4 Commits

Author SHA1 Message Date
Claude 4190fbcf90 feat(graph): owner_id 寫入鏈必經(根治無主資料)——配合 base owner-mandatory(D28)
- kbdb-client requireOwner 守衛:漏 owner 插件端即 throw,不再靜默送 owner:''
- owner 一路 thread:persistNodes/ingestEnvelope/entity-crud/triplet-crud 全必填
- 病灶修:POST /triplets/ingest 原本沒傳 owner→加 owner_id query+400
- 寫入 route 缺 owner→400;vitest 23→27
- 註:gloss-bridge 分支的 backfill/gloss-entry 另需套 owner 必填(附說明),不跨支疊改
2026-07-05 11:00:30 +00:00
Claude b53c5c94a9 chore(deps): 同步 pnpm-lock.yaml 與 package.json(清掉早已移除套件的殘留鎖檔項)
補跑第一步 clone 後 fresh install 就撞坑:pnpm-lock.yaml 裡鎖著
@modelcontextprotocol/sdk、unpdf、@cloudflare/vitest-pool-workers、fast-check
四個套件,但 package.json 早就沒宣告它們了(歷史 trim 沒同步鎖檔)。
另外先誤用 `npm install` 疊加在既有 pnpm 目錄結構上,產生指向
node_modules/.pnpm/... 的斷頭 symlink,導致 wrangler deploy esbuild
"Could not resolve hono" 系列錯誤 — 清掉重跑 `pnpm install` 後才正常。
記錄給 progress-guard:clone 後第一步務必用 pnpm install,不要用 npm。

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-07-03 08:58:03 +00:00
Claude 454ea8d240 fix(kbdb-client): ensureTemplate 誤判「不存在」導致重複建 template → base 500
補跑實測(POST /triplets/ingest 端到端跑不過)發現的真契約漂移,非單純部署坑:
- ensureTemplate() 假設 GET /templates/:name 回傳 {id, slots} 平鋪陣列,
  但 base(arcrun-kbdb)實際回 {success, template:{id, slots_json:"[...]"}}
  (多包一層 + slots 是 JSON 字串)。existing.id 永遠 undefined → 一律走「不存在」
  分支重複 POST 同名 template → base 對重名衝突沒有優雅的 409,直接 500,
  ingest 端到端全斷。
- 改為解 existing.template + JSON.parse(slots_json),修好後 POST /triplets/ingest
  → GET /triplets 端到端打通(見部署驗證 curl 記錄)。

同時讓 KbdbClient 支援可選 fetcher(service binding 的 Fetcher),
搭配上一個 commit 的 KBDB_BASE_SVC binding 繞開 workers.dev 互連封鎖;
沒有 binding 時(本地 dev/mock)仍 fallback 回全域 fetch,不影響既有單元測試。

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-07-03 08:57:53 +00:00
Claude c7d8a74bee fix(deploy): leo21c self-host 撞牆修復 — secret 被 vars 覆蓋 + 死 zone route + workers.dev 互連被擋
T-kb-skeleton①部署到 leo21c 補跑實測發現三坑:
1. [vars] 宣告 KBDB_BASE_URL="",wrangler deploy 會用它覆蓋掉已存在的 remote
   secret(vars 優先權 > secret),導致部署後 KBDB_BASE_URL 被打回空字串。移除該鍵,
   一律只透過 `wrangler secret put` 設定。
2. [[routes]] custom_domain "kbdb-graph.finally.click" 的 zone 不在 leo21c 帳號下
   (CF API GET /zones?name=finally.click 回空),會讓 deploy 該路由失敗。註解掉,
   self-hosted 預設乾淨部署到 workers.dev。
3. 最關鍵:Worker 直接 fetch() 另一個 *.workers.dev Worker 會被 CF 擋
   (error code 1042,workers.dev 共享 zone 的 loop-prevention)。self-hosted 帳號通常
   沒自訂域名可繞,正規解法是 Service Binding(CF 內部直連,不經公開網路)。
   新增 [[services]] binding=KBDB_BASE_SVC -> arcrun-kbdb。

Co-Authored-By: Claude Sonnet 5 <noreply@anthropic.com>
2026-07-03 08:57:43 +00:00
19 changed files with 209 additions and 1754 deletions
-1686
View File
File diff suppressed because it is too large Load Diff
+8 -6
View File
@@ -13,12 +13,12 @@ const norm = (s: string): string => s.toLowerCase().trim();
// ─── Entity ──────────────────────────────────────────────────────────────────
/** 建立 Entitycanonical name)。底層 = 一筆 entity template record。 */
export async function createEntity(client: KbdbClient, canonical: string, owner?: string): Promise<Entity> {
export async function createEntity(client: KbdbClient, canonical: string, owner: string): Promise<Entity> {
await ensurePluginTemplates(client);
const id = await client.createRecord(
TPL_ENTITY,
{ canonical, aliases_json: '[]', entity_type: '', owner: owner ?? '' },
owner,
{ canonical, aliases_json: '[]', entity_type: '', owner }, // 真 owner 落 slot(不再 ?? ''
owner, // 必經:createRecord 內 requireOwner 守衛
);
return { id, canonical, aliases: [] };
}
@@ -45,21 +45,23 @@ export async function listEntities(client: KbdbClient, limit = 100, owner?: stri
* 新增 alias。base 無 PUT /records/:id → 改「重建一筆新 entity record」覆寫(含舊 canonical + 既有 aliases + 新 alias)。
