mirror of
https://github.com/Kaelio/ktx.git
synced 2026-07-01 08:59:39 +02:00
* refactor(connectors): split KtxDialect into core and KtxSqlDialect Separate the dialect contract into a driver-agnostic core (display/ref formatting and type mapping) and a SQL-only extension (query generators). The catalog and entity-details paths resolve the core dialect for any snapshot driver, so it must stay free of SQL generation; this is the prerequisite refactor for adding non-SQL primary sources. - KtxDialect keeps type, formatDisplayRef, parseDisplayRef, columnDisplayTablePartCount, mapDataType, mapToDimensionType - KtxSqlDialect extends it with quoteIdentifier, formatTableName, and the query/sample/statistics generators; the 7 SQL dialects implement it - add getSqlDialectForDriver for SQL drivers; the 7 connectors and the relationship-benchmark harness consume it - thread the relationship pipeline (profiling/validation/composite/ discovery) as KtxSqlDialect | null so a non-SQL source skips coverage SQL and its candidates stay in review; local-enrichment builds the SQL dialect only when the connector advertises readOnlySql Pure extraction: no behavior change for the existing 7 drivers. Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com> * feat(connectors): add MongoDB connector for issue #305 Add a read-only MongoDB connector that treats a database as a primary context source: collections map to tables and inferred top-level fields to columns. MongoDB is the first non-SQL source (readOnlySql: false), so ktx sql and metric compilation do not apply, but its collections flow through ingest, descriptions, and relationship discovery. - schema-inference: infer a flat column schema from the most recent sample_size documents (by _id desc, or order_by for non-ObjectId keys). Union BSON types per field, mark multi-type fields mixed (string), keep sub-documents/arrays as a single opaque json column, derive nullability from presence, treat _id as the primary key - connector: KtxMongoDbScanConnector behind an injectable client seam; strictly read-only (find/listCollections/estimatedDocumentCount only), no executeReadOnly; resolves env:/file: via resolveKtxConfigReference - core-only KtxMongoDbDialect and a live-database introspection adapter - wire the mongodb driver: driver union, dialect registry, driver registration (scopeConfigKey databases), mongodbConnectionSchema, connection-drivers, normalizeDriver, the live-database route, and the ktx setup picker. ktx sql is refused by the read-only SQL capability gate - tests: schema inference, connector snapshot via a fake client, dialect, driver-schema parsing, and the ktx sql rejection Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com> * docs(integrations): document the MongoDB primary source Add a MongoDB section to the primary-sources reference: connection config (url, databases, enabled_tables, sample_size, order_by), mongodb+srv/TLS/ Atlas notes, the schema-inference explainer, a features matrix, and the non-SQL caveat. Update the frontmatter and connection field reference. Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com> * fix(connectors): address review blockers on the MongoDB connector - introspect: skip estimatedDocumentCount for views. The count command is rejected on a MongoDB view (CommandNotSupportedOnView), so counting a view aborted introspect for the whole connection; compute estimatedRows only for real collections, as ClickHouse does. - sl: refuse a semantic-layer query against a non-SQL connection instead of defaulting it to the Postgres dialect. compileLocalSlQuery (the shared CLI + MCP path) now rejects a driver with no SQL dialect via the new isSqlQueryableDriver authority, keeping MongoDB context-only per issue #305. - tests: cover input.tableScope and the empty-scope skip for the Mongo connector (the scan layer does not post-filter), the view no-count path, and the ktx sl query refusal for a mongodb connection. Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com> * polish(mongodb): compute sampled nullCount and document sampling caveats Address the non-blocking review notes: - sampleColumn now counts null/absent values over the sampled window instead of returning nullCount: null, since the documents are already in hand - warn that a custom order_by must be indexed (an unindexed sort hits MongoDB's in-memory sort limit on large collections) in the connection schema and docs - note that sampled values for nested fields are stringified, not faithfully serialized, so the json opacity is deliberate Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com> * docs(examples): add a MongoDB connector example A manual, container-backed example mirroring examples/postgres-historic: - docker-compose.yml + init/seed.js seed a representative dataset (nested documents, arrays, a Decimal128, a mixed-type field, a nullable field, an ObjectId reference, and a view) on first container start - scripts/smoke.sh + introspect-smoke.mjs assert the connector's inferred schema with no LLM credentials — the same introspection entry point ktx ingest's database-schema stage uses, including the view-no-count path - README.md documents the smoke and a full keyless ktx ingest run (claude-code LLM + managed sentence-transformers embeddings) Works with Docker Compose or podman compose. Verified end to end. Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com> * chore: ignore examples/** in knip to fix dead-code false positives The MongoDB connector example files (examples/mongodb/init/seed.js and examples/mongodb/scripts/introspect-smoke.mjs) are used at runtime but were flagged as unused by knip. Add examples/** to the ignore array, matching the existing .context/** entry. Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com> Claude-Session: https://claude.ai/code/session_0114qQV8fJ5a5ME3XbMVRzbL * fix(mongodb): refuse non-SQL connections before SQL analysis `ktx sql` and the MCP sql_execution tool resolved a SQL-analysis dialect (falling back to Postgres for a non-SQL driver) and ran read-only validation before the connector capability gate refused the connection. For a MongoDB connection that spun up the parser/daemon and produced Postgres parser diagnostics instead of a clean non-SQL refusal. Route both entry points through a shared assertSqlQueryableConnection guard before dialect selection, mirroring compileLocalSlQuery. The federated duckdb path has no driver and is exempted at each call site. Add CLI and MCP regression tests asserting validation/connector work never starts for a MongoDB connection. * fix(mongodb): pass CI gates (dialect boundary, secrets, setup test) Three latent failures in the connector surfaced once CI ran on the branch: - connector.ts imported the concrete KtxMongoDbDialect, which the connector dialect-import boundary forbids. Route it through getDialectForDriver('mongodb') and widen inferKtxMongoCollectionColumns to the base KtxDialect (it only uses mapDataType/mapToDimensionType). - detect-secrets flagged a test ObjectId hex and the mongodb+srv example URL; annotate both with allowlist pragmas. - the "shows every supported database" setup test omitted the new MongoDB option. --------- Co-authored-by: Claude Opus 4.8 (1M context) <noreply@anthropic.com> Co-authored-by: Luca Martial <48870843+luca-martial@users.noreply.github.com> Co-authored-by: Luca Martial <lucamrtl@gmail.com> Co-authored-by: Andrey Avtomonov <andreybavt@gmail.com>
