diff --git a/composer.json b/composer.json index dee537a5..5d1184bc 100644 --- a/composer.json +++ b/composer.json @@ -6,7 +6,7 @@ "require": { "php": "^8.2", "apache/avro": "^1.12", - "durable-workflow/workflow": "2.3.3", + "durable-workflow/workflow": "2.3.4", "laravel/framework": "^13.30", "laravel/tinker": "^3.0", "league/flysystem-aws-s3-v3": "^3.35.3" @@ -48,7 +48,7 @@ }, "extra": { "durable-workflow": { - "product-train": "2.4.39" + "product-train": "2.4.40" }, "laravel": { "dont-discover": [] diff --git a/composer.lock b/composer.lock index 3a613e1c..9b2dcdac 100644 --- a/composer.lock +++ b/composer.lock @@ -4,7 +4,7 @@ "Read more about it at https://getcomposer.org/doc/01-basic-usage.md#installing-dependencies", "This file is @generated automatically" ], - "content-hash": "cbd2cce87f07478179460c70eb2e728c", + "content-hash": "cf02d93da18a4a641b24c9242ac9ad9d", "packages": [ { "name": "apache/avro", @@ -655,16 +655,16 @@ }, { "name": "durable-workflow/workflow", - "version": "2.3.3", + "version": "2.3.4", "source": { "type": "git", "url": "https://github.com/durable-workflow/workflow.git", - "reference": "70d4fe48efd7dd796c35c1078b3d5ac43f738f4f" + "reference": "e66d22482541ddcaa03964fe006538a7340083fe" }, "dist": { "type": "zip", - "url": "https://api.github.com/repos/durable-workflow/workflow/zipball/70d4fe48efd7dd796c35c1078b3d5ac43f738f4f", - "reference": "70d4fe48efd7dd796c35c1078b3d5ac43f738f4f", + "url": "https://api.github.com/repos/durable-workflow/workflow/zipball/e66d22482541ddcaa03964fe006538a7340083fe", + "reference": "e66d22482541ddcaa03964fe006538a7340083fe", "shasum": "" }, "require": { @@ -697,7 +697,7 @@ "dev-main": "2.0.x-dev" }, "durable-workflow": { - "product-train": "2.3.3", + "product-train": "2.3.4", "laravel-embedded-upgrade-contract": "resources/laravel-embedded-upgrade-contract.json", "laravel-dependency-security-policy": "resources/laravel-dependency-security-policy.json" } @@ -724,9 +724,9 @@ "description": "Embedded durable workflow runtime and orchestration engine for Laravel applications.", "support": { "issues": "https://github.com/durable-workflow/workflow/issues", - "source": "https://github.com/durable-workflow/workflow/tree/2.3.3" + "source": "https://github.com/durable-workflow/workflow/tree/2.3.4" }, - "time": "2026-10-01T19:54:10+00:00" + "time": "2026-10-05T05:54:54+00:00" }, { "name": "egulias/email-validator", diff --git a/docker-compose.dedicated-matching.yml b/docker-compose.dedicated-matching.yml index 65151065..861849aa 100644 --- a/docker-compose.dedicated-matching.yml +++ b/docker-compose.dedicated-matching.yml @@ -32,13 +32,13 @@ name: durable-workflow-server # daemon reports `shape: dedicated`. # Generated by scripts/ci/sync-source-release.mjs. Do not edit the fallback. -x-server-image: &server-image ${DW_SERVER_IMAGE:-durableworkflow/server:${DW_SERVER_TAG:-2.4.39}} +x-server-image: &server-image ${DW_SERVER_IMAGE:-durableworkflow/server:${DW_SERVER_TAG:-2.4.40}} x-server-environment: &server-environment APP_NAME: "Durable Workflow Server" APP_ENV: ${APP_ENV:-local} DW_SERVER_KEY: ${DW_SERVER_KEY:-} - APP_VERSION: ${APP_VERSION:-${DW_SERVER_TAG:-2.4.39}} + APP_VERSION: ${APP_VERSION:-${DW_SERVER_TAG:-2.4.40}} APP_DEBUG: ${APP_DEBUG:-false} DB_CONNECTION: mysql DB_HOST: mysql diff --git a/docker-compose.memo-rolling.yml b/docker-compose.memo-rolling.yml index 424c5730..a8bba672 100644 --- a/docker-compose.memo-rolling.yml +++ b/docker-compose.memo-rolling.yml @@ -49,14 +49,14 @@ services: command: ["server-bootstrap"] environment: <<: *runtime-environment - APP_VERSION: ${APP_VERSION:-2.4.39} + APP_VERSION: ${APP_VERSION:-2.4.40} successor: image: ${DW_MEMO_SUCCESSOR_IMAGE:-durable-workflow/server-memo-rolling:local} ports: !override [] environment: <<: *runtime-environment - APP_VERSION: ${APP_VERSION:-2.4.39} + APP_VERSION: ${APP_VERSION:-2.4.40} DW_SERVER_ID: memo-successor DW_SERVER_TOPOLOGY_SHAPE: standalone_server DW_SERVER_PROCESS_CLASS: server_http_node diff --git a/docker-compose.published.yml b/docker-compose.published.yml index 25711eaf..202d5e3f 100644 --- a/docker-compose.published.yml +++ b/docker-compose.published.yml @@ -1,13 +1,13 @@ name: durable-workflow-server # Generated by scripts/ci/sync-source-release.mjs. Do not edit the fallback. -x-server-image: &server-image ${DW_SERVER_IMAGE:-durableworkflow/server:${DW_SERVER_TAG:-2.4.39}} +x-server-image: &server-image ${DW_SERVER_IMAGE:-durableworkflow/server:${DW_SERVER_TAG:-2.4.40}} x-server-environment: &server-environment APP_NAME: "Durable Workflow Server" APP_ENV: ${APP_ENV:-local} DW_SERVER_KEY: ${DW_SERVER_KEY:-} - APP_VERSION: ${APP_VERSION:-${DW_SERVER_TAG:-2.4.39}} + APP_VERSION: ${APP_VERSION:-${DW_SERVER_TAG:-2.4.40}} APP_DEBUG: ${APP_DEBUG:-false} LOG_CHANNEL: ${LOG_CHANNEL:-stderr} LOG_LEVEL: ${LOG_LEVEL:-info} diff --git a/docker-compose.small-cluster.yml b/docker-compose.small-cluster.yml index a12b02ce..196cc85d 100644 --- a/docker-compose.small-cluster.yml +++ b/docker-compose.small-cluster.yml @@ -12,7 +12,7 @@ x-server-build: &server-build x-server-environment: &server-environment APP_NAME: "Durable Workflow Server" APP_ENV: testing - APP_VERSION: ${APP_VERSION:-2.4.39} + APP_VERSION: ${APP_VERSION:-2.4.40} APP_DEBUG: "false" DW_SERVER_KEY: ${DW_SERVER_KEY:-base64:5Zt4nUhlCm3DD0nLXZJQdHiwPfb56yGo9gNV/g3jYbY=} DB_CONNECTION: ${DW_SMALL_CLUSTER_DB:-mysql} diff --git a/docker-compose.yml b/docker-compose.yml index 1b8f1a44..1db96882 100644 --- a/docker-compose.yml +++ b/docker-compose.yml @@ -15,7 +15,7 @@ services: DW_SERVER_KEY: "${DW_SERVER_KEY:-}" DW_SERVER_TOPOLOGY_SHAPE: standalone_server DW_SERVER_PROCESS_CLASS: server_http_node - APP_VERSION: "${APP_VERSION:-2.4.39}" + APP_VERSION: "${APP_VERSION:-2.4.40}" APP_DEBUG: "false" DB_CONNECTION: mysql DB_HOST: mysql @@ -62,7 +62,7 @@ services: APP_NAME: "Durable Workflow Server" APP_ENV: local DW_SERVER_KEY: "${DW_SERVER_KEY:-}" - APP_VERSION: "${APP_VERSION:-2.4.39}" + APP_VERSION: "${APP_VERSION:-2.4.40}" APP_DEBUG: "false" DB_CONNECTION: mysql DB_HOST: mysql @@ -124,7 +124,7 @@ services: DW_SERVER_KEY: "${DW_SERVER_KEY:-}" DW_SERVER_TOPOLOGY_SHAPE: standalone_server DW_SERVER_PROCESS_CLASS: worker_node - APP_VERSION: "${APP_VERSION:-2.4.39}" + APP_VERSION: "${APP_VERSION:-2.4.40}" DB_CONNECTION: mysql DB_HOST: mysql DB_PORT: 3306 @@ -178,7 +178,7 @@ services: DW_SERVER_KEY: "${DW_SERVER_KEY:-}" DW_SERVER_TOPOLOGY_SHAPE: standalone_server DW_SERVER_PROCESS_CLASS: scheduler_node - APP_VERSION: "${APP_VERSION:-2.4.39}" + APP_VERSION: "${APP_VERSION:-2.4.40}" DB_CONNECTION: mysql DB_HOST: mysql DB_PORT: 3306 diff --git a/k8s/README.md b/k8s/README.md index 54e3c7d9..898034bd 100644 --- a/k8s/README.md +++ b/k8s/README.md @@ -13,7 +13,7 @@ The checked-in manifests are synchronized with the repository's stable source release and pin its Docker Hub tag: ```text -durableworkflow/server:2.4.39 +durableworkflow/server:2.4.40 ``` Before production use, patch every workload image to the exact published tag or @@ -21,15 +21,15 @@ digest you intend to run: ```bash kubectl set image -n durable-workflow deploy/durable-workflow-server \ - server=durableworkflow/server:2.4.39 + server=durableworkflow/server:2.4.40 kubectl set image -n durable-workflow deploy/durable-workflow-worker \ - worker=durableworkflow/server:2.4.39 + worker=durableworkflow/server:2.4.40 kubectl set image -n durable-workflow cronjob/durable-workflow-scheduler \ - scheduler=durableworkflow/server:2.4.39 + scheduler=durableworkflow/server:2.4.40 ``` GitHub Container Registry publishes the same release line at -`ghcr.io/durable-workflow/server:2.4.39`. Digest pinning is preferred for strict +`ghcr.io/durable-workflow/server:2.4.40`. Digest pinning is preferred for strict change control. The manifests expect you to provide: diff --git a/k8s/helm/durable-workflow/Chart.yaml b/k8s/helm/durable-workflow/Chart.yaml index e3a5f436..a538308a 100644 --- a/k8s/helm/durable-workflow/Chart.yaml +++ b/k8s/helm/durable-workflow/Chart.yaml @@ -5,11 +5,11 @@ type: application # The chart's own semver version. Bumped on every chart release; treated as # independent of the server image version (appVersion). Breaking-change rules # for this version live in docs/helm-upgrading.md alongside the chart. -version: 0.1.135 +version: 0.1.136 # The immutable Durable Workflow Server identity this chart release packages. # The onboarding default in values.yaml and appVersion are generated from the # checked-in source release record. -appVersion: "2.4.39" +appVersion: "2.4.40" kubeVersion: ">=1.27.0-0" home: https://durable-workflow.github.io/docs/2.0/deployment sources: @@ -30,7 +30,7 @@ annotations: # exact commit that most recently changed the packaged chart. org.opencontainers.image.source: https://github.com/durable-workflow/server dev.durable-workflow.source-revision: "unreleased" - dev.durable-workflow.image-reference: "docker.io/durableworkflow/server:2.4.39" + dev.durable-workflow.image-reference: "docker.io/durableworkflow/server:2.4.40" artifacthub.io/license: MIT artifacthub.io/category: integration-delivery # Free-form changelog for the current chart release shown by Artifact Hub. diff --git a/k8s/helm/durable-workflow/README.md b/k8s/helm/durable-workflow/README.md index 7b6ae984..9385acd2 100644 --- a/k8s/helm/durable-workflow/README.md +++ b/k8s/helm/durable-workflow/README.md @@ -63,7 +63,7 @@ helm install durable-workflow ./k8s/helm/durable-workflow \ ```yaml image: - tag: "2.4.39" + tag: "2.4.40" # Pin a digest in production: # digest: "sha256:abc123..." # memoPayloadStorage: "raw-json-v1" # Required for a digest or custom image. diff --git a/k8s/helm/durable-workflow/ci/existing-secrets-values.yaml b/k8s/helm/durable-workflow/ci/existing-secrets-values.yaml index 25a33826..1df00c27 100644 --- a/k8s/helm/durable-workflow/ci/existing-secrets-values.yaml +++ b/k8s/helm/durable-workflow/ci/existing-secrets-values.yaml @@ -1,7 +1,7 @@ # CI fixture: GitOps / externally-managed-secret path. The chart consumes # existing Secrets and renders no Secret resources of its own. image: - tag: "2.4.39" + tag: "2.4.40" externalDatabase: connection: pgsql diff --git a/k8s/helm/durable-workflow/ci/ingress-and-hpa-values.yaml b/k8s/helm/durable-workflow/ci/ingress-and-hpa-values.yaml index 53dd12a1..d80a3ac7 100644 --- a/k8s/helm/durable-workflow/ci/ingress-and-hpa-values.yaml +++ b/k8s/helm/durable-workflow/ci/ingress-and-hpa-values.yaml @@ -1,6 +1,6 @@ # CI fixture: ingress + autoscaling enabled. Exercises optional templates. image: - tag: "2.4.39" + tag: "2.4.40" externalDatabase: connection: mysql diff --git a/k8s/helm/durable-workflow/ci/inline-secrets-values.yaml b/k8s/helm/durable-workflow/ci/inline-secrets-values.yaml index 