test(hermes): use benign secret-boundary sentinels#4863
Conversation
Signed-off-by: Carlos Villela <cvillela@nvidia.com>
|
Warning Review limit reached
More reviews will be available in 22 minutes and 9 seconds. Learn how PR review limits work. Your organization has run out of usage credits. Purchase more in the billing tab. ⌛ How to resolve this issue?After more reviews become available, a review can be triggered using the We recommend that you space out your commits to avoid hitting the rate limit. 🚦 How do rate limits work?CodeRabbit enforces hourly rate limits for each developer per organization. Our paid plans include higher PR review limits than trial, open-source, and free plans. In all cases, reviews become available again over time. During sustained high-volume PR review activity, CodeRabbit may temporarily slow when the next review becomes available. Please see our Fair Usage Limits Policy for further information. ℹ️ Review info⚙️ Run configurationConfiguration used: Path: .coderabbit.yaml Review profile: CHILL Plan: Enterprise Run ID: 📒 Files selected for processing (3)
✨ Finishing Touches🧪 Generate unit tests (beta)
Comment |
E2E Advisor RecommendationRequired E2E: None Dispatch hint: Full advisor summaryE2E Recommendation AdvisorBase: Required E2E
Optional E2E
New E2E recommendations
Dispatch hint
|
E2E Scenario Advisor RecommendationRequired scenario E2E: None Full scenario advisor summaryE2E Scenario AdvisorBase: Required scenario E2E
Optional scenario E2E
Relevant changed files
|
PR Review AdvisorFindings: 0 needs attention, 0 worth checking, 0 nice ideas This is an automated advisory review. A human maintainer must make the final merge decision. |
Summary
Replace GUID-like Hermes secret-boundary fixture values with benign sentinels. The tests still validate raw non-placeholder secret-shaped values are rejected without committing scanner-shaped literals.
Changes
test/e2e/test-hermes-sandbox-secret-boundary.sh.test/generate-hermes-config.test.tsandtest/hermes-start.test.ts.Type of Change
Verification
npx prek run --all-filespassesnpm testpassesnpm run docsbuilds without warnings (doc changes only)Targeted checks run:
bash -n test/e2e/test-hermes-sandbox-secret-boundary.shnpx vitest run test/hermes-start.test.ts test/generate-hermes-config.test.ts --testTimeout 60000npm run checksSigned-off-by: Carlos Villela cvillela@nvidia.com