436 lines
14 KiB
TypeScript
436 lines
14 KiB
TypeScript
import { mkdtemp, readFile, rm, writeFile } from 'node:fs/promises';
|
|
import { tmpdir } from 'node:os';
|
|
import { join } from 'node:path';
|
|
import { initKtxProject } from '../src/context/project/project.js';
|
|
import { parseKtxProjectConfig, serializeKtxProjectConfig } from '../src/context/project/config.js';
|
|
import type { KtxScanConnector } from '../src/context/scan/types.js';
|
|
import type { SqlAnalysisPort } from '../src/context/sql-analysis/ports.js';
|
|
import { afterEach, beforeEach, describe, expect, it, vi } from 'vitest';
|
|
import { runKtxSql } from '../src/sql.js';
|
|
|
|
const reportExceptionMock = vi.hoisted(() => vi.fn(async () => {}));
|
|
|
|
vi.mock('../src/telemetry/exception.js', () => ({
|
|
reportException: reportExceptionMock,
|
|
}));
|
|
|
|
function makeIo(options: { isTTY?: boolean } = {}) {
|
|
let stdout = '';
|
|
let stderr = '';
|
|
return {
|
|
io: {
|
|
stdout: {
|
|
isTTY: options.isTTY,
|
|
write: (chunk: string) => {
|
|
stdout += chunk;
|
|
},
|
|
},
|
|
stderr: {
|
|
write: (chunk: string) => {
|
|
stderr += chunk;
|
|
},
|
|
},
|
|
},
|
|
stdout: () => stdout,
|
|
stderr: () => stderr,
|
|
};
|
|
}
|
|
|
|
function makeSqlAnalysis(result: Awaited<ReturnType<SqlAnalysisPort['validateReadOnly']>>): SqlAnalysisPort {
|
|
return {
|
|
analyzeForFingerprint: vi.fn(),
|
|
analyzeBatch: vi.fn(async () => new Map([['cli-sql', { tablesTouched: [{ catalog: null, db: null, name: 'orders' }], columnsByClause: {} }]])),
|
|
validateReadOnly: vi.fn(async () => result),
|
|
};
|
|
}
|
|
|
|
function makeConnector(overrides: Partial<KtxScanConnector> = {}): KtxScanConnector {
|
|
return {
|
|
id: 'sqlite:warehouse',
|
|
driver: 'sqlite',
|
|
capabilities: {
|
|
structuralIntrospection: true,
|
|
tableSampling: true,
|
|
columnSampling: true,
|
|
columnStats: true,
|
|
readOnlySql: true,
|
|
nestedAnalysis: false,
|
|
eventStreamDiscovery: false,
|
|
formalForeignKeys: true,
|
|
estimatedRowCounts: true,
|
|
},
|
|
introspect: vi.fn(),
|
|
executeReadOnly: vi.fn(async () => ({
|
|
headers: ['id', 'status'],
|
|
headerTypes: ['integer', 'text'],
|
|
rows: [
|
|
[1, 'paid'],
|
|
[2, 'open'],
|
|
],
|
|
totalRows: 2,
|
|
rowCount: 2,
|
|
})),
|
|
cleanup: vi.fn(async () => undefined),
|
|
...overrides,
|
|
listSchemas: overrides.listSchemas ?? vi.fn(async () => []),
|
|
listTables: overrides.listTables ?? vi.fn(async () => []),
|
|
};
|
|
}
|
|
|
|
describe('runKtxSql', () => {
|
|
let tempDir: string;
|
|
|
|
beforeEach(async () => {
|
|
tempDir = await mkdtemp(join(tmpdir(), 'ktx-cli-sql-'));
|
|
reportExceptionMock.mockClear();
|
|
});
|
|
|
|
afterEach(async () => {
|
|
vi.unstubAllEnvs();
|
|
await rm(tempDir, { recursive: true, force: true });
|
|
});
|
|
|
|
async function writeConnections(
|
|
projectDir: string,
|
|
connections: ReturnType<typeof parseKtxProjectConfig>['connections'],
|
|
): Promise<void> {
