Admin matrix App Password fixtures omit Notes protocol scopes #716

Open
opened 2026-10-02 10:47:39 +00:00 by kayg · 1 comment
Owner

The offline Admin classification test fails on base c4a61e8cf090170f35b1bed3350d9de20c83ecd5 while working on #707. No Admin matrix or schema files were changed by this job.

Command: python3 -m unittest discover -s tests/adversarial -p test_admin_classification.py

test_app_password_fixture_covers_each_valid_scope_class reports missing fixture declarations for ('notes', 'read'), ('notes', 'write'), and ('notes', 'full'). The checked-in AppPasswordProtocol includes notes; create_admin_denial_passwords does not create those cases. Fourteen tests ran; one failed. The offline Admin guard itself passes: Admin coverage: 39 reviewed operations; contract and Rust guards agree.

Extend the fixture generator to cover Notes App Password access without changing the existing test expectation, then run the offline guard and Notes Admin-denial checks.

The offline Admin classification test fails on base `c4a61e8cf090170f35b1bed3350d9de20c83ecd5` while working on #707. No Admin matrix or schema files were changed by this job. Command: `python3 -m unittest discover -s tests/adversarial -p test_admin_classification.py` `test_app_password_fixture_covers_each_valid_scope_class` reports missing fixture declarations for `('notes', 'read')`, `('notes', 'write')`, and `('notes', 'full')`. The checked-in `AppPasswordProtocol` includes `notes`; `create_admin_denial_passwords` does not create those cases. Fourteen tests ran; one failed. The offline Admin guard itself passes: `Admin coverage: 39 reviewed operations; contract and Rust guards agree`. Extend the fixture generator to cover Notes App Password access without changing the existing test expectation, then run the offline guard and Notes Admin-denial checks.
Author
Owner

#716 update: the admin-denial App Password matrix now includes Notes read, write and full scopes. The existing four-protocol combined all_full fixture and its cardinality expectation remain unchanged. Regression command output:

..............
----------------------------------------------------------------------
Ran 14 tests in 0.975s

OK
exit_code=0
#716 update: the admin-denial App Password matrix now includes Notes read, write and full scopes. The existing four-protocol combined `all_full` fixture and its cardinality expectation remain unchanged. Regression command output: ``` .............. ---------------------------------------------------------------------- Ran 14 tests in 0.975s OK exit_code=0 ```
Sign in to join this conversation.
No labels
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set

Reference
kayg/calternal#716
No description provided.