GitNexus/gitnexus/test/unit/remove-command.test.ts
mengkaka 79543c8f83
feat(storage): add configurable index storage and content retention tiers (#3060)
* feat(storage): add configurable index storage and content retention tiers

Rebase #3060 onto current origin/main. Keep GITNEXUS_STORAGE_PATH,
GITNEXUS_STORAGE_ROOT, and GITNEXUS_CONTENT_RETENTION, and fold in
main's FTS skip, embed-session, and help-text updates.

Co-authored-by: Cursor <cursoragent@cursor.com>

* Address PR review feedback (#3060)

Keep legacy registry rows on the local storage fallback, resolve
symlinks before the destructive-path guard, and align hook lookup
with CLI branch slugs, branch-slot metadata, and longest-path match.

Co-authored-by: Cursor <cursoragent@cursor.com>

* Address PR review feedback (#3060)

Only list swept upload directories after a successful removal so
callers cannot treat a permission or transient rm failure as gone.

Co-authored-by: Cursor <cursoragent@cursor.com>

* Address PR review feedback (#3060)

Document that getStoragePath may consult registered storage while
this module still does not mutate the global registry.

Co-authored-by: Cursor <cursoragent@cursor.com>

* fix(storage): close review findings for external indexes and retention

Re-inspect ownership under the analyze lock, fail-closed when the
registry file is missing, and keep skip-git hook discovery plus
retention fields on HTTP/MCP list surfaces. /api/file stays 410
unless contentRetention is full.

Co-authored-by: Cursor <cursoragent@cursor.com>

* chore(autofix): apply prettier + eslint fixes via /autofix command

* Address PR review feedback (#3060)

Treat lock-only index dirs as empty, honor HTTP --force storage policy, and prefer registered plus branch-aware slots in hooks and augment.

Co-authored-by: Cursor <cursoragent@cursor.com>

* Address PR review feedback (#3060)

Keep hook fallbacks inside the current worktree, compare foreign-local slots canonically, and make storage fixtures survive ownership validation.

Co-authored-by: Cursor <cursoragent@cursor.com>

* Fix macOS hook test expecting realpath'd registry paths.

resolveHookRepo returns the written registry path, not a filesystem realpath, so the assertion must match that.

* Address gitnexus-check warnings on hook install docs and slot tests.

The Cursor troubleshooting list omitted registry-query.cjs, and the writable-slot test only checked that isDirectory exists instead of that the path is a directory.

* Align the HTTP catalog source-scan with skippable resolveRepo validation.

resolveRepo lists fresh repos with validate: options.validateStorage !== false so DELETE can skip prune; the test still required a literal validate: true.

* Harden storage path sinks so CodeQL path-injection and ReDoS alerts clear.

Contain every filesystem probe inside the resolved storage slot with the inline path.relative idiom, reject filesystem-root slots, and trim slot basenames in linear time.

* Settle bridge stamps before writing so CI size/mtime matches stay stable.

LadybugDB can still flush into bridge.lbug after close+rename; persist whole-millisecond mtimes and wait for consecutive stats to agree so a freshly written pair matches.

* Type the settled bridge stat as fs.Stats so tsc does not see bigint.

Awaited<ReturnType<typeof fsp.stat>> collapsed the bigint overload and broke prepare/typecheck on CI.

* Keep the bridge mtime stamp exact so same-size swaps still fail the pair check.

Co-authored-by: Cursor <cursoragent@cursor.com>

* Wrap the bridge stamp predicate so prettier --check stays green.

Co-authored-by: Cursor <cursoragent@cursor.com>

* Require a quiet interval before stamping a settled bridge file.

Co-authored-by: Cursor <cursoragent@cursor.com>

* Reuse shared storage and settle helpers instead of local copies.

Co-authored-by: Cursor <cursoragent@cursor.com>

---------

Co-authored-by: Gergo Magyar <gergomagyar0@gmail.com>
Co-authored-by: Cursor <cursoragent@cursor.com>
Co-authored-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com>
2026-09-12 20:31:55 +00:00

91 lines
3.3 KiB
TypeScript

/**
* Unit tests: removeCommand deletion order (PR #2363 review fix, F14)
*
* The documented contract (remove.ts header): fs.rm FIRST, then unregister.
* A partial failure leaves the registry entry in place so the user can
* retry (and `listRegisteredRepos({ validate: true })` self-heals a
* rm-succeeded/unregister-failed orphan) — the registry must never be
* unregistered while index files may still remain on disk.
*/
import { beforeEach, describe, expect, it, vi } from 'vitest';
import path from 'node:path';
const mockRm = vi.fn();
const mockReadRegistry = vi.fn();
const mockResolveRegistryEntry = vi.fn();
const mockRequireDeletableStoragePath = vi.fn();
const mockUnregisterRepo = vi.fn();
vi.mock('fs/promises', () => ({
default: {
rm: mockRm,
},
}));
vi.mock('../../src/storage/repo-manager.js', () => ({
readRegistry: mockReadRegistry,
resolveRegistryEntry: mockResolveRegistryEntry,
unregisterRepo: mockUnregisterRepo,
RegistryNotFoundError: class RegistryNotFoundError extends Error {},
RegistryAmbiguousTargetError: class RegistryAmbiguousTargetError extends Error {},
}));
vi.mock('../../src/storage/storage-resolver.js', () => ({
requireDeletableStoragePath: mockRequireDeletableStoragePath,
StorageDeletionError: class StorageDeletionError extends Error {},
}));
describe('removeCommand', () => {
const repoPath = path.resolve('/repo');
const entry = {
name: 'repo',
path: repoPath,
storagePath: path.join(repoPath, '.gitnexus'),
};
beforeEach(() => {
vi.clearAllMocks();
vi.restoreAllMocks();
process.exitCode = undefined;
mockReadRegistry.mockResolvedValue([entry]);
mockResolveRegistryEntry.mockReturnValue(entry);
mockRequireDeletableStoragePath.mockResolvedValue(entry.storagePath);
mockRm.mockResolvedValue(undefined);
mockUnregisterRepo.mockResolvedValue(undefined);
});
it('removes the whole .gitnexus/ directory recursively, then unregisters', async () => {
vi.spyOn(console, 'log').mockImplementation(() => {});
const { removeCommand } = await import('../../src/cli/remove.js');
await removeCommand('repo', { force: true });
expect(mockRm).toHaveBeenCalledWith(entry.storagePath, { recursive: true, force: true });
expect(mockUnregisterRepo).toHaveBeenCalledWith(entry.path);
// rm strictly precedes unregister (retryable partial-failure contract).
expect(mockRm.mock.invocationCallOrder[0]).toBeLessThan(
mockUnregisterRepo.mock.invocationCallOrder[0],
);
// No pre-unlink of individual metadata files — fs.rm removes both
// gitnexus.json and the legacy meta.json mirror with the directory.
expect(mockRm).toHaveBeenCalledTimes(1);
});
it('does NOT unregister when fs.rm fails (entry stays for retry)', async () => {
vi.spyOn(console, 'log').mockImplementation(() => {});
vi.spyOn(console, 'error').mockImplementation(() => {});
const exitSpy = vi
.spyOn(process, 'exit')
.mockImplementation((() => undefined) as unknown as typeof process.exit);
const err = new Error('EBUSY: resource busy') as NodeJS.ErrnoException;
err.code = 'EBUSY';
mockRm.mockRejectedValue(err);
const { removeCommand } = await import('../../src/cli/remove.js');
await removeCommand('repo', { force: true });
expect(mockUnregisterRepo).not.toHaveBeenCalled();
expect(exitSpy).toHaveBeenCalledWith(1);
});
});