|
|
const config = parseKtxProjectConfig(await readFile(join(projectDir, 'ktx.yaml'), 'utf-8'));
|
|
await writeFile(join(projectDir, 'ktx.yaml'), serializeKtxProjectConfig({ ...config, connections }), 'utf-8');
|
|
}
|
|
|
|
it('validates SQL, executes through the scan connector, and prints a pretty table', async () => {
|
|
const projectDir = join(tempDir, 'project');
|
|
await initKtxProject({ projectDir });
|
|
await writeConnections(projectDir, { warehouse: { driver: 'sqlite', path: 'warehouse.db' } });
|
|
const sqlAnalysis = makeSqlAnalysis({ ok: true, error: null });
|
|
const connector = makeConnector();
|
|
const createScanConnector = vi.fn(async () => connector);
|
|
const io = makeIo();
|
|
|
|
await expect(
|
|
runKtxSql(
|
|
{
|
|
command: 'execute',
|
|
projectDir,
|
|
connectionId: 'warehouse',
|
|
sql: 'select id, status from orders',
|
|
maxRows: 1000,
|
|
output: 'pretty',
|
|
json: false,
|
|
cliVersion: '0.0.0-test',
|
|
},
|
|
io.io,
|
|
{
|
|
createSqlAnalysis: () => sqlAnalysis,
|
|
createScanConnector,
|
|
},
|
|
),
|
|
).resolves.toBe(0);
|
|
|
|
expect(sqlAnalysis.validateReadOnly).toHaveBeenCalledWith('select id, status from orders', 'sqlite');
|
|
expect(createScanConnector).toHaveBeenCalledWith(expect.objectContaining({ projectDir }), 'warehouse');
|
|
expect(connector.executeReadOnly).toHaveBeenCalledWith(
|
|
{ connectionId: 'warehouse', sql: 'select id, status from orders', maxRows: 1000 },
|
|
{ runId: 'cli-sql' },
|
|
);
|
|
expect(connector.cleanup).toHaveBeenCalledTimes(1);
|
|
expect(io.stdout()).toContain('id status');
|
|
expect(io.stdout()).toContain('1 paid');
|
|
expect(io.stdout()).toContain('2 open');
|
|
expect(io.stdout()).toContain('2 rows');
|
|
expect(io.stderr()).toBe('');
|
|
});
|
|
|
|
it('emits debug telemetry for SQL without raw query text', async () => {
|
|
vi.stubEnv('KTX_TELEMETRY_DEBUG', '1');
|
|
vi.stubEnv('CI', '');
|
|
const projectDir = join(tempDir, 'project');
|
|
await initKtxProject({ projectDir });
|
|
await writeConnections(projectDir, { warehouse: { driver: 'sqlite', path: 'warehouse.db' } });
|
|
const io = makeIo({ isTTY: true });
|
|
|
|
await expect(
|
|
runKtxSql(
|
|
{
|
|
command: 'execute',
|
|
projectDir,
|
|
connectionId: 'warehouse',
|
|
sql: 'select count(*) from orders',
|
|
maxRows: 10,
|
|
output: 'json',
|
|
json: true,
|
|
cliVersion: '0.0.0-test',
|
|
},
|
|
io.io,
|
|
{
|
|
createSqlAnalysis: () => makeSqlAnalysis({ ok: true, error: null }),
|
|
createScanConnector: vi.fn(async () => makeConnector()),
|
|
},
|
|
),
|
|
).resolves.toBe(0);
|
|
|
|
expect(io.stderr()).toContain('"event":"sql_completed"');
|
|
expect(io.stderr()).toContain('"queryVerb":"select"');
|
|
expect(io.stderr()).not.toContain('select count(*)');
|
|
});
|
|
|
|
it('prints JSON output', async () => {
|
|
const projectDir = join(tempDir, 'project');
|
|
await initKtxProject({ projectDir });
|
|
await writeConnections(projectDir, { warehouse: { driver: 'sqlite', path: 'warehouse.db' } });
|
|
const io = makeIo();
|
|
|
|
await expect(
|
|
runKtxSql(
|
|
{
|
|
command: 'execute',
|
|
projectDir,
|
|
connectionId: 'warehouse',
|
|
sql: 'select id from orders',
|
|
maxRows: 10,
|
|
output: undefined,
|
|
json: true,
|
|
cliVersion: '0.0.0-test',
|
|
},
|
|
io.io,
|
|
{
|
|
createSqlAnalysis: () => makeSqlAnalysis({ ok: true, error: null }),
|
|
createScanConnector: vi.fn(async () => makeConnector()),
|
|
},
|
|
),
|
|
).resolves.toBe(0);
