Test infrastructure: - Django standalone test runner (pytest-django, test settings, EmailUser model) - React unit tests via Vitest with jsdom, jest compat layer, path aliases - Playwright E2E tests using generated hooks in a real Chromium browser - Docker Compose test backend (Django + Redis) for integration testing - Desktop integration test app (PyWebView + Django + uvicorn) - Makefile with test/test-django/test-react/test-integration targets Library bugs found and fixed: - hasJWT truthiness: undefined !== null was true, skipping session init - process.env crash: CSR client referenced process.env in non-Node browsers - baseUrl not forwarded: DjareaProvider didn't pass baseUrl to CSR client - Relative URL handling: new URL() failed with relative base paths - call() race condition: HTTP requests fired before CSRF cookie was set - Session init await: added sessionRef promise so call() waits for session - path_prefix on schema export: both export commands failed with URL reverse - NullBooleanField removed: referenced field doesn't exist in Django 5.0+ - lru_cache on JWT settings: get_settings() now cached as intended - Channel message routing: broadcasts now include channel name and params - httpFunctionCall: fixed URL and request body format Generator fixes: - Removed 1,100 lines of REST/OpenAPI client generation (not part of Djarea) - Generator now works for djarea-only projects without django-ninja REST APIs - Generated DjangoContext now includes ChannelProvider when channels exist - Fixed env var passthrough for schema export commands - Deduplicated fetch logic into single runDjangoCommand helper Test quality: - Fixed 33 tautological Django tests with real assertions - Found hidden bug: benchmark functions were never registered - Found hidden bug: unicode lookalike test used plain ASCII - Deleted worthless React unit tests (duplicates, shape checks, Zod-tests-Zod) - Replaced jsdom integration tests with Playwright browser tests Example apps: - example/: Integration test backend with 33 server functions, 5 forms, 4 channels covering auth variations, contexts, class-based ServerFunction, error codes, DjareaFormMixin, formsets, and JWT - desktop/: PyWebView desktop app with file system access, SQLite CRUD, system introspection, and 39 real HTTP integration tests Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
73 lines
2.4 KiB
TypeScript
73 lines
2.4 KiB
TypeScript
'use client'
|
|
|
|
import { useMemo } from 'react'
|
|
import { useDjangoCSRClient, Auth } from 'djarea/client/react'
|
|
import { useAuthContext } from './AuthContext'
|
|
import { createAPI, AllauthAPI, BrowserFormAction } from '../api'
|
|
|
|
/**
|
|
* Browser form action for OAuth redirects.
|
|
* Creates and submits a form programmatically.
|
|
*/
|
|
const browserFormAction: BrowserFormAction = (action: string, data: Record<string, string>) => {
|
|
const form = document.createElement('form')
|
|
form.method = 'POST'
|
|
form.action = action
|
|
|
|
for (const [key, value] of Object.entries(data)) {
|
|
const input = document.createElement('input')
|
|
input.type = 'hidden'
|
|
input.name = key
|
|
input.value = value
|
|
form.appendChild(input)
|
|
}
|
|
|
|
document.body.appendChild(form)
|
|
form.submit()
|
|
}
|
|
|
|
/**
|
|
* Hook that returns the Allauth API with automatic auth refresh on relevant responses.
|
|
*
|
|
* Automatically triggers auth refresh when:
|
|
* - 401 with flows (authentication required)
|
|
* - 410 (session gone)
|
|
* - 200 with is_authenticated (successful auth)
|
|
*/
|
|
export function useAllauthAPI(): AllauthAPI {
|
|
const client = useDjangoCSRClient(Auth.SESSION)
|
|
const { refresh } = useAuthContext()
|
|
|
|
return useMemo(() => {
|
|
const authRequest = async (method: string, path: string, data?: any, headers?: Record<string, string>) => {
|
|
const resp = await client.request(method, `/_allauth/browser/v1${path}`, data, headers)
|
|
|
|
if (resp.status >= 500) {
|
|
throw new Error(`Allauth request failed: ${resp.status} ${resp.statusText}`)
|
|
}
|
|
|
|
try {
|
|
return await resp.json()
|
|
} catch {
|
|
throw new Error(`Allauth request failed: ${resp.status} ${resp.statusText}`)
|
|
}
|
|
}
|
|
|
|
return createAPI(
|
|
async (method, path, data?, headers?) => {
|
|
const resp = await authRequest(method, path, { ...(data as object), client: 'browser' }, headers)
|
|
|
|
// Auto-refresh auth state on relevant responses
|
|
if (resp.status === 401 && resp.data?.flows) {
|
|
refresh(resp)
|
|
} else if ([401, 410].includes(resp.status) || (resp.status === 200 && resp.meta?.is_authenticated)) {
|
|
refresh()
|
|
}
|
|
|
|
return resp
|
|
},
|
|
browserFormAction
|
|
)
|
|
}, [client, refresh])
|
|
}
|