mirror of
https://github.com/Kaelio/ktx.git
synced 2026-06-07 07:55:13 +02:00
* feat(query-history): structure SQL analysis table refs * feat(query-history): qualify SQL analysis table refs * feat(query-history): wire modeled scope floor through ingest * chore(query-history): verify scope floor * test(query-history): align daemon SQL batch endpoint contract * feat(query-history): build scope from same-run scan catalog * feat(query-history): fail open on scope-floor catalog failures * chore(query-history): verify scope-floor v1 closure * refactor(query-history): share scope membership * feat(setup): apply derived query history filters * docs: document derived query history filters * fix(query-history): redact filter picker LLM prompt SQL * fix(setup): run filter picker SQL analysis through managed daemon * chore(query-history): verify filter picker v1 closure * fix(query-history): fail open on partial service-account attribution * fix(query-history): aggregate BigQuery users by execution count * fix(query-history): aggregate Snowflake users by execution count * fix(query-history): use BigQuery query info hash
240 lines
7.9 KiB
TypeScript
240 lines
7.9 KiB
TypeScript
import { describe, expect, it, vi } from 'vitest';
|
|
import { createHttpSqlAnalysisPort } from '../../../src/context/sql-analysis/http-sql-analysis-port.js';
|
|
|
|
describe('createHttpSqlAnalysisPort', () => {
|
|
it('calls the SQL-analysis fingerprint endpoint and maps snake_case response fields', async () => {
|
|
const requestJson = vi.fn(async () => ({
|
|
fingerprint: 'fingerprint-template',
|
|
normalized_sql: 'SELECT * FROM analytics.orders WHERE status = ?',
|
|
tables_touched: ['analytics.orders'],
|
|
literal_slots: [{ position: 1, type: 'string', example_value: 'paid' }],
|
|
}));
|
|
const port = createHttpSqlAnalysisPort({ baseUrl: 'http://python.test', requestJson });
|
|
|
|
await expect(
|
|
port.analyzeForFingerprint("SELECT * FROM analytics.orders WHERE status = 'paid'", 'postgres'),
|
|
).resolves.toEqual({
|
|
fingerprint: 'fingerprint-template',
|
|
normalizedSql: 'SELECT * FROM analytics.orders WHERE status = ?',
|
|
tablesTouched: ['analytics.orders'],
|
|
literalSlots: [{ position: 1, type: 'string', exampleValue: 'paid' }],
|
|
});
|
|
|
|
expect(requestJson).toHaveBeenCalledWith('/api/sql/analyze-for-fingerprint', {
|
|
sql: "SELECT * FROM analytics.orders WHERE status = 'paid'",
|
|
dialect: 'postgres',
|
|
});
|
|
});
|
|
|
|
it('preserves SQL-analysis parse errors in the mapped result', async () => {
|
|
const requestJson = vi.fn(async () => ({
|
|
fingerprint: '',
|
|
normalized_sql: '',
|
|
tables_touched: [],
|
|
literal_slots: [],
|
|
error: 'Invalid expression / Unexpected token',
|
|
}));
|
|
const port = createHttpSqlAnalysisPort({ baseUrl: 'http://python.test', requestJson });
|
|
|
|
await expect(port.analyzeForFingerprint('SELECT * FROM WHERE', 'postgres')).resolves.toEqual({
|
|
fingerprint: '',
|
|
normalizedSql: '',
|
|
tablesTouched: [],
|
|
literalSlots: [],
|
|
error: 'Invalid expression / Unexpected token',
|
|
});
|
|
});
|
|
|
|
it('calls the SQL batch endpoint and maps snake_case response fields into a Map', async () => {
|
|
const requestJson = vi.fn(async () => ({
|
|
results: {
|
|
orders: {
|
|
tables_touched: [
|
|
{ catalog: null, db: 'public', name: 'orders' },
|
|
{ catalog: null, db: 'public', name: 'customers' },
|
|
],
|
|
columns_by_clause: {
|
|
select: ['status'],
|
|
where: ['created_at'],
|
|
join: ['customer_id', 'id'],
|
|
},
|
|
error: null,
|
|
},
|
|
broken: {
|
|
tables_touched: [],
|
|
columns_by_clause: {},
|
|
error: 'Invalid expression / Unexpected token',
|
|
},
|
|
},
|
|
}));
|
|
const port = createHttpSqlAnalysisPort({ baseUrl: 'http://python.test', requestJson });
|
|
|
|
await expect(
|
|
port.analyzeBatch(
|
|
[
|
|
{ id: 'orders', sql: 'select status from public.orders' },
|
|
{ id: 'broken', sql: 'select * from where' },
|
|
],
|
|
'postgres',
|
|
),
|
|
).resolves.toEqual(
|
|
new Map([
|
|
[
|
|
'orders',
|
|
{
|
|
tablesTouched: [
|
|
{ catalog: null, db: 'public', name: 'orders' },
|
|
{ catalog: null, db: 'public', name: 'customers' },
|
|
],
|
|
columnsByClause: {
|
|
select: ['status'],
|
|
where: ['created_at'],
|
|
join: ['customer_id', 'id'],
|
|
},
|
|
error: null,
|
|
},
|
|
],
|
|
[
|
|
'broken',
