Files
Palash Debnath 3008f89919 feat(catalogue): engine list + detail, weights under their engine
The engine matrix (five columns, three-line rows, every chip on every row)
becomes a shadcn table with three columns — Engine · Runs on · Status — and
one primary action per row (Use / Install). Everything else lives in a
detail panel for the selected row: GPU compatibility chips, isolation,
hints and reasons, health and self-test probes, one-click install
progress, setup snippet, disk usage, docs, license, the curated-model
picker, and now the engine's downloadable WEIGHTS.

Weights belong to their engine: every models.yaml entry names the backend
ids that load it (`engines:`), the detail panel lists and installs them
(EngineWeights, on the model store's install/cancel/remove flow via the
extracted useModelDownloads hook), and the sherpa-onnx engine shows its
dictation-model picker there. The page's "Downloaded weights" list and
recommendation card are gone; only weights no engine owns (speaker
diarisation) remain in a small "Other weights" list. A backend test pins
the mapping: every entry has an `engines` list and every id is a real
backend.

- useEngineInventory: the matrix's state machines extracted verbatim
  (shared/local fetch, residency, health/self-test cooldowns, install
  poller with overlap guard + epoch, disk-usage generations, license).
- Row status phrases: GPU active / CPU fallback / CPU / Available /
  Needs setup / Installing… / failed; routing "unavailable" never reads
  Ready. Group captions keep "Ready to use" / "Add more engines".
- Engine titles read "Engines" (each locale's own word); backend
  "Model Catalogue → Engines/Models" messages and docs updated to the
  new structure.
- Dead matrix CSS (phone-tier grid) removed; scopeReco and RecoBanner gone.
2026-09-10 07:59:47 -07:00

118 lines
3.9 KiB
Python

"""services.binary_preflight — pre-exec validation for managed executables.
The #1172 class: any file OmniVoice execs (bundled bin/ runtimes, engine
venv interpreters) must be validated first so a zero-byte placeholder /
truncated download / git-lfs pointer surfaces as a typed, actionable
InvalidBinaryError instead of an OSError errno at spawn time.
"""
from __future__ import annotations
import sys
import pytest
from services.binary_preflight import (
InvalidBinaryError,
looks_like_executable,
validate_executable,
)
def test_missing_file_rejected(tmp_path):
ok, reason = looks_like_executable(tmp_path / "nope")
assert ok is False
assert "missing" in reason
def test_zero_byte_placeholder_rejected(tmp_path):
p = tmp_path / "omnivoice-tts-darwin-arm64"
p.write_bytes(b"")
p.chmod(0o755)
ok, reason = looks_like_executable(p)
assert ok is False
assert "placeholder" in reason
def test_garbage_content_rejected(tmp_path):
p = tmp_path / "tool"
p.write_bytes(b"<html>error page saved as a binary</html>")
ok, reason = looks_like_executable(p)
assert ok is False
assert "not a recognized executable" in reason
def test_git_lfs_pointer_rejected_with_lfs_hint(tmp_path):
p = tmp_path / "tool"
p.write_bytes(
b"version https://git-lfs.github.com/spec/v1\n"
b"oid sha256:deadbeef\nsize 12345\n"
)
ok, reason = looks_like_executable(p)
assert ok is False
assert "git lfs pull" in reason
@pytest.mark.parametrize(
"magic",
[
b"\x7fELF", # Linux
b"MZ", # Windows PE
b"\xcf\xfa\xed\xfe", # Mach-O 64 LE (modern macOS)
b"\xca\xfe\xba\xbe", # Mach-O universal
b"#!/bin/sh\n", # shebang wrapper
],
)
def test_real_executable_magics_accepted(tmp_path, magic):
p = tmp_path / "tool"
p.write_bytes(magic + b"rest-of-binary")
ok, reason = looks_like_executable(p)
assert ok is True, reason
def test_current_python_interpreter_accepted():
"""The interpreter running this test is by definition a real
executable — the validator must accept it on every platform."""
ok, reason = looks_like_executable(sys.executable)
assert ok is True, reason
def test_validate_executable_raises_typed_error_with_hint(tmp_path):
p = tmp_path / "engine-python"
p.write_bytes(b"")
with pytest.raises(InvalidBinaryError) as exc_info:
validate_executable(p, hint="reinstall the engine from Model Catalogue")
err = exc_info.value
assert isinstance(err, RuntimeError) # select_default_engine catch contract
assert err.path == p
assert "reinstall the engine" in str(err)
def test_validate_executable_passes_valid_binary(tmp_path):
p = tmp_path / "ok-bin"
p.write_bytes(b"\x7fELFxxxx")
validate_executable(p) # must not raise
# ── Spawn-time OSError sanitization (#1189 review) ─────────────────────────
# str(OSError) embeds exc.filename — the interpreter's ABSOLUTE path (the
# user's home dir) — and the reason flows into a user-visible 503 + the UI
# log viewer. The reason must be built from errno/strerror only.
@pytest.mark.parametrize("home_path", [
"/Users/someone/Library/Application Support/OmniVoice/engines/x/bin/python",
r"C:\Users\someone\AppData\Roaming\OmniVoice\engines\x\Scripts\python.exe",
])
def test_os_exec_refusal_never_leaks_absolute_paths(home_path):
from services.subprocess_backend import _os_exec_refusal
exc = OSError(8, "Exec format error")
exc.filename = home_path
assert "someone" in str(exc) # fail-before: str(exc) leaks the home dir
reason = _os_exec_refusal(exc)
assert reason == "[Errno 8] Exec format error"
assert "someone" not in reason
def test_os_exec_refusal_survives_empty_oserror():
from services.subprocess_backend import _os_exec_refusal
assert _os_exec_refusal(OSError()) == "execution failed"