[ES6] Add Reflect namespace and add Reflect.deleteProperty
[WebKit-https.git] / Source / JavaScriptCore / runtime / JSGlobalObject.cpp
1 /*
2  * Copyright (C) 2007, 2008, 2009, 2014, 2015 Apple Inc. All rights reserved.
3  * Copyright (C) 2008 Cameron Zwarich (cwzwarich@uwaterloo.ca)
4  *
5  * Redistribution and use in source and binary forms, with or without
6  * modification, are permitted provided that the following conditions
7  * are met:
8  *
9  * 1.  Redistributions of source code must retain the above copyright
10  *     notice, this list of conditions and the following disclaimer.
11  * 2.  Redistributions in binary form must reproduce the above copyright
12  *     notice, this list of conditions and the following disclaimer in the
13  *     documentation and/or other materials provided with the distribution.
14  * 3.  Neither the name of Apple Inc. ("Apple") nor the names of
15  *     its contributors may be used to endorse or promote products derived
16  *     from this software without specific prior written permission.
17  *
18  * THIS SOFTWARE IS PROVIDED BY APPLE AND ITS CONTRIBUTORS "AS IS" AND ANY
19  * EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT LIMITED TO, THE IMPLIED
20  * WARRANTIES OF MERCHANTABILITY AND FITNESS FOR A PARTICULAR PURPOSE ARE
21  * DISCLAIMED. IN NO EVENT SHALL APPLE OR ITS CONTRIBUTORS BE LIABLE FOR ANY
22  * DIRECT, INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL DAMAGES
23  * (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF SUBSTITUTE GOODS OR SERVICES;
24  * LOSS OF USE, DATA, OR PROFITS; OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND
25  * ON ANY THEORY OF LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT
26  * (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF THE USE OF
27  * THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY OF SUCH DAMAGE.
28  */
29
30 #include "config.h"
31 #include "JSGlobalObject.h"
32
33 #include "ArrayConstructor.h"
34 #include "ArrayIteratorPrototype.h"
35 #include "ArrayPrototype.h"
36 #include "BooleanConstructor.h"
37 #include "BooleanPrototype.h"
38 #include "BuiltinNames.h"
39 #include "ClonedArguments.h"
40 #include "CodeBlock.h"
41 #include "CodeCache.h"
42 #include "ConsolePrototype.h"
43 #include "DateConstructor.h"
44 #include "DatePrototype.h"
45 #include "Debugger.h"
46 #include "DebuggerScope.h"
47 #include "DirectArguments.h"
48 #include "Error.h"
49 #include "ErrorConstructor.h"
50 #include "ErrorPrototype.h"
51 #include "FunctionConstructor.h"
52 #include "FunctionPrototype.h"
53 #include "GetterSetter.h"
54 #include "HeapIterationScope.h"
55 #include "Interpreter.h"
56 #include "IteratorPrototype.h"
57 #include "JSAPIWrapperObject.h"
58 #include "JSArrayBuffer.h"
59 #include "JSArrayBufferConstructor.h"
60 #include "JSArrayBufferPrototype.h"
61 #include "JSArrayIterator.h"
62 #include "JSBoundFunction.h"
63 #include "JSCInlines.h"
64 #include "JSCallbackConstructor.h"
65 #include "JSCallbackFunction.h"
66 #include "JSCallbackObject.h"
67 #include "JSCatchScope.h"
68 #include "JSConsole.h"
69 #include "JSDataView.h"
70 #include "JSDataViewPrototype.h"
71 #include "JSDollarVM.h"
72 #include "JSDollarVMPrototype.h"
73 #include "JSFunction.h"
74 #include "JSFunctionNameScope.h"
75 #include "JSGenericTypedArrayViewConstructorInlines.h"
76 #include "JSGenericTypedArrayViewInlines.h"
77 #include "JSGenericTypedArrayViewPrototypeInlines.h"
78 #include "JSGlobalObjectFunctions.h"
79 #include "JSJob.h"
80 #include "JSLexicalEnvironment.h"
81 #include "JSLock.h"
82 #include "JSMap.h"
83 #include "JSMapIterator.h"
84 #include "JSONObject.h"
85 #include "JSPromise.h"
86 #include "JSPromiseConstructor.h"
87 #include "JSPromisePrototype.h"
88 #include "JSSet.h"
89 #include "JSSetIterator.h"
90 #include "JSStringIterator.h"
91 #include "JSTemplateRegistryKey.h"
92 #include "JSTypedArrayConstructors.h"
93 #include "JSTypedArrayPrototypes.h"
94 #include "JSTypedArrays.h"
95 #include "JSWeakMap.h"
96 #include "JSWeakSet.h"
97 #include "JSWithScope.h"
98 #include "LegacyProfiler.h"
99 #include "Lookup.h"
100 #include "MapConstructor.h"
101 #include "MapIteratorPrototype.h"
102 #include "MapPrototype.h"
103 #include "MathObject.h"
104 #include "Microtask.h"
105 #include "NativeErrorConstructor.h"
106 #include "NativeErrorPrototype.h"
107 #include "NullGetterFunction.h"
108 #include "NullSetterFunction.h"
109 #include "NumberConstructor.h"
110 #include "NumberPrototype.h"
111 #include "ObjCCallbackFunction.h"
112 #include "ObjectConstructor.h"
113 #include "ObjectPrototype.h"
114 #include "ParserError.h"
115 #include "ReflectObject.h"
116 #include "RegExpConstructor.h"
117 #include "RegExpMatchesArray.h"
118 #include "RegExpObject.h"
119 #include "RegExpPrototype.h"
120 #include "ScopedArguments.h"
121 #include "SetConstructor.h"
122 #include "SetIteratorPrototype.h"
123 #include "SetPrototype.h"
124 #include "StrictEvalActivation.h"
125 #include "StringConstructor.h"
126 #include "StringIteratorPrototype.h"
127 #include "StringPrototype.h"
128 #include "Symbol.h"
129 #include "SymbolConstructor.h"
130 #include "SymbolPrototype.h"
131 #include "VariableWriteFireDetail.h"
132 #include "WeakGCMapInlines.h"
133 #include "WeakMapConstructor.h"
134 #include "WeakMapPrototype.h"
135 #include "WeakSetConstructor.h"
136 #include "WeakSetPrototype.h"
137
138 #if ENABLE(INTL)
139 #include "IntlObject.h"
140 #endif // ENABLE(INTL)
141
142 #if ENABLE(REMOTE_INSPECTOR)
143 #include "JSGlobalObjectDebuggable.h"
144 #include "JSGlobalObjectInspectorController.h"
145 #endif
146
147 #if ENABLE(WEB_REPLAY)
148 #include "EmptyInputCursor.h"
149 #include "JSReplayInputs.h"
150 #endif
151
152 #include "JSGlobalObject.lut.h"
153
154 namespace JSC {
155
156 const ClassInfo JSGlobalObject::s_info = { "GlobalObject", &Base::s_info, &globalObjectTable, CREATE_METHOD_TABLE(JSGlobalObject) };
157
158 const GlobalObjectMethodTable JSGlobalObject::s_globalObjectMethodTable = { &allowsAccessFrom, &supportsProfiling, &supportsRichSourceInfo, &shouldInterruptScript, &javaScriptRuntimeFlags, nullptr, &shouldInterruptScriptBeforeTimeout };
159
160 /* Source for JSGlobalObject.lut.h
161 @begin globalObjectTable
162   parseFloat            globalFuncParseFloat            DontEnum|Function 1
163   isNaN                 globalFuncIsNaN                 DontEnum|Function 1
164   isFinite              globalFuncIsFinite              DontEnum|Function 1
165   escape                globalFuncEscape                DontEnum|Function 1
166   unescape              globalFuncUnescape              DontEnum|Function 1
167   decodeURI             globalFuncDecodeURI             DontEnum|Function 1
168   decodeURIComponent    globalFuncDecodeURIComponent    DontEnum|Function 1
169   encodeURI             globalFuncEncodeURI             DontEnum|Function 1
170   encodeURIComponent    globalFuncEncodeURIComponent    DontEnum|Function 1
171 @end
172 */
173
174 static EncodedJSValue JSC_HOST_CALL getTemplateObject(ExecState* exec)
175 {
176     JSValue thisValue = exec->thisValue();
177     ASSERT(thisValue.inherits(JSTemplateRegistryKey::info()));
