✔ explicit request, Seen, ordinary completion and a new request have distinct attention states (3.621501ms)
✔ attention convention ignores reasoning/quoted examples and permits leading blank lines (0.239892ms)
✔ completed smoke replies and ordinary questions are idle, not human blockers (0.725294ms)
✔ only an explicit first-line input request makes a finished reply waiting (0.150697ms)
✔ tool activity, user text, errors and unfinished turns override attention text (0.122357ms)
✔ STOP access failure is unknown, not absence, under a non-root identity (34.557499ms)
✔ connector Task never inherits Discord routing envelopes; ordinary Task still uses user text (3.106752ms)
✔ connector discovery keeps only safe identity; rejects modes, mismatches, links and traversal (1.34525ms)
✔ canonical owner identity and STOP are independent; no tmux fallback or forged registration (5.383925ms)
✔ connector reply refusal precedes forged live tmux registration; ordinary agent still sends (0.560572ms)
✔ server rescans connector discovery and refuses HTTP reply without transport (30.899922ms)
✔ connector session links and linked directories are not read (1.012519ms)
✔ newer live matching launch marks old activity, preserves history/attention/attribution, then clears on new activity (3.354834ms)
✔ CLI print uses the relaunch notice instead of old current preview (56.057003ms)
✔ connector owner and fixed task never inherit a native relaunch notice (1.818617ms)
✔ equality, stale/unknown/offline, mismatched registration and unknown activity do not assert relaunch (1.438209ms)
✔ loadConfig: missing file throws ConfigError (1.410362ms)
✔ loadConfig: invalid JSON throws ConfigError (0.27626ms)
✔ loadConfig: missing dataRoot throws ConfigError (0.206544ms)
✔ loadConfig: relative dataRoot throws ConfigError (0.198034ms)
✔ loadConfig: valid config returns dataRoot (0.604677ms)
✔ findNewestSession: picks the newest by mtime among two files (0.434068ms)
✔ findNewestSession: finds files in nested subdirectories (0.284813ms)
✔ findNewestSession: returns null for a missing dir (0.117471ms)
✔ readSession: extracts fields, collapses/truncates text, counts a truncated final line (0.587025ms)
✔ readSession: model and provider follow the latest model_change entry or assistant turn; null when the log names neither; scanAgent carries them (1.170303ms)
✔ readSession: lastError carries the assistant errorMessage only when the last assistant turn errored (0.419397ms)
✔ findNewestSession/scan: never read sibling auth or secrets next to a sessions dir (0.997913ms)
✔ deriveState: full state table (0.16249ms)
✔ rule: newest entry is an assistant message with a tool call, after a question-looking text, is working (0.304815ms)
✔ rule: newest entry is a tool result with no assistant text after it is working (0.260324ms)
✔ rule: a finished ordinary turn is idle, even if it says your move (0.245797ms)
✔ task: the first user message of the session, from text blocks (0.234725ms)
✔ task: a plain-string user content is accepted, whitespace collapsed and long text capped (0.237149ms)
✔ task: no user message in the log means null (shown as unknown), never a guess (0.240797ms)
✔ workspace: the live tmux pane path wins; the session cwd is the fallback; neither means null (0.338475ms)
✔ activeProject: basename of the nearest .git directory or .git file above the workspace; none means null (0.465721ms)
✔ scan: the written record carries task, workspace and activeProject (0.455056ms)
✔ registration: overrides task, project and workspace; every source says registration; registered carries the launch fields; the grouping column is untouched (0.52772ms)
✔ registration: empty task and null project/workspace leave the derived values in place; registered is still non-null (0.347052ms)
✔ registration: a record whose pid is gone is stale; derived values win, sources say derived, registered stays with alive false; a pid the probe cannot decide is not stale; pidAlive itself (0.94347ms)
✔ registration: no registration leaves the Gate A fields exactly as before, and registered is null (0.392815ms)
✔ loadRegistrations: a missing seatsDir gives empty lists (0.129706ms)
