pycode
pycode
The dis module supports the analysis of CPython bytecode by disassembling it. The
CPython bytecode which this module takes as an input is defined in the
file Include/opcode.h and used by the compiler and the interpreter.
def myfunc(alist):
return len(alist)
>>>
>>> dis.dis(myfunc)
2 0 LOAD_GLOBAL 0 (len)
3 LOAD_FAST 0 (alist)
6 CALL_FUNCTION 1
9 RETURN_VALUE
This is a convenience wrapper around many of the functions listed below, most
notably get_instructions(), as iterating over a Bytecode instance yields the bytecode
operations as Instruction instances.
If first_line is not None, it indicates the line number that should be reported for the
first source line in the disassembled code. Otherwise, the source line information
(if any) is taken directly from the disassembled code object.
classmethod from_traceback(tb)
Construct a Bytecode instance from the given traceback, setting current_offset to
the instruction responsible for the exception.
codeobj
The compiled code object.
first_line
The first source line of the code object (if available)
dis()
Return a formatted view of the bytecode operations (the same as printed
by dis.dis(), but returned as a multi-line string).
info()
Return a formatted multi-line string with detailed information about the code object,
like code_info().
Example:
>>>
>>> bytecode = dis.Bytecode(myfunc)
>>> for instr in bytecode:
... print(instr.opname)
...
LOAD_GLOBAL
LOAD_FAST
CALL_FUNCTION
RETURN_VALUE
dis.code_info(x)
Return a formatted multi-line string with detailed code object information for the
supplied function, method, source code string or code object.
Note that the exact contents of code info strings are highly implementation
dependent and they may change arbitrarily across Python VMs or Python releases.
dis.show_code(x, *, file=None)
Print detailed code object information for the supplied function, method, source
code string or code object to file (or sys.stdout if file is not specified).
dis.dis(x=None, *, file=None)
Disassemble the x object. x can denote either a module, a class, a method, a
function, a code object, a string of source code or a byte sequence of raw
bytecode. For a module, it disassembles all functions. For a class, it disassembles
all methods. For a code object or sequence of raw bytecode, it prints one line per
bytecode instruction. Strings are first compiled to code objects with
the compile() built-in function before being disassembled. If no object is provided,
this function disassembles the last traceback.
The disassembly is written as text to the supplied file argument if provided and
to sys.stdout otherwise.
dis.distb(tb=None, *, file=None)
Disassemble the top-of-stack function of a traceback, using the last traceback if
none was passed. The instruction causing the exception is indicated.
The disassembly is written as text to the supplied file argument if provided and
to sys.stdout otherwise.
The parameter interpretation recognizes local and global variable names, constant
values, branch targets, and compare operators.
The disassembly is written as text to the supplied file argument if provided and
to sys.stdout otherwise.
dis.get_instructions(x, *, first_line=None)
Return an iterator over the instructions in the supplied function, method, source
code string or code object.
The iterator generates a series of Instruction named tuples giving the details of each
operation in the supplied code.
If first_line is not None, it indicates the line number that should be reported for the
first source line in the disassembled code. Otherwise, the source line information
(if any) is taken directly from the disassembled code object.
dis.findlinestarts(code)
This generator function uses the co_firstlineno and co_lnotab attributes of the code
object code to find the offsets which are starts of lines in the source code. They
are generated as (offset, lineno) pairs.
dis.findlabels(code)
Detect all offsets in the code object code which are jump targets, and return a list
of these offsets.
dis.stack_effect(opcode[, oparg])
Compute the stack effect of opcode with argument oparg.
class dis.Instruction
Details for a bytecode operation
opcode
numeric code for operation, corresponding to the opcode values listed below and
the bytecode values in the Opcode collections.
opname
human readable name for operation
arg
numeric argument to operation (if any), otherwise None
argval
resolved arg value (if known), otherwise same as arg
argrepr
human readable description of operation argument
offset
start index of operation within bytecode sequence
starts_line
line started by this opcode (if any), otherwise None
is_jump_target
True if other code jumps to here, otherwise False
General instructions
NOP
Do nothing code. Used as a placeholder by the bytecode optimizer.
POP_TOP
Removes the top-of-stack (TOS) item.