178     return JSValue::encode(exec->lexicalGlobalObject()->templateRegistry().getTemplateObject(exec, jsCast<JSTemplateRegistryKey*>(thisValue)->templateRegistryKey()));
179 }
180
181
182 static EncodedJSValue JSC_HOST_CALL enqueueJob(ExecState* exec)
183 {
184     VM& vm = exec->vm();
185     JSGlobalObject* globalObject = exec->lexicalGlobalObject();
186
187     JSValue job = exec->argument(0);
188     JSValue arguments = exec->argument(1);
189     ASSERT(arguments.inherits(JSArray::info()));
190
191     globalObject->queueMicrotask(createJSJob(vm, job, jsCast<JSArray*>(arguments)));
192
193     return JSValue::encode(jsUndefined());
194 }
195
196 JSGlobalObject::JSGlobalObject(VM& vm, Structure* structure, const GlobalObjectMethodTable* globalObjectMethodTable)
197     : Base(vm, structure, 0)
198     , m_vm(vm)
199 #if ENABLE(WEB_REPLAY)
200     , m_inputCursor(EmptyInputCursor::create())
201 #endif
202     , m_masqueradesAsUndefinedWatchpoint(adoptRef(new WatchpointSet(IsWatched)))
203     , m_havingABadTimeWatchpoint(adoptRef(new WatchpointSet(IsWatched)))
204     , m_varInjectionWatchpoint(adoptRef(new WatchpointSet(IsWatched)))
205     , m_weakRandom(Options::forceWeakRandomSeed() ? Options::forcedWeakRandomSeed() : static_cast<unsigned>(randomNumber() * (std::numeric_limits<unsigned>::max() + 1.0)))
206     , m_templateRegistry(vm)
207     , m_evalEnabled(true)
208     , m_runtimeFlags()
209     , m_consoleClient(nullptr)
210     , m_globalObjectMethodTable(globalObjectMethodTable ? globalObjectMethodTable : &s_globalObjectMethodTable)
211 {
212 }
213
214 JSGlobalObject::~JSGlobalObject()
215 {
216 #if ENABLE(REMOTE_INSPECTOR)
217     m_inspectorController->globalObjectDestroyed();
218 #endif
219
220     if (m_debugger)
221         m_debugger->detach(this, Debugger::GlobalObjectIsDestructing);
222
223     if (LegacyProfiler* profiler = vm().enabledProfiler())
224         profiler->stopProfiling(this);
225 }
226
227 void JSGlobalObject::destroy(JSCell* cell)
228 {
229     static_cast<JSGlobalObject*>(cell)->JSGlobalObject::~JSGlobalObject();
230 }
231
232 void JSGlobalObject::setGlobalThis(VM& vm, JSObject* globalThis)
233 {
234     m_globalThis.set(vm, this, globalThis);
235 }
236
237 void JSGlobalObject::init(VM& vm)
238 {
239     ASSERT(vm.currentThreadIsHoldingAPILock());
240
241     JSGlobalObject::globalExec()->init(0, 0, CallFrame::noCaller(), 0, 0);
242
243     m_debugger = 0;
244
245 #if ENABLE(REMOTE_INSPECTOR)
246     m_inspectorController = std::make_unique<Inspector::JSGlobalObjectInspectorController>(*this);
247     m_inspectorDebuggable = std::make_unique<JSGlobalObjectDebuggable>(*this);
248     m_inspectorDebuggable->init();
249     m_consoleClient = m_inspectorController->consoleClient();
250 #endif
251
252     ExecState* exec = JSGlobalObject::globalExec();
253
254     m_functionPrototype.set(vm, this, FunctionPrototype::create(vm, FunctionPrototype::createStructure(vm, this, jsNull()))); // The real prototype will be set once ObjectPrototype is created.
255     m_calleeStructure.set(vm, this, JSCallee::createStructure(vm, this, jsNull()));
256
257     // Need to create the callee structure (above) before creating the callee.
258     m_globalCallee.set(vm, this, JSCallee::create(vm, this, this));
259     exec->setCallee(m_globalCallee.get());
260
261     m_functionStructure.set(vm, this, JSFunction::createStructure(vm, this, m_functionPrototype.get()));
262     m_boundFunctionStructure.set(vm, this, JSBoundFunction::createStructure(vm, this, m_functionPrototype.get()));
263     m_namedFunctionStructure.set(vm, this, Structure::addPropertyTransition(vm, m_functionStructure.get(), vm.propertyNames->name, DontDelete | ReadOnly | DontEnum, m_functionNameOffset));
264     m_internalFunctionStructure.set(vm, this, InternalFunction::createStructure(vm, this, m_functionPrototype.get()));
265     JSFunction* callFunction = 0;
266     JSFunction* applyFunction = 0;
267     m_functionPrototype->addFunctionProperties(exec, this, &callFunction, &applyFunction);
268     m_callFunction.set(vm, this, callFunction);
269     m_applyFunction.set(vm, this, applyFunction);
270     m_arrayProtoValuesFunction.set(vm, this, JSFunction::create(vm, this, 0, vm.propertyNames->values.string(), arrayProtoFuncValues));
271     m_initializePromiseFunction.set(vm, this, JSFunction::createBuiltinFunction(vm, operationsPromiseInitializePromiseCodeGenerator(vm), this));
272     m_newPromiseDeferredFunction.set(vm, this, JSFunction::createBuiltinFunction(vm, operationsPromiseNewPromiseDeferredCodeGenerator(vm), this));
273     m_nullGetterFunction.set(vm, this, NullGetterFunction::create(vm, NullGetterFunction::createStructure(vm, this, m_functionPrototype.get())));
274     m_nullSetterFunction.set(vm, this, NullSetterFunction::create(vm, NullSetterFunction::createStructure(vm, this, m_functionPrototype.get())));
275     m_objectPrototype.set(vm, this, ObjectPrototype::create(vm, this, ObjectPrototype::createStructure(vm, this, jsNull())));
276     GetterSetter* protoAccessor = GetterSetter::create(vm, this);
277     protoAccessor->setGetter(vm, this, JSFunction::create(vm, this, 0, String(), globalFuncProtoGetter));
278     protoAccessor->setSetter(vm, this, JSFunction::create(vm, this, 0, String(), globalFuncProtoSetter));
279     m_objectPrototype->putDirectNonIndexAccessor(vm, vm.propertyNames->underscoreProto, protoAccessor, Accessor | DontEnum);
280     m_functionPrototype->structure()->setPrototypeWithoutTransition(vm, m_objectPrototype.get());
281     
282     m_typedArrays[toIndex(TypeInt8)].prototype.set(vm, this, JSInt8ArrayPrototype::create(vm, this, JSInt8ArrayPrototype::createStructure(vm, this, m_objectPrototype.get())));
283     m_typedArrays[toIndex(TypeInt16)].prototype.set(vm, this, JSInt16ArrayPrototype::create(vm, this, JSInt16ArrayPrototype::createStructure(vm, this, m_objectPrototype.get())));
284     m_typedArrays[toIndex(TypeInt32)].prototype.set(vm, this, JSInt32ArrayPrototype::create(vm, this, JSInt32ArrayPrototype::createStructure(vm, this, m_objectPrototype.get())));
285     m_typedArrays[toIndex(TypeUint8)].prototype.set(vm, this, JSUint8ArrayPrototype::create(vm, this, JSUint8ArrayPrototype::createStructure(vm, this, m_objectPrototype.get())));
286     m_typedArrays[toIndex(TypeUint8Clamped)].prototype.set(vm, this, JSUint8ClampedArrayPrototype::create(vm, this, JSUint8ClampedArrayPrototype::createStructure(vm, this, m_objectPrototype.get())));
287     m_typedArrays[toIndex(TypeUint16)].prototype.set(vm, this, JSUint16ArrayPrototype::create(vm, this, JSUint16ArrayPrototype::createStructure(vm, this, m_objectPrototype.get())));
288     m_typedArrays[toIndex(TypeUint32)].prototype.set(vm, this, JSUint32ArrayPrototype::create(vm, this, JSUint32ArrayPrototype::createStructure(vm, this, m_objectPrototype.get())));
289     m_typedArrays[toIndex(TypeFloat32)].prototype.set(vm, this, JSFloat32ArrayPrototype::create(vm, this, JSFloat32ArrayPrototype::createStructure(vm, this, m_objectPrototype.get())));
290     m_typedArrays[toIndex(TypeFloat64)].prototype.set(vm, this, JSFloat64ArrayPrototype::create(vm, this, JSFloat64ArrayPrototype::createStructure(vm, this, m_objectPrototype.get())));