|
|
{
|
|
tablesTouched: [],
|
|
columnsByClause: {},
|
|
error: 'Invalid expression / Unexpected token',
|
|
},
|
|
],
|
|
]),
|
|
);
|
|
|
|
expect(requestJson).toHaveBeenCalledWith('/sql/analyze-batch', {
|
|
dialect: 'postgres',
|
|
items: [
|
|
{ id: 'orders', sql: 'select status from public.orders' },
|
|
{ id: 'broken', sql: 'select * from where' },
|
|
],
|
|
});
|
|
});
|
|
|
|
it('passes an optional catalog and maps structured table refs for SQL batch analysis', async () => {
|
|
const requestJson = vi.fn(async () => ({
|
|
results: {
|
|
orders: {
|
|
tables_touched: [
|
|
{ catalog: null, db: 'orbit_raw', name: 'accounts' },
|
|
{ catalog: 'demo_project', db: 'orbit_analytics', name: 'orders' },
|
|
],
|
|
columns_by_clause: { select: ['id'] },
|
|
error: null,
|
|
},
|
|
},
|
|
}));
|
|
const port = createHttpSqlAnalysisPort({ baseUrl: 'http://python.test', requestJson });
|
|
|
|
await expect(
|
|
port.analyzeBatch(
|
|
[{ id: 'orders', sql: 'select id from accounts' }],
|
|
'postgres',
|
|
{
|
|
catalog: {
|
|
tables: [
|
|
{ catalog: null, db: 'orbit_raw', name: 'accounts', columns: ['id'] },
|
|
{ catalog: 'demo_project', db: 'orbit_analytics', name: 'orders', columns: ['id'] },
|
|
],
|
|
},
|
|
},
|
|
),
|
|
).resolves.toEqual(
|
|
new Map([
|
|
[
|
|
'orders',
|
|
{
|
|
tablesTouched: [
|
|
{ catalog: null, db: 'orbit_raw', name: 'accounts' },
|
|
{ catalog: 'demo_project', db: 'orbit_analytics', name: 'orders' },
|
|
],
|
|
columnsByClause: { select: ['id'] },
|
|
error: null,
|
|
},
|
|
],
|
|
]),
|
|
);
|
|
|
|
expect(requestJson).toHaveBeenCalledWith('/sql/analyze-batch', {
|
|
dialect: 'postgres',
|
|
items: [{ id: 'orders', sql: 'select id from accounts' }],
|
|
catalog: {
|
|
tables: [
|
|
{ catalog: null, db: 'orbit_raw', name: 'accounts', columns: ['id'] },
|
|
{ catalog: 'demo_project', db: 'orbit_analytics', name: 'orders', columns: ['id'] },
|
|
],
|
|
},
|
|
});
|
|
});
|
|
|
|
it('maps read-only SQL validation responses', async () => {
|
|
const requests: Array<{ path: string; payload: Record<string, unknown> }> = [];
|
|
const port = createHttpSqlAnalysisPort({
|
|
baseUrl: 'http://127.0.0.1:8765',
|
|
requestJson: async (path, payload) => {
|
|
requests.push({ path, payload });
|
|
return { ok: false, error: 'SQL contains read/write operation: Insert' };
|
|
},
|
|
});
|
|
|
|
await expect(
|
|
port.validateReadOnly('with x as (insert into t values (1)) select * from x', 'postgres'),
|
|
).resolves.toEqual({
|
|
ok: false,
|
|
error: 'SQL contains read/write operation: Insert',
|
|
});
|
|
expect(requests).toEqual([
|
|
{
|
|
path: '/sql/validate-read-only',
|
|
payload: {
|
|
dialect: 'postgres',
|
|
sql: 'with x as (insert into t values (1)) select * from x',
|
|
},
|
|
},
|
|
]);
|
|
});
|
|
|
|
it('rejects malformed read-only validation responses', async () => {
|
|
const port = createHttpSqlAnalysisPort({
|
|
baseUrl: 'http://127.0.0.1:8765',
|
|
requestJson: async () => ({ ok: 'yes' }),
|
|
});
|
|
|
|
await expect(port.validateReadOnly('select 1', 'postgres')).rejects.toThrow(
|
|
'sql analysis response is missing boolean field ok',
|
|
);
|
|
});
|
|
|
|
it('rejects malformed SQL batch responses instead of inventing defaults', async () => {
|
|
const requestJson = vi.fn(async () => ({
|
|
results: {
|
|
orders: {
|
|
tables_touched: [{ catalog: null, db: 'public', name: 'orders' }],
|
|
columns_by_clause: { select: ['status'], where: [42] },
|
|
error: null,
|
|
},
|
|
},
|
|
}));
|
|
const port = createHttpSqlAnalysisPort({ baseUrl: 'http://python.test', requestJson });
|
|
|
|
await expect(port.analyzeBatch([{ id: 'orders', sql: 'select status from public.orders' }], 'postgres')).rejects
|
|
.toThrow('sql analysis response is missing string[] field columns_by_clause.where');
|
|
});
|
|
|
|
it('rejects malformed daemon responses instead of inventing defaults', async () => {
|
|
const requestJson = vi.fn(async () => ({
|
|
fingerprint: 'abc',
|
|
normalized_sql: 'SELECT ?',
|
|
tables_touched: 'orders',
|
|
literal_slots: [],
|
|
}));
|
|
const port = createHttpSqlAnalysisPort({ baseUrl: 'http://python.test', requestJson });
|
|
|
|
await expect(port.analyzeForFingerprint('SELECT 1', 'postgres')).rejects.toThrow(
|
|
'sql analysis response is missing string[] field tables_touched',
|
|
);
|
|
});
|
|
});
|