Some checks failed
build-packages / resolve bundled mosh-client (push) Has been cancelled
build-packages / resolve bundled et-client (push) Has been cancelled
build-packages / build-macos (push) Has been cancelled
build-packages / build-windows (push) Has been cancelled
build-packages / build-linux-x64 (push) Has been cancelled
build-packages / build-linux-arm64 (push) Has been cancelled
build-packages / release (push) Has been cancelled
build-packages / update Nix release metadata (push) Has been cancelled
build-packages / bump homebrew tap (push) Has been cancelled
test / lint-and-test (push) Has been cancelled
AI automation / Route event (push) Has been cancelled
AI automation / Hand reopened issue to maintainers (push) Has been cancelled
AI automation / Clean source issue state (push) Has been cancelled
AI automation / Reconcile handoffs (push) Has been cancelled
AI automation / Classify issue (push) Has been cancelled
AI automation / Claude Code smoke (push) Has been cancelled
AI automation / Review issue follow-up (push) Has been cancelled
AI automation / Publish issue follow-up (push) Has been cancelled
AI automation / Implement with Claude Code (push) Has been cancelled
AI automation / Publish implement PR (push) Has been cancelled
AI automation / Continue queued issue comments (push) Has been cancelled
AI automation / Codex review loop (push) Has been cancelled
AI automation / Publish Codex fix (push) Has been cancelled
AI automation / Clear Codex dispatch marker (push) Has been cancelled
AI automation / Own PR re-request Codex (push) Has been cancelled
AI automation / External PR re-request Codex (push) Has been cancelled
AI automation / Poll Codex reaction / retry (push) Has been cancelled
build-et-binaries / build-linux-x64 (push) Has been cancelled
build-et-binaries / build-linux-arm64 (push) Has been cancelled
build-et-binaries / build-macos-universal (push) Has been cancelled
build-et-binaries / build-windows-x64 (push) Has been cancelled
build-et-binaries / release (push) Has been cancelled
56 lines
1.8 KiB
JavaScript
56 lines
1.8 KiB
JavaScript
"use strict";
|
|
|
|
const assert = require("node:assert/strict");
|
|
const test = require("node:test");
|
|
|
|
const {
|
|
assertRestrictedJsonSchema,
|
|
compileRestrictedJsonSchema,
|
|
} = require("./restrictedJsonSchema.cjs");
|
|
|
|
function tableSchema() {
|
|
return {
|
|
type: "array",
|
|
maxItems: 8,
|
|
items: {
|
|
type: "object",
|
|
properties: {
|
|
name: { type: "string", minLength: 1, maxLength: 32 },
|
|
port: { type: "integer", minimum: 1, maximum: 65_535 },
|
|
},
|
|
required: ["name", "port"],
|
|
additionalProperties: false,
|
|
},
|
|
};
|
|
}
|
|
|
|
test("restricted setting schemas validate bounded structured values", () => {
|
|
const validate = compileRestrictedJsonSchema(tableSchema(), { rootType: "array" });
|
|
assert.equal(validate([{ name: "primary", port: 22 }]), true);
|
|
assert.throws(() => validate([{ name: "primary", port: 70_000 }]), /does not match/u);
|
|
assert.throws(() => validate([{ name: "primary", port: 22, token: "secret" }]), /does not match/u);
|
|
});
|
|
|
|
test("restricted setting schemas reject executable or ambiguous JSON Schema features", () => {
|
|
assert.throws(() => assertRestrictedJsonSchema({
|
|
type: "array",
|
|
items: { type: "string", pattern: "(a+)+$" },
|
|
}, { rootType: "array" }), /keyword is not allowed: pattern/u);
|
|
assert.throws(() => assertRestrictedJsonSchema({
|
|
type: "array",
|
|
items: {
|
|
type: "object",
|
|
properties: { constructor: { type: "string" } },
|
|
additionalProperties: false,
|
|
},
|
|
}), /property name is invalid/u);
|
|
assert.throws(() => assertRestrictedJsonSchema({
|
|
type: "object",
|
|
properties: {},
|
|
}), /additionalProperties/u);
|
|
assert.throws(() => assertRestrictedJsonSchema({
|
|
type: "array",
|
|
items: { type: "integer", minimum: 1.2, maximum: 1.8 },
|
|
}, { rootType: "array" }), /no valid value/u);
|
|
});
|