291     m_typedArrays[toIndex(TypeDataView)].prototype.set(vm, this, JSDataViewPrototype::create(vm, JSDataViewPrototype::createStructure(vm, this, m_objectPrototype.get())));
292     
293     m_typedArrays[toIndex(TypeInt8)].structure.set(vm, this, JSInt8Array::createStructure(vm, this, m_typedArrays[toIndex(TypeInt8)].prototype.get()));
294     m_typedArrays[toIndex(TypeInt16)].structure.set(vm, this, JSInt16Array::createStructure(vm, this, m_typedArrays[toIndex(TypeInt16)].prototype.get()));
295     m_typedArrays[toIndex(TypeInt32)].structure.set(vm, this, JSInt32Array::createStructure(vm, this, m_typedArrays[toIndex(TypeInt32)].prototype.get()));
296     m_typedArrays[toIndex(TypeUint8)].structure.set(vm, this, JSUint8Array::createStructure(vm, this, m_typedArrays[toIndex(TypeUint8)].prototype.get()));
297     m_typedArrays[toIndex(TypeUint8Clamped)].structure.set(vm, this, JSUint8ClampedArray::createStructure(vm, this, m_typedArrays[toIndex(TypeUint8Clamped)].prototype.get()));
298     m_typedArrays[toIndex(TypeUint16)].structure.set(vm, this, JSUint16Array::createStructure(vm, this, m_typedArrays[toIndex(TypeUint16)].prototype.get()));
299     m_typedArrays[toIndex(TypeUint32)].structure.set(vm, this, JSUint32Array::createStructure(vm, this, m_typedArrays[toIndex(TypeUint32)].prototype.get()));
300     m_typedArrays[toIndex(TypeFloat32)].structure.set(vm, this, JSFloat32Array::createStructure(vm, this, m_typedArrays[toIndex(TypeFloat32)].prototype.get()));
301     m_typedArrays[toIndex(TypeFloat64)].structure.set(vm, this, JSFloat64Array::createStructure(vm, this, m_typedArrays[toIndex(TypeFloat64)].prototype.get()));
302     m_typedArrays[toIndex(TypeDataView)].structure.set(vm, this, JSDataView::createStructure(vm, this, m_typedArrays[toIndex(TypeDataView)].prototype.get()));
303     
304     m_catchScopeStructure.set(vm, this, JSCatchScope::createStructure(vm, this, jsNull()));
305     m_functionNameScopeStructure.set(vm, this, JSFunctionNameScope::createStructure(vm, this, jsNull()));
306     m_lexicalEnvironmentStructure.set(vm, this, JSLexicalEnvironment::createStructure(vm, this));
307     m_strictEvalActivationStructure.set(vm, this, StrictEvalActivation::createStructure(vm, this, jsNull()));
308     m_debuggerScopeStructure.set(m_vm, this, DebuggerScope::createStructure(m_vm, this));
309     m_withScopeStructure.set(vm, this, JSWithScope::createStructure(vm, this, jsNull()));
310     
311     m_nullPrototypeObjectStructure.set(vm, this, JSFinalObject::createStructure(vm, this, jsNull(), JSFinalObject::defaultInlineCapacity()));
312     
313     m_callbackFunctionStructure.set(vm, this, JSCallbackFunction::createStructure(vm, this, m_functionPrototype.get()));
314     m_directArgumentsStructure.set(vm, this, DirectArguments::createStructure(vm, this, m_objectPrototype.get()));
315     m_scopedArgumentsStructure.set(vm, this, ScopedArguments::createStructure(vm, this, m_objectPrototype.get()));
316     m_outOfBandArgumentsStructure.set(vm, this, ClonedArguments::createStructure(vm, this, m_objectPrototype.get()));
317     m_callbackConstructorStructure.set(vm, this, JSCallbackConstructor::createStructure(vm, this, m_objectPrototype.get()));
318     m_callbackObjectStructure.set(vm, this, JSCallbackObject<JSDestructibleObject>::createStructure(vm, this, m_objectPrototype.get()));
319 #if JSC_OBJC_API_ENABLED
320     m_objcCallbackFunctionStructure.set(vm, this, ObjCCallbackFunction::createStructure(vm, this, m_functionPrototype.get()));
321     m_objcWrapperObjectStructure.set(vm, this, JSCallbackObject<JSAPIWrapperObject>::createStructure(vm, this, m_objectPrototype.get()));
322 #endif
323     
324     m_arrayPrototype.set(vm, this, ArrayPrototype::create(vm, this, ArrayPrototype::createStructure(vm, this, m_objectPrototype.get())));
325     
326     m_originalArrayStructureForIndexingShape[UndecidedShape >> IndexingShapeShift].set(vm, this, JSArray::createStructure(vm, this, m_arrayPrototype.get(), ArrayWithUndecided));
327     m_originalArrayStructureForIndexingShape[Int32Shape >> IndexingShapeShift].set(vm, this, JSArray::createStructure(vm, this, m_arrayPrototype.get(), ArrayWithInt32));
328     m_originalArrayStructureForIndexingShape[DoubleShape >> IndexingShapeShift].set(vm, this, JSArray::createStructure(vm, this, m_arrayPrototype.get(), ArrayWithDouble));
329     m_originalArrayStructureForIndexingShape[ContiguousShape >> IndexingShapeShift].set(vm, this, JSArray::createStructure(vm, this, m_arrayPrototype.get(), ArrayWithContiguous));
330     m_originalArrayStructureForIndexingShape[ArrayStorageShape >> IndexingShapeShift].set(vm, this, JSArray::createStructure(vm, this, m_arrayPrototype.get(), ArrayWithArrayStorage));
331     m_originalArrayStructureForIndexingShape[SlowPutArrayStorageShape >> IndexingShapeShift].set(vm, this, JSArray::createStructure(vm, this, m_arrayPrototype.get(), ArrayWithSlowPutArrayStorage));
332     for (unsigned i = 0; i < NumberOfIndexingShapes; ++i)
333         m_arrayStructureForIndexingShapeDuringAllocation[i] = m_originalArrayStructureForIndexingShape[i];
334
335     RegExp* emptyRegex = RegExp::create(vm, "", NoFlags);
336     
337     m_regExpPrototype.set(vm, this, RegExpPrototype::create(vm, RegExpPrototype::createStructure(vm, this, m_objectPrototype.get()), emptyRegex));
338     m_regExpStructure.set(vm, this, RegExpObject::createStructure(vm, this, m_regExpPrototype.get()));
339     m_regExpMatchesArrayStructure.set(vm, this, createRegExpMatchesArrayStructure(vm, *this));
340     
341     m_promisePrototype.set(vm, this, JSPromisePrototype::create(exec, this, JSPromisePrototype::createStructure(vm, this, m_objectPrototype.get())));
342     m_promiseStructure.set(vm, this, JSPromise::createStructure(vm, this, m_promisePrototype.get()));
343
344     m_parseIntFunction.set(vm, this, JSFunction::create(vm, this, 2, vm.propertyNames->parseInt.string(), globalFuncParseInt, NoIntrinsic));
345     putDirectWithoutTransition(vm, vm.propertyNames->parseInt, m_parseIntFunction.get(), DontEnum | Function);
346
347 #define CREATE_PROTOTYPE_FOR_SIMPLE_TYPE(capitalName, lowerName, properName, instanceType, jsName) \
348 m_ ## lowerName ## Prototype.set(vm, this, capitalName##Prototype::create(vm, this, capitalName##Prototype::createStructure(vm, this, m_objectPrototype.get()))); \
349 m_ ## properName ## Structure.set(vm, this, instanceType::createStructure(vm, this, m_ ## lowerName ## Prototype.get()));
350     
351     FOR_EACH_SIMPLE_BUILTIN_TYPE(CREATE_PROTOTYPE_FOR_SIMPLE_TYPE)
352     
353 #undef CREATE_PROTOTYPE_FOR_SIMPLE_TYPE
354
355     m_iteratorPrototype.set(vm, this, IteratorPrototype::create(vm, this, IteratorPrototype::createStructure(vm, this, m_objectPrototype.get())));
356
357 #define CREATE_PROTOTYPE_FOR_DERIVED_ITERATOR_TYPE(capitalName, lowerName, properName, instanceType, jsName) \
358 m_ ## lowerName ## Prototype.set(vm, this, capitalName##Prototype::create(vm, this, capitalName##Prototype::createStructure(vm, this, m_iteratorPrototype.get()))); \
359 m_ ## properName ## Structure.set(vm, this, instanceType::createStructure(vm, this, m_ ## lowerName ## Prototype.get()));
360     
361     FOR_EACH_BUILTIN_DERIVED_ITERATOR_TYPE(CREATE_PROTOTYPE_FOR_DERIVED_ITERATOR_TYPE)