|
|
|
|
expect(JSON.parse(io.stdout())).toEqual({
|
|
connectionId: 'warehouse',
|
|
headers: ['id', 'status'],
|
|
headerTypes: ['integer', 'text'],
|
|
rows: [
|
|
[1, 'paid'],
|
|
[2, 'open'],
|
|
],
|
|
rowCount: 2,
|
|
});
|
|
});
|
|
|
|
it('prints plain TSV output', async () => {
|
|
const projectDir = join(tempDir, 'project');
|
|
await initKtxProject({ projectDir });
|
|
await writeConnections(projectDir, { warehouse: { driver: 'sqlite', path: 'warehouse.db' } });
|
|
const io = makeIo();
|
|
|
|
await expect(
|
|
runKtxSql(
|
|
{
|
|
command: 'execute',
|
|
projectDir,
|
|
connectionId: 'warehouse',
|
|
sql: 'select id from orders',
|
|
maxRows: 10,
|
|
output: 'plain',
|
|
json: false,
|
|
cliVersion: '0.0.0-test',
|
|
},
|
|
io.io,
|
|
{
|
|
createSqlAnalysis: () => makeSqlAnalysis({ ok: true, error: null }),
|
|
createScanConnector: vi.fn(async () => makeConnector()),
|
|
},
|
|
),
|
|
).resolves.toBe(0);
|
|
|
|
expect(io.stdout()).toBe('id\tstatus\n1\tpaid\n2\topen\n');
|
|
expect(io.stderr()).toBe('');
|
|
});
|
|
|
|
it('rejects non-read-only SQL before executing connector SQL', async () => {
|
|
vi.stubEnv('SQL_DB_PASSWORD', 'sql-db-password'); // pragma: allowlist secret
|
|
const projectDir = join(tempDir, 'project');
|
|
await initKtxProject({ projectDir });
|
|
await writeConnections(projectDir, { warehouse: { driver: 'postgres', password: 'env:SQL_DB_PASSWORD' } }); // pragma: allowlist secret
|
|
const connector = makeConnector();
|
|
const io = makeIo();
|
|
|
|
await expect(
|
|
runKtxSql(
|
|
{
|
|
command: 'execute',
|
|
projectDir,
|
|
connectionId: 'warehouse',
|
|
sql: 'delete from orders',
|
|
maxRows: 1000,
|
|
output: 'pretty',
|
|
json: false,
|
|
cliVersion: '0.0.0-test',
|
|
},
|
|
io.io,
|
|
{
|
|
createSqlAnalysis: () => makeSqlAnalysis({ ok: false, error: 'SQL contains read/write operation: Delete' }),
|
|
createScanConnector: vi.fn(async () => connector),
|
|
},
|
|
),
|
|
).resolves.toBe(1);
|
|
|
|
expect(connector.executeReadOnly).not.toHaveBeenCalled();
|
|
expect(connector.cleanup).not.toHaveBeenCalled();
|
|
expect(io.stderr()).toContain('SQL contains read/write operation: Delete');
|
|
expect(reportExceptionMock).toHaveBeenCalledWith(
|
|
expect.objectContaining({
|
|
context: expect.objectContaining({ source: 'sql run', handled: true, fatal: false }),
|
|
projectDir,
|
|
redactionSecrets: expect.arrayContaining(['sql-db-password']),
|
|
}),
|
|
);
|
|
});
|
|
|
|
it('rejects missing connections', async () => {
|
|
const projectDir = join(tempDir, 'project');
|
|
await initKtxProject({ projectDir });
|
|
const io = makeIo();
|
|
|
|
await expect(
|
|
runKtxSql(
|
|
{
|
|
command: 'execute',
|
|
projectDir,
|
|
connectionId: 'warehouse',
|
|
sql: 'select 1',
|
|
maxRows: 1000,
|
|
output: 'pretty',
|
|
json: false,
|
|
cliVersion: '0.0.0-test',
|
|
},
|
|
io.io,
|
|
{
|
|
createSqlAnalysis: () => makeSqlAnalysis({ ok: true, error: null }),
|
|
},
|
|
),
|
|
).resolves.toBe(1);
|
|
|
|
expect(io.stderr()).toContain(
|
|
'Connection "warehouse" is not configured in ktx.yaml. No connections are configured in ktx.yaml.',
|
|
);
|
|
});
|
|
|
|
it('rejects connectors without read-only SQL support and still cleans up', async () => {
|
|
const projectDir = join(tempDir, 'project');
|
|
await initKtxProject({ projectDir });
|
|
await writeConnections(projectDir, { warehouse: { driver: 'sqlite', path: 'warehouse.db' } });
|
|
const connector = makeConnector({
|
|