* [→arcrun] base 缺 PUT /records/:id:補上後改為原地 patch aliases_json,省一次重建。
*/
export async function addAlias(client: KbdbClient, entityId: string, alias: string, owner?: string): Promise<void> {
export async function addAlias(client: KbdbClient, entityId: string, alias: string, owner: string): Promise<void> {
const rec = await client.getRecord(entityId);
if (!rec) throw new Error(`Entity ${entityId} not found`);
const ent = recordToEntity(rec);
if (ent.aliases.includes(alias)) return;
const aliases = [...ent.aliases, alias];
await ensurePluginTemplates(client);
// 重建時沿用原 record 既有 owner;原 record 無主(舊資料 owner=None)才退回 caller 指定的 owner。
const effectiveOwner = (rec.values.owner || '').trim() || owner;
await client.createRecord(
TPL_ENTITY,
{
canonical: ent.canonical,
aliases_json: JSON.stringify(aliases),
entity_type: rec.values.entity_type ?? '',
owner: rec.values.owner ?? owner ?? '',
owner: effectiveOwner,
},
owner,
effectiveOwner, // 必經:createRecord 內 requireOwner 守衛
);
}
+1 -1
View File
@@ -18,7 +18,7 @@ import type { KbdbClient } from '../lib/kbdb-client';
export async function normalizeEntity(
client: KbdbClient,
rawName: string,
owner?: string,
owner: string, // 必經:未命中會建新 entity,必帶 owner
): Promise<string> {
try {
const exact = await findEntityByName(client, rawName, owner);
+4 -4
View File
@@ -16,7 +16,7 @@ export async function createPendingAlias(
candidateEntityId: string,
candidateCanonical: string,
similarity: number,
owner?: string,
owner: string, // 必經:pending record 也不可無主
): Promise<PendingAlias> {
await ensurePluginTemplates(client);
const id = await client.createRecord(
@@ -27,7 +27,7 @@ export async function createPendingAlias(
candidate_canonical: candidateCanonical,
similarity: String(similarity),
},
owner,
owner, // 必經:createRecord 內 requireOwner 守衛
);
return {
id,
@@ -56,14 +56,14 @@ export async function getPendingAliases(client: KbdbClient, limit = 100, owner?:
}
/** 確認 → addAlias 到候選 entity。pending soft 保留([→arcrun] base 缺 DELETE record)。 */
export async function confirmPendingAlias(client: KbdbClient, pendingId: string, owner?: string): Promise<void> {
export async function confirmPendingAlias(client: KbdbClient, pendingId: string, owner: string): Promise<void> {
const rec = await client.getRecord(pendingId);
if (!rec || !rec.values.raw_name) throw new Error(`Pending alias ${pendingId} not found`);
await addAlias(client, rec.values.candidate_entity_id, rec.values.raw_name, owner);
}
/** 拒絕 → 以 raw_name 建新 entity。pending soft 保留([→arcrun] base 缺 DELETE record)。 */
export async function rejectPendingAlias(client: KbdbClient, pendingId: string, owner?: string): Promise<Entity> {
export async function rejectPendingAlias(client: KbdbClient, pendingId: string, owner: string): Promise<Entity> {
const rec = await client.getRecord(pendingId);
if (!rec || !rec.values.raw_name) throw new Error(`Pending alias ${pendingId} not found`);
return createEntity(client, rec.values.raw_name, owner);
+3 -3
View File
@@ -22,7 +22,7 @@ export type IngestNode = {
export async function persistNodes(
client: KbdbClient,
nodes: IngestNode[],
owner_id?: string,
owner_id: string, // 必經:owner 一路從 ingest envelope / route 帶到底,不得掉成空字串
): Promise<void> {
if (!nodes || nodes.length === 0) return;
await ensurePluginTemplates(client);
@@ -42,9 +42,9 @@ export async function persistNodes(
gloss: n.gloss ?? '',
// contract 預設 true;只在明確 false 時存標(base 看 'false' 跳過 embed)。
embed: n.embed === false ? 'false' : 'true',
owner: owner_id ?? '',
owner: owner_id, // 真 owner 落 slot(不再 ?? ''
},
owner_id,
owner_id, // createRecord 內 requireOwner 守衛:缺→throw
);
}
}
+1 -1
View File
@@ -13,7 +13,7 @@ export type CreateTripletData = {
object: string;