362     
363 #undef CREATE_PROTOTYPE_FOR_DERIVED_ITERATOR_TYPE
364
365     // Constructors
366     
367     ObjectConstructor* objectConstructor = ObjectConstructor::create(vm, this, ObjectConstructor::createStructure(vm, this, m_functionPrototype.get()), m_objectPrototype.get());
368     m_objectConstructor.set(vm, this, objectConstructor);
369
370     JSFunction* definePropertyFunction = m_objectConstructor->addDefineProperty(exec, this);
371     m_definePropertyFunction.set(vm, this, definePropertyFunction);
372
373     JSCell* functionConstructor = FunctionConstructor::create(vm, FunctionConstructor::createStructure(vm, this, m_functionPrototype.get()), m_functionPrototype.get());
374     JSCell* arrayConstructor = ArrayConstructor::create(vm, ArrayConstructor::createStructure(vm, this, m_functionPrototype.get()), m_arrayPrototype.get());
375     
376     m_regExpConstructor.set(vm, this, RegExpConstructor::create(vm, RegExpConstructor::createStructure(vm, this, m_functionPrototype.get()), m_regExpPrototype.get()));
377     
378 #define CREATE_CONSTRUCTOR_FOR_SIMPLE_TYPE(capitalName, lowerName, properName, instanceType, jsName) \
379 capitalName ## Constructor* lowerName ## Constructor = capitalName ## Constructor::create(vm, capitalName ## Constructor::createStructure(vm, this, m_functionPrototype.get()), m_ ## lowerName ## Prototype.get()); \
380 m_ ## lowerName ## Prototype->putDirectWithoutTransition(vm, vm.propertyNames->constructor, lowerName ## Constructor, DontEnum); \
381
382     FOR_EACH_SIMPLE_BUILTIN_TYPE(CREATE_CONSTRUCTOR_FOR_SIMPLE_TYPE)
383     
384 #undef CREATE_CONSTRUCTOR_FOR_SIMPLE_TYPE
385     
386     m_errorConstructor.set(vm, this, errorConstructor);
387     
388     Structure* nativeErrorPrototypeStructure = NativeErrorPrototype::createStructure(vm, this, m_errorPrototype.get());
389     Structure* nativeErrorStructure = NativeErrorConstructor::createStructure(vm, this, m_functionPrototype.get());
390     m_evalErrorConstructor.set(vm, this, NativeErrorConstructor::create(vm, this, nativeErrorStructure, nativeErrorPrototypeStructure, ASCIILiteral("EvalError")));
391     m_rangeErrorConstructor.set(vm, this, NativeErrorConstructor::create(vm, this, nativeErrorStructure, nativeErrorPrototypeStructure, ASCIILiteral("RangeError")));
392     m_referenceErrorConstructor.set(vm, this, NativeErrorConstructor::create(vm, this, nativeErrorStructure, nativeErrorPrototypeStructure, ASCIILiteral("ReferenceError")));
393     m_syntaxErrorConstructor.set(vm, this, NativeErrorConstructor::create(vm, this, nativeErrorStructure, nativeErrorPrototypeStructure, ASCIILiteral("SyntaxError")));
394     m_typeErrorConstructor.set(vm, this, NativeErrorConstructor::create(vm, this, nativeErrorStructure, nativeErrorPrototypeStructure, ASCIILiteral("TypeError")));
395     m_URIErrorConstructor.set(vm, this, NativeErrorConstructor::create(vm, this, nativeErrorStructure, nativeErrorPrototypeStructure, ASCIILiteral("URIError")));
396     m_promiseConstructor.set(vm, this, JSPromiseConstructor::create(vm, JSPromiseConstructor::createStructure(vm, this, m_functionPrototype.get()), m_promisePrototype.get()));
397     
398     m_objectPrototype->putDirectWithoutTransition(vm, vm.propertyNames->constructor, objectConstructor, DontEnum);
399     m_functionPrototype->putDirectWithoutTransition(vm, vm.propertyNames->constructor, functionConstructor, DontEnum);
400     m_arrayPrototype->putDirectWithoutTransition(vm, vm.propertyNames->constructor, arrayConstructor, DontEnum);
401     m_regExpPrototype->putDirectWithoutTransition(vm, vm.propertyNames->constructor, m_regExpConstructor.get(), DontEnum);
402     m_promisePrototype->putDirectWithoutTransition(vm, vm.propertyNames->constructor, m_promiseConstructor.get(), DontEnum);
403     
404     putDirectWithoutTransition(vm, vm.propertyNames->Object, objectConstructor, DontEnum);
405     putDirectWithoutTransition(vm, vm.propertyNames->Function, functionConstructor, DontEnum);
406     putDirectWithoutTransition(vm, vm.propertyNames->Array, arrayConstructor, DontEnum);
407     putDirectWithoutTransition(vm, vm.propertyNames->RegExp, m_regExpConstructor.get(), DontEnum);
408     putDirectWithoutTransition(vm, vm.propertyNames->EvalError, m_evalErrorConstructor.get(), DontEnum);
409     putDirectWithoutTransition(vm, vm.propertyNames->RangeError, m_rangeErrorConstructor.get(), DontEnum);
410     putDirectWithoutTransition(vm, vm.propertyNames->ReferenceError, m_referenceErrorConstructor.get(), DontEnum);
411     putDirectWithoutTransition(vm, vm.propertyNames->SyntaxError, m_syntaxErrorConstructor.get(), DontEnum);
412     putDirectWithoutTransition(vm, vm.propertyNames->TypeError, m_typeErrorConstructor.get(), DontEnum);
413     putDirectWithoutTransition(vm, vm.propertyNames->URIError, m_URIErrorConstructor.get(), DontEnum);
414     putDirectWithoutTransition(vm, vm.propertyNames->Promise, m_promiseConstructor.get(), DontEnum);
415     
416     
417 #define PUT_CONSTRUCTOR_FOR_SIMPLE_TYPE(capitalName, lowerName, properName, instanceType, jsName) \
418 putDirectWithoutTransition(vm, vm.propertyNames-> jsName, lowerName ## Constructor, DontEnum); \
419
420     FOR_EACH_SIMPLE_BUILTIN_TYPE_WITH_CONSTRUCTOR(PUT_CONSTRUCTOR_FOR_SIMPLE_TYPE)
421
422 #undef PUT_CONSTRUCTOR_FOR_SIMPLE_TYPE
423     PrototypeMap& prototypeMap = vm.prototypeMap;
424     Structure* iteratorResultStructure = prototypeMap.emptyObjectStructureForPrototype(m_objectPrototype.get(), JSFinalObject::defaultInlineCapacity());
425     PropertyOffset offset;
426     iteratorResultStructure = Structure::addPropertyTransition(vm, iteratorResultStructure, vm.propertyNames->done, 0, offset);
427     iteratorResultStructure = Structure::addPropertyTransition(vm, iteratorResultStructure, vm.propertyNames->value, 0, offset);
428     m_iteratorResultStructure.set(vm, this, iteratorResultStructure);
429     
430     m_evalFunction.set(vm, this, JSFunction::create(vm, this, 1, vm.propertyNames->eval.string(), globalFuncEval));
431     putDirectWithoutTransition(vm, vm.propertyNames->eval, m_evalFunction.get(), DontEnum);
432     
433 #if ENABLE(INTL)
434     putDirectWithoutTransition(vm, vm.propertyNames->Intl, IntlObject::create(vm, IntlObject::createStructure(vm, this, m_objectPrototype.get())), DontEnum);
435 #endif // ENABLE(INTL)
436     putDirectWithoutTransition(vm, vm.propertyNames->JSON, JSONObject::create(vm, JSONObject::createStructure(vm, this, m_objectPrototype.get())), DontEnum);
437     putDirectWithoutTransition(vm, vm.propertyNames->Math, MathObject::create(vm, this, MathObject::createStructure(vm, this, m_objectPrototype.get())), DontEnum);
438     putDirectWithoutTransition(vm, vm.propertyNames->Reflect, ReflectObject::create(vm, this, ReflectObject::createStructure(vm, this, m_objectPrototype.get())), DontEnum);
439     
440     std::array<InternalFunction*, NUMBER_OF_TYPED_ARRAY_TYPES> typedArrayConstructors;
441     typedArrayConstructors[toIndex(TypeInt8)] = JSInt8ArrayConstructor::create(vm, JSInt8ArrayConstructor::createStructure(vm, this, m_functionPrototype.get()), m_typedArrays[toIndex(TypeInt8)].prototype.get(), ASCIILiteral("Int8Array"));
