fix(harness): remediation difetti review — gate↔CLI, D15, D7/D6, D14, robustezza
Implementazione del piano di remediation progressiva sui difetti emersi dall'analisi dell'harness. Tutto verificato: 214 test Python (incl. L0 su Postgres reale), 14 test JS del gate, ruff pulito. Blocco 1 (CRITICA, integrazione gate↔CLI): - phase advance: gate usa --auto + exit 6; reviewer_confirm kind:phase fa advance esplicito che applica i prerequisiti (prima non avanzava per le fasi a conferma umana). - cte plan riceve i --name dal gate (param names); set-question con id posizionale; skill `tht search find`; nuovo comando `tht memory save-one` con dedup hash client-side in save_one_memory. Blocco 2 (D15, stato post-rollback): - campo `phase` su DecisionRecord + effective_decisions phase-aware per i subject "a nome" (cte_approved ecc.); _compute_promotions e finalize sulla vista effective; finalize confronta col piano CTE effettivo, non glob; `decision add --retracts` + comando `decision retract`. Blocco 3 (D7 read-only + D6 manifest): - assert_read_only su tutti e quattro i codepath (direct + REST); - manifest author/summary/updated_at/updated_by/schema_version popolati + helper touch_manifest sulle mutazioni. Blocco 4-5 (D14a/D14b): - decision_min_phase data-driven via `emits:` in workflow.yaml; - formula evidence: status auto, search_formulas, gruppo CLI `tht formula`, `search find --kind formula`, load_evidence_dir salta i .sql.md. Blocco 6 (robustezza): - taskdoc slice promoted_tables + bound enforced; report escaping/bound + rsplit note; filtro kind reader REST/direct; conteggio upserted robusto; guard REST run_query non-list; LSH disallineato -> LshIndexError. Blocco 7 (pulizia): - dead code gate e KIND_TO_TABLE morto rimossi; doc Postgres-only (README + connection.py). Blocco 0 (parziale): test di compatibilità firma gate↔CLI (tests/integration). Rinviati: fake-Pi runtime completo, artifact-gate da disco (#23), parità eligibility REST/direct (#28), unificazione reserved-labels (#30), memory_rejected da deselezione (#33). Co-Authored-By: Claude Opus 4.8 <noreply@anthropic.com>
This commit is contained in:
@@ -0,0 +1,37 @@
|
||||
"""D7: read-only enforcement lives in the execute layer, not only in CLI callers.
|
||||
|
||||
assert_read_only is the shared structural guard both codepaths (direct + REST) call,
|
||||
so reusing the execute API (e.g. from the backend) cannot bypass single-statement +
|
||||
SELECT-only. Pins that writes/multi-statement are rejected with ExecutionError.
|
||||
"""
|
||||
import pytest
|
||||
|
||||
from tht.execute import ExecutionError, assert_read_only
|
||||
|
||||
|
||||
@pytest.mark.parametrize(
|
||||
"sql",
|
||||
[
|
||||
"DELETE FROM pazienti",
|
||||
"UPDATE pazienti SET x = 1",
|
||||
"INSERT INTO pazienti VALUES (1)",
|
||||
"DROP TABLE pazienti",
|
||||
"SELECT 1; DROP TABLE pazienti", # multi-statement
|
||||
"TRUNCATE pazienti",
|
||||
],
|
||||
)
|
||||
def test_write_or_multistatement_rejected(sql):
|
||||
with pytest.raises(ExecutionError):
|
||||
assert_read_only(sql)
|
||||
|
||||
|
||||
@pytest.mark.parametrize(
|
||||
"sql",
|
||||
[
|
||||
"SELECT 1",
|
||||
"WITH x AS (SELECT 1) SELECT * FROM x",
|
||||
"SELECT a FROM t UNION SELECT b FROM u",
|
||||
],
|
||||
)
|
||||
def test_select_allowed(sql):
|
||||
assert_read_only(sql) # no raise
|
||||
Reference in New Issue
Block a user