck(InteractionType.Redirect);\n const redirectClient = this.createRedirectClient(correlationId);\n return redirectClient.logout(logoutRequest);\n }\n /**\n * Clears local cache for the current user then opens a popup window prompting the user to sign-out of the server\n * @param logoutRequest\n */\n logoutPopup(logoutRequest) {\n try {\n const correlationId = this.getRequestCorrelationId(logoutRequest);\n this.preflightBrowserEnvironmentCheck(InteractionType.Popup);\n const popupClient = this.createPopupClient(correlationId);\n return popupClient.logout(logoutRequest);\n }\n catch (e) {\n // Since this function is syncronous we need to reject\n return Promise.reject(e);\n }\n }\n /**\n * Creates a cache interaction client to clear broswer cache.\n * @param logoutRequest\n */\n async clearCache(logoutRequest) {\n const correlationId = this.getRequestCorrelationId(logoutRequest);\n const cacheClient = this.createSilentCacheClient(correlationId);\n return cacheClient.logout(logoutRequest);\n }\n // #endregion\n // #region Account APIs\n /**\n * Returns all the accounts in the cache that match the optional filter. If no filter is provided, all accounts are returned.\n * @param accountFilter - (Optional) filter to narrow down the accounts returned\n * @returns Array of AccountInfo objects in cache\n */\n getAllAccounts(accountFilter) {\n this.logger.verbose(\"getAllAccounts called\");\n return this.isBrowserEnvironment\n ? this.browserStorage.getAllAccounts(accountFilter)\n : [];\n }\n /**\n * Returns the first account found in the cache that matches the account filter passed in.\n * @param accountFilter\n * @returns The first account found in the cache matching the provided filter or null if no account could be found.\n */\n getAccount(accountFilter) {\n this.logger.trace(\"getAccount called\");\n if (Object.keys(accountFilter).length === 0) {\n this.logger.warning(\"getAccount: No accountFilter provided\");\n return null;\n }\n const account = this.browserStorage.getAccountInfoFilteredBy(accountFilter);\n if (account) {\n this.logger.verbose(\"getAccount: Account matching provided filter found, returning\");\n return account;\n }\n else {\n this.logger.verbose(\"getAccount: No matching account found, returning null\");\n return null;\n }\n }\n /**\n * Returns the signed in account matching username.\n * (the account object is created at the time of successful login)\n * or null when no matching account is found.\n * This API is provided for convenience but getAccountById should be used for best reliability\n * @param username\n * @returns The account object stored in MSAL\n */\n getAccountByUsername(username) {\n this.logger.trace(\"getAccountByUsername called\");\n if (!username) {\n this.logger.warning(\"getAccountByUsername: No username provided\");\n return null;\n }\n const account = this.browserStorage.getAccountInfoFilteredBy({\n username,\n });\n if (account) {\n this.logger.verbose(\"getAccountByUsername: Account matching username found, returning\");\n this.logger.verbosePii(`getAccountByUsername: Returning signed-in accounts matching username: ${username}`);\n return account;\n }\n else {\n this.logger.verbose(\"getAccountByUsername: No matching account found, returning null\");\n return null;\n }\n }\n /**\n * Returns the signed in account matching homeAccountId.\n * (the account object is created at the time of successful login)\n * or null when no matching account is found\n * @param homeAccountId\n * @returns The account object stored in MSAL\n */\n getAccountByHomeId(homeAccountId) {\n this.logger.trace(\"getAccountByHomeId called\");\n if (!homeAccountId) {\n this.logger.warning(\"getAccountByHomeId: No homeAccountId provided\");\n return null;\n }\n const account = this.browserStorage.getAccountInfoFilteredBy({\n homeAccountId,\n });\n if (account) {\n this.logger.verbose(\"getAccountByHomeId: Account matching homeAccountId found, returning\");\n this.logger.verbosePii(`getAccountByHomeId: Returning signed-in accounts matching homeAccountId: ${homeAccountId}`);\n return account;\n }\n else {\n this.logger.verbose(\"getAccountByHomeId: No matching account found, returning null\");\n return null;\n }\n }\n /**\n * Returns the signed in account matching localAccountId.\n * (the account object is created at the time of successful login)\n * or null when no matching account is found\n * @param localAccountId\n * @returns The account object stored in MSAL\n */\n getAccountByLocalId(localAccountId) {\n this.logger.trace(\"getAccountByLocalId called\");\n if (!localAccountId) {\n this.logger.warning(\"getAccountByLocalId: No localAccountId provided\");\n return null;\n }\n const account = this.browserStorage.getAccountInfoFilteredBy({\n localAccountId,\n });\n if (account) {\n this.logger.verbose(\"getAccountByLocalId: Account matching localAccountId found, returning\");\n this.logger.verbosePii(`getAccountByLocalId: Returning signed-in accounts matching localAccountId: ${localAccountId}`);\n return account;\n }\n else {\n this.logger.verbose(\"getAccountByLocalId: No matching account found, returning null\");\n return null;\n }\n }\n /**\n * Sets the account to use as the active account. If no account is passed to the acquireToken APIs, then MSAL will use this active account.\n * @param account\n */\n setActiveAccount(account) {\n this.browserStorage.setActiveAccount(account);\n }\n /**\n * Gets the currently active account\n */\n getActiveAccount() {\n return this.browserStorage.getActiveAccount();\n }\n // #endregion\n /**\n * Hydrates the cache with the tokens from an AuthenticationResult\n * @param result\n * @param request\n * @returns\n */\n async hydrateCache(result, request) {\n this.logger.verbose(\"hydrateCache called\");\n // Account gets saved to browser storage regardless of native or not\n const accountEntity = AccountEntity.createFromAccountInfo(result.account, result.cloudGraphHostName, result.msGraphHost);\n this.browserStorage.setAccount(accountEntity);\n if (result.fromNativeBroker) {\n this.logger.verbose(\"Response was from native broker, storing in-memory\");\n // Tokens from native broker are stored in-memory\n return this.nativeInternalStorage.hydrateCache(result, request);\n }\n else {\n return this.browserStorage.hydrateCache(result, request);\n }\n }\n // #region Helpers\n /**\n * Helper to validate app environment before making an auth request\n *\n * @protected\n * @param {InteractionType} interactionType What kind of interaction is being used\n * @param {boolean} [isAppEmbedded=false] Whether to set interaction in progress temp cache flag\n */\n preflightBrowserEnvironmentCheck(interactionType, isAppEmbedded = false) {\n this.logger.verbose(\"preflightBrowserEnvironmentCheck started\");\n // Block request if not in browser environment\n BrowserUtils.blockNonBrowserEnvironment(this.isBrowserEnvironment);\n // Block redirects if in an iframe\n BrowserUtils.blockRedirectInIframe(interactionType, this.config.system.allowRedirectInIframe);\n // Block auth requests inside a hidden iframe\n BrowserUtils.blockReloadInHiddenIframes();\n // Block redirectUri opened in a popup from calling MSAL APIs\n BrowserUtils.blockAcquireTokenInPopups();\n // Block token acquisition before initialize has been called\n BrowserUtils.blockAPICallsBeforeInitialize(this.initialized);\n // Block redirects if memory storage is enabled but storeAuthStateInCookie is not\n if (interactionType === InteractionType.Redirect &&\n this.config.cache.cacheLocation ===\n BrowserCacheLocation.MemoryStorage &&\n !this.config.cache.storeAuthStateInCookie) {\n throw createBrowserConfigurationAuthError(inMemRedirectUnavailable);\n }\n if (interactionType === InteractionType.Redirect ||\n interactionType === InteractionType.Popup) {\n this.preflightInteractiveRequest(!isAppEmbedded);\n }\n }\n /**\n * Preflight check for interactive requests\n *\n * @protected\n * @param {boolean} setInteractionInProgress Whether to set interaction in progress temp cache flag\n */\n preflightInteractiveRequest(setInteractionInProgress) {\n this.logger.verbose(\"preflightInteractiveRequest called, validating app environment\");\n // block the reload if it occurred inside a hidden iframe\n BrowserUtils.blockReloadInHiddenIframes();\n // Set interaction in progress temporary cache or throw if alread set.\n if (setInteractionInProgress) {\n this.getBrowserStorage().setInteractionInProgress(true);\n }\n }\n /**\n * Acquire a token from native device (e.g. WAM)\n * @param request\n */\n async acquireTokenNative(request, apiId, accountId) {\n this.logger.trace(\"acquireTokenNative called\");\n if (!this.nativeExtensionProvider) {\n throw createBrowserAuthError(nativeConnectionNotEstablished);\n }\n const nativeClient = new NativeInteractionClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, apiId, this.performanceClient, this.nativeExtensionProvider, accountId || this.getNativeAccountId(request), this.nativeInternalStorage, request.correlationId);\n return nativeClient.acquireToken(request);\n }\n /**\n * Returns boolean indicating if this request can use the native broker\n * @param request\n */\n canUseNative(request, accountId) {\n this.logger.trace(\"canUseNative called\");\n if (!NativeMessageHandler.isNativeAvailable(this.config, this.logger, this.nativeExtensionProvider, request.authenticationScheme)) {\n this.logger.trace(\"canUseNative: isNativeAvailable returned false, returning false\");\n return false;\n }\n if (request.prompt) {\n switch (request.prompt) {\n case PromptValue.NONE:\n case PromptValue.CONSENT:\n case PromptValue.LOGIN:\n this.logger.trace(\"canUseNative: prompt is compatible with native flow\");\n break;\n default:\n this.logger.trace(`canUseNative: prompt = ${request.prompt} is not compatible with native flow, returning false`);\n return false;\n }\n }\n if (!accountId && !this.getNativeAccountId(request)) {\n this.logger.trace(\"canUseNative: nativeAccountId is not available, returning false\");\n return false;\n }\n return true;\n }\n /**\n * Get the native accountId from the account\n * @param request\n * @returns\n */\n getNativeAccountId(request) {\n const account = request.account ||\n this.browserStorage.getAccountInfoByHints(request.loginHint, request.sid) ||\n this.getActiveAccount();\n return (account && account.nativeAccountId) || \"\";\n }\n /**\n * Returns new instance of the Popup Interaction Client\n * @param correlationId\n */\n createPopupClient(correlationId) {\n return new PopupClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, this.performanceClient, this.nativeInternalStorage, this.nativeExtensionProvider, correlationId);\n }\n /**\n * Returns new instance of the Redirect Interaction Client\n * @param correlationId\n */\n createRedirectClient(correlationId) {\n return new RedirectClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, this.performanceClient, this.nativeInternalStorage, this.nativeExtensionProvider, correlationId);\n }\n /**\n * Returns new instance of the Silent Iframe Interaction Client\n * @param correlationId\n */\n createSilentIframeClient(correlationId) {\n return new SilentIframeClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, ApiId.ssoSilent, this.performanceClient, this.nativeInternalStorage, this.nativeExtensionProvider, correlationId);\n }\n /**\n * Returns new instance of the Silent Cache Interaction Client\n */\n createSilentCacheClient(correlationId) {\n return new SilentCacheClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, this.performanceClient, this.nativeExtensionProvider, correlationId);\n }\n /**\n * Returns new instance of the Silent Refresh Interaction Client\n */\n createSilentRefreshClient(correlationId) {\n return new SilentRefreshClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, this.performanceClient, this.nativeExtensionProvider, correlationId);\n }\n /**\n * Returns new instance of the Silent AuthCode Interaction Client\n */\n createSilentAuthCodeClient(correlationId) {\n return new SilentAuthCodeClient(this.config, this.browserStorage, this.browserCrypto, this.logger, this.eventHandler, this.navigationClient, ApiId.acquireTokenByCode, this.performanceClient, this.nativeExtensionProvider, correlationId);\n }\n /**\n * Adds event callbacks to array\n * @param callback\n */\n addEventCallback(callback) {\n return this.eventHandler.addEventCallback(callback);\n }\n /**\n * Removes callback with provided id from callback array\n * @param callbackId\n */\n removeEventCallback(callbackId) {\n this.eventHandler.removeEventCallback(callbackId);\n }\n /**\n * Registers a callback to receive performance events.\n *\n * @param {PerformanceCallbackFunction} callback\n * @returns {string}\n */\n addPerformanceCallback(callback) {\n return this.performanceClient.addPerformanceCallback(callback);\n }\n /**\n * Removes a callback registered with addPerformanceCallback.\n *\n * @param {string} callbackId\n * @returns {boolean}\n */\n removePerformanceCallback(callbackId) {\n return this.performanceClient.removePerformanceCallback(callbackId);\n }\n /**\n * Adds event listener that emits an event when a user account is added or removed from localstorage in a different browser tab or window\n */\n enableAccountStorageEvents() {\n this.eventHandler.enableAccountStorageEvents();\n }\n /**\n * Removes event listener that emits an event when a user account is added or removed from localstorage in a different browser tab or window\n */\n disableAccountStorageEvents() {\n this.eventHandler.disableAccountStorageEvents();\n }\n /**\n * Gets the token cache for the application.\n */\n getTokenCache() {\n return this.tokenCache;\n }\n /**\n * Returns the logger instance\n */\n getLogger() {\n return this.logger;\n }\n /**\n * Replaces the default logger set in configurations with new Logger with new configurations\n * @param logger Logger instance\n */\n setLogger(logger) {\n this.logger = logger;\n }\n /**\n * Called by wrapper libraries (Angular & React) to set SKU and Version passed down to telemetry, logger, etc.\n * @param sku\n * @param version\n */\n initializeWrapperLibrary(sku, version) {\n // Validate the SKU passed in is one we expect\n this.browserStorage.setWrapperMetadata(sku, version);\n }\n /**\n * Sets navigation client\n * @param navigationClient\n */\n setNavigationClient(navigationClient) {\n this.navigationClient = navigationClient;\n }\n /**\n * Returns the configuration object\n */\n getConfiguration() {\n return this.config;\n }\n /**\n * Returns the performance client\n */\n getPerformanceClient() {\n return this.performanceClient;\n }\n /**\n * Returns the browser storage\n */\n getBrowserStorage() {\n return this.browserStorage;\n }\n /**\n * Returns the browser env indicator\n */\n isBrowserEnv() {\n return this.isBrowserEnvironment;\n }\n /**\n * Returns the event handler\n */\n getEventHandler() {\n return this.eventHandler;\n }\n /**\n * Generates a correlation id for a request if none is provided.\n *\n * @protected\n * @param {?Partial} [request]\n * @returns {string}\n */\n getRequestCorrelationId(request) {\n if (request?.correlationId) {\n return request.correlationId;\n }\n if (this.isBrowserEnvironment) {\n return createNewGuid();\n }\n /*\n * Included for fallback for non-browser environments,\n * and to ensure this method always returns a string.\n */\n return Constants.EMPTY_STRING;\n }\n // #endregion\n /**\n * Use when initiating the login process by redirecting the user's browser to the authorization endpoint. This function redirects the page, so\n * any code that follows this function will not execute.\n *\n * IMPORTANT: It is NOT recommended to have code that is dependent on the resolution of the Promise. This function will navigate away from the current\n * browser window. It currently returns a Promise in order to reflect the asynchronous nature of the code running in this function.\n *\n * @param request\n */\n async loginRedirect(request) {\n const correlationId = this.getRequestCorrelationId(request);\n this.logger.verbose(\"loginRedirect called\", correlationId);\n return this.acquireTokenRedirect({\n correlationId,\n ...(request || DEFAULT_REQUEST),\n });\n }\n /**\n * Use when initiating the login process via opening a popup window in the user's browser\n *\n * @param request\n *\n * @returns A promise that is fulfilled when this function has completed, or rejected if an error was raised.\n */\n loginPopup(request) {\n const correlationId = this.getRequestCorrelationId(request);\n this.logger.verbose(\"loginPopup called\", correlationId);\n return this.acquireTokenPopup({\n correlationId,\n ...(request || DEFAULT_REQUEST),\n });\n }\n /**\n * Silently acquire an access token for a given set of scopes. Returns currently processing promise if parallel requests are made.\n *\n * @param {@link (SilentRequest:type)}\n * @returns {Promise.} - a promise that is fulfilled when this function has completed, or rejected if an error was raised. Returns the {@link AuthResponse} object\n */\n async acquireTokenSilent(request) {\n const correlationId = this.getRequestCorrelationId(request);\n const atsMeasurement = this.performanceClient.startMeasurement(PerformanceEvents.AcquireTokenSilent, correlationId);\n atsMeasurement.add({\n cacheLookupPolicy: request.cacheLookupPolicy,\n });\n this.preflightBrowserEnvironmentCheck(InteractionType.Silent);\n this.logger.verbose(\"acquireTokenSilent called\", correlationId);\n const account = request.account || this.getActiveAccount();\n if (!account) {\n throw createBrowserAuthError(noAccountError);\n }\n const thumbprint = {\n clientId: this.config.auth.clientId,\n authority: request.authority || Constants.EMPTY_STRING,\n scopes: request.scopes,\n homeAccountIdentifier: account.homeAccountId,\n claims: request.claims,\n authenticationScheme: request.authenticationScheme,\n resourceRequestMethod: request.resourceRequestMethod,\n resourceRequestUri: request.resourceRequestUri,\n shrClaims: request.shrClaims,\n sshKid: request.sshKid,\n };\n const silentRequestKey = JSON.stringify(thumbprint);\n const cachedResponse = this.activeSilentTokenRequests.get(silentRequestKey);\n if (typeof cachedResponse === \"undefined\") {\n this.logger.verbose(\"acquireTokenSilent called for the first time, storing active request\", correlationId);\n const response = invokeAsync(this.acquireTokenSilentAsync.bind(this), PerformanceEvents.AcquireTokenSilentAsync, this.logger, this.performanceClient, correlationId)({\n ...request,\n correlationId,\n }, account)\n .then((result) => {\n this.activeSilentTokenRequests.delete(silentRequestKey);\n atsMeasurement.add({\n accessTokenSize: result.accessToken.length,\n idTokenSize: result.idToken.length,\n });\n atsMeasurement.end({\n success: true,\n fromCache: result.fromCache,\n isNativeBroker: result.fromNativeBroker,\n cacheLookupPolicy: request.cacheLookupPolicy,\n requestId: result.requestId,\n });\n return result;\n })\n .catch((error) => {\n this.activeSilentTokenRequests.delete(silentRequestKey);\n atsMeasurement.end({\n errorCode: error.errorCode,\n subErrorCode: error.subError,\n success: false,\n });\n throw error;\n });\n this.activeSilentTokenRequests.set(silentRequestKey, response);\n return response;\n }\n else {\n this.logger.verbose(\"acquireTokenSilent has been called previously, returning the result from the first call\", correlationId);\n // Discard measurements for memoized calls, as they are usually only a couple of ms and will artificially deflate metrics\n atsMeasurement.discard();\n return cachedResponse;\n }\n }\n /**\n * Silently acquire an access token for a given set of scopes. Will use cached token if available, otherwise will attempt to acquire a new token from the network via refresh token.\n * @param {@link (SilentRequest:type)}\n * @param {@link (AccountInfo:type)}\n * @returns {Promise.} - a promise that is fulfilled when this function has completed, or rejected if an error was raised. Returns the {@link AuthResponse}\n */\n async acquireTokenSilentAsync(request, account) {\n this.performanceClient.addQueueMeasurement(PerformanceEvents.AcquireTokenSilentAsync, request.correlationId);\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_START, InteractionType.Silent, request);\n this.atsAsyncMeasurement = this.performanceClient.startMeasurement(PerformanceEvents.AcquireTokenSilentAsync, request.correlationId);\n this.atsAsyncMeasurement?.increment({\n visibilityChangeCount: 0,\n });\n document.addEventListener(\"visibilitychange\", this.trackPageVisibility);\n let result;\n if (NativeMessageHandler.isNativeAvailable(this.config, this.logger, this.nativeExtensionProvider, request.authenticationScheme) &&\n account.nativeAccountId) {\n this.logger.verbose(\"acquireTokenSilent - attempting to acquire token from native platform\");\n const silentRequest = {\n ...request,\n account,\n };\n result = this.acquireTokenNative(silentRequest, ApiId.acquireTokenSilent_silentFlow).catch(async (e) => {\n // If native token acquisition fails for availability reasons fallback to web flow\n if (e instanceof NativeAuthError && isFatalNativeAuthError(e)) {\n this.logger.verbose(\"acquireTokenSilent - native platform unavailable, falling back to web flow\");\n this.nativeExtensionProvider = undefined; // Prevent future requests from continuing to attempt\n // Cache will not contain tokens, given that previous WAM requests succeeded. Skip cache and RT renewal and go straight to iframe renewal\n const silentIframeClient = this.createSilentIframeClient(request.correlationId);\n return silentIframeClient.acquireToken(request);\n }\n throw e;\n });\n }\n else {\n this.logger.verbose(\"acquireTokenSilent - attempting to acquire token from web flow\");\n const silentCacheClient = this.createSilentCacheClient(request.correlationId);\n const silentRequest = await invokeAsync(silentCacheClient.initializeSilentRequest.bind(silentCacheClient), PerformanceEvents.InitializeSilentRequest, this.logger, this.performanceClient, request.correlationId)(request, account);\n const requestWithCLP = {\n ...request,\n // set the request's CacheLookupPolicy to Default if it was not optionally passed in\n cacheLookupPolicy: request.cacheLookupPolicy || CacheLookupPolicy.Default,\n };\n result = invokeAsync(this.acquireTokenFromCache.bind(this), PerformanceEvents.AcquireTokenFromCache, this.logger, this.performanceClient, silentRequest.correlationId)(silentCacheClient, silentRequest, requestWithCLP).catch((cacheError) => {\n if (requestWithCLP.cacheLookupPolicy ===\n CacheLookupPolicy.AccessToken) {\n throw cacheError;\n }\n // block the reload if it occurred inside a hidden iframe\n BrowserUtils.blockReloadInHiddenIframes();\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_NETWORK_START, InteractionType.Silent, silentRequest);\n return invokeAsync(this.acquireTokenByRefreshToken.bind(this), PerformanceEvents.AcquireTokenByRefreshToken, this.logger, this.performanceClient, silentRequest.correlationId)(silentRequest, requestWithCLP).catch((refreshTokenError) => {\n const isServerError = refreshTokenError instanceof ServerError;\n const isInteractionRequiredError = refreshTokenError instanceof\n InteractionRequiredAuthError;\n const isInvalidGrantError = refreshTokenError.errorCode ===\n BrowserConstants.INVALID_GRANT_ERROR;\n if ((!isServerError ||\n !isInvalidGrantError ||\n isInteractionRequiredError ||\n requestWithCLP.cacheLookupPolicy ===\n CacheLookupPolicy.AccessTokenAndRefreshToken ||\n requestWithCLP.cacheLookupPolicy ===\n CacheLookupPolicy.RefreshToken) &&\n requestWithCLP.cacheLookupPolicy !==\n CacheLookupPolicy.Skip) {\n throw refreshTokenError;\n }\n this.logger.verbose(\"Refresh token expired/invalid or CacheLookupPolicy is set to Skip, attempting acquire token by iframe.\", request.correlationId);\n return invokeAsync(this.acquireTokenBySilentIframe.bind(this), PerformanceEvents.AcquireTokenBySilentIframe, this.logger, this.performanceClient, silentRequest.correlationId)(silentRequest);\n });\n });\n }\n return result\n .then((response) => {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_SUCCESS, InteractionType.Silent, response);\n this.atsAsyncMeasurement?.end({\n success: true,\n fromCache: response.fromCache,\n isNativeBroker: response.fromNativeBroker,\n requestId: response.requestId,\n });\n return response;\n })\n .catch((tokenRenewalError) => {\n this.eventHandler.emitEvent(EventType.ACQUIRE_TOKEN_FAILURE, InteractionType.Silent, null, tokenRenewalError);\n this.atsAsyncMeasurement?.end({\n errorCode: tokenRenewalError.errorCode,\n subErrorCode: tokenRenewalError.subError,\n success: false,\n });\n throw tokenRenewalError;\n })\n .finally(() => {\n document.removeEventListener(\"visibilitychange\", this.trackPageVisibility);\n });\n }\n}\n\nexport { StandardController };\n\n"],"mappings":";;;;;;;;;;AAMA,IAAM,YAAY;AAAA,EACd,cAAc;AAAA,EACd,KAAK;AAAA;AAAA,EAEL,cAAc;AAAA;AAAA,EAEd,mBAAmB;AAAA,EACnB,wBAAwB;AAAA,EACxB,uBAAuB;AAAA;AAAA,EAEvB,MAAM;AAAA,EACN,MAAM;AAAA;AAAA,EAEN,8BAA8B;AAAA;AAAA,EAE9B,eAAe;AAAA,EACf,0BAA0B;AAAA;AAAA,EAE1B,gBAAgB;AAAA;AAAA,EAEhB,YAAY;AAAA;AAAA,EAEZ,QAAQ;AAAA;AAAA,EAER,eAAe;AAAA;AAAA,EAEf,cAAc;AAAA,EACd,eAAe;AAAA,EACf,sBAAsB;AAAA,EACtB,aAAa;AAAA;AAAA,EAEb,oBAAoB;AAAA,EACpB,iBAAiB;AAAA,EACjB,eAAe;AAAA,EACf,wBAAwB;AAAA,EACxB,4BAA4B;AAAA,EAC5B,uBAAuB;AAAA,EACvB,uBAAuB;AAAA,EACvB,aAAa;AAAA,EACb,cAAc;AAAA,EACd,gBAAgB;AAAA,EAChB,eAAe;AAAA,EACf,eAAe;AAAA,EACf,cAAc;AAAA,EACd,cAAc;AAAA,EACd,iCAAiC;AAAA,EACjC,mCAAmC;AAAA,EACnC,oCAAoC;AAAA,EACpC,qBAAqB;AAAA,IACjB;AAAA,IACA;AAAA,IACA;AAAA,IACA;AAAA,EACJ;AAAA,EACA,qBAAqB;AAAA,EACrB,wBAAwB;AAAA,EACxB,oBAAoB;AAAA,EACpB,kBAAkB;AACtB;AACA,IAAM,aAAa;AAAA,EACf,qBAAqB;AAAA,EACrB,mBAAmB;AAAA,EACnB,UAAU;AAAA,EACV,0BAA0B;AAAA,EAC1B,wBAAwB;AAAA,EACxB,0BAA0B;AAAA,EAC1B,wBAAwB;AAC5B;AACA,IAAM,sBAAsB;AAAA,EACxB,UAAU;AAAA,EACV,UAAU;AAAA,EACV,UAAU;AACd;AACA,IAAM,cAAc,CAAC,GAAG,qBAAqB,UAAU,WAAW;AAIlE,IAAM,cAAc;AAAA,EAChB,cAAc;AAAA,EACd,aAAa;AAAA,EACb,YAAY;AAAA,EACZ,iBAAiB;AAAA,EACjB,oBAAoB;AAAA,EACpB,iBAAiB;AAAA,EACjB,mBAAmB;AACvB;AAIA,IAAM,sBAAsB;AAAA,EACxB,UAAU;AAAA,EACV,aAAa;AAAA,EACb,eAAe;AAAA,EACf,OAAO;AAAA,EACP,YAAY;AAAA,EACZ,gBAAgB;AAAA,EAChB,wBAAwB;AAAA;AAC5B;AAIA,IAAM,wBAAwB;AAAA,EAC1B,QAAQ;AAAA,EACR,eAAe;AAAA,EACf,WAAW;AACf;AAIA,IAAM,qBAAqB;AAAA,EACvB,WAAW;AAAA,EACX,cAAc;AAAA,EACd,eAAe;AAAA,EACf,eAAe;AAAA,EACf,YAAY;AAAA,EACZ,QAAQ;AAAA,EACR,OAAO;AAAA,EACP,OAAO;AAAA,EACP,mBAAmB;AAAA,EACnB,cAAc;AAAA,EACd,UAAU;AAAA,EACV,eAAe;AAAA,EACf,YAAY;AAAA,EACZ,OAAO;AAAA,EACP,OAAO;AAAA,EACP,QAAQ;AAAA,EACR,eAAe;AAAA,EACf,aAAa;AAAA,EACb,MAAM;AAAA,EACN,gBAAgB;AAAA,EAChB,uBAAuB;AAAA,EACvB,eAAe;AAAA,EACf,mBAAmB;AAAA,EACnB,cAAc;AAAA,EACd,cAAc;AAAA,EACd,aAAa;AAAA,EACb,cAAc;AAAA,EACd,qBAAqB;AAAA,EACrB,qBAAqB;AAAA,EACrB,qBAAqB;AAAA,EACrB,YAAY;AAAA,EACZ,WAAW;AAAA,EACX,iBAAiB;AAAA,EACjB,eAAe;AAAA,EACf,aAAa;AAAA,EACb,eAAe;AAAA,EACf,kBAAkB;AAAA,EAClB,uBAAuB;AAAA,EACvB,YAAY;AAAA,EACZ,SAAS;AAAA,EACT,eAAe;AAAA,EACf,qBAAqB;AAAA,EACrB,cAAc;AAAA,EACd,MAAM;AAAA,EACN,YAAY;AAAA,EACZ,iBAAiB;AAAA,EACjB,eAAe;AAAA,EACf,aAAa;AACjB;AAIA,IAAM,oBAAoB;AAAA,EACtB,cAAc;AAAA,EACd,QAAQ;AACZ;AAMA,IAAM,cAAc;AAAA,EAChB,OAAO;AAAA,EACP,gBAAgB;AAAA,EAChB,SAAS;AAAA,EACT,MAAM;AAAA,EACN,QAAQ;AAAA,EACR,YAAY;AAChB;AAIA,IAAM,WAAW;AAAA,EACb,SAAS;AAAA,EACT,KAAK;AAAA,EACL,YAAY;AAAA,EACZ,UAAU;AAAA,EACV,aAAa;AAAA,EACb,eAAe;AAAA,EACf,WAAW;AAAA,EACX,YAAY;AAAA,EACZ,gBAAgB;AACpB;AAIA,IAAM,4BAA4B;AAAA,EAC9B,OAAO;AAAA,EACP,MAAM;AACV;AAIA,IAAM,qBAAqB;AAAA,EACvB,OAAO;AAAA,EACP,UAAU;AACd;AAIA,IAAM,eAAe,iCACd,qBADc;AAAA,EAEjB,WAAW;AACf;AAIA,IAAM,YAAY;AAAA,EACd,gBAAgB;AAAA,EAChB,0BAA0B;AAAA,EAC1B,0BAA0B;AAAA,EAC1B,+BAA+B;AAAA,EAC/B,qBAAqB;AAAA,EACrB,mBAAmB;AAAA,EACnB,YAAY;AAChB;AAIA,IAAM,mBAAmB;AAAA,EACrB,oBAAoB;AAAA,EACpB,mBAAmB;AAAA,EACnB,oBAAoB;AAAA,EACpB,sBAAsB;AAAA;AAC1B;AAIA,IAAM,aAAa;AAAA,EACf,qBAAqB;AAAA,EACrB,uBAAuB;AAC3B;AAIA,IAAM,iBAAiB;AAAA,EACnB,UAAU;AAAA,EACV,cAAc;AAAA,EACd,+BAA+B;AAAA,EAC/B,eAAe;AACnB;AAIA,IAAM,YAAY;AAAA,EACd,MAAM;AAAA,EACN,KAAK;AAAA,EACL,OAAO;AAAA,EACP,SAAS;AAAA,EACT,cAAc;AAAA,EACd,eAAe;AAAA,EACf,UAAU;AAAA,EACV,cAAc;AAAA,EACd,WAAW;AACf;AAIA,IAAM,eAAe;AACrB,IAAM,cAAc;AACpB,IAAM,gBAAgB;AACtB,IAAM,+BAA+B;AAAA,EACjC,WAAW;AAAA,EACX,sBAAsB,OAAO;AAAA;AACjC;AACA,IAAM,0BAA0B;AAAA,EAC5B,QAAQ;AAAA,EACR,OAAO;AAAA,EACP,SAAS;AAAA,EACT,kBAAkB;AACtB;AACA,IAAM,yBAAyB;AAAA,EAC3B,gBAAgB;AAAA,EAChB,sBAAsB;AAAA,EACtB,uBAAuB;AAAA,EACvB,mBAAmB;AAAA,EACnB,WAAW;AAAA,EACX,oBAAoB;AAAA,EACpB,iBAAiB;AAAA,EACjB,eAAe;AAAA,EACf,gBAAgB;AAAA,EAChB,eAAe;AACnB;AAIA,IAAM,uBAAuB;AAAA,EACzB,QAAQ;AAAA,EACR,KAAK;AAAA,EACL,KAAK;AACT;AAIA,IAAM,sBAAsB;AAAA;AAAA,EAExB,+BAA+B;AAAA;AAAA,EAE/B,mCAAmC;AAAA;AAAA,EAEnC,mBAAmB;AAAA;AAAA,EAEnB,2BAA2B;AAC/B;AACA,IAAM,SAAS;AAAA,EACX,qBAAqB;AAAA,EACrB,uBAAuB;AAC3B;AAIA,IAAM,yBAAyB;AAAA,EAC3B,UAAU;AAAA,EACV,UAAU;AACd;AAIA,IAAM,gBAAgB;AAAA,EAClB,aAAa;AAAA,EACb,gBAAgB;AACpB;AAIA,IAAM,yBAAyB;AAAA,EAC3B,uBAAuB;AAAA,EACvB,gBAAgB;AAAA,EAChB,sBAAsB;AAAA,EACtB,MAAM;AACV;AAIA,IAAM,0BAA0B;AAAA,EAC5B,6BAA6B;AAAA,EAC7B,8BAA8B;AAAA,EAC9B,yBAAyB;AAAA,EACzB,qCAAqC;AAAA,EACrC,iCAAiC;AACrC;AAIA,IAAM,eAAe;AAAA;AAAA,EAEjB,gBAAgB;AAAA;AAAA,EAEhB,yBAAyB;AAAA;AAAA,EAEzB,wBAAwB;AAAA;AAAA,EAExB,6BAA6B;AAAA;AAAA,EAE7B,uBAAuB;AAC3B;AACA,IAAM,YAAY;AAAA,EACd,KAAK;AAAA,EACL,KAAK;AAAA,EACL,KAAK;AACT;;;ACxXA;AAAA;AAAA;AAAA;AAAA;AASA,IAAM,kBAAkB;AACxB,IAAM,oBAAoB;;;ACC1B,IAAM,oBAAoB;AAAA,EACtB,CAAC,eAAe,GAAG;AAAA,EACnB,CAAC,iBAAiB,GAAG;AACzB;AAKA,IAAM,mBAAmB;AAAA,EACrB,iBAAiB;AAAA,IACb,MAAM;AAAA,IACN,MAAM,kBAAkB,eAAe;AAAA,EAC3C;AAAA,EACA,mBAAmB;AAAA,IACf,MAAM;AAAA,IACN,MAAM,kBAAkB,iBAAiB;AAAA,EAC7C;AACJ;AAIA,IAAM,YAAN,MAAM,mBAAkB,MAAM;AAAA,EAC1B,YAAY,WAAW,cAAc,UAAU;AAC3C,UAAM,cAAc,eACd,GAAG,SAAS,KAAK,YAAY,KAC7B;AACN,UAAM,WAAW;AACjB,WAAO,eAAe,MAAM,WAAU,SAAS;AAC/C,SAAK,YAAY,aAAa,UAAU;AACxC,SAAK,eAAe,gBAAgB,UAAU;AAC9C,SAAK,WAAW,YAAY,UAAU;AACtC,SAAK,OAAO;AAAA,EAChB;AAAA,EACA,iBAAiB,eAAe;AAC5B,SAAK,gBAAgB;AAAA,EACzB;AACJ;AACA,SAAS,gBAAgB,MAAM,mBAAmB;AAC9C,SAAO,IAAI,UAAU,MAAM,oBACrB,GAAG,kBAAkB,IAAI,CAAC,IAAI,iBAAiB,KAC/C,kBAAkB,IAAI,CAAC;AACjC;;;ACpDA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAMA,IAAM,0BAA0B;AAChC,IAAM,uBAAuB;AAC7B,IAAM,oBAAoB;AAC1B,IAAM,mBAAmB;AACzB,IAAM,0BAA0B;AAChC,IAAM,eAAe;AACrB,IAAM,oBAAoB;AAC1B,IAAM,sBAAsB;AAC5B,IAAM,eAAe;AACrB,IAAM,gBAAgB;AACtB,IAAM,gBAAgB;AACtB,IAAM,gBAAgB;AACtB,IAAM,mBAAmB;AACzB,IAAM,mBAAmB;AACzB,IAAM,yBAAyB;AAC/B,IAAM,2BAA2B;AACjC,IAAM,8BAA8B;AACpC,IAAM,sBAAsB;AAC5B,IAAM,yBAAyB;AAC/B,IAAM,uBAAuB;AAC7B,IAAM,qBAAqB;AAC3B,IAAM,6BAA6B;AACnC,IAAM,oBAAoB;AAC1B,IAAM,yBAAyB;AAC/B,IAAM,2BAA2B;AACjC,IAAM,qBAAqB;AAC3B,IAAM,0BAA0B;AAChC,IAAM,iBAAiB;AACvB,IAAM,iBAAiB;AACvB,IAAM,2BAA2B;AACjC,IAAM,mBAAmB;AACzB,IAAM,0BAA0B;AAChC,IAAM,uBAAuB;AAC7B,IAAM,qBAAqB;AAC3B,IAAM,qCAAqC;AAC3C,IAAM,6CAA6C;AACnD,IAAM,uBAAuB;AAC7B,IAAM,iCAAiC;AACvC,IAAM,eAAe;AACrB,IAAM,wBAAwB;AAC9B,IAAM,eAAe;AACrB,IAAM,uBAAuB;AAC7B,IAAM,uBAAuB;;;AClC7B,IAAM,0BAA0B;AAAA,EAC5B,CAAC,uBAAuB,GAAG;AAAA,EAC3B,CAAC,oBAAoB,GAAG;AAAA,EACxB,CAAC,iBAAiB,GAAG;AAAA,EACrB,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,uBAAuB,GAAG;AAAA,EAC3B,CAAC,YAAY,GAAG;AAAA,EAChB,CAAC,iBAAiB,GAAG;AAAA,EACrB,CAAC,mBAAmB,GAAG;AAAA,EACvB,CAAC,YAAY,GAAG;AAAA,EAChB,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,gBAAgB,GAAG;AAAA,EAGpB,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,sBAAsB,GAAG;AAAA,EAE1B,CAAC,wBAAwB,GAAG;AAAA,EAC5B,CAAC,2BAA2B,GAAG;AAAA,EAC/B,CAAC,mBAAmB,GAAG;AAAA,EACvB,CAAC,sBAAsB,GAAG;AAAA,EAC1B,CAAC,oBAAoB,GAAG;AAAA,EACxB,CAAC,kBAAkB,GAAG;AAAA,EACtB,CAAC,0BAA0B,GAAG;AAAA,EAC9B,CAAC,iBAAiB,GAAG;AAAA,EACrB,CAAC,sBAAsB,GAAG;AAAA,EAC1B,CAAC,wBAAwB,GAAG;AAAA,EAC5B,CAAC,kBAAkB,GAAG;AAAA,EACtB,CAAC,uBAAuB,GAAG;AAAA,EAC3B,CAAC,cAAc,GAAG;AAAA,EAClB,CAAC,cAAc,GAAG;AAAA,EAClB,CAAC,wBAAwB,GAAG;AAAA,EAC5B,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,uBAAuB,GAAG;AAAA,EAC3B,CAAC,oBAAoB,GAAG;AAAA,EACxB,CAAC,kBAAkB,GAAG;AAAA,EACtB,CAAC,kCAAkC,GAAG;AAAA,EACtC,CAAC,0CAA0C,GAAG;AAAA,EAC9C,CAAC,oBAAoB,GAAG;AAAA,EACxB,CAAC,8BAA8B,GAAG;AAAA,EAClC,CAAC,YAAY,GAAG;AAAA,EAChB,CAAC,qBAAqB,GAAG;AAAA,EACzB,CAAC,YAAY,GAAG;AAAA,EAChB,CAAC,oBAAoB,GAAG;AAAA,EACxB,CAAC,oBAAoB,GAAG;AAC5B;AAKA,IAAM,yBAAyB;AAAA,EAC3B,yBAAyB;AAAA,IACrB,MAAM;AAAA,IACN,MAAM,wBAAwB,uBAAuB;AAAA,EACzD;AAAA,EACA,sBAAsB;AAAA,IAClB,MAAM;AAAA,IACN,MAAM,wBAAwB,oBAAoB;AAAA,EACtD;AAAA,EACA,mBAAmB;AAAA,IACf,MAAM;AAAA,IACN,MAAM,wBAAwB,iBAAiB;AAAA,EACnD;AAAA,EACA,kBAAkB;AAAA,IACd,MAAM;AAAA,IACN,MAAM,wBAAwB,gBAAgB;AAAA,EAClD;AAAA,EACA,yBAAyB;AAAA,IACrB,MAAM;AAAA,IACN,MAAM,wBAAwB,uBAAuB;AAAA,EACzD;AAAA,EACA,cAAc;AAAA,IACV,MAAM;AAAA,IACN,MAAM,wBAAwB,YAAY;AAAA,EAC9C;AAAA,EACA,8BAA8B;AAAA,IAC1B,MAAM;AAAA,IACN,MAAM,wBAAwB,iBAAiB;AAAA,EACnD;AAAA,EACA,qBAAqB;AAAA,IACjB,MAAM;AAAA,IACN,MAAM,wBAAwB,mBAAmB;AAAA,EACrD;AAAA,EACA,mBAAmB;AAAA,IACf,MAAM;AAAA,IACN,MAAM,wBAAwB,YAAY;AAAA,EAC9C;AAAA,EACA,oBAAoB;AAAA,IAChB,MAAM;AAAA,IACN,MAAM,wBAAwB,aAAa;AAAA,EAC/C;AAAA,EACA,oBAAoB;AAAA,IAChB,MAAM;AAAA,IACN,MAAM,wBAAwB,aAAa;AAAA,EAC/C;AAAA,EACA,oBAAoB;AAAA,IAChB,MAAM;AAAA,IACN,MAAM,wBAAwB,aAAa;AAAA,EAC/C;AAAA,EACA,uBAAuB;AAAA,IACnB,MAAM;AAAA,IACN,MAAM,wBAAwB,gBAAgB;AAAA,EAClD;AAAA,EACA,kBAAkB;AAAA,IACd,MAAM;AAAA,IACN,MAAM,wBAAwB,gBAAgB;AAAA,EAClD;AAAA,EACA,wBAAwB;AAAA,IACpB,MAAM;AAAA,IACN,MAAM,wBAAwB,sBAAsB;AAAA,EACxD;AAAA,EACA,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,wBAAwB,wBAAwB;AAAA,EAC1D;AAAA,EACA,6BAA6B;AAAA,IACzB,MAAM;AAAA,IACN,MAAM,wBAAwB,2BAA2B;AAAA,EAC7D;AAAA,EACA,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,wBAAwB,mBAAmB;AAAA,EACrD;AAAA,EACA,uBAAuB;AAAA,IACnB,MAAM;AAAA,IACN,MAAM,wBAAwB,sBAAsB;AAAA,EACxD;AAAA,EACA,qBAAqB;AAAA,IACjB,MAAM;AAAA,IACN,MAAM,wBAAwB,oBAAoB;AAAA,EACtD;AAAA,EACA,yBAAyB;AAAA,IACrB,MAAM;AAAA,IACN,MAAM,wBAAwB,kBAAkB;AAAA,EACpD;AAAA,EACA,4BAA4B;AAAA,IACxB,MAAM;AAAA,IACN,MAAM,wBAAwB,0BAA0B;AAAA,EAC5D;AAAA,EACA,mBAAmB;AAAA,IACf,MAAM;AAAA,IACN,MAAM,wBAAwB,iBAAiB;AAAA,EACnD;AAAA,EACA,wBAAwB;AAAA,IACpB,MAAM;AAAA,IACN,MAAM,wBAAwB,sBAAsB;AAAA,EACxD;AAAA,EACA,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,wBAAwB,wBAAwB;AAAA,EAC1D;AAAA,EACA,oBAAoB;AAAA,IAChB,MAAM;AAAA,IACN,MAAM,wBAAwB,kBAAkB;AAAA,EACpD;AAAA,EACA,yBAAyB;AAAA,IACrB,MAAM;AAAA,IACN,MAAM,wBAAwB,uBAAuB;AAAA,EACzD;AAAA,EACA,gBAAgB;AAAA,IACZ,MAAM;AAAA,IACN,MAAM,wBAAwB,cAAc;AAAA,EAChD;AAAA,EACA,aAAa;AAAA,IACT,MAAM;AAAA,IACN,MAAM,wBAAwB,cAAc;AAAA,EAChD;AAAA,EACA,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,wBAAwB,wBAAwB;AAAA,EAC1D;AAAA,EACA,kBAAkB;AAAA,IACd,MAAM;AAAA,IACN,MAAM,wBAAwB,gBAAgB;AAAA,EAClD;AAAA,EACA,yBAAyB;AAAA,IACrB,MAAM;AAAA,IACN,MAAM,wBAAwB,uBAAuB;AAAA,EACzD;AAAA,EACA,sBAAsB;AAAA,IAClB,MAAM;AAAA,IACN,MAAM,wBAAwB,oBAAoB;AAAA,EACtD;AAAA,EACA,oBAAoB;AAAA,IAChB,MAAM;AAAA,IACN,MAAM,wBAAwB,kBAAkB;AAAA,EACpD;AAAA,EACA,qBAAqB;AAAA,IACjB,MAAM;AAAA,IACN,MAAM,wBAAwB,kCAAkC;AAAA,EACpE;AAAA,EACA,+BAA+B;AAAA,IAC3B,MAAM;AAAA,IACN,MAAM,wBAAwB,0CAA0C;AAAA,EAC5E;AAAA,EACA,2BAA2B;AAAA,IACvB,MAAM;AAAA,IACN,MAAM,wBAAwB,oBAAoB;AAAA,EACtD;AAAA,EACA,oBAAoB;AAAA,IAChB,MAAM;AAAA,IACN,MAAM,wBAAwB,8BAA8B;AAAA,EAChE;AAAA,EACA,cAAc;AAAA,IACV,MAAM;AAAA,IACN,MAAM,wBAAwB,YAAY;AAAA,EAC9C;AAAA,EACA,uBAAuB;AAAA,IACnB,MAAM;AAAA,IACN,MAAM,wBAAwB,qBAAqB;AAAA,EACvD;AAAA,EACA,mBAAmB;AAAA,IACf,MAAM;AAAA,IACN,MAAM,wBAAwB,YAAY;AAAA,EAC9C;AAAA,EACA,sBAAsB;AAAA,IAClB,MAAM;AAAA,IACN,MAAM,wBAAwB,oBAAoB;AAAA,EACtD;AACJ;AAIA,IAAM,kBAAN,MAAM,yBAAwB,UAAU;AAAA,EACpC,YAAY,WAAW,mBAAmB;AACtC,UAAM,WAAW,oBACX,GAAG,wBAAwB,SAAS,CAAC,KAAK,iBAAiB,KAC3D,wBAAwB,SAAS,CAAC;AACxC,SAAK,OAAO;AACZ,WAAO,eAAe,MAAM,iBAAgB,SAAS;AAAA,EACzD;AACJ;AACA,SAAS,sBAAsB,WAAW,mBAAmB;AACzD,SAAO,IAAI,gBAAgB,WAAW,iBAAiB;AAC3D;;;ACjPA,IAAM,gCAAgC;AAAA,EAClC,eAAe,MAAM;AACjB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,cAAc,MAAM;AAChB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,cAAc,MAAM;AAChB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACM,yBAAyB;AAAA;AAC3B,YAAM,sBAAsB,oBAAoB;AAAA,IACpD;AAAA;AAAA,EACM,wBAAwB;AAAA;AAC1B,YAAM,sBAAsB,oBAAoB;AAAA,IACpD;AAAA;AAAA,EACM,gBAAgB;AAAA;AAClB,YAAM,sBAAsB,oBAAoB;AAAA,IACpD;AAAA;AAAA,EACM,UAAU;AAAA;AACZ,YAAM,sBAAsB,oBAAoB;AAAA,IACpD;AAAA;AAAA,EACM,aAAa;AAAA;AACf,YAAM,sBAAsB,oBAAoB;AAAA,IACpD;AAAA;AACJ;;;ACvBA,IAAI;AAAA,CACH,SAAUA,WAAU;AACjB,EAAAA,UAASA,UAAS,OAAO,IAAI,CAAC,IAAI;AAClC,EAAAA,UAASA,UAAS,SAAS,IAAI,CAAC,IAAI;AACpC,EAAAA,UAASA,UAAS,MAAM,IAAI,CAAC,IAAI;AACjC,EAAAA,UAASA,UAAS,SAAS,IAAI,CAAC,IAAI;AACpC,EAAAA,UAASA,UAAS,OAAO,IAAI,CAAC,IAAI;AACtC,GAAG,aAAa,WAAW,CAAC,EAAE;AAI9B,IAAM,SAAN,MAAM,QAAO;AAAA,EACT,YAAY,eAAe,aAAa,gBAAgB;AAEpD,SAAK,QAAQ,SAAS;AACtB,UAAM,wBAAwB,MAAM;AAChC;AAAA,IACJ;AACA,UAAM,mBAAmB,iBAAiB,QAAO,2BAA2B;AAC5E,SAAK,gBACD,iBAAiB,kBAAkB;AACvC,SAAK,oBAAoB,iBAAiB,qBAAqB;AAC/D,SAAK,QACD,OAAO,iBAAiB,aAAa,WAC/B,iBAAiB,WACjB,SAAS;AACnB,SAAK,gBACD,iBAAiB,iBAAiB,UAAU;AAChD,SAAK,cAAc,eAAe,UAAU;AAC5C,SAAK,iBAAiB,kBAAkB,UAAU;AAAA,EACtD;AAAA,EACA,OAAO,6BAA6B;AAChC,WAAO;AAAA,MACH,gBAAgB,MAAM;AAAA,MAEtB;AAAA,MACA,mBAAmB;AAAA,MACnB,UAAU,SAAS;AAAA,IACvB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,MAAM,aAAa,gBAAgB,eAAe;AAC9C,WAAO,IAAI,QAAO;AAAA,MACd,gBAAgB,KAAK;AAAA,MACrB,mBAAmB,KAAK;AAAA,MACxB,UAAU,KAAK;AAAA,MACf,eAAe,iBAAiB,KAAK;AAAA,IACzC,GAAG,aAAa,cAAc;AAAA,EAClC;AAAA;AAAA;AAAA;AAAA,EAIA,WAAW,YAAY,SAAS;AAC5B,QAAI,QAAQ,WAAW,KAAK,SACvB,CAAC,KAAK,qBAAqB,QAAQ,aAAc;AAClD;AAAA,IACJ;AACA,UAAM,aAAY,oBAAI,KAAK,GAAE,YAAY;AAEzC,UAAM,YAAY,IAAI,SAAS,QAAQ,QAAQ,iBAAiB,KAAK,iBAAiB,EAAE;AACxF,UAAM,MAAM,GAAG,SAAS,MAAM,KAAK,WAAW,IAAI,KAAK,cAAc,MAAM,SAAS,QAAQ,QAAQ,CAAC,MAAM,UAAU;AAErH,SAAK,gBAAgB,QAAQ,UAAU,KAAK,QAAQ,eAAe,KAAK;AAAA,EAC5E;AAAA;AAAA;AAAA;AAAA,EAIA,gBAAgB,OAAO,SAAS,aAAa;AACzC,QAAI,KAAK,eAAe;AACpB,WAAK,cAAc,OAAO,SAAS,WAAW;AAAA,IAClD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,MAAM,SAAS,eAAe;AAC1B,SAAK,WAAW,SAAS;AAAA,MACrB,UAAU,SAAS;AAAA,MACnB,aAAa;AAAA,MACb,eAAe,iBAAiB,UAAU;AAAA,IAC9C,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,SAAS,SAAS,eAAe;AAC7B,SAAK,WAAW,SAAS;AAAA,MACrB,UAAU,SAAS;AAAA,MACnB,aAAa;AAAA,MACb,eAAe,iBAAiB,UAAU;AAAA,IAC9C,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,QAAQ,SAAS,eAAe;AAC5B,SAAK,WAAW,SAAS;AAAA,MACrB,UAAU,SAAS;AAAA,MACnB,aAAa;AAAA,MACb,eAAe,iBAAiB,UAAU;AAAA,IAC9C,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,WAAW,SAAS,eAAe;AAC/B,SAAK,WAAW,SAAS;AAAA,MACrB,UAAU,SAAS;AAAA,MACnB,aAAa;AAAA,MACb,eAAe,iBAAiB,UAAU;AAAA,IAC9C,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,KAAK,SAAS,eAAe;AACzB,SAAK,WAAW,SAAS;AAAA,MACrB,UAAU,SAAS;AAAA,MACnB,aAAa;AAAA,MACb,eAAe,iBAAiB,UAAU;AAAA,IAC9C,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,QAAQ,SAAS,eAAe;AAC5B,SAAK,WAAW,SAAS;AAAA,MACrB,UAAU,SAAS;AAAA,MACnB,aAAa;AAAA,MACb,eAAe,iBAAiB,UAAU;AAAA,IAC9C,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,QAAQ,SAAS,eAAe;AAC5B,SAAK,WAAW,SAAS;AAAA,MACrB,UAAU,SAAS;AAAA,MACnB,aAAa;AAAA,MACb,eAAe,iBAAiB,UAAU;AAAA,IAC9C,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,WAAW,SAAS,eAAe;AAC/B,SAAK,WAAW,SAAS;AAAA,MACrB,UAAU,SAAS;AAAA,MACnB,aAAa;AAAA,MACb,eAAe,iBAAiB,UAAU;AAAA,IAC9C,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,MAAM,SAAS,eAAe;AAC1B,SAAK,WAAW,SAAS;AAAA,MACrB,UAAU,SAAS;AAAA,MACnB,aAAa;AAAA,MACb,eAAe,iBAAiB,UAAU;AAAA,IAC9C,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,SAAS,SAAS,eAAe;AAC7B,SAAK,WAAW,SAAS;AAAA,MACrB,UAAU,SAAS;AAAA,MACnB,aAAa;AAAA,MACb,eAAe,iBAAiB,UAAU;AAAA,IAC9C,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,sBAAsB;AAClB,WAAO,KAAK,qBAAqB;AAAA,EACrC;AACJ;;;AC5LA,IAAM,OAAO;AACb,IAAM,UAAU;;;ACEhB,IAAM,qBAAqB;AAAA;AAAA,EAEvB,MAAM;AAAA;AAAA,EAEN,aAAa;AAAA;AAAA,EAEb,UAAU;AAAA;AAAA,EAEV,YAAY;AAAA;AAAA,EAEZ,cAAc;AAAA;AAAA,EAEd,mBAAmB;AACvB;;;ACnBA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAMA,IAAM,mBAAmB;AACzB,IAAM,4BAA4B;AAClC,IAAM,uBAAuB;AAC7B,IAAM,gBAAgB;AACtB,IAAM,gBAAgB;AACtB,IAAM,wBAAwB;AAC9B,IAAM,qBAAqB;AAC3B,IAAM,gBAAgB;AACtB,IAAM,oBAAoB;AAC1B,IAAM,qBAAqB;AAC3B,IAAM,6BAA6B;AACnC,IAAM,oBAAoB;AAC1B,IAAM,gCAAgC;AACtC,IAAM,2BAA2B;AACjC,IAAM,qBAAqB;AAC3B,IAAM,gBAAgB;AACtB,IAAM,gBAAgB;AACtB,IAAM,mCAAmC;AACzC,IAAM,8BAA8B;AACpC,IAAM,uBAAuB;AAC7B,IAAM,0BAA0B;AAChC,IAAM,oBAAoB;;;AChB1B,IAAM,mCAAmC;AAAA,EACrC,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,yBAAyB,GAAG;AAAA,EAC7B,CAAC,oBAAoB,GAAG;AAAA,EACxB,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,qBAAqB,GAAG;AAAA,EACzB,CAAC,kBAAkB,GAAG;AAAA,EACtB,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,iBAAiB,GAAG;AAAA,EACrB,CAAC,kBAAkB,GAAG;AAAA,EACtB,CAAC,0BAA0B,GAAG;AAAA,EAC9B,CAAC,iBAAiB,GAAG;AAAA,EACrB,CAAC,6BAA6B,GAAG;AAAA,EACjC,CAAC,wBAAwB,GAAG;AAAA,EAC5B,CAAC,kBAAkB,GAAG;AAAA,EACtB,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,gCAAgC,GAAG;AAAA,EACpC,CAAC,2BAA2B,GAAG;AAAA,EAC/B,CAAC,oBAAoB,GAAG;AAAA,EACxB,CAAC,uBAAuB,GAAG;AAAA,EAC3B,CAAC,iBAAiB,GAAG;AACzB;AAKA,IAAM,kCAAkC;AAAA,EACpC,mBAAmB;AAAA,IACf,MAAM;AAAA,IACN,MAAM,iCAAiC,gBAAgB;AAAA,EAC3D;AAAA,EACA,2BAA2B;AAAA,IACvB,MAAM;AAAA,IACN,MAAM,iCAAiC,yBAAyB;AAAA,EACpE;AAAA,EACA,sBAAsB;AAAA,IAClB,MAAM;AAAA,IACN,MAAM,iCAAiC,oBAAoB;AAAA,EAC/D;AAAA,EACA,eAAe;AAAA,IACX,MAAM;AAAA,IACN,MAAM,iCAAiC,aAAa;AAAA,EACxD;AAAA,EACA,eAAe;AAAA,IACX,MAAM;AAAA,IACN,MAAM,iCAAiC,aAAa;AAAA,EACxD;AAAA,EACA,kBAAkB;AAAA,IACd,MAAM;AAAA,IACN,MAAM,iCAAiC,qBAAqB;AAAA,EAChE;AAAA,EACA,eAAe;AAAA,IACX,MAAM;AAAA,IACN,MAAM,iCAAiC,kBAAkB;AAAA,EAC7D;AAAA,EACA,sBAAsB;AAAA,IAClB,MAAM;AAAA,IACN,MAAM,iCAAiC,aAAa;AAAA,EACxD;AAAA,EACA,wBAAwB;AAAA,IACpB,MAAM;AAAA,IACN,MAAM,iCAAiC,iBAAiB;AAAA,EAC5D;AAAA,EACA,yBAAyB;AAAA,IACrB,MAAM;AAAA,IACN,MAAM,iCAAiC,kBAAkB;AAAA,EAC7D;AAAA,EACA,4BAA4B;AAAA,IACxB,MAAM;AAAA,IACN,MAAM,iCAAiC,0BAA0B;AAAA,EACrE;AAAA,EACA,4BAA4B;AAAA,IACxB,MAAM;AAAA,IACN,MAAM,iCAAiC,iBAAiB;AAAA,EAC5D;AAAA,EACA,+BAA+B;AAAA,IAC3B,MAAM;AAAA,IACN,MAAM,iCAAiC,6BAA6B;AAAA,EACxE;AAAA,EACA,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,iCAAiC,wBAAwB;AAAA,EACnE;AAAA,EACA,oBAAoB;AAAA,IAChB,MAAM;AAAA,IACN,MAAM,iCAAiC,kBAAkB;AAAA,EAC7D;AAAA,EACA,eAAe;AAAA,IACX,MAAM;AAAA,IACN,MAAM,iCAAiC,aAAa;AAAA,EACxD;AAAA,EACA,eAAe;AAAA,IACX,MAAM;AAAA,IACN,MAAM,iCAAiC,aAAa;AAAA,EACxD;AAAA,EACA,kCAAkC;AAAA,IAC9B,MAAM;AAAA,IACN,MAAM,iCAAiC,gCAAgC;AAAA,EAC3E;AAAA,EACA,6BAA6B;AAAA,IACzB,MAAM;AAAA,IACN,MAAM,iCAAiC,2BAA2B;AAAA,EACtE;AAAA,EACA,sBAAsB;AAAA,IAClB,MAAM;AAAA,IACN,MAAM,iCAAiC,oBAAoB;AAAA,EAC/D;AAAA,EACA,yBAAyB;AAAA,IACrB,MAAM;AAAA,IACN,MAAM,iCAAiC,uBAAuB;AAAA,EAClE;AAAA,EACA,mBAAmB;AAAA,IACf,MAAM;AAAA,IACN,MAAM,iCAAiC,iBAAiB;AAAA,EAC5D;AACJ;AAIA,IAAM,2BAAN,MAAM,kCAAiC,UAAU;AAAA,EAC7C,YAAY,WAAW;AACnB,UAAM,WAAW,iCAAiC,SAAS,CAAC;AAC5D,SAAK,OAAO;AACZ,WAAO,eAAe,MAAM,0BAAyB,SAAS;AAAA,EAClE;AACJ;AACA,SAAS,+BAA+B,WAAW;AAC/C,SAAO,IAAI,yBAAyB,SAAS;AACjD;;;ACpIA,IAAM,cAAN,MAAkB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKd,OAAO,WAAW,QAAQ;AACtB,QAAI,QAAQ;AACR,UAAI;AACA,cAAM,MAAM,KAAK,MAAM,MAAM;AAC7B,eAAO,OAAO,KAAK,GAAG,EAAE,WAAW;AAAA,MACvC,SACO,GAAG;AAAA,MAAE;AAAA,IAChB;AACA,WAAO;AAAA,EACX;AAAA,EACA,OAAO,WAAW,KAAK,QAAQ;AAC3B,WAAO,IAAI,QAAQ,MAAM,MAAM;AAAA,EACnC;AAAA,EACA,OAAO,SAAS,KAAK,QAAQ;AACzB,WAAQ,IAAI,UAAU,OAAO,UACzB,IAAI,YAAY,MAAM,MAAM,IAAI,SAAS,OAAO;AAAA,EACxD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,oBAAoB,OAAO;AAC9B,UAAM,MAAM,CAAC;AACb,UAAM,SAAS,MAAM,MAAM,GAAG;AAC9B,UAAM,SAAS,CAAC,MAAM,mBAAmB,EAAE,QAAQ,OAAO,GAAG,CAAC;AAC9D,WAAO,QAAQ,CAAC,SAAS;AACrB,UAAI,KAAK,KAAK,GAAG;AACb,cAAM,CAAC,KAAK,KAAK,IAAI,KAAK,MAAM,UAAU,CAAC;AAC3C,YAAI,OAAO,OAAO;AACd,cAAI,OAAO,GAAG,CAAC,IAAI,OAAO,KAAK;AAAA,QACnC;AAAA,MACJ;AAAA,IACJ,CAAC;AACD,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,iBAAiB,KAAK;AACzB,WAAO,IAAI,IAAI,CAAC,UAAU,MAAM,KAAK,CAAC;AAAA,EAC1C;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,4BAA4B,KAAK;AACpC,WAAO,IAAI,OAAO,CAAC,UAAU;AACzB,aAAO,CAAC,CAAC;AAAA,IACb,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,gBAAgB,KAAK;AACxB,QAAI;AACA,aAAO,KAAK,MAAM,GAAG;AAAA,IACzB,SACO,GAAG;AACN,aAAO;AAAA,IACX;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,aAAa,SAAS,OAAO;AAMhC,UAAM,QAAQ,IAAI,OAAO,QACpB,QAAQ,OAAO,MAAM,EACrB,QAAQ,OAAO,OAAO,EACtB,QAAQ,OAAO,KAAK,CAAC;AAC1B,WAAO,MAAM,KAAK,KAAK;AAAA,EAC3B;AACJ;;;AC9EA,IAAM,WAAN,MAAM,UAAS;AAAA,EACX,YAAY,aAAa;AAErB,UAAM,WAAW,cACX,YAAY,iBAAiB,CAAC,GAAG,WAAW,CAAC,IAC7C,CAAC;AACP,UAAM,gBAAgB,WAChB,YAAY,4BAA4B,QAAQ,IAChD,CAAC;AAEP,SAAK,oBAAoB,aAAa;AACtC,SAAK,SAAS,oBAAI,IAAI;AACtB,kBAAc,QAAQ,CAAC,UAAU,KAAK,OAAO,IAAI,KAAK,CAAC;AAAA,EAC3D;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,OAAO,WAAW,kBAAkB;AAChC,UAAM,cAAc,oBAAoB,UAAU;AAClD,UAAM,cAAc,YAAY,MAAM,GAAG;AACzC,WAAO,IAAI,UAAS,WAAW;AAAA,EACnC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,mBAAmB,kBAAkB;AACxC,UAAM,WAAW,IAAI,UAAS,gBAAgB;AAC9C,QAAI,CAAC,SAAS,uBAAuB,GAAG;AACpC,eAAS,iBAAiB;AAAA,IAC9B,OACK;AACD,eAAS,YAAY,UAAU,oBAAoB;AAAA,IACvD;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,oBAAoB,aAAa;AAE7B,QAAI,CAAC,eAAe,YAAY,SAAS,GAAG;AACxC,YAAM,+BAA+B,qBAAqB;AAAA,IAC9D;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,cAAc,OAAO;AACjB,UAAM,kBAAkB,KAAK,qBAAqB,EAAE,MAAM,GAAG;AAC7D,UAAM,qBAAqB,IAAI,UAAS,eAAe;AAEvD,WAAO,QACD,mBAAmB,OAAO,IAAI,MAAM,YAAY,CAAC,IACjD;AAAA,EACV;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB,UAAU;AACvB,QAAI,CAAC,YAAY,SAAS,OAAO,QAAQ,GAAG;AACxC,aAAO;AAAA,IACX;AACA,WAAQ,KAAK,OAAO,QAAQ,SAAS,OAAO,QACxC,SAAS,QAAQ,EAAE,MAAM,CAAC,UAAU,KAAK,cAAc,KAAK,CAAC;AAAA,EACrE;AAAA;AAAA;AAAA;AAAA,EAIA,yBAAyB;AACrB,QAAI,oBAAoB;AACxB,gBAAY,QAAQ,CAAC,iBAAiB;AAClC,UAAI,KAAK,cAAc,YAAY,GAAG;AAClC,6BAAqB;AAAA,MACzB;AAAA,IACJ,CAAC;AACD,WAAO,KAAK,OAAO,SAAS;AAAA,EAChC;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,YAAY,UAAU;AAClB,QAAI,UAAU;AACV,WAAK,OAAO,IAAI,SAAS,KAAK,CAAC;AAAA,IACnC;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,aAAa,WAAW;AACpB,QAAI;AACA,gBAAU,QAAQ,CAAC,aAAa,KAAK,YAAY,QAAQ,CAAC;AAAA,IAC9D,SACO,GAAG;AACN,YAAM,sBAAsB,oBAAoB;AAAA,IACpD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,YAAY,OAAO;AACf,QAAI,CAAC,OAAO;AACR,YAAM,sBAAsB,sBAAsB;AAAA,IACtD;AACA,SAAK,OAAO,OAAO,MAAM,KAAK,CAAC;AAAA,EACnC;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB;AACf,gBAAY,QAAQ,CAAC,iBAAiB;AAClC,WAAK,OAAO,OAAO,YAAY;AAAA,IACnC,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,eAAe,aAAa;AACxB,QAAI,CAAC,aAAa;AACd,YAAM,sBAAsB,kBAAkB;AAAA,IAClD;AACA,UAAM,cAAc,oBAAI,IAAI;AAC5B,gBAAY,OAAO,QAAQ,CAAC,UAAU,YAAY,IAAI,MAAM,YAAY,CAAC,CAAC;AAC1E,SAAK,OAAO,QAAQ,CAAC,UAAU,YAAY,IAAI,MAAM,YAAY,CAAC,CAAC;AACnE,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,sBAAsB,aAAa;AAC/B,QAAI,CAAC,aAAa;AACd,YAAM,sBAAsB,kBAAkB;AAAA,IAClD;AAEA,QAAI,CAAC,YAAY,uBAAuB,GAAG;AACvC,kBAAY,iBAAiB;AAAA,IACjC;AACA,UAAM,cAAc,KAAK,eAAe,WAAW;AACnD,UAAM,kBAAkB,YAAY,cAAc;AAClD,UAAM,iBAAiB,KAAK,cAAc;AAC1C,UAAM,kBAAkB,YAAY;AACpC,WAAO,kBAAkB,iBAAiB;AAAA,EAC9C;AAAA;AAAA;AAAA;AAAA,EAIA,gBAAgB;AACZ,WAAO,KAAK,OAAO;AAAA,EACvB;AAAA;AAAA;AAAA;AAAA,EAIA,UAAU;AACN,UAAM,QAAQ,CAAC;AACf,SAAK,OAAO,QAAQ,CAAC,QAAQ,MAAM,KAAK,GAAG,CAAC;AAC5C,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,cAAc;AACV,QAAI,KAAK,QAAQ;AACb,YAAM,WAAW,KAAK,QAAQ;AAC9B,aAAO,SAAS,KAAK,GAAG;AAAA,IAC5B;AACA,WAAO,UAAU;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA,EAIA,uBAAuB;AACnB,WAAO,KAAK,YAAY,EAAE,YAAY;AAAA,EAC1C;AACJ;;;AC9LA,SAAS,gBAAgB,eAAe,QAAQ;AAC5C,MAAI,CAAC,eAAe;AAChB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AACA,MAAI;AACA,UAAM,oBAAoB,OAAO,aAAa,aAAa;AAC3D,WAAO,KAAK,MAAM,iBAAiB;AAAA,EACvC,SACO,GAAG;AACN,UAAM,sBAAsB,uBAAuB;AAAA,EACvD;AACJ;AAKA,SAAS,iCAAiC,eAAe;AACrD,MAAI,CAAC,eAAe;AAChB,UAAM,sBAAsB,uBAAuB;AAAA,EACvD;AACA,QAAM,kBAAkB,cAAc,MAAM,WAAW,uBAAuB,CAAC;AAC/E,SAAO;AAAA,IACH,KAAK,gBAAgB,CAAC;AAAA,IACtB,MAAM,gBAAgB,SAAS,IACzB,UAAU,eACV,gBAAgB,CAAC;AAAA,EAC3B;AACJ;;;ACjCA,IAAM,gBAAgB;AAAA,EAClB,SAAS;AAAA,EACT,MAAM;AAAA,EACN,MAAM;AAAA,EACN,MAAM;AACV;;;ACLA,IAAM,eAAe;AAAA,EACjB,KAAK;AAAA,EACL,MAAM;AACV;;;ACwBA,IAAM,gBAAN,MAAM,eAAc;AAAA;AAAA;AAAA;AAAA,EAIhB,oBAAoB;AAChB,UAAM,YAAY,CAAC,KAAK,eAAe,KAAK,WAAW;AACvD,WAAO,UAAU,KAAK,WAAW,mBAAmB,EAAE,YAAY;AAAA,EACtE;AAAA;AAAA;AAAA;AAAA,EAIA,qBAAqB;AACjB,WAAO,eAAc,wBAAwB;AAAA,MACzC,eAAe,KAAK;AAAA,MACpB,aAAa,KAAK;AAAA,MAClB,UAAU,KAAK;AAAA,MACf,UAAU,KAAK;AAAA,MACf,gBAAgB,KAAK;AAAA,IACzB,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIA,iBAAiB;AACb,WAAO;AAAA,MACH,eAAe,KAAK;AAAA,MACpB,aAAa,KAAK;AAAA,MAClB,UAAU,KAAK;AAAA,MACf,UAAU,KAAK;AAAA,MACf,gBAAgB,KAAK;AAAA,MACrB,MAAM,KAAK;AAAA,MACX,eAAe,KAAK;AAAA,MACpB,iBAAiB,KAAK;AAAA,MACtB,eAAe,KAAK;AAAA,IACxB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,wBAAwB,kBAAkB;AAC7C,UAAM,aAAa;AAAA,MACf,iBAAiB;AAAA,MACjB,iBAAiB,eAAe,UAAU;AAAA,MAC1C,iBAAiB,YAAY,UAAU;AAAA,IAC3C;AACA,WAAO,WAAW,KAAK,WAAW,mBAAmB,EAAE,YAAY;AAAA,EACvE;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,cAAc,gBAAgB,WAAW;AAC5C,UAAM,UAAU,IAAI,eAAc;AAClC,QAAI,UAAU,kBAAkB,cAAc,MAAM;AAChD,cAAQ,gBAAgB,iBAAiB;AAAA,IAC7C,WACS,UAAU,iBAAiB,aAAa,KAAK;AAClD,cAAQ,gBAAgB,iBAAiB;AAAA,IAC7C,OACK;AACD,cAAQ,gBAAgB,iBAAiB;AAAA,IAC7C;AACA,YAAQ,aAAa,eAAe;AACpC,YAAQ,gBAAgB,eAAe;AACvC,YAAQ,kBAAkB,eAAe;AACzC,UAAM,MAAM,eAAe,eACtB,aAAa,UAAU,kBAAkB;AAC9C,QAAI,CAAC,KAAK;AACN,YAAM,sBAAsB,uBAAuB;AAAA,IACvD;AACA,YAAQ,cAAc;AAEtB,YAAQ,QACJ,eAAe,cAAc,OAAO,UAAU;AAClD,YAAQ,gBAAgB,eAAe;AAEvC,YAAQ,iBACJ,eAAe,cAAc,OACzB,eAAe,cAAc,OAC7B,UAAU;AAMlB,UAAM,oBAAoB,eAAe,cAAc,sBACnD,eAAe,cAAc;AACjC,UAAM,QAAQ,eAAe,cAAc,SACrC,eAAe,cAAc,OAAO,CAAC,IACrC;AACN,YAAQ,WAAW,qBAAqB,SAAS,UAAU;AAC3D,YAAQ,OAAO,eAAe,cAAc;AAC5C,YAAQ,qBAAqB,eAAe;AAC5C,YAAQ,cAAc,eAAe;AACrC,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,OAAO,sBAAsB,aAAa,oBAAoB,aAAa;AACvE,UAAM,UAAU,IAAI,eAAc;AAClC,YAAQ,gBACJ,YAAY,iBAAiB,iBAAiB;AAClD,YAAQ,gBAAgB,YAAY;AACpC,YAAQ,iBAAiB,YAAY;AACrC,YAAQ,kBAAkB,YAAY;AACtC,YAAQ,QAAQ,YAAY;AAC5B,YAAQ,cAAc,YAAY;AAClC,YAAQ,WAAW,YAAY;AAC/B,YAAQ,OAAO,YAAY;AAC3B,YAAQ,gBAAgB,YAAY;AACpC,YAAQ,qBAAqB;AAC7B,YAAQ,cAAc;AACtB,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,sBAAsB,kBAAkB,UAAU,QAAQ,WAAW,eAAe;AACvF,UAAM,YAAY,eAAe,MAC3B,cAAc,MACd,UAAU;AAEhB,QAAI,aAAa,cAAc,QAC3B,aAAa,cAAc,MAAM;AACjC,aAAO;AAAA,IACX;AAEA,QAAI,kBAAkB;AAClB,UAAI;AACA,cAAM,aAAa,gBAAgB,kBAAkB,SAAS;AAC9D,YAAI,WAAW,OAAO,WAAW,MAAM;AACnC,iBAAO,GAAG,WAAW,GAAG,GAAG,WAAW,qBAAqB,GAAG,WAAW,IAAI;AAAA,QACjF;AAAA,MACJ,SACO,GAAG;AAAA,MAAE;AAAA,IAChB;AAEA,WAAO,QAAQ,4BAA4B;AAC3C,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,gBAAgB,QAAQ;AAC3B,QAAI,CAAC,QAAQ;AACT,aAAO;AAAA,IACX;AACA,WAAQ,OAAO,eAAe,eAAe,KACzC,OAAO,eAAe,aAAa,KACnC,OAAO,eAAe,OAAO,KAC7B,OAAO,eAAe,gBAAgB,KACtC,OAAO,eAAe,UAAU,KAChC,OAAO,eAAe,eAAe;AAAA,EAC7C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,OAAO,mBAAmB,UAAU,UAAU,eAAe;AACzD,QAAI,CAAC,YAAY,CAAC,UAAU;AACxB,aAAO;AAAA,IACX;AACA,QAAI,cAAc;AAClB,QAAI,eAAe;AACf,YAAM,iBAAkB,SAAS,iBAC7B,CAAC;AACL,YAAM,iBAAkB,SAAS,iBAC7B,CAAC;AAEL,oBACI,eAAe,QAAQ,eAAe,OAClC,eAAe,UAAU,eAAe;AAAA,IACpD;AACA,WAAQ,SAAS,kBAAkB,SAAS,iBACxC,SAAS,mBAAmB,SAAS,kBACrC,SAAS,aAAa,SAAS,YAC/B,SAAS,aAAa,SAAS,YAC/B,SAAS,gBAAgB,SAAS,eAClC,SAAS,oBAAoB,SAAS,mBACtC;AAAA,EACR;AACJ;;;ACpOA;AAAA;AAAA;AAAA;AAAA;AAAA;AAcA,SAAS,mBAAmB,cAAcC,eAAc;AACpD,QAAM,aAAa,cAAc,YAAY;AAE7C,MAAI;AAEA,UAAM,gBAAgBA,cAAa,UAAU;AAC7C,WAAO,KAAK,MAAM,aAAa;AAAA,EACnC,SACO,KAAK;AACR,UAAM,sBAAsB,iBAAiB;AAAA,EACjD;AACJ;AAMA,SAAS,cAAc,WAAW;AAC9B,MAAI,CAAC,WAAW;AACZ,UAAM,sBAAsB,gBAAgB;AAAA,EAChD;AACA,QAAM,kBAAkB;AACxB,QAAM,UAAU,gBAAgB,KAAK,SAAS;AAC9C,MAAI,CAAC,WAAW,QAAQ,SAAS,GAAG;AAChC,UAAM,sBAAsB,iBAAiB;AAAA,EACjD;AAQA,SAAO,QAAQ,CAAC;AACpB;AAIA,SAAS,YAAY,UAAU,QAAQ;AAMnC,QAAM,iBAAiB;AACvB,MAAI,WAAW,KAAK,KAAK,IAAI,IAAI,iBAAiB,WAAW,QAAQ;AACjE,UAAM,sBAAsB,gBAAgB;AAAA,EAChD;AACJ;;;AC5CA,IAAM,eAAN,MAAmB;AAAA,EACf,YAAY,UAAU,YAAY,QAAQ;AACtC,SAAK,WAAW;AAChB,SAAK,aAAa;AAClB,SAAK,eAAe,OAAO,MAAM,MAAM,OAAO;AAAA,EAClD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,eAAe,eAAe;AAC1B,QAAI,eAAe;AACf,aAAO,KAAK,sBAAsB,aAAa,EAAE,IAAI,CAAC,kBAAkB;AACpE,eAAO,cAAc,eAAe;AAAA,MACxC,CAAC;AAAA,IACL;AACA,UAAM,iBAAiB,KAAK,eAAe;AAC3C,QAAI,eAAe,SAAS,GAAG;AAC3B,aAAO,CAAC;AAAA,IACZ;AACA,UAAM,kBAAkB,eAAe,OAAO,CAAC,UAAU,QAAQ;AAC7D,YAAM,SAAS,KAAK,WAAW,GAAG;AAClC,UAAI,CAAC,QAAQ;AACT,eAAO;AAAA,MACX;AACA,eAAS,KAAK,MAAM;AACpB,aAAO;AAAA,IACX,GAAG,CAAC,CAAC;AACL,UAAM,cAAc,gBAAgB,IAAI,CAAC,kBAAkB;AACvD,aAAO,KAAK,yBAAyB,aAAa;AAAA,IACtD,CAAC;AACD,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,yBAAyB,eAAe;AACpC,UAAM,cAAc,KAAK,sBAAsB,aAAa;AAC5D,QAAI,YAAY,SAAS,GAAG;AACxB,aAAO,KAAK,yBAAyB,YAAY,CAAC,CAAC;AAAA,IACvD,OACK;AACD,aAAO;AAAA,IACX;AAAA,EACJ;AAAA,EACA,yBAAyB,eAAe;AACpC,UAAM,cAAc,cAAc,eAAe;AACjD,UAAM,UAAU,KAAK,WAAW,WAAW;AAC3C,QAAI,SAAS;AACT,kBAAY,UAAU,QAAQ;AAC9B,kBAAY,gBAAgB,mBAAmB,QAAQ,QAAQ,KAAK,WAAW,YAAY;AAAA,IAC/F;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,gBAAgB,aAAa,cAAc;AAAA;AAC7C,UAAI,CAAC,aAAa;AACd,cAAM,sBAAsB,kBAAkB;AAAA,MAClD;AACA,UAAI,CAAC,CAAC,YAAY,SAAS;AACvB,aAAK,WAAW,YAAY,OAAO;AAAA,MACvC;AACA,UAAI,CAAC,CAAC,YAAY,WAAW,cAAc,YAAY,OAAO;AAC1D,aAAK,qBAAqB,YAAY,OAAO;AAAA,MACjD;AACA,UAAI,CAAC,CAAC,YAAY,eAAe,cAAc,gBAAgB,OAAO;AAClE,cAAM,KAAK,gBAAgB,YAAY,WAAW;AAAA,MACtD;AACA,UAAI,CAAC,CAAC,YAAY,gBACd,cAAc,iBAAiB,OAAO;AACtC,aAAK,0BAA0B,YAAY,YAAY;AAAA,MAC3D;AACA,UAAI,CAAC,CAAC,YAAY,aAAa;AAC3B,aAAK,eAAe,YAAY,WAAW;AAAA,MAC/C;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,gBAAgB,YAAY;AAAA;AAC9B,YAAM,oBAAoB;AAAA,QACtB,UAAU,WAAW;AAAA,QACrB,gBAAgB,WAAW;AAAA,QAC3B,aAAa,WAAW;AAAA,QACxB,eAAe,WAAW;AAAA,QAC1B,OAAO,WAAW;AAAA,QAClB,WAAW,WAAW;AAAA,QACtB,qBAAqB,WAAW;AAAA,MACpC;AACA,YAAM,YAAY,KAAK,aAAa;AACpC,YAAM,gBAAgB,SAAS,WAAW,WAAW,MAAM;AAC3D,YAAM,sBAAsB,CAAC;AAC7B,gBAAU,YAAY,QAAQ,CAAC,QAAQ;AACnC,YAAI,CAAC,KAAK,4BAA4B,KAAK,mBAAmB,KAAK,GAAG;AAClE;AAAA,QACJ;AACA,cAAM,cAAc,KAAK,yBAAyB,GAAG;AACrD,YAAI,eACA,KAAK,wBAAwB,aAAa,iBAAiB,GAAG;AAC9D,gBAAM,gBAAgB,SAAS,WAAW,YAAY,MAAM;AAC5D,cAAI,cAAc,sBAAsB,aAAa,GAAG;AACpD,gCAAoB,KAAK,KAAK,kBAAkB,GAAG,CAAC;AAAA,UACxD;AAAA,QACJ;AAAA,MACJ,CAAC;AACD,YAAM,QAAQ,IAAI,mBAAmB;AACrC,WAAK,yBAAyB,UAAU;AAAA,IAC5C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,sBAAsB,eAAe;AACjC,UAAM,iBAAiB,KAAK,eAAe;AAC3C,UAAM,mBAAmB,CAAC;AAC1B,mBAAe,QAAQ,CAAC,aAAa;AACjC,UAAI,CAAC,KAAK,aAAa,UAAU,cAAc,eAAe,cAAc,QAAQ,GAAG;AAEnF;AAAA,MACJ;AACA,YAAM,SAAS,KAAK,WAAW,QAAQ;AACvC,UAAI,CAAC,QAAQ;AACT;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,cAAc,iBAChB,CAAC,KAAK,mBAAmB,QAAQ,cAAc,aAAa,GAAG;AAC/D;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,cAAc,kBAChB,CAAC,KAAK,oBAAoB,QAAQ,cAAc,cAAc,GAAG;AACjE;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,cAAc,YAChB,CAAC,KAAK,cAAc,QAAQ,cAAc,QAAQ,GAAG;AACrD;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,cAAc,eAChB,CAAC,KAAK,iBAAiB,QAAQ,cAAc,WAAW,GAAG;AAC3D;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,cAAc,SAChB,CAAC,KAAK,WAAW,QAAQ,cAAc,KAAK,GAAG;AAC/C;AAAA,MACJ;AAEA,UAAI,CAAC,CAAC,cAAc,YAChB,CAAC,KAAK,WAAW,QAAQ,cAAc,QAAQ,GAAG;AAClD;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,cAAc,mBAChB,CAAC,KAAK,qBAAqB,QAAQ,cAAc,eAAe,GAAG;AACnE;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,cAAc,aAChB,CAAC,KAAK,eAAe,QAAQ,cAAc,SAAS,GAAG;AACvD;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,cAAc,iBAChB,CAAC,KAAK,mBAAmB,QAAQ,cAAc,aAAa,GAAG;AAC/D;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,cAAc,QAChB,CAAC,KAAK,UAAU,QAAQ,cAAc,IAAI,GAAG;AAC7C;AAAA,MACJ;AACA,uBAAiB,KAAK,MAAM;AAAA,IAChC,CAAC;AACD,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,aAAa,KAAK,eAAe,UAAU;AACvC,QAAI,IAAI,MAAM,WAAW,mBAAmB,EAAE,SAAS,GAAG;AAEtD,aAAO;AAAA,IACX;AACA,QAAI,iBACA,CAAC,IAAI,YAAY,EAAE,SAAS,cAAc,YAAY,CAAC,GAAG;AAC1D,aAAO;AAAA,IACX;AACA,QAAI,YAAY,CAAC,IAAI,YAAY,EAAE,SAAS,SAAS,YAAY,CAAC,GAAG;AACjE,aAAO;AAAA,IACX;AAEA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB,KAAK;AACjB,QAAI,IAAI,MAAM,WAAW,mBAAmB,EAAE,SAAS,GAAG;AAEtD,aAAO;AAAA,IACX;AACA,UAAM,eAAe,IAAI,YAAY;AAErC,QAAI,aAAa,QAAQ,eAAe,SAAS,YAAY,CAAC,MAC1D,MACA,aAAa,QAAQ,eAAe,aAAa,YAAY,CAAC,MAC1D,MACJ,aAAa,QAAQ,eAAe,8BAA8B,YAAY,CAAC,MAAM,MACrF,aAAa,QAAQ,eAAe,cAAc,YAAY,CAAC,MAC3D,IAAI;AACR,aAAO;AAAA,IACX;AACA,QAAI,aAAa,QAAQ,eAAe,cAAc,YAAY,CAAC,IAC/D,IAAI;AAEJ,YAAM,qBAAqB,GAAG,eAAe,aAAa,GAAG,WAAW,mBAAmB,GAAG,KAAK,QAAQ,GAAG,WAAW,mBAAmB;AAC5I,YAAM,qBAAqB,GAAG,eAAe,aAAa,GAAG,WAAW,mBAAmB,GAAG,aAAa,GAAG,WAAW,mBAAmB;AAC5I,UAAI,aAAa,QAAQ,mBAAmB,YAAY,CAAC,MAAM,MAC3D,aAAa,QAAQ,mBAAmB,YAAY,CAAC,MAAM,IAAI;AAC/D,eAAO;AAAA,MACX;AAAA,IACJ,WACS,aAAa,QAAQ,KAAK,SAAS,YAAY,CAAC,MAAM,IAAI;AAE/D,aAAO;AAAA,IACX;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,wBAAwB,QAAQ,QAAQ;AACpC,QAAI,CAAC,CAAC,OAAO,YAAY,CAAC,KAAK,cAAc,QAAQ,OAAO,QAAQ,GAAG;AACnE,aAAO;AAAA,IACX;AACA,QAAI,CAAC,CAAC,OAAO,qBACT,CAAC,KAAK,uBAAuB,QAAQ,OAAO,iBAAiB,GAAG;AAChE,aAAO;AAAA,IACX;AAKA,QAAI,OAAO,OAAO,kBAAkB,YAChC,CAAC,KAAK,mBAAmB,QAAQ,OAAO,aAAa,GAAG;AACxD,aAAO;AAAA,IACX;AACA,QAAI,CAAC,CAAC,OAAO,eACT,CAAC,KAAK,iBAAiB,QAAQ,OAAO,WAAW,GAAG;AACpD,aAAO;AAAA,IACX;AACA,QAAI,CAAC,CAAC,OAAO,SAAS,CAAC,KAAK,WAAW,QAAQ,OAAO,KAAK,GAAG;AAC1D,aAAO;AAAA,IACX;AACA,QAAI,CAAC,CAAC,OAAO,kBACT,CAAC,KAAK,oBAAoB,QAAQ,OAAO,cAAc,GAAG;AAC1D,aAAO;AAAA,IACX;AACA,QAAI,CAAC,CAAC,OAAO,YAAY,CAAC,KAAK,cAAc,QAAQ,OAAO,QAAQ,GAAG;AACnE,aAAO;AAAA,IACX;AAKA,QAAI,CAAC,CAAC,OAAO,UAAU,CAAC,KAAK,YAAY,QAAQ,OAAO,MAAM,GAAG;AAC7D,aAAO;AAAA,IACX;AAEA,QAAI,OAAO,uBAAuB,OAAO,qBAAqB;AAE1D,UAAI,OAAO,wBAAwB,OAAO,qBAAqB;AAC3D,eAAO;AAAA,MACX;AAAA,IACJ;AAEA,QAAI,OAAO,mBACP,eAAe,+BAA+B;AAC9C,UAAI,CAAC,CAAC,OAAO,aACT,CAAC,KAAK,eAAe,QAAQ,OAAO,SAAS,GAAG;AAChD,eAAO;AAAA,MACX;AAEA,UAAI,OAAO,cAAc,qBAAqB,KAAK;AAC/C,YAAI,OAAO,SAAS,CAAC,KAAK,WAAW,QAAQ,OAAO,KAAK,GAAG;AACxD,iBAAO;AAAA,QACX;AAAA,MACJ;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,yBAAyB,QAAQ;AAC7B,WAAO,KAAK,iCAAiC,OAAO,aAAa,OAAO,QAAQ;AAAA,EACpF;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,iCAAiC,aAAa,UAAU;AACpD,UAAM,eAAe,KAAK,QAAQ;AAClC,UAAM,sBAAsB,CAAC;AAC7B,iBAAa,QAAQ,CAAC,aAAa;AAE/B,UAAI,CAAC,KAAK,cAAc,QAAQ,GAAG;AAC/B;AAAA,MACJ;AAEA,YAAM,SAAS,KAAK,eAAe,QAAQ;AAC3C,UAAI,CAAC,QAAQ;AACT;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,eAAe,CAAC,KAAK,iBAAiB,QAAQ,WAAW,GAAG;AAC9D;AAAA,MACJ;AACA,UAAI,CAAC,CAAC,YAAY,CAAC,KAAK,cAAc,QAAQ,QAAQ,GAAG;AACrD;AAAA,MACJ;AACA,0BAAoB,QAAQ,IAAI;AAAA,IACpC,CAAC;AACD,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,4BAA4B,MAAM;AAC9B,UAAM,eAAe,KAAK,yBAAyB;AACnD,QAAI,gBAAgB;AACpB,iBAAa,QAAQ,CAAC,aAAa;AAE/B,UAAI,CAAC,KAAK,oBAAoB,QAAQ,KAClC,SAAS,QAAQ,KAAK,QAAQ,MAAM,IAAI;AACxC;AAAA,MACJ;AAEA,YAAM,SAAS,KAAK,qBAAqB,QAAQ;AACjD,UAAI,CAAC,QAAQ;AACT;AAAA,MACJ;AACA,UAAI,OAAO,QAAQ,QAAQ,IAAI,MAAM,IAAI;AACrC;AAAA,MACJ;AACA,sBAAgB;AAAA,IACpB,CAAC;AACD,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIM,oBAAoB;AAAA;AACtB,YAAM,iBAAiB,KAAK,eAAe;AAC3C,YAAM,kBAAkB,CAAC;AACzB,qBAAe,QAAQ,CAAC,aAAa;AACjC,wBAAgB,KAAK,KAAK,cAAc,QAAQ,CAAC;AAAA,MACrD,CAAC;AACD,YAAM,QAAQ,IAAI,eAAe;AAAA,IACrC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,cAAc,YAAY;AAAA;AAC5B,YAAM,UAAU,KAAK,WAAW,UAAU;AAC1C,UAAI,CAAC,SAAS;AACV;AAAA,MACJ;AACA,YAAM,KAAK,qBAAqB,OAAO;AACvC,WAAK,WAAW,UAAU;AAAA,IAC9B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,qBAAqB,SAAS;AAAA;AAChC,YAAM,eAAe,KAAK,aAAa;AACvC,YAAM,YAAY,QAAQ,kBAAkB;AAC5C,YAAM,qBAAqB,CAAC;AAC5B,mBAAa,QAAQ,QAAQ,CAAC,QAAQ;AAClC,YAAI,IAAI,QAAQ,SAAS,MAAM,GAAG;AAC9B,eAAK,cAAc,GAAG;AAAA,QAC1B;AAAA,MACJ,CAAC;AACD,mBAAa,YAAY,QAAQ,CAAC,QAAQ;AACtC,YAAI,IAAI,QAAQ,SAAS,MAAM,GAAG;AAC9B,6BAAmB,KAAK,KAAK,kBAAkB,GAAG,CAAC;AAAA,QACvD;AAAA,MACJ,CAAC;AACD,mBAAa,aAAa,QAAQ,CAAC,QAAQ;AACvC,YAAI,IAAI,QAAQ,SAAS,MAAM,GAAG;AAC9B,eAAK,mBAAmB,GAAG;AAAA,QAC/B;AAAA,MACJ,CAAC;AACD,YAAM,QAAQ,IAAI,kBAAkB;AAAA,IACxC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,kBAAkB,KAAK;AAAA;AACzB,YAAM,aAAa,KAAK,yBAAyB,GAAG;AACpD,UAAI,CAAC,YAAY;AACb;AAAA,MACJ;AAEA,UAAI,WAAW,eAAe,YAAY,MACtC,eAAe,8BAA8B,YAAY,GAAG;AAC5D,YAAI,WAAW,cAAc,qBAAqB,KAAK;AACnD,gBAAM,kCAAkC;AACxC,gBAAM,MAAM,gCAAgC;AAC5C,cAAI,KAAK;AACL,gBAAI;AACA,oBAAM,KAAK,WAAW,sBAAsB,GAAG;AAAA,YACnD,SACO,OAAO;AACV,oBAAM,sBAAsB,oBAAoB;AAAA,YACpD;AAAA,UACJ;AAAA,QACJ;AAAA,MACJ;AACA,aAAO,KAAK,WAAW,GAAG;AAAA,IAC9B;AAAA;AAAA;AAAA;AAAA;AAAA,EAIA,oBAAoB;AAChB,UAAM,eAAe,KAAK,QAAQ;AAClC,iBAAa,QAAQ,CAAC,aAAa;AAC/B,UAAI,KAAK,cAAc,QAAQ,GAAG;AAC9B,aAAK,WAAW,QAAQ;AAAA,MAC5B;AAAA,IACJ,CAAC;AACD,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASA,gBAAgB,SAAS,SAAS,aAAa;AAC3C,UAAM,YAAY,KAAK,aAAa;AACpC,UAAM,gBAAgB,KAAK,qBAAqB,OAAO;AACvD,UAAM,gBAAgB,KAAK,WAAW,SAAS,SAAS;AACxD,UAAM,oBAAoB,KAAK,eAAe,SAAS,SAAS,SAAS;AACzE,UAAM,qBAAqB,KAAK,gBAAgB,SAAS,OAAO,SAAS;AACzE,UAAM,oBAAoB,KAAK,yBAAyB,WAAW;AACnE,QAAI,iBAAiB,eAAe;AAChC,oBAAc,gBAAgB,mBAAmB,cAAc,QAAQ,KAAK,WAAW,YAAY;AAAA,IACvG;AACA,WAAO;AAAA,MACH,SAAS;AAAA,MACT,SAAS;AAAA,MACT,aAAa;AAAA,MACb,cAAc;AAAA,MACd,aAAa;AAAA,IACjB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,qBAAqB,SAAS;AAC1B,UAAM,aAAa,cAAc,wBAAwB,OAAO;AAChE,WAAO,KAAK,WAAW,UAAU;AAAA,EACrC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,WAAW,SAAS,WAAW;AAC3B,SAAK,aAAa,MAAM,kCAAkC;AAC1D,UAAM,gBAAgB;AAAA,MAClB,eAAe,QAAQ;AAAA,MACvB,aAAa,QAAQ;AAAA,MACrB,gBAAgB,eAAe;AAAA,MAC/B,UAAU,KAAK;AAAA,MACf,OAAO,QAAQ;AAAA,IACnB;AACA,UAAM,WAAW,KAAK,oBAAoB,eAAe,SAAS;AAClE,UAAM,cAAc,SAAS;AAC7B,QAAI,cAAc,GAAG;AACjB,WAAK,aAAa,KAAK,0CAA0C;AACjE,aAAO;AAAA,IACX,WACS,cAAc,GAAG;AACtB,WAAK,aAAa,KAAK,mEAAmE;AAC1F,eAAS,QAAQ,CAAC,YAAY;AAC1B,aAAK,cAAc,QAAQ,sBAAsB,CAAC;AAAA,MACtD,CAAC;AACD,aAAO;AAAA,IACX;AACA,SAAK,aAAa,KAAK,8CAA8C;AACrE,WAAO,SAAS,CAAC;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,oBAAoB,QAAQ,WAAW;AACnC,UAAM,cAAe,aAAa,UAAU,WAAY,KAAK,aAAa,EAAE;AAC5E,UAAM,WAAW,CAAC;AAClB,gBAAY,QAAQ,CAAC,QAAQ;AACzB,UAAI,CAAC,KAAK,wBAAwB,KAAK;AAAA,QACnC,UAAU,KAAK;AAAA,SACZ,OACN,GAAG;AACA;AAAA,MACJ;AACA,YAAM,UAAU,KAAK,qBAAqB,GAAG;AAC7C,UAAI,WAAW,KAAK,wBAAwB,SAAS,MAAM,GAAG;AAC1D,iBAAS,KAAK,OAAO;AAAA,MACzB;AAAA,IACJ,CAAC;AACD,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,wBAAwB,UAAU,QAAQ;AACtC,UAAM,MAAM,SAAS,YAAY;AACjC,QAAI,OAAO,YACP,IAAI,QAAQ,OAAO,SAAS,YAAY,CAAC,MAAM,IAAI;AACnD,aAAO;AAAA,IACX;AACA,QAAI,OAAO,iBACP,IAAI,QAAQ,OAAO,cAAc,YAAY,CAAC,MAAM,IAAI;AACxD,aAAO;AAAA,IACX;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,cAAc,KAAK;AACf,SAAK,WAAW,GAAG;AAAA,EACvB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB,KAAK;AACpB,SAAK,WAAW,GAAG;AAAA,EACvB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,eAAe,SAAS,SAAS,WAAW;AACxC,SAAK,aAAa,MAAM,sCAAsC;AAC9D,UAAM,SAAS,SAAS,mBAAmB,QAAQ,MAAM;AACzD,UAAM,aAAa,QAAQ,wBAAwB,qBAAqB;AAKxE,UAAM,iBAAiB,cACnB,WAAW,YAAY,MACnB,qBAAqB,OAAO,YAAY,IAC1C,eAAe,gCACf,eAAe;AACrB,UAAM,oBAAoB;AAAA,MACtB,eAAe,QAAQ;AAAA,MACvB,aAAa,QAAQ;AAAA,MACrB;AAAA,MACA,UAAU,KAAK;AAAA,MACf,OAAO,QAAQ;AAAA,MACf,QAAQ;AAAA,MACR,WAAW;AAAA,MACX,OAAO,QAAQ;AAAA,MACf,qBAAqB,QAAQ;AAAA,IACjC;AACA,UAAM,kBAAmB,aAAa,UAAU,eAC5C,KAAK,aAAa,EAAE;AACxB,UAAM,eAAe,CAAC;AACtB,oBAAgB,QAAQ,CAAC,QAAQ;AAE7B,UAAI,KAAK,4BAA4B,KAAK,mBAAmB,IAAI,GAAG;AAChE,cAAM,cAAc,KAAK,yBAAyB,GAAG;AAErD,YAAI,eACA,KAAK,wBAAwB,aAAa,iBAAiB,GAAG;AAC9D,uBAAa,KAAK,WAAW;AAAA,QACjC;AAAA,MACJ;AAAA,IACJ,CAAC;AACD,UAAM,kBAAkB,aAAa;AACrC,QAAI,kBAAkB,GAAG;AACrB,WAAK,aAAa,KAAK,8CAA8C;AACrE,aAAO;AAAA,IACX,WACS,kBAAkB,GAAG;AAC1B,WAAK,aAAa,KAAK,2EAA2E;AAClG,mBAAa,QAAQ,CAAC,gBAAgB;AAClC,aAAK,KAAK,kBAAkB,YAAY,sBAAsB,CAAC;AAAA,MACnE,CAAC;AACD,aAAO;AAAA,IACX;AACA,SAAK,aAAa,KAAK,sDAAsD;AAC7E,WAAO,aAAa,CAAC;AAAA,EACzB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,4BAA4B,UAAU,QAAQ,yBAAyB;AACnE,UAAM,MAAM,SAAS,YAAY;AACjC,QAAI,OAAO,YACP,IAAI,QAAQ,OAAO,SAAS,YAAY,CAAC,MAAM,IAAI;AACnD,aAAO;AAAA,IACX;AACA,QAAI,OAAO,iBACP,IAAI,QAAQ,OAAO,cAAc,YAAY,CAAC,MAAM,IAAI;AACxD,aAAO;AAAA,IACX;AACA,QAAI,OAAO,SAAS,IAAI,QAAQ,OAAO,MAAM,YAAY,CAAC,MAAM,IAAI;AAChE,aAAO;AAAA,IACX;AACA,QAAI,OAAO,uBACP,IAAI,QAAQ,OAAO,oBAAoB,YAAY,CAAC,MAAM,IAAI;AAC9D,aAAO;AAAA,IACX;AACA,QAAI,OAAO,QAAQ;AACf,YAAM,SAAS,OAAO,OAAO,QAAQ;AACrC,eAAS,IAAI,GAAG,IAAI,OAAO,QAAQ,KAAK;AACpC,YAAI,2BACA,CAAC,IAAI,SAAS,OAAO,CAAC,EAAE,YAAY,CAAC,GAAG;AAExC,iBAAO;AAAA,QACX,WACS,CAAC,2BACN,IAAI,SAAS,OAAO,CAAC,EAAE,YAAY,CAAC,GAAG;AAEvC,iBAAO;AAAA,QACX;AAAA,MACJ;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,wBAAwB,QAAQ;AAC5B,UAAM,YAAY,KAAK,aAAa;AACpC,UAAM,eAAe,CAAC;AACtB,cAAU,YAAY,QAAQ,CAAC,QAAQ;AACnC,UAAI,CAAC,KAAK,4BAA4B,KAAK,QAAQ,IAAI,GAAG;AACtD;AAAA,MACJ;AACA,YAAM,cAAc,KAAK,yBAAyB,GAAG;AACrD,UAAI,eACA,KAAK,wBAAwB,aAAa,MAAM,GAAG;AACnD,qBAAa,KAAK,WAAW;AAAA,MACjC;AAAA,IACJ,CAAC;AACD,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,gBAAgB,SAAS,UAAU,WAAW;AAC1C,SAAK,aAAa,MAAM,uCAAuC;AAC/D,UAAM,KAAK,WAAW,gBAAgB;AACtC,UAAM,qBAAqB;AAAA,MACvB,eAAe,QAAQ;AAAA,MACvB,aAAa,QAAQ;AAAA,MACrB,gBAAgB,eAAe;AAAA,MAC/B,UAAU,KAAK;AAAA,MACf,UAAU;AAAA,IACd;AACA,UAAM,mBAAoB,aAAa,UAAU,gBAC7C,KAAK,aAAa,EAAE;AACxB,UAAM,gBAAgB,CAAC;AACvB,qBAAiB,QAAQ,CAAC,QAAQ;AAE9B,UAAI,KAAK,6BAA6B,KAAK,kBAAkB,GAAG;AAC5D,cAAM,eAAe,KAAK,0BAA0B,GAAG;AAEvD,YAAI,gBACA,KAAK,wBAAwB,cAAc,kBAAkB,GAAG;AAChE,wBAAc,KAAK,YAAY;AAAA,QACnC;AAAA,MACJ;AAAA,IACJ,CAAC;AACD,UAAM,mBAAmB,cAAc;AACvC,QAAI,mBAAmB,GAAG;AACtB,WAAK,aAAa,KAAK,wDAAwD;AAC/E,aAAO;AAAA,IACX;AAEA,SAAK,aAAa,KAAK,wDAAwD;AAC/E,WAAO,cAAc,CAAC;AAAA,EAC1B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,6BAA6B,UAAU,QAAQ;AAC3C,UAAM,MAAM,SAAS,YAAY;AACjC,QAAI,OAAO,YACP,IAAI,QAAQ,OAAO,SAAS,YAAY,CAAC,MAAM,IAAI;AACnD,aAAO;AAAA,IACX;AAEA,QAAI,CAAC,OAAO,YACR,OAAO,YACP,IAAI,QAAQ,OAAO,SAAS,YAAY,CAAC,MAAM,IAAI;AACnD,aAAO;AAAA,IACX;AACA,QAAI,OAAO,iBACP,IAAI,QAAQ,OAAO,cAAc,YAAY,CAAC,MAAM,IAAI;AACxD,aAAO;AAAA,IACX;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,yBAAyB,aAAa;AAClC,UAAM,oBAAoB;AAAA,MACtB;AAAA,MACA,UAAU,KAAK;AAAA,IACnB;AACA,UAAM,cAAc,KAAK,yBAAyB,iBAAiB;AACnE,UAAM,qBAAqB,OAAO,KAAK,WAAW,EAAE,IAAI,CAAC,QAAQ,YAAY,GAAG,CAAC;AACjF,UAAM,iBAAiB,mBAAmB;AAC1C,QAAI,iBAAiB,GAAG;AACpB,aAAO;AAAA,IACX,WACS,iBAAiB,GAAG;AACzB,YAAM,sBAAsB,2BAA2B;AAAA,IAC3D;AACA,WAAO,mBAAmB,CAAC;AAAA,EAC/B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,kBAAkB,aAAa;AAC3B,UAAM,cAAc,KAAK,yBAAyB,WAAW;AAC7D,WAAO,CAAC,EAAE,eAAe,YAAY,aAAa;AAAA,EACtD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,mBAAmB,QAAQ,eAAe;AACtC,WAAO,CAAC,EAAE,OAAO,OAAO,kBAAkB,YACtC,kBAAkB,OAAO;AAAA,EACjC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,oBAAoB,QAAQ,gBAAgB;AACxC,WAAO,CAAC,EAAE,OAAO,OAAO,mBAAmB,YACvC,mBAAmB,OAAO;AAAA,EAClC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,cAAc,QAAQ,UAAU;AAC5B,WAAO,CAAC,EAAE,OAAO,OAAO,aAAa,YACjC,SAAS,YAAY,MAAM,OAAO,SAAS,YAAY;AAAA,EAC/D;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,UAAU,QAAQC,OAAM;AACpB,WAAO,CAAC,EAAEA,MAAK,YAAY,MAAM,OAAO,MAAM,YAAY;AAAA,EAC9D;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,uBAAuB,QAAQ,mBAAmB;AAC9C,WAAO,CAAC,EAAE,OAAO,qBACb,sBAAsB,OAAO;AAAA,EACrC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,iBAAiB,QAAQ,aAAa;AAClC,UAAM,gBAAgB,KAAK,4BAA4B,WAAW;AAClE,QAAI,iBACA,cAAc,QAAQ,QAAQ,OAAO,WAAW,IAAI,IAAI;AACxD,aAAO;AAAA,IACX;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,oBAAoB,QAAQ,gBAAgB;AACxC,WAAQ,OAAO,kBACX,eAAe,YAAY,MAAM,OAAO,eAAe,YAAY;AAAA,EAC3E;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,cAAc,QAAQ,UAAU;AAC5B,WAAO,CAAC,EAAE,OAAO,YAAY,aAAa,OAAO;AAAA,EACrD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,cAAc,QAAQ,UAAU;AAC5B,WAAO,CAAC,EAAE,OAAO,YAAY,aAAa,OAAO;AAAA,EACrD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,WAAW,QAAQ,OAAO;AACtB,WAAO,CAAC,EAAE,OAAO,SAAS,UAAU,OAAO;AAAA,EAC/C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,qBAAqB,QAAQ,iBAAiB;AAC1C,WAAO,CAAC,EAAE,OAAO,mBAAmB,oBAAoB,OAAO;AAAA,EACnE;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAUA,eAAe,QAAQ,WAAW;AAC9B,QAAI,OAAO,eAAe,eAAe,WAAW;AAChD,aAAO;AAAA,IACX;AACA,QAAI,OAAO,aAAa,WAAW;AAC/B,aAAO;AAAA,IACX;AACA,QAAI,OAAO,eAAe,QAAQ,WAAW;AACzC,aAAO;AAAA,IACX;AACA,WAAO;AAAA,EACX;AAAA,EACA,mBAAmB,QAAQ,eAAe;AACtC,WAAO,CAAC,EAAE,OAAO,iBACb,cAAc,YAAY,MAAM,OAAO,cAAc,YAAY;AAAA,EACzE;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,YAAY,QAAQ,QAAQ;AACxB,UAAM,6BAA6B,OAAO,mBAAmB,eAAe,gBACxE,OAAO,mBACH,eAAe;AACvB,QAAI,8BAA8B,CAAC,OAAO,QAAQ;AAC9C,aAAO;AAAA,IACX;AACA,UAAM,iBAAiB,SAAS,WAAW,OAAO,MAAM;AACxD,WAAO,eAAe,iBAAiB,MAAM;AAAA,EACjD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,eAAe,QAAQ,WAAW;AAC9B,WAAO,CAAC,EAAE,OAAO,aAAa,OAAO,cAAc;AAAA,EACvD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,WAAW,QAAQ,OAAO;AACtB,WAAO,CAAC,EAAE,OAAO,SAAS,OAAO,UAAU;AAAA,EAC/C;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,cAAc,KAAK;AACf,WAAO,IAAI,QAAQ,YAAY,MAAM;AAAA,EACzC;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,oBAAoB,KAAK;AACrB,WAAO,IAAI,QAAQ,6BAA6B,SAAS,MAAM;AAAA,EACnE;AAAA;AAAA;AAAA;AAAA,EAIA,kCAAkC,WAAW;AACzC,WAAO,GAAG,6BAA6B,SAAS,IAAI,KAAK,QAAQ,IAAI,SAAS;AAAA,EAClF;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,SAAS,KAAK,MAAM;AACvB,eAAW,gBAAgB,MAAM;AAC7B,UAAI,YAAY,IAAI,KAAK,YAAY;AAAA,IACzC;AACA,WAAO;AAAA,EACX;AACJ;AAEA,IAAM,sBAAN,cAAkC,aAAa;AAAA,EAC3C,aAAa;AACT,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,aAAa;AACT,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,uBAAuB;AACnB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,uBAAuB;AACnB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,2BAA2B;AACvB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,2BAA2B;AACvB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,4BAA4B;AACxB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,4BAA4B;AACxB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,iBAAiB;AACb,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,iBAAiB;AACb,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,qBAAqB;AACjB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,qBAAqB;AACjB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,uBAAuB;AACnB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,uBAAuB;AACnB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,2BAA2B;AACvB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,qBAAqB;AACjB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,qBAAqB;AACjB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,aAAa;AACT,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,cAAc;AACV,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,UAAU;AACN,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,iBAAiB;AACb,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACA,eAAe;AACX,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AAAA,EACM,QAAQ;AAAA;AACV,YAAM,sBAAsB,oBAAoB;AAAA,IACpD;AAAA;AAAA,EACA,2BAA2B;AACvB,UAAM,sBAAsB,oBAAoB;AAAA,EACpD;AACJ;;;ACjhCA,IAAM,mCAAmC;AACzC,IAAM,yBAAyB;AAAA,EAC3B,2BAA2B;AAAA,EAC3B,sBAAsB;AAC1B;AACA,IAAM,gCAAgC;AAAA,EAClC,gBAAgB,MAAM;AAAA,EAEtB;AAAA,EACA,mBAAmB;AAAA,EACnB,UAAU,SAAS;AAAA,EACnB,eAAe,UAAU;AAC7B;AACA,IAAM,wBAAwB;AAAA,EAC1B,2BAA2B;AAC/B;AACA,IAAM,iCAAiC;AAAA,EAC7B,sBAAsB;AAAA;AACxB,YAAM,sBAAsB,oBAAoB;AAAA,IACpD;AAAA;AAAA,EACM,uBAAuB;AAAA;AACzB,YAAM,sBAAsB,oBAAoB;AAAA,IACpD;AAAA;AACJ;AACA,IAAM,uBAAuB;AAAA,EACzB,KAAK,UAAU;AAAA,EACf;AAAA,EACA,KAAK,UAAU;AAAA,EACf,IAAI,UAAU;AAClB;AACA,IAAM,6BAA6B;AAAA,EAC/B,cAAc,UAAU;AAAA,EACxB,iBAAiB;AACrB;AACA,IAAM,8BAA8B;AAAA,EAChC,oBAAoB,mBAAmB;AAAA,EACvC,QAAQ,GAAG,UAAU,qBAAqB;AAC9C;AACA,IAAM,4BAA4B;AAAA,EAC9B,aAAa;AAAA,IACT,SAAS;AAAA,IACT,YAAY;AAAA,EAChB;AACJ;AAQA,SAAS,yBAAyB,EAAE,aAAa,iBAAiB,eAAe,mBAAmB,eAAe,kBAAkB,cAAc,kBAAkB,kBAAkB,uBAAuB,kBAAkB,uBAAuB,iBAAiB,sBAAsB,mBAAsC,aAA0B,WAAsB,wBAAgD,mBAAsC,kBAAsC,GAAG;AAC/e,QAAM,gBAAgB,kCACf,gCACA;AAEP,SAAO;AAAA,IACH,aAAa,iBAAiB,eAAe;AAAA,IAC7C,eAAe,kCAAK,yBAA2B;AAAA,IAC/C;AAAA,IACA,cAAc,kCAAK,wBAA0B;AAAA,IAC7C,kBAAkB,yBACd,IAAI,oBAAoB,gBAAgB,UAAU,+BAA+B,IAAI,OAAO,aAAa,CAAC;AAAA,IAC9G,kBAAkB,yBAAyB;AAAA,IAC3C,iBAAiB,wBAAwB;AAAA,IACzC,mBAAmB,qBAAqB;AAAA,IACxC,aAAa,kCAAK,uBAAyB;AAAA,IAC3C,WAAW,kCAAK,4BAA8B;AAAA,IAC9C,wBAAwB,0BAA0B;AAAA,IAClD,mBAAmB,qBAAqB;AAAA,IACxC,mBAAmB,qBAAqB;AAAA,EAC5C;AACJ;AAKA,SAAS,iBAAiB,aAAa;AACnC,SAAO;AAAA,IACH,oBAAoB,CAAC;AAAA,IACrB,mBAAmB;AAAA,IACnB,4BAA4B;AAAA,KACzB;AAEX;AAKA,SAAS,mBAAmB,QAAQ;AAChC,SAAQ,OAAO,YAAY,UAAU,QAAQ,iBAAiB,aAAa;AAC/E;;;ACjGA,IAAM,cAAN,MAAM,qBAAoB,UAAU;AAAA,EAChC,YAAY,WAAW,cAAc,UAAU;AAC3C,UAAM,WAAW,cAAc,QAAQ;AACvC,SAAK,OAAO;AACZ,WAAO,eAAe,MAAM,aAAY,SAAS;AAAA,EACrD;AACJ;;;ACPA,IAAM,kBAAN,MAAM,iBAAgB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKlB,OAAO,6BAA6B,YAAY;AAC5C,WAAO,GAAG,oBAAoB,iBAAiB,IAAI,KAAK,UAAU,UAAU,CAAC;AAAA,EACjF;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,WAAW,cAAc,YAAY;AACxC,UAAM,MAAM,iBAAgB,6BAA6B,UAAU;AACnE,UAAM,QAAQ,aAAa,mBAAmB,GAAG;AACjD,QAAI,OAAO;AACP,UAAI,MAAM,eAAe,KAAK,IAAI,GAAG;AACjC,qBAAa,WAAW,GAAG;AAC3B;AAAA,MACJ;AACA,YAAM,IAAI,YAAY,MAAM,YAAY,KAAK,GAAG,KAAK,UAAU,cAAc,MAAM,cAAc,MAAM,QAAQ;AAAA,IACnH;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,OAAO,YAAY,cAAc,YAAY,UAAU;AACnD,QAAI,iBAAgB,oBAAoB,QAAQ,KAC5C,iBAAgB,2BAA2B,QAAQ,GAAG;AACtD,YAAM,kBAAkB;AAAA,QACpB,cAAc,iBAAgB,sBAAsB,SAAS,SAAS,QAAQ,YAAY,WAAW,CAAC,CAAC;AAAA,QACvG,OAAO,SAAS,KAAK;AAAA,QACrB,YAAY,SAAS,KAAK;AAAA,QAC1B,cAAc,SAAS,KAAK;AAAA,QAC5B,UAAU,SAAS,KAAK;AAAA,MAC5B;AACA,mBAAa,mBAAmB,iBAAgB,6BAA6B,UAAU,GAAG,eAAe;AAAA,IAC7G;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,oBAAoB,UAAU;AACjC,WAAQ,SAAS,WAAW,OACvB,SAAS,UAAU,OAAO,SAAS,SAAS;AAAA,EACrD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,2BAA2B,UAAU;AACxC,QAAI,SAAS,SAAS;AAClB,aAAQ,SAAS,QAAQ,eAAe,YAAY,WAAW,MAC1D,SAAS,SAAS,OAAO,SAAS,UAAU;AAAA,IACrD;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,sBAAsB,cAAc;AACvC,UAAM,OAAO,gBAAgB,IAAI,IAAI;AACrC,UAAM,iBAAiB,KAAK,IAAI,IAAI;AACpC,WAAO,KAAK,MAAM,KAAK,IAAI,kBACtB,QAAQ,oBAAoB,gCAAgC,iBAC7D,oBAAoB,iCAAiC,IAAI,GAAI;AAAA,EACrE;AAAA,EACA,OAAO,eAAe,cAAc,UAAU,SAAS,uBAAuB;AAC1E,UAAM,aAAa;AAAA,MACf;AAAA,MACA,WAAW,QAAQ;AAAA,MACnB,QAAQ,QAAQ;AAAA,MAChB;AAAA,MACA,QAAQ,QAAQ;AAAA,MAChB,sBAAsB,QAAQ;AAAA,MAC9B,uBAAuB,QAAQ;AAAA,MAC/B,oBAAoB,QAAQ;AAAA,MAC5B,WAAW,QAAQ;AAAA,MACnB,QAAQ,QAAQ;AAAA,IACpB;AACA,UAAM,MAAM,KAAK,6BAA6B,UAAU;AACxD,iBAAa,WAAW,GAAG;AAAA,EAC/B;AACJ;;;ACvFA,IAAM,iBAAN,MAAqB;AAAA,EACjB,YAAY,eAAe,cAAc;AACrC,SAAK,gBAAgB;AACrB,SAAK,eAAe;AAAA,EACxB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,gBAAgB,YAAY,eAAe,SAAS;AAAA;AACtD,sBAAgB,WAAW,KAAK,cAAc,UAAU;AACxD,UAAI;AACJ,UAAI;AACA,mBAAW,MAAM,KAAK,cAAc,qBAAqB,eAAe,OAAO;AAAA,MACnF,SACO,GAAG;AACN,YAAI,aAAa,WAAW;AACxB,gBAAM;AAAA,QACV,OACK;AACD,gBAAM,sBAAsB,YAAY;AAAA,QAC5C;AAAA,MACJ;AACA,sBAAgB,YAAY,KAAK,cAAc,YAAY,QAAQ;AACnE,aAAO;AAAA,IACX;AAAA;AACJ;;;AClCA,IAAM,oBAAoB;AAAA,EACtB,iBAAiB;AAAA,EACjB,KAAK;AACT;;;ACIA,IAAM,mBAAN,MAAuB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKnB,OAAO,oBAAoB,aAAa;AACpC,QAAI,CAAC,aAAa;AACd,YAAM,+BAA+B,gBAAgB;AAAA,IACzD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,eAAe,QAAQ;AAC1B,UAAM,eAAe,CAAC;AACtB,eAAW,SAAS,aAAa;AAC7B,mBAAa,KAAK,YAAY,KAAK,CAAC;AAAA,IACxC;AACA,QAAI,aAAa,QAAQ,MAAM,IAAI,GAAG;AAClC,YAAM,+BAA+B,kBAAkB;AAAA,IAC3D;AAAA,EACJ;AAAA