source_block_id?: string;
confidence?: number;
owner_id?: string;
owner_id: string; // 必經:三元組寫入必帶 ownercreateRecord 內 requireOwner 守衛)
clusters?: string[];
bridge_score?: number;
subject_entity_type?: string;
+2 -2
View File
@@ -55,7 +55,7 @@ export async function extractTripletsViaLLM(ai: Ai, chunks: string[]): Promise<L
export async function writeTripletToDb(
client: KbdbClient,
t: { subject: string; predicate: string; object: string; confidence?: number },
owner: string | null,
owner: string, // 必經:萃取寫入必帶 owner(不再收 null → 不會 owner_id: undefined
): Promise<boolean> {
// 查重:以 S-P-O 三欄精確比對(queryTriplets 取 template record 後在插件層 filter
const { count } = await queryTriplets(client, {
@@ -71,7 +71,7 @@ export async function writeTripletToDb(
predicate: t.predicate,
object: t.object,
confidence: t.confidence ?? 0.8,
owner_id: owner ?? undefined,
owner_id: owner,
});
return true;
}
+1 -1
View File
@@ -53,7 +53,7 @@ export type IngestResult = { skipped: boolean; ingested: number; deprecated: num
export async function ingestEnvelope(
client: KbdbClient,
env: IngestEnvelope,
owner_id?: string,
owner_id: string, // 必經:owner 從 route 帶入,一路 thread 進 triplet + node 寫入,不得掉成空
): Promise<IngestResult> {
await ensurePluginTemplates(client);
+56 -12
View File
@@ -26,16 +26,40 @@ export type BaseRecord = {
export type CreateEntryInput = {
content: string | null;
entry_type: string;
owner_id?: string;
// owner_id 必經(D27/D28):型別上必填、且執行期缺→throw。不再靜默送空 → 不寫出無主資料。
owner_id: string;
parent_id?: string;
page_name?: string;
};
/**
* owner_id D27/D282026-07-05
* owner owner:'' base owner=None mira owner 使
* 16 gloss entry owner=Nonebase owner 400fail loud
* owner base route/envelope
*/
export function requireOwner(owner_id: string | null | undefined, op: string): string {
const v = (owner_id ?? '').trim();
if (!v) {
throw new Error(
`[kbdb-graph] ${op} 缺 owner_id:owner 為必經欄位,不可寫出無主資料。` +
`請從最外層(route 參數 / ingest envelope)把真 owner thread 到底。`,
);
}
return v;
}
/** 基本盤 API client。所有方法 = 一個 HTTP 呼叫,零 SQL。 */
export class KbdbClient {
constructor(
private readonly baseUrl: string,
private readonly token?: string,
// 2026-07-03 補跑實測發現的坑:Cloudflare 會擋 Worker → 另一個 *.workers.dev
// Worker 的直連 fetcherror code 1042loop-prevention on shared workers.dev zone)。
// self-hosted 帳號通常沒有自訂域名可用,正規解法 = Service Binding
// wrangler.toml `[[services]]`),由 CF 內部直接路由、不經公開網路。
// 有綁定時優先走它;沒有(例如本地 dev/mock)則 fallback 回全域 fetch。
private readonly fetcher?: { fetch: typeof fetch },
) {
if (!baseUrl) {
throw new Error('KBDB_BASE_URL 未設定:插件需指向基本盤 API(不可直連 D1)');
@@ -46,7 +70,8 @@ export class KbdbClient {
const headers: Record<string, string> = { 'Content-Type': 'application/json' };
if (this.token) headers['Authorization'] = `Bearer ${this.token}`;
const res = await fetch(this.baseUrl.replace(/\/$/, '') + path, {
const doFetch = this.fetcher ? this.fetcher.fetch.bind(this.fetcher) : fetch;
const res = await doFetch(this.baseUrl.replace(/\/$/, '') + path, {
method,
headers,
body: body === undefined ? undefined : JSON.stringify(body),
@@ -63,7 +88,8 @@ export class KbdbClient {
// --- entries ---
async createEntry(input: CreateEntryInput): Promise<BaseEntry> {
const { entry } = await this.req<{ entry: BaseEntry }>('POST', '/entries', input);
const owner_id = requireOwner(input.owner_id, 'createEntry');
const { entry } = await this.req<{ entry: BaseEntry }>('POST', '/entries', { ...input, owner_id });
return entry;
}
@@ -113,34 +139,46 @@ export class KbdbClient {
// --- templates= 替代建表;插件要新類型只能建 template) ---
async ensureTemplate(name: string, slots: string[], description?: string): Promise<void> {
const existing = await this.req<{ id?: string; slots?: string[] } | { error: string }>(