292fe26b..954bec0c 100644 --- a/k8s/helm/durable-workflow/ci/inline-secrets-values.yaml +++ b/k8s/helm/durable-workflow/ci/inline-secrets-values.yaml @@ -2,7 +2,7 @@ # chart's render path is exercised end-to-end. Real deployments should use # existingSecret instead. image: - tag: "2.4.39" + tag: "2.4.40" externalDatabase: connection: mysql diff --git a/k8s/helm/durable-workflow/templates/_helpers.tpl b/k8s/helm/durable-workflow/templates/_helpers.tpl index a01a2ed7..3ef03ef5 100644 --- a/k8s/helm/durable-workflow/templates/_helpers.tpl +++ b/k8s/helm/durable-workflow/templates/_helpers.tpl @@ -88,7 +88,7 @@ resolved by an explicit capability declaration or an existing workload marker. {{- define "durable-workflow.memoPayloadStorageForImage" -}} {{- $image := toString . -}} {{- $normalized := regexReplaceAll "^index\\.docker\\.io/" $image "docker.io/" -}} -{{- if eq $normalized "docker.io/durableworkflow/server:2.4.39" -}} +{{- if eq $normalized "docker.io/durableworkflow/server:2.4.40" -}} dual-v1 {{- else if regexMatch "^docker\\.io/durableworkflow/server:2\\.0\\.0-rc\\.[0-9]+$" $normalized -}} {{- $releaseCandidate := atoi (regexFind "[0-9]+$" $normalized) -}} diff --git a/k8s/helm/durable-workflow/values.yaml b/k8s/helm/durable-workflow/values.yaml index 3b71081a..d8bbfd43 100644 --- a/k8s/helm/durable-workflow/values.yaml +++ b/k8s/helm/durable-workflow/values.yaml @@ -21,7 +21,7 @@ image: registry: docker.io repository: durableworkflow/server # Generated by scripts/ci/sync-source-release.mjs. Do not edit this default. - tag: "2.4.39" + tag: "2.4.40" # Optional digest pin. When set, takes precedence over tag for change control. # Example: "sha256:abc123..." digest: "" diff --git a/k8s/helm/examples/values-dev.yaml b/k8s/helm/examples/values-dev.yaml index 12ae8f9c..a6bc2170 100644 --- a/k8s/helm/examples/values-dev.yaml +++ b/k8s/helm/examples/values-dev.yaml @@ -3,7 +3,7 @@ # shape in production. image: - tag: "2.4.39" + tag: "2.4.40" externalDatabase: connection: mysql diff --git a/k8s/helm/examples/values-external-secrets-operator.yaml b/k8s/helm/examples/values-external-secrets-operator.yaml index 622177fe..2be8597e 100644 --- a/k8s/helm/examples/values-external-secrets-operator.yaml +++ b/k8s/helm/examples/values-external-secrets-operator.yaml @@ -5,7 +5,7 @@ # concern. image: - tag: "2.4.39" + tag: "2.4.40" externalDatabase: connection: pgsql diff --git a/k8s/helm/examples/values-production-existing-secrets.yaml b/k8s/helm/examples/values-production-existing-secrets.yaml index d43bd08f..0504d984 100644 --- a/k8s/helm/examples/values-production-existing-secrets.yaml +++ b/k8s/helm/examples/values-production-existing-secrets.yaml @@ -10,7 +10,7 @@ image: repository: durable-workflow/server # Pin a digest in production for change-control auditability. digest: "" # e.g. "sha256:abc123..." - tag: "2.4.39" + tag: "2.4.40" externalDatabase: connection: pgsql diff --git a/k8s/migration-job.yaml b/k8s/migration-job.yaml index 53df94a3..ce6fd2ff 100644 --- a/k8s/migration-job.yaml +++ b/k8s/migration-job.yaml @@ -13,7 +13,7 @@ spec: restartPolicy: OnFailure containers: - name: migrate - image: durableworkflow/server:2.4.39 + image: durableworkflow/server:2.4.40 command: ["server-entrypoint"] args: ["server-bootstrap"] envFrom: diff --git a/k8s/scheduler-cronjob.yaml b/k8s/scheduler-cronjob.yaml index 279e92ef..1406e115 100644 --- a/k8s/scheduler-cronjob.yaml +++ b/k8s/scheduler-cronjob.yaml @@ -24,7 +24,7 @@ spec: restartPolicy: Never containers: - name: scheduler - image: durableworkflow/server:2.4.39 + image: durableworkflow/server:2.4.40 