Files
roboco/tests/integration/test_tasks_route_pm_lighter_patch.py
T
876e19b389 A2A switchboard (pair cards), Secretary/PM task access + closed over-permission hole, MegaTask conventions fix (#298)
* feat(tasks): Secretary full task access; PM lighter editing — and a closed over-permission hole

Secretary: the CEO-gated edit directive covers the full content surface
(title/description/AC/priority/team/complexity/nature + claim-aware
reassignment through the real reassign paths, enum coercion, slug or
UUID assignees), and read_task returns full detail (notes, plan,
bounded progress, PR refs). The submit_directive tool docs never
mentioned edit at all — fixed, it was undiscoverable.

PMs: scouted the PATCH route and found has_higher_perms gave PM
identities UNRESTRICTED admin (ASSIGN is not team-scoped) — wider than
'not that much'. Now: cell PMs hard-403 outside their team, and both PM
roles are capped to the content allowlist (title/description/AC/
priority) with zero status changes via this surface. CEO/Board/Auditor
keep full admin. Built subagent-driven (Sonnet 5), reviewed.

* feat(a2a): the switchboard — org-chart pair cards with live activity

70 permission-matrix-derived pair cards (cells/pm-chain/board/cross),
lighting on either direction's a2a.message frames with a 45s fade —
A2A only, never verbs, per CEO ruling. Click-through reuses the v1
transcript + chime-in drawer; v1 list stays as the mobile fallback.
One CEO-gated /a2a/chat/admin/pairs route joins the static matrix
against conversations in a single bulk query. Built subagent-driven
(Sonnet 5), reviewed; pre-existing agent-utils slug-map gap flagged.

* fix(runtime): conventions ambient covers the MegaTask project_ids scope

_resolve_intake_ambient forwarded project_ids only to the history-digest
resolver — a MegaTask intake got no architectural-conventions block even
with the flag on. The conventions resolver now takes project_ids first
(mirroring the history resolver), both share one order-preserving
_projects_by_ids helper, and a regression test pins the threading to
both sub-resolvers. Built subagent-driven (Sonnet 5), reviewed.

---------

Co-authored-by: Renn F <rennf93@users.noreply.github.com>
2026-07-03 01:58:38 +02:00

