惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

博客园_首页
博客园 - Franky
大猫的无限游戏
大猫的无限游戏
博客园 - 三生石上(FineUI控件)
量子位
博客园 - 聂微东
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
S
SegmentFault 最新的问题
Apple Machine Learning Research
Apple Machine Learning Research
爱范儿
爱范儿
V
Visual Studio Blog
雷峰网
雷峰网
T
Tailwind CSS Blog
宝玉的分享
宝玉的分享
Blog — PlanetScale
Blog — PlanetScale
有赞技术团队
有赞技术团队
博客园 - 叶小钗
Microsoft Azure Blog
Microsoft Azure Blog
T
The Blog of Author Tim Ferriss
U
Unit 42
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
小众软件
小众软件
阮一峰的网络日志
阮一峰的网络日志
Y
Y Combinator Blog

Recent Commits to openclaw:main

test: merge chat side-result checks · openclaw/openclaw@ddd2c2a test: merge cron history checks · openclaw/openclaw@f7eb746 test: merge responsive navigation shell checks · openclaw/openclaw@c2e4b47 docs(changelog): add codex oauth fixes · openclaw/openclaw@628e6cd test: merge navigation routing cases · openclaw/openclaw@5d8cecb Tests: mock channel registry bundled fallback · openclaw/openclaw@2b08233 Secrets: avoid broad web search discovery for single plugin config · openclaw/openclaw@a464f59 test: merge config view browser checks · openclaw/openclaw@20cf511 fix(status): align oauth health with runtime · openclaw/openclaw@eed7116 feat: add macOS screen snapshots for monitor preview (#67954) thanks … · openclaw/openclaw@f377db1 fix: report shared auth scopes in hello-ok (#67810) thanks @BunsDev · openclaw/openclaw@0b6c39b Auto-reply: avoid eager bundled route fallback · openclaw/openclaw@3ea1bf4 Tests: narrow session binding contract setup · openclaw/openclaw@54e4e16 fix(macOS): enable undo/redo in webchat composer text input (#34962) · openclaw/openclaw@00951dc Tests: speed up channel setup promotion · openclaw/openclaw@82b529a Docs: refresh agent instructions · openclaw/openclaw@5775fe2 fix(auth): serialize OAuth refresh across agents to fix #26322 (#67876) · openclaw/openclaw@8e79080 test: allow ollama public surface boundary test · openclaw/openclaw@7d4f1a6 Docs: add test performance guardrails · openclaw/openclaw@89706d3 Tests: restore context-engine usage proof · openclaw/openclaw@e4c4f95 Tests: slim context engine runtime coverage · openclaw/openclaw@74c198f ci: retry failed custom checkouts · openclaw/openclaw@0ee5baf test: trim duplicate provider auth onboarding cases · openclaw/openclaw@1ffc02e matrix: fix sessions_spawn --thread subagent session spawning (#67643) · openclaw/openclaw@1ce2596 test: reduce auth choice fixture churn · openclaw/openclaw@857b9cd test: mock health status config boundaries · openclaw/openclaw@9d5ab4a test: mock onboard config io boundary · openclaw/openclaw@299694d test: mock legacy state plugin boundaries · openclaw/openclaw@2713089 test: mock channel install boundaries · openclaw/openclaw@b945248 test: mock doctor preview channel boundaries · openclaw/openclaw@b1a3ad4
fix(e2e): bound Telegram Bot API helper bodies · openclaw...
vincentkoc · 2026-05-29 · via Recent Commits to openclaw:main

@@ -3,6 +3,7 @@ type JsonObject = Record<string, unknown>;

33

type TelegramBotApiOptions = {

44

baseUrl?: string;

55

fetchImpl?: (url: string, init: RequestInit) => Promise<Response>;

6+

maxBodyBytes?: number;

67

timeoutMs?: number;

78

};

89

@@ -12,6 +13,10 @@ const DEFAULT_TIMEOUT_MS = readPositiveInt(

1213

process.env.OPENCLAW_TELEGRAM_USER_BOT_API_TIMEOUT_MS,

1314

30000,

1415

);

