Repository navigation
test(workbench): share setup for scan targets and ownership transfers - #1404
Merged
mldangelo-oai merged 1 commit intoOct 7, 2026
Merged
Conversation
Codex Review SummaryThis comment shows the latest Codex review activity on this pull request.
ℹ️ About Codex in GitHubYour team has set up Codex to review pull requests in this repo. Reviews are triggered when you
Codex reacts with 👀 while any review is running, comments if it has suggestions, and reacts with 👍 once all reviews finish with no findings. |
zcrab-oai
approved these changes
Oct 7, 2026
zcrab-oai
left a comment
Collaborator
There was a problem hiding this comment.
Reviewed the diff and relevant surrounding code at 67d8e99, with an independent second pass. No obvious correctness or regression issues found. Full local platform suites were not rerun. CI still has failed or unfinished checks; those results remain separate from this source-review approval.
mldangelo-oai
force-pushed
the
mdangelo/codex/reuse-native-workspace-command-fixtures
branch
from
October 7, 2026 04:42
a84c177 to
a997fc1
Compare
Base automatically changed from
mdangelo/codex/reuse-native-workspace-command-fixtures
to
main
October 7, 2026 04:57
mldangelo-oai
force-pushed
the
mdangelo/codex/reuse-native-target-handoff-fixtures
branch
from
October 7, 2026 05:00
67d8e99 to
3c78102
Compare
mldangelo-oai
force-pushed
the
mdangelo/codex/reuse-native-target-handoff-fixtures
branch
from
October 7, 2026 05:21
3c78102 to
c4e0cda
Compare
mldangelo-oai
deleted the
mdangelo/codex/reuse-native-target-handoff-fixtures
branch
October 7, 2026 05:37
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Summary
Simplify tests for selecting a scan target, starting a saved scan, and transferring its ownership to a continuation thread. Reuse the shared workbench command helpers while keeping each scenario's identifiers, settings, operation order, and expected errors explicit.
Changes
Testing
Recorded validation on Python 3.12 exercises the same real workbench subprocesses and temporary SQLite databases through the shared helpers. Concurrent scan-start calls must return the same scan ID and leave exactly one running database row. Concurrent handoff-delivery calls must retain the same ownership token and initial progress state.
Target cases retain checks for literal Git paths, changed working-tree contents, dirty or mismatched submodules, and scopes that escape the selected repository. Ownership cases still reject access from another thread and preserve the rules for releasing and reclaiming a scan.
To repeat, run
python -m pytest plugins/codex-security/tests/test_workbench_db.py plugins/codex-security/tests/test_workbench_handoff.py plugins/codex-security/tests/test_workbench_setup_and_migrations.pyfrom the repository root with the Python test dependencies installed.Risk and rollout
Depends on #1400, which supplies the shared workspace and scan-lifecycle fixtures. This is a test-only refactor. Production target selection, ownership rules, database behavior, and CLI syntax are unchanged; subprocess execution and existing assertions remain in place.
Public disclosure review