command: ["server-entrypoint"] args: - sh diff --git a/k8s/secret.yaml b/k8s/secret.yaml index 2184bb2a..e80d1202 100644 --- a/k8s/secret.yaml +++ b/k8s/secret.yaml @@ -12,7 +12,7 @@ metadata: app.kubernetes.io/name: durable-workflow data: APP_NAME: "Durable Workflow Server" - APP_VERSION: "2.4.39" + APP_VERSION: "2.4.40" APP_ENV: production APP_DEBUG: "false" DB_CONNECTION: mysql diff --git a/k8s/server-deployment.yaml b/k8s/server-deployment.yaml index a6b0f6a4..f962149e 100644 --- a/k8s/server-deployment.yaml +++ b/k8s/server-deployment.yaml @@ -23,7 +23,7 @@ spec: spec: containers: - name: server - image: durableworkflow/server:2.4.39 + image: durableworkflow/server:2.4.40 ports: - containerPort: 8080 name: http diff --git a/k8s/worker-deployment.yaml b/k8s/worker-deployment.yaml index 5e1eee08..f6b9935b 100644 --- a/k8s/worker-deployment.yaml +++ b/k8s/worker-deployment.yaml @@ -19,7 +19,7 @@ spec: spec: containers: - name: worker - image: durableworkflow/server:2.4.39 + image: durableworkflow/server:2.4.40 command: ["server-entrypoint"] args: ["php", "artisan", "queue:work", "--sleep=1", "--tries=3", "--max-time=3600"] envFrom: diff --git a/resources/release/source-release.json b/resources/release/source-release.json index c118fdca..a2ed198e 100644 --- a/resources/release/source-release.json +++ b/resources/release/source-release.json @@ -1,9 +1,9 @@ { "schema": "durable-workflow.server.source-release/v1", "server": { - "version": "2.4.39" + "version": "2.4.40" }, "helm_chart": { - "version": "0.1.135" + "version": "0.1.136" } } diff --git a/scripts/k8s-kind-smoke.sh b/scripts/k8s-kind-smoke.sh index 00b56221..b7a88bd2 100755 --- a/scripts/k8s-kind-smoke.sh +++ b/scripts/k8s-kind-smoke.sh @@ -7,7 +7,7 @@ cluster="${K8S_SMOKE_CLUSTER:-durable-workflow-server-smoke}" image="${K8S_SMOKE_IMAGE:-durableworkflow/server:k8s-smoke}" # Generated by scripts/ci/sync-source-release.mjs so the smoke replaces the # same default shipped by the public manifests. -manifest_image="durableworkflow/server:2.4.39" +manifest_image="durableworkflow/server:2.4.40" kind_node_image="${K8S_SMOKE_KIND_NODE_IMAGE:-kindest/node:v1.29.4}" artifact_dir="${K8S_SMOKE_ARTIFACT_DIR:-/tmp/durable-workflow-k8s-kind-smoke-artifacts}" rendered_dir="${artifact_dir}/rendered-manifests" diff --git a/tests/Feature/TransportRepairTest.php b/tests/Feature/TransportRepairTest.php index c94e4233..76f82d71 100644 --- a/tests/Feature/TransportRepairTest.php +++ b/tests/Feature/TransportRepairTest.php @@ -5,12 +5,17 @@ namespace Tests\Feature; use Illuminate\Foundation\Testing\RefreshDatabase; +use Illuminate\Support\Facades\Queue; +use PHPUnit\Framework\Attributes\DataProvider; use Tests\Feature\Concerns\ServerTestHelpers; use Tests\Fixtures\ExternalGreetingWorkflow; use Tests\TestCase; +use Workflow\V2\Contracts\HistoryProjectionRole; use Workflow\V2\Contracts\MatchingRole; use Workflow\V2\Enums\TaskStatus; +use Workflow\V2\Models\WorkflowRun; use Workflow\V2\Models\WorkflowTask; +use Workflow\V2\Support\TaskRepairPolicy; class TransportRepairTest extends TestCase { @@ -348,6 +353,78 @@ public function test_system_repair_pass_recovers_expired_poll_mode_workflow_task ->assertJsonPath('task.workflow_task_attempt', 2); } + #[DataProvider('namespaceRepairCases')] + public function test_repaired_workflow_is_visible_and_claimable_only_in_original_namespace(string $namespace, bool $existing): void + { + Queue::fake(); + // The base fixture fills omitted task namespaces with "default". + // Production repair has no such listener. Exercise the real