mirror of
https://github.com/headroomlabs-ai/headroom.git
synced 2026-08-27 14:17:10 -04:00
* fix(copilot): restore generic endpoint for non-subscription OAuth (#610) 0.23.0 re-pointed the shared Copilot OAuth branch from the generic api.githubcopilot.com host to the account-specific endpoints.api host returned by /copilot_internal/user, and made resolve_copilot_api_url ignore the GITHUB_COPILOT_API_URL override whenever a token resolved. That change was meant to add --subscription, but it also altered the pre-existing non-subscription OAuth flow that worked on 0.22.4. The account host does not serve newer models (e.g. gpt-5.4) on the responses API, so wrapped requests began failing with unsupported-model errors while plain Copilot and 0.22.4 kept working. Restore 0.22.4 routing for non-subscription OAuth (generic host, still overridable) and keep account resolution only for --subscription. resolve_copilot_api_url now honors GITHUB_COPILOT_API_URL first, so the override escape hatch works for every path. BYOK is unaffected. Add a regression suite that mocks a successful user-info response, the real-world path the prior test never exercised (it relied on the network call failing in CI and falling back to the generic host). * fix(copilot): route subscription + OAuth through the generic host (#610) The 0.23.0 endpoint resolution derived the Copilot API host from /copilot_internal/user (endpoints.api), which returns a segmented host (e.g. api.individual.githubcopilot.com) that does not serve newer models on the responses API and is not the host the official Copilot client routes with (that comes from the token-exchange endpoint). --subscription used the identical resolution, so it carried the same latent regression as the non-subscription OAuth path. Make Copilot host resolution override -> generic for BOTH --subscription and the implicit OAuth path, and stop using user-info to route. Accounts that require a dedicated host (enterprise / data residency) pin it via GITHUB_COPILOT_API_URL. resolve_copilot_api_url no longer makes a network call; _fetch_copilot_user_info is retained for token validation. Update the subscription smoke tests that encoded the old account-host assumption, and add wrap-level + unit coverage that --subscription routes to the generic host even when user-info advertises an account host, and that the GITHUB_COPILOT_API_URL override flows through both paths. * docs(copilot): document generic-host routing + enterprise override (#610) Spell out the routing contract introduced by the #610 fix so enterprise users have a supported path. Headroom routes wrapped Copilot hosted traffic (--subscription and OAuth) to the generic api.githubcopilot.com, and accounts on a dedicated host (Enterprise Cloud data residency, egress proxy) pin it via GITHUB_COPILOT_API_URL. - copilot --help: note the generic host + GITHUB_COPILOT_API_URL override. - TESTING-copilot-subscription.md: add "API host & Enterprise / data residency" section; correct the stale api.*.githubcopilot.com claim; and invite enterprise tenants who want token-exchange-based auto-detection to open an issue. - integration-guide.md: short hosted-host + override note in the Copilot section.
210 lines
9.2 KiB
Python
210 lines
9.2 KiB
Python
"""Cross-platform smoke test for GitHub Copilot subscription routing.
|
|
|
|
The subscription flow has to behave identically on macOS, Linux, and Windows
|
|
(and in headless Docker/CI), but the only OS-specific part — reading the
|
|
Copilot CLI token from the platform secret store — is impossible to exercise
|
|
portably. This suite proves the *portable* contract instead:
|
|
|
|
1. With an explicit token in the environment, resolution + API-URL discovery
|
|
succeed on every platform without touching any secret store. This is the
|
|
universal escape hatch (``GITHUB_COPILOT_TOKEN`` etc.) that makes the
|
|
feature work anywhere, including headless CI.
|
|
2. Each OS-specific secret reader is inert on a foreign platform — so on any
|
|
given OS only that OS's reader can fire, and a missing/foreign secret store
|
|
degrades to ``None`` rather than crashing.
|
|
3. The proxy injects exactly the token the wrapper validated (the
|
|
deterministic-handoff fix), never a different discoverable one.
|
|
4. The full wrapper→proxy chain carries one consistent token end to end.
|
|
|
|
Everything here is hermetic: no Keychain, no ``secret-tool``, no Credential
|
|
Manager, no network. It runs the same on every OS.
|
|
"""
|
|
|
|
from __future__ import annotations
|
|
|
|
import asyncio
|
|
|
|
import pytest
|
|
|
|
from headroom import copilot_auth, copilot_linux_secret, copilot_macos_keychain
|
|
|
|
BUSINESS_API = "https://api.business.githubcopilot.com"
|
|
|
|
|
|
def _stub_all_secret_stores(monkeypatch: pytest.MonkeyPatch) -> None:
|
|
"""Simulate 'no OS secret store / not logged in' on every platform."""
