3c5cc831c0
* feat: configurable bind host for WebUI and langgraph dev (refs #400) WebUI mode was only reachable from the machine running it: the front-end got no bind interface, and `start_langgraph_dev(...)` was called without a host, so both servers stayed on loopback with no way to widen them. Adds two config fields with deliberately different defaults: webui_host = 0.0.0.0 front-end serves the app shell, no secrets langgraph_dev_host = 127.0.0.1 unauthenticated API, agent can run shell The design hinges on separating bind address from client address. Only bind() uses the configured interface; every consumer that *connects* (health probes, occupancy checks, async sub-agent self-dispatch) goes through the new `_probe_host`, which maps a wildcard bind back to loopback and honors a pinned interface verbatim. `_can_bind_port` is the one exception and binds the literal host, since it must replicate the bind the server itself will attempt. - manager.py: `_probe_host`, `_is_loopback_host`, `_format_hostport`; host kwarg threaded through the probes and `start_langgraph_dev`, which now emits `--host` and propagates EVOSCIENTIST_LANGGRAPH_DEV_HOST to the subprocess - sdk.py: `langgraph_dev_url` tracks host as well as port; EvoScientist.py reuses it instead of an inline f-string - server.py: `--host` flag mirroring `--port`, plus a red PUBLIC BIND banner whenever the bind is not provably loopback - webui.py: forwards both hosts; the front-end is widened via HOSTNAME because @evoscientist/webui ships no --host flag — its bin launcher does `HOSTNAME: process.env.HOSTNAME || "127.0.0.1"`. The warning is gated on the backend host only, so the shipped front-end default doesn't print a banner on every launch Verified end to end against a live server: requesting 0.0.0.0 yields a socket listening on 0.0.0.0 with the health probe correctly resolved to 127.0.0.1, while the default still binds 127.0.0.1 only. Note: webui_host defaulting to 0.0.0.0 is a behavior change — upgrading users will find the front-end reachable from the LAN. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> * feat: default both bind hosts to 0.0.0.0, add --host and wizard host rendering (closes #400) Completes the remaining items from #400. - `langgraph_dev_host` now defaults to 0.0.0.0, matching `webui_host`. Remote WebUI use needs both anyway (the UI reaches the backend from the browser, not server-side), so a loopback backend default just meant every remote user hit a silently failing UI. `_DEFAULT_HOST` and sdk's `DEFAULT_LANGGRAPH_DEV_HOST` follow, so there is one story about where these servers listen. SECURITY: this exposes an unauthenticated API whose agent can run shell commands. The red PUBLIC BIND banner consequently fires on every launch while exposed — kept deliberately, since the exposure is real and the escape hatch (`--host 127.0.0.1` / `config set langgraph_dev_host`) is only discoverable if we say so. READMEs now lead with the warning and document the SSH-tunnel alternative. - `EvoSci --host <ip>` on the WebUI launch path, driving both servers. In WebUI mode they are two halves of one surface; moving only one leaves the UI loading but unable to reach the agent. Blank values are dropped rather than written as an empty override that would beat the config file. - Onboarding wizard no longer prints hard-coded `http://127.0.0.1:{port}` / `http://localhost:{port}` (steps.py:160, :223) — both render the configured bind through `_base_url` / `_format_hostport`, so a pinned interface is reported honestly and a wildcard still shows loopback. Verified against a live server: with no host argument at all, resolution through EvoScientistConfig yields a socket listening on 0.0.0.0, a client URL of http://127.0.0.1, and the warning gate returning True. Still open and tracked separately: the front-end takes its backend URL from browser input: `@evoscientist/webui` reads only HOSTNAME, PORT and EVOSCIENTIST_LANGGRAPH_DEV_PORT, so advertising a backend URL needs a change in that repo. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> * ci: bump setup-uv v6 -> v9.0.0 to drop the deprecated node20 runtime GitHub now warns that setup-uv@v6 targets Node.js 20 and is being forced onto Node.js 24. v7.0.0 is the release that made that switch, so anything >= v7 clears the warning; v9.0.0 is current. Pinned to the full tag deliberately: setup-uv stopped publishing major and minor tags in v8.0.0 as supply-chain hardening, so `@v9` and `@v8` return 404 and would fail the job outright. Releases are immutable from v8 on, so the full tag is as tamper-proof as a SHA. Comment left in lint.yml because "simplifying" this back to `@v9` is an easy and CI-breaking mistake. actions/checkout@v5 is already node24 and needs no change. Note: v9.0.0 flips the `prune-cache` default to false (upstream did this to ease load on PyPI infrastructure). None of these workflows set it, so they follow the new default and Actions cache usage may grow. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> * fix(cli): correct --host help text and warn on public bind in non-WebUI modes The --host help claimed "WebUI mode only", which is wrong in a way that matters for security. `--host` writes `langgraph_dev_host` unconditionally, and `_ensure_async_subagent_server` auto-starts that backend for tui / cli / serve as well — the langgraph dev server is shared across UI modes. So the flag narrows or widens the agent API in every mode, and only `webui_host` is actually WebUI-specific. Reported against cli/commands.py. The documentation error hid a real gap: the PUBLIC BIND banner lived only in deploy/server.py and deploy/webui.py, so a plain `EvoSci` session bound 0.0.0.0 with no runtime signal whatsoever — and `--help` is opt-in, so fixing the text alone would not surface it. Added the same banner to the shared CLI path, gated on `is_async_subagents_available()`: ensure_langgraph_dev fails soft (async degrades to in-process delegation), and warning about a bind that never happened would be worse than staying quiet. READMEs (EN + zh-CN) get the same correction — the warning block sat inside the Desktop WebUI section and read as WebUI-scoped. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> * fix(deploy): strip the config-derived bind host, not just the CLI one `deploy()` only stripped the `--host` branch. When the flag was omitted, `getattr(config, "langgraph_dev_host", ...)` flowed unstripped into `_is_port_occupied`, `is_langgraph_dev_running`, `start_langgraph_dev` and the banner. `run_webui` already strips unconditionally; this aligns the two. Reachable because `deploy()` reads through `getattr` and is routinely handed duck-typed config objects (tests, embedders) that never run `EvoScientistConfig.__post_init__`, which is what normally normalizes these fields. Worst case was not just a bad bind: `_is_loopback_host(" 127.0.0.1 ")` is False, so a padded loopback value would print a false PUBLIC BIND warning while binding a string socket.bind() rejects outright — a security banner saying the opposite of the truth. Three regression tests added, each verified to fail against the old code. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> * style: apply ruff format to the bind-host changes The Lint workflow runs both `ruff check` and `ruff format --check`; I had only been running the former locally, so five files landed unformatted and failed CI. Whitespace and line-wrapping only — no semantic change. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> * fix(security): keep the langgraph dev backend on loopback by default The backend is an unauthenticated API whose agent can run shell commands, and it is auto-started in every UI mode (tui/cli/webui/serve/deploy) — so a 0.0.0.0 default put it on the network for users who never asked. Restore 127.0.0.1 as the default and make 0.0.0.0 an explicit opt-in. webui_host keeps its 0.0.0.0 default: the front-end serves the app shell only and holds no credentials. run_webui already prints a remote-backend hint when the front-end is exposed and the backend is not. Help text and both READMEs are reframed around widening rather than narrowing; the escape-hatch tests are inverted to assert the public-bind opt-in survives into argv. Co-Authored-By: Claude Opus 5 <noreply@anthropic.com> --------- Co-authored-by: Claude Opus 5 <noreply@anthropic.com>
295 lines
10 KiB
Python
295 lines
10 KiB
Python
"""Tests for ``EvoScientist._maybe_swap_async_subagents``.
|
|
|
|
Covers the fallback / swap / strip-internal-flag paths that decide whether
|
|
sub-agents are routed in-process (sync ``task`` tool) or to the langgraph
|
|
dev subprocess (``AsyncSubAgent`` over HTTP).
|
|
"""
|
|
|
|
from __future__ import annotations
|
|
|
|
from types import SimpleNamespace
|
|
from unittest.mock import patch
|
|
|
|
from EvoScientist.EvoScientist import _maybe_swap_async_subagents
|
|
|
|
|
|
def _sub(name: str, *, async_flag: bool, description: str = "desc") -> dict:
|
|
"""Build a sub-agent dict shaped like ``utils.load_subagents`` output."""
|
|
return {
|
|
"name": name,
|
|
"description": description,
|
|
"system_prompt": "x",
|
|
"tools": [],
|
|
"_async": async_flag,
|
|
}
|
|
|
|
|
|
# =============================================================================
|
|
# Async disabled in config → return unchanged
|
|
# =============================================================================
|
|
|
|
|
|
def test_returns_unchanged_when_async_disabled_and_strips_flag():
|
|
"""No swap when config.enable_async_subagents is False (the default).
