mirror of
https://github.com/NousResearch/hermes-agent.git
synced 2026-07-31 19:16:29 +00:00
- Remove tests/-shadowing sys.path.insert(dirname/'..') from 11 test files: it prepended the tests/ dir itself to sys.path, so 'import agent' / 'import hermes_cli' resolved to the test packages and collection died with ModuleNotFoundError depending on import order (2 files failed in every full-suite run; 9 more were latent). - Patch call_llm in 5 context-compressor tests that called compress() unmocked: each burned ~50s attempting live LLM traffic through the relay before falling back (572s file — the slowest in the suite, and flaky under the 300s per-file timeout). File now runs in ~5s. - agent/redact.py: fix two catastrophically-backtracking regexes hit by the compressor's redaction pass on large payloads — _STRICT_URL_USERINFO_RE anchors on the mandatory '//' (optional-scheme prefix backtracked O(n^2): ~55s on a 320KB payload, now sub-ms; output-equivalence fuzz-verified on 20k random strings), and the _CFG_DOTTED_RE/_CFG_ANCHORED_RE subs gain an exact linear keyword pre-gate so secret-free text skips the quadratic pattern entirely. - tests/gateway/test_feishu.py: version-guard the extra_ua_tags SDK signature check; the repo pins lark-oapi==1.6.8 but stale local installs (1.5.3) fail the assertion — skip below the pin. - tests/tools/test_managed_browserbase_and_modal.py: stub agent.redact + agent.credential_persistence in the fake agent package (empty __path__ blocks all real agent.* imports added since the fake was written). - tests/gateway/test_startup_restart_race.py: raise wait_for timeouts 2s -> 30s; 2s wall-clock on a loaded 40-worker box flaked in the baseline run (passes instantly when the box is quiet).
55 lines
1.6 KiB
Python
55 lines
1.6 KiB
Python
"""Tests for _resolve_requests_verify() env var precedence.
|
|
|
|
Verifies that custom provider `/models` fetches honour the three supported
|
|
CA bundle env vars (HERMES_CA_BUNDLE, REQUESTS_CA_BUNDLE, SSL_CERT_FILE)
|
|
in the documented priority order, and that non-existent paths are
|
|
skipped gracefully rather than breaking the request.
|
|
|
|
No filesystem or network I/O required — we use tmp_path to create real
|
|
CA bundle stand-in files and monkeypatch env vars.
|
|
"""
|
|
|
|
from pathlib import Path
|
|
|
|
|
|
import pytest
|
|
|
|
from agent.model_metadata import _resolve_requests_verify
|
|
|
|
|
|
_CA_ENV_VARS = ("HERMES_CA_BUNDLE", "REQUESTS_CA_BUNDLE", "SSL_CERT_FILE")
|
|
|
|
|
|
@pytest.fixture
|
|
def clean_env(monkeypatch):
|
|
"""Clear all three SSL env vars so each test starts from a known state."""
|
|
for var in _CA_ENV_VARS:
|
|
monkeypatch.delenv(var, raising=False)
|
|
return monkeypatch
|
|
|
|
|
|
@pytest.fixture
|
|
def bundle_file(tmp_path: Path) -> str:
|
|
"""Create a placeholder CA bundle file and return its absolute path."""
|
|
path = tmp_path / "ca.pem"
|
|
path.write_text("-----BEGIN CERTIFICATE-----\nstub\n-----END CERTIFICATE-----\n")
|
|
return str(path)
|
|
|
|
|
|
class TestResolveRequestsVerify:
|
|
def test_no_env_returns_true(self, clean_env):
|
|
assert _resolve_requests_verify() is True
|
|
|
|
|
|
|
|
|
|
def test_priority_hermes_over_requests(self, clean_env, tmp_path, bundle_file):
|
|
other = tmp_path / "other.pem"
|
|
other.write_text("stub")
|
|
clean_env.setenv("HERMES_CA_BUNDLE", bundle_file)
|
|
clean_env.setenv("REQUESTS_CA_BUNDLE", str(other))
|
|
assert _resolve_requests_verify() == bundle_file
|
|
|
|
|
|
|
|
|