mirror of
https://github.com/diegosouzapw/OmniRoute.git
synced 2026-08-01 12:52:11 +03:00
* chore(release): open v3.8.22 development cycle * refactor(dashboard): extract ProviderDetailPageClient — #3501 Phase 0 (#3633) #3501 Phase 0: extract ProviderDetailPageClient + smoke test. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * refactor(dashboard): extract auth-import modals — #3501 Phase 1a (#3634) #3501 Phase 1a: extract 3 auth-import modal clusters. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * fix(db): reclassify localDb unexported modules as intentionally-internal (#3499) (#3635) Closes #3499 — reclassify localDb unexported modules as intentionally-internal (audit + honest gate framing). * refactor(db): move call_logs aggregations into callLogStats db module (#3500) (#3636) #3500 slice 1: call_logs aggregations → src/lib/db/callLogStats.ts (Rule #5). Byte-identical queries; TDD 6/6. * refactor(dashboard): extract EditCompatibleNodeModal — #3501 Phase 1b (#3638) #3501 Phase 1b: extract EditCompatibleNodeModal (cycle-safe via leaf constants module). Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * refactor(db): move community_servers SQL into gamification db module (#3500 slice 3) (#3639) #3500 slice 3: community_servers SQL → gamification db module. * refactor(db): move usage_history SQL into usageAnalytics module (#3500 slice 2) (#3644) #3500 slice 2: usage_history/daily_usage_summary SQL → usageAnalytics db module. * refactor(db): move skills UPDATE + db-backups SQL into db modules (#3500 slice 5) (#3647) #3500 slice 5: skills UPDATE (allowlist) + db-backups SQL → db modules. * refactor(db): move usage_logs/semantic_cache/proxy_logs SQL into db modules (#3500 slice 4) (#3648) #3500 slice 4: usage_logs/semantic_cache/proxy_logs SQL → db modules. All internal routes done (2 external by-design remain). * chore(db-gate): reclassify external-DB reads, fully close #3500 (#3649) Closes #3500: reclassify external-DB reads; all internal raw-SQL migrated to db/ modules. * refactor(dashboard): extract pure helpers to providerPageHelpers — #3501 Phase 2 (#3653) #3501 Phase 2: extract pure helpers to providerPageHelpers (leaf, cycle-safe). Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * refactor(dashboard): extract remaining shared helpers to providerPageHelpers — #3501 Phase 2b (#3658) #3501 Phase 2b: extract remaining shared helpers to providerPageHelpers (leaf, cycle-safe). Heavy modals unblocked. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * fix(reasoning): replay reasoning_content on plain DeepSeek turns (#1682) (#3632) Integrated into release/v3.8.22 * fix(kiro): route enterprise IAM Identity Center accounts to their regional endpoint (#3631) Integrated into release/v3.8.22 * refactor: small code cleanup (#3523) Integrated into release/v3.8.22 * fix(combo): skip same-provider targets on 408/500/502/503/504/524 errors (#3637) Integrated into release/v3.8.22 — circuit-breaker guard added in review (#1731v2) * feat(providers): add MiMoCode free-tier provider with bootstrap JWT auth (#3659) Integrated into release/v3.8.22 — page.tsx conflict resolved + NoAuthAccountCard re-applied to ProviderDetailPageClient in review. MiMoCode endpoint validated live. * Log Responses WebSocket calls in history (#3616) Integrated into release/v3.8.22 — Codex Responses WebSocket call history logging. * Add Claude Code routing preference for unprefixed Claude models (#3540) Integrated into release/v3.8.22 — page.tsx conflict resolved (re-applied toggle to ProviderDetailPageClient) + disable-test updated for