// 2026-07-03 補跑實測發現的坑:base 的 GET /templates/:name 回傳是
// { success, template: { id, slots_json: "[...]" } }(包一層 + slots 是 JSON 字串),
// 不是原本假設的 { id, slots } 平鋪陣列。誤判「不存在」會導致對已存在的 name 重複
// POST /templates,而 base 對重名衝突沒有回優雅的 409,是直接 500(見 kbdb-graph 實測)。
const existing = await this.req<{ template?: { id: string; slots_json?: string } }>(
'GET',
`/templates/${encodeURIComponent(name)}`,
).catch(() => null);
const tpl = existing?.template;
// 全新 template → 建。
if (!existing || !(existing as any).id) {
if (!tpl || !tpl.id) {
await this.req('POST', '/templates', { name, slots, description, created_by: 'kbdb-graph' });
return;
}
// 既有 template → 補缺 slot(不 early-return;否則 seed 後新增的 slot 永遠進不來)。
// 走 base PATCH /templates/:id 增 slot;既有環境免另跑遷移腳本即收斂。
const have = new Set((existing as any).slots ?? []);
let haveList: string[] = [];
try {
haveList = JSON.parse(tpl.slots_json ?? '[]');
} catch {
haveList = [];
}
const have = new Set(haveList);
const missing = slots.filter((s) => !have.has(s));
if (missing.length === 0) return;
await this.req('PATCH', `/templates/${encodeURIComponent((existing as any).id)}`, {
await this.req('PATCH', `/templates/${encodeURIComponent(tpl.id)}`, {
slots: [...have, ...missing],
});
}
// --- records= template 實例,填 slot ---
async createRecord(template: string, values: Record<string, string>, owner_id?: string): Promise<string> {
async createRecord(template: string, values: Record<string, string>, owner_id: string): Promise<string> {
const owner = requireOwner(owner_id, `createRecord(template=${template})`);
const { record } = await this.req<{ record: { record_id: string } }>('POST', '/records', {
template,
values,
owner_id,
owner_id: owner,
});
return record.record_id;
}
@@ -175,7 +213,13 @@ function qs(params: Record<string, string | number | undefined>): string {
return parts.length ? `?${parts.join('&')}` : '';
}
/** 從 Bindings 建 client。KBDB_BASE_URL 未設時拋錯(不准 fallback 直連 D1)。 */
export function makeKbdbClient(env: { KBDB_BASE_URL?: string; KBDB_INTERNAL_TOKEN?: string }): KbdbClient {
return new KbdbClient(env.KBDB_BASE_URL ?? '', env.KBDB_INTERNAL_TOKEN);
/** Bindings clientKBDB_BASE_URL fallback D1
* KBDB_BASE_SVCservice binding workers.devworkers.dev
* CF error 1042 退 fetch dev / */
export function makeKbdbClient(env: {
KBDB_BASE_URL?: string;
KBDB_INTERNAL_TOKEN?: string;
KBDB_BASE_SVC?: { fetch: typeof fetch };
}): KbdbClient {
return new KbdbClient(env.KBDB_BASE_URL ?? '', env.KBDB_INTERNAL_TOKEN, env.KBDB_BASE_SVC);
}
+8 -2
View File
@@ -54,13 +54,19 @@ entityRoutes.openapi(listPendingRoute, async (c) => {
entityRoutes.post('/pending/:id/confirm', async (c) => {
const id = c.req.param('id');
await confirmPendingAlias(makeKbdbClient(c.env), id);
// owner 必經:confirm 會 addAlias(重建 entity record),缺 owner→400 不寫無主資料。
const owner = c.req.query('owner_id')?.trim();
if (!owner) return c.json({ error: 'owner_id query parameter required(資料不可無主)' }, 400);
await confirmPendingAlias(makeKbdbClient(c.env), id, owner);
return c.json({ success: true, action: 'confirmed', id });
});
entityRoutes.post('/pending/:id/reject', async (c) => {
const id = c.req.param('id');
const newEntity = await rejectPendingAlias(makeKbdbClient(c.env), id);
// owner 必經:reject 會 createEntity,缺 owner→400 不寫無主資料。
const owner = c.req.query('owner_id')?.trim();
if (!owner) return c.json({ error: 'owner_id query parameter required(資料不可無主)' }, 400);
const newEntity = await rejectPendingAlias(makeKbdbClient(c.env), id, owner);
return c.json({ success: true, action: 'rejected', newEntity });
});
+8 -2
View File
@@ -77,7 +77,7 @@ const createRouteDefinition = createRoute({
subject: z.string().min(1),
predicate: z.string().min(1),
object: z.string().min(1),
