diff --git a/.gitignore b/.gitignore index 5196c0d05..7c3a3ad59 100644 --- a/.gitignore +++ b/.gitignore @@ -44,3 +44,6 @@ docs/throughput-*.json # gbrain local source-staging dir (capability checks, source clones) — runtime artifact .sources/ + +# Swift build output from the ios-qa gen-accessors tool (built on demand by its tests) +ios-qa/scripts/gen-accessors-tool/.build/ diff --git a/browse/test/security-live-playwright.test.ts b/browse/test/security-live-playwright.test.ts index b46e4b8c9..415073977 100644 --- a/browse/test/security-live-playwright.test.ts +++ b/browse/test/security-live-playwright.test.ts @@ -42,7 +42,13 @@ const MODEL_CACHE = path.join( 'onnx', 'model.onnx', ); -const ML_AVAILABLE = fs.existsSync(MODEL_CACHE); +// Opt-in only (SECURITY_BENCH=1), same rationale as security-bench.test.ts: +// gating on model-cache existence alone auto-ran ONNX inference on any dev box +// that ever warmed the classifier — and dlopen'ing onnxruntime inside a +// `bun test --parallel` worker segfaults Bun intermittently (observed twice: +// "panic: Segmentation fault ... a bug in Bun" followed by a crashed-worker +// retry, sometimes wedging the run). +const ML_AVAILABLE = process.env.SECURITY_BENCH === '1' && fs.existsSync(MODEL_CACHE); describe('defense-in-depth — live Playwright fixture', () => { let testServer: ReturnType; diff --git a/ios-qa/scripts/gen-accessors-tool/Package.resolved b/ios-qa/scripts/gen-accessors-tool/Package.resolved new file mode 100644 index 000000000..15af7fb83 --- /dev/null +++ b/ios-qa/scripts/gen-accessors-tool/Package.resolved @@ -0,0 +1,14 @@ +{ + "pins" : [ + { + "identity" : "swift-syntax", + "kind" : "remoteSourceControl", + "location" : "https://github.com/swiftlang/swift-syntax.git", + "state" : { + "revision" : "2bc86522d115234d1f588efe2bcb4ce4be8f8b82", + "version" : "510.0.3" + } + } + ], + "version" : 2 +}