✔ loadRegistrations: one good record, one malformed JSON, one with an unknown field; a stray file under seatsDir is ignored (0.66035ms)
✔ matchRegistration: matches by sessionsDir, and by realpath through a symlink; sessionsDir null never matches; same seat name with a different sessionsDir does not match (fleet vs repo darkwing) (0.29492ms)
✔ scan: writes the registration override to disk; index.json carries registered and registrationErrors (0.630719ms)
✔ scan: a relative seatsDir throws ConfigError; an omitted seatsDir behaves as before (0.297576ms)
✔ scanAgent: waitingOnYou is true for waiting/error and false otherwise (0.514123ms)
✔ scanAgent: ageSeconds is computed from the injected now (0.253019ms)
✔ scanAgent: sessionFile null and state idle when sessions dir is empty but alive (0.149203ms)
✔ discoverRepoAgents: finds agents with a sessions dir, skips those without, sorted by name (0.315371ms)
✔ discoverFleetAgents: finds agents with a sessions dir, sorted by name, fleet tmux fields (0.439033ms)
✔ scan: writes per-agent files and index.json, rerun overwrites, no leftover tmp files (0.987942ms)
✔ scan: relative boardDir throws ConfigError (0.098999ms)
✔ CLI: scan with assume-alive liveness exits 0, prints board summary, writes board files (54.602612ms)
✔ CLI: missing config exits 2 with a refused: message (49.586258ms)
✔ CLI: unknown command exits 2 (48.912305ms)
✔ CLI: unknown --liveness value exits 2 (51.658356ms)
✔ panesRunPi: true when any trimmed line equals 'pi' (0.19844ms)
✔ panesRunPi: false for bash-only, claude, empty, or node-pi-style lines (0.069606ms)
✔ tmuxIsAlive: a pane running pi is alive (0.181262ms)
✔ tmuxIsAlive: session exists but pi has exited is not alive (0.074403ms)
✔ tmuxIsAlive: no such tmux session is not alive (0.079362ms)
✔ tmuxIsAlive: tmux could not be run at all is unknown (null), never assumed alive (0.069174ms)
✔ tmuxIsAlive: passes -L <socket> only when a socket is given (0.098014ms)
✔ parsePanes: one pane per line, command and optional tab-separated path (0.078915ms)
✔ tmuxInspect: reports the path of the pane running pi, not of a shell pane (0.078816ms)
✔ tmuxInspect: no pi pane, no session, or no tmux gives no workspace and the matching liveness (0.095051ms)
✔ loadSeen: missing file returns {} (0.159643ms)
✔ loadSeen: invalid JSON throws ConfigError (0.188476ms)
✔ loadSeen: a JSON array throws ConfigError (0.153238ms)
✔ loadSeen: a non-string value throws ConfigError (0.185738ms)
✔ markSeen: seen true adds the key and writes seen.json mode 0600, no leftover tmp files (0.376136ms)
✔ markSeen: seen false deletes the key (0.286277ms)
✔ markSeen: missing, empty, or non-string fields throw ConfigError (0.206712ms)
✔ markSeen: project containing '/' throws ConfigError (0.119844ms)
✔ markSeen: non-boolean seen throws ConfigError (0.114391ms)
✔ scanAgent: a seen mark matching the waiting session's lastTimestamp clears waitingOnYou (0.297461ms)
✔ scanAgent: a stale mark (agent wrote something newer) is not seen and waitingOnYou is true (0.222805ms)
✔ scanAgent: a working session with a matching mark is not seen (marks only apply to waiting/error) (0.224168ms)
✔ scanAgent: an error-state session with a matching mark is seen (0.239582ms)
✔ scan: index.seen and waitingOnYou reflect seen.json, which scan never rewrites or deletes (0.530782ms)
✔ scan: a corrupt seen.json makes scan throw ConfigError (fail closed) (0.201505ms)
✔ taskSetBy: a registered task carries the record's setter; a record without the field (pre-#1511) reads unknown; the value is not copied into registered (0.657081ms)
✔ taskSetBy: null whenever the task shown is not the registered one: no registration, an empty registered task, a stale registration; the field is always present (0.555664ms)
✔ taskSetBy: scan() reads the field from disk through the seat package (bounded there), writes it to the per-agent record and index, and an invalid on-disk value is a registrationError, never a row value (1.135361ms)
✔ isLoopbackHost: recognizes loopback hosts (1.193759ms)
✔ isLoopbackHost: rejects non-loopback hosts (4.175629ms)
✔ startServer: refuses a non-loopback host with ConfigError, never opens a socket (2.931585ms)
✔ startServer: serves page, healthz, and a rescanning /api/board (34.632692ms)
