Implementeaza PRD 5.6 complet (14 stories, TDD). Doua axe:
Lifecycle trimiteri blocate (Val A):
- submissions_admin.py: sterge/repune scoped (404 cross-account inaintea lui 409 stare)
- reactivare dedup peste `error` cu CAS (WHERE id=? AND status='error'), creds noi in
submissions + accounts.rar_creds_enc; worker invalideaza sesiunea RAR la creds proaspete
(JWT 30h vechi nu mai trimite cu parola gresita); camp aditiv `reactivated:true`
- retentie randuri blocate 30z; purge_expired exclude queued/sending; purge_after curatat
la reactivare/requeue
- API DELETE /v1/prezentari/{id} + /repune (200+JSON); UI butoane + bulk + banner actionabil
Observabilitate:
- app/observ.py log_event: dublu canal app_events (DB) + RotatingFileHandler per-proces,
redactare creds/PII la scriere (redact_pii/vin_partial)
- request_id middleware + X-Request-ID pe toate raspunsurile
- handler global excepții -> 500 envelope 6-chei + request_id (traceback doar in jurnal)
- audit cerere API (api_prezentari/api_auth_esuat) + audit worker (rar_login/tranzitii)
- tab "Jurnal" filtrabil scoped (non-admin doar contul sau); retentie jurnal 90z
- rar_error expus in GET /v1/prezentari/{id} (recovery observabil)
pytest -q: 741 passed, 0 failed. Docs: PRD raport VERIFY, contract endpointuri noi, ROADMAP.
Co-Authored-By: Claude Opus 4.8 (1M context) <noreply@anthropic.com>
128 lines
4.2 KiB
Python
128 lines
4.2 KiB
Python
"""Teste US-012 (PRD 5.6): un rand `error` nu mai blocheaza retrimiterea (dedup).
|
|
|
|
La resubmit cu aceeasi cheie de continut peste un rand `error`: se RE-ACTIVEAZA
|
|
(reactivated:true + stare noua), creds-urile se actualizeaza. Peste sent/queued/
|
|
sending/needs_* ramane `deduped:true` (neschimbat).
|
|
"""
|
|
|
|
from __future__ import annotations
|
|
|
|
import os
|
|
import tempfile
|
|
|
|
import pytest
|
|
from fastapi.testclient import TestClient
|
|
|
|
|
|
@pytest.fixture()
|
|
def client(monkeypatch):
|
|
tmp = tempfile.mkdtemp()
|
|
monkeypatch.setenv("AUTOPASS_DB_PATH", os.path.join(tmp, "dedup.db"))
|
|
monkeypatch.setenv("AUTOPASS_LOG_DIR", os.path.join(tmp, "logs"))
|
|
monkeypatch.setenv("AUTOPASS_REQUIRE_API_KEY", "false")
|
|
from app.config import get_settings
|
|
get_settings.cache_clear()
|
|
from app.main import app
|
|
with TestClient(app) as c:
|
|
yield c
|
|
get_settings.cache_clear()
|
|
|
|
|
|
def _body(password="corecta", **over):
|
|
prez = {
|
|
"vin": "WVWZZZ1KZAW000123",
|
|
"nr_inmatriculare": "B999TST",
|
|
"data_prestatie": "2026-06-15",
|
|
"odometru_final": "123456",
|
|
"prestatii": [{"cod_prestatie": "OE-1"}],
|
|
}
|
|
prez.update(over)
|
|
return {"rar_credentials": {"email": "x@y.ro", "password": password}, "prezentari": [prez]}
|
|
|
|
|
|
def _force_status(sid, status):
|
|
from app.db import get_connection
|
|
conn = get_connection()
|
|
try:
|
|
conn.execute("UPDATE submissions SET status=? WHERE id=?", (status, sid))
|
|
conn.commit()
|
|
finally:
|
|
conn.close()
|
|
|
|
|
|
def _creds_enc(sid):
|
|
from app.db import get_connection
|
|
conn = get_connection()
|
|
try:
|
|
return conn.execute("SELECT rar_creds_enc FROM submissions WHERE id=?", (sid,)).fetchone()["rar_creds_enc"]
|
|
finally:
|
|
conn.close()
|
|
|
|
|
|
def test_resubmit_peste_error_reactiveaza(client):
|
|
r1 = client.post("/v1/prezentari", json=_body(password="gresita"))
|
|
sid = r1.json()["results"][0]["submission_id"]
|
|
_force_status(sid, "error")
|
|
|
|
r2 = client.post("/v1/prezentari", json=_body(password="corecta"))
|
|
res = r2.json()["results"][0]
|
|
assert res["submission_id"] == sid
|
|
assert res["reactivated"] is True
|
|
assert res["status"] == "queued"
|
|
assert res.get("deduped", False) is False
|
|
|
|
|
|
def test_resubmit_actualizeaza_creds_pe_reactivare(client):
|
|
r1 = client.post("/v1/prezentari", json=_body(password="gresita"))
|
|
sid = r1.json()["results"][0]["submission_id"]
|
|
enc_initial = _creds_enc(sid)
|
|
_force_status(sid, "error")
|
|
|
|
client.post("/v1/prezentari", json=_body(password="parolaNoua"))
|
|
enc_dupa = _creds_enc(sid)
|
|
assert enc_dupa is not None
|
|
assert enc_dupa != enc_initial, "creds-urile trebuie actualizate la reactivare"
|
|
# propagat si in accounts.rar_creds_enc (canal durabil, decizie #17)
|
|
from app.db import get_connection
|
|
from app.crypto import decrypt_creds
|
|
conn = get_connection()
|
|
try:
|
|
row = conn.execute("SELECT rar_creds_enc FROM accounts WHERE id=1").fetchone()
|
|
finally:
|
|
conn.close()
|
|
assert row["rar_creds_enc"] is not None
|
|
assert decrypt_creds(row["rar_creds_enc"])["password"] == "parolaNoua"
|
|
|
|
|
|
def test_resubmit_peste_sent_ramane_deduped(client):
|
|
r1 = client.post("/v1/prezentari", json=_body())
|
|
sid = r1.json()["results"][0]["submission_id"]
|
|
_force_status(sid, "sent")
|
|
r2 = client.post("/v1/prezentari", json=_body())
|
|
res = r2.json()["results"][0]
|
|
assert res["submission_id"] == sid
|
|
assert res["deduped"] is True
|
|
assert res.get("reactivated", False) is False
|
|
assert res["status"] == "sent"
|
|
|
|
|
|
def test_resubmit_peste_queued_ramane_deduped(client):
|
|
r1 = client.post("/v1/prezentari", json=_body())
|
|
sid = r1.json()["results"][0]["submission_id"]
|
|
# ramane queued
|
|
r2 = client.post("/v1/prezentari", json=_body())
|
|
res = r2.json()["results"][0]
|
|
assert res["submission_id"] == sid
|
|
assert res["deduped"] is True
|
|
assert res.get("reactivated", False) is False
|
|
|
|
|
|
def test_resubmit_peste_needs_data_ramane_deduped(client):
|
|
r1 = client.post("/v1/prezentari", json=_body())
|
|
sid = r1.json()["results"][0]["submission_id"]
|
|
_force_status(sid, "needs_data")
|
|
r2 = client.post("/v1/prezentari", json=_body())
|
|
res = r2.json()["results"][0]
|
|
assert res["deduped"] is True
|
|
assert res.get("reactivated", False) is False
|