openpencil/tests/engine/app
Danila Poyarkov e2a3aa3f80
fix: validate parsed JSON at untrusted boundaries with Valibot (#855)
* fix: validate parsed JSON at untrusted boundaries with Valibot

Clipboard HTML, library revisions from shared storage, MCP and automation
WebSocket messages, the MCP discovery file, sidecar output and AI/MCP tool
arguments were JSON.parse'd and cast to their expected types, so a
malformed payload reached the document or crashed paste. They now go
through v.pipe(v.string(), v.parseJson(), Schema), which reports bad JSON
and a wrong shape as the same validation failure.

The path_set tool rejects an invalid VectorNetwork and shares its parser
with create_vector. The CLI library catalog validates its files and runs
revisions through the same size, identity and content-hash checks as the
app; reading image bytes as index-keyed records also stops them coming
back empty. Hand-rolled typeof readers for plugin data, document metadata,
caches and preferences become schemas with their behaviour preserved, and
readCacheJSON takes a schema for its payload.

open-pencil/no-unvalidated-json-parse rejects type assertions on
JSON.parse results other than `as unknown` in src and packages/*/src.

* refactor: validate parsed JSON in tests and tooling

Extend open-pencil/no-unvalidated-json-parse beyond source: tests, helpers and repo tooling now parse JSON through Valibot schemas instead of asserting a type. The shared fixture reader returns a validated object; its old array annotation never matched the fixtures.

* fix: validate clipboard geometry bytes, library images and model catalogs

Clipboard geometry blobs and library image bytes must be bytes at contiguous indexes, so out-of-range or gapped values are rejected instead of silently becoming different geometry or images; serialized library nodes must carry source metadata. The models.dev and OpenRouter responses are validated like their cached copies, and activate-tab rejects a CDP frame it cannot read instead of hanging.

* refactor: extend the JSON validation lint to .json() results

no-unvalidated-json-parse now also rejects type assertions on Response, Bun.file and shell .json() results, the same unchecked parse in another form. MCP server tests read /health through a validated readHealth helper and discovery files through parseDiscoveryInfo; the remaining tooling reads its JSON through schemas.

* test: validate the RPC request body in the CLI app export test

* test: validate CLI JSON output in the tool and app command tests

* test: compare the malformed models.dev fallback with the curated list
2026-10-04 17:01:50 +00:00
..
ai fix: validate parsed JSON at untrusted boundaries with Valibot (#855) 2026-10-04 17:01:50 +00:00
automation feat(settings): configure tool access, MCP failures, and step limits 2026-09-17 23:55:58 +03:00
chat feat(ai): render tool calls as summarized, highlighted cards (#811) 2026-10-03 22:04:31 +04:00
clipboard fix(clipboard): preserve component dependency references 2026-09-13 12:46:31 +03:00
code feat(code): add live JSX and HTML/CSS editing (#525) 2026-08-15 09:48:42 +03:00
demo feat: assemble an editable demo document 2026-09-14 00:36:53 +03:00
diagnostics feat(settings): configure tool access, MCP failures, and step limits 2026-09-17 23:55:58 +03:00
document feat: export components as Storybook stories (#751) 2026-09-30 03:16:47 +04:00
editor feat(ai): render tool calls as summarized, highlighted cards (#811) 2026-10-03 22:04:31 +04:00
integrations fix: validate parsed JSON at untrusted boundaries with Valibot (#855) 2026-10-04 17:01:50 +00:00
recent-files refactor(app): polish files workspace and New tabs 2026-08-20 17:20:33 +03:00
runtime perf(canvas): rebuild navigation rendering (#591) 2026-08-31 13:39:40 +03:00
settings feat(settings): configure tool access, MCP failures, and step limits 2026-09-17 23:55:58 +03:00
shell feat: check designs live with a Lint panel, canvas markers, and fixes (#804) 2026-10-04 10:08:39 +00:00
storage fix(storage): harden workspace previews 2026-08-10 20:02:58 +03:00
tabs feat(app): prepare documents atomically per tab (#592) 2026-08-30 12:21:49 +03:00
tauri fix(tauri): preserve request and abort semantics 2026-07-18 05:02:51 +03:00
usage feat(diagnostics): add local usage and diagnostics foundation 2026-08-24 16:56:40 +03:00
cache.test.ts fix: validate parsed JSON at untrusted boundaries with Valibot (#855) 2026-10-04 17:01:50 +00:00
demo.test.ts feat(demo): rebuild the first page as a component library with staged loading (#717) 2026-09-18 08:18:21 +03:00
external-link.test.ts test: move tauri helpers into domain folder 2026-05-06 16:16:08 +03:00
font-loading.test.ts fix(tauri): prevent Windows font loading crashes (#497) 2026-08-12 20:09:04 +03:00
vector-edit-transforms.test.ts fix(editor): commit vector drags on pointer release (#586) 2026-08-24 16:02:27 +03:00