Some checks failed
build-packages / resolve bundled mosh-client (push) Has been cancelled
build-packages / resolve bundled et-client (push) Has been cancelled
build-packages / build-macos (push) Has been cancelled
build-packages / build-windows (push) Has been cancelled
build-packages / build-linux-x64 (push) Has been cancelled
build-packages / build-linux-arm64 (push) Has been cancelled
build-packages / release (push) Has been cancelled
build-packages / update Nix release metadata (push) Has been cancelled
build-packages / bump homebrew tap (push) Has been cancelled
test / lint-and-test (push) Has been cancelled
AI automation / Route event (push) Has been cancelled
AI automation / Hand reopened issue to maintainers (push) Has been cancelled
AI automation / Clean source issue state (push) Has been cancelled
AI automation / Reconcile handoffs (push) Has been cancelled
AI automation / Classify issue (push) Has been cancelled
AI automation / Claude Code smoke (push) Has been cancelled
AI automation / Review issue follow-up (push) Has been cancelled
AI automation / Publish issue follow-up (push) Has been cancelled
AI automation / Implement with Claude Code (push) Has been cancelled
AI automation / Publish implement PR (push) Has been cancelled
AI automation / Continue queued issue comments (push) Has been cancelled
AI automation / Codex review loop (push) Has been cancelled
AI automation / Publish Codex fix (push) Has been cancelled
AI automation / Clear Codex dispatch marker (push) Has been cancelled
AI automation / Own PR re-request Codex (push) Has been cancelled
AI automation / External PR re-request Codex (push) Has been cancelled
AI automation / Poll Codex reaction / retry (push) Has been cancelled
build-et-binaries / build-linux-x64 (push) Has been cancelled
build-et-binaries / build-linux-arm64 (push) Has been cancelled
build-et-binaries / build-macos-universal (push) Has been cancelled
build-et-binaries / build-windows-x64 (push) Has been cancelled
build-et-binaries / release (push) Has been cancelled
101 lines
3.6 KiB
TypeScript
101 lines
3.6 KiB
TypeScript
import assert from 'node:assert/strict';
|
|
import test from 'node:test';
|
|
|
|
import { recordTerminalCommandExecution } from './terminalCommandExecution.ts';
|
|
|
|
function createFakeTerm(lineText: string) {
|
|
return {
|
|
buffer: {
|
|
active: {
|
|
cursorX: lineText.length,
|
|
cursorY: 0,
|
|
baseY: 0,
|
|
getLine(line: number) {
|
|
if (line !== 0) return undefined;
|
|
return {
|
|
isWrapped: false,
|
|
translateToString() { return lineText; },
|
|
};
|
|
},
|
|
},
|
|
},
|
|
};
|
|
}
|
|
|
|
test('sensitive challenge input never reaches command history or semantic callbacks', () => {
|
|
const submitted: string[] = [];
|
|
const executed: string[] = [];
|
|
const commandBufferRef = { current: '123456' };
|
|
const result = recordTerminalCommandExecution('123456', {
|
|
host: { id: 'host-1', label: 'Host' },
|
|
sessionId: 'session-1',
|
|
onCommandSubmitted: (command) => submitted.push(command),
|
|
onCommandExecuted: (command) => executed.push(command),
|
|
commandBufferRef,
|
|
}, createFakeTerm('OTP> 123456') as never, { sensitive: false });
|
|
|
|
assert.equal(result, null);
|
|
assert.equal(commandBufferRef.current, '');
|
|
assert.deepEqual(submitted, []);
|
|
assert.deepEqual(executed, []);
|
|
});
|
|
|
|
test('unknown authentication and REPL prompts fail closed before plugin semantic callbacks', () => {
|
|
for (const lineText of ['Custom authentication> hunter2', 'python> print(secret)']) {
|
|
const submitted: string[] = [];
|
|
const executed: string[] = [];
|
|
const command = lineText.split(' ').at(-1) ?? '';
|
|
const commandBufferRef = { current: command };
|
|
const result = recordTerminalCommandExecution(command, {
|
|
host: { id: 'host-1', label: 'Host' },
|
|
sessionId: 'session-1',
|
|
onTrustedCommandSubmitted: (command) => submitted.push(command),
|
|
onCommandExecuted: (command) => executed.push(command),
|
|
commandBufferRef,
|
|
}, createFakeTerm(lineText) as never);
|
|
assert.equal(result, command, lineText);
|
|
assert.deepEqual(submitted, [], lineText);
|
|
assert.deepEqual(executed, [command], lineText);
|
|
}
|
|
});
|
|
|
|
test('semantic callbacks run only after a shell or explicitly identified device prompt is trusted', () => {
|
|
for (const [lineText, command, allowDevice] of [
|
|
['alice@host:~$ echo ok', 'echo ok', false],
|
|
['router> show version', 'show version', true],
|
|
] as const) {
|
|
const submitted: string[] = [];
|
|
const executed: string[] = [];
|
|
const commandBufferRef = { current: command };
|
|
const result = recordTerminalCommandExecution(command, {
|
|
host: { id: 'host-1', label: 'Host' },
|
|
sessionId: 'session-1',
|
|
onTrustedCommandSubmitted: (value) => submitted.push(value),
|
|
onCommandExecuted: (value) => executed.push(value),
|
|
commandBufferRef,
|
|
}, createFakeTerm(lineText) as never, {
|
|
allowHostStyleGreaterThanPrompt: allowDevice,
|
|
});
|
|
assert.equal(result, command, lineText);
|
|
assert.deepEqual(submitted, [command], lineText);
|
|
assert.deepEqual(executed, [command], lineText);
|
|
}
|
|
});
|
|
|
|
test('plugin semantic callbacks fail closed when terminal prompt state is unavailable', () => {
|
|
const submitted: string[] = [];
|
|
const executed: string[] = [];
|
|
const commandBufferRef = { current: 'echo ok' };
|
|
const result = recordTerminalCommandExecution('echo ok', {
|
|
host: { id: 'host-1', label: 'Host' },
|
|
sessionId: 'session-1',
|
|
onTrustedCommandSubmitted: (command) => submitted.push(command),
|
|
onCommandExecuted: (command) => executed.push(command),
|
|
commandBufferRef,
|
|
});
|
|
|
|
assert.equal(result, 'echo ok');
|
|
assert.deepEqual(submitted, []);
|
|
assert.deepEqual(executed, ['echo ok']);
|
|
});
|