442     typedArrayConstructors[toIndex(TypeInt16)] = JSInt16ArrayConstructor::create(vm, JSInt16ArrayConstructor::createStructure(vm, this, m_functionPrototype.get()), m_typedArrays[toIndex(TypeInt16)].prototype.get(), ASCIILiteral("Int16Array"));
443     typedArrayConstructors[toIndex(TypeInt32)] = JSInt32ArrayConstructor::create(vm, JSInt32ArrayConstructor::createStructure(vm, this, m_functionPrototype.get()), m_typedArrays[toIndex(TypeInt32)].prototype.get(), ASCIILiteral("Int32Array"));
444     typedArrayConstructors[toIndex(TypeUint8)] = JSUint8ArrayConstructor::create(vm, JSUint8ArrayConstructor::createStructure(vm, this, m_functionPrototype.get()), m_typedArrays[toIndex(TypeUint8)].prototype.get(), ASCIILiteral("Uint8Array"));
445     typedArrayConstructors[toIndex(TypeUint8Clamped)] = JSUint8ClampedArrayConstructor::create(vm, JSUint8ClampedArrayConstructor::createStructure(vm, this, m_functionPrototype.get()), m_typedArrays[toIndex(TypeUint8Clamped)].prototype.get(), ASCIILiteral("Uint8ClampedArray"));
446     typedArrayConstructors[toIndex(TypeUint16)] = JSUint16ArrayConstructor::create(vm, JSUint16ArrayConstructor::createStructure(vm, this, m_functionPrototype.get()), m_typedArrays[toIndex(TypeUint16)].prototype.get(), ASCIILiteral("Uint16Array"));
447     typedArrayConstructors[toIndex(TypeUint32)] = JSUint32ArrayConstructor::create(vm, JSUint32ArrayConstructor::createStructure(vm, this, m_functionPrototype.get()), m_typedArrays[toIndex(TypeUint32)].prototype.get(), ASCIILiteral("Uint32Array"));
448     typedArrayConstructors[toIndex(TypeFloat32)] = JSFloat32ArrayConstructor::create(vm, JSFloat32ArrayConstructor::createStructure(vm, this, m_functionPrototype.get()), m_typedArrays[toIndex(TypeFloat32)].prototype.get(), ASCIILiteral("Float32Array"));
449     typedArrayConstructors[toIndex(TypeFloat64)] = JSFloat64ArrayConstructor::create(vm, JSFloat64ArrayConstructor::createStructure(vm, this, m_functionPrototype.get()), m_typedArrays[toIndex(TypeFloat64)].prototype.get(), ASCIILiteral("Float64Array"));
450     typedArrayConstructors[toIndex(TypeDataView)] = JSDataViewConstructor::create(vm, JSDataViewConstructor::createStructure(vm, this, m_functionPrototype.get()), m_typedArrays[toIndex(TypeDataView)].prototype.get(), ASCIILiteral("DataView"));
451     
452     for (unsigned typedArrayIndex = NUMBER_OF_TYPED_ARRAY_TYPES; typedArrayIndex--;) {
453         m_typedArrays[typedArrayIndex].prototype->putDirectWithoutTransition(vm, vm.propertyNames->constructor, typedArrayConstructors[typedArrayIndex], DontEnum);
454         putDirectWithoutTransition(vm, Identifier::fromString(exec, typedArrayConstructors[typedArrayIndex]->name(exec)), typedArrayConstructors[typedArrayIndex], DontEnum);
455     }
456     
457     JSFunction* builtinLog = JSFunction::create(vm, this, 1, vm.propertyNames->emptyIdentifier.string(), globalFuncBuiltinLog);
458
459     JSFunction* privateFuncAbs = JSFunction::create(vm, this, 0, String(), mathProtoFuncAbs, AbsIntrinsic);
460     JSFunction* privateFuncFloor = JSFunction::create(vm, this, 0, String(), mathProtoFuncFloor, FloorIntrinsic);
461     JSFunction* privateFuncIsFinite = JSFunction::create(vm, this, 0, String(), globalFuncIsFinite);
462
463     JSFunction* privateFuncGetTemplateObject = JSFunction::create(vm, this, 0, String(), getTemplateObject);
464     JSFunction* privateFuncToLength = JSFunction::createBuiltinFunction(vm, globalObjectToLengthCodeGenerator(vm), this);
465     JSFunction* privateFuncToInteger = JSFunction::createBuiltinFunction(vm, globalObjectToIntegerCodeGenerator(vm), this);
466
467     GlobalPropertyInfo staticGlobals[] = {
468         GlobalPropertyInfo(vm.propertyNames->NaN, jsNaN(), DontEnum | DontDelete | ReadOnly),
469         GlobalPropertyInfo(vm.propertyNames->Infinity, jsNumber(std::numeric_limits<double>::infinity()), DontEnum | DontDelete | ReadOnly),
470         GlobalPropertyInfo(vm.propertyNames->undefinedKeyword, jsUndefined(), DontEnum | DontDelete | ReadOnly),
471         GlobalPropertyInfo(vm.propertyNames->undefinedPrivateName, jsUndefined(), DontEnum | DontDelete | ReadOnly),
472         GlobalPropertyInfo(vm.propertyNames->ObjectPrivateName, objectConstructor, DontEnum | DontDelete | ReadOnly),
473         GlobalPropertyInfo(vm.propertyNames->ownEnumerablePropertyKeysPrivateName, JSFunction::create(vm, this, 0, String(), ownEnumerablePropertyKeys), DontEnum | DontDelete | ReadOnly),
474         GlobalPropertyInfo(vm.propertyNames->getTemplateObjectPrivateName, privateFuncGetTemplateObject, DontEnum | DontDelete | ReadOnly),
475         GlobalPropertyInfo(vm.propertyNames->enqueueJobPrivateName, JSFunction::create(vm, this, 0, String(), enqueueJob), DontEnum | DontDelete | ReadOnly),
476         GlobalPropertyInfo(vm.propertyNames->TypeErrorPrivateName, m_typeErrorConstructor.get(), DontEnum | DontDelete | ReadOnly),
477         GlobalPropertyInfo(vm.propertyNames->BuiltinLogPrivateName, builtinLog, DontEnum | DontDelete | ReadOnly),
478         GlobalPropertyInfo(vm.propertyNames->ArrayPrivateName, arrayConstructor, DontEnum | DontDelete | ReadOnly),
479         GlobalPropertyInfo(vm.propertyNames->NumberPrivateName, numberConstructor, DontEnum | DontDelete | ReadOnly),
480         GlobalPropertyInfo(vm.propertyNames->StringPrivateName, stringConstructor, DontEnum | DontDelete | ReadOnly),
481         GlobalPropertyInfo(vm.propertyNames->absPrivateName, privateFuncAbs, DontEnum | DontDelete | ReadOnly),
482         GlobalPropertyInfo(vm.propertyNames->floorPrivateName, privateFuncFloor, DontEnum | DontDelete | ReadOnly),
483         GlobalPropertyInfo(vm.propertyNames->getPrototypeOfPrivateName, privateFuncFloor, DontEnum | DontDelete | ReadOnly),
484         GlobalPropertyInfo(vm.propertyNames->getOwnPropertyNamesPrivateName, privateFuncFloor, DontEnum | DontDelete | ReadOnly),
485         GlobalPropertyInfo(vm.propertyNames->isFinitePrivateName, privateFuncIsFinite, DontEnum | DontDelete | ReadOnly),
486         GlobalPropertyInfo(vm.propertyNames->arrayIterationKindKeyPrivateName, jsNumber(ArrayIterateKey), DontEnum | DontDelete | ReadOnly),
487         GlobalPropertyInfo(vm.propertyNames->arrayIterationKindValuePrivateName, jsNumber(ArrayIterateValue), DontEnum | DontDelete | ReadOnly),
488         GlobalPropertyInfo(vm.propertyNames->arrayIterationKindKeyValuePrivateName, jsNumber(ArrayIterateKeyValue), DontEnum | DontDelete | ReadOnly),
489         GlobalPropertyInfo(vm.propertyNames->builtinNames().symbolIteratorPrivateName(), Symbol::create(vm, static_cast<SymbolImpl&>(*vm.propertyNames->iteratorSymbol.impl())), DontEnum | DontDelete | ReadOnly),
490         GlobalPropertyInfo(vm.propertyNames->PromisePrivateName, m_promiseConstructor.get(), DontEnum | DontDelete | ReadOnly),
491         GlobalPropertyInfo(vm.propertyNames->promisePendingPrivateName, jsNumber(static_cast<unsigned>(JSPromise::Status::Pending)), DontEnum | DontDelete | ReadOnly),
492         GlobalPropertyInfo(vm.propertyNames->promiseFulfilledPrivateName, jsNumber(static_cast<unsigned>(JSPromise::Status::Fulfilled)), DontEnum | DontDelete | ReadOnly),
