mirror of
https://github.com/bytedance/deer-flow.git
synced 2026-08-13 16:28:38 +00:00
* feat(artifacts): inline editing for text artifacts in the panel
Add a PUT /api/threads/{id}/artifacts/{path} endpoint that atomically
replaces an existing UTF-8 text file under /mnt/user-data/outputs after
verifying its SHA-256 revision. Active runs conflict (409); binary,
symlink, oversized, and non-output paths are rejected.
Frontend: edit/save/discard buttons, draft state with conflict detection,
CodeEditor onChange/onSave, loader SHA-256 from ETag, i18n, beforeunload guard.
Backend: PUT endpoint with thread reservation, atomic temp-file replacement,
sandbox sync for non-mounted providers, rollback on failure, ETag on GET.
Tests: 8 backend + 1 blocking-IO + 3 frontend test files.
* fix(artifacts): scope replacement permissions and release sandboxes
---------
Co-authored-by: Willem Jiang <willem.jiang@gmail.com>
133 lines
5.4 KiB
Python
133 lines
5.4 KiB
Python
"""Regression anchor: serving artifacts must not block the event loop.
|
|
|
|
``get_artifact`` probes the artifact path (``exists`` / ``is_file``), reads
|
|
text content (``read_text``), sniffs text-ness (``is_text_file_by_content``),
|
|
and extracts ``.skill`` archive members — all blocking filesystem IO. The
|
|
handler offloads each branch's IO via ``asyncio.to_thread``; if any regresses
|
|
back onto the event loop, the strict Blockbuster gate raises ``BlockingError``
|
|
and these tests fail.
|
|
|
|
Binary (non-text, non-active-content) artifacts still run the same
|
|
``exists`` / ``is_file`` / ``mimetypes.guess_type`` / ``is_text_file_by_content``
|
|
probes as the text branch, offloaded the same way via ``asyncio.to_thread``.
|
|
What differs is the payload: instead of a read, the handler returns a
|
|
``FileResponse`` that defers its own file IO to ASGI response time (streamed
|
|
via ``anyio.open_file`` when the response is actually sent, which this test
|
|
never triggers) — so awaiting ``get_artifact`` itself for a binary artifact
|
|
does no full-file read; ``FileResponse`` streams the bytes at ASGI send
|
|
time, off the loop, which is why the gate has nothing to catch there
|
|
either way.
|
|
|
|
The ``@require_permission`` decorator is bypassed via ``__wrapped__`` so the
|
|
anchor exercises the handler's own filesystem IO, not the authz layer. Imports
|
|
sit at module top so any import-time IO runs at collection, outside the gate.
|
|
"""
|
|
|
|
from __future__ import annotations
|
|
|
|
import asyncio
|
|
import hashlib
|
|
import zipfile
|
|
from contextlib import asynccontextmanager
|
|
from pathlib import Path
|
|
|
|
import pytest
|
|
from starlette.responses import FileResponse
|
|
|
|
import app.gateway.routers.artifacts as artifacts_router
|
|
from app.gateway.path_utils import resolve_thread_virtual_path
|
|
from app.gateway.routers.artifacts import ArtifactUpdateRequest, get_artifact, update_artifact
|
|
|
|
pytestmark = pytest.mark.asyncio
|
|
|
|
# The undecorated coroutine (``require_permission`` uses ``functools.wraps``).
|
|
_get_artifact = get_artifact.__wrapped__
|
|
_update_artifact = update_artifact.__wrapped__
|
|
|
|
|
|
async def _seed(tmp_path: Path, monkeypatch, thread_id: str, virtual_path: str) -> Path:
|
|
monkeypatch.setenv("DEER_FLOW_HOME", str(tmp_path))
|
|
# Rebuild cached Paths against the tmp home so the artifact resolves under it.
|
|
import deerflow.config.paths as paths_mod
|
|
|
|
monkeypatch.setattr(paths_mod, "_paths", None)
