feat: auth by default, theme toggle, CoderPad startup, review fixes
- Require a session on every route; public routes opt out with @allow_anonymous - Split password hashing and pepper loading into passwords.py - Add a system/light/dark theme toggle backed by light-dark() colors - Ignore stale 401s from an earlier session, PATCH only changed book fields, and block overlapping journal-entry saves - Add bin/start and CoderPad Vite server settings for the pad's start/restart - Rewrite README as a mise onboarding guide; expand .gitignore - Include review-round fixes and tests
This commit is contained in:
@@ -1,6 +1,10 @@
|
||||
import os
|
||||
import subprocess
|
||||
import sys
|
||||
from pathlib import Path
|
||||
|
||||
from tests.support import HTTPS, ApiTestCase, db_execute
|
||||
import db
|
||||
from tests.support import HTTPS, ApiTestCase, app, db_execute
|
||||
|
||||
SCHEMA = Path(__file__).parent.parent / "schema.sql"
|
||||
|
||||
@@ -43,3 +47,29 @@ class AppTests(ApiTestCase):
|
||||
)
|
||||
self.assertEqual(response.status_code, 413)
|
||||
self.assertIn("error", response.get_json())
|
||||
|
||||
|
||||
class ConnectionReleaseTests(ApiTestCase):
|
||||
def test_closed_connection_is_discarded_instead_of_leaking_a_pool_slot(self):
|
||||
pool = app.extensions["db_pool"]
|
||||
with self.assertLogs("db", "WARNING"):
|
||||
for _ in range(pool.maxconn + 1):
|
||||
with app.app_context():
|
||||
db.query("SELECT 1")
|
||||
db._connection().close()
|
||||
with app.app_context():
|
||||
self.assertEqual(db.query("SELECT 1 AS one"), [{"one": 1}])
|
||||
|
||||
|
||||
class AppFactoryTests(ApiTestCase):
|
||||
def test_importing_the_app_module_does_not_connect_to_the_database(self):
|
||||
result = subprocess.run(
|
||||
[sys.executable, "-c", "import app"],
|
||||
cwd=Path(__file__).parent.parent,
|
||||
env=os.environ | {"DATABASE_URL": "postgresql://[email protected]:9/none"},
|
||||
capture_output=True,
|
||||
text=True,
|
||||
timeout=30,
|
||||
check=False,
|
||||
)
|
||||
self.assertEqual(result.returncode, 0, result.stderr)
|
||||
|
||||
Reference in New Issue
Block a user