catalog drift in review. * docs(changelog): credit #3632/#3631/#3637/#3659/#3540/#3616/#3523 (v3.8.22 targeted review round) * fix(mimocode): add required authHeader:"none" to registry entry (#3659 follow-up) The mimocode RegistryEntry omitted the required authHeader field, which broke typecheck:core (TS2741). Match the no-auth convention (authType:"none" + authHeader:"none") used by veoaifree-web and other free providers. Follow-up to #3659 (@pizzav-xyz). * fix(responses): detect stream readiness for tool-call-only and object-less chunks (#3612) (#3661) Closes #3612 * fix(mitm): remove duplicated 'Command failed:' error prefix (#3641) (#3662) Closes #3641 * fix(cli): honor HERMES_HOME for Hermes Agent config path (#3628) (#3663) Closes #3628 * fix(api): fetch live OpenCode model catalog for no-auth model picker (#3611) (#3664) Closes #3611 * fix(api): flag provider topology error state by current status, not stale history (#3619) (#3666) Closes #3619 * fix(electron): launch peer-stamping server-ws.mjs entrypoint to avoid 403 LOCAL_ONLY (#3386) (#3665) Closes #3386 * fix(dashboard): restore home topology live in-flight pulse (#3507) (#3667) Closes #3507 * fix(oauth): name Kiro/AWS auto-imported accounts and dedupe by profileArn (#3615) (#3671) Closes #3615 * fix(resilience): clear stale transient connection cooldowns on startup (#3625) (#3672) Closes #3625 * fix(i18n): use logical CSS direction utilities for sidebar and key overlays (RTL #3541) (#3670) Closes #3541 * fix(dashboard): honor auto-hide and switch to visible filter on passthrough Test-all (#3610) (#3669) Closes #3610 * refactor(dashboard): extract AddApiKeyModal + EditConnectionModal — #3501 Phase 1c (#3674) #3501 Phase 1c: extract AddApiKeyModal, EditConnectionModal, WebSessionCredentialGuide into components/; god-component 10,166->8,092 LOC. Reconciles the v3.8.22 file-size drift for this file. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * docs(changelog): reconcile v3.8.22 — credit #3621/#3622 + MiMoCode follow-up roll-up * refactor(dashboard): extract ConnectionRow + ModelCompatPopover + SiliconFlowEndpointModal — #3501 Phase 1d (#3676) #3501 Phase 1d: god-component 8,092->6,838 LOC. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * feat(obsidian): add WebDAV config route + encrypt creds at rest (#3485 part 1) (#3677) Part 1 of #3485. Adds /api/settings/obsidian/webdav (GET/POST/DELETE) wiring the ready obsidianSync lib, encrypts webdav password + obsidian token at rest, removes the duplicate UI block, drops the KNOWN_MISSING entry. WebDAV file server is part 2. * feat(obsidian): add /api/v1/webdav file server for Obsidian vault sync (#3485 part 2) (#3678) Part 2 of #3485. WebDAV server (PROPFIND/GET/PUT/DELETE/MKCOL/MOVE/OPTIONS) handled in the custom server layer (standalone-server-ws.mjs) since the App Router cannot export WebDAV methods. Basic-Auth (constant-time), path-traversal hardened, password decrypt ported from encryption.ts (parity-tested), DATA_DIR resolution parity-tested against dataPaths.ts. End-to-end Obsidian-over-Tailscale validation is a live VPS step (Rule #18). * fix(combo): stop premature context compaction — real auto-combo windows + per-target compression limit (#3680) Integrated into release/v3.8.22 * feat(dashboard): deactivate/activate accounts from the quota overview (#3675) Integrated into release/v3.8.22 * fix(dashboard): close review gaps in bulk provider connection actions (#3271 follow-up) (#3673) Integrated into release/v3.8.22 — page.tsx conflict (god-component split #3501) resolved by re-applying the bulk-action deltas to ProviderDetailPageClient.tsx * refactor(dashboard): extract useModelCompatState hook + model sections — #3501 Phase 1e (#3683) #3501 Phase 1e: extract useModelCompatState hook (unblocks the model sections) + ModelRow/PassthroughModelsSection/PassthroughModelRow/CustomModelsSection/CompatibleModelsSection. god-component 6,838->4,921 LOC. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * refactor(dashboard): extract useProviderConnections/Settings/Models hooks — #3501 Phase 1f (#3684) #3501 Phase 1f: god-component 4,948->4,062 LOC. Connection state+handlers, settings, and model metadata moved into hooks/. Co-authored-by: oyi77 <oyi77@users.noreply.github.com> * chore(release): v3.8.22 CHANGELOG + env-doc sync - Set release date in CHANGELOG [3.8.22] to 2026-06-11 - Add HERMES_HOME to .env.example (from #3628/#3663) - Add HERMES_HOME + OMNIROUTE_PREFER_CLAUDE_CODE_FOR_UNPREFIXED_CLAUDE_MODELS to ENVIRONMENT.md (#3628/#3540) * docs(changelog): credit #3673 + #3675 — leninejunior bulk-actions + quota-toggle --------- Co-authored-by: oyi77 <oyi77@users.noreply.github.com> Co-authored-by: Abhishek Divekar <adivekar@utexas.edu> Co-authored-by: NOXX - Commiter <artur1992123@mail.ru> Co-authored-by: Nicolas Lorin <androw95220@gmail.com> Co-authored-by: Hernan Javier Ardila Sanchez <hjasgr@gmail.com> Co-authored-by: PizzaV <103120356+pizzav-xyz@users.noreply.github.com> Co-authored-by: kkkayye <98376609+kkkayye@users.noreply.github.com> Co-authored-by: Witroch4 <witalo_rocha@hotmail.com> Co-authored-by: Lenine Júnior <lenine@engrene.com.br>
214 lines
8.3 KiB
TypeScript
214 lines
8.3 KiB
TypeScript
/**
|
|
* Regression guard for INTENTIONALLY_INTERNAL classification (#3499).
|
|
*
|
|
* Every module in INTENTIONALLY_INTERNAL must be genuinely consumed via a
|
|
* direct/dynamic import somewhere in src/, open-sse/, bin/, or within
|
|
* src/lib/db/ itself (for db-internal coordination modules like stateReset,
|
|
* healthCheck, migrationRunner), OR documented as type-only / DEAD?.
|
|
*
|
|
* Purpose: if a future cleanup removes the last consumer of a module that is
|
|
* still in INTENTIONALLY_INTERNAL, this test turns red and forces a conscious
|
|
* reclassification decision — the DEAD? category must be explicitly expanded,
|
|
* not silently accumulated.
|
|
*
|
|
* Hard Rule #18 compliance: this test was written BEFORE the fix was applied,
|
|
* confirmed to fail on the old framing, and now passes on the audited truth.
|
|
*/
|
|
import { test } from "node:test";
|
|
import assert from "node:assert";
|
|
import fs from "node:fs";
|
|
import path from "node:path";
|
|
import { fileURLToPath } from "node:url";
|
|
import { INTENTIONALLY_INTERNAL } from "../../scripts/check/check-db-rules.mjs";
|
|
|
|
const REPO_ROOT = path.resolve(fileURLToPath(import.meta.url), "../../..");
|
|
|
|
// ── Helpers ────────────────────────────────────────────────────────────────
|
|
|
|
/**
|
|
* Walk a directory tree, calling cb(absolutePath) for every file.
|
|
*/
|
|
function walkSync(dir: string, cb: (p: string) => void): void {
|
|
if (!fs.existsSync(dir)) return;
|
|
for (const entry of fs.readdirSync(dir, { withFileTypes: true })) {
|
|
const full = path.join(dir, entry.name);
|
|
if (entry.isDirectory()) {
|
|
// Skip well-known non-source dirs to keep the walk fast
|
|
if (["node_modules", ".git", ".next", "dist", "out"].includes(entry.name)) continue;
|
|
walkSync(full, cb);
|
|
} else {
|
|
cb(full);
|
|
}
|
|
}
|
|
}
|
|
|
|
/**
|
|
* Returns true if any file in the search roots imports db/<mod> (static or dynamic).
