test(cliproxy): cover launch-settings corrupt-JSON fallback and overlay permissions

Add a test for the env-only overlay fallback when the persisted settings
file is corrupt (the existing 'missing file' test skips JSON.parse), and
a POSIX-gated assertion that the overlay is written 0600 inside a 0700
dir, since it carries an auth token.
This commit is contained in:
Tam Nhu Tran committed 2026-06-27 10:55:00 -04:00
1 parent 454e1555a7
commit e5db374e98
1 file changed
+27
@@ -91,6 +91,17 @@ describe('buildLaunchSettingsOverlay', () => {
'http://127.0.0.1:50118/api/provider/codex'
);
});
it('falls back to an env-only overlay when the settings file is corrupt', () => {
fs.writeFileSync(settingsPath, '{ not valid json');
const { settings, changed } = buildLaunchSettingsOverlay(settingsPath, {
ANTHROPIC_BASE_URL: 'http://127.0.0.1:50118/api/provider/codex',
} as NodeJS.ProcessEnv);
expect(changed).toBe(true);
expect((settings.env as Record<string, string>).ANTHROPIC_BASE_URL).toBe(
'http://127.0.0.1:50118/api/provider/codex'
);
});
});
describe('prepareLaunchSettings', () => {
@@ -127,4 +138,20 @@ describe('prepareLaunchSettings', () => {
result.cleanup();
expect(fs.existsSync(settingsPath)).toBe(true);
});
it('writes the overlay with 0600 file mode inside a 0700 dir (POSIX)', () => {
if (process.platform === 'win32') return; // chmod modes are not enforced on Windows
writePersisted({
env: { ANTHROPIC_BASE_URL: 'http://127.0.0.1:8317/api/provider/codex' },
});
const result = prepareLaunchSettings(settingsPath, {
ANTHROPIC_BASE_URL: 'http://127.0.0.1:50118/api/provider/codex',
} as NodeJS.ProcessEnv);
try {
expect(fs.statSync(result.settingsPath).mode & 0o777).toBe(0o600);
expect(fs.statSync(path.dirname(result.settingsPath)).mode & 0o777).toBe(0o700);
} finally {
result.cleanup();
}
});
});