using Microsoft.Extensions.Logging.Abstractions; using ZB.MOM.WW.ScadaBridge.SiteRuntime.Persistence; namespace ZB.MOM.WW.ScadaBridge.SiteRuntime.Tests.Persistence; /// /// WP-33: Local Artifact Storage tests — shared scripts, external systems, /// database connections, notification lists. /// public class ArtifactStorageTests : IAsyncLifetime, IDisposable { private readonly string _dbFile; private SiteStorageService _storage = null!; public ArtifactStorageTests() { _dbFile = Path.Combine(Path.GetTempPath(), $"artifact-test-{Guid.NewGuid():N}.db"); } public async Task InitializeAsync() { _storage = new SiteStorageService( $"Data Source={_dbFile}", NullLogger.Instance); await _storage.InitializeAsync(); } public Task DisposeAsync() => Task.CompletedTask; public void Dispose() { try { File.Delete(_dbFile); } catch { /* cleanup */ } } // ── Shared Script Storage ── [Fact] public async Task StoreSharedScript_RoundTrips() { await _storage.StoreSharedScriptAsync("CalcAvg", "return 42;", "{}", "int"); var scripts = await _storage.GetAllSharedScriptsAsync(); Assert.Single(scripts); Assert.Equal("CalcAvg", scripts[0].Name); Assert.Equal("return 42;", scripts[0].Code); Assert.Equal("{}", scripts[0].ParameterDefinitions); Assert.Equal("int", scripts[0].ReturnDefinition); } [Fact] public async Task StoreSharedScript_Upserts_OnConflict() { await _storage.StoreSharedScriptAsync("CalcAvg", "return 1;", null, null); await _storage.StoreSharedScriptAsync("CalcAvg", "return 2;", "{\"x\":\"int\"}", "int"); var scripts = await _storage.GetAllSharedScriptsAsync(); Assert.Single(scripts); Assert.Equal("return 2;", scripts[0].Code); Assert.Equal("{\"x\":\"int\"}", scripts[0].ParameterDefinitions); } [Fact] public async Task StoreSharedScript_MultipleScripts() { await _storage.StoreSharedScriptAsync("Script1", "1", null, null); await _storage.StoreSharedScriptAsync("Script2", "2", null, null); await _storage.StoreSharedScriptAsync("Script3", "3", null, null); var scripts = await _storage.GetAllSharedScriptsAsync(); Assert.Equal(3, scripts.Count); } [Fact] public async Task StoreSharedScript_NullableFields() { await _storage.StoreSharedScriptAsync("Simple", "42", null, null); var scripts = await _storage.GetAllSharedScriptsAsync(); Assert.Single(scripts); Assert.Null(scripts[0].ParameterDefinitions); Assert.Null(scripts[0].ReturnDefinition); } // ── External System Storage ── [Fact] public async Task StoreExternalSystem_DoesNotThrow() { await _storage.StoreExternalSystemAsync( "WeatherAPI", "https://api.weather.com", "ApiKey", "{\"key\":\"abc\"}", "{\"getForecast\":{}}"); // No exception = success. Query verification would need a Get method. } [Fact] public async Task StoreExternalSystem_Upserts() { await _storage.StoreExternalSystemAsync("API1", "https://v1", "Basic", null, null); await _storage.StoreExternalSystemAsync("API1", "https://v2", "ApiKey", "{}", null); // Upsert should not throw } // ── Database Connection Storage ── [Fact] public async Task StoreDatabaseConnection_DoesNotThrow() { await _storage.StoreDatabaseConnectionAsync( "MainDB", "Server=localhost;Database=main", 3, TimeSpan.FromSeconds(1)); } [Fact] public async Task StoreDatabaseConnection_Upserts() { await _storage.StoreDatabaseConnectionAsync( "DB1", "Server=old", 3, TimeSpan.FromSeconds(1)); await _storage.StoreDatabaseConnectionAsync( "DB1", "Server=new", 5, TimeSpan.FromSeconds(2)); // Upsert should not throw } // ── DeploymentManager-025 / SiteRuntime-031: central-only notif/SMTP purge ── // // Notification config is central-only. The site-side write paths and // SiteNotificationRepository were removed 2026-07-10 (arch-review 08 §1.3/#23); // PurgeCentralOnlyNotificationConfigAsync