Some checks failed
CICD Start / Sanity and Base Decision (push) Successful in 18s
Runner Canary / Canary Heavy (ubuntu-act-8gb) (push) Has been skipped
Runner Canary / Canary Heavy (ubuntu-act-4gb) (push) Has been skipped
Runner Canary / Canary Burst (ubuntu-act (push) Failing after 11m10s
Runner Canary / Canary (ubuntu-latest) (push) Failing after 12m39s
Runner Canary / Canary (ubuntu-act) (push) Failing after 12m42s
Signed-off-by: Cliff Hill <xlorep@darkhelm.org> ## Summary Upgrades backend runtime baseline and dependency management for issue #10. ### Changes 1. **Python Baseline**: Updated from 3.13 to 3.14 - Updated `backend/pyproject.toml` requires-python constraint - Updated `backend/pyrightconfig.json` pythonVersion - Updated all Dockerfile and CI references 2. **Dependency Pinning**: Switched to exact version pins in `backend/pyproject.toml` - All dev and runtime dependencies now use `==` instead of `>=` - `fastapi==0.120.2`, `uvicorn==0.38.0` - ruff, pyright, pytest suite pinned to current resolved versions - Regenerated `backend/uv.lock` under Python 3.14 3. **Startup Compatibility Guard** (TDD via RED→GREEN) - New `compatibility_status()` function evaluates runtime and pinned deps - Startup raises `RuntimeError` if policy fails - Implemented via FastAPI lifespan (non-deprecated) handler 4. **Compatibility Status Endpoint** - New `GET /compatibility` returns policy status, runtime version, and package checks - Shares single source of truth with startup validation 5. **Integration Tests** - Added failing-then-passing tests for startup guard and endpoint behavior - 100% coverage maintained 6. **Direnv Configuration** - Added `UV_PYTHON="3.14"` pin to repo `.envrc` - Ensures direnv creates/recreates venv with correct Python version ### Validation - ✅ ruff format/check - ✅ pyright strict (0 errors) - ✅ pytest: 8 passed, 100% coverage (>=95 gate) - ✅ pydoclint: pass - ✅ xdoctest: pass ### Notes - SQLAlchemy/SQLModel introduction deferred to next pass per scope - Compatibility logic currently validates fastapi/uvicorn pins (runtime deps) - Ready for container build validation and Renovate bot testing Co-authored-by: copilotcoder <copilotcoder@darkhelm.org> Reviewed-on: #57 Co-authored-by: Cliff Hill <xlorep@darkhelm.org> Co-committed-by: Cliff Hill <xlorep@darkhelm.org>
84 lines
2.0 KiB
Plaintext
Executable File
84 lines
2.0 KiB
Plaintext
Executable File
#!/usr/bin/env xonsh
|
|
|
|
import hashlib
|
|
import pathlib
|
|
import re
|
|
import shlex
|
|
import sys
|
|
|
|
HOSTS = [
|
|
'kankali.darkhelm.lan',
|
|
'zhokq.darkhelm.lan',
|
|
'urtzul.darkhelm.lan',
|
|
'pi-desktop.darkhelm.lan',
|
|
]
|
|
|
|
FILES = [
|
|
'frontend/src/main.test.ts',
|
|
'frontend/src/main.ts',
|
|
'frontend/src/test-setup.ts',
|
|
'frontend/src/validation.test.ts',
|
|
'frontend/src/validation.ts',
|
|
]
|
|
|
|
REGISTRY_IMAGE = 'kankali.darkhelm.lan:3001/darkhelm.org/plex-playlist-cicd'
|
|
|
|
def local_hashes(root: pathlib.Path):
|
|
out = {}
|
|
for rel in FILES:
|
|
p = root / rel
|
|
out[rel] = hashlib.sha256(p.read_bytes()).hexdigest()
|
|
return out
|
|
|
|
def remote_hashes(host: str, image_tag: str):
|
|
files = ' '.join(FILES)
|
|
cmd = (
|
|
f"docker pull {image_tag} >/dev/null && "
|
|
f"docker run --rm --entrypoint /bin/sh {image_tag} "
|
|
f"-c {shlex.quote('cd /workspace && sha256sum ' + files)}"
|
|
)
|
|
run = !(ssh -T @(host) sh -lc @(cmd))
|
|
if run.returncode != 0:
|
|
return None, str(run.out).strip()
|
|
|
|
hashes = {}
|
|
for line in str(run.out).splitlines():
|
|
m = re.match(r'^([0-9a-f]{64})\s+(.+)$', line.strip())
|
|
if m:
|
|
hashes[m.group(2)] = m.group(1)
|
|
return hashes, ''
|
|
|
|
arg = sys.argv[1] if len(sys.argv) > 1 else 'latest'
|
|
image = f'{REGISTRY_IMAGE}:{arg}'
|
|
|
|
root = pathlib.Path.cwd()
|
|
local = local_hashes(root)
|
|
|
|
print(f'image={image}')
|
|
print('local hashes:')
|
|
for f in FILES:
|
|
print(f' {f} {local[f]}')
|
|
|
|
for host in HOSTS:
|
|
print(f'\n=== {host} ===')
|
|
rh, err = remote_hashes(host, image)
|
|
if rh is None:
|
|
print('REMOTE_CHECK_FAILED')
|
|
if err:
|
|
print(err)
|
|
continue
|
|
|
|
mismatches = 0
|
|
for f in FILES:
|
|
lv = local.get(f, '<missing>')
|
|
rv = rh.get(f, '<missing>')
|
|
status = 'MATCH' if lv == rv else 'MISMATCH'
|
|
if status == 'MISMATCH':
|
|
mismatches += 1
|
|
print(f'{status} {f} local={lv} remote={rv}')
|
|
|
|
if mismatches == 0:
|
|
print('RESULT:ALL_MATCH')
|
|
else:
|
|
print(f'RESULT:MISMATCHES={mismatches}')
|