493         GlobalPropertyInfo(vm.propertyNames->promiseRejectedPrivateName, jsNumber(static_cast<unsigned>(JSPromise::Status::Rejected)), DontEnum | DontDelete | ReadOnly),
494         GlobalPropertyInfo(vm.propertyNames->builtinNames().toLengthPrivateName(), privateFuncToLength, DontEnum | DontDelete | ReadOnly),
495         GlobalPropertyInfo(vm.propertyNames->builtinNames().toIntegerPrivateName(), privateFuncToInteger, DontEnum | DontDelete | ReadOnly),
496         GlobalPropertyInfo(vm.propertyNames->builtinNames().isObjectPrivateName(), JSFunction::createBuiltinFunction(vm, globalObjectIsObjectCodeGenerator(vm), this), DontEnum | DontDelete | ReadOnly),
497         GlobalPropertyInfo(vm.propertyNames->builtinNames().isPromisePrivateName(), JSFunction::createBuiltinFunction(vm, operationsPromiseIsPromiseCodeGenerator(vm), this), DontEnum | DontDelete | ReadOnly),
498         GlobalPropertyInfo(vm.propertyNames->builtinNames().newPromiseReactionPrivateName(), JSFunction::createBuiltinFunction(vm, operationsPromiseNewPromiseReactionCodeGenerator(vm), this), DontEnum | DontDelete | ReadOnly),
499         GlobalPropertyInfo(vm.propertyNames->builtinNames().newPromiseCapabilityPrivateName(), JSFunction::createBuiltinFunction(vm, operationsPromiseNewPromiseCapabilityCodeGenerator(vm), this), DontEnum | DontDelete | ReadOnly),
500         GlobalPropertyInfo(vm.propertyNames->builtinNames().triggerPromiseReactionsPrivateName(), JSFunction::createBuiltinFunction(vm, operationsPromiseTriggerPromiseReactionsCodeGenerator(vm), this), DontEnum | DontDelete | ReadOnly),
501         GlobalPropertyInfo(vm.propertyNames->builtinNames().rejectPromisePrivateName(), JSFunction::createBuiltinFunction(vm, operationsPromiseRejectPromiseCodeGenerator(vm), this), DontEnum | DontDelete | ReadOnly),
502         GlobalPropertyInfo(vm.propertyNames->builtinNames().fulfillPromisePrivateName(), JSFunction::createBuiltinFunction(vm, operationsPromiseFulfillPromiseCodeGenerator(vm), this), DontEnum | DontDelete | ReadOnly),
503         GlobalPropertyInfo(vm.propertyNames->builtinNames().createResolvingFunctionsPrivateName(), JSFunction::createBuiltinFunction(vm, operationsPromiseCreateResolvingFunctionsCodeGenerator(vm), this), DontEnum | DontDelete | ReadOnly),
504         GlobalPropertyInfo(vm.propertyNames->builtinNames().promiseReactionJobPrivateName(), JSFunction::createBuiltinFunction(vm, operationsPromisePromiseReactionJobCodeGenerator(vm), this), DontEnum | DontDelete | ReadOnly),
505         GlobalPropertyInfo(vm.propertyNames->builtinNames().promiseResolveThenableJobPrivateName(), JSFunction::createBuiltinFunction(vm, operationsPromisePromiseResolveThenableJobCodeGenerator(vm), this), DontEnum | DontDelete | ReadOnly),
506     };
507     addStaticGlobals(staticGlobals, WTF_ARRAY_LENGTH(staticGlobals));
508     
509     m_specialPointers[Special::CallFunction] = m_callFunction.get();
510     m_specialPointers[Special::ApplyFunction] = m_applyFunction.get();
511     m_specialPointers[Special::ObjectConstructor] = objectConstructor;
512     m_specialPointers[Special::ArrayConstructor] = arrayConstructor;
513
514     m_linkTimeConstants[static_cast<unsigned>(LinkTimeConstant::DefinePropertyFunction)] = m_definePropertyFunction.get();
515
516     ConsolePrototype* consolePrototype = ConsolePrototype::create(vm, this, ConsolePrototype::createStructure(vm, this, m_objectPrototype.get()));
517     m_consoleStructure.set(vm, this, JSConsole::createStructure(vm, this, consolePrototype));
518     JSConsole* consoleObject = JSConsole::create(vm, m_consoleStructure.get());
519     putDirectWithoutTransition(vm, Identifier::fromString(exec, "console"), consoleObject, DontEnum);
520
521     if (UNLIKELY(Options::enableDollarVM())) {
522         JSDollarVMPrototype* dollarVMPrototype = JSDollarVMPrototype::create(vm, this, JSDollarVMPrototype::createStructure(vm, this, m_objectPrototype.get()));
523         m_dollarVMStructure.set(vm, this, JSDollarVM::createStructure(vm, this, dollarVMPrototype));
524         JSDollarVM* dollarVM = JSDollarVM::create(vm, m_dollarVMStructure.get());
525         putDirectWithoutTransition(vm, Identifier::fromString(exec, "$vm"), dollarVM, DontEnum);
526     }
527
528     resetPrototype(vm, prototype());
529 }
530
531 void JSGlobalObject::put(JSCell* cell, ExecState* exec, PropertyName propertyName, JSValue value, PutPropertySlot& slot)
532 {
533     JSGlobalObject* thisObject = jsCast<JSGlobalObject*>(cell);
534     ASSERT(!Heap::heap(value) || Heap::heap(value) == Heap::heap(thisObject));
535
536     if (symbolTablePut(thisObject, exec, propertyName, value, slot.isStrictMode()))
537         return;
538     Base::put(thisObject, exec, propertyName, value, slot);
539 }
540
541 bool JSGlobalObject::defineOwnProperty(JSObject* object, ExecState* exec, PropertyName propertyName, const PropertyDescriptor& descriptor, bool shouldThrow)
542 {
543     JSGlobalObject* thisObject = jsCast<JSGlobalObject*>(object);
544     PropertySlot slot(thisObject);
545     // silently ignore attempts to add accessors aliasing vars.
546     if (descriptor.isAccessorDescriptor() && symbolTableGet(thisObject, propertyName, slot))
547         return false;
548     return Base::defineOwnProperty(thisObject, exec, propertyName, descriptor, shouldThrow);
549 }
550
551 void JSGlobalObject::addGlobalVar(const Identifier& ident)
552 {
553     ConcurrentJITLocker locker(symbolTable()->m_lock);
554     SymbolTableEntry entry = symbolTable()->get(locker, ident.impl());
555     if (!entry.isNull())
556         return;
557     
558     ScopeOffset offset = symbolTable()->takeNextScopeOffset(locker);
559     SymbolTableEntry newEntry(VarOffset(offset), 0);
560     newEntry.prepareToWatch();
561     symbolTable()->add(locker, ident.impl(), newEntry);
562     
563     ScopeOffset offsetForAssert = addVariables(1);
564     RELEASE_ASSERT(offsetForAssert == offset);
565 }
566
567 void JSGlobalObject::addFunction(ExecState* exec, const Identifier& propertyName)
568 {
569     VM& vm = exec->vm();
570     removeDirect(vm, propertyName); // Newly declared functions overwrite existing properties.
571     addGlobalVar(propertyName);
572 }
573
574 static inline JSObject* lastInPrototypeChain(JSObject* object)
575 {
576     JSObject* o = object;
577     while (o->prototype().isObject())
578         o = asObject(o->prototype());
579     return o;
580 }
581
582 // Private namespace for helpers for JSGlobalObject::haveABadTime()
583 namespace {
584
585 class ObjectsWithBrokenIndexingFinder : public MarkedBlock::VoidFunctor {
586 public:
587     ObjectsWithBrokenIndexingFinder(MarkedArgumentBuffer&, JSGlobalObject*);
588     IterationStatus operator()(JSCell*);
589
590 private:
591     void visit(JSCell*);
592
593     MarkedArgumentBuffer& m_foundObjects;
594     JSGlobalObject* m_globalObject;
595 };
596
597 ObjectsWithBrokenIndexingFinder::ObjectsWithBrokenIndexingFinder(
598     MarkedArgumentBuffer& foundObjects, JSGlobalObject* globalObject)
599     : m_foundObjects(foundObjects)
600     , m_globalObject(globalObject)
601 {
602 }
603
604 inline bool hasBrokenIndexing(JSObject* object)
605 {
606     // This will change if we have more indexing types.