is retained as the security cleanup for // DBs written by older builds. These tests seed the (still-present) tables via raw // SQL — the only way rows can now exist — and assert the purge empties them. private async Task SeedNotificationRowAsync(string name, string emailsJson) { await using var connection = new Microsoft.Data.Sqlite.SqliteConnection($"Data Source={_dbFile}"); await connection.OpenAsync(); await using var command = connection.CreateCommand(); command.CommandText = "INSERT INTO notification_lists (name, recipient_emails, updated_at) VALUES (@n, @e, @u)"; command.Parameters.AddWithValue("@n", name); command.Parameters.AddWithValue("@e", emailsJson); command.Parameters.AddWithValue("@u", DateTimeOffset.UtcNow.ToString("O")); await command.ExecuteNonQueryAsync(); } private async Task SeedSmtpRowAsync(string name, string password) { await using var connection = new Microsoft.Data.Sqlite.SqliteConnection($"Data Source={_dbFile}"); await connection.OpenAsync(); await using var command = connection.CreateCommand(); command.CommandText = @"INSERT INTO smtp_configurations (name, server, port, auth_mode, from_address, username, password, oauth_config, updated_at) VALUES (@n, 'smtp.example.com', 587, 'BasicAuth', 'noreply@example.com', 'smtpuser', @p, NULL, @u)"; command.Parameters.AddWithValue("@n", name); command.Parameters.AddWithValue("@p", password); command.Parameters.AddWithValue("@u", DateTimeOffset.UtcNow.ToString("O")); await command.ExecuteNonQueryAsync(); } private async Task RowCountAsync(string table) { await using var connection = new Microsoft.Data.Sqlite.SqliteConnection($"Data Source={_dbFile}"); await connection.OpenAsync(); await using var command = connection.CreateCommand(); command.CommandText = $"SELECT COUNT(*) FROM {table}"; return (long)(await command.ExecuteScalarAsync())!; } [Fact] public async Task PurgeCentralOnlyNotificationConfig_RemovesPersistedNotificationListsAndSmtpRows() { // Simulate a pre-fix build that already shipped a notification list and an // SMTP config (with a plaintext password) to the site. await SeedNotificationRowAsync("Ops Team", "[\"ops@example.com\"]"); await SeedSmtpRowAsync("smtp.example.com:587", "PLAINTEXT-SECRET"); Assert.Equal(1, await RowCountAsync("notification_lists")); Assert.Equal(1, await RowCountAsync("smtp_configurations")); // The fix: every artifact apply/deploy purges these central-only rows. await _storage.PurgeCentralOnlyNotificationConfigAsync(); // Both tables are now empty — the plaintext SMTP credential is gone. Assert.Equal(0, await RowCountAsync("notification_lists")); Assert.Equal(0, await RowCountAsync("smtp_configurations")); } [Fact] public async Task PurgeCentralOnlyNotificationConfig_IsIdempotent_OnEmptyTables() { // No rows present — purge must not throw and must leave the tables empty. await _storage.PurgeCentralOnlyNotificationConfigAsync(); await _storage.PurgeCentralOnlyNotificationConfigAsync(); Assert.Equal(0, await RowCountAsync("notification_lists")); Assert.Equal(0, await RowCountAsync("smtp_configurations")); } // ── Schema includes all WP-33 tables ── [Fact] public async Task Initialize_CreatesAllArtifactTables() { // The initialize already ran. Verify by storing to each table. await _storage.StoreSharedScriptAsync("s", "code", null, null); await _storage.StoreExternalSystemAsync("e", "url", "None", null, null); await _storage.StoreDatabaseConnectionAsync("d", "connstr", 1, TimeSpan.Zero); // notification_lists / smtp_configurations remain in the schema (kept for the // security purge) — their presence is exercised by the purge tests above. // All succeeded without exceptions = tables exist } }