426e9eeabd
Voice Workbench / headless workbench (mocked backends) (push) Has been cancelled
Voice Workbench / real acoustic lane (nightly, provisioned only) (push) Has been cancelled
ci / test (push) Has been cancelled
ci / lint-and-format (push) Has been cancelled
ci / build (push) Has been cancelled
ci / dev-startup (push) Has been cancelled
gitleaks / gitleaks (push) Has been cancelled
Markdown Links / Relative Markdown Links (push) Has been cancelled
Quality (Extended) / Homepage Build (PR smoke) (push) Has been cancelled
Quality (Extended) / Comment-only diff guard (push) Has been cancelled
Quality (Extended) / Format + Type Safety Ratchet (push) Has been cancelled
Quality (Extended) / Develop Gate (secret scan + UI determinism) (push) Has been cancelled
Quality (Extended) / Develop Gate (lint) (push) Has been cancelled
Chat shell gestures / Chat shell gesture + parity e2e (push) Has been cancelled
Cloud Gateway Discord / Test (push) Has been cancelled
Benchmark Bridge Tests / benchmark (bunx @biomejs/biome check packages/lifeops-bench/src, benchmark-lint) (push) Has been cancelled
Benchmark Bridge Tests / benchmark (bunx vitest run --config packages/lifeops-bench/vitest.config.ts --root packages/lifeops-bench --passWithNoTests, benchmark-tests) (push) Has been cancelled
Build Agent Image / build-and-push (push) Has been cancelled
Dev Smoke / bun run dev onboarding chat (push) Has been cancelled
Dev Smoke / Vite HMR dependency-level smoke (push) Has been cancelled
Electrobun Submodule Guard / electrobun gitlink is fetchable (push) Has been cancelled
Publish @elizaos/example-code / check_npm (push) Has been cancelled
Publish @elizaos/example-code / publish_npm (push) Has been cancelled
Publish @elizaos/plugin-elizacloud / verify_version (push) Has been cancelled
Publish @elizaos/plugin-elizacloud / publish_npm (push) Has been cancelled
Sandbox Live Smoke / Sandbox live smoke (push) Has been cancelled
Snap Build & Test / Build Snap (amd64) (push) Has been cancelled
Snap Build & Test / Build Snap (arm64) (push) Has been cancelled
Test Packaging / elizaos CLI global-install smoke (node + bun) (push) Has been cancelled
Cloud Gateway Webhook / Test (push) Has been cancelled
Cloud Tests / lint-and-types (push) Has been cancelled
Cloud Tests / unit-tests (push) Has been cancelled
Cloud Tests / integration-tests (push) Has been cancelled
Cloud Tests / e2e-tests (push) Has been cancelled
CodeQL Advanced / Analyze (javascript-typescript) (push) Has been cancelled
Deploy Apps Worker (Product 2) / Determine environment (push) Has been cancelled
Deploy Apps Worker (Product 2) / Deploy apps worker to apps-control host (${{ needs.determine-env.outputs.environment }}) (push) Has been cancelled
Deploy Eliza Provisioning Worker / Determine environment (push) Has been cancelled
Deploy Eliza Provisioning Worker / Deploy worker to Hetzner host (${{ needs.determine-env.outputs.environment }} @ ${{ needs.determine-env.outputs.deployment_sha }}) (push) Has been cancelled
Dev Smoke / Classify changed paths (push) Has been cancelled
supply-chain / sbom (push) Has been cancelled
supply-chain / vulnerability-scan (push) Has been cancelled
Build, Push & Deploy to Phala Cloud / build-and-push (push) Has been cancelled
Test Packaging / Validate Packaging Configs (push) Has been cancelled
Test Packaging / Build & Test PyPI Package (push) Has been cancelled
Test Packaging / PyPI on Python ${{ matrix.python }} (push) Has been cancelled
Test Packaging / Pack & Test JS Tarballs (push) Has been cancelled
UI Fixture E2E / ui-fixture-e2e (push) Has been cancelled
UI Fixture E2E / fixture-e2e (push) Has been cancelled
UI Story Gate / story-gate (push) Has been cancelled
vault-ci / test (macos-latest) (push) Has been cancelled
vault-ci / test (ubuntu-latest) (push) Has been cancelled
vault-ci / test (windows-latest) (push) Has been cancelled
vault-ci / app-core wiring tests (push) Has been cancelled
verify-patches / verify patches/CHECKSUMS.sha256 (push) Has been cancelled
Voice Benchmark Smoke / voice-emotion fixture smoke (push) Has been cancelled
Voice Benchmark Smoke / voiceagentbench fixture smoke (push) Has been cancelled
Voice Benchmark Smoke / voicebench-quality unit smoke (push) Has been cancelled