,EACA,OAAO,eAAe,QAAQ;AAC1B,QAAI;AACA,WAAK,MAAM,MAAM;AAAA,IACrB,SACO,GAAG;AACN,YAAM,+BAA+B,aAAa;AAAA,IACtD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,4BAA4B,eAAe,qBAAqB;AACnE,QAAI,CAAC,iBAAiB,CAAC,qBAAqB;AACxC,YAAM,+BAA+B,iBAAiB;AAAA,IAC1D,OACK;AACD,WAAK,4BAA4B,mBAAmB;AAAA,IACxD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,4BAA4B,qBAAqB;AACpD,QAAI;AAAA,MACA,0BAA0B;AAAA,MAC1B,0BAA0B;AAAA,IAC9B,EAAE,QAAQ,mBAAmB,IAAI,GAAG;AAChC,YAAM,+BAA+B,0BAA0B;AAAA,IACnE;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,iBAAiB,UAAU,aAAa;AAC3C,QAAI,CAAC,UAAU;AACX,aAAO,CAAC;AAAA,IACZ;AAEA,gBAAY,QAAQ,CAAC,QAAQ,QAAQ;AACjC,UAAI,SAAS,GAAG,GAAG;AACf,eAAO,SAAS,GAAG;AAAA,MACvB;AAAA,IACJ,CAAC;AAED,WAAO,OAAO,YAAY,OAAO,QAAQ,QAAQ,EAAE,OAAO,CAAC,OAAO,GAAG,CAAC,MAAM,EAAE,CAAC;AAAA,EACnF;AACJ;;;ACzEA,IAAM,0BAAN,MAA8B;AAAA,EAC1B,cAAc;AACV,SAAK,aAAa,oBAAI,IAAI;AAAA,EAC9B;AAAA;AAAA;AAAA;AAAA,EAIA,sBAAsB;AAClB,SAAK,WAAW,IAAI,mBAAmB,eAAe,mBAAmB,UAAU,kBAAkB,CAAC;AAAA,EAC1G;AAAA;AAAA;AAAA;AAAA,EAIA,oCAAoC;AAChC,SAAK,WAAW,IAAI,mBAAmB,eAAe,mBAAmB,GAAG,UAAU,mBAAmB,IAAI,UAAU,sBAAsB,EAAE,CAAC;AAAA,EACpJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB,cAAc;AAC1B,SAAK,WAAW,IAAI,mBAAmB,eAAe,mBAAmB,eAAe,eAAe,aAAa,KAAK,CAAC;AAAA,EAC9H;AAAA;AAAA;AAAA;AAAA,EAIA,kBAAkB;AACd,SAAK,WAAW,IAAI,mBAAmB,eAAe,mBAAmB,GAAG,CAAC;AAAA,EACjF;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,UAAU,QAAQ,gBAAgB,MAAM,gBAAgB,qBAAqB;AAEzE,QAAI,iBACA,CAAC,cAAc,SAAS,QAAQ,KAChC,CAAC,OAAO,SAAS,QAAQ,GAAG;AAC5B,oBAAc,KAAK,QAAQ;AAAA,IAC/B;AACA,UAAM,gBAAgB,gBAChB,CAAC,GAAI,UAAU,CAAC,GAAI,GAAG,aAAa,IACpC,UAAU,CAAC;AACjB,UAAM,WAAW,IAAI,SAAS,aAAa;AAC3C,SAAK,WAAW,IAAI,mBAAmB,OAAO,mBAAmB,SAAS,YAAY,CAAC,CAAC;AAAA,EAC5F;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,YAAY,UAAU;AAClB,SAAK,WAAW,IAAI,mBAAmB,WAAW,mBAAmB,QAAQ,CAAC;AAAA,EAClF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,eAAe,aAAa;AACxB,qBAAiB,oBAAoB,WAAW;AAChD,SAAK,WAAW,IAAI,mBAAmB,cAAc,mBAAmB,WAAW,CAAC;AAAA,EACxF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,yBAAyB,aAAa;AAClC,qBAAiB,oBAAoB,WAAW;AAChD,SAAK,WAAW,IAAI,mBAAmB,iBAAiB,mBAAmB,WAAW,CAAC;AAAA,EAC3F;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,eAAe,aAAa;AACxB,SAAK,WAAW,IAAI,mBAAmB,eAAe,mBAAmB,WAAW,CAAC;AAAA,EACzF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,cAAc,YAAY;AACtB,SAAK,WAAW,IAAI,SAAS,aAAa,mBAAmB,UAAU,CAAC;AAAA,EAC5E;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,aAAa,WAAW;AACpB,SAAK,WAAW,IAAI,SAAS,YAAY,mBAAmB,SAAS,CAAC;AAAA,EAC1E;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,UAAU,WAAW;AACjB,SAAK,WAAW,IAAI,YAAY,YAAY,mBAAmB,OAAO,SAAS,EAAE,CAAC;AAAA,EACtF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,UAAU,YAAY;AAClB,SAAK,WAAW,IAAI,YAAY,YAAY,mBAAmB,OAAO,WAAW,GAAG,IAAI,WAAW,IAAI,EAAE,CAAC;AAAA,EAC9G;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,KAAK;AACR,SAAK,WAAW,IAAI,SAAS,KAAK,mBAAmB,GAAG,CAAC;AAAA,EAC7D;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,UAAU,QAAQ,oBAAoB;AAClC,UAAM,eAAe,KAAK,8BAA8B,QAAQ,kBAAkB;AAClF,qBAAiB,eAAe,YAAY;AAC5C,SAAK,WAAW,IAAI,mBAAmB,QAAQ,mBAAmB,YAAY,CAAC;AAAA,EACnF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB,eAAe;AAC5B,SAAK,WAAW,IAAI,mBAAmB,mBAAmB,mBAAmB,aAAa,CAAC;AAAA,EAC/F;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,eAAe,aAAa;AAExB,SAAK,WAAW,IAAI,mBAAmB,cAAc,YAAY,GAAG;AACpE,SAAK,WAAW,IAAI,mBAAmB,cAAc,YAAY,OAAO;AACxE,QAAI,YAAY,IAAI;AAChB,WAAK,WAAW,IAAI,mBAAmB,aAAa,YAAY,EAAE;AAAA,IACtE;AACA,QAAI,YAAY,KAAK;AACjB,WAAK,WAAW,IAAI,mBAAmB,cAAc,YAAY,GAAG;AAAA,IACxE;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,wBAAwB,cAAc;AAClC,QAAI,cAAc,SAAS;AACvB,WAAK,WAAW,IAAI,mBAAmB,YAAY,aAAa,OAAO;AAAA,IAC3E;AACA,QAAI,cAAc,YAAY;AAC1B,WAAK,WAAW,IAAI,mBAAmB,WAAW,aAAa,UAAU;AAAA,IAC7E;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,UAAU,QAAQ;AACd,qBAAiB,eAAe,MAAM;AACtC,SAAK,WAAW,IAAI,GAAG,mBAAmB,MAAM,IAAI,mBAAmB,MAAM,CAAC;AAAA,EAClF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,SAAS,OAAO;AACZ,QAAI,OAAO;AACP,WAAK,WAAW,IAAI,mBAAmB,OAAO,mBAAmB,KAAK,CAAC;AAAA,IAC3E;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,SAAS,OAAO;AACZ,SAAK,WAAW,IAAI,mBAAmB,OAAO,mBAAmB,KAAK,CAAC;AAAA,EAC3E;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,uBAAuB,eAAe,qBAAqB;AACvD,qBAAiB,4BAA4B,eAAe,mBAAmB;AAC/E,QAAI,iBAAiB,qBAAqB;AACtC,WAAK,WAAW,IAAI,mBAAmB,gBAAgB,mBAAmB,aAAa,CAAC;AACxF,WAAK,WAAW,IAAI,mBAAmB,uBAAuB,mBAAmB,mBAAmB,CAAC;AAAA,IACzG,OACK;AACD,YAAM,+BAA+B,iBAAiB;AAAA,IAC1D;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,qBAAqB,MAAM;AACvB,SAAK,WAAW,IAAI,mBAAmB,MAAM,mBAAmB,IAAI,CAAC;AAAA,EACzE;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,cAAc,MAAM;AAChB,SAAK,WAAW,IAAI,mBAAmB,aAAa,mBAAmB,IAAI,CAAC;AAAA,EAChF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB,cAAc;AAC1B,SAAK,WAAW,IAAI,mBAAmB,eAAe,mBAAmB,YAAY,CAAC;AAAA,EAC1F;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB,cAAc;AAC1B,SAAK,WAAW,IAAI,mBAAmB,eAAe,mBAAmB,YAAY,CAAC;AAAA,EAC1F;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB,cAAc;AAC1B,SAAK,WAAW,IAAI,mBAAmB,eAAe,mBAAmB,YAAY,CAAC;AAAA,EAC1F;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB,iBAAiB;AAChC,QAAI,iBAAiB;AACjB,WAAK,WAAW,IAAI,mBAAmB,kBAAkB,mBAAmB,eAAe,CAAC;AAAA,IAChG;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,uBAAuB,qBAAqB;AACxC,QAAI,qBAAqB;AACrB,WAAK,WAAW,IAAI,mBAAmB,uBAAuB,mBAAmB,mBAAmB,CAAC;AAAA,IACzG;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB,cAAc;AAC1B,SAAK,WAAW,IAAI,mBAAmB,eAAe,mBAAmB,YAAY,CAAC;AAAA,EAC1F;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB,UAAU;AACzB,SAAK,WAAW,IAAI,mBAAmB,qBAAqB,mBAAmB,QAAQ,CAAC;AAAA,EAC5F;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,aAAa,WAAW;AACpB,SAAK,WAAW,IAAI,mBAAmB,YAAY,mBAAmB,SAAS,CAAC;AAAA,EACpF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB;AACZ,SAAK,WAAW,IAAI,aAAa,GAAG;AAAA,EACxC;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,wBAAwB,UAAU;AAC9B,UAAM,oBAAoB,iBAAiB,iBAAiB,UAAU,KAAK,UAAU;AACrF,WAAO,KAAK,iBAAiB,EAAE,QAAQ,CAAC,QAAQ;AAC5C,WAAK,WAAW,IAAI,KAAK,SAAS,GAAG,CAAC;AAAA,IAC1C,CAAC;AAAA,EACL;AAAA,EACA,8BAA8B,QAAQ,oBAAoB;AACtD,QAAI;AAEJ,QAAI,CAAC,QAAQ;AACT,qBAAe,CAAC;AAAA,IACpB,OACK;AACD,UAAI;AACA,uBAAe,KAAK,MAAM,MAAM;AAAA,MACpC,SACO,GAAG;AACN,cAAM,+BAA+B,aAAa;AAAA,MACtD;AAAA,IACJ;AACA,QAAI,sBAAsB,mBAAmB,SAAS,GAAG;AACrD,UAAI,CAAC,aAAa,eAAe,kBAAkB,YAAY,GAAG;AAE9D,qBAAa,kBAAkB,YAAY,IAAI,CAAC;AAAA,MACpD;AAEA,mBAAa,kBAAkB,YAAY,EAAE,kBAAkB,MAAM,IAAI;AAAA,QACrE,QAAQ;AAAA,MACZ;AAAA,IACJ;AACA,WAAO,KAAK,UAAU,YAAY;AAAA,EACtC;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,YAAY,UAAU;AAClB,SAAK,WAAW,IAAI,uBAAuB,UAAU,mBAAmB,QAAQ,CAAC;AAAA,EACrF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,YAAY,UAAU;AAClB,SAAK,WAAW,IAAI,uBAAuB,UAAU,mBAAmB,QAAQ,CAAC;AAAA,EACrF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,YAAY,WAAW;AACnB,QAAI,WAAW;AACX,WAAK,WAAW,IAAI,mBAAmB,YAAY,qBAAqB,GAAG;AAC3E,WAAK,WAAW,IAAI,mBAAmB,SAAS,mBAAmB,SAAS,CAAC;AAAA,IACjF;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,UAAU,cAAc;AACpB,QAAI,cAAc;AACd,WAAK,WAAW,IAAI,mBAAmB,YAAY,qBAAqB,GAAG;AAC3E,WAAK,WAAW,IAAI,mBAAmB,SAAS,mBAAmB,YAAY,CAAC;AAAA,IACpF;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB,wBAAwB;AACvC,SAAK,WAAW,IAAI,mBAAmB,qBAAqB,uBAAuB,kCAAkC,CAAC;AACtH,SAAK,WAAW,IAAI,mBAAmB,qBAAqB,uBAAuB,+BAA+B,CAAC;AAAA,EACvH;AAAA;AAAA;AAAA;AAAA,EAIA,gBAAgB;AACZ,SAAK,WAAW,IAAI,mBAAmB,qBAAqB,oBAAoB,yBAAyB;AAAA,EAC7G;AAAA;AAAA;AAAA;AAAA,EAIA,cAAc,YAAY;AACtB,SAAK,WAAW,IAAI,mBAAmB,aAAa,mBAAmB,UAAU,CAAC;AAAA,EACtF;AAAA;AAAA;AAAA;AAAA,EAIA,oBAAoB;AAChB,UAAM,sBAAsB,IAAI,MAAM;AACtC,SAAK,WAAW,QAAQ,CAAC,OAAO,QAAQ;AACpC,0BAAoB,KAAK,GAAG,GAAG,IAAI,KAAK,EAAE;AAAA,IAC9C,CAAC;AACD,WAAO,oBAAoB,KAAK,GAAG;AAAA,EACvC;AACJ;;;ACxXA,IAAM,oBAAoB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKtB,oBAAoB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKpB,4BAA4B;AAAA;AAAA;AAAA;AAAA;AAAA,EAK5B,oBAAoB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKpB,yBAAyB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKzB,mBAAmB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKnB,kCAAkC;AAAA;AAAA;AAAA;AAAA;AAAA,EAKlC,mBAAmB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKnB,+BAA+B;AAAA;AAAA;AAAA;AAAA;AAAA,EAK/B,gCAAgC;AAAA;AAAA;AAAA;AAAA;AAAA,EAKhC,iCAAiC;AAAA;AAAA;AAAA;AAAA;AAAA,EAKjC,WAAW;AAAA;AAAA;AAAA;AAAA;AAAA,EAKX,iDAAiD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKjD,gCAAgC;AAAA;AAAA;AAAA;AAAA;AAAA,EAKhC,qCAAqC;AAAA;AAAA;AAAA;AAAA,EAIrC,qCAAqC;AAAA;AAAA;AAAA;AAAA,EAIrC,sCAAsC;AAAA;AAAA;AAAA;AAAA,EAItC,kBAAkB;AAAA;AAAA;AAAA;AAAA,EAIlB,oCAAoC;AAAA;AAAA;AAAA;AAAA,EAIpC,sBAAsB;AAAA;AAAA;AAAA;AAAA,EAItB,uCAAuC;AAAA;AAAA;AAAA;AAAA,EAIvC,gCAAgC;AAAA;AAAA;AAAA;AAAA,EAIhC,sDAAsD;AAAA;AAAA;AAAA;AAAA,EAItD,8CAA8C;AAAA;AAAA;AAAA;AAAA,EAI9C,0CAA0C;AAAA;AAAA;AAAA;AAAA;AAAA,EAK1C,uBAAuB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKvB,4BAA4B;AAAA;AAAA;AAAA;AAAA,EAI5B,uBAAuB;AAAA;AAAA;AAAA;AAAA,EAIvB,yBAAyB;AAAA,EACzB,6BAA6B;AAAA;AAAA;AAAA;AAAA,EAI7B,+BAA+B;AAAA;AAAA;AAAA;AAAA,EAI/B,kCAAkC;AAAA,EAClC,mCAAmC;AAAA,EACnC,wBAAwB;AAAA;AAAA;AAAA;AAAA,EAIxB,+CAA+C;AAAA,EAC/C,iDAAiD;AAAA,EACjD,yDAAyD;AAAA,EACzD,6DAA6D;AAAA;AAAA;AAAA;AAAA,EAI7D,gBAAgB;AAAA;AAAA;AAAA;AAAA,EAIhB,8BAA8B;AAAA,EAC9B,4BAA4B;AAAA,EAC5B,8BAA8B;AAAA;AAAA;AAAA;AAAA,EAI9B,wBAAwB;AAAA,EACxB,+BAA+B;AAAA,EAC/B,kCAAkC;AAAA,EAClC,6BAA6B;AAAA;AAAA;AAAA;AAAA,EAI7B,qBAAqB;AAAA,EACrB,qBAAqB;AAAA;AAAA;AAAA;AAAA,EAIrB,2BAA2B;AAAA;AAAA;AAAA;AAAA,EAI3B,0CAA0C;AAAA,EAC1C,gCAAgC;AAAA,EAChC,+CAA+C;AAAA,EAC/C,uCAAuC;AAAA,EACvC,yCAAyC;AAAA,EACzC,iCAAiC;AAAA,EACjC,gDAAgD;AAAA;AAAA;AAAA;AAAA,EAIhD,6BAA6B;AAAA,EAC7B,kCAAkC;AAAA,EAClC,kCAAkC;AAAA,EAClC,yBAAyB;AAAA,EACzB,gCAAgC;AAAA,EAChC,iDAAiD;AAAA,EACjD,kCAAkC;AAAA,EAClC,yCAAyC;AAAA,EACzC,oCAAoC;AAAA,EACpC,+BAA+B;AAAA,EAC/B,0BAA0B;AAAA;AAAA;AAAA;AAAA,EAI1B,8BAA8B;AAAA;AAAA;AAAA;AAAA,EAI9B,mBAAmB;AAAA,EACnB,sBAAsB;AAAA,EACtB,mCAAmC;AAAA,EACnC,cAAc;AAAA,EACd,iBAAiB;AACrB;AAOA,IAAM,yBAAyB;AAAA,EAC3B,YAAY;AAAA,EACZ,YAAY;AAAA,EACZ,WAAW;AACf;;;AClNA,IAAM,aAAN,MAAiB;AAAA,EACb,YAAY,eAAe,mBAAmB;AAE1C,SAAK,SAAS,yBAAyB,aAAa;AAEpD,SAAK,SAAS,IAAI,OAAO,KAAK,OAAO,eAAe,MAAM,OAAO;AAEjE,SAAK,cAAc,KAAK,OAAO;AAE/B,SAAK,eAAe,KAAK,OAAO;AAEhC,SAAK,gBAAgB,KAAK,OAAO;AAEjC,SAAK,iBAAiB,IAAI,eAAe,KAAK,eAAe,KAAK,YAAY;AAE9E,SAAK,yBAAyB,KAAK,OAAO;AAE1C,SAAK,YAAY,KAAK,OAAO,YAAY;AAEzC,SAAK,oBAAoB;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA,EAIA,0BAA0B,SAAS;AAC/B,UAAM,UAAU,CAAC;AACjB,YAAQ,YAAY,YAAY,IAAI,UAAU;AAC9C,QAAI,CAAC,KAAK,OAAO,cAAc,wBAAwB,SAAS;AAC5D,cAAQ,QAAQ,MAAM;AAAA,QAClB,KAAK,kBAAkB;AACnB,cAAI;AACA,kBAAM,aAAa,iCAAiC,QAAQ,UAAU;AACtE,oBAAQ,YAAY,UAAU,IAAI,OAAO,WAAW,GAAG,IAAI,WAAW,IAAI;AAAA,UAC9E,SACO,GAAG;AACN,iBAAK,OAAO,QAAQ,qDAChB,CAAC;AAAA,UACT;AACA;AAAA,QACJ,KAAK,kBAAkB;AACnB,kBAAQ,YAAY,UAAU,IAAI,QAAQ,QAAQ,UAAU;AAC5D;AAAA,MACR;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQM,2BAA2B,eAAe,aAAa,SAAS,YAAY,eAAe;AAAA;AAC7F,WAAK,mBAAmB,oBAAoB,kBAAkB,sCAAsC,aAAa;AACjH,YAAM,WAAW,MAAM,KAAK,eAAe,gBAAgB,YAAY,eAAe,EAAE,MAAM,aAAa,QAAiB,CAAC;AAC7H,WAAK,mBAAmB,UAAU;AAAA,QAC9B,kBAAkB,SAAS,KAAK,eAAe,UAAU;AAAA,QACzD,cAAc,SAAS,UAAU,YAAY,iBAAiB,KAAK;AAAA,MACvE,GAAG,aAAa;AAChB,UAAI,KAAK,OAAO,0BACZ,SAAS,SAAS,OAClB,SAAS,WAAW,KAAK;AAEzB,aAAK,OAAO,uBAAuB,oBAAoB;AAAA,MAC3D;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB,kBAAkB;AAC9B,QAAI,CAAC,iBAAiB,kBAAkB,GAAG;AACvC,YAAM,sBAAsB,uBAAuB;AAAA,IACvD;AACA,SAAK,YAAY;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,2BAA2B,SAAS;AAChC,UAAM,mBAAmB,IAAI,wBAAwB;AACrD,QAAI,QAAQ,sBAAsB;AAC9B,uBAAiB,wBAAwB,QAAQ,oBAAoB;AAAA,IACzE;AACA,WAAO,iBAAiB,kBAAkB;AAAA,EAC9C;AACJ;;;AC/EA,IAAM,mBAAN,MAAM,kBAAiB;AAAA;AAAA;AAAA;AAAA,EAInB,oBAAoB;AAChB,WAAO,kBAAiB,6BAA6B,KAAK,eAAe,KAAK,WAAW;AAAA,EAC7F;AAAA;AAAA;AAAA;AAAA,EAIA,uBAAuB;AACnB,WAAO,kBAAiB,gCAAgC,KAAK,gBAAgB,KAAK,UAAU,KAAK,OAAO,KAAK,QAAQ;AAAA,EACzH;AAAA;AAAA;AAAA;AAAA,EAIA,iBAAiB;AACb,WAAO,kBAAiB,0BAA0B,KAAK,MAAM;AAAA,EACjE;AAAA;AAAA;AAAA;AAAA,EAIA,wBAAwB;AACpB,WAAO,kBAAiB,2BAA2B,KAAK,eAAe,KAAK,aAAa,KAAK,gBAAgB,KAAK,UAAU,KAAK,OAAO,KAAK,QAAQ,KAAK,UAAU,KAAK,WAAW,KAAK,mBAAmB;AAAA,EACjN;AAAA;AAAA;AAAA;AAAA,EAIA,eAAe;AACX,YAAQ,KAAK,gBAAgB;AAAA,MACzB,KAAK,eAAe;AAChB,eAAO,UAAU;AAAA,MACrB,KAAK,eAAe;AAAA,MACpB,KAAK,eAAe;AAChB,eAAO,UAAU;AAAA,MACrB,KAAK,eAAe;AAChB,eAAO,UAAU;AAAA,MACrB,SAAS;AACL,cAAM,sBAAsB,wBAAwB;AAAA,MACxD;AAAA,IACJ;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,2BAA2B,eAAe,aAAa,gBAAgB,UAAU,OAAO,QAAQ,UAAU,WAAW,qBAAqB;AAC7I,UAAM,gBAAgB;AAAA,MAClB,KAAK,6BAA6B,eAAe,WAAW;AAAA,MAC5D,KAAK,gCAAgC,gBAAgB,UAAU,OAAO,QAAQ;AAAA,MAC9E,KAAK,0BAA0B,MAAM;AAAA,MACrC,KAAK,8BAA8B,mBAAmB;AAAA,MACtD,KAAK,0BAA0B,SAAS;AAAA,IAC5C;AACA,WAAO,cAAc,KAAK,WAAW,mBAAmB,EAAE,YAAY;AAAA,EAC1E;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,6BAA6B,eAAe,aAAa;AAC5D,UAAM,YAAY,CAAC,eAAe,WAAW;AAC7C,WAAO,UAAU,KAAK,WAAW,mBAAmB,EAAE,YAAY;AAAA,EACtE;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,OAAO,gCAAgC,gBAAgB,UAAU,OAAO,UAAU;AAC9E,UAAM,mBAAmB,mBAAmB,eAAe,gBACrD,YAAY,WACZ;AACN,UAAM,eAAe;AAAA,MACjB;AAAA,MACA;AAAA,MACA,SAAS,UAAU;AAAA,IACvB;AACA,WAAO,aAAa,KAAK,WAAW,mBAAmB,EAAE,YAAY;AAAA,EACzE;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,0BAA0B,QAAQ;AACrC,YAAQ,UAAU,UAAU,cAAc,YAAY;AAAA,EAC1D;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,8BAA8B,qBAAqB;AACtD,YAAQ,uBAAuB,UAAU,cAAc,YAAY;AAAA,EACvE;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,0BAA0B,WAAW;AAKxC,WAAO,aACH,UAAU,YAAY,MAClB,qBAAqB,OAAO,YAAY,IAC1C,UAAU,YAAY,IACtB,UAAU;AAAA,EACpB;AACJ;;;ACnHA,IAAM,gBAAN,MAAM,uBAAsB,iBAAiB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQzC,OAAO,oBAAoB,eAAe,aAAa,SAAS,UAAU,UAAU;AAChF,UAAM,gBAAgB,IAAI,eAAc;AACxC,kBAAc,iBAAiB,eAAe;AAC9C,kBAAc,gBAAgB;AAC9B,kBAAc,cAAc;AAC5B,kBAAc,WAAW;AACzB,kBAAc,SAAS;AACvB,kBAAc,QAAQ;AACtB,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,gBAAgB,QAAQ;AAC3B,QAAI,CAAC,QAAQ;AACT,aAAO;AAAA,IACX;AACA,WAAQ,OAAO,eAAe,eAAe,KACzC,OAAO,eAAe,aAAa,KACnC,OAAO,eAAe,gBAAgB,KACtC,OAAO,eAAe,OAAO,KAC7B,OAAO,eAAe,UAAU,KAChC,OAAO,eAAe,QAAQ,KAC9B,OAAO,gBAAgB,MAAM,eAAe;AAAA,EACpD;AACJ;;;ACnDA,IAAM,YAAN,MAAM,WAAU;AAAA;AAAA;AAAA;AAAA,EAIZ,OAAO,aAAa;AAEhB,WAAO,KAAK,OAAM,oBAAI,KAAK,GAAE,QAAQ,IAAI,GAAM;AAAA,EACnD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,eAAe,WAAW,QAAQ;AAErC,UAAM,gBAAgB,OAAO,SAAS,KAAK;AAC3C,UAAM,uBAAuB,WAAU,WAAW,IAAI;AAEtD,WAAO,uBAAuB;AAAA,EAClC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,OAAO,mBAAmB,UAAU;AAChC,UAAM,cAAc,OAAO,QAAQ;AACnC,WAAO,cAAc,WAAU,WAAW;AAAA,EAC9C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,MAAM,GAAG,OAAO;AACnB,WAAO,IAAI,QAAQ,CAAC,YAAY,WAAW,MAAM,QAAQ,KAAK,GAAG,CAAC,CAAC;AAAA,EACvE;AACJ;;;ACTA,IAAM,oBAAN,MAAM,2BAA0B,iBAAiB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAY7C,OAAO,wBAAwB,eAAe,aAAa,aAAa,UAAU,UAAU,QAAQ,WAAW,cAAc,aAAa,WAAW,WAAW,mBAAmB,OAAO,iBAAiB,qBAAqB;AAC5N,UAAM,WAAW,IAAI,mBAAkB;AACvC,aAAS,gBAAgB;AACzB,aAAS,iBAAiB,eAAe;AACzC,aAAS,SAAS;AAClB,UAAM,cAAc,UAAU,WAAW;AACzC,aAAS,WAAW,YAAY,SAAS;AAKzC,aAAS,YAAY,UAAU,SAAS;AACxC,aAAS,oBAAoB,aAAa,SAAS;AACnD,QAAI,WAAW;AACX,eAAS,YAAY,UAAU,SAAS;AAAA,IAC5C;AACA,aAAS,cAAc;AACvB,aAAS,WAAW;AACpB,aAAS,QAAQ;AACjB,aAAS,SAAS;AAClB,aAAS,oBAAoB;AAC7B,aAAS,YAAY,aAAa,qBAAqB;AACvD,QAAI,iBAAiB;AACjB,eAAS,kBAAkB;AAC3B,eAAS,sBAAsB;AAAA,IACnC;AAKA,QAAI,SAAS,WAAW,YAAY,MAChC,qBAAqB,OAAO,YAAY,GAAG;AAC3C,eAAS,iBACL,eAAe;AACnB,cAAQ,SAAS,WAAW;AAAA,QACxB,KAAK,qBAAqB;AAEtB,gBAAM,cAAc,mBAAmB,aAAa,YAAY,YAAY;AAC5E,cAAI,CAAC,aAAa,KAAK,KAAK;AACxB,kBAAM,sBAAsB,kCAAkC;AAAA,UAClE;AACA,mBAAS,QAAQ,YAAY,IAAI;AACjC;AAAA,QACJ,KAAK,qBAAqB;AACtB,mBAAS,QAAQ;AAAA,MACzB;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,oBAAoB,QAAQ;AAC/B,QAAI,CAAC,QAAQ;AACT,aAAO;AAAA,IACX;AACA,WAAQ,OAAO,eAAe,eAAe,KACzC,OAAO,eAAe,aAAa,KACnC,OAAO,eAAe,gBAAgB,KACtC,OAAO,eAAe,OAAO,KAC7B,OAAO,eAAe,UAAU,KAChC,OAAO,eAAe,QAAQ,KAC9B,OAAO,eAAe,QAAQ,MAC7B,OAAO,gBAAgB,MAAM,eAAe,gBACzC,OAAO,gBAAgB,MACnB,eAAe;AAAA,EAC/B;AACJ;;;ACzFA,IAAM,qBAAN,MAAM,4BAA2B,iBAAiB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQ9C,OAAO,yBAAyB,eAAe,aAAa,cAAc,UAAU,UAAU,mBAAmB;AAC7G,UAAM,WAAW,IAAI,oBAAmB;AACxC,aAAS,WAAW;AACpB,aAAS,iBAAiB,eAAe;AACzC,aAAS,cAAc;AACvB,aAAS,gBAAgB;AACzB,aAAS,SAAS;AAClB,aAAS,oBAAoB;AAC7B,QAAI;AACA,eAAS,WAAW;AACxB,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,qBAAqB,QAAQ;AAChC,QAAI,CAAC,QAAQ;AACT,aAAO;AAAA,IACX;AACA,WAAQ,OAAO,eAAe,eAAe,KACzC,OAAO,eAAe,aAAa,KACnC,OAAO,eAAe,gBAAgB,KACtC,OAAO,eAAe,UAAU,KAChC,OAAO,eAAe,QAAQ,KAC9B,OAAO,gBAAgB,MAAM,eAAe;AAAA,EACpD;AACJ;;;AC/DA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAOA,IAAM,gBAAgB;AACtB,IAAM,2BAA2B;AAEjC,IAAM,sBAAsB;AAC5B,IAAM,kBAAkB;AACxB,IAAM,gBAAgB;;;ACGtB,IAAM,wCAAwC;AAAA,EAC1C;AAAA,EACA;AAAA,EACA;AACJ;AACA,IAAM,yCAAyC;AAAA,EAC3C;AAAA,EACA;AAAA,EACA;AAAA,EACA;AAAA,EACA;AACJ;AACA,IAAM,uCAAuC;AAAA,EACzC,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,wBAAwB,GAAG;AAChC;AAKA,IAAM,sCAAsC;AAAA,EACxC,oBAAoB;AAAA,IAChB,MAAM;AAAA,IACN,MAAM,qCAAqC,aAAa;AAAA,EAC5D;AAAA,EACA,4BAA4B;AAAA,IACxB,MAAM;AAAA,IACN,MAAM,qCAAqC,wBAAwB;AAAA,EACvE;AACJ;AAIA,IAAM,+BAAN,MAAM,sCAAqC,UAAU;AAAA,EACjD,YAAY,WAAW,cAAc,UAAU,WAAW,SAAS,eAAe,QAAQ;AACtF,UAAM,WAAW,cAAc,QAAQ;AACvC,WAAO,eAAe,MAAM,8BAA6B,SAAS;AAClE,SAAK,YAAY,aAAa,UAAU;AACxC,SAAK,UAAU,WAAW,UAAU;AACpC,SAAK,gBAAgB,iBAAiB,UAAU;AAChD,SAAK,SAAS,UAAU,UAAU;AAClC,SAAK,OAAO;AAAA,EAChB;AACJ;AAOA,SAAS,2BAA2B,WAAW,aAAa,UAAU;AAClE,QAAM,iCAAiC,CAAC,CAAC,aACrC,sCAAsC,QAAQ,SAAS,IAAI;AAC/D,QAAM,gCAAgC,CAAC,CAAC,YACpC,uCAAuC,QAAQ,QAAQ,IAAI;AAC/D,QAAM,iCAAiC,CAAC,CAAC,eACrC,sCAAsC,KAAK,CAAC,gBAAgB;AACxD,WAAO,YAAY,QAAQ,WAAW,IAAI;AAAA,EAC9C,CAAC;AACL,SAAQ,kCACJ,kCACA;AACR;AAIA,SAAS,mCAAmC,WAAW;AACnD,SAAO,IAAI,6BAA6B,WAAW,qCAAqC,SAAS,CAAC;AACtG;;;AC5EA,IAAM,cAAN,MAAkB;AAAA,EACd,YAAY,eAAe,eAAe,mBAAmB,oBAAoB,mBAAmB;AAChG,SAAK,UAAU,iBAAiB;AAChC,SAAK,UAAU,iBAAiB;AAChC,SAAK,cAAc,qBAAqB;AACxC,SAAK,eAAe,sBAAsB;AAC1C,SAAK,cAAc,qBAAqB;AAAA,EAC5C;AACJ;;;ACFA,IAAM,gBAAN,MAAM,eAAc;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMhB,OAAO,gBAAgB,WAAW,WAAW,MAAM;AAC/C,UAAM,eAAe,eAAc,qBAAqB,WAAW,IAAI;AACvE,WAAO,YACD,GAAG,YAAY,GAAG,UAAU,cAAc,GAAG,SAAS,KACtD;AAAA,EACV;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,qBAAqB,WAAW,MAAM;AACzC,QAAI,CAAC,WAAW;AACZ,YAAM,sBAAsB,cAAc;AAAA,IAC9C;AAEA,UAAM,WAAW;AAAA,MACb,IAAI,UAAU,cAAc;AAAA,IAChC;AACA,QAAI,MAAM;AACN,eAAS,OAAO;AAAA,IACpB;AACA,UAAM,cAAc,KAAK,UAAU,QAAQ;AAC3C,WAAO,UAAU,aAAa,WAAW;AAAA,EAC7C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,kBAAkB,WAAW,OAAO;AACvC,QAAI,CAAC,WAAW;AACZ,YAAM,sBAAsB,cAAc;AAAA,IAC9C;AACA,QAAI,CAAC,OAAO;AACR,YAAM,sBAAsB,YAAY;AAAA,IAC5C;AACA,QAAI;AAEA,YAAM,aAAa,MAAM,MAAM,UAAU,cAAc;AACvD,YAAM,eAAe,WAAW,CAAC;AACjC,YAAM,YAAY,WAAW,SAAS,IAChC,WAAW,MAAM,CAAC,EAAE,KAAK,UAAU,cAAc,IACjD,UAAU;AAChB,YAAM,qBAAqB,UAAU,aAAa,YAAY;AAC9D,YAAM,kBAAkB,KAAK,MAAM,kBAAkB;AACrD,aAAO;AAAA,QACH,kBAAkB,aAAa,UAAU;AAAA,QACzC,cAAc;AAAA,MAClB;AAAA,IACJ,SACO,GAAG;AACN,YAAM,sBAAsB,YAAY;AAAA,IAC5C;AAAA,EACJ;AACJ;;;AC1DA,IAAM,YAAN,MAAM,WAAU;AAAA,EACZ,IAAI,YAAY;AACZ,WAAO,KAAK;AAAA,EAChB;AAAA,EACA,YAAY,KAAK;AACb,SAAK,aAAa;AAClB,QAAI,CAAC,KAAK,YAAY;AAElB,YAAM,+BAA+B,aAAa;AAAA,IACtD;AACA,QAAI,CAAC,KAAK,QAAQ,GAAG;AACjB,WAAK,aAAa,WAAU,gBAAgB,GAAG;AAAA,IACnD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,gBAAgB,KAAK;AACxB,QAAI,KAAK;AACL,UAAI,eAAe,IAAI,YAAY;AACnC,UAAI,YAAY,SAAS,cAAc,GAAG,GAAG;AACzC,uBAAe,aAAa,MAAM,GAAG,EAAE;AAAA,MAC3C,WACS,YAAY,SAAS,cAAc,IAAI,GAAG;AAC/C,uBAAe,aAAa,MAAM,GAAG,EAAE;AAAA,MAC3C;AACA,UAAI,CAAC,YAAY,SAAS,cAAc,GAAG,GAAG;AAC1C,wBAAgB;AAAA,MACpB;AACA,aAAO;AAAA,IACX;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,gBAAgB;AAEZ,QAAI;AACJ,QAAI;AACA,mBAAa,KAAK,iBAAiB;AAAA,IACvC,SACO,GAAG;AACN,YAAM,+BAA+B,aAAa;AAAA,IACtD;AAEA,QAAI,CAAC,WAAW,mBAAmB,CAAC,WAAW,cAAc;AACzD,YAAM,+BAA+B,aAAa;AAAA,IACtD;AAEA,QAAI,CAAC,WAAW,YACZ,WAAW,SAAS,YAAY,MAAM,UAAU;AAChD,YAAM,+BAA+B,oBAAoB;AAAA,IAC7D;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,kBAAkB,KAAK,aAAa;AACvC,QAAI,CAAC,aAAa;AACd,aAAO;AAAA,IACX;AACA,WAAO,IAAI,QAAQ,GAAG,IAAI,IACpB,GAAG,GAAG,IAAI,WAAW,KACrB,GAAG,GAAG,IAAI,WAAW;AAAA,EAC/B;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,kBAAkB,KAAK;AAC1B,WAAO,WAAU,gBAAgB,IAAI,MAAM,GAAG,EAAE,CAAC,CAAC;AAAA,EACtD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,kBAAkB,UAAU;AACxB,UAAM,YAAY,KAAK,iBAAiB;AACxC,UAAM,YAAY,UAAU;AAC5B,QAAI,YACA,UAAU,WAAW,MACpB,UAAU,CAAC,MAAM,sBAAsB,UACpC,UAAU,CAAC,MAAM,sBAAsB,gBAAgB;AAC3D,gBAAU,CAAC,IAAI;AAAA,IACnB;AACA,WAAO,WAAU,gCAAgC,SAAS;AAAA,EAC9D;AAAA;AAAA;AAAA;AAAA,EAIA,UAAU;AACN,WAAO,WAAU,UAAU,KAAK,SAAS;AAAA,EAC7C;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB;AAEf,UAAM,QAAQ,OAAO,4DAA4D;AAEjF,UAAM,QAAQ,KAAK,UAAU,MAAM,KAAK;AACxC,QAAI,CAAC,OAAO;AACR,YAAM,+BAA+B,aAAa;AAAA,IACtD;AAEA,UAAM,gBAAgB;AAAA,MAClB,UAAU,MAAM,CAAC;AAAA,MACjB,iBAAiB,MAAM,CAAC;AAAA,MACxB,cAAc,MAAM,CAAC;AAAA,MACrB,aAAa,MAAM,CAAC;AAAA,IACxB;AACA,QAAI,eAAe,cAAc,aAAa,MAAM,GAAG;AACvD,mBAAe,aAAa,OAAO,CAAC,QAAQ,OAAO,IAAI,SAAS,CAAC;AACjE,kBAAc,eAAe;AAC7B,QAAI,cAAc,eACd,cAAc,YAAY,SAAS,GAAG,GAAG;AACzC,oBAAc,cAAc,cAAc,YAAY,UAAU,GAAG,cAAc,YAAY,SAAS,CAAC;AAAA,IAC3G;AACA,WAAO;AAAA,EACX;AAAA,EACA,OAAO,iBAAiB,KAAK;AACzB,UAAM,QAAQ,OAAO,0BAA0B;AAC/C,UAAM,QAAQ,IAAI,MAAM,KAAK;AAC7B,QAAI,CAAC,OAAO;AACR,YAAM,+BAA+B,aAAa;AAAA,IACtD;AACA,WAAO,MAAM,CAAC;AAAA,EAClB;AAAA,EACA,OAAO,eAAe,aAAa,SAAS;AACxC,QAAI,YAAY,CAAC,MAAM,UAAU,eAAe;AAC5C,YAAM,MAAM,IAAI,WAAU,OAAO;AACjC,YAAM,iBAAiB,IAAI,iBAAiB;AAC5C,aAAQ,eAAe,WACnB,OACA,eAAe,kBACf;AAAA,IACR;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,UAAU,YAAY;AACzB,UAAM,aAAa,WAAW,QAAQ,GAAG;AACzC,UAAM,aAAa,WAAW,QAAQ,IAAI;AAC1C,QAAI,aAAa,IAAI;AACjB,aAAO,WAAW,UAAU,aAAa,CAAC;AAAA,IAC9C,WACS,aAAa,IAAI;AACtB,aAAO,WAAW,UAAU,aAAa,CAAC;AAAA,IAC9C;AACA,WAAO,UAAU;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,iBAAiB,aAAa;AACjC,UAAM,cAAc,YAAY,QAAQ,GAAG;AAC3C,UAAM,cAAc,YAAY,QAAQ,IAAI;AAC5C,QAAI,cAAc,IAAI;AAClB,aAAO,YAAY,UAAU,cAAc,CAAC;AAAA,IAChD,WACS,cAAc,IAAI;AACvB,aAAO,YAAY,UAAU,cAAc,CAAC;AAAA,IAChD;AACA,WAAO,UAAU;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,OAAO,yBAAyB,aAAa;AACzC,UAAM,cAAc,YAAY,QAAQ,OAAO;AAC/C,UAAM,cAAc,YAAY,QAAQ,QAAQ;AAChD,UAAM,YAAY,YAAY,QAAQ,GAAG;AACzC,QAAI,cAAc,MAAM,YAAY,IAAI;AACpC,aAAO,YAAY,UAAU,cAAc,GAAG,SAAS;AAAA,IAC3D,WACS,cAAc,IAAI;AACvB,aAAO,YAAY,UAAU,cAAc,CAAC;AAAA,IAChD,WACS,cAAc,MAAM,YAAY,IAAI;AACzC,aAAO,YAAY,UAAU,cAAc,GAAG,SAAS;AAAA,IAC3D,WACS,cAAc,IAAI;AACvB,aAAO,YAAY,UAAU,cAAc,CAAC;AAAA,IAChD;AACA,WAAO,UAAU;AAAA,EACrB;AAAA,EACA,OAAO,gCAAgC,WAAW;AAC9C,WAAO,IAAI,WAAU,UAAU,WAC3B,OACA,UAAU,kBACV,MACA,UAAU,aAAa,KAAK,GAAG,CAAC;AAAA,EACxC;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,oBAAoB,MAAM;AAE7B,QAAI,CAAC,MAAM;AACP,aAAO,CAAC;AAAA,IACZ;AAEA,UAAM,aAAa,WAAU,UAAU,IAAI;AAE3C,UAAM,mBAAmB,YAAY,oBAAoB,cAAc,IAAI;AAE3E,QAAI,CAAC,kBAAkB;AACnB,YAAM,sBAAsB,mBAAmB;AAAA,IACnD;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,2BAA2B,OAAO;AAErC,QAAI,CAAC,OAAO;AACR,aAAO,CAAC;AAAA,IACZ;AAEA,UAAM,oBAAoB,WAAU,iBAAiB,KAAK;AAE1D,UAAM,0BAA0B,YAAY,oBAAoB,qBAAqB,KAAK;AAE1F,QAAI,CAAC,yBAAyB;AAC1B,YAAM,sBAAsB,mBAAmB;AAAA,IACnD;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,4BAA4B,oBAAoB,cAAc;AACjE,UAAM,gBAAgB,IAAI,WAAU,YAAY;AAChD,QAAI;AACJ,QAAI,uBAAuB,mBAAmB,OAAO;AACjD,qBAAe,WAAU,2BAA2B,YAAY;AAAA,IACpE,OACK;AACD,qBAAe,WAAU,oBAAoB,cAAc,QAAQ,CAAC;AAAA,IACxE;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,4BAA4B,MAAM;AACrC,QAAI,CAAC,QAAQ,KAAK,QAAQ,GAAG,IAAI,GAAG;AAEhC,aAAO;AAAA,IACX;AACA,UAAM,aAAa,WAAU,oBAAoB,IAAI;AACrD,WAAO,CAAC,EAAE,WAAW,QACjB,WAAW,qBACX,WAAW,SACX,WAAW;AAAA,EACnB;AACJ;;;AC7QA,IAAM,SAAS,CAAC,UAAU,WAAW,QAAQ,iBAAiB,kBAAkB;AAC5E,SAAO,IAAI,SAAS;AAChB,WAAO,MAAM,sBAAsB,SAAS,EAAE;AAC9C,UAAM,kBAAkB,iBAAiB,iBAAiB,WAAW,aAAa;AAClF,QAAI;AACA,YAAM,SAAS,SAAS,GAAG,IAAI;AAC/B,uBAAiB,IAAI;AAAA,QACjB,SAAS;AAAA,MACb,CAAC;AACD,aAAO,MAAM,yBAAyB,SAAS,EAAE;AACjD,aAAO;AAAA,IACX,SACO,GAAG;AACN,aAAO,MAAM,qBAAqB,SAAS,EAAE;AAC7C,UAAI;AACA,eAAO,MAAM,KAAK,UAAU,CAAC,CAAC;AAAA,MAClC,SACOC,IAAG;AACN,eAAO,MAAM,gCAAgC;AAAA,MACjD;AACA,uBAAiB,IAAI;AAAA,QACjB,SAAS;AAAA,MACb,CAAC;AACD,YAAM;AAAA,IACV;AAAA,EACJ;AACJ;AAcA,IAAM,cAAc,CAAC,UAAU,WAAW,QAAQ,iBAAiB,kBAAkB;AACjF,SAAO,IAAI,SAAS;AAChB,WAAO,MAAM,sBAAsB,SAAS,EAAE;AAC9C,UAAM,kBAAkB,iBAAiB,iBAAiB,WAAW,aAAa;AAClF,qBAAiB,gBAAgB,WAAW,aAAa;AACzD,WAAO,SAAS,GAAG,IAAI,EAClB,KAAK,CAAC,aAAa;AACpB,aAAO,MAAM,yBAAyB,SAAS,EAAE;AACjD,uBAAiB,IAAI;AAAA,QACjB,SAAS;AAAA,MACb,CAAC;AACD,aAAO;AAAA,IACX,CAAC,EACI,MAAM,CAAC,MAAM;AACd,aAAO,MAAM,qBAAqB,SAAS,EAAE;AAC7C,UAAI;AACA,eAAO,MAAM,KAAK,UAAU,CAAC,CAAC;AAAA,MAClC,SACOA,IAAG;AACN,eAAO,MAAM,gCAAgC;AAAA,MACjD;AACA,uBAAiB,IAAI;AAAA,QACjB,SAAS;AAAA,MACb,CAAC;AACD,YAAM;AAAA,IACV,CAAC;AAAA,EACL;AACJ;;;AC1EA,IAAM,cAAc;AAAA,EAChB,IAAI;AAAA,EACJ,KAAK;AACT;AAEA,IAAM,oBAAN,MAAwB;AAAA,EACpB,YAAY,aAAa,mBAAmB;AACxC,SAAK,cAAc;AACnB,SAAK,oBAAoB;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,YAAY,SAAS,QAAQ;AAAA;AAC/B,WAAK,mBAAmB,oBAAoB,kBAAkB,qBAAqB,QAAQ,aAAa;AACxG,YAAM,SAAS,MAAM,YAAY,KAAK,YAAY,KAAK,IAAI,GAAG,kBAAkB,qBAAqB,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,OAAO;AACnK,YAAM,eAAe,KAAK,YAAY,aAAa,KAAK,UAAU,MAAM,CAAC;AACzE,aAAO;AAAA,QACH,KAAK,OAAO;AAAA,QACZ;AAAA,QACA,YAAY,MAAM,KAAK,YAAY,WAAW,YAAY;AAAA,MAC9D;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,YAAY,SAAS;AAAA;AACvB,WAAK,mBAAmB,oBAAoB,kBAAkB,qBAAqB,QAAQ,aAAa;AACxG,YAAM,gBAAgB,MAAM,KAAK,YAAY,uBAAuB,OAAO;AAC3E,aAAO;AAAA,QACH,KAAK;AAAA,QACL,SAAS,YAAY;AAAA,MACzB;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,aAAa,aAAa,OAAO,SAAS;AAAA;AAC5C,aAAO,KAAK,YAAY,aAAa,OAAO,OAAO;AAAA,IACvD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASM,YAAY,SAAS,OAAO,SAAS,QAAQ;AAAA;AAE/C,YAAM,EAAE,uBAAuB,oBAAoB,WAAW,SAAU,IAAI;AAC5E,YAAM,oBAAoB,qBACpB,IAAI,UAAU,kBAAkB,IAChC;AACN,YAAM,wBAAwB,mBAAmB,iBAAiB;AAClE,aAAO,MAAM,KAAK,YAAY,QAAQ;AAAA,QAClC,IAAI;AAAA,QACJ,IAAI,UAAU,WAAW;AAAA,QACzB,GAAG,uBAAuB,YAAY;AAAA,QACtC,GAAG,uBAAuB;AAAA,QAC1B,OAAO,YAAY,KAAK,YAAY,cAAc;AAAA,QAClD,GAAG,uBAAuB;AAAA,QAC1B,GAAG,uBAAuB,cACpB,CAAC,CAAC,GAAG,sBAAsB,WAAW,IACtC;AAAA,QACN,eAAe,aAAa;AAAA,SACzB,SACJ,OAAO,QAAQ,aAAa;AAAA,IACnC;AAAA;AACJ;;;AClEA,IAAM,oBAAN,MAAM,mBAAkB;AAAA;AAAA;AAAA;AAAA,EAIpB,yBAAyB;AACrB,WAAO,mBAAkB,4BAA4B,KAAK,aAAa,KAAK,QAAQ;AAAA,EACxF;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,4BAA4B,aAAa,UAAU;AACtD,UAAM,sBAAsB;AAAA,MACxB;AAAA,MACA;AAAA,MACA;AAAA,IACJ;AACA,WAAO,oBACF,KAAK,WAAW,mBAAmB,EACnC,YAAY;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,OAAO,wBAAwB,UAAU,aAAa,UAAU;AAC5D,UAAM,cAAc,IAAI,mBAAkB;AAC1C,gBAAY,WAAW;AACvB,gBAAY,cAAc;AAC1B,QAAI,UAAU;AACV,kBAAY,WAAW;AAAA,IAC3B;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,oBAAoB,KAAK,QAAQ;AACpC,QAAI,CAAC,QAAQ;AACT,aAAO;AAAA,IACX;AACA,WAAQ,IAAI,QAAQ,YAAY,MAAM,KAClC,OAAO,eAAe,UAAU,KAChC,OAAO,eAAe,aAAa;AAAA,EAC3C;AACJ;;;AC5DI,IAAM,oBAAN,MAAwB;AAAA,EACxB,YAAY,YAAY,YAAY;AAChC,SAAK,QAAQ;AACb,SAAK,aAAa;AAAA,EACtB;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,kBAAkB;AAClB,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,aAAa;AACb,WAAO,KAAK;AAAA,EAChB;AACJ;;;ACGA,IAAM,kBAAN,MAAM,iBAAgB;AAAA,EAClB,YAAY,UAAU,cAAc,WAAW,QAAQ,mBAAmB,mBAAmB,mBAAmB;AAC5G,SAAK,WAAW;AAChB,SAAK,eAAe;AACpB,SAAK,YAAY;AACjB,SAAK,SAAS;AACd,SAAK,oBAAoB;AACzB,SAAK,oBAAoB;AACzB,SAAK,oBAAoB;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,wCAAwC,oBAAoB,aAAa,WAAW;AAChF,QAAI,CAAC,mBAAmB,SAAS,CAAC,aAAa;AAC3C,YAAM,mBAAmB,QACnB,sBAAsB,eAAe,cAAc,IACnD,sBAAsB,eAAe,cAAc;AAAA,IAC7D;AACA,QAAI;AACJ,QAAI;AACJ,QAAI;AACA,kCAA4B,mBAAmB,mBAAmB,KAAK;AAAA,IAC3E,SACO,GAAG;AACN,YAAM,sBAAsB,cAAc,mBAAmB,KAAK;AAAA,IACtE;AACA,QAAI;AACA,2BAAqB,mBAAmB,WAAW;AAAA,IACvD,SACO,GAAG;AACN,YAAM,sBAAsB,cAAc,mBAAmB,KAAK;AAAA,IACtE;AACA,QAAI,8BAA8B,oBAAoB;AAClD,YAAM,sBAAsB,aAAa;AAAA,IAC7C;AAEA,QAAI,mBAAmB,SACnB,mBAAmB,qBACnB,mBAAmB,UAAU;AAC7B,UAAI,2BAA2B,mBAAmB,OAAO,mBAAmB,mBAAmB,mBAAmB,QAAQ,GAAG;AACzH,cAAM,IAAI,6BAA6B,mBAAmB,SAAS,UAAU,cAAc,mBAAmB,mBAAmB,mBAAmB,UAAU,mBAAmB,aAAa,UAAU,cAAc,mBAAmB,YAAY,UAAU,cAAc,mBAAmB,kBAAkB,UAAU,cAAc,mBAAmB,UAAU,UAAU,YAAY;AAAA,MACjY;AACA,YAAM,IAAI,YAAY,mBAAmB,SAAS,UAAU,cAAc,mBAAmB,mBAAmB,mBAAmB,QAAQ;AAAA,IAC/I;AACA,QAAI,mBAAmB,aAAa;AAChC,sBAAgB,mBAAmB,aAAa,SAAS;AAAA,IAC7D;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,sBAAsB,gBAAgB,oBAAoB;AAEtD,QAAI,eAAe,SACf,eAAe,qBACf,eAAe,UAAU;AACzB,YAAM,YAAY,GAAG,eAAe,WAAW,OAAO,eAAe,SAAS,MAAM,eAAe,iBAAiB,sBAAsB,eAAe,cAAc,gBAAgB,eAAe,QAAQ;AAC9M,YAAM,cAAc,IAAI,YAAY,eAAe,OAAO,WAAW,eAAe,QAAQ;AAE5F,UAAI,sBACA,eAAe,UACf,eAAe,UAAU,WAAW,4BACpC,eAAe,UAAU,WAAW,wBAAwB;AAC5D,aAAK,OAAO,QAAQ;AAAA,EAA6H,WAAW,EAAE;AAE9J;AAAA,MAEJ,WACS,sBACL,eAAe,UACf,eAAe,UAAU,WAAW,4BACpC,eAAe,UAAU,WAAW,wBAAwB;AAC5D,aAAK,OAAO,QAAQ;AAAA,EAAsH,WAAW,EAAE;AAEvJ;AAAA,MACJ;AACA,UAAI,2BAA2B,eAAe,OAAO,eAAe,mBAAmB,eAAe,QAAQ,GAAG;AAC7G,cAAM,IAAI,6BAA6B,eAAe,OAAO,eAAe,mBAAmB,eAAe,UAAU,eAAe,aAAa,UAAU,cAAc,eAAe,YAAY,UAAU,cAAc,eAAe,kBAAkB,UAAU,cAAc,eAAe,UAAU,UAAU,YAAY;AAAA,MAC3U;AACA,YAAM;AAAA,IACV;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,0BAA0B,qBAAqB,WAAW,cAAc,SAAS,iBAAiB,mBAAmB,8BAA8B,gCAAgC,iBAAiB;AAAA;AACtM,WAAK,mBAAmB,oBAAoB,kBAAkB,2BAA2B,oBAAoB,cAAc;AAE3H,UAAI;AACJ,UAAI,oBAAoB,UAAU;AAC9B,wBAAgB,mBAAmB,oBAAoB,YAAY,UAAU,cAAc,KAAK,UAAU,YAAY;AAEtH,YAAI,mBAAmB,gBAAgB,OAAO;AAC1C,cAAI,cAAc,UAAU,gBAAgB,OAAO;AAC/C,kBAAM,sBAAsB,aAAa;AAAA,UAC7C;AAAA,QACJ;AAEA,YAAI,QAAQ,UAAU,QAAQ,WAAW,GAAG;AACxC,gBAAM,WAAW,cAAc;AAC/B,cAAI,CAAC,UAAU;AACX,kBAAM,sBAAsB,gBAAgB;AAAA,UAChD;AACA,sBAAY,UAAU,QAAQ,MAAM;AAAA,QACxC;AAAA,MACJ;AAEA,WAAK,wBAAwB,cAAc,sBAAsB,oBAAoB,eAAe,UAAU,cAAc,UAAU,eAAe,KAAK,QAAQ,KAAK,WAAW,aAAa;AAE/L,UAAI;AACJ,UAAI,CAAC,CAAC,mBAAmB,CAAC,CAAC,gBAAgB,OAAO;AAC9C,0BAAkB,cAAc,kBAAkB,KAAK,WAAW,gBAAgB,KAAK;AAAA,MAC3F;AAEA,0BAAoB,SAChB,oBAAoB,UAAU,QAAQ,UAAU;AACpD,YAAM,cAAc,KAAK,oBAAoB,qBAAqB,WAAW,cAAc,SAAS,eAAe,mBAAmB,eAAe;AACrJ,UAAI;AACJ,UAAI;AACA,YAAI,KAAK,qBAAqB,KAAK,mBAAmB;AAClD,eAAK,OAAO,QAAQ,gDAAgD;AACpE,yBAAe,IAAI,kBAAkB,KAAK,mBAAmB,IAAI;AACjE,gBAAM,KAAK,kBAAkB,kBAAkB,YAAY;AAAA,QAC/D;AAOA,YAAI,gCACA,CAAC,kCACD,YAAY,SAAS;AACrB,gBAAM,MAAM,YAAY,QAAQ,mBAAmB;AACnD,gBAAM,UAAU,KAAK,aAAa,WAAW,GAAG;AAChD,cAAI,CAAC,SAAS;AACV,iBAAK,OAAO,QAAQ,qGAAqG;AACzH,mBAAO,iBAAgB,6BAA6B,KAAK,WAAW,WAAW,aAAa,OAAO,SAAS,eAAe,iBAAiB,QAAW,eAAe;AAAA,UAC1K;AAAA,QACJ;AACA,cAAM,KAAK,aAAa,gBAAgB,aAAa,QAAQ,YAAY;AAAA,MAC7E,UACA;AACI,YAAI,KAAK,qBACL,KAAK,qBACL,cAAc;AACd,eAAK,OAAO,QAAQ,+CAA+C;AACnE,gBAAM,KAAK,kBAAkB,iBAAiB,YAAY;AAAA,QAC9D;AAAA,MACJ;AACA,aAAO,iBAAgB,6BAA6B,KAAK,WAAW,WAAW,aAAa,OAAO,SAAS,eAAe,iBAAiB,qBAAqB,eAAe;AAAA,IACpL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,oBAAoB,qBAAqB,WAAW,cAAc,SAAS,eAAe,mBAAmB,iBAAiB;AAC1H,UAAM,MAAM,UAAU,kBAAkB;AACxC,QAAI,CAAC,KAAK;AACN,YAAM,sBAAsB,uBAAuB;AAAA,IACvD;AAEA,QAAI;AACJ,QAAI;AACJ,QAAI,oBAAoB,YAAY,CAAC,CAAC,eAAe;AACjD,sBAAgB,cAAc,oBAAoB,KAAK,uBAAuB,KAAK,oBAAoB,UAAU,KAAK,UAAU,cAAc,OAAO,EAAE;AACvJ,sBAAgB,cAAc,cAAc;AAAA,QACxC,eAAe,KAAK;AAAA,QACpB;AAAA,QACA,YAAY,oBAAoB;AAAA,QAChC,oBAAoB,iBAAiB;AAAA,QACrC,aAAa,iBAAiB;AAAA,MAClC,GAAG,SAAS;AAAA,IAChB;AAEA,QAAI,oBAAoB;AACxB,QAAI,oBAAoB,cAAc;AAElC,YAAM,iBAAiB,oBAAoB,QACrC,SAAS,WAAW,oBAAoB,KAAK,IAC7C,IAAI,SAAS,QAAQ,UAAU,CAAC,CAAC;AAKvC,YAAM,aAAa,OAAO,oBAAoB,eAAe,WACvD,SAAS,oBAAoB,YAAY,EAAE,IAC3C,oBAAoB,eAAe;AACzC,YAAM,gBAAgB,OAAO,oBAAoB,mBAAmB,WAC9D,SAAS,oBAAoB,gBAAgB,EAAE,IAC/C,oBAAoB,mBAAmB;AAC7C,YAAM,aAAa,OAAO,oBAAoB,eAAe,WACvD,SAAS,oBAAoB,YAAY,EAAE,IAC3C,oBAAoB,eAAe;AACzC,YAAM,yBAAyB,eAAe;AAC9C,YAAM,iCAAiC,yBAAyB;AAChE,YAAM,mBAAmB,aAAa,YAAY,IAC5C,eAAe,YACf;AAEN,0BAAoB,kBAAkB,wBAAwB,KAAK,uBAAuB,KAAK,oBAAoB,gBAAgB,UAAU,cAAc,KAAK,UAAU,eAAe,OAAO,UAAU,QAAQ,eAAe,YAAY,GAAG,wBAAwB,gCAAgC,KAAK,WAAW,kBAAkB,oBAAoB,YAAY,mBAAmB,oBAAoB,QAAQ,QAAQ,QAAQ,QAAQ,mBAAmB;AAAA,IACxc;AAEA,QAAI,qBAAqB;AACzB,QAAI,oBAAoB,eAAe;AACnC,2BAAqB,mBAAmB,yBAAyB,KAAK,uBAAuB,KAAK,oBAAoB,iBAAiB,UAAU,cAAc,KAAK,UAAU,oBAAoB,MAAM,iBAAiB;AAAA,IAC7N;AAEA,QAAI,oBAAoB;AACxB,QAAI,oBAAoB,MAAM;AAC1B,0BAAoB,kBAAkB,wBAAwB,KAAK,UAAU,KAAK,oBAAoB,IAAI;AAAA,IAC9G;AACA,WAAO,IAAI,YAAY,eAAe,eAAe,mBAAmB,oBAAoB,iBAAiB;AAAA,EACjH;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAWA,OAAa,6BAA6B,WAAW,WAAW,aAAa,gBAAgB,SAAS,eAAe,cAAc,qBAAqB,WAAW;AAAA;AAC/J,UAAI,cAAc,UAAU;AAC5B,UAAI,iBAAiB,CAAC;AACtB,UAAI,YAAY;AAChB,UAAI;AACJ,UAAI;AACJ,UAAI,WAAW,UAAU;AACzB,UAAI,YAAY,aAAa;AACzB,YAAI,YAAY,YAAY,cAAc,qBAAqB,KAAK;AAChE,gBAAM,oBAAoB,IAAI,kBAAkB,SAAS;AACzD,gBAAM,EAAE,QAAQ,MAAM,IAAI,YAAY;AACtC,cAAI,CAAC,OAAO;AACR,kBAAM,sBAAsB,YAAY;AAAA,UAC5C;AACA,wBAAc,MAAM,kBAAkB,aAAa,QAAQ,OAAO,OAAO;AAAA,QAC7E,OACK;AACD,wBAAc,YAAY,YAAY;AAAA,QAC1C;AACA,yBAAiB,SAAS,WAAW,YAAY,YAAY,MAAM,EAAE,QAAQ;AAC7E,oBAAY,IAAI,KAAK,OAAO,YAAY,YAAY,SAAS,IAAI,GAAI;AACrE,uBAAe,IAAI,KAAK,OAAO,YAAY,YAAY,iBAAiB,IAAI,GAAI;AAChF,YAAI,YAAY,YAAY,WAAW;AACnC,sBAAY,IAAI,KAAK,OAAO,YAAY,YAAY,SAAS,IAAI,GAAI;AAAA,QACzE;AAAA,MACJ;AACA,UAAI,YAAY,aAAa;AACzB,mBACI,YAAY,YAAY,aAAa,gBAC/B,gBACA;AAAA,MACd;AACA,YAAM,MAAM,eAAe,OAAO,eAAe,OAAO;AACxD,YAAM,MAAM,eAAe,OAAO;AAElC,UAAI,qBAAqB,iBAAiB,CAAC,CAAC,YAAY,SAAS;AAC7D,oBAAY,QAAQ,kBAChB,qBAAqB;AAAA,MAC7B;AACA,aAAO;AAAA,QACH,WAAW,UAAU;AAAA,QACrB,UAAU;AAAA,QACV,UAAU;AAAA,QACV,QAAQ;AAAA,QACR,SAAS,YAAY,UACf,YAAY,QAAQ,eAAe,IACnC;AAAA,QACN,SAAS,aAAa,SAAS,UAAU;AAAA,QACzC,eAAe,iBAAiB,CAAC;AAAA,QACjC;AAAA,QACA,WAAW;AAAA,QACX;AAAA,QACA;AAAA,QACA;AAAA,QACA,eAAe,QAAQ;AAAA,QACvB,WAAW,aAAa,UAAU;AAAA,QAClC;AAAA,QACA,WAAW,YAAY,aAAa,aAAa,UAAU;AAAA,QAC3D,OAAO,eACD,aAAa,mBACb,UAAU;AAAA,QAChB,oBAAoB,YAAY,SAAS,sBACrC,UAAU;AAAA,QACd,aAAa,YAAY,SAAS,eAAe,UAAU;AAAA,QAC3D,MAAM,qBAAqB;AAAA,QAC3B,kBAAkB;AAAA,MACtB;AAAA,IACJ;AAAA;AACJ;;;AC9SA,IAAM,0BAAN,cAAsC,WAAW;AAAA,EAC7C,YAAY,eAAe,mBAAmB;AAC1C,UAAM,eAAe,iBAAiB;AAEtC,SAAK,qBAAqB;AAC1B,SAAK,oBACD,KAAK,OAAO,YAAY,UAAU,QAAQ,aAAa;AAAA,EAC/D;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAWM,eAAe,SAAS;AAAA;AAC1B,WAAK,mBAAmB,oBAAoB,kBAAkB,gBAAgB,QAAQ,aAAa;AACnG,YAAM,cAAc,MAAM,YAAY,KAAK,6BAA6B,KAAK,IAAI,GAAG,kBAAkB,6BAA6B,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,OAAO;AACtM,aAAO,UAAU,kBAAkB,KAAK,UAAU,uBAAuB,WAAW;AAAA,IACxF;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,aAAa,SAAS,iBAAiB;AAAA;AACzC,WAAK,mBAAmB,oBAAoB,kBAAkB,wBAAwB,QAAQ,aAAa;AAC3G,UAAI,CAAC,QAAQ,MAAM;AACf,cAAM,sBAAsB,mBAAmB;AAAA,MACnD;AACA,YAAM,eAAe,UAAU,WAAW;AAC1C,YAAM,WAAW,MAAM,YAAY,KAAK,oBAAoB,KAAK,IAAI,GAAG,kBAAkB,+BAA+B,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,KAAK,WAAW,OAAO;AAE5M,YAAM,YAAY,SAAS,UAAU,YAAY,eAAe;AAChE,YAAM,kBAAkB,IAAI,gBAAgB,KAAK,OAAO,YAAY,UAAU,KAAK,cAAc,KAAK,aAAa,KAAK,QAAQ,KAAK,OAAO,mBAAmB,KAAK,OAAO,mBAAmB,KAAK,iBAAiB;AAEpN,sBAAgB,sBAAsB,SAAS,IAAI;AACnD,aAAO,YAAY,gBAAgB,0BAA0B,KAAK,eAAe,GAAG,kBAAkB,2BAA2B,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,MAAM,KAAK,WAAW,cAAc,SAAS,iBAAiB,QAAW,QAAW,QAAW,SAAS;AAAA,IAClT;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,uBAAuB,cAAc,aAAa;AAE9C,UAAM,kBAAkB,IAAI,gBAAgB,KAAK,OAAO,YAAY,UAAU,KAAK,cAAc,KAAK,aAAa,KAAK,QAAQ,MAAM,IAAI;AAC1I,UAAM,eAAe,UAAU,4BAA4B,KAAK,OAAO,YAAY,UAAU,QAAQ,aAC/F,oBAAoB,YAAY;AAEtC,oBAAgB,wCAAwC,cAAc,aAAa,KAAK,WAAW;AAEnG,QAAI,CAAC,aAAa,MAAM;AACpB,YAAM,sBAAsB,0CAA0C;AAAA,IAC1E;AACA,WAAO,iCACA,eADA;AAAA;AAAA,MAGH,MAAM,aAAa;AAAA,IACvB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,aAAa,eAAe;AAExB,QAAI,CAAC,eAAe;AAChB,YAAM,+BAA+B,kBAAkB;AAAA,IAC3D;AACA,UAAM,cAAc,KAAK,2BAA2B,aAAa;AAEjE,WAAO,UAAU,kBAAkB,KAAK,UAAU,oBAAoB,WAAW;AAAA,EACrF;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,oBAAoB,WAAW,SAAS;AAAA;AAC1C,WAAK,mBAAmB,oBAAoB,kBAAkB,+BAA+B,QAAQ,aAAa;AAClH,YAAM,wBAAwB,KAAK,2BAA2B,OAAO;AACrE,YAAM,WAAW,UAAU,kBAAkB,UAAU,eAAe,qBAAqB;AAC3F,YAAM,cAAc,MAAM,YAAY,KAAK,uBAAuB,KAAK,IAAI,GAAG,kBAAkB,kCAAkC,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,OAAO;AACrM,UAAI,gBAAgB;AACpB,UAAI,QAAQ,YAAY;AACpB,YAAI;AACA,gBAAM,aAAa,gBAAgB,QAAQ,YAAY,KAAK,WAAW;AACvE,0BAAgB;AAAA,YACZ,YAAY,GAAG,WAAW,GAAG,GAAG,WAAW,qBAAqB,GAAG,WAAW,IAAI;AAAA,YAClF,MAAM,kBAAkB;AAAA,UAC5B;AAAA,QACJ,SACO,GAAG;AACN,eAAK,OAAO,QAAQ,iDAAiD,CAAC;AAAA,QAC1E;AAAA,MACJ;AACA,YAAM,UAAU,KAAK,0BAA0B,iBAAiB,QAAQ,aAAa;AACrF,YAAM,aAAa;AAAA,QACf,UAAU,QAAQ,qBAAqB,YACnC,KAAK,OAAO,YAAY;AAAA,QAC5B,WAAW,UAAU;AAAA,QACrB,QAAQ,QAAQ;AAAA,QAChB,QAAQ,QAAQ;AAAA,QAChB,sBAAsB,QAAQ;AAAA,QAC9B,uBAAuB,QAAQ;AAAA,QAC/B,oBAAoB,QAAQ;AAAA,QAC5B,WAAW,QAAQ;AAAA,QACnB,QAAQ,QAAQ;AAAA,MACpB;AACA,aAAO,YAAY,KAAK,2BAA2B,KAAK,IAAI,GAAG,kBAAkB,sCAAsC,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,UAAU,aAAa,SAAS,YAAY,QAAQ,aAAa;AAAA,IACxP;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,uBAAuB,SAAS;AAAA;AAClC,WAAK,mBAAmB,oBAAoB,kBAAkB,kCAAkC,QAAQ,aAAa;AACrH,YAAM,mBAAmB,IAAI,wBAAwB;AACrD,uBAAiB,YAAY,QAAQ,sBAAsB,mBAAmB,SAAS,KACnF,KAAK,OAAO,YAAY,QAAQ;AAKpC,UAAI,CAAC,KAAK,oBAAoB;AAE1B,yBAAiB,oBAAoB,QAAQ,WAAW;AAAA,MAC5D,OACK;AAED,yBAAiB,eAAe,QAAQ,WAAW;AAAA,MACvD;AAEA,uBAAiB,UAAU,QAAQ,QAAQ,MAAM,KAAK,iBAAiB;AAEvE,uBAAiB,qBAAqB,QAAQ,IAAI;AAElD,uBAAiB,eAAe,KAAK,OAAO,WAAW;AACvD,uBAAiB,wBAAwB,KAAK,OAAO,UAAU,WAAW;AAC1E,uBAAiB,cAAc;AAC/B,UAAI,KAAK,0BAA0B,CAAC,mBAAmB,KAAK,MAAM,GAAG;AACjE,yBAAiB,mBAAmB,KAAK,sBAAsB;AAAA,MACnE;AAEA,UAAI,QAAQ,cAAc;AACtB,yBAAiB,gBAAgB,QAAQ,YAAY;AAAA,MACzD;AACA,UAAI,KAAK,OAAO,kBAAkB,cAAc;AAC5C,yBAAiB,gBAAgB,KAAK,OAAO,kBAAkB,YAAY;AAAA,MAC/E;AACA,UAAI,KAAK,OAAO,kBAAkB,iBAAiB;AAC/C,cAAM,kBAAkB,KAAK,OAAO,kBAAkB;AACtD,yBAAiB,mBAAmB,gBAAgB,SAAS;AAC7D,yBAAiB,uBAAuB,gBAAgB,aAAa;AAAA,MACzE;AACA,uBAAiB,aAAa,UAAU,wBAAwB;AAChE,uBAAiB,cAAc;AAC/B,UAAI,QAAQ,yBAAyB,qBAAqB,KAAK;AAC3D,cAAM,oBAAoB,IAAI,kBAAkB,KAAK,aAAa,KAAK,iBAAiB;AACxF,cAAM,aAAa,MAAM,YAAY,kBAAkB,YAAY,KAAK,iBAAiB,GAAG,kBAAkB,qBAAqB,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,KAAK,MAAM;AAEnN,yBAAiB,YAAY,WAAW,YAAY;AAAA,MACxD,WACS,QAAQ,yBAAyB,qBAAqB,KAAK;AAChE,YAAI,QAAQ,QAAQ;AAChB,2BAAiB,UAAU,QAAQ,MAAM;AAAA,QAC7C,OACK;AACD,gBAAM,+BAA+B,aAAa;AAAA,QACtD;AAAA,MACJ;AACA,YAAM,gBAAgB,QAAQ,iBAC1B,KAAK,OAAO,gBAAgB,cAAc;AAC9C,uBAAiB,iBAAiB,aAAa;AAC/C,UAAI,CAAC,YAAY,WAAW,QAAQ,MAAM,KACrC,KAAK,OAAO,YAAY,sBACrB,KAAK,OAAO,YAAY,mBAAmB,SAAS,GAAI;AAC5D,yBAAiB,UAAU,QAAQ,QAAQ,KAAK,OAAO,YAAY,kBAAkB;AAAA,MACzF;AACA,UAAI,UAAU;AACd,UAAI,QAAQ,YAAY;AACpB,YAAI;AACA,gBAAM,aAAa,gBAAgB,QAAQ,YAAY,KAAK,WAAW;AACvE,oBAAU;AAAA,YACN,YAAY,GAAG,WAAW,GAAG,GAAG,WAAW,qBAAqB,GAAG,WAAW,IAAI;AAAA,YAClF,MAAM,kBAAkB;AAAA,UAC5B;AAAA,QACJ,SACO,GAAG;AACN,eAAK,OAAO,QAAQ,iDAAiD,CAAC;AAAA,QAC1E;AAAA,MACJ,OACK;AACD,kBAAU,QAAQ;AAAA,MACtB;AAEA,UAAI,KAAK,OAAO,cAAc,wBAAwB,SAAS;AAC3D,gBAAQ,QAAQ,MAAM;AAAA,UAClB,KAAK,kBAAkB;AACnB,gBAAI;AACA,oBAAM,aAAa,iCAAiC,QAAQ,UAAU;AACtE,+BAAiB,UAAU,UAAU;AAAA,YACzC,SACO,GAAG;AACN,mBAAK,OAAO,QAAQ,qDAChB,CAAC;AAAA,YACT;AACA;AAAA,UACJ,KAAK,kBAAkB;AACnB,6BAAiB,UAAU,QAAQ,UAAU;AAC7C;AAAA,QACR;AAAA,MACJ;AACA,UAAI,QAAQ,qBAAqB;AAC7B,yBAAiB,wBAAwB,QAAQ,mBAAmB;AAAA,MACxE;AAEA,UAAI,QAAQ,+BACP,CAAC,QAAQ,uBACN,CAAC,QAAQ,oBAAoB,mBAAmB,eAAe,IAAI;AACvE,yBAAiB,wBAAwB;AAAA,UACrC,CAAC,mBAAmB,eAAe,GAAG;AAAA,QAC1C,CAAC;AAAA,MACL;AACA,aAAO,iBAAiB,kBAAkB;AAAA,IAC9C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,6BAA6B,SAAS;AAAA;AACxC,WAAK,mBAAmB,oBAAoB,kBAAkB,6BAA6B,QAAQ,aAAa;AAChH,YAAM,mBAAmB,IAAI,wBAAwB;AACrD,uBAAiB,YAAY,QAAQ,uBAAuB,mBAAmB,SAAS,KACpF,KAAK,OAAO,YAAY,QAAQ;AACpC,YAAM,gBAAgB;AAAA,QAClB,GAAI,QAAQ,UAAU,CAAC;AAAA,QACvB,GAAI,QAAQ,wBAAwB,CAAC;AAAA,MACzC;AACA,uBAAiB,UAAU,eAAe,MAAM,KAAK,iBAAiB;AAEtE,uBAAiB,eAAe,QAAQ,WAAW;AAEnD,YAAM,gBAAgB,QAAQ,iBAC1B,KAAK,OAAO,gBAAgB,cAAc;AAC9C,uBAAiB,iBAAiB,aAAa;AAE/C,uBAAiB,gBAAgB,QAAQ,YAAY;AAErD,uBAAiB,oBAAoB;AAErC,uBAAiB,eAAe,KAAK,OAAO,WAAW;AACvD,UAAI,CAAC,mBAAmB,KAAK,MAAM,GAAG;AAClC,yBAAiB,wBAAwB,KAAK,OAAO,UAAU,WAAW;AAAA,MAC9E;AAEA,uBAAiB,cAAc;AAC/B,UAAI,QAAQ,iBAAiB,QAAQ,qBAAqB;AACtD,yBAAiB,uBAAuB,QAAQ,eAAe,QAAQ,mBAAmB;AAAA,MAC9F;AACA,UAAI,QAAQ,QAAQ;AAChB,yBAAiB,UAAU,QAAQ,MAAM;AAAA,MAC7C;AACA,UAAI,QAAQ,YAAY;AACpB,yBAAiB,cAAc,QAAQ,UAAU;AAAA,MACrD;AAEA,UAAI,QAAQ,WAAW,YAAY,gBAAgB;AAE/C,YAAI,QAAQ,OAAO,QAAQ,WAAW,YAAY,MAAM;AAEpD,eAAK,OAAO,QAAQ,uEAAuE;AAC3F,2BAAiB,OAAO,QAAQ,GAAG;AAAA,QACvC,WACS,QAAQ,SAAS;AACtB,gBAAM,aAAa,KAAK,kBAAkB,QAAQ,OAAO;AACzD,gBAAM,wBAAwB,KAAK,iBAAiB,QAAQ,OAAO;AAEnE,cAAI,uBAAuB;AACvB,iBAAK,OAAO,QAAQ,mEAAmE;AACvF,6BAAiB,aAAa,qBAAqB;AACnD,gBAAI;AACA,oBAAM,aAAa,iCAAiC,QAAQ,QAAQ,aAAa;AACjF,+BAAiB,UAAU,UAAU;AAAA,YACzC,SACO,GAAG;AACN,mBAAK,OAAO,QAAQ,8EAA8E;AAAA,YACtG;AAAA,UACJ,WACS,cAAc,QAAQ,WAAW,YAAY,MAAM;AAKxD,iBAAK,OAAO,QAAQ,uEAAuE;AAC3F,6BAAiB,OAAO,UAAU;AAClC,gBAAI;AACA,oBAAM,aAAa,iCAAiC,QAAQ,QAAQ,aAAa;AACjF,+BAAiB,UAAU,UAAU;AAAA,YACzC,SACO,GAAG;AACN,mBAAK,OAAO,QAAQ,8EAA8E;AAAA,YACtG;AAAA,UACJ,WACS,QAAQ,WAAW;AACxB,iBAAK,OAAO,QAAQ,8DAA8D;AAClF,6BAAiB,aAAa,QAAQ,SAAS;AAC/C,6BAAiB,UAAU,QAAQ,SAAS;AAAA,UAChD,WACS,QAAQ,QAAQ,UAAU;AAE/B,iBAAK,OAAO,QAAQ,8DAA8D;AAClF,6BAAiB,aAAa,QAAQ,QAAQ,QAAQ;AACtD,gBAAI;AACA,oBAAM,aAAa,iCAAiC,QAAQ,QAAQ,aAAa;AACjF,+BAAiB,UAAU,UAAU;AAAA,YACzC,SACO,GAAG;AACN,mBAAK,OAAO,QAAQ,8EAA8E;AAAA,YACtG;AAAA,UACJ;AAAA,QACJ,WACS,QAAQ,WAAW;AACxB,eAAK,OAAO,QAAQ,0EAA0E;AAC9F,2BAAiB,aAAa,QAAQ,SAAS;AAC/C,2BAAiB,UAAU,QAAQ,SAAS;AAAA,QAChD;AAAA,MACJ,OACK;AACD,aAAK,OAAO,QAAQ,gFAAgF;AAAA,MACxG;AACA,UAAI,QAAQ,OAAO;AACf,yBAAiB,SAAS,QAAQ,KAAK;AAAA,MAC3C;AACA,UAAI,QAAQ,OAAO;AACf,yBAAiB,SAAS,QAAQ,KAAK;AAAA,MAC3C;AACA,UAAI,QAAQ,UACP,KAAK,OAAO,YAAY,sBACrB,KAAK,OAAO,YAAY,mBAAmB,SAAS,GAAI;AAC5D,yBAAiB,UAAU,QAAQ,QAAQ,KAAK,OAAO,YAAY,kBAAkB;AAAA,MACzF;AACA,UAAI,QAAQ,sBAAsB;AAC9B,yBAAiB,wBAAwB,QAAQ,oBAAoB;AAAA,MACzE;AACA,UAAI,QAAQ,cAAc;AAEtB,yBAAiB,gBAAgB;AAEjC,YAAI,QAAQ,yBAAyB,qBAAqB,KAAK;AAC3D,gBAAM,oBAAoB,IAAI,kBAAkB,KAAK,WAAW;AAEhE,gBAAM,aAAa,MAAM,YAAY,kBAAkB,YAAY,KAAK,iBAAiB,GAAG,kBAAkB,qBAAqB,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,KAAK,MAAM;AACnN,2BAAiB,YAAY,WAAW,UAAU;AAAA,QACtD;AAAA,MACJ;AACA,aAAO,iBAAiB,kBAAkB;AAAA,IAC9C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,2BAA2B,SAAS;AAChC,UAAM,mBAAmB,IAAI,wBAAwB;AACrD,QAAI,QAAQ,uBAAuB;AAC/B,uBAAiB,yBAAyB,QAAQ,qBAAqB;AAAA,IAC3E;AACA,QAAI,QAAQ,eAAe;AACvB,uBAAiB,iBAAiB,QAAQ,aAAa;AAAA,IAC3D;AACA,QAAI,QAAQ,aAAa;AACrB,uBAAiB,eAAe,QAAQ,WAAW;AAAA,IACvD;AACA,QAAI,QAAQ,OAAO;AACf,uBAAiB,SAAS,QAAQ,KAAK;AAAA,IAC3C;AACA,QAAI,QAAQ,YAAY;AACpB,uBAAiB,cAAc,QAAQ,UAAU;AAAA,IACrD;AACA,QAAI,QAAQ,sBAAsB;AAC9B,uBAAiB,wBAAwB,QAAQ,oBAAoB;AAAA,IACzE;AACA,WAAO,iBAAiB,kBAAkB;AAAA,EAC9C;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,kBAAkB,SAAS;AACvB,WAAO,QAAQ,eAAe,OAAO;AAAA,EACzC;AAAA,EACA,iBAAiB,SAAS;AACtB,WAAO,QAAQ,eAAe,cAAc;AAAA,EAChD;AACJ;;;AC7YA,IAAM,qBAAN,cAAiC,WAAW;AAAA,EACxC,YAAY,eAAe,mBAAmB;AAC1C,UAAM,eAAe,iBAAiB;AAAA,EAC1C;AAAA,EACM,aAAa,SAAS;AAAA;AACxB,WAAK,mBAAmB,oBAAoB,kBAAkB,gCAAgC,QAAQ,aAAa;AACnH,YAAM,eAAe,UAAU,WAAW;AAC1C,YAAM,WAAW,MAAM,YAAY,KAAK,oBAAoB,KAAK,IAAI,GAAG,kBAAkB,uCAAuC,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,KAAK,SAAS;AAEpN,YAAM,YAAY,SAAS,UAAU,YAAY,eAAe;AAChE,YAAM,kBAAkB,IAAI,gBAAgB,KAAK,OAAO,YAAY,UAAU,KAAK,cAAc,KAAK,aAAa,KAAK,QAAQ,KAAK,OAAO,mBAAmB,KAAK,OAAO,iBAAiB;AAC5L,sBAAgB,sBAAsB,SAAS,IAAI;AACnD,aAAO,YAAY,gBAAgB,0BAA0B,KAAK,eAAe,GAAG,kBAAkB,2BAA2B,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,MAAM,KAAK,WAAW,cAAc,SAAS,QAAW,QAAW,MAAM,QAAQ,YAAY,SAAS;AAAA,IAChT;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,2BAA2B,SAAS;AAAA;AAEtC,UAAI,CAAC,SAAS;AACV,cAAM,+BAA+B,iBAAiB;AAAA,MAC1D;AACA,WAAK,mBAAmB,oBAAoB,kBAAkB,8CAA8C,QAAQ,aAAa;AAEjI,UAAI,CAAC,QAAQ,SAAS;AAClB,cAAM,sBAAsB,wBAAwB;AAAA,MACxD;AAEA,YAAM,SAAS,KAAK,aAAa,kBAAkB,QAAQ,QAAQ,WAAW;AAE9E,UAAI,QAAQ;AACR,YAAI;AACA,iBAAO,YAAY,KAAK,mCAAmC,KAAK,IAAI,GAAG,kBAAkB,sDAAsD,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,IAAI;AAAA,QAC5N,SACO,GAAG;AACN,gBAAM,oBAAoB,aAAa,gCACnC,EAAE,cACE;AACR,gBAAM,kCAAkC,aAAa,eACjD,EAAE,cAAc,OAAO,uBACvB,EAAE,aAAa,OAAO;AAE1B,cAAI,qBAAqB,iCAAiC;AACtD,mBAAO,YAAY,KAAK,mCAAmC,KAAK,IAAI,GAAG,kBAAkB,sDAAsD,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,KAAK;AAAA,UAE7N,OACK;AACD,kBAAM;AAAA,UACV;AAAA,QACJ;AAAA,MACJ;AAEA,aAAO,YAAY,KAAK,mCAAmC,KAAK,IAAI,GAAG,kBAAkB,sDAAsD,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,KAAK;AAAA,IAC7N;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,mCAAmC,SAAS,MAAM;AAAA;AACpD,WAAK,mBAAmB,oBAAoB,kBAAkB,sDAAsD,QAAQ,aAAa;AAEzI,YAAM,eAAe,KAAK,aAAa,gBAAgB,QAAQ,SAAS,IAAI;AAC5E,UAAI,CAAC,cAAc;AACf,cAAM,mCAAmC,aAAa;AAAA,MAC1D;AAEA,YAAM,sBAAsB,iCACrB,UADqB;AAAA,QAExB,cAAc,aAAa;AAAA,QAC3B,sBAAsB,QAAQ,wBAAwB,qBAAqB;AAAA,QAC3E,eAAe;AAAA,UACX,YAAY,QAAQ,QAAQ;AAAA,UAC5B,MAAM,kBAAkB;AAAA,QAC5B;AAAA,MACJ;AACA,aAAO,YAAY,KAAK,aAAa,KAAK,IAAI,GAAG,kBAAkB,gCAAgC,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,mBAAmB;AAAA,IACtL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,oBAAoB,SAAS,WAAW;AAAA;AAC1C,WAAK,mBAAmB,oBAAoB,kBAAkB,uCAAuC,QAAQ,aAAa;AAC1H,YAAM,wBAAwB,KAAK,2BAA2B,OAAO;AACrE,YAAM,WAAW,UAAU,kBAAkB,UAAU,eAAe,qBAAqB;AAC3F,YAAM,cAAc,MAAM,YAAY,KAAK,uBAAuB,KAAK,IAAI,GAAG,kBAAkB,0CAA0C,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,OAAO;AAC7M,YAAM,UAAU,KAAK,0BAA0B,QAAQ,aAAa;AACpE,YAAM,aAAa;AAAA,QACf,UAAU,QAAQ,qBAAqB,YACnC,KAAK,OAAO,YAAY;AAAA,QAC5B,WAAW,UAAU;AAAA,QACrB,QAAQ,QAAQ;AAAA,QAChB,QAAQ,QAAQ;AAAA,QAChB,sBAAsB,QAAQ;AAAA,QAC9B,uBAAuB,QAAQ;AAAA,QAC/B,oBAAoB,QAAQ;AAAA,QAC5B,WAAW,QAAQ;AAAA,QACnB,QAAQ,QAAQ;AAAA,MACpB;AACA,aAAO,YAAY,KAAK,2BAA2B,KAAK,IAAI,GAAG,kBAAkB,sCAAsC,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,UAAU,aAAa,SAAS,YAAY,QAAQ,aAAa;AAAA,IACxP;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,uBAAuB,SAAS;AAAA;AAClC,WAAK,mBAAmB,oBAAoB,kBAAkB,0CAA0C,QAAQ,aAAa;AAC7H,YAAM,gBAAgB,QAAQ;AAC9B,YAAM,mBAAmB,IAAI,wBAAwB;AACrD,uBAAiB,YAAY,QAAQ,sBAAsB,mBAAmB,SAAS,KACnF,KAAK,OAAO,YAAY,QAAQ;AACpC,UAAI,QAAQ,aAAa;AACrB,yBAAiB,eAAe,QAAQ,WAAW;AAAA,MACvD;AACA,uBAAiB,UAAU,QAAQ,QAAQ,MAAM,KAAK,OAAO,YAAY,UAAU,QAAQ,aAAa,aAAa;AACrH,uBAAiB,aAAa,UAAU,mBAAmB;AAC3D,uBAAiB,cAAc;AAC/B,uBAAiB,eAAe,KAAK,OAAO,WAAW;AACvD,uBAAiB,wBAAwB,KAAK,OAAO,UAAU,WAAW;AAC1E,uBAAiB,cAAc;AAC/B,UAAI,KAAK,0BAA0B,CAAC,mBAAmB,KAAK,MAAM,GAAG;AACjE,yBAAiB,mBAAmB,KAAK,sBAAsB;AAAA,MACnE;AACA,uBAAiB,iBAAiB,aAAa;AAC/C,uBAAiB,gBAAgB,QAAQ,YAAY;AACrD,UAAI,KAAK,OAAO,kBAAkB,cAAc;AAC5C,yBAAiB,gBAAgB,KAAK,OAAO,kBAAkB,YAAY;AAAA,MAC/E;AACA,UAAI,KAAK,OAAO,kBAAkB,iBAAiB;AAC/C,cAAM,kBAAkB,KAAK,OAAO,kBAAkB;AACtD,yBAAiB,mBAAmB,gBAAgB,SAAS;AAC7D,yBAAiB,uBAAuB,gBAAgB,aAAa;AAAA,MACzE;AACA,UAAI,QAAQ,yBAAyB,qBAAqB,KAAK;AAC3D,cAAM,oBAAoB,IAAI,kBAAkB,KAAK,aAAa,KAAK,iBAAiB;AACxF,cAAM,aAAa,MAAM,YAAY,kBAAkB,YAAY,KAAK,iBAAiB,GAAG,kBAAkB,qBAAqB,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,KAAK,MAAM;AAEnN,yBAAiB,YAAY,WAAW,YAAY;AAAA,MACxD,WACS,QAAQ,yBAAyB,qBAAqB,KAAK;AAChE,YAAI,QAAQ,QAAQ;AAChB,2BAAiB,UAAU,QAAQ,MAAM;AAAA,QAC7C,OACK;AACD,gBAAM,+BAA+B,aAAa;AAAA,QACtD;AAAA,MACJ;AACA,UAAI,CAAC,YAAY,WAAW,QAAQ,MAAM,KACrC,KAAK,OAAO,YAAY,sBACrB,KAAK,OAAO,YAAY,mBAAmB,SAAS,GAAI;AAC5D,yBAAiB,UAAU,QAAQ,QAAQ,KAAK,OAAO,YAAY,kBAAkB;AAAA,MACzF;AACA,UAAI,KAAK,OAAO,cAAc,wBAC1B,QAAQ,eAAe;AACvB,gBAAQ,QAAQ,cAAc,MAAM;AAAA,UAChC,KAAK,kBAAkB;AACnB,gBAAI;AACA,oBAAM,aAAa,iCAAiC,QAAQ,cAAc,UAAU;AACpF,+BAAiB,UAAU,UAAU;AAAA,YACzC,SACO,GAAG;AACN,mBAAK,OAAO,QAAQ,qDAChB,CAAC;AAAA,YACT;AACA;AAAA,UACJ,KAAK,kBAAkB;AACnB,6BAAiB,UAAU,QAAQ,cAAc,UAAU;AAC3D;AAAA,QACR;AAAA,MACJ;AACA,UAAI,QAAQ,qBAAqB;AAC7B,yBAAiB,wBAAwB,QAAQ,mBAAmB;AAAA,MACxE;AACA,aAAO,iBAAiB,kBAAkB;AAAA,IAC9C;AAAA;AACJ;;;AC7LA,IAAM,mBAAN,cAA+B,WAAW;AAAA,EACtC,YAAY,eAAe,mBAAmB;AAC1C,UAAM,eAAe,iBAAiB;AAAA,EAC1C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,aAAa,SAAS;AAAA;AACxB,UAAI;AACA,cAAM,CAAC,cAAc,YAAY,IAAI,MAAM,KAAK,mBAAmB,OAAO;AAE1E,YAAI,iBAAiB,aAAa,uBAAuB;AACrD,eAAK,OAAO,KAAK,6IAA6I;AAE9J,gBAAM,qBAAqB,IAAI,mBAAmB,KAAK,QAAQ,KAAK,iBAAiB;AACrF,6BACK,2BAA2B,OAAO,EAClC,MAAM,MAAM;AAAA,UAEjB,CAAC;AAAA,QACL;AAEA,eAAO;AAAA,MACX,SACO,GAAG;AACN,YAAI,aAAa,mBACb,EAAE,cAAc,sBAAsB;AACtC,gBAAM,qBAAqB,IAAI,mBAAmB,KAAK,QAAQ,KAAK,iBAAiB;AACrF,iBAAO,mBAAmB,2BAA2B,OAAO;AAAA,QAChE,OACK;AACD,gBAAM;AAAA,QACV;AAAA,MACJ;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,mBAAmB,SAAS;AAAA;AAC9B,UAAI,mBAAmB,aAAa;AAEpC,UAAI,CAAC,SAAS;AACV,cAAM,+BAA+B,iBAAiB;AAAA,MAC1D;AACA,UAAI,QAAQ,cAAc;AAEtB,2BAAmB,aAAa;AAChC,aAAK,wBAAwB,gBAAgB,aAAa,uBAAuB;AACjF,aAAK,OAAO,KAAK,oFAAoF;AACrG,cAAM,sBAAsB,oBAAoB;AAAA,MACpD,WACS,CAAC,KAAK,OAAO,aAAa,6BAC/B,CAAC,YAAY,WAAW,QAAQ,MAAM,GAAG;AACzC,2BAAmB,aAAa;AAEhC,aAAK,OAAO,KAAK,0HAA0H;AAC3I,cAAM,sBAAsB,oBAAoB;AAAA,MACpD;AAEA,UAAI,CAAC,QAAQ,SAAS;AAClB,cAAM,sBAAsB,wBAAwB;AAAA,MACxD;AACA,YAAM,cAAc,QAAQ,aAAa,KAAK,UAAU,kBAAkB;AAC1E,YAAM,cAAc,KAAK,aAAa,gBAAgB,QAAQ,SAAS,SAAS,WAAW;AAC3F,UAAI,CAAC,YAAY,aAAa;AAE1B,2BAAmB,aAAa;AAChC,aAAK,wBAAwB,gBAAgB,aAAa,sBAAsB;AAChF,aAAK,OAAO,KAAK,gGAAgG;AACjH,cAAM,sBAAsB,oBAAoB;AAAA,MACpD,WACS,UAAU,mBAAmB,YAAY,YAAY,QAAQ,KAClE,UAAU,eAAe,YAAY,YAAY,WAAW,KAAK,OAAO,cAAc,yBAAyB,GAAG;AAElH,2BAAmB,aAAa;AAChC,aAAK,wBAAwB,gBAAgB,aAAa,2BAA2B;AACrF,aAAK,OAAO,KAAK,8FAA8F,KAAK,OAAO,cAAc,yBAAyB,WAAW;AAC7K,cAAM,sBAAsB,oBAAoB;AAAA,MACpD,WACS,YAAY,YAAY,aAC7B,UAAU,eAAe,YAAY,YAAY,WAAW,CAAC,GAAG;AAEhE,2BAAmB,aAAa;AAChC,aAAK,wBAAwB,gBAAgB,aAAa,qBAAqB;AAC/E,aAAK,OAAO,KAAK,oGAAoG;AAAA,MAEzH;AACA,UAAI,KAAK,OAAO,wBAAwB;AACpC,aAAK,OAAO,uBAAuB,mBAAmB;AAAA,MAC1D;AACA,aAAO;AAAA,QACH,MAAM,KAAK,8BAA8B,aAAa,OAAO;AAAA,QAC7D;AAAA,MACJ;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,8BAA8B,aAAa,SAAS;AAAA;AACtD,UAAI;AACJ,UAAI,YAAY,SAAS;AACrB,wBAAgB,mBAAmB,YAAY,QAAQ,QAAQ,KAAK,OAAO,gBAAgB,YAAY;AAAA,MAC3G;AAEA,UAAI,QAAQ,UAAU,QAAQ,WAAW,GAAG;AACxC,cAAM,WAAW,eAAe;AAChC,YAAI,CAAC,UAAU;AACX,gBAAM,sBAAsB,gBAAgB;AAAA,QAChD;AACA,oBAAY,UAAU,QAAQ,MAAM;AAAA,MACxC;AACA,aAAO,MAAM,gBAAgB,6BAA6B,KAAK,aAAa,KAAK,WAAW,aAAa,MAAM,SAAS,aAAa;AAAA,IACzI;AAAA;AACJ;;;AClIA,SAAS,uBAAuB,UAAU;AACtC,SAAQ,SAAS,eAAe,wBAAwB,KACpD,SAAS,eAAe,gBAAgB,KACxC,SAAS,eAAe,QAAQ,KAChC,SAAS,eAAe,UAAU;AAC1C;;;ACLA,IAAM,iBAAiB;AAAA,EACnB,kBAAkB;AAAA,IACd,6CAA6C;AAAA,MACzC,gBAAgB;AAAA,MAChB,uCAAuC;AAAA,QACnC;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,UAAU;AAAA,MACV,0BAA0B,CAAC,SAAS,YAAY,WAAW;AAAA,MAC3D,yBAAyB,CAAC,UAAU;AAAA,MACpC,uCAAuC,CAAC,OAAO;AAAA,MAC/C,0BAA0B;AAAA,QACtB;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,kBAAkB,CAAC,UAAU,WAAW,SAAS,gBAAgB;AAAA,MACjE,QAAQ;AAAA,MACR,iCAAiC;AAAA,MACjC,mBAAmB;AAAA,MACnB,wBAAwB;AAAA,MACxB,+BAA+B;AAAA,MAC/B,uBAAuB;AAAA,MACvB,+BAA+B;AAAA,MAC/B,sBAAsB;AAAA,MACtB,kBAAkB;AAAA,QACd;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,mBAAmB;AAAA,MACnB,qBAAqB;AAAA,MACrB,qBAAqB;AAAA,MACrB,uBAAuB;AAAA,MACvB,cAAc;AAAA,MACd,UAAU;AAAA,IACd;AAAA,IACA,0CAA0C;AAAA,MACtC,gBAAgB;AAAA,MAChB,uCAAuC;AAAA,QACnC;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,UAAU;AAAA,MACV,0BAA0B,CAAC,SAAS,YAAY,WAAW;AAAA,MAC3D,yBAAyB,CAAC,UAAU;AAAA,MACpC,uCAAuC,CAAC,OAAO;AAAA,MAC/C,0BAA0B;AAAA,QACtB;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,kBAAkB,CAAC,UAAU,WAAW,SAAS,gBAAgB;AAAA,MACjE,QAAQ;AAAA,MACR,iCAAiC;AAAA,MACjC,mBAAmB;AAAA,MACnB,wBAAwB;AAAA,MACxB,+BAA+B;AAAA,MAC/B,uBAAuB;AAAA,MACvB,+BAA+B;AAAA,MAC/B,sBAAsB;AAAA,MACtB,kBAAkB;AAAA,QACd;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,mBAAmB;AAAA,MACnB,qBAAqB;AAAA,MACrB,qBAAqB;AAAA,MACrB,uBAAuB;AAAA,MACvB,cAAc;AAAA,MACd,UAAU;AAAA,IACd;AAAA,IACA,4CAA4C;AAAA,MACxC,gBAAgB;AAAA,MAChB,uCAAuC;AAAA,QACnC;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,UAAU;AAAA,MACV,0BAA0B,CAAC,SAAS,YAAY,WAAW;AAAA,MAC3D,yBAAyB,CAAC,UAAU;AAAA,MACpC,uCAAuC,CAAC,OAAO;AAAA,MAC/C,0BAA0B;AAAA,QACtB;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,kBAAkB,CAAC,UAAU,WAAW,SAAS,gBAAgB;AAAA,MACjE,QAAQ;AAAA,MACR,iCAAiC;AAAA,MACjC,mBAAmB;AAAA,MACnB,wBAAwB;AAAA,MACxB,+BAA+B;AAAA,MAC/B,uBAAuB;AAAA,MACvB,+BAA+B;AAAA,MAC/B,sBAAsB;AAAA,MACtB,kBAAkB;AAAA,QACd;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,mBAAmB;AAAA,MACnB,qBAAqB;AAAA,MACrB,qBAAqB;AAAA,MACrB,uBAAuB;AAAA,MACvB,cAAc;AAAA,MACd,UAAU;AAAA,IACd;AAAA,IACA,gDAAgD;AAAA,MAC5C,gBAAgB;AAAA,MAChB,uCAAuC;AAAA,QACnC;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,UAAU;AAAA,MACV,0BAA0B,CAAC,SAAS,YAAY,WAAW;AAAA,MAC3D,yBAAyB,CAAC,UAAU;AAAA,MACpC,uCAAuC,CAAC,OAAO;AAAA,MAC/C,0BAA0B;AAAA,QACtB;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,kBAAkB,CAAC,UAAU,WAAW,SAAS,gBAAgB;AAAA,MACjE,QAAQ;AAAA,MACR,iCAAiC;AAAA,MACjC,mBAAmB;AAAA,MACnB,wBAAwB;AAAA,MACxB,+BAA+B;AAAA,MAC/B,uBAAuB;AAAA,MACvB,+BAA+B;AAAA,MAC/B,sBAAsB;AAAA,MACtB,kBAAkB;AAAA,QACd;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,mBAAmB;AAAA,MACnB,qBAAqB;AAAA,MACrB,qBAAqB;AAAA,MACrB,uBAAuB;AAAA,MACvB,cAAc;AAAA,MACd,UAAU;AAAA,IACd;AAAA,IACA,6CAA6C;AAAA,MACzC,gBAAgB;AAAA,MAChB,uCAAuC;AAAA,QACnC;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,UAAU;AAAA,MACV,0BAA0B,CAAC,SAAS,YAAY,WAAW;AAAA,MAC3D,yBAAyB,CAAC,UAAU;AAAA,MACpC,uCAAuC,CAAC,OAAO;AAAA,MAC/C,0BAA0B;AAAA,QACtB;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,kBAAkB,CAAC,UAAU,WAAW,SAAS,gBAAgB;AAAA,MACjE,QAAQ;AAAA,MACR,iCAAiC;AAAA,MACjC,mBAAmB;AAAA,MACnB,wBAAwB;AAAA,MACxB,+BAA+B;AAAA,MAC/B,uBAAuB;AAAA,MACvB,+BAA+B;AAAA,MAC/B,sBAAsB;AAAA,MACtB,kBAAkB;AAAA,QACd;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,mBAAmB;AAAA,MACnB,qBAAqB;AAAA,MACrB,qBAAqB;AAAA,MACrB,uBAAuB;AAAA,MACvB,cAAc;AAAA,MACd,UAAU;AAAA,IACd;AAAA,IACA,+CAA+C;AAAA,MAC3C,gBAAgB;AAAA,MAChB,uCAAuC;AAAA,QACnC;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,UAAU;AAAA,MACV,0BAA0B,CAAC,SAAS,YAAY,WAAW;AAAA,MAC3D,yBAAyB,CAAC,UAAU;AAAA,MACpC,uCAAuC,CAAC,OAAO;AAAA,MAC/C,0BAA0B;AAAA,QACtB;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,kBAAkB,CAAC,UAAU,WAAW,SAAS,gBAAgB;AAAA,MACjE,QAAQ;AAAA,MACR,iCAAiC;AAAA,MACjC,mBAAmB;AAAA,MACnB,wBAAwB;AAAA,MACxB,+BAA+B;AAAA,MAC/B,uBAAuB;AAAA,MACvB,+BAA+B;AAAA,MAC/B,sBAAsB;AAAA,MACtB,kBAAkB;AAAA,QACd;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,mBAAmB;AAAA,MACnB,qBAAqB;AAAA,MACrB,qBAAqB;AAAA,MACrB,uBAAuB;AAAA,MACvB,cAAc;AAAA,MACd,UAAU;AAAA,IACd;AAAA,IACA,oDAAoD;AAAA,MAChD,gBAAgB;AAAA,MAChB,uCAAuC;AAAA,QACnC;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,UAAU;AAAA,MACV,0BAA0B,CAAC,SAAS,YAAY,WAAW;AAAA,MAC3D,yBAAyB,CAAC,UAAU;AAAA,MACpC,uCAAuC,CAAC,OAAO;AAAA,MAC/C,0BAA0B;AAAA,QACtB;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,kBAAkB,CAAC,UAAU,WAAW,SAAS,gBAAgB;AAAA,MACjE,QAAQ;AAAA,MACR,iCAAiC;AAAA,MACjC,mBAAmB;AAAA,MACnB,wBAAwB;AAAA,MACxB,+BAA+B;AAAA,MAC/B,uBAAuB;AAAA,MACvB,+BAA+B;AAAA,MAC/B,sBAAsB;AAAA,MACtB,kBAAkB;AAAA,QACd;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,mBAAmB;AAAA,MACnB,qBAAqB;AAAA,MACrB,qBAAqB;AAAA,MACrB,uBAAuB;AAAA,MACvB,cAAc;AAAA,MACd,UAAU;AAAA,IACd;AAAA,IACA,iDAAiD;AAAA,MAC7C,gBAAgB;AAAA,MAChB,uCAAuC;AAAA,QACnC;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,UAAU;AAAA,MACV,0BAA0B,CAAC,SAAS,YAAY,WAAW;AAAA,MAC3D,yBAAyB,CAAC,UAAU;AAAA,MACpC,uCAAuC,CAAC,OAAO;AAAA,MAC/C,0BAA0B;AAAA,QACtB;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,kBAAkB,CAAC,UAAU,WAAW,SAAS,gBAAgB;AAAA,MACjE,QAAQ;AAAA,MACR,iCAAiC;AAAA,MACjC,mBAAmB;AAAA,MACnB,wBAAwB;AAAA,MACxB,+BAA+B;AAAA,MAC/B,uBAAuB;AAAA,MACvB,+BAA+B;AAAA,MAC/B,sBAAsB;AAAA,MACtB,kBAAkB;AAAA,QACd;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,mBAAmB;AAAA,MACnB,qBAAqB;AAAA,MACrB,qBAAqB;AAAA,MACrB,uBAAuB;AAAA,MACvB,cAAc;AAAA,MACd,UAAU;AAAA,IACd;AAAA,IACA,mDAAmD;AAAA,MAC/C,gBAAgB;AAAA,MAChB,uCAAuC;AAAA,QACnC;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,UAAU;AAAA,MACV,0BAA0B,CAAC,SAAS,YAAY,WAAW;AAAA,MAC3D,yBAAyB,CAAC,UAAU;AAAA,MACpC,uCAAuC,CAAC,OAAO;AAAA,MAC/C,0BAA0B;AAAA,QACtB;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,kBAAkB,CAAC,UAAU,WAAW,SAAS,gBAAgB;AAAA,MACjE,QAAQ;AAAA,MACR,iCAAiC;AAAA,MACjC,mBAAmB;AAAA,MACnB,wBAAwB;AAAA,MACxB,+BAA+B;AAAA,MAC/B,uBAAuB;AAAA,MACvB,+BAA+B;AAAA,MAC/B,sBAAsB;AAAA,MACtB,kBAAkB;AAAA,QACd;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,QACA;AAAA,MACJ;AAAA,MACA,mBAAmB;AAAA,MACnB,qBAAqB;AAAA,MACrB,qBAAqB;AAAA,MACrB,uBAAuB;AAAA,MACvB,cAAc;AAAA,MACd,UAAU;AAAA,IACd;AAAA,EACJ;AAAA,EACA,2BAA2B;AAAA,IACvB,6CAA6C;AAAA,MACzC,2BAA2B;AAAA,MAC3B,eAAe;AAAA,MACf,UAAU;AAAA,QACN;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,YACA;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,0BAA0B;AAAA,QACxC;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,8BAA8B;AAAA,QAC5C;AAAA,MACJ;AAAA,IACJ;AAAA,IACA,0CAA0C;AAAA,MACtC,2BAA2B;AAAA,MAC3B,eAAe;AAAA,MACf,UAAU;AAAA,QACN;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,YACA;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,0BAA0B;AAAA,QACxC;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,8BAA8B;AAAA,QAC5C;AAAA,MACJ;AAAA,IACJ;AAAA,IACA,4CAA4C;AAAA,MACxC,2BAA2B;AAAA,MAC3B,eAAe;AAAA,MACf,UAAU;AAAA,QACN;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,YACA;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,0BAA0B;AAAA,QACxC;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,8BAA8B;AAAA,QAC5C;AAAA,MACJ;AAAA,IACJ;AAAA,IACA,gDAAgD;AAAA,MAC5C,2BAA2B;AAAA,MAC3B,eAAe;AAAA,MACf,UAAU;AAAA,QACN;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,YACA;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,0BAA0B;AAAA,QACxC;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,8BAA8B;AAAA,QAC5C;AAAA,MACJ;AAAA,IACJ;AAAA,IACA,6CAA6C;AAAA,MACzC,2BAA2B;AAAA,MAC3B,eAAe;AAAA,MACf,UAAU;AAAA,QACN;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,YACA;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,0BAA0B;AAAA,QACxC;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,8BAA8B;AAAA,QAC5C;AAAA,MACJ;AAAA,IACJ;AAAA,IACA,+CAA+C;AAAA,MAC3C,2BAA2B;AAAA,MAC3B,eAAe;AAAA,MACf,UAAU;AAAA,QACN;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,YACA;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,0BAA0B;AAAA,QACxC;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,8BAA8B;AAAA,QAC5C;AAAA,MACJ;AAAA,IACJ;AAAA,IACA,oDAAoD;AAAA,MAChD,2BAA2B;AAAA,MAC3B,eAAe;AAAA,MACf,UAAU;AAAA,QACN;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,YACA;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,0BAA0B;AAAA,QACxC;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,8BAA8B;AAAA,QAC5C;AAAA,MACJ;AAAA,IACJ;AAAA,IACA,iDAAiD;AAAA,MAC7C,2BAA2B;AAAA,MAC3B,eAAe;AAAA,MACf,UAAU;AAAA,QACN;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,YACA;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,0BAA0B;AAAA,QACxC;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,8BAA8B;AAAA,QAC5C;AAAA,MACJ;AAAA,IACJ;AAAA,IACA,mDAAmD;AAAA,MAC/C,2BAA2B;AAAA,MAC3B,eAAe;AAAA,MACf,UAAU;AAAA,QACN;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,YACA;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,0BAA0B;AAAA,QACxC;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS;AAAA,YACL;AAAA,YACA;AAAA,UACJ;AAAA,QACJ;AAAA,QACA;AAAA,UACI,mBAAmB;AAAA,UACnB,iBAAiB;AAAA,UACjB,SAAS,CAAC,8BAA8B;AAAA,QAC5C;AAAA,MACJ;AAAA,IACJ;AAAA,EACJ;AACJ;AACA,IAAM,mBAAmB,eAAe;AACxC,IAAM,4BAA4B,eAAe;AACjD,IAAM,mCAAmC,oBAAI,IAAI;AACjD,WAAW,OAAO,2BAA2B;AACzC,aAAW,YAAY,0BAA0B,GAAG,EAAE,UAAU;AAC5D,eAAW,SAAS,SAAS,SAAS;AAClC,uCAAiC,IAAI,KAAK;AAAA,IAC9C;AAAA,EACJ;AACJ;;;AC32BA,IAAM,0BAAN,MAA8B;AAAA,EAC1B,cAAc;AACV,SAAK,YACD,UAAU,WAAW,IACjB,6BAA6B;AAAA,EACzC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,6BAA6B,UAAU,aAAa;AAChD,SAAK,UAAU,SAAS;AACxB,SAAK,kBAAkB,SAAS;AAChC,SAAK,oBAAoB,SAAS;AAClC,SAAK,qBAAqB;AAAA,EAC9B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,uBAAuB,UAAU,aAAa;AAC1C,SAAK,yBAAyB,SAAS;AACvC,SAAK,iBAAiB,SAAS;AAC/B,SAAK,uBAAuB,SAAS;AACrC,SAAK,SAAS,SAAS;AACvB,SAAK,uBAAuB;AAC5B,SAAK,WAAW,SAAS;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,yBAAyB,WAAW;AAChC,SAAK,sBAAsB;AAAA,EAC/B;AAAA;AAAA;AAAA;AAAA,EAIA,iBAAiB;AACb,SAAK,YACD,UAAU,WAAW,IACjB,6BAA6B;AAAA,EACzC;AAAA;AAAA;AAAA;AAAA,EAIA,YAAY;AACR,WAAO,KAAK,aAAa,UAAU,WAAW;AAAA,EAClD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,0BAA0B,KAAK,QAAQ;AAC1C,QAAI,CAAC,QAAQ;AACT,aAAO;AAAA,IACX;AACA,WAAQ,IAAI,QAAQ,6BAA6B,SAAS,MAAM,KAC5D,OAAO,eAAe,SAAS,KAC/B,OAAO,eAAe,iBAAiB,KACvC,OAAO,eAAe,mBAAmB,KACzC,OAAO,eAAe,qBAAqB,KAC3C,OAAO,eAAe,wBAAwB,KAC9C,OAAO,eAAe,gBAAgB,KACtC,OAAO,eAAe,QAAQ,KAC9B,OAAO,eAAe,oBAAoB,KAC1C,OAAO,eAAe,sBAAsB,KAC5C,OAAO,eAAe,WAAW,KACjC,OAAO,eAAe,UAAU;AAAA,EACxC;AACJ;;;AC5EA,SAAS,iCAAiC,UAAU;AAChD,SAAQ,SAAS,eAAe,2BAA2B,KACvD,SAAS,eAAe,UAAU;AAC1C;;;ACHA,SAAS,sCAAsC,UAAU;AACrD,SAAQ,SAAS,eAAe,OAAO,KACnC,SAAS,eAAe,mBAAmB;AACnD;;;ACCA,IAAM,kBAAN,MAAM,iBAAgB;AAAA,EAClB,YAAY,kBAAkB,QAAQ,mBAAmB,eAAe;AACpE,SAAK,mBAAmB;AACxB,SAAK,SAAS;AACd,SAAK,oBAAoB;AACzB,SAAK,gBAAgB;AAAA,EACzB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,aAAa,mBAAmB,yBAAyB;AAAA;AAC3D,WAAK,mBAAmB,oBAAoB,kBAAkB,6BAA6B,KAAK,aAAa;AAE7G,UAAI,yBAAyB;AAE7B,UAAI,CAAC,wBAAwB;AACzB,cAAM,UAAU,iBAAgB;AAChC,YAAI;AACA,gBAAM,2BAA2B,MAAM,YAAY,KAAK,kBAAkB,KAAK,IAAI,GAAG,kBAAkB,kCAAkC,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,UAAU,cAAc,OAAO;AAClO,cAAI,yBAAyB,WACzB,cAAc,aAAa;AAC3B,qCAAyB,yBAAyB;AAClD,oCAAwB,gBACpB,uBAAuB;AAAA,UAC/B;AAEA,cAAI,yBAAyB,WACzB,cAAc,gBAAgB;AAC9B,kBAAM,qBAAqB,MAAM,YAAY,KAAK,kBAAkB,KAAK,IAAI,GAAG,kBAAkB,kCAAkC,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,OAAO;AACpM,gBAAI,CAAC,oBAAoB;AACrB,sCAAwB,gBACpB,uBAAuB;AAC3B,qBAAO;AAAA,YACX;AACA,kBAAM,6BAA6B,MAAM,YAAY,KAAK,kBAAkB,KAAK,IAAI,GAAG,kBAAkB,kCAAkC,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,oBAAoB,OAAO;AAChO,gBAAI,2BAA2B,WAC3B,cAAc,aAAa;AAC3B,uCACI,2BAA2B;AAC/B,sCAAwB,gBACpB,uBAAuB;AAAA,YAC/B;AAAA,UACJ;AAAA,QACJ,SACO,GAAG;AACN,kCAAwB,gBACpB,uBAAuB;AAC3B,iBAAO;AAAA,QACX;AAAA,MACJ,OACK;AACD,gCAAwB,gBACpB,uBAAuB;AAAA,MAC/B;AAEA,UAAI,CAAC,wBAAwB;AACzB,gCAAwB,gBACpB,uBAAuB;AAAA,MAC/B;AACA,aAAO,0BAA0B;AAAA,IACrC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,kBAAkBC,UAAS,SAAS;AAAA;AACtC,WAAK,mBAAmB,oBAAoB,kBAAkB,kCAAkC,KAAK,aAAa;AAClH,aAAO,KAAK,iBAAiB,oBAAoB,GAAG,UAAU,aAAa,gBAAgBA,QAAO,gBAAgB,SAAS,UAAU,YAAY;AAAA,IACrJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,kBAAkB,SAAS;AAAA;AAC7B,WAAK,mBAAmB,oBAAoB,kBAAkB,kCAAkC,KAAK,aAAa;AAClH,UAAI;AACA,cAAM,WAAW,MAAM,KAAK,iBAAiB,oBAAoB,GAAG,UAAU,aAAa,gBAAgB,OAAO;AAElH,YAAI,SAAS,WAAW,cAAc,kBAClC,SAAS,QACT,SAAS,KAAK,iBAAiB,KAC/B,SAAS,KAAK,iBAAiB,EAAE,SAAS,GAAG;AAC7C,iBAAO,SAAS,KAAK,iBAAiB,EAAE,CAAC;AAAA,QAC7C;AACA,eAAO;AAAA,MACX,SACO,GAAG;AACN,eAAO;AAAA,MACX;AAAA,IACJ;AAAA;AACJ;AAEA,gBAAgB,eAAe;AAAA,EAC3B,SAAS;AAAA,IACL,UAAU;AAAA,EACd;AACJ;;;ACjFA,IAAM,YAAN,MAAM,WAAU;AAAA,EACZ,YAAY,WAAW,kBAAkB,cAAc,kBAAkB,QAAQ,mBAAmB,eAAe;AAC/G,SAAK,qBAAqB;AAC1B,SAAK,oBAAoB,cAAc;AACvC,SAAK,mBAAmB;AACxB,SAAK,eAAe;AACpB,SAAK,mBAAmB;AACxB,SAAK,0BAA0B;AAAA,MAC3B,aAAa;AAAA,MACb,eAAe;AAAA,MACf,gBAAgB;AAAA,IACpB;AACA,SAAK,SAAS;AACd,SAAK,oBAAoB;AACzB,SAAK,gBAAgB;AACrB,SAAK,kBAAkB,IAAI,gBAAgB,kBAAkB,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa;AAAA,EACxH;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,iBAAiB,cAAc;AAE3B,QAAI,aAAa,gBAAgB,SAAS,UAAU,aAAa,GAAG;AAChE,aAAO,cAAc;AAAA,IACzB;AACA,UAAM,eAAe,aAAa;AAClC,QAAI,aAAa,QAAQ;AACrB,cAAQ,aAAa,CAAC,EAAE,YAAY,GAAG;AAAA,QACnC,KAAK,UAAU;AACX,iBAAO,cAAc;AAAA,QACzB,KAAK,UAAU;AACX,iBAAO,cAAc;AAAA,MAC7B;AAAA,IACJ;AACA,WAAO,cAAc;AAAA,EACzB;AAAA;AAAA,EAEA,IAAI,gBAAgB;AAChB,WAAO,KAAK,iBAAiB,KAAK,+BAA+B;AAAA,EACrE;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,eAAe;AACf,WAAO,KAAK,iBAAiB;AAAA,EACjC;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,UAAU;AACV,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,qBAAqB;AACrB,WAAO,KAAK,oBAAoB;AAAA,EACpC;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,mBAAmB,KAAK;AACxB,SAAK,sBAAsB,IAAI,UAAU,GAAG;AAC5C,SAAK,oBAAoB,cAAc;AACvC,SAAK,mCAAmC;AAAA,EAC5C;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,kCAAkC;AAClC,QAAI,CAAC,KAAK,kCAAkC;AACxC,WAAK,mCACD,KAAK,oBAAoB,iBAAiB;AAAA,IAClD;AACA,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,kBAAkB;AAClB,WAAO,KAAK,gCAAgC,gBAAgB,YAAY;AAAA,EAC5E;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,SAAS;AACT,WAAO,KAAK,gCAAgC,aAAa,CAAC;AAAA,EAC9D;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,wBAAwB;AACxB,QAAI,KAAK,kBAAkB,GAAG;AAC1B,aAAO,KAAK,YAAY,KAAK,SAAS,sBAAsB;AAAA,IAChE,OACK;AACD,YAAM,sBAAsB,uBAAuB;AAAA,IACvD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,gBAAgB;AAChB,QAAI,KAAK,kBAAkB,GAAG;AAC1B,aAAO,KAAK,YAAY,KAAK,SAAS,cAAc;AAAA,IACxD,OACK;AACD,YAAM,sBAAsB,uBAAuB;AAAA,IACvD;AAAA,EACJ;AAAA,EACA,IAAI,qBAAqB;AACrB,QAAI,KAAK,kBAAkB,GAAG;AAC1B,aAAO,KAAK,YAAY,KAAK,SAAS,eAAe,QAAQ,UAAU,aAAa,CAAC;AAAA,IACzF,OACK;AACD,YAAM,sBAAsB,uBAAuB;AAAA,IACvD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,qBAAqB;AACrB,QAAI,KAAK,kBAAkB,GAAG;AAE1B,UAAI,CAAC,KAAK,SAAS,sBAAsB;AACrC,cAAM,sBAAsB,8BAA8B;AAAA,MAC9D;AACA,aAAO,KAAK,YAAY,KAAK,SAAS,oBAAoB;AAAA,IAC9D,OACK;AACD,YAAM,sBAAsB,uBAAuB;AAAA,IACvD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,wBAAwB;AACxB,QAAI,KAAK,kBAAkB,GAAG;AAC1B,aAAO,KAAK,YAAY,KAAK,SAAS,MAAM;AAAA,IAChD,OACK;AACD,YAAM,sBAAsB,uBAAuB;AAAA,IACvD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,UAAU;AACV,QAAI,KAAK,kBAAkB,GAAG;AAC1B,aAAO,KAAK,YAAY,KAAK,SAAS,QAAQ;AAAA,IAClD,OACK;AACD,YAAM,sBAAsB,uBAAuB;AAAA,IACvD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,iBAAiB,cAAc;AAC3B,WAAQ,aAAa,aAAa,WAAW,KACzC,CAAC,WAAU,sBAAsB,IAAI,aAAa,aAAa,CAAC,CAAC,KACjE,KAAK,iBAAiB,YAAY,MAAM,cAAc,WACtD,KAAK,iBAAiB,aAAa;AAAA,EAC3C;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,cAAc,WAAW;AACrB,WAAO,UAAU,QAAQ,wBAAwB,KAAK,MAAM;AAAA,EAChE;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,YAAY,WAAW;AACnB,QAAI,WAAW;AACf,UAAM,qBAAqB,IAAI,UAAU,KAAK,SAAS,mBAAmB;AAC1E,UAAM,+BAA+B,mBAAmB,iBAAiB;AACzE,UAAM,uBAAuB,6BAA6B;AAC1D,UAAM,wBAAwB,KAAK,gCAAgC;AACnE,0BAAsB,QAAQ,CAAC,aAAa,UAAU;AAClD,UAAI,aAAa,qBAAqB,KAAK;AAC3C,UAAI,UAAU,KACV,KAAK,iBAAiB,4BAA4B,GAAG;AACrD,cAAM,WAAW,IAAI,UAAU,KAAK,SAAS,sBAAsB,EAAE,iBAAiB,EAAE,aAAa,CAAC;AAMtG,YAAI,eAAe,UAAU;AACzB,eAAK,OAAO,QAAQ,gCAAgC,UAAU,YAAY,QAAQ,EAAE;AACpF,uBAAa;AAAA,QACjB;AAAA,MACJ;AACA,UAAI,gBAAgB,YAAY;AAC5B,mBAAW,SAAS,QAAQ,IAAI,UAAU,KAAK,IAAI,WAAW,GAAG;AAAA,MACrE;AAAA,IACJ,CAAC;AACD,WAAO,KAAK,cAAc,QAAQ;AAAA,EACtC;AAAA;AAAA;AAAA;AAAA,EAIA,IAAI,qCAAqC;AACrC,UAAM,yBAAyB,KAAK;AACpC,QAAI,KAAK,mBAAmB,SAAS,OAAO,KACxC,KAAK,kBAAkB,cAAc,QACpC,KAAK,iBAAiB,aAAa,OAChC,CAAC,KAAK,iCAAiC,sBAAsB,GAAI;AACrE,aAAO,GAAG,KAAK,kBAAkB;AAAA,IACrC;AACA,WAAO,GAAG,KAAK,kBAAkB;AAAA,EACrC;AAAA;AAAA;AAAA;AAAA,EAIA,oBAAoB;AAChB,WAAO,CAAC,CAAC,KAAK;AAAA,EAClB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,wBAAwB;AAAA;AAC1B,WAAK,mBAAmB,oBAAoB,kBAAkB,gCAAgC,KAAK,aAAa;AAChH,UAAI,iBAAiB,KAAK,aAAa,4BAA4B,KAAK,eAAe;AACvF,UAAI,CAAC,gBAAgB;AACjB,yBAAiB,IAAI,wBAAwB;AAC7C,uBAAe,yBAAyB,KAAK,kBAAkB;AAAA,MACnE;AACA,YAAM,uBAAuB,MAAM,YAAY,KAAK,6BAA6B,KAAK,IAAI,GAAG,kBAAkB,uCAAuC,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,cAAc;AAC7N,WAAK,qBAAqB,KAAK,mBAAmB,QAAQ,KAAK,iBAAiB,eAAe,iBAAiB;AAChH,YAAM,iBAAiB,MAAM,YAAY,KAAK,uBAAuB,KAAK,IAAI,GAAG,kBAAkB,iCAAiC,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,cAAc;AAC3M,UAAI,yBAAyB,wBAAwB,SACjD,mBAAmB,wBAAwB,OAAO;AAElD,uBAAe,eAAe;AAC9B,uBAAe,yBAAyB,KAAK,kBAAkB;AAAA,MACnE;AACA,YAAM,WAAW,KAAK,aAAa,kCAAkC,eAAe,eAAe;AACnG,WAAK,aAAa,qBAAqB,UAAU,cAAc;AAC/D,WAAK,WAAW;AAAA,IACpB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,uBAAuB,gBAAgB;AAAA;AACzC,WAAK,mBAAmB,oBAAoB,kBAAkB,iCAAiC,KAAK,aAAa;AACjH,WAAK,OAAO,QAAQ,kEAAkE;AACtF,UAAI,WAAW,KAAK,8BAA8B;AAClD,UAAI,UAAU;AACV,aAAK,OAAO,QAAQ,oDAAoD;AACxE,uBAAe,uBAAuB,UAAU,KAAK;AACrD,eAAO,wBAAwB;AAAA,MACnC;AACA,WAAK,OAAO,QAAQ,gHAAgH;AAEpI,UAAI,KAAK,iBAAiB,4BAA4B;AAClD,aAAK,OAAO,QAAQ,yJAAyJ;AAAA,MACjL,OACK;AACD,YAAI,oBAAoB,KAAK,uCAAuC;AACpE,YAAI,mBAAmB;AACnB,eAAK,OAAO,QAAQ,gDAAgD;AAEpE,cAAI,KAAK,iBAAiB,0BAA0B,aAAa;AAC7D,gCAAoB,MAAM,YAAY,KAAK,sCAAsC,KAAK,IAAI,GAAG,kBAAkB,gDAAgD,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,iBAAiB;AAAA,UAC7O;AACA,yBAAe,uBAAuB,mBAAmB,KAAK;AAC9D,iBAAO,wBAAwB;AAAA,QACnC,OACK;AACD,eAAK,OAAO,QAAQ,4HAA4H;AAAA,QACpJ;AAAA,MACJ;AAEA,YAAM,wBAAwB,eAAe,UAAU;AACvD,UAAI,KAAK,oBAAoB,cAAc,KACvC,eAAe,wBACf,CAAC,uBAAuB;AAExB,aAAK,OAAO,QAAQ,uCAAuC;AAC3D,eAAO,wBAAwB;AAAA,MACnC,WACS,uBAAuB;AAC5B,aAAK,OAAO,QAAQ,iCAAiC;AAAA,MACzD;AACA,iBAAW,MAAM,YAAY,KAAK,+BAA+B,KAAK,IAAI,GAAG,kBAAkB,yCAAyC,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE;AACjM,UAAI,UAAU;AAEV,YAAI,KAAK,iBAAiB,0BAA0B,aAAa;AAC7D,qBAAW,MAAM,YAAY,KAAK,sCAAsC,KAAK,IAAI,GAAG,kBAAkB,gDAAgD,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,QAAQ;AAAA,QAC3N;AACA,uBAAe,uBAAuB,UAAU,IAAI;AACpD,eAAO,wBAAwB;AAAA,MACnC,OACK;AAED,cAAM,sBAAsB,mBAAmB,KAAK,kCAAkC;AAAA,MAC1F;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,oBAAoB,gBAAgB;AAChC,UAAM,qBAAqB,IAAI,UAAU,eAAe,mBAAmB;AAC3E,UAAM,cAAc,mBAAmB,iBAAiB,EAAE;AAC1D,WAAQ,YAAY,WAChB,KAAK,gCAAgC,aAAa;AAAA,EAC1D;AAAA;AAAA;AAAA;AAAA,EAIA,gCAAgC;AAC5B,QAAI,KAAK,iBAAiB,mBAAmB;AACzC,UAAI;AACA,eAAO,KAAK,MAAM,KAAK,iBAAiB,iBAAiB;AAAA,MAC7D,SACO,GAAG;AACN,cAAM,+BAA+B,wBAAwB;AAAA,MACjE;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,iCAAiC;AAAA;AACnC,WAAK,mBAAmB,oBAAoB,kBAAkB,yCAAyC,KAAK,aAAa;AACzH,YAAM,UAAU,CAAC;AAKjB,YAAM,8BAA8B,KAAK;AACzC,WAAK,OAAO,QAAQ,yFAAyF,2BAA2B,EAAE;AAC1I,UAAI;AACA,cAAM,WAAW,MAAM,KAAK,iBAAiB,oBAAoB,6BAA6B,OAAO;AACrG,cAAM,kBAAkB,uBAAuB,SAAS,IAAI;AAC5D,YAAI,iBAAiB;AACjB,iBAAO,SAAS;AAAA,QACpB,OACK;AACD,eAAK,OAAO,QAAQ,4FAA4F;AAChH,iBAAO;AAAA,QACX;AAAA,MACJ,SACO,GAAG;AACN,aAAK,OAAO,QAAQ,6CAA6C,CAAC,EAAE;AACpE,eAAO;AAAA,MACX;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAIA,yCAAyC;AACrC,QAAI,KAAK,sBAAsB,kBAAkB;AAC7C,aAAO,iBAAiB,KAAK,kBAAkB;AAAA,IACnD;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,sCAAsC,UAAU;AAAA;AAClD,WAAK,mBAAmB,oBAAoB,kBAAkB,gDAAgD,KAAK,aAAa;AAChI,YAAM,4BAA4B,KAAK,iBAAiB,0BAA0B;AAClF,UAAI,2BAA2B;AAC3B,YAAI,8BACA,UAAU,iCAAiC;AAC3C,eAAK,wBAAwB,iBACzB,wBAAwB;AAC5B,eAAK,wBAAwB,cACzB;AACJ,iBAAO,WAAU,+BAA+B,UAAU,yBAAyB;AAAA,QACvF;AACA,cAAM,yBAAyB,MAAM,YAAY,KAAK,gBAAgB,aAAa,KAAK,KAAK,eAAe,GAAG,kBAAkB,6BAA6B,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,KAAK,iBAAiB,0BACvO,mBAAmB,KAAK,uBAAuB;AACrD,YAAI,wBAAwB;AACxB,eAAK,wBAAwB,iBACzB,wBAAwB;AAC5B,eAAK,wBAAwB,cACzB;AACJ,iBAAO,WAAU,+BAA+B,UAAU,sBAAsB;AAAA,QACpF;AACA,aAAK,wBAAwB,iBACzB,wBAAwB;AAAA,MAChC;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,6BAA6B,gBAAgB;AAAA;AAC/C,WAAK,mBAAmB,oBAAoB,kBAAkB,uCAAuC,KAAK,aAAa;AACvH,WAAK,OAAO,QAAQ,0EAA0E;AAC9F,WAAK,OAAO,WAAW,sBAAsB,KAAK,iBAAiB,oBAC/D,UAAU,cAAc,EAAE;AAC9B,WAAK,OAAO,WAAW,uBAAuB,KAAK,iBAAiB,qBAChE,UAAU,cAAc,EAAE;AAC9B,WAAK,OAAO,WAAW,wBAAwB,eAAe,uBAAuB,UAAU,cAAc,EAAE;AAC/G,UAAI,WAAW,KAAK,oCAAoC;AACxD,UAAI,UAAU;AACV,aAAK,OAAO,QAAQ,2DAA2D;AAC/E,uBAAe,6BAA6B,UAAU,KAAK;AAC3D,eAAO,wBAAwB;AAAA,MACnC;AAEA,WAAK,OAAO,QAAQ,8HAA8H;AAClJ,UAAI,KAAK,QAAQ,4BAA4B;AACzC,aAAK,OAAO,QAAQ,gLAAgL;AAAA,MACxM,OACK;AACD,cAAM,oBAAoB,KAAK,6CAA6C;AAC5E,YAAI,mBAAmB;AACnB,eAAK,OAAO,QAAQ,uDAAuD;AAC3E,yBAAe,6BAA6B,mBAAmB,KAAK;AACpE,iBAAO,wBAAwB;AAAA,QACnC;AACA,aAAK,OAAO,QAAQ,0IAA0I;AAAA,MAClK;AACA,YAAM,wBAAwB,eAAe,UAAU;AACvD,UAAI,KAAK,oBAAoB,cAAc,KACvC,eAAe,sBACf,CAAC,uBAAuB;AACxB,aAAK,OAAO,QAAQ,8CAA8C;AAElE,eAAO,wBAAwB;AAAA,MACnC,WACS,uBAAuB;AAC5B,aAAK,OAAO,QAAQ,iCAAiC;AAAA,MACzD;AACA,iBAAW,MAAM,YAAY,KAAK,qCAAqC,KAAK,IAAI,GAAG,kBAAkB,+CAA+C,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE;AAC7M,UAAI,UAAU;AACV,uBAAe,6BAA6B,UAAU,IAAI;AAC1D,eAAO,wBAAwB;AAAA,MACnC;AAEA,YAAM,+BAA+B,kBAAkB;AAAA,IAC3D;AAAA;AAAA;AAAA;AAAA;AAAA,EAIA,sCAAsC;AAElC,QAAI,KAAK,kBAAkB,cAAc,MAAM;AAC3C,WAAK,OAAO,QAAQ,qGAAqG;AACzH,aAAO,WAAU,qCAAqC,KAAK,eAAe;AAAA,IAC9E;AAEA,QAAI,KAAK,iBAAiB,wBAAwB;AAC9C,WAAK,OAAO,QAAQ,sFAAsF;AAC1G,UAAI;AACA,aAAK,OAAO,QAAQ,mDAAmD;AACvE,cAAM,iBAAiB,KAAK,MAAM,KAAK,iBAAiB,sBAAsB;AAC9E,cAAM,WAAW,WAAU,6CAA6C,eAAe,UAAU,KAAK,eAAe;AACrH,aAAK,OAAO,QAAQ,sCAAsC;AAC1D,YAAI,UAAU;AACV,eAAK,OAAO,QAAQ,+EAA+E;AACnG,iBAAO;AAAA,QACX,OACK;AACD,eAAK,OAAO,QAAQ,uEAAuE;AAAA,QAC/F;AAAA,MACJ,SACO,GAAG;AACN,aAAK,OAAO,QAAQ,gGAAgG;AACpH,cAAM,+BAA+B,6BAA6B;AAAA,MACtE;AAAA,IACJ;AAEA,QAAI,KAAK,qBAAqB,GAAG;AAC7B,WAAK,OAAO,QAAQ,gGAAgG;AACpH,aAAO,WAAU,qCAAqC,KAAK,eAAe;AAAA,IAC9E;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,uCAAuC;AAAA;AACzC,WAAK,mBAAmB,oBAAoB,kBAAkB,+CAA+C,KAAK,aAAa;AAC/H,YAAM,4BAA4B,GAAG,UAAU,4BAA4B,GAAG,KAAK,kBAAkB;AACrG,YAAM,UAAU,CAAC;AAKjB,UAAI,QAAQ;AACZ,UAAI;AACA,cAAM,WAAW,MAAM,KAAK,iBAAiB,oBAAoB,2BAA2B,OAAO;AACnG,YAAI;AACJ,YAAI;AACJ,YAAI,iCAAiC,SAAS,IAAI,GAAG;AACjD,8BACI,SAAS;AACb,qBAAW,kBAAkB;AAC7B,eAAK,OAAO,WAAW,iCAAiC,kBAAkB,yBAAyB,EAAE;AAAA,QACzG,WACS,sCAAsC,SAAS,IAAI,GAAG;AAC3D,eAAK,OAAO,QAAQ,sHAAsH,SAAS,MAAM,EAAE;AAC3J,8BACI,SAAS;AACb,cAAI,kBAAkB,UAAU,UAAU,kBAAkB;AACxD,iBAAK,OAAO,MAAM,oEAAoE;AACtF,mBAAO;AAAA,UACX;AACA,eAAK,OAAO,QAAQ,oDAAoD,kBAAkB,KAAK,EAAE;AACjG,eAAK,OAAO,QAAQ,gEAAgE,kBAAkB,iBAAiB,EAAE;AACzH,eAAK,OAAO,QAAQ,2FAA2F;AAC/G,qBAAW,CAAC;AAAA,QAChB,OACK;AACD,eAAK,OAAO,MAAM,4FAA4F;AAC9G,iBAAO;AAAA,QACX;AACA,aAAK,OAAO,QAAQ,wIAAwI;AAC5J,gBAAQ,WAAU,6CAA6C,UAAU,KAAK,eAAe;AAAA,MACjG,SACO,OAAO;AACV,YAAI,iBAAiB,WAAW;AAC5B,eAAK,OAAO,MAAM;AAAA,SAAoG,MAAM,SAAS;AAAA,qBAAwB,MAAM,YAAY,EAAE;AAAA,QACrL,OACK;AACD,gBAAM,aAAa;AACnB,eAAK,OAAO,MAAM;AAAA,SAAwG,WAAW,IAAI;AAAA,qBAAwB,WAAW,OAAO,EAAE;AAAA,QACzL;AACA,eAAO;AAAA,MACX;AAEA,UAAI,CAAC,OAAO;AACR,aAAK,OAAO,QAAQ,sHAAsH;AAC1I,aAAK,OAAO,QAAQ,uDAAuD;AAC3E,gBAAQ,WAAU,qCAAqC,KAAK,eAAe;AAAA,MAC/E;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAIA,+CAA+C;AAC3C,QAAI,KAAK,sBAAsB,2BAA2B;AACtD,YAAM,4BAA4B,0BAA0B,KAAK,kBAAkB;AACnF,YAAM,WAAW,WAAU,6CAA6C,0BAA0B,UAAU,KAAK,eAAe;AAChI,aAAO;AAAA,IACX;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,uBAAuB;AACnB,UAAM,UAAU,KAAK,iBAAiB,iBAAiB,OAAO,CAAC,cAAc;AACzE,aAAQ,UAAU,iBAAiB,SAAS,EAAE,YAAY,MACtD,KAAK;AAAA,IACb,CAAC;AACD,WAAO,QAAQ,SAAS;AAAA,EAC5B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,kBAAkB,iBAAiB,mBAAmB;AACzD,QAAI;AACJ,QAAI,qBACA,kBAAkB,uBAAuB,mBAAmB,MAAM;AAClE,YAAM,SAAS,kBAAkB,SAC3B,kBAAkB,SAClB,UAAU;AAChB,oCAA8B,GAAG,kBAAkB,kBAAkB,IAAI,MAAM;AAAA,IACnF;AACA,WAAO,8BACD,8BACA;AAAA,EACV;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,qCAAqC,MAAM;AAC9C,WAAO;AAAA,MACH,mBAAmB;AAAA,MACnB,iBAAiB;AAAA,MACjB,SAAS,CAAC,IAAI;AAAA,IAClB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,6CAA6C,UAAU,WAAW;AACrE,aAAS,IAAI,GAAG,IAAI,SAAS,QAAQ,KAAK;AACtC,YAAM,WAAW,SAAS,CAAC;AAC3B,UAAI,SAAS,QAAQ,QAAQ,SAAS,IAAI,IAAI;AAC1C,eAAO;AAAA,MACX;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,oBAAoB;AAChB,QAAI,KAAK,kBAAkB,GAAG;AAC1B,aAAO,KAAK,SAAS;AAAA,IACzB,OACK;AACD,YAAM,sBAAsB,uBAAuB;AAAA,IACvD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,QAAQ,MAAM;AACV,WAAO,KAAK,SAAS,QAAQ,QAAQ,IAAI,IAAI;AAAA,EACjD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iCAAiC,MAAM;AACnC,WAAO,iCAAiC,IAAI,IAAI;AAAA,EACpD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,OAAO,uBAAuB,MAAM;AAChC,WAAO,UAAU,oBAAoB,QAAQ,IAAI,KAAK;AAAA,EAC1D;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,OAAO,6BAA6B,MAAM,QAAQ,aAAa;AAE3D,UAAM,uBAAuB,IAAI,UAAU,IAAI;AAC/C,yBAAqB,cAAc;AACnC,UAAM,oBAAoB,qBAAqB,iBAAiB;AAChE,QAAI,kBAAkB,GAAG,MAAM,IAAI,kBAAkB,eAAe;AACpE,QAAI,KAAK,uBAAuB,kBAAkB,eAAe,GAAG;AAChE,wBAAkB,GAAG,MAAM,IAAI,UAAU,iCAAiC;AAAA,IAC9E;AAEA,UAAM,MAAM,UAAU,gCAAgC,iCAC/C,qBAAqB,iBAAiB,IADS;AAAA,MAElD,iBAAiB;AAAA,IACrB,EAAC,EAAE;AAEH,QAAI;AACA,aAAO,GAAG,GAAG,IAAI,WAAW;AAChC,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,OAAO,+BAA+B,UAAU,aAAa;AACzD,UAAM,mBAAmB,mBAAK;AAC9B,qBAAiB,yBACb,WAAU,6BAA6B,iBAAiB,wBAAwB,WAAW;AAE/F,qBAAiB,iBACb,WAAU,6BAA6B,iBAAiB,gBAAgB,aAAa,UAAU,kCAAkC;AACrI,QAAI,iBAAiB,sBAAsB;AACvC,uBAAiB,uBACb,WAAU,6BAA6B,iBAAiB,sBAAsB,WAAW;AAAA,IACjG;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAUA,OAAO,uBAAuB,WAAW;AACrC,QAAI,gBAAgB,UAAU,SAAS,UAAU,aAAa,IACxD,YACA,GAAG,SAAS,GAAG,UAAU,aAAa;AAC5C,UAAM,eAAe,IAAI,UAAU,SAAS;AAC5C,UAAM,yBAAyB,aAAa,iBAAiB;AAE7D,QAAI,uBAAuB,aAAa,WAAW,KAC/C,uBAAuB,gBAAgB,SAAS,UAAU,aAAa,GAAG;AAC1E,YAAM,mBAAmB,uBAAuB,gBAAgB,MAAM,GAAG,EAAE,CAAC;AAC5E,sBAAgB,GAAG,aAAa,GAAG,gBAAgB,GAAG,UAAU,wBAAwB;AAAA,IAC5F;AACA,WAAO;AAAA,EACX;AACJ;AAEA,UAAU,wBAAwB,oBAAI,IAAI;AAAA,EACtC;AAAA,EACA;AAAA,EACA,sBAAsB;AAAA,EACtB,sBAAsB;AAAA,EACtB,sBAAsB;AAC1B,CAAC;;;ACvuBD,IAAM,mBAAN,MAAM,kBAAiB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAWnB,OAAa,yBAAyB,cAAc,eAAe,cAAc,kBAAkB,QAAQ,mBAAmB,eAAe;AAAA;AACzI,yBAAmB,oBAAoB,kBAAkB,0CAA0C,aAAa;AAChH,YAAM,oBAAoB,UAAU,uBAAuB,YAAY;AAEvE,YAAM,wBAAwB,kBAAiB,eAAe,mBAAmB,eAAe,cAAc,kBAAkB,QAAQ,mBAAmB,aAAa;AACxK,UAAI;AACA,cAAM,YAAY,sBAAsB,sBAAsB,KAAK,qBAAqB,GAAG,kBAAkB,gCAAgC,QAAQ,mBAAmB,aAAa,EAAE;AACvL,eAAO;AAAA,MACX,SACO,GAAG;AACN,cAAM,sBAAsB,uBAAuB;AAAA,MACvD;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAWA,OAAO,eAAe,cAAc,kBAAkB,cAAc,kBAAkB,QAAQ,mBAAmB,eAAe;AAE5H,QAAI,CAAC,cAAc;AACf,YAAM,+BAA+B,aAAa;AAAA,IACtD;AACA,WAAO,IAAI,UAAU,cAAc,kBAAkB,cAAc,kBAAkB,QAAQ,mBAAmB,aAAa;AAAA,EACjI;AACJ;;;AChDA,IAAM,wBAAN,MAA4B;AAAA,EACxB,cAAc;AACV,SAAK,iBAAiB,CAAC;AACvB,SAAK,SAAS,CAAC;AACf,SAAK,YAAY;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,wBAAwB,KAAK,QAAQ;AACxC,UAAM,cAAc,IAAI,QAAQ,uBAAuB,SAAS,MAAM;AACtE,QAAI,iBAAiB;AACrB,QAAI,QAAQ;AACR,uBACI,OAAO,eAAe,gBAAgB,KAClC,OAAO,eAAe,QAAQ,KAC9B,OAAO,eAAe,WAAW;AAAA,IAC7C;AACA,WAAO,eAAe;AAAA,EAC1B;AACJ;;;ACtBA,IAAM,mBAAN,MAAuB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMnB,OAAO,mBAAmB,KAAK,QAAQ;AACnC,QAAI,cAAc;AAClB,QAAI,KAAK;AACL,oBACI,IAAI,QAAQ,oBAAoB,iBAAiB,MAAM;AAAA,IAC/D;AACA,QAAI,iBAAiB;AACrB,QAAI,QAAQ;AACR,uBAAiB,OAAO,eAAe,cAAc;AAAA,IACzD;AACA,WAAO,eAAe;AAAA,EAC1B;AACJ;;;ACjBA,IAAM,uBAAuB;AAAA,EACzB,qBAAqB,MAAM;AACvB,WAAO,QAAQ,OAAO,sBAAsB,oBAAoB,CAAC;AAAA,EACrE;AAAA,EACA,sBAAsB,MAAM;AACxB,WAAO,QAAQ,OAAO,sBAAsB,oBAAoB,CAAC;AAAA,EACrE;AACJ;;;ACVA,IAAM,kBAAkB;AACxB,IAAM,kBAAkB;;;ACExB,IAAM,0BAA0B;AAAA,EAC5B,CAAC,eAAe,GAAG;AAAA,EACnB,CAAC,eAAe,GAAG;AACvB;AAIA,IAAM,kBAAN,MAAM,yBAAwB,UAAU;AAAA,EACpC,YAAY,WAAW,cAAc;AACjC,UAAM,WAAW,YAAY;AAC7B,SAAK,OAAO;AACZ,WAAO,eAAe,MAAM,iBAAgB,SAAS;AAAA,EACzD;AACJ;AAEA,SAAS,sBAAsB,MAAM;AACjC,SAAO,IAAI,gBAAgB,MAAM,wBAAwB,IAAI,CAAC;AAClE;;;ACfA,IAAM,aAAN,MAAM,YAAW;AAAA,EACb,YAAY,SAAS;AACjB,SAAK,MAAM,QAAQ;AACnB,SAAK,MAAM,QAAQ;AACnB,SAAK,MAAM,QAAQ;AAAA,EACvB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASA,OAAO,mBAAmB,kBAAkB;AAExC,QAAI,CAAC,iBAAiB,KAAK;AACvB,YAAM,sBAAsB,eAAe;AAAA,IAC/C;AAEA,QAAI,CAAC,iBAAiB,KAAK;AACvB,YAAM,sBAAsB,eAAe;AAAA,IAC/C;AACA,UAAM,YAAY,IAAI,YAAW;AAAA;AAAA,MAE7B,KAAK,iBAAiB,OAAO,UAAU;AAAA,MACvC,KAAK,iBAAiB;AAAA,MACtB,KAAK,iBAAiB;AAAA,IAC1B,CAAC;AACD,WAAO,KAAK,UAAU,SAAS;AAAA,EACnC;AACJ;;;AC/BA,IAAM,yBAAN,MAAM,wBAAuB;AAAA,EACzB,YAAY,kBAAkB,cAAc;AACxC,SAAK,eAAe,aAAa;AACjC,SAAK,eAAe;AACpB,SAAK,QAAQ,iBAAiB;AAC9B,SAAK,gBAAgB,iBAAiB;AACtC,SAAK,aAAa,iBAAiB,cAAc,UAAU;AAC3D,SAAK,aAAa,iBAAiB,cAAc,UAAU;AAC3D,SAAK,oBACD,uBAAuB,YACnB,WAAW,sBACX,iBAAiB;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA,EAIA,oCAAoC;AAChC,UAAM,UAAU,GAAG,KAAK,KAAK,GAAG,uBAAuB,eAAe,GAAG,KAAK,YAAY;AAC1F,UAAM,iBAAiB,CAAC,KAAK,YAAY,KAAK,UAAU,EAAE,KAAK,uBAAuB,eAAe;AACrG,UAAM,wBAAwB,KAAK,yBAAyB;AAC5D,UAAM,mCAAmC;AAAA,MACrC;AAAA,MACA;AAAA,IACJ,EAAE,KAAK,uBAAuB,eAAe;AAC7C,WAAO;AAAA,MACH,uBAAuB;AAAA,MACvB;AAAA,MACA;AAAA,IACJ,EAAE,KAAK,uBAAuB,kBAAkB;AAAA,EACpD;AAAA;AAAA;AAAA;AAAA,EAIA,iCAAiC;AAC7B,UAAM,eAAe,KAAK,gBAAgB;AAC1C,UAAM,YAAY,wBAAuB,gBAAgB,YAAY;AACrE,UAAM,iBAAiB,aAAa,eAC/B,MAAM,GAAG,IAAI,SAAS,EACtB,KAAK,uBAAuB,eAAe;AAChD,UAAM,SAAS,aAAa,OACvB,MAAM,GAAG,SAAS,EAClB,KAAK,uBAAuB,eAAe;AAChD,UAAM,aAAa,aAAa,OAAO;AAEvC,UAAM,WAAW,YAAY,aACvB,uBAAuB,gBACvB,uBAAuB;AAC7B,UAAM,iBAAiB,CAAC,YAAY,QAAQ,EAAE,KAAK,uBAAuB,eAAe;AACzF,WAAO;AAAA,MACH,uBAAuB;AAAA,MACvB,aAAa;AAAA,MACb;AAAA,MACA;AAAA,MACA;AAAA,IACJ,EAAE,KAAK,uBAAuB,kBAAkB;AAAA,EACpD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB,OAAO;AACtB,UAAM,eAAe,KAAK,gBAAgB;AAC1C,QAAI,aAAa,OAAO,UACpB,uBAAuB,mBAAmB;AAE1C,mBAAa,eAAe,MAAM;AAClC,mBAAa,eAAe,MAAM;AAClC,mBAAa,OAAO,MAAM;AAAA,IAC9B;AACA,iBAAa,eAAe,KAAK,KAAK,OAAO,KAAK,aAAa;AAC/D,QAAI,iBAAiB,SAAS,CAAC,CAAC,SAAS,MAAM,SAAS,GAAG;AACvD,UAAI,iBAAiB,WAAW;AAC5B,YAAI,MAAM,UAAU;AAChB,uBAAa,OAAO,KAAK,MAAM,QAAQ;AAAA,QAC3C,WACS,MAAM,WAAW;AACtB,uBAAa,OAAO,KAAK,MAAM,SAAS;AAAA,QAC5C,OACK;AACD,uBAAa,OAAO,KAAK,MAAM,SAAS,CAAC;AAAA,QAC7C;AAAA,MACJ,OACK;AACD,qBAAa,OAAO,KAAK,MAAM,SAAS,CAAC;AAAA,MAC7C;AAAA,IACJ,OACK;AACD,mBAAa,OAAO,KAAK,uBAAuB,aAAa;AAAA,IACjE;AACA,SAAK,aAAa,mBAAmB,KAAK,mBAAmB,YAAY;AACzE;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,qBAAqB;AACjB,UAAM,eAAe,KAAK,gBAAgB;AAC1C,iBAAa,aAAa;AAC1B,SAAK,aAAa,mBAAmB,KAAK,mBAAmB,YAAY;AACzE,WAAO,aAAa;AAAA,EACxB;AAAA;AAAA;AAAA;AAAA,EAIA,kBAAkB;AACd,UAAM,eAAe,IAAI,sBAAsB;AAC/C,UAAM,eAAe,KAAK,aAAa,mBAAmB,KAAK,iBAAiB;AAChF,WAAO,gBAAgB;AAAA,EAC3B;AAAA;AAAA;AAAA;AAAA,EAIA,sBAAsB;AAClB,UAAM,eAAe,KAAK,gBAAgB;AAC1C,UAAM,mBAAmB,wBAAuB,gBAAgB,YAAY;AAC5E,UAAM,aAAa,aAAa,OAAO;AACvC,QAAI,qBAAqB,YAAY;AAEjC,WAAK,aAAa,WAAW,KAAK,iBAAiB;AAAA,IACvD,OACK;AAED,YAAM,oBAAoB,IAAI,sBAAsB;AACpD,wBAAkB,iBACd,aAAa,eAAe,MAAM,mBAAmB,CAAC;AAC1D,wBAAkB,SACd,aAAa,OAAO,MAAM,gBAAgB;AAC9C,WAAK,aAAa,mBAAmB,KAAK,mBAAmB,iBAAiB;AAAA,IAClF;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,gBAAgB,uBAAuB;AAC1C,QAAI;AACJ,QAAI,YAAY;AAChB,QAAI,WAAW;AACf,UAAM,aAAa,sBAAsB,OAAO;AAChD,SAAK,IAAI,GAAG,IAAI,YAAY,KAAK;AAE7B,YAAM,QAAQ,sBAAsB,eAAe,IAAI,CAAC,KACpD,UAAU;AACd,YAAM,gBAAgB,sBAAsB,eAAe,IAAI,IAAI,CAAC,KAChE,UAAU;AACd,YAAM,YAAY,sBAAsB,OAAO,CAAC,KAAK,UAAU;AAE/D,kBACI,MAAM,SAAS,EAAE,SACb,cAAc,SAAS,EAAE,SACzB,UAAU,SACV;AACR,UAAI,WAAW,uBAAuB,uBAAuB;AAEzD,qBAAa;AAAA,MACjB,OACK;AACD;AAAA,MACJ;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,2BAA2B;AACvB,UAAM,wBAAwB,CAAC;AAC/B,0BAAsB,KAAK,KAAK,cAAc,UAAU,YAAY;AACpE,0BAAsB,KAAK,KAAK,gBAAgB,UAAU,YAAY;AACtE,0BAAsB,KAAK,KAAK,iBAAiB,UAAU,YAAY;AACvE,WAAO,sBAAsB,KAAK,GAAG;AAAA,EACzC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,8BAA8B,yBAAyB;AACnD,SAAK,aAAa,wBAAwB;AAC1C,SAAK,eAAe,wBAAwB;AAC5C,SAAK,gBAAgB,wBAAwB;AAAA,EACjD;AAAA;AAAA;AAAA;AAAA,EAIA,gBAAgB,cAAc;AAC1B,SAAK,eAAe;AAAA,EACxB;AACJ;;;AClMA,IAAM,6BAAN,MAAiC;AAAA,EAC7B,mBAAmB;AACf;AAAA,EACJ;AAAA,EACA,iBAAiB;AACb;AAAA,EACJ;AAAA,EACA,mBAAmB;AACf,WAAO;AAAA,EACX;AACJ;AACA,IAAM,wBAAN,MAA4B;AAAA,EACxB,aAAa;AACT,WAAO;AAAA,EACX;AAAA,EACA,iBAAiB,aAAa,eAAe;AACzC,WAAO;AAAA,MACH,KAAK,MAAM;AAAA,MACX,SAAS,MAAM;AAAA,MAAE;AAAA,MACjB,KAAK,MAAM;AAAA,MAAE;AAAA,MACb,WAAW,MAAM;AAAA,MAAE;AAAA,MACnB,OAAO;AAAA,QACH,SAAS,KAAK,WAAW;AAAA,QACzB,QAAQ,uBAAuB;AAAA,QAC/B,WAAW;AAAA,QACX,aAAa;AAAA,QACb,gBAAgB;AAAA,QAChB,UAAU;AAAA,QACV,MAAM;AAAA,QACN,aAAa,KAAK,IAAI;AAAA,QACtB,eAAe,iBAAiB;AAAA,MACpC;AAAA,MACA,aAAa,IAAI,2BAA2B;AAAA,IAChD;AAAA,EACJ;AAAA,EACA,8BAA8B;AAC1B,WAAO,IAAI,2BAA2B;AAAA,EAC1C;AAAA,EACA,sBAAsB;AAClB,WAAO;AAAA,EACX;AAAA,EACA,sBAAsB;AAClB;AAAA,EACJ;AAAA,EACA,kBAAkB;AACd;AAAA,EACJ;AAAA,EACA,iBAAiB;AACb,WAAO;AAAA,EACX;AAAA,EACA,sBAAsB;AAClB;AAAA,EACJ;AAAA,EACA,4BAA4B;AACxB,WAAO;AAAA,EACX;AAAA,EACA,yBAAyB;AACrB,WAAO;AAAA,EACX;AAAA,EACA,aAAa;AACT;AAAA,EACJ;AAAA,EACA,YAAY;AACR;AAAA,EACJ;AAAA,EACA,kBAAkB;AACd;AAAA,EACJ;AAAA,EACA,4BAA4B;AACxB;AAAA,EACJ;AACJ;;;ACjEA,SAAS,UAAU,OAAO;AACtB,SAAO,mBAAmB,aAAa,KAAK,EACvC,QAAQ,MAAM,EAAE,EAChB,QAAQ,OAAO,GAAG,EAClB,QAAQ,OAAO,GAAG,CAAC;AAC5B;AAKA,SAAS,aAAa,UAAU;AAC5B,SAAO,aAAa,QAAQ,EACvB,QAAQ,MAAM,EAAE,EAChB,QAAQ,OAAO,GAAG,EAClB,QAAQ,OAAO,GAAG;AAC3B;AAKA,SAAS,aAAa,OAAO;AACzB,SAAO,aAAa,IAAI,YAAY,EAAE,OAAO,KAAK,CAAC;AACvD;AAKA,SAAS,aAAa,QAAQ;AAC1B,QAAM,YAAY,MAAM,KAAK,QAAQ,CAAC,MAAM,OAAO,cAAc,CAAC,CAAC,EAAE,KAAK,EAAE;AAC5E,SAAO,KAAK,SAAS;AACzB;;;ACtCA,IAAM,iBAAiB;AACvB,IAAM,oBAAoB;AAC1B,IAAM,mBAAmB;AACzB,IAAM,iBAAiB;AACvB,IAAM,gBAAgB;AACtB,IAAM,oCAAoC;AAC1C,IAAM,qBAAqB;AAC3B,IAAM,+BAA+B;AACrC,IAAM,wBAAwB;AAC9B,IAAM,mBAAmB;AACzB,IAAM,mBAAmB;AACzB,IAAM,gBAAgB;AACtB,IAAM,sBAAsB;AAC5B,IAAM,uBAAuB;AAC7B,IAAM,mBAAmB;AACzB,IAAM,oBAAoB;AAC1B,IAAM,oBAAoB;AAC1B,IAAM,0BAA0B;AAChC,IAAM,0BAA0B;AAChC,IAAM,iBAAiB;AACvB,IAAM,yBAAyB;AAC/B,IAAM,2BAA2B;AACjC,IAAM,sCAAsC;AAC5C,IAAM,yBAAyB;AAC/B,IAAM,yBAAyB;AAC/B,IAAM,mBAAmB;AACzB,IAAM,wBAAwB;AAC9B,IAAM,kBAAkB;AACxB,IAAMC,yBAAwB;AAC9B,IAAMC,qBAAoB;AAC1B,IAAM,mBAAmB;AACzB,IAAM,wBAAwB;AAC9B,IAAM,oBAAoB;AAC1B,IAAM,oBAAoB;AAC1B,IAAM,mBAAmB;AACzB,IAAM,oCAAoC;AAC1C,IAAM,mCAAmC;AACzC,IAAM,sBAAsB;AAC5B,IAAM,yCAAyC;AAC/C,IAAM,yBAAyB;AAC/B,IAAM,8BAA8B;AACpC,IAAM,iCAAiC;AACvC,IAAM,uCAAuC;AAC7C,IAAM,2BAA2B;AACjC,IAAM,sBAAsB;;;ACvC5B,IAAM,YAAY;AAIlB,IAAM,2BAA2B;AAAA,EAC7B,CAAC,cAAc,GAAG;AAAA,EAClB,CAAC,iBAAiB,GAAG;AAAA,EACrB,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,cAAc,GAAG,qHAAqH,SAAS;AAAA,EAChJ,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,iCAAiC,GAAG,0GAA0G,SAAS;AAAA,EACxJ,CAAC,kBAAkB,GAAG;AAAA,EACtB,CAAC,4BAA4B,GAAG;AAAA,EAChC,CAAC,qBAAqB,GAAG,qIAAqI,SAAS;AAAA,EACvK,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,aAAa,GAAG;AAAA,EACjB,CAAC,mBAAmB,GAAG,sDAAsD,SAAS;AAAA,EACtF,CAAC,oBAAoB,GAAG,uDAAuD,SAAS;AAAA,EACxF,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,iBAAiB,GAAG,2FAA2F,SAAS;AAAA,EACzH,CAAC,iBAAiB,GAAG;AAAA,EACrB,CAAC,uBAAuB,GAAG;AAAA,EAC3B,CAAC,uBAAuB,GAAG;AAAA,EAC3B,CAAC,cAAc,GAAG;AAAA,EAClB,CAAC,sBAAsB,GAAG;AAAA,EAC1B,CAAC,wBAAwB,GAAG;AAAA,EAC5B,CAAC,mCAAmC,GAAG;AAAA,EACvC,CAAC,sBAAsB,GAAG;AAAA,EAC1B,CAAC,sBAAsB,GAAG;AAAA,EAC1B,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,qBAAqB,GAAG;AAAA,EACzB,CAAC,eAAe,GAAG;AAAA,EACnB,CAACC,sBAAqB,GAAG;AAAA,EACzB,CAACC,kBAAiB,GAAG;AAAA,EACrB,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,qBAAqB,GAAG;AAAA,EACzB,CAAC,iBAAiB,GAAG;AAAA,EACrB,CAAC,iBAAiB,GAAG;AAAA,EACrB,CAAC,gBAAgB,GAAG;AAAA,EACpB,CAAC,iCAAiC,GAAG;AAAA,EACrC,CAAC,gCAAgC,GAAG;AAAA,EACpC,CAAC,mBAAmB,GAAG;AAAA,EACvB,CAAC,sCAAsC,GAAG,kDAAkD,SAAS;AAAA,EACrG,CAAC,sBAAsB,GAAG;AAAA,EAC1B,CAAC,2BAA2B,GAAG;AAAA,EAC/B,CAAC,8BAA8B,GAAG,gIAAgI,SAAS;AAAA,EAC3K,CAAC,oCAAoC,GAAG,kGAAkG,SAAS;AAAA,EACnJ,CAAC,wBAAwB,GAAG;AAAA,EAC5B,CAAC,mBAAmB,GAAG;AAC3B;AASA,IAAM,0BAA0B;AAAA,EAC5B,kBAAkB;AAAA,IACd,MAAM;AAAA,IACN,MAAM,yBAAyB,cAAc;AAAA,EACjD;AAAA,EACA,oBAAoB;AAAA,IAChB,MAAM;AAAA,IACN,MAAM,yBAAyB,iBAAiB;AAAA,EACpD;AAAA,EACA,uBAAuB;AAAA,IACnB,MAAM;AAAA,IACN,MAAM,yBAAyB,gBAAgB;AAAA,EACnD;AAAA,EACA,gBAAgB;AAAA,IACZ,MAAM;AAAA,IACN,MAAM,yBAAyB,cAAc;AAAA,EACjD;AAAA,EACA,8BAA8B;AAAA,IAC1B,MAAM;AAAA,IACN,MAAM,yBAAyB,aAAa;AAAA,EAChD;AAAA,EACA,wCAAwC;AAAA,IACpC,MAAM;AAAA,IACN,MAAM,yBAAyB,iCAAiC;AAAA,EACpE;AAAA,EACA,yBAAyB;AAAA,IACrB,MAAM;AAAA,IACN,MAAM,yBAAyB,kBAAkB;AAAA,EACrD;AAAA,EACA,mCAAmC;AAAA,IAC/B,MAAM;AAAA,IACN,MAAM,yBAAyB,4BAA4B;AAAA,EAC/D;AAAA,EACA,uBAAuB;AAAA,IACnB,MAAM;AAAA,IACN,MAAM,yBAAyB,qBAAqB;AAAA,EACxD;AAAA,EACA,kBAAkB;AAAA,IACd,MAAM;AAAA,IACN,MAAM,yBAAyB,gBAAgB;AAAA,EACnD;AAAA,EACA,kBAAkB;AAAA,IACd,MAAM;AAAA,IACN,MAAM,yBAAyB,gBAAgB;AAAA,EACnD;AAAA,EACA,oBAAoB;AAAA,IAChB,MAAM;AAAA,IACN,MAAM,yBAAyB,aAAa;AAAA,EAChD;AAAA,EACA,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,yBAAyB,mBAAmB;AAAA,EACtD;AAAA,EACA,2BAA2B;AAAA,IACvB,MAAM;AAAA,IACN,MAAM,yBAAyB,oBAAoB;AAAA,EACvD;AAAA,EACA,uBAAuB;AAAA,IACnB,MAAM;AAAA,IACN,MAAM,yBAAyB,gBAAgB;AAAA,EACnD;AAAA,EACA,uCAAuC;AAAA,IACnC,MAAM;AAAA,IACN,MAAM,yBAAyB,iBAAiB;AAAA,EACpD;AAAA,EACA,gCAAgC;AAAA,IAC5B,MAAM;AAAA,IACN,MAAM,yBAAyB,iBAAiB;AAAA,EACpD;AAAA,EACA,8BAA8B;AAAA,IAC1B,MAAM;AAAA,IACN,MAAM,yBAAyB,uBAAuB;AAAA,EAC1D;AAAA,EACA,8BAA8B;AAAA,IAC1B,MAAM;AAAA,IACN,MAAM,yBAAyB,uBAAuB;AAAA,EAC1D;AAAA,EACA,gBAAgB;AAAA,IACZ,MAAM;AAAA,IACN,MAAM,yBAAyB,cAAc;AAAA,EACjD;AAAA,EACA,wBAAwB;AAAA,IACpB,MAAM;AAAA,IACN,MAAM,yBAAyB,sBAAsB;AAAA,EACzD;AAAA,EACA,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,yBAAyB,wBAAwB;AAAA,EAC3D;AAAA,EACA,qCAAqC;AAAA,IACjC,MAAM;AAAA,IACN,MAAM,yBAAyB,mCAAmC;AAAA,EACtE;AAAA,EACA,wBAAwB;AAAA,IACpB,MAAM;AAAA,IACN,MAAM,yBAAyB,sBAAsB;AAAA,EACzD;AAAA,EACA,mBAAmB;AAAA,IACf,MAAM;AAAA,IACN,MAAM,yBAAyB,sBAAsB;AAAA,EACzD;AAAA,EACA,kBAAkB;AAAA,IACd,MAAM;AAAA,IACN,MAAM,yBAAyB,gBAAgB;AAAA,EACnD;AAAA,EACA,yBAAyB;AAAA,IACrB,MAAM;AAAA,IACN,MAAM,yBAAyB,qBAAqB;AAAA,EACxD;AAAA,EACA,iBAAiB;AAAA,IACb,MAAM;AAAA,IACN,MAAM,yBAAyB,eAAe;AAAA,EAClD;AAAA,EACA,uBAAuB;AAAA,IACnB,MAAMD;AAAA,IACN,MAAM,yBAAyBA,sBAAqB;AAAA,EACxD;AAAA,EACA,mBAAmB;AAAA,IACf,MAAMC;AAAA,IACN,MAAM,yBAAyBA,kBAAiB;AAAA,EACpD;AAAA,EACA,kBAAkB;AAAA,IACd,MAAM;AAAA,IACN,MAAM,yBAAyB,gBAAgB;AAAA,EACnD;AAAA,EACA,8BAA8B;AAAA,IAC1B,MAAM;AAAA,IACN,MAAM,yBAAyB,qBAAqB;AAAA,EACxD;AAAA,EACA,wBAAwB;AAAA,IACpB,MAAM;AAAA,IACN,MAAM,yBAAyB,iBAAiB;AAAA,EACpD;AAAA,EACA,6BAA6B;AAAA,IACzB,MAAM;AAAA,IACN,MAAM,yBAAyB,iBAAiB;AAAA,EACpD;AAAA,EACA,kBAAkB;AAAA,IACd,MAAM;AAAA,IACN,MAAM,yBAAyB,gBAAgB;AAAA,EACnD;AAAA,EACA,iCAAiC;AAAA,IAC7B,MAAM;AAAA,IACN,MAAM,yBAAyB,iCAAiC;AAAA,EACpE;AAAA,EACA,gCAAgC;AAAA,IAC5B,MAAM;AAAA,IACN,MAAM,yBAAyB,gCAAgC;AAAA,EACnE;AAAA,EACA,qBAAqB;AAAA,IACjB,MAAM;AAAA,IACN,MAAM,yBAAyB,mBAAmB;AAAA,EACtD;AAAA,EACA,wCAAwC;AAAA,IACpC,MAAM;AAAA,IACN,MAAM,yBAAyB,sCAAsC;AAAA,EACzE;AAAA,EACA,wBAAwB;AAAA,IACpB,MAAM;AAAA,IACN,MAAM,yBAAyB,sBAAsB;AAAA,EACzD;AAAA,EACA,6BAA6B;AAAA,IACzB,MAAM;AAAA,IACN,MAAM,yBAAyB,2BAA2B;AAAA,EAC9D;AAAA,EACA,gCAAgC;AAAA,IAC5B,MAAM;AAAA,IACN,MAAM,yBAAyB,8BAA8B;AAAA,EACjE;AAAA,EACA,sCAAsC;AAAA,IAClC,MAAM;AAAA,IACN,MAAM,yBAAyB,oCAAoC;AAAA,EACvE;AAAA,EACA,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,yBAAyB,wBAAwB;AAAA,EAC3D;AAAA,EACA,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,yBAAyB,mBAAmB;AAAA,EACtD;AACJ;AAIA,IAAM,mBAAN,MAAM,0BAAyB,UAAU;AAAA,EACrC,YAAY,WAAW;AACnB,UAAM,WAAW,yBAAyB,SAAS,CAAC;AACpD,WAAO,eAAe,MAAM,kBAAiB,SAAS;AACtD,SAAK,OAAO;AAAA,EAChB;AACJ;AACA,SAAS,uBAAuB,WAAW;AACvC,SAAO,IAAI,iBAAiB,SAAS;AACzC;;;ACvPA,SAAS,aAAa,OAAO;AACzB,SAAO,IAAI,YAAY,EAAE,OAAO,eAAe,KAAK,CAAC;AACzD;AAKA,SAAS,eAAe,cAAc;AAClC,MAAI,gBAAgB,aAAa,QAAQ,MAAM,GAAG,EAAE,QAAQ,MAAM,GAAG;AACrE,UAAQ,cAAc,SAAS,GAAG;AAAA,IAC9B,KAAK;AACD;AAAA,IACJ,KAAK;AACD,uBAAiB;AACjB;AAAA,IACJ,KAAK;AACD,uBAAiB;AACjB;AAAA,IACJ;AACI,YAAM,uBAAuB,mBAAmB;AAAA,EACxD;AACA,QAAM,YAAY,KAAK,aAAa;AACpC,SAAO,WAAW,KAAK,WAAW,CAAC,MAAM,EAAE,YAAY,CAAC,KAAK,CAAC;AAClE;;;AC5BA,IAAM,qBAAN,MAAyB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKrB,OAAO,gBAAgB,SAAS;AAC5B,QAAI;AACJ,QAAI,UAAU;AACd,UAAM,UAAU,QAAQ;AAExB,aAAS,UAAU,GAAG,UAAU,SAAS,WAAW;AAChD,aAAO,QAAQ,WAAW,OAAO;AACjC,iBACI,OAAO,MACD,IACA,OAAO,OACH,IACA,OAAO,QACH,IACA,OAAO,UACH,IACA,OAAO,WACH,IACA;AAAA,IAC9B;AACA,UAAM,SAAS,IAAI,WAAW,OAAO;AAErC,aAAS,OAAO,GAAG,UAAU,GAAG,OAAO,SAAS,WAAW;AACvD,aAAO,QAAQ,WAAW,OAAO;AACjC,UAAI,OAAO,KAAK;AAEZ,eAAO,MAAM,IAAI;AAAA,MACrB,WACS,OAAO,MAAO;AAEnB,eAAO,MAAM,IAAI,OAAO,SAAS;AACjC,eAAO,MAAM,IAAI,OAAO,OAAO;AAAA,MACnC,WACS,OAAO,OAAS;AAErB,eAAO,MAAM,IAAI,OAAO,SAAS;AACjC,eAAO,MAAM,IAAI,OAAQ,SAAS,IAAK;AACvC,eAAO,MAAM,IAAI,OAAO,OAAO;AAAA,MACnC,WACS,OAAO,SAAU;AAEtB,eAAO,MAAM,IAAI,OAAO,SAAS;AACjC,eAAO,MAAM,IAAI,OAAQ,SAAS,KAAM;AACxC,eAAO,MAAM,IAAI,OAAQ,SAAS,IAAK;AACvC,eAAO,MAAM,IAAI,OAAO,OAAO;AAAA,MACnC,WACS,OAAO,UAAW;AAEvB,eAAO,MAAM,IAAI,OAAO,SAAS;AACjC,eAAO,MAAM,IAAI,OAAQ,SAAS,KAAM;AACxC,eAAO,MAAM,IAAI,OAAQ,SAAS,KAAM;AACxC,eAAO,MAAM,IAAI,OAAQ,SAAS,IAAK;AACvC,eAAO,MAAM,IAAI,OAAO,OAAO;AAAA,MACnC,OACK;AAED,eAAO,MAAM,IAAI,OAAO,SAAS;AACjC,eAAO,MAAM,IAAI,OAAQ,SAAS,KAAM;AACxC,eAAO,MAAM,IAAI,OAAQ,SAAS,KAAM;AACxC,eAAO,MAAM,IAAI,OAAQ,SAAS,KAAM;AACxC,eAAO,MAAM,IAAI,OAAQ,SAAS,IAAK;AACvC,eAAO,MAAM,IAAI,OAAO,OAAO;AAAA,MACnC;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,gBAAgB,QAAQ;AAC3B,QAAI,QAAQ,UAAU;AACtB,aAAS,OAAO,OAAO,OAAO,QAAQ,OAAO,GAAG,OAAO,MAAM,QAAQ;AACjE,cAAQ,OAAO,IAAI;AACnB,eAAS,OAAO,aAAa,QAAQ,OAAO,QAAQ,OAAO,OAAO,IAAI;AAAA;AAAA,SAE7D,QAAQ,OAAO,cACV,OAAO,EAAE,IAAI,IAAI,OAAQ,OACzB,OAAO,EAAE,IAAI,IAAI,OAAQ,OACzB,OAAO,EAAE,IAAI,IAAI,OAAQ,OACzB,OAAO,EAAE,IAAI,IAAI,OAAQ,KAC3B,OAAO,EAAE,IAAI,IACb;AAAA,UACN,QAAQ,OACN,QAAQ,OACR,OAAO,IAAI,QACP,QAAQ,OAAQ,OACd,OAAO,EAAE,IAAI,IAAI,OAAQ,OACzB,OAAO,EAAE,IAAI,IAAI,OAAQ,OACzB,OAAO,EAAE,IAAI,IAAI,OAAQ,KAC3B,OAAO,EAAE,IAAI,IACb,MACF,QAAQ,OACN,QAAQ,OACR,OAAO,IAAI,QACP,QAAQ,OAAQ,OACd,OAAO,EAAE,IAAI,IAAI,OAAQ,OACzB,OAAO,EAAE,IAAI,IAAI,OAAQ,KAC3B,OAAO,EAAE,IAAI,IACb,MACF,QAAQ,OACN,QAAQ,OACR,OAAO,IAAI,QACP,QAAQ,OAAQ,OACd,OAAO,EAAE,IAAI,IAAI,OAAQ,KAC3B,OAAO,EAAE,IAAI,IACb,MACF,QAAQ,OACN,QAAQ,OACR,OAAO,IAAI,QACP,QAAQ,OAAQ,KAAK,OAAO,EAAE,IAAI,IAAI;AAAA;AAAA;AAAA,QAEtC;AAAA,OAAK;AAAA,IACjC;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,sBAAsB,KAAK;AAC9B,WAAO,KAAK,UAAU,KAAK,OAAO,KAAK,GAAG,EAAE,KAAK,CAAC;AAAA,EACtD;AACJ;;;ACjIA,IAAM,mBAAmB;AAAA;AAAA;AAAA;AAAA,EAIrB,+BAA+B;AAAA;AAAA;AAAA;AAAA,EAI/B,qBAAqB;AAAA;AAAA;AAAA;AAAA,EAIrB,aAAa;AAAA;AAAA;AAAA;AAAA,EAIb,cAAc;AAAA;AAAA;AAAA;AAAA,EAId,mBAAmB;AAAA;AAAA;AAAA;AAAA,EAInB,0BAA0B;AAAA;AAAA;AAAA;AAAA,EAI1B,UAAU;AACd;AACA,IAAM,kBAAkB;AAAA,EACpB,YAAY;AAAA,EACZ,wBAAwB;AAAA,EACxB,gBAAgB;AACpB;AACA,IAAM,wBAAwB;AAAA,EAC1B,kBAAkB;AAAA,EAClB,mBAAmB;AAAA,EACnB,UAAU;AAAA,EACV,UAAU;AACd;AACA,IAAM,uBAAuB;AAAA,EACzB,cAAc;AAAA,EACd,gBAAgB;AAAA,EAChB,eAAe;AACnB;AAIA,IAAM,oBAAoB;AAAA,EACtB,KAAK;AAAA,EACL,MAAM;AACV;AAIA,IAAM,qBAAqB;AAAA,EACvB,WAAW;AAAA,EACX,uBAAuB;AAAA,EACvB,eAAe;AAAA,EACf,eAAe;AAAA,EACf,eAAe;AAAA,EACf,YAAY;AAAA,EACZ,cAAc;AAAA,EACd,UAAU;AAAA,EACV,gBAAgB;AAAA,EAChB,QAAQ;AAAA,EACR,wBAAwB;AAAA,EACxB,gBAAgB;AAAA,EAChB,gBAAgB;AAAA,EAChB,gBAAgB;AAAA,EAChB,kBAAkB;AACtB;AACA,IAAM,kBAAkB;AAAA,EACpB,cAAc;AAAA,EACd,YAAY;AAChB;AAIA,IAAM,oBAAoB;AAAA,EACtB,aAAa;AAAA,EACb,aAAa;AACjB;AAOA,IAAM,QAAQ;AAAA,EACV,sBAAsB;AAAA,EACtB,mBAAmB;AAAA,EACnB,WAAW;AAAA,EACX,6BAA6B;AAAA,EAC7B,uBAAuB;AAAA,EACvB,oBAAoB;AAAA,EACpB,+BAA+B;AAAA,EAC/B,QAAQ;AAAA,EACR,aAAa;AACjB;AAIA,IAAI;AAAA,CACH,SAAUC,kBAAiB;AACxB,EAAAA,iBAAgB,UAAU,IAAI;AAC9B,EAAAA,iBAAgB,OAAO,IAAI;AAC3B,EAAAA,iBAAgB,QAAQ,IAAI;AAC5B,EAAAA,iBAAgB,MAAM,IAAI;AAC9B,GAAG,oBAAoB,kBAAkB,CAAC,EAAE;AAK5C,IAAM,oBAAoB;AAAA;AAAA;AAAA;AAAA,EAItB,SAAS;AAAA;AAAA;AAAA;AAAA,EAIT,OAAO;AAAA;AAAA;AAAA;AAAA,EAIP,QAAQ;AAAA;AAAA;AAAA;AAAA,EAIR,cAAc;AAAA;AAAA;AAAA;AAAA,EAId,WAAW;AAAA;AAAA;AAAA;AAAA,EAIX,gBAAgB;AAAA;AAAA;AAAA;AAAA,EAIhB,MAAM;AACV;AACA,IAAM,kBAAkB;AAAA,EACpB,QAAQ;AACZ;AAIA,IAAM,iBAAiB;AAEvB,IAAM,aAAa;AAAA,EACf,OAAO;AAAA,EACP,SAAS;AACb;AAEA,IAAM,UAAU;AAChB,IAAM,aAAa;AACnB,IAAM,gBAAgB,GAAG,OAAO;AAChC,IAAM,oBAAoB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMtB,SAAS;AAAA;AAAA;AAAA;AAAA;AAAA,EAKT,aAAa;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMb,4BAA4B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAM5B,cAAc;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMd,wBAAwB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKxB,MAAM;AACV;;;AC3LA,IAAM,uBAAuB;AAE7B,IAAM,gBAAgB;AAEtB,IAAM,iBAAiB;AAEvB,IAAM,kBAAkB,IAAI,WAAW,CAAC,GAAM,GAAM,CAAI,CAAC;AACzD,IAAM,yBAAyB;AAAA,EAC3B,MAAM;AAAA,EACN,MAAM;AAAA,EACN,eAAe;AAAA,EACf,gBAAgB;AACpB;AAIA,SAAS,wBAAwB,QAAQ;AACrC,MAAI,YAAY,QAAQ;AACpB,WAAO,QAAQ,kDAAkD;AAAA,EACrE,OACK;AACD,WAAO,MAAM,gDAAgD;AAC7D,UAAM,uBAAuB,iBAAiB;AAAA,EAClD;AACJ;AAKA,SAAe,aAAa,YAAY,mBAAmB,eAAe;AAAA;AACtE,uBAAmB,oBAAoB,kBAAkB,cAAc,aAAa;AACpF,UAAM,OAAO,mBAAmB,gBAAgB,UAAU;AAC1D,WAAO,OAAO,OAAO,OAAO,OAAO,eAAe,IAAI;AAAA,EAC1D;AAAA;AAKA,SAAS,gBAAgB,YAAY;AACjC,SAAO,OAAO,OAAO,gBAAgB,UAAU;AACnD;AAKA,SAAS,gBAAgB;AACrB,SAAO,OAAO,OAAO,WAAW;AACpC;AAMA,SAAe,gBAAgB,aAAa,QAAQ;AAAA;AAChD,WAAO,OAAO,OAAO,OAAO,YAAY,wBAAwB,aAAa,MAAM;AAAA,EACvF;AAAA;AAKA,SAAe,UAAU,KAAK;AAAA;AAC1B,WAAO,OAAO,OAAO,OAAO,UAAU,gBAAgB,GAAG;AAAA,EAC7D;AAAA;AAOA,SAAe,UAAU,KAAK,aAAa,QAAQ;AAAA;AAC/C,WAAO,OAAO,OAAO,OAAO,UAAU,gBAAgB,KAAK,wBAAwB,aAAa,MAAM;AAAA,EAC1G;AAAA;AAMA,SAAe,KAAK,KAAK,MAAM;AAAA;AAC3B,WAAO,OAAO,OAAO,OAAO,KAAK,wBAAwB,KAAK,IAAI;AAAA,EACtE;AAAA;;;ACtFA,IAAM,kBAAN,MAAsB;AAAA,EAClB,cAAc;AACV,SAAK,SAAS;AACd,SAAK,UAAU;AACf,SAAK,YAAY;AACjB,SAAK,SAAS;AAAA,EAClB;AAAA;AAAA;AAAA;AAAA,EAIM,OAAO;AAAA;AACT,aAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AACpC,cAAM,SAAS,OAAO,UAAU,KAAK,KAAK,QAAQ,KAAK,OAAO;AAC9D,eAAO,iBAAiB,iBAAiB,CAAC,MAAM;AAC5C,gBAAM,QAAQ;AACd,gBAAM,OAAO,OAAO,kBAAkB,KAAK,SAAS;AAAA,QACxD,CAAC;AACD,eAAO,iBAAiB,WAAW,CAAC,MAAM;AACtC,gBAAM,QAAQ;AACd,eAAK,KAAK,MAAM,OAAO;AACvB,eAAK,SAAS;AACd,kBAAQ;AAAA,QACZ,CAAC;AACD,eAAO,iBAAiB,SAAS,MAAM,OAAO,uBAAuB,mBAAmB,CAAC,CAAC;AAAA,MAC9F,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,kBAAkB;AACd,UAAM,KAAK,KAAK;AAChB,QAAI,MAAM,KAAK,QAAQ;AACnB,SAAG,MAAM;AACT,WAAK,SAAS;AAAA,IAClB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIM,mBAAmB;AAAA;AACrB,UAAI,CAAC,KAAK,QAAQ;AACd,eAAO,MAAM,KAAK,KAAK;AAAA,MAC3B;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,QAAQ,KAAK;AAAA;AACf,YAAM,KAAK,iBAAiB;AAC5B,aAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AAEpC,YAAI,CAAC,KAAK,IAAI;AACV,iBAAO,OAAO,uBAAuB,eAAe,CAAC;AAAA,QACzD;AACA,cAAM,cAAc,KAAK,GAAG,YAAY,CAAC,KAAK,SAAS,GAAG,UAAU;AACpE,cAAM,cAAc,YAAY,YAAY,KAAK,SAAS;AAC1D,cAAM,QAAQ,YAAY,IAAI,GAAG;AACjC,cAAM,iBAAiB,WAAW,CAAC,MAAM;AACrC,gBAAM,QAAQ;AACd,eAAK,gBAAgB;AACrB,kBAAQ,MAAM,OAAO,MAAM;AAAA,QAC/B,CAAC;AACD,cAAM,iBAAiB,SAAS,CAAC,MAAM;AACnC,eAAK,gBAAgB;AACrB,iBAAO,CAAC;AAAA,QACZ,CAAC;AAAA,MACL,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,QAAQ,KAAK,SAAS;AAAA;AACxB,YAAM,KAAK,iBAAiB;AAC5B,aAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AAEpC,YAAI,CAAC,KAAK,IAAI;AACV,iBAAO,OAAO,uBAAuB,eAAe,CAAC;AAAA,QACzD;AACA,cAAM,cAAc,KAAK,GAAG,YAAY,CAAC,KAAK,SAAS,GAAG,WAAW;AACrE,cAAM,cAAc,YAAY,YAAY,KAAK,SAAS;AAC1D,cAAM,QAAQ,YAAY,IAAI,SAAS,GAAG;AAC1C,cAAM,iBAAiB,WAAW,MAAM;AACpC,eAAK,gBAAgB;AACrB,kBAAQ;AAAA,QACZ,CAAC;AACD,cAAM,iBAAiB,SAAS,CAAC,MAAM;AACnC,eAAK,gBAAgB;AACrB,iBAAO,CAAC;AAAA,QACZ,CAAC;AAAA,MACL,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,WAAW,KAAK;AAAA;AAClB,YAAM,KAAK,iBAAiB;AAC5B,aAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AACpC,YAAI,CAAC,KAAK,IAAI;AACV,iBAAO,OAAO,uBAAuB,eAAe,CAAC;AAAA,QACzD;AACA,cAAM,cAAc,KAAK,GAAG,YAAY,CAAC,KAAK,SAAS,GAAG,WAAW;AACrE,cAAM,cAAc,YAAY,YAAY,KAAK,SAAS;AAC1D,cAAM,WAAW,YAAY,OAAO,GAAG;AACvC,iBAAS,iBAAiB,WAAW,MAAM;AACvC,eAAK,gBAAgB;AACrB,kBAAQ;AAAA,QACZ,CAAC;AACD,iBAAS,iBAAiB,SAAS,CAAC,MAAM;AACtC,eAAK,gBAAgB;AACrB,iBAAO,CAAC;AAAA,QACZ,CAAC;AAAA,MACL,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA,EAIM,UAAU;AAAA;AACZ,YAAM,KAAK,iBAAiB;AAC5B,aAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AACpC,YAAI,CAAC,KAAK,IAAI;AACV,iBAAO,OAAO,uBAAuB,eAAe,CAAC;AAAA,QACzD;AACA,cAAM,cAAc,KAAK,GAAG,YAAY,CAAC,KAAK,SAAS,GAAG,UAAU;AACpE,cAAM,cAAc,YAAY,YAAY,KAAK,SAAS;AAC1D,cAAM,YAAY,YAAY,WAAW;AACzC,kBAAU,iBAAiB,WAAW,CAAC,MAAM;AACzC,gBAAM,QAAQ;AACd,eAAK,gBAAgB;AACrB,kBAAQ,MAAM,OAAO,MAAM;AAAA,QAC/B,CAAC;AACD,kBAAU,iBAAiB,SAAS,CAAC,MAAM;AACvC,eAAK,gBAAgB;AACrB,iBAAO,CAAC;AAAA,QACZ,CAAC;AAAA,MACL,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,YAAY,KAAK;AAAA;AACnB,YAAM,KAAK,iBAAiB;AAC5B,aAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AACpC,YAAI,CAAC,KAAK,IAAI;AACV,iBAAO,OAAO,uBAAuB,eAAe,CAAC;AAAA,QACzD;AACA,cAAM,cAAc,KAAK,GAAG,YAAY,CAAC,KAAK,SAAS,GAAG,UAAU;AACpE,cAAM,cAAc,YAAY,YAAY,KAAK,SAAS;AAC1D,cAAM,gBAAgB,YAAY,MAAM,GAAG;AAC3C,sBAAc,iBAAiB,WAAW,CAAC,MAAM;AAC7C,gBAAM,QAAQ;AACd,eAAK,gBAAgB;AACrB,kBAAQ,MAAM,OAAO,WAAW,CAAC;AAAA,QACrC,CAAC;AACD,sBAAc,iBAAiB,SAAS,CAAC,MAAM;AAC3C,eAAK,gBAAgB;AACrB,iBAAO,CAAC;AAAA,QACZ,CAAC;AAAA,MACL,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,iBAAiB;AAAA;AAEnB,UAAI,KAAK,MAAM,KAAK,QAAQ;AACxB,aAAK,gBAAgB;AAAA,MACzB;AACA,aAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AACpC,cAAM,kBAAkB,OAAO,UAAU,eAAe,OAAO;AAC/D,wBAAgB,iBAAiB,WAAW,MAAM,QAAQ,IAAI,CAAC;AAC/D,wBAAgB,iBAAiB,WAAW,MAAM,QAAQ,IAAI,CAAC;AAC/D,wBAAgB,iBAAiB,SAAS,MAAM,OAAO,KAAK,CAAC;AAAA,MACjE,CAAC;AAAA,IACL;AAAA;AACJ;;;AC7LA,IAAM,gBAAN,MAAoB;AAAA,EAChB,cAAc;AACV,SAAK,QAAQ,oBAAI,IAAI;AAAA,EACzB;AAAA,EACA,QAAQ,KAAK;AACT,WAAO,KAAK,MAAM,IAAI,GAAG,KAAK;AAAA,EAClC;AAAA,EACA,QAAQ,KAAK,OAAO;AAChB,SAAK,MAAM,IAAI,KAAK,KAAK;AAAA,EAC7B;AAAA,EACA,WAAW,KAAK;AACZ,SAAK,MAAM,OAAO,GAAG;AAAA,EACzB;AAAA,EACA,UAAU;AACN,UAAM,YAAY,CAAC;AACnB,SAAK,MAAM,QAAQ,CAAC,OAAO,QAAQ;AAC/B,gBAAU,KAAK,GAAG;AAAA,IACtB,CAAC;AACD,WAAO;AAAA,EACX;AAAA,EACA,YAAY,KAAK;AACb,WAAO,KAAK,MAAM,IAAI,GAAG;AAAA,EAC7B;AAAA,EACA,QAAQ;AACJ,SAAK,MAAM,MAAM;AAAA,EACrB;AACJ;;;ACjBA,IAAM,qBAAN,MAAyB;AAAA,EACrB,YAAY,QAAQ,WAAW;AAC3B,SAAK,gBAAgB,IAAI,cAAc;AACvC,SAAK,iBAAiB,IAAI,gBAAgB;AAC1C,SAAK,SAAS;AACd,SAAK,YAAY;AAAA,EACrB;AAAA,EACA,0BAA0B,OAAO;AAC7B,QAAI,iBAAiB,oBACjB,MAAM,cAAc,qBAAqB;AACzC,WAAK,OAAO,MAAM,6IAA6I;AAAA,IACnK,OACK;AACD,YAAM;AAAA,IACV;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,QAAQ,KAAK;AAAA;AACf,YAAM,OAAO,KAAK,cAAc,QAAQ,GAAG;AAC3C,UAAI,CAAC,MAAM;AACP,YAAI;AACA,eAAK,OAAO,QAAQ,6EAA6E;AACjG,iBAAO,MAAM,KAAK,eAAe,QAAQ,GAAG;AAAA,QAChD,SACO,GAAG;AACN,eAAK,0BAA0B,CAAC;AAAA,QACpC;AAAA,MACJ;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,QAAQ,KAAK,OAAO;AAAA;AACtB,WAAK,cAAc,QAAQ,KAAK,KAAK;AACrC,UAAI;AACA,cAAM,KAAK,eAAe,QAAQ,KAAK,KAAK;AAAA,MAChD,SACO,GAAG;AACN,aAAK,0BAA0B,CAAC;AAAA,MACpC;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,WAAW,KAAK;AAAA;AAClB,WAAK,cAAc,WAAW,GAAG;AACjC,UAAI;AACA,cAAM,KAAK,eAAe,WAAW,GAAG;AAAA,MAC5C,SACO,GAAG;AACN,aAAK,0BAA0B,CAAC;AAAA,MACpC;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,UAAU;AAAA;AACZ,YAAM,YAAY,KAAK,cAAc,QAAQ;AAC7C,UAAI,UAAU,WAAW,GAAG;AACxB,YAAI;AACA,eAAK,OAAO,QAAQ,4DAA4D;AAChF,iBAAO,MAAM,KAAK,eAAe,QAAQ;AAAA,QAC7C,SACO,GAAG;AACN,eAAK,0BAA0B,CAAC;AAAA,QACpC;AAAA,MACJ;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,YAAY,KAAK;AAAA;AACnB,YAAM,cAAc,KAAK,cAAc,YAAY,GAAG;AACtD,UAAI,CAAC,aAAa;AACd,YAAI;AACA,eAAK,OAAO,QAAQ,oEAAoE;AACxF,iBAAO,MAAM,KAAK,eAAe,YAAY,GAAG;AAAA,QACpD,SACO,GAAG;AACN,eAAK,0BAA0B,CAAC;AAAA,QACpC;AAAA,MACJ;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAIA,gBAAgB;AAEZ,SAAK,OAAO,QAAQ,+BAA+B,KAAK,SAAS,EAAE;AACnE,SAAK,cAAc,MAAM;AACzB,SAAK,OAAO,QAAQ,sBAAsB,KAAK,SAAS,UAAU;AAAA,EACtE;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,kBAAkB;AAAA;AACpB,UAAI;AACA,aAAK,OAAO,QAAQ,8BAA8B;AAClD,cAAM,YAAY,MAAM,KAAK,eAAe,eAAe;AAC3D,YAAI,WAAW;AACX,eAAK,OAAO,QAAQ,6BAA6B;AAAA,QACrD;AACA,eAAO;AAAA,MACX,SACO,GAAG;AACN,aAAK,0BAA0B,CAAC;AAChC,eAAO;AAAA,MACX;AAAA,IACJ;AAAA;AACJ;;;AClIA,IAAM,sBAAsB;AAAA,EACxB,gBAAgB;AAAA,EAChB,eAAe;AACnB;AAIA,IAAM,iBAAN,MAAqB;AAAA,EACjB,YAAY,QAAQ;AAChB,SAAK,SAAS;AACd,SAAK,iBAAiB,IAAI,mBAAmB,KAAK,QAAQ,oBAAoB,cAAc;AAC5F,SAAK,gBAAgB,IAAI,mBAAmB,KAAK,QAAQ,oBAAoB,aAAa;AAAA,EAC9F;AAAA,EACM,QAAQ;AAAA;AAEV,WAAK,eAAe,cAAc;AAClC,WAAK,cAAc,cAAc;AAKjC,UAAI;AACA,cAAM,KAAK,eAAe,gBAAgB;AAC1C,eAAO;AAAA,MACX,SACO,GAAG;AACN,YAAI,aAAa,OAAO;AACpB,eAAK,OAAO,MAAM,wCAAwC,EAAE,OAAO,EAAE;AAAA,QACzE,OACK;AACD,eAAK,OAAO,MAAM,6CAA6C;AAAA,QACnE;AACA,eAAO;AAAA,MACX;AAAA,IACJ;AAAA;AACJ;;;ACxBA,IAAM,YAAN,MAAM,WAAU;AAAA,EACZ,YAAY,QAAQ,mBAAmB;AACnC,SAAK,SAAS;AAEd,4BAAwB,MAAM;AAC9B,SAAK,QAAQ,IAAI,eAAe,KAAK,MAAM;AAC3C,SAAK,oBAAoB;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB;AACZ,WAAO,cAAc;AAAA,EACzB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,aAAa,OAAO;AAChB,WAAO,aAAa,KAAK;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,aAAa,OAAO;AAChB,WAAO,aAAa,KAAK;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,uBAAuB,SAAS;AAAA;AAClC,YAAM,4BAA4B,KAAK,mBAAmB,iBAAiB,kBAAkB,kCAAkC,QAAQ,aAAa;AAEpJ,YAAM,UAAU,MAAM,gBAAgB,WAAU,aAAa,WAAU,cAAc;AAErF,YAAM,eAAe,MAAM,UAAU,QAAQ,SAAS;AACtD,YAAM,qBAAqB;AAAA,QACvB,GAAG,aAAa;AAAA,QAChB,KAAK,aAAa;AAAA,QAClB,GAAG,aAAa;AAAA,MACpB;AACA,YAAM,kBAAkB,mBAAmB,sBAAsB,kBAAkB;AACnF,YAAM,gBAAgB,MAAM,KAAK,WAAW,eAAe;AAE3D,YAAM,gBAAgB,MAAM,UAAU,QAAQ,UAAU;AAExD,YAAM,0BAA0B,MAAM,UAAU,eAAe,OAAO,CAAC,MAAM,CAAC;AAE9E,YAAM,KAAK,MAAM,eAAe,QAAQ,eAAe;AAAA,QACnD,YAAY;AAAA,QACZ,WAAW,QAAQ;AAAA,QACnB,eAAe,QAAQ;AAAA,QACvB,YAAY,QAAQ;AAAA,MACxB,CAAC;AACD,UAAI,2BAA2B;AAC3B,kCAA0B,IAAI;AAAA,UAC1B,SAAS;AAAA,QACb,CAAC;AAAA,MACL;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,sBAAsB,KAAK;AAAA;AAC7B,YAAM,KAAK,MAAM,eAAe,WAAW,GAAG;AAC9C,YAAM,WAAW,MAAM,KAAK,MAAM,eAAe,YAAY,GAAG;AAChE,aAAO,CAAC;AAAA,IACZ;AAAA;AAAA;AAAA;AAAA;AAAA,EAIM,gBAAgB;AAAA;AAClB,aAAO,MAAM,KAAK,MAAM,MAAM;AAAA,IAClC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,QAAQ,SAAS,KAAK,eAAe;AAAA;AACvC,YAAM,qBAAqB,KAAK,mBAAmB,iBAAiB,kBAAkB,mBAAmB,aAAa;AACtH,YAAM,gBAAgB,MAAM,KAAK,MAAM,eAAe,QAAQ,GAAG;AACjE,UAAI,CAAC,eAAe;AAChB,cAAM,uBAAuB,iBAAiB;AAAA,MAClD;AAEA,YAAM,eAAe,MAAM,UAAU,cAAc,SAAS;AAC5D,YAAM,qBAAqB,mBAAmB,sBAAsB,YAAY;AAEhF,YAAM,yBAAyB,UAAU,KAAK,UAAU,EAAE,IAAS,CAAC,CAAC;AAErE,YAAM,YAAY,WAAW,mBAAmB;AAAA,QAC5C,KAAK;AAAA,QACL,KAAK,aAAa;AAAA,MACtB,CAAC;AACD,YAAM,mBAAmB,UAAU,SAAS;AAE5C,cAAQ,MAAM;AAAA,QACV,KAAK,KAAK,MAAM,kBAAkB;AAAA,MACtC;AACA,YAAM,iBAAiB,UAAU,KAAK,UAAU,OAAO,CAAC;AAExD,YAAM,cAAc,GAAG,gBAAgB,IAAI,cAAc;AAEzD,YAAM,cAAc,mBAAmB,gBAAgB,WAAW;AAClE,YAAM,kBAAkB,MAAM,KAAK,cAAc,YAAY,WAAW;AACxE,YAAM,mBAAmB,aAAa,IAAI,WAAW,eAAe,CAAC;AACrE,YAAM,YAAY,GAAG,WAAW,IAAI,gBAAgB;AACpD,UAAI,oBAAoB;AACpB,2BAAmB,IAAI;AAAA,UACnB,SAAS;AAAA,QACb,CAAC;AAAA,MACL;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,WAAW,WAAW;AAAA;AACxB,YAAM,aAAa,MAAM,aAAa,SAAS;AAC/C,YAAM,YAAY,IAAI,WAAW,UAAU;AAC3C,aAAO,aAAa,SAAS;AAAA,IACjC;AAAA;AACJ;AACA,UAAU,iBAAiB,CAAC,QAAQ,QAAQ;AAC5C,UAAU,cAAc;;;AChJxB,IAAM,sBAAsB;AAC5B,IAAM,uCAAuC;AAC7C,IAAM,2BAA2B;;;ACGjC,IAAM,wCAAwC;AAAA,EAC1C,CAAC,mBAAmB,GAAG;AAAA,EACvB,CAAC,oCAAoC,GAAG;AAAA,EACxC,CAAC,wBAAwB,GAAG;AAChC;AAKA,IAAM,uCAAuC;AAAA,EACzC,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,sCAAsC,mBAAmB;AAAA,EACnE;AAAA,EACA,uBAAuB;AAAA,IACnB,MAAM;AAAA,IACN,MAAM,sCAAsC,oCAAoC;AAAA,EACpF;AAAA,EACA,0BAA0B;AAAA,IACtB,MAAM;AAAA,IACN,MAAM,sCAAsC,wBAAwB;AAAA,EACxE;AACJ;AAIA,IAAM,gCAAN,MAAM,uCAAsC,UAAU;AAAA,EAClD,YAAY,WAAW,cAAc;AACjC,UAAM,WAAW,YAAY;AAC7B,SAAK,OAAO;AACZ,WAAO,eAAe,MAAM,+BAA8B,SAAS;AAAA,EACvE;AACJ;AACA,SAAS,oCAAoC,WAAW;AACpD,SAAO,IAAI,8BAA8B,WAAW,sCAAsC,SAAS,CAAC;AACxG;;;ACpCA,IAAM,iBAAN,MAAqB;AAAA,EACjB,YAAY,eAAe;AACvB,SAAK,sBAAsB,aAAa;AACxC,SAAK,gBAAgB,OAAO,aAAa;AAAA,EAC7C;AAAA,EACA,sBAAsB,eAAe;AACjC,QAAK,kBAAkB,qBAAqB,gBACxC,kBAAkB,qBAAqB,kBACvC,CAAC,OAAO,aAAa,GAAG;AACxB,YAAM,oCAAoC,mBAAmB;AAAA,IACjE;AAAA,EACJ;AAAA,EACA,QAAQ,KAAK;AACT,WAAO,KAAK,cAAc,QAAQ,GAAG;AAAA,EACzC;AAAA,EACA,QAAQ,KAAK,OAAO;AAChB,SAAK,cAAc,QAAQ,KAAK,KAAK;AAAA,EACzC;AAAA,EACA,WAAW,KAAK;AACZ,SAAK,cAAc,WAAW,GAAG;AAAA,EACrC;AAAA,EACA,UAAU;AACN,WAAO,OAAO,KAAK,KAAK,aAAa;AAAA,EACzC;AAAA,EACA,YAAY,KAAK;AACb,WAAO,KAAK,cAAc,eAAe,GAAG;AAAA,EAChD;AACJ;;;AC7BA,IAAM,uBAAN,MAA2B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMvB,OAAO,2BAA2B,eAAe,OAAO;AACpD,QAAI,CAAC,OAAO;AACR,aAAO;AAAA,IACX;AACA,QAAI;AACA,YAAM,kBAAkB,cAAc,kBAAkB,eAAe,KAAK;AAC5E,aAAO,gBAAgB,aAAa;AAAA,IACxC,SACO,GAAG;AACN,YAAM,sBAAsB,6BAAqB,YAAY;AAAA,IACjE;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,4BAA4B,cAAc;AAC7C,QAAI,CAAC,cAAc;AACf,aAAO,CAAC;AAAA,IACZ;AACA,UAAM,gBAAgB,IAAI,UAAU,YAAY;AAChD,WAAO,UAAU,oBAAoB,cAAc,QAAQ,CAAC;AAAA,EAChE;AACJ;;;AChBA,IAAM,sBAAN,MAAM,6BAA4B,aAAa;AAAA,EAC3C,YAAY,UAAU,aAAa,YAAY,QAAQ;AACnD,UAAM,UAAU,YAAY,MAAM;AAElC,SAAK,yBAAyB,KAAK,KAAK,KAAK;AAC7C,SAAK,cAAc;AACnB,SAAK,SAAS;AACd,SAAK,kBAAkB,IAAI,cAAc;AACzC,SAAK,iBAAiB,KAAK,oBAAoB,KAAK,YAAY,aAAa;AAC7E,SAAK,wBAAwB,KAAK,2BAA2B,KAAK,YAAY,wBAAwB,KAAK,YAAY,aAAa;AAEpI,QAAI,YAAY,uBAAuB;AACnC,WAAK,oBAAoB;AACzB,WAAK,cAAc;AAAA,IACvB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,oBAAoB,eAAe;AAC/B,YAAQ,eAAe;AAAA,MACnB,KAAK,qBAAqB;AAAA,MAC1B,KAAK,qBAAqB;AACtB,YAAI;AACA,iBAAO,IAAI,eAAe,aAAa;AAAA,QAC3C,SACO,GAAG;AACN,eAAK,OAAO,QAAQ,CAAC;AACrB;AAAA,QACJ;AAAA,IACR;AACA,SAAK,YAAY,gBAAgB,qBAAqB;AACtD,WAAO,IAAI,cAAc;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,2BAA2B,wBAAwB,eAAe;AAC9D,YAAQ,eAAe;AAAA,MACnB,KAAK,qBAAqB;AAAA,MAC1B,KAAK,qBAAqB;AACtB,YAAI;AAEA,iBAAO,IAAI,eAAe,0BACtB,qBAAqB,cAAc;AAAA,QAC3C,SACO,GAAG;AACN,eAAK,OAAO,QAAQ,CAAC;AACrB,iBAAO,KAAK;AAAA,QAChB;AAAA,MACJ,KAAK,qBAAqB;AAAA,MAC1B;AACI,eAAO,KAAK;AAAA,IACpB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,sBAAsB;AAClB,UAAM,aAAa,GAAG,UAAU,YAAY,IAAI,oBAAoB,QAAQ;AAC5E,UAAM,gBAAgB,GAAG,UAAU,YAAY,IAAI,oBAAoB,WAAW;AAClF,UAAM,WAAW,GAAG,UAAU,YAAY,IAAI,oBAAoB,KAAK;AACvE,UAAM,eAAe,GAAG,UAAU,YAAY,IAAI,oBAAoB,UAAU;AAChF,UAAM,eAAe,KAAK,eAAe,QAAQ,UAAU;AAC3D,UAAM,kBAAkB,KAAK,eAAe,QAAQ,aAAa;AACjE,UAAM,aAAa,KAAK,eAAe,QAAQ,QAAQ;AACvD,UAAM,iBAAiB,KAAK,eAAe,QAAQ,YAAY;AAC/D,UAAM,SAAS;AAAA,MACX;AAAA,MACA;AAAA,MACA;AAAA,MACA;AAAA,IACJ;AACA,UAAM,gBAAgB;AAAA,MAClB,oBAAoB;AAAA,MACpB,oBAAoB;AAAA,MACpB,oBAAoB;AAAA,MACpB,oBAAoB;AAAA,IACxB;AACA,kBAAc,QAAQ,CAAC,UAAU,UAAU,KAAK,kBAAkB,UAAU,OAAO,KAAK,CAAC,CAAC;AAAA,EAC9F;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,kBAAkB,QAAQ,OAAO;AAC7B,QAAI,OAAO;AACP,WAAK,kBAAkB,QAAQ,OAAO,IAAI;AAAA,IAC9C;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,gBAAgB;AACZ,SAAK,OAAO,MAAM,6CAA6C;AAC/D,UAAM,cAAc,KAAK,QAAQ,gBAAgB,YAAY;AAC7D,UAAM,YAAY,KAAK,QAAQ,GAAG,gBAAgB,UAAU,IAAI,KAAK,QAAQ,EAAE;AAC/E,QAAI,eAAe,WAAW;AAC1B,WAAK,OAAO,QAAQ,mGAAmG;AAEvH;AAAA,IACJ;AACA,UAAM,UAAU,KAAK,eAAe,QAAQ;AAC5C,YAAQ,QAAQ,CAAC,QAAQ;AACrB,UAAI,KAAK,gBAAgB,GAAG,GAAG;AAE3B,cAAM,QAAQ,KAAK,QAAQ,GAAG;AAC9B,YAAI,OAAO;AACP,gBAAM,UAAU,KAAK,qBAAqB,KAAK;AAC/C,cAAI,WAAW,QAAQ,eAAe,gBAAgB,GAAG;AACrD,oBAAQ,QAAQ,gBAAgB,GAAG;AAAA,cAC/B,KAAK,eAAe;AAChB,oBAAI,cAAc,gBAAgB,OAAO,GAAG;AACxC,uBAAK,OAAO,MAAM,gFAAgF;AAClG,uBAAK,OAAO,SAAS,yDAAyD,GAAG,qCAAqC;AACtH,wBAAM,gBAAgB,aAAa,SAAS,IAAI,cAAc,GAAG,OAAO;AACxE,wBAAM,SAAS,KAAK,yBAAyB,KAAK,aAAa;AAC/D,uBAAK,YAAY,QAAQ,eAAe,QAAQ;AAChD;AAAA,gBACJ,OACK;AACD,uBAAK,OAAO,MAAM,+KAA+K;AACjM,uBAAK,OAAO,SAAS,yEAAyE,GAAG,EAAE;AAAA,gBACvG;AACA;AAAA,cACJ,KAAK,eAAe;AAAA,cACpB,KAAK,eAAe;AAChB,oBAAI,kBAAkB,oBAAoB,OAAO,GAAG;AAChD,uBAAK,OAAO,MAAM,oFAAoF;AACtG,uBAAK,OAAO,SAAS,6DAA6D,GAAG,qCAAqC;AAC1H,wBAAM,oBAAoB,aAAa,SAAS,IAAI,kBAAkB,GAAG,OAAO;AAChF,wBAAM,SAAS,KAAK,yBAAyB,KAAK,iBAAiB;AACnE,uBAAK,YAAY,QAAQ,eAAe,YAAY;AACpD;AAAA,gBACJ,OACK;AACD,uBAAK,OAAO,MAAM,2LAA2L;AAC7M,uBAAK,OAAO,SAAS,6EAA6E,GAAG,EAAE;AAAA,gBAC3G;AACA;AAAA,cACJ,KAAK,eAAe;AAChB,oBAAI,mBAAmB,qBAAqB,OAAO,GAAG;AAClD,uBAAK,OAAO,MAAM,qFAAqF;AACvG,uBAAK,OAAO,SAAS,8DAA8D,GAAG,qCAAqC;AAC3H,wBAAM,qBAAqB,aAAa,SAAS,IAAI,mBAAmB,GAAG,OAAO;AAClF,wBAAM,SAAS,KAAK,yBAAyB,KAAK,kBAAkB;AACpE,uBAAK,YAAY,QAAQ,eAAe,aAAa;AACrD;AAAA,gBACJ,OACK;AACD,uBAAK,OAAO,MAAM,8LAA8L;AAChN,uBAAK,OAAO,SAAS,8EAA8E,GAAG,EAAE;AAAA,gBAC5G;AACA;AAAA,YAER;AAAA,UACJ;AAAA,QACJ;AAAA,MACJ;AACA,UAAI,KAAK,aAAa,GAAG,GAAG;AACxB,cAAM,QAAQ,KAAK,QAAQ,GAAG;AAC9B,YAAI,OAAO;AACP,gBAAM,aAAa,KAAK,qBAAqB,KAAK;AAClD,cAAI,cACA,cAAc,gBAAgB,UAAU,GAAG;AAC3C,iBAAK,OAAO,MAAM,kFAAkF;AACpG,iBAAK,OAAO,SAAS,yDAAyD,GAAG,uCAAuC;AACxH,iBAAK,mBAAmB,GAAG;AAAA,UAC/B;AAAA,QACJ;AAAA,MACJ;AAAA,IACJ,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,qBAAqB,WAAW;AAC5B,QAAI;AACA,YAAM,aAAa,KAAK,MAAM,SAAS;AAOvC,aAAO,cAAc,OAAO,eAAe,WACrC,aACA;AAAA,IACV,SACO,OAAO;AACV,aAAO;AAAA,IACX;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,QAAQ,KAAK;AACT,WAAO,KAAK,eAAe,QAAQ,GAAG;AAAA,EAC1C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,QAAQ,KAAK,OAAO;AAChB,SAAK,eAAe,QAAQ,KAAK,KAAK;AAAA,EAC1C;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,WAAW,YAAY;AACnB,SAAK,OAAO,MAAM,uCAAuC;AACzD,UAAM,UAAU,KAAK,QAAQ,UAAU;AACvC,QAAI,CAAC,SAAS;AACV,WAAK,wBAAwB,UAAU;AACvC,aAAO;AAAA,IACX;AACA,UAAM,gBAAgB,KAAK,qBAAqB,OAAO;AACvD,QAAI,CAAC,iBAAiB,CAAC,cAAc,gBAAgB,aAAa,GAAG;AACjE,WAAK,wBAAwB,UAAU;AACvC,aAAO;AAAA,IACX;AACA,WAAO,aAAa,SAAS,IAAI,cAAc,GAAG,aAAa;AAAA,EACnE;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,WAAW,SAAS;AAChB,SAAK,OAAO,MAAM,uCAAuC;AACzD,UAAM,MAAM,QAAQ,mBAAmB;AACvC,SAAK,QAAQ,KAAK,KAAK,UAAU,OAAO,CAAC;AACzC,SAAK,mBAAmB,GAAG;AAAA,EAC/B;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB;AACb,SAAK,OAAO,MAAM,2CAA2C;AAC7D,UAAM,cAAc,KAAK,QAAQ,gBAAgB,YAAY;AAC7D,QAAI,aAAa;AACb,aAAO,KAAK,MAAM,WAAW;AAAA,IACjC;AACA,SAAK,OAAO,QAAQ,4DAA4D;AAChF,WAAO,CAAC;AAAA,EACZ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB,KAAK;AACpB,SAAK,OAAO,MAAM,+CAA+C;AACjE,SAAK,OAAO,SAAS,2DAA2D,GAAG,EAAE;AACrF,UAAM,cAAc,KAAK,eAAe;AACxC,QAAI,YAAY,QAAQ,GAAG,MAAM,IAAI;AAEjC,kBAAY,KAAK,GAAG;AACpB,WAAK,QAAQ,gBAAgB,cAAc,KAAK,UAAU,WAAW,CAAC;AACtE,WAAK,OAAO,QAAQ,0DAA0D;AAAA,IAClF,OACK;AACD,WAAK,OAAO,QAAQ,0EAA0E;AAAA,IAClG;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,wBAAwB,KAAK;AACzB,SAAK,OAAO,MAAM,oDAAoD;AACtE,SAAK,OAAO,SAAS,gEAAgE,GAAG,EAAE;AAC1F,UAAM,cAAc,KAAK,eAAe;AACxC,UAAM,eAAe,YAAY,QAAQ,GAAG;AAC5C,QAAI,eAAe,IAAI;AACnB,kBAAY,OAAO,cAAc,CAAC;AAClC,WAAK,QAAQ,gBAAgB,cAAc,KAAK,UAAU,WAAW,CAAC;AACtE,WAAK,OAAO,MAAM,iEAAiE;AAAA,IACvF,OACK;AACD,WAAK,OAAO,MAAM,2EAA2E;AAAA,IACjG;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,cAAc,KAAK;AAAA;AACrB,WAAK,iDAAM,sBAAN,MAAoB,GAAG;AAC5B,WAAK,wBAAwB,GAAG;AAAA,IACpC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,cAAc,KAAK;AACf,UAAM,cAAc,GAAG;AACvB,SAAK,eAAe,KAAK,eAAe,QAAQ;AAAA,EACpD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,kBAAkB,KAAK;AAAA;AACzB,WAAK,iDAAM,0BAAN,MAAwB,GAAG;AAChC,WAAK,eAAe,KAAK,eAAe,YAAY;AAAA,IACxD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB,KAAK;AACpB,UAAM,mBAAmB,GAAG;AAC5B,SAAK,eAAe,KAAK,eAAe,aAAa;AAAA,EACzD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,eAAe;AACX,SAAK,OAAO,MAAM,yCAAyC;AAC3D,UAAM,OAAO,KAAK,QAAQ,GAAG,gBAAgB,UAAU,IAAI,KAAK,QAAQ,EAAE;AAC1E,QAAI,MAAM;AACN,YAAM,YAAY,KAAK,qBAAqB,IAAI;AAChD,UAAI,aACA,UAAU,eAAe,SAAS,KAClC,UAAU,eAAe,aAAa,KACtC,UAAU,eAAe,cAAc,GAAG;AAC1C,eAAO;AAAA,MACX,OACK;AACD,aAAK,OAAO,MAAM,wGAAwG;AAAA,MAC9H;AAAA,IACJ,OACK;AACD,WAAK,OAAO,QAAQ,wDAAwD;AAAA,IAChF;AACA,WAAO;AAAA,MACH,SAAS,CAAC;AAAA,MACV,aAAa,CAAC