607     IndexingType type = object->indexingType();
608     // This could be made obviously more efficient, but isn't made so right now, because
609     // we expect this to be an unlikely slow path anyway.
610     return hasUndecided(type) || hasInt32(type) || hasDouble(type) || hasContiguous(type) || hasArrayStorage(type);
611 }
612
613 inline void ObjectsWithBrokenIndexingFinder::visit(JSCell* cell)
614 {
615     if (!cell->isObject())
616         return;
617     
618     JSObject* object = asObject(cell);
619
620     // Run this filter first, since it's cheap, and ought to filter out a lot of objects.
621     if (!hasBrokenIndexing(object))
622         return;
623     
624     // We only want to have a bad time in the affected global object, not in the entire
625     // VM. But we have to be careful, since there may be objects that claim to belong to
626     // a different global object that have prototypes from our global object.
627     bool foundGlobalObject = false;
628     for (JSObject* current = object; ;) {
629         if (current->globalObject() == m_globalObject) {
630             foundGlobalObject = true;
631             break;
632         }
633         
634         JSValue prototypeValue = current->prototype();
635         if (prototypeValue.isNull())
636             break;
637         current = asObject(prototypeValue);
638     }
639     if (!foundGlobalObject)
640         return;
641     
642     m_foundObjects.append(object);
643 }
644
645 IterationStatus ObjectsWithBrokenIndexingFinder::operator()(JSCell* cell)
646 {
647     visit(cell);
648     return IterationStatus::Continue;
649 }
650
651 } // end private namespace for helpers for JSGlobalObject::haveABadTime()
652
653 void JSGlobalObject::haveABadTime(VM& vm)
654 {
655     ASSERT(&vm == &this->vm());
656     
657     if (isHavingABadTime())
658         return;
659     
660     // Make sure that all allocations or indexed storage transitions that are inlining
661     // the assumption that it's safe to transition to a non-SlowPut array storage don't
662     // do so anymore.
663     m_havingABadTimeWatchpoint->fireAll("Having a bad time");
664     ASSERT(isHavingABadTime()); // The watchpoint is what tells us that we're having a bad time.
665     
666     // Make sure that all JSArray allocations that load the appropriate structure from
667     // this object now load a structure that uses SlowPut.
668     for (unsigned i = 0; i < NumberOfIndexingShapes; ++i)
669         m_arrayStructureForIndexingShapeDuringAllocation[i].set(vm, this, originalArrayStructureForIndexingType(ArrayWithSlowPutArrayStorage));
670     
671     // Make sure that all objects that have indexed storage switch to the slow kind of
672     // indexed storage.
673     MarkedArgumentBuffer foundObjects; // Use MarkedArgumentBuffer because switchToSlowPutArrayStorage() may GC.
674     ObjectsWithBrokenIndexingFinder finder(foundObjects, this);
675     {
676         HeapIterationScope iterationScope(vm.heap);
677         vm.heap.objectSpace().forEachLiveCell(iterationScope, finder);
678     }
679     while (!foundObjects.isEmpty()) {
680         JSObject* object = asObject(foundObjects.last());
681         foundObjects.removeLast();
682         ASSERT(hasBrokenIndexing(object));
683         object->switchToSlowPutArrayStorage(vm);
684     }
685 }
686
687 bool JSGlobalObject::objectPrototypeIsSane()
688 {
689     return !hasIndexedProperties(m_objectPrototype->indexingType())
690         && m_objectPrototype->prototype().isNull();
691 }
692
693 bool JSGlobalObject::arrayPrototypeChainIsSane()
694 {
695     return !hasIndexedProperties(m_arrayPrototype->indexingType())
696         && m_arrayPrototype->prototype() == m_objectPrototype.get()
697         && objectPrototypeIsSane();
698 }
699
700 bool JSGlobalObject::stringPrototypeChainIsSane()
701 {
702     return !hasIndexedProperties(m_stringPrototype->indexingType())
703         && m_stringPrototype->prototype() == m_objectPrototype.get()
704         && objectPrototypeIsSane();
705 }
706
707 void JSGlobalObject::createThrowTypeError(VM& vm)
708 {
709     JSFunction* thrower = JSFunction::create(vm, this, 0, String(), globalFuncThrowTypeError);
710     GetterSetter* getterSetter = GetterSetter::create(vm, this);
711     getterSetter->setGetter(vm, this, thrower);
712     getterSetter->setSetter(vm, this, thrower);
713     m_throwTypeErrorGetterSetter.set(vm, this, getterSetter);
714 }
715
716 // Set prototype, and also insert the object prototype at the end of the chain.
717 void JSGlobalObject::resetPrototype(VM& vm, JSValue prototype)
718 {
719     setPrototype(vm, prototype);
720
721     JSObject* oldLastInPrototypeChain = lastInPrototypeChain(this);
722     JSObject* objectPrototype = m_objectPrototype.get();
723     if (oldLastInPrototypeChain != objectPrototype)
724         oldLastInPrototypeChain->setPrototype(vm, objectPrototype);
725
726     // Whenever we change the prototype of the global object, we need to create a new JSProxy with the correct prototype.
727     setGlobalThis(vm, JSProxy::create(vm, JSProxy::createStructure(vm, this, prototype, PureForwardingProxyType), this));
728 }
729
730 void JSGlobalObject::visitChildren(JSCell* cell, SlotVisitor& visitor)
731
732     JSGlobalObject* thisObject = jsCast<JSGlobalObject*>(cell);
733     ASSERT_GC_OBJECT_INHERITS(thisObject, info());
734     Base::visitChildren(thisObject, visitor);
735
736     visitor.append(&thisObject->m_globalThis);
737
738     visitor.append(&thisObject->m_globalCallee);
739     visitor.append(&thisObject->m_regExpConstructor);
740     visitor.append(&thisObject->m_errorConstructor);
741     visitor.append(&thisObject->m_evalErrorConstructor);
742     visitor.append(&thisObject->m_rangeErrorConstructor);
743     visitor.append(&thisObject->m_referenceErrorConstructor);
744     visitor.append(&thisObject->m_syntaxErrorConstructor);
745     visitor.append(&thisObject->m_typeErrorConstructor);
746     visitor.append(&thisObject->m_URIErrorConstructor);
747     visitor.append(&thisObject->m_objectConstructor);
748     visitor.append(&thisObject->m_promiseConstructor);
749
750     visitor.append(&thisObject->m_nullGetterFunction);
751     visitor.append(&thisObject->m_nullSetterFunction);
752
753     visitor.append(&thisObject->m_parseIntFunction);
754     visitor.append(&thisObject->m_evalFunction);
755     visitor.append(&thisObject->m_callFunction);
756     visitor.append(&thisObject->m_applyFunction);
757     visitor.append(&thisObject->m_definePropertyFunction);
758     visitor.append(&thisObject->m_arrayProtoValuesFunction);
759     visitor.append(&thisObject->m_initializePromiseFunction);
760     visitor.append(&thisObject->m_newPromiseDeferredFunction);
761     visitor.append(&thisObject->m_throwTypeErrorGetterSetter);
762
763     visitor.append(&thisObject->m_objectPrototype);
764     visitor.append(&thisObject->m_functionPrototype);
765     visitor.append(&thisObject->m_arrayPrototype);
766     visitor.append(&thisObject->m_errorPrototype);
767     visitor.append(&thisObject->m_iteratorPrototype);
768     visitor.append(&thisObject->m_promisePrototype);
769
770     visitor.append(&thisObject->m_debuggerScopeStructure);
771     visitor.append(&thisObject->m_withScopeStructure);
772     visitor.append(&thisObject->m_strictEvalActivationStructure);
773     visitor.append(&thisObject->m_lexicalEnvironmentStructure);
774     visitor.append(&thisObject->m_catchScopeStructure);
775     visitor.append(&thisObject->m_functionNameScopeStructure);
776     visitor.append(&thisObject->m_directArgumentsStructure);
777     visitor.append(&thisObject->m_scopedArgumentsStructure);
778     visitor.append(&thisObject->m_outOfBandArgumentsStructure);
779     for (unsigned i = 0; i < NumberOfIndexingShapes; ++i)