capabilities: {
|
|
...makeConnector().capabilities,
|
|
readOnlySql: false,
|
|
},
|
|
});
|
|
const io = makeIo();
|
|
|
|
await expect(
|
|
runKtxSql(
|
|
{
|
|
command: 'execute',
|
|
projectDir,
|
|
connectionId: 'warehouse',
|
|
sql: 'select 1',
|
|
maxRows: 1000,
|
|
output: 'pretty',
|
|
json: false,
|
|
cliVersion: '0.0.0-test',
|
|
},
|
|
io.io,
|
|
{
|
|
createSqlAnalysis: () => makeSqlAnalysis({ ok: true, error: null }),
|
|
createScanConnector: vi.fn(async () => connector),
|
|
},
|
|
),
|
|
).resolves.toBe(1);
|
|
|
|
expect(connector.executeReadOnly).not.toHaveBeenCalled();
|
|
expect(connector.cleanup).toHaveBeenCalledTimes(1);
|
|
expect(io.stderr()).toContain('does not support read-only SQL execution.');
|
|
});
|
|
|
|
it('refuses a non-SQL (MongoDB) connection before invoking SQL analysis', async () => {
|
|
const projectDir = join(tempDir, 'project');
|
|
await initKtxProject({ projectDir });
|
|
await writeConnections(projectDir, { mongo: { driver: 'mongodb', url: 'mongodb://localhost:27017/app' } });
|
|
const sqlAnalysis = makeSqlAnalysis({ ok: true, error: null });
|
|
const createSqlAnalysis = vi.fn(() => sqlAnalysis);
|
|
const createScanConnector = vi.fn(async () => makeConnector());
|
|
const io = makeIo();
|
|
|
|
await expect(
|
|
runKtxSql(
|
|
{
|
|
command: 'execute',
|
|
projectDir,
|
|
connectionId: 'mongo',
|
|
sql: 'select 1',
|
|
maxRows: 1000,
|
|
output: 'pretty',
|
|
json: false,
|
|
cliVersion: '0.0.0-test',
|
|
},
|
|
io.io,
|
|
{ createSqlAnalysis, createScanConnector },
|
|
),
|
|
).resolves.toBe(1);
|
|
|
|
// The non-SQL boundary is enforced before any SQL parser/daemon work, so a
|
|
// MongoDB connection never reaches dialect selection or read-only validation.
|
|
expect(createSqlAnalysis).not.toHaveBeenCalled();
|
|
expect(sqlAnalysis.validateReadOnly).not.toHaveBeenCalled();
|
|
expect(createScanConnector).not.toHaveBeenCalled();
|
|
expect(io.stderr()).toContain("non-SQL driver 'mongodb'");
|
|
});
|
|
|
|
it('routes _ktx_federated through the shared federated executor', async () => {
|
|
const projectDir = join(tempDir, 'project');
|
|
await initKtxProject({ projectDir });
|
|
await writeConnections(projectDir, {
|
|
books_db: { driver: 'sqlite', path: 'books.db' },
|
|
reviews_db: { driver: 'sqlite', path: 'reviews.db' },
|
|
});
|
|
const executeFederated = vi.fn(async () => ({
|
|
headers: ['title', 'rating'],
|
|
rows: [['Clean Code', 5]],
|
|
totalRows: 1,
|
|
command: 'SELECT',
|
|
rowCount: 1,
|
|
}));
|
|
const memberConnector = makeConnector({
|
|
executeReadOnly: vi.fn(async () => {
|
|
throw new Error('member connector must not be used for federated id');
|
|
}),
|
|
});
|
|
const io = makeIo();
|
|
|
|
await expect(
|
|
runKtxSql(
|
|
{
|
|
command: 'execute',
|
|
projectDir,
|
|
connectionId: '_ktx_federated',
|
|
sql: 'select 1',
|
|
maxRows: 100,
|
|
output: 'json',
|
|
json: true,
|
|
cliVersion: '0.0.0-test',
|
|
},
|
|
io.io,
|
|
{
|
|
createSqlAnalysis: () => makeSqlAnalysis({ ok: true, error: null }),
|
|
createScanConnector: vi.fn(async () => memberConnector),
|
|
executeFederated,
|
|
},
|
|
),
|
|
).resolves.toBe(0);
|
|
|
|
expect(executeFederated).toHaveBeenCalledTimes(1);
|
|
expect(memberConnector.executeReadOnly).not.toHaveBeenCalled();
|
|
expect(JSON.parse(io.stdout())).toEqual({
|
|
connectionId: '_ktx_federated',
|
|
headers: ['title', 'rating'],
|
|
rows: [['Clean Code', 5]],
|
|
rowCount: 1,
|
|
});
|
|
});
|
|
});
|