|
|
* Patterns matched:
|
|
* from "@/lib/db/<mod>"
|
|
* from "../db/<mod>" (any relative path ending /db/<mod>)
|
|
* import("@/lib/db/<mod>")
|
|
* require(".../db/<mod>")
|
|
* import(`${...}/db/<mod>.ts`) — dynamic template (bin/cli/runtime.mjs pattern)
|
|
*/
|
|
function hasImporter(mod: string, roots: string[]): boolean {
|
|
// Escape special regex chars in mod name (underscore-prefixed names like _rowTypes)
|
|
const escaped = mod.replace(/[.*+?^${}()|[\]\\]/g, "\\$&");
|
|
const patterns = [
|
|
// static: from "…/db/<mod>"
|
|
new RegExp(`from\\s+['""][^'"]+/db/${escaped}['"]`),
|
|
// dynamic: import("…/db/<mod>") or require("…/db/<mod>")
|
|
new RegExp(`(?:import|require)\\s*\\(\\s*['""][^'"]+/db/${escaped}['"]`),
|
|
// dynamic template: import(`…/db/<mod>.ts`) — bin/cli/runtime.mjs uses template literals
|
|
new RegExp(`import\\s*\\(\`[^'"\`]+/db/${escaped}\\.ts\`\\)`),
|
|
// relative import within db/: from "./<mod>" or from "./<mod>"
|
|
new RegExp(`from\\s+['"]\\.\\.?/${escaped}['"]`),
|
|
];
|
|
// The canonical db module path — we must skip ONLY this exact file, not all files
|
|
// that happen to share the same basename (e.g. src/lib/usage/comboForecast.ts must
|
|
// NOT be skipped when searching for importers of src/lib/db/comboForecast.ts).
|
|
const dbModulePath = path.join(REPO_ROOT, "src", "lib", "db", `${mod}.ts`);
|
|
let found = false;
|
|
for (const root of roots) {
|
|
if (found) break;
|
|
walkSync(root, (filePath) => {
|
|
if (found) return;
|
|
// Only scan TS/JS/MJS source files
|
|
if (!/\.(ts|tsx|mjs|js|cjs)$/.test(filePath)) return;
|
|
// Skip only the db module itself (not same-name files in other dirs)
|
|
if (filePath === dbModulePath) return;
|
|
let src: string;
|
|
try {
|
|
src = fs.readFileSync(filePath, "utf8");
|
|
} catch {
|
|
return;
|
|
}
|
|
if (patterns.some((rx) => rx.test(src))) found = true;
|
|
});
|
|
}
|
|
return found;
|
|
}
|
|
|
|
// ── Audit roots ────────────────────────────────────────────────────────────
|
|
|
|
// Modules marked "type-only": exports only TypeScript types; no runtime import
|
|
// needed — the ts compiler erases them. These are genuinely correct as-is.
|
|
const TYPE_ONLY = new Set(["_rowTypes"]);
|
|
|
|
// Modules explicitly documented as DEAD? in the classification comments.
|
|
// They remain in INTENTIONALLY_INTERNAL for schema-reservation reasons.
|
|
// Flag them but do NOT fail — a separate decision is needed to remove them.
|
|
const DOCUMENTED_DEAD = new Set([
|
|
"compressionScheduler", // DEAD?: 0 production importers as of 2026-06-11
|
|
"discovery", // DEAD?: 0 importers; lib/discovery/index.ts is independent
|
|
"pluginMetrics", // DEAD? (production): write path not yet wired (self-documented)
|
|
"prompts", // DEAD? (production): zero production callers; integration test only verifies interface shape
|
|
]);
|
|
|
|
const SEARCH_ROOTS = [
|
|
path.join(REPO_ROOT, "src"),
|
|
path.join(REPO_ROOT, "open-sse"),
|
|
path.join(REPO_ROOT, "bin"),
|
|
path.join(REPO_ROOT, "tests"),
|
|
];
|
|
|
|
// ── Tests ──────────────────────────────────────────────────────────────────
|
|
|
|
test("INTENTIONALLY_INTERNAL is exported from check-db-rules.mjs", () => {