ROT_TWO
Swaps the two top-most stack items.
ROT_THREE
Lifts second and third stack item one position up, moves top down to position three.
DUP_TOP
Duplicates the reference on top of the stack.
DUP_TOP_TWO
Duplicates the two references on top of the stack, leaving them in the same order.
Unary
operations
Unary
operations take
the top of the
stack, apply the
operation, and
push the result
back on the
stack.
UNARY_POS
ITIVE
Implements TOS = +TOS.
UNARY_N
EGATIVE
Implements TOS = -TOS.
UNAR
Y_NO
T
Implements TOS = not TOS.
UN
AR
Y_
IN
VE
RT
Implements TOS = ~TOS.
G
E
T
_
I
T
E
R
Implements TOS = iter(TOS).
B
i
n
a
r
y
o
p
e
r
a
t
i
o
n
s
B
i
n
a
r
y
o
p
e
r
a
t
i
o
n
s
r
e
m
o
v
e
t
h
e
t
o
p
o
f
t
h
e
s
t
a
c
k
(
T
O
S
)
a
n
d
t
h
e
s
e
c
o
n
d
t
o
p
-
m
o
s
t
s
t
a
c
k
i
t
e
m
(
T
O
S
1
)
f
r
o
m
t
h
e
s
t
a
c
k
.
T
h
e
y
p
e
r
f
o
r
m
t
h
e
o
p
e
r
a
t
i
o
n
,
a
n
d
p
u
t
t
h
e
r
e
s
u
l
t
b
a
c
k
o
n
t
h
e
s
t
a
c
k
.
B
I
N
A
R
Y
_
P
O
W
E
R
Implements TOS = TOS1 ** TOS.
B
I
N
A
R
Y
_
M
U
L
T
I
P
L
Y
Implements TOS = TOS1 * TOS.
Removes one block from the block stack. Per frame, there is a stack of blocks,
denoting nested loops, try statements, and such.
Removes one block from the block stack. The popped block must be an exception
handler block, as implicitly created when entering an except handler. In addition to
popping extraneous values from the frame stack, the last three popped values are
used to restore the exception state.
Terminates a finally clause. The interpreter recalls whether the exception has to
be re-raised, or whether the function returns, and continues with the outer-next
block.
Cleans up the stack when a with statement block exits. TOS is the context
manager’s __exit__() bound method. Below TOS are 1–3 values indicating
how/why the finally clause was entered:
SECOND = None
(SECOND, THIRD) = (WHY_{RETURN,CONTINUE}), retval
SECOND = WHY_*; no retval below it
(SECOND, THIRD, FOURTH) = exc_info()
If the stack represents an exception, and the function call returns a ‘true’ value,
this information is “zapped” and replaced with a single WHY_SILENCED to
prevent END_FINALLY from re-raising the exception. (But non-local gotos will still
be resumed.)
Implements name = TOS. namei is the index of name in the attribute co_names of
the code object. The compiler tries to use STORE_FAST or STORE_GLOBAL if
possible.
Implements del name, where namei is the index into co_names attribute of the code
object.
Unpacks TOS into count individual values, which are put onto the stack right-to-
left.
The low byte of counts is the number of values before the list value, the high byte
of counts the number of values after it. The resulting values are put onto the stack
right-to-left.
Implements TOS.name = TOS1, where namei is the index of name in co_names.
Creates a tuple consuming count items from the stack, and pushes the resulting
tuple onto the stack.
Pushes a new dictionary object onto the stack. The dictionary is pre-sized to
hold count entries.
Imports the module co_names[namei]. TOS and TOS1 are popped and provide
the fromlist and level arguments of __import__(). The module object is pushed onto
the stack. The current namespace is not affected: for a proper import statement, a
subsequent STORE_FAST instruction modifies the namespace.
Loads the attribute co_names[namei] from the module found in TOS. The resulting
object is pushed onto the stack, to be subsequently stored by
a STORE_FAST instruction.
If TOS is true, sets the bytecode counter to target and leaves TOS on the stack.
Otherwise (TOS is false), TOS is popped.
If TOS is false, sets the bytecode counter to target and leaves TOS on the stack.
Otherwise (TOS is true), TOS is popped.
