feat(avatar): complete authorization management

This commit is contained in:
stefanfeng
2026-08-19 16:21:19 +08:00
parent 25d2494616
commit 2e2adeb9e2
10 changed files with 2106 additions and 614 deletions
+72 -1
View File
@@ -1,6 +1,8 @@
import uuid
import pytest
from database import init_db, SessionLocal
from models import Authorization
from models import Authorization, Avatar, User
@pytest.fixture(scope="session", autouse=True)
@@ -24,3 +26,72 @@ def setup_database():
db.commit()
finally:
db.close()
@pytest.fixture
def authorization_context():
"""Create isolated users, avatars, and one authorization for API tests."""
suffix = uuid.uuid4().hex
owner = User(
id=f"owner-{suffix}",
huihui_user_id=f"huihui-owner-{suffix}",
nickname="授权测试用户",
app_token=f"owner-token-{suffix}",
)
other = User(
id=f"other-{suffix}",
huihui_user_id=f"huihui-other-{suffix}",
nickname="其他用户",
app_token=f"other-token-{suffix}",
)
avatar = Avatar(
id=f"avatar-{suffix}",
owner_id=owner.huihui_user_id,
name="授权测试分身",
status="active",
config={},
)
other_avatar = Avatar(
id=f"other-avatar-{suffix}",
owner_id=other.huihui_user_id,
name="其他分身",
status="active",
config={},
)
authorization = Authorization(
id=f"authorization-{suffix}",
avatar_id=avatar.id,
target_type="user",
target_id=f"contact-{suffix}",
target_name="测试联系人",
permissions=["chat", "browse"],
status="active",
)
db = SessionLocal()
try:
db.add_all([owner, other, avatar, other_avatar, authorization])
db.commit()
yield {
"owner": owner,
"other": other,
"avatar": avatar,
"other_avatar": other_avatar,
"authorization": authorization,
"owner_headers": {"Authorization": f"Bearer {owner.app_token}"},
"other_headers": {"Authorization": f"Bearer {other.app_token}"},
"suffix": suffix,
}
finally:
db.rollback()
db.query(Authorization).filter(
Authorization.avatar_id.in_([avatar.id, other_avatar.id])
).delete(synchronize_session=False)
db.query(Avatar).filter(Avatar.id.in_([avatar.id, other_avatar.id])).delete(
synchronize_session=False
)
db.query(User).filter(User.id.in_([owner.id, other.id])).delete(
synchronize_session=False
)
db.commit()
db.close()