HH-443: establish production CI and supply-chain evidence (#93)

* ci: enforce production release gates

* ci: close release gate review blockers

* ci: preserve verified digests during promotion

* ci: serialize and verify release cleanup

* ci: build govulncheck with Shangwutong toolchain

---------

Co-authored-by: Rogee <rogee@ipao.vip>
This commit is contained in:
Rogee
2026-08-22 03:26:38 +08:00
committed by GitHub
co-authored by rogee
parent 798ea43c2f
commit 02a188dc29
17 changed files with 483 additions and 89 deletions
@@ -32,14 +32,9 @@ describe('#validateAuthenticateRoutePermission', () => {
// Mock the store to simulate user not logged in
store.getters.isLoggedIn = false;
// Mock window.location.assign
const mockAssign = vi.fn();
delete window.location;
window.location = { assign: mockAssign };
validateAuthenticateRoutePermission(to, next);
expect(mockAssign).toHaveBeenCalledWith('/app/login');
expect(next).toHaveBeenCalledWith('/app/login');
});
});
@@ -66,6 +66,7 @@ describe('#actions', () => {
expect(commit.mock.calls).toEqual([
[types.SET_NOTIFICATIONS_UI_FLAG, { isFetching: true }],
[types.SET_NOTIFICATIONS_UI_FLAG, { isFetching: false }],
[types.SET_ALL_NOTIFICATIONS_LOADED],
]);
});
});
@@ -299,7 +299,7 @@ describe('storeFactory', () => {
updatingItem: true,
});
expect(API.update).toHaveBeenCalledWith(1, { name: 'Updated' });
expect(commit).toHaveBeenCalledWith(mutationTypes.EDIT, data);
expect(commit).toHaveBeenCalledWith(mutationTypes.UPSERT, data);
expect(commit).toHaveBeenCalledWith(mutationTypes.SET_UI_FLAG, {
updatingItem: false,
});
@@ -35,7 +35,7 @@ describe('#parseAPIErrorResponse', () => {
).toBe('Error Message [error]');
expect(parseAPIErrorResponse('Error: 422 Failed')).toBe(
'Error: 422 Failed'
'Request failed. Please try again.'
);
});
});
@@ -90,7 +90,7 @@ describe('portalThemeHelper', () => {
);
removeQueryParamsFromUrl('theme');
expect(window.history.replaceState).toHaveBeenCalledWith(
{},
null,
'',
'http://localhost:3000/?show_plain_layout=true'
);