Files
OmniRoute/tests/unit/gemini-web.test.ts
Diego Rodrigues de Sa e Souza bf8b56b29f Release v3.8.20 (#3547)
* chore(release): open v3.8.20 development cycle

* fix(images): prefer bare combos over image aliases (#3527)

Integrated into release/v3.8.20

* fix(translator): map Codex local_shell tool (#3534)

Integrated into release/v3.8.20

* fix(usage): make opencode-go quota fetcher fail-open instead of throwing 500 (#3522)

Integrated into release/v3.8.20

* Fix Runtime page breaker state rendering (#3533)

Integrated into release/v3.8.20

* Expose provider breaker degradation threshold setting (#3535)

Integrated into release/v3.8.20

* fix(executor): strip provider prefix from versioned built-in tool model field (#3532)

Integrated into release/v3.8.20

* feat(providers): add Claude Fable 5 support (#3524)

Integrated into release/v3.8.20

* feat(resilience): add global provider cooldown tracking to prevent combo re-walking (#3556)

Integrated into release/v3.8.20 (default OFF, opt-in)

* fix(translator): scope thoughtSignature bypass to Antigravity/CLI only (#3560)

Integrated into release/v3.8.20. Co-authored-by: Six7Day <six7day@gmail.com>

* fix(routing): normalize thinking:disabled for combo-substituted models that reject it (#3554) (#3563)

Integrated into release/v3.8.20

* fix(usage): accept 0/empty budget limits so the dashboard can save and clear (#3537) (#3564)

Integrated into release/v3.8.20

* docs(changelog): credit @Six7Day for #3560 thoughtSignature fix (#3414)

The #3560 squash co-author trailer landed inline (unparsed by GitHub), so add
an explicit CHANGELOG credit ensuring @Six7Day (original #3414) and @oyi77 are
on the public record for the Gemini thoughtSignature fix.

* fix(gamification): dedup badge unlock via user_badges so events don't re-fire every request (#3472) (#3565)

Integrated into release/v3.8.20

* fix(routing): pass through 'auto' keyword on codex /v1/responses instead of rewriting to codex/auto (#3509) (#3566)

Integrated into release/v3.8.20

* fix(cli-tools): normalize apiKey null in guide-settings schema so cloud-mode config saves (#3552) (#3567)

Integrated into release/v3.8.20

* fix(catalog): reclassify PublicAI from keyless to one-time-initial (requires API key) (#3558) (#3568)

Integrated into release/v3.8.20

* fix(gemini-web): surface missing Playwright browser as actionable 503 + cooldown hint, not a retryable 500 loop (#3516) (#3570)

Integrated into release/v3.8.20

* fix(security): sanitize raw err.message in web executors + embeddings/search response bodies (Rule #12) (#3494, #3495) (#3573)

Integrated into release/v3.8.20

* fix(dashboard): point CustomHostsManager + FeatureFlagsGrid at real routes (#3486, #3487) (#3574)

Integrated into release/v3.8.20

* chore(providers): remove dead krutrim entry (#3483) + docs(api): fix agent-bridge per-agent state route (#3489) (#3575)

Integrated into release/v3.8.20

* docs(api): correct API_REFERENCE.md paths for skills/plugins/admin/cache/acp/system-info (#3497) (#3577)

Integrated into release/v3.8.20

* fix(proxy): drive SOCKS5 UI option from runtime ENABLE_SOCKS5_PROXY, not build-time NEXT_PUBLIC (#3508) (#3579)

Integrated into release/v3.8.20

* fix(playground): filter playground models by node prefix so custom-endpoint models appear (#3505) (#3581)

Integrated into release/v3.8.20

* fix(usage): show an informative message instead of a blank Kiro quota card when no usage breakdown (#3506) (#3582)

Integrated into release/v3.8.20

* docs(changelog): add the #3506 Kiro quota entry (missed in #3582 due to a stale-base CHANGELOG anchor) (#3583)

Integrated into release/v3.8.20

* fix(auto-update): use stable PROJECT_ROOT walker, not frozen process.cwd() (#3561)

Integrated into release/v3.8.20. Auto-update PROJECT_ROOT now uses a stable __dirname-anchored upward walker instead of the no-op process.cwd() resolver.