|
|
monkeypatch.setattr(copilot_auth, "_read_windows_copilot_cli_oauth_token", lambda: None)
|
|
monkeypatch.setattr(copilot_auth, "_read_macos_keychain_oauth_token", lambda: None)
|
|
monkeypatch.setattr(copilot_auth, "_read_linux_secret_oauth_token", lambda: None)
|
|
monkeypatch.setattr(copilot_auth, "_read_file_oauth_token_candidates", lambda: [])
|
|
monkeypatch.setattr(copilot_auth, "_read_gh_cli_oauth_token", lambda: None)
|
|
|
|
|
|
def _clear_token_env(monkeypatch: pytest.MonkeyPatch) -> None:
|
|
for var in (
|
|
*copilot_auth._COPILOT_OAUTH_TOKEN_ENV_VARS,
|
|
*copilot_auth._GENERIC_GITHUB_TOKEN_ENV_VARS,
|
|
*copilot_auth._API_TOKEN_ENV_VARS,
|
|
):
|
|
monkeypatch.delenv(var, raising=False)
|
|
|
|
|
|
# ---------------------------------------------------------------------------
|
|
# 1. The env-var path resolves on any platform with no secret store.
|
|
# ---------------------------------------------------------------------------
|
|
def test_env_token_resolves_subscription_without_secret_store(
|
|
monkeypatch: pytest.MonkeyPatch,
|
|
) -> None:
|
|
_stub_all_secret_stores(monkeypatch)
|
|
_clear_token_env(monkeypatch)
|
|
monkeypatch.setenv("GITHUB_COPILOT_TOKEN", "gho-env-universal")
|
|
monkeypatch.setattr(
|
|
copilot_auth,
|
|
"_fetch_copilot_user_info",
|
|
lambda token: (
|
|
{"endpoints": {"api": BUSINESS_API}} if token == "gho-env-universal" else None
|
|
),
|
|
)
|
|
|
|
assert copilot_auth.resolve_subscription_bearer_token() == "gho-env-universal"
|
|
# Routing is override -> generic; the account host advertised by user-info is
|
|
# NOT used (it regressed newer models on the responses API, #610). With no
|
|
# GITHUB_COPILOT_API_URL pin set, the generic public host is returned.
|
|
monkeypatch.delenv("GITHUB_COPILOT_API_URL", raising=False)
|
|
assert copilot_auth.resolve_copilot_api_url("gho-env-universal") == copilot_auth.DEFAULT_API_URL
|
|
|
|
|
|
def test_api_url_falls_back_to_default_when_user_info_unavailable(
|
|
monkeypatch: pytest.MonkeyPatch,
|
|
) -> None:
|
|
_clear_token_env(monkeypatch)
|
|
monkeypatch.delenv("GITHUB_COPILOT_API_URL", raising=False)
|
|
monkeypatch.setattr(copilot_auth, "_fetch_copilot_user_info", lambda token: None)
|
|
|
|
# No network / no endpoints advertised → safe default, never a crash.
|
|
assert copilot_auth.resolve_copilot_api_url("gho-anything") == copilot_auth.DEFAULT_API_URL
|
|
|
|
|
|
def test_subscription_rejects_token_github_does_not_accept(
|
|
monkeypatch: pytest.MonkeyPatch,
|
|
) -> None:
|
|
_stub_all_secret_stores(monkeypatch)
|
|
_clear_token_env(monkeypatch)
|
|
# A generic GitHub token is present but GitHub's Copilot API rejects it;
|
|
# a valid Copilot token is discoverable behind it.
|
|
monkeypatch.setattr(
|
|
copilot_auth,
|
|
"iter_oauth_token_candidates",
|
|
lambda: [
|
|
copilot_auth.CopilotTokenCandidate(
|
|
token="ghp-generic-pat", source="env:GITHUB_TOKEN", confidence="generic-github"
|
|
),
|
|
copilot_auth.CopilotTokenCandidate(
|
|
token="gho-real-copilot",
|
|
source="macos-keychain:copilot-cli",
|
|
confidence="high",
|
|
),
|
|
],
|
|
)
|
|
monkeypatch.setattr(
|
|
copilot_auth,
|
|
"_fetch_copilot_user_info",
|
|
lambda token: {"endpoints": {"api": BUSINESS_API}} if token == "gho-real-copilot" else None,
|
|
)
|
|
|
|
assert copilot_auth.resolve_subscription_bearer_token() == "gho-real-copilot"