;AAAA,MACd,cAAc,CAAC;AAAA,IACnB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,YAAY,KAAK,MAAM;AACnB,SAAK,OAAO,MAAM,wCAAwC;AAC1D,UAAM,YAAY,KAAK,aAAa;AACpC,YAAQ,MAAM;AAAA,MACV,KAAK,eAAe;AAChB,YAAI,UAAU,QAAQ,QAAQ,GAAG,MAAM,IAAI;AACvC,eAAK,OAAO,KAAK,yDAAyD;AAC1E,oBAAU,QAAQ,KAAK,GAAG;AAAA,QAC9B;AACA;AAAA,MACJ,KAAK,eAAe;AAChB,YAAI,UAAU,YAAY,QAAQ,GAAG,MAAM,IAAI;AAC3C,eAAK,OAAO,KAAK,6DAA6D;AAC9E,oBAAU,YAAY,KAAK,GAAG;AAAA,QAClC;AACA;AAAA,MACJ,KAAK,eAAe;AAChB,YAAI,UAAU,aAAa,QAAQ,GAAG,MAAM,IAAI;AAC5C,eAAK,OAAO,KAAK,8DAA8D;AAC/E,oBAAU,aAAa,KAAK,GAAG;AAAA,QACnC;AACA;AAAA,MACJ;AACI,aAAK,OAAO,MAAM,sFAAsF,IAAI,EAAE;AAC9G,cAAM,sBAAsB,6BAAqB,wBAAwB;AAAA,IACjF;AACA,SAAK,QAAQ,GAAG,gBAAgB,UAAU,IAAI,KAAK,QAAQ,IAAI,KAAK,UAAU,SAAS,CAAC;AAAA,EAC5F;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,eAAe,KAAK,MAAM;AACtB,SAAK,OAAO,MAAM,2CAA2C;AAC7D,UAAM,YAAY,KAAK,aAAa;AACpC,YAAQ,MAAM;AAAA,MACV,KAAK,eAAe;AAChB,aAAK,OAAO,QAAQ,gFAAgF,GAAG,WAAW;AAClH,cAAM,YAAY,UAAU,QAAQ,QAAQ,GAAG;AAC/C,YAAI,YAAY,IAAI;AAChB,eAAK,OAAO,KAAK,gEAAgE;AACjF,oBAAU,QAAQ,OAAO,WAAW,CAAC;AAAA,QACzC,OACK;AACD,eAAK,OAAO,KAAK,8HAA8H;AAAA,QACnJ;AACA;AAAA,MACJ,KAAK,eAAe;AAChB,aAAK,OAAO,QAAQ,oFAAoF,GAAG,WAAW;AACtH,cAAM,gBAAgB,UAAU,YAAY,QAAQ,GAAG;AACvD,YAAI,gBAAgB,IAAI;AACpB,eAAK,OAAO,KAAK,oEAAoE;AACrF,oBAAU,YAAY,OAAO,eAAe,CAAC;AAAA,QACjD,OACK;AACD,eAAK,OAAO,KAAK,kIAAkI;AAAA,QACvJ;AACA;AAAA,MACJ,KAAK,eAAe;AAChB,aAAK,OAAO,QAAQ,qFAAqF,GAAG,WAAW;AACvH,cAAM,iBAAiB,UAAU,aAAa,QAAQ,GAAG;AACzD,YAAI,iBAAiB,IAAI;AACrB,eAAK,OAAO,KAAK,qEAAqE;AACtF,oBAAU,aAAa,OAAO,gBAAgB,CAAC;AAAA,QACnD,OACK;AACD,eAAK,OAAO,KAAK,mIAAmI;AAAA,QACxJ;AACA;AAAA,MACJ;AACI,aAAK,OAAO,MAAM,yFAAyF,IAAI,EAAE;AACjH,cAAM,sBAAsB,6BAAqB,wBAAwB;AAAA,IACjF;AACA,SAAK,QAAQ,GAAG,gBAAgB,UAAU,IAAI,KAAK,QAAQ,IAAI,KAAK,UAAU,SAAS,CAAC;AAAA,EAC5F;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,qBAAqB,YAAY;AAC7B,UAAM,QAAQ,KAAK,QAAQ,UAAU;AACrC,QAAI,CAAC,OAAO;AACR,WAAK,OAAO,MAAM,gEAAgE;AAClF,WAAK,eAAe,YAAY,eAAe,QAAQ;AACvD,aAAO;AAAA,IACX;AACA,UAAM,gBAAgB,KAAK,qBAAqB,KAAK;AACrD,QAAI,CAAC,iBAAiB,CAAC,cAAc,gBAAgB,aAAa,GAAG;AACjE,WAAK,OAAO,MAAM,gEAAgE;AAClF,WAAK,eAAe,YAAY,eAAe,QAAQ;AACvD,aAAO;AAAA,IACX;AACA,SAAK,OAAO,MAAM,qDAAqD;AACvE,WAAO,aAAa,SAAS,IAAI,cAAc,GAAG,aAAa;AAAA,EACnE;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,qBAAqB,SAAS;AAC1B,SAAK,OAAO,MAAM,iDAAiD;AACnE,UAAM,aAAa,QAAQ,sBAAsB;AACjD,SAAK,QAAQ,YAAY,KAAK,UAAU,OAAO,CAAC;AAChD,SAAK,YAAY,YAAY,eAAe,QAAQ;AAAA,EACxD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,yBAAyB,gBAAgB;AACrC,UAAM,QAAQ,KAAK,QAAQ,cAAc;AACzC,QAAI,CAAC,OAAO;AACR,WAAK,OAAO,MAAM,oEAAoE;AACtF,WAAK,eAAe,gBAAgB,eAAe,YAAY;AAC/D,aAAO;AAAA,IACX;AACA,UAAM,oBAAoB,KAAK,qBAAqB,KAAK;AACzD,QAAI,CAAC,qBACD,CAAC,kBAAkB,oBAAoB,iBAAiB,GAAG;AAC3D,WAAK,OAAO,MAAM,oEAAoE;AACtF,WAAK,eAAe,gBAAgB,eAAe,YAAY;AAC/D,aAAO;AAAA,IACX;AACA,SAAK,OAAO,MAAM,yDAAyD;AAC3E,WAAO,aAAa,SAAS,IAAI,kBAAkB,GAAG,iBAAiB;AAAA,EAC3E;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,yBAAyB,aAAa;AAClC,SAAK,OAAO,MAAM,qDAAqD;AACvE,UAAM,iBAAiB,YAAY,sBAAsB;AACzD,SAAK,QAAQ,gBAAgB,KAAK,UAAU,WAAW,CAAC;AACxD,SAAK,YAAY,gBAAgB,eAAe,YAAY;AAAA,EAChE;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,0BAA0B,iBAAiB;AACvC,UAAM,QAAQ,KAAK,QAAQ,eAAe;AAC1C,QAAI,CAAC,OAAO;AACR,WAAK,OAAO,MAAM,qEAAqE;AACvF,WAAK,eAAe,iBAAiB,eAAe,aAAa;AACjE,aAAO;AAAA,IACX;AACA,UAAM,qBAAqB,KAAK,qBAAqB,KAAK;AAC1D,QAAI,CAAC,sBACD,CAAC,mBAAmB,qBAAqB,kBAAkB,GAAG;AAC9D,WAAK,OAAO,MAAM,qEAAqE;AACvF,WAAK,eAAe,iBAAiB,eAAe,aAAa;AACjE,aAAO;AAAA,IACX;AACA,SAAK,OAAO,MAAM,0DAA0D;AAC5E,WAAO,aAAa,SAAS,IAAI,mBAAmB,GAAG,kBAAkB;AAAA,EAC7E;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,0BAA0B,cAAc;AACpC,SAAK,OAAO,MAAM,sDAAsD;AACxE,UAAM,kBAAkB,aAAa,sBAAsB;AAC3D,SAAK,QAAQ,iBAAiB,KAAK,UAAU,YAAY,CAAC;AAC1D,SAAK,YAAY,iBAAiB,eAAe,aAAa;AAAA,EAClE;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,eAAe,gBAAgB;AAC3B,UAAM,QAAQ,KAAK,QAAQ,cAAc;AACzC,QAAI,CAAC,OAAO;AACR,WAAK,OAAO,MAAM,0DAA0D;AAC5E,aAAO;AAAA,IACX;AACA,UAAM,iBAAiB,KAAK,qBAAqB,KAAK;AACtD,QAAI,CAAC,kBACD,CAAC,kBAAkB,oBAAoB,gBAAgB,cAAc,GAAG;AACxE,WAAK,OAAO,MAAM,0DAA0D;AAC5E,aAAO;AAAA,IACX;AACA,SAAK,OAAO,MAAM,+CAA+C;AACjE,WAAO,aAAa,SAAS,IAAI,kBAAkB,GAAG,cAAc;AAAA,EACxE;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,eAAe,aAAa;AACxB,SAAK,OAAO,MAAM,2CAA2C;AAC7D,UAAM,iBAAiB,YAAY,uBAAuB;AAC1D,SAAK,QAAQ,gBAAgB,KAAK,UAAU,WAAW,CAAC;AAAA,EAC5D;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB,oBAAoB;AACnC,UAAM,QAAQ,KAAK,QAAQ,kBAAkB;AAC7C,QAAI,CAAC,OAAO;AACR,WAAK,OAAO,MAAM,8DAA8D;AAChF,aAAO;AAAA,IACX;AACA,UAAM,iBAAiB,KAAK,qBAAqB,KAAK;AACtD,QAAI,CAAC,kBACD,CAAC,sBAAsB,wBAAwB,oBAAoB,cAAc,GAAG;AACpF,WAAK,OAAO,MAAM,8DAA8D;AAChF,aAAO;AAAA,IACX;AACA,SAAK,OAAO,MAAM,mDAAmD;AACrE,WAAO,aAAa,SAAS,IAAI,sBAAsB,GAAG,cAAc;AAAA,EAC5E;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,mBAAmB,oBAAoB,iBAAiB;AACpD,SAAK,OAAO,MAAM,+CAA+C;AACjE,SAAK,QAAQ,oBAAoB,KAAK,UAAU,eAAe,CAAC;AAAA,EACpE;AAAA;AAAA;AAAA;AAAA,EAIA,qBAAqB,KAAK;AACtB,UAAM,QAAQ,KAAK,gBAAgB,QAAQ,GAAG;AAC9C,QAAI,CAAC,OAAO;AACR,WAAK,OAAO,MAAM,gEAAgE;AAClF,aAAO;AAAA,IACX;AACA,UAAM,iBAAiB,KAAK,qBAAqB,KAAK;AACtD,QAAI,kBACA,wBAAwB,0BAA0B,KAAK,cAAc,GAAG;AACxE,WAAK,OAAO,MAAM,qDAAqD;AACvE,aAAO,aAAa,SAAS,IAAI,wBAAwB,GAAG,cAAc;AAAA,IAC9E;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,2BAA2B;AACvB,UAAM,UAAU,KAAK,gBAAgB,QAAQ;AAC7C,WAAO,QAAQ,OAAO,CAAC,QAAQ;AAC3B,aAAO,KAAK,oBAAoB,GAAG;AAAA,IACvC,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,mBAAmB,YAAY,gBAAgB;AAC3C,SAAK,gBAAgB,QAAQ,kBAAkB,aAAa,UAAU;AACtE,SAAK,gBAAgB,QAAQ,kBAAkB,aAAa,cAAc;AAAA,EAC9E;AAAA;AAAA;AAAA;AAAA,EAIA,qBAAqB;AACjB,UAAM,MAAM,KAAK,gBAAgB,QAAQ,kBAAkB,WAAW,KAClE,UAAU;AACd,UAAMC,WAAU,KAAK,gBAAgB,QAAQ,kBAAkB,WAAW,KACtE,UAAU;AACd,WAAO,CAAC,KAAKA,QAAO;AAAA,EACxB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,qBAAqB,KAAK,QAAQ;AAC9B,SAAK,OAAO,MAAM,iDAAiD;AACnE,SAAK,gBAAgB,QAAQ,KAAK,KAAK,UAAU,MAAM,CAAC;AAAA,EAC5D;AAAA;AAAA;AAAA;AAAA,EAIA,mBAAmB;AACf,UAAM,0BAA0B,KAAK,iBAAiB,oBAAoB,sBAAsB;AAChG,UAAM,4BAA4B,KAAK,QAAQ,uBAAuB;AACtE,QAAI,CAAC,2BAA2B;AAE5B,WAAK,OAAO,MAAM,+GAA+G;AACjI,YAAM,wBAAwB,KAAK,iBAAiB,oBAAoB,cAAc;AACtF,YAAM,0BAA0B,KAAK,QAAQ,qBAAqB;AAClE,UAAI,CAAC,yBAAyB;AAC1B,aAAK,OAAO,MAAM,+DAA+D;AACjF,eAAO;AAAA,MACX;AACA,YAAM,gBAAgB,KAAK,uBAAuB;AAAA,QAC9C,gBAAgB;AAAA,MACpB,CAAC,EAAE,CAAC,KAAK;AACT,UAAI,eAAe;AACf,aAAK,OAAO,MAAM,gFAAgF;AAClG,aAAK,OAAO,MAAM,kFAAkF;AACpG,aAAK,iBAAiB,aAAa;AACnC,eAAO;AAAA,MACX;AACA,aAAO;AAAA,IACX;AACA,UAAM,wBAAwB,KAAK,qBAAqB,yBAAyB;AACjF,QAAI,uBAAuB;AACvB,WAAK,OAAO,MAAM,2EAA2E;AAC7F,aAAQ,KAAK,uBAAuB;AAAA,QAChC,eAAe,sBAAsB;AAAA,QACrC,gBAAgB,sBAAsB;AAAA,MAC1C,CAAC,EAAE,CAAC,KAAK;AAAA,IACb;AACA,SAAK,OAAO,MAAM,+DAA+D;AACjF,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB,SAAS;AACtB,UAAM,mBAAmB,KAAK,iBAAiB,oBAAoB,sBAAsB;AACzF,UAAM,wBAAwB,KAAK,iBAAiB,oBAAoB,cAAc;AACtF,QAAI,SAAS;AACT,WAAK,OAAO,QAAQ,sCAAsC;AAC1D,YAAM,qBAAqB;AAAA,QACvB,eAAe,QAAQ;AAAA,QACvB,gBAAgB,QAAQ;AAAA,MAC5B;AACA,WAAK,eAAe,QAAQ,kBAAkB,KAAK,UAAU,kBAAkB,CAAC;AAChF,WAAK,eAAe,QAAQ,uBAAuB,QAAQ,cAAc;AAAA,IAC7E,OACK;AACD,WAAK,OAAO,QAAQ,6DAA6D;AACjF,WAAK,eAAe,WAAW,gBAAgB;AAC/C,WAAK,eAAe,WAAW,qBAAqB;AAAA,IACxD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,uBAAuB,eAAe;AAClC,UAAM,cAAc,KAAK,eAAe;AACxC,SAAK,OAAO,MAAM,qDAAqD,YAAY,MAAM,iBAAiB;AAC1G,WAAO,YAAY,OAAO,CAAC,eAAe;AACtC,UAAI,cAAc,YACd,cAAc,SAAS,YAAY,MAC/B,WAAW,SAAS,YAAY,GAAG;AACvC,eAAO;AAAA,MACX;AACA,UAAI,cAAc,iBACd,cAAc,kBAAkB,WAAW,eAAe;AAC1D,eAAO;AAAA,MACX;AACA,UAAI,cAAc,kBACd,cAAc,mBAAmB,WAAW,gBAAgB;AAC5D,eAAO;AAAA,MACX;AACA,UAAI,cAAc,YACd,cAAc,aAAa,WAAW,UAAU;AAChD,eAAO;AAAA,MACX;AACA,UAAI,cAAc,eACd,cAAc,gBAAgB,WAAW,aAAa;AACtD,eAAO;AAAA,MACX;AACA,aAAO;AAAA,IACX,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,sBAAsB,WAAW,KAAK;AAClC,UAAM,mBAAmB,KAAK,eAAe,EAAE,OAAO,CAAC,gBAAgB;AACnE,UAAI,KAAK;AACL,cAAM,aAAa,YAAY,iBAC3B,YAAY,cAAc,KAAK;AACnC,eAAO,QAAQ;AAAA,MACnB;AACA,UAAI,WAAW;AACX,eAAO,cAAc,YAAY;AAAA,MACrC;AACA,aAAO;AAAA,IACX,CAAC;AACD,QAAI,iBAAiB,WAAW,GAAG;AAC/B,aAAO,iBAAiB,CAAC;AAAA,IAC7B,WACS,iBAAiB,SAAS,GAAG;AAClC,YAAM,sBAAsB,6BAAqB,wBAAwB;AAAA,IAC7E;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,mBAAmB,oBAAoB;AACnC,UAAM,QAAQ,KAAK,QAAQ,kBAAkB;AAC7C,QAAI,CAAC,OAAO;AACR,WAAK,OAAO,MAAM,8DAA8D;AAChF,aAAO;AAAA,IACX;AACA,UAAM,wBAAwB,KAAK,qBAAqB,KAAK;AAC7D,QAAI,CAAC,yBACD,CAAC,iBAAiB,mBAAmB,oBAAoB,qBAAqB,GAAG;AACjF,WAAK,OAAO,MAAM,8DAA8D;AAChF,aAAO;AAAA,IACX;AACA,SAAK,OAAO,MAAM,mDAAmD;AACrE,WAAO,aAAa,SAAS,IAAI,iBAAiB,GAAG,qBAAqB;AAAA,EAC9E;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,mBAAmB,oBAAoB,iBAAiB;AACpD,SAAK,OAAO,MAAM,+CAA+C;AACjE,SAAK,QAAQ,oBAAoB,KAAK,UAAU,eAAe,CAAC;AAAA,EACpE;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,kBAAkB,UAAU,aAAa;AACrC,UAAM,MAAM,cAAc,KAAK,iBAAiB,QAAQ,IAAI;AAC5D,QAAI,KAAK,YAAY,wBAAwB;AACzC,YAAM,aAAa,KAAK,cAAc,GAAG;AACzC,UAAI,YAAY;AACZ,aAAK,OAAO,MAAM,qGAAqG;AACvH,eAAO;AAAA,MACX;AAAA,IACJ;AACA,UAAM,QAAQ,KAAK,sBAAsB,QAAQ,GAAG;AACpD,QAAI,CAAC,OAAO;AAER,UAAI,KAAK,YAAY,kBACjB,qBAAqB,cAAc;AACnC,cAAM,OAAO,KAAK,eAAe,QAAQ,GAAG;AAC5C,YAAI,MAAM;AACN,eAAK,OAAO,MAAM,oFAAoF;AACtG,iBAAO;AAAA,QACX;AAAA,MACJ;AACA,WAAK,OAAO,MAAM,6EAA6E;AAC/F,aAAO;AAAA,IACX;AACA,SAAK,OAAO,MAAM,sEAAsE;AACxF,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,kBAAkB,UAAU,OAAO,aAAa;AAC5C,UAAM,MAAM,cAAc,KAAK,iBAAiB,QAAQ,IAAI;AAC5D,SAAK,sBAAsB,QAAQ,KAAK,KAAK;AAC7C,QAAI,KAAK,YAAY,wBAAwB;AACzC,WAAK,OAAO,MAAM,gGAAgG;AAClH,WAAK,cAAc,KAAK,KAAK;AAAA,IACjC;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,WAAW,KAAK;AACZ,SAAK,eAAe,WAAW,GAAG;AAClC,SAAK,sBAAsB,WAAW,GAAG;AACzC,QAAI,KAAK,YAAY,wBAAwB;AACzC,WAAK,OAAO,MAAM,sFAAsF;AACxG,WAAK,gBAAgB,GAAG;AAAA,IAC5B;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,YAAY,KAAK;AACb,WAAQ,KAAK,eAAe,YAAY,GAAG,KACvC,KAAK,sBAAsB,YAAY,GAAG;AAAA,EAClD;AAAA;AAAA;AAAA;AAAA,EAIA,UAAU;AACN,WAAO;AAAA,MACH,GAAG,KAAK,eAAe,QAAQ;AAAA,MAC/B,GAAG,KAAK,sBAAsB,QAAQ;AAAA,IAC1C;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIM,QAAQ;AAAA;AAEV,YAAM,KAAK,kBAAkB;AAC7B,WAAK,kBAAkB;AAEvB,WAAK,QAAQ,EAAE,QAAQ,CAAC,aAAa;AAEjC,aAAK,KAAK,eAAe,YAAY,QAAQ,KACzC,KAAK,sBAAsB,YAAY,QAAQ,OAC9C,SAAS,QAAQ,UAAU,YAAY,MAAM,MAC1C,SAAS,QAAQ,KAAK,QAAQ,MAAM,KAAK;AAC7C,eAAK,WAAW,QAAQ;AAAA,QAC5B;AAAA,MACJ,CAAC;AACD,WAAK,gBAAgB,MAAM;AAAA,IAC/B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,6BAA6B,mBAAmB;AAAA;AAClD,wBAAkB,oBAAoB,kBAAkB,4BAA4B;AACpF,YAAM,YAAY,KAAK,aAAa;AACpC,YAAM,sBAAsB,CAAC;AAC7B,gBAAU,YAAY,QAAQ,CAAC,QAAQ;AAEnC,cAAM,aAAa,KAAK,yBAAyB,GAAG;AACpD,YAAI,YAAY,uBACZ,IAAI,SAAS,WAAW,oBAAoB,YAAY,CAAC,GAAG;AAC5D,8BAAoB,KAAK,KAAK,kBAAkB,GAAG,CAAC;AAAA,QACxD;AAAA,MACJ,CAAC;AACD,YAAM,QAAQ,IAAI,mBAAmB;AAErC,UAAI,oBAAoB,SAAS,GAAG;AAChC,aAAK,OAAO,QAAQ,GAAG,oBAAoB,MAAM,gFAAgF;AAAA,MACrI;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,cAAc,YAAY,aAAa,SAAS;AAC5C,QAAI,YAAY,GAAG,mBAAmB,UAAU,CAAC,IAAI,mBAAmB,WAAW,CAAC;AACpF,QAAI,SAAS;AACT,YAAM,aAAa,KAAK,wBAAwB,OAAO;AACvD,mBAAa,WAAW,UAAU;AAAA,IACtC;AACA,QAAI,KAAK,YAAY,eAAe;AAChC,mBAAa;AAAA,IACjB;AACA,aAAS,SAAS;AAAA,EACtB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,cAAc,YAAY;AACtB,UAAMC,QAAO,GAAG,mBAAmB,UAAU,CAAC;AAC9C,UAAM,aAAa,SAAS,OAAO,MAAM,GAAG;AAC5C,aAAS,IAAI,GAAG,IAAI,WAAW,QAAQ,KAAK;AACxC,UAAI,SAAS,WAAW,CAAC;AACzB,aAAO,OAAO,OAAO,CAAC,MAAM,KAAK;AAC7B,iBAAS,OAAO,UAAU,CAAC;AAAA,MAC/B;AACA,UAAI,OAAO,QAAQA,KAAI,MAAM,GAAG;AAC5B,eAAO,mBAAmB,OAAO,UAAUA,MAAK,QAAQ,OAAO,MAAM,CAAC;AAAA,MAC1E;AAAA,IACJ;AACA,WAAO,UAAU;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA,EAIA,mBAAmB;AACf,UAAM,eAAe,GAAG,UAAU,YAAY,IAAI,KAAK,QAAQ;AAC/D,UAAM,aAAa,SAAS,OAAO,MAAM,GAAG;AAC5C,eAAW,QAAQ,CAAC,WAAW;AAC3B,aAAO,OAAO,OAAO,CAAC,MAAM,KAAK;AAE7B,iBAAS,OAAO,UAAU,CAAC;AAAA,MAC/B;AACA,UAAI,OAAO,QAAQ,YAAY,MAAM,GAAG;AACpC,cAAM,YAAY,OAAO,MAAM,GAAG,EAAE,CAAC;AACrC,aAAK,gBAAgB,SAAS;AAAA,MAClC;AAAA,IACJ,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB,YAAY;AACxB,SAAK,cAAc,YAAY,UAAU,cAAc,EAAE;AAAA,EAC7D;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,wBAAwB,gBAAgB;AACpC,UAAM,QAAQ,oBAAI,KAAK;AACvB,UAAM,OAAO,IAAI,KAAK,MAAM,QAAQ,IAAI,iBAAiB,KAAK,sBAAsB;AACpF,WAAO,KAAK,YAAY;AAAA,EAC5B;AAAA;AAAA;AAAA;AAAA,EAIA,WAAW;AACP,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA,EAIA,WAAW;AAAA,EAEX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,iBAAiB,KAAK;AAClB,UAAM,eAAe,KAAK,qBAAqB,GAAG;AAClD,QAAI,CAAC,cAAc;AACf,UAAI,YAAY,WAAW,KAAK,UAAU,YAAY,KAClD,YAAY,WAAW,KAAK,oBAAoB,aAAa,GAAG;AAChE,eAAO;AAAA,MACX;AACA,aAAO,GAAG,UAAU,YAAY,IAAI,KAAK,QAAQ,IAAI,GAAG;AAAA,IAC5D;AACA,WAAO,KAAK,UAAU,GAAG;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,qBAAqB,aAAa;AAC9B,UAAM,EAAE,cAAc,EAAE,IAAI,QAAQ,EAAG,IAAI,cAAc,kBAAkB,KAAK,YAAY,WAAW;AACvG,WAAO,KAAK,iBAAiB,GAAG,mBAAmB,SAAS,IAAI,OAAO,EAAE;AAAA,EAC7E;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB,aAAa;AAC1B,UAAM,EAAE,cAAc,EAAE,IAAI,QAAQ,EAAG,IAAI,cAAc,kBAAkB,KAAK,YAAY,WAAW;AACvG,WAAO,KAAK,iBAAiB,GAAG,mBAAmB,aAAa,IAAI,OAAO,EAAE;AAAA,EACjF;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB,aAAa;AAE1B,UAAM,EAAE,cAAc,EAAE,IAAI,QAAQ,EAAG,IAAI,cAAc,kBAAkB,KAAK,YAAY,WAAW;AACvG,WAAO,KAAK,iBAAiB,GAAG,mBAAmB,aAAa,IAAI,OAAO,EAAE;AAAA,EACjF;AAAA;AAAA;AAAA;AAAA,EAIA,mBAAmB,aAAa;AAC5B,UAAM,gBAAgB,KAAK,iBAAiB,WAAW;AACvD,UAAM,QAAQ,KAAK,kBAAkB,aAAa;AAClD,QAAI,CAAC,OAAO;AACR,aAAO;AAAA,IACX;AACA,UAAM,oBAAoB,KAAK,qBAAqB,KAAK;AACzD,WAAO,KAAK,kBAAkB,iBAAiB;AAAA,EACnD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,mBAAmB,OAAO,OAAO,mBAAmB,WAAW,SAAS;AACpE,SAAK,OAAO,MAAM,+CAA+C;AAEjE,UAAM,gBAAgB,KAAK,iBAAiB,KAAK;AACjD,SAAK,kBAAkB,eAAe,OAAO,KAAK;AAElD,UAAM,gBAAgB,KAAK,iBAAiB,KAAK;AACjD,SAAK,kBAAkB,eAAe,OAAO,KAAK;AAElD,UAAM,oBAAoB,KAAK,qBAAqB,KAAK;AACzD,SAAK,kBAAkB,mBAAmB,mBAAmB,KAAK;AAClE,QAAI,SAAS;AACT,YAAM,gBAAgB;AAAA,QAClB,YAAY,QAAQ;AAAA,QACpB,MAAM,kBAAkB;AAAA,MAC5B;AACA,WAAK,kBAAkB,mBAAmB,gBAAgB,KAAK,UAAU,aAAa,GAAG,IAAI;AAAA,IACjG,WACS,WAAW;AAChB,YAAM,gBAAgB;AAAA,QAClB,YAAY;AAAA,QACZ,MAAM,kBAAkB;AAAA,MAC5B;AACA,WAAK,kBAAkB,mBAAmB,gBAAgB,KAAK,UAAU,aAAa,GAAG,IAAI;AAAA,IACjG;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,kBAAkB,OAAO;AACrB,SAAK,OAAO,MAAM,8CAA8C;AAEhE,QAAI,OAAO;AACP,WAAK,QAAQ,EAAE,QAAQ,CAAC,QAAQ;AAC5B,YAAI,IAAI,QAAQ,KAAK,MAAM,IAAI;AAC3B,eAAK,WAAW,GAAG;AAAA,QACvB;AAAA,MACJ,CAAC;AAED,WAAK,WAAW,KAAK,iBAAiB,KAAK,CAAC;AAC5C,WAAK,WAAW,KAAK,iBAAiB,KAAK,CAAC;AAC5C,WAAK,WAAW,KAAK,qBAAqB,KAAK,CAAC;AAAA,IACpD;AACA,SAAK,WAAW,KAAK,iBAAiB,mBAAmB,cAAc,CAAC;AACxE,SAAK,WAAW,KAAK,iBAAiB,mBAAmB,UAAU,CAAC;AACpE,SAAK,WAAW,KAAK,iBAAiB,mBAAmB,QAAQ,CAAC;AAClE,SAAK,WAAW,KAAK,iBAAiB,mBAAmB,cAAc,CAAC;AACxE,SAAK,WAAW,KAAK,iBAAiB,mBAAmB,cAAc,CAAC;AACxE,SAAK,WAAW,KAAK,iBAAiB,mBAAmB,cAAc,CAAC;AACxE,SAAK,yBAAyB,KAAK;AAAA,EACvC;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,oBAAoB,aAAa;AAC7B,SAAK,OAAO,MAAM,gDAAgD;AAElE,QAAI,aAAa;AACb,YAAM,WAAW,KAAK,iBAAiB,WAAW;AAClD,YAAM,cAAc,KAAK,sBAAsB,QAAQ,QAAQ;AAC/D,WAAK,OAAO,QAAQ,sFAAsF,WAAW,EAAE;AACvH,WAAK,kBAAkB,eAAe,UAAU,YAAY;AAAA,IAChE;AACA,SAAK,iBAAiB;AAAA,EAC1B;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,8BAA8B,iBAAiB;AAC3C,SAAK,OAAO,MAAM,0DAA0D;AAE5E,SAAK,QAAQ,EAAE,QAAQ,CAAC,QAAQ;AAE5B,UAAI,IAAI,QAAQ,mBAAmB,aAAa,MAAM,IAAI;AACtD;AAAA,MACJ;AAEA,YAAM,aAAa,KAAK,sBAAsB,QAAQ,GAAG;AACzD,UAAI,CAAC,YAAY;AACb;AAAA,MACJ;AAEA,YAAM,cAAc,qBAAqB,2BAA2B,KAAK,YAAY,UAAU;AAC/F,UAAI,eACA,YAAY,oBAAoB,iBAAiB;AACjD,aAAK,OAAO,QAAQ,gGAAgG,UAAU,EAAE;AAChI,aAAK,kBAAkB,UAAU;AAAA,MACrC;AAAA,IACJ,CAAC;AACD,SAAK,iBAAiB;AACtB,SAAK,yBAAyB,KAAK;AAAA,EACvC;AAAA,EACA,iBAAiB,iBAAiB;AAC9B,SAAK,OAAO,MAAM,6CAA6C;AAC/D,UAAM,eAAe,aAAa,KAAK,UAAU,eAAe,CAAC;AACjE,SAAK,kBAAkB,mBAAmB,gBAAgB,cAAc,IAAI;AAAA,EAChF;AAAA;AAAA;AAAA;AAAA,EAIA,iBAAiB,OAAO;AACpB,SAAK,OAAO,MAAM,6CAA6C;AAE/D,UAAM,sBAAsB,KAAK,kBAAkB,mBAAmB,gBAAgB,IAAI;AAC1F,QAAI,CAAC,qBAAqB;AACtB,YAAM,uBAAuB,wBAAwB;AAAA,IACzD;AACA,QAAI;AACJ,QAAI;AACA,sBAAgB,KAAK,MAAM,aAAa,mBAAmB,CAAC;AAAA,IAChE,SACO,GAAG;AACN,WAAK,OAAO,SAAS,uBAAuB,mBAAmB,EAAE;AACjE,WAAK,OAAO,MAAM,kDAAkD,CAAC,EAAE;AACvE,YAAM,uBAAuB,mCAAmC;AAAA,IACpE;AACA,SAAK,WAAW,KAAK,iBAAiB,mBAAmB,cAAc,CAAC;AAExE,QAAI,CAAC,cAAc,WAAW;AAC1B,YAAM,oBAAoB,KAAK,qBAAqB,KAAK;AACzD,YAAM,kBAAkB,KAAK,kBAAkB,iBAAiB;AAChE,UAAI,CAAC,iBAAiB;AAClB,cAAM,uBAAuB,sBAAsB;AAAA,MACvD;AACA,oBAAc,YAAY;AAAA,IAC9B;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,yBAAyB;AACrB,SAAK,OAAO,MAAM,mDAAmD;AACrE,UAAM,gBAAgB,KAAK,kBAAkB,mBAAmB,gBAAgB,IAAI;AACpF,QAAI,CAAC,eAAe;AAChB,WAAK,OAAO,MAAM,4EAA4E;AAC9F,aAAO;AAAA,IACX;AACA,UAAM,gBAAgB,KAAK,qBAAqB,aAAa;AAC7D,QAAI,CAAC,eAAe;AAChB,WAAK,OAAO,MAAM,4EAA4E;AAC9F,aAAO;AAAA,IACX;AACA,WAAO;AAAA,EACX;AAAA,EACA,wBAAwB,eAAe;AACnC,UAAM,WAAW,KAAK,yBAAyB;AAC/C,QAAI,eAAe;AACf,aAAO,aAAa,KAAK;AAAA,IAC7B,OACK;AACD,aAAO,CAAC,CAAC;AAAA,IACb;AAAA,EACJ;AAAA,EACA,2BAA2B;AACvB,UAAM,MAAM,GAAG,UAAU,YAAY,IAAI,mBAAmB,sBAAsB;AAClF,WAAO,KAAK,kBAAkB,KAAK,KAAK;AAAA,EAC5C;AAAA,EACA,yBAAyB,YAAY;AAEjC,UAAM,MAAM,GAAG,UAAU,YAAY,IAAI,mBAAmB,sBAAsB;AAClF,QAAI,YAAY;AACZ,UAAI,KAAK,yBAAyB,GAAG;AACjC,cAAM,uBAAuB,qBAAqB;AAAA,MACtD,OACK;AAED,aAAK,kBAAkB,KAAK,KAAK,UAAU,KAAK;AAAA,MACpD;AAAA,IACJ,WACS,CAAC,cACN,KAAK,yBAAyB,MAAM,KAAK,UAAU;AACnD,WAAK,WAAW,GAAG;AAAA,IACvB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,qBAAqB;AAEjB,UAAM,oBAAoB,KAAK,kBAAkB,oBAAoB,aAAa;AAClF,QAAI,mBAAmB;AACnB,WAAK,eAAe,WAAW,oBAAoB,aAAa;AAChE,WAAK,OAAO,QAAQ,iCAAiC;AAAA,IACzD;AAEA,UAAM,oBAAoB,KAAK,kBAAkB,oBAAoB,UAAU,IAAI;AACnF,QAAI,mBAAmB;AACnB,WAAK,WAAW,KAAK,iBAAiB,oBAAoB,QAAQ,CAAC;AACnE,WAAK,OAAO,QAAQ,sCAAsC;AAAA,IAC9D;AACA,UAAM,sBAAsB,qBAAqB;AACjD,QAAI,qBAAqB;AACrB,YAAM,gBAAgB,kBAAU,mBAAmB,qBAAqB,YAAY;AACpF,UAAI,cAAc,oBAAoB;AAClC,aAAK,OAAO,QAAQ,2GAA2G;AAC/H,eAAO,cAAc;AAAA,MACzB,WACS,cAAc,KAAK;AACxB,aAAK,OAAO,QAAQ,4FAA4F;AAChH,eAAO,cAAc;AAAA,MACzB,OACK;AACD,aAAK,OAAO,QAAQ,wJAAwJ;AAAA,MAChL;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,yBAAyB,iBAAiB,YAAY;AAClD,UAAM,kBAAkB,WAAW,sBAAsB;AACzD,QAAI,oBAAoB,iBAAiB;AACrC,YAAM,YAAY,KAAK,QAAQ,eAAe;AAC9C,UAAI,WAAW;AACX,aAAK,WAAW,eAAe;AAC/B,aAAK,QAAQ,iBAAiB,SAAS;AACvC,aAAK,OAAO,QAAQ,uBAAuB,WAAW,cAAc,YAAY;AAChF,eAAO;AAAA,MACX,OACK;AACD,aAAK,OAAO,MAAM,mCAAmC,WAAW,cAAc,uEAAuE;AAAA,MACzJ;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA,EAIA,4BAA4B;AACxB,WAAO,KAAK,kBAAkB,mBAAmB,kBAAkB,IAAI;AAAA,EAC3E;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,0BAA0B,OAAO;AAC7B,SAAK,kBAAkB,mBAAmB,kBAAkB,OAAO,IAAI;AAAA,EAC3E;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,aAAa,QAAQ,SAAS;AAAA;AAChC,YAAM,gBAAgB,cAAc,oBAAoB,OAAO,SAAS,eAAe,OAAO,SAAS,aAAa,OAAO,SAAS,KAAK,UAAU,OAAO,QAAQ;AAClK,UAAI;AACJ,UAAI,QAAQ,QAAQ;AAChB,qBAAa,MAAM,KAAK,WAAW,WAAW,QAAQ,MAAM;AAAA,MAChE;AACA,YAAM,oBAAoB,kBAAkB;AAAA,QAAwB,OAAO,SAAS;AAAA,QAAe,OAAO,QAAQ;AAAA,QAAa,OAAO;AAAA,QAAa,KAAK;AAAA,QAAU,OAAO;AAAA,QAAU,OAAO,OAAO,KAAK,GAAG;AAAA,QAAG,OAAO,WAAW,QAAQ,KAAK;AAAA,QAAG,OAAO,cAAc,QAAQ,KAAK;AAAA,QAAG,KAAK;AAAA,QAAY;AAAA;AAAA,QACpS,OAAO;AAAA,QAAW;AAAA;AAAA,QAClB,QAAQ;AAAA,QAAQ,QAAQ;AAAA,QAAQ;AAAA,MAAU;AAC1C,YAAM,cAAc,IAAI,YAAY,QAAW,eAAe,iBAAiB;AAC/E,aAAO,KAAK,gBAAgB,WAAW;AAAA,IAC3C;AAAA;AACJ;AACA,IAAM,gCAAgC,CAAC,UAAU,WAAW;AACxD,QAAM,eAAe;AAAA,IACjB,eAAe,qBAAqB;AAAA,IACpC,wBAAwB,qBAAqB;AAAA,IAC7C,wBAAwB;AAAA,IACxB,eAAe;AAAA,IACf,uBAAuB;AAAA,IACvB,2BAA2B;AAAA,EAC/B;AACA,SAAO,IAAI,oBAAoB,UAAU,cAAc,+BAA+B,MAAM;AAChG;;;ACpyCA,IAAM,eAAN,MAAM,cAAa;AAAA;AAAA;AAAA;AAAA;AAAA,EAKf,OAAO,UAAU,eAAe;AAE5B,kBAAc,SAAS,OAAO,UAAU;AACxC,QAAI,OAAO,cAAc,QAAQ,iBAAiB,YAAY;AAE1D,oBAAc,QAAQ,aAAa,MAAM,UAAU,cAAc,GAAG,cAAc,SAAS,MAAM,GAAG,cAAc,SAAS,QAAQ,GAAG,cAAc,SAAS,MAAM,EAAE;AAAA,IACzK;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,YAAY,KAAK;AACpB,UAAM,WAAW,IAAI,MAAM,GAAG;AAC9B,aAAS,MAAM;AACf,WAAO,SAAS,OACZ,SAAS,SAAS,IAAI,SAAS,KAAK,GAAG,IAAI,UAAU;AAAA,EAC7D;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,aAAa;AAChB,WAAO,OAAO,WAAW;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,YAAY;AACf,WAAQ,OAAO,WAAW,eACtB,CAAC,CAAC,OAAO,UACT,OAAO,WAAW,UAClB,OAAO,OAAO,SAAS,YACvB,OAAO,KAAK,QAAQ,GAAG,iBAAiB,iBAAiB,GAAG,MAAM;AAAA,EAC1E;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,gBAAgB;AACnB,WAAO,OAAO,SAAS,KAAK,MAAM,GAAG,EAAE,CAAC,EAAE,MAAM,GAAG,EAAE,CAAC;AAAA,EAC1D;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,cAAc;AACjB,UAAM,aAAa,IAAI,UAAU,OAAO,SAAS,IAAI;AACrD,UAAM,gBAAgB,WAAW,iBAAiB;AAClD,WAAO,GAAG,cAAc,QAAQ,KAAK,cAAc,eAAe;AAAA,EACtE;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,6BAA6B;AAChC,UAAM,iBAAiB,UAAU,4BAA4B,OAAO,SAAS,IAAI;AAEjF,QAAI,kBAAkB,cAAa,WAAW,GAAG;AAC7C,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,sBAAsB,iBAAiB,uBAAuB;AACjE,UAAM,eAAe,cAAa,WAAW;AAC7C,QAAI,oBAAoB,gBAAgB,YACpC,gBACA,CAAC,uBAAuB;AAExB,YAAM,uBAAuB,gBAAgB;AAAA,IACjD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,OAAO,4BAA4B;AAE/B,QAAI,cAAa,UAAU,GAAG;AAC1B,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,2BAA2B,sBAAsB;AACpD,QAAI,CAAC,sBAAsB;AACvB,YAAM,uBAAuB,qBAAqB;AAAA,IACtD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,8BAA8B,aAAa;AAC9C,QAAI,CAAC,aAAa;AACd,YAAM,uBAAuB,oCAAoC;AAAA,IACrE;AAAA,EACJ;AACJ;;;ACjHA,IAAM,YAAY;AAAA,EACd,kBAAkB;AAAA,EAClB,gBAAgB;AAAA,EAChB,eAAe;AAAA,EACf,iBAAiB;AAAA,EACjB,aAAa;AAAA,EACb,eAAe;AAAA,EACf,eAAe;AAAA,EACf,qBAAqB;AAAA,EACrB,uBAAuB;AAAA,EACvB,uBAAuB;AAAA,EACvB,6BAA6B;AAAA,EAC7B,kBAAkB;AAAA,EAClB,oBAAoB;AAAA,EACpB,oBAAoB;AAAA,EACpB,6BAA6B;AAAA,EAC7B,+BAA+B;AAAA,EAC/B,+BAA+B;AAAA,EAC/B,uBAAuB;AAAA,EACvB,qBAAqB;AAAA,EACrB,cAAc;AAAA,EACd,cAAc;AAAA,EACd,gBAAgB;AAAA,EAChB,gBAAgB;AAAA,EAChB,YAAY;AAAA,EACZ,sBAAsB;AAC1B;;;ACtBA,IAAM,eAAN,MAAmB;AAAA,EACf,YAAY,QAAQ,eAAe;AAC/B,SAAK,iBAAiB,oBAAI,IAAI;AAC9B,SAAK,SAAS;AACd,SAAK,gBAAgB;AACrB,SAAK,2BAA2B;AAChC,SAAK,2BACD,KAAK,yBAAyB,KAAK,IAAI;AAAA,EAC/C;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB,UAAU;AACvB,QAAI,OAAO,WAAW,aAAa;AAC/B,YAAM,aAAa,cAAc;AACjC,WAAK,eAAe,IAAI,YAAY,QAAQ;AAC5C,WAAK,OAAO,QAAQ,sCAAsC,UAAU,EAAE;AACtE,aAAO;AAAA,IACX;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,oBAAoB,YAAY;AAC5B,SAAK,eAAe,OAAO,UAAU;AACrC,SAAK,OAAO,QAAQ,kBAAkB,UAAU,WAAW;AAAA,EAC/D;AAAA;AAAA;AAAA;AAAA,EAIA,6BAA6B;AACzB,QAAI,OAAO,WAAW,aAAa;AAC/B;AAAA,IACJ;AACA,QAAI,CAAC,KAAK,0BAA0B;AAChC,WAAK,OAAO,QAAQ,kCAAkC;AACtD,WAAK,2BAA2B;AAChC,aAAO,iBAAiB,WAAW,KAAK,wBAAwB;AAAA,IACpE,OACK;AACD,WAAK,OAAO,QAAQ,8CAA8C;AAAA,IACtE;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,8BAA8B;AAC1B,QAAI,OAAO,WAAW,aAAa;AAC/B;AAAA,IACJ;AACA,QAAI,KAAK,0BAA0B;AAC/B,WAAK,OAAO,QAAQ,oCAAoC;AACxD,aAAO,oBAAoB,WAAW,KAAK,wBAAwB;AACnE,WAAK,2BAA2B;AAAA,IACpC,OACK;AACD,WAAK,OAAO,QAAQ,yCAAyC;AAAA,IACjE;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,UAAU,WAAW,iBAAiB,SAAS,OAAO;AAClD,QAAI,OAAO,WAAW,aAAa;AAC/B,YAAM,UAAU;AAAA,QACZ;AAAA,QACA,iBAAiB,mBAAmB;AAAA,QACpC,SAAS,WAAW;AAAA,QACpB,OAAO,SAAS;AAAA,QAChB,WAAW,KAAK,IAAI;AAAA,MACxB;AACA,WAAK,OAAO,KAAK,mBAAmB,SAAS,EAAE;AAC/C,WAAK,eAAe,QAAQ,CAAC,UAAU,eAAe;AAClD,aAAK,OAAO,QAAQ,8BAA8B,UAAU,KAAK,SAAS,EAAE;AAC5E,iBAAS,MAAM,MAAM,CAAC,OAAO,CAAC;AAAA,MAClC,CAAC;AAAA,IACL;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA,EAIA,yBAAyB,GAAG;AACxB,QAAI;AACA,YAAM,aAAa,EAAE,YAAY,EAAE;AACnC,UAAI,CAAC,YAAY;AACb;AAAA,MACJ;AACA,YAAM,cAAc,KAAK,MAAM,UAAU;AACzC,UAAI,OAAO,gBAAgB,YACvB,CAAC,cAAc,gBAAgB,WAAW,GAAG;AAC7C;AAAA,MACJ;AACA,YAAM,gBAAgB,aAAa,SAAS,IAAI,cAAc,GAAG,WAAW;AAC5E,YAAM,cAAc,cAAc,eAAe;AACjD,UAAI,CAAC,EAAE,YAAY,EAAE,UAAU;AAC3B,aAAK,OAAO,KAAK,kDAAkD;AACnE,aAAK,UAAU,UAAU,eAAe,QAAW,WAAW;AAAA,MAClE,WACS,CAAC,EAAE,YAAY,EAAE,UAAU;AAChC,aAAK,OAAO,KAAK,sDAAsD;AACvE,aAAK,UAAU,UAAU,iBAAiB,QAAW,WAAW;AAAA,MACpE;AAAA,IACJ,SACOC,IAAG;AACN;AAAA,IACJ;AAAA,EACJ;AACJ;;;ACzHA,IAAMC,QAAO;AACb,IAAMC,WAAU;;;ACQhB,IAAM,wBAAN,MAA4B;AAAA,EACxB,YAAY,QAAQ,aAAa,eAAe,QAAQ,cAAc,kBAAkB,mBAAmB,sBAAsB,eAAe;AAC5I,SAAK,SAAS;AACd,SAAK,iBAAiB;AACtB,SAAK,gBAAgB;AACrB,SAAK,gBAAgB,KAAK,OAAO,OAAO;AACxC,SAAK,eAAe;AACpB,SAAK,mBAAmB;AACxB,SAAK,uBAAuB;AAC5B,SAAK,gBAAgB,iBAAiB,cAAc;AACpD,SAAK,SAAS,OAAO,MAAM,iBAAiB,UAAUC,UAAS,KAAK,aAAa;AACjF,SAAK,oBAAoB;AAAA,EAC7B;AAAA,EACM,mBAAmB,SAAS;AAAA;AAC9B,UAAI,SAAS;AACT,YAAI,cAAc,mBAAmB,SAAS,KAAK,eAAe,iBAAiB,GAAG,KAAK,GAAG;AAC1F,eAAK,OAAO,QAAQ,gCAAgC;AACpD,eAAK,eAAe,iBAAiB,IAAI;AAAA,QAC7C;AAEA,YAAI;AACA,gBAAM,KAAK,eAAe,cAAc,cAAc,wBAAwB,OAAO,CAAC;AACtF,eAAK,OAAO,QAAQ,8EAA8E;AAAA,QACtG,SACO,OAAO;AACV,eAAK,OAAO,MAAM,0EAA0E;AAAA,QAChG;AAAA,MACJ,OACK;AACD,YAAI;AACA,eAAK,OAAO,QAAQ,oEAAoE,KAAK,aAAa;AAE1G,gBAAM,KAAK,eAAe,MAAM;AAEhC,gBAAM,KAAK,cAAc,cAAc;AAAA,QAC3C,SACO,GAAG;AACN,eAAK,OAAO,MAAM,4EAA4E;AAAA,QAClG;AAAA,MACJ;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,sBAAsB,SAAS,SAAS;AAAA;AAC1C,WAAK,kBAAkB,oBAAoB,kBAAkB,uBAAuB,QAAQ,aAAa;AACzG,YAAM,YAAY,QAAQ,aAAa,KAAK,OAAO,KAAK;AACxD,UAAI,SAAS;AACT,cAAM,KAAK,yBAAyB,WAAW,OAAO;AAAA,MAC1D;AACA,YAAM,SAAS,CAAC,GAAK,WAAW,QAAQ,UAAW,CAAC,CAAE;AACtD,YAAM,mBAAmB,iCAClB,UADkB;AAAA,QAErB,eAAe,KAAK;AAAA,QACpB;AAAA,QACA;AAAA,MACJ;AAEA,UAAI,CAAC,iBAAiB,sBAAsB;AACxC,yBAAiB,uBAAuB,qBAAqB;AAC7D,aAAK,OAAO,QAAQ,wFAAyF;AAAA,MACjH,OACK;AACD,YAAI,iBAAiB,yBACjB,qBAAqB,KAAK;AAC1B,cAAI,CAAC,QAAQ,QAAQ;AACjB,kBAAM,+BAA+B,sCAA8B,aAAa;AAAA,UACpF;AACA,cAAI,CAAC,QAAQ,QAAQ;AACjB,kBAAM,+BAA+B,sCAA8B,aAAa;AAAA,UACpF;AAAA,QACJ;AACA,aAAK,OAAO,QAAQ,iCAAiC,iBAAiB,oBAAoB,iCAAiC;AAAA,MAC/H;AAEA,UAAI,KAAK,OAAO,MAAM,6BAClB,QAAQ;AAAA,MAER,CAAC,YAAY,WAAW,QAAQ,MAAM,GAAG;AACzC,yBAAiB,sBACb,MAAM,KAAK,cAAc,WAAW,QAAQ,MAAM;AAAA,MAC1D;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,eAAe,oBAAoB;AAC/B,SAAK,OAAO,QAAQ,uBAAuB;AAC3C,UAAM,cAAc,sBAChB,KAAK,OAAO,KAAK,eACjB,aAAa,cAAc;AAC/B,WAAO,UAAU,eAAe,aAAa,aAAa,cAAc,CAAC;AAAA,EAC7E;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,yBAAyB,WAAW,SAAS;AAAA;AAC/C,YAAM,sBAAsB,MAAM,KAAK,uBAAuB,SAAS;AACvE,UAAI,CAAC,oBAAoB,QAAQ,QAAQ,WAAW,GAAG;AACnD,cAAM,+BAA+B,sCAA8B,iBAAiB;AAAA,MACxF;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,iCAAiC,OAAO,cAAc;AAClD,SAAK,OAAO,QAAQ,yCAAyC;AAC7D,UAAM,mBAAmB;AAAA,MACrB,UAAU,KAAK,OAAO,KAAK;AAAA,MAC3B,eAAe,KAAK;AAAA,MACpB;AAAA,MACA,cAAc,gBAAgB;AAAA,MAC9B,YAAY,KAAK,eAAe,mBAAmB,EAAE,CAAC;AAAA,MACtD,YAAY,KAAK,eAAe,mBAAmB,EAAE,CAAC;AAAA,IAC1D;AACA,WAAO,IAAI,uBAAuB,kBAAkB,KAAK,cAAc;AAAA,EAC3E;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,uBAAuB,kBAAkB;AAAA;AAC3C,WAAK,OAAO,QAAQ,+BAA+B;AACnD,YAAM,mBAAmB;AAAA,QACrB,cAAc,KAAK,OAAO,KAAK;AAAA,QAC/B,aAAa,KAAK,OAAO,KAAK;AAAA,QAC9B,kBAAkB,KAAK,OAAO,KAAK;AAAA,QACnC,wBAAwB,KAAK,OAAO,KAAK;AAAA,QACzC,mBAAmB,KAAK,OAAO,KAAK;AAAA,MACxC;AACA,UAAI,kBAAkB;AAClB,aAAK,OAAO,QAAQ,sDAAsD;AAC1E,eAAO,MAAM,iBAAiB,yBAAyB,kBAAkB,KAAK,OAAO,OAAO,eAAe,KAAK,gBAAgB,kBAAkB,KAAK,MAAM;AAAA,MACjK;AACA,WAAK,OAAO,QAAQ,yDAAyD;AAC7E,aAAO,MAAM,iBAAiB,yBAAyB,KAAK,OAAO,KAAK,WAAW,KAAK,OAAO,OAAO,eAAe,KAAK,gBAAgB,kBAAkB,KAAK,MAAM;AAAA,IAC3K;AAAA;AACJ;;;ACnJA,IAAM,yBAAyB;AAO/B,SAAe,kBAAkB,mBAAmB,QAAQ,eAAe;AAAA;AACvE,sBAAkB,oBAAoB,kBAAkB,mBAAmB,aAAa;AACxF,UAAM,eAAe,OAAO,sBAAsB,kBAAkB,sBAAsB,QAAQ,mBAAmB,aAAa,EAAE,mBAAmB,QAAQ,aAAa;AAC5K,UAAM,gBAAgB,MAAM,YAAY,mCAAmC,kBAAkB,mCAAmC,QAAQ,mBAAmB,aAAa,EAAE,cAAc,mBAAmB,QAAQ,aAAa;AAChO,WAAO;AAAA,MACH,UAAU;AAAA,MACV,WAAW;AAAA,IACf;AAAA,EACJ;AAAA;AAKA,SAAS,qBAAqB,mBAAmB,QAAQ,eAAe;AACpE,MAAI;AAEA,UAAM,SAAS,IAAI,WAAW,sBAAsB;AACpD,WAAO,iBAAiB,kBAAkB,iBAAiB,QAAQ,mBAAmB,aAAa,EAAE,MAAM;AAE3G,UAAM,sBAAsB,aAAa,MAAM;AAC/C,WAAO;AAAA,EACX,SACO,GAAG;AACN,UAAM,uBAAuB,cAAc;AAAA,EAC/C;AACJ;AAKA,SAAe,kCAAkC,kBAAkB,mBAAmB,QAAQ,eAAe;AAAA;AACzG,sBAAkB,oBAAoB,kBAAkB,mCAAmC,aAAa;AACxG,QAAI;AAEA,YAAM,yBAAyB,MAAM,YAAY,cAAc,kBAAkB,cAAc,QAAQ,mBAAmB,aAAa,EAAE,kBAAkB,mBAAmB,aAAa;AAE3L,aAAO,aAAa,IAAI,WAAW,sBAAsB,CAAC;AAAA,IAC9D,SACO,GAAG;AACN,YAAM,uBAAuB,cAAc;AAAA,IAC/C;AAAA,EACJ;AAAA;;;ACzCA,IAAM,4BAAN,cAAwC,sBAAsB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKpD,mCAAmC,SAAS;AAAA;AAC9C,WAAK,kBAAkB,oBAAoB,kBAAkB,6DAA6D,QAAQ,aAAa;AAC/I,YAAM,sBAAsB,MAAM,YAAY,mBAAmB,kBAAkB,mBAAmB,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,KAAK,mBAAmB,KAAK,QAAQ,KAAK,aAAa;AACtN,YAAM,kBAAkB,iCACjB,UADiB;AAAA,QAEpB,aAAa,QAAQ;AAAA,QACrB,MAAM,UAAU;AAAA,QAChB,cAAc,oBAAoB;AAAA,MACtC;AACA,cAAQ,gBAAgB,oBAAoB;AAC5C,cAAQ,sBAAsB,UAAU;AACxC,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,wBAAwB,eAAe;AACnC,SAAK,OAAO,QAAQ,kCAAkC,eAAe,aAAa;AAClF,UAAM,qBAAqB;AAAA,MACvB,eAAe,KAAK,iBAAiB,cAAc;AAAA,OAChD;AAMP,QAAI,eAAe;AAEf,UAAI,CAAC,cAAc,YAAY;AAC3B,YAAI,cAAc,SAAS;AACvB,gBAAM,aAAa,KAAK,+BAA+B,cAAc,OAAO;AAC5E,cAAI,YAAY;AACZ,iBAAK,OAAO,QAAQ,gFAAgF;AACpG,+BAAmB,aAAa;AAAA,UACpC;AAAA,QACJ,OACK;AACD,eAAK,OAAO,QAAQ,mGAAmG;AAAA,QAC3H;AAAA,MACJ,OACK;AACD,aAAK,OAAO,QAAQ,kDAAkD;AAAA,MAC1E;AAAA,IACJ,OACK;AACD,WAAK,OAAO,QAAQ,mEAAmE;AAAA,IAC3F;AAKA,QAAI,CAAC,iBAAiB,cAAc,0BAA0B,MAAM;AAChE,UAAI,iBAAiB,cAAc,uBAAuB;AACtD,aAAK,OAAO,QAAQ,8DAA8D,mBAAmB,aAAa;AAClH,2BAAmB,wBACf,UAAU,eAAe,cAAc,uBAAuB,aAAa,cAAc,CAAC;AAAA,MAClG,WACS,KAAK,OAAO,KAAK,0BAA0B,MAAM;AACtD,aAAK,OAAO,QAAQ,wGAAwG,mBAAmB,aAAa;AAAA,MAChK,WACS,KAAK,OAAO,KAAK,uBAAuB;AAC7C,aAAK,OAAO,QAAQ,mDAAmD,mBAAmB,aAAa;AACvG,2BAAmB,wBACf,UAAU,eAAe,KAAK,OAAO,KAAK,uBAAuB,aAAa,cAAc,CAAC;AAAA,MACrG,OACK;AACD,aAAK,OAAO,QAAQ,iDAAiD,mBAAmB,aAAa;AACrG,2BAAmB,wBACf,UAAU,eAAe,aAAa,cAAc,GAAG,aAAa,cAAc,CAAC;AAAA,MAC3F;AAAA,IACJ,OACK;AACD,WAAK,OAAO,QAAQ,8EAA8E,mBAAmB,aAAa;AAAA,IACtI;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,+BAA+B,SAAS;AACpC,UAAM,gBAAgB,QAAQ;AAC9B,QAAI,eAAe;AACf,UAAI,cAAc,YAAY;AAC1B,eAAO,cAAc;AAAA,MACzB,OACK;AACD,aAAK,OAAO,QAAQ,oIAAoI;AAAA,MAC5J;AAAA,IACJ,OACK;AACD,WAAK,OAAO,QAAQ,uGAAuG;AAAA,IAC/H;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,qBAAqB,wBAAwB,cAAc,0BAA0B;AAAA;AACvF,WAAK,kBAAkB,oBAAoB,kBAAkB,+CAA+C,KAAK,aAAa;AAE9H,YAAM,eAAe,MAAM,YAAY,KAAK,uBAAuB,KAAK,IAAI,GAAG,kBAAkB,iDAAiD,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,wBAAwB,cAAc,wBAAwB;AACzQ,aAAO,IAAI,wBAAwB,cAAc,KAAK,iBAAiB;AAAA,IAC3E;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,uBAAuB,wBAAwB,kBAAkB,0BAA0B;AAAA;AAC7F,WAAK,kBAAkB,oBAAoB,kBAAkB,iDAAiD,KAAK,aAAa;AAChI,YAAM,sBAAsB,MAAM,YAAY,KAAK,uBAAuB,KAAK,IAAI,GAAG,kBAAkB,iDAAiD,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,kBAAkB,wBAAwB;AAC5P,YAAM,SAAS,KAAK,OAAO,OAAO;AAClC,aAAO;AAAA,QACH,aAAa;AAAA,UACT,UAAU,KAAK,OAAO,KAAK;AAAA,UAC3B,WAAW;AAAA,UACX,oBAAoB,KAAK,OAAO,KAAK;AAAA,QACzC;AAAA,QACA,eAAe;AAAA,UACX,2BAA2B,KAAK,OAAO,OAAO;AAAA,UAC9C,sBAAsB;AAAA,QAC1B;AAAA,QACA,eAAe;AAAA,UACX,gBAAgB,OAAO;AAAA,UACvB,mBAAmB,OAAO;AAAA,UAC1B,UAAU,OAAO;AAAA,UACjB,eAAe,KAAK;AAAA,QACxB;AAAA,QACA,cAAc;AAAA,UACV,2BAA2B,KAAK,OAAO,MAAM;AAAA,QACjD;AAAA,QACA,iBAAiB,KAAK;AAAA,QACtB,kBAAkB,KAAK;AAAA,QACvB,kBAAkB,KAAK;AAAA,QACvB;AAAA,QACA,aAAa;AAAA,UACT,KAAK,iBAAiB;AAAA,UACtB,SAASC;AAAA,UACT,KAAK,UAAU;AAAA,UACf,IAAI,UAAU;AAAA,QAClB;AAAA,QACA,WAAW,KAAK,OAAO;AAAA,MAC3B;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gCAAgC,cAAc,iBAAiB,sBAAsB;AACjF,SAAK,OAAO,QAAQ,0CAA0C,oBAAoB;AAClF,QAAI,CAAC,aAAa,OAAO;AACrB,YAAM,uBAAuB,aAAa;AAAA,IAC9C;AACA,UAAM,mBAAmB,qBAAqB,2BAA2B,KAAK,eAAe,aAAa,KAAK;AAC/G,QAAI,CAAC,kBAAkB;AACnB,YAAM,uBAAuB,kBAAkB;AAAA,IACnD;AACA,QAAI,iBAAiB,oBAAoB,iBAAiB;AACtD,YAAM,uBAAuB,4BAA4B;AAAA,IAC7D;AACA,SAAK,OAAO,QAAQ,6BAA6B,oBAAoB;AACrE,WAAO,aAAa;AAAA,EACxB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,uBAAuB,kBAAkB,0BAA0B;AAAA;AACrE,WAAK,kBAAkB,oBAAoB,kBAAkB,iDAAiD,KAAK,aAAa;AAChI,YAAM,mBAAmB;AAAA,QACrB,cAAc,KAAK,OAAO,KAAK;AAAA,QAC/B,aAAa,KAAK,OAAO,KAAK;AAAA,QAC9B,kBAAkB,KAAK,OAAO,KAAK;AAAA,QACnC,wBAAwB,KAAK,OAAO,KAAK;AAAA,QACzC,mBAAmB,KAAK,OAAO,KAAK;AAAA,QACpC,4BAA4B,KAAK,OAAO,KAAK;AAAA,MACjD;AAEA,YAAM,gBAAgB,mBAChB,mBACA,KAAK,OAAO,KAAK;AAEvB,YAAM,iBAAiB,UAAU,kBAAkB,eAAe,4BAA4B,KAAK,OAAO,KAAK,iBAAiB;AAChI,aAAO,MAAM,YAAY,iBAAiB,yBAAyB,KAAK,gBAAgB,GAAG,kBAAkB,0CAA0C,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,gBAAgB,KAAK,OAAO,OAAO,eAAe,KAAK,gBAAgB,kBAAkB,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa;AAAA,IACpW;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,+BAA+B,SAAS,iBAAiB;AAAA;AAC3D,WAAK,kBAAkB,oBAAoB,kBAAkB,yDAAyD,KAAK,aAAa;AACxI,YAAM,cAAc,KAAK,eAAe,QAAQ,WAAW;AAC3D,YAAM,eAAe;AAAA,QACjB;AAAA,MACJ;AACA,YAAM,QAAQ,cAAc,gBAAgB,KAAK,eAAgB,WAAW,QAAQ,SAAU,UAAU,cAAc,YAAY;AAClI,YAAM,cAAc,MAAM,YAAY,KAAK,sBAAsB,KAAK,IAAI,GAAG,kBAAkB,uBAAuB,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,OAAO;AACtL,YAAM,mBAAmB,iCAClB,cADkB;AAAA,QAErB;AAAA,QACA;AAAA,QACA,OAAO,QAAQ,SAAS,cAAc;AAAA,QACtC,cAAc,KAAK,OAAO,KAAK,YAC1B;AAAA,MACT;AACA,YAAM,UAAU,QAAQ,WAAW,KAAK,eAAe,iBAAiB;AACxE,UAAI,SAAS;AACT,aAAK,OAAO,QAAQ,qCAAqC,KAAK,aAAa;AAC3E,aAAK,OAAO,WAAW,sCAAsC,QAAQ,aAAa,IAAI,KAAK,aAAa;AACxG,yBAAiB,UAAU;AAAA,MAC/B;AAEA,UAAI,CAAC,iBAAiB,aAAa,CAAC,SAAS;AACzC,cAAM,kBAAkB,KAAK,eAAe,mBAAmB;AAC/D,YAAI,iBAAiB;AACjB,2BAAiB,YAAY;AAAA,QACjC;AAAA,MACJ;AACA,aAAO;AAAA,IACX;AAAA;AACJ;;;ACvPA,IAAM,eAAe;AACrB,IAAM,aAAa;;;ACAnB,IAAM,4BAA4B;AAClC,IAAM,cAAc;AACpB,IAAM,aAAa;AACnB,IAAM,mBAAmB;AACzB,IAAM,WAAW;AACjB,IAAM,sBAAsB;;;ACA5B,IAAM,uBAAuB;AAC7B,IAAM,0BAA0B;AAAA,EAC5B,CAAC,UAAU,GAAG;AAClB;AACA,IAAM,kBAAN,MAAM,yBAAwB,UAAU;AAAA,EACpC,YAAY,WAAW,aAAa,KAAK;AACrC,UAAM,WAAW,WAAW;AAC5B,WAAO,eAAe,MAAM,iBAAgB,SAAS;AACrD,SAAK,OAAO;AACZ,SAAK,MAAM;AAAA,EACf;AACJ;AAIA,SAAS,uBAAuB,OAAO;AACnC,MAAI,MAAM,OACN,MAAM,IAAI,WACT,MAAM,IAAI,WAAW,oBAClB,MAAM,IAAI,WAAW,WAAW;AACpC,WAAO;AAAA,EACX;AACA,MAAI,MAAM,OACN,MAAM,IAAI,SACV,MAAM,IAAI,UAAU,sBAAsB;AAC1C,WAAO;AAAA,EACX;AACA,UAAQ,MAAM,WAAW;AAAA,IACrB,KAAK;AACD,aAAO;AAAA,IACX;AACI,aAAO;AAAA,EACf;AACJ;AAQA,SAAS,sBAAsB,MAAM,aAAa,KAAK;AACnD,MAAI,OAAO,IAAI,QAAQ;AACnB,YAAQ,IAAI,QAAQ;AAAA,MAChB,KAAK;AACD,eAAO,mCAAmC,0CAAkC,wBAAwB;AAAA,MACxG,KAAK;AACD,eAAO,IAAI,6BAA6B,MAAM,WAAW;AAAA,MAC7D,KAAK;AACD,eAAO,uBAAuB,aAAa;AAAA,MAC/C,KAAK;AACD,eAAO,uBAAuBC,sBAAqB;AAAA,IAC3D;AAAA,EACJ;AACA,SAAO,IAAI,gBAAgB,MAAM,wBAAwB,IAAI,KAAK,aAAa,GAAG;AACtF;;;ACvDA,IAAM,oBAAN,cAAgC,0BAA0B;AAAA;AAAA;AAAA;AAAA;AAAA,EAKhD,aAAa,eAAe;AAAA;AAE9B,YAAM,yBAAyB,KAAK,iCAAiC,MAAM,6BAA6B;AACxG,YAAM,mBAAmB,MAAM,KAAK,uBAAuB,wBAAwB,cAAc,WAAW,cAAc,iBAAiB;AAC3I,WAAK,OAAO,QAAQ,4BAA4B;AAChD,UAAI;AACA,cAAM,WAAW,MAAM,iBAAiB,mBAAmB,aAAa;AACxE,cAAM,eAAe,SAAS,CAAC;AAC/B,aAAK,kBAAkB,UAAU;AAAA,UAC7B,WAAW;AAAA,QACf,GAAG,cAAc,aAAa;AAC9B,eAAO;AAAA,MACX,SACO,OAAO;AACV,YAAI,iBAAiB,oBACjB,MAAM,cAAc,mBAAmB;AACvC,eAAK,OAAO,QAAQ,sHAAsH;AAAA,QAC9I;AACA,cAAM;AAAA,MACV;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,eAAe;AAClB,SAAK,OAAO,QAAQ,uBAAuB;AAC3C,UAAM,qBAAqB,KAAK,wBAAwB,aAAa;AACrE,WAAO,KAAK,mBAAmB,oBAAoB,OAAO;AAAA,EAC9D;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,uBAAuB,wBAAwB,cAAc,mBAAmB;AAAA;AAElF,YAAM,eAAe,MAAM,YAAY,KAAK,uBAAuB,KAAK,IAAI,GAAG,kBAAkB,iDAAiD,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,wBAAwB,cAAc,iBAAiB;AAClQ,aAAO,IAAI,iBAAiB,cAAc,KAAK,iBAAiB;AAAA,IACpE;AAAA;AAAA,EACM,wBAAwB,SAAS,SAAS;AAAA;AAC5C,WAAK,kBAAkB,oBAAoB,kBAAkB,yBAAyB,KAAK,aAAa;AACxG,YAAM,cAAc,MAAM,YAAY,KAAK,sBAAsB,KAAK,IAAI,GAAG,kBAAkB,uBAAuB,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,SAAS,OAAO;AAC/L,aAAO,gDACA,UACA,cAFA;AAAA,QAGH;AAAA,QACA,cAAc,QAAQ,gBAAgB;AAAA,MAC1C;AAAA,IACJ;AAAA;AACJ;;;ACnDA,IAAM,wBAAwB;AAAA,EAC1B,kBAAkB;AAAA,EAClB,qBAAqB;AACzB;AACA,IAAM,0BAAN,cAAsC,sBAAsB;AAAA,EACxD,YAAY,QAAQ,gBAAgB,eAAe,QAAQ,cAAc,kBAAkB,OAAO,mBAAmB,UAAU,WAAW,mBAAmB,eAAe;AACxK,UAAM,QAAQ,gBAAgB,eAAe,QAAQ,cAAc,kBAAkB,mBAAmB,UAAU,aAAa;AAC/H,SAAK,QAAQ;AACb,SAAK,YAAY;AACjB,SAAK,uBAAuB;AAC5B,SAAK,uBAAuB;AAC5B,SAAK,oBAAoB,IAAI,kBAAkB,QAAQ,KAAK,sBAAsB,eAAe,QAAQ,cAAc,kBAAkB,mBAAmB,UAAU,aAAa;AAAA,EACvL;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,aAAa,SAAS;AAAA;AACxB,WAAK,kBAAkB,oBAAoB,kBAAkB,qCAAqC,QAAQ,aAAa;AACvH,WAAK,OAAO,MAAM,gDAAgD;AAElE,YAAM,sBAAsB,KAAK,kBAAkB,iBAAiB,kBAAkB,qCAAqC,QAAQ,aAAa;AAChJ,YAAM,eAAe,UAAU,WAAW;AAE1C,YAAM,gBAAgB,MAAM,KAAK,wBAAwB,OAAO;AAEhE,UAAI;AACA,cAAM,SAAS,MAAM,KAAK,uBAAuB,KAAK,WAAW,aAAa;AAC9E,4BAAoB,IAAI;AAAA,UACpB,SAAS;AAAA,UACT,gBAAgB;AAAA,UAChB,WAAW;AAAA,QACf,CAAC;AACD,eAAO;AAAA,MACX,SACO,GAAG;AAEN,aAAK,OAAO,KAAK,4EAA4E;AAAA,MACjG;AAEA,YAAM,cAAc;AAAA,QAChB,QAAQ,sBAAsB;AAAA,QAC9B,SAAS;AAAA,MACb;AACA,YAAM,WAAW,MAAM,KAAK,qBAAqB,YAAY,WAAW;AACxE,YAAM,oBAAoB,KAAK,uBAAuB,QAAQ;AAC9D,aAAO,KAAK,qBAAqB,mBAAmB,eAAe,YAAY,EAC1E,KAAK,CAAC,WAAW;AAClB,4BAAoB,IAAI;AAAA,UACpB,SAAS;AAAA,UACT,gBAAgB;AAAA,UAChB,WAAW,OAAO;AAAA,QACtB,CAAC;AACD,eAAO;AAAA,MACX,CAAC,EACI,MAAM,CAAC,UAAU;AAClB,4BAAoB,IAAI;AAAA,UACpB,SAAS;AAAA,UACT,WAAW,MAAM;AAAA,UACjB,cAAc,MAAM;AAAA,UACpB,gBAAgB;AAAA,QACpB,CAAC;AACD,cAAM;AAAA,MACV,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,yBAAyB,SAAS,eAAe;AAC7C,WAAO;AAAA,MACH,WAAW,QAAQ;AAAA,MACnB,eAAe,KAAK;AAAA,MACpB,QAAQ,SAAS,WAAW,QAAQ,KAAK,EAAE,QAAQ;AAAA,MACnD,SAAS;AAAA,MACT,cAAc;AAAA,IAClB;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,uBAAuB,iBAAiB,SAAS;AAAA;AACnD,UAAI,CAAC,iBAAiB;AAClB,aAAK,OAAO,QAAQ,8EAA8E;AAClG,cAAM,sBAAsB,6BAAqB,cAAc;AAAA,MACnE;AAEA,YAAM,UAAU,KAAK,eAAe,yBAAyB;AAAA,QACzD;AAAA,MACJ,CAAC;AACD,UAAI,CAAC,SAAS;AACV,cAAM,sBAAsB,6BAAqB,cAAc;AAAA,MACnE;AAEA,UAAI;AACA,cAAM,gBAAgB,KAAK,yBAAyB,SAAS,OAAO;AACpE,cAAM,SAAS,MAAM,KAAK,kBAAkB,aAAa,aAAa;AACtE,eAAO,iCACA,SADA;AAAA,UAEH;AAAA,QACJ;AAAA,MACJ,SACO,GAAG;AACN,cAAM;AAAA,MACV;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,qBAAqB,SAAS;AAAA;AAChC,WAAK,OAAO,MAAM,wDAAwD;AAC1E,YAAM,gBAAgB,MAAM,KAAK,wBAAwB,OAAO;AAChE,YAAM,cAAc;AAAA,QAChB,QAAQ,sBAAsB;AAAA,QAC9B,SAAS;AAAA,MACb;AACA,UAAI;AACA,cAAM,WAAW,MAAM,KAAK,qBAAqB,YAAY,WAAW;AACxE,aAAK,uBAAuB,QAAQ;AAAA,MACxC,SACO,GAAG;AAEN,YAAI,aAAa,mBAAmB,uBAAuB,CAAC,GAAG;AAC3D,gBAAM;AAAA,QACV;AAAA,MACJ;AACA,WAAK,eAAe,kBAAkB,mBAAmB,gBAAgB,KAAK,UAAU,aAAa,GAAG,IAAI;AAC5G,YAAM,oBAAoB;AAAA,QACtB,OAAO,MAAM;AAAA,QACb,SAAS,KAAK,OAAO,OAAO;AAAA,QAC5B,WAAW;AAAA,MACf;AACA,YAAM,cAAc,KAAK,OAAO,KAAK,4BAC/B,OAAO,SAAS,OAChB,KAAK,eAAe,QAAQ,WAAW;AAC7C,YAAM,KAAK,iBAAiB,iBAAiB,aAAa,iBAAiB;AAAA,IAC/E;AAAA;AAAA;AAAA;AAAA;AAAA,EAIM,wBAAwB;AAAA;AAC1B,WAAK,OAAO,MAAM,yDAAyD;AAC3E,UAAI,CAAC,KAAK,eAAe,wBAAwB,IAAI,GAAG;AACpD,aAAK,OAAO,KAAK,uFAAuF;AACxG,eAAO;AAAA,MACX;AAEA,YAAM,gBAAgB,KAAK,eAAe,uBAAuB;AACjE,UAAI,CAAC,eAAe;AAChB,aAAK,OAAO,QAAQ,wGAAwG;AAC5H,eAAO;AAAA,MACX;AACA,YAA+B,oBAAvB,SA9KhB,IA8KuC,IAAZ,oBAAY,IAAZ,CAAX;AACR,UAAI,QAAQ;AACR,aAAK,OAAO,QAAQ,sMAAsM;AAAA,MAC9N;AACA,WAAK,eAAe,WAAW,KAAK,eAAe,iBAAiB,mBAAmB,cAAc,CAAC;AACtG,YAAM,cAAc;AAAA,QAChB,QAAQ,sBAAsB;AAAA,QAC9B;AAAA,MACJ;AACA,YAAM,eAAe,UAAU,WAAW;AAC1C,UAAI;AACA,aAAK,OAAO,QAAQ,mFAAmF;AACvG,cAAM,WAAW,MAAM,KAAK,qBAAqB,YAAY,WAAW;AACxE,aAAK,uBAAuB,QAAQ;AACpC,cAAM,SAAS,KAAK,qBAAqB,UAAU,SAAS,YAAY;AACxE,aAAK,eAAe,yBAAyB,KAAK;AAClD,eAAO;AAAA,MACX,SACO,GAAG;AACN,aAAK,eAAe,yBAAyB,KAAK;AAClD,cAAM;AAAA,MACV;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,SAAS;AACL,SAAK,OAAO,MAAM,0CAA0C;AAC5D,WAAO,QAAQ,OAAO,4BAA4B;AAAA,EACtD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,qBAAqB,UAAU,SAAS,cAAc;AAAA;AACxD,WAAK,OAAO,MAAM,wDAAwD;AAC1E,UAAI,SAAS,QAAQ,OAAO,QAAQ,WAAW;AAE3C,cAAM,sBAAsB,UAAU;AAAA,MAC1C;AAEA,YAAM,YAAY,MAAM,KAAK,uBAAuB,QAAQ,SAAS;AAErE,YAAM,gBAAgB,kBAAU,mBAAmB,SAAS,UAAU,YAAY;AAClF,YAAM,wBAAwB,KAAK,4BAA4B,UAAU,aAAa;AACtF,YAAM,gBAAgB,cAAc,cAAc;AAAA,QAC9C,eAAe;AAAA,QACf;AAAA,QACA,YAAY,SAAS;AAAA,QACrB,iBAAiB,SAAS,QAAQ;AAAA,MACtC,GAAG,SAAS;AAEZ,YAAM,SAAS,MAAM,KAAK,6BAA6B,UAAU,SAAS,eAAe,eAAe,UAAU,oBAAoB,YAAY;AAElJ,WAAK,aAAa,aAAa;AAC/B,WAAK,kBAAkB,UAAU,SAAS,uBAAuB,eAAe,OAAO,aAAa,OAAO,UAAU,YAAY;AACjI,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,4BAA4B,UAAU,eAAe;AAEjD,UAAM,wBAAwB,cAAc,sBAAsB,SAAS,eAAe,UAAU,cAAc,cAAc,SAAS,KAAK,QAAQ,KAAK,eAAe,aAAa;AACvL,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,eAAe,UAAU,SAAS;AAC9B,WAAO,SAAS,QACV,SAAS,WAAW,SAAS,KAAK,IAClC,SAAS,WAAW,QAAQ,KAAK;AAAA,EAC3C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,uBAAuB,UAAU,SAAS;AAAA;AAC5C,UAAI,QAAQ,cAAc,qBAAqB,KAAK;AAMhD,YAAI,SAAS,KAAK;AACd,eAAK,OAAO,MAAM,4DAA4D;AAC9E,iBAAO,SAAS;AAAA,QACpB;AAEA,cAAM,oBAAoB,IAAI,kBAAkB,KAAK,aAAa;AAClE,cAAM,gBAAgB;AAAA,UAClB,uBAAuB,QAAQ;AAAA,UAC/B,oBAAoB,QAAQ;AAAA,UAC5B,WAAW,QAAQ;AAAA,UACnB,UAAU,QAAQ;AAAA,QACtB;AAKA,YAAI,CAAC,QAAQ,OAAO;AAChB,gBAAM,sBAAsB,6BAAqB,YAAY;AAAA,QACjE;AACA,eAAO,MAAM,kBAAkB,aAAa,SAAS,cAAc,QAAQ,OAAO,aAAa;AAAA,MACnG,OACK;AACD,eAAO,SAAS;AAAA,MACpB;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAWM,6BAA6B,UAAU,SAAS,eAAe,eAAe,WAAW,cAAc;AAAA;AAEzG,YAAM,OAAO,KAAK,+BAA+B,QAAQ;AAEzD,YAAM,iBAAiB,SAAS,QAC1B,SAAS,WAAW,SAAS,KAAK,IAClC,SAAS,WAAW,QAAQ,KAAK;AACvC,YAAM,oBAAoB,SAAS,QAAQ,cAAc,CAAC;AAC1D,YAAM,MAAM,kBAAkB,KAAK,KAC/B,cAAc,OACd,cAAc,OACd,UAAU;AACd,YAAM,MAAM,kBAAkB,UAAU,KACpC,cAAc,OACd,UAAU;AAEd,YAAM,sBAAsB,MAAM,KAAK,uBAAuB,UAAU,OAAO;AAC/E,YAAM,YAAY,QAAQ,cAAc,qBAAqB,MACvD,qBAAqB,MACrB,qBAAqB;AAC3B,YAAM,SAAS;AAAA,QACX;AAAA,QACA,UAAU;AAAA,QACV,UAAU;AAAA,QACV,QAAQ,eAAe,QAAQ;AAAA,QAC/B,SAAS,cAAc,eAAe;AAAA,QACtC,SAAS,SAAS;AAAA,QAClB;AAAA,QACA,aAAa;AAAA,QACb,WAAW,OAAO,KAAK,oBAAoB,IAAI,IAAI;AAAA,QACnD,WAAW,IAAI,KAAK,OAAO,eAAe,SAAS,UAAU,IAAI,GAAI;AAAA,QACrE;AAAA,QACA,eAAe,KAAK;AAAA,QACpB,OAAO,SAAS;AAAA,QAChB,kBAAkB;AAAA,MACtB;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,aAAa,eAAe;AAExB,SAAK,eAAe,WAAW,aAAa;AAE5C,SAAK,eAAe,qBAAqB,aAAa,EAAE,MAAM,CAAC,MAAM;AACjE,WAAK,OAAO,MAAM,uEAAuE,CAAC,EAAE;AAAA,IAChG,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAWA,kBAAkB,UAAU,SAAS,uBAAuB,eAAe,qBAAqB,UAAU,cAAc;AACpH,UAAM,gBAAgB,cAAc,oBAAoB,uBAAuB,QAAQ,WAAW,SAAS,YAAY,IAAI,QAAQ,UAAU,cAAc,OAAO,EAAE;AAEpK,UAAM,YAAY,QAAQ,cAAc,qBAAqB,MACvD,UAAU,sBACT,OAAO,SAAS,eAAe,WAC5B,SAAS,SAAS,YAAY,EAAE,IAChC,SAAS,eAAe;AAClC,UAAM,yBAAyB,eAAe;AAC9C,UAAM,iBAAiB,KAAK,eAAe,UAAU,OAAO;AAC5D,UAAM,oBAAoB,kBAAkB,wBAAwB,uBAAuB,QAAQ,WAAW,qBAAqB,QAAQ,UAAU,cAAc,OAAO,UAAU,eAAe,YAAY,GAAG,wBAAwB,GAAG,KAAK,aAAa;AAC/P,UAAM,oBAAoB,IAAI,YAAY,QAAW,eAAe,iBAAiB;AACrF,SAAK,KAAK,qBAAqB,gBAAgB,mBAAmB,QAAQ,YAAY;AAAA,EAC1F;AAAA,EACA,+BAA+B,UAAU;AACrC,UAAM,OAAO,KAAK,oBAAoB,QAAQ;AAC9C,QAAI,CAAC,MAAM;AACP,aAAO;AAAA,IACX;AACA,SAAK,kBAAkB,UAAU;AAAA,MAC7B,aAAa,KAAK,qBAAqB,eAAe;AAAA,MACtD,kBAAkB,KAAK,qBAAqB,oBAAoB;AAAA,MAChE,mBAAmB,KAAK;AAAA,MACxB,wBAAwB,KAAK;AAAA,MAC7B,sBAAsB,KAAK;AAAA,MAC3B,gBAAgB,KAAK;AAAA,MACrB,oBAAoB,KAAK;AAAA,MACzB,kBAAkB,KAAK;AAAA,MACvB,eAAe,KAAK;AAAA,MACpB,gBAAgB,KAAK;AAAA,MACrB,qBAAqB,KAAK;AAAA,MAC1B,mBAAmB,KAAK;AAAA,MACxB,kBAAkB,KAAK;AAAA,MACvB,gBAAgB,KAAK;AAAA,MACrB,oBAAoB,KAAK;AAAA,IAC7B,GAAG,KAAK,aAAa;AACrB,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,uBAAuB,UAAU;AAC7B,QAAI,SAAS,eAAe,cAAc,KACtC,SAAS,eAAe,UAAU,KAClC,SAAS,eAAe,aAAa,KACrC,SAAS,eAAe,SAAS,KACjC,SAAS,eAAe,OAAO,KAC/B,SAAS,eAAe,YAAY,GAAG;AACvC,aAAO;AAAA,IACX,OACK;AACD,YAAM,gBAAgB,uBAAe,iBAAiB,uCAAuC;AAAA,IACjG;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,oBAAoB,UAAU;AAC1B,QAAI,SAAS,WAAW,MAAM;AAC1B,UAAI;AACA,eAAO,KAAK,MAAM,SAAS,WAAW,IAAI;AAAA,MAC9C,SACO,GAAG;AACN,aAAK,OAAO,MAAM,gFAAgF;AAAA,MACtG;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,oBAAoB,MAAM;AACtB,QAAI,OAAO,KAAK,cAAc,aAAa;AACvC,WAAK,OAAO,QAAQ,gIAAgI;AACpJ,aAAO;AAAA,IACX;AACA,WAAO,CAAC,CAAC,KAAK;AAAA,EAClB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,wBAAwB,SAAS;AAAA;AACnC,WAAK,OAAO,MAAM,0DAA0D;AAC5E,YAAM,YAAY,QAAQ,aAAa,KAAK,OAAO,KAAK;AACxD,UAAI,QAAQ,SAAS;AACjB,cAAM,KAAK,yBAAyB,WAAW,QAAQ,OAAO;AAAA,MAClE;AACA,YAAM,qBAAqB,IAAI,UAAU,SAAS;AAClD,yBAAmB,cAAc;AAEjC,YAA2C,cAAnC,SA5chB,IA4cmD,IAAxB,gCAAwB,IAAxB,CAAX;AACR,YAAM,WAAW,IAAI,SAAS,UAAU,CAAC,CAAC;AAC1C,eAAS,aAAa,mBAAmB;AACzC,YAAM,YAAY,MAAM;AAEpB,gBAAQ,KAAK,OAAO;AAAA,UAChB,KAAK,MAAM;AAAA,UACX,KAAK,MAAM;AACP,iBAAK,OAAO,MAAM,6DAA6D;AAC/E,mBAAO,YAAY;AAAA,QAC3B;AAEA,YAAI,CAAC,QAAQ,QAAQ;AACjB,eAAK,OAAO,MAAM,kDAAkD;AACpE,iBAAO;AAAA,QACX;AAEA,gBAAQ,QAAQ,QAAQ;AAAA,UACpB,KAAK,YAAY;AAAA,UACjB,KAAK,YAAY;AAAA,UACjB,KAAK,YAAY;AACb,iBAAK,OAAO,MAAM,gEAAgE;AAClF,mBAAO,QAAQ;AAAA,UACnB;AACI,iBAAK,OAAO,MAAM,qCAAqC,QAAQ,MAAM,qCAAqC;AAC1G,kBAAM,uBAAuB,wBAAwB;AAAA,QAC7D;AAAA,MACJ;AACA,YAAM,mBAAmB,iCAClB,sBADkB;AAAA,QAErB,WAAW,KAAK;AAAA,QAChB,UAAU,KAAK,OAAO,KAAK;AAAA,QAC3B,WAAW,mBAAmB;AAAA,QAC9B,OAAO,SAAS,YAAY;AAAA,QAC5B,aAAa,KAAK,eAAe,QAAQ,WAAW;AAAA,QACpD,QAAQ,UAAU;AAAA,QAClB,eAAe,KAAK;AAAA,QACpB,WAAW,QAAQ;AAAA,QACnB,sBAAsB,SAAS;AAAA,QAC/B,iBAAiB,kCACV,QAAQ,uBACR,QAAQ;AAAA,QAEf,qBAAqB;AAAA;AAAA,MACzB;AACA,WAAK,wBAAwB,gBAAgB;AAC7C,uBAAiB,kBACb,iBAAiB,mBAAmB,CAAC;AACzC,uBAAiB,gBAAgB,YAC7B,gBAAgB;AACpB,UAAI,QAAQ,yBAAyB,qBAAqB,KAAK;AAE3D,cAAM,gBAAgB;AAAA,UAClB,oBAAoB,QAAQ;AAAA,UAC5B,uBAAuB,QAAQ;AAAA,UAC/B,WAAW,QAAQ;AAAA,UACnB,UAAU,QAAQ;AAAA,QACtB;AACA,cAAM,oBAAoB,IAAI,kBAAkB,KAAK,aAAa;AAClE,cAAM,aAAa,MAAM,YAAY,kBAAkB,YAAY,KAAK,iBAAiB,GAAG,kBAAkB,qBAAqB,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,eAAe,KAAK,MAAM;AAEtN,yBAAiB,SAAS,WAAW;AACrC,yBAAiB,QAAQ,WAAW;AAAA,MACxC;AACA,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,wBAAwB,SAAS;AAC7B,QAAI,CAAC,QAAQ,iBAAiB;AAC1B;AAAA,IACJ;AACA,QAAI,QAAQ,gBAAgB,eAAe,sBAAsB,gBAAgB,KAC7E,QAAQ,gBAAgB,eAAe,sBAAsB,mBAAmB,KAChF,QAAQ,gBAAgB,eAAe,mBAAmB,SAAS,GAAG;AACtE,YAAM,kBAAkB,QAAQ,gBAAgB,mBAAmB,SAAS;AAC5E,YAAM,qBAAqB,QAAQ;AACnC,YAAM,mBAAmB,QAAQ,gBAAgB,sBAAsB,mBAAmB;AAC1F,cAAQ,kBAAkB;AAAA,QACtB;AAAA,QACA;AAAA,MACJ;AACA,cAAQ,cAAc;AAAA,IAC1B;AAAA,EACJ;AACJ;;;ACvhBA,IAAM,uBAAN,MAAM,sBAAqB;AAAA,EACvB,YAAY,QAAQ,oBAAoB,mBAAmB,aAAa;AACpE,SAAK,SAAS;AACd,SAAK,qBAAqB;AAC1B,SAAK,cAAc;AACnB,SAAK,YAAY,oBAAI,IAAI;AACzB,SAAK,qBAAqB,oBAAI,IAAI;AAClC,SAAK,iBAAiB,IAAI,eAAe;AACzC,SAAK,iBAAiB,KAAK,gBAAgB,KAAK,IAAI;AACpD,SAAK,oBAAoB;AACzB,SAAK,iBAAiB,kBAAkB,iBAAiB,kBAAkB,6BAA6B;AAAA,EAC5G;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,YAAY,MAAM;AAAA;AACpB,WAAK,OAAO,MAAM,4CAA4C;AAC9D,YAAM,MAAM;AAAA,QACR,SAAS,gBAAgB;AAAA,QACzB,aAAa,KAAK;AAAA,QAClB,YAAY,cAAc;AAAA,QAC1B;AAAA,MACJ;AACA,WAAK,OAAO,MAAM,6DAA6D;AAC/E,WAAK,OAAO,SAAS,gEAAgE,KAAK,UAAU,GAAG,CAAC,EAAE;AAC1G,WAAK,eAAe,MAAM,YAAY,GAAG;AACzC,aAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AACpC,aAAK,UAAU,IAAI,IAAI,YAAY,EAAE,SAAS,OAAO,CAAC;AAAA,MAC1D,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,OAAa,eAAe,QAAQ,oBAAoB,mBAAmB;AAAA;AACvE,aAAO,MAAM,+CAA+C;AAC5D,UAAI;AACA,cAAM,oBAAoB,IAAI,sBAAqB,QAAQ,oBAAoB,mBAAmB,gBAAgB,sBAAsB;AACxI,cAAM,kBAAkB,qBAAqB;AAC7C,eAAO;AAAA,MACX,SACO,GAAG;AAEN,cAAM,iBAAiB,IAAI,sBAAqB,QAAQ,oBAAoB,iBAAiB;AAC7F,cAAM,eAAe,qBAAqB;AAC1C,eAAO;AAAA,MACX;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAIM,uBAAuB;AAAA;AACzB,WAAK,OAAO,MAAM,qDAAqD;AAEvE,aAAO,iBAAiB,WAAW,KAAK,gBAAgB,KAAK;AAC7D,YAAM,MAAM;AAAA,QACR,SAAS,gBAAgB;AAAA,QACzB,aAAa,KAAK;AAAA,QAClB,YAAY,cAAc;AAAA,QAC1B,MAAM;AAAA,UACF,QAAQ,sBAAsB;AAAA,QAClC;AAAA,MACJ;AACA,WAAK,eAAe,IAAI;AAAA,QACpB,aAAa,KAAK;AAAA,QAClB,6BAA6B,KAAK;AAAA,MACtC,CAAC;AACD,WAAK,eAAe,MAAM,YAAY,CAAC,UAAU;AAC7C,aAAK,iBAAiB,KAAK;AAAA,MAC/B;AACA,aAAO,YAAY,KAAK,OAAO,QAAQ,CAAC,KAAK,eAAe,KAAK,CAAC;AAClE,aAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AACpC,aAAK,mBAAmB,IAAI,IAAI,YAAY,EAAE,SAAS,OAAO,CAAC;AAC/D,aAAK,YAAY,OAAO,WAAW,MAAM;AAKrC,iBAAO,oBAAoB,WAAW,KAAK,gBAAgB,KAAK;AAChE,eAAK,eAAe,MAAM,MAAM;AAChC,eAAK,eAAe,MAAM,MAAM;AAChC,eAAK,eAAe,IAAI;AAAA,YACpB,4BAA4B;AAAA,YAC5B,SAAS;AAAA,UACb,CAAC;AACD,iBAAO,uBAAuB,sBAAsB,CAAC;AACrD,eAAK,mBAAmB,OAAO,IAAI,UAAU;AAAA,QACjD,GAAG,KAAK,kBAAkB;AAAA,MAC9B,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB,OAAO;AACnB,SAAK,OAAO,MAAM,+CAA+C;AAEjE,QAAI,MAAM,WAAW,QAAQ;AACzB;AAAA,IACJ;AACA,UAAM,UAAU,MAAM;AACtB,QAAI,CAAC,QAAQ,WACT,QAAQ,YAAY,gBAAgB,YAAY;AAChD;AAAA,IACJ;AACA,QAAI,QAAQ,eAAe,QAAQ,gBAAgB,KAAK,aAAa;AACjE;AAAA,IACJ;AACA,QAAI,QAAQ,KAAK,WAAW,sBAAsB,kBAAkB;AAChE,YAAM,oBAAoB,KAAK,mBAAmB,IAAI,QAAQ,UAAU;AAKxE,UAAI,CAAC,mBAAmB;AACpB,aAAK,OAAO,MAAM,8EAA8E,QAAQ,UAAU,EAAE;AACpH;AAAA,MACJ;AAEA,WAAK,OAAO,QAAQ,QAAQ,cACtB,sBAAsB,QAAQ,WAAW,mBACzC,wBAAwB;AAC9B,mBAAa,KAAK,SAAS;AAC3B,WAAK,eAAe,MAAM,MAAM;AAChC,WAAK,eAAe,MAAM,MAAM;AAChC,aAAO,oBAAoB,WAAW,KAAK,gBAAgB,KAAK;AAChE,WAAK,eAAe,IAAI;AAAA,QACpB,SAAS;AAAA,QACT,oBAAoB;AAAA,MACxB,CAAC;AACD,wBAAkB,OAAO,uBAAuB,2BAA2B,CAAC;AAAA,IAChF;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB,OAAO;AACpB,SAAK,OAAO,MAAM,iDAAiD;AACnE,UAAM,UAAU,MAAM;AACtB,UAAM,WAAW,KAAK,UAAU,IAAI,QAAQ,UAAU;AACtD,UAAM,oBAAoB,KAAK,mBAAmB,IAAI,QAAQ,UAAU;AACxE,QAAI;AACA,YAAM,SAAS,QAAQ,KAAK;AAC5B,UAAI,WAAW,sBAAsB,UAAU;AAC3C,YAAI,CAAC,UAAU;AACX;AAAA,QACJ;AACA,cAAM,WAAW,QAAQ,KAAK;AAC9B,aAAK,OAAO,MAAM,iEAAiE;AACnF,aAAK,OAAO,SAAS,oEAAoE,KAAK,UAAU,QAAQ,CAAC,EAAE;AACnH,YAAI,SAAS,WAAW,WAAW;AAC/B,mBAAS,OAAO,sBAAsB,SAAS,MAAM,SAAS,aAAa,SAAS,GAAG,CAAC;AAAA,QAC5F,WACS,SAAS,QAAQ;AACtB,cAAI,SAAS,OAAO,MAAM,KACtB,SAAS,OAAO,aAAa,GAAG;AAChC,qBAAS,OAAO,sBAAsB,SAAS,OAAO,MAAM,GAAG,SAAS,OAAO,aAAa,GAAG,SAAS,OAAO,KAAK,CAAC,CAAC;AAAA,UAC1H,OACK;AACD,qBAAS,QAAQ,SAAS,MAAM;AAAA,UACpC;AAAA,QACJ,OACK;AACD,gBAAM,gBAAgB,uBAAe,iBAAiB,gCAAgC;AAAA,QAC1F;AACA,aAAK,UAAU,OAAO,QAAQ,UAAU;AAAA,MAC5C,WACS,WAAW,sBAAsB,mBAAmB;AACzD,YAAI,CAAC,mBAAmB;AACpB,eAAK,OAAO,MAAM,+EAA+E,QAAQ,UAAU,EAAE;AACrH;AAAA,QACJ;AACA,qBAAa,KAAK,SAAS;AAC3B,eAAO,oBAAoB,WAAW,KAAK,gBAAgB,KAAK;AAChE,aAAK,cAAc,QAAQ;AAC3B,aAAK,mBAAmB,QAAQ,KAAK;AACrC,aAAK,OAAO,QAAQ,qEAAqE,KAAK,WAAW,EAAE;AAC3G,aAAK,eAAe,IAAI;AAAA,UACpB,oBAAoB;AAAA,UACpB,SAAS;AAAA,QACb,CAAC;AACD,0BAAkB,QAAQ;AAC1B,aAAK,mBAAmB,OAAO,QAAQ,UAAU;AAAA,MACrD;AAAA,IAEJ,SACO,KAAK;AACR,WAAK,OAAO,MAAM,2CAA2C;AAC7D,WAAK,OAAO,SAAS,8CAA8C,GAAG,EAAE;AACxE,WAAK,OAAO,SAAS,mBAAmB,KAAK,EAAE;AAC/C,UAAI,UAAU;AACV,iBAAS,OAAO,GAAG;AAAA,MACvB,WACS,mBAAmB;AACxB,0BAAkB,OAAO,GAAG;AAAA,MAChC;AAAA,IACJ;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB;AACb,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,sBAAsB;AAClB,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,OAAO,kBAAkB,QAAQ,QAAQ,yBAAyB,sBAAsB;AACpF,WAAO,MAAM,0BAA0B;AACvC,QAAI,CAAC,OAAO,OAAO,mBAAmB;AAClC,aAAO,MAAM,sEAAsE;AAEnF,aAAO;AAAA,IACX;AACA,QAAI,CAAC,yBAAyB;AAC1B,aAAO,MAAM,+EAA+E;AAE5F,aAAO;AAAA,IACX;AACA,QAAI,sBAAsB;AACtB,cAAQ,sBAAsB;AAAA,QAC1B,KAAK,qBAAqB;AAAA,QAC1B,KAAK,qBAAqB;AACtB,iBAAO,MAAM,sEAAsE;AACnF,iBAAO;AAAA,QACX;AACI,iBAAO,MAAM,2EAA2E;AACxF,iBAAO;AAAA,MACf;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AACJ;;;ACxPA,IAAM,qBAAN,MAAyB;AAAA,EACrB,YAAY,gBAAgB,aAAa,iBAAiB,QAAQ,mBAAmB;AACjF,SAAK,aAAa;AAClB,SAAK,iBAAiB;AACtB,SAAK,kBAAkB;AACvB,SAAK,SAAS;AACd,SAAK,oBAAoB;AAAA,EAC7B;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,2BAA2B,cAAc,OAAO,WAAW,eAAe;AAAA;AAC5E,WAAK,kBAAkB,oBAAoB,kBAAkB,4BAA4B,KAAK,gBAAgB,aAAa;AAE3H,UAAI,CAAC,cAAc;AACf,cAAM,uBAAuB,cAAc;AAAA,MAC/C;AAEA,YAAM,WAAW,KAAK,eAAe,iBAAiB,KAAK;AAC3D,YAAM,eAAe,KAAK,eAAe,kBAAkB,QAAQ;AACnE,UAAI,CAAC,cAAc;AACf,cAAM,sBAAsB,6BAAqB,eAAe,cAAc;AAAA,MAClF;AACA,UAAI;AACJ,UAAI;AACA,2BAAmB,KAAK,WAAW,uBAAuB,cAAc,YAAY;AAAA,MACxF,SACO,GAAG;AACN,YAAI,aAAa,eACb,EAAE,aAAa,eAAe;AAE9B,gBAAM,uBAAuB,aAAa;AAAA,QAC9C,OACK;AACD,gBAAM;AAAA,QACV;AAAA,MACJ;AACA,aAAO,YAAY,KAAK,6BAA6B,KAAK,IAAI,GAAG,kBAAkB,8BAA8B,KAAK,QAAQ,KAAK,mBAAmB,KAAK,gBAAgB,aAAa,EAAE,kBAAkB,OAAO,WAAW,aAAa;AAAA,IAC/O;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASM,6BAA6B,kBAAkB,OAAO,WAAW,eAAe,gBAAgB,MAAM;AAAA;AACxG,WAAK,kBAAkB,oBAAoB,kBAAkB,8BAA8B,KAAK,gBAAgB,aAAa;AAC7H,WAAK,OAAO,MAAM,wDAAwD;AAE1E,YAAM,WAAW,KAAK,eAAe,iBAAiB,KAAK;AAC3D,YAAM,eAAe,KAAK,eAAe,kBAAkB,QAAQ;AACnE,UAAI,CAAC,cAAc;AACf,cAAM,sBAAsB,6BAAqB,eAAe,cAAc;AAAA,MAClF;AAEA,YAAM,WAAW,KAAK,eAAe,iBAAiB,YAAY;AAClE,YAAM,cAAc,KAAK,eAAe,kBAAkB,QAAQ;AAElE,WAAK,gBAAgB,OAAO,iBAAiB;AAE7C,UAAI,iBAAiB,0BAA0B;AAC3C,cAAM,YAAY,KAAK,6BAA6B,KAAK,IAAI,GAAG,kBAAkB,8BAA8B,KAAK,QAAQ,KAAK,mBAAmB,KAAK,gBAAgB,aAAa,EAAE,iBAAiB,0BAA0B,WAAW,aAAa;AAAA,MAChQ;AAEA,UAAI,eAAe;AACf,yBAAiB,QAAQ,eAAe;AAAA,MAC5C;AACA,uBAAiB,QAAQ;AAEzB,UAAI,iBAAiB,aAAa;AAC9B,aAAK,gBAAgB,aAAa,iBAAiB;AAAA,MACvD,OACK;AACD,cAAM,gBAAgB,KAAK,oBAAoB;AAC/C,YAAI,eAAe;AACf,eAAK,gBAAgB,gBAAgB;AAAA,QACzC;AAAA,MACJ;AAEA,YAAM,gBAAiB,MAAM,YAAY,KAAK,WAAW,aAAa,KAAK,KAAK,UAAU,GAAG,kBAAkB,wBAAwB,KAAK,QAAQ,KAAK,mBAAmB,KAAK,gBAAgB,aAAa,EAAE,KAAK,iBAAiB,gBAAgB;AACtP,WAAK,eAAe,oBAAoB,KAAK;AAC7C,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,6BAA6B,uBAAuB,WAAW,eAAe;AAAA;AAChF,WAAK,kBAAkB,oBAAoB,kBAAkB,8BAA8B,KAAK,gBAAgB,aAAa;AAC7H,YAAM,4BAA4B,WAAW,qBAAqB,IAAI,UAAU,MAAM;AACtF,YAAM,yBAAyB,MAAM,iBAAiB,yBAAyB,2BAA2B,eAAe,KAAK,gBAAgB,UAAU,SAAS,KAAK,QAAQ,KAAK,mBAAmB,KAAK,gBAAgB,aAAa;AACxO,WAAK,WAAW,gBAAgB,sBAAsB;AAAA,IAC1D;AAAA;AAAA;AAAA;AAAA;AAAA,EAIA,sBAAsB;AAElB,UAAM,gBAAgB,KAAK,eAAe,kBAAkB,mBAAmB,gBAAgB,IAAI;AACnG,QAAI,eAAe;AACf,UAAI;AACA,eAAO,KAAK,MAAM,aAAa;AAAA,MACnC,SACO,GAAG;AACN,aAAK,WAAW,OAAO,MAAM,sCAAsC;AACnE,aAAK,WAAW,OAAO,SAAS,yCAAyC,aAAa,EAAE;AAAA,MAC5F;AAAA,IACJ;AACA,WAAO;AAAA,EACX;AACJ;;;AChHA,IAAM,cAAN,cAA0B,0BAA0B;AAAA,EAChD,YAAY,QAAQ,aAAa,eAAe,QAAQ,cAAc,kBAAkB,mBAAmB,mBAAmB,sBAAsB,eAAe;AAC/J,UAAM,QAAQ,aAAa,eAAe,QAAQ,cAAc,kBAAkB,mBAAmB,sBAAsB,aAAa;AAExI,SAAK,eAAe,KAAK,aAAa,KAAK,IAAI;AAC/C,SAAK,gBAAgB;AAAA,EACzB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,aAAa,SAAS;AAClB,QAAI;AACA,YAAM,YAAY,KAAK,kBAAkB,QAAQ,UAAU,qBAAqB,QAAQ,aAAa,KAAK,OAAO,KAAK,SAAS;AAC/H,YAAM,wBAAwB,QAAQ,yBAAyB,CAAC;AAEhE,UAAI,KAAK,OAAO,OAAO,aAAa;AAChC,aAAK,OAAO,QAAQ,0CAA0C;AAE9D,eAAO,KAAK,uBAAuB,SAAS,WAAW,qBAAqB;AAAA,MAChF,OACK;AAED,aAAK,OAAO,QAAQ,+DAA+D;AACnF,cAAM,QAAQ,KAAK,eAAe,eAAe,WAAW,qBAAqB;AACjF,eAAO,KAAK,uBAAuB,SAAS,WAAW,uBAAuB,KAAK;AAAA,MACvF;AAAA,IACJ,SACO,GAAG;AACN,aAAO,QAAQ,OAAO,CAAC;AAAA,IAC3B;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,OAAO,eAAe;AAClB,QAAI;AACA,WAAK,OAAO,QAAQ,oBAAoB;AACxC,YAAM,qBAAqB,KAAK,wBAAwB,aAAa;AACrE,YAAM,YAAY,KAAK,wBAAwB,kBAAkB;AACjE,YAAM,YAAY,iBAAiB,cAAc;AACjD,YAAM,wBAAwB,iBAAiB,cAAc;AAC7D,YAAM,wBAAwB,eAAe,yBAAyB,CAAC;AAEvE,UAAI,KAAK,OAAO,OAAO,aAAa;AAChC,aAAK,OAAO,QAAQ,yBAAyB;AAE7C,eAAO,KAAK,iBAAiB,oBAAoB,WAAW,uBAAuB,WAAW,QAAW,qBAAqB;AAAA,MAClI,OACK;AAED,aAAK,OAAO,QAAQ,wCAAwC;AAC5D,cAAM,QAAQ,KAAK,eAAe,eAAe,WAAW,qBAAqB;AACjF,eAAO,KAAK,iBAAiB,oBAAoB,WAAW,uBAAuB,WAAW,OAAO,qBAAqB;AAAA,MAC9H;AAAA,IACJ,SACO,GAAG;AAEN,aAAO,QAAQ,OAAO,CAAC;AAAA,IAC3B;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAUM,uBAAuB,SAAS,WAAW,uBAAuB,OAAO;AAAA;AAC3E,WAAK,OAAO,QAAQ,+BAA+B;AACnD,YAAM,yBAAyB,KAAK,iCAAiC,MAAM,iBAAiB;AAC5F,WAAK,kBAAkB,gBAAgB,kBAAkB,yDAAyD,QAAQ,aAAa;AACvI,YAAM,eAAe,MAAM,KAAK,+BAA+B,SAAS,gBAAgB,KAAK;AAC7F,WAAK,eAAe,mBAAmB,aAAa,OAAO,aAAa,OAAO,aAAa,WAAW,aAAa,aAAa,UAAU,cAAc,aAAa,WAAW,IAAI;AACrL,UAAI;AAEA,aAAK,kBAAkB,gBAAgB,kBAAkB,6DAA6D,QAAQ,aAAa;AAC3I,cAAM,kBAAkB,MAAM,KAAK,mCAAmC,YAAY;AAElF,aAAK,kBAAkB,gBAAgB,kBAAkB,+CAA+C,QAAQ,aAAa;AAC7H,cAAM,aAAa,MAAM,KAAK,qBAAqB,wBAAwB,aAAa,WAAW,aAAa,iBAAiB;AACjI,aAAK,OAAO,QAAQ,0BAA0B;AAC9C,cAAM,iBAAiB,qBAAqB,kBAAkB,KAAK,QAAQ,KAAK,QAAQ,KAAK,sBAAsB,QAAQ,oBAAoB;AAE/I,YAAI;AACJ,YAAI,gBAAgB;AAChB,4CACI,KAAK,kBAAkB,iBAAiB,kBAAkB,gCAAgC,QAAQ,aAAa;AAAA,QACvH;AAEA,cAAM,cAAc,MAAM,WAAW,eAAe,iCAC7C,eAD6C;AAAA,UAEhD,cAAc;AAAA,QAClB,EAAC;AAED,cAAM,qBAAqB,IAAI,mBAAmB,YAAY,KAAK,gBAAgB,iBAAiB,KAAK,QAAQ,KAAK,iBAAiB;AAEvI,cAAM,kBAAkB;AAAA,UACpB;AAAA,UACA;AAAA,UACA;AAAA,QACJ;AACA,cAAM,cAAc,KAAK,oBAAoB,aAAa,eAAe;AACzE,aAAK,aAAa,UAAU,UAAU,cAAc,gBAAgB,OAAO,EAAE,YAAY,GAAG,IAAI;AAEhG,cAAM,OAAO,MAAM,KAAK,oBAAoB,WAAW;AAEvD,cAAM,eAAe,UAAU,oBAAoB,IAAI;AACvD,cAAM,QAAQ,KAAK,gCAAgC,cAAc,gBAAgB,OAAO,aAAa,aAAa;AAElH,wBAAgB,eAAe,KAAK,gBAAgB,KAAK,OAAO,KAAK,UAAU,eAAe;AAC9F,YAAI,aAAa,WAAW;AACxB,eAAK,OAAO,QAAQ,iDAAiD;AAErE,cAAI,iCAAiC;AACjC,4CAAgC,IAAI;AAAA,cAChC,SAAS;AAAA,cACT,gBAAgB;AAAA,YACpB,CAAC;AAAA,UACL;AACA,cAAI,CAAC,KAAK,sBAAsB;AAC5B,kBAAM,uBAAuB,8BAA8B;AAAA,UAC/D;AACA,gBAAM,0BAA0B,IAAI,wBAAwB,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,MAAM,mBAAmB,KAAK,mBAAmB,KAAK,sBAAsB,aAAa,WAAW,KAAK,eAAe,aAAa,aAAa;AAC3T,gBAAM,EAAE,iBAAiB,IAAI,cAAc,kBAAkB,KAAK,eAAe,KAAK;AACtF,iBAAO,wBACF,aAAa,iCACX,eADW;AAAA,YAEd,OAAO;AAAA,YACP,QAAQ;AAAA;AAAA,UACZ,EAAC,EACI,QAAQ,MAAM;AACf,iBAAK,eAAe,oBAAoB,KAAK;AAAA,UACjD,CAAC;AAAA,QACL;AAEA,cAAM,SAAS,MAAM,mBAAmB,2BAA2B,MAAM,OAAO,WAAW,WAAW,KAAK,aAAa;AACxH,eAAO;AAAA,MACX,SACO,GAAG;AACN,YAAI,OAAO;AAEP,gBAAM,MAAM;AAAA,QAChB;AACA,YAAI,aAAa,WAAW;AACxB,YAAE,iBAAiB,KAAK,aAAa;AACrC,iCAAuB,mBAAmB,CAAC;AAAA,QAC/C;AACA,aAAK,eAAe,oBAAoB,aAAa,KAAK;AAC1D,cAAM;AAAA,MACV;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAUM,iBAAiB,cAAc,WAAW,uBAAuB,kBAAkB,OAAO,uBAAuB;AAAA;AACnH,WAAK,OAAO,QAAQ,yBAAyB;AAC7C,WAAK,aAAa,UAAU,UAAU,cAAc,gBAAgB,OAAO,YAAY;AACvF,YAAM,yBAAyB,KAAK,iCAAiC,MAAM,WAAW;AACtF,UAAI;AAEA,cAAM,KAAK,mBAAmB,aAAa,OAAO;AAElD,aAAK,kBAAkB,gBAAgB,kBAAkB,+CAA+C,aAAa,aAAa;AAClI,cAAM,aAAa,MAAM,KAAK,qBAAqB,wBAAwB,gBAAgB;AAC3F,aAAK,OAAO,QAAQ,0BAA0B;AAC9C,YAAI;AACA,qBAAW,UAAU;AAAA,QACzB,QACM;AACF,cAAI,aAAa,SAAS,iBACtB,aAAa,yBACb,WAAW,UAAU,iBAAiB,aAAa,MAAM;AACzD,iBAAK,KAAK,eAAe,cAAc,aAAa,SAAS,aAAa;AAC1E,iBAAK,aAAa,UAAU,UAAU,gBAAgB,gBAAgB,OAAO,YAAY;AACzF,gBAAI,uBAAuB;AACvB,oBAAM,oBAAoB;AAAA,gBACtB,OAAO,MAAM;AAAA,gBACb,SAAS,KAAK,OAAO,OAAO;AAAA,gBAC5B,WAAW;AAAA,cACf;AACA,oBAAM,cAAc,UAAU,eAAe,uBAAuB,aAAa,cAAc,CAAC;AAChG,oBAAM,KAAK,iBAAiB,iBAAiB,aAAa,iBAAiB;AAAA,YAC/E;AACA,gBAAI,OAAO;AACP,oBAAM,MAAM;AAAA,YAChB;AACA;AAAA,UACJ;AAAA,QACJ;AAEA,cAAM,YAAY,WAAW,aAAa,YAAY;AACtD,aAAK,aAAa,UAAU,UAAU,gBAAgB,gBAAgB,OAAO,YAAY;AAEzF,cAAM,cAAc,KAAK,UAAU,WAAW;AAAA,UAC1C;AAAA,UACA;AAAA,UACA;AAAA,QACJ,CAAC;AACD,aAAK,aAAa,UAAU,UAAU,cAAc,gBAAgB,OAAO,EAAE,YAAY,GAAG,IAAI;AAChG,cAAM,KAAK,mBAAmB,WAAW;AACzC,YAAI,uBAAuB;AACvB,gBAAM,oBAAoB;AAAA,YACtB,OAAO,MAAM;AAAA,YACb,SAAS,KAAK,OAAO,OAAO;AAAA,YAC5B,WAAW;AAAA,UACf;AACA,gBAAM,cAAc,UAAU,eAAe,uBAAuB,aAAa,cAAc,CAAC;AAChG,eAAK,OAAO,QAAQ,yDAAyD;AAC7E,eAAK,OAAO,WAAW,+BAA+B,WAAW,EAAE;AACnE,gBAAM,KAAK,iBAAiB,iBAAiB,aAAa,iBAAiB;AAAA,QAC/E,OACK;AACD,eAAK,OAAO,QAAQ,qCAAqC;AAAA,QAC7D;AAAA,MACJ,SACO,GAAG;AACN,YAAI,OAAO;AAEP,gBAAM,MAAM;AAAA,QAChB;AACA,YAAI,aAAa,WAAW;AACxB,YAAE,iBAAiB,KAAK,aAAa;AACrC,iCAAuB,mBAAmB,CAAC;AAAA,QAC/C;AACA,aAAK,eAAe,yBAAyB,KAAK;AAClD,aAAK,aAAa,UAAU,UAAU,gBAAgB,gBAAgB,OAAO,MAAM,CAAC;AACpF,aAAK,aAAa,UAAU,UAAU,YAAY,gBAAgB,KAAK;AACvE,cAAM;AAAA,MACV;AACA,WAAK,aAAa,UAAU,UAAU,YAAY,gBAAgB,KAAK;AAAA,IAC3E;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,oBAAoB,YAAY,QAAQ;AAEpC,QAAI,YAAY;AACZ,WAAK,OAAO,QAAQ,gBAAgB,UAAU,EAAE;AAEhD,aAAO,KAAK,UAAU,YAAY,MAAM;AAAA,IAC5C,OACK;AAED,WAAK,OAAO,MAAM,uBAAuB;AACzC,YAAM,uBAAuB,gBAAgB;AAAA,IACjD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,oBAAoB,aAAa;AAC7B,WAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AAKpC,YAAM,WAAW,KAAK,OAAO,OAAO,oBAChC,KAAK,OAAO,OAAO;AACvB,UAAI,QAAQ;AACZ,WAAK,OAAO,QAAQ,oDAAoD;AACxE,YAAM,aAAa,YAAY,MAAM;AAEjC,YAAI,YAAY,QAAQ;AACpB,eAAK,OAAO,MAAM,kDAAkD;AACpE,eAAK,WAAW;AAChB,wBAAc,UAAU;AACxB,iBAAO,uBAAuB,aAAa,CAAC;AAC5C;AAAA,QACJ;AACA,YAAI,OAAO,UAAU;AACrB,YAAI,uBAAuB,UAAU;AACrC,YAAI;AAMA,iBAAO,YAAY,SAAS;AAC5B,iCACI,KAAK,qCAAqC,aAAa,IAAI;AAAA,QACnE,SACO,GAAG;AAAA,QAAE;AAEZ,YAAI,CAAC,QAAQ,SAAS,eAAe;AACjC;AAAA,QACJ;AACA,aAAK,OAAO,QAAQ,6EAA6E;AAKjG;AACA,YAAI,sBAAsB;AACtB,eAAK,OAAO,QAAQ,sDAAsD;AAC1E,wBAAc,UAAU;AACxB,eAAK,WAAW,WAAW;AAC3B,cAAI,UAAU,4BAA4B,oBAAoB,GAAG;AAC7D,iBAAK,OAAO,QAAQ,+EAA+E;AACnG,oBAAQ,oBAAoB;AAAA,UAChC,OACK;AACD,iBAAK,OAAO,MAAM,6JAA6J;AAC/K,iBAAK,OAAO,SAAS,kDAAkD,oBAAoB,EAAE;AAC7F,mBAAO,uBAAuB,iCAAiC,CAAC;AAAA,UACpE;AAAA,QACJ,WACS,QAAQ,UAAU;AACvB,eAAK,OAAO,MAAM,2EAA2E;AAC7F,wBAAc,UAAU;AACxB,iBAAO,uBAAuB,mBAAmB,CAAC;AAAA,QACtD;AAAA,MACJ,GAAG,KAAK,OAAO,OAAO,wBAAwB;AAAA,IAClD,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,mBAAmB,aAAa;AAC5B,WAAO,IAAI,QAAQ,CAAC,YAAY;AAC5B,WAAK,OAAO,QAAQ,mDAAmD;AACvE,YAAM,aAAa,YAAY,MAAM;AAEjC,YAAI,YAAY,QAAQ;AACpB,eAAK,OAAO,MAAM,iDAAiD;AACnE,eAAK,WAAW;AAChB,wBAAc,UAAU;AACxB,kBAAQ;AAAA,QACZ;AACA,YAAI,OAAO,UAAU;AACrB,YAAI;AAMA,iBAAO,YAAY,SAAS;AAAA,QAChC,SACO,GAAG;AAAA,QAAE;AAEZ,YAAI,CAAC,QAAQ,SAAS,eAAe;AACjC;AAAA,QACJ;AACA,aAAK,OAAO,QAAQ,sFAAsF;AAC1G,sBAAc,UAAU;AACxB,aAAK,WAAW,WAAW;AAC3B,gBAAQ;AAAA,MACZ,GAAG,KAAK,OAAO,OAAO,wBAAwB;AAAA,IAClD,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAcA,UAAU,aAAa,aAAa;AAChC,QAAI;AACA,UAAI;AAEJ,UAAI,YAAY,OAAO;AACnB,sBAAc,YAAY;AAC1B,aAAK,OAAO,WAAW,+BAA+B,WAAW,EAAE;AACnE,oBAAY,SAAS,OAAO,WAAW;AAAA,MAC3C,WACS,OAAO,YAAY,UAAU,aAAa;AAE/C,aAAK,OAAO,WAAW,4BAA4B,WAAW,EAAE;AAChE,sBAAc,KAAK,eAAe,aAAa,YAAY,WAAW,YAAY,qBAAqB;AAAA,MAC3G;AAEA,UAAI,CAAC,aAAa;AACd,cAAM,uBAAuB,gBAAgB;AAAA,MACjD;AACA,UAAI,YAAY,OAAO;AACnB,oBAAY,MAAM;AAAA,MACtB;AACA,WAAK,gBAAgB;AACrB,aAAO,iBAAiB,gBAAgB,KAAK,YAAY;AACzD,aAAO;AAAA,IACX,SACO,GAAG;AACN,WAAK,OAAO,MAAM,yBAAyB,EAAE,OAAO;AACpD,WAAK,eAAe,yBAAyB,KAAK;AAClD,YAAM,uBAAuB,gBAAgB;AAAA,IACjD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,eAAe,aAAa,WAAW,uBAAuB;AAK1D,UAAM,UAAU,OAAO,aAAa,OAAO,aAAa,OAAO;AAC/D,UAAM,SAAS,OAAO,YAAY,OAAO,YAAY,OAAO;AAK5D,UAAM,WAAW,OAAO,cACpB,SAAS,gBAAgB,eACzB,SAAS,KAAK;AAClB,UAAM,YAAY,OAAO,eACrB,SAAS,gBAAgB,gBACzB,SAAS,KAAK;AAClB,QAAI,QAAQ,sBAAsB,WAAW;AAC7C,QAAI,SAAS,sBAAsB,WAAW;AAC9C,QAAI,MAAM,sBAAsB,eAAe;AAC/C,QAAI,OAAO,sBAAsB,eAAe;AAChD,QAAI,CAAC,SAAS,QAAQ,KAAK,QAAQ,UAAU;AACzC,WAAK,OAAO,QAAQ,0EAA0E;AAC9F,cAAQ,iBAAiB;AAAA,IAC7B;AACA,QAAI,CAAC,UAAU,SAAS,KAAK,SAAS,WAAW;AAC7C,WAAK,OAAO,QAAQ,4EAA4E;AAChG,eAAS,iBAAiB;AAAA,IAC9B;AACA,QAAI,CAAC,OAAO,MAAM,KAAK,MAAM,WAAW;AACpC,WAAK,OAAO,QAAQ,+EAA+E;AACnG,YAAM,KAAK,IAAI,GAAG,YAAY,IAAI,iBAAiB,eAAe,IAAI,MAAM;AAAA,IAChF;AACA,QAAI,CAAC,QAAQ,OAAO,KAAK,OAAO,UAAU;AACtC,WAAK,OAAO,QAAQ,iFAAiF;AACrG,aAAO,KAAK,IAAI,GAAG,WAAW,IAAI,iBAAiB,cAAc,IAAI,OAAO;AAAA,IAChF;AACA,WAAO,OAAO,KAAK,aAAa,WAAW,SAAS,KAAK,YAAY,MAAM,SAAS,GAAG,UAAU,IAAI,kBAAkB;AAAA,EAC3H;AAAA;AAAA;AAAA;AAAA,EAIA,aAAa,GAAG;AACZ,SAAK,eAAe,8BAA8B,gBAAgB,KAAK;AACvE,QAAI,KAAK,eAAe;AACpB,WAAK,cAAc,MAAM;AAAA,IAC7B;AAEA,MAAE,eAAe;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,WAAW,aAAa;AACpB,QAAI,aAAa;AAEb,kBAAY,MAAM;AAAA,IACtB;AAEA,WAAO,oBAAoB,gBAAgB,KAAK,YAAY;AAE5D,SAAK,eAAe,yBAAyB,KAAK;AAAA,EACtD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,kBAAkB,QAAQ,WAAW;AACjC,WAAO,GAAG,iBAAiB,iBAAiB,IAAI,KAAK,OAAO,KAAK,QAAQ,IAAI,OAAO,KAAK,GAAG,CAAC,IAAI,SAAS,IAAI,KAAK,aAAa;AAAA,EACpI;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,wBAAwB,SAAS;AAC7B,UAAM,gBAAgB,QAAQ,WAAW,QAAQ,QAAQ;AACzD,WAAO,GAAG,iBAAiB,iBAAiB,IAAI,KAAK,OAAO,KAAK,QAAQ,IAAI,aAAa,IAAI,KAAK,aAAa;AAAA,EACpH;AAAA;AAAA;AAAA;AAAA,EAIA,qCAAqC,aAAa,MAAM;AACpD,QAAI;AACJ,QAAI,KAAK,OAAO,KAAK,aAAa,uBAC9B,mBAAmB,OAAO;AAC1B,6BAAuB,UAAU,yBAAyB,IAAI;AAAA,IAClE,OACK;AACD,6BAAuB,YAAY,SAAS;AAAA,IAChD;AACA,WAAO;AAAA,EACX;AACJ;;;ACngBA,IAAM,kBAAN,cAA8B,mBAAmB;AAAA,EAC7C,YAAY,gBAAgB,aAAa,iBAAiB,QAAQ,eAAe,mBAAmB;AAChG,UAAM,gBAAgB,aAAa,iBAAiB,QAAQ,iBAAiB;AAC7E,SAAK,gBAAgB;AAAA,EACzB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,oBAAoB,YAAY,QAAQ;AAAA;AAC1C,WAAK,OAAO,QAAQ,4CAA4C;AAEhE,UAAI,YAAY;AAEZ,YAAI,OAAO,mBAAmB;AAC1B,eAAK,OAAO,QAAQ,gFAAgF;AACpG,eAAK,eAAe,kBAAkB,mBAAmB,YAAY,OAAO,mBAAmB,IAAI;AAAA,QACvG;AAEA,aAAK,eAAe,kBAAkB,mBAAmB,gBAAgB,KAAK,gBAAgB,eAAe,IAAI;AACjH,aAAK,eAAe,iBAAiB,KAAK,eAAe;AACzD,aAAK,OAAO,QAAQ,qDAAqD,UAAU,EAAE;AACrF,cAAM,oBAAoB;AAAA,UACtB,OAAO,MAAM;AAAA,UACb,SAAS,OAAO;AAAA,UAChB,WAAW;AAAA,QACf;AAEA,YAAI,OAAO,OAAO,uBAAuB,YAAY;AACjD,eAAK,OAAO,QAAQ,2EAA2E;AAC/F,gBAAM,WAAW,OAAO,mBAAmB,UAAU;AAErD,cAAI,aAAa,OAAO;AACpB,iBAAK,OAAO,QAAQ,0FAA0F;AAC9G,kBAAM,OAAO,iBAAiB,iBAAiB,YAAY,iBAAiB;AAC5E;AAAA,UACJ,OACK;AACD,iBAAK,OAAO,QAAQ,6FAA6F;AACjH;AAAA,UACJ;AAAA,QACJ,OACK;AAED,eAAK,OAAO,QAAQ,wEAAwE;AAC5F,gBAAM,OAAO,iBAAiB,iBAAiB,YAAY,iBAAiB;AAC5E;AAAA,QACJ;AAAA,MACJ,OACK;AAED,aAAK,OAAO,KAAK,4DAA4D;AAC7E,cAAM,uBAAuB,gBAAgB;AAAA,MACjD;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,2BAA2B,cAAc,OAAO,WAAW,eAAe;AAAA;AAC5E,WAAK,OAAO,QAAQ,2CAA2C;AAE/D,UAAI,CAAC,cAAc;AACf,cAAM,uBAAuB,cAAc;AAAA,MAC/C;AAEA,WAAK,eAAe,yBAAyB,KAAK;AAElD,YAAM,WAAW,KAAK,eAAe,iBAAiB,KAAK;AAC3D,YAAM,eAAe,KAAK,eAAe,kBAAkB,QAAQ;AACnE,UAAI,CAAC,cAAc;AACf,cAAM,sBAAsB,6BAAqB,eAAe,cAAc;AAAA,MAClF;AACA,UAAI;AACJ,UAAI;AACA,2BAAmB,KAAK,WAAW,uBAAuB,cAAc,YAAY;AAAA,MACxF,SACO,GAAG;AACN,YAAI,aAAa,eACb,EAAE,aAAa,eAAe;AAE9B,gBAAM,uBAAuB,aAAa;AAAA,QAC9C,OACK;AACD,gBAAM;AAAA,QACV;AAAA,MACJ;AAEA,YAAM,WAAW,KAAK,eAAe,iBAAiB,YAAY;AAClE,YAAM,cAAc,KAAK,eAAe,kBAAkB,QAAQ;AAElE,WAAK,gBAAgB,OAAO,iBAAiB;AAE7C,UAAI,iBAAiB,0BAA0B;AAC3C,cAAM,KAAK,6BAA6B,iBAAiB,0BAA0B,WAAW,aAAa;AAAA,MAC/G;AACA,uBAAiB,QAAQ,eAAe;AACxC,uBAAiB,QAAQ;AAEzB,UAAI,iBAAiB,aAAa;AAC9B,aAAK,gBAAgB,aAAa,iBAAiB;AAAA,MACvD,OACK;AACD,cAAM,gBAAgB,KAAK,oBAAoB;AAC/C,YAAI,eAAe;AACf,eAAK,gBAAgB,gBAAgB;AAAA,QACzC;AAAA,MACJ;AAEA,YAAM,gBAAiB,MAAM,KAAK,WAAW,aAAa,KAAK,iBAAiB,gBAAgB;AAChG,WAAK,eAAe,oBAAoB,KAAK;AAC7C,aAAO;AAAA,IACX;AAAA;AACJ;;;AC5GA,IAAM,iBAAN,cAA6B,0BAA0B;AAAA,EACnD,YAAY,QAAQ,aAAa,eAAe,QAAQ,cAAc,kBAAkB,mBAAmB,mBAAmB,sBAAsB,eAAe;AAC/J,UAAM,QAAQ,aAAa,eAAe,QAAQ,cAAc,kBAAkB,mBAAmB,sBAAsB,aAAa;AACxI,SAAK,gBAAgB;AAAA,EACzB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,aAAa,SAAS;AAAA;AACxB,WAAK,kBAAkB,gBAAgB,kBAAkB,yDAAyD,QAAQ,aAAa;AACvI,YAAM,eAAe,MAAM,KAAK,+BAA+B,SAAS,gBAAgB,QAAQ;AAChG,WAAK,eAAe,mBAAmB,aAAa,OAAO,aAAa,OAAO,aAAa,WAAW,aAAa,aAAa,UAAU,cAAc,aAAa,WAAW,IAAI;AACrL,YAAM,yBAAyB,KAAK,iCAAiC,MAAM,oBAAoB;AAC/F,YAAM,mBAAmB,CAAC,UAAU;AAEhC,YAAI,MAAM,WAAW;AACjB,eAAK,OAAO,QAAQ,sEAAsE;AAC1F,eAAK,eAAe,oBAAoB,aAAa,KAAK;AAC1D,eAAK,aAAa,UAAU,UAAU,sBAAsB,gBAAgB,QAAQ;AAAA,QACxF;AAAA,MACJ;AACA,UAAI;AAEA,aAAK,kBAAkB,gBAAgB,kBAAkB,6DAA6D,QAAQ,aAAa;AAC3I,cAAM,kBAAkB,MAAM,KAAK,mCAAmC,YAAY;AAElF,aAAK,kBAAkB,gBAAgB,kBAAkB,+CAA+C,QAAQ,aAAa;AAC7H,cAAM,aAAa,MAAM,KAAK,qBAAqB,wBAAwB,aAAa,WAAW,aAAa,iBAAiB;AACjI,aAAK,OAAO,QAAQ,0BAA0B;AAE9C,cAAM,qBAAqB,IAAI,gBAAgB,YAAY,KAAK,gBAAgB,iBAAiB,KAAK,QAAQ,KAAK,eAAe,KAAK,iBAAiB;AAExJ,cAAM,cAAc,MAAM,WAAW,eAAe,iCAC7C,eAD6C;AAAA,UAEhD,cAAc,qBAAqB,kBAAkB,KAAK,QAAQ,KAAK,QAAQ,KAAK,sBAAsB,QAAQ,oBAAoB;AAAA,QAC1I,EAAC;AACD,cAAM,oBAAoB,KAAK,qBAAqB,QAAQ,iBAAiB;AAC7E,aAAK,OAAO,WAAW,wBAAwB,iBAAiB,EAAE;AAElE,eAAO,iBAAiB,YAAY,gBAAgB;AAEpD,eAAO,MAAM,mBAAmB,oBAAoB,aAAa;AAAA,UAC7D,kBAAkB,KAAK;AAAA,UACvB,iBAAiB,KAAK,OAAO,OAAO;AAAA,UACpC;AAAA,UACA,oBAAoB,QAAQ;AAAA,QAChC,CAAC;AAAA,MACL,SACO,GAAG;AACN,YAAI,aAAa,WAAW;AACxB,YAAE,iBAAiB,KAAK,aAAa;AACrC,iCAAuB,mBAAmB,CAAC;AAAA,QAC/C;AACA,eAAO,oBAAoB,YAAY,gBAAgB;AACvD,aAAK,eAAe,oBAAoB,aAAa,KAAK;AAC1D,cAAM;AAAA,MACV;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,sBAAsB,MAAM;AAAA;AAC9B,YAAM,yBAAyB,KAAK,iCAAiC,MAAM,qBAAqB;AAChG,UAAI;AACA,YAAI,CAAC,KAAK,eAAe,wBAAwB,IAAI,GAAG;AACpD,eAAK,OAAO,KAAK,uFAAuF;AACxG,iBAAO;AAAA,QACX;AACA,cAAM,eAAe,KAAK,wBAAwB,QAAQ,OAAO,SAAS,IAAI;AAC9E,YAAI,CAAC,cAAc;AAEf,eAAK,OAAO,KAAK,2GAA2G;AAC5H,eAAK,eAAe,8BAA8B,gBAAgB,QAAQ;AAC1E,iBAAO;AAAA,QACX;AACA,YAAI;AACJ,YAAI;AAEA,gBAAM,eAAe,UAAU,oBAAoB,YAAY;AAC/D,kBAAQ,KAAK,gCAAgC,cAAc,gBAAgB,QAAQ;AACnF,eAAK,OAAO,QAAQ,2BAA2B;AAAA,QACnD,SACO,GAAG;AACN,eAAK,OAAO,KAAK,6DAA6D,CAAC,EAAE;AACjF,eAAK,eAAe,8BAA8B,gBAAgB,QAAQ;AAC1E,iBAAO;AAAA,QACX;AAEA,cAAM,kBAAkB,KAAK,eAAe,kBAAkB,mBAAmB,YAAY,IAAI,KAAK,UAAU;AAChH,cAAM,4BAA4B,UAAU,kBAAkB,eAAe;AAC7E,cAAM,uBAAuB,UAAU,kBAAkB,OAAO,SAAS,IAAI;AAC7E,YAAI,8BAA8B,wBAC9B,KAAK,OAAO,KAAK,2BAA2B;AAE5C,eAAK,OAAO,QAAQ,gDAAgD;AACpE,gBAAM,mBAAmB,MAAM,KAAK,WAAW,cAAc,OAAO,sBAAsB;AAC1F,cAAI,gBAAgB,QAAQ,GAAG,IAAI,IAAI;AAEnC,yBAAa,YAAY,eAAe;AAAA,UAC5C;AACA,iBAAO;AAAA,QACX,WACS,CAAC,KAAK,OAAO,KAAK,2BAA2B;AAClD,eAAK,OAAO,QAAQ,uDAAuD;AAC3E,iBAAO,KAAK,WAAW,cAAc,OAAO,sBAAsB;AAAA,QACtE,WACS,CAAC,aAAa,WAAW,KAC9B,KAAK,OAAO,OAAO,uBAAuB;AAK1C,eAAK,eAAe,kBAAkB,mBAAmB,UAAU,cAAc,IAAI;AACrF,gBAAM,oBAAoB;AAAA,YACtB,OAAO,MAAM;AAAA,YACb,SAAS,KAAK,OAAO,OAAO;AAAA,YAC5B,WAAW;AAAA,UACf;AAKA,cAAI,wBAAwB;AAC5B,cAAI,CAAC,mBAAmB,oBAAoB,QAAQ;AAEhD,kBAAM,WAAW,aAAa,YAAY;AAE1C,iBAAK,eAAe,kBAAkB,mBAAmB,YAAY,UAAU,IAAI;AACnF,iBAAK,OAAO,QAAQ,4EAA4E;AAChG,oCACI,MAAM,KAAK,iBAAiB,iBAAiB,UAAU,iBAAiB;AAAA,UAChF,OACK;AAED,iBAAK,OAAO,QAAQ,kCAAkC,eAAe,EAAE;AACvE,oCACI,MAAM,KAAK,iBAAiB,iBAAiB,iBAAiB,iBAAiB;AAAA,UACvF;AAEA,cAAI,CAAC,uBAAuB;AACxB,mBAAO,KAAK,WAAW,cAAc,OAAO,sBAAsB;AAAA,UACtE;AAAA,QACJ;AACA,eAAO;AAAA,MACX,SACO,GAAG;AACN,YAAI,aAAa,WAAW;AACxB,YAAE,iBAAiB,KAAK,aAAa;AACrC,iCAAuB,mBAAmB,CAAC;AAAA,QAC/C;AACA,aAAK,eAAe,8BAA8B,gBAAgB,QAAQ;AAC1E,cAAM;AAAA,MACV;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,wBAAwB,MAAM;AAC1B,SAAK,OAAO,QAAQ,gCAAgC;AAEpD,UAAM,iBAAiB,UAAU,4BAA4B,IAAI;AACjE,QAAI,gBAAgB;AAChB,mBAAa,UAAU,MAAM;AAC7B,WAAK,OAAO,QAAQ,yDAAyD;AAC7E,aAAO;AAAA,IACX;AACA,UAAM,aAAa,KAAK,eAAe,kBAAkB,mBAAmB,UAAU,IAAI;AAC1F,SAAK,eAAe,WAAW,KAAK,eAAe,iBAAiB,mBAAmB,QAAQ,CAAC;AAChG,SAAK,OAAO,QAAQ,+DAA+D;AACnF,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,WAAW,MAAM,OAAO,wBAAwB;AAAA;AAClD,YAAM,gBAAgB,KAAK,eAAe,iBAAiB,KAAK;AAChE,WAAK,OAAO,QAAQ,6CAA6C;AACjE,YAAM,eAAe,UAAU,oBAAoB,IAAI;AACvD,UAAI,aAAa,WAAW;AACxB,aAAK,OAAO,QAAQ,iDAAiD;AACrE,YAAI,CAAC,KAAK,sBAAsB;AAC5B,gBAAM,uBAAuB,8BAA8B;AAAA,QAC/D;AACA,cAAM,0BAA0B,IAAI,wBAAwB,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,MAAM,mBAAmB,KAAK,mBAAmB,KAAK,sBAAsB,aAAa,WAAW,KAAK,eAAe,cAAc,aAAa;AAC5T,cAAM,EAAE,iBAAiB,IAAI,cAAc,kBAAkB,KAAK,eAAe,KAAK;AACtF,eAAO,wBACF,aAAa,iCACX,gBADW;AAAA,UAEd,OAAO;AAAA,UACP,QAAQ;AAAA;AAAA,QACZ,EAAC,EACI,QAAQ,MAAM;AACf,eAAK,eAAe,oBAAoB,KAAK;AAAA,QACjD,CAAC;AAAA,MACL;AAEA,YAAM,mBAAmB,KAAK,eAAe,mBAAmB,KAAK;AACrE,UAAI,CAAC,kBAAkB;AACnB,cAAM,uBAAuB,sBAAsB;AAAA,MACvD;AACA,WAAK,kBAAkB,gBAAgB,kBAAkB,+CAA+C,cAAc,aAAa;AACnI,YAAM,aAAa,MAAM,KAAK,qBAAqB,wBAAwB,gBAAgB;AAC3F,WAAK,OAAO,QAAQ,0BAA0B;AAC9C,sBAAgB,eAAe,KAAK,gBAAgB,KAAK,OAAO,KAAK,UAAU,aAAa;AAC5F,YAAM,qBAAqB,IAAI,gBAAgB,YAAY,KAAK,gBAAgB,eAAe,KAAK,QAAQ,KAAK,eAAe,KAAK,iBAAiB;AACtJ,aAAO,MAAM,mBAAmB,2BAA2B,MAAM,OAAO,WAAW,WAAW,KAAK,aAAa;AAAA,IACpH;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,OAAO,eAAe;AAAA;AACxB,WAAK,OAAO,QAAQ,uBAAuB;AAC3C,YAAM,qBAAqB,KAAK,wBAAwB,aAAa;AACrE,YAAM,yBAAyB,KAAK,iCAAiC,MAAM,MAAM;AACjF,UAAI;AACA,aAAK,aAAa,UAAU,UAAU,cAAc,gBAAgB,UAAU,aAAa;AAE3F,cAAM,KAAK,mBAAmB,mBAAmB,OAAO;AACxD,cAAM,oBAAoB;AAAA,UACtB,OAAO,MAAM;AAAA,UACb,SAAS,KAAK,OAAO,OAAO;AAAA,UAC5B,WAAW;AAAA,QACf;AACA,aAAK,kBAAkB,gBAAgB,kBAAkB,+CAA+C,mBAAmB,aAAa;AACxI,cAAM,aAAa,MAAM,KAAK,qBAAqB,wBAAwB,iBAAiB,cAAc,SAAS;AACnH,aAAK,OAAO,QAAQ,0BAA0B;AAC9C,YAAI,WAAW,UAAU,iBAAiB,aAAa,MAAM;AACzD,cAAI;AACA,uBAAW,UAAU;AAAA,UACzB,QACM;AACF,gBAAI,mBAAmB,SAAS,eAAe;AAC3C,mBAAK,KAAK,eAAe,cAAc,mBAAmB,SAAS,aAAa;AAChF,mBAAK,aAAa,UAAU,UAAU,gBAAgB,gBAAgB,UAAU,kBAAkB;AAClG;AAAA,YACJ;AAAA,UACJ;AAAA,QACJ;AAEA,cAAM,YAAY,WAAW,aAAa,kBAAkB;AAC5D,aAAK,aAAa,UAAU,UAAU,gBAAgB,gBAAgB,UAAU,kBAAkB;AAElG,YAAI,iBACA,OAAO,cAAc,uBAAuB,YAAY;AACxD,gBAAM,WAAW,cAAc,mBAAmB,SAAS;AAC3D,cAAI,aAAa,OAAO;AACpB,iBAAK,OAAO,QAAQ,4DAA4D;AAEhF,gBAAI,CAAC,KAAK,eAAe,yBAAyB,GAAG;AACjD,mBAAK,eAAe,yBAAyB,IAAI;AAAA,YACrD;AACA,kBAAM,KAAK,iBAAiB,iBAAiB,WAAW,iBAAiB;AACzE;AAAA,UACJ,OACK;AAED,iBAAK,eAAe,yBAAyB,KAAK;AAClD,iBAAK,OAAO,QAAQ,+DAA+D;AAAA,UACvF;AAAA,QACJ,OACK;AAED,cAAI,CAAC,KAAK,eAAe,yBAAyB,GAAG;AACjD,iBAAK,eAAe,yBAAyB,IAAI;AAAA,UACrD;AACA,gBAAM,KAAK,iBAAiB,iBAAiB,WAAW,iBAAiB;AACzE;AAAA,QACJ;AAAA,MACJ,SACO,GAAG;AACN,YAAI,aAAa,WAAW;AACxB,YAAE,iBAAiB,KAAK,aAAa;AACrC,iCAAuB,mBAAmB,CAAC;AAAA,QAC/C;AACA,aAAK,aAAa,UAAU,UAAU,gBAAgB,gBAAgB,UAAU,MAAM,CAAC;AACvF,aAAK,aAAa,UAAU,UAAU,YAAY,gBAAgB,QAAQ;AAC1E,cAAM;AAAA,MACV;AACA,WAAK,aAAa,UAAU,UAAU,YAAY,gBAAgB,QAAQ;AAAA,IAC9E;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,qBAAqB,kBAAkB;AACnC,UAAM,oBAAoB,oBAAoB,OAAO,SAAS;AAC9D,WAAO,UAAU,eAAe,mBAAmB,aAAa,cAAc,CAAC;AAAA,EACnF;AACJ;;;ACrTA,IAAM,mBAAN,MAAM,kBAAiB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMnB,iBAAiB,KAAK,SAAS;AAC3B,WAAO,kBAAiB,sBAAsB,KAAK,OAAO;AAAA,EAC9D;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,iBAAiB,KAAK,SAAS;AAC3B,WAAO,kBAAiB,sBAAsB,KAAK,OAAO;AAAA,EAC9D;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,OAAO,sBAAsB,KAAK,SAAS;AACvC,QAAI,QAAQ,WAAW;AACnB,aAAO,SAAS,QAAQ,GAAG;AAAA,IAC/B,OACK;AACD,aAAO,SAAS,OAAO,GAAG;AAAA,IAC9B;AACA,WAAO,IAAI,QAAQ,CAAC,YAAY;AAC5B,iBAAW,MAAM;AACb,gBAAQ,IAAI;AAAA,MAChB,GAAG,QAAQ,OAAO;AAAA,IACtB,CAAC;AAAA,EACL;AACJ;;;AC3BA,IAAM,cAAN,MAAkB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOR,oBAAoB,KAAK,SAAS;AAAA;AACpC,UAAI;AACJ,UAAI;AACA,mBAAW,MAAM,MAAM,KAAK;AAAA,UACxB,QAAQ,kBAAkB;AAAA,UAC1B,SAAS,KAAK,gBAAgB,OAAO;AAAA,QACzC,CAAC;AAAA,MACL,SACO,GAAG;AACN,YAAI,OAAO,UAAU,QAAQ;AACzB,gBAAM,uBAAuB,gBAAgB;AAAA,QACjD,OACK;AACD,gBAAM,uBAAuBC,sBAAqB;AAAA,QACtD;AAAA,MACJ;AACA,UAAI;AACA,eAAO;AAAA,UACH,SAAS,KAAK,cAAc,SAAS,OAAO;AAAA,UAC5C,MAAO,MAAM,SAAS,KAAK;AAAA,UAC3B,QAAQ,SAAS;AAAA,QACrB;AAAA,MACJ,SACO,GAAG;AACN,cAAM,uBAAuB,qBAAqB;AAAA,MACtD;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,qBAAqB,KAAK,SAAS;AAAA;AACrC,YAAM,UAAW,WAAW,QAAQ,QAAS,UAAU;AACvD,UAAI;AACJ,UAAI;AACA,mBAAW,MAAM,MAAM,KAAK;AAAA,UACxB,QAAQ,kBAAkB;AAAA,UAC1B,SAAS,KAAK,gBAAgB,OAAO;AAAA,UACrC,MAAM;AAAA,QACV,CAAC;AAAA,MACL,SACO,GAAG;AACN,YAAI,OAAO,UAAU,QAAQ;AACzB,gBAAM,uBAAuBC,kBAAiB;AAAA,QAClD,OACK;AACD,gBAAM,uBAAuBD,sBAAqB;AAAA,QACtD;AAAA,MACJ;AACA,UAAI;AACA,eAAO;AAAA,UACH,SAAS,KAAK,cAAc,SAAS,OAAO;AAAA,UAC5C,MAAO,MAAM,SAAS,KAAK;AAAA,UAC3B,QAAQ,SAAS;AAAA,QACrB;AAAA,MACJ,SACO,GAAG;AACN,cAAM,uBAAuB,qBAAqB;AAAA,MACtD;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,gBAAgB,SAAS;AACrB,UAAM,UAAU,IAAI,QAAQ;AAC5B,QAAI,EAAE,WAAW,QAAQ,UAAU;AAC/B,aAAO;AAAA,IACX;AACA,UAAM,iBAAiB,QAAQ;AAC/B,WAAO,KAAK,cAAc,EAAE,QAAQ,CAAC,QAAQ;AACzC,cAAQ,OAAO,KAAK,eAAe,GAAG,CAAC;AAAA,IAC3C,CAAC;AACD,WAAO;AAAA,EACX;AAAA,EACA,cAAc,SAAS;AACnB,UAAM,aAAa,CAAC;AACpB,YAAQ,QAAQ,CAAC,OAAO,QAAQ;AAC5B,iBAAW,GAAG,IAAI;AAAA,IACtB,CAAC;AACD,WAAO;AAAA,EACX;AACJ;;;AC7FA,IAAM,2BAA2B;AACjC,IAAM,4BAA4B;AAClC,IAAM,8BAA8B;AACpC,IAAM,6CAA6C;AAUnD,SAAS,mBAAmB,EAAE,MAAM,eAAe,OAAO,gBAAgB,QAAQ,iBAAiB,WAAW,mBAAoB,GAAG,sBAAsB;AAEvJ,QAAM,uBAAuB;AAAA,IACzB,UAAU,UAAU;AAAA,IACpB,WAAW,GAAG,UAAU,iBAAiB;AAAA,IACzC,kBAAkB,CAAC;AAAA,IACnB,wBAAwB,UAAU;AAAA,IAClC,mBAAmB,UAAU;AAAA,IAC7B,aAAa,UAAU;AAAA,IACvB,uBAAuB,UAAU;AAAA,IACjC,2BAA2B;AAAA,IAC3B,oBAAoB,CAAC;AAAA,IACrB,cAAc,aAAa;AAAA,IAC3B,aAAa;AAAA,MACT,oBAAoB,mBAAmB;AAAA,MACvC,eAAe;AAAA,QACX,UAAU;AAAA,QACV,UAAU;AAAA,QACV,UAAU;AAAA,MACd;AAAA,IACJ;AAAA,IACA,mBAAmB;AAAA,MACf,oBAAoB,mBAAmB;AAAA,MACvC,QAAQ,UAAU;AAAA,IACtB;AAAA,IACA,4BAA4B;AAAA,EAChC;AAEA,QAAME,yBAAwB;AAAA,IAC1B,eAAe,qBAAqB;AAAA,IACpC,wBAAwB,qBAAqB;AAAA,IAC7C,wBAAwB;AAAA,IACxB,eAAe;AAAA;AAAA,IAEf,uBAAuB,kBACnB,eAAe,kBAAkB,qBAAqB,eACpD,OACA;AAAA,IACN,2BAA2B;AAAA,EAC/B;AAEA,QAAM,yBAAyB;AAAA;AAAA,IAE3B,gBAAgB,MAAM;AAAA,IAEtB;AAAA,IACA,UAAU,SAAS;AAAA,IACnB,mBAAmB;AAAA,EACvB;AAEA,QAAM,iCAAiC,iCAChC,yBADgC;AAAA,IAEnC,eAAe;AAAA,IACf,eAAe,uBACT,IAAI,YAAY,IAChB;AAAA,IACN,kBAAkB,IAAI,iBAAiB;AAAA,IACvC,kBAAkB;AAAA;AAAA,IAElB,mBAAmB,iBAAiB,oBAAoB;AAAA,IACxD,mBAAmB,iBAAiB,oBAAoB;AAAA,IACxD,mBAAmB;AAAA,IACnB,2BAA2B;AAAA,IAC3B,aAAa;AAAA,IACb,uBAAuB;AAAA,IACvB,mBAAmB;AAAA,IACnB,8BAA8B,iBAAiB,gCAC3C;AAAA,IACJ,0BAA0B,iBAAiB;AAAA,EAC/C;AACA,QAAM,wBAAwB,gDACvB,iCACA,kBAFuB;AAAA,IAG1B,eAAe,iBAAiB,iBAAiB;AAAA,EACrD;AACA,QAAMC,6BAA4B;AAAA,IAC9B,aAAa;AAAA,MACT,SAAS,UAAU;AAAA,MACnB,YAAY,UAAU;AAAA,IAC1B;AAAA,IACA,QAAQ,IAAI,sBAAsB;AAAA,EACtC;AAEA,MAAI,eAAe,iBAAiB,aAAa,QAC7C,eAAe,aAAa;AAC5B,UAAM,SAAS,IAAI,OAAO,sBAAsB,aAAa;AAC7D,WAAO,QAAQ,KAAK,UAAU,+BAA+B,sCAA8B,oBAAoB,CAAC,CAAC;AAAA,EACrH;AAEA,MAAI,eAAe,gBACf,cAAc,iBAAiB,aAAa,OAC5C,uBAAuB,mBAAmB;AAC1C,UAAM,+BAA+B,sCAA8B,uBAAuB;AAAA,EAC9F;AACA,QAAM,kBAAkB;AAAA,IACpB,MAAM,gDACC,uBACA,gBAFD;AAAA,MAGF,aAAa,kCACN,qBAAqB,cACrB,eAAe;AAAA,IAE1B;AAAA,IACA,OAAO,kCAAKD,yBAA0B;AAAA,IACtC,QAAQ;AAAA,IACR,WAAW,kCAAKC,6BAA8B;AAAA,EAClD;AACA,SAAO;AACX;;;ACzHA,IAAM,gBAAN,cAA4B,mBAAmB;AAAA,EAC3C,YAAY,gBAAgB,aAAa,iBAAiB,QAAQ,eAAe,mBAAmB;AAChG,UAAM,gBAAgB,aAAa,iBAAiB,QAAQ,iBAAiB;AAC7E,SAAK,oBAAoB,cAAc;AACvC,SAAK,2BAA2B,cAAc;AAAA,EAClD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,oBAAoB,YAAY;AAAA;AAClC,WAAK,kBAAkB,oBAAoB,kBAAkB,kCAAkC,KAAK,gBAAgB,aAAa;AACjI,UAAI,CAAC,YAAY;AAEb,aAAK,OAAO,KAAK,uBAAuB;AACxC,cAAM,uBAAuB,gBAAgB;AAAA,MACjD;AACA,UAAI,KAAK,mBAAmB;AACxB,eAAO,MAAM,YAAY,KAAK,UAAU,KAAK,IAAI,GAAG,kBAAkB,wBAAwB,KAAK,QAAQ,KAAK,mBAAmB,KAAK,gBAAgB,aAAa,EAAE,UAAU;AAAA,MACrL;AACA,aAAO,KAAK,cAAc,UAAU;AAAA,IACxC;