780         visitor.append(&thisObject->m_originalArrayStructureForIndexingShape[i]);
781     for (unsigned i = 0; i < NumberOfIndexingShapes; ++i)
782         visitor.append(&thisObject->m_arrayStructureForIndexingShapeDuringAllocation[i]);
783     visitor.append(&thisObject->m_booleanObjectStructure);
784     visitor.append(&thisObject->m_callbackConstructorStructure);
785     visitor.append(&thisObject->m_callbackFunctionStructure);
786     visitor.append(&thisObject->m_callbackObjectStructure);
787 #if JSC_OBJC_API_ENABLED
788     visitor.append(&thisObject->m_objcCallbackFunctionStructure);
789     visitor.append(&thisObject->m_objcWrapperObjectStructure);
790 #endif
791     visitor.append(&thisObject->m_nullPrototypeObjectStructure);
792     visitor.append(&thisObject->m_errorStructure);
793     visitor.append(&thisObject->m_calleeStructure);
794     visitor.append(&thisObject->m_functionStructure);
795     visitor.append(&thisObject->m_boundFunctionStructure);
796     visitor.append(&thisObject->m_namedFunctionStructure);
797     visitor.append(&thisObject->m_symbolObjectStructure);
798     visitor.append(&thisObject->m_regExpStructure);
799     visitor.append(&thisObject->m_regExpMatchesArrayStructure);
800     visitor.append(&thisObject->m_consoleStructure);
801     visitor.append(&thisObject->m_dollarVMStructure);
802     visitor.append(&thisObject->m_internalFunctionStructure);
803     visitor.append(&thisObject->m_promiseStructure);
804
805 #define VISIT_SIMPLE_TYPE(CapitalName, lowerName, properName, instanceType, jsName) \
806     visitor.append(&thisObject->m_ ## lowerName ## Prototype); \
807     visitor.append(&thisObject->m_ ## properName ## Structure); \
808
809     FOR_EACH_SIMPLE_BUILTIN_TYPE(VISIT_SIMPLE_TYPE)
810     FOR_EACH_BUILTIN_DERIVED_ITERATOR_TYPE(VISIT_SIMPLE_TYPE)
811
812 #undef VISIT_SIMPLE_TYPE
813
814     for (unsigned i = NUMBER_OF_TYPED_ARRAY_TYPES; i--;) {
815         visitor.append(&thisObject->m_typedArrays[i].prototype);
816         visitor.append(&thisObject->m_typedArrays[i].structure);
817     }
818 }
819
820 JSValue JSGlobalObject::toThis(JSCell*, ExecState* exec, ECMAMode ecmaMode)
821 {
822     if (ecmaMode == StrictMode)
823         return jsUndefined();
824     return exec->globalThisValue();
825 }
826
827 ExecState* JSGlobalObject::globalExec()
828 {
829     return CallFrame::create(m_globalCallFrame);
830 }
831
832 void JSGlobalObject::addStaticGlobals(GlobalPropertyInfo* globals, int count)
833 {
834     ScopeOffset startOffset = addVariables(count);
835
836     for (int i = 0; i < count; ++i) {
837         GlobalPropertyInfo& global = globals[i];
838         ASSERT(global.attributes & DontDelete);
839         
840         ScopeOffset offset;
841         {
842             ConcurrentJITLocker locker(symbolTable()->m_lock);
843             offset = symbolTable()->takeNextScopeOffset(locker);
844             RELEASE_ASSERT(offset = startOffset + i);
845             SymbolTableEntry newEntry(VarOffset(offset), global.attributes);
846             symbolTable()->add(locker, global.identifier.impl(), newEntry);
847         }
848         variableAt(offset).set(vm(), this, global.value);
849     }
850 }
851
852 bool JSGlobalObject::getOwnPropertySlot(JSObject* object, ExecState* exec, PropertyName propertyName, PropertySlot& slot)
853 {
854     JSGlobalObject* thisObject = jsCast<JSGlobalObject*>(object);
855     if (getStaticFunctionSlot<Base>(exec, globalObjectTable, thisObject, propertyName, slot))
856         return true;
857     return symbolTableGet(thisObject, propertyName, slot);
858 }
859
860 void JSGlobalObject::clearRareData(JSCell* cell)
861 {
862     jsCast<JSGlobalObject*>(cell)->m_rareData = nullptr;
863 }
864
865 void slowValidateCell(JSGlobalObject* globalObject)
866 {
867     RELEASE_ASSERT(globalObject->isGlobalObject());
868     ASSERT_GC_OBJECT_INHERITS(globalObject, JSGlobalObject::info());
869 }
870
871 UnlinkedProgramCodeBlock* JSGlobalObject::createProgramCodeBlock(CallFrame* callFrame, ProgramExecutable* executable, JSObject** exception)
872 {
873     ParserError error;
874     JSParserStrictMode strictMode = executable->isStrictMode() ? JSParserStrictMode::Strict : JSParserStrictMode::NotStrict;
875     DebuggerMode debuggerMode = hasDebugger() ? DebuggerOn : DebuggerOff;
876     ProfilerMode profilerMode = hasProfiler() ? ProfilerOn : ProfilerOff;
877     UnlinkedProgramCodeBlock* unlinkedCodeBlock = vm().codeCache()->getProgramCodeBlock(
878         vm(), executable, executable->source(), JSParserBuiltinMode::NotBuiltin, strictMode, 
879         debuggerMode, profilerMode, error);
880
881     if (hasDebugger())
882         debugger()->sourceParsed(callFrame, executable->source().provider(), error.line(), error.message());
883
884     if (error.isValid()) {
885         *exception = error.toErrorObject(this, executable->source());
886         return nullptr;
887     }
888     
889     return unlinkedCodeBlock;
890 }
891
892 UnlinkedEvalCodeBlock* JSGlobalObject::createEvalCodeBlock(CallFrame* callFrame, EvalExecutable* executable, ThisTDZMode thisTDZMode, const VariableEnvironment* variablesUnderTDZ)
893 {
894     ParserError error;
895     JSParserStrictMode strictMode = executable->isStrictMode() ? JSParserStrictMode::Strict : JSParserStrictMode::NotStrict;
896     DebuggerMode debuggerMode = hasDebugger() ? DebuggerOn : DebuggerOff;
897     ProfilerMode profilerMode = hasProfiler() ? ProfilerOn : ProfilerOff;
898     UnlinkedEvalCodeBlock* unlinkedCodeBlock = vm().codeCache()->getEvalCodeBlock(
899         vm(), executable, executable->source(), JSParserBuiltinMode::NotBuiltin, strictMode, thisTDZMode, debuggerMode, profilerMode, error, variablesUnderTDZ);
900
901     if (hasDebugger())
902         debugger()->sourceParsed(callFrame, executable->source().provider(), error.line(), error.message());
903
904     if (error.isValid()) {
905         throwVMError(callFrame, error.toErrorObject(this, executable->source()));
906         return nullptr;
907     }
908
909     return unlinkedCodeBlock;
910 }
911
912 void JSGlobalObject::setRemoteDebuggingEnabled(bool enabled)
913 {
914 #if ENABLE(REMOTE_INSPECTOR)
915     m_inspectorDebuggable->setRemoteDebuggingAllowed(enabled);
916 #else
917     UNUSED_PARAM(enabled);
918 #endif
919 }
920
921 bool JSGlobalObject::remoteDebuggingEnabled() const
922 {
923 #if ENABLE(REMOTE_INSPECTOR)
924     return m_inspectorDebuggable->remoteDebuggingAllowed();
925 #else
926     return false;
927 #endif
928 }
929
930 #if ENABLE(WEB_REPLAY)
931 void JSGlobalObject::setInputCursor(PassRefPtr<InputCursor> prpCursor)
932 {
933     m_inputCursor = prpCursor;
934     ASSERT(m_inputCursor);
935
936     InputCursor& cursor = inputCursor();
937     // Save or set the random seed. This performed here rather than the constructor
938     // to avoid threading the input cursor through all the abstraction layers.
939     if (cursor.isCapturing())
940         cursor.appendInput<SetRandomSeed>(m_weakRandom.seedUnsafe());
941     else if (cursor.isReplaying()) {
942         if (SetRandomSeed* input = cursor.fetchInput<SetRandomSeed>())
943             m_weakRandom.initializeSeed(static_cast<unsigned>(input->randomSeed()));
944     }
945 }
946 #endif
947
948 void JSGlobalObject::setName(const String& name)
949 {
950     m_name = name;
951
952 #if ENABLE(REMOTE_INSPECTOR)
953     m_inspectorDebuggable->update();
954 #endif
955 }
956
957 void JSGlobalObject::queueMicrotask(PassRefPtr<Microtask> task)
958 {
959     if (globalObjectMethodTable()->queueTaskToEventLoop) {
960         globalObjectMethodTable()->queueTaskToEventLoop(this, task);
961         return;
962     }
963
964     vm().queueMicrotask(this, task);
965 }
966
967 } // namespace JSC