writer. + WorkflowTask::flushEventListeners(); + config(['server.polling.timeout' => 0]); + $this->createNamespace($namespace); + $this->createNamespace('repair-other'); + $this->configureWorkflowTypes(['tests.external-greeting-workflow' => ExternalGreetingWorkflow::class]); + foreach ([$namespace, 'repair-other'] as $workerNamespace) { + $this->registerWorker('repair-worker', 'namespace-repair', namespace: $workerNamespace); + } + $start = $this->postJson('/api/workflows', [ + 'workflow_id' => 'wf-namespace-repair', + 'workflow_type' => 'tests.external-greeting-workflow', + 'task_queue' => 'namespace-repair', + 'input' => ['Ada'], + ], $this->apiHeaders($namespace))->assertCreated(); + $runId = (string) $start->json('run_id'); + $original = WorkflowTask::query()->where('workflow_run_id', $runId)->sole(); + if ($existing) { + // Reproduce an already-created orphan from the preceding release. + $original->forceFill([ + 'namespace' => null, + 'available_at' => now()->subSecond(), + 'last_dispatch_attempt_at' => null, + 'last_dispatched_at' => now()->subSeconds(TaskRepairPolicy::redispatchAfterSeconds() + 1), + ])->save(); + } else { + $original->delete(); + } + app(HistoryProjectionRole::class)->projectRun(WorkflowRun::query()->findOrFail($runId)); + $this->getJson('/api/task-queues/namespace-repair', $this->apiHeaders($namespace)) + ->assertOk()->assertJsonPath('stats.workflow_tasks.ready_count', 0); + $this->postJson('/api/system/repair/pass', ['run_ids' => [$runId]], $this->apiHeaders($namespace)) + ->assertOk() + ->assertJsonPath('repaired_existing_tasks', $existing ? 1 : 0) + ->assertJsonPath('repaired_missing_tasks', $existing ? 0 : 1); + $repaired = WorkflowTask::query()->where('workflow_run_id', $runId)->sole(); + $this->assertSame($namespace, $repaired->namespace); + $this->assertSame(TaskStatus::Ready, $repaired->status); + $this->assertSame($existing, $repaired->id === $original->id); + $this->getJson('/api/task-queues/namespace-repair', $this->apiHeaders($namespace)) + ->assertOk()->assertJsonPath('stats.workflow_tasks.ready_count', 1); + $this->getJson('/api/task-queues/namespace-repair', $this->apiHeaders('repair-other')) + ->assertOk()->assertJsonPath('stats.workflow_tasks.ready_count', 0); + $this->postJson('/api/worker/workflow-tasks/poll', [ + 'worker_id' => 'repair-worker', 'task_queue' => 'namespace-repair', 'poll_request_id' => 'other-poll', + ], $this->workerHeaders('repair-other'))->assertOk()->assertJsonPath('task', null); + $claim = $this->postJson('/api/worker/workflow-tasks/poll', [ + 'worker_id' => 'repair-worker', 'task_queue' => 'namespace-repair', 'poll_request_id' => 'original-poll', + ], $this->workerHeaders($namespace))->assertOk() + ->assertJsonPath('task.task_id', $repaired->id) + ->assertJsonPath('task.run_id', $runId) + ->assertJsonPath('task.lease_owner', 'repair-worker'); + $this->postJson('/api/worker/workflow-tasks/'.$repaired->id.'/complete', [ + 'lease_owner' => 'repair-worker', + 'workflow_task_attempt' => $claim->json('task.workflow_task_attempt'), + 'commands' => [['type' => 'complete_workflow']], + ], $this->workerHeaders($namespace))->assertOk()->assertJsonPath('run_status', 'completed'); + } + + public static function namespaceRepairCases(): iterable + { + foreach (['default', 'repair-tenant'] as $namespace) { + yield $namespace.' / missing task' => [$namespace, false]; + yield $namespace.' / existing orphan' => [$namespace, true]; + } + } + public function test_system_repair_pass_requires_authentication(): void { config(['server.auth.driver' => 'token', 'server.auth.token' => 'secret']);