agent-desktop/tests/conformance/macos_notification_contract.rs
Lahfir 3f322728b4
feat!: implement Playwright-grade foundation contract
Settle the Playwright-grade reliability contract in agent-desktop-core
before the Windows/Linux adapters are built, so they inherit it instead
of redesigning it. Every command now observes, waits, verifies, and
reports honestly instead of firing blindly.

Highlights: capability-supertrait split of PlatformAdapter with
not_supported() defaults; canonical role/state vocabulary with live
`is --property visible`; display enumeration (`list-displays`) and honest
`--screen` with scale factor; truthful Automation permission; `native_id`
identity spine; window-id-first resolution; serializable `LocatorQuery`
with live `find`; default-on auto-wait before every ref action; three-way
`hit_test` occlusion gate; `scroll_into_view` in core; core accessible-name
precedence; typed `ActionStep` delivery tier; `ProcessState` and
`APP_UNRESPONSIVE`; `LaunchOptions`; baseline-diff desktop signals
(`wait --event`); typed clipboard (`Text`/`Image`/`FileUrls`); mouse
modifier chords and `mouse-wheel`. Hardened through a 35-reviewer pass with
independent validation and a green live e2e gate (109/0), plus a
head-vs-main performance comparison harness.

BREAKING CHANGE: default-on auto-wait changes the timing of every
previously-untouched ref-action call (bounded 5000 ms default; `--timeout-ms 0`
restores single-shot). `ENVELOPE_VERSION` is now `2.1` (adds the
`APP_UNRESPONSIVE` code and process state in error details). FFI ABI major
is `3` (append-only struct evolution; `wait --event` is intentionally not
exposed over FFI). The legacy string clipboard API is removed in favor of
typed content. `key-down`/`key-up` fail closed until daemon-owned held input
exists. `close-app` verifies termination and the osascript fallback path is
removed. `--text` matching is subtree containment: `find --text X --first`
returns the outermost matching container.
2026-07-20 00:21:38 -07:00

56 lines
1.7 KiB
Rust

use agent_desktop_core::SystemOps;
use agent_desktop_core::{
Deadline, DeliverySemantics, DismissAllNotificationsRequest, DismissNotificationRequest,
ErrorCode, InteractionLease, InteractionPolicy, NotificationActionRequest,
NotificationIdentity,
};
#[test]
fn notification_mutations_fail_before_foreground_access_under_headless_policy() {
let adapter = agent_desktop_macos::MacOSAdapter::new();
let deadline = Deadline::standard().unwrap();
let lease = InteractionLease::guarded(deadline, ()).unwrap();
let identity = NotificationIdentity {
expected_app: Some("Messages".into()),
expected_title: Some("New message".into()),
};
let policy = InteractionPolicy::headless();
let errors = [
SystemOps::dismiss_notification(
&adapter,
DismissNotificationRequest {
index: 0,
app_filter: None,
identity: &identity,
policy,
},
&lease,
)
.unwrap_err(),
SystemOps::dismiss_all_notifications(
&adapter,
DismissAllNotificationsRequest {
app_filter: None,
policy,
},
&lease,
)
.unwrap_err(),
SystemOps::notification_action(
&adapter,
NotificationActionRequest {
index: 0,
identity: &identity,
action_name: "Reply",
policy,
},
&lease,
)
.unwrap_err(),
];
for error in errors {
assert_eq!(error.code, ErrorCode::PolicyDenied);
assert_eq!(error.disposition, DeliverySemantics::not_delivered());
}
}