|
|
assert.ok(
|
|
INTENTIONALLY_INTERNAL instanceof Set,
|
|
"INTENTIONALLY_INTERNAL must be a Set exported from the gate script"
|
|
);
|
|
assert.ok(INTENTIONALLY_INTERNAL.size > 0, "INTENTIONALLY_INTERNAL must not be empty");
|
|
});
|
|
|
|
test("INTENTIONALLY_INTERNAL contains the expected 25 audited modules", () => {
|
|
const expected = [
|
|
"_rowTypes",
|
|
"cleanup",
|
|
"cliToolState",
|
|
"comboForecast",
|
|
"commandCodeAuth",
|
|
"compression",
|
|
"compressionScheduler",
|
|
"detailedLogs",
|
|
"discovery",
|
|
"domainState",
|
|
"encryption",
|
|
"healthCheck",
|
|
"jsonMigration",
|
|
"migrationRunner",
|
|
"notion",
|
|
"obsidian",
|
|
"pluginMetrics",
|
|
"prompts",
|
|
"providerStats",
|
|
"recovery",
|
|
"secrets",
|
|
"serviceModels",
|
|
"stateReset",
|
|
"stats",
|
|
"tierConfig",
|
|
];
|
|
for (const mod of expected) {
|
|
assert.ok(
|
|
INTENTIONALLY_INTERNAL.has(mod),
|
|
`Expected ${mod} to be in INTENTIONALLY_INTERNAL after audit`
|
|
);
|
|
}
|
|
assert.equal(
|
|
INTENTIONALLY_INTERNAL.size,
|
|
expected.length,
|
|
`INTENTIONALLY_INTERNAL has ${INTENTIONALLY_INTERNAL.size} entries; expected ${expected.length}`
|
|
);
|
|
});
|
|
|
|
test("every non-type-only, non-dead module in INTENTIONALLY_INTERNAL has ≥1 real importer", () => {
|
|
const failures: string[] = [];
|
|
for (const mod of INTENTIONALLY_INTERNAL) {
|
|
if (TYPE_ONLY.has(mod)) continue; // type-only: no runtime import expected
|
|
if (DOCUMENTED_DEAD.has(mod)) continue; // dead modules exempted with explicit flag
|
|
if (!hasImporter(mod, SEARCH_ROOTS)) {
|
|
failures.push(mod);
|
|
}
|
|
}
|
|
assert.deepEqual(
|
|
failures,
|
|
[],
|
|
`These INTENTIONALLY_INTERNAL modules have ZERO importers — either they became dead ` +
|
|
`(add to DOCUMENTED_DEAD with a DEAD? comment) or they were misclassified:\n ${failures.join(", ")}`
|
|
);
|
|
});
|
|
|
|
test("type-only module _rowTypes is imported within src/lib/db/ by its consumers", () => {
|
|
// _rowTypes exports only TypeScript interfaces, so the import is always `import type`.
|
|
// It should be consumed within db/ itself (AgentBridge, Inspector CRUD modules).
|
|
const dbDir = path.join(REPO_ROOT, "src/lib/db");
|
|
let found = false;
|
|
if (fs.existsSync(dbDir)) {
|
|
for (const entry of fs.readdirSync(dbDir, { withFileTypes: true })) {
|
|
if (!entry.isFile() || !/\.ts$/.test(entry.name)) continue;
|
|
if (entry.name === "_rowTypes.ts") continue;
|
|
const src = fs.readFileSync(path.join(dbDir, entry.name), "utf8");
|
|
if (/from\s+['"]\.\/_rowTypes['"]/.test(src)) {
|
|
found = true;
|
|
break;
|
|
}
|
|
}
|
|
}
|
|
assert.ok(
|
|
found,
|
|
"_rowTypes must be imported (as type) by at least one sibling module in src/lib/db/"
|
|
);
|
|
});
|
|
|
|
test("DOCUMENTED_DEAD modules are still in INTENTIONALLY_INTERNAL (dead list must stay honest)", () => {
|
|
for (const mod of DOCUMENTED_DEAD) {
|
|
assert.ok(
|
|
INTENTIONALLY_INTERNAL.has(mod),
|
|
`DOCUMENTED_DEAD module "${mod}" is no longer in INTENTIONALLY_INTERNAL — ` +
|
|
`remove it from DOCUMENTED_DEAD in this test if it was intentionally removed from the gate`
|
|
);
|
|
}
|
|
});
|