TOS is an iterator. Call its __next__() method. If this yields a new value, push it on
the stack (leaving the iterator below it). If the iterator indicates it is exhausted TOS
is popped, and the byte code counter is incremented by delta.
Pushes a block for a loop onto the block stack. The block spans from the current
instruction with a size of delta bytes.
Pushes a try block from a try-except clause onto the block stack. delta points to
the first except block.
Pushes a try block from a try-except clause onto the block stack. delta points to
the finally block.
Store a key and value pair in a dictionary. Pops the key and value while leaving
the dictionary on the stack.
Pushes a reference to the cell contained in slot i of the cell and free variable
storage. The name of the variable is co_cellvars[i] if i is less than the length
of co_cellvars. Otherwise it is co_freevars[i - len(co_cellvars)].
Loads the cell contained in slot i of the cell and free variable storage. Pushes a
reference to the object the cell contains on the stack.
Much like LOAD_DEREF but first checks the locals dictionary before consulting the
cell. This is used for loading free variables in class bodies.
Stores TOS into the cell contained in slot i of the cell and free variable storage.
Empties the cell contained in slot i of the cell and free variable storage. Used by
the del statement.
Calls a function. The low byte of argc indicates the number of positional
parameters, the high byte the number of keyword parameters. On the stack, the
opcode finds the keyword parameters first. For each keyword argument, the value
is on top of the key. Below the keyword parameters, the positional parameters are
on the stack, with the right-most parameter on top. Below the parameters, the
function object to call is on the stack. Pops all function arguments, and the function
itself off the stack, and pushes the return value.
Pushes a new function object on the stack. From bottom to top, the consumed
stack must consist of
Creates a new function object, sets its __closure__ slot, and pushes it on the
stack. TOS is the qualified name of the function, TOS1 is the code associated with
the function, and TOS2 is the tuple containing cells for the closure’s free
variables. argc is interpreted as in MAKE_FUNCTION; the annotations and
defaults are also in the same order below TOS2.
Prefixes any opcode which has an argument too big to fit into the default two
bytes. ext holds two additional bytes which, taken together with the subsequent
opcode’s argument, comprise a four-byte argument, ext being the two most-
significant bytes.
This is not really an opcode. It identifies the dividing line between opcodes which
don’t take arguments < HAVE_ARGUMENT and those which
do >= HAVE_ARGUMENT.
Sequence of bytecodes that access a free variable (note that ‘free’ in this context
refers to names in the current scope that are referenced by inner scopes or names
in outer scopes that are referenced from this scope. It does not include references
to global or builtin scopes).
When invoked from the command line, python -m pickletools will disassemble the
contents of one or more pickle files. Note that if you want to see the Python object stored
in the pickle rather than the details of pickle format, you may want to use -
m pickle instead. However, when the pickle file that you want to examine comes from an
untrusted source, -m pickletools is a safer option because it does not execute pickle
bytecode.
-o, --output=<file>
Name of a file where the output should be written.
-l, --indentlevel=<num>
The number of blanks by which to indent a new MARK level.
-m, --memo
When multiple objects are disassembled, preserve memo between disassemblies.
-p, --preamble=<preamble>
When more than one pickle file are specified, print given preamble before each
disassembly.
Outputs a symbolic disassembly of the pickle to the file-like object out, defaulting
to sys.stdout. pickle can be a string or a file-like object. memo can be a Python dictionary
that will be used as the pickle’s memo; it can be used to perform disassemblies across
multiple pickles created by the same pickler. Successive levels, indicated
by MARK opcodes in the stream, are indented by indentlevel spaces. If a nonzero value is
given to annotate, each opcode in the output is annotated with a short description. The
value of annotate is used as a hint for the column where annotation should start.
pickletools.genops(pickle)
Provides an iterator over all of the opcodes in a pickle, returning a sequence
of (opcode, arg, pos) triples. opcode is an instance of an OpcodeInfo class; arg is
the decoded value, as a Python object, of the opcode’s argument; pos is the
position at which this opcode is located. pickle can be a string or a file-like object.
pickletools.optimize(picklestring)
Returns a new equivalent pickle string after eliminating unused PUT opcodes. The
optimized pickle is shorter, takes less transmission time, requires less storage
space, and unpickles more efficiently.