* fix: address PR #3518 review comments (lifecycle hooks, regex, indentation, route params) (#3562)

Integrated into release/v3.8.20. Addresses #3518 review: regex literals, logs/[id] route params (Next 16), indentation, and wires plugin lifecycle hooks (onInstall/onActivate/onDeactivate/onUninstall) in the loader so manager.ts can register them. Adds Rule #18 regression test.

* docs(changelog): credit @ViFigueiredo (#3423) for PROJECT_ROOT + log #3561/#3562 (v3.8.20)

* fix: openai to gemini incorrectly translates historical tool calls into text (#3569)

Integrated into release/v3.8.20. Standard Gemini direct path now maps historical tool calls to native functionCall/functionResponse parts (signaturelessToolCallMode: native) instead of inert text — validated against the real Gemini API (gemini-2.5-flash returns 200 for signatureless native functionCall, even with tools+thinking; Hard Rule #18). Eliminates the text-serialization leak. Antigravity/CLI sentinel path (#3560) untouched.

* docs(changelog)+test: reconcile standard-Gemini native mode (#3569) — update round-2 rationale comment + log VPS validation

* docs(changelog): reconcile v3.8.20 — add 9 missing bullets + move [Unreleased] to versioned section

* docs(changelog): complete v3.8.20 reconciliation — 27 bullets, 11 contributors

---------

Co-authored-by: Alexander Averyanov <alex@averyan.ru>
Co-authored-by: Hakan Kurşun <bykamaka@gmail.com>
Co-authored-by: Wilson <pedbookmed@gmail.com>
Co-authored-by: Randi <55005611+rdself@users.noreply.github.com>
Co-authored-by: Giorgos Giakoumettis <giorgos@yiakoumettis.gr>
Co-authored-by: PizzaV <103120356+pizzav-xyz@users.noreply.github.com>
Co-authored-by: Paijo <14921983+oyi77@users.noreply.github.com>
Co-authored-by: Markus Hartung <mail@hartmark.se>
2026-06-10 13:49:08 -03:00