|
|
# Test-side path resolution also touches the filesystem (`.resolve()`); offload
|
|
# it so this seeding helper doesn't itself trip the gate.
|
|
target = await asyncio.to_thread(resolve_thread_virtual_path, thread_id, virtual_path)
|
|
await asyncio.to_thread(target.parent.mkdir, parents=True, exist_ok=True)
|
|
return target
|
|
|
|
|
|
async def test_get_artifact_text_does_not_block_event_loop(tmp_path: Path, monkeypatch) -> None:
|
|
vpath = "mnt/user-data/outputs/notes.txt"
|
|
target = await _seed(tmp_path, monkeypatch, "t1", vpath)
|
|
await asyncio.to_thread(target.write_text, "hello world", encoding="utf-8")
|
|
|
|
resp = await _get_artifact("t1", vpath, request=None, download=False)
|
|
|
|
assert resp.status_code == 200
|
|
assert resp.body == b"hello world"
|
|
|
|
|
|
async def test_get_artifact_binary_does_not_block_event_loop(tmp_path: Path, monkeypatch) -> None:
|
|
vpath = "mnt/user-data/outputs/blob.bin"
|
|
target = await _seed(tmp_path, monkeypatch, "t1", vpath)
|
|
payload = b"\x00\x01\x02PNGDATA" # null byte -> binary branch (inline FileResponse)
|
|
await asyncio.to_thread(target.write_bytes, payload)
|
|
|
|
resp = await _get_artifact("t1", vpath, request=None, download=False)
|
|
|
|
# Binary artifacts are streamed via FileResponse (so browsers can issue
|
|
# byte-Range requests) instead of being read into memory up front, so the
|
|
# file bytes are only touched later during ASGI send, never here.
|
|
assert isinstance(resp, FileResponse)
|
|
assert resp.status_code == 200
|
|
assert Path(resp.path) == target
|
|
assert resp.headers.get("content-disposition", "").startswith("inline;")
|
|
|
|
|
|
async def test_get_artifact_skill_archive_member_does_not_block_event_loop(tmp_path: Path, monkeypatch) -> None:
|
|
skill_vpath = "mnt/user-data/outputs/demo.skill"
|
|
target = await _seed(tmp_path, monkeypatch, "t1", skill_vpath)
|
|
|
|
def _build_skill_zip() -> None:
|
|
with zipfile.ZipFile(target, "w") as zf:
|
|
zf.writestr("SKILL.md", "# demo skill\n")
|
|
|
|
await asyncio.to_thread(_build_skill_zip)
|
|
|
|
resp = await _get_artifact("t1", f"{skill_vpath}/SKILL.md", request=None, download=False)
|
|
|
|
assert resp.status_code == 200
|
|
assert b"# demo skill" in resp.body
|
|
|
|
|
|
async def test_update_artifact_does_not_block_event_loop(tmp_path: Path, monkeypatch) -> None:
|
|
vpath = "/mnt/user-data/outputs/notes.txt"
|
|
target = await _seed(tmp_path, monkeypatch, "t1", vpath)
|
|
original = b"hello world"
|
|
await asyncio.to_thread(target.write_bytes, original)
|
|
|
|
@asynccontextmanager
|
|
async def allow_write(*_args, **_kwargs):
|
|
yield
|
|
|
|
class MountedProvider:
|
|
uses_thread_data_mounts = True
|
|
|
|
monkeypatch.setattr(artifacts_router, "reserve_artifact_write", allow_write)
|
|
monkeypatch.setattr(artifacts_router, "get_sandbox_provider", lambda: MountedProvider())
|
|
|
|
result = await _update_artifact(
|
|
"t1",
|
|
vpath,
|
|
ArtifactUpdateRequest(
|
|
content="updated",
|
|
expected_sha256=hashlib.sha256(original).hexdigest(),
|
|
),
|
|
request=None,
|
|
)
|
|
|
|
assert result.sha256 == hashlib.sha256(b"updated").hexdigest()
|
|
assert await asyncio.to_thread(target.read_bytes) == b"updated"
|