owner_id: z.string().optional(),
owner_id: z.string().min(1), // 必填:缺→400(資料不可無主)
source_block_id: z.string().optional(),
confidence: z.number().optional(),
clusters: z.array(z.string()).optional(),
@@ -103,10 +103,13 @@ const ingestRoute = createRoute({
method: 'post',
path: '/ingest',
request: {
// owner_id 走 route 參數(envelope 是 .strict() 凍結契約,不塞 owner 進去)。缺→400。
query: z.object({ owner_id: z.string().optional().describe('資料所有者(必填,缺→400') }),
body: { content: { 'application/json': { schema: IngestEnvelopeSchema } } },
},
responses: {
200: { description: 'Envelope ingested (or skipped if same content_hash)' },
400: { description: 'Missing owner_id (資料不可無主)' },
422: { description: 'Invalid envelope (forbidden field or shape mismatch)' },
},
tags: ['Triplets'],
@@ -115,8 +118,11 @@ const ingestRoute = createRoute({
tripletRoutes.openapi(
ingestRoute,
async (c) => {
// owner 必經:缺→400(不寫出無主 triplet/node;避免再現 owner=None 被 mira 過濾)。
const owner_id = c.req.query('owner_id')?.trim();
if (!owner_id) return c.json({ error: 'owner_id query parameter required(資料不可無主)' }, 400);
const env = c.req.valid('json');
const result = await ingestEnvelope(makeKbdbClient(c.env), env);
const result = await ingestEnvelope(makeKbdbClient(c.env), env, owner_id);
return c.json(result, 200);
},
// strict() 驗證失敗(如送禁止欄位 bridge_score)→ 422,不是預設 400。
+5
View File
@@ -6,6 +6,11 @@ export type Bindings = {
KBDB_BASE_URL?: string; // 基本盤 arcrun/kbdb API 網址(leo: 可設定,先留空)
KBDB_INGEST_URL?: string; // ingest 服務網址(refresh 代轉對象;T4 就緒前留空)
KBDB_INTERNAL_TOKEN?: string;
// Service Bindingwrangler.toml [[services]])→ 直連基本盤 worker,繞開
// CF error 1042Worker 不能公開 fetch 另一個 *.workers.dev Worker)。
// 2026-07-03 補跑實測發現:self-hosted 帳號常無自訂域名,KBDB_BASE_URL 單靠公開
// fetch 在 workers.dev 對 workers.dev 場景會被 CF 擋,故新增此綁定作為正規解法。
KBDB_BASE_SVC?: Fetcher;
ENVIRONMENT: string;
API_KEY?: string;
};
+20 -8
View File
@@ -5,17 +5,29 @@ import { normalizeEntity } from '../src/actions/entity-normalize';
import { mockClient } from './mock-client';
describe('entity-crud', () => {
it('建立後可 exact 查回(大小寫不敏感)', async () => {
it('建立後可 exact 查回(大小寫不敏感)owner slot 帶真 owner', async () => {
const c = mockClient();
await createEntity(c, 'InkStone');
const found = await findEntityByName(c, 'inkstone');
const ent = await createEntity(c, 'InkStone', 'leo');
const found = await findEntityByName(c, 'inkstone', 'leo');
expect(found?.canonical).toBe('InkStone');
// owner 落底:record 掛在 leo 名下(非無主),用錯 owner 查不到。
const rec = await c.getRecord(ent.id);
expect(rec?.values.owner).toBe('leo');
expect(await findEntityByName(c, 'inkstone', 'someone-else')).toBeNull();
});
it('漏 owner → 插件端 fail(不寫出無主 entity', async () => {
const c = mockClient();
await expect(
// @ts-expect-error 蓄意漏 owner:型別上 owner 必填,執行期也應 throw
createEntity(c, 'NoOwner'),
).rejects.toThrow(/owner/i);
});
it('listEntities 列出', async () => {
const c = mockClient();
await createEntity(c, 'A');
await createEntity(c, 'B');
await createEntity(c, 'A', 'leo');
await createEntity(c, 'B', 'leo');
const all = await listEntities(c);
expect(all.map((e) => e.canonical).sort()).toEqual(['A', 'B']);
});
@@ -24,8 +36,8 @@ describe('entity-crud', () => {
describe('normalizeEntity', () => {
it('已存在回 canonical,不存在建新回原值', async () => {
const c = mockClient();
await createEntity(c, 'InkStone');
expect(await normalizeEntity(c, 'INKSTONE')).toBe('InkStone');
expect(await normalizeEntity(c, '新公司')).toBe('新公司');
await createEntity(c, 'InkStone', 'leo');
expect(await normalizeEntity(c, 'INKSTONE', 'leo')).toBe('InkStone');
expect(await normalizeEntity(c, '新公司', 'leo')).toBe('新公司');
});
});
+3 -3
View File
@@ -12,7 +12,7 @@ describe('getSource — 回節點的原文來源指標', () => {