✔ startServer: a seatsDir registration overrides the row and index.registered reflects it (5.469118ms)
✔ startServer: /api/board returns 500 JSON with an error field when scan throws (2.396976ms)
✔ CLI: serve refuses a non-loopback host with exit 2 and a refused: message (51.22562ms)
✔ CLI: serve rejects a non-numeric --port with exit 2 (50.883701ms)
✔ CLI: scan still works after the async cli refactor (54.813228ms)
✔ CLI: live serve prints its URL and answers /healthz (58.398192ms)
✔ page.html: esc() escapes every HTML-significant character (0.659275ms)
✔ POST /api/seen marks a row; GET /api/board still shows it seen; seen:false clears it (8.07859ms)
✔ POST /api/seen without a JSON content-type returns 400 and does not write a mark (2.037422ms)
✔ POST /api/seen with invalid JSON returns 400 (2.835152ms)
✔ POST /api/seen with a body over 4096 bytes returns 400 (or resets the connection) and writes no mark (2.019713ms)
✔ POST /api/seen with a missing agent returns 400 (1.295617ms)
✔ POST /api/board returns 405; PUT /api/seen returns 405 (1.669646ms)
✔ CLI: scan --print marks a seen row with 's' and the summary line ends with 'N seen)' (50.449813ms)
✔ page.html: seenControl() escapes rec.project/agent/lastActivity, and the POST uses a JSON content-type (0.337992ms)
✔ page.html: has a collapsed Seen section that lists seen rows with the shared row builder (0.270884ms)
✔ page.html: each project has a Hide seen checkbox (default on) beside Hide offline, with a hidden-count note (0.16532ms)
✔ page.html: a project header reads "N of N" only while a checkbox hides rows (0.13303ms)
✔ page.html: every row shows Task and Active project, derived or the word unknown, with the workspace in the detail (0.309982ms)
✔ page.html: task and active project cells show their source via sourceTag(); the detail has a Registered row via registeredText(); SOURCE_LABEL maps registration to registered; every dynamic value in sourceTag/fromSource/registeredText is escaped (0.577047ms)
✔ POST /api/reply: runs agent-send.sh with -s from the registration, -S <host>:control-board, -m text plus the fixed trailer, no -L on the default socket, MOSAIC_TMUX_SOCKET stripped; answers delivered with the exit code and both streams (28.948657ms)
✔ POST /api/reply: a registration with a tmux socket adds -L <socket> (25.686903ms)
✔ POST /api/reply: a non-zero tool exit is a 200 with delivered false, the exit code and the stderr verbatim (29.374986ms)
✔ POST /api/reply: refusals before the tool runs: empty or blank or long text 400, unknown row 404, no registration 409, stale registration 409, no tmux session 409, bad JSON 400; the tool is never called (14.264179ms)
✔ POST /api/reply: a missing agent-send.sh is a 500 with the path in the error, not a crash (4.271884ms)
✔ replyToRow: DEFAULT_AGENT_SEND is the repository's tools/tmux/agent-send.sh and it is executable (0.155668ms)
✔ page.html: the reply box appears only where canReply() holds (live registration with a tmux session), the detail has a Reply row, the submit posts JSON to /api/reply, receipts and drafts survive a refresh, and every receipt value is escaped (0.584762ms)
✔ startServer: /api/board carries taskSetBy from a live registration and null for the derived rows (2.429038ms)
✔ page.html: the task cell and detail show who set a registered task via setByTag()/setByText(), both escaped, only from rec.taskSetBy; the reply gate does not read it (0.302417ms)
✔ Host/Origin guard: GET /api/board and POST /api/reply refuse a foreign Host, a wrong port and a cross-origin Origin with 403 JSON, before any scan or send, and never send CORS headers (7.946952ms)
✔ Host/Origin guard: loopback names on this port are accepted, with or without a same-origin Origin (28.283933ms)
✔ conversation routes (F16): a foreign Host, a wrong port and a cross-origin Origin get 403 before the reader runs, with no CORS headers (5.489636ms)
✔ every refusal code the reader can raise has an HTTP status (2.556468ms)
✔ conversation routes: catalogue, first page, next page and follow over HTTP; refusals map to 4xx with their code; nothing is written (47.006525ms)
ℹ tests 124
ℹ suites 0
ℹ pass 124
ℹ fail 0
ℹ cancelled 0
ℹ skipped 0
ℹ todo 0
ℹ duration_ms 616.847495