Voice Benchmark Smoke / voicebench TypeScript unit (no audio) (push) Has been cancelled
Voice Benchmark Smoke / voice bench smoke summary (push) Has been cancelled
Windows CI / windows ([bun run --cwd packages/app-core test bun run --cwd packages/elizaos test bun run --cwd packages/cloud/shared test], app-and-cli) (push) Has been cancelled
Windows CI / windows ([bun run --cwd packages/scenario-runner test bun run --cwd packages/vault test bun run --cwd packages/security test bun run --cwd plugins/plugin-coding-tools test], framework-packages) (push) Has been cancelled
Windows CI / windows ([bun run --cwd plugins/plugin-elizacloud test bun run --cwd plugins/plugin-discord test bun run --cwd plugins/plugin-anthropic test bun run --cwd plugins/plugin-openai test bun run --cwd plugins/plugin-app-control test bun run --cwd plugins/pl… (push) Has been cancelled
Windows CI / windows ([node packages/scripts/run-turbo.mjs run build --filter=@elizaos/core --filter=@elizaos/shared --filter=@elizaos/agent --concurrency=4 node packages/scripts/run-bash-linux-only.mjs scripts/verify-riscv64-buildpaths.sh node packages/scripts/run… (push) Has been cancelled
Windows CI / windows ([node packages/scripts/run-turbo.mjs run typecheck --filter=@elizaos/core --filter=@elizaos/shared --filter=@elizaos/cloud-shared --concurrency=4 bun run --cwd packages/core test bun run --cwd packages/shared test], core-runtime, 75) (push) Has been cancelled
104 lines
2.6 KiB
TypeScript
104 lines
2.6 KiB
TypeScript
/**
|
|
* Live-model SETTINGS scenario (#14364): a natural "turn off shell access"
|
|
* request must select the semantic SETTINGS action and drive the section's own
|
|
* backend route (PUT /api/permissions/shell { enabled:false }) — never the
|
|
* generic agent-fill synthetic-DOM bridge on a builtin field. The loopback
|
|
* captures the real request the handler issues so the check is on behavior, not
|
|
* on the model's phrasing.
|
|
*/
|
|
|
|
import { scenario } from "@elizaos/scenario-runner/schema";
|
|
import {
|
|
jsonResponse,
|
|
readAppControlHttpRequests,
|
|
registerAppControlHttpHandler,
|
|
resetAppControlHttpLoopback,
|
|
} from "../../../../packages/scenario-runner/test/scenarios/_helpers/app-control-http-loopback";
|
|
|
|
function shellWrites() {
|
|
return readAppControlHttpRequests(
|
|
(request) =>
|
|
request.method === "PUT" &&
|
|
request.pathname === "/api/permissions/shell",
|
|
).map((request) => request.body ?? null);
|
|
}
|
|
|
|
export default scenario({
|
|
lane: "live-only",
|
|
id: "settings-shell-toggle",
|
|
title: "SETTINGS action disables shell access via the permissions route",
|
|
domain: "app-control",
|
|
tags: ["app-control", "settings", "set", "permissions"],
|
|
isolation: "per-scenario",
|
|
requires: {
|
|
plugins: ["@elizaos/plugin-app-control"],
|
|
},
|
|
seed: [
|
|
{
|
|
type: "custom",
|
|
name: "register permissions shell loopback API",
|
|
apply: () => {
|
|
resetAppControlHttpLoopback();
|
|
registerAppControlHttpHandler((request) => {
|
|
if (
|
|
request.method === "PUT" &&
|
|
request.pathname === "/api/permissions/shell"
|
|
) {
|
|
return jsonResponse({
|
|
shellEnabled: false,
|
|
permission: { id: "shell", status: "denied" },
|
|
});
|
|
}
|
|
return undefined;
|
|
});
|
|
return undefined;
|
|
},
|
|
},
|
|
],
|
|
rooms: [
|
|
{
|
|
id: "main",
|
|
source: "chat",
|
|
title: "Settings Shell Toggle",
|
|
},
|
|
],
|
|
turns: [
|
|
{
|
|
kind: "message",
|
|
name: "user-asks-disable-shell",
|
|
text: "disable shell access for the agent",
|
|
},
|
|
],
|
|
finalChecks: [
|
|
{
|
|
type: "selectedAction",
|
|
actionName: "SETTINGS",
|
|
},
|
|
{
|
|
type: "actionCalled",
|
|
actionName: "SETTINGS",
|
|
status: "success",
|
|
minCount: 1,
|
|
},
|
|
{
|
|
type: "custom",
|
|
name: "SETTINGS drove PUT /api/permissions/shell { enabled:false }",
|
|
predicate: () => {
|
|
const expected = [{ enabled: false }];
|
|
const actual = shellWrites();
|
|
return JSON.stringify(actual) === JSON.stringify(expected)
|
|
? undefined
|
|
: `expected exactly one shell write ${JSON.stringify(expected)}, saw ${JSON.stringify(actual)}`;
|
|
},
|
|
},
|
|
{
|
|
type: "custom",
|
|
name: "cleanup permissions loopback",
|
|
predicate: () => {
|
|
resetAppControlHttpLoopback();
|
|
return undefined;
|
|
},
|
|
},
|
|
],
|
|
});
|