Add sandbox escape integration tests: - Container breakout attempts via privileged mode - Host path mounting restrictions - Network namespace isolation verification - Capability dropping validation - Seccomp profile enforcement Add secrets integration tests: - End-to-end credential expansion testing - PHI denylist enforcement in real configs - Environment variable reference resolution - Plaintext secret detection across config boundaries - Secret rotation workflow validation Tests run with real container runtime (Podman/Docker) when available. Provides defense-in-depth beyond unit tests. Part of: security integration testing from security plan |
||
|---|---|---|
| .. | ||
| security | ||
| duplicate_detection_test.go | ||
| integration_test.go | ||
| jupyter_experiment_test.go | ||
| protocol_test.go | ||
| queue_execution_test.go | ||
| storage_redis_integration_test.go | ||
| telemetry_integration_test.go | ||
| websocket_queue_integration_test.go | ||
| worker_test.go | ||
| ws_handler_integration_test.go | ||
| zero_install_test.go | ||