242 lines
7.9 KiB
Python

"""PM-lighter PATCH surface on PATCH /api/tasks/{id}.
The CEO's spec: PMs get a *lighter* content-only slice of the same REST PATCH
path the Secretary's edit directive uses — title/description/
acceptance_criteria/priority — scoped to tasks in the PM's remit (cell_pm:
own team only; main_pm: any team). No status changes, no structural/
ownership fields, no git fields — those stay on the lifecycle-verb surface.
cell_pm/main_pm already hold TaskAction.ASSIGN (see TASK_PERMISSIONS), which
is *not* team-scoped in ``can_perform_task_action`` — so absent this gate a
PM would already ride the CEO/Board/Auditor "full admin" bypass on this
route (any field, any team). These tests pin the narrower behavior down.
"""
from __future__ import annotations
from http import HTTPStatus
from typing import TYPE_CHECKING, Any, cast
from uuid import UUID, uuid4
import pytest
import pytest_asyncio
from fastapi import FastAPI
from httpx import ASGITransport, AsyncClient
from roboco.api.deps import get_agent_context, get_db
from roboco.api.routes.tasks import router as tasks_router
from roboco.db.tables import AgentTable, ProjectTable, TaskTable
from roboco.models import AgentRole, AgentStatus, Team
from roboco.models.base import TaskNature, TaskStatus, TaskType
from roboco.models.permissions import AgentContext
if TYPE_CHECKING:
from collections.abc import AsyncIterator
from sqlalchemy.ext.asyncio import AsyncSession
async def _make_client(
db_session: AsyncSession, *, role: AgentRole, team: Team | None
) -> dict[str, Any]:
pm = AgentTable(
id=uuid4(),
name="PM",
slug=f"pm-{uuid4().hex[:8]}",
role=role,
team=team,
status=AgentStatus.ACTIVE,
model_config={},
system_prompt="pm",
capabilities=[],
permissions={},
metrics={},
)
db_session.add(pm)
await db_session.flush()
project = ProjectTable(
id=uuid4(),
name="PL-Proj",
slug=f"pl-proj-{uuid4().hex[:6]}",
git_url="https://example.com/pl.git",
assigned_cell=Team.BACKEND,
created_by=pm.id,
)
db_session.add(project)
await db_session.flush()
app = FastAPI()
app.include_router(tasks_router, prefix="/api/tasks")
async def _override_db() -> AsyncIterator[AsyncSession]:
yield db_session
async def _override_agent() -> AgentContext:
return AgentContext(agent_id=cast("UUID", pm.id), role=role, team=team)
app.dependency_overrides[get_db] = _override_db
app.dependency_overrides[get_agent_context] = _override_agent
transport = ASGITransport(app=app)
client = AsyncClient(transport=transport, base_url="http://test")
return {
"client": client,
"app": app,
"agent": pm,
"project": project,
"db": db_session,
}
@pytest_asyncio.fixture
async def cell_pm_client(db_session: AsyncSession) -> AsyncIterator[dict]:
"""A backend cell PM (ASSIGN, no UPDATE_OWN)."""
setup = await _make_client(db_session, role=AgentRole.CELL_PM, team=Team.BACKEND)
async with setup["client"]:
yield setup
setup["app"].dependency_overrides.clear()
@pytest_asyncio.fixture
async def main_pm_client(db_session: AsyncSession) -> AsyncIterator[dict]:
"""The Main PM (ASSIGN, no team restriction)."""
setup = await _make_client(db_session, role=AgentRole.MAIN_PM, team=None)
async with setup["client"]:
yield setup
setup["app"].dependency_overrides.clear()
def _seed_task(setup: dict, **kw: Any) -> TaskTable:
team = kw.pop("team", Team.BACKEND)
task = TaskTable(
id=uuid4(),
title=kw.pop("title", "t"),
description=kw.pop("description", "d"),
acceptance_criteria=["ac"],
status=kw.pop("status", TaskStatus.IN_PROGRESS),
priority=2,
task_type=TaskType.CODE,
nature=TaskNature.TECHNICAL,
project_id=setup["project"].id,
created_by=setup["agent"].id,
assigned_to=None,
team=team,
)
setup["db"].add(task)
return task
def _hdr(agent: AgentTable, role: AgentRole) -> dict[str, str]:
return {"X-Agent-ID": str(agent.id), "X-Agent-Role": role.value}
@pytest.mark.asyncio
async def test_cell_pm_can_patch_content_field_on_own_team_task(
cell_pm_client: dict,
) -> None:
setup = cell_pm_client
task = _seed_task(setup, team=Team.BACKEND)
await setup["db"].flush()
response = await setup["client"].patch(
f"/api/tasks/{task.id}",
json={"title": "Sharper title from the cell PM"},
headers=_hdr(setup["agent"], AgentRole.CELL_PM),
)
assert response.status_code == HTTPStatus.OK
assert response.json()["title"] == "Sharper title from the cell PM"
@pytest.mark.asyncio
async def test_cell_pm_cannot_patch_task_outside_own_team(
cell_pm_client: dict,
) -> None:
"""ASSIGN is not team-scoped — without an explicit check a cell PM would
ride the same admin bypass CEO/Board get on ANY team's task."""
setup = cell_pm_client
task = _seed_task(setup, team=Team.FRONTEND)
await setup["db"].flush()
response = await setup["client"].patch(
f"/api/tasks/{task.id}",
json={"title": "Should not land"},
headers=_hdr(setup["agent"], AgentRole.CELL_PM),
)
assert response.status_code == HTTPStatus.FORBIDDEN
@pytest.mark.parametrize(
"field,value",
[
("dev_notes", "trying to sneak a note in"),
("team", "frontend"),
("assigned_to", str(uuid4())),
],
)
@pytest.mark.asyncio
async def test_cell_pm_cannot_patch_fields_outside_lighter_allowlist(
cell_pm_client: dict, field: str, value: object
) -> None:
setup = cell_pm_client
task = _seed_task(setup, team=Team.BACKEND)
await setup["db"].flush()
response = await setup["client"].patch(
f"/api/tasks/{task.id}",
json={field: value},
headers=_hdr(setup["agent"], AgentRole.CELL_PM),
)
assert response.status_code == HTTPStatus.FORBIDDEN
@pytest.mark.asyncio
async def test_cell_pm_cannot_change_status_via_patch(cell_pm_client: dict) -> None:
"""No status changes beyond what the lifecycle verbs already grant — the
PM-lighter PATCH surface must not become a side-door status override."""
setup = cell_pm_client
task = _seed_task(setup, team=Team.BACKEND, status=TaskStatus.IN_PROGRESS)
await setup["db"].flush()
response = await setup["client"].patch(
f"/api/tasks/{task.id}",
json={"status": "completed", "force": True},
headers=_hdr(setup["agent"], AgentRole.CELL_PM),
)
assert response.status_code == HTTPStatus.FORBIDDEN
@pytest.mark.asyncio
async def test_main_pm_can_patch_content_field_on_any_team_task(
main_pm_client: dict,
) -> None:
setup = main_pm_client
task = _seed_task(setup, team=Team.UX_UI)
await setup["db"].flush()
response = await setup["client"].patch(
f"/api/tasks/{task.id}",
json={"description": "A clarified description of at least twenty chars."},
headers=_hdr(setup["agent"], AgentRole.MAIN_PM),
)
assert response.status_code == HTTPStatus.OK
@pytest.mark.asyncio
async def test_main_pm_cannot_patch_privileged_field(main_pm_client: dict) -> None:
setup = main_pm_client
task = _seed_task(setup, team=Team.BACKEND)
await setup["db"].flush()
response = await setup["client"].patch(
f"/api/tasks/{task.id}",
json={"parent_task_id": str(uuid4())},
headers=_hdr(setup["agent"], AgentRole.MAIN_PM),
)
assert response.status_code == HTTPStatus.FORBIDDEN
@pytest.mark.asyncio
async def test_main_pm_cannot_change_status_via_patch(main_pm_client: dict) -> None:
setup = main_pm_client
task = _seed_task(setup, status=TaskStatus.AWAITING_PM_REVIEW)
await setup["db"].flush()
response = await setup["client"].patch(
f"/api/tasks/{task.id}",
json={"status": "completed"},
headers=_hdr(setup["agent"], AgentRole.MAIN_PM),
)
assert response.status_code == HTTPStatus.FORBIDDEN