|
|
|
|
Even in this disabled-path, the internal ``_async`` flag must be stripped
|
|
before sub-agents reach deepagents (which may schema-validate the dicts).
|
|
"""
|
|
cfg = SimpleNamespace(enable_async_subagents=False)
|
|
subs = [
|
|
_sub("planner-agent", async_flag=False),
|
|
_sub("writing-agent", async_flag=True),
|
|
]
|
|
with patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg):
|
|
out = _maybe_swap_async_subagents(subs)
|
|
assert out is subs
|
|
for s in out:
|
|
assert "_async" not in s, f"_async leaked into {s['name']}"
|
|
|
|
|
|
# =============================================================================
|
|
# Async enabled but langgraph dev unreachable → strip flag, return as sync
|
|
# =============================================================================
|
|
|
|
|
|
class TestFallbackPath:
|
|
def _setup(self):
|
|
return SimpleNamespace(
|
|
enable_async_subagents=True,
|
|
langgraph_dev_port=6174,
|
|
)
|
|
|
|
def test_returns_subs_unchanged(self):
|
|
cfg = self._setup()
|
|
subs = [
|
|
_sub("planner-agent", async_flag=False),
|
|
_sub("writing-agent", async_flag=True),
|
|
]
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=False,
|
|
),
|
|
):
|
|
out = _maybe_swap_async_subagents(subs)
|
|
assert out is subs
|
|
|
|
def test_strips_async_flag_from_all_subs(self):
|
|
"""Even fallback path must strip _async before deepagents handoff."""
|
|
cfg = self._setup()
|
|
subs = [
|
|
_sub("planner-agent", async_flag=False),
|
|
_sub("writing-agent", async_flag=True),
|
|
]
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=False,
|
|
),
|
|
):
|
|
out = _maybe_swap_async_subagents(subs)
|
|
for s in out:
|
|
assert "_async" not in s, f"_async leaked into {s['name']}"
|
|
|
|
|
|
# =============================================================================
|
|
# Async enabled + reachable + nothing flagged async → return all as sync (stripped)
|
|
# =============================================================================
|
|
|
|
|
|
def test_no_async_flagged_subs_strips_and_returns():
|
|
cfg = SimpleNamespace(enable_async_subagents=True, langgraph_dev_port=6174)
|
|
subs = [
|
|
_sub("planner-agent", async_flag=False),
|
|
_sub("research-agent", async_flag=False),
|
|
]
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=True,
|
|
),
|
|
):
|
|
out = _maybe_swap_async_subagents(subs)
|
|
assert out is subs # nothing to swap, returned as-is
|
|
for s in out:
|
|
assert "_async" not in s
|
|
|
|
|
|
# =============================================================================
|
|
# Async enabled + reachable + has async-flagged subs → swap to AsyncSubAgent
|
|
# =============================================================================
|
|
|
|
|
|
def test_swaps_async_flagged_subs():
|
|
cfg = SimpleNamespace(enable_async_subagents=True, langgraph_dev_port=6174)
|
|
subs = [
|
|
_sub("planner-agent", async_flag=False, description="plan"),
|
|
_sub("writing-agent", async_flag=True, description="write report"),
|
|
_sub("data-analysis-agent", async_flag=True, description="analyze"),
|
|
]
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=True,
|
|
),
|
|
):
|
|
out = _maybe_swap_async_subagents(subs)
|
|
|
|
assert len(out) == 3
|
|
|
|
# Sync sub kept as a plain dict, _async stripped.
|
|
by_name = {s["name"]: s for s in out}
|
|
planner = by_name["planner-agent"]
|
|
assert isinstance(planner, dict)
|
|
assert "_async" not in planner
|
|
|
|
# Async subs are AsyncSubAgent specs (TypedDict) pointing at the right URL.
|
|
writing = by_name["writing-agent"]
|
|
assert writing["graph_id"] == "writing-agent"
|
|
assert writing["url"] == "http://127.0.0.1:6174"
|
|
assert writing["description"] == "write report"
|
|
|
|
data = by_name["data-analysis-agent"]
|
|
assert data["graph_id"] == "data-analysis-agent"
|
|
assert data["url"] == "http://127.0.0.1:6174"
|
|
|
|
|
|
def test_swap_uses_configured_port():
|
|
"""AsyncSubAgent.url should reflect cfg.langgraph_dev_port, not hardcoded."""
