惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

Y
Y Combinator Blog
有赞技术团队
有赞技术团队
J
Java Code Geeks
H
Hackread – Cybersecurity News, Data Breaches, AI and More
美团技术团队
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
Hugging Face - Blog
Hugging Face - Blog
人人都是产品经理
人人都是产品经理
酷 壳 – CoolShell
酷 壳 – CoolShell
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
C
Check Point Blog
博客园 - 【当耐特】
The GitHub Blog
The GitHub Blog
Recent Announcements
Recent Announcements
The Cloudflare Blog
Microsoft Azure Blog
Microsoft Azure Blog
腾讯CDC
Vercel News
Vercel News
IT之家
IT之家
MyScale Blog
MyScale Blog
博客园_首页
Martin Fowler
Martin Fowler
WordPress大学
WordPress大学
罗磊的独立博客

Recent Commits to openclaw:main

test: merge chat side-result checks · openclaw/openclaw@ddd2c2a test: merge cron history checks · openclaw/openclaw@f7eb746 test: merge responsive navigation shell checks · openclaw/openclaw@c2e4b47 docs(changelog): add codex oauth fixes · openclaw/openclaw@628e6cd test: merge navigation routing cases · openclaw/openclaw@5d8cecb Tests: mock channel registry bundled fallback · openclaw/openclaw@2b08233 Secrets: avoid broad web search discovery for single plugin config · openclaw/openclaw@a464f59 test: merge config view browser checks · openclaw/openclaw@20cf511 fix(status): align oauth health with runtime · openclaw/openclaw@eed7116 feat: add macOS screen snapshots for monitor preview (#67954) thanks … · openclaw/openclaw@f377db1 fix: report shared auth scopes in hello-ok (#67810) thanks @BunsDev · openclaw/openclaw@0b6c39b Auto-reply: avoid eager bundled route fallback · openclaw/openclaw@3ea1bf4 Tests: narrow session binding contract setup · openclaw/openclaw@54e4e16 fix(macOS): enable undo/redo in webchat composer text input (#34962) · openclaw/openclaw@00951dc Tests: speed up channel setup promotion · openclaw/openclaw@82b529a Docs: refresh agent instructions · openclaw/openclaw@5775fe2 fix(auth): serialize OAuth refresh across agents to fix #26322 (#67876) · openclaw/openclaw@8e79080 test: allow ollama public surface boundary test · openclaw/openclaw@7d4f1a6 Docs: add test performance guardrails · openclaw/openclaw@89706d3 Tests: restore context-engine usage proof · openclaw/openclaw@e4c4f95 Tests: slim context engine runtime coverage · openclaw/openclaw@74c198f ci: retry failed custom checkouts · openclaw/openclaw@0ee5baf test: trim duplicate provider auth onboarding cases · openclaw/openclaw@1ffc02e matrix: fix sessions_spawn --thread subagent session spawning (#67643) · openclaw/openclaw@1ce2596 test: reduce auth choice fixture churn · openclaw/openclaw@857b9cd test: mock health status config boundaries · openclaw/openclaw@9d5ab4a test: mock onboard config io boundary · openclaw/openclaw@299694d test: mock legacy state plugin boundaries · openclaw/openclaw@2713089 test: mock channel install boundaries · openclaw/openclaw@b945248 test: mock doctor preview channel boundaries · openclaw/openclaw@b1a3ad4
fix(gateway): include redacted startup bundle errors · op...
steipete · 2026-05-02 · via Recent Commits to openclaw:main

@@ -88,7 +88,13 @@ describe("diagnostic stability bundles", () => {

8888

reason: "json_body_limit",

8989

});

909091-

const error = Object.assign(new Error("contains secret message"), { code: "ERR_TEST" });

91+

const secret = "sk-1234567890abcdef";

92+

const error = Object.assign(

93+

new Error(

94+

`Startup failed: OPENAI_API_KEY=${secret} while opening google/web-search-contract-api.js`,

95+

),

96+

{ code: "ERR_TEST" },

97+

);

9298

const result = writeDiagnosticStabilityBundleSync({

9399

reason: "gateway.restart_startup_failed",

94100

error,

@@ -122,9 +128,11 @@ describe("diagnostic stability bundles", () => {

122128

});

123129

expect(bundle.snapshot.events[0]).not.toHaveProperty("chatId");

124130

expect(bundle.snapshot.events[0]).not.toHaveProperty("error");

131+

expect(bundle.error?.message).toContain("google/web-search-contract-api.js");

132+

expect(bundle.error?.message).not.toContain(secret);

125133

expect(raw).not.toContain("chat-secret");

126134

expect(raw).not.toContain("message body");

127-

expect(raw).not.toContain("contains secret message");

135+

expect(raw).not.toContain(secret);

128136

expect(raw).not.toContain(os.hostname());

129137

});

130138

@@ -158,13 +166,14 @@ describe("diagnostic stability bundles", () => {

158166

error: {

159167

name: "Error",

160168

code: "ERR_CONFIG_PARSE",

169+

message: "raw startup config payload",

161170

},

162171

snapshot: {

163172

count: 0,

164173

events: [],

165174

},

166175

});

167-

expect(raw).not.toContain("raw startup config payload");

176+

expect(raw).not.toContain("stack");

168177

});

169178170179

it("registers a fatal hook only while installed", () => {

@@ -242,7 +251,7 @@ describe("diagnostic stability bundles", () => {

242251

error: {

243252

name: "private error name",

244253

code: "ERR_TEST",

245-

message: "error-message-secret",

254+

message: "OPENAI_API_KEY=sk-1234567890abcdef",

246255

},

247256

});

248257

Object.assign(bundle.process as Record<string, unknown>, {

@@ -284,7 +293,9 @@ describe("diagnostic stability bundles", () => {

284293

}

285294

expect(result.bundle.reason).toBe("unknown");

286295

expect(result.bundle.host).toEqual({ hostname: "<redacted-hostname>" });

287-

expect(result.bundle.error).toEqual({ code: "ERR_TEST" });

296+

expect(result.bundle.error?.code).toBe("ERR_TEST");

297+

expect(result.bundle.error?.message).toContain("OPENAI_API_KEY=");

298+

expect(result.bundle.error?.message).not.toContain("sk-1234567890abcdef");

288299

expect(result.bundle.snapshot.events[0]).toEqual({

289300

seq: 1,

290301

ts: 1,

@@ -297,7 +308,7 @@ describe("diagnostic stability bundles", () => {

297308

"private reason",

298309

"top-level-secret",

299310

"private error name",

300-

"error-message-secret",

311+

"sk-1234567890abcdef",

301312

"process-command-secret",

302313

"private-hostname",

303314

"host-extra-secret",