source: { uri: 'github:u/w@a.md', content_hash: 'h1', anchor: '#graph-rag' },
extractor: { model: 'm', tier: 'deep' },
triplets: [{ subject: 'GraphRAG', predicate: '是', object: 'RAG 變體' }],
});
}, 'leo');
const refs = await getSource(c, 'GraphRAG');
expect(refs.length).toBe(1);
@@ -27,12 +27,12 @@ describe('getSource — 回節點的原文來源指標', () => {
source: { uri: 'github:u/w@a.md', content_hash: 'h1', anchor: '#old' },
extractor: { model: 'm', tier: 'deep' },
triplets: [{ subject: 'X', predicate: 'r', object: 'old' }],
});
}, 'leo');
await ingestEnvelope(c, {
source: { uri: 'github:u/w@a.md', content_hash: 'h2', anchor: '#new' },
extractor: { model: 'm', tier: 'deep' },
triplets: [{ subject: 'X', predicate: 'r', object: 'new' }],
});
}, 'leo');
const refs = await getSource(c, 'X');
expect(refs.length).toBe(1);
+4 -4
View File
@@ -7,10 +7,10 @@ import { mockClient } from './mock-client';
import type { KbdbClient } from '../src/lib/kbdb-client';
async function seed(c: KbdbClient) {
// A — B — CD 孤立連 A
await createTriplet(c, { subject: 'A', predicate: 'r', object: 'B' });
await createTriplet(c, { subject: 'B', predicate: 'r', object: 'C' });
await createTriplet(c, { subject: 'A', predicate: 'r', object: 'D' });
// A — B — CD 孤立連 A(owner 必經:所有寫入帶真 owner)
await createTriplet(c, { subject: 'A', predicate: 'r', object: 'B', owner_id: 'leo' });
await createTriplet(c, { subject: 'B', predicate: 'r', object: 'C', owner_id: 'leo' });
await createTriplet(c, { subject: 'A', predicate: 'r', object: 'D', owner_id: 'leo' });
}
describe('graph-nodes', () => {
+4
View File
@@ -15,6 +15,8 @@ export class MockKbdbClient {
}
async createEntry(input: any): Promise<BaseEntry> {
// 對齊基本盤 D27/D28 即將上線的 owner 必填:缺 owner → 400(模擬 base 擋死無主寫入)。
if (!(input?.owner_id ?? '').trim()) throw new Error('[kbdb-base] POST /entries: owner_id required (400)');
const id = this.id('entry');
const entry: BaseEntry = { id, content: input.content ?? null, entry_type: input.entry_type, owner_id: input.owner_id ?? null };
this.entries.set(id, entry);
@@ -61,6 +63,8 @@ export class MockKbdbClient {
}
async createRecord(template: string, values: Record<string, string>, owner_id?: string): Promise<string> {
// 對齊基本盤 D27/D28 即將上線的 owner 必填:缺 owner → 400(模擬 base 擋死無主寫入)。
if (!(owner_id ?? '').trim()) throw new Error('[kbdb-base] POST /records: owner_id required (400)');
const id = this.id('rec');
this.records.set(id, { template, values: { ...values }, owner_id });
return id;
+14 -4
View File
@@ -6,7 +6,7 @@ import { mockClient } from './mock-client';
describe('createTriplet → records API', () => {
it('建立後可由 id 取回', async () => {
const c = mockClient();
const r = await createTriplet(c, { subject: 'InkStone', predicate: '是', object: '創業 OS' });
const r = await createTriplet(c, { subject: 'InkStone', predicate: '是', object: '創業 OS', owner_id: 'leo' });
expect(r.id).toBeDefined();
expect(r.subject).toBe('InkStone');
@@ -14,13 +14,23 @@ describe('createTriplet → records API', () => {
expect(got?.predicate).toBe('是');
expect(got?.object).toBe('創業 OS');
});
it('漏 owner → 插件端 fail(不靜默送空,不寫出無主 triplet)', async () => {
const c = mockClient();
await expect(
// @ts-expect-error 蓄意漏 owner:型別上 owner 必填,執行期也應 throw
createTriplet(c, { subject: 'X', predicate: 'p', object: 'Y' }),
).rejects.toThrow(/owner/i);
const { count } = await queryTriplets(c, { includeDeprecated: true });
expect(count).toBe(0);
});
});
describe('queryTriplets → 插件層 filter', () => {
it('by subject 過濾', async () => {
const c = mockClient();
await createTriplet(c, { subject: 'KBDB', predicate: '使用', object: 'D1' });
await createTriplet(c, { subject: 'Other', predicate: '使用', object: 'X' });