|
|
|
|
|
|
# ---------------------------------------------------------------------------
|
|
# 2. Each OS reader is inert on a foreign platform.
|
|
# ---------------------------------------------------------------------------
|
|
@pytest.mark.parametrize("foreign_platform", ["linux", "win32"])
|
|
def test_macos_reader_noop_off_darwin(
|
|
monkeypatch: pytest.MonkeyPatch, foreign_platform: str
|
|
) -> None:
|
|
monkeypatch.setattr(copilot_macos_keychain.sys, "platform", foreign_platform)
|
|
assert copilot_macos_keychain.read_copilot_oauth_token(host="github.com") is None
|
|
|
|
|
|
@pytest.mark.parametrize("foreign_platform", ["darwin", "win32"])
|
|
def test_linux_reader_noop_off_linux(
|
|
monkeypatch: pytest.MonkeyPatch, foreign_platform: str
|
|
) -> None:
|
|
monkeypatch.setattr(copilot_linux_secret.sys, "platform", foreign_platform)
|
|
assert copilot_linux_secret.read_copilot_oauth_token(host="github.com") is None
|
|
|
|
|
|
def test_windows_reader_noop_off_windows(monkeypatch: pytest.MonkeyPatch) -> None:
|
|
monkeypatch.setattr(copilot_auth.os, "name", "posix")
|
|
assert copilot_auth._read_windows_copilot_cli_oauth_token() is None
|
|
|
|
|
|
# ---------------------------------------------------------------------------
|
|
# 3. The proxy injects exactly the wrapper-validated token (determinism).
|
|
# ---------------------------------------------------------------------------
|
|
def test_proxy_injects_explicit_token_over_discovered_one(
|
|
monkeypatch: pytest.MonkeyPatch,
|
|
) -> None:
|
|
# Reset the cached module-level provider so this test is self-contained.
|
|
monkeypatch.setattr(copilot_auth, "_provider", None)
|
|
# What `wrap copilot --subscription` exports for the proxy:
|
|
monkeypatch.setenv("GITHUB_COPILOT_API_TOKEN", "gho-validated")
|
|
monkeypatch.setenv("GITHUB_COPILOT_API_URL", BUSINESS_API)
|
|
monkeypatch.setenv("GITHUB_COPILOT_USE_TOKEN_EXCHANGE", "false")
|
|
# A *different* token is discoverable — it must be ignored entirely.
|
|
monkeypatch.setattr(
|
|
copilot_auth, "read_cached_oauth_token", lambda: "gho-WRONG-should-not-be-used"
|
|
)
|
|
|
|
headers = asyncio.run(
|
|
copilot_auth.apply_copilot_api_auth(
|
|
{"authorization": "Bearer placeholder"},
|
|
url=f"{BUSINESS_API}/v1/chat/completions",
|
|
)
|
|
)
|
|
|
|
assert headers["Authorization"] == "Bearer gho-validated"
|
|
assert "authorization" not in headers
|
|
|
|
|
|
# ---------------------------------------------------------------------------
|
|
# 4. Full wrapper→proxy chain carries one consistent token to a pinned host.
|
|
# ---------------------------------------------------------------------------
|
|
def test_end_to_end_subscription_chain(monkeypatch: pytest.MonkeyPatch) -> None:
|
|
monkeypatch.setattr(copilot_auth, "_provider", None)
|
|
|
|
# (a) wrapper side: resolve + validate the subscription token. The API host
|
|
# comes from the GITHUB_COPILOT_API_URL pin — the supported way to target
|
|
# a dedicated enterprise / data-residency host. user-info is NOT used to
|
|
# route (#610), so it advertises a *different* host here to prove it is
|
|
# ignored when picking the upstream.
|
|
_stub_all_secret_stores(monkeypatch)
|
|
_clear_token_env(monkeypatch)
|
|
monkeypatch.setenv("GITHUB_COPILOT_TOKEN", "gho-seat-token")
|
|
monkeypatch.setenv("GITHUB_COPILOT_API_URL", BUSINESS_API)
|
|
monkeypatch.setattr(
|
|
copilot_auth,
|
|
"_fetch_copilot_user_info",
|
|
lambda token: (
|
|
{"endpoints": {"api": "https://api.individual.githubcopilot.com"}}
|
|
if token == "gho-seat-token"
|
|
else None
|
|
),
|
|
)
|
|
resolved_token = copilot_auth.resolve_subscription_bearer_token()
|
|
resolved_url = copilot_auth.resolve_copilot_api_url(resolved_token)
|
|
assert resolved_token == "gho-seat-token"
|
|
assert resolved_url == BUSINESS_API # the pin wins; the user-info host is ignored
|
|
|
|
# (b) hand-off: the wrapper exports exactly these for the proxy.
|
|
monkeypatch.setenv("GITHUB_COPILOT_API_TOKEN", resolved_token)
|
|
|
|
# (c) proxy side: build the upstream URL (Copilot has no /v1 prefix) and
|
|
# inject the same token onto the outbound request.
|
|
upstream = copilot_auth.build_copilot_upstream_url(resolved_url, "/v1/chat/completions")
|
|
assert upstream == "https://api.business.githubcopilot.com/chat/completions"
|
|
|
|
headers = asyncio.run(
|
|
copilot_auth.apply_copilot_api_auth({"authorization": "Bearer placeholder"}, url=upstream)
|
|
)
|
|
assert headers["Authorization"] == f"Bearer {resolved_token}"
|