mirror of
https://github.com/Sea-Haven-Industries/sh-mcp.git
synced 2026-10-07 12:48:59 +00:00
Add tests for the highest-risk surface (build-plan §5, design.md §7.3): tool-hiding, server-side scope enforcement (incl. forced hidden calls), audience binding, input-schema validation, finance redaction on egress, audit emission with hashed args, prompt-injection regression (tool output is data), rate limiting, MCP conformance (in-memory transport round-trip), OpenAPI 3.1 validity, and local-auth safety. Add HTTP integration tests (supertest) for both servers and per-package dev-client tests. 405 tests pass. Wire the coverage gate into vitest.config.ts: 80% overall, with per-file thresholds on the auth + dispatch crown jewels; exclude deferred real client stubs, entrypoints, cdk apps, and aws-only config from the gate (documented). Extend eslint flat config + add .prettierignore to cover servers/. Commit the updated package-lock.json.
45 lines
720 B
JSON
45 lines
720 B
JSON
{
|
|
"extends": "./tsconfig.base.json",
|
|
"compilerOptions": {
|
|
"noEmit": true
|
|
},
|
|
"files": [],
|
|
"references": [
|
|
{
|
|
"path": "./packages/calendar"
|
|
},
|
|
{
|
|
"path": "./packages/gmail"
|
|
},
|
|
{
|
|
"path": "./packages/google-maps"
|
|
},
|
|
{
|
|
"path": "./packages/internal-data"
|
|
},
|
|
{
|
|
"path": "./packages/knowledge-base"
|
|
},
|
|
{
|
|
"path": "./packages/payments"
|
|
},
|
|
{
|
|
"path": "./packages/qbo"
|
|
},
|
|
{
|
|
"path": "./packages/reminders"
|
|
},
|
|
{
|
|
"path": "./packages/shared"
|
|
},
|
|
{
|
|
"path": "./packages/tasks"
|
|
},
|
|
{
|
|
"path": "./servers/sh-mcp-ops"
|
|
},
|
|
{
|
|
"path": "./servers/sh-mcp-finance"
|
|
}
|
|
]
|
|
}
|