await createTriplet(c, { subject: 'KBDB', predicate: '使用', object: 'D1', owner_id: 'leo' });
await createTriplet(c, { subject: 'Other', predicate: '使用', object: 'X', owner_id: 'leo' });
const { triplets, count } = await queryTriplets(c, { subject: 'KBDB' });
expect(count).toBe(1);
@@ -29,7 +39,7 @@ describe('queryTriplets → 插件層 filter', () => {
it('limit/offset 分頁', async () => {
const c = mockClient();
for (let i = 0; i < 5; i++) await createTriplet(c, { subject: `s${i}`, predicate: 'p', object: 'o' });
for (let i = 0; i < 5; i++) await createTriplet(c, { subject: `s${i}`, predicate: 'p', object: 'o', owner_id: 'leo' });
const { triplets } = await queryTriplets(c, { limit: 2, offset: 1 });
expect(triplets.length).toBe(2);
});
+47 -9
View File
@@ -1,10 +1,13 @@
// ingest 寫入端 — 走 mock KbdbClientAPI-as-Wall),零 SQL、不打網路。
// 覆蓋 T3.4 五案:正常 envelope / 同 hash no-op / 新 hash deprecate / 污染 envelope 422 / rollback。
// + owner 必經(D27/D28):漏 owner→插件端 fail;真 owner 一路 thread 進 triplet + node 寫入。
import { describe, it, expect } from 'vitest';
import { ingestEnvelope, IngestEnvelopeSchema, type IngestEnvelope } from '../src/actions/triplet-ingest';
import { queryTriplets } from '../src/actions/triplet-crud';
import { mockClient } from './mock-client';
const OWNER = 'leo';
function envelope(hash: string, triplets: IngestEnvelope['triplets']): IngestEnvelope {
return {
source: { uri: 'github:uncle6me-web/wiki@a.md', content_hash: hash },
@@ -19,7 +22,7 @@ describe('ingestEnvelope — 正常 envelope', () => {
const res = await ingestEnvelope(c, envelope('h1', [
{ subject: 'A', predicate: 'rel', object: 'B' },
{ subject: 'B', predicate: 'rel', object: 'C' },
]));
]), OWNER);
expect(res).toEqual({ skipped: false, ingested: 2, deprecated: 0 });
const { triplets } = await queryTriplets(c, {});
@@ -30,11 +33,46 @@ describe('ingestEnvelope — 正常 envelope', () => {
});
});
describe('ingestEnvelope — owner 必經(D27/D28', () => {
it('漏 owner → 插件端 fail(不靜默送空,不寫出無主 triplet)', async () => {
const c = mockClient();
await expect(
// @ts-expect-error 蓄意漏 owner:型別上 owner 必填,執行期也應 throw
ingestEnvelope(c, envelope('h1', [{ subject: 'A', predicate: 'r', object: 'B' }])),
).rejects.toThrow(/owner/i);
// fail loud:一筆都不該寫進去(第一筆寫入即擋)。
const { triplets } = await queryTriplets(c, {});
expect(triplets.length).toBe(0);
});
it('真 owner 一路 thread 到 triplet + node 寫入(owner slot 非空、record owner_id=真 owner', async () => {
const c = mockClient();
const env: IngestEnvelope = {
source: { uri: 'github:uncle6me-web/wiki@own.md', content_hash: 'ho' },
extractor: { model: 'm', tier: 'deep' },
nodes: [{ name: 'Graph RAG', id: 'graph-rag.md', gloss: '關係遍歷檢索' }],
triplets: [{ subject: 'Graph RAG', predicate: 'r', object: 'X' }],
};
await ingestEnvelope(c, env, OWNER);
// triplet record 帶真 owner。
const triplets = await c.listRecordsByTemplate('triplet', OWNER);
expect(triplets.length).toBe(1);
// node → entity record 帶真 ownerowner slot + record owner_id 皆為 leo,非 None/空)。
const entities = await c.listRecordsByTemplate('entity', OWNER);
const gr = entities.find((e) => e.values.canonical === 'Graph RAG');
expect(gr).toBeDefined();
expect(gr!.values.owner).toBe(OWNER);
// 用錯 owner 查 → 濾掉(證明 record 確實掛在 leo 名下,非無主)。
expect((await c.listRecordsByTemplate('entity', 'someone-else')).length).toBe(0);
});
});
describe('ingestEnvelope — 同 hash no-op', () => {
it('同 uri+hash 再送 → skipped,不新增', async () => {
const c = mockClient();
await ingestEnvelope(c, envelope('h1', [{ subject: 'A', predicate: 'r', object: 'B' }]));
const res = await ingestEnvelope(c, envelope('h1', [{ subject: 'A', predicate: 'r', object: 'B' }]));
await ingestEnvelope(c, envelope('h1', [{ subject: 'A', predicate: 'r', object: 'B' }]), OWNER);