161 lines
7.4 KiB
TypeScript

import test from "node:test";
import assert from "node:assert/strict";
const { GeminiWebExecutor } = await import("../../open-sse/executors/gemini-web.ts");
const { getExecutor, hasSpecializedExecutor } = await import("../../open-sse/executors/index.ts");
// ─── Registration ───────────────────────────────────────────────────────────
test("GeminiWebExecutor is registered in executor index", () => {
assert.ok(hasSpecializedExecutor("gemini-web"));
const executor = getExecutor("gemini-web");
assert.ok(executor instanceof GeminiWebExecutor);
});
test("GeminiWebExecutor sets correct provider name", () => {
const executor = new GeminiWebExecutor();
assert.equal(executor.getProvider(), "gemini-web");
});
// ─── Input validation ───────────────────────────────────────────────────────
test("Returns 401 when no cookies provided", async () => {
const executor = new GeminiWebExecutor();
const result = await executor.execute({
model: "gemini-2.5-pro",
body: { messages: [{ role: "user", content: "hi" }], stream: false },
stream: false,
credentials: {},
signal: AbortSignal.timeout(10000),
log: null,
});
assert.equal(result.response.status, 401);
const json = (await result.response.json()) as any;
assert.ok(json.error.includes("Missing Gemini cookies"));
});
test("Returns 400 when no user message", async () => {
const executor = new GeminiWebExecutor();
const result = await executor.execute({
model: "gemini-2.5-pro",
body: { messages: [{ role: "system", content: "You are helpful" }], stream: false },
stream: false,
credentials: { apiKey: "test-cookie" },
signal: AbortSignal.timeout(10000),
log: null,
});
assert.equal(result.response.status, 400);
const json = (await result.response.json()) as any;
assert.ok(json.error.includes("No user message"));
});
// ─── Provider registration ──────────────────────────────────────────────────
test("Provider: gemini-web in WEB_COOKIE_PROVIDERS", async () => {
const { WEB_COOKIE_PROVIDERS } = await import("../../src/shared/constants/providers.ts");
assert.ok(WEB_COOKIE_PROVIDERS["gemini-web"], "gemini-web should be in WEB_COOKIE_PROVIDERS");
assert.equal(WEB_COOKIE_PROVIDERS["gemini-web"].id, "gemini-web");
assert.ok(WEB_COOKIE_PROVIDERS["gemini-web"].authHint);
});
test("Provider: gemini-web in providerRegistry", async () => {
const { REGISTRY } = await import("../../open-sse/config/providerRegistry.ts");
assert.ok(REGISTRY["gemini-web"], "gemini-web should be in providerRegistry");
assert.equal(REGISTRY["gemini-web"].executor, "gemini-web");
assert.ok(REGISTRY["gemini-web"].models.length > 0);
});
test("Provider: gemini-web has correct models", async () => {
const { REGISTRY } = await import("../../open-sse/config/providerRegistry.ts");
const models = REGISTRY["gemini-web"].models;
const modelIds = models.map((m: any) => m.id);
assert.ok(modelIds.includes("gemini-2.5-pro"));
assert.ok(modelIds.includes("gemini-2.5-flash"));
assert.ok(modelIds.includes("gemini-2.0-pro"));
assert.ok(modelIds.includes("gemini-2.0-flash"));
});
// ─── Regression: #2832 / #3516 — Playwright missing in Docker (runner-base) ──
//
// When the `runner-base` Docker image is used (no Playwright browsers installed),
// `import("playwright")` succeeds but `chromium.launch()` throws the well-known
// "Executable doesn't exist" error. The executor MUST surface this as a structured,
// sanitized response — never an unhandled rejection / silent stream abort.
//
// #3516 superseded the original 500: a missing browser is a host/config problem,
// not a transient upstream fault, so it now returns 503 with the
// `X-Omni-Fallback-Hint: connection_cooldown` header (skips the provider circuit
// breaker, short non-exponential cooldown) and an actionable message — instead of a
// retryable 500 that marked the account unavailable and looped.
//
// Hard rule #12: the body carries no raw err.message stack trace.
test("#2832/#3516: missing Playwright browser returns an actionable 503 with cooldown hint, not a retryable 500", async () => {
const playwrightError = new Error(
"browserType.launch: Executable doesn't exist at /home/node/.cache/ms-playwright/chromium_headless_shell-1161/chrome-linux/headless_shell\n" +
" at /app/node_modules/playwright-core/lib/server/browserType.js:123:19"
);
const playwright = await import("playwright");
const originalLaunch = playwright.chromium.launch;
playwright.chromium.launch = async () => {
throw playwrightError;
};
try {
const executor = new GeminiWebExecutor();
const result = await executor.execute({
model: "gemini-2.5-pro",
body: { messages: [{ role: "user", content: "hello" }], stream: false },
stream: false,
credentials: { apiKey: "fake-cookie=abc" },
signal: AbortSignal.timeout(5000),
log: null,
});
// #3516: missing browser → 503 + connection-cooldown hint (not a retryable 500 loop).
assert.equal(result.response.status, 503, "missing browser should return HTTP 503");
assert.equal(
result.response.headers.get("X-Omni-Fallback-Hint"),
"connection_cooldown",
"must signal connection cooldown so the provider breaker is skipped"
);
const json = (await result.response.json()) as any;
assert.ok(typeof json.error === "string", "error field must be a string");
assert.match(json.error, /playwright install|not installed/i, "message must be actionable");
// No raw stack trace / source path leaks into the body.
assert.ok(!json.error.includes("\n at "), "must not contain multi-line stack trace");
assert.ok(!json.error.includes("node_modules/playwright-core"), "must not contain node_modules source path");
} finally {
playwright.chromium.launch = originalLaunch;
}
});
test("#2832: GeminiWebExecutor catch block sanitizes Playwright launch errors (integration path)", async () => {
// This test verifies the actual catch block in GeminiWebExecutor.execute()
// handles the Playwright "Executable doesn't exist" error shape correctly.
// We use an AbortSignal that is already aborted so we bypass the Playwright
// import entirely and hit the pre-launch abort check — confirming the executor
// returns a structured Response rather than throwing.
const executor = new GeminiWebExecutor();
const controller = new AbortController();
controller.abort(new Error("Request aborted"));
const result = await executor.execute({
model: "gemini-2.5-pro",
body: { messages: [{ role: "user", content: "hello" }], stream: false },
stream: false,
credentials: { apiKey: "fake-cookie=abc" },
signal: controller.signal,
log: null,
});
// Aborted request should return a structured 500, not throw
assert.ok(result.response instanceof Response, "must return a Response object");
assert.equal(result.response.status, 500, "aborted request returns 500");
const json = (await result.response.json()) as any;
assert.ok(typeof json.error === "string", "error must be a string");
assert.ok(!json.error.includes("at /"), "no stack trace path in error response");
});