Phase 1 — dedup + hardening (~9 items): - Remove duplicate *skill-registry* defvar from core-skills - Merge *backend-registry* into *probabilistic-backends*, delete backend-register - Remove inject-stimulus alias, standardize on stimulus-inject - Add pre-eval sandbox (skill-source-scan) blocks restricted symbols before eval - Remove dead plist-get function; remove duplicate json-alist-to-plist export - Fix read-framed-message whitespace DoS (4096-iteration max) - Add *read-eval* nil to dispatcher-approvals-process read-from-string (RCE) - Add test-op to ASDF; update .asd version 0.4.3→0.7.2 Phase 2 — prose + contracts + reorder: - Split ROADMAP: 2623→1089 lines (TODO only), CHANGELOG: 260→1528 lines (full DONE history, 14 versions reverse chron) - Add Contracts + Overview to 6 channel files + embedding-native + programming-standards + symbolic-scope - Reorder 28 .org files: Contract → Test Suite → Implementation (TDD order) - Add 7-phase inline prose to think() in core-reason - Expand USER_MANUAL: 183→461 lines (10 new sections) Phase 3 — decomposition + export organization: - Decompose think() into think-assemble-prompt, think-call-llm, think-parse-response orchestrator - Organize 188 exports into 16 grouped sections by module Phase 4 — budget enforcement + error protocol: - Per-session budget enforcement (SESSION_BUDGET_USD env var, budget-exhausted-p, guard in think-call-llm) - Error condition hierarchy (6 conditions: pipeline-error, llm-error, gate-error, budget-error, protocol-error) - Restarts in loop-process: skip-signal, use-fallback, abort-pipeline
44 lines
1.5 KiB
Common Lisp
44 lines
1.5 KiB
Common Lisp
(eval-when (:compile-toplevel :load-toplevel :execute)
|
|
(ql:quickload :fiveam :silent t))
|
|
|
|
(defpackage :passepartout-security-validator-tests
|
|
(:use :cl :fiveam :passepartout)
|
|
(:export #:validator-suite))
|
|
|
|
(in-package :passepartout-security-validator-tests)
|
|
|
|
(def-suite validator-suite :description "Verification of the Protocol Validator")
|
|
(in-suite validator-suite)
|
|
|
|
(test test-validator-passes-valid-message
|
|
"Contract 1: a valid message passes protocol check."
|
|
(let ((msg '(:type :EVENT :payload (:sensor :heartbeat))))
|
|
(handler-case
|
|
(progn
|
|
(validator-protocol-check msg)
|
|
(pass))
|
|
(error (c)
|
|
(fail "Validator rejected a valid message: ~a" c)))))
|
|
|
|
(test test-validator-rejects-missing-type
|
|
"Contract 1: a message missing :type is rejected."
|
|
(let ((msg '(:payload (:sensor :heartbeat))))
|
|
(signals error
|
|
(validator-protocol-check msg))))
|
|
|
|
(in-package :passepartout)
|
|
|
|
(defun validator-protocol-check (msg)
|
|
"Enforces structural schema compliance on protocol messages."
|
|
(validate-communication-protocol-schema msg))
|
|
|
|
(defskill :passepartout-security-validator
|
|
:priority 95
|
|
:trigger (lambda (ctx) (declare (ignore ctx)) t)
|
|
:deterministic (lambda (action ctx)
|
|
(declare (ignore ctx))
|
|
(handler-case
|
|
(progn (validator-protocol-check action) action)
|
|
(error (c)
|
|
(list :type :LOG :payload (list :level :error :text (format nil "Protocol Violation: ~a" c)))))))
|