const res = await ingestEnvelope(c, envelope('h1', [{ subject: 'A', predicate: 'r', object: 'B' }]), OWNER);
expect(res.skipped).toBe(true);
const { triplets } = await queryTriplets(c, {});
@@ -45,8 +83,8 @@ describe('ingestEnvelope — 同 hash no-op', () => {
describe('ingestEnvelope — 新 hash deprecate-then-append', () => {
it('同 uri 新 hash → 舊批轉 deprecated、新批 active;查詢 active-only', async () => {
const c = mockClient();
await ingestEnvelope(c, envelope('h1', [{ subject: 'A', predicate: 'r', object: 'old' }]));
const res = await ingestEnvelope(c, envelope('h2', [{ subject: 'A', predicate: 'r', object: 'new' }]));
await ingestEnvelope(c, envelope('h1', [{ subject: 'A', predicate: 'r', object: 'old' }]), OWNER);
const res = await ingestEnvelope(c, envelope('h2', [{ subject: 'A', predicate: 'r', object: 'new' }]), OWNER);
expect(res).toEqual({ skipped: false, ingested: 1, deprecated: 1 });
// active-only 查詢只見新批。
@@ -103,7 +141,7 @@ describe('ingestEnvelope — 向量化打標欄位(contract 升格,ingest#1
expect(IngestEnvelopeSchema.safeParse(env).success).toBe(true);
// 落地:triplet 寫入、node 打標存進 entity slot。
const res = await ingestEnvelope(c, env);
const res = await ingestEnvelope(c, env, OWNER);
expect(res).toEqual({ skipped: false, ingested: 1, deprecated: 0 });
const { triplets } = await queryTriplets(c, {});
@@ -131,7 +169,7 @@ describe('ingestEnvelope — 向量化打標欄位(contract 升格,ingest#1
],
triplets: [{ subject: 'Graph RAG', predicate: 'r', object: 'X' }],
};
await ingestEnvelope(c, env);
await ingestEnvelope(c, env, OWNER);
const entities = await c.listRecordsByTemplate('entity');
expect(entities.filter((e) => e.values.node_id === 'graph-rag.md').length).toBe(1);
});
@@ -160,8 +198,8 @@ describe('ingestEnvelope — 向量化打標欄位(contract 升格,ingest#1
describe('ingestEnvelope — rollback(翻回 status', () => {
it('把 deprecated 翻回 active 後,active 查詢重新見到它', async () => {
const c = mockClient();
await ingestEnvelope(c, envelope('h1', [{ subject: 'A', predicate: 'r', object: 'old' }]));
await ingestEnvelope(c, envelope('h2', [{ subject: 'A', predicate: 'r', object: 'new' }]));
await ingestEnvelope(c, envelope('h1', [{ subject: 'A', predicate: 'r', object: 'old' }]), OWNER);
await ingestEnvelope(c, envelope('h2', [{ subject: 'A', predicate: 'r', object: 'new' }]), OWNER);
// 取出被 deprecate 的舊批 id,手動 rollback(翻回 active、清 superseded_by)。
const all = await queryTriplets(c, { includeDeprecated: true });
+20 -6
View File
@@ -10,15 +10,29 @@ workers_dev = true
[vars]
ENVIRONMENT = "development"
# 基本盤 arcrun/kbdb API 網址leo 2026-06-14:做成可設定,先留空)
# 部署前用 `wrangler secret put` 或在此填入,例如 https://arcrun-kbdb.<acct>.workers.dev
KBDB_BASE_URL = ""
# 基本盤 arcrun/kbdb API 網址:務必只透過 `wrangler secret put KBDB_BASE_URL` 設定
# 2026-07-03 補跑實測發現的坑:若這裡也宣告 KBDB_BASE_URL(哪怕留空字串),
# `wrangler deploy` 會用這個 [vars] 值覆蓋掉已存在的 remote secretvars 優先權 > secret),
# 導致部署後 KBDB_BASE_URL 被打回空字串、插件連不到基本盤。故此鍵不可出現在 [vars]。
[alias]
"zod/v3" = "zod"
"zod/v4" = "zod"
"zod/v4-mini" = "zod"
[[routes]]
pattern = "kbdb-graph.finally.click"
custom_domain = true
# 2026-07-03 補跑實測發現的坑:workers.dev 是共享 zoneWorker 直接 fetch()
# 另一個 *.workers.dev Worker 會被 CF 擋(error code 1042loop-prevention)。
# self-hosted 帳號通常沒自訂域名可繞,正規解法 = Service BindingCF 內部直連,
# 不經公開網路、不受 1042 影響。KBDB_BASE_URL secret 仍保留(可讀性/未來自訂域名時 fallback),
# 但實際讀寫走這個 binding(見 src/lib/kbdb-client.ts / makeKbdbClient)。
[[services]]
binding = "KBDB_BASE_SVC"
service = "arcrun-kbdb"
# 2026-07-03 補跑實測:custom_domain "kbdb-graph.finally.click" 這個 zone
# 不在 leo21c 帳號下(CF API GET /zones?name=finally.click 回空),
# self-hosted 到 leo21c 時此路由會部署失敗(但不影響 workers.dev route 的部署本身)。
# 註解掉以让 self-hosted 用戶乾淨部署到預設 workers.dev;有自訂域名需求者自行改回。
# [[routes]]
# pattern = "kbdb-graph.finally.click"
# custom_domain = true