16+

const DEFAULT_BODY_MAX_BYTES = readPositiveInt(

17+

process.env.OPENCLAW_TELEGRAM_USER_BOT_API_BODY_MAX_BYTES,

18+

1024 * 1024,

19+

);

15201621

function readPositiveInt(raw: string | undefined, fallback: number) {

1722

const parsed = Number.parseInt(raw ?? "", 10);

@@ -23,6 +28,58 @@ function optionalString(source: JsonObject, key: string) {

2328

return typeof value === "string" && value.trim() ? value.trim() : undefined;

2429

}

253031+

function taggedError(message: string, code: string) {

32+

return Object.assign(new Error(message), { code });

33+

}

34+35+

async function readBoundedResponseText(

36+

response: Response,

37+

label: string,

38+

byteLimit: number,

39+

timeoutPromise: Promise<never>,

40+

) {

41+

const contentLength = response.headers.get("content-length");

42+

if (contentLength) {

43+

const parsedLength = Number(contentLength);

44+

if (Number.isSafeInteger(parsedLength) && parsedLength > byteLimit) {

45+

await response.body?.cancel().catch(() => {});

46+

throw taggedError(`${label} response body exceeded ${byteLimit} bytes`, "ETOOBIG");

47+

}

48+

}

49+

if (!response.body) {

50+

return "";

51+

}

52+53+

const reader = response.body.getReader();

54+

const decoder = new TextDecoder();

55+

let byteCount = 0;

56+

let text = "";

57+

try {

58+

while (true) {

59+

const { done, value } = await Promise.race([reader.read(), timeoutPromise]);

60+

if (done) {

61+

return text + decoder.decode();

62+

}

63+

byteCount += value.byteLength;

64+

if (byteCount > byteLimit) {

65+

await reader.cancel().catch(() => {});

66+

throw taggedError(`${label} response body exceeded ${byteLimit} bytes`, "ETOOBIG");

67+

}

68+

text += decoder.decode(value, { stream: true });

69+

}

70+

} finally {

71+

reader.releaseLock();

72+

}

73+

}

74+75+

function parseJsonPayload(rawPayload: string, label: string) {

76+

try {

77+

return JSON.parse(rawPayload) as JsonObject;

78+

} catch (error) {

79+

throw new Error(`${label} returned invalid JSON`, { cause: error });

80+

}

81+

}

82+2683

export async function telegramBotApi(

2784

token: string,

2885

method: string,

@@ -31,10 +88,9 @@ export async function telegramBotApi(

3188

) {

3289

const baseUrl = options.baseUrl ?? DEFAULT_BASE_URL;

3390

const timeoutMs = Math.max(1, options.timeoutMs ?? DEFAULT_TIMEOUT_MS);

34-

const timeoutError = Object.assign(

35-

new Error(`Telegram Bot API ${method} timed out after ${timeoutMs}ms`),

36-

{ code: "ETIMEDOUT" },

37-

);

91+

const maxBodyBytes = Math.max(1, options.maxBodyBytes ?? DEFAULT_BODY_MAX_BYTES);

92+

const label = `Telegram Bot API ${method}`;

93+

const timeoutError = taggedError(`${label} timed out after ${timeoutMs}ms`, "ETIMEDOUT");

3894

const controller = new AbortController();

3995

let timeout: NodeJS.Timeout | undefined;

4096

const timeoutPromise = new Promise<never>((_, reject) => {

@@ -55,7 +111,8 @@ export async function telegramBotApi(

55111

}),

56112

timeoutPromise,

57113

]);

58-

const payload = (await Promise.race([response.json(), timeoutPromise])) as JsonObject;

114+

const rawPayload = await readBoundedResponseText(response, label, maxBodyBytes, timeoutPromise);

115+

const payload = parseJsonPayload(rawPayload, label);

59116

if (!response.ok || payload.ok !== true) {

60117

throw new Error(

61118

optionalString(payload, "description") ?? `${method} failed with HTTP ${response.status}`,