fix: measure repository-wide risk coverage
This commit is contained in:
@@ -65,14 +65,14 @@ describe("runtime adapter composition", () => {
|
||||
});
|
||||
|
||||
const intent = factory.create({
|
||||
operationId: "CREATE_REFERENCE_RESOURCE",
|
||||
operationId: "CREATE_ENTITY",
|
||||
canonicalInputIdentity: "opaque-canonical-input",
|
||||
requiresIdempotencyKey: true,
|
||||
});
|
||||
|
||||
expect(intent).toEqual({
|
||||
intentId: "intent-uuid",
|
||||
operationId: "CREATE_REFERENCE_RESOURCE",
|
||||
operationId: "CREATE_ENTITY",
|
||||
canonicalInputIdentity: "opaque-canonical-input",
|
||||
idempotencyKey: "idempotency-uuid",
|
||||
createdAtMonotonicMs: 12.5,
|
||||
@@ -96,7 +96,7 @@ describe("runtime adapter composition", () => {
|
||||
).toThrow(TypeError);
|
||||
expect(() =>
|
||||
factory.create({
|
||||
operationId: "CREATE_REFERENCE_RESOURCE",
|
||||
operationId: "CREATE_ENTITY",
|
||||
canonicalInputIdentity: "x".repeat(16_385),
|
||||
requiresIdempotencyKey: false,
|
||||
}),
|
||||
@@ -106,7 +106,7 @@ describe("runtime adapter composition", () => {
|
||||
randomUUID: () => "opaque-runtime-identifier",
|
||||
monotonicNow: () => -1,
|
||||
}).create({
|
||||
operationId: "CREATE_REFERENCE_RESOURCE",
|
||||
operationId: "CREATE_ENTITY",
|
||||
canonicalInputIdentity: "valid-identity",
|
||||
requiresIdempotencyKey: false,
|
||||
}),
|
||||
@@ -165,60 +165,6 @@ describe("runtime adapter composition", () => {
|
||||
adapters.infrastructure.dispose();
|
||||
});
|
||||
|
||||
it("passes the supplied command intent unchanged and keeps private identity out of URLs and diagnostics", async () => {
|
||||
const requests: Array<Readonly<{ url: string; headers: Headers }>> = [];
|
||||
const fetcher = vi.fn(async (input: RequestInfo | URL, init?: RequestInit) => {
|
||||
requests.push({
|
||||
url: String(input),
|
||||
headers: new Headers(init?.headers),
|
||||
});
|
||||
return Response.json(
|
||||
{ id: "resource-1", name: "Created resource" },
|
||||
{ status: 201 },
|
||||
);
|
||||
});
|
||||
const adapters = await createRuntimeAdapters({
|
||||
runtime,
|
||||
release,
|
||||
host: {},
|
||||
fetcher,
|
||||
});
|
||||
await adapters.outputPorts.session.beginSignIn();
|
||||
await vi.waitFor(() =>
|
||||
expect(adapters.infrastructure.serverStateScope.getPhase()).toBe("READY"),
|
||||
);
|
||||
const intent = Object.freeze({
|
||||
intentId: "private-intent-id",
|
||||
operationId: "CREATE_REFERENCE_RESOURCE",
|
||||
canonicalInputIdentity: "private-canonical-input",
|
||||
idempotencyKey: "private-idempotency-key",
|
||||
createdAtMonotonicMs: 42,
|
||||
});
|
||||
|
||||
await expect(
|
||||
adapters.featureInputs["reference-feature"].createResource(
|
||||
{ name: "Created resource" },
|
||||
{ intent },
|
||||
),
|
||||
).resolves.toMatchObject({ ok: true });
|
||||
|
||||
expect(requests).toHaveLength(1);
|
||||
expect(requests[0]?.headers.get("Idempotency-Key")).toBe(
|
||||
"private-idempotency-key",
|
||||
);
|
||||
expect(requests[0]?.url).toBe(
|
||||
"http://localhost:8080/api/reference-resources",
|
||||
);
|
||||
const safeEvidence = JSON.stringify({
|
||||
requests: requests.map((request) => request.url),
|
||||
diagnostics: adapters.outputPorts.diagnostics.entries(),
|
||||
});
|
||||
expect(safeEvidence).not.toContain("private-intent-id");
|
||||
expect(safeEvidence).not.toContain("private-canonical-input");
|
||||
expect(safeEvidence).not.toContain("private-idempotency-key");
|
||||
adapters.infrastructure.dispose();
|
||||
});
|
||||
|
||||
it("does not fail boot when Web Storage capability getters throw", async () => {
|
||||
const host: Record<string, unknown> = {};
|
||||
Object.defineProperties(host, {
|
||||
|
||||
Reference in New Issue
Block a user