{"record":{"id":"34e126924ffff87d","repo":"mozilla/pdf.js","slug":"doc-author-is-read-only","errorCode":null,"errorMessage":"doc.author is read-only","messagePattern":"doc\\.author is read-only","errorType":"exception","errorClass":"Error","httpStatus":null,"severity":"error","filePath":"src/scripting_api/doc.js","lineNumber":263,"sourceCode":"    if (o === \"Z\" || o === \"+\" || o === \"-\") {\n      second = \"00\";\n      offsetPos = 12;\n    } else {\n      second = date.substring(12, 14);\n      offsetPos = 14;\n    }\n    const offset = date.substring(offsetPos).replaceAll(\"'\", \"\");\n    return new Date(\n      `${year}-${month}-${day}T${hour}:${minute}:${second}${offset}`\n    );\n  }\n\n  get author() {\n    return this._author;\n  }\n\n  set author(_) {\n    throw new Error(\"doc.author is read-only\");\n  }\n\n  get baseURL() {\n    return this._baseURL;\n  }\n\n  set baseURL(baseURL) {\n    this._baseURL = baseURL;\n  }\n\n  get bookmarkRoot() {\n    return undefined;\n  }\n\n  set bookmarkRoot(_) {\n    throw new Error(\"doc.bookmarkRoot is read-only\");\n  }\n","sourceCodeStart":245,"sourceCodeEnd":281,"githubUrl":"https://github.com/mozilla/pdf.js/blob/5903d58d58e4dd9ce6ffa3834aea8480f06b4ada/src/scripting_api/doc.js#L245-L281","documentation":"PDF.js's scripting sandbox (src/scripting_api) implements the Acrobat JavaScript `doc` object inside a QuickJS sandbox. Per the Acrobat API specification this property is read-only, so the class defines a getter that returns the current value and a setter that unconditionally throws `Error(\"doc.<prop> is read-only\")`. The throw aborts the currently executing sandboxed script event and is reported back to the host. `author` exposes the PDF Info dictionary `Author` field, seeded from `data.Author` at construction.","triggerScenarios":"A sandboxed PDF form/script executes an assignment to the property, e.g. `doc.author = value;` or `doc.author++`. Because the setter always throws (there is no condition), any write attempt triggers it.","commonSituations":"Scripts ported from desktop Acrobat where the author was editable; forms that try to stamp runtime state into document metadata on save/open; and PDFs generated by tools that emit non-spec-compliant JavaScript.","solutions":["Remove the assignment to `doc.author`; read it through the getter instead.","Set the Author in the PDF's document properties / Info dictionary at authoring time and re-export the PDF.","If you cannot edit the PDF's embedded script, wrap the statement in try/catch so the rest of the form logic still runs."],"exampleFix":"// before\ndoc.author = \"Jane Doe\";\n// after\n// author is read-only — drop the assignment; read via doc.author","handlingStrategy":"validation","validationCode":"// Known read-only doc properties (PDF.js scripting_api/doc.js)\nconst READONLY_DOC_PROPS = new Set([\n  'author','bookmarkRoot','creator','dataObjects','docID',\n  'documentFileName','dynamicXFAForm','external','filesize','hidden',\n  'hostContainer','icons','info','innerAppWindowRect','innerDocWindowRect',\n  'isModal','keywords','modDate'\n]);\nif (READONLY_DOC_PROPS.has('author')) {\n  // skip the write; author is read-only in pdf.js\n  console.warn('doc.author is read-only in pdf.js');\n} else {\n  doc.author = value;\n}","typeGuard":"// Known read-only doc properties (PDF.js scripting_api/doc.js)\nconst READONLY_DOC_PROPS = new Set([\n  'author','bookmarkRoot','creator','dataObjects','docID',\n  'documentFileName','dynamicXFAForm','external','filesize','hidden',\n  'hostContainer','icons','info','innerAppWindowRect','innerDocWindowRect',\n  'isModal','keywords','modDate'\n]);\nconst isReadOnlyDocProp = (name) => READONLY_DOC_PROPS.has(name);\n// usage: if (!isReadOnlyDocProp('keywords')) doc.keywords = v;","tryCatchPattern":"try {\n  doc.author = value;\n} catch (e) {\n  // pdf.js throws Error('doc.author is read-only')\n  if (/is read-only/.test(e.message)) { /* swallow, expected */ }\n  else { throw e; }\n}","preventionTips":["Treat every property listed in the Acrobat JS reference as read-only unless pdf.js provides a setter that stores the value.","Before assigning, check `isReadOnlyDocProp('author')` or grep the setter in src/scripting_api/doc.js for a `throw`.","When porting scripts from Acrobat, run them against the pdf.js sandbox in the dev server first to surface writes early.","Prefer reading metadata through the Info dictionary at PDF authoring time rather than mutating it from a script."],"tags":["scripting","acrobat-api","read-only"],"backgroundTag":null,"analyzedSha":"5903d58d58e4dd9ce6ffa3834aea8480f06b4ada","analyzedAt":"2026-08-13T02:28:27.364Z","schemaVersion":2},"datasetVersion":"2026-08-13T04:17:16.726Z"}