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,qBAAqB,QAAQ,SAAS;AAClC,SAAK,kBAAkB,oBAAoB,kBAAkB,mCAAmC,KAAK,gBAAgB,aAAa;AAClI,WAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AACpC,UAAI,UAAU,2BAA2B;AACrC,aAAK,OAAO,QAAQ,qEAAqE,OAAO,yBAAyB,yBAAyB,mCAAmC;AAAA,MACzL;AAKA,YAAM,UAAU,OAAO,YAAY,IAAI;AACvC,YAAM,cAAc,UAAU;AAC9B,YAAM,aAAa,YAAY,MAAM;AACjC,YAAI,OAAO,YAAY,IAAI,IAAI,aAAa;AACxC,eAAK,mBAAmB,MAAM;AAC9B,wBAAc,UAAU;AACxB,iBAAO,uBAAuB,oBAAoB,CAAC;AACnD;AAAA,QACJ;AACA,YAAI,OAAO,UAAU;AACrB,cAAM,gBAAgB,OAAO;AAC7B,YAAI;AAMA,iBAAO,gBACD,cAAc,SAAS,OACvB,UAAU;AAAA,QACpB,SACO,GAAG;AAAA,QAAE;AACZ,YAAI,CAAC,QAAQ,SAAS,eAAe;AACjC;AAAA,QACJ;AACA,cAAM,cAAc,gBACd,cAAc,SAAS,OACvB,UAAU;AAChB,YAAI,aAAa;AACb,cAAI,UAAU,4BAA4B,WAAW,GAAG;AAEpD,iBAAK,mBAAmB,MAAM;AAC9B,0BAAc,UAAU;AACxB,oBAAQ,WAAW;AACnB;AAAA,UACJ,OACK;AAED,iBAAK,OAAO,MAAM,qMAAqM;AACvN,iBAAK,OAAO,SAAS,2EAA2E,IAAI,EAAE;AACtG,iBAAK,mBAAmB,MAAM;AAC9B,0BAAc,UAAU;AACxB,mBAAO,uBAAuB,iCAAiC,CAAC;AAChE;AAAA,UACJ;AAAA,QACJ,OACK;AAED,eAAK,OAAO,MAAM,+OAA+O;AACjQ,eAAK,OAAO,SAAS,2EAA2E,IAAI,EAAE;AACtG,eAAK,mBAAmB,MAAM;AAC9B,wBAAc,UAAU;AACxB,iBAAO,uBAAuB,cAAc,CAAC;AAC7C;AAAA,QACJ;AAAA,MACJ,GAAG,KAAK,wBAAwB;AAAA,IACpC,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,UAAU,aAAa;AACnB,SAAK,kBAAkB,oBAAoB,kBAAkB,wBAAwB,KAAK,gBAAgB,aAAa;AAKvH,WAAO,IAAI,QAAQ,CAAC,SAAS,WAAW;AACpC,YAAM,cAAc,KAAK,mBAAmB;AAC5C,iBAAW,MAAM;AACb,YAAI,CAAC,aAAa;AACd,iBAAO,uBAAuB;AAC9B;AAAA,QACJ;AACA,oBAAY,MAAM;AAClB,gBAAQ,WAAW;AAAA,MACvB,GAAG,KAAK,iBAAiB;AAAA,IAC7B,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,cAAc,aAAa;AACvB,UAAM,cAAc,KAAK,mBAAmB;AAC5C,gBAAY,MAAM;AAClB,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,qBAAqB;AACjB,UAAM,YAAY,SAAS,cAAc,QAAQ;AACjD,cAAU,MAAM,aAAa;AAC7B,cAAU,MAAM,WAAW;AAC3B,cAAU,MAAM,QAAQ,UAAU,MAAM,SAAS;AACjD,cAAU,MAAM,SAAS;AACzB,cAAU,aAAa,WAAW,6CAA6C;AAC/E,aAAS,qBAAqB,MAAM,EAAE,CAAC,EAAE,YAAY,SAAS;AAC9D,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,mBAAmB,QAAQ;AACvB,QAAI,SAAS,SAAS,OAAO,YAAY;AACrC,eAAS,KAAK,YAAY,MAAM;AAAA,IACpC;AAAA,EACJ;AACJ;;;ACzJA,IAAM,qBAAN,cAAiC,0BAA0B;AAAA,EACvD,YAAY,QAAQ,aAAa,eAAe,QAAQ,cAAc,kBAAkB,OAAO,mBAAmB,mBAAmB,sBAAsB,eAAe;AACtK,UAAM,QAAQ,aAAa,eAAe,QAAQ,cAAc,kBAAkB,mBAAmB,sBAAsB,aAAa;AACxI,SAAK,QAAQ;AACb,SAAK,gBAAgB;AAAA,EACzB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,aAAa,SAAS;AAAA;AACxB,WAAK,kBAAkB,oBAAoB,kBAAkB,gCAAgC,QAAQ,aAAa;AAElH,UAAI,CAAC,QAAQ,aACT,CAAC,QAAQ,QACR,CAAC,QAAQ,WAAW,CAAC,QAAQ,QAAQ,WAAW;AACjD,aAAK,OAAO,QAAQ,qGAAqG;AAAA,MAC7H;AAEA,UAAI,QAAQ,UACR,QAAQ,WAAW,YAAY,QAC/B,QAAQ,WAAW,YAAY,YAAY;AAC3C,cAAM,uBAAuB,sBAAsB;AAAA,MACvD;AAEA,YAAM,gBAAgB,MAAM,YAAY,KAAK,+BAA+B,KAAK,IAAI,GAAG,kBAAkB,yDAAyD,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,iCACxN,UADwN;AAAA,QAE3N,QAAQ,QAAQ,UAAU,YAAY;AAAA,MAC1C,IAAG,gBAAgB,MAAM;AACzB,WAAK,eAAe,mBAAmB,cAAc,OAAO,cAAc,OAAO,cAAc,WAAW,cAAc,aAAa,UAAU,cAAc,cAAc,WAAW,IAAI;AAC1L,YAAM,yBAAyB,KAAK,iCAAiC,KAAK,KAAK;AAC/E,UAAI;AAEA,cAAM,aAAa,MAAM,YAAY,KAAK,qBAAqB,KAAK,IAAI,GAAG,kBAAkB,+CAA+C,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,wBAAwB,cAAc,WAAW,cAAc,iBAAiB;AACxR,eAAO,MAAM,YAAY,KAAK,kBAAkB,KAAK,IAAI,GAAG,kBAAkB,+BAA+B,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,YAAY,aAAa;AAAA,MACtM,SACO,GAAG;AACN,YAAI,aAAa,WAAW;AACxB,YAAE,iBAAiB,KAAK,aAAa;AACrC,iCAAuB,mBAAmB,CAAC;AAAA,QAC/C;AACA,aAAK,eAAe,oBAAoB,cAAc,KAAK;AAC3D,cAAM;AAAA,MACV;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAIA,SAAS;AAEL,WAAO,QAAQ,OAAO,uBAAuB,uBAAuB,CAAC;AAAA,EACzE;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,kBAAkB,YAAY,eAAe;AAAA;AAC/C,WAAK,kBAAkB,oBAAoB,kBAAkB,+BAA+B,cAAc,aAAa;AAEvH,YAAM,kBAAkB,MAAM,YAAY,KAAK,mCAAmC,KAAK,IAAI,GAAG,kBAAkB,6DAA6D,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,aAAa;AAE5P,YAAM,cAAc,MAAM,YAAY,WAAW,eAAe,KAAK,UAAU,GAAG,kBAAkB,gBAAgB,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,iCAC/K,gBAD+K;AAAA,QAElL,cAAc,qBAAqB,kBAAkB,KAAK,QAAQ,KAAK,QAAQ,KAAK,sBAAsB,cAAc,oBAAoB;AAAA,MAChJ,EAAC;AAED,YAAM,gBAAgB,IAAI,cAAc,YAAY,KAAK,gBAAgB,iBAAiB,KAAK,QAAQ,KAAK,OAAO,QAAQ,KAAK,iBAAiB;AAEjJ,YAAM,YAAY,MAAM,YAAY,cAAc,oBAAoB,KAAK,aAAa,GAAG,kBAAkB,kCAAkC,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,WAAW;AAE5N,YAAM,OAAO,MAAM,YAAY,cAAc,qBAAqB,KAAK,aAAa,GAAG,kBAAkB,mCAAmC,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,WAAW,KAAK,OAAO,OAAO,iBAAiB;AAE7P,YAAM,eAAe,UAAU,oBAAoB,IAAI;AACvD,YAAM,QAAQ,KAAK,gCAAgC,cAAc,gBAAgB,QAAQ,gBAAgB,aAAa;AACtH,UAAI,aAAa,WAAW;AACxB,aAAK,OAAO,QAAQ,iDAAiD;AACrE,YAAI,CAAC,KAAK,sBAAsB;AAC5B,gBAAM,uBAAuB,8BAA8B;AAAA,QAC/D;AACA,cAAM,0BAA0B,IAAI,wBAAwB,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,KAAK,OAAO,KAAK,mBAAmB,KAAK,sBAAsB,aAAa,WAAW,KAAK,gBAAgB,KAAK,aAAa;AACvS,cAAM,EAAE,iBAAiB,IAAI,cAAc,kBAAkB,KAAK,eAAe,KAAK;AACtF,eAAO,YAAY,wBAAwB,aAAa,KAAK,uBAAuB,GAAG,kBAAkB,qCAAqC,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,iCACzM,gBADyM;AAAA,UAE5M,OAAO;AAAA,UACP,QAAQ,cAAc,UAAU,YAAY;AAAA,QAChD,EAAC,EAAE,QAAQ,MAAM;AACb,eAAK,eAAe,oBAAoB,KAAK;AAAA,QACjD,CAAC;AAAA,MACL;AAEA,aAAO,YAAY,cAAc,2BAA2B,KAAK,aAAa,GAAG,kBAAkB,4BAA4B,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,MAAM,OAAO,WAAW,WAAW,KAAK,aAAa;AAAA,IAC1P;AAAA;AACJ;;;ACjGA,IAAM,sBAAN,cAAkC,0BAA0B;AAAA;AAAA;AAAA;AAAA;AAAA,EAKlD,aAAa,SAAS;AAAA;AACxB,WAAK,kBAAkB,oBAAoB,kBAAkB,iCAAiC,QAAQ,aAAa;AACnH,YAAM,cAAc,MAAM,YAAY,KAAK,sBAAsB,KAAK,IAAI,GAAG,kBAAkB,uBAAuB,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,QAAQ,OAAO;AAC1M,YAAM,gBAAgB,kCACf,UACA;AAEP,YAAM,yBAAyB,KAAK,iCAAiC,MAAM,6BAA6B;AACxG,YAAM,qBAAqB,MAAM,KAAK,yBAAyB,wBAAwB,cAAc,WAAW,cAAc,iBAAiB;AAC/I,WAAK,OAAO,QAAQ,8BAA8B;AAElD,aAAO,YAAY,mBAAmB,2BAA2B,KAAK,kBAAkB,GAAG,kBAAkB,8CAA8C,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,aAAa,EAC/N,KAAK,CAAC,WAAW,MAAM,EACvB,KAAK,CAAC,WAAW;AAClB,aAAK,kBAAkB,UAAU;AAAA,UAC7B,WAAW,OAAO;AAAA,UAClB,WAAW,OAAO;AAAA,QACtB,GAAG,QAAQ,aAAa;AACxB,eAAO;AAAA,MACX,CAAC,EACI,MAAM,CAAC,MAAM;AACd,UAAE,iBAAiB,KAAK,aAAa;AACrC,+BAAuB,mBAAmB,CAAC;AAC3C,cAAM;AAAA,MACV,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA,EAIA,SAAS;AAEL,WAAO,QAAQ,OAAO,uBAAuB,uBAAuB,CAAC;AAAA,EACzE;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,yBAAyB,wBAAwB,cAAc,mBAAmB;AAAA;AAEpF,YAAM,eAAe,MAAM,YAAY,KAAK,uBAAuB,KAAK,IAAI,GAAG,kBAAkB,iDAAiD,KAAK,QAAQ,KAAK,mBAAmB,KAAK,aAAa,EAAE,wBAAwB,cAAc,iBAAiB;AAClQ,aAAO,IAAI,mBAAmB,cAAc,KAAK,iBAAiB;AAAA,IACtE;AAAA;AACJ;;;AC9CA,IAAM,aAAN,MAAiB;AAAA,EACb,YAAY,eAAe,SAAS,QAAQ,WAAW;AACnD,SAAK,uBAAuB,OAAO,WAAW;AAC9C,SAAK,SAAS;AACd,SAAK,UAAU;AACf,SAAK,SAAS;AACd,SAAK,YAAY;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASA,mBAAmB,SAAS,UAAU,SAAS;AAC3C,SAAK,OAAO,KAAK,wCAAwC;AACzD,QAAI,CAAC,SAAS,UAAU;AACpB,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AACA,UAAM,gBAAgB,kBAAU,mBAAmB,SAAS,UAAU,YAAY;AAClF,QAAI;AACJ,QAAI;AACJ,QAAI;AACJ,QAAI,QAAQ,SAAS;AACjB,2BAAqB,cAAc,sBAAsB,QAAQ,OAAO;AACxE,oBAAc,IAAI,YAAY,oBAAoB,KAAK,YAAY,SAAS,UAAU,mBAAmB,eAAe,QAAQ,QAAQ,aAAa,QAAQ,QAAQ,QAAQ,GAAG,KAAK,gBAAgB,SAAS,UAAU,mBAAmB,eAAe,QAAQ,QAAQ,aAAa,QAAQ,QAAQ,UAAU,OAAO,GAAG,KAAK,iBAAiB,SAAS,UAAU,mBAAmB,eAAe,QAAQ,QAAQ,WAAW,CAAC;AAAA,IACta,WACS,QAAQ,WAAW;AACxB,YAAM,eAAe,UAAU,kBAAkB,QAAQ,WAAW,QAAQ,iBAAiB;AAC7F,YAAM,mBAAmB;AAAA,QACrB,cAAc,KAAK,OAAO,KAAK;AAAA,QAC/B,kBAAkB,KAAK,OAAO,KAAK;AAAA,QACnC,wBAAwB,KAAK,OAAO,KAAK;AAAA,QACzC,mBAAmB,KAAK,OAAO,KAAK;AAAA,QACpC,4BAA4B,KAAK,OAAO,KAAK;AAAA,MACjD;AACA,kBAAY,IAAI,UAAU,cAAc,KAAK,OAAO,OAAO,eAAe,KAAK,SAAS,kBAAkB,KAAK,MAAM;AAErH,UAAI,QAAQ,YAAY;AACpB,aAAK,OAAO,MAAM,yCAAyC;AAC3D,6BAAqB,KAAK,YAAY,eAAe,WAAW,QAAQ,UAAU;AAClF,sBAAc,IAAI,YAAY,oBAAoB,KAAK,YAAY,SAAS,UAAU,mBAAmB,eAAe,UAAU,iBAAiB,UAAU,MAAM,GAAG,KAAK,gBAAgB,SAAS,UAAU,mBAAmB,eAAe,UAAU,iBAAiB,UAAU,QAAQ,OAAO,GAAG,KAAK,iBAAiB,SAAS,UAAU,mBAAmB,eAAe,UAAU,eAAe,CAAC;AAAA,MAChZ,WACS,SAAS,aAAa;AAC3B,aAAK,OAAO,MAAM,0CAA0C;AAC5D,6BAAqB,KAAK,YAAY,eAAe,WAAW,SAAS,WAAW;AACpF,sBAAc,IAAI,YAAY,oBAAoB,KAAK,YAAY,SAAS,UAAU,mBAAmB,eAAe,UAAU,iBAAiB,UAAU,MAAM,GAAG,KAAK,gBAAgB,SAAS,UAAU,mBAAmB,eAAe,UAAU,iBAAiB,UAAU,QAAQ,OAAO,GAAG,KAAK,iBAAiB,SAAS,UAAU,mBAAmB,eAAe,UAAU,eAAe,CAAC;AAAA,MAChZ,OACK;AACD,cAAM,uBAAuB,iBAAiB;AAAA,MAClD;AAAA,IACJ,OACK;AACD,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AACA,WAAO,KAAK,6BAA6B,SAAS,eAAe,aAAa,oBAAoB,SAAS;AAAA,EAC/G;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAUA,YAAY,eAAe,WAAW,YAAY,sBAAsB;AACpE,QAAI;AACJ,QAAI,sBAAsB;AACtB,sBAAgB;AAAA,IACpB,WACS,UAAU,kBAAkB,UAAa,YAAY;AAC1D,sBAAgB,cAAc,sBAAsB,YAAY,UAAU,eAAe,KAAK,QAAQ,KAAK,WAAW,aAAa;AAAA,IACvI;AACA,QAAI,CAAC,eAAe;AAChB,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AACA,UAAM,gBAAgB,cAAc,cAAc;AAAA,MAC9C;AAAA,MACA;AAAA,MACA;AAAA,MACA,aAAa,UAAU;AAAA,IAC3B,GAAG,SAAS;AACZ,QAAI,KAAK,sBAAsB;AAC3B,WAAK,OAAO,QAAQ,8BAA8B;AAClD,WAAK,QAAQ,WAAW,aAAa;AACrC,aAAO;AAAA,IACX,OACK;AACD,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASA,YAAY,SAAS,eAAe,aAAa,UAAU;AACvD,UAAM,gBAAgB,cAAc,oBAAoB,eAAe,aAAa,SAAS,KAAK,OAAO,KAAK,UAAU,QAAQ;AAChI,QAAI,KAAK,sBAAsB;AAC3B,WAAK,OAAO,QAAQ,+BAA+B;AACnD,WAAK,QAAQ,qBAAqB,aAAa;AAC/C,aAAO;AAAA,IACX,OACK;AACD,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAUA,gBAAgB,SAAS,UAAU,eAAe,aAAa,UAAU,SAAS;AAC9E,QAAI,CAAC,SAAS,cAAc;AACxB,WAAK,OAAO,QAAQ,mDAAmD;AACvE,aAAO;AAAA,IACX;AACA,QAAI,CAAC,SAAS,YAAY;AACtB,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AACA,QAAI,CAAC,QAAQ,mBAAmB;AAC5B,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AACA,UAAM,SAAS,IAAI,SAAS,QAAQ,MAAM,EAAE,YAAY;AACxD,UAAM,YAAY,QAAQ,aACtB,SAAS,cAAa,oBAAI,KAAK,GAAE,QAAQ,IAAI;AACjD,UAAM,oBAAoB,QAAQ;AAClC,UAAM,oBAAoB,kBAAkB,wBAAwB,eAAe,aAAa,SAAS,cAAc,KAAK,OAAO,KAAK,UAAU,UAAU,QAAQ,WAAW,mBAAmB,KAAK,SAAS;AAChN,QAAI,KAAK,sBAAsB;AAC3B,WAAK,OAAO,QAAQ,mCAAmC;AACvD,WAAK,QAAQ,yBAAyB,iBAAiB;AACvD,aAAO;AAAA,IACX,OACK;AACD,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASA,iBAAiB,SAAS,UAAU,eAAe,aAAa;AAC5D,QAAI,CAAC,SAAS,eAAe;AACzB,WAAK,OAAO,QAAQ,oDAAoD;AACxE,aAAO;AAAA,IACX;AACA,UAAM,qBAAqB,mBAAmB,yBAAyB,eAAe,aAAa,SAAS,eAAe,KAAK,OAAO,KAAK,QAAQ;AACpJ,QAAI,KAAK,sBAAsB;AAC3B,WAAK,OAAO,QAAQ,oCAAoC;AACxD,WAAK,QAAQ,0BAA0B,kBAAkB;AACzD,aAAO;AAAA,IACX,OACK;AACD,YAAM,uBAAuB,iBAAiB;AAAA,IAClD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASA,6BAA6B,SAAS,eAAe,aAAa,eAAe,WAAW;AACxF,QAAI,cAAc,UAAU;AAC5B,QAAI,iBAAiB,CAAC;AACtB,QAAI,YAAY;AAChB,QAAI;AACJ,QAAI,aAAa,aAAa;AAC1B,oBAAc,YAAY,YAAY;AACtC,uBAAiB,SAAS,WAAW,YAAY,YAAY,MAAM,EAAE,QAAQ;AAC7E,kBAAY,IAAI,KAAK,OAAO,YAAY,YAAY,SAAS,IAAI,GAAI;AACrE,qBAAe,IAAI,KAAK,OAAO,YAAY,YAAY,iBAAiB,IAAI,GAAI;AAAA,IACpF;AACA,UAAM,MAAM,cAAc,OAAO,cAAc,OAAO,UAAU;AAChE,UAAM,MAAM,cAAc,OAAO,UAAU;AAC3C,WAAO;AAAA,MACH,WAAW,YACL,UAAU,qBACV,UAAU;AAAA,MAChB,UAAU;AAAA,MACV,UAAU;AAAA,MACV,QAAQ;AAAA,MACR,SAAS,cAAc,eAAe;AAAA,MACtC,SAAS,YAAY,SAAS,UAAU;AAAA,MACxC,eAAe,iBAAiB,CAAC;AAAA,MACjC;AAAA,MACA,WAAW;AAAA,MACX;AAAA,MACA,eAAe,QAAQ,iBAAiB,UAAU;AAAA,MAClD,WAAW,UAAU;AAAA,MACrB;AAAA,MACA,UAAU,UAAU;AAAA,MACpB,WAAW,aAAa,aAAa,aAAa,UAAU;AAAA,MAC5D,OAAO,UAAU;AAAA,MACjB,oBAAoB,cAAc,sBAAsB,UAAU;AAAA,MAClE,aAAa,cAAc,eAAe,UAAU;AAAA,MACpD,MAAM;AAAA,MACN,kBAAkB;AAAA,IACtB;AAAA,EACJ;AACJ;;;AC9NA,IAAM,mCAAN,cAA+C,wBAAwB;AAAA,EACnE,YAAY,QAAQ;AAChB,UAAM,MAAM;AACZ,SAAK,qBAAqB;AAAA,EAC9B;AACJ;;;ACCA,IAAM,uBAAN,cAAmC,0BAA0B;AAAA,EACzD,YAAY,QAAQ,aAAa,eAAe,QAAQ,cAAc,kBAAkB,OAAO,mBAAmB,sBAAsB,eAAe;AACnJ,UAAM,QAAQ,aAAa,eAAe,QAAQ,cAAc,kBAAkB,mBAAmB,sBAAsB,aAAa;AACxI,SAAK,QAAQ;AAAA,EACjB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,aAAa,SAAS;AAAA;AAExB,UAAI,CAAC,QAAQ,MAAM;AACf,cAAM,uBAAuB,gBAAgB;AAAA,MACjD;AAEA,YAAM,gBAAgB,MAAM,YAAY,KAAK,+BAA+B,KAAK,IAAI,GAAG,kBAAkB,yDAAyD,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,gBAAgB,MAAM;AAC9P,WAAK,eAAe,mBAAmB,cAAc,OAAO,cAAc,OAAO,cAAc,WAAW,cAAc,aAAa,UAAU,cAAc,cAAc,WAAW,IAAI;AAC1L,YAAM,yBAAyB,KAAK,iCAAiC,KAAK,KAAK;AAC/E,UAAI;AAEA,cAAM,kBAAkB,iCACjB,gBADiB;AAAA,UAEpB,MAAM,QAAQ;AAAA,QAClB;AAEA,cAAM,eAAe,MAAM,YAAY,KAAK,uBAAuB,KAAK,IAAI,GAAG,kBAAkB,iDAAiD,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,wBAAwB,cAAc,SAAS;AAC7P,cAAM,aAAa,IAAI,iCAAiC,YAAY;AACpE,aAAK,OAAO,QAAQ,0BAA0B;AAE9C,cAAM,gBAAgB,IAAI,cAAc,YAAY,KAAK,gBAAgB,iBAAiB,KAAK,QAAQ,KAAK,OAAO,QAAQ,KAAK,iBAAiB;AAEjJ,eAAO,YAAY,cAAc,6BAA6B,KAAK,aAAa,GAAG,kBAAkB,8BAA8B,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE;AAAA,UAC3L,MAAM,QAAQ;AAAA,UACd,cAAc,QAAQ;AAAA,UACtB,uBAAuB,QAAQ;AAAA,UAC/B,0BAA0B,QAAQ;AAAA,QACtC,GAAG,cAAc,OAAO,WAAW,WAAW,KAAK,eAAe,KAAK;AAAA,MAC3E,SACO,GAAG;AACN,YAAI,aAAa,WAAW;AACxB,YAAE,iBAAiB,KAAK,aAAa;AACrC,iCAAuB,mBAAmB,CAAC;AAAA,QAC/C;AACA,aAAK,eAAe,oBAAoB,cAAc,KAAK;AAC3D,cAAM;AAAA,MACV;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAIA,SAAS;AAEL,WAAO,QAAQ,OAAO,uBAAuB,uBAAuB,CAAC;AAAA,EACzE;AACJ;;;ACvCA,IAAM,qBAAN,MAAM,oBAAmB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAsBrB,YAAY,kBAAkB;AAC1B,SAAK,sBAAsB;AAC3B,SAAK,mBAAmB;AACxB,SAAK,uBACD,KAAK,iBAAiB,qBAAqB;AAE/C,SAAK,SAAS,iBAAiB,UAAU;AACzC,SAAK,cAAc;AAEnB,SAAK,SAAS,KAAK,iBAAiB,UAAU;AAE9C,SAAK,gBAAgB,KAAK,OAAO,OAAO;AAExC,SAAK,mBAAmB,KAAK,OAAO,OAAO;AAE3C,SAAK,mBAAmB,oBAAI,IAAI;AAEhC,SAAK,0BAA0B,oBAAI,IAAI;AAEvC,SAAK,oBAAoB,KAAK,OAAO,UAAU;AAE/C,SAAK,gBAAgB,KAAK,uBACpB,IAAI,UAAU,KAAK,QAAQ,KAAK,iBAAiB,IACjD;AACN,SAAK,eAAe,IAAI,aAAa,KAAK,QAAQ,KAAK,aAAa;AAEpE,SAAK,iBAAiB,KAAK,uBACrB,IAAI,oBAAoB,KAAK,OAAO,KAAK,UAAU,KAAK,OAAO,OAAO,KAAK,eAAe,KAAK,MAAM,IACrG,8BAA8B,KAAK,OAAO,KAAK,UAAU,KAAK,MAAM;AAE1E,UAAM,qBAAqB;AAAA,MACvB,eAAe,qBAAqB;AAAA,MACpC,wBAAwB,qBAAqB;AAAA,MAC7C,wBAAwB;AAAA,MACxB,eAAe;AAAA,MACf,uBAAuB;AAAA,MACvB,2BAA2B;AAAA,IAC/B;AACA,SAAK,wBAAwB,IAAI,oBAAoB,KAAK,OAAO,KAAK,UAAU,oBAAoB,KAAK,eAAe,KAAK,MAAM;AAEnI,SAAK,aAAa,IAAI,WAAW,KAAK,QAAQ,KAAK,gBAAgB,KAAK,QAAQ,KAAK,aAAa;AAClG,SAAK,4BAA4B,oBAAI,IAAI;AAEzC,SAAK,sBAAsB,KAAK,oBAAoB,KAAK,IAAI;AAE7D,SAAK,qCACD,KAAK,mCAAmC,KAAK,IAAI;AAAA,EACzD;AAAA,EACA,OAAa,iBAAiB,kBAAkB;AAAA;AAC5C,YAAM,aAAa,IAAI,oBAAmB,gBAAgB;AAC1D,YAAM,WAAW,WAAW;AAC5B,aAAO;AAAA,IACX;AAAA;AAAA,EACA,sBAAsB;AAClB,QAAI,CAAC,KAAK,qBAAqB;AAC3B;AAAA,IACJ;AACA,SAAK,OAAO,KAAK,kCAAkC;AACnD,SAAK,oBAAoB,UAAU;AAAA,MAC/B,uBAAuB;AAAA,IAC3B,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA,EAIM,aAAa;AAAA;AACf,WAAK,OAAO,MAAM,mBAAmB;AACrC,UAAI,KAAK,aAAa;AAClB,aAAK,OAAO,KAAK,oDAAoD;AACrE;AAAA,MACJ;AACA,YAAM,oBAAoB,KAAK,OAAO,OAAO;AAC7C,YAAM,kBAAkB,KAAK,kBAAkB,iBAAiB,kBAAkB,2BAA2B;AAC7G,WAAK,aAAa,UAAU,UAAU,gBAAgB;AACtD,UAAI,mBAAmB;AACnB,YAAI;AACA,eAAK,0BACD,MAAM,qBAAqB,eAAe,KAAK,QAAQ,KAAK,OAAO,OAAO,8BAA8B,KAAK,iBAAiB;AAAA,QACtI,SACO,GAAG;AACN,eAAK,OAAO,QAAQ,CAAC;AAAA,QACzB;AAAA,MACJ;AACA,UAAI,CAAC,KAAK,OAAO,MAAM,2BAA2B;AAC9C,aAAK,OAAO,QAAQ,2EAA2E;AAC/F,cAAM,YAAY,KAAK,eAAe,6BAA6B,KAAK,KAAK,cAAc,GAAG,kBAAkB,8BAA8B,KAAK,QAAQ,KAAK,iBAAiB,EAAE,KAAK,iBAAiB;AAAA,MAC7M;AACA,WAAK,cAAc;AACnB,WAAK,aAAa,UAAU,UAAU,cAAc;AACpD,sBAAgB,IAAI,EAAE,mBAAmB,SAAS,KAAK,CAAC;AAAA,IAC5D;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASM,sBAAsB,MAAM;AAAA;AAC9B,WAAK,OAAO,QAAQ,8BAA8B;AAElD,mBAAa,8BAA8B,KAAK,WAAW;AAC3D,UAAI,sBAAsB;AAC1B,UAAI,KAAK,OAAO,KAAK,aAAa,uBAC9B,mBAAmB,OAAO;AAC1B,cAAM,MAAM,OAAO,SAAS;AAC5B,8BAAsB,UAAU,yBAAyB,GAAG;AAAA,MAChE;AACA,YAAM,mBAAmB,KAAK,eAAe;AAC7C,UAAI,KAAK,sBAAsB;AAM3B,cAAM,sBAAsB,uBAAuB,UAAU;AAC7D,YAAI,WAAW,KAAK,iBAAiB,IAAI,mBAAmB;AAC5D,YAAI,OAAO,aAAa,aAAa;AACjC,eAAK,aAAa,UAAU,UAAU,uBAAuB,gBAAgB,QAAQ;AACrF,eAAK,OAAO,QAAQ,+EAA+E;AACnG,gBAAM,UAAU,KAAK,eAAe,uBAAuB;AAC3D,cAAI;AACJ,cAAI,WACA,qBAAqB,kBAAkB,KAAK,QAAQ,KAAK,QAAQ,KAAK,uBAAuB,KAC7F,KAAK,2BACL,CAAC,qBAAqB;AACtB,iBAAK,OAAO,MAAM,8DAA8D;AAChF,kBAAM,eAAe,IAAI,wBAAwB,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,MAAM,uBAAuB,KAAK,mBAAmB,KAAK,yBAAyB,QAAQ,WAAW,KAAK,uBAAuB,QAAQ,aAAa;AACrT,+BAAmB,aAAa,sBAAsB;AAAA,UAC1D,OACK;AACD,iBAAK,OAAO,MAAM,uDAAuD;AACzE,kBAAM,gBAAgB,KAAK,eAAe,kBAAkB,mBAAmB,gBAAgB,IAAI,KAAK,UAAU;AAClH,kBAAM,iBAAiB,KAAK,qBAAqB,aAAa;AAC9D,+BACI,eAAe,sBAAsB,mBAAmB;AAAA,UAChE;AACA,qBAAW,iBACN,KAAK,CAAC,WAAW;AAClB,gBAAI,QAAQ;AAER,oBAAM,cAAc,iBAAiB,SACjC,KAAK,eAAe,EAAE;AAC1B,kBAAI,aAAa;AACb,qBAAK,aAAa,UAAU,UAAU,eAAe,gBAAgB,UAAU,MAAM;AACrF,qBAAK,OAAO,QAAQ,uDAAuD;AAAA,cAC/E,OACK;AACD,qBAAK,aAAa,UAAU,UAAU,uBAAuB,gBAAgB,UAAU,MAAM;AAC7F,qBAAK,OAAO,QAAQ,+DAA+D;AAAA,cACvF;AAAA,YACJ;AACA,iBAAK,aAAa,UAAU,UAAU,qBAAqB,gBAAgB,QAAQ;AACnF,mBAAO;AAAA,UACX,CAAC,EACI,MAAM,CAAC,MAAM;AAEd,gBAAI,iBAAiB,SAAS,GAAG;AAC7B,mBAAK,aAAa,UAAU,UAAU,uBAAuB,gBAAgB,UAAU,MAAM,CAAC;AAAA,YAClG,OACK;AACD,mBAAK,aAAa,UAAU,UAAU,eAAe,gBAAgB,UAAU,MAAM,CAAC;AAAA,YAC1F;AACA,iBAAK,aAAa,UAAU,UAAU,qBAAqB,gBAAgB,QAAQ;AACnF,kBAAM;AAAA,UACV,CAAC;AACD,eAAK,iBAAiB,IAAI,qBAAqB,QAAQ;AAAA,QAC3D,OACK;AACD,eAAK,OAAO,QAAQ,4FAA4F;AAAA,QACpH;AACA,eAAO;AAAA,MACX;AACA,WAAK,OAAO,QAAQ,6DAA6D;AACjF,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAUM,qBAAqB,SAAS;AAAA;AAEhC,YAAM,gBAAgB,KAAK,wBAAwB,OAAO;AAC1D,WAAK,OAAO,QAAQ,+BAA+B,aAAa;AAChE,WAAK,iCAAiC,gBAAgB,QAAQ;AAE9D,YAAM,aAAa,KAAK,eAAe,EAAE,SAAS;AAClD,UAAI,YAAY;AACZ,aAAK,aAAa,UAAU,UAAU,qBAAqB,gBAAgB,UAAU,OAAO;AAAA,MAChG,OACK;AACD,aAAK,aAAa,UAAU,UAAU,aAAa,gBAAgB,UAAU,OAAO;AAAA,MACxF;AACA,UAAI;AACJ,UAAI,KAAK,2BAA2B,KAAK,aAAa,OAAO,GAAG;AAC5D,cAAM,eAAe,IAAI,wBAAwB,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,MAAM,sBAAsB,KAAK,mBAAmB,KAAK,yBAAyB,KAAK,mBAAmB,OAAO,GAAG,KAAK,uBAAuB,QAAQ,aAAa;AACnU,iBAAS,aACJ,qBAAqB,OAAO,EAC5B,MAAM,CAAC,MAAM;AACd,cAAI,aAAa,mBACb,uBAAuB,CAAC,GAAG;AAC3B,iBAAK,0BAA0B;AAC/B,kBAAM,iBAAiB,KAAK,qBAAqB,QAAQ,aAAa;AACtE,mBAAO,eAAe,aAAa,OAAO;AAAA,UAC9C,WACS,aAAa,8BAA8B;AAChD,iBAAK,OAAO,QAAQ,iHAAiH;AACrI,kBAAM,iBAAiB,KAAK,qBAAqB,QAAQ,aAAa;AACtE,mBAAO,eAAe,aAAa,OAAO;AAAA,UAC9C;AACA,eAAK,kBAAkB,EAAE,yBAAyB,KAAK;AACvD,gBAAM;AAAA,QACV,CAAC;AAAA,MACL,OACK;AACD,cAAM,iBAAiB,KAAK,qBAAqB,QAAQ,aAAa;AACtE,iBAAS,eAAe,aAAa,OAAO;AAAA,MAChD;AACA,aAAO,OAAO,MAAM,CAAC,MAAM;AAEvB,YAAI,YAAY;AACZ,eAAK,aAAa,UAAU,UAAU,uBAAuB,gBAAgB,UAAU,MAAM,CAAC;AAAA,QAClG,OACK;AACD,eAAK,aAAa,UAAU,UAAU,eAAe,gBAAgB,UAAU,MAAM,CAAC;AAAA,QAC1F;AACA,cAAM;AAAA,MACV,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAUA,kBAAkB,SAAS;AACvB,UAAM,gBAAgB,KAAK,wBAAwB,OAAO;AAC1D,UAAM,qBAAqB,KAAK,kBAAkB,iBAAiB,kBAAkB,mBAAmB,aAAa;AACrH,QAAI;AACA,WAAK,OAAO,QAAQ,4BAA4B,aAAa;AAC7D,WAAK,iCAAiC,gBAAgB,KAAK;AAAA,IAC/D,SACO,GAAG;AAEN,aAAO,QAAQ,OAAO,CAAC;AAAA,IAC3B;AAEA,UAAM,mBAAmB,KAAK,eAAe;AAC7C,QAAI,iBAAiB,SAAS,GAAG;AAC7B,WAAK,aAAa,UAAU,UAAU,qBAAqB,gBAAgB,OAAO,OAAO;AAAA,IAC7F,OACK;AACD,WAAK,aAAa,UAAU,UAAU,aAAa,gBAAgB,OAAO,OAAO;AAAA,IACrF;AACA,QAAI;AACJ,QAAI,KAAK,aAAa,OAAO,GAAG;AAC5B,eAAS,KAAK,mBAAmB,SAAS,MAAM,iBAAiB,EAC5D,KAAK,CAAC,aAAa;AACpB,aAAK,kBAAkB,EAAE,yBAAyB,KAAK;AACvD,2BAAmB,IAAI;AAAA,UACnB,SAAS;AAAA,UACT,gBAAgB;AAAA,UAChB,WAAW,SAAS;AAAA,QACxB,CAAC;AACD,eAAO;AAAA,MACX,CAAC,EACI,MAAM,CAAC,MAAM;AACd,YAAI,aAAa,mBACb,uBAAuB,CAAC,GAAG;AAC3B,eAAK,0BAA0B;AAC/B,gBAAM,cAAc,KAAK,kBAAkB,QAAQ,aAAa;AAChE,iBAAO,YAAY,aAAa,OAAO;AAAA,QAC3C,WACS,aAAa,8BAA8B;AAChD,eAAK,OAAO,QAAQ,8GAA8G;AAClI,gBAAM,cAAc,KAAK,kBAAkB,QAAQ,aAAa;AAChE,iBAAO,YAAY,aAAa,OAAO;AAAA,QAC3C;AACA,aAAK,kBAAkB,EAAE,yBAAyB,KAAK;AACvD,cAAM;AAAA,MACV,CAAC;AAAA,IACL,OACK;AACD,YAAM,cAAc,KAAK,kBAAkB,QAAQ,aAAa;AAChE,eAAS,YAAY,aAAa,OAAO;AAAA,IAC7C;AACA,WAAO,OACF,KAAK,CAACC,YAAW;AAIlB,YAAM,cAAc,iBAAiB,SAAS,KAAK,eAAe,EAAE;AACpE,UAAI,aAAa;AACb,aAAK,aAAa,UAAU,UAAU,eAAe,gBAAgB,OAAOA,OAAM;AAAA,MACtF,OACK;AACD,aAAK,aAAa,UAAU,UAAU,uBAAuB,gBAAgB,OAAOA,OAAM;AAAA,MAC9F;AACA,yBAAmB,IAAI;AAAA,QACnB,iBAAiBA,QAAO,YAAY;AAAA,QACpC,aAAaA,QAAO,QAAQ;AAAA,MAChC,CAAC;AACD,yBAAmB,IAAI;AAAA,QACnB,SAAS;AAAA,QACT,WAAWA,QAAO;AAAA,MACtB,CAAC;AACD,aAAOA;AAAA,IACX,CAAC,EACI,MAAM,CAAC,MAAM;AACd,UAAI,iBAAiB,SAAS,GAAG;AAC7B,aAAK,aAAa,UAAU,UAAU,uBAAuB,gBAAgB,OAAO,MAAM,CAAC;AAAA,MAC/F,OACK;AACD,aAAK,aAAa,UAAU,UAAU,eAAe,gBAAgB,OAAO,MAAM,CAAC;AAAA,MACvF;AACA,yBAAmB,IAAI;AAAA,QACnB,WAAW,EAAE;AAAA,QACb,cAAc,EAAE;AAAA,QAChB,SAAS;AAAA,MACb,CAAC;AAED,aAAO,QAAQ,OAAO,CAAC;AAAA,IAC3B,CAAC;AAAA,EACL;AAAA,EACA,qCAAqC;AACjC,UAAM,cAAc,KAAK,wBACrB,KAAK;AACT,QAAI,CAAC,aAAa;AACd;AAAA,IACJ;AACA,SAAK,OAAO,KAAK,wCAAwC,YAAY,MAAM,IAAI;AAC/E,gBAAY,UAAU;AAAA,MAClB,uBAAuB;AAAA,IAC3B,CAAC;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAkBM,UAAU,SAAS;AAAA;AACrB,YAAM,gBAAgB,KAAK,wBAAwB,OAAO;AAC1D,YAAM,eAAe,iCACd,UADc;AAAA;AAAA,QAGjB,QAAQ,QAAQ;AAAA,QAChB;AAAA,MACJ;AACA,WAAK,iCAAiC,gBAAgB,MAAM;AAC5D,WAAK,uBAAuB,KAAK,kBAAkB,iBAAiB,kBAAkB,WAAW,aAAa;AAC9G,WAAK,sBAAsB,UAAU;AAAA,QACjC,uBAAuB;AAAA,MAC3B,CAAC;AACD,eAAS,iBAAiB,oBAAoB,KAAK,kCAAkC;AACrF,WAAK,OAAO,QAAQ,oBAAoB,aAAa;AACrD,WAAK,aAAa,UAAU,UAAU,kBAAkB,gBAAgB,QAAQ,YAAY;AAC5F,UAAI;AACJ,UAAI,KAAK,aAAa,YAAY,GAAG;AACjC,iBAAS,KAAK,mBAAmB,cAAc,MAAM,SAAS,EAAE,MAAM,CAAC,MAAM;AAEzE,cAAI,aAAa,mBAAmB,uBAAuB,CAAC,GAAG;AAC3D,iBAAK,0BAA0B;AAC/B,kBAAM,qBAAqB,KAAK,yBAAyB,aAAa,aAAa;AACnF,mBAAO,mBAAmB,aAAa,YAAY;AAAA,UACvD;AACA,gBAAM;AAAA,QACV,CAAC;AAAA,MACL,OACK;AACD,cAAM,qBAAqB,KAAK,yBAAyB,aAAa,aAAa;AACnF,iBAAS,mBAAmB,aAAa,YAAY;AAAA,MACzD;AACA,aAAO,OACF,KAAK,CAAC,aAAa;AACpB,aAAK,aAAa,UAAU,UAAU,oBAAoB,gBAAgB,QAAQ,QAAQ;AAC1F,aAAK,sBAAsB,IAAI;AAAA,UAC3B,iBAAiB,SAAS,YAAY;AAAA,UACtC,aAAa,SAAS,QAAQ;AAAA,QAClC,CAAC;AACD,aAAK,sBAAsB,IAAI;AAAA,UAC3B,SAAS;AAAA,UACT,gBAAgB,SAAS;AAAA,UACzB,WAAW,SAAS;AAAA,QACxB,CAAC;AACD,eAAO;AAAA,MACX,CAAC,EACI,MAAM,CAAC,MAAM;AACd,aAAK,aAAa,UAAU,UAAU,oBAAoB,gBAAgB,QAAQ,MAAM,CAAC;AACzF,aAAK,sBAAsB,IAAI;AAAA,UAC3B,WAAW,EAAE;AAAA,UACb,cAAc,EAAE;AAAA,UAChB,SAAS;AAAA,QACb,CAAC;AACD,cAAM;AAAA,MACV,CAAC,EACI,QAAQ,MAAM;AACf,iBAAS,oBAAoB,oBAAoB,KAAK,kCAAkC;AAAA,MAC5F,CAAC;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAWM,mBAAmB,SAAS;AAAA;AAC9B,YAAM,gBAAgB,KAAK,wBAAwB,OAAO;AAC1D,WAAK,iCAAiC,gBAAgB,MAAM;AAC5D,WAAK,OAAO,MAAM,6BAA6B,aAAa;AAC5D,WAAK,aAAa,UAAU,UAAU,6BAA6B,gBAAgB,QAAQ,OAAO;AAClG,YAAM,kBAAkB,KAAK,kBAAkB,iBAAiB,kBAAkB,oBAAoB,QAAQ,aAAa;AAC3H,UAAI;AACA,YAAI,QAAQ,QAAQ,QAAQ,iBAAiB;AAEzC,gBAAM,uBAAuB,gCAAgC;AAAA,QACjE,WACS,QAAQ,MAAM;AACnB,gBAAM,iBAAiB,QAAQ;AAC/B,cAAI,WAAW,KAAK,wBAAwB,IAAI,cAAc;AAC9D,cAAI,CAAC,UAAU;AACX,iBAAK,OAAO,QAAQ,6CAA6C,aAAa;AAC9E,uBAAW,KAAK,wBAAwB,iCACjC,UADiC;AAAA,cAEpC;AAAA,YACJ,EAAC,EACI,KAAK,CAAC,WAAW;AAClB,mBAAK,aAAa,UAAU,UAAU,+BAA+B,gBAAgB,QAAQ,MAAM;AACnG,mBAAK,wBAAwB,OAAO,cAAc;AAClD,8BAAgB,IAAI;AAAA,gBAChB,iBAAiB,OAAO,YAAY;AAAA,gBACpC,aAAa,OAAO,QAAQ;AAAA,cAChC,CAAC;AACD,8BAAgB,IAAI;AAAA,gBAChB,SAAS;AAAA,gBACT,gBAAgB,OAAO;AAAA,gBACvB,WAAW,OAAO;AAAA,cACtB,CAAC;AACD,qBAAO;AAAA,YACX,CAAC,EACI,MAAM,CAAC,UAAU;AAClB,mBAAK,wBAAwB,OAAO,cAAc;AAClD,mBAAK,aAAa,UAAU,UAAU,+BAA+B,gBAAgB,QAAQ,MAAM,KAAK;AACxG,8BAAgB,IAAI;AAAA,gBAChB,WAAW,MAAM;AAAA,gBACjB,cAAc,MAAM;AAAA,gBACpB,SAAS;AAAA,cACb,CAAC;AACD,oBAAM;AAAA,YACV,CAAC;AACD,iBAAK,wBAAwB,IAAI,gBAAgB,QAAQ;AAAA,UAC7D,OACK;AACD,iBAAK,OAAO,QAAQ,6CAA6C,QAAQ,aAAa;AACtF,4BAAgB,QAAQ;AAAA,UAC5B;AACA,iBAAO;AAAA,QACX,WACS,QAAQ,iBAAiB;AAC9B,cAAI,KAAK,aAAa,SAAS,QAAQ,eAAe,GAAG;AACrD,mBAAO,KAAK,mBAAmB,SAAS,MAAM,oBAAoB,QAAQ,eAAe,EAAE,MAAM,CAAC,MAAM;AAEpG,kBAAI,aAAa,mBACb,uBAAuB,CAAC,GAAG;AAC3B,qBAAK,0BAA0B;AAAA,cACnC;AACA,oBAAM;AAAA,YACV,CAAC;AAAA,UACL,OACK;AACD,kBAAM,uBAAuB,sCAAsC;AAAA,UACvE;AAAA,QACJ,OACK;AACD,gBAAM,uBAAuB,iCAAiC;AAAA,QAClE;AAAA,MACJ,SACO,GAAG;AACN,aAAK,aAAa,UAAU,UAAU,+BAA+B,gBAAgB,QAAQ,MAAM,CAAC;AACpG,wBAAgB,IAAI;AAAA,UAChB,WAAY,aAAa,aAAa,EAAE,aAAc;AAAA,UACtD,cAAe,aAAa,aAAa,EAAE,YAAa;AAAA,UACxD,SAAS;AAAA,QACb,CAAC;AACD,cAAM;AAAA,MACV;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,wBAAwB,SAAS;AAAA;AACnC,WAAK,OAAO,MAAM,kCAAkC,QAAQ,aAAa;AACzE,WAAK,qCACD,KAAK,kBAAkB,iBAAiB,kBAAkB,yBAAyB,QAAQ,aAAa;AAC5G,WAAK,oCAAoC,UAAU;AAAA,QAC/C,uBAAuB;AAAA,MAC3B,CAAC;AACD,eAAS,iBAAiB,oBAAoB,KAAK,kCAAkC;AACrF,YAAM,uBAAuB,KAAK,2BAA2B,QAAQ,aAAa;AAClF,YAAM,oBAAoB,MAAM,qBAC3B,aAAa,OAAO,EACpB,KAAK,CAAC,aAAa;AACpB,aAAK,oCAAoC,IAAI;AAAA,UACzC,SAAS;AAAA,UACT,WAAW,SAAS;AAAA,UACpB,gBAAgB,SAAS;AAAA,UACzB,WAAW,SAAS;AAAA,QACxB,CAAC;AACD,eAAO;AAAA,MACX,CAAC,EACI,MAAM,CAAC,sBAAsB;AAC9B,aAAK,oCAAoC,IAAI;AAAA,UACzC,WAAW,kBAAkB;AAAA,UAC7B,cAAc,kBAAkB;AAAA,UAChC,SAAS;AAAA,QACb,CAAC;AACD,cAAM;AAAA,MACV,CAAC,EACI,QAAQ,MAAM;AACf,iBAAS,oBAAoB,oBAAoB,KAAK,kCAAkC;AAAA,MAC5F,CAAC;AACD,aAAO;AAAA,IACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQM,sBAAsB,mBAAmB,eAAe,eAAe;AAAA;AACzE,WAAK,kBAAkB,oBAAoB,kBAAkB,uBAAuB,cAAc,aAAa;AAC/G,cAAQ,cAAc,mBAAmB;AAAA,QACrC,KAAK,kBAAkB;AAAA,QACvB,KAAK,kBAAkB;AAAA,QACvB,KAAK,kBAAkB;AACnB,iBAAO,YAAY,kBAAkB,aAAa,KAAK,iBAAiB,GAAG,kBAAkB,+BAA+B,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,aAAa;AAAA,QAC/M;AACI,gBAAM,sBAAsB,6BAAqB,oBAAoB;AAAA,MAC7E;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,2BAA2B,eAAe,eAAe;AAAA;AAC3D,WAAK,kBAAkB,oBAAoB,kBAAkB,4BAA4B,cAAc,aAAa;AACpH,cAAQ,cAAc,mBAAmB;AAAA,QACrC,KAAK,kBAAkB;AAAA,QACvB,KAAK,kBAAkB;AAAA,QACvB,KAAK,kBAAkB;AAAA,QACvB,KAAK,kBAAkB;AACnB,gBAAM,sBAAsB,KAAK,0BAA0B,cAAc,aAAa;AACtF,iBAAO,YAAY,oBAAoB,aAAa,KAAK,mBAAmB,GAAG,kBAAkB,iCAAiC,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,aAAa;AAAA,QACrN;AACI,gBAAM,sBAAsB,6BAAqB,oBAAoB;AAAA,MAC7E;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,2BAA2B,SAAS;AAAA;AACtC,WAAK,kBAAkB,oBAAoB,kBAAkB,4BAA4B,QAAQ,aAAa;AAC9G,YAAM,qBAAqB,KAAK,yBAAyB,QAAQ,aAAa;AAC9E,aAAO,YAAY,mBAAmB,aAAa,KAAK,kBAAkB,GAAG,kBAAkB,gCAAgC,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,OAAO;AAAA,IACtM;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQM,OAAO,eAAe;AAAA;AACxB,YAAM,gBAAgB,KAAK,wBAAwB,aAAa;AAChE,WAAK,OAAO,QAAQ,oGAAoG,aAAa;AACrI,aAAO,KAAK,eAAe;AAAA,QACvB;AAAA,SACG,cACN;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMM,eAAe,eAAe;AAAA;AAChC,YAAM,gBAAgB,KAAK,wBAAwB,aAAa;AAChE,WAAK,iCAAiC,gBAAgB,QAAQ;AAC9D,YAAM,iBAAiB,KAAK,qBAAqB,aAAa;AAC9D,aAAO,eAAe,OAAO,aAAa;AAAA,IAC9C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,YAAY,eAAe;AACvB,QAAI;AACA,YAAM,gBAAgB,KAAK,wBAAwB,aAAa;AAChE,WAAK,iCAAiC,gBAAgB,KAAK;AAC3D,YAAM,cAAc,KAAK,kBAAkB,aAAa;AACxD,aAAO,YAAY,OAAO,aAAa;AAAA,IAC3C,SACO,GAAG;AAEN,aAAO,QAAQ,OAAO,CAAC;AAAA,IAC3B;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,WAAW,eAAe;AAAA;AAC5B,YAAM,gBAAgB,KAAK,wBAAwB,aAAa;AAChE,YAAM,cAAc,KAAK,wBAAwB,aAAa;AAC9D,aAAO,YAAY,OAAO,aAAa;AAAA,IAC3C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,eAAe,eAAe;AAC1B,SAAK,OAAO,QAAQ,uBAAuB;AAC3C,WAAO,KAAK,uBACN,KAAK,eAAe,eAAe,aAAa,IAChD,CAAC;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,WAAW,eAAe;AACtB,SAAK,OAAO,MAAM,mBAAmB;AACrC,QAAI,OAAO,KAAK,aAAa,EAAE,WAAW,GAAG;AACzC,WAAK,OAAO,QAAQ,uCAAuC;AAC3D,aAAO;AAAA,IACX;AACA,UAAM,UAAU,KAAK,eAAe,yBAAyB,aAAa;AAC1E,QAAI,SAAS;AACT,WAAK,OAAO,QAAQ,+DAA+D;AACnF,aAAO;AAAA,IACX,OACK;AACD,WAAK,OAAO,QAAQ,uDAAuD;AAC3E,aAAO;AAAA,IACX;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASA,qBAAqB,UAAU;AAC3B,SAAK,OAAO,MAAM,6BAA6B;AAC/C,QAAI,CAAC,UAAU;AACX,WAAK,OAAO,QAAQ,4CAA4C;AAChE,aAAO;AAAA,IACX;AACA,UAAM,UAAU,KAAK,eAAe,yBAAyB;AAAA,MACzD;AAAA,IACJ,CAAC;AACD,QAAI,SAAS;AACT,WAAK,OAAO,QAAQ,kEAAkE;AACtF,WAAK,OAAO,WAAW,yEAAyE,QAAQ,EAAE;AAC1G,aAAO;AAAA,IACX,OACK;AACD,WAAK,OAAO,QAAQ,iEAAiE;AACrF,aAAO;AAAA,IACX;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,mBAAmB,eAAe;AAC9B,SAAK,OAAO,MAAM,2BAA2B;AAC7C,QAAI,CAAC,eAAe;AAChB,WAAK,OAAO,QAAQ,+CAA+C;AACnE,aAAO;AAAA,IACX;AACA,UAAM,UAAU,KAAK,eAAe,yBAAyB;AAAA,MACzD;AAAA,IACJ,CAAC;AACD,QAAI,SAAS;AACT,WAAK,OAAO,QAAQ,qEAAqE;AACzF,WAAK,OAAO,WAAW,4EAA4E,aAAa,EAAE;AAClH,aAAO;AAAA,IACX,OACK;AACD,WAAK,OAAO,QAAQ,+DAA+D;AACnF,aAAO;AAAA,IACX;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,oBAAoB,gBAAgB;AAChC,SAAK,OAAO,MAAM,4BAA4B;AAC9C,QAAI,CAAC,gBAAgB;AACjB,WAAK,OAAO,QAAQ,iDAAiD;AACrE,aAAO;AAAA,IACX;AACA,UAAM,UAAU,KAAK,eAAe,yBAAyB;AAAA,MACzD;AAAA,IACJ,CAAC;AACD,QAAI,SAAS;AACT,WAAK,OAAO,QAAQ,uEAAuE;AAC3F,WAAK,OAAO,WAAW,8EAA8E,cAAc,EAAE;AACrH,aAAO;AAAA,IACX,OACK;AACD,WAAK,OAAO,QAAQ,gEAAgE;AACpF,aAAO;AAAA,IACX;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB,SAAS;AACtB,SAAK,eAAe,iBAAiB,OAAO;AAAA,EAChD;AAAA;AAAA;AAAA;AAAA,EAIA,mBAAmB;AACf,WAAO,KAAK,eAAe,iBAAiB;AAAA,EAChD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQM,aAAa,QAAQ,SAAS;AAAA;AAChC,WAAK,OAAO,QAAQ,qBAAqB;AAEzC,YAAM,gBAAgB,cAAc,sBAAsB,OAAO,SAAS,OAAO,oBAAoB,OAAO,WAAW;AACvH,WAAK,eAAe,WAAW,aAAa;AAC5C,UAAI,OAAO,kBAAkB;AACzB,aAAK,OAAO,QAAQ,oDAAoD;AAExE,eAAO,KAAK,sBAAsB,aAAa,QAAQ,OAAO;AAAA,MAClE,OACK;AACD,eAAO,KAAK,eAAe,aAAa,QAAQ,OAAO;AAAA,MAC3D;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EASA,iCAAiC,iBAAiB,gBAAgB,OAAO;AACrE,SAAK,OAAO,QAAQ,0CAA0C;AAE9D,iBAAa,2BAA2B,KAAK,oBAAoB;AAEjE,iBAAa,sBAAsB,iBAAiB,KAAK,OAAO,OAAO,qBAAqB;AAE5F,iBAAa,2BAA2B;AAExC,iBAAa,0BAA0B;AAEvC,iBAAa,8BAA8B,KAAK,WAAW;AAE3D,QAAI,oBAAoB,gBAAgB,YACpC,KAAK,OAAO,MAAM,kBACd,qBAAqB,iBACzB,CAAC,KAAK,OAAO,MAAM,wBAAwB;AAC3C,YAAM,oCAAoC,wBAAwB;AAAA,IACtE;AACA,QAAI,oBAAoB,gBAAgB,YACpC,oBAAoB,gBAAgB,OAAO;AAC3C,WAAK,4BAA4B,CAAC,aAAa;AAAA,IACnD;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,4BAA4B,0BAA0B;AAClD,SAAK,OAAO,QAAQ,gEAAgE;AAEpF,iBAAa,2BAA2B;AAExC,QAAI,0BAA0B;AAC1B,WAAK,kBAAkB,EAAE,yBAAyB,IAAI;AAAA,IAC1D;AAAA,EACJ;AAAA;AAAA;AAAA;AAAA;AAAA,EAKM,mBAAmB,SAAS,OAAO,WAAW;AAAA;AAChD,WAAK,OAAO,MAAM,2BAA2B;AAC7C,UAAI,CAAC,KAAK,yBAAyB;AAC/B,cAAM,uBAAuB,8BAA8B;AAAA,MAC/D;AACA,YAAM,eAAe,IAAI,wBAAwB,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,OAAO,KAAK,mBAAmB,KAAK,yBAAyB,aAAa,KAAK,mBAAmB,OAAO,GAAG,KAAK,uBAAuB,QAAQ,aAAa;AAC3T,aAAO,aAAa,aAAa,OAAO;AAAA,IAC5C;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,aAAa,SAAS,WAAW;AAC7B,SAAK,OAAO,MAAM,qBAAqB;AACvC,QAAI,CAAC,qBAAqB,kBAAkB,KAAK,QAAQ,KAAK,QAAQ,KAAK,yBAAyB,QAAQ,oBAAoB,GAAG;AAC/H,WAAK,OAAO,MAAM,iEAAiE;AACnF,aAAO;AAAA,IACX;AACA,QAAI,QAAQ,QAAQ;AAChB,cAAQ,QAAQ,QAAQ;AAAA,QACpB,KAAK,YAAY;AAAA,QACjB,KAAK,YAAY;AAAA,QACjB,KAAK,YAAY;AACb,eAAK,OAAO,MAAM,qDAAqD;AACvE;AAAA,QACJ;AACI,eAAK,OAAO,MAAM,0BAA0B,QAAQ,MAAM,sDAAsD;AAChH,iBAAO;AAAA,MACf;AAAA,IACJ;AACA,QAAI,CAAC,aAAa,CAAC,KAAK,mBAAmB,OAAO,GAAG;AACjD,WAAK,OAAO,MAAM,iEAAiE;AACnF,aAAO;AAAA,IACX;AACA,WAAO;AAAA,EACX;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,mBAAmB,SAAS;AACxB,UAAM,UAAU,QAAQ,WACpB,KAAK,eAAe,sBAAsB,QAAQ,WAAW,QAAQ,GAAG,KACxE,KAAK,iBAAiB;AAC1B,WAAQ,WAAW,QAAQ,mBAAoB;AAAA,EACnD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,kBAAkB,eAAe;AAC7B,WAAO,IAAI,YAAY,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,KAAK,mBAAmB,KAAK,uBAAuB,KAAK,yBAAyB,aAAa;AAAA,EACvO;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,qBAAqB,eAAe;AAChC,WAAO,IAAI,eAAe,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,KAAK,mBAAmB,KAAK,uBAAuB,KAAK,yBAAyB,aAAa;AAAA,EAC1O;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,yBAAyB,eAAe;AACpC,WAAO,IAAI,mBAAmB,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,MAAM,WAAW,KAAK,mBAAmB,KAAK,uBAAuB,KAAK,yBAAyB,aAAa;AAAA,EAC/P;AAAA;AAAA;AAAA;AAAA,EAIA,wBAAwB,eAAe;AACnC,WAAO,IAAI,kBAAkB,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,KAAK,mBAAmB,KAAK,yBAAyB,aAAa;AAAA,EACjN;AAAA;AAAA;AAAA;AAAA,EAIA,0BAA0B,eAAe;AACrC,WAAO,IAAI,oBAAoB,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,KAAK,mBAAmB,KAAK,yBAAyB,aAAa;AAAA,EACnN;AAAA;AAAA;AAAA;AAAA,EAIA,2BAA2B,eAAe;AACtC,WAAO,IAAI,qBAAqB,KAAK,QAAQ,KAAK,gBAAgB,KAAK,eAAe,KAAK,QAAQ,KAAK,cAAc,KAAK,kBAAkB,MAAM,oBAAoB,KAAK,mBAAmB,KAAK,yBAAyB,aAAa;AAAA,EAC9O;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,iBAAiB,UAAU;AACvB,WAAO,KAAK,aAAa,iBAAiB,QAAQ;AAAA,EACtD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,oBAAoB,YAAY;AAC5B,SAAK,aAAa,oBAAoB,UAAU;AAAA,EACpD;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,uBAAuB,UAAU;AAC7B,WAAO,KAAK,kBAAkB,uBAAuB,QAAQ;AAAA,EACjE;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOA,0BAA0B,YAAY;AAClC,WAAO,KAAK,kBAAkB,0BAA0B,UAAU;AAAA,EACtE;AAAA;AAAA;AAAA;AAAA,EAIA,6BAA6B;AACzB,SAAK,aAAa,2BAA2B;AAAA,EACjD;AAAA;AAAA;AAAA;AAAA,EAIA,8BAA8B;AAC1B,SAAK,aAAa,4BAA4B;AAAA,EAClD;AAAA;AAAA;AAAA;AAAA,EAIA,gBAAgB;AACZ,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA,EAIA,YAAY;AACR,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,UAAU,QAAQ;AACd,SAAK,SAAS;AAAA,EAClB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAMA,yBAAyB,KAAKC,UAAS;AAEnC,SAAK,eAAe,mBAAmB,KAAKA,QAAO;AAAA,EACvD;AAAA;AAAA;AAAA;AAAA;AAAA,EAKA,oBAAoB,kBAAkB;AAClC,SAAK,mBAAmB;AAAA,EAC5B;AAAA;AAAA;AAAA;AAAA,EAIA,mBAAmB;AACf,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA,EAIA,uBAAuB;AACnB,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA,EAIA,oBAAoB;AAChB,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA,EAIA,eAAe;AACX,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA,EAIA,kBAAkB;AACd,WAAO,KAAK;AAAA,EAChB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,wBAAwB,SAAS;AAC7B,QAAI,SAAS,eAAe;AACxB,aAAO,QAAQ;AAAA,IACnB;AACA,QAAI,KAAK,sBAAsB;AAC3B,aAAO,cAAc;AAAA,IACzB;AAKA,WAAO,UAAU;AAAA,EACrB;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAWM,cAAc,SAAS;AAAA;AACzB,YAAM,gBAAgB,KAAK,wBAAwB,OAAO;AAC1D,WAAK,OAAO,QAAQ,wBAAwB,aAAa;AACzD,aAAO,KAAK,qBAAqB;AAAA,QAC7B;AAAA,SACI,WAAW,gBAClB;AAAA,IACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAQA,WAAW,SAAS;AAChB,UAAM,gBAAgB,KAAK,wBAAwB,OAAO;AAC1D,SAAK,OAAO,QAAQ,qBAAqB,aAAa;AACtD,WAAO,KAAK,kBAAkB;AAAA,MAC1B;AAAA,OACI,WAAW,gBAClB;AAAA,EACL;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,mBAAmB,SAAS;AAAA;AAC9B,YAAM,gBAAgB,KAAK,wBAAwB,OAAO;AAC1D,YAAM,iBAAiB,KAAK,kBAAkB,iBAAiB,kBAAkB,oBAAoB,aAAa;AAClH,qBAAe,IAAI;AAAA,QACf,mBAAmB,QAAQ;AAAA,MAC/B,CAAC;AACD,WAAK,iCAAiC,gBAAgB,MAAM;AAC5D,WAAK,OAAO,QAAQ,6BAA6B,aAAa;AAC9D,YAAM,UAAU,QAAQ,WAAW,KAAK,iBAAiB;AACzD,UAAI,CAAC,SAAS;AACV,cAAM,uBAAuB,cAAc;AAAA,MAC/C;AACA,YAAM,aAAa;AAAA,QACf,UAAU,KAAK,OAAO,KAAK;AAAA,QAC3B,WAAW,QAAQ,aAAa,UAAU;AAAA,QAC1C,QAAQ,QAAQ;AAAA,QAChB,uBAAuB,QAAQ;AAAA,QAC/B,QAAQ,QAAQ;AAAA,QAChB,sBAAsB,QAAQ;AAAA,QAC9B,uBAAuB,QAAQ;AAAA,QAC/B,oBAAoB,QAAQ;AAAA,QAC5B,WAAW,QAAQ;AAAA,QACnB,QAAQ,QAAQ;AAAA,MACpB;AACA,YAAM,mBAAmB,KAAK,UAAU,UAAU;AAClD,YAAM,iBAAiB,KAAK,0BAA0B,IAAI,gBAAgB;AAC1E,UAAI,OAAO,mBAAmB,aAAa;AACvC,aAAK,OAAO,QAAQ,wEAAwE,aAAa;AACzG,cAAM,WAAW,YAAY,KAAK,wBAAwB,KAAK,IAAI,GAAG,kBAAkB,yBAAyB,KAAK,QAAQ,KAAK,mBAAmB,aAAa,EAAE,iCAC9J,UAD8J;AAAA,UAEjK;AAAA,QACJ,IAAG,OAAO,EACL,KAAK,CAAC,WAAW;AAClB,eAAK,0BAA0B,OAAO,gBAAgB;AACtD,yBAAe,IAAI;AAAA,YACf,iBAAiB,OAAO,YAAY;AAAA,YACpC,aAAa,OAAO,QAAQ;AAAA,UAChC,CAAC;AACD,yBAAe,IAAI;AAAA,YACf,SAAS;AAAA,YACT,WAAW,OAAO;AAAA,YAClB,gBAAgB,OAAO;AAAA,YACvB,mBAAmB,QAAQ;AAAA,YAC3B,WAAW,OAAO;AAAA,UACtB,CAAC;AACD,iBAAO;AAAA,QACX,CAAC,EACI,MAAM,CAAC,UAAU;AAClB,eAAK,0BAA0B,OAAO,gBAAgB;AACtD,yBAAe,IAAI;AAAA,YACf,WAAW,MAAM;AAAA,YACjB,cAAc,MAAM;AAAA,YACpB,SAAS;AAAA,UACb,CAAC;AACD,gBAAM;AAAA,QACV,CAAC;AACD,aAAK,0BAA0B,IAAI,kBAAkB,QAAQ;AAC7D,eAAO;AAAA,MACX,OACK;AACD,aAAK,OAAO,QAAQ,2FAA2F,aAAa;AAE5H,uBAAe,QAAQ;AACvB,eAAO;AAAA,MACX;AAAA,IACJ;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA;AAAA,EAOM,wBAAwB,SAAS,SAAS;AAAA;AAC5C,WAAK,kBAAkB,oBAAoB,kBAAkB,yBAAyB,QAAQ,aAAa;AAC3G,WAAK,aAAa,UAAU,UAAU,qBAAqB,gBAAgB,QAAQ,OAAO;AAC1F,WAAK,sBAAsB,KAAK,kBAAkB,iBAAiB,kBAAkB,yBAAyB,QAAQ,aAAa;AACnI,WAAK,qBAAqB,UAAU;AAAA,QAChC,uBAAuB;AAAA,MAC3B,CAAC;AACD,eAAS,iBAAiB,oBAAoB,KAAK,mBAAmB;AACtE,UAAI;AACJ,UAAI,qBAAqB,kBAAkB,KAAK,QAAQ,KAAK,QAAQ,KAAK,yBAAyB,QAAQ,oBAAoB,KAC3H,QAAQ,iBAAiB;AACzB,aAAK,OAAO,QAAQ,uEAAuE;AAC3F,cAAM,gBAAgB,iCACf,UADe;AAAA,UAElB;AAAA,QACJ;AACA,iBAAS,KAAK,mBAAmB,eAAe,MAAM,6BAA6B,EAAE,MAAM,CAAO,MAAM;AAEpG,cAAI,aAAa,mBAAmB,uBAAuB,CAAC,GAAG;AAC3D,iBAAK,OAAO,QAAQ,4EAA4E;AAChG,iBAAK,0BAA0B;AAE/B,kBAAM,qBAAqB,KAAK,yBAAyB,QAAQ,aAAa;AAC9E,mBAAO,mBAAmB,aAAa,OAAO;AAAA,UAClD;AACA,gBAAM;AAAA,QACV,EAAC;AAAA,MACL,OACK;AACD,aAAK,OAAO,QAAQ,gEAAgE;AACpF,cAAM,oBAAoB,KAAK,wBAAwB,QAAQ,aAAa;AAC5E,cAAM,gBAAgB,MAAM,YAAY,kBAAkB,wBAAwB,KAAK,iBAAiB,GAAG,kBAAkB,yBAAyB,KAAK,QAAQ,KAAK,mBAAmB,QAAQ,aAAa,EAAE,SAAS,OAAO;AAClO,cAAM,iBAAiB,iCAChB,UADgB;AAAA;AAAA,UAGnB,mBAAmB,QAAQ,qBAAqB,kBAAkB;AAAA,QACtE;AACA,iBAAS,YAAY,KAAK,sBAAsB,KAAK,IAAI,GAAG,kBAAkB,uBAAuB,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,mBAAmB,eAAe,cAAc,EAAE,MAAM,CAAC,eAAe;AAC3O,cAAI,eAAe,sBACf,kBAAkB,aAAa;AAC/B,kBAAM;AAAA,UACV;AAEA,uBAAa,2BAA2B;AACxC,eAAK,aAAa,UAAU,UAAU,6BAA6B,gBAAgB,QAAQ,aAAa;AACxG,iBAAO,YAAY,KAAK,2BAA2B,KAAK,IAAI,GAAG,kBAAkB,4BAA4B,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,eAAe,cAAc,EAAE,MAAM,CAAC,sBAAsB;AACvO,kBAAM,gBAAgB,6BAA6B;AACnD,kBAAMC,8BAA6B,6BAC/B;AACJ,kBAAM,sBAAsB,kBAAkB,cAC1C,iBAAiB;AACrB,iBAAK,CAAC,iBACF,CAAC,uBACDA,+BACA,eAAe,sBACX,kBAAkB,8BACtB,eAAe,sBACX,kBAAkB,iBACtB,eAAe,sBACX,kBAAkB,MAAM;AAC5B,oBAAM;AAAA,YACV;AACA,iBAAK,OAAO,QAAQ,0GAA0G,QAAQ,aAAa;AACnJ,mBAAO,YAAY,KAAK,2BAA2B,KAAK,IAAI,GAAG,kBAAkB,4BAA4B,KAAK,QAAQ,KAAK,mBAAmB,cAAc,aAAa,EAAE,aAAa;AAAA,UAChM,CAAC;AAAA,QACL,CAAC;AAAA,MACL;AACA,aAAO,OACF,KAAK,CAAC,aAAa;AACpB,aAAK,aAAa,UAAU,UAAU,uBAAuB,gBAAgB,QAAQ,QAAQ;AAC7F,aAAK,qBAAqB,IAAI;AAAA,UAC1B,SAAS;AAAA,UACT,WAAW,SAAS;AAAA,UACpB,gBAAgB,SAAS;AAAA,UACzB,WAAW,SAAS;AAAA,QACxB,CAAC;AACD,eAAO;AAAA,MACX,CAAC,EACI,MAAM,CAAC,sBAAsB;AAC9B,aAAK,aAAa,UAAU,UAAU,uBAAuB,gBAAgB,QAAQ,MAAM,iBAAiB;AAC5G,aAAK,qBAAqB,IAAI;AAAA,UAC1B,WAAW,kBAAkB;AAAA,UAC7B,cAAc,kBAAkB;AAAA,UAChC,SAAS;AAAA,QACb,CAAC;AACD,cAAM;AAAA,MACV,CAAC,EACI,QAAQ,MAAM;AACf,iBAAS,oBAAoB,oBAAoB,KAAK,mBAAmB;AAAA,MAC7E,CAAC;AAAA,IACL;AAAA;AACJ;","names":["LogLevel","base64Decode","name","e","version","noNetworkConnectivity","postRequestFailed","noNetworkConnectivity","postRequestFailed","InteractionType","version","name","e","name","version","version","version","noNetworkConnectivity","noNetworkConnectivity","postRequestFailed","DEFAULT_CACHE_OPTIONS","DEFAULT_TELEMETRY_OPTIONS","result","version","isInteractionRequiredError"],"x_google_ignoreList":[0,1,2,3,4,5,6,7,8,9,10,11,12,13,14,15,16,17,18,19,20,21,22,23,24,25,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44,45,46,47,48,49,50,51,52,53,54,55,56,57,58,59,60,61,62,63,64,65,66,67,68,69,70,71,72,73,74,75,76,77,78,79,80,81,82,83,84,85,86,87,88,89,90,91,92,93,94,95,96,97,98,99,100,101,102,103,104,105]}