|
|
cfg = SimpleNamespace(enable_async_subagents=True, langgraph_dev_port=9999)
|
|
subs = [_sub("writing-agent", async_flag=True)]
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=True,
|
|
),
|
|
):
|
|
out = _maybe_swap_async_subagents(subs)
|
|
assert out[0]["url"] == "http://127.0.0.1:9999"
|
|
|
|
|
|
def test_swap_uses_configured_host():
|
|
"""A backend pinned to one interface can't be self-dispatched over
|
|
loopback, so the URL must track cfg.langgraph_dev_host too."""
|
|
cfg = SimpleNamespace(
|
|
enable_async_subagents=True,
|
|
langgraph_dev_port=6174,
|
|
langgraph_dev_host="192.168.1.5",
|
|
)
|
|
subs = [_sub("writing-agent", async_flag=True)]
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=True,
|
|
),
|
|
):
|
|
out = _maybe_swap_async_subagents(subs)
|
|
assert out[0]["url"] == "http://192.168.1.5:6174"
|
|
|
|
|
|
def test_swap_maps_wildcard_host_to_loopback():
|
|
"""A 0.0.0.0 bind includes loopback, and connecting *to* 0.0.0.0 is
|
|
rejected outright on Windows — the client URL must collapse to
|
|
127.0.0.1 rather than echo the bind address back."""
|
|
cfg = SimpleNamespace(
|
|
enable_async_subagents=True,
|
|
langgraph_dev_port=6174,
|
|
langgraph_dev_host="0.0.0.0",
|
|
)
|
|
subs = [_sub("writing-agent", async_flag=True)]
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=True,
|
|
),
|
|
):
|
|
out = _maybe_swap_async_subagents(subs)
|
|
assert out[0]["url"] == "http://127.0.0.1:6174"
|
|
|
|
|
|
# =============================================================================
|
|
# AsyncWatcherMiddleware appended on swap
|
|
# =============================================================================
|
|
|
|
|
|
def test_maybe_swap_appends_watcher_middleware_when_enabled():
|
|
"""When async subagents are swapped, AsyncWatcherMiddleware must be appended."""
|
|
from EvoScientist.middleware.async_watcher import AsyncWatcherMiddleware
|
|
|
|
cfg = SimpleNamespace(enable_async_subagents=True, langgraph_dev_port=6174)
|
|
|
|
middleware: list = []
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=True,
|
|
),
|
|
):
|
|
subs = [_sub("writing-agent", async_flag=True)]
|
|
_maybe_swap_async_subagents(subs, middleware)
|
|
|
|
assert len(middleware) == 1
|
|
assert isinstance(middleware[0], AsyncWatcherMiddleware)
|
|
|
|
|
|
def test_maybe_swap_skips_middleware_when_no_async_flagged():
|
|
"""Without any _async-flagged subagents, no middleware is appended."""
|
|
cfg = SimpleNamespace(enable_async_subagents=True, langgraph_dev_port=6174)
|
|
|
|
middleware: list = []
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=True,
|
|
),
|
|
):
|
|
subs = [_sub("planner-agent", async_flag=False)]
|
|
_maybe_swap_async_subagents(subs, middleware)
|
|
|
|
assert middleware == []
|
|
|
|
|
|
def test_maybe_swap_skips_middleware_when_langgraph_unreachable():
|
|
"""Fallback path must not append middleware (no watchers will fire)."""
|
|
cfg = SimpleNamespace(enable_async_subagents=True, langgraph_dev_port=6174)
|
|
|
|
middleware: list = []
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=False,
|
|
),
|
|
):
|
|
subs = [_sub("writing-agent", async_flag=True)]
|
|
_maybe_swap_async_subagents(subs, middleware)
|
|
|
|
assert middleware == []
|
|
|
|
|
|
def test_maybe_swap_no_middleware_arg_does_not_crash():
|
|
"""Backward-compat: middleware parameter is optional."""
|
|
cfg = SimpleNamespace(enable_async_subagents=True, langgraph_dev_port=6174)
|
|
|
|
with (
|
|
patch("EvoScientist.EvoScientist._ensure_config", return_value=cfg),
|
|
patch(
|
|
"EvoScientist.langgraph_dev.manager.is_async_subagents_available",
|
|
return_value=True,
|
|
),
|
|
):
|
|
subs = [_sub("writing-agent", async_flag=True)]
|
|
out = _maybe_swap_async_subagents(subs)
|
|
|
|
assert len(out) == 1
|